Statistics
| Branch: | Revision:

root / hw / sd.c @ 9c22a623

History | View | Annotate | Download (44.4 kB)

1 5fafdf24 ths
/*
2 a1bb27b1 pbrook
 * SD Memory Card emulation as defined in the "SD Memory Card Physical
3 a1bb27b1 pbrook
 * layer specification, Version 1.10."
4 a1bb27b1 pbrook
 *
5 a1bb27b1 pbrook
 * Copyright (c) 2006 Andrzej Zaborowski  <balrog@zabor.org>
6 a1bb27b1 pbrook
 * Copyright (c) 2007 CodeSourcery
7 a1bb27b1 pbrook
 *
8 a1bb27b1 pbrook
 * Redistribution and use in source and binary forms, with or without
9 a1bb27b1 pbrook
 * modification, are permitted provided that the following conditions
10 a1bb27b1 pbrook
 * are met:
11 a1bb27b1 pbrook
 *
12 a1bb27b1 pbrook
 * 1. Redistributions of source code must retain the above copyright
13 a1bb27b1 pbrook
 *    notice, this list of conditions and the following disclaimer.
14 a1bb27b1 pbrook
 * 2. Redistributions in binary form must reproduce the above copyright
15 a1bb27b1 pbrook
 *    notice, this list of conditions and the following disclaimer in
16 a1bb27b1 pbrook
 *    the documentation and/or other materials provided with the
17 a1bb27b1 pbrook
 *    distribution.
18 a1bb27b1 pbrook
 *
19 a1bb27b1 pbrook
 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS''
20 a1bb27b1 pbrook
 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
21 a1bb27b1 pbrook
 * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A
22 a1bb27b1 pbrook
 * PARTICULAR PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR
23 a1bb27b1 pbrook
 * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
24 a1bb27b1 pbrook
 * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
25 a1bb27b1 pbrook
 * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
26 a1bb27b1 pbrook
 * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY
27 a1bb27b1 pbrook
 * OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
28 a1bb27b1 pbrook
 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
29 a1bb27b1 pbrook
 * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
30 a1bb27b1 pbrook
 */
31 a1bb27b1 pbrook
32 87ecb68b pbrook
#include "hw.h"
33 87ecb68b pbrook
#include "block.h"
34 a1bb27b1 pbrook
#include "sd.h"
35 a1bb27b1 pbrook
36 a1bb27b1 pbrook
//#define DEBUG_SD 1
37 a1bb27b1 pbrook
38 a1bb27b1 pbrook
#ifdef DEBUG_SD
39 a1bb27b1 pbrook
#define DPRINTF(fmt, args...) \
40 827df9f3 balrog
do { fprintf(stderr, "SD: " fmt , ##args); } while (0)
41 a1bb27b1 pbrook
#else
42 a1bb27b1 pbrook
#define DPRINTF(fmt, args...) do {} while(0)
43 a1bb27b1 pbrook
#endif
44 a1bb27b1 pbrook
45 a1bb27b1 pbrook
typedef enum {
46 a1bb27b1 pbrook
    sd_r0 = 0,    /* no response */
47 a1bb27b1 pbrook
    sd_r1,        /* normal response command */
48 a1bb27b1 pbrook
    sd_r2_i,      /* CID register */
49 a1bb27b1 pbrook
    sd_r2_s,      /* CSD register */
50 a1bb27b1 pbrook
    sd_r3,        /* OCR register */
51 a1bb27b1 pbrook
    sd_r6 = 6,    /* Published RCA response */
52 1b088995 balrog
    sd_r7,        /* Operating voltage */
53 a1bb27b1 pbrook
    sd_r1b = -1,
54 a1bb27b1 pbrook
} sd_rsp_type_t;
55 a1bb27b1 pbrook
56 a1bb27b1 pbrook
struct SDState {
57 a1bb27b1 pbrook
    enum {
58 a1bb27b1 pbrook
        sd_inactive,
59 a1bb27b1 pbrook
        sd_card_identification_mode,
60 a1bb27b1 pbrook
        sd_data_transfer_mode,
61 a1bb27b1 pbrook
    } mode;
62 a1bb27b1 pbrook
    enum {
63 a1bb27b1 pbrook
        sd_inactive_state = -1,
64 a1bb27b1 pbrook
        sd_idle_state = 0,
65 a1bb27b1 pbrook
        sd_ready_state,
66 a1bb27b1 pbrook
        sd_identification_state,
