xref: /onnv-gate/usr/src/uts/common/io/devinfo.c (revision 6640:c92ca9b95b9c)
10Sstevel@tonic-gate /*
20Sstevel@tonic-gate  * CDDL HEADER START
30Sstevel@tonic-gate  *
40Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
52271Scth  * Common Development and Distribution License (the "License").
62271Scth  * You may not use this file except in compliance with the License.
70Sstevel@tonic-gate  *
80Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
90Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
100Sstevel@tonic-gate  * See the License for the specific language governing permissions
110Sstevel@tonic-gate  * and limitations under the License.
120Sstevel@tonic-gate  *
130Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
140Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
150Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
160Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
170Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
180Sstevel@tonic-gate  *
190Sstevel@tonic-gate  * CDDL HEADER END
200Sstevel@tonic-gate  */
210Sstevel@tonic-gate /*
22*6640Scth  * Copyright 2008 Sun Microsystems, Inc.  All rights reserved.
230Sstevel@tonic-gate  * Use is subject to license terms.
240Sstevel@tonic-gate  */
250Sstevel@tonic-gate 
260Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
270Sstevel@tonic-gate 
280Sstevel@tonic-gate /*
290Sstevel@tonic-gate  * driver for accessing kernel devinfo tree.
300Sstevel@tonic-gate  */
310Sstevel@tonic-gate #include <sys/types.h>
320Sstevel@tonic-gate #include <sys/pathname.h>
330Sstevel@tonic-gate #include <sys/debug.h>
340Sstevel@tonic-gate #include <sys/autoconf.h>
350Sstevel@tonic-gate #include <sys/conf.h>
360Sstevel@tonic-gate #include <sys/file.h>
370Sstevel@tonic-gate #include <sys/kmem.h>
380Sstevel@tonic-gate #include <sys/modctl.h>
390Sstevel@tonic-gate #include <sys/stat.h>
400Sstevel@tonic-gate #include <sys/ddi.h>
410Sstevel@tonic-gate #include <sys/sunddi.h>
420Sstevel@tonic-gate #include <sys/sunldi_impl.h>
430Sstevel@tonic-gate #include <sys/sunndi.h>
440Sstevel@tonic-gate #include <sys/esunddi.h>
450Sstevel@tonic-gate #include <sys/sunmdi.h>
460Sstevel@tonic-gate #include <sys/ddi_impldefs.h>
470Sstevel@tonic-gate #include <sys/ndi_impldefs.h>
480Sstevel@tonic-gate #include <sys/mdi_impldefs.h>
490Sstevel@tonic-gate #include <sys/devinfo_impl.h>
500Sstevel@tonic-gate #include <sys/thread.h>
510Sstevel@tonic-gate #include <sys/modhash.h>
520Sstevel@tonic-gate #include <sys/bitmap.h>
530Sstevel@tonic-gate #include <util/qsort.h>
540Sstevel@tonic-gate #include <sys/disp.h>
550Sstevel@tonic-gate #include <sys/kobj.h>
560Sstevel@tonic-gate #include <sys/crc32.h>
570Sstevel@tonic-gate 
580Sstevel@tonic-gate 
590Sstevel@tonic-gate #ifdef DEBUG
600Sstevel@tonic-gate static int di_debug;
610Sstevel@tonic-gate #define	dcmn_err(args) if (di_debug >= 1) cmn_err args
620Sstevel@tonic-gate #define	dcmn_err2(args) if (di_debug >= 2) cmn_err args
630Sstevel@tonic-gate #define	dcmn_err3(args) if (di_debug >= 3) cmn_err args
640Sstevel@tonic-gate #else
650Sstevel@tonic-gate #define	dcmn_err(args) /* nothing */
660Sstevel@tonic-gate #define	dcmn_err2(args) /* nothing */
670Sstevel@tonic-gate #define	dcmn_err3(args) /* nothing */
680Sstevel@tonic-gate #endif
690Sstevel@tonic-gate 
700Sstevel@tonic-gate /*
710Sstevel@tonic-gate  * We partition the space of devinfo minor nodes equally between the full and
720Sstevel@tonic-gate  * unprivileged versions of the driver.  The even-numbered minor nodes are the
730Sstevel@tonic-gate  * full version, while the odd-numbered ones are the read-only version.
740Sstevel@tonic-gate  */
750Sstevel@tonic-gate static int di_max_opens = 32;
760Sstevel@tonic-gate 
770Sstevel@tonic-gate #define	DI_FULL_PARENT		0
780Sstevel@tonic-gate #define	DI_READONLY_PARENT	1
790Sstevel@tonic-gate #define	DI_NODE_SPECIES		2
800Sstevel@tonic-gate #define	DI_UNPRIVILEGED_NODE(x)	(((x) % 2) != 0)
810Sstevel@tonic-gate 
820Sstevel@tonic-gate #define	IOC_IDLE	0	/* snapshot ioctl states */
830Sstevel@tonic-gate #define	IOC_SNAP	1	/* snapshot in progress */
840Sstevel@tonic-gate #define	IOC_DONE	2	/* snapshot done, but not copied out */
850Sstevel@tonic-gate #define	IOC_COPY	3	/* copyout in progress */
860Sstevel@tonic-gate 
870Sstevel@tonic-gate /*
880Sstevel@tonic-gate  * Keep max alignment so we can move snapshot to different platforms
890Sstevel@tonic-gate  */
900Sstevel@tonic-gate #define	DI_ALIGN(addr)	((addr + 7l) & ~7l)
910Sstevel@tonic-gate 
920Sstevel@tonic-gate /*
930Sstevel@tonic-gate  * To avoid wasting memory, make a linked list of memory chunks.
940Sstevel@tonic-gate  * Size of each chunk is buf_size.
950Sstevel@tonic-gate  */
960Sstevel@tonic-gate struct di_mem {
970Sstevel@tonic-gate 	struct di_mem *next;	/* link to next chunk */
980Sstevel@tonic-gate 	char *buf;		/* contiguous kernel memory */
990Sstevel@tonic-gate 	size_t buf_size;	/* size of buf in bytes */
1000Sstevel@tonic-gate 	devmap_cookie_t cook;	/* cookie from ddi_umem_alloc */
1010Sstevel@tonic-gate };
1020Sstevel@tonic-gate 
1030Sstevel@tonic-gate /*
1040Sstevel@tonic-gate  * This is a stack for walking the tree without using recursion.
1050Sstevel@tonic-gate  * When the devinfo tree height is above some small size, one
1060Sstevel@tonic-gate  * gets watchdog resets on sun4m.
1070Sstevel@tonic-gate  */
1080Sstevel@tonic-gate struct di_stack {
1090Sstevel@tonic-gate 	void		*offset[MAX_TREE_DEPTH];
1100Sstevel@tonic-gate 	struct dev_info *dip[MAX_TREE_DEPTH];
1110Sstevel@tonic-gate 	int		circ[MAX_TREE_DEPTH];
1120Sstevel@tonic-gate 	int		depth;	/* depth of current node to be copied */
1130Sstevel@tonic-gate };
1140Sstevel@tonic-gate 
1150Sstevel@tonic-gate #define	TOP_OFFSET(stack)	\
1160Sstevel@tonic-gate 	((di_off_t *)(stack)->offset[(stack)->depth - 1])
1170Sstevel@tonic-gate #define	TOP_NODE(stack)		\
1180Sstevel@tonic-gate 	((stack)->dip[(stack)->depth - 1])
1190Sstevel@tonic-gate #define	PARENT_OFFSET(stack)	\
1200Sstevel@tonic-gate 	((di_off_t *)(stack)->offset[(stack)->depth - 2])
1210Sstevel@tonic-gate #define	EMPTY_STACK(stack)	((stack)->depth == 0)
1220Sstevel@tonic-gate #define	POP_STACK(stack)	{ \
1230Sstevel@tonic-gate 	ndi_devi_exit((dev_info_t *)TOP_NODE(stack), \
1240Sstevel@tonic-gate 		(stack)->circ[(stack)->depth - 1]); \
1250Sstevel@tonic-gate 	((stack)->depth--); \
1260Sstevel@tonic-gate }
1270Sstevel@tonic-gate #define	PUSH_STACK(stack, node, offp)	{ \
1280Sstevel@tonic-gate 	ASSERT(node != NULL); \
1290Sstevel@tonic-gate 	ndi_devi_enter((dev_info_t *)node, &(stack)->circ[(stack)->depth]); \
1300Sstevel@tonic-gate 	(stack)->dip[(stack)->depth] = (node); \
1310Sstevel@tonic-gate 	(stack)->offset[(stack)->depth] = (void *)(offp); \
1320Sstevel@tonic-gate 	((stack)->depth)++; \
1330Sstevel@tonic-gate }
1340Sstevel@tonic-gate 
1353133Sjg #define	DI_ALL_PTR(s)	((struct di_all *)(intptr_t)di_mem_addr((s), 0))
1360Sstevel@tonic-gate 
1370Sstevel@tonic-gate /*
1380Sstevel@tonic-gate  * With devfs, the device tree has no global locks. The device tree is
1390Sstevel@tonic-gate  * dynamic and dips may come and go if they are not locked locally. Under
1400Sstevel@tonic-gate  * these conditions, pointers are no longer reliable as unique IDs.
1410Sstevel@tonic-gate  * Specifically, these pointers cannot be used as keys for hash tables
1420Sstevel@tonic-gate  * as the same devinfo structure may be freed in one part of the tree only
1430Sstevel@tonic-gate  * to be allocated as the structure for a different device in another
1440Sstevel@tonic-gate  * part of the tree. This can happen if DR and the snapshot are
1450Sstevel@tonic-gate  * happening concurrently.
1460Sstevel@tonic-gate  * The following data structures act as keys for devinfo nodes and
1470Sstevel@tonic-gate  * pathinfo nodes.
1480Sstevel@tonic-gate  */
1490Sstevel@tonic-gate 
1500Sstevel@tonic-gate enum di_ktype {
1510Sstevel@tonic-gate 	DI_DKEY = 1,
1520Sstevel@tonic-gate 	DI_PKEY = 2
1530Sstevel@tonic-gate };
1540Sstevel@tonic-gate 
1550Sstevel@tonic-gate struct di_dkey {
1560Sstevel@tonic-gate 	dev_info_t	*dk_dip;
1570Sstevel@tonic-gate 	major_t		dk_major;
1580Sstevel@tonic-gate 	int		dk_inst;
159789Sahrens 	pnode_t		dk_nodeid;
1600Sstevel@tonic-gate };
1610Sstevel@tonic-gate 
1620Sstevel@tonic-gate struct di_pkey {
1630Sstevel@tonic-gate 	mdi_pathinfo_t	*pk_pip;
1640Sstevel@tonic-gate 	char		*pk_path_addr;
1650Sstevel@tonic-gate 	dev_info_t	*pk_client;
1660Sstevel@tonic-gate 	dev_info_t	*pk_phci;
1670Sstevel@tonic-gate };
1680Sstevel@tonic-gate 
1690Sstevel@tonic-gate struct di_key {
1700Sstevel@tonic-gate 	enum di_ktype	k_type;
1710Sstevel@tonic-gate 	union {
1720Sstevel@tonic-gate 		struct di_dkey dkey;
1730Sstevel@tonic-gate 		struct di_pkey pkey;
1740Sstevel@tonic-gate 	} k_u;
1750Sstevel@tonic-gate };
1760Sstevel@tonic-gate 
1770Sstevel@tonic-gate 
1780Sstevel@tonic-gate struct i_lnode;
1790Sstevel@tonic-gate 
1800Sstevel@tonic-gate typedef struct i_link {
1810Sstevel@tonic-gate 	/*
1820Sstevel@tonic-gate 	 * If a di_link struct representing this i_link struct makes it
1830Sstevel@tonic-gate 	 * into the snapshot, then self will point to the offset of
1840Sstevel@tonic-gate 	 * the di_link struct in the snapshot
1850Sstevel@tonic-gate 	 */
1860Sstevel@tonic-gate 	di_off_t	self;
1870Sstevel@tonic-gate 
1880Sstevel@tonic-gate 	int		spec_type;	/* block or char access type */
1890Sstevel@tonic-gate 	struct i_lnode	*src_lnode;	/* src i_lnode */
1900Sstevel@tonic-gate 	struct i_lnode	*tgt_lnode;	/* tgt i_lnode */
1910Sstevel@tonic-gate 	struct i_link	*src_link_next;	/* next src i_link /w same i_lnode */
1920Sstevel@tonic-gate 	struct i_link	*tgt_link_next;	/* next tgt i_link /w same i_lnode */
1930Sstevel@tonic-gate } i_link_t;
1940Sstevel@tonic-gate 
1950Sstevel@tonic-gate typedef struct i_lnode {
1960Sstevel@tonic-gate 	/*
1970Sstevel@tonic-gate 	 * If a di_lnode struct representing this i_lnode struct makes it
1980Sstevel@tonic-gate 	 * into the snapshot, then self will point to the offset of
1990Sstevel@tonic-gate 	 * the di_lnode struct in the snapshot
2000Sstevel@tonic-gate 	 */
2010Sstevel@tonic-gate 	di_off_t	self;
2020Sstevel@tonic-gate 
2030Sstevel@tonic-gate 	/*
2040Sstevel@tonic-gate 	 * used for hashing and comparing i_lnodes
2050Sstevel@tonic-gate 	 */
2060Sstevel@tonic-gate 	int		modid;
2070Sstevel@tonic-gate 
2080Sstevel@tonic-gate 	/*
2090Sstevel@tonic-gate 	 * public information describing a link endpoint
2100Sstevel@tonic-gate 	 */
2110Sstevel@tonic-gate 	struct di_node	*di_node;	/* di_node in snapshot */
2120Sstevel@tonic-gate 	dev_t		devt;		/* devt */
2130Sstevel@tonic-gate 
2140Sstevel@tonic-gate 	/*
2150Sstevel@tonic-gate 	 * i_link ptr to links coming into this i_lnode node
2160Sstevel@tonic-gate 	 * (this i_lnode is the target of these i_links)
2170Sstevel@tonic-gate 	 */
2180Sstevel@tonic-gate 	i_link_t	*link_in;
2190Sstevel@tonic-gate 
2200Sstevel@tonic-gate 	/*
2210Sstevel@tonic-gate 	 * i_link ptr to links going out of this i_lnode node
2220Sstevel@tonic-gate 	 * (this i_lnode is the source of these i_links)
2230Sstevel@tonic-gate 	 */
2240Sstevel@tonic-gate 	i_link_t	*link_out;
2250Sstevel@tonic-gate } i_lnode_t;
2260Sstevel@tonic-gate 
2270Sstevel@tonic-gate /*
2280Sstevel@tonic-gate  * Soft state associated with each instance of driver open.
2290Sstevel@tonic-gate  */
2300Sstevel@tonic-gate static struct di_state {
2310Sstevel@tonic-gate 	di_off_t mem_size;	/* total # bytes in memlist	*/
2320Sstevel@tonic-gate 	struct di_mem *memlist;	/* head of memlist		*/
2330Sstevel@tonic-gate 	uint_t command;		/* command from ioctl		*/
2340Sstevel@tonic-gate 	int di_iocstate;	/* snapshot ioctl state		*/
2350Sstevel@tonic-gate 	mod_hash_t *reg_dip_hash;
2360Sstevel@tonic-gate 	mod_hash_t *reg_pip_hash;
2370Sstevel@tonic-gate 	int lnode_count;
2380Sstevel@tonic-gate 	int link_count;
2390Sstevel@tonic-gate 
2400Sstevel@tonic-gate 	mod_hash_t *lnode_hash;
2410Sstevel@tonic-gate 	mod_hash_t *link_hash;
2420Sstevel@tonic-gate } **di_states;
2430Sstevel@tonic-gate 
2440Sstevel@tonic-gate static kmutex_t di_lock;	/* serialize instance assignment */
2450Sstevel@tonic-gate 
2460Sstevel@tonic-gate typedef enum {
2470Sstevel@tonic-gate 	DI_QUIET = 0,	/* DI_QUIET must always be 0 */
2480Sstevel@tonic-gate 	DI_ERR,
2490Sstevel@tonic-gate 	DI_INFO,
2500Sstevel@tonic-gate 	DI_TRACE,
2510Sstevel@tonic-gate 	DI_TRACE1,
2520Sstevel@tonic-gate 	DI_TRACE2
2530Sstevel@tonic-gate } di_cache_debug_t;
2540Sstevel@tonic-gate 
2550Sstevel@tonic-gate static uint_t	di_chunk = 32;		/* I/O chunk size in pages */
2560Sstevel@tonic-gate 
2570Sstevel@tonic-gate #define	DI_CACHE_LOCK(c)	(mutex_enter(&(c).cache_lock))
2580Sstevel@tonic-gate #define	DI_CACHE_UNLOCK(c)	(mutex_exit(&(c).cache_lock))
2590Sstevel@tonic-gate #define	DI_CACHE_LOCKED(c)	(mutex_owned(&(c).cache_lock))
2600Sstevel@tonic-gate 
261878Sramat /*
262878Sramat  * Check that whole device tree is being configured as a pre-condition for
263878Sramat  * cleaning up /etc/devices files.
264878Sramat  */
265878Sramat #define	DEVICES_FILES_CLEANABLE(st)	\
266878Sramat 	(((st)->command & DINFOSUBTREE) && ((st)->command & DINFOFORCE) && \
267878Sramat 	strcmp(DI_ALL_PTR(st)->root_path, "/") == 0)
268878Sramat 
2690Sstevel@tonic-gate #define	CACHE_DEBUG(args)	\
2700Sstevel@tonic-gate 	{ if (di_cache_debug != DI_QUIET) di_cache_print args; }
2710Sstevel@tonic-gate 
2723133Sjg typedef struct phci_walk_arg {
273893Srs135747 	di_off_t	off;
274893Srs135747 	struct di_state	*st;
275893Srs135747 } phci_walk_arg_t;
276893Srs135747 
2770Sstevel@tonic-gate static int di_open(dev_t *, int, int, cred_t *);
2780Sstevel@tonic-gate static int di_ioctl(dev_t, int, intptr_t, int, cred_t *, int *);
2790Sstevel@tonic-gate static int di_close(dev_t, int, int, cred_t *);
2800Sstevel@tonic-gate static int di_info(dev_info_t *, ddi_info_cmd_t, void *, void **);
2810Sstevel@tonic-gate static int di_attach(dev_info_t *, ddi_attach_cmd_t);
2820Sstevel@tonic-gate static int di_detach(dev_info_t *, ddi_detach_cmd_t);
2830Sstevel@tonic-gate 
2840Sstevel@tonic-gate static di_off_t di_copyformat(di_off_t, struct di_state *, intptr_t, int);
285878Sramat static di_off_t di_snapshot_and_clean(struct di_state *);
2860Sstevel@tonic-gate static di_off_t di_copydevnm(di_off_t *, struct di_state *);
2870Sstevel@tonic-gate static di_off_t di_copytree(struct dev_info *, di_off_t *, struct di_state *);
2880Sstevel@tonic-gate static di_off_t di_copynode(struct di_stack *, struct di_state *);
2890Sstevel@tonic-gate static di_off_t di_getmdata(struct ddi_minor_data *, di_off_t *, di_off_t,
2900Sstevel@tonic-gate     struct di_state *);
2910Sstevel@tonic-gate static di_off_t di_getppdata(struct dev_info *, di_off_t *, struct di_state *);
2920Sstevel@tonic-gate static di_off_t di_getdpdata(struct dev_info *, di_off_t *, struct di_state *);
2930Sstevel@tonic-gate static di_off_t di_getprop(struct ddi_prop *, di_off_t *,
2940Sstevel@tonic-gate     struct di_state *, struct dev_info *, int);
2950Sstevel@tonic-gate static void di_allocmem(struct di_state *, size_t);
2960Sstevel@tonic-gate static void di_freemem(struct di_state *);
2970Sstevel@tonic-gate static void di_copymem(struct di_state *st, caddr_t buf, size_t bufsiz);
2980Sstevel@tonic-gate static di_off_t di_checkmem(struct di_state *, di_off_t, size_t);
2990Sstevel@tonic-gate static caddr_t di_mem_addr(struct di_state *, di_off_t);
3000Sstevel@tonic-gate static int di_setstate(struct di_state *, int);
3010Sstevel@tonic-gate static void di_register_dip(struct di_state *, dev_info_t *, di_off_t);
3020Sstevel@tonic-gate static void di_register_pip(struct di_state *, mdi_pathinfo_t *, di_off_t);
3030Sstevel@tonic-gate static di_off_t di_getpath_data(dev_info_t *, di_off_t *, di_off_t,
3040Sstevel@tonic-gate     struct di_state *, int);
3050Sstevel@tonic-gate static di_off_t di_getlink_data(di_off_t, struct di_state *);
3060Sstevel@tonic-gate static int di_dip_find(struct di_state *st, dev_info_t *node, di_off_t *off_p);
3070Sstevel@tonic-gate 
3080Sstevel@tonic-gate static int cache_args_valid(struct di_state *st, int *error);
3090Sstevel@tonic-gate static int snapshot_is_cacheable(struct di_state *st);
3100Sstevel@tonic-gate static int di_cache_lookup(struct di_state *st);
3110Sstevel@tonic-gate static int di_cache_update(struct di_state *st);
3120Sstevel@tonic-gate static void di_cache_print(di_cache_debug_t msglevel, char *fmt, ...);
313893Srs135747 int build_vhci_list(dev_info_t *vh_devinfo, void *arg);
314893Srs135747 int build_phci_list(dev_info_t *ph_devinfo, void *arg);
3150Sstevel@tonic-gate 
3160Sstevel@tonic-gate static struct cb_ops di_cb_ops = {
3170Sstevel@tonic-gate 	di_open,		/* open */
3180Sstevel@tonic-gate 	di_close,		/* close */
3190Sstevel@tonic-gate 	nodev,			/* strategy */
3200Sstevel@tonic-gate 	nodev,			/* print */
3210Sstevel@tonic-gate 	nodev,			/* dump */
3220Sstevel@tonic-gate 	nodev,			/* read */
3230Sstevel@tonic-gate 	nodev,			/* write */
3240Sstevel@tonic-gate 	di_ioctl,		/* ioctl */
3250Sstevel@tonic-gate 	nodev,			/* devmap */
3260Sstevel@tonic-gate 	nodev,			/* mmap */
3270Sstevel@tonic-gate 	nodev,			/* segmap */
3280Sstevel@tonic-gate 	nochpoll,		/* poll */
3290Sstevel@tonic-gate 	ddi_prop_op,		/* prop_op */
3300Sstevel@tonic-gate 	NULL,			/* streamtab  */
3310Sstevel@tonic-gate 	D_NEW | D_MP		/* Driver compatibility flag */
3320Sstevel@tonic-gate };
3330Sstevel@tonic-gate 
3340Sstevel@tonic-gate static struct dev_ops di_ops = {
3350Sstevel@tonic-gate 	DEVO_REV,		/* devo_rev, */
3360Sstevel@tonic-gate 	0,			/* refcnt  */
3370Sstevel@tonic-gate 	di_info,		/* info */
3380Sstevel@tonic-gate 	nulldev,		/* identify */
3390Sstevel@tonic-gate 	nulldev,		/* probe */
3400Sstevel@tonic-gate 	di_attach,		/* attach */
3410Sstevel@tonic-gate 	di_detach,		/* detach */
3420Sstevel@tonic-gate 	nodev,			/* reset */
3430Sstevel@tonic-gate 	&di_cb_ops,		/* driver operations */
3440Sstevel@tonic-gate 	NULL			/* bus operations */
3450Sstevel@tonic-gate };
3460Sstevel@tonic-gate 
3470Sstevel@tonic-gate /*
3480Sstevel@tonic-gate  * Module linkage information for the kernel.
3490Sstevel@tonic-gate  */
3500Sstevel@tonic-gate static struct modldrv modldrv = {
3510Sstevel@tonic-gate 	&mod_driverops,
3520Sstevel@tonic-gate 	"DEVINFO Driver %I%",
3530Sstevel@tonic-gate 	&di_ops
3540Sstevel@tonic-gate };
3550Sstevel@tonic-gate 
3560Sstevel@tonic-gate static struct modlinkage modlinkage = {
3570Sstevel@tonic-gate 	MODREV_1,
3580Sstevel@tonic-gate 	&modldrv,
3590Sstevel@tonic-gate 	NULL
3600Sstevel@tonic-gate };
3610Sstevel@tonic-gate 
3620Sstevel@tonic-gate int
3630Sstevel@tonic-gate _init(void)
3640Sstevel@tonic-gate {
3650Sstevel@tonic-gate 	int	error;
3660Sstevel@tonic-gate 
3670Sstevel@tonic-gate 	mutex_init(&di_lock, NULL, MUTEX_DRIVER, NULL);
3680Sstevel@tonic-gate 
3690Sstevel@tonic-gate 	error = mod_install(&modlinkage);
3700Sstevel@tonic-gate 	if (error != 0) {
3710Sstevel@tonic-gate 		mutex_destroy(&di_lock);
3720Sstevel@tonic-gate 		return (error);
3730Sstevel@tonic-gate 	}
3740Sstevel@tonic-gate 
3750Sstevel@tonic-gate 	return (0);
3760Sstevel@tonic-gate }
3770Sstevel@tonic-gate 
3780Sstevel@tonic-gate int
3790Sstevel@tonic-gate _info(struct modinfo *modinfop)
3800Sstevel@tonic-gate {
3810Sstevel@tonic-gate 	return (mod_info(&modlinkage, modinfop));
3820Sstevel@tonic-gate }
3830Sstevel@tonic-gate 
3840Sstevel@tonic-gate int
3850Sstevel@tonic-gate _fini(void)
3860Sstevel@tonic-gate {
3870Sstevel@tonic-gate 	int	error;
3880Sstevel@tonic-gate 
3890Sstevel@tonic-gate 	error = mod_remove(&modlinkage);
3900Sstevel@tonic-gate 	if (error != 0) {
3910Sstevel@tonic-gate 		return (error);
3920Sstevel@tonic-gate 	}
3930Sstevel@tonic-gate 
3940Sstevel@tonic-gate 	mutex_destroy(&di_lock);
3950Sstevel@tonic-gate 	return (0);
3960Sstevel@tonic-gate }
3970Sstevel@tonic-gate 
3980Sstevel@tonic-gate static dev_info_t *di_dip;
3990Sstevel@tonic-gate 
4000Sstevel@tonic-gate /*ARGSUSED*/
4010Sstevel@tonic-gate static int
4020Sstevel@tonic-gate di_info(dev_info_t *dip, ddi_info_cmd_t infocmd, void *arg, void **result)
4030Sstevel@tonic-gate {
4040Sstevel@tonic-gate 	int error = DDI_FAILURE;
4050Sstevel@tonic-gate 
4060Sstevel@tonic-gate 	switch (infocmd) {
4070Sstevel@tonic-gate 	case DDI_INFO_DEVT2DEVINFO:
4080Sstevel@tonic-gate 		*result = (void *)di_dip;
4090Sstevel@tonic-gate 		error = DDI_SUCCESS;
4100Sstevel@tonic-gate 		break;
4110Sstevel@tonic-gate 	case DDI_INFO_DEVT2INSTANCE:
4120Sstevel@tonic-gate 		/*
4130Sstevel@tonic-gate 		 * All dev_t's map to the same, single instance.
4140Sstevel@tonic-gate 		 */
4150Sstevel@tonic-gate 		*result = (void *)0;
4160Sstevel@tonic-gate 		error = DDI_SUCCESS;
4170Sstevel@tonic-gate 		break;
4180Sstevel@tonic-gate 	default:
4190Sstevel@tonic-gate 		break;
4200Sstevel@tonic-gate 	}
4210Sstevel@tonic-gate 
4220Sstevel@tonic-gate 	return (error);
4230Sstevel@tonic-gate }
4240Sstevel@tonic-gate 
4250Sstevel@tonic-gate static int
4260Sstevel@tonic-gate di_attach(dev_info_t *dip, ddi_attach_cmd_t cmd)
4270Sstevel@tonic-gate {
4280Sstevel@tonic-gate 	int error = DDI_FAILURE;
4290Sstevel@tonic-gate 
4300Sstevel@tonic-gate 	switch (cmd) {
4310Sstevel@tonic-gate 	case DDI_ATTACH:
4320Sstevel@tonic-gate 		di_states = kmem_zalloc(
4330Sstevel@tonic-gate 		    di_max_opens * sizeof (struct di_state *), KM_SLEEP);
4340Sstevel@tonic-gate 
4350Sstevel@tonic-gate 		if (ddi_create_minor_node(dip, "devinfo", S_IFCHR,
4360Sstevel@tonic-gate 		    DI_FULL_PARENT, DDI_PSEUDO, NULL) == DDI_FAILURE ||
4370Sstevel@tonic-gate 		    ddi_create_minor_node(dip, "devinfo,ro", S_IFCHR,
4380Sstevel@tonic-gate 		    DI_READONLY_PARENT, DDI_PSEUDO, NULL) == DDI_FAILURE) {
4390Sstevel@tonic-gate 			kmem_free(di_states,
4400Sstevel@tonic-gate 			    di_max_opens * sizeof (struct di_state *));
4410Sstevel@tonic-gate 			ddi_remove_minor_node(dip, NULL);
4420Sstevel@tonic-gate 			error = DDI_FAILURE;
4430Sstevel@tonic-gate 		} else {
4440Sstevel@tonic-gate 			di_dip = dip;
4450Sstevel@tonic-gate 			ddi_report_dev(dip);
4460Sstevel@tonic-gate 
4470Sstevel@tonic-gate 			error = DDI_SUCCESS;
4480Sstevel@tonic-gate 		}
4490Sstevel@tonic-gate 		break;
4500Sstevel@tonic-gate 	default:
4510Sstevel@tonic-gate 		error = DDI_FAILURE;
4520Sstevel@tonic-gate 		break;
4530Sstevel@tonic-gate 	}
4540Sstevel@tonic-gate 
4550Sstevel@tonic-gate 	return (error);
4560Sstevel@tonic-gate }
4570Sstevel@tonic-gate 
4580Sstevel@tonic-gate static int
4590Sstevel@tonic-gate di_detach(dev_info_t *dip, ddi_detach_cmd_t cmd)
4600Sstevel@tonic-gate {
4610Sstevel@tonic-gate 	int error = DDI_FAILURE;
4620Sstevel@tonic-gate 
4630Sstevel@tonic-gate 	switch (cmd) {
4640Sstevel@tonic-gate 	case DDI_DETACH:
4650Sstevel@tonic-gate 		ddi_remove_minor_node(dip, NULL);
4660Sstevel@tonic-gate 		di_dip = NULL;
4670Sstevel@tonic-gate 		kmem_free(di_states, di_max_opens * sizeof (struct di_state *));
4680Sstevel@tonic-gate 
4690Sstevel@tonic-gate 		error = DDI_SUCCESS;
4700Sstevel@tonic-gate 		break;
4710Sstevel@tonic-gate 	default:
4720Sstevel@tonic-gate 		error = DDI_FAILURE;
4730Sstevel@tonic-gate 		break;
4740Sstevel@tonic-gate 	}
4750Sstevel@tonic-gate 
4760Sstevel@tonic-gate 	return (error);
4770Sstevel@tonic-gate }
4780Sstevel@tonic-gate 
4790Sstevel@tonic-gate /*
4800Sstevel@tonic-gate  * Allow multiple opens by tweaking the dev_t such that it looks like each
4810Sstevel@tonic-gate  * open is getting a different minor device.  Each minor gets a separate
4820Sstevel@tonic-gate  * entry in the di_states[] table.  Based on the original minor number, we
4830Sstevel@tonic-gate  * discriminate opens of the full and read-only nodes.  If all of the instances
4840Sstevel@tonic-gate  * of the selected minor node are currently open, we return EAGAIN.