67 a1bb27b1 pbrook
        sd_standby_state,
68 a1bb27b1 pbrook
        sd_transfer_state,
69 a1bb27b1 pbrook
        sd_sendingdata_state,
70 a1bb27b1 pbrook
        sd_receivingdata_state,
71 a1bb27b1 pbrook
        sd_programming_state,
72 a1bb27b1 pbrook
        sd_disconnect_state,
73 a1bb27b1 pbrook
    } state;
74 a1bb27b1 pbrook
    uint32_t ocr;
75 a1bb27b1 pbrook
    uint8_t scr[8];
76 a1bb27b1 pbrook
    uint8_t cid[16];
77 a1bb27b1 pbrook
    uint8_t csd[16];
78 a1bb27b1 pbrook
    uint16_t rca;
79 a1bb27b1 pbrook
    uint32_t card_status;
80 a1bb27b1 pbrook
    uint8_t sd_status[64];
81 1b088995 balrog
    uint32_t vhs;
82 a1bb27b1 pbrook
    int wp_switch;
83 a1bb27b1 pbrook
    int *wp_groups;
84 a1bb27b1 pbrook
    uint32_t size;
85 a1bb27b1 pbrook
    int blk_len;
86 a1bb27b1 pbrook
    uint32_t erase_start;
87 a1bb27b1 pbrook
    uint32_t erase_end;
88 a1bb27b1 pbrook
    uint8_t pwd[16];
89 a1bb27b1 pbrook
    int pwd_len;
90 a1bb27b1 pbrook
    int function_group[6];
91 a1bb27b1 pbrook
92 775616c3 pbrook
    int spi;
93 a1bb27b1 pbrook
    int current_cmd;
94 a1bb27b1 pbrook
    int blk_written;
95 a1bb27b1 pbrook
    uint32_t data_start;
96 a1bb27b1 pbrook
    uint32_t data_offset;
97 a1bb27b1 pbrook
    uint8_t data[512];
98 02ce600c balrog
    qemu_irq readonly_cb;
99 02ce600c balrog
    qemu_irq inserted_cb;
100 a1bb27b1 pbrook
    BlockDriverState *bdrv;
101 33f00271 balrog
    uint8_t *buf;
102 827df9f3 balrog
103 827df9f3 balrog
    int enable;
104 a1bb27b1 pbrook
};
105 a1bb27b1 pbrook
106 a1bb27b1 pbrook
static void sd_set_status(SDState *sd)
107 a1bb27b1 pbrook
{
108 a1bb27b1 pbrook
    switch (sd->state) {
109 a1bb27b1 pbrook
    case sd_inactive_state:
110 a1bb27b1 pbrook
        sd->mode = sd_inactive;
111 a1bb27b1 pbrook
        break;
112 a1bb27b1 pbrook
113 a1bb27b1 pbrook
    case sd_idle_state:
114 a1bb27b1 pbrook
    case sd_ready_state:
115 a1bb27b1 pbrook
    case sd_identification_state:
116 a1bb27b1 pbrook
        sd->mode = sd_card_identification_mode;
117 a1bb27b1 pbrook
        break;
118 a1bb27b1 pbrook
119 a1bb27b1 pbrook
    case sd_standby_state:
120 a1bb27b1 pbrook
    case sd_transfer_state:
121 a1bb27b1 pbrook
    case sd_sendingdata_state:
122 a1bb27b1 pbrook
    case sd_receivingdata_state:
123 a1bb27b1 pbrook
    case sd_programming_state:
124 a1bb27b1 pbrook
    case sd_disconnect_state:
125 a1bb27b1 pbrook
        sd->mode = sd_data_transfer_mode;
126 a1bb27b1 pbrook
        break;
127 a1bb27b1 pbrook
    }
128 a1bb27b1 pbrook
129 a1bb27b1 pbrook
    sd->card_status &= ~CURRENT_STATE;
130 a1bb27b1 pbrook
    sd->card_status |= sd->state << 9;
131 a1bb27b1 pbrook
}
132 a1bb27b1 pbrook
133 1b088995 balrog
static const sd_cmd_type_t sd_cmd_type[64] = {
134 a1bb27b1 pbrook
    sd_bc,   sd_none, sd_bcr,  sd_bcr,  sd_none, sd_none, sd_none, sd_ac,
135 1b088995 balrog
    sd_bcr,  sd_ac,   sd_ac,   sd_adtc, sd_ac,   sd_ac,   sd_none, sd_ac,
136 a1bb27b1 pbrook
    sd_ac,   sd_adtc, sd_adtc, sd_none, sd_none, sd_none, sd_none, sd_none,
137 a1bb27b1 pbrook
    sd_adtc, sd_adtc, sd_adtc, sd_adtc, sd_ac,   sd_ac,   sd_adtc, sd_none,
138 a1bb27b1 pbrook
    sd_ac,   sd_ac,   sd_none, sd_none, sd_none, sd_none, sd_ac,   sd_none,
139 a1bb27b1 pbrook
    sd_none, sd_none, sd_bc,   sd_none, sd_none, sd_none, sd_none, sd_none,
140 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_ac,
141 a1bb27b1 pbrook
    sd_adtc, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none,
142 a1bb27b1 pbrook
};
143 a1bb27b1 pbrook
144 1b088995 balrog