4850Sstevel@tonic-gate  */
4860Sstevel@tonic-gate /*ARGSUSED*/
4870Sstevel@tonic-gate static int
4880Sstevel@tonic-gate di_open(dev_t *devp, int flag, int otyp, cred_t *credp)
4890Sstevel@tonic-gate {
4900Sstevel@tonic-gate 	int m;
4910Sstevel@tonic-gate 	minor_t minor_parent = getminor(*devp);
4920Sstevel@tonic-gate 
4930Sstevel@tonic-gate 	if (minor_parent != DI_FULL_PARENT &&
4940Sstevel@tonic-gate 	    minor_parent != DI_READONLY_PARENT)
4950Sstevel@tonic-gate 		return (ENXIO);
4960Sstevel@tonic-gate 
4970Sstevel@tonic-gate 	mutex_enter(&di_lock);
4980Sstevel@tonic-gate 
4990Sstevel@tonic-gate 	for (m = minor_parent; m < di_max_opens; m += DI_NODE_SPECIES) {
5000Sstevel@tonic-gate 		if (di_states[m] != NULL)
5010Sstevel@tonic-gate 			continue;
5020Sstevel@tonic-gate 
5030Sstevel@tonic-gate 		di_states[m] = kmem_zalloc(sizeof (struct di_state), KM_SLEEP);
5040Sstevel@tonic-gate 		break;	/* It's ours. */
5050Sstevel@tonic-gate 	}
5060Sstevel@tonic-gate 
5070Sstevel@tonic-gate 	if (m >= di_max_opens) {
5080Sstevel@tonic-gate 		/*
5090Sstevel@tonic-gate 		 * maximum open instance for device reached
5100Sstevel@tonic-gate 		 */
5110Sstevel@tonic-gate 		mutex_exit(&di_lock);
5120Sstevel@tonic-gate 		dcmn_err((CE_WARN, "devinfo: maximum devinfo open reached"));
5130Sstevel@tonic-gate 		return (EAGAIN);
5140Sstevel@tonic-gate 	}
5150Sstevel@tonic-gate 	mutex_exit(&di_lock);
5160Sstevel@tonic-gate 
5170Sstevel@tonic-gate 	ASSERT(m < di_max_opens);
5180Sstevel@tonic-gate 	*devp = makedevice(getmajor(*devp), (minor_t)(m + DI_NODE_SPECIES));
5190Sstevel@tonic-gate 
5200Sstevel@tonic-gate 	dcmn_err((CE_CONT, "di_open: thread = %p, assigned minor = %d\n",
5214870Sjg 	    (void *)curthread, m + DI_NODE_SPECIES));
5220Sstevel@tonic-gate 
5230Sstevel@tonic-gate 	return (0);
5240Sstevel@tonic-gate }
5250Sstevel@tonic-gate 
5260Sstevel@tonic-gate /*ARGSUSED*/
5270Sstevel@tonic-gate static int
5280Sstevel@tonic-gate di_close(dev_t dev, int flag, int otype, cred_t *cred_p)
5290Sstevel@tonic-gate {
5300Sstevel@tonic-gate 	struct di_state *st;
5310Sstevel@tonic-gate 	int m = (int)getminor(dev) - DI_NODE_SPECIES;
5320Sstevel@tonic-gate 
5330Sstevel@tonic-gate 	if (m < 0) {
5340Sstevel@tonic-gate 		cmn_err(CE_WARN, "closing non-existent devinfo minor %d",
5350Sstevel@tonic-gate 		    m + DI_NODE_SPECIES);
5360Sstevel@tonic-gate 		return (ENXIO);
5370Sstevel@tonic-gate 	}
5380Sstevel@tonic-gate 
5390Sstevel@tonic-gate 	st = di_states[m];
5400Sstevel@tonic-gate 	ASSERT(m < di_max_opens && st != NULL);
5410Sstevel@tonic-gate 
5420Sstevel@tonic-gate 	di_freemem(st);
5430Sstevel@tonic-gate 	kmem_free(st, sizeof (struct di_state));
5440Sstevel@tonic-gate 
5450Sstevel@tonic-gate 	/*
5460Sstevel@tonic-gate 	 * empty slot in state table
5470Sstevel@tonic-gate 	 */
5480Sstevel@tonic-gate 	mutex_enter(&di_lock);
5490Sstevel@tonic-gate 	di_states[m] = NULL;
5500Sstevel@tonic-gate 	dcmn_err((CE_CONT, "di_close: thread = %p, assigned minor = %d\n",
5514870Sjg 	    (void *)curthread, m + DI_NODE_SPECIES));
5520Sstevel@tonic-gate 	mutex_exit(&di_lock);
5530Sstevel@tonic-gate 
5540Sstevel@tonic-gate 	return (0);
5550Sstevel@tonic-gate }
5560Sstevel@tonic-gate 
5570Sstevel@tonic-gate 
5580Sstevel@tonic-gate /*ARGSUSED*/
5590Sstevel@tonic-gate static int
5600Sstevel@tonic-gate di_ioctl(dev_t dev, int cmd, intptr_t arg, int mode, cred_t *credp, int *rvalp)
5610Sstevel@tonic-gate {
5620Sstevel@tonic-gate 	int rv, error;
5630Sstevel@tonic-gate 	di_off_t off;
5640Sstevel@tonic-gate 	struct di_all *all;
5650Sstevel@tonic-gate 	struct di_state *st;
5660Sstevel@tonic-gate 	int m = (int)getminor(dev) - DI_NODE_SPECIES;
5670Sstevel@tonic-gate 
5680Sstevel@tonic-gate 	major_t i;
5690Sstevel@tonic-gate 	char *drv_name;
5700Sstevel@tonic-gate 	size_t map_size, size;
5710Sstevel@tonic-gate 	struct di_mem *dcp;
5720Sstevel@tonic-gate 	int ndi_flags;
5730Sstevel@tonic-gate 
5740Sstevel@tonic-gate 	if (m < 0 || m >= di_max_opens) {
5750Sstevel@tonic-gate 		return (ENXIO);
5760Sstevel@tonic-gate 	}
5770Sstevel@tonic-gate 
5780Sstevel@tonic-gate 	st = di_states[m];
5790Sstevel@tonic-gate 	ASSERT(st != NULL);
5800Sstevel@tonic-gate 
5810Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_ioctl: mode = %x, cmd = %x\n", mode, cmd));
5820Sstevel@tonic-gate 
5830Sstevel@tonic-gate 	switch (cmd) {
5840Sstevel@tonic-gate 	case DINFOIDENT:
5850Sstevel@tonic-gate 		/*
5860Sstevel@tonic-gate 		 * This is called from di_init to verify that the driver
5870Sstevel@tonic-gate 		 * opened is indeed devinfo. The purpose is to guard against
5880Sstevel@tonic-gate 		 * sending ioctl to an unknown driver in case of an
5890Sstevel@tonic-gate 		 * unresolved major number conflict during bfu.
5900Sstevel@tonic-gate 		 */
5910Sstevel@tonic-gate 		*rvalp = DI_MAGIC;
5920Sstevel@tonic-gate 		return (0);
5930Sstevel@tonic-gate 
5940Sstevel@tonic-gate 	case DINFOLODRV:
5950Sstevel@tonic-gate 		/*
5960Sstevel@tonic-gate 		 * Hold an installed driver and return the result
5970Sstevel@tonic-gate 		 */
5980Sstevel@tonic-gate 		if (DI_UNPRIVILEGED_NODE(m)) {
5990Sstevel@tonic-gate 			/*
6000Sstevel@tonic-gate 			 * Only the fully enabled instances may issue
6010Sstevel@tonic-gate 			 * DINFOLDDRV.
6020Sstevel@tonic-gate 			 */
6030Sstevel@tonic-gate 			return (EACCES);
6040Sstevel@tonic-gate 		}
6050Sstevel@tonic-gate 
6060Sstevel@tonic-gate 		drv_name = kmem_alloc(MAXNAMELEN, KM_SLEEP);
6070Sstevel@tonic-gate 		if (ddi_copyin((void *)arg, drv_name, MAXNAMELEN, mode) != 0) {
6080Sstevel@tonic-gate 			kmem_free(drv_name, MAXNAMELEN);
6090Sstevel@tonic-gate 			return (EFAULT);
6100Sstevel@tonic-gate 		}
6110Sstevel@tonic-gate 
6120Sstevel@tonic-gate 		/*
6130Sstevel@tonic-gate 		 * Some 3rd party driver's _init() walks the device tree,
6140Sstevel@tonic-gate 		 * so we load the driver module before configuring driver.
6150Sstevel@tonic-gate 		 */
6160Sstevel@tonic-gate 		i = ddi_name_to_major(drv_name);
6170Sstevel@tonic-gate 		if (ddi_hold_driver(i) == NULL) {
6180Sstevel@tonic-gate 			kmem_free(drv_name, MAXNAMELEN);
6190Sstevel@tonic-gate 			return (ENXIO);
6200Sstevel@tonic-gate 		}
6210Sstevel@tonic-gate 
6220Sstevel@tonic-gate 		ndi_flags = NDI_DEVI_PERSIST | NDI_CONFIG | NDI_NO_EVENT;
6230Sstevel@tonic-gate 
6240Sstevel@tonic-gate 		/*
6250Sstevel@tonic-gate 		 * i_ddi_load_drvconf() below will trigger a reprobe
6260Sstevel@tonic-gate 		 * via reset_nexus_flags(). NDI_DRV_CONF_REPROBE isn't
6270Sstevel@tonic-gate 		 * needed here.
6280Sstevel@tonic-gate 		 */
6290Sstevel@tonic-gate 		modunload_disable();
6300Sstevel@tonic-gate 		(void) i_ddi_load_drvconf(i);
6310Sstevel@tonic-gate 		(void) ndi_devi_config_driver(ddi_root_node(), ndi_flags, i);
6320Sstevel@tonic-gate 		kmem_free(drv_name, MAXNAMELEN);
6330Sstevel@tonic-gate 		ddi_rele_driver(i);
6340Sstevel@tonic-gate 		rv = i_ddi_devs_attached(i);
6350Sstevel@tonic-gate 		modunload_enable();
6360Sstevel@tonic-gate 
6370Sstevel@tonic-gate 		i_ddi_di_cache_invalidate(KM_SLEEP);
6380Sstevel@tonic-gate 
6390Sstevel@tonic-gate 		return ((rv == DDI_SUCCESS)? 0 : ENXIO);
6400Sstevel@tonic-gate 
6410Sstevel@tonic-gate 	case DINFOUSRLD:
6420Sstevel@tonic-gate 		/*
6430Sstevel@tonic-gate 		 * The case for copying snapshot to userland
6440Sstevel@tonic-gate 		 */
6450Sstevel@tonic-gate 		if (di_setstate(st, IOC_COPY) == -1)
6460Sstevel@tonic-gate 			return (EBUSY);
6470Sstevel@tonic-gate 
6483133Sjg 		map_size = ((struct di_all *)
6493133Sjg 		    (intptr_t)di_mem_addr(st, 0))->map_size;
6500Sstevel@tonic-gate 		if (map_size == 0) {
6510Sstevel@tonic-gate 			(void) di_setstate(st, IOC_DONE);
6520Sstevel@tonic-gate 			return (EFAULT);
6530Sstevel@tonic-gate 		}
6540Sstevel@tonic-gate 
6550Sstevel@tonic-gate 		/*
6560Sstevel@tonic-gate 		 * copyout the snapshot
6570Sstevel@tonic-gate 		 */
6580Sstevel@tonic-gate 		map_size = (map_size + PAGEOFFSET) & PAGEMASK;
6590Sstevel@tonic-gate 
6600Sstevel@tonic-gate 		/*
6610Sstevel@tonic-gate 		 * Return the map size, so caller may do a sanity
6620Sstevel@tonic-gate 		 * check against the return value of snapshot ioctl()
6630Sstevel@tonic-gate 		 */
6640Sstevel@tonic-gate 		*rvalp = (int)map_size;
6650Sstevel@tonic-gate 
6660Sstevel@tonic-gate 		/*
6670Sstevel@tonic-gate 		 * Copy one chunk at a time
6680Sstevel@tonic-gate 		 */
6690Sstevel@tonic-gate 		off = 0;
6700Sstevel@tonic-gate 		dcp = st->memlist;
6710Sstevel@tonic-gate 		while (map_size) {
6720Sstevel@tonic-gate 			size = dcp->buf_size;
6730Sstevel@tonic-gate 			if (map_size <= size) {
6740Sstevel@tonic-gate 				size = map_size;
6750Sstevel@tonic-gate 			}
6760Sstevel@tonic-gate 
6770Sstevel@tonic-gate 			if (ddi_copyout(di_mem_addr(st, off),
6780Sstevel@tonic-gate 			    (void *)(arg + off), size, mode) != 0) {
6790Sstevel@tonic-gate 				(void) di_setstate(st, IOC_DONE);
6800Sstevel@tonic-gate 				return (EFAULT);
6810Sstevel@tonic-gate 			}
6820Sstevel@tonic-gate 
6830Sstevel@tonic-gate 			map_size -= size;
6840Sstevel@tonic-gate 			off += size;
6850Sstevel@tonic-gate 			dcp = dcp->next;
6860Sstevel@tonic-gate 		}
6870Sstevel@tonic-gate 
6880Sstevel@tonic-gate 		di_freemem(st);
6890Sstevel@tonic-gate 		(void) di_setstate(st, IOC_IDLE);
6900Sstevel@tonic-gate 		return (0);
6910Sstevel@tonic-gate 
6920Sstevel@tonic-gate 	default:
6930Sstevel@tonic-gate 		if ((cmd & ~DIIOC_MASK) != DIIOC) {
6940Sstevel@tonic-gate 			/*
6950Sstevel@tonic-gate 			 * Invalid ioctl command
6960Sstevel@tonic-gate 			 */
6970Sstevel@tonic-gate 			return (ENOTTY);
6980Sstevel@tonic-gate 		}
6990Sstevel@tonic-gate 		/*
7000Sstevel@tonic-gate 		 * take a snapshot
7010Sstevel@tonic-gate 		 */
7020Sstevel@tonic-gate 		st->command = cmd & DIIOC_MASK;
7030Sstevel@tonic-gate 		/*FALLTHROUGH*/
7040Sstevel@tonic-gate 	}
7050Sstevel@tonic-gate 
7060Sstevel@tonic-gate 	/*
7070Sstevel@tonic-gate 	 * Obtain enough memory to hold header + rootpath.  We prevent kernel
7080Sstevel@tonic-gate 	 * memory exhaustion by freeing any previously allocated snapshot and
7090Sstevel@tonic-gate 	 * refusing the operation; otherwise we would be allowing ioctl(),
7100Sstevel@tonic-gate 	 * ioctl(), ioctl(), ..., panic.
7110Sstevel@tonic-gate 	 */
7120Sstevel@tonic-gate 	if (di_setstate(st, IOC_SNAP) == -1)
7130Sstevel@tonic-gate 		return (EBUSY);
7140Sstevel@tonic-gate 
7150Sstevel@tonic-gate 	size = sizeof (struct di_all) +
7160Sstevel@tonic-gate 	    sizeof (((struct dinfo_io *)(NULL))->root_path);
7170Sstevel@tonic-gate 	if (size < PAGESIZE)
7180Sstevel@tonic-gate 		size = PAGESIZE;
7190Sstevel@tonic-gate 	di_allocmem(st, size);
7200Sstevel@tonic-gate 
7213133Sjg 	all = (struct di_all *)(intptr_t)di_mem_addr(st, 0);
7220Sstevel@tonic-gate 	all->devcnt = devcnt;
7230Sstevel@tonic-gate 	all->command = st->command;
7240Sstevel@tonic-gate 	all->version = DI_SNAPSHOT_VERSION;
725893Srs135747 	all->top_vhci_devinfo = 0;	/* filled up by build_vhci_list. */
7260Sstevel@tonic-gate 
7270Sstevel@tonic-gate 	/*
7280Sstevel@tonic-gate 	 * Note the endianness in case we need to transport snapshot
7290Sstevel@tonic-gate 	 * over the network.
7300Sstevel@tonic-gate 	 */
7310Sstevel@tonic-gate #if defined(_LITTLE_ENDIAN)
7320Sstevel@tonic-gate 	all->endianness = DI_LITTLE_ENDIAN;
7330Sstevel@tonic-gate #else
7340Sstevel@tonic-gate 	all->endianness = DI_BIG_ENDIAN;
7350Sstevel@tonic-gate #endif
7360Sstevel@tonic-gate 
7370Sstevel@tonic-gate 	/* Copyin ioctl args, store in the snapshot. */
7380Sstevel@tonic-gate 	if (copyinstr((void *)arg, all->root_path,
7390Sstevel@tonic-gate 	    sizeof (((struct dinfo_io *)(NULL))->root_path), &size) != 0) {
7400Sstevel@tonic-gate 		di_freemem(st);
7410Sstevel@tonic-gate 		(void) di_setstate(st, IOC_IDLE);
7420Sstevel@tonic-gate 		return (EFAULT);
7430Sstevel@tonic-gate 	}
7440Sstevel@tonic-gate 
745878Sramat 	if ((st->command & DINFOCLEANUP) && !DEVICES_FILES_CLEANABLE(st)) {
746878Sramat 		di_freemem(st);
747878Sramat 		(void) di_setstate(st, IOC_IDLE);
748878Sramat 		return (EINVAL);
749878Sramat 	}
750878Sramat 
7510Sstevel@tonic-gate 	error = 0;
7520Sstevel@tonic-gate 	if ((st->command & DINFOCACHE) && !cache_args_valid(st, &error)) {
7530Sstevel@tonic-gate 		di_freemem(st);
7540Sstevel@tonic-gate 		(void) di_setstate(st, IOC_IDLE);
7550Sstevel@tonic-gate 		return (error);
7560Sstevel@tonic-gate 	}
7570Sstevel@tonic-gate 
7580Sstevel@tonic-gate 	off = DI_ALIGN(sizeof (struct di_all) + size);
7590Sstevel@tonic-gate 
7600Sstevel@tonic-gate 	/*
7610Sstevel@tonic-gate 	 * Only the fully enabled version may force load drivers or read
7620Sstevel@tonic-gate 	 * the parent private data from a driver.
7630Sstevel@tonic-gate 	 */
7640Sstevel@tonic-gate 	if ((st->command & (DINFOPRIVDATA | DINFOFORCE)) != 0 &&
7650Sstevel@tonic-gate 	    DI_UNPRIVILEGED_NODE(m)) {
7660Sstevel@tonic-gate 		di_freemem(st);
7670Sstevel@tonic-gate 		(void) di_setstate(st, IOC_IDLE);
7680Sstevel@tonic-gate 		return (EACCES);
7690Sstevel@tonic-gate 	}
7700Sstevel@tonic-gate 
7710Sstevel@tonic-gate 	/* Do we need private data? */
7720Sstevel@tonic-gate 	if (st->command & DINFOPRIVDATA) {
7730Sstevel@tonic-gate 		arg += sizeof (((struct dinfo_io *)(NULL))->root_path);
7740Sstevel@tonic-gate 
7750Sstevel@tonic-gate #ifdef _MULTI_DATAMODEL
7760Sstevel@tonic-gate 		switch (ddi_model_convert_from(mode & FMODELS)) {
7770Sstevel@tonic-gate 		case DDI_MODEL_ILP32: {
7780Sstevel@tonic-gate 			/*
7790Sstevel@tonic-gate 			 * Cannot copy private data from 64-bit kernel
7800Sstevel@tonic-gate 			 * to 32-bit app
7810Sstevel@tonic-gate 			 */
7820Sstevel@tonic-gate 			di_freemem(st);
7830Sstevel@tonic-gate 			(void) di_setstate(st, IOC_IDLE);
7840Sstevel@tonic-gate 			return (EINVAL);
7850Sstevel@tonic-gate 		}
7860Sstevel@tonic-gate 		case DDI_MODEL_NONE:
7870Sstevel@tonic-gate 			if ((off = di_copyformat(off, st, arg, mode)) == 0) {
7880Sstevel@tonic-gate 				di_freemem(st);
7890Sstevel@tonic-gate 				(void) di_setstate(st, IOC_IDLE);
7900Sstevel@tonic-gate 				return (EFAULT);
7910Sstevel@tonic-gate 			}
7920Sstevel@tonic-gate 			break;
7930Sstevel@tonic-gate 		}
7940Sstevel@tonic-gate #else /* !_MULTI_DATAMODEL */
7950Sstevel@tonic-gate 		if ((off = di_copyformat(off, st, arg, mode)) == 0) {
7960Sstevel@tonic-gate 			di_freemem(st);
7970Sstevel@tonic-gate 			(void) di_setstate(st, IOC_IDLE);
7980Sstevel@tonic-gate 			return (EFAULT);
7990Sstevel@tonic-gate 		}
8000Sstevel@tonic-gate #endif /* _MULTI_DATAMODEL */
8010Sstevel@tonic-gate 	}
8020Sstevel@tonic-gate 
8030Sstevel@tonic-gate 	all->top_devinfo = DI_ALIGN(off);
8040Sstevel@tonic-gate 
8050Sstevel@tonic-gate 	/*
8060Sstevel@tonic-gate 	 * For cache lookups we reallocate memory from scratch,
8070Sstevel@tonic-gate 	 * so the value of "all" is no longer valid.
8080Sstevel@tonic-gate 	 */
8090Sstevel@tonic-gate 	all = NULL;
8100Sstevel@tonic-gate 
8110Sstevel@tonic-gate 	if (st->command & DINFOCACHE) {
8120Sstevel@tonic-gate 		*rvalp = di_cache_lookup(st);
8130Sstevel@tonic-gate 	} else if (snapshot_is_cacheable(st)) {
8140Sstevel@tonic-gate 		DI_CACHE_LOCK(di_cache);
8150Sstevel@tonic-gate 		*rvalp = di_cache_update(st);
8160Sstevel@tonic-gate 		DI_CACHE_UNLOCK(di_cache);
817878Sramat 	} else
818878Sramat 		*rvalp = di_snapshot_and_clean(st);
8190Sstevel@tonic-gate 
8200Sstevel@tonic-gate 	if (*rvalp) {
8210Sstevel@tonic-gate 		DI_ALL_PTR(st)->map_size = *rvalp;
8220Sstevel@tonic-gate 		(void) di_setstate(st, IOC_DONE);
8230Sstevel@tonic-gate 	} else {
8240Sstevel@tonic-gate 		di_freemem(st);
8250Sstevel@tonic-gate 		(void) di_setstate(st, IOC_IDLE);
8260Sstevel@tonic-gate 	}
8270Sstevel@tonic-gate 
8280Sstevel@tonic-gate 	return (0);
8290Sstevel@tonic-gate }
8300Sstevel@tonic-gate 
8310Sstevel@tonic-gate /*
8320Sstevel@tonic-gate  * Get a chunk of memory >= size, for the snapshot
8330Sstevel@tonic-gate  */
8340Sstevel@tonic-gate static void
8350Sstevel@tonic-gate di_allocmem(struct di_state *st, size_t size)
8360Sstevel@tonic-gate {
8370Sstevel@tonic-gate 	struct di_mem *mem = kmem_zalloc(sizeof (struct di_mem),
8380Sstevel@tonic-gate 	    KM_SLEEP);
8390Sstevel@tonic-gate 	/*
8400Sstevel@tonic-gate 	 * Round up size to nearest power of 2. If it is less
8410Sstevel@tonic-gate 	 * than st->mem_size, set it to st->mem_size (i.e.,
8420Sstevel@tonic-gate 	 * the mem_size is doubled every time) to reduce the
8430Sstevel@tonic-gate 	 * number of memory allocations.
8440Sstevel@tonic-gate 	 */
8450Sstevel@tonic-gate 	size_t tmp = 1;
8460Sstevel@tonic-gate 	while (tmp < size) {
8470Sstevel@tonic-gate 		tmp <<= 1;
8480Sstevel@tonic-gate 	}
8490Sstevel@tonic-gate 	size = (tmp > st->mem_size) ? tmp : st->mem_size;
8500Sstevel@tonic-gate 
8510Sstevel@tonic-gate 	mem->buf = ddi_umem_alloc(size, DDI_UMEM_SLEEP, &mem->cook);
8520Sstevel@tonic-gate 	mem->buf_size = size;
8530Sstevel@tonic-gate 
8540Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_allocmem: mem_size=%x\n", st->mem_size));
8550Sstevel@tonic-gate 
8560Sstevel@tonic-gate 	if (st->mem_size == 0) {	/* first chunk */
8570Sstevel@tonic-gate 		st->memlist = mem;
8580Sstevel@tonic-gate 	} else {
8590Sstevel@tonic-gate 		/*
8600Sstevel@tonic-gate 		 * locate end of linked list and add a chunk at the end
8610Sstevel@tonic-gate 		 */
8620Sstevel@tonic-gate 		struct di_mem *dcp = st->memlist;
8630Sstevel@tonic-gate 		while (dcp->next != NULL) {
8640Sstevel@tonic-gate 			dcp = dcp->next;
8650Sstevel@tonic-gate 		}
8660Sstevel@tonic-gate 
8670Sstevel@tonic-gate 		dcp->next = mem;
8680Sstevel@tonic-gate 	}
8690Sstevel@tonic-gate 
8700Sstevel@tonic-gate 	st->mem_size += size;
8710Sstevel@tonic-gate }
8720Sstevel@tonic-gate 
8730Sstevel@tonic-gate /*
8740Sstevel@tonic-gate  * Copy upto bufsiz bytes of the memlist to buf
8750Sstevel@tonic-gate  */
8760Sstevel@tonic-gate static void
8770Sstevel@tonic-gate di_copymem(struct di_state *st, caddr_t buf, size_t bufsiz)
8780Sstevel@tonic-gate {
8790Sstevel@tonic-gate 	struct di_mem *dcp;
8800Sstevel@tonic-gate 	size_t copysz;
8810Sstevel@tonic-gate 
8820Sstevel@tonic-gate 	if (st->mem_size == 0) {
8830Sstevel@tonic-gate 		ASSERT(st->memlist == NULL);
8840Sstevel@tonic-gate 		return;
8850Sstevel@tonic-gate 	}
8860Sstevel@tonic-gate 
8870Sstevel@tonic-gate 	copysz = 0;
8880Sstevel@tonic-gate 	for (dcp = st->memlist; dcp; dcp = dcp->next) {
8890Sstevel@tonic-gate 
8900Sstevel@tonic-gate 		ASSERT(bufsiz > 0);
8910Sstevel@tonic-gate 
8920Sstevel@tonic-gate 		if (bufsiz <= dcp->buf_size)
8930Sstevel@tonic-gate 			copysz = bufsiz;
8940Sstevel@tonic-gate 		else
8950Sstevel@tonic-gate 			copysz = dcp->buf_size;
8960Sstevel@tonic-gate 
8970Sstevel@tonic-gate 		bcopy(dcp->buf, buf, copysz);
8980Sstevel@tonic-gate 
8990Sstevel@tonic-gate 		buf += copysz;
9000Sstevel@tonic-gate 		bufsiz -= copysz;
9010Sstevel@tonic-gate 
9020Sstevel@tonic-gate 		if (bufsiz == 0)
9030Sstevel@tonic-gate 			break;
9040Sstevel@tonic-gate 	}
9050Sstevel@tonic-gate }
9060Sstevel@tonic-gate 
9070Sstevel@tonic-gate /*
9080Sstevel@tonic-gate  * Free all memory for the snapshot
9090Sstevel@tonic-gate  */
9100Sstevel@tonic-gate static void
9110Sstevel@tonic-gate di_freemem(struct di_state *st)
9120Sstevel@tonic-gate {
9130Sstevel@tonic-gate 	struct di_mem *dcp, *tmp;
9140Sstevel@tonic-gate 
9150Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_freemem\n"));
9160Sstevel@tonic-gate 
9170Sstevel@tonic-gate 	if (st->mem_size) {
9180Sstevel@tonic-gate 		dcp = st->memlist;
9190Sstevel@tonic-gate 		while (dcp) {	/* traverse the linked list */
9200Sstevel@tonic-gate 			tmp = dcp;
9210Sstevel@tonic-gate 			dcp = dcp->next;
9220Sstevel@tonic-gate 			ddi_umem_free(tmp->cook);
9230Sstevel@tonic-gate 			kmem_free(tmp, sizeof (struct di_mem));
9240Sstevel@tonic-gate 		}
9250Sstevel@tonic-gate 		st->mem_size = 0;
9260Sstevel@tonic-gate 		st->memlist = NULL;
9270Sstevel@tonic-gate 	}
9280Sstevel@tonic-gate 
9290Sstevel@tonic-gate 	ASSERT(st->mem_size == 0);
9300Sstevel@tonic-gate 	ASSERT(st->memlist == NULL);
9310Sstevel@tonic-gate }
9320Sstevel@tonic-gate 
9330Sstevel@tonic-gate /*
9340Sstevel@tonic-gate  * Copies cached data to the di_state structure.
9350Sstevel@tonic-gate  * Returns:
9360Sstevel@tonic-gate  *	- size of data copied, on SUCCESS
9370Sstevel@tonic-gate  *	- 0 on failure
9380Sstevel@tonic-gate  */
9390Sstevel@tonic-gate static int
9400Sstevel@tonic-gate di_cache2mem(struct di_cache *cache, struct di_state *st)
9410Sstevel@tonic-gate {
9420Sstevel@tonic-gate 	caddr_t	pa;
9430Sstevel@tonic-gate 
9440Sstevel@tonic-gate 	ASSERT(st->mem_size == 0);
9450Sstevel@tonic-gate 	ASSERT(st->memlist == NULL);
9460Sstevel@tonic-gate 	ASSERT(!servicing_interrupt());
9470Sstevel@tonic-gate 	ASSERT(DI_CACHE_LOCKED(*cache));
9480Sstevel@tonic-gate 
9490Sstevel@tonic-gate 	if (cache->cache_size == 0) {
9500Sstevel@tonic-gate 		ASSERT(cache->cache_data == NULL);
9510Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "Empty cache. Skipping copy"));
9520Sstevel@tonic-gate 		return (0);
9530Sstevel@tonic-gate 	}
9540Sstevel@tonic-gate 
9550Sstevel@tonic-gate 	ASSERT(cache->cache_data);
9560Sstevel@tonic-gate 
9570Sstevel@tonic-gate 	di_allocmem(st, cache->cache_size);
9580Sstevel@tonic-gate 
9590Sstevel@tonic-gate 	pa = di_mem_addr(st, 0);
9600Sstevel@tonic-gate 
9610Sstevel@tonic-gate 	ASSERT(pa);
9620Sstevel@tonic-gate 
9630Sstevel@tonic-gate 	/*
9640Sstevel@tonic-gate 	 * Verify that di_allocmem() allocates contiguous memory,
9650Sstevel@tonic-gate 	 * so that it is safe to do straight bcopy()
9660Sstevel@tonic-gate 	 */
9670Sstevel@tonic-gate 	ASSERT(st->memlist != NULL);
9680Sstevel@tonic-gate 	ASSERT(st->memlist->next == NULL);
9690Sstevel@tonic-gate 	bcopy(cache->cache_data, pa, cache->cache_size);
9700Sstevel@tonic-gate 
9710Sstevel@tonic-gate 	return (cache->cache_size);
9720Sstevel@tonic-gate }
9730Sstevel@tonic-gate 
9740Sstevel@tonic-gate /*
9750Sstevel@tonic-gate  * Copies a snapshot from di_state to the cache
9760Sstevel@tonic-gate  * Returns:
9770Sstevel@tonic-gate  *	- 0 on failure
9780Sstevel@tonic-gate  *	- size of copied data on success
9790Sstevel@tonic-gate  */
9803133Sjg static size_t
9810Sstevel@tonic-gate di_mem2cache(struct di_state *st, struct di_cache *cache)
9820Sstevel@tonic-gate {
9830Sstevel@tonic-gate 	size_t map_size;
9840Sstevel@tonic-gate 
9850Sstevel@tonic-gate 	ASSERT(cache->cache_size == 0);
9860Sstevel@tonic-gate 	ASSERT(cache->cache_data == NULL);
9870Sstevel@tonic-gate 	ASSERT(!servicing_interrupt());
9880Sstevel@tonic-gate 	ASSERT(DI_CACHE_LOCKED(*cache));
9890Sstevel@tonic-gate 
9900Sstevel@tonic-gate 	if (st->mem_size == 0) {
9910Sstevel@tonic-gate 		ASSERT(st->memlist == NULL);
9920Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "Empty memlist. Skipping copy"));
9930Sstevel@tonic-gate 		return (0);
9940Sstevel@tonic-gate 	}
9950Sstevel@tonic-gate 
9960Sstevel@tonic-gate 	ASSERT(st->memlist);
9970Sstevel@tonic-gate 
9980Sstevel@tonic-gate 	/*
9990Sstevel@tonic-gate 	 * The size of the memory list may be much larger than the
10000Sstevel@tonic-gate 	 * size of valid data (map_size). Cache only the valid data
10010Sstevel@tonic-gate 	 */
10020Sstevel@tonic-gate 	map_size = DI_ALL_PTR(st)->map_size;
10030Sstevel@tonic-gate 	if (map_size == 0 || map_size < sizeof (struct di_all) ||
10040Sstevel@tonic-gate 	    map_size > st->mem_size) {
10050Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "cannot cache: bad size: 0x%x", map_size));
10060Sstevel@tonic-gate 		return (0);
10070Sstevel@tonic-gate 	}
10080Sstevel@tonic-gate 
10090Sstevel@tonic-gate 	cache->cache_data = kmem_alloc(map_size, KM_SLEEP);
10100Sstevel@tonic-gate 	cache->cache_size = map_size;
10110Sstevel@tonic-gate 	di_copymem(st, cache->cache_data, cache->cache_size);
10120Sstevel@tonic-gate 
10130Sstevel@tonic-gate 	return (map_size);
10140Sstevel@tonic-gate }
10150Sstevel@tonic-gate 
10160Sstevel@tonic-gate /*
10170Sstevel@tonic-gate  * Make sure there is at least "size" bytes memory left before
10180Sstevel@tonic-gate  * going on. Otherwise, start on a new chunk.
10190Sstevel@tonic-gate  */
10200Sstevel@tonic-gate static di_off_t
10210Sstevel@tonic-gate di_checkmem(struct di_state *st, di_off_t off, size_t size)
10220Sstevel@tonic-gate {
10230Sstevel@tonic-gate 	dcmn_err3((CE_CONT, "di_checkmem: off=%x size=%x\n",
10244870Sjg 	    off, (int)size));
10250Sstevel@tonic-gate 
10260Sstevel@tonic-gate 	/*
10270Sstevel@tonic-gate 	 * di_checkmem() shouldn't be called with a size of zero.
10280Sstevel@tonic-gate 	 * But in case it is, we want to make sure we return a valid
10290Sstevel@tonic-gate 	 * offset within the memlist and not an offset that points us
10300Sstevel@tonic-gate 	 * at the end of the memlist.
10310Sstevel@tonic-gate 	 */
10320Sstevel@tonic-gate 	if (size == 0) {
10330Sstevel@tonic-gate 		dcmn_err((CE_WARN, "di_checkmem: invalid zero size used"));
10340Sstevel@tonic-gate 		size = 1;
10350Sstevel@tonic-gate 	}
10360Sstevel@tonic-gate 
10370Sstevel@tonic-gate 	off = DI_ALIGN(off);
10380Sstevel@tonic-gate 	if ((st->mem_size - off) < size) {
10390Sstevel@tonic-gate 		off = st->mem_size;
10400Sstevel@tonic-gate 		di_allocmem(st, size);
10410Sstevel@tonic-gate 	}
10420Sstevel@tonic-gate 
10430Sstevel@tonic-gate 	return (off);
10440Sstevel@tonic-gate }
10450Sstevel@tonic-gate 
10460Sstevel@tonic-gate /*
10470Sstevel@tonic-gate  * Copy the private data format from ioctl arg.
10480Sstevel@tonic-gate  * On success, the ending offset is returned. On error 0 is returned.
10490Sstevel@tonic-gate  */
10500Sstevel@tonic-gate static di_off_t
10510Sstevel@tonic-gate di_copyformat(di_off_t off, struct di_state *st, intptr_t arg, int mode)
10520Sstevel@tonic-gate {
10530Sstevel@tonic-gate 	di_off_t size;
10540Sstevel@tonic-gate 	struct di_priv_data *priv;
10553133Sjg 	struct di_all *all = (struct di_all *)(intptr_t)di_mem_addr(st, 0);
10560Sstevel@tonic-gate 
10570Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_copyformat: off=%x, arg=%p mode=%x\n",
10584870Sjg 	    off, (void *)arg, mode));
10590Sstevel@tonic-gate 
10600Sstevel@tonic-gate 	/*
10610Sstevel@tonic-gate 	 * Copyin data and check version.
10620Sstevel@tonic-gate 	 * We only handle private data version 0.
10630Sstevel@tonic-gate 	 */
10640Sstevel@tonic-gate 	priv = kmem_alloc(sizeof (struct di_priv_data), KM_SLEEP);
10650Sstevel@tonic-gate 	if ((ddi_copyin((void *)arg, priv, sizeof (struct di_priv_data),
10660Sstevel@tonic-gate 	    mode) != 0) || (priv->version != DI_PRIVDATA_VERSION_0)) {
10670Sstevel@tonic-gate 		kmem_free(priv, sizeof (struct di_priv_data));
10680Sstevel@tonic-gate 		return (0);
10690Sstevel@tonic-gate 	}
10700Sstevel@tonic-gate 
10710Sstevel@tonic-gate 	/*
10720Sstevel@tonic-gate 	 * Save di_priv_data copied from userland in snapshot.
10730Sstevel@tonic-gate 	 */
10740Sstevel@tonic-gate 	all->pd_version = priv->version;
10750Sstevel@tonic-gate 	all->n_ppdata = priv->n_parent;
10760Sstevel@tonic-gate 	all->n_dpdata = priv->n_driver;
10770Sstevel@tonic-gate 
10780Sstevel@tonic-gate 	/*
10790Sstevel@tonic-gate 	 * copyin private data format, modify offset accordingly
10800Sstevel@tonic-gate 	 */
10810Sstevel@tonic-gate 	if (all->n_ppdata) {	/* parent private data format */
10820Sstevel@tonic-gate 		/*
10830Sstevel@tonic-gate 		 * check memory
10840Sstevel@tonic-gate 		 */
10850Sstevel@tonic-gate 		size = all->n_ppdata * sizeof (struct di_priv_format);
10860Sstevel@tonic-gate 		off = di_checkmem(st, off, size);
10870Sstevel@tonic-gate 		all->ppdata_format = off;
10880Sstevel@tonic-gate 		if (ddi_copyin(priv->parent, di_mem_addr(st, off), size,
10890Sstevel@tonic-gate 		    mode) != 0) {
10900Sstevel@tonic-gate 			kmem_free(priv, sizeof (struct di_priv_data));
10910Sstevel@tonic-gate 			return (0);
10920Sstevel@tonic-gate 		}
10930Sstevel@tonic-gate 
10940Sstevel@tonic-gate 		off += size;
10950Sstevel@tonic-gate 	}
10960Sstevel@tonic-gate 
10970Sstevel@tonic-gate 	if (all->n_dpdata) {	/* driver private data format */
10980Sstevel@tonic-gate 		/*
10990Sstevel@tonic-gate 		 * check memory
11000Sstevel@tonic-gate 		 */
11010Sstevel@tonic-gate 		size = all->n_dpdata * sizeof (struct di_priv_format);
11020Sstevel@tonic-gate 		off = di_checkmem(st, off, size);
11030Sstevel@tonic-gate 		all->dpdata_format = off;
11040Sstevel@tonic-gate 		if (ddi_copyin(priv->driver, di_mem_addr(st, off), size,
11050Sstevel@tonic-gate 		    mode) != 0) {
11060Sstevel@tonic-gate 			kmem_free(priv, sizeof (struct di_priv_data));
11070Sstevel@tonic-gate 			return (0);
11080Sstevel@tonic-gate 		}
11090Sstevel@tonic-gate 
11100Sstevel@tonic-gate 		off += size;
11110Sstevel@tonic-gate 	}
11120Sstevel@tonic-gate 
11130Sstevel@tonic-gate 	kmem_free(priv, sizeof (struct di_priv_data));
11140Sstevel@tonic-gate 	return (off);
11150Sstevel@tonic-gate }
11160Sstevel@tonic-gate 
11170Sstevel@tonic-gate /*
11180Sstevel@tonic-gate  * Return the real address based on the offset (off) within snapshot
11190Sstevel@tonic-gate  */
11200Sstevel@tonic-gate static caddr_t
11210Sstevel@tonic-gate di_mem_addr(struct di_state *st, di_off_t off)
11220Sstevel@tonic-gate {
11230Sstevel@tonic-gate 	struct di_mem *dcp = st->memlist;
11240Sstevel@tonic-gate 
11250Sstevel@tonic-gate 	dcmn_err3((CE_CONT, "di_mem_addr: dcp=%p off=%x\n",
11264870Sjg 	    (void *)dcp, off));
11270Sstevel@tonic-gate 
11280Sstevel@tonic-gate 	ASSERT(off < st->mem_size);
11290Sstevel@tonic-gate 
11300Sstevel@tonic-gate 	while (off >= dcp->buf_size) {
11310Sstevel@tonic-gate 		off -= dcp->buf_size;
11320Sstevel@tonic-gate 		dcp = dcp->next;
11330Sstevel@tonic-gate 	}
11340Sstevel@tonic-gate 
11350Sstevel@tonic-gate 	dcmn_err3((CE_CONT, "di_mem_addr: new off=%x, return = %p\n",
11364870Sjg 	    off, (void *)(dcp->buf + off)));
11370Sstevel@tonic-gate 
11380Sstevel@tonic-gate 	return (dcp->buf + off);
11390Sstevel@tonic-gate }
11400Sstevel@tonic-gate 
11410Sstevel@tonic-gate /*
11420Sstevel@tonic-gate  * Ideally we would use the whole key to derive the hash
11430Sstevel@tonic-gate  * value. However, the probability that two keys will
11440Sstevel@tonic-gate  * have the same dip (or pip) is very low, so
11450Sstevel@tonic-gate  * hashing by dip (or pip) pointer should suffice.
11460Sstevel@tonic-gate  */
11470Sstevel@tonic-gate static uint_t
11480Sstevel@tonic-gate di_hash_byptr(void *arg, mod_hash_key_t key)
11490Sstevel@tonic-gate {
11500Sstevel@tonic-gate 	struct di_key *dik = key;
11510Sstevel@tonic-gate 	size_t rshift;
11520Sstevel@tonic-gate 	void *ptr;
11530Sstevel@tonic-gate 
11540Sstevel@tonic-gate 	ASSERT(arg == NULL);
11550Sstevel@tonic-gate 
11560Sstevel@tonic-gate 	switch (dik->k_type) {
11570Sstevel@tonic-gate 	case DI_DKEY:
11580Sstevel@tonic-gate 		ptr = dik->k_u.dkey.dk_dip;
11590Sstevel@tonic-gate 		rshift = highbit(sizeof (struct dev_info));
11600Sstevel@tonic-gate 		break;
11610Sstevel@tonic-gate 	case DI_PKEY:
11620Sstevel@tonic-gate 		ptr = dik->k_u.pkey.pk_pip;
11630Sstevel@tonic-gate 		rshift = highbit(sizeof (struct mdi_pathinfo));
11640Sstevel@tonic-gate 		break;
11650Sstevel@tonic-gate 	default:
11660Sstevel@tonic-gate 		panic("devinfo: unknown key type");
11670Sstevel@tonic-gate 		/*NOTREACHED*/
11680Sstevel@tonic-gate 	}
11690Sstevel@tonic-gate 	return (mod_hash_byptr((void *)rshift, ptr));
11700Sstevel@tonic-gate }
11710Sstevel@tonic-gate 
11720Sstevel@tonic-gate static void
11730Sstevel@tonic-gate di_key_dtor(mod_hash_key_t key)
11740Sstevel@tonic-gate {
11750Sstevel@tonic-gate 	char		*path_addr;
11760Sstevel@tonic-gate 	struct di_key	*dik = key;
11770Sstevel@tonic-gate 
11780Sstevel@tonic-gate 	switch (dik->k_type) {
11790Sstevel@tonic-gate 	case DI_DKEY:
11800Sstevel@tonic-gate 		break;
11810Sstevel@tonic-gate 	case DI_PKEY:
11820Sstevel@tonic-gate 		path_addr = dik->k_u.pkey.pk_path_addr;
11830Sstevel@tonic-gate 		if (path_addr)
11840Sstevel@tonic-gate 			kmem_free(path_addr, strlen(path_addr) + 1);
11850Sstevel@tonic-gate 		break;
11860Sstevel@tonic-gate 	default:
11870Sstevel@tonic-gate 		panic("devinfo: unknown key type");
11880Sstevel@tonic-gate 		/*NOTREACHED*/
11890Sstevel@tonic-gate 	}
11900Sstevel@tonic-gate 
11910Sstevel@tonic-gate 	kmem_free(dik, sizeof (struct di_key));
11920Sstevel@tonic-gate }
11930Sstevel@tonic-gate 
11940Sstevel@tonic-gate static int
11950Sstevel@tonic-gate di_dkey_cmp(struct di_dkey *dk1, struct di_dkey *dk2)
11960Sstevel@tonic-gate {
11970Sstevel@tonic-gate 	if (dk1->dk_dip !=  dk2->dk_dip)
11980Sstevel@tonic-gate 		return (dk1->dk_dip > dk2->dk_dip ? 1 : -1);
11990Sstevel@tonic-gate 
12003133Sjg 	if (dk1->dk_major != (major_t)-1 && dk2->dk_major != (major_t)-1) {
12010Sstevel@tonic-gate 		if (dk1->dk_major !=  dk2->dk_major)
12020Sstevel@tonic-gate 			return (dk1->dk_major > dk2->dk_major ? 1 : -1);
12030Sstevel@tonic-gate 
12040Sstevel@tonic-gate 		if (dk1->dk_inst !=  dk2->dk_inst)
12050Sstevel@tonic-gate 			return (dk1->dk_inst > dk2->dk_inst ? 1 : -1);
12060Sstevel@tonic-gate 	}
12070Sstevel@tonic-gate 
12080Sstevel@tonic-gate 	if (dk1->dk_nodeid != dk2->dk_nodeid)
12090Sstevel@tonic-gate 		return (dk1->dk_nodeid > dk2->dk_nodeid ? 1 : -1);
12100Sstevel@tonic-gate 
12110Sstevel@tonic-gate 	return (0);
12120Sstevel@tonic-gate }
12130Sstevel@tonic-gate 
12140Sstevel@tonic-gate static int
12150Sstevel@tonic-gate di_pkey_cmp(struct di_pkey *pk1, struct di_pkey *pk2)
12160Sstevel@tonic-gate {
12170Sstevel@tonic-gate 	char *p1, *p2;
12180Sstevel@tonic-gate 	int rv;
12190Sstevel@tonic-gate 
12200Sstevel@tonic-gate 	if (pk1->pk_pip !=  pk2->pk_pip)
12210Sstevel@tonic-gate 		return (pk1->pk_pip > pk2->pk_pip ? 1 : -1);
12220Sstevel@tonic-gate 
12230Sstevel@tonic-gate 	p1 = pk1->pk_path_addr;
12240Sstevel@tonic-gate 	p2 = pk2->pk_path_addr;
12250Sstevel@tonic-gate 
12260Sstevel@tonic-gate 	p1 = p1 ? p1 : "";
12270Sstevel@tonic-gate 	p2 = p2 ? p2 : "";
12280Sstevel@tonic-gate 
12290Sstevel@tonic-gate 	rv = strcmp(p1, p2);
12300Sstevel@tonic-gate 	if (rv)
12310Sstevel@tonic-gate 		return (rv > 0  ? 1 : -1);
12320Sstevel@tonic-gate 
12330Sstevel@tonic-gate 	if (pk1->pk_client !=  pk2->pk_client)
12340Sstevel@tonic-gate 		return (pk1->pk_client > pk2->pk_client ? 1 : -1);
12350Sstevel@tonic-gate 
12360Sstevel@tonic-gate 	if (pk1->pk_phci !=  pk2->pk_phci)
12370Sstevel@tonic-gate 		return (pk1->pk_phci > pk2->pk_phci ? 1 : -1);
12380Sstevel@tonic-gate 
12390Sstevel@tonic-gate 	return (0);
12400Sstevel@tonic-gate }
12410Sstevel@tonic-gate 
12420Sstevel@tonic-gate static int
12430Sstevel@tonic-gate di_key_cmp(mod_hash_key_t key1, mod_hash_key_t key2)
12440Sstevel@tonic-gate {
12450Sstevel@tonic-gate 	struct di_key *dik1, *dik2;
12460Sstevel@tonic-gate 
12470Sstevel@tonic-gate 	dik1 = key1;
12480Sstevel@tonic-gate 	dik2 = key2;
12490Sstevel@tonic-gate 
12500Sstevel@tonic-gate 	if (dik1->k_type != dik2->k_type) {
12510Sstevel@tonic-gate 		panic("devinfo: mismatched keys");
12520Sstevel@tonic-gate 		/*NOTREACHED*/
12530Sstevel@tonic-gate 	}
12540Sstevel@tonic-gate 
12550Sstevel@tonic-gate 	switch (dik1->k_type) {
12560Sstevel@tonic-gate 	case DI_DKEY:
12570Sstevel@tonic-gate 		return (di_dkey_cmp(&(dik1->k_u.dkey), &(dik2->k_u.dkey)));
12580Sstevel@tonic-gate 	case DI_PKEY:
12590Sstevel@tonic-gate 		return (di_pkey_cmp(&(dik1->k_u.pkey), &(dik2->k_u.pkey)));
12600Sstevel@tonic-gate 	default:
12610Sstevel@tonic-gate 		panic("devinfo: unknown key type");
12620Sstevel@tonic-gate 		/*NOTREACHED*/
12630Sstevel@tonic-gate 	}
12640Sstevel@tonic-gate }
12650Sstevel@tonic-gate 
12660Sstevel@tonic-gate /*
12670Sstevel@tonic-gate  * This is the main function that takes a snapshot
12680Sstevel@tonic-gate  */
12690Sstevel@tonic-gate static di_off_t
12700Sstevel@tonic-gate di_snapshot(struct di_state *st)
12710Sstevel@tonic-gate {
12720Sstevel@tonic-gate 	di_off_t off;
12730Sstevel@tonic-gate 	struct di_all *all;
12740Sstevel@tonic-gate 	dev_info_t *rootnode;
12750Sstevel@tonic-gate 	char buf[80];
1276643Scth 	int plen;
1277643Scth 	char *path;
1278643Scth 	vnode_t *vp;
12790Sstevel@tonic-gate 
12803133Sjg 	all = (struct di_all *)(intptr_t)di_mem_addr(st, 0);
12810Sstevel@tonic-gate 	dcmn_err((CE_CONT, "Taking a snapshot of devinfo tree...\n"));
12820Sstevel@tonic-gate 
12830Sstevel@tonic-gate 	/*
1284643Scth 	 * Verify path before entrusting it to e_ddi_hold_devi_by_path because
1285643Scth 	 * some platforms have OBP bugs where executing the NDI_PROMNAME code
1286643Scth 	 * path against an invalid path results in panic.  The lookupnameat
1287643Scth 	 * is done relative to rootdir without a leading '/' on "devices/"
1288643Scth 	 * to force the lookup to occur in the global zone.
1289643Scth 	 */
1290643Scth 	plen = strlen("devices/") + strlen(all->root_path) + 1;
1291643Scth 	path = kmem_alloc(plen, KM_SLEEP);
1292643Scth 	(void) snprintf(path, plen, "devices/%s", all->root_path);
1293643Scth 	if (lookupnameat(path, UIO_SYSSPACE, FOLLOW, NULLVPP, &vp, rootdir)) {
1294643Scth 		dcmn_err((CE_CONT, "Devinfo node %s not found\n",
1295643Scth 		    all->root_path));
1296643Scth 		kmem_free(path, plen);
1297643Scth 		return (0);
1298643Scth 	}
1299643Scth 	kmem_free(path, plen);
1300643Scth 	VN_RELE(vp);
1301643Scth 
1302643Scth 	/*
13030Sstevel@tonic-gate 	 * Hold the devinfo node referred by the path.
13040Sstevel@tonic-gate 	 */
13050Sstevel@tonic-gate 	rootnode = e_ddi_hold_devi_by_path(all->root_path, 0);
13060Sstevel@tonic-gate 	if (rootnode == NULL) {
13070Sstevel@tonic-gate 		dcmn_err((CE_CONT, "Devinfo node %s not found\n",
13080Sstevel@tonic-gate 		    all->root_path));
13090Sstevel@tonic-gate 		return (0);
13100Sstevel@tonic-gate 	}
13110Sstevel@tonic-gate 
13120Sstevel@tonic-gate 	(void) snprintf(buf, sizeof (buf),
13130Sstevel@tonic-gate 	    "devinfo registered dips (statep=%p)", (void *)st);
13140Sstevel@tonic-gate 
13150Sstevel@tonic-gate 	st->reg_dip_hash = mod_hash_create_extended(buf, 64,
13160Sstevel@tonic-gate 	    di_key_dtor, mod_hash_null_valdtor, di_hash_byptr,
13170Sstevel@tonic-gate 	    NULL, di_key_cmp, KM_SLEEP);
13180Sstevel@tonic-gate 
13190Sstevel@tonic-gate 
13200Sstevel@tonic-gate 	(void) snprintf(buf, sizeof (buf),
13210Sstevel@tonic-gate 	    "devinfo registered pips (statep=%p)", (void *)st);
13220Sstevel@tonic-gate 
13230Sstevel@tonic-gate 	st->reg_pip_hash = mod_hash_create_extended(buf, 64,
13240Sstevel@tonic-gate 	    di_key_dtor, mod_hash_null_valdtor, di_hash_byptr,
13250Sstevel@tonic-gate 	    NULL, di_key_cmp, KM_SLEEP);
13260Sstevel@tonic-gate 
13270Sstevel@tonic-gate 	/*
13280Sstevel@tonic-gate 	 * copy the device tree
13290Sstevel@tonic-gate 	 */
13300Sstevel@tonic-gate 	off = di_copytree(DEVI(rootnode), &all->top_devinfo, st);
13310Sstevel@tonic-gate 
1332893Srs135747 	if (DINFOPATH & st->command) {
1333893Srs135747 		mdi_walk_vhcis(build_vhci_list, st);
1334893Srs135747 	}
1335893Srs135747 
13360Sstevel@tonic-gate 	ddi_release_devi(rootnode);
13370Sstevel@tonic-gate 
13380Sstevel@tonic-gate 	/*
13390Sstevel@tonic-gate 	 * copy the devnames array
13400Sstevel@tonic-gate 	 */
13410Sstevel@tonic-gate 	all->devnames = off;
13420Sstevel@tonic-gate 	off = di_copydevnm(&all->devnames, st);
13430Sstevel@tonic-gate 
13440Sstevel@tonic-gate 
13450Sstevel@tonic-gate 	/* initialize the hash tables */
13460Sstevel@tonic-gate 	st->lnode_count = 0;
13470Sstevel@tonic-gate 	st->link_count = 0;
13480Sstevel@tonic-gate 
13490Sstevel@tonic-gate 	if (DINFOLYR & st->command) {
13500Sstevel@tonic-gate 		off = di_getlink_data(off, st);
13510Sstevel@tonic-gate 	}
13520Sstevel@tonic-gate 
13530Sstevel@tonic-gate 	/*
13540Sstevel@tonic-gate 	 * Free up hash tables
13550Sstevel@tonic-gate 	 */
13560Sstevel@tonic-gate 	mod_hash_destroy_hash(st->reg_dip_hash);
13570Sstevel@tonic-gate 	mod_hash_destroy_hash(st->reg_pip_hash);
13580Sstevel@tonic-gate 
13590Sstevel@tonic-gate 	/*
13600Sstevel@tonic-gate 	 * Record the timestamp now that we are done with snapshot.
13610Sstevel@tonic-gate 	 *
13620Sstevel@tonic-gate 	 * We compute the checksum later and then only if we cache
13630Sstevel@tonic-gate 	 * the snapshot, since checksumming adds some overhead.
13640Sstevel@tonic-gate 	 * The checksum is checked later if we read the cache file.
13650Sstevel@tonic-gate 	 * from disk.
13660Sstevel@tonic-gate 	 *
13670Sstevel@tonic-gate 	 * Set checksum field to 0 as CRC is calculated with that
13680Sstevel@tonic-gate 	 * field set to 0.
13690Sstevel@tonic-gate 	 */
13700Sstevel@tonic-gate 	all->snapshot_time = ddi_get_time();
13710Sstevel@tonic-gate 	all->cache_checksum = 0;
13720Sstevel@tonic-gate 
13733133Sjg 	ASSERT(all->snapshot_time != 0);
13743133Sjg 
13750Sstevel@tonic-gate 	return (off);
13760Sstevel@tonic-gate }
13770Sstevel@tonic-gate 
13780Sstevel@tonic-gate /*
1379878Sramat  * Take a snapshot and clean /etc/devices files if DINFOCLEANUP is set
1380878Sramat  */
1381878Sramat static di_off_t
1382878Sramat di_snapshot_and_clean(struct di_state *st)
1383878Sramat {
1384893Srs135747 	di_off_t	off;
1385878Sramat 
1386878Sramat 	modunload_disable();
1387878Sramat 	off = di_snapshot(st);
1388878Sramat 	if (off != 0 && (st->command & DINFOCLEANUP)) {
1389878Sramat 		ASSERT(DEVICES_FILES_CLEANABLE(st));
1390878Sramat 		/*
1391878Sramat 		 * Cleanup /etc/devices files:
1392878Sramat 		 * In order to accurately account for the system configuration
1393878Sramat 		 * in /etc/devices files, the appropriate drivers must be
1394878Sramat 		 * fully configured before the cleanup starts.
1395878Sramat 		 * So enable modunload only after the cleanup.
1396878Sramat 		 */
1397878Sramat 		i_ddi_clean_devices_files();
13984870Sjg 		/*
13994870Sjg 		 * Remove backing store nodes for unused devices,
14004870Sjg 		 * which retain past permissions customizations
14014870Sjg 		 * and may be undesired for newly configured devices.
14024870Sjg 		 */
14034870Sjg 		dev_devices_cleanup();
1404878Sramat 	}
1405878Sramat 	modunload_enable();
1406878Sramat 
1407878Sramat 	return (off);
1408878Sramat }
1409878Sramat 
1410878Sramat /*
1411893Srs135747  * construct vhci linkage in the snapshot.
1412893Srs135747  */
1413893Srs135747 int
1414893Srs135747 build_vhci_list(dev_info_t *vh_devinfo, void *arg)
1415893Srs135747 {
1416893Srs135747 	struct di_all *all;
1417893Srs135747 	struct di_node *me;
1418893Srs135747 	struct di_state *st;
1419893Srs135747 	di_off_t off;
14203133Sjg 	phci_walk_arg_t pwa;
1421893Srs135747 
1422893Srs135747 	dcmn_err3((CE_CONT, "build_vhci list\n"));
1423893Srs135747 
1424893Srs135747 	dcmn_err3((CE_CONT, "vhci node %s, instance #%d\n",
14254870Sjg 	    DEVI(vh_devinfo)->devi_node_name,
14264870Sjg 	    DEVI(vh_devinfo)->devi_instance));
1427893Srs135747 
1428893Srs135747 	st = (struct di_state *)arg;
1429893Srs135747 	if (di_dip_find(st, vh_devinfo, &off) != 0) {
1430893Srs135747 		dcmn_err((CE_WARN, "di_dip_find error for the given node\n"));
1431893Srs135747 		return (DDI_WALK_TERMINATE);
1432893Srs135747 	}
1433893Srs135747 
1434893Srs135747 	dcmn_err3((CE_CONT, "st->mem_size: %d vh_devinfo off: 0x%x\n",
14354870Sjg 	    st->mem_size, off));
1436893Srs135747 
14373133Sjg 	all = (struct di_all *)(intptr_t)di_mem_addr(st, 0);
1438893Srs135747 	if (all->top_vhci_devinfo == 0) {
1439893Srs135747 		all->top_vhci_devinfo = off;
1440893Srs135747 	} else {
14413133Sjg 		me = (struct di_node *)
14423133Sjg 		    (intptr_t)di_mem_addr(st, all->top_vhci_devinfo);
1443893Srs135747 
1444893Srs135747 		while (me->next_vhci != 0) {
14453133Sjg 			me = (struct di_node *)
14463133Sjg 			    (intptr_t)di_mem_addr(st, me->next_vhci);
1447893Srs135747 		}
1448893Srs135747 
1449893Srs135747 		me->next_vhci = off;
1450893Srs135747 	}
1451893Srs135747 
1452893Srs135747 	pwa.off = off;
1453893Srs135747 	pwa.st = st;
1454893Srs135747 	mdi_vhci_walk_phcis(vh_devinfo, build_phci_list, &pwa);
1455893Srs135747 
1456893Srs135747 	return (DDI_WALK_CONTINUE);
1457893Srs135747 }
1458893Srs135747 
1459893Srs135747 /*
1460893Srs135747  * construct phci linkage for the given vhci in the snapshot.
1461893Srs135747  */
1462893Srs135747 int
1463893Srs135747 build_phci_list(dev_info_t *ph_devinfo, void *arg)
1464893Srs135747 {
1465893Srs135747 	struct di_node *vh_di_node;
1466893Srs135747 	struct di_node *me;
14673133Sjg 	phci_walk_arg_t *pwa;
1468893Srs135747 	di_off_t off;
1469893Srs135747 
14703133Sjg 	pwa = (phci_walk_arg_t *)arg;
1471893Srs135747 
1472893Srs135747 	dcmn_err3((CE_CONT, "build_phci list for vhci at offset: 0x%x\n",
14734870Sjg 	    pwa->off));
1474893Srs135747 
14753133Sjg 	vh_di_node = (struct di_node *)(intptr_t)di_mem_addr(pwa->st, pwa->off);
1476893Srs135747 
1477893Srs135747 	if (di_dip_find(pwa->st, ph_devinfo, &off) != 0) {
1478893Srs135747 		dcmn_err((CE_WARN, "di_dip_find error for the given node\n"));
1479893Srs135747 		return (DDI_WALK_TERMINATE);
1480893Srs135747 	}
1481893Srs135747 
1482893Srs135747 	dcmn_err3((CE_CONT, "phci node %s, instance #%d, at offset 0x%x\n",
14834870Sjg 	    DEVI(ph_devinfo)->devi_node_name,
14844870Sjg 	    DEVI(ph_devinfo)->devi_instance, off));
1485893Srs135747 
1486893Srs135747 	if (vh_di_node->top_phci == 0) {
1487893Srs135747 		vh_di_node->top_phci = off;
1488893Srs135747 		return (DDI_WALK_CONTINUE);
1489893Srs135747 	}
1490893Srs135747 
14913133Sjg 	me = (struct di_node *)
14923133Sjg 	    (intptr_t)di_mem_addr(pwa->st, vh_di_node->top_phci);
1493893Srs135747 
1494893Srs135747 	while (me->next_phci != 0) {
14953133Sjg 		me = (struct di_node *)
14963133Sjg 		    (intptr_t)di_mem_addr(pwa->st, me->next_phci);
1497893Srs135747 	}
1498893Srs135747 	me->next_phci = off;
1499893Srs135747 
1500893Srs135747 	return (DDI_WALK_CONTINUE);
1501893Srs135747 }
1502893Srs135747 
1503893Srs135747 /*
15040Sstevel@tonic-gate  * Assumes all devinfo nodes in device tree have been snapshotted
15050Sstevel@tonic-gate  */
15060Sstevel@tonic-gate static void
15070Sstevel@tonic-gate snap_driver_list(struct di_state *st, struct devnames *dnp, di_off_t *poff_p)
15080Sstevel@tonic-gate {
15090Sstevel@tonic-gate 	struct dev_info *node;
15100Sstevel@tonic-gate 	struct di_node *me;
15110Sstevel@tonic-gate 	di_off_t off;
15120Sstevel@tonic-gate 
15130Sstevel@tonic-gate 	ASSERT(mutex_owned(&dnp->dn_lock));
15140Sstevel@tonic-gate 
15150Sstevel@tonic-gate 	node = DEVI(dnp->dn_head);
15160Sstevel@tonic-gate 	for (; node; node = node->devi_next) {
15170Sstevel@tonic-gate 		if (di_dip_find(st, (dev_info_t *)node, &off) != 0)
15180Sstevel@tonic-gate 			continue;
15190Sstevel@tonic-gate 
15200Sstevel@tonic-gate 		ASSERT(off > 0);
15213133Sjg 		me = (struct di_node *)(intptr_t)di_mem_addr(st, off);
15220Sstevel@tonic-gate 		ASSERT(me->next == 0 || me->next == -1);
15230Sstevel@tonic-gate 		/*
15240Sstevel@tonic-gate 		 * Only nodes which were BOUND when they were
15250Sstevel@tonic-gate 		 * snapshotted will be added to per-driver list.