static const sd_cmd_type_t sd_acmd_type[64] = {
145 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_ac,   sd_none,
146 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_adtc, sd_none, sd_none,
147 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_adtc, sd_ac,
148 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none,
149 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none,
150 a1bb27b1 pbrook
    sd_none, sd_bcr,  sd_ac,   sd_none, sd_none, sd_none, sd_none, sd_none,
151 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_adtc, sd_none, sd_none, sd_none, sd_none,
152 a1bb27b1 pbrook
    sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none, sd_none,
153 a1bb27b1 pbrook
};
154 a1bb27b1 pbrook
155 a1bb27b1 pbrook
static const int sd_cmd_class[64] = {
156 a1bb27b1 pbrook
    0,  0,  0,  0,  0,  9, 10,  0,  0,  0,  0,  1,  0,  0,  0,  0,
157 a1bb27b1 pbrook
    2,  2,  2,  2,  3,  3,  3,  3,  4,  4,  4,  4,  6,  6,  6,  6,
158 a1bb27b1 pbrook
    5,  5, 10, 10, 10, 10,  5,  9,  9,  9,  7,  7,  7,  7,  7,  7,
159 a1bb27b1 pbrook
    7,  7, 10,  7,  9,  9,  9,  8,  8, 10,  8,  8,  8,  8,  8,  8,
160 a1bb27b1 pbrook
};
161 a1bb27b1 pbrook
162 a1bb27b1 pbrook
static uint8_t sd_crc7(void *message, size_t width)
163 a1bb27b1 pbrook
{
164 a1bb27b1 pbrook
    int i, bit;
165 a1bb27b1 pbrook
    uint8_t shift_reg = 0x00;
166 a1bb27b1 pbrook
    uint8_t *msg = (uint8_t *) message;
167 a1bb27b1 pbrook
168 a1bb27b1 pbrook
    for (i = 0; i < width; i ++, msg ++)
169 a1bb27b1 pbrook
        for (bit = 7; bit >= 0; bit --) {
170 a1bb27b1 pbrook
            shift_reg <<= 1;
171 a1bb27b1 pbrook
            if ((shift_reg >> 7) ^ ((*msg >> bit) & 1))
172 a1bb27b1 pbrook
                shift_reg ^= 0x89;
173 a1bb27b1 pbrook
        }
174 a1bb27b1 pbrook
175 a1bb27b1 pbrook
    return shift_reg;
176 a1bb27b1 pbrook
}
177 a1bb27b1 pbrook
178 a1bb27b1 pbrook
static uint16_t sd_crc16(void *message, size_t width)
179 a1bb27b1 pbrook
{
180 a1bb27b1 pbrook
    int i, bit;
181 a1bb27b1 pbrook
    uint16_t shift_reg = 0x0000;
182 a1bb27b1 pbrook
    uint16_t *msg = (uint16_t *) message;
183 a1bb27b1 pbrook
    width <<= 1;
184 a1bb27b1 pbrook
185 a1bb27b1 pbrook
    for (i = 0; i < width; i ++, msg ++)
186 a1bb27b1 pbrook
        for (bit = 15; bit >= 0; bit --) {
187 a1bb27b1 pbrook
            shift_reg <<= 1;
188 a1bb27b1 pbrook
            if ((shift_reg >> 15) ^ ((*msg >> bit) & 1))
189 a1bb27b1 pbrook
                shift_reg ^= 0x1011;
190 a1bb27b1 pbrook
        }
191 a1bb27b1 pbrook
192 a1bb27b1 pbrook
    return shift_reg;
193 a1bb27b1 pbrook
}
194 a1bb27b1 pbrook
195 a1bb27b1 pbrook
static void sd_set_ocr(SDState *sd)
196 a1bb27b1 pbrook
{
197 1b088995 balrog
    /* All voltages OK, card power-up OK, Standard Capacity SD Memory Card */
198 829ef7b0 aurel32
    sd->ocr = 0x80ffff00;
199 a1bb27b1 pbrook
}
200 a1bb27b1 pbrook
201 a1bb27b1 pbrook
static void sd_set_scr(SDState *sd)
202 a1bb27b1 pbrook
{
203 a1bb27b1 pbrook
    sd->scr[0] = 0x00;                /* SCR Structure */
204 a1bb27b1 pbrook
    sd->scr[1] = 0x2f;                /* SD Security Support */
205 a1bb27b1 pbrook
    sd->scr[2] = 0x00;
206 a1bb27b1 pbrook
    sd->scr[3] = 0x00;
207 a1bb27b1 pbrook
    sd->scr[4] = 0x00;
208 a1bb27b1 pbrook
    sd->scr[5] = 0x00;
209 a1bb27b1 pbrook
    sd->scr[6] = 0x00;
210 a1bb27b1 pbrook
    sd->scr[7] = 0x00;
211 a1bb27b1 pbrook
}
212 a1bb27b1 pbrook
213 a1bb27b1 pbrook
#define MID        0xaa
214 a1bb27b1 pbrook
#define OID        "XY"
215 a1bb27b1 pbrook
#define PNM        "QEMU!"
216 a1bb27b1 pbrook
#define PRV        0x01
217 a1bb27b1 pbrook
#define MDT_YR        2006
218 a1bb27b1 pbrook
#define MDT_MON        2
219 a1bb27b1 pbrook
220 a1bb27b1 pbrook
static void sd_set_cid(SDState *sd)
221 a1bb27b1 pbrook
{
222 a1bb27b1 pbrook
    sd->cid[0] = MID;                /* Fake card manufacturer ID (MID) */
223 a1bb27b1 pbrook
    sd->cid[1] = OID[0];        /* OEM/Application ID (OID) */
224 a1bb27b1 pbrook
    sd->cid[2] = OID[1];
225 a1bb27b1 pbrook
    sd->cid[3] = PNM[0];        /* Fake product name (PNM) */
226 a1bb27b1 pbrook
    sd->cid[4] = PNM[1];
227 a1bb27b1 pbrook
    sd->cid[5] = PNM[2];
228 a1bb27b1 pbrook
    sd->cid[6] = PNM[3];
229 a1bb27b1 pbrook
    sd->cid[7] = PNM[4];
230 a1bb27b1 pbrook
    sd->cid[8] = PRV;                /* Fake product revision (PRV) */
231 a1bb27b1 pbrook
    sd->cid[9] = 0xde;                /* Fake serial number (PSN) */
232 a1bb27b1 pbrook
    sd->cid[10] = 0xad;
233 a1bb27b1 pbrook
    sd->cid[11] = 0xbe;
234 a1bb27b1 pbrook
    sd->cid[12] = 0xef;
235 a1bb27b1 pbrook
    sd->cid[13] = 0x00 |        /* Manufacture date (MDT) */
236 a1bb27b1 pbrook
        ((MDT_YR - 2000) / 10);
237 a1bb27b1 pbrook
    sd->cid[14] = ((MDT_YR % 10) << 4) | MDT_MON;
238 a1bb27b1 pbrook
    sd->cid[15] = (sd_crc7(sd->cid, 15) << 1) | 1;
239 a1bb27b1 pbrook
}
240 a1bb27b1 pbrook
241 a1bb27b1 pbrook
#define HWBLOCK_SHIFT        9                        /* 512 bytes */
242 a1bb27b1 pbrook
#define SECTOR_SHIFT        5                        /* 16 kilobytes */
243 a1bb27b1 pbrook
#define WPGROUP_SHIFT        7                        /* 2 megs */
244 a1bb27b1 pbrook
#define CMULT_SHIFT        9                        /* 512 times HWBLOCK_SIZE */
245 a1bb27b1 pbrook
#define WPGROUP_SIZE        (1 << (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT))
246 a1bb27b1 pbrook
247 a1bb27b1 pbrook
static const uint8_t sd_csd_rw_mask[16] = {
248 a1bb27b1 pbrook
    0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
249 a1bb27b1 pbrook
    0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0xfc, 0xfe,
250 a1bb27b1 pbrook
};
251 a1bb27b1 pbrook
252 a1bb27b1 pbrook
static void sd_set_csd(SDState *sd, uint32_t size)
253 a1bb27b1 pbrook
{
254 a1bb27b1 pbrook
    uint32_t csize = (size >> (CMULT_SHIFT + HWBLOCK_SHIFT)) - 1;
255 a1bb27b1 pbrook
    uint32_t sectsize = (1 << (SECTOR_SHIFT + 1)) - 1;
256 a1bb27b1 pbrook
    uint32_t wpsize = (1 << (WPGROUP_SHIFT + 1)) - 1;
257 a1bb27b1 pbrook
258 a1bb27b1 pbrook
    sd->csd[0] = 0x00;                /* CSD structure */
259 a1bb27b1 pbrook
    sd->csd[1] = 0x26;                /* Data read access-time-1 */
260 a1bb27b1 pbrook
    sd->csd[2] = 0x00;                /* Data read access-time-2 */
261 a1bb27b1 pbrook
    sd->csd[3] = 0x5a;                /* Max. data transfer rate */
262 a1bb27b1 pbrook
    sd->csd[4] = 0x5f;                /* Card Command Classes */
263 a1bb27b1 pbrook
    sd->csd[5] = 0x50 |                /* Max. read data block length */
264 a1bb27b1 pbrook
        HWBLOCK_SHIFT;
265 a1bb27b1 pbrook
    sd->csd[6] = 0xe0 |                /* Partial block for read allowed */
266 a1bb27b1 pbrook
        ((csize >> 10) & 0x03);
267 a1bb27b1 pbrook
    sd->csd[7] = 0x00 |                /* Device size */
268 a1bb27b1 pbrook
        ((csize >> 2) & 0xff);
269 a1bb27b1 pbrook
    sd->csd[8] = 0x3f |                /* Max. read current */
270 a1bb27b1 pbrook
        ((csize << 6) & 0xc0);
271 a1bb27b1 pbrook
    sd->csd[9] = 0xfc |                /* Max. write current */
272 a1bb27b1 pbrook
        ((CMULT_SHIFT - 2) >> 1);
273 a1bb27b1 pbrook