15260Sstevel@tonic-gate 		 */
15270Sstevel@tonic-gate 		if (me->next != -1)
15280Sstevel@tonic-gate 			continue;
15290Sstevel@tonic-gate 
15300Sstevel@tonic-gate 		*poff_p = off;
15310Sstevel@tonic-gate 		poff_p = &me->next;
15320Sstevel@tonic-gate 	}
15330Sstevel@tonic-gate 
15340Sstevel@tonic-gate 	*poff_p = 0;
15350Sstevel@tonic-gate }
15360Sstevel@tonic-gate 
15370Sstevel@tonic-gate /*
15380Sstevel@tonic-gate  * Copy the devnames array, so we have a list of drivers in the snapshot.
15390Sstevel@tonic-gate  * Also makes it possible to locate the per-driver devinfo nodes.
15400Sstevel@tonic-gate  */
15410Sstevel@tonic-gate static di_off_t
15420Sstevel@tonic-gate di_copydevnm(di_off_t *off_p, struct di_state *st)
15430Sstevel@tonic-gate {
15440Sstevel@tonic-gate 	int i;
15450Sstevel@tonic-gate 	di_off_t off;
15460Sstevel@tonic-gate 	size_t size;
15470Sstevel@tonic-gate 	struct di_devnm *dnp;
15480Sstevel@tonic-gate 
15490Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_copydevnm: *off_p = %p\n", (void *)off_p));
15500Sstevel@tonic-gate 
15510Sstevel@tonic-gate 	/*
15520Sstevel@tonic-gate 	 * make sure there is some allocated memory
15530Sstevel@tonic-gate 	 */
15540Sstevel@tonic-gate 	size = devcnt * sizeof (struct di_devnm);
15550Sstevel@tonic-gate 	off = di_checkmem(st, *off_p, size);
15560Sstevel@tonic-gate 	*off_p = off;
15570Sstevel@tonic-gate 
15580Sstevel@tonic-gate 	dcmn_err((CE_CONT, "Start copying devnamesp[%d] at offset 0x%x\n",
15594870Sjg 	    devcnt, off));
15600Sstevel@tonic-gate 
15613133Sjg 	dnp = (struct di_devnm *)(intptr_t)di_mem_addr(st, off);
15620Sstevel@tonic-gate 	off += size;
15630Sstevel@tonic-gate 
15640Sstevel@tonic-gate 	for (i = 0; i < devcnt; i++) {
15650Sstevel@tonic-gate 		if (devnamesp[i].dn_name == NULL) {
15660Sstevel@tonic-gate 			continue;
15670Sstevel@tonic-gate 		}
15680Sstevel@tonic-gate 
15690Sstevel@tonic-gate 		/*
15700Sstevel@tonic-gate 		 * dn_name is not freed during driver unload or removal.
15710Sstevel@tonic-gate 		 *
15720Sstevel@tonic-gate 		 * There is a race condition when make_devname() changes
15730Sstevel@tonic-gate 		 * dn_name during our strcpy. This should be rare since
15740Sstevel@tonic-gate 		 * only add_drv does this. At any rate, we never had a
15750Sstevel@tonic-gate 		 * problem with ddi_name_to_major(), which should have
15760Sstevel@tonic-gate 		 * the same problem.
15770Sstevel@tonic-gate 		 */
15780Sstevel@tonic-gate 		dcmn_err2((CE_CONT, "di_copydevnm: %s%d, off=%x\n",
15794870Sjg 		    devnamesp[i].dn_name, devnamesp[i].dn_instance,
15804870Sjg 		    off));
15810Sstevel@tonic-gate 
15820Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(devnamesp[i].dn_name) + 1);
15830Sstevel@tonic-gate 		dnp[i].name = off;
15840Sstevel@tonic-gate 		(void) strcpy((char *)di_mem_addr(st, off),
15854870Sjg 		    devnamesp[i].dn_name);
15860Sstevel@tonic-gate 		off += DI_ALIGN(strlen(devnamesp[i].dn_name) + 1);
15870Sstevel@tonic-gate 
15880Sstevel@tonic-gate 		mutex_enter(&devnamesp[i].dn_lock);
15890Sstevel@tonic-gate 
15900Sstevel@tonic-gate 		/*
15910Sstevel@tonic-gate 		 * Snapshot per-driver node list
15920Sstevel@tonic-gate 		 */
15930Sstevel@tonic-gate 		snap_driver_list(st, &devnamesp[i], &dnp[i].head);
15940Sstevel@tonic-gate 
15950Sstevel@tonic-gate 		/*
15960Sstevel@tonic-gate 		 * This is not used by libdevinfo, leave it for now
15970Sstevel@tonic-gate 		 */
15980Sstevel@tonic-gate 		dnp[i].flags = devnamesp[i].dn_flags;
15990Sstevel@tonic-gate 		dnp[i].instance = devnamesp[i].dn_instance;
16000Sstevel@tonic-gate 
16010Sstevel@tonic-gate 		/*
16020Sstevel@tonic-gate 		 * get global properties
16030Sstevel@tonic-gate 		 */
16040Sstevel@tonic-gate 		if ((DINFOPROP & st->command) &&
16050Sstevel@tonic-gate 		    devnamesp[i].dn_global_prop_ptr) {
16060Sstevel@tonic-gate 			dnp[i].global_prop = off;
16070Sstevel@tonic-gate 			off = di_getprop(
16080Sstevel@tonic-gate 			    devnamesp[i].dn_global_prop_ptr->prop_list,
16090Sstevel@tonic-gate 			    &dnp[i].global_prop, st, NULL, DI_PROP_GLB_LIST);
16100Sstevel@tonic-gate 		}
16110Sstevel@tonic-gate 
16120Sstevel@tonic-gate 		/*
16130Sstevel@tonic-gate 		 * Bit encode driver ops: & bus_ops, cb_ops, & cb_ops->cb_str
16140Sstevel@tonic-gate 		 */
16150Sstevel@tonic-gate 		if (CB_DRV_INSTALLED(devopsp[i])) {
16160Sstevel@tonic-gate 			if (devopsp[i]->devo_cb_ops) {
16170Sstevel@tonic-gate 				dnp[i].ops |= DI_CB_OPS;
16180Sstevel@tonic-gate 				if (devopsp[i]->devo_cb_ops->cb_str)
16190Sstevel@tonic-gate 					dnp[i].ops |= DI_STREAM_OPS;
16200Sstevel@tonic-gate 			}
16210Sstevel@tonic-gate 			if (NEXUS_DRV(devopsp[i])) {
16220Sstevel@tonic-gate 				dnp[i].ops |= DI_BUS_OPS;
16230Sstevel@tonic-gate 			}
16240Sstevel@tonic-gate 		}
16250Sstevel@tonic-gate 
16260Sstevel@tonic-gate 		mutex_exit(&devnamesp[i].dn_lock);
16270Sstevel@tonic-gate 	}
16280Sstevel@tonic-gate 
16290Sstevel@tonic-gate 	dcmn_err((CE_CONT, "End copying devnamesp at offset 0x%x\n", off));
16300Sstevel@tonic-gate 
16310Sstevel@tonic-gate 	return (off);
16320Sstevel@tonic-gate }
16330Sstevel@tonic-gate 
16340Sstevel@tonic-gate /*
16350Sstevel@tonic-gate  * Copy the kernel devinfo tree. The tree and the devnames array forms
16360Sstevel@tonic-gate  * the entire snapshot (see also di_copydevnm).
16370Sstevel@tonic-gate  */
16380Sstevel@tonic-gate static di_off_t
16390Sstevel@tonic-gate di_copytree(struct dev_info *root, di_off_t *off_p, struct di_state *st)
16400Sstevel@tonic-gate {
16410Sstevel@tonic-gate 	di_off_t off;
16420Sstevel@tonic-gate 	struct di_stack *dsp = kmem_zalloc(sizeof (struct di_stack), KM_SLEEP);
16430Sstevel@tonic-gate 
16440Sstevel@tonic-gate 	dcmn_err((CE_CONT, "di_copytree: root = %p, *off_p = %x\n",
16454870Sjg 	    (void *)root, *off_p));
16460Sstevel@tonic-gate 
16470Sstevel@tonic-gate 	/* force attach drivers */
16481333Scth 	if (i_ddi_devi_attached((dev_info_t *)root) &&
16490Sstevel@tonic-gate 	    (st->command & DINFOSUBTREE) && (st->command & DINFOFORCE)) {
16500Sstevel@tonic-gate 		(void) ndi_devi_config((dev_info_t *)root,
16510Sstevel@tonic-gate 		    NDI_CONFIG | NDI_DEVI_PERSIST | NDI_NO_EVENT |
16520Sstevel@tonic-gate 		    NDI_DRV_CONF_REPROBE);
16530Sstevel@tonic-gate 	}
16540Sstevel@tonic-gate 
16550Sstevel@tonic-gate 	/*
16560Sstevel@tonic-gate 	 * Push top_devinfo onto a stack
16570Sstevel@tonic-gate 	 *
16580Sstevel@tonic-gate 	 * The stack is necessary to avoid recursion, which can overrun
16590Sstevel@tonic-gate 	 * the kernel stack.
16600Sstevel@tonic-gate 	 */
16610Sstevel@tonic-gate 	PUSH_STACK(dsp, root, off_p);
16620Sstevel@tonic-gate 
16630Sstevel@tonic-gate 	/*
16640Sstevel@tonic-gate 	 * As long as there is a node on the stack, copy the node.
16650Sstevel@tonic-gate 	 * di_copynode() is responsible for pushing and popping
16660Sstevel@tonic-gate 	 * child and sibling nodes on the stack.
16670Sstevel@tonic-gate 	 */
16680Sstevel@tonic-gate 	while (!EMPTY_STACK(dsp)) {
16690Sstevel@tonic-gate 		off = di_copynode(dsp, st);
16700Sstevel@tonic-gate 	}
16710Sstevel@tonic-gate 
16720Sstevel@tonic-gate 	/*
16730Sstevel@tonic-gate 	 * Free the stack structure
16740Sstevel@tonic-gate 	 */
16750Sstevel@tonic-gate 	kmem_free(dsp, sizeof (struct di_stack));
16760Sstevel@tonic-gate 
16770Sstevel@tonic-gate 	return (off);
16780Sstevel@tonic-gate }
16790Sstevel@tonic-gate 
16800Sstevel@tonic-gate /*
16810Sstevel@tonic-gate  * This is the core function, which copies all data associated with a single
16820Sstevel@tonic-gate  * node into the snapshot. The amount of information is determined by the
16830Sstevel@tonic-gate  * ioctl command.
16840Sstevel@tonic-gate  */
16850Sstevel@tonic-gate static di_off_t
16860Sstevel@tonic-gate di_copynode(struct di_stack *dsp, struct di_state *st)
16870Sstevel@tonic-gate {
1688*6640Scth 	di_off_t	off;
1689*6640Scth 	struct di_node	*me;
1690*6640Scth 	struct dev_info	*node;
16910Sstevel@tonic-gate 
16924870Sjg 	dcmn_err2((CE_CONT, "di_copynode: depth = %x\n", dsp->depth));
16930Sstevel@tonic-gate 
16940Sstevel@tonic-gate 	node = TOP_NODE(dsp);
16950Sstevel@tonic-gate 
16960Sstevel@tonic-gate 	ASSERT(node != NULL);
16970Sstevel@tonic-gate 
16980Sstevel@tonic-gate 	/*
16990Sstevel@tonic-gate 	 * check memory usage, and fix offsets accordingly.
17000Sstevel@tonic-gate 	 */
17010Sstevel@tonic-gate 	off = di_checkmem(st, *(TOP_OFFSET(dsp)), sizeof (struct di_node));
17020Sstevel@tonic-gate 	*(TOP_OFFSET(dsp)) = off;
17030Sstevel@tonic-gate 	me = DI_NODE(di_mem_addr(st, off));
17040Sstevel@tonic-gate 
17050Sstevel@tonic-gate 	dcmn_err((CE_CONT, "copy node %s, instance #%d, at offset 0x%x\n",
17064870Sjg 	    node->devi_node_name, node->devi_instance, off));
17070Sstevel@tonic-gate 
17080Sstevel@tonic-gate 	/*
17090Sstevel@tonic-gate 	 * Node parameters:
17100Sstevel@tonic-gate 	 * self		-- offset of current node within snapshot
17110Sstevel@tonic-gate 	 * nodeid	-- pointer to PROM node (tri-valued)
17120Sstevel@tonic-gate 	 * state	-- hot plugging device state
17130Sstevel@tonic-gate 	 * node_state	-- devinfo node state (CF1, CF2, etc.)
17140Sstevel@tonic-gate 	 */
17150Sstevel@tonic-gate 	me->self = off;
17160Sstevel@tonic-gate 	me->instance = node->devi_instance;
17170Sstevel@tonic-gate 	me->nodeid = node->devi_nodeid;
17180Sstevel@tonic-gate 	me->node_class = node->devi_node_class;
17190Sstevel@tonic-gate 	me->attributes = node->devi_node_attributes;
17200Sstevel@tonic-gate 	me->state = node->devi_state;
17214444Svikram 	me->flags = node->devi_flags;
17220Sstevel@tonic-gate 	me->node_state = node->devi_node_state;
1723893Srs135747 	me->next_vhci = 0;		/* Filled up by build_vhci_list. */
1724893Srs135747 	me->top_phci = 0;		/* Filled up by build_phci_list. */
1725893Srs135747 	me->next_phci = 0;		/* Filled up by build_phci_list. */
1726893Srs135747 	me->multipath_component = MULTIPATH_COMPONENT_NONE; /* set default. */
17270Sstevel@tonic-gate 	me->user_private_data = NULL;
17280Sstevel@tonic-gate 
17290Sstevel@tonic-gate 	/*
17300Sstevel@tonic-gate 	 * Get parent's offset in snapshot from the stack
17310Sstevel@tonic-gate 	 * and store it in the current node
17320Sstevel@tonic-gate 	 */
17330Sstevel@tonic-gate 	if (dsp->depth > 1) {
17340Sstevel@tonic-gate 		me->parent = *(PARENT_OFFSET(dsp));
17350Sstevel@tonic-gate 	}
17360Sstevel@tonic-gate 
17370Sstevel@tonic-gate 	/*
17380Sstevel@tonic-gate 	 * Save the offset of this di_node in a hash table.
17390Sstevel@tonic-gate 	 * This is used later to resolve references to this
17400Sstevel@tonic-gate 	 * dip from other parts of the tree (per-driver list,
17410Sstevel@tonic-gate 	 * multipathing linkages, layered usage linkages).
17420Sstevel@tonic-gate 	 * The key used for the hash table is derived from
17430Sstevel@tonic-gate 	 * information in the dip.
17440Sstevel@tonic-gate 	 */
17450Sstevel@tonic-gate 	di_register_dip(st, (dev_info_t *)node, me->self);
17460Sstevel@tonic-gate 
17470Sstevel@tonic-gate 	/*
17480Sstevel@tonic-gate 	 * increment offset
17490Sstevel@tonic-gate 	 */
17500Sstevel@tonic-gate 	off += sizeof (struct di_node);
17510Sstevel@tonic-gate 
17520Sstevel@tonic-gate #ifdef	DEVID_COMPATIBILITY
17530Sstevel@tonic-gate 	/* check for devid as property marker */
1754*6640Scth 	if (node->devi_devid_str) {
17550Sstevel@tonic-gate 		ddi_devid_t	devid;
17560Sstevel@tonic-gate 		int		devid_size;
17570Sstevel@tonic-gate 
17580Sstevel@tonic-gate 		/*
1759*6640Scth 		 * The devid is now represented as a property. For
1760*6640Scth 		 * compatibility with di_devid() interface in libdevinfo we
1761*6640Scth 		 * must return it as a binary structure in the snapshot. When
1762*6640Scth 		 * (if) di_devid() is removed from libdevinfo then the code
1763*6640Scth 		 * related to DEVID_COMPATIBILITY can be removed.
17640Sstevel@tonic-gate 		 */
1765*6640Scth 		if (ddi_devid_str_decode(node->devi_devid_str, &devid, NULL) ==
1766*6640Scth 		    DDI_SUCCESS) {
1767*6640Scth 			devid_size = ddi_devid_sizeof(devid);
1768*6640Scth 			off = di_checkmem(st, off, devid_size);
1769*6640Scth 			me->devid = off;
1770*6640Scth 			bcopy(devid, di_mem_addr(st, off), devid_size);
1771*6640Scth 			off += devid_size;
1772*6640Scth 			ddi_devid_free(devid);
17730Sstevel@tonic-gate 		}
17740Sstevel@tonic-gate 	}
17750Sstevel@tonic-gate #endif	/* DEVID_COMPATIBILITY */
17760Sstevel@tonic-gate 
17770Sstevel@tonic-gate 	if (node->devi_node_name) {
17780Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(node->devi_node_name) + 1);
17790Sstevel@tonic-gate 		me->node_name = off;
17800Sstevel@tonic-gate 		(void) strcpy(di_mem_addr(st, off), node->devi_node_name);
17810Sstevel@tonic-gate 		off += strlen(node->devi_node_name) + 1;
17820Sstevel@tonic-gate 	}
17830Sstevel@tonic-gate 
17840Sstevel@tonic-gate 	if (node->devi_compat_names && (node->devi_compat_length > 1)) {
17850Sstevel@tonic-gate 		off = di_checkmem(st, off, node->devi_compat_length);
17860Sstevel@tonic-gate 		me->compat_names = off;
17870Sstevel@tonic-gate 		me->compat_length = node->devi_compat_length;
17880Sstevel@tonic-gate 		bcopy(node->devi_compat_names, di_mem_addr(st, off),
17894870Sjg 		    node->devi_compat_length);
17900Sstevel@tonic-gate 		off += node->devi_compat_length;
17910Sstevel@tonic-gate 	}
17920Sstevel@tonic-gate 
17930Sstevel@tonic-gate 	if (node->devi_addr) {
17940Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(node->devi_addr) + 1);
17950Sstevel@tonic-gate 		me->address = off;
17960Sstevel@tonic-gate 		(void) strcpy(di_mem_addr(st, off), node->devi_addr);
17970Sstevel@tonic-gate 		off += strlen(node->devi_addr) + 1;
17980Sstevel@tonic-gate 	}
17990Sstevel@tonic-gate 
18000Sstevel@tonic-gate 	if (node->devi_binding_name) {
18010Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(node->devi_binding_name) + 1);
18020Sstevel@tonic-gate 		me->bind_name = off;
18030Sstevel@tonic-gate 		(void) strcpy(di_mem_addr(st, off), node->devi_binding_name);
18040Sstevel@tonic-gate 		off += strlen(node->devi_binding_name) + 1;
18050Sstevel@tonic-gate 	}
18060Sstevel@tonic-gate 
18070Sstevel@tonic-gate 	me->drv_major = node->devi_major;
18080Sstevel@tonic-gate 
18090Sstevel@tonic-gate 	/*
18100Sstevel@tonic-gate 	 * If the dip is BOUND, set the next pointer of the
18110Sstevel@tonic-gate 	 * per-instance list to -1, indicating that it is yet to be resolved.
18120Sstevel@tonic-gate 	 * This will be resolved later in snap_driver_list().
18130Sstevel@tonic-gate 	 */
18140Sstevel@tonic-gate 	if (me->drv_major != -1) {
18150Sstevel@tonic-gate 		me->next = -1;
18160Sstevel@tonic-gate 	} else {
18170Sstevel@tonic-gate 		me->next = 0;
18180Sstevel@tonic-gate 	}
18190Sstevel@tonic-gate 
18200Sstevel@tonic-gate 	/*
18210Sstevel@tonic-gate 	 * An optimization to skip mutex_enter when not needed.
18220Sstevel@tonic-gate 	 */
18230Sstevel@tonic-gate 	if (!((DINFOMINOR | DINFOPROP | DINFOPATH) & st->command)) {
18240Sstevel@tonic-gate 		goto priv_data;
18250Sstevel@tonic-gate 	}
18260Sstevel@tonic-gate 
18270Sstevel@tonic-gate 	/*
18280Sstevel@tonic-gate 	 * Grab current per dev_info node lock to
18290Sstevel@tonic-gate 	 * get minor data and properties.
18300Sstevel@tonic-gate 	 */
18310Sstevel@tonic-gate 	mutex_enter(&(node->devi_lock));
18320Sstevel@tonic-gate 
18330Sstevel@tonic-gate 	if (!(DINFOMINOR & st->command)) {
18340Sstevel@tonic-gate 		goto path;
18350Sstevel@tonic-gate 	}
18360Sstevel@tonic-gate 
18370Sstevel@tonic-gate 	if (node->devi_minor) {		/* minor data */
18380Sstevel@tonic-gate 		me->minor_data = DI_ALIGN(off);
18390Sstevel@tonic-gate 		off = di_getmdata(node->devi_minor, &me->minor_data,
18400Sstevel@tonic-gate 		    me->self, st);
18410Sstevel@tonic-gate 	}
18420Sstevel@tonic-gate 
18430Sstevel@tonic-gate path:
18440Sstevel@tonic-gate 	if (!(DINFOPATH & st->command)) {
18450Sstevel@tonic-gate 		goto property;
18460Sstevel@tonic-gate 	}
18470Sstevel@tonic-gate 
1848893Srs135747 	if (MDI_VHCI(node)) {
1849893Srs135747 		me->multipath_component = MULTIPATH_COMPONENT_VHCI;
1850893Srs135747 	}
1851893Srs135747 
18520Sstevel@tonic-gate 	if (MDI_CLIENT(node)) {
1853893Srs135747 		me->multipath_component = MULTIPATH_COMPONENT_CLIENT;
18540Sstevel@tonic-gate 		me->multipath_client = DI_ALIGN(off);
18550Sstevel@tonic-gate 		off = di_getpath_data((dev_info_t *)node, &me->multipath_client,
18560Sstevel@tonic-gate 		    me->self, st, 1);
18570Sstevel@tonic-gate 		dcmn_err((CE_WARN, "me->multipath_client = %x for node %p "
18580Sstevel@tonic-gate 		    "component type = %d.  off=%d",
18590Sstevel@tonic-gate 		    me->multipath_client,
18600Sstevel@tonic-gate 		    (void *)node, node->devi_mdi_component, off));
18610Sstevel@tonic-gate 	}
18620Sstevel@tonic-gate 
18630Sstevel@tonic-gate 	if (MDI_PHCI(node)) {
1864893Srs135747 		me->multipath_component = MULTIPATH_COMPONENT_PHCI;
18650Sstevel@tonic-gate 		me->multipath_phci = DI_ALIGN(off);
18660Sstevel@tonic-gate 		off = di_getpath_data((dev_info_t *)node, &me->multipath_phci,
18670Sstevel@tonic-gate 		    me->self, st, 0);
18680Sstevel@tonic-gate 		dcmn_err((CE_WARN, "me->multipath_phci = %x for node %p "
18690Sstevel@tonic-gate 		    "component type = %d.  off=%d",
18700Sstevel@tonic-gate 		    me->multipath_phci,
18710Sstevel@tonic-gate 		    (void *)node, node->devi_mdi_component, off));
18720Sstevel@tonic-gate 	}
18730Sstevel@tonic-gate 
18740Sstevel@tonic-gate property:
18750Sstevel@tonic-gate 	if (!(DINFOPROP & st->command)) {
18760Sstevel@tonic-gate 		goto unlock;
18770Sstevel@tonic-gate 	}
18780Sstevel@tonic-gate 
18790Sstevel@tonic-gate 	if (node->devi_drv_prop_ptr) {	/* driver property list */
18800Sstevel@tonic-gate 		me->drv_prop = DI_ALIGN(off);
18810Sstevel@tonic-gate 		off = di_getprop(node->devi_drv_prop_ptr, &me->drv_prop, st,
18824870Sjg 		    node, DI_PROP_DRV_LIST);
18830Sstevel@tonic-gate 	}
18840Sstevel@tonic-gate 
18850Sstevel@tonic-gate 	if (node->devi_sys_prop_ptr) {	/* system property list */
18860Sstevel@tonic-gate 		me->sys_prop = DI_ALIGN(off);
18870Sstevel@tonic-gate 		off = di_getprop(node->devi_sys_prop_ptr, &me->sys_prop, st,
18884870Sjg 		    node, DI_PROP_SYS_LIST);
18890Sstevel@tonic-gate 	}
18900Sstevel@tonic-gate 
18910Sstevel@tonic-gate 	if (node->devi_hw_prop_ptr) {	/* hardware property list */
18920Sstevel@tonic-gate 		me->hw_prop = DI_ALIGN(off);
18930Sstevel@tonic-gate 		off = di_getprop(node->devi_hw_prop_ptr, &me->hw_prop, st,
18944870Sjg 		    node, DI_PROP_HW_LIST);
18950Sstevel@tonic-gate 	}
18960Sstevel@tonic-gate 
18970Sstevel@tonic-gate 	if (node->devi_global_prop_list == NULL) {
18980Sstevel@tonic-gate 		me->glob_prop = (di_off_t)-1;	/* not global property */
18990Sstevel@tonic-gate 	} else {
19000Sstevel@tonic-gate 		/*
19010Sstevel@tonic-gate 		 * Make copy of global property list if this devinfo refers
19020Sstevel@tonic-gate 		 * global properties different from what's on the devnames
19030Sstevel@tonic-gate 		 * array. It can happen if there has been a forced
19040Sstevel@tonic-gate 		 * driver.conf update. See mod_drv(1M).
19050Sstevel@tonic-gate 		 */
19060Sstevel@tonic-gate 		ASSERT(me->drv_major != -1);
19070Sstevel@tonic-gate 		if (node->devi_global_prop_list !=
19080Sstevel@tonic-gate 		    devnamesp[me->drv_major].dn_global_prop_ptr) {
19090Sstevel@tonic-gate 			me->glob_prop = DI_ALIGN(off);
19100Sstevel@tonic-gate 			off = di_getprop(node->devi_global_prop_list->prop_list,
19110Sstevel@tonic-gate 			    &me->glob_prop, st, node, DI_PROP_GLB_LIST);
19120Sstevel@tonic-gate 		}
19130Sstevel@tonic-gate 	}
19140Sstevel@tonic-gate 
19150Sstevel@tonic-gate unlock:
19160Sstevel@tonic-gate 	/*
19170Sstevel@tonic-gate 	 * release current per dev_info node lock
19180Sstevel@tonic-gate 	 */
19190Sstevel@tonic-gate 	mutex_exit(&(node->devi_lock));
19200Sstevel@tonic-gate 
19210Sstevel@tonic-gate priv_data:
19220Sstevel@tonic-gate 	if (!(DINFOPRIVDATA & st->command)) {
19230Sstevel@tonic-gate 		goto pm_info;
19240Sstevel@tonic-gate 	}
19250Sstevel@tonic-gate 
19260Sstevel@tonic-gate 	if (ddi_get_parent_data((dev_info_t *)node) != NULL) {
19270Sstevel@tonic-gate 		me->parent_data = DI_ALIGN(off);
19280Sstevel@tonic-gate 		off = di_getppdata(node, &me->parent_data, st);
19290Sstevel@tonic-gate 	}
19300Sstevel@tonic-gate 
19310Sstevel@tonic-gate 	if (ddi_get_driver_private((dev_info_t *)node) != NULL) {
19320Sstevel@tonic-gate 		me->driver_data = DI_ALIGN(off);
19330Sstevel@tonic-gate 		off = di_getdpdata(node, &me->driver_data, st);
19340Sstevel@tonic-gate 	}
19350Sstevel@tonic-gate 
19360Sstevel@tonic-gate pm_info: /* NOT implemented */
19370Sstevel@tonic-gate 
19380Sstevel@tonic-gate subtree:
19390Sstevel@tonic-gate 	if (!(DINFOSUBTREE & st->command)) {
19400Sstevel@tonic-gate 		POP_STACK(dsp);
19410Sstevel@tonic-gate 		return (DI_ALIGN(off));
19420Sstevel@tonic-gate 	}
19430Sstevel@tonic-gate 
19440Sstevel@tonic-gate child:
19450Sstevel@tonic-gate 	/*
19460Sstevel@tonic-gate 	 * If there is a child--push child onto stack.
19470Sstevel@tonic-gate 	 * Hold the parent busy while doing so.
19480Sstevel@tonic-gate 	 */
19490Sstevel@tonic-gate 	if (node->devi_child) {
19500Sstevel@tonic-gate 		me->child = DI_ALIGN(off);
19510Sstevel@tonic-gate 		PUSH_STACK(dsp, node->devi_child, &me->child);
19520Sstevel@tonic-gate 		return (me->child);
19530Sstevel@tonic-gate 	}
19540Sstevel@tonic-gate 
19550Sstevel@tonic-gate sibling:
19560Sstevel@tonic-gate 	/*
19570Sstevel@tonic-gate 	 * no child node, unroll the stack till a sibling of
19580Sstevel@tonic-gate 	 * a parent node is found or root node is reached
19590Sstevel@tonic-gate 	 */
19600Sstevel@tonic-gate 	POP_STACK(dsp);
19610Sstevel@tonic-gate 	while (!EMPTY_STACK(dsp) && (node->devi_sibling == NULL)) {
19620Sstevel@tonic-gate 		node = TOP_NODE(dsp);
19630Sstevel@tonic-gate 		me = DI_NODE(di_mem_addr(st, *(TOP_OFFSET(dsp))));
19640Sstevel@tonic-gate 		POP_STACK(dsp);
19650Sstevel@tonic-gate 	}
19660Sstevel@tonic-gate 
19670Sstevel@tonic-gate 	if (!EMPTY_STACK(dsp)) {
19680Sstevel@tonic-gate 		/*
19690Sstevel@tonic-gate 		 * a sibling is found, replace top of stack by its sibling
19700Sstevel@tonic-gate 		 */
19710Sstevel@tonic-gate 		me->sibling = DI_ALIGN(off);
19720Sstevel@tonic-gate 		PUSH_STACK(dsp, node->devi_sibling, &me->sibling);
19730Sstevel@tonic-gate 		return (me->sibling);
19740Sstevel@tonic-gate 	}
19750Sstevel@tonic-gate 
19760Sstevel@tonic-gate 	/*
19770Sstevel@tonic-gate 	 * DONE with all nodes
19780Sstevel@tonic-gate 	 */
19790Sstevel@tonic-gate 	return (DI_ALIGN(off));
19800Sstevel@tonic-gate }
19810Sstevel@tonic-gate 
19820Sstevel@tonic-gate static i_lnode_t *
19830Sstevel@tonic-gate i_lnode_alloc(int modid)
19840Sstevel@tonic-gate {
19850Sstevel@tonic-gate 	i_lnode_t	*i_lnode;
19860Sstevel@tonic-gate 
19870Sstevel@tonic-gate 	i_lnode = kmem_zalloc(sizeof (i_lnode_t), KM_SLEEP);
19880Sstevel@tonic-gate 
19890Sstevel@tonic-gate 	ASSERT(modid != -1);
19900Sstevel@tonic-gate 	i_lnode->modid = modid;
19910Sstevel@tonic-gate 
19920Sstevel@tonic-gate 	return (i_lnode);
19930Sstevel@tonic-gate }
19940Sstevel@tonic-gate 
19950Sstevel@tonic-gate static void
19960Sstevel@tonic-gate i_lnode_free(i_lnode_t *i_lnode)
19970Sstevel@tonic-gate {
19980Sstevel@tonic-gate 	kmem_free(i_lnode, sizeof (i_lnode_t));
19990Sstevel@tonic-gate }
20000Sstevel@tonic-gate 
20010Sstevel@tonic-gate static void
20020Sstevel@tonic-gate i_lnode_check_free(i_lnode_t *i_lnode)
20030Sstevel@tonic-gate {
20040Sstevel@tonic-gate 	/* This lnode and its dip must have been snapshotted */
20050Sstevel@tonic-gate 	ASSERT(i_lnode->self > 0);
20060Sstevel@tonic-gate 	ASSERT(i_lnode->di_node->self > 0);
20070Sstevel@tonic-gate 
20080Sstevel@tonic-gate 	/* at least 1 link (in or out) must exist for this lnode */
20090Sstevel@tonic-gate 	ASSERT(i_lnode->link_in || i_lnode->link_out);
20100Sstevel@tonic-gate 
20110Sstevel@tonic-gate 	i_lnode_free(i_lnode);
20120Sstevel@tonic-gate }
20130Sstevel@tonic-gate 
20140Sstevel@tonic-gate static i_link_t *
20150Sstevel@tonic-gate i_link_alloc(int spec_type)
20160Sstevel@tonic-gate {
20170Sstevel@tonic-gate 	i_link_t *i_link;
20180Sstevel@tonic-gate 
20190Sstevel@tonic-gate 	i_link = kmem_zalloc(sizeof (i_link_t), KM_SLEEP);
20200Sstevel@tonic-gate 	i_link->spec_type = spec_type;
20210Sstevel@tonic-gate 
20220Sstevel@tonic-gate 	return (i_link);
20230Sstevel@tonic-gate }
20240Sstevel@tonic-gate 
20250Sstevel@tonic-gate static void
20260Sstevel@tonic-gate i_link_check_free(i_link_t *i_link)
20270Sstevel@tonic-gate {
20280Sstevel@tonic-gate 	/* This link must have been snapshotted */
20290Sstevel@tonic-gate 	ASSERT(i_link->self > 0);
20300Sstevel@tonic-gate 
20310Sstevel@tonic-gate 	/* Both endpoint lnodes must exist for this link */
20320Sstevel@tonic-gate 	ASSERT(i_link->src_lnode);
20330Sstevel@tonic-gate 	ASSERT(i_link->tgt_lnode);
20340Sstevel@tonic-gate 
20350Sstevel@tonic-gate 	kmem_free(i_link, sizeof (i_link_t));
20360Sstevel@tonic-gate }
20370Sstevel@tonic-gate 
20380Sstevel@tonic-gate /*ARGSUSED*/
20390Sstevel@tonic-gate static uint_t
20400Sstevel@tonic-gate i_lnode_hashfunc(void *arg, mod_hash_key_t key)
20410Sstevel@tonic-gate {
20420Sstevel@tonic-gate 	i_lnode_t	*i_lnode = (i_lnode_t *)key;
20430Sstevel@tonic-gate 	struct di_node	*ptr;
20440Sstevel@tonic-gate 	dev_t		dev;
20450Sstevel@tonic-gate 
20460Sstevel@tonic-gate 	dev = i_lnode->devt;
20470Sstevel@tonic-gate 	if (dev != DDI_DEV_T_NONE)
20480Sstevel@tonic-gate 		return (i_lnode->modid + getminor(dev) + getmajor(dev));
20490Sstevel@tonic-gate 
20500Sstevel@tonic-gate 	ptr = i_lnode->di_node;
20510Sstevel@tonic-gate 	ASSERT(ptr->self > 0);
20520Sstevel@tonic-gate 	if (ptr) {
20530Sstevel@tonic-gate 		uintptr_t k = (uintptr_t)ptr;
20540Sstevel@tonic-gate 		k >>= (int)highbit(sizeof (struct di_node));
20550Sstevel@tonic-gate 		return ((uint_t)k);
20560Sstevel@tonic-gate 	}
20570Sstevel@tonic-gate 
20580Sstevel@tonic-gate 	return (i_lnode->modid);
20590Sstevel@tonic-gate }
20600Sstevel@tonic-gate 
20610Sstevel@tonic-gate static int
20620Sstevel@tonic-gate i_lnode_cmp(void *arg1, void *arg2)
20630Sstevel@tonic-gate {
20640Sstevel@tonic-gate 	i_lnode_t	*i_lnode1 = (i_lnode_t *)arg1;
20650Sstevel@tonic-gate 	i_lnode_t	*i_lnode2 = (i_lnode_t *)arg2;
20660Sstevel@tonic-gate 
20670Sstevel@tonic-gate 	if (i_lnode1->modid != i_lnode2->modid) {
20680Sstevel@tonic-gate 		return ((i_lnode1->modid < i_lnode2->modid) ? -1 : 1);
20690Sstevel@tonic-gate 	}
20700Sstevel@tonic-gate 
20710Sstevel@tonic-gate 	if (i_lnode1->di_node != i_lnode2->di_node)
20720Sstevel@tonic-gate 		return ((i_lnode1->di_node < i_lnode2->di_node) ? -1 : 1);
20730Sstevel@tonic-gate 
20740Sstevel@tonic-gate 	if (i_lnode1->devt != i_lnode2->devt)
20750Sstevel@tonic-gate 		return ((i_lnode1->devt < i_lnode2->devt) ? -1 : 1);
20760Sstevel@tonic-gate 
20770Sstevel@tonic-gate 	return (0);
20780Sstevel@tonic-gate }
20790Sstevel@tonic-gate 
20800Sstevel@tonic-gate /*
20810Sstevel@tonic-gate  * An lnode represents a {dip, dev_t} tuple. A link represents a
20820Sstevel@tonic-gate  * {src_lnode, tgt_lnode, spec_type} tuple.
20830Sstevel@tonic-gate  * The following callback assumes that LDI framework ref-counts the
20840Sstevel@tonic-gate  * src_dip and tgt_dip while invoking this callback.
20850Sstevel@tonic-gate  */
20860Sstevel@tonic-gate static int
20870Sstevel@tonic-gate di_ldi_callback(const ldi_usage_t *ldi_usage, void *arg)
20880Sstevel@tonic-gate {
20890Sstevel@tonic-gate 	struct di_state	*st = (struct di_state *)arg;
20900Sstevel@tonic-gate 	i_lnode_t	*src_lnode, *tgt_lnode, *i_lnode;
20910Sstevel@tonic-gate 	i_link_t	**i_link_next, *i_link;
20920Sstevel@tonic-gate 	di_off_t	soff, toff;
20930Sstevel@tonic-gate 	mod_hash_val_t	nodep = NULL;
20940Sstevel@tonic-gate 	int		res;
20950Sstevel@tonic-gate 
20960Sstevel@tonic-gate 	/*
20970Sstevel@tonic-gate 	 * if the source or target of this device usage information doesn't
20980Sstevel@tonic-gate 	 * corrospond to a device node then we don't report it via
20990Sstevel@tonic-gate 	 * libdevinfo so return.
21000Sstevel@tonic-gate 	 */
21010Sstevel@tonic-gate 	if ((ldi_usage->src_dip == NULL) || (ldi_usage->tgt_dip == NULL))
21020Sstevel@tonic-gate 		return (LDI_USAGE_CONTINUE);
21030Sstevel@tonic-gate 
21040Sstevel@tonic-gate 	ASSERT(e_ddi_devi_holdcnt(ldi_usage->src_dip));
21050Sstevel@tonic-gate 	ASSERT(e_ddi_devi_holdcnt(ldi_usage->tgt_dip));
21060Sstevel@tonic-gate 
21070Sstevel@tonic-gate 	/*
21080Sstevel@tonic-gate 	 * Skip the ldi_usage if either src or tgt dip is not in the
21090Sstevel@tonic-gate 	 * snapshot. This saves us from pruning bad lnodes/links later.
21100Sstevel@tonic-gate 	 */
21110Sstevel@tonic-gate 	if (di_dip_find(st, ldi_usage->src_dip, &soff) != 0)
21120Sstevel@tonic-gate 		return (LDI_USAGE_CONTINUE);
21130Sstevel@tonic-gate 	if (di_dip_find(st, ldi_usage->tgt_dip, &toff) != 0)
21140Sstevel@tonic-gate 		return (LDI_USAGE_CONTINUE);
21150Sstevel@tonic-gate 
21160Sstevel@tonic-gate 	ASSERT(soff > 0);
21170Sstevel@tonic-gate 	ASSERT(toff > 0);
21180Sstevel@tonic-gate 
21190Sstevel@tonic-gate 	/*
21200Sstevel@tonic-gate 	 * allocate an i_lnode and add it to the lnode hash
21210Sstevel@tonic-gate 	 * if it is not already present. For this particular
21220Sstevel@tonic-gate 	 * link the lnode is a source, but it may
21230Sstevel@tonic-gate 	 * participate as tgt or src in any number of layered
21240Sstevel@tonic-gate 	 * operations - so it may already be in the hash.
21250Sstevel@tonic-gate 	 */
21260Sstevel@tonic-gate 	i_lnode = i_lnode_alloc(ldi_usage->src_modid);
21273133Sjg 	i_lnode->di_node = (struct di_node *)(intptr_t)di_mem_addr(st, soff);
21280Sstevel@tonic-gate 	i_lnode->devt = ldi_usage->src_devt;
21290Sstevel@tonic-gate 
21300Sstevel@tonic-gate 	res = mod_hash_find(st->lnode_hash, i_lnode, &nodep);
21310Sstevel@tonic-gate 	if (res == MH_ERR_NOTFOUND) {
21320Sstevel@tonic-gate 		/*
21330Sstevel@tonic-gate 		 * new i_lnode
21340Sstevel@tonic-gate 		 * add it to the hash and increment the lnode count
21350Sstevel@tonic-gate 		 */
21360Sstevel@tonic-gate 		res = mod_hash_insert(st->lnode_hash, i_lnode, i_lnode);
21370Sstevel@tonic-gate 		ASSERT(res == 0);
21380Sstevel@tonic-gate 		st->lnode_count++;
21390Sstevel@tonic-gate 		src_lnode = i_lnode;
21400Sstevel@tonic-gate 	} else {
21410Sstevel@tonic-gate 		/* this i_lnode already exists in the lnode_hash */
21420Sstevel@tonic-gate 		i_lnode_free(i_lnode);
21430Sstevel@tonic-gate 		src_lnode = (i_lnode_t *)nodep;
21440Sstevel@tonic-gate 	}
21450Sstevel@tonic-gate 
21460Sstevel@tonic-gate 	/*
21470Sstevel@tonic-gate 	 * allocate a tgt i_lnode and add it to the lnode hash
21480Sstevel@tonic-gate 	 */
21490Sstevel@tonic-gate 	i_lnode = i_lnode_alloc(ldi_usage->tgt_modid);
21503133Sjg 	i_lnode->di_node = (struct di_node *)(intptr_t)di_mem_addr(st, toff);
21510Sstevel@tonic-gate 	i_lnode->devt = ldi_usage->tgt_devt;
21520Sstevel@tonic-gate 
21530Sstevel@tonic-gate 	res = mod_hash_find(st->lnode_hash, i_lnode, &nodep);
21540Sstevel@tonic-gate 	if (res == MH_ERR_NOTFOUND) {
21550Sstevel@tonic-gate 		/*
21560Sstevel@tonic-gate 		 * new i_lnode
21570Sstevel@tonic-gate 		 * add it to the hash and increment the lnode count
21580Sstevel@tonic-gate 		 */
21590Sstevel@tonic-gate 		res = mod_hash_insert(st->lnode_hash, i_lnode, i_lnode);
21600Sstevel@tonic-gate 		ASSERT(res == 0);
21610Sstevel@tonic-gate 		st->lnode_count++;
21620Sstevel@tonic-gate 		tgt_lnode = i_lnode;
21630Sstevel@tonic-gate 	} else {
21640Sstevel@tonic-gate 		/* this i_lnode already exists in the lnode_hash */
21650Sstevel@tonic-gate 		i_lnode_free(i_lnode);
21660Sstevel@tonic-gate 		tgt_lnode = (i_lnode_t *)nodep;
21670Sstevel@tonic-gate 	}
21680Sstevel@tonic-gate 
21690Sstevel@tonic-gate 	/*
21700Sstevel@tonic-gate 	 * allocate a i_link
21710Sstevel@tonic-gate 	 */
21720Sstevel@tonic-gate 	i_link = i_link_alloc(ldi_usage->tgt_spec_type);
21730Sstevel@tonic-gate 	i_link->src_lnode = src_lnode;
21740Sstevel@tonic-gate 	i_link->tgt_lnode = tgt_lnode;
21750Sstevel@tonic-gate 
21760Sstevel@tonic-gate 	/*
21770Sstevel@tonic-gate 	 * add this link onto the src i_lnodes outbound i_link list
21780Sstevel@tonic-gate 	 */
21790Sstevel@tonic-gate 	i_link_next = &(src_lnode->link_out);
21800Sstevel@tonic-gate 	while (*i_link_next != NULL) {
21810Sstevel@tonic-gate 		if ((i_lnode_cmp(tgt_lnode, (*i_link_next)->tgt_lnode) == 0) &&
21820Sstevel@tonic-gate 		    (i_link->spec_type == (*i_link_next)->spec_type)) {
21830Sstevel@tonic-gate 			/* this link already exists */
21840Sstevel@tonic-gate 			kmem_free(i_link, sizeof (i_link_t));
21850Sstevel@tonic-gate 			return (LDI_USAGE_CONTINUE);
21860Sstevel@tonic-gate 		}
21870Sstevel@tonic-gate 		i_link_next = &((*i_link_next)->src_link_next);
21880Sstevel@tonic-gate 	}
21890Sstevel@tonic-gate 	*i_link_next = i_link;
21900Sstevel@tonic-gate 
21910Sstevel@tonic-gate 	/*
21920Sstevel@tonic-gate 	 * add this link onto the tgt i_lnodes inbound i_link list
21930Sstevel@tonic-gate 	 */
21940Sstevel@tonic-gate 	i_link_next = &(tgt_lnode->link_in);
21950Sstevel@tonic-gate 	while (*i_link_next != NULL) {
21960Sstevel@tonic-gate 		ASSERT(i_lnode_cmp(src_lnode, (*i_link_next)->src_lnode) != 0);
21970Sstevel@tonic-gate 		i_link_next = &((*i_link_next)->tgt_link_next);
21980Sstevel@tonic-gate 	}
21990Sstevel@tonic-gate 	*i_link_next = i_link;
22000Sstevel@tonic-gate 
22010Sstevel@tonic-gate 	/*
22020Sstevel@tonic-gate 	 * add this i_link to the link hash
22030Sstevel@tonic-gate 	 */
22040Sstevel@tonic-gate 	res = mod_hash_insert(st->link_hash, i_link, i_link);
22050Sstevel@tonic-gate 	ASSERT(res == 0);
22060Sstevel@tonic-gate 	st->link_count++;
22070Sstevel@tonic-gate 
22080Sstevel@tonic-gate 	return (LDI_USAGE_CONTINUE);
22090Sstevel@tonic-gate }
22100Sstevel@tonic-gate 
22110Sstevel@tonic-gate struct i_layer_data {
22120Sstevel@tonic-gate 	struct di_state	*st;
22130Sstevel@tonic-gate 	int		lnode_count;
22140Sstevel@tonic-gate 	int		link_count;
22150Sstevel@tonic-gate 	di_off_t	lnode_off;
22160Sstevel@tonic-gate 	di_off_t 	link_off;
22170Sstevel@tonic-gate };
22180Sstevel@tonic-gate 
22190Sstevel@tonic-gate /*ARGSUSED*/
22200Sstevel@tonic-gate static uint_t
22210Sstevel@tonic-gate i_link_walker(mod_hash_key_t key, mod_hash_val_t *val, void *arg)
22220Sstevel@tonic-gate {
22230Sstevel@tonic-gate 	i_link_t		*i_link  = (i_link_t *)key;
22240Sstevel@tonic-gate 	struct i_layer_data	*data = arg;
22250Sstevel@tonic-gate 	struct di_link		*me;
22260Sstevel@tonic-gate 	struct di_lnode		*melnode;
22270Sstevel@tonic-gate 	struct di_node		*medinode;
22280Sstevel@tonic-gate 
22290Sstevel@tonic-gate 	ASSERT(i_link->self == 0);
22300Sstevel@tonic-gate 
22310Sstevel@tonic-gate 	i_link->self = data->link_off +
22320Sstevel@tonic-gate 	    (data->link_count * sizeof (struct di_link));
22330Sstevel@tonic-gate 	data->link_count++;
22340Sstevel@tonic-gate 
22350Sstevel@tonic-gate 	ASSERT(data->link_off > 0 && data->link_count > 0);
22360Sstevel@tonic-gate 	ASSERT(data->lnode_count == data->st->lnode_count); /* lnodes done */
22370Sstevel@tonic-gate 	ASSERT(data->link_count <= data->st->link_count);
22380Sstevel@tonic-gate 
22390Sstevel@tonic-gate 	/* fill in fields for the di_link snapshot */
22403133Sjg 	me = (struct di_link *)(intptr_t)di_mem_addr(data->st, i_link->self);
22410Sstevel@tonic-gate 	me->self = i_link->self;
22420Sstevel@tonic-gate 	me->spec_type = i_link->spec_type;
22430Sstevel@tonic-gate 
22440Sstevel@tonic-gate 	/*
22450Sstevel@tonic-gate 	 * The src_lnode and tgt_lnode i_lnode_t for this i_link_t
22460Sstevel@tonic-gate 	 * are created during the LDI table walk. Since we are
22470Sstevel@tonic-gate 	 * walking the link hash, the lnode hash has already been
22480Sstevel@tonic-gate 	 * walked and the lnodes have been snapshotted. Save lnode
22490Sstevel@tonic-gate 	 * offsets.
22500Sstevel@tonic-gate 	 */
22510Sstevel@tonic-gate 	me->src_lnode = i_link->src_lnode->self;
22520Sstevel@tonic-gate 	me->tgt_lnode = i_link->tgt_lnode->self;
22530Sstevel@tonic-gate 
22540Sstevel@tonic-gate 	/*
22550Sstevel@tonic-gate 	 * Save this link's offset in the src_lnode snapshot's link_out
22560Sstevel@tonic-gate 	 * field
22570Sstevel@tonic-gate 	 */
22583133Sjg 	melnode = (struct di_lnode *)
22593133Sjg 	    (intptr_t)di_mem_addr(data->st, me->src_lnode);
22600Sstevel@tonic-gate 	me->src_link_next = melnode->link_out;
22610Sstevel@tonic-gate 	melnode->link_out = me->self;
22620Sstevel@tonic-gate 
22630Sstevel@tonic-gate 	/*
22640Sstevel@tonic-gate 	 * Put this link on the tgt_lnode's link_in field
22650Sstevel@tonic-gate 	 */
22663133Sjg 	melnode = (struct di_lnode *)
22673133Sjg 	    (intptr_t)di_mem_addr(data->st, me->tgt_lnode);
22680Sstevel@tonic-gate 	me->tgt_link_next = melnode->link_in;
22690Sstevel@tonic-gate 	melnode->link_in = me->self;
22700Sstevel@tonic-gate 
22710Sstevel@tonic-gate 	/*
22720Sstevel@tonic-gate 	 * An i_lnode_t is only created if the corresponding dip exists
22730Sstevel@tonic-gate 	 * in the snapshot. A pointer to the di_node is saved in the
22740Sstevel@tonic-gate 	 * i_lnode_t when it is allocated. For this link, get the di_node
22750Sstevel@tonic-gate 	 * for the source lnode. Then put the link on the di_node's list
22760Sstevel@tonic-gate 	 * of src links
22770Sstevel@tonic-gate 	 */
22780Sstevel@tonic-gate 	medinode = i_link->src_lnode->di_node;
22790Sstevel@tonic-gate 	me->src_node_next = medinode->src_links;
22800Sstevel@tonic-gate 	medinode->src_links = me->self;
22810Sstevel@tonic-gate 
22820Sstevel@tonic-gate 	/*
22830Sstevel@tonic-gate 	 * Put this link on the tgt_links list of the target
22840Sstevel@tonic-gate 	 * dip.
22850Sstevel@tonic-gate 	 */
22860Sstevel@tonic-gate 	medinode = i_link->tgt_lnode->di_node;
22870Sstevel@tonic-gate 	me->tgt_node_next = medinode->tgt_links;
22880Sstevel@tonic-gate 	medinode->tgt_links = me->self;
22890Sstevel@tonic-gate 
22900Sstevel@tonic-gate 	return (MH_WALK_CONTINUE);
22910Sstevel@tonic-gate }
22920Sstevel@tonic-gate 
22930Sstevel@tonic-gate /*ARGSUSED*/
22940Sstevel@tonic-gate static uint_t
22950Sstevel@tonic-gate i_lnode_walker(mod_hash_key_t key, mod_hash_val_t *val, void *arg)
22960Sstevel@tonic-gate {
22970Sstevel@tonic-gate 	i_lnode_t		*i_lnode = (i_lnode_t *)key;
22980Sstevel@tonic-gate 	struct i_layer_data	*data = arg;
22990Sstevel@tonic-gate 	struct di_lnode		*me;
23000Sstevel@tonic-gate 	struct di_node		*medinode;
23010Sstevel@tonic-gate 
23020Sstevel@tonic-gate 	ASSERT(i_lnode->self == 0);
23030Sstevel@tonic-gate 
23040Sstevel@tonic-gate 	i_lnode->self = data->lnode_off +
23050Sstevel@tonic-gate 	    (data->lnode_count * sizeof (struct di_lnode));
23060Sstevel@tonic-gate 	data->lnode_count++;
23070Sstevel@tonic-gate 
23080Sstevel@tonic-gate 	ASSERT(data->lnode_off > 0 && data->lnode_count > 0);
23090Sstevel@tonic-gate 	ASSERT(data->link_count == 0); /* links not done yet */
23100Sstevel@tonic-gate 	ASSERT(data->lnode_count <= data->st->lnode_count);
23110Sstevel@tonic-gate 
23120Sstevel@tonic-gate 	/* fill in fields for the di_lnode snapshot */
23133133Sjg 	me = (struct di_lnode *)(intptr_t)di_mem_addr(data->st, i_lnode->self);
23140Sstevel@tonic-gate 	me->self = i_lnode->self;
23150Sstevel@tonic-gate 
23160Sstevel@tonic-gate 	if (i_lnode->devt == DDI_DEV_T_NONE) {
23170Sstevel@tonic-gate 		me->dev_major = (major_t)-1;
23180Sstevel@tonic-gate 		me->dev_minor = (minor_t)-1;
23190Sstevel@tonic-gate 	} else {
23200Sstevel@tonic-gate 		me->dev_major = getmajor(i_lnode->devt);
23210Sstevel@tonic-gate 		me->dev_minor = getminor(i_lnode->devt);
23220Sstevel@tonic-gate 	}
23230Sstevel@tonic-gate 
23240Sstevel@tonic-gate 	/*
23250Sstevel@tonic-gate 	 * The dip corresponding to this lnode must exist in
23260Sstevel@tonic-gate 	 * the snapshot or we wouldn't have created the i_lnode_t
23270Sstevel@tonic-gate 	 * during LDI walk. Save the offset of the dip.
23280Sstevel@tonic-gate 	 */
23290Sstevel@tonic-gate 	ASSERT(i_lnode->di_node && i_lnode->di_node->self > 0);
23300Sstevel@tonic-gate 	me->node = i_lnode->di_node->self;
23310Sstevel@tonic-gate 
23320Sstevel@tonic-gate 	/*
23330Sstevel@tonic-gate 	 * There must be at least one link in or out of this lnode
23340Sstevel@tonic-gate 	 * or we wouldn't have created it. These fields will be set
23350Sstevel@tonic-gate 	 * during the link hash walk.
23360Sstevel@tonic-gate 	 */
23370Sstevel@tonic-gate 	ASSERT((i_lnode->link_in != NULL) || (i_lnode->link_out != NULL));
23380Sstevel@tonic-gate 
23390Sstevel@tonic-gate 	/*
23400Sstevel@tonic-gate 	 * set the offset of the devinfo node associated with this
23410Sstevel@tonic-gate 	 * lnode. Also update the node_next next pointer.  this pointer
23420Sstevel@tonic-gate 	 * is set if there are multiple lnodes associated with the same
23430Sstevel@tonic-gate 	 * devinfo node.  (could occure when multiple minor nodes
23440Sstevel@tonic-gate 	 * are open for one device, etc.)
23450Sstevel@tonic-gate 	 */
23460Sstevel@tonic-gate 	medinode = i_lnode->di_node;
23470Sstevel@tonic-gate 	me->node_next = medinode->lnodes;
23480Sstevel@tonic-gate 	medinode->lnodes = me->self;
23490Sstevel@tonic-gate 
23500Sstevel@tonic-gate 	return (MH_WALK_CONTINUE);
23510Sstevel@tonic-gate }
23520Sstevel@tonic-gate 
23530Sstevel@tonic-gate static di_off_t
23540Sstevel@tonic-gate di_getlink_data(di_off_t off, struct di_state *st)
23550Sstevel@tonic-gate {
23560Sstevel@tonic-gate 	struct i_layer_data data = {0};
23570Sstevel@tonic-gate 	size_t size;
23580Sstevel@tonic-gate 
23590Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_copylyr: off = %x\n", off));
23600Sstevel@tonic-gate 
23610Sstevel@tonic-gate 	st->lnode_hash = mod_hash_create_extended("di_lnode_hash", 32,
23620Sstevel@tonic-gate 	    mod_hash_null_keydtor, (void (*)(mod_hash_val_t))i_lnode_check_free,
23630Sstevel@tonic-gate 	    i_lnode_hashfunc, NULL, i_lnode_cmp, KM_SLEEP);
23640Sstevel@tonic-gate 
23650Sstevel@tonic-gate 	st->link_hash = mod_hash_create_ptrhash("di_link_hash", 32,
23660Sstevel@tonic-gate 	    (void (*)(mod_hash_val_t))i_link_check_free, sizeof (i_link_t));
23670Sstevel@tonic-gate 
23680Sstevel@tonic-gate 	/* get driver layering information */
23690Sstevel@tonic-gate 	(void) ldi_usage_walker(st, di_ldi_callback);
23700Sstevel@tonic-gate 
23710Sstevel@tonic-gate 	/* check if there is any link data to include in the snapshot */
23720Sstevel@tonic-gate 	if (st->lnode_count == 0) {
23730Sstevel@tonic-gate 		ASSERT(st->link_count == 0);
23740Sstevel@tonic-gate 		goto out;
23750Sstevel@tonic-gate 	}
23760Sstevel@tonic-gate 
23770Sstevel@tonic-gate 	ASSERT(st->link_count != 0);
23780Sstevel@tonic-gate 
23790Sstevel@tonic-gate 	/* get a pointer to snapshot memory for all the di_lnodes */
23800Sstevel@tonic-gate 	size = sizeof (struct di_lnode) * st->lnode_count;
23810Sstevel@tonic-gate 	data.lnode_off = off = di_checkmem(st, off, size);
23820Sstevel@tonic-gate 	off += DI_ALIGN(size);
23830Sstevel@tonic-gate 
23840Sstevel@tonic-gate 	/* get a pointer to snapshot memory for all the di_links */
23850Sstevel@tonic-gate 	size = sizeof (struct di_link) * st->link_count;
23860Sstevel@tonic-gate 	data.link_off = off = di_checkmem(st, off, size);
23870Sstevel@tonic-gate 	off += DI_ALIGN(size);
23880Sstevel@tonic-gate 
23890Sstevel@tonic-gate 	data.lnode_count = data.link_count = 0;
23900Sstevel@tonic-gate 	data.st = st;
23910Sstevel@tonic-gate 
23920Sstevel@tonic-gate 	/*
23930Sstevel@tonic-gate 	 * We have lnodes and links that will go into the
23940Sstevel@tonic-gate 	 * snapshot, so let's walk the respective hashes
23950Sstevel@tonic-gate 	 * and snapshot them. The various linkages are
23960Sstevel@tonic-gate 	 * also set up during the walk.
23970Sstevel@tonic-gate 	 */
23980Sstevel@tonic-gate 	mod_hash_walk(st->lnode_hash, i_lnode_walker, (void *)&data);
23990Sstevel@tonic-gate 	ASSERT(data.lnode_count == st->lnode_count);
24000Sstevel@tonic-gate 
24010Sstevel@tonic-gate 	mod_hash_walk(st->link_hash, i_link_walker, (void *)&data);
24020Sstevel@tonic-gate 	ASSERT(data.link_count == st->link_count);
24030Sstevel@tonic-gate 
24040Sstevel@tonic-gate out:
24050Sstevel@tonic-gate 	/* free up the i_lnodes and i_links used to create the snapshot */
24060Sstevel@tonic-gate 	mod_hash_destroy_hash(st->lnode_hash);
24070Sstevel@tonic-gate 	mod_hash_destroy_hash(st->link_hash);
24080Sstevel@tonic-gate 	st->lnode_count = 0;
24090Sstevel@tonic-gate 	st->link_count = 0;
24100Sstevel@tonic-gate 
24110Sstevel@tonic-gate 	return (off);
24120Sstevel@tonic-gate }
24130Sstevel@tonic-gate 
24140Sstevel@tonic-gate 
24150Sstevel@tonic-gate /*
24160Sstevel@tonic-gate  * Copy all minor data nodes attached to a devinfo node into the snapshot.
24170Sstevel@tonic-gate  * It is called from di_copynode with devi_lock held.
24180Sstevel@tonic-gate  */
24190Sstevel@tonic-gate static di_off_t
24200Sstevel@tonic-gate di_getmdata(struct ddi_minor_data *mnode, di_off_t *off_p, di_off_t node,
24210Sstevel@tonic-gate 	struct di_state *st)
24220Sstevel@tonic-gate {
24230Sstevel@tonic-gate 	di_off_t off;
24240Sstevel@tonic-gate 	struct di_minor *me;
24250Sstevel@tonic-gate 
24260Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_getmdata:\n"));
24270Sstevel@tonic-gate 
24280Sstevel@tonic-gate 	/*
24290Sstevel@tonic-gate 	 * check memory first
24300Sstevel@tonic-gate 	 */
24310Sstevel@tonic-gate 	off = di_checkmem(st, *off_p, sizeof (struct di_minor));
24320Sstevel@tonic-gate 	*off_p = off;
24330Sstevel@tonic-gate 
24340Sstevel@tonic-gate 	do {
24353133Sjg 		me = (struct di_minor *)(intptr_t)di_mem_addr(st, off);
24360Sstevel@tonic-gate 		me->self = off;
24370Sstevel@tonic-gate 		me->type = mnode->type;
24380Sstevel@tonic-gate 		me->node = node;
24390Sstevel@tonic-gate 		me->user_private_data = NULL;
24400Sstevel@tonic-gate 
24410Sstevel@tonic-gate 		off += DI_ALIGN(sizeof (struct di_minor));
24420Sstevel@tonic-gate 
24430Sstevel@tonic-gate 		/*
24440Sstevel@tonic-gate 		 * Split dev_t to major/minor, so it works for
24450Sstevel@tonic-gate 		 * both ILP32 and LP64 model
24460Sstevel@tonic-gate 		 */
24470Sstevel@tonic-gate 		me->dev_major = getmajor(mnode->ddm_dev);
24480Sstevel@tonic-gate 		me->dev_minor = getminor(mnode->ddm_dev);
24490Sstevel@tonic-gate 		me->spec_type = mnode->ddm_spec_type;
24500Sstevel@tonic-gate 
24510Sstevel@tonic-gate 		if (mnode->ddm_name) {
24520Sstevel@tonic-gate 			off = di_checkmem(st, off,
24534870Sjg 			    strlen(mnode->ddm_name) + 1);
24540Sstevel@tonic-gate 			me->name = off;
24550Sstevel@tonic-gate 			(void) strcpy(di_mem_addr(st, off), mnode->ddm_name);
24560Sstevel@tonic-gate 			off += DI_ALIGN(strlen(mnode->ddm_name) + 1);
24570Sstevel@tonic-gate 		}
24580Sstevel@tonic-gate 
24590Sstevel@tonic-gate 		if (mnode->ddm_node_type) {
24600Sstevel@tonic-gate 			off = di_checkmem(st, off,
24614870Sjg 			    strlen(mnode->ddm_node_type) + 1);
24620Sstevel@tonic-gate 			me->node_type = off;
24630Sstevel@tonic-gate 			(void) strcpy(di_mem_addr(st, off),
24644870Sjg 			    mnode->ddm_node_type);
24650Sstevel@tonic-gate 			off += DI_ALIGN(strlen(mnode->ddm_node_type) + 1);
24660Sstevel@tonic-gate 		}
24670Sstevel@tonic-gate 
24680Sstevel@tonic-gate 		off = di_checkmem(st, off, sizeof (struct di_minor));
24690Sstevel@tonic-gate 		me->next = off;
24700Sstevel@tonic-gate 		mnode = mnode->next;
24710Sstevel@tonic-gate 	} while (mnode);
24720Sstevel@tonic-gate 
24730Sstevel@tonic-gate 	me->next = 0;
24740Sstevel@tonic-gate 
24750Sstevel@tonic-gate 	return (off);
24760Sstevel@tonic-gate }
24770Sstevel@tonic-gate 
24780Sstevel@tonic-gate /*
24790Sstevel@tonic-gate  * di_register_dip(), di_find_dip(): The dip must be protected
24800Sstevel@tonic-gate  * from deallocation when using these routines - this can either
24810Sstevel@tonic-gate  * be a reference count, a busy hold or a per-driver lock.