    sd->csd[10] = 0x40 |        /* Erase sector size */
274 a1bb27b1 pbrook
        (((CMULT_SHIFT - 2) << 7) & 0x80) | (sectsize >> 1);
275 a1bb27b1 pbrook
    sd->csd[11] = 0x00 |        /* Write protect group size */
276 a1bb27b1 pbrook
        ((sectsize << 7) & 0x80) | wpsize;
277 a1bb27b1 pbrook
    sd->csd[12] = 0x90 |        /* Write speed factor */
278 a1bb27b1 pbrook
        (HWBLOCK_SHIFT >> 2);
279 a1bb27b1 pbrook
    sd->csd[13] = 0x20 |        /* Max. write data block length */
280 a1bb27b1 pbrook
        ((HWBLOCK_SHIFT << 6) & 0xc0);
281 a1bb27b1 pbrook
    sd->csd[14] = 0x00;                /* File format group */
282 a1bb27b1 pbrook
    sd->csd[15] = (sd_crc7(sd->csd, 15) << 1) | 1;
283 a1bb27b1 pbrook
}
284 a1bb27b1 pbrook
285 a1bb27b1 pbrook
static void sd_set_rca(SDState *sd)
286 a1bb27b1 pbrook
{
287 a1bb27b1 pbrook
    sd->rca += 0x4567;
288 a1bb27b1 pbrook
}
289 a1bb27b1 pbrook
290 a1bb27b1 pbrook
#define CARD_STATUS_A        0x02004100
291 a1bb27b1 pbrook
#define CARD_STATUS_B        0x00c01e00
292 a1bb27b1 pbrook
#define CARD_STATUS_C        0xfd39a028
293 a1bb27b1 pbrook
294 a1bb27b1 pbrook
static void sd_set_cardstatus(SDState *sd)
295 a1bb27b1 pbrook
{
296 a1bb27b1 pbrook
    sd->card_status = 0x00000100;
297 a1bb27b1 pbrook
}
298 a1bb27b1 pbrook
299 a1bb27b1 pbrook
static void sd_set_sdstatus(SDState *sd)
300 a1bb27b1 pbrook
{
301 a1bb27b1 pbrook
    memset(sd->sd_status, 0, 64);
302 a1bb27b1 pbrook
}
303 a1bb27b1 pbrook
304 a1bb27b1 pbrook
static int sd_req_crc_validate(struct sd_request_s *req)
305 a1bb27b1 pbrook
{
306 a1bb27b1 pbrook
    uint8_t buffer[5];
307 a1bb27b1 pbrook
    buffer[0] = 0x40 | req->cmd;
308 a1bb27b1 pbrook
    buffer[1] = (req->arg >> 24) & 0xff;
309 a1bb27b1 pbrook
    buffer[2] = (req->arg >> 16) & 0xff;
310 a1bb27b1 pbrook
    buffer[3] = (req->arg >> 8) & 0xff;
311 a1bb27b1 pbrook
    buffer[4] = (req->arg >> 0) & 0xff;
312 a1bb27b1 pbrook
    return 0;
313 a1bb27b1 pbrook
    return sd_crc7(buffer, 5) != req->crc;        /* TODO */
314 a1bb27b1 pbrook
}
315 a1bb27b1 pbrook
316 9596ebb7 pbrook
static void sd_response_r1_make(SDState *sd,
317 9596ebb7 pbrook
                                uint8_t *response, uint32_t last_status)
318 a1bb27b1 pbrook
{
319 a1bb27b1 pbrook
    uint32_t mask = CARD_STATUS_B ^ ILLEGAL_COMMAND;
320 a1bb27b1 pbrook
    uint32_t status;
321 a1bb27b1 pbrook
322 a1bb27b1 pbrook
    status = (sd->card_status & ~mask) | (last_status & mask);
323 a1bb27b1 pbrook
    sd->card_status &= ~CARD_STATUS_C | APP_CMD;
324 a1bb27b1 pbrook
325 a1bb27b1 pbrook
    response[0] = (status >> 24) & 0xff;
326 a1bb27b1 pbrook
    response[1] = (status >> 16) & 0xff;
327 a1bb27b1 pbrook
    response[2] = (status >> 8) & 0xff;
328 a1bb27b1 pbrook
    response[3] = (status >> 0) & 0xff;
329 a1bb27b1 pbrook
}
330 a1bb27b1 pbrook
331 9596ebb7 pbrook
static void sd_response_r3_make(SDState *sd, uint8_t *response)
332 a1bb27b1 pbrook
{
333 a1bb27b1 pbrook
    response[0] = (sd->ocr >> 24) & 0xff;
334 a1bb27b1 pbrook
    response[1] = (sd->ocr >> 16) & 0xff;
335 a1bb27b1 pbrook
    response[2] = (sd->ocr >> 8) & 0xff;
336 a1bb27b1 pbrook
    response[3] = (sd->ocr >> 0) & 0xff;
337 a1bb27b1 pbrook
}
338 a1bb27b1 pbrook
339 9596ebb7 pbrook
static void sd_response_r6_make(SDState *sd, uint8_t *response)
340 a1bb27b1 pbrook
{
341 a1bb27b1 pbrook
    uint16_t arg;
342 a1bb27b1 pbrook
    uint16_t status;
343 a1bb27b1 pbrook
344 a1bb27b1 pbrook
    arg = sd->rca;
345 a1bb27b1 pbrook
    status = ((sd->card_status >> 8) & 0xc000) |
346 a1bb27b1 pbrook
             ((sd->card_status >> 6) & 0x2000) |