24820Sstevel@tonic-gate  */
24830Sstevel@tonic-gate 
24840Sstevel@tonic-gate static void
24850Sstevel@tonic-gate di_register_dip(struct di_state *st, dev_info_t *dip, di_off_t off)
24860Sstevel@tonic-gate {
24870Sstevel@tonic-gate 	struct dev_info *node = DEVI(dip);
24880Sstevel@tonic-gate 	struct di_key *key = kmem_zalloc(sizeof (*key), KM_SLEEP);
24890Sstevel@tonic-gate 	struct di_dkey *dk;
24900Sstevel@tonic-gate 
24910Sstevel@tonic-gate 	ASSERT(dip);
24920Sstevel@tonic-gate 	ASSERT(off > 0);
24930Sstevel@tonic-gate 
24940Sstevel@tonic-gate 	key->k_type = DI_DKEY;
24950Sstevel@tonic-gate 	dk = &(key->k_u.dkey);
24960Sstevel@tonic-gate 
24970Sstevel@tonic-gate 	dk->dk_dip = dip;
24980Sstevel@tonic-gate 	dk->dk_major = node->devi_major;
24990Sstevel@tonic-gate 	dk->dk_inst = node->devi_instance;
25000Sstevel@tonic-gate 	dk->dk_nodeid = node->devi_nodeid;
25010Sstevel@tonic-gate 
25020Sstevel@tonic-gate 	if (mod_hash_insert(st->reg_dip_hash, (mod_hash_key_t)key,
25030Sstevel@tonic-gate 	    (mod_hash_val_t)(uintptr_t)off) != 0) {
25040Sstevel@tonic-gate 		panic(
25050Sstevel@tonic-gate 		    "duplicate devinfo (%p) registered during device "
25060Sstevel@tonic-gate 		    "tree walk", (void *)dip);
25070Sstevel@tonic-gate 	}
25080Sstevel@tonic-gate }
25090Sstevel@tonic-gate 
25100Sstevel@tonic-gate 
25110Sstevel@tonic-gate static int
25120Sstevel@tonic-gate di_dip_find(struct di_state *st, dev_info_t *dip, di_off_t *off_p)
25130Sstevel@tonic-gate {
25140Sstevel@tonic-gate 	/*
25150Sstevel@tonic-gate 	 * uintptr_t must be used because it matches the size of void *;
25160Sstevel@tonic-gate 	 * mod_hash expects clients to place results into pointer-size
25170Sstevel@tonic-gate 	 * containers; since di_off_t is always a 32-bit offset, alignment
25180Sstevel@tonic-gate 	 * would otherwise be broken on 64-bit kernels.
25190Sstevel@tonic-gate 	 */
25200Sstevel@tonic-gate 	uintptr_t	offset;
25210Sstevel@tonic-gate 	struct		di_key key = {0};
25220Sstevel@tonic-gate 	struct		di_dkey *dk;
25230Sstevel@tonic-gate 
25240Sstevel@tonic-gate 	ASSERT(st->reg_dip_hash);
25250Sstevel@tonic-gate 	ASSERT(dip);
25260Sstevel@tonic-gate 	ASSERT(off_p);
25270Sstevel@tonic-gate 
25280Sstevel@tonic-gate 
25290Sstevel@tonic-gate 	key.k_type = DI_DKEY;
25300Sstevel@tonic-gate 	dk = &(key.k_u.dkey);
25310Sstevel@tonic-gate 
25320Sstevel@tonic-gate 	dk->dk_dip = dip;
25330Sstevel@tonic-gate 	dk->dk_major = DEVI(dip)->devi_major;
25340Sstevel@tonic-gate 	dk->dk_inst = DEVI(dip)->devi_instance;
25350Sstevel@tonic-gate 	dk->dk_nodeid = DEVI(dip)->devi_nodeid;
25360Sstevel@tonic-gate 
25370Sstevel@tonic-gate 	if (mod_hash_find(st->reg_dip_hash, (mod_hash_key_t)&key,
25380Sstevel@tonic-gate 	    (mod_hash_val_t *)&offset) == 0) {
25390Sstevel@tonic-gate 		*off_p = (di_off_t)offset;
25400Sstevel@tonic-gate 		return (0);
25410Sstevel@tonic-gate 	} else {
25420Sstevel@tonic-gate 		return (-1);
25430Sstevel@tonic-gate 	}
25440Sstevel@tonic-gate }
25450Sstevel@tonic-gate 
25460Sstevel@tonic-gate /*
25470Sstevel@tonic-gate  * di_register_pip(), di_find_pip(): The pip must be protected from deallocation
25480Sstevel@tonic-gate  * when using these routines. The caller must do this by protecting the
25490Sstevel@tonic-gate  * client(or phci)<->pip linkage while traversing the list and then holding the
25500Sstevel@tonic-gate  * pip when it is found in the list.
25510Sstevel@tonic-gate  */
25520Sstevel@tonic-gate 
25530Sstevel@tonic-gate static void
25540Sstevel@tonic-gate di_register_pip(struct di_state *st, mdi_pathinfo_t *pip, di_off_t off)
25550Sstevel@tonic-gate {
25560Sstevel@tonic-gate 	struct di_key	*key = kmem_zalloc(sizeof (*key), KM_SLEEP);
25570Sstevel@tonic-gate 	char		*path_addr;
25580Sstevel@tonic-gate 	struct di_pkey	*pk;
25590Sstevel@tonic-gate 
25600Sstevel@tonic-gate 	ASSERT(pip);
25610Sstevel@tonic-gate 	ASSERT(off > 0);
25620Sstevel@tonic-gate 
25630Sstevel@tonic-gate 	key->k_type = DI_PKEY;
25640Sstevel@tonic-gate 	pk = &(key->k_u.pkey);
25650Sstevel@tonic-gate 
25660Sstevel@tonic-gate 	pk->pk_pip = pip;
25670Sstevel@tonic-gate 	path_addr = mdi_pi_get_addr(pip);
25680Sstevel@tonic-gate 	if (path_addr)
25690Sstevel@tonic-gate 		pk->pk_path_addr = i_ddi_strdup(path_addr, KM_SLEEP);
25700Sstevel@tonic-gate 	pk->pk_client = mdi_pi_get_client(pip);
25710Sstevel@tonic-gate 	pk->pk_phci = mdi_pi_get_phci(pip);
25720Sstevel@tonic-gate 
25730Sstevel@tonic-gate 	if (mod_hash_insert(st->reg_pip_hash, (mod_hash_key_t)key,
25740Sstevel@tonic-gate 	    (mod_hash_val_t)(uintptr_t)off) != 0) {
25750Sstevel@tonic-gate 		panic(
25760Sstevel@tonic-gate 		    "duplicate pathinfo (%p) registered during device "
25770Sstevel@tonic-gate 		    "tree walk", (void *)pip);
25780Sstevel@tonic-gate 	}
25790Sstevel@tonic-gate }
25800Sstevel@tonic-gate 
25810Sstevel@tonic-gate /*
25820Sstevel@tonic-gate  * As with di_register_pip, the caller must hold or lock the pip
25830Sstevel@tonic-gate  */
25840Sstevel@tonic-gate static int
25850Sstevel@tonic-gate di_pip_find(struct di_state *st, mdi_pathinfo_t *pip, di_off_t *off_p)
25860Sstevel@tonic-gate {
25870Sstevel@tonic-gate 	/*
25880Sstevel@tonic-gate 	 * uintptr_t must be used because it matches the size of void *;
25890Sstevel@tonic-gate 	 * mod_hash expects clients to place results into pointer-size
25900Sstevel@tonic-gate 	 * containers; since di_off_t is always a 32-bit offset, alignment
25910Sstevel@tonic-gate 	 * would otherwise be broken on 64-bit kernels.
25920Sstevel@tonic-gate 	 */
25930Sstevel@tonic-gate 	uintptr_t	offset;
25940Sstevel@tonic-gate 	struct di_key	key = {0};
25950Sstevel@tonic-gate 	struct di_pkey	*pk;
25960Sstevel@tonic-gate 
25970Sstevel@tonic-gate 	ASSERT(st->reg_pip_hash);
25980Sstevel@tonic-gate 	ASSERT(off_p);
25990Sstevel@tonic-gate 
26000Sstevel@tonic-gate 	if (pip == NULL) {
26010Sstevel@tonic-gate 		*off_p = 0;
26020Sstevel@tonic-gate 		return (0);
26030Sstevel@tonic-gate 	}
26040Sstevel@tonic-gate 
26050Sstevel@tonic-gate 	key.k_type = DI_PKEY;
26060Sstevel@tonic-gate 	pk = &(key.k_u.pkey);
26070Sstevel@tonic-gate 
26080Sstevel@tonic-gate 	pk->pk_pip = pip;
26090Sstevel@tonic-gate 	pk->pk_path_addr = mdi_pi_get_addr(pip);
26100Sstevel@tonic-gate 	pk->pk_client = mdi_pi_get_client(pip);
26110Sstevel@tonic-gate 	pk->pk_phci = mdi_pi_get_phci(pip);
26120Sstevel@tonic-gate 
26130Sstevel@tonic-gate 	if (mod_hash_find(st->reg_pip_hash, (mod_hash_key_t)&key,
26140Sstevel@tonic-gate 	    (mod_hash_val_t *)&offset) == 0) {
26150Sstevel@tonic-gate 		*off_p = (di_off_t)offset;
26160Sstevel@tonic-gate 		return (0);
26170Sstevel@tonic-gate 	} else {
26180Sstevel@tonic-gate 		return (-1);
26190Sstevel@tonic-gate 	}
26200Sstevel@tonic-gate }
26210Sstevel@tonic-gate 
26220Sstevel@tonic-gate static di_path_state_t
26230Sstevel@tonic-gate path_state_convert(mdi_pathinfo_state_t st)
26240Sstevel@tonic-gate {
26250Sstevel@tonic-gate 	switch (st) {
26260Sstevel@tonic-gate 	case MDI_PATHINFO_STATE_ONLINE:
26270Sstevel@tonic-gate 		return (DI_PATH_STATE_ONLINE);
26280Sstevel@tonic-gate 	case MDI_PATHINFO_STATE_STANDBY:
26290Sstevel@tonic-gate 		return (DI_PATH_STATE_STANDBY);
26300Sstevel@tonic-gate 	case MDI_PATHINFO_STATE_OFFLINE:
26310Sstevel@tonic-gate 		return (DI_PATH_STATE_OFFLINE);
26320Sstevel@tonic-gate 	case MDI_PATHINFO_STATE_FAULT:
26330Sstevel@tonic-gate 		return (DI_PATH_STATE_FAULT);
26340Sstevel@tonic-gate 	default:
26350Sstevel@tonic-gate 		return (DI_PATH_STATE_UNKNOWN);
26360Sstevel@tonic-gate 	}
26370Sstevel@tonic-gate }
26380Sstevel@tonic-gate 
26390Sstevel@tonic-gate 
26400Sstevel@tonic-gate static di_off_t
26410Sstevel@tonic-gate di_path_getprop(mdi_pathinfo_t *pip, di_off_t off, di_off_t *off_p,
26420Sstevel@tonic-gate     struct di_state *st)
26430Sstevel@tonic-gate {
26440Sstevel@tonic-gate 	nvpair_t *prop = NULL;
26450Sstevel@tonic-gate 	struct di_path_prop *me;
26460Sstevel@tonic-gate 
26470Sstevel@tonic-gate 	if (mdi_pi_get_next_prop(pip, NULL) == NULL) {
26480Sstevel@tonic-gate 		*off_p = 0;
26490Sstevel@tonic-gate 		return (off);
26500Sstevel@tonic-gate 	}
26510Sstevel@tonic-gate 
26520Sstevel@tonic-gate 	off = di_checkmem(st, off, sizeof (struct di_path_prop));
26530Sstevel@tonic-gate 	*off_p = off;
26540Sstevel@tonic-gate 
26550Sstevel@tonic-gate 	while (prop = mdi_pi_get_next_prop(pip, prop)) {
26560Sstevel@tonic-gate 		int delta = 0;
26570Sstevel@tonic-gate 
26583133Sjg 		me = (struct di_path_prop *)(intptr_t)di_mem_addr(st, off);
26590Sstevel@tonic-gate 		me->self = off;
26600Sstevel@tonic-gate 		off += sizeof (struct di_path_prop);
26610Sstevel@tonic-gate 
26620Sstevel@tonic-gate 		/*
26630Sstevel@tonic-gate 		 * property name
26640Sstevel@tonic-gate 		 */
26650Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(nvpair_name(prop)) + 1);
26660Sstevel@tonic-gate 		me->prop_name = off;
26670Sstevel@tonic-gate 		(void) strcpy(di_mem_addr(st, off), nvpair_name(prop));
26680Sstevel@tonic-gate 		off += strlen(nvpair_name(prop)) + 1;
26690Sstevel@tonic-gate 
26700Sstevel@tonic-gate 		switch (nvpair_type(prop)) {
26710Sstevel@tonic-gate 		case DATA_TYPE_BYTE:
26720Sstevel@tonic-gate 		case DATA_TYPE_INT16:
26730Sstevel@tonic-gate 		case DATA_TYPE_UINT16:
26740Sstevel@tonic-gate 		case DATA_TYPE_INT32:
26750Sstevel@tonic-gate 		case DATA_TYPE_UINT32:
26760Sstevel@tonic-gate 			delta = sizeof (int32_t);
26770Sstevel@tonic-gate 			me->prop_type = DDI_PROP_TYPE_INT;
26780Sstevel@tonic-gate 			off = di_checkmem(st, off, delta);
26790Sstevel@tonic-gate 			(void) nvpair_value_int32(prop,
26803133Sjg 			    (int32_t *)(intptr_t)di_mem_addr(st, off));
26810Sstevel@tonic-gate 			break;
26820Sstevel@tonic-gate 
26830Sstevel@tonic-gate 		case DATA_TYPE_INT64:
26840Sstevel@tonic-gate 		case DATA_TYPE_UINT64:
26850Sstevel@tonic-gate 			delta = sizeof (int64_t);
26860Sstevel@tonic-gate 			me->prop_type = DDI_PROP_TYPE_INT64;
26870Sstevel@tonic-gate 			off = di_checkmem(st, off, delta);
26880Sstevel@tonic-gate 			(void) nvpair_value_int64(prop,
26893133Sjg 			    (int64_t *)(intptr_t)di_mem_addr(st, off));
26900Sstevel@tonic-gate 			break;
26910Sstevel@tonic-gate 
26920Sstevel@tonic-gate 		case DATA_TYPE_STRING:
26930Sstevel@tonic-gate 		{
26940Sstevel@tonic-gate 			char *str;
26950Sstevel@tonic-gate 			(void) nvpair_value_string(prop, &str);
26960Sstevel@tonic-gate 			delta = strlen(str) + 1;
26970Sstevel@tonic-gate 			me->prop_type = DDI_PROP_TYPE_STRING;
26980Sstevel@tonic-gate 			off = di_checkmem(st, off, delta);
26990Sstevel@tonic-gate 			(void) strcpy(di_mem_addr(st, off), str);
27000Sstevel@tonic-gate 			break;
27010Sstevel@tonic-gate 		}
27020Sstevel@tonic-gate 		case DATA_TYPE_BYTE_ARRAY:
27030Sstevel@tonic-gate 		case DATA_TYPE_INT16_ARRAY:
27040Sstevel@tonic-gate 		case DATA_TYPE_UINT16_ARRAY:
27050Sstevel@tonic-gate 		case DATA_TYPE_INT32_ARRAY:
27060Sstevel@tonic-gate 		case DATA_TYPE_UINT32_ARRAY:
27070Sstevel@tonic-gate 		case DATA_TYPE_INT64_ARRAY:
27080Sstevel@tonic-gate 		case DATA_TYPE_UINT64_ARRAY:
27090Sstevel@tonic-gate 		{
27100Sstevel@tonic-gate 			uchar_t *buf;
27110Sstevel@tonic-gate 			uint_t nelems;
27120Sstevel@tonic-gate 			(void) nvpair_value_byte_array(prop, &buf, &nelems);
27130Sstevel@tonic-gate 			delta = nelems;
27140Sstevel@tonic-gate 			me->prop_type = DDI_PROP_TYPE_BYTE;
27150Sstevel@tonic-gate 			if (nelems != 0) {
27160Sstevel@tonic-gate 				off = di_checkmem(st, off, delta);
27170Sstevel@tonic-gate 				bcopy(buf, di_mem_addr(st, off), nelems);
27180Sstevel@tonic-gate 			}
27190Sstevel@tonic-gate 			break;
27200Sstevel@tonic-gate 		}
27210Sstevel@tonic-gate 
27220Sstevel@tonic-gate 		default:	/* Unknown or unhandled type; skip it */
27230Sstevel@tonic-gate 			delta = 0;
27240Sstevel@tonic-gate 			break;
27250Sstevel@tonic-gate 		}
27260Sstevel@tonic-gate 
27270Sstevel@tonic-gate 		if (delta > 0) {
27280Sstevel@tonic-gate 			me->prop_data = off;
27290Sstevel@tonic-gate 		}
27300Sstevel@tonic-gate 
27310Sstevel@tonic-gate 		me->prop_len = delta;
27320Sstevel@tonic-gate 		off += delta;
27330Sstevel@tonic-gate 
27340Sstevel@tonic-gate 		off = di_checkmem(st, off, sizeof (struct di_path_prop));
27350Sstevel@tonic-gate 		me->prop_next = off;
27360Sstevel@tonic-gate 	}
27370Sstevel@tonic-gate 
27380Sstevel@tonic-gate 	me->prop_next = 0;
27390Sstevel@tonic-gate 	return (off);
27400Sstevel@tonic-gate }
27410Sstevel@tonic-gate 
27420Sstevel@tonic-gate 
27430Sstevel@tonic-gate static void
27440Sstevel@tonic-gate di_path_one_endpoint(struct di_path *me, di_off_t noff, di_off_t **off_pp,
27450Sstevel@tonic-gate     int get_client)
27460Sstevel@tonic-gate {
27470Sstevel@tonic-gate 	if (get_client) {
27480Sstevel@tonic-gate 		ASSERT(me->path_client == 0);
27490Sstevel@tonic-gate 		me->path_client = noff;
27500Sstevel@tonic-gate 		ASSERT(me->path_c_link == 0);
27510Sstevel@tonic-gate 		*off_pp = &me->path_c_link;
27520Sstevel@tonic-gate 		me->path_snap_state &=
27530Sstevel@tonic-gate 		    ~(DI_PATH_SNAP_NOCLIENT | DI_PATH_SNAP_NOCLINK);
27540Sstevel@tonic-gate 	} else {
27550Sstevel@tonic-gate 		ASSERT(me->path_phci == 0);
27560Sstevel@tonic-gate 		me->path_phci = noff;
27570Sstevel@tonic-gate 		ASSERT(me->path_p_link == 0);
27580Sstevel@tonic-gate 		*off_pp = &me->path_p_link;
27590Sstevel@tonic-gate 		me->path_snap_state &=
27600Sstevel@tonic-gate 		    ~(DI_PATH_SNAP_NOPHCI | DI_PATH_SNAP_NOPLINK);
27610Sstevel@tonic-gate 	}
27620Sstevel@tonic-gate }
27630Sstevel@tonic-gate 
27640Sstevel@tonic-gate /*
27650Sstevel@tonic-gate  * poff_p: pointer to the linkage field. This links pips along the client|phci
27660Sstevel@tonic-gate  *	   linkage list.
27670Sstevel@tonic-gate  * noff  : Offset for the endpoint dip snapshot.
27680Sstevel@tonic-gate  */
27690Sstevel@tonic-gate static di_off_t
27700Sstevel@tonic-gate di_getpath_data(dev_info_t *dip, di_off_t *poff_p, di_off_t noff,
27710Sstevel@tonic-gate     struct di_state *st, int get_client)
27720Sstevel@tonic-gate {
27730Sstevel@tonic-gate 	di_off_t off;
27740Sstevel@tonic-gate 	mdi_pathinfo_t *pip;
27750Sstevel@tonic-gate 	struct di_path *me;
27760Sstevel@tonic-gate 	mdi_pathinfo_t *(*next_pip)(dev_info_t *, mdi_pathinfo_t *);
27770Sstevel@tonic-gate 
27780Sstevel@tonic-gate 	dcmn_err2((CE_WARN, "di_getpath_data: client = %d", get_client));
27790Sstevel@tonic-gate 
27800Sstevel@tonic-gate 	/*
27810Sstevel@tonic-gate 	 * The naming of the following mdi_xyz() is unfortunately
27820Sstevel@tonic-gate 	 * non-intuitive. mdi_get_next_phci_path() follows the
27830Sstevel@tonic-gate 	 * client_link i.e. the list of pip's belonging to the
27840Sstevel@tonic-gate 	 * given client dip.
27850Sstevel@tonic-gate 	 */
27860Sstevel@tonic-gate 	if (get_client)
27870Sstevel@tonic-gate 		next_pip = &mdi_get_next_phci_path;
27880Sstevel@tonic-gate 	else
27890Sstevel@tonic-gate 		next_pip = &mdi_get_next_client_path;
27900Sstevel@tonic-gate 
27910Sstevel@tonic-gate 	off = *poff_p;
27920Sstevel@tonic-gate 
27930Sstevel@tonic-gate 	pip = NULL;
27940Sstevel@tonic-gate 	while (pip = (*next_pip)(dip, pip)) {
27950Sstevel@tonic-gate 		mdi_pathinfo_state_t state;
27960Sstevel@tonic-gate 		di_off_t stored_offset;
27970Sstevel@tonic-gate 
27980Sstevel@tonic-gate 		dcmn_err((CE_WARN, "marshalling pip = %p", (void *)pip));
27990Sstevel@tonic-gate 
28000Sstevel@tonic-gate 		mdi_pi_lock(pip);
28010Sstevel@tonic-gate 
28020Sstevel@tonic-gate 		if (di_pip_find(st, pip, &stored_offset) != -1) {
28030Sstevel@tonic-gate 			/*
28040Sstevel@tonic-gate 			 * We've already seen this pathinfo node so we need to
28050Sstevel@tonic-gate 			 * take care not to snap it again; However, one endpoint
28060Sstevel@tonic-gate 			 * and linkage will be set here. The other endpoint
28070Sstevel@tonic-gate 			 * and linkage has already been set when the pip was
28080Sstevel@tonic-gate 			 * first snapshotted i.e. when the other endpoint dip
28090Sstevel@tonic-gate 			 * was snapshotted.
28100Sstevel@tonic-gate 			 */
28113133Sjg 			me = (struct di_path *)(intptr_t)
28123133Sjg 			    di_mem_addr(st, stored_offset);
28130Sstevel@tonic-gate 
28140Sstevel@tonic-gate 			*poff_p = stored_offset;
28150Sstevel@tonic-gate 
28160Sstevel@tonic-gate 			di_path_one_endpoint(me, noff, &poff_p, get_client);
28170Sstevel@tonic-gate 
28180Sstevel@tonic-gate 			/*
28190Sstevel@tonic-gate 			 * The other endpoint and linkage were set when this
28200Sstevel@tonic-gate 			 * pip was snapshotted. So we are done with both
28210Sstevel@tonic-gate 			 * endpoints and linkages.
28220Sstevel@tonic-gate 			 */
28230Sstevel@tonic-gate 			ASSERT(!(me->path_snap_state &
28240Sstevel@tonic-gate 			    (DI_PATH_SNAP_NOCLIENT|DI_PATH_SNAP_NOPHCI)));
28250Sstevel@tonic-gate 			ASSERT(!(me->path_snap_state &
28260Sstevel@tonic-gate 			    (DI_PATH_SNAP_NOCLINK|DI_PATH_SNAP_NOPLINK)));
28270Sstevel@tonic-gate 
28280Sstevel@tonic-gate 			mdi_pi_unlock(pip);
28290Sstevel@tonic-gate 			continue;
28300Sstevel@tonic-gate 		}
28310Sstevel@tonic-gate 
28320Sstevel@tonic-gate 		/*
28330Sstevel@tonic-gate 		 * Now that we need to snapshot this pip, check memory
28340Sstevel@tonic-gate 		 */
28350Sstevel@tonic-gate 		off = di_checkmem(st, off, sizeof (struct di_path));
28363133Sjg 		me = (struct di_path *)(intptr_t)di_mem_addr(st, off);
28370Sstevel@tonic-gate 		me->self = off;
28380Sstevel@tonic-gate 		*poff_p = off;
28390Sstevel@tonic-gate 		off += sizeof (struct di_path);
28400Sstevel@tonic-gate 
28410Sstevel@tonic-gate 		me->path_snap_state =
28420Sstevel@tonic-gate 		    DI_PATH_SNAP_NOCLINK | DI_PATH_SNAP_NOPLINK;
28430Sstevel@tonic-gate 		me->path_snap_state |=
28440Sstevel@tonic-gate 		    DI_PATH_SNAP_NOCLIENT | DI_PATH_SNAP_NOPHCI;
28450Sstevel@tonic-gate 
28460Sstevel@tonic-gate 		/*
28470Sstevel@tonic-gate 		 * Zero out fields as di_checkmem() doesn't guarantee
28480Sstevel@tonic-gate 		 * zero-filled memory
28490Sstevel@tonic-gate 		 */
28500Sstevel@tonic-gate 		me->path_client = me->path_phci = 0;
28510Sstevel@tonic-gate 		me->path_c_link = me->path_p_link = 0;
28520Sstevel@tonic-gate 
28530Sstevel@tonic-gate 		di_path_one_endpoint(me, noff, &poff_p, get_client);
28540Sstevel@tonic-gate 
28550Sstevel@tonic-gate 		/*
28560Sstevel@tonic-gate 		 * Note the existence of this pathinfo
28570Sstevel@tonic-gate 		 */
28580Sstevel@tonic-gate 		di_register_pip(st, pip, me->self);
28590Sstevel@tonic-gate 
28600Sstevel@tonic-gate 		state = mdi_pi_get_state(pip);
28610Sstevel@tonic-gate 		me->path_state = path_state_convert(state);
28620Sstevel@tonic-gate 
2863*6640Scth 		me->path_instance = mdi_pi_get_path_instance(pip);
2864*6640Scth 
28650Sstevel@tonic-gate 		/*
28660Sstevel@tonic-gate 		 * Get intermediate addressing info.
28670Sstevel@tonic-gate 		 */
28680Sstevel@tonic-gate 		off = di_checkmem(st, off, strlen(mdi_pi_get_addr(pip)) + 1);
28690Sstevel@tonic-gate 		me->path_addr = off;
28700Sstevel@tonic-gate 		(void) strcpy(di_mem_addr(st, off), mdi_pi_get_addr(pip));
28710Sstevel@tonic-gate 		off += strlen(mdi_pi_get_addr(pip)) + 1;
28720Sstevel@tonic-gate 
28730Sstevel@tonic-gate 		/*
28740Sstevel@tonic-gate 		 * Get path properties if props are to be included in the
28750Sstevel@tonic-gate 		 * snapshot
28760Sstevel@tonic-gate 		 */
28770Sstevel@tonic-gate 		if (DINFOPROP & st->command) {
28780Sstevel@tonic-gate 			off = di_path_getprop(pip, off, &me->path_prop, st);
28790Sstevel@tonic-gate 		} else {
28800Sstevel@tonic-gate 			me->path_prop = 0;
28810Sstevel@tonic-gate 		}
28820Sstevel@tonic-gate 
28830Sstevel@tonic-gate 		mdi_pi_unlock(pip);
28840Sstevel@tonic-gate 	}
28850Sstevel@tonic-gate 
28860Sstevel@tonic-gate 	*poff_p = 0;
28870Sstevel@tonic-gate 
28880Sstevel@tonic-gate 	return (off);
28890Sstevel@tonic-gate }
28900Sstevel@tonic-gate 
28910Sstevel@tonic-gate /*
28920Sstevel@tonic-gate  * Copy a list of properties attached to a devinfo node. Called from
28930Sstevel@tonic-gate  * di_copynode with devi_lock held. The major number is passed in case
28940Sstevel@tonic-gate  * we need to call driver's prop_op entry. The value of list indicates
28950Sstevel@tonic-gate  * which list we are copying. Possible values are:
28960Sstevel@tonic-gate  * DI_PROP_DRV_LIST, DI_PROP_SYS_LIST, DI_PROP_GLB_LIST, DI_PROP_HW_LIST
28970Sstevel@tonic-gate  */
28980Sstevel@tonic-gate static di_off_t
28990Sstevel@tonic-gate di_getprop(struct ddi_prop *prop, di_off_t *off_p, struct di_state *st,
29000Sstevel@tonic-gate 	struct dev_info *dip, int list)
29010Sstevel@tonic-gate {
29020Sstevel@tonic-gate 	dev_t dev;
29030Sstevel@tonic-gate 	int (*prop_op)();
29040Sstevel@tonic-gate 	int off, need_prop_op = 0;
29050Sstevel@tonic-gate 	int prop_op_fail = 0;
29060Sstevel@tonic-gate 	ddi_prop_t *propp = NULL;
29070Sstevel@tonic-gate 	struct di_prop *pp;
29080Sstevel@tonic-gate 	struct dev_ops *ops = NULL;
29090Sstevel@tonic-gate 	int prop_len;
29100Sstevel@tonic-gate 	caddr_t prop_val;
29110Sstevel@tonic-gate 
29120Sstevel@tonic-gate 
29130Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_getprop:\n"));
29140Sstevel@tonic-gate 
29150Sstevel@tonic-gate 	ASSERT(st != NULL);
29160Sstevel@tonic-gate 
29170Sstevel@tonic-gate 	dcmn_err((CE_CONT, "copy property list at addr %p\n", (void *)prop));
29180Sstevel@tonic-gate 
29190Sstevel@tonic-gate 	/*
29200Sstevel@tonic-gate 	 * Figure out if we need to call driver's prop_op entry point.
29210Sstevel@tonic-gate 	 * The conditions are:
29220Sstevel@tonic-gate 	 *	-- driver property list
29230Sstevel@tonic-gate 	 *	-- driver must be attached and held
29240Sstevel@tonic-gate 	 *	-- driver's cb_prop_op != ddi_prop_op
29250Sstevel@tonic-gate 	 *		or parent's bus_prop_op != ddi_bus_prop_op
29260Sstevel@tonic-gate 	 */
29270Sstevel@tonic-gate 
29280Sstevel@tonic-gate 	if (list != DI_PROP_DRV_LIST) {
29290Sstevel@tonic-gate 		goto getprop;
29300Sstevel@tonic-gate 	}
29310Sstevel@tonic-gate 
29320Sstevel@tonic-gate 	/*
29330Sstevel@tonic-gate 	 * If driver is not attached or if major is -1, we ignore
29340Sstevel@tonic-gate 	 * the driver property list. No one should rely on such
29350Sstevel@tonic-gate 	 * properties.
29360Sstevel@tonic-gate 	 */
29371333Scth 	if (!i_ddi_devi_attached((dev_info_t *)dip)) {
29380Sstevel@tonic-gate 		off = *off_p;
29390Sstevel@tonic-gate 		*off_p = 0;
29400Sstevel@tonic-gate 		return (off);
29410Sstevel@tonic-gate 	}
29420Sstevel@tonic-gate 
29430Sstevel@tonic-gate 	/*
29440Sstevel@tonic-gate 	 * Now we have a driver which is held. We can examine entry points
29450Sstevel@tonic-gate 	 * and check the condition listed above.
29460Sstevel@tonic-gate 	 */
29470Sstevel@tonic-gate 	ops = dip->devi_ops;
29480Sstevel@tonic-gate 
29490Sstevel@tonic-gate 	/*
29500Sstevel@tonic-gate 	 * Some nexus drivers incorrectly set cb_prop_op to nodev,
29510Sstevel@tonic-gate 	 * nulldev or even NULL.
29520Sstevel@tonic-gate 	 */
29530Sstevel@tonic-gate 	if (ops && ops->devo_cb_ops &&
29540Sstevel@tonic-gate 	    (ops->devo_cb_ops->cb_prop_op != ddi_prop_op) &&
29550Sstevel@tonic-gate 	    (ops->devo_cb_ops->cb_prop_op != nodev) &&
29560Sstevel@tonic-gate 	    (ops->devo_cb_ops->cb_prop_op != nulldev) &&
29570Sstevel@tonic-gate 	    (ops->devo_cb_ops->cb_prop_op != NULL)) {
29580Sstevel@tonic-gate 		need_prop_op = 1;
29590Sstevel@tonic-gate 	}
29600Sstevel@tonic-gate 
29610Sstevel@tonic-gate getprop:
29620Sstevel@tonic-gate 	/*
29630Sstevel@tonic-gate 	 * check memory availability
29640Sstevel@tonic-gate 	 */
29650Sstevel@tonic-gate 	off = di_checkmem(st, *off_p, sizeof (struct di_prop));
29660Sstevel@tonic-gate 	*off_p = off;
29670Sstevel@tonic-gate 	/*
29680Sstevel@tonic-gate 	 * Now copy properties
29690Sstevel@tonic-gate 	 */
29700Sstevel@tonic-gate 	do {
29713133Sjg 		pp = (struct di_prop *)(intptr_t)di_mem_addr(st, off);
29720Sstevel@tonic-gate 		pp->self = off;
29730Sstevel@tonic-gate 		/*
29740Sstevel@tonic-gate 		 * Split dev_t to major/minor, so it works for
29750Sstevel@tonic-gate 		 * both ILP32 and LP64 model
29760Sstevel@tonic-gate 		 */
29770Sstevel@tonic-gate 		pp->dev_major = getmajor(prop->prop_dev);
29780Sstevel@tonic-gate 		pp->dev_minor = getminor(prop->prop_dev);
29790Sstevel@tonic-gate 		pp->prop_flags = prop->prop_flags;
29800Sstevel@tonic-gate 		pp->prop_list = list;
29810Sstevel@tonic-gate 
29820Sstevel@tonic-gate 		/*
29830Sstevel@tonic-gate 		 * property name
29840Sstevel@tonic-gate 		 */
29850Sstevel@tonic-gate 		off += sizeof (struct di_prop);
29860Sstevel@tonic-gate 		if (prop->prop_name) {
29870Sstevel@tonic-gate 			off = di_checkmem(st, off, strlen(prop->prop_name)
29880Sstevel@tonic-gate 			    + 1);
29890Sstevel@tonic-gate 			pp->prop_name = off;
29900Sstevel@tonic-gate 			(void) strcpy(di_mem_addr(st, off), prop->prop_name);
29910Sstevel@tonic-gate 			off += strlen(prop->prop_name) + 1;
29920Sstevel@tonic-gate 		}
29930Sstevel@tonic-gate 
29940Sstevel@tonic-gate 		/*
29950Sstevel@tonic-gate 		 * Set prop_len here. This may change later
29960Sstevel@tonic-gate 		 * if cb_prop_op returns a different length.
29970Sstevel@tonic-gate 		 */
29980Sstevel@tonic-gate 		pp->prop_len = prop->prop_len;
29990Sstevel@tonic-gate 		if (!need_prop_op) {
30000Sstevel@tonic-gate 			if (prop->prop_val == NULL) {
30010Sstevel@tonic-gate 				dcmn_err((CE_WARN,
30020Sstevel@tonic-gate 				    "devinfo: property fault at %p",
30030Sstevel@tonic-gate 				    (void *)prop));
30040Sstevel@tonic-gate 				pp->prop_data = -1;
30050Sstevel@tonic-gate 			} else if (prop->prop_len != 0) {
30060Sstevel@tonic-gate 				off = di_checkmem(st, off, prop->prop_len);
30070Sstevel@tonic-gate 				pp->prop_data = off;
30080Sstevel@tonic-gate 				bcopy(prop->prop_val, di_mem_addr(st, off),
30090Sstevel@tonic-gate 				    prop->prop_len);
30100Sstevel@tonic-gate 				off += DI_ALIGN(pp->prop_len);
30110Sstevel@tonic-gate 			}
30120Sstevel@tonic-gate 		}
30130Sstevel@tonic-gate 
30140Sstevel@tonic-gate 		off = di_checkmem(st, off, sizeof (struct di_prop));
30150Sstevel@tonic-gate 		pp->next = off;
30160Sstevel@tonic-gate 		prop = prop->prop_next;
30170Sstevel@tonic-gate 	} while (prop);
30180Sstevel@tonic-gate 
30190Sstevel@tonic-gate 	pp->next = 0;
30200Sstevel@tonic-gate 
30210Sstevel@tonic-gate 	if (!need_prop_op) {
30220Sstevel@tonic-gate 		dcmn_err((CE_CONT, "finished property "
30230Sstevel@tonic-gate 		    "list at offset 0x%x\n", off));
30240Sstevel@tonic-gate 		return (off);
30250Sstevel@tonic-gate 	}
30260Sstevel@tonic-gate 
30270Sstevel@tonic-gate 	/*
30280Sstevel@tonic-gate 	 * If there is a need to call driver's prop_op entry,
30290Sstevel@tonic-gate 	 * we must release driver's devi_lock, because the
30300Sstevel@tonic-gate 	 * cb_prop_op entry point will grab it.
30310Sstevel@tonic-gate 	 *
30320Sstevel@tonic-gate 	 * The snapshot memory has already been allocated above,
30330Sstevel@tonic-gate 	 * which means the length of an active property should
30340Sstevel@tonic-gate 	 * remain fixed for this implementation to work.
30350Sstevel@tonic-gate 	 */
30360Sstevel@tonic-gate 
30370Sstevel@tonic-gate 
30380Sstevel@tonic-gate 	prop_op = ops->devo_cb_ops->cb_prop_op;
30393133Sjg 	pp = (struct di_prop *)(intptr_t)di_mem_addr(st, *off_p);
30400Sstevel@tonic-gate 
30410Sstevel@tonic-gate 	mutex_exit(&dip->devi_lock);
30420Sstevel@tonic-gate 
30430Sstevel@tonic-gate 	do {
30440Sstevel@tonic-gate 		int err;
30450Sstevel@tonic-gate 		struct di_prop *tmp;
30460Sstevel@tonic-gate 
30470Sstevel@tonic-gate 		if (pp->next) {
30480Sstevel@tonic-gate 			tmp = (struct di_prop *)
30493133Sjg 			    (intptr_t)di_mem_addr(st, pp->next);
30500Sstevel@tonic-gate 		} else {
30510Sstevel@tonic-gate 			tmp = NULL;
30520Sstevel@tonic-gate 		}
30530Sstevel@tonic-gate 
30540Sstevel@tonic-gate 		/*
30550Sstevel@tonic-gate 		 * call into driver's prop_op entry point
30560Sstevel@tonic-gate 		 *
30570Sstevel@tonic-gate 		 * Must search DDI_DEV_T_NONE with DDI_DEV_T_ANY
30580Sstevel@tonic-gate 		 */
30590Sstevel@tonic-gate 		dev = makedevice(pp->dev_major, pp->dev_minor);
30600Sstevel@tonic-gate 		if (dev == DDI_DEV_T_NONE)
30610Sstevel@tonic-gate 			dev = DDI_DEV_T_ANY;
30620Sstevel@tonic-gate 
30630Sstevel@tonic-gate 		dcmn_err((CE_CONT, "call prop_op"
30640Sstevel@tonic-gate 		    "(%lx, %p, PROP_LEN_AND_VAL_BUF, "
30650Sstevel@tonic-gate 		    "DDI_PROP_DONTPASS, \"%s\", %p, &%d)\n",
30660Sstevel@tonic-gate 		    dev,
30670Sstevel@tonic-gate 		    (void *)dip,
30680Sstevel@tonic-gate 		    (char *)di_mem_addr(st, pp->prop_name),
30690Sstevel@tonic-gate 		    (void *)di_mem_addr(st, pp->prop_data),
30700Sstevel@tonic-gate 		    pp->prop_len));
30710Sstevel@tonic-gate 
30720Sstevel@tonic-gate 		if ((err = (*prop_op)(dev, (dev_info_t)dip,
30730Sstevel@tonic-gate 		    PROP_LEN_AND_VAL_ALLOC, DDI_PROP_DONTPASS,
30740Sstevel@tonic-gate 		    (char *)di_mem_addr(st, pp->prop_name),
30750Sstevel@tonic-gate 		    &prop_val, &prop_len)) != DDI_PROP_SUCCESS) {
30760Sstevel@tonic-gate 			if ((propp = i_ddi_prop_search(dev,
30770Sstevel@tonic-gate 			    (char *)di_mem_addr(st, pp->prop_name),
30780Sstevel@tonic-gate 			    (uint_t)pp->prop_flags,
30790Sstevel@tonic-gate 			    &(DEVI(dip)->devi_drv_prop_ptr))) != NULL) {
30800Sstevel@tonic-gate 				pp->prop_len = propp->prop_len;
30810Sstevel@tonic-gate 				if (pp->prop_len != 0) {
30820Sstevel@tonic-gate 					off = di_checkmem(st, off,
30830Sstevel@tonic-gate 					    pp->prop_len);
30840Sstevel@tonic-gate 					pp->prop_data = off;
30850Sstevel@tonic-gate 					bcopy(propp->prop_val, di_mem_addr(st,
30860Sstevel@tonic-gate 					    pp->prop_data), propp->prop_len);
30870Sstevel@tonic-gate 					off += DI_ALIGN(pp->prop_len);
30880Sstevel@tonic-gate 				}
30890Sstevel@tonic-gate 			} else {
30900Sstevel@tonic-gate 				prop_op_fail = 1;
30910Sstevel@tonic-gate 			}
30920Sstevel@tonic-gate 		} else if (prop_len != 0) {
30930Sstevel@tonic-gate 			pp->prop_len = prop_len;
30940Sstevel@tonic-gate 			off = di_checkmem(st, off, prop_len);
30950Sstevel@tonic-gate 			pp->prop_data = off;
30960Sstevel@tonic-gate 			bcopy(prop_val, di_mem_addr(st, off), prop_len);
30970Sstevel@tonic-gate 			off += DI_ALIGN(prop_len);
30980Sstevel@tonic-gate 			kmem_free(prop_val, prop_len);
30990Sstevel@tonic-gate 		}
31000Sstevel@tonic-gate 
31010Sstevel@tonic-gate 		if (prop_op_fail) {
31020Sstevel@tonic-gate 			pp->prop_data = -1;
31030Sstevel@tonic-gate 			dcmn_err((CE_WARN, "devinfo: prop_op failure "
31040Sstevel@tonic-gate 			    "for \"%s\" err %d",
31050Sstevel@tonic-gate 			    di_mem_addr(st, pp->prop_name), err));
31060Sstevel@tonic-gate 		}
31070Sstevel@tonic-gate 
31080Sstevel@tonic-gate 		pp = tmp;
31090Sstevel@tonic-gate 
31100Sstevel@tonic-gate 	} while (pp);
31110Sstevel@tonic-gate 
31120Sstevel@tonic-gate 	mutex_enter(&dip->devi_lock);
31130Sstevel@tonic-gate 	dcmn_err((CE_CONT, "finished property list at offset 0x%x\n", off));
31140Sstevel@tonic-gate 	return (off);
31150Sstevel@tonic-gate }
31160Sstevel@tonic-gate 
31170Sstevel@tonic-gate /*
31180Sstevel@tonic-gate  * find private data format attached to a dip
31190Sstevel@tonic-gate  * parent = 1 to match driver name of parent dip (for parent private data)
31200Sstevel@tonic-gate  *	0 to match driver name of current dip (for driver private data)
31210Sstevel@tonic-gate  */
31220Sstevel@tonic-gate #define	DI_MATCH_DRIVER	0
31230Sstevel@tonic-gate #define	DI_MATCH_PARENT	1
31240Sstevel@tonic-gate 
31250Sstevel@tonic-gate struct di_priv_format *
31260Sstevel@tonic-gate di_match_drv_name(struct dev_info *node, struct di_state *st, int match)
31270Sstevel@tonic-gate {
31280Sstevel@tonic-gate 	int i, count, len;
31290Sstevel@tonic-gate 	char *drv_name;
31300Sstevel@tonic-gate 	major_t major;
31310Sstevel@tonic-gate 	struct di_all *all;
31320Sstevel@tonic-gate 	struct di_priv_format *form;
31330Sstevel@tonic-gate 
31340Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_match_drv_name: node = %s, match = %x\n",
31354870Sjg 	    node->devi_node_name, match));
31360Sstevel@tonic-gate 
31370Sstevel@tonic-gate 	if (match == DI_MATCH_PARENT) {
31380Sstevel@tonic-gate 		node = DEVI(node->devi_parent);
31390Sstevel@tonic-gate 	}
31400Sstevel@tonic-gate 
31410Sstevel@tonic-gate 	if (node == NULL) {
31420Sstevel@tonic-gate 		return (NULL);
31430Sstevel@tonic-gate 	}
31440Sstevel@tonic-gate 
31450Sstevel@tonic-gate 	major = ddi_name_to_major(node->devi_binding_name);
31460Sstevel@tonic-gate 	if (major == (major_t)(-1)) {
31470Sstevel@tonic-gate 		return (NULL);
31480Sstevel@tonic-gate 	}
31490Sstevel@tonic-gate 
31500Sstevel@tonic-gate 	/*
31510Sstevel@tonic-gate 	 * Match the driver name.
31520Sstevel@tonic-gate 	 */
31530Sstevel@tonic-gate 	drv_name = ddi_major_to_name(major);
31540Sstevel@tonic-gate 	if ((drv_name == NULL) || *drv_name == '\0') {
31550Sstevel@tonic-gate 		return (NULL);
31560Sstevel@tonic-gate 	}
31570Sstevel@tonic-gate 
31580Sstevel@tonic-gate 	/* Now get the di_priv_format array */
31593133Sjg 	all = (struct di_all *)(intptr_t)di_mem_addr(st, 0);
31600Sstevel@tonic-gate 
31610Sstevel@tonic-gate 	if (match == DI_MATCH_PARENT) {
31620Sstevel@tonic-gate 		count = all->n_ppdata;
31630Sstevel@tonic-gate 		form = (struct di_priv_format *)
31644870Sjg 		    (intptr_t)(di_mem_addr(st, 0) + all->ppdata_format);
31650Sstevel@tonic-gate 	} else {
31660Sstevel@tonic-gate 		count = all->n_dpdata;
31670Sstevel@tonic-gate 		form = (struct di_priv_format *)
31684870Sjg 		    (intptr_t)((caddr_t)all + all->dpdata_format);
31690Sstevel@tonic-gate 	}
31700Sstevel@tonic-gate 
31710Sstevel@tonic-gate 	len = strlen(drv_name);
31720Sstevel@tonic-gate 	for (i = 0; i < count; i++) {
31730Sstevel@tonic-gate 		char *tmp;
31740Sstevel@tonic-gate 
31750Sstevel@tonic-gate 		tmp = form[i].drv_name;
31760Sstevel@tonic-gate 		while (tmp && (*tmp != '\0')) {
31770Sstevel@tonic-gate 			if (strncmp(drv_name, tmp, len) == 0) {
31780Sstevel@tonic-gate 				return (&form[i]);
31790Sstevel@tonic-gate 			}
31800Sstevel@tonic-gate 			/*
31810Sstevel@tonic-gate 			 * Move to next driver name, skipping a white space
31820Sstevel@tonic-gate 			 */
31830Sstevel@tonic-gate 			if (tmp = strchr(tmp, ' ')) {
31840Sstevel@tonic-gate 				tmp++;
31850Sstevel@tonic-gate 			}
31860Sstevel@tonic-gate 		}
31870Sstevel@tonic-gate 	}
31880Sstevel@tonic-gate 
31890Sstevel@tonic-gate 	return (NULL);
31900Sstevel@tonic-gate }
31910Sstevel@tonic-gate 
31920Sstevel@tonic-gate /*
31930Sstevel@tonic-gate  * The following functions copy data as specified by the format passed in.
31940Sstevel@tonic-gate  * To prevent invalid format from panicing the system, we call on_fault().
31950Sstevel@tonic-gate  * A return value of 0 indicates an error. Otherwise, the total offset
31960Sstevel@tonic-gate  * is returned.
31970Sstevel@tonic-gate  */
31980Sstevel@tonic-gate #define	DI_MAX_PRIVDATA	(PAGESIZE >> 1)	/* max private data size */
31990Sstevel@tonic-gate 
32000Sstevel@tonic-gate static di_off_t
32012271Scth di_getprvdata(struct di_priv_format *pdp, struct dev_info *node,
32022271Scth     void *data, di_off_t *off_p, struct di_state *st)
32030Sstevel@tonic-gate {
32040Sstevel@tonic-gate 	caddr_t pa;
32050Sstevel@tonic-gate 	void *ptr;
32060Sstevel@tonic-gate 	int i, size, repeat;
32070Sstevel@tonic-gate 	di_off_t off, off0, *tmp;
32082271Scth 	char *path;
32090Sstevel@tonic-gate 
32100Sstevel@tonic-gate 	label_t ljb;
32110Sstevel@tonic-gate 
32120Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_getprvdata:\n"));
32130Sstevel@tonic-gate 
32140Sstevel@tonic-gate 	/*
32150Sstevel@tonic-gate 	 * check memory availability. Private data size is
32160Sstevel@tonic-gate 	 * limited to DI_MAX_PRIVDATA.
32170Sstevel@tonic-gate 	 */
32180Sstevel@tonic-gate 	off = di_checkmem(st, *off_p, DI_MAX_PRIVDATA);
32190Sstevel@tonic-gate 
32203133Sjg 	if ((pdp->bytes == 0) || pdp->bytes > DI_MAX_PRIVDATA) {
32210Sstevel@tonic-gate 		goto failure;
32220Sstevel@tonic-gate 	}
32230Sstevel@tonic-gate 
32240Sstevel@tonic-gate 	if (!on_fault(&ljb)) {
32250Sstevel@tonic-gate 		/* copy the struct */
32260Sstevel@tonic-gate 		bcopy(data, di_mem_addr(st, off), pdp->bytes);
32270Sstevel@tonic-gate 		off0 = DI_ALIGN(pdp->bytes);
32280Sstevel@tonic-gate 
32290Sstevel@tonic-gate 		/* dereferencing pointers */
32300Sstevel@tonic-gate 		for (i = 0; i < MAX_PTR_IN_PRV; i++) {
32310Sstevel@tonic-gate 
32320Sstevel@tonic-gate 			if (pdp->ptr[i].size == 0) {
32330Sstevel@tonic-gate 				goto success;	/* no more ptrs */
32340Sstevel@tonic-gate 			}
32350Sstevel@tonic-gate 
32360Sstevel@tonic-gate 			/*
32370Sstevel@tonic-gate 			 * first, get the pointer content
32380Sstevel@tonic-gate 			 */
32390Sstevel@tonic-gate 			if ((pdp->ptr[i].offset < 0) ||
32404870Sjg 			    (pdp->ptr[i].offset >
32414870Sjg 			    pdp->bytes - sizeof (char *)))
32420Sstevel@tonic-gate 				goto failure;	/* wrong offset */
32430Sstevel@tonic-gate 
32440Sstevel@tonic-gate 			pa = di_mem_addr(st, off + pdp->ptr[i].offset);
32453133Sjg 
32463133Sjg 			/* save a tmp ptr to store off_t later */
32473133Sjg 			tmp = (di_off_t *)(intptr_t)pa;
32483133Sjg 
32493133Sjg 			/* get pointer value, if NULL continue */
32503133Sjg 			ptr = *((void **) (intptr_t)pa);
32513133Sjg 			if (ptr == NULL) {
32520Sstevel@tonic-gate 				continue;
32530Sstevel@tonic-gate 			}
32540Sstevel@tonic-gate 
32550Sstevel@tonic-gate 			/*
32560Sstevel@tonic-gate 			 * next, find the repeat count (array dimension)
32570Sstevel@tonic-gate 			 */
32580Sstevel@tonic-gate 			repeat = pdp->ptr[i].len_offset;
32590Sstevel@tonic-gate 
32600Sstevel@tonic-gate 			/*
32610Sstevel@tonic-gate 			 * Positive value indicates a fixed sized array.
32620Sstevel@tonic-gate 			 * 0 or negative value indicates variable sized array.
32630Sstevel@tonic-gate 			 *
32640Sstevel@tonic-gate 			 * For variable sized array, the variable must be
32650Sstevel@tonic-gate 			 * an int member of the structure, with an offset
32660Sstevel@tonic-gate 			 * equal to the absolution value of struct member.
32670Sstevel@tonic-gate 			 */
32680Sstevel@tonic-gate 			if (repeat > pdp->bytes - sizeof (int)) {
32690Sstevel@tonic-gate 				goto failure;	/* wrong offset */
32700Sstevel@tonic-gate 			}
32710Sstevel@tonic-gate 
32720Sstevel@tonic-gate 			if (repeat >= 0) {
32733133Sjg 				repeat = *((int *)
32743133Sjg 				    (intptr_t)((caddr_t)data + repeat));
32750Sstevel@tonic-gate 			} else {
32760Sstevel@tonic-gate 				repeat = -repeat;
32770Sstevel@tonic-gate 			}
32780Sstevel@tonic-gate 
32790Sstevel@tonic-gate 			/*
32800Sstevel@tonic-gate 			 * next, get the size of the object to be copied
32810Sstevel@tonic-gate 			 */
32820Sstevel@tonic-gate 			size = pdp->ptr[i].size * repeat;
32830Sstevel@tonic-gate 
32840Sstevel@tonic-gate 			/*
32850Sstevel@tonic-gate 			 * Arbitrarily limit the total size of object to be
32860Sstevel@tonic-gate 			 * copied (1 byte to 1/4 page).
32870Sstevel@tonic-gate 			 */
32880Sstevel@tonic-gate 			if ((size <= 0) || (size > (DI_MAX_PRIVDATA - off0))) {
32890Sstevel@tonic-gate 				goto failure;	/* wrong size or too big */
32900Sstevel@tonic-gate 			}
32910Sstevel@tonic-gate 
32920Sstevel@tonic-gate 			/*
32930Sstevel@tonic-gate 			 * Now copy the data
32940Sstevel@tonic-gate 			 */
32950Sstevel@tonic-gate 			*tmp = off0;
32960Sstevel@tonic-gate 			bcopy(ptr, di_mem_addr(st, off + off0), size);
32970Sstevel@tonic-gate 			off0 += DI_ALIGN(size);
32980Sstevel@tonic-gate 		}
32990Sstevel@tonic-gate 	} else {
33000Sstevel@tonic-gate 		goto failure;
33010Sstevel@tonic-gate 	}
33020Sstevel@tonic-gate 
33030Sstevel@tonic-gate success:
33040Sstevel@tonic-gate 	/*
33050Sstevel@tonic-gate 	 * success if reached here
33060Sstevel@tonic-gate 	 */
33070Sstevel@tonic-gate 	no_fault();
33080Sstevel@tonic-gate 	*off_p = off;
33090Sstevel@tonic-gate 
33100Sstevel@tonic-gate 	return (off + off0);
33110Sstevel@tonic-gate 	/*NOTREACHED*/
33120Sstevel@tonic-gate 
33130Sstevel@tonic-gate failure:
33140Sstevel@tonic-gate 	/*
33150Sstevel@tonic-gate 	 * fault occurred
33160Sstevel@tonic-gate 	 */
33170Sstevel@tonic-gate 	no_fault();
33182271Scth 	path = kmem_alloc(MAXPATHLEN, KM_SLEEP);
33192271Scth 	cmn_err(CE_WARN, "devinfo: fault on private data for '%s' at %p",
33202271Scth 	    ddi_pathname((dev_info_t *)node, path), data);
33212271Scth 	kmem_free(path, MAXPATHLEN);
33220Sstevel@tonic-gate 	*off_p = -1;	/* set private data to indicate error */
33230Sstevel@tonic-gate 
33240Sstevel@tonic-gate 	return (off);
33250Sstevel@tonic-gate }
33260Sstevel@tonic-gate 
33270Sstevel@tonic-gate /*
33280Sstevel@tonic-gate  * get parent private data; on error, returns original offset
33290Sstevel@tonic-gate  */
33300Sstevel@tonic-gate static di_off_t
33310Sstevel@tonic-gate di_getppdata(struct dev_info *node, di_off_t *off_p, struct di_state *st)
33320Sstevel@tonic-gate {
33330Sstevel@tonic-gate 	int off;
33340Sstevel@tonic-gate 	struct di_priv_format *ppdp;
33350Sstevel@tonic-gate 
33360Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_getppdata:\n"));
33370Sstevel@tonic-gate 
33380Sstevel@tonic-gate 	/* find the parent data format */
33390Sstevel@tonic-gate 	if ((ppdp = di_match_drv_name(node, st, DI_MATCH_PARENT)) == NULL) {
33400Sstevel@tonic-gate 		off = *off_p;
33410Sstevel@tonic-gate 		*off_p = 0;	/* set parent data to none */
33420Sstevel@tonic-gate 		return (off);
33430Sstevel@tonic-gate 	}
33440Sstevel@tonic-gate 
33452271Scth 	return (di_getprvdata(ppdp, node,
33462271Scth 	    ddi_get_parent_data((dev_info_t *)node), off_p, st));
33470Sstevel@tonic-gate }
33480Sstevel@tonic-gate 
33490Sstevel@tonic-gate /*
33500Sstevel@tonic-gate  * get parent private data; returns original offset
33510Sstevel@tonic-gate  */
33520Sstevel@tonic-gate static di_off_t
33530Sstevel@tonic-gate di_getdpdata(struct dev_info *node, di_off_t *off_p, struct di_state *st)
33540Sstevel@tonic-gate {
33550Sstevel@tonic-gate 	int off;
33560Sstevel@tonic-gate 	struct di_priv_format *dpdp;
33570Sstevel@tonic-gate 
33580Sstevel@tonic-gate 	dcmn_err2((CE_CONT, "di_getdpdata:"));
33590Sstevel@tonic-gate 
33600Sstevel@tonic-gate 	/* find the parent data format */
33610Sstevel@tonic-gate 	if ((dpdp = di_match_drv_name(node, st, DI_MATCH_DRIVER)) == NULL) {
33620Sstevel@tonic-gate 		off = *off_p;
33630Sstevel@tonic-gate 		*off_p = 0;	/* set driver data to none */
33640Sstevel@tonic-gate 		return (off);
33650Sstevel@tonic-gate 	}
33660Sstevel@tonic-gate 
33672271Scth 	return (di_getprvdata(dpdp, node,
33682271Scth 	    ddi_get_driver_private((dev_info_t *)node), off_p, st));
33690Sstevel@tonic-gate }
33700Sstevel@tonic-gate 
33710Sstevel@tonic-gate /*
33720Sstevel@tonic-gate  * The driver is stateful across DINFOCPYALL and DINFOUSRLD.
33730Sstevel@tonic-gate  * This function encapsulates the state machine:
33740Sstevel@tonic-gate  *
33750Sstevel@tonic-gate  *	-> IOC_IDLE -> IOC_SNAP -> IOC_DONE -> IOC_COPY ->
33760Sstevel@tonic-gate  *	|		SNAPSHOT		USRLD	 |
33770Sstevel@tonic-gate  *	--------------------------------------------------
33780Sstevel@tonic-gate  *
33790Sstevel@tonic-gate  * Returns 0 on success and -1 on failure
33800Sstevel@tonic-gate  */
33810Sstevel@tonic-gate static int
33820Sstevel@tonic-gate di_setstate(struct di_state *st, int new_state)
33830Sstevel@tonic-gate {
33840Sstevel@tonic-gate 	int ret = 0;
33850Sstevel@tonic-gate 
33860Sstevel@tonic-gate 	mutex_enter(&di_lock);
33870Sstevel@tonic-gate 	switch (new_state) {
33880Sstevel@tonic-gate 	case IOC_IDLE:
33890Sstevel@tonic-gate 	case IOC_DONE:
33900Sstevel@tonic-gate 		break;
33910Sstevel@tonic-gate 	case IOC_SNAP:
33920Sstevel@tonic-gate 		if (st->di_iocstate != IOC_IDLE)
33930Sstevel@tonic-gate 			ret = -1;
33940Sstevel@tonic-gate 		break;
33950Sstevel@tonic-gate 	case IOC_COPY:
33960Sstevel@tonic-gate 		if (st->di_iocstate != IOC_DONE)
33970Sstevel@tonic-gate 			ret = -1;
33980Sstevel@tonic-gate 		break;
33990Sstevel@tonic-gate 	default:
34000Sstevel@tonic-gate 		ret = -1;
34010Sstevel@tonic-gate 	}
34020Sstevel@tonic-gate 
34030Sstevel@tonic-gate 	if (ret == 0)
34040Sstevel@tonic-gate 		st->di_iocstate = new_state;
34050Sstevel@tonic-gate 	else
34060Sstevel@tonic-gate 		cmn_err(CE_NOTE, "incorrect state transition from %d to %d",
34070Sstevel@tonic-gate 		    st->di_iocstate, new_state);
34080Sstevel@tonic-gate 	mutex_exit(&di_lock);
34090Sstevel@tonic-gate 	return (ret);
34100Sstevel@tonic-gate }
34110Sstevel@tonic-gate 
34120Sstevel@tonic-gate /*
34130Sstevel@tonic-gate  * We cannot assume the presence of the entire
34140Sstevel@tonic-gate  * snapshot in this routine. All we are guaranteed
34150Sstevel@tonic-gate  * is the di_all struct + 1 byte (for root_path)
34160Sstevel@tonic-gate  */
34170Sstevel@tonic-gate static int
34180Sstevel@tonic-gate header_plus_one_ok(struct di_all *all)
34190Sstevel@tonic-gate {
34200Sstevel@tonic-gate 	/*
34210Sstevel@tonic-gate 	 * Refuse to read old versions
34220Sstevel@tonic-gate 	 */
34230Sstevel@tonic-gate 	if (all->version != DI_SNAPSHOT_VERSION) {
34240Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "bad version: 0x%x", all->version));
34250Sstevel@tonic-gate 		return (0);
34260Sstevel@tonic-gate 	}
34270Sstevel@tonic-gate 
34280Sstevel@tonic-gate 	if (all->cache_magic != DI_CACHE_MAGIC) {
34290Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "bad magic #: 0x%x", all->cache_magic));
34300Sstevel@tonic-gate 		return (0);
34310Sstevel@tonic-gate 	}
34320Sstevel@tonic-gate 
34333133Sjg 	if (all->snapshot_time == 0) {
34340Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "bad timestamp: %ld", all->snapshot_time));
34350Sstevel@tonic-gate 		return (0);
34360Sstevel@tonic-gate 	}
34370Sstevel@tonic-gate 
34380Sstevel@tonic-gate 	if (all->top_devinfo == 0) {
34390Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "NULL top devinfo"));
34400Sstevel@tonic-gate 		return (0);
34410Sstevel@tonic-gate 	}
34420Sstevel@tonic-gate 
34430Sstevel@tonic-gate 	if (all->map_size < sizeof (*all) + 1) {
34440Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "bad map size: %u", all->map_size));
34450Sstevel@tonic-gate 		return (0);
34460Sstevel@tonic-gate 	}
34470Sstevel@tonic-gate 
34480Sstevel@tonic-gate 	if (all->root_path[0] != '/' || all->root_path[1] != '\0') {
34490Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "bad rootpath: %c%c",
34500Sstevel@tonic-gate 		    all->root_path[0], all->root_path[1]));
34510Sstevel@tonic-gate 		return (0);
34520Sstevel@tonic-gate 	}
34530Sstevel@tonic-gate 
34540Sstevel@tonic-gate 	/*
34550Sstevel@tonic-gate 	 * We can't check checksum here as we just have the header
34560Sstevel@tonic-gate 	 */
34570Sstevel@tonic-gate 
34580Sstevel@tonic-gate 	return (1);
34590Sstevel@tonic-gate }
34600Sstevel@tonic-gate 
34610Sstevel@tonic-gate static int
34620Sstevel@tonic-gate chunk_write(struct vnode *vp, offset_t off, caddr_t buf, size_t len)
34630Sstevel@tonic-gate {
34640Sstevel@tonic-gate 	rlim64_t	rlimit;
34650Sstevel@tonic-gate 	ssize_t		resid;
34660Sstevel@tonic-gate 	int		error = 0;
34670Sstevel@tonic-gate 
34680Sstevel@tonic-gate 
34690Sstevel@tonic-gate 	rlimit = RLIM64_INFINITY;
34700Sstevel@tonic-gate 
34710Sstevel@tonic-gate 	while (len) {
34720Sstevel@tonic-gate 		resid = 0;
34730Sstevel@tonic-gate 		error = vn_rdwr(UIO_WRITE, vp, buf, len, off,
34740Sstevel@tonic-gate 		    UIO_SYSSPACE, FSYNC, rlimit, kcred, &resid);
34750Sstevel@tonic-gate 
34760Sstevel@tonic-gate 		if (error || resid < 0) {
34770Sstevel@tonic-gate 			error = error ? error : EIO;
34780Sstevel@tonic-gate 			CACHE_DEBUG((DI_ERR, "write error: %d", error));
34790Sstevel@tonic-gate 			break;
34800Sstevel@tonic-gate 		}
34810Sstevel@tonic-gate 
34820Sstevel@tonic-gate 		/*
34830Sstevel@tonic-gate 		 * Check if we are making progress
34840Sstevel@tonic-gate 		 */
34850Sstevel@tonic-gate 		if (resid >= len) {
34860Sstevel@tonic-gate 			error = ENOSPC;
34870Sstevel@tonic-gate 			break;
34880Sstevel@tonic-gate 		}
34890Sstevel@tonic-gate 		buf += len - resid;
34900Sstevel@tonic-gate 		off += len - resid;
34910Sstevel@tonic-gate 		len = resid;
34920Sstevel@tonic-gate 	}
34930Sstevel@tonic-gate 
34940Sstevel@tonic-gate 	return (error);
34950Sstevel@tonic-gate }
34960Sstevel@tonic-gate 
34970Sstevel@tonic-gate extern int modrootloaded;
3498893Srs135747 extern void mdi_walk_vhcis(int (*)(dev_info_t *, void *), void *);
3499893Srs135747 extern void mdi_vhci_walk_phcis(dev_info_t *,
3500893Srs135747 	int (*)(dev_info_t *, void *), void *);
35010Sstevel@tonic-gate 
35020Sstevel@tonic-gate static void
35030Sstevel@tonic-gate di_cache_write(struct di_cache *cache)
35040Sstevel@tonic-gate {
35050Sstevel@tonic-gate 	struct di_all	*all;
35060Sstevel@tonic-gate 	struct vnode	*vp;
35070Sstevel@tonic-gate 	int		oflags;
35080Sstevel@tonic-gate 	size_t		map_size;
35090Sstevel@tonic-gate 	size_t		chunk;
35100Sstevel@tonic-gate 	offset_t	off;
35110Sstevel@tonic-gate 	int		error;
35120Sstevel@tonic-gate 	char		*buf;
35130Sstevel@tonic-gate 
35140Sstevel@tonic-gate 	ASSERT(DI_CACHE_LOCKED(*cache));
35150Sstevel@tonic-gate 	ASSERT(!servicing_interrupt());
35160Sstevel@tonic-gate 
35170Sstevel@tonic-gate 	if (cache->cache_size == 0) {
35180Sstevel@tonic-gate 		ASSERT(cache->cache_data == NULL);
35190Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "Empty cache. Skipping write"));
35200Sstevel@tonic-gate 		return;
35210Sstevel@tonic-gate 	}
35220Sstevel@tonic-gate 
35230Sstevel@tonic-gate 	ASSERT(cache->cache_size > 0);
35240Sstevel@tonic-gate 	ASSERT(cache->cache_data);
35250Sstevel@tonic-gate 
35260Sstevel@tonic-gate 	if (!modrootloaded || rootvp == NULL || vn_is_readonly(rootvp)) {
35270Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "Can't write to rootFS. Skipping write"));
35280Sstevel@tonic-gate 		return;
35290Sstevel@tonic-gate 	}
35300Sstevel@tonic-gate 
35310Sstevel@tonic-gate 	all = (struct di_all *)cache->cache_data;
35320Sstevel@tonic-gate 
35330Sstevel@tonic-gate 	if (!header_plus_one_ok(all)) {
35340Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "Invalid header. Skipping write"));
35350Sstevel@tonic-gate 		return;
35360Sstevel@tonic-gate 	}
35370Sstevel@tonic-gate 
35380Sstevel@tonic-gate 	ASSERT(strcmp(all->root_path, "/") == 0);
35390Sstevel@tonic-gate 
35400Sstevel@tonic-gate 	/*
35410Sstevel@tonic-gate 	 * The cache_size is the total allocated memory for the cache.