347 a1bb27b1 pbrook
              (sd->card_status & 0x1fff);
348 a1bb27b1 pbrook
349 a1bb27b1 pbrook
    response[0] = (arg >> 8) & 0xff;
350 a1bb27b1 pbrook
    response[1] = arg & 0xff;
351 a1bb27b1 pbrook
    response[2] = (status >> 8) & 0xff;
352 a1bb27b1 pbrook
    response[3] = status & 0xff;
353 a1bb27b1 pbrook
}
354 a1bb27b1 pbrook
355 1b088995 balrog
static void sd_response_r7_make(SDState *sd, uint8_t *response)
356 1b088995 balrog
{
357 1b088995 balrog
    response[0] = (sd->vhs >> 24) & 0xff;
358 1b088995 balrog
    response[1] = (sd->vhs >> 16) & 0xff;
359 1b088995 balrog
    response[2] = (sd->vhs >>  8) & 0xff;
360 1b088995 balrog
    response[3] = (sd->vhs >>  0) & 0xff;
361 1b088995 balrog
}
362 1b088995 balrog
363 a1bb27b1 pbrook
static void sd_reset(SDState *sd, BlockDriverState *bdrv)
364 a1bb27b1 pbrook
{
365 a1bb27b1 pbrook
    uint32_t size;
366 a1bb27b1 pbrook
    uint64_t sect;
367 a1bb27b1 pbrook
368 a1bb27b1 pbrook
    bdrv_get_geometry(bdrv, &sect);
369 a1bb27b1 pbrook
    sect <<= 9;
370 a1bb27b1 pbrook
371 a1bb27b1 pbrook
    if (sect > 0x40000000)
372 a1bb27b1 pbrook
        size = 0x40000000;        /* 1 gig */
373 a1bb27b1 pbrook
    else
374 a1bb27b1 pbrook
        size = sect + 1;
375 a1bb27b1 pbrook
376 a1bb27b1 pbrook
    sect = (size >> (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT)) + 1;
377 a1bb27b1 pbrook
378 a1bb27b1 pbrook
    sd->state = sd_idle_state;
379 a1bb27b1 pbrook
    sd->rca = 0x0000;
380 a1bb27b1 pbrook
    sd_set_ocr(sd);
381 a1bb27b1 pbrook
    sd_set_scr(sd);
382 a1bb27b1 pbrook
    sd_set_cid(sd);
383 a1bb27b1 pbrook
    sd_set_csd(sd, size);
384 a1bb27b1 pbrook
    sd_set_cardstatus(sd);
385 a1bb27b1 pbrook
    sd_set_sdstatus(sd);
386 a1bb27b1 pbrook
387 a1bb27b1 pbrook
    sd->bdrv = bdrv;
388 a1bb27b1 pbrook
389 257514dd pbrook
    if (sd->wp_groups)
390 257514dd pbrook
        qemu_free(sd->wp_groups);
391 a1bb27b1 pbrook
    sd->wp_switch = bdrv_is_read_only(bdrv);
392 a1bb27b1 pbrook
    sd->wp_groups = (int *) qemu_mallocz(sizeof(int) * sect);
393 a1bb27b1 pbrook
    memset(sd->function_group, 0, sizeof(int) * 6);
394 a1bb27b1 pbrook
    sd->erase_start = 0;
395 a1bb27b1 pbrook
    sd->erase_end = 0;
396 a1bb27b1 pbrook
    sd->size = size;
397 a1bb27b1 pbrook
    sd->blk_len = 0x200;
398 a1bb27b1 pbrook
    sd->pwd_len = 0;
399 a1bb27b1 pbrook
}
400 a1bb27b1 pbrook
401 a1bb27b1 pbrook
static void sd_cardchange(void *opaque)
402 a1bb27b1 pbrook
{
403 a1bb27b1 pbrook
    SDState *sd = opaque;
404 02ce600c balrog
    qemu_set_irq(sd->inserted_cb, bdrv_is_inserted(sd->bdrv));
405 a1bb27b1 pbrook
    if (bdrv_is_inserted(sd->bdrv)) {
406 a1bb27b1 pbrook
        sd_reset(sd, sd->bdrv);
407 257514dd pbrook
        qemu_set_irq(sd->readonly_cb, sd->wp_switch);
408 a1bb27b1 pbrook
    }
409 a1bb27b1 pbrook
}
410 a1bb27b1 pbrook
411 775616c3 pbrook
/* We do not model the chip select pin, so allow the board to select
412 8ef6367e balrog
   whether card should be in SSI or MMC/SD mode.  It is also up to the
413 775616c3 pbrook
   board to ensure that ssi transfers only occur when the chip select
414 775616c3 pbrook
   is asserted.  */
415 775616c3 pbrook
SDState *sd_init(BlockDriverState *bs, int is_spi)
416 a1bb27b1 pbrook
{
417 a1bb27b1 pbrook
    SDState *sd;
418 a1bb27b1 pbrook
419 a1bb27b1 pbrook
    sd = (SDState *) qemu_mallocz(sizeof(SDState));
420 33f00271 balrog
    sd->buf = qemu_memalign(512, 512);
421 775616c3 pbrook
    sd->spi = is_spi;
422 4872aa13 balrog
    sd->enable = 1;
423 a1bb27b1 pbrook
    sd_reset(sd, bs);
424 02ce600c balrog
    bdrv_set_change_cb(sd->bdrv, sd_cardchange, sd);
425 a1bb27b1 pbrook
    return sd;
426 a1bb27b1 pbrook
}
427 a1bb27b1 pbrook
428 02ce600c balrog
void sd_set_cb(SDState *sd, qemu_irq readonly, qemu_irq insert)
429 a1bb27b1 pbrook
{
430 02ce600c balrog
    sd->readonly_cb = readonly;
431 02ce600c balrog
    sd->inserted_cb = insert;
432 02ce600c balrog
    qemu_set_irq(readonly, bdrv_is_read_only(sd->bdrv));
433 02ce600c balrog
    qemu_set_irq(insert, bdrv_is_inserted(sd->bdrv));
434 a1bb27b1 pbrook
}
435 a1bb27b1 pbrook
436 a1bb27b1 pbrook
static void sd_erase(SDState *sd)
437 a1bb27b1 pbrook
{
438 a1bb27b1 pbrook
    int i, start, end;
439 a1bb27b1 pbrook
    if (!sd->erase_start || !sd->erase_end) {
440 a1bb27b1 pbrook
        sd->card_status |= ERASE_SEQ_ERROR;
441 a1bb27b1 pbrook
        return;
442 a1bb27b1 pbrook
    }
443 a1bb27b1 pbrook
444 a1bb27b1 pbrook
    start = sd->erase_start >>
445 a1bb27b1 pbrook
            (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT);
446 a1bb27b1 pbrook
    end = sd->erase_end >>
447 a1bb27b1 pbrook
            (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT);
448 a1bb27b1 pbrook
    sd->erase_start = 0;
449 a1bb27b1 pbrook
    sd->erase_end = 0;
450 a1bb27b1 pbrook
    sd->csd[14] |= 0x40;
451 a1bb27b1 pbrook
452 a1bb27b1 pbrook
    for (i = start; i <= end; i ++)
453 a1bb27b1 pbrook
        if (sd->wp_groups[i])
454 a1bb27b1 pbrook
            sd->card_status |= WP_ERASE_SKIP;
455 a1bb27b1 pbrook
}
456 a1bb27b1 pbrook
457 a1bb27b1 pbrook
static uint32_t sd_wpbits(SDState *sd, uint32_t addr)
458 a1bb27b1 pbrook
{
459 a1bb27b1 pbrook
    uint32_t i, wpnum;
460 a1bb27b1 pbrook
    uint32_t ret = 0;
461 a1bb27b1 pbrook
462 a1bb27b1 pbrook
    wpnum = addr >> (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT);
463 a1bb27b1 pbrook
464 a1bb27b1 pbrook
    for (i = 0; i < 32; i ++, wpnum ++, addr += WPGROUP_SIZE)
465 a1bb27b1 pbrook
        if (addr < sd->size && sd->wp_groups[wpnum])
466 a1bb27b1 pbrook
            ret |= (1 << i);
467 a1bb27b1 pbrook
468 a1bb27b1 pbrook
    return ret;
469 a1bb27b1 pbrook
}
470 a1bb27b1 pbrook
471 a1bb27b1 pbrook
static void sd_function_switch(SDState *sd, uint32_t arg)
472 a1bb27b1 pbrook
{
473 a1bb27b1 pbrook
    int i, mode, new_func, crc;
474 a1bb27b1 pbrook
    mode = !!(arg & 0x80000000);
475 a1bb27b1 pbrook
476 a1bb27b1 pbrook
    sd->data[0] = 0x00;                /* Maximum current consumption */
477 a1bb27b1 pbrook
    sd->data[1] = 0x01;
478 a1bb27b1 pbrook
    sd->data[2] = 0x80;                /* Supported group 6 functions */
479 a1bb27b1 pbrook
    sd->data[3] = 0x01;
480 a1bb27b1 pbrook
    sd->data[4] = 0x80;                /* Supported group 5 functions */
481 a1bb27b1 pbrook
    sd->data[5] = 0x01;
482 a1bb27b1 pbrook
    sd->data[6] = 0x80;                /* Supported group 4 functions */
483 a1bb27b1 pbrook
    sd->data[7] = 0x01;
484 a1bb27b1 pbrook
    sd->data[8] = 0x80;                /* Supported group 3 functions */
485 a1bb27b1 pbrook
    sd->data[9] = 0x01;
486 a1bb27b1 pbrook
    sd->data[10] = 0x80;        /* Supported group 2 functions */
487 a1bb27b1 pbrook
    sd->data[11] = 0x43;
488 a1bb27b1 pbrook
    sd->data[12] = 0x80;        /* Supported group 1 functions */
489 a1bb27b1 pbrook
    sd->data[13] = 0x03;
490 a1bb27b1 pbrook
    for (i = 0; i < 6; i ++) {
491 a1bb27b1 pbrook
        new_func = (arg >> (i * 4)) & 0x0f;
492 a1bb27b1 pbrook
        if (mode && new_func != 0x0f)
493 a1bb27b1 pbrook
            sd->function_group[i] = new_func;
494 a1bb27b1 pbrook
        sd->data[14 + (i >> 1)] = new_func << ((i * 4) & 4);