35420Sstevel@tonic-gate 	 * The map_size is the actual size of valid data in the cache.
35430Sstevel@tonic-gate 	 * map_size may be smaller than cache_size but cannot exceed
35440Sstevel@tonic-gate 	 * cache_size.
35450Sstevel@tonic-gate 	 */
35460Sstevel@tonic-gate 	if (all->map_size > cache->cache_size) {
35470Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "map_size (0x%x) > cache_size (0x%x)."
35480Sstevel@tonic-gate 		    " Skipping write", all->map_size, cache->cache_size));
35490Sstevel@tonic-gate 		return;
35500Sstevel@tonic-gate 	}
35510Sstevel@tonic-gate 
35520Sstevel@tonic-gate 	/*
35530Sstevel@tonic-gate 	 * First unlink the temp file
35540Sstevel@tonic-gate 	 */
35550Sstevel@tonic-gate 	error = vn_remove(DI_CACHE_TEMP, UIO_SYSSPACE, RMFILE);
35560Sstevel@tonic-gate 	if (error && error != ENOENT) {
35570Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: unlink failed: %d",
35580Sstevel@tonic-gate 		    DI_CACHE_TEMP, error));
35590Sstevel@tonic-gate 	}
35600Sstevel@tonic-gate 
35610Sstevel@tonic-gate 	if (error == EROFS) {
35620Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "RDONLY FS. Skipping write"));
35630Sstevel@tonic-gate 		return;
35640Sstevel@tonic-gate 	}
35650Sstevel@tonic-gate 
35660Sstevel@tonic-gate 	vp = NULL;
35670Sstevel@tonic-gate 	oflags = (FCREAT|FWRITE);
35680Sstevel@tonic-gate 	if (error = vn_open(DI_CACHE_TEMP, UIO_SYSSPACE, oflags,
35690Sstevel@tonic-gate 	    DI_CACHE_PERMS, &vp, CRCREAT, 0)) {
35700Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: create failed: %d",
35710Sstevel@tonic-gate 		    DI_CACHE_TEMP, error));
35720Sstevel@tonic-gate 		return;
35730Sstevel@tonic-gate 	}
35740Sstevel@tonic-gate 
35750Sstevel@tonic-gate 	ASSERT(vp);
35760Sstevel@tonic-gate 
35770Sstevel@tonic-gate 	/*
35780Sstevel@tonic-gate 	 * Paranoid: Check if the file is on a read-only FS
35790Sstevel@tonic-gate 	 */
35800Sstevel@tonic-gate 	if (vn_is_readonly(vp)) {
35810Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "cannot write: readonly FS"));
35820Sstevel@tonic-gate 		goto fail;
35830Sstevel@tonic-gate 	}
35840Sstevel@tonic-gate 
35850Sstevel@tonic-gate 	/*
35860Sstevel@tonic-gate 	 * Note that we only write map_size bytes to disk - this saves
35870Sstevel@tonic-gate 	 * space as the actual cache size may be larger than size of
35880Sstevel@tonic-gate 	 * valid data in the cache.
35890Sstevel@tonic-gate 	 * Another advantage is that it makes verification of size
35900Sstevel@tonic-gate 	 * easier when the file is read later.
35910Sstevel@tonic-gate 	 */
35920Sstevel@tonic-gate 	map_size = all->map_size;
35930Sstevel@tonic-gate 	off = 0;
35940Sstevel@tonic-gate 	buf = cache->cache_data;
35950Sstevel@tonic-gate 
35960Sstevel@tonic-gate 	while (map_size) {
35970Sstevel@tonic-gate 		ASSERT(map_size > 0);
35980Sstevel@tonic-gate 		/*
35990Sstevel@tonic-gate 		 * Write in chunks so that VM system
36000Sstevel@tonic-gate 		 * is not overwhelmed
36010Sstevel@tonic-gate 		 */
36020Sstevel@tonic-gate 		if (map_size > di_chunk * PAGESIZE)
36030Sstevel@tonic-gate 			chunk = di_chunk * PAGESIZE;
36040Sstevel@tonic-gate 		else
36050Sstevel@tonic-gate 			chunk = map_size;
36060Sstevel@tonic-gate 
36070Sstevel@tonic-gate 		error = chunk_write(vp, off, buf, chunk);
36080Sstevel@tonic-gate 		if (error) {
36090Sstevel@tonic-gate 			CACHE_DEBUG((DI_ERR, "write failed: off=0x%x: %d",
36100Sstevel@tonic-gate 			    off, error));
36110Sstevel@tonic-gate 			goto fail;
36120Sstevel@tonic-gate 		}
36130Sstevel@tonic-gate 
36140Sstevel@tonic-gate 		off += chunk;
36150Sstevel@tonic-gate 		buf += chunk;
36160Sstevel@tonic-gate 		map_size -= chunk;
36170Sstevel@tonic-gate 
36180Sstevel@tonic-gate 		/* Give pageout a chance to run */
36190Sstevel@tonic-gate 		delay(1);
36200Sstevel@tonic-gate 	}
36210Sstevel@tonic-gate 
36220Sstevel@tonic-gate 	/*
36230Sstevel@tonic-gate 	 * Now sync the file and close it
36240Sstevel@tonic-gate 	 */
36255331Samw 	if (error = VOP_FSYNC(vp, FSYNC, kcred, NULL)) {
36260Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "FSYNC failed: %d", error));
36270Sstevel@tonic-gate 	}
36280Sstevel@tonic-gate 
36295331Samw 	if (error = VOP_CLOSE(vp, oflags, 1, (offset_t)0, kcred, NULL)) {
36300Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "close() failed: %d", error));
36310Sstevel@tonic-gate 		VN_RELE(vp);
36320Sstevel@tonic-gate 		return;
36330Sstevel@tonic-gate 	}
36340Sstevel@tonic-gate 
36350Sstevel@tonic-gate 	VN_RELE(vp);
36360Sstevel@tonic-gate 
36370Sstevel@tonic-gate 	/*
36380Sstevel@tonic-gate 	 * Now do the rename
36390Sstevel@tonic-gate 	 */
36400Sstevel@tonic-gate 	if (error = vn_rename(DI_CACHE_TEMP, DI_CACHE_FILE, UIO_SYSSPACE)) {
36410Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "rename failed: %d", error));
36420Sstevel@tonic-gate 		return;
36430Sstevel@tonic-gate 	}
36440Sstevel@tonic-gate 
36450Sstevel@tonic-gate 	CACHE_DEBUG((DI_INFO, "Cache write successful."));
36460Sstevel@tonic-gate 
36470Sstevel@tonic-gate 	return;
36480Sstevel@tonic-gate 
36490Sstevel@tonic-gate fail:
36505331Samw 	(void) VOP_CLOSE(vp, oflags, 1, (offset_t)0, kcred, NULL);
36510Sstevel@tonic-gate 	VN_RELE(vp);
36520Sstevel@tonic-gate }
36530Sstevel@tonic-gate 
36540Sstevel@tonic-gate 
36550Sstevel@tonic-gate /*
36560Sstevel@tonic-gate  * Since we could be called early in boot,
36570Sstevel@tonic-gate  * use kobj_read_file()
36580Sstevel@tonic-gate  */
36590Sstevel@tonic-gate static void
36600Sstevel@tonic-gate di_cache_read(struct di_cache *cache)
36610Sstevel@tonic-gate {
36620Sstevel@tonic-gate 	struct _buf	*file;
36630Sstevel@tonic-gate 	struct di_all	*all;
36640Sstevel@tonic-gate 	int		n;
36650Sstevel@tonic-gate 	size_t		map_size, sz, chunk;
36660Sstevel@tonic-gate 	offset_t	off;
36670Sstevel@tonic-gate 	caddr_t		buf;
36680Sstevel@tonic-gate 	uint32_t	saved_crc, crc;
36690Sstevel@tonic-gate 
36700Sstevel@tonic-gate 	ASSERT(modrootloaded);
36710Sstevel@tonic-gate 	ASSERT(DI_CACHE_LOCKED(*cache));
36720Sstevel@tonic-gate 	ASSERT(cache->cache_data == NULL);
36730Sstevel@tonic-gate 	ASSERT(cache->cache_size == 0);
36740Sstevel@tonic-gate 	ASSERT(!servicing_interrupt());
36750Sstevel@tonic-gate 
36760Sstevel@tonic-gate 	file = kobj_open_file(DI_CACHE_FILE);
36770Sstevel@tonic-gate 	if (file == (struct _buf *)-1) {
36780Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: open failed: %d",
36790Sstevel@tonic-gate 		    DI_CACHE_FILE, ENOENT));
36800Sstevel@tonic-gate 		return;
36810Sstevel@tonic-gate 	}
36820Sstevel@tonic-gate 
36830Sstevel@tonic-gate 	/*
36840Sstevel@tonic-gate 	 * Read in the header+root_path first. The root_path must be "/"
36850Sstevel@tonic-gate 	 */
36860Sstevel@tonic-gate 	all = kmem_zalloc(sizeof (*all) + 1, KM_SLEEP);
36870Sstevel@tonic-gate 	n = kobj_read_file(file, (caddr_t)all, sizeof (*all) + 1, 0);
36880Sstevel@tonic-gate 
36890Sstevel@tonic-gate 	if ((n != sizeof (*all) + 1) || !header_plus_one_ok(all)) {
36900Sstevel@tonic-gate 		kmem_free(all, sizeof (*all) + 1);
36910Sstevel@tonic-gate 		kobj_close_file(file);
36920Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "cache header: read error or invalid"));
36930Sstevel@tonic-gate 		return;
36940Sstevel@tonic-gate 	}
36950Sstevel@tonic-gate 
36960Sstevel@tonic-gate 	map_size = all->map_size;
36970Sstevel@tonic-gate 
36980Sstevel@tonic-gate 	kmem_free(all, sizeof (*all) + 1);
36990Sstevel@tonic-gate 
37000Sstevel@tonic-gate 	ASSERT(map_size >= sizeof (*all) + 1);
37010Sstevel@tonic-gate 
37020Sstevel@tonic-gate 	buf = di_cache.cache_data = kmem_alloc(map_size, KM_SLEEP);
37030Sstevel@tonic-gate 	sz = map_size;
37040Sstevel@tonic-gate 	off = 0;
37050Sstevel@tonic-gate 	while (sz) {
37060Sstevel@tonic-gate 		/* Don't overload VM with large reads */
37070Sstevel@tonic-gate 		chunk = (sz > di_chunk * PAGESIZE) ? di_chunk * PAGESIZE : sz;
37080Sstevel@tonic-gate 		n = kobj_read_file(file, buf, chunk, off);
37090Sstevel@tonic-gate 		if (n != chunk) {
37100Sstevel@tonic-gate 			CACHE_DEBUG((DI_ERR, "%s: read error at offset: %lld",
37110Sstevel@tonic-gate 			    DI_CACHE_FILE, off));
37120Sstevel@tonic-gate 			goto fail;
37130Sstevel@tonic-gate 		}
37140Sstevel@tonic-gate 		off += chunk;
37150Sstevel@tonic-gate 		buf += chunk;
37160Sstevel@tonic-gate 		sz -= chunk;
37170Sstevel@tonic-gate 	}
37180Sstevel@tonic-gate 
37190Sstevel@tonic-gate 	ASSERT(off == map_size);
37200Sstevel@tonic-gate 
37210Sstevel@tonic-gate 	/*
37220Sstevel@tonic-gate 	 * Read past expected EOF to verify size.
37230Sstevel@tonic-gate 	 */
37240Sstevel@tonic-gate 	if (kobj_read_file(file, (caddr_t)&sz, 1, off) > 0) {
37250Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: file size changed", DI_CACHE_FILE));
37260Sstevel@tonic-gate 		goto fail;
37270Sstevel@tonic-gate 	}
37280Sstevel@tonic-gate 
37290Sstevel@tonic-gate 	all = (struct di_all *)di_cache.cache_data;
37300Sstevel@tonic-gate 	if (!header_plus_one_ok(all)) {
37310Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: file header changed", DI_CACHE_FILE));
37320Sstevel@tonic-gate 		goto fail;
37330Sstevel@tonic-gate 	}
37340Sstevel@tonic-gate 
37350Sstevel@tonic-gate 	/*
37360Sstevel@tonic-gate 	 * Compute CRC with checksum field in the cache data set to 0
37370Sstevel@tonic-gate 	 */
37380Sstevel@tonic-gate 	saved_crc = all->cache_checksum;
37390Sstevel@tonic-gate 	all->cache_checksum = 0;
37400Sstevel@tonic-gate 	CRC32(crc, di_cache.cache_data, map_size, -1U, crc32_table);
37410Sstevel@tonic-gate 	all->cache_checksum = saved_crc;
37420Sstevel@tonic-gate 
37430Sstevel@tonic-gate 	if (crc != all->cache_checksum) {
37440Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR,
37450Sstevel@tonic-gate 		    "%s: checksum error: expected=0x%x actual=0x%x",
37460Sstevel@tonic-gate 		    DI_CACHE_FILE, all->cache_checksum, crc));
37470Sstevel@tonic-gate 		goto fail;
37480Sstevel@tonic-gate 	}
37490Sstevel@tonic-gate 
37500Sstevel@tonic-gate 	if (all->map_size != map_size) {
37510Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "%s: map size changed", DI_CACHE_FILE));
37520Sstevel@tonic-gate 		goto fail;
37530Sstevel@tonic-gate 	}
37540Sstevel@tonic-gate 
37550Sstevel@tonic-gate 	kobj_close_file(file);
37560Sstevel@tonic-gate 
37570Sstevel@tonic-gate 	di_cache.cache_size = map_size;
37580Sstevel@tonic-gate 
37590Sstevel@tonic-gate 	return;
37600Sstevel@tonic-gate 
37610Sstevel@tonic-gate fail:
37620Sstevel@tonic-gate 	kmem_free(di_cache.cache_data, map_size);
37630Sstevel@tonic-gate 	kobj_close_file(file);
37640Sstevel@tonic-gate 	di_cache.cache_data = NULL;
37650Sstevel@tonic-gate 	di_cache.cache_size = 0;
37660Sstevel@tonic-gate }
37670Sstevel@tonic-gate 
37680Sstevel@tonic-gate 
37690Sstevel@tonic-gate /*
37700Sstevel@tonic-gate  * Checks if arguments are valid for using the cache.
37710Sstevel@tonic-gate  */
37720Sstevel@tonic-gate static int
37730Sstevel@tonic-gate cache_args_valid(struct di_state *st, int *error)
37740Sstevel@tonic-gate {
37750Sstevel@tonic-gate 	ASSERT(error);
37760Sstevel@tonic-gate 	ASSERT(st->mem_size > 0);
37770Sstevel@tonic-gate 	ASSERT(st->memlist != NULL);
37780Sstevel@tonic-gate 
37790Sstevel@tonic-gate 	if (!modrootloaded || !i_ddi_io_initialized()) {
37800Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR,
37810Sstevel@tonic-gate 		    "cache lookup failure: I/O subsystem not inited"));
37820Sstevel@tonic-gate 		*error = ENOTACTIVE;
37830Sstevel@tonic-gate 		return (0);
37840Sstevel@tonic-gate 	}
37850Sstevel@tonic-gate 
37860Sstevel@tonic-gate 	/*
37870Sstevel@tonic-gate 	 * No other flags allowed with DINFOCACHE
37880Sstevel@tonic-gate 	 */
37890Sstevel@tonic-gate 	if (st->command != (DINFOCACHE & DIIOC_MASK)) {
37900Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR,
37910Sstevel@tonic-gate 		    "cache lookup failure: bad flags: 0x%x",
37920Sstevel@tonic-gate 		    st->command));
37930Sstevel@tonic-gate 		*error = EINVAL;
37940Sstevel@tonic-gate 		return (0);
37950Sstevel@tonic-gate 	}
37960Sstevel@tonic-gate 
37970Sstevel@tonic-gate 	if (strcmp(DI_ALL_PTR(st)->root_path, "/") != 0) {
37980Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR,
37990Sstevel@tonic-gate 		    "cache lookup failure: bad root: %s",
38000Sstevel@tonic-gate 		    DI_ALL_PTR(st)->root_path));
38010Sstevel@tonic-gate 		*error = EINVAL;
38020Sstevel@tonic-gate 		return (0);
38030Sstevel@tonic-gate 	}
38040Sstevel@tonic-gate 
38050Sstevel@tonic-gate 	CACHE_DEBUG((DI_INFO, "cache lookup args ok: 0x%x", st->command));
38060Sstevel@tonic-gate 
38070Sstevel@tonic-gate 	*error = 0;
38080Sstevel@tonic-gate 
38090Sstevel@tonic-gate 	return (1);
38100Sstevel@tonic-gate }
38110Sstevel@tonic-gate 
38120Sstevel@tonic-gate static int
38130Sstevel@tonic-gate snapshot_is_cacheable(struct di_state *st)
38140Sstevel@tonic-gate {
38150Sstevel@tonic-gate 	ASSERT(st->mem_size > 0);
38160Sstevel@tonic-gate 	ASSERT(st->memlist != NULL);
38170Sstevel@tonic-gate 
3818878Sramat 	if ((st->command & DI_CACHE_SNAPSHOT_FLAGS) !=
3819878Sramat 	    (DI_CACHE_SNAPSHOT_FLAGS & DIIOC_MASK)) {
38200Sstevel@tonic-gate 		CACHE_DEBUG((DI_INFO,
38210Sstevel@tonic-gate 		    "not cacheable: incompatible flags: 0x%x",
38220Sstevel@tonic-gate 		    st->command));
38230Sstevel@tonic-gate 		return (0);
38240Sstevel@tonic-gate 	}
38250Sstevel@tonic-gate 
38260Sstevel@tonic-gate 	if (strcmp(DI_ALL_PTR(st)->root_path, "/") != 0) {
38270Sstevel@tonic-gate 		CACHE_DEBUG((DI_INFO,
38280Sstevel@tonic-gate 		    "not cacheable: incompatible root path: %s",
38290Sstevel@tonic-gate 		    DI_ALL_PTR(st)->root_path));
38300Sstevel@tonic-gate 		return (0);
38310Sstevel@tonic-gate 	}
38320Sstevel@tonic-gate 
38330Sstevel@tonic-gate 	CACHE_DEBUG((DI_INFO, "cacheable snapshot request: 0x%x", st->command));
38340Sstevel@tonic-gate 
38350Sstevel@tonic-gate 	return (1);
38360Sstevel@tonic-gate }
38370Sstevel@tonic-gate 
38380Sstevel@tonic-gate static int
38390Sstevel@tonic-gate di_cache_lookup(struct di_state *st)
38400Sstevel@tonic-gate {
38410Sstevel@tonic-gate 	size_t	rval;
38420Sstevel@tonic-gate 	int	cache_valid;
38430Sstevel@tonic-gate 
38440Sstevel@tonic-gate 	ASSERT(cache_args_valid(st, &cache_valid));
38450Sstevel@tonic-gate 	ASSERT(modrootloaded);
38460Sstevel@tonic-gate 
38470Sstevel@tonic-gate 	DI_CACHE_LOCK(di_cache);
38480Sstevel@tonic-gate 
38490Sstevel@tonic-gate 	/*
38500Sstevel@tonic-gate 	 * The following assignment determines the validity
38510Sstevel@tonic-gate 	 * of the cache as far as this snapshot is concerned.
38520Sstevel@tonic-gate 	 */
38530Sstevel@tonic-gate 	cache_valid = di_cache.cache_valid;
38540Sstevel@tonic-gate 
38550Sstevel@tonic-gate 	if (cache_valid && di_cache.cache_data == NULL) {
38560Sstevel@tonic-gate 		di_cache_read(&di_cache);
38570Sstevel@tonic-gate 		/* check for read or file error */
38580Sstevel@tonic-gate 		if (di_cache.cache_data == NULL)
38590Sstevel@tonic-gate 			cache_valid = 0;
38600Sstevel@tonic-gate 	}
38610Sstevel@tonic-gate 
38620Sstevel@tonic-gate 	if (cache_valid) {
38630Sstevel@tonic-gate 		/*
38640Sstevel@tonic-gate 		 * Ok, the cache was valid as of this particular
38650Sstevel@tonic-gate 		 * snapshot. Copy the cached snapshot. This is safe
38660Sstevel@tonic-gate 		 * to do as the cache cannot be freed (we hold the
38670Sstevel@tonic-gate 		 * cache lock). Free the memory allocated in di_state
38680Sstevel@tonic-gate 		 * up until this point - we will simply copy everything
38690Sstevel@tonic-gate 		 * in the cache.
38700Sstevel@tonic-gate 		 */
38710Sstevel@tonic-gate 
38720Sstevel@tonic-gate 		ASSERT(di_cache.cache_data != NULL);
38730Sstevel@tonic-gate 		ASSERT(di_cache.cache_size > 0);
38740Sstevel@tonic-gate 
38750Sstevel@tonic-gate 		di_freemem(st);
38760Sstevel@tonic-gate 
38770Sstevel@tonic-gate 		rval = 0;
38780Sstevel@tonic-gate 		if (di_cache2mem(&di_cache, st) > 0) {
38790Sstevel@tonic-gate 
38800Sstevel@tonic-gate 			ASSERT(DI_ALL_PTR(st));
38810Sstevel@tonic-gate 
38820Sstevel@tonic-gate 			/*
38830Sstevel@tonic-gate 			 * map_size is size of valid data in the
38840Sstevel@tonic-gate 			 * cached snapshot and may be less than
38850Sstevel@tonic-gate 			 * size of the cache.
38860Sstevel@tonic-gate 			 */
38870Sstevel@tonic-gate 			rval = DI_ALL_PTR(st)->map_size;
38880Sstevel@tonic-gate 
38890Sstevel@tonic-gate 			ASSERT(rval >= sizeof (struct di_all));
38900Sstevel@tonic-gate 			ASSERT(rval <= di_cache.cache_size);
38910Sstevel@tonic-gate 		}
38920Sstevel@tonic-gate 	} else {
38930Sstevel@tonic-gate 		/*
38940Sstevel@tonic-gate 		 * The cache isn't valid, we need to take a snapshot.
38950Sstevel@tonic-gate 		 * Set the command flags appropriately
38960Sstevel@tonic-gate 		 */
38970Sstevel@tonic-gate 		ASSERT(st->command == (DINFOCACHE & DIIOC_MASK));
38980Sstevel@tonic-gate 		st->command = (DI_CACHE_SNAPSHOT_FLAGS & DIIOC_MASK);
38990Sstevel@tonic-gate 		rval = di_cache_update(st);
39000Sstevel@tonic-gate 		st->command = (DINFOCACHE & DIIOC_MASK);
39010Sstevel@tonic-gate 	}
39020Sstevel@tonic-gate 
39030Sstevel@tonic-gate 	DI_CACHE_UNLOCK(di_cache);
39040Sstevel@tonic-gate 
39050Sstevel@tonic-gate 	/*
39060Sstevel@tonic-gate 	 * For cached snapshots, the devinfo driver always returns
39070Sstevel@tonic-gate 	 * a snapshot rooted at "/".
39080Sstevel@tonic-gate 	 */
39090Sstevel@tonic-gate 	ASSERT(rval == 0 || strcmp(DI_ALL_PTR(st)->root_path, "/") == 0);
39100Sstevel@tonic-gate 
39113133Sjg 	return ((int)rval);
39120Sstevel@tonic-gate }
39130Sstevel@tonic-gate 
39140Sstevel@tonic-gate /*
39150Sstevel@tonic-gate  * This is a forced update of the cache  - the previous state of the cache
39160Sstevel@tonic-gate  * may be:
39170Sstevel@tonic-gate  *	- unpopulated
39180Sstevel@tonic-gate  *	- populated and invalid
39190Sstevel@tonic-gate  *	- populated and valid
39200Sstevel@tonic-gate  */
39210Sstevel@tonic-gate static int
39220Sstevel@tonic-gate di_cache_update(struct di_state *st)
39230Sstevel@tonic-gate {
39240Sstevel@tonic-gate 	int rval;
39250Sstevel@tonic-gate 	uint32_t crc;
39260Sstevel@tonic-gate 	struct di_all *all;
39270Sstevel@tonic-gate 
39280Sstevel@tonic-gate 	ASSERT(DI_CACHE_LOCKED(di_cache));
39290Sstevel@tonic-gate 	ASSERT(snapshot_is_cacheable(st));
39300Sstevel@tonic-gate 
39310Sstevel@tonic-gate 	/*
39320Sstevel@tonic-gate 	 * Free the in-core cache and the on-disk file (if they exist)
39330Sstevel@tonic-gate 	 */
39340Sstevel@tonic-gate 	i_ddi_di_cache_free(&di_cache);
39350Sstevel@tonic-gate 
39360Sstevel@tonic-gate 	/*
39370Sstevel@tonic-gate 	 * Set valid flag before taking the snapshot,
39380Sstevel@tonic-gate 	 * so that any invalidations that arrive
39390Sstevel@tonic-gate 	 * during or after the snapshot are not
39400Sstevel@tonic-gate 	 * removed by us.
39410Sstevel@tonic-gate 	 */
39420Sstevel@tonic-gate 	atomic_or_32(&di_cache.cache_valid, 1);
39430Sstevel@tonic-gate 
3944878Sramat 	rval = di_snapshot_and_clean(st);
39450Sstevel@tonic-gate 
39460Sstevel@tonic-gate 	if (rval == 0) {
39470Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "can't update cache: bad snapshot"));
39480Sstevel@tonic-gate 		return (0);
39490Sstevel@tonic-gate 	}
39500Sstevel@tonic-gate 
39510Sstevel@tonic-gate 	DI_ALL_PTR(st)->map_size = rval;
39520Sstevel@tonic-gate 
39530Sstevel@tonic-gate 	if (di_mem2cache(st, &di_cache) == 0) {
39540Sstevel@tonic-gate 		CACHE_DEBUG((DI_ERR, "can't update cache: copy failed"));
39550Sstevel@tonic-gate 		return (0);
39560Sstevel@tonic-gate 	}
39570Sstevel@tonic-gate 
39580Sstevel@tonic-gate 	ASSERT(di_cache.cache_data);
39590Sstevel@tonic-gate 	ASSERT(di_cache.cache_size > 0);
39600Sstevel@tonic-gate 
39610Sstevel@tonic-gate 	/*
39620Sstevel@tonic-gate 	 * Now that we have cached the snapshot, compute its checksum.
39630Sstevel@tonic-gate 	 * The checksum is only computed over the valid data in the
39640Sstevel@tonic-gate 	 * cache, not the entire cache.
39650Sstevel@tonic-gate 	 * Also, set all the fields (except checksum) before computing
39660Sstevel@tonic-gate 	 * checksum.
39670Sstevel@tonic-gate 	 */
39680Sstevel@tonic-gate 	all = (struct di_all *)di_cache.cache_data;
39690Sstevel@tonic-gate 	all->cache_magic = DI_CACHE_MAGIC;
39700Sstevel@tonic-gate 	all->map_size = rval;
39710Sstevel@tonic-gate 
39720Sstevel@tonic-gate 	ASSERT(all->cache_checksum == 0);
39730Sstevel@tonic-gate 	CRC32(crc, di_cache.cache_data, all->map_size, -1U, crc32_table);
39740Sstevel@tonic-gate 	all->cache_checksum = crc;
39750Sstevel@tonic-gate 
39760Sstevel@tonic-gate 	di_cache_write(&di_cache);
39770Sstevel@tonic-gate 
39780Sstevel@tonic-gate 	return (rval);
39790Sstevel@tonic-gate }
39800Sstevel@tonic-gate 
39810Sstevel@tonic-gate static void
39820Sstevel@tonic-gate di_cache_print(di_cache_debug_t msglevel, char *fmt, ...)
39830Sstevel@tonic-gate {
39840Sstevel@tonic-gate 	va_list	ap;
39850Sstevel@tonic-gate 
39860Sstevel@tonic-gate 	if (di_cache_debug <= DI_QUIET)
39870Sstevel@tonic-gate 		return;
39880Sstevel@tonic-gate 
39890Sstevel@tonic-gate 	if (di_cache_debug < msglevel)
39900Sstevel@tonic-gate 		return;
39910Sstevel@tonic-gate 
39920Sstevel@tonic-gate 	switch (msglevel) {
39930Sstevel@tonic-gate 		case DI_ERR:
39940Sstevel@tonic-gate 			msglevel = CE_WARN;
39950Sstevel@tonic-gate 			break;
39960Sstevel@tonic-gate 		case DI_INFO:
39970Sstevel@tonic-gate 		case DI_TRACE:
39980Sstevel@tonic-gate 		default:
39990Sstevel@tonic-gate 			msglevel = CE_NOTE;
40000Sstevel@tonic-gate 			break;
40010Sstevel@tonic-gate 	}
40020Sstevel@tonic-gate 
40030Sstevel@tonic-gate 	va_start(ap, fmt);
40040Sstevel@tonic-gate 	vcmn_err(msglevel, fmt, ap);
40050Sstevel@tonic-gate 	va_end(ap);
40060Sstevel@tonic-gate }
4007