495 a1bb27b1 pbrook
    }
496 a1bb27b1 pbrook
    memset(&sd->data[17], 0, 47);
497 a1bb27b1 pbrook
    crc = sd_crc16(sd->data, 64);
498 a1bb27b1 pbrook
    sd->data[65] = crc >> 8;
499 a1bb27b1 pbrook
    sd->data[66] = crc & 0xff;
500 a1bb27b1 pbrook
}
501 a1bb27b1 pbrook
502 a1bb27b1 pbrook
static inline int sd_wp_addr(SDState *sd, uint32_t addr)
503 a1bb27b1 pbrook
{
504 a1bb27b1 pbrook
    return sd->wp_groups[addr >>
505 a1bb27b1 pbrook
            (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT)];
506 a1bb27b1 pbrook
}
507 a1bb27b1 pbrook
508 a1bb27b1 pbrook
static void sd_lock_command(SDState *sd)
509 a1bb27b1 pbrook
{
510 a1bb27b1 pbrook
    int erase, lock, clr_pwd, set_pwd, pwd_len;
511 a1bb27b1 pbrook
    erase = !!(sd->data[0] & 0x08);
512 a1bb27b1 pbrook
    lock = sd->data[0] & 0x04;
513 a1bb27b1 pbrook
    clr_pwd = sd->data[0] & 0x02;
514 a1bb27b1 pbrook
    set_pwd = sd->data[0] & 0x01;
515 a1bb27b1 pbrook
516 a1bb27b1 pbrook
    if (sd->blk_len > 1)
517 a1bb27b1 pbrook
        pwd_len = sd->data[1];
518 a1bb27b1 pbrook
    else
519 a1bb27b1 pbrook
        pwd_len = 0;
520 a1bb27b1 pbrook
521 a1bb27b1 pbrook
    if (erase) {
522 a1bb27b1 pbrook
        if (!(sd->card_status & CARD_IS_LOCKED) || sd->blk_len > 1 ||
523 a1bb27b1 pbrook
                        set_pwd || clr_pwd || lock || sd->wp_switch ||
524 a1bb27b1 pbrook
                        (sd->csd[14] & 0x20)) {
525 a1bb27b1 pbrook
            sd->card_status |= LOCK_UNLOCK_FAILED;
526 a1bb27b1 pbrook
            return;
527 a1bb27b1 pbrook
        }
528 a1bb27b1 pbrook
        memset(sd->wp_groups, 0, sizeof(int) * (sd->size >>
529 a1bb27b1 pbrook
                        (HWBLOCK_SHIFT + SECTOR_SHIFT + WPGROUP_SHIFT)));
530 a1bb27b1 pbrook
        sd->csd[14] &= ~0x10;
531 a1bb27b1 pbrook
        sd->card_status &= ~CARD_IS_LOCKED;
532 a1bb27b1 pbrook
        sd->pwd_len = 0;
533 a1bb27b1 pbrook
        /* Erasing the entire card here! */
534 827df9f3 balrog
        fprintf(stderr, "SD: Card force-erased by CMD42\n");
535 a1bb27b1 pbrook
        return;
536 a1bb27b1 pbrook
    }
537 a1bb27b1 pbrook
538 a1bb27b1 pbrook
    if (sd->blk_len < 2 + pwd_len ||
539 a1bb27b1 pbrook
                    pwd_len <= sd->pwd_len ||
540 a1bb27b1 pbrook
                    pwd_len > sd->pwd_len + 16) {
541 a1bb27b1 pbrook
        sd->card_status |= LOCK_UNLOCK_FAILED;
542 a1bb27b1 pbrook
        return;
543 a1bb27b1 pbrook
    }
544 a1bb27b1 pbrook
545 a1bb27b1 pbrook
    if (sd->pwd_len && memcmp(sd->pwd, sd->data + 2, sd->pwd_len)) {
546 a1bb27b1 pbrook
        sd->card_status |= LOCK_UNLOCK_FAILED;
547 a1bb27b1 pbrook
        return;
548 a1bb27b1 pbrook
    }
549 a1bb27b1 pbrook
550 a1bb27b1 pbrook
    pwd_len -= sd->pwd_len;
551 a1bb27b1 pbrook
    if ((pwd_len && !set_pwd) ||
552 a1bb27b1 pbrook
                    (clr_pwd && (set_pwd || lock)) ||
553 a1bb27b1 pbrook
                    (lock && !sd->pwd_len && !set_pwd) ||
554 a1bb27b1 pbrook
                    (!set_pwd && !clr_pwd &&
555 a1bb27b1 pbrook
                     (((sd->card_status & CARD_IS_LOCKED) && lock) ||
556 a1bb27b1 pbrook
                      (!(sd->card_status & CARD_IS_LOCKED) && !lock)))) {
557 a1bb27b1 pbrook
        sd->card_status |= LOCK_UNLOCK_FAILED;
558 a1bb27b1 pbrook
        return;
559 a1bb27b1 pbrook
    }
560 a1bb27b1 pbrook
561 a1bb27b1 pbrook
    if (set_pwd) {
562 a1bb27b1 pbrook
        memcpy(sd->pwd, sd->data + 2 + sd->pwd_len, pwd_len);
563 a1bb27b1 pbrook
        sd->pwd_len = pwd_len;
564 a1bb27b1 pbrook
    }
565 a1bb27b1 pbrook
566 a1bb27b1 pbrook
    if (clr_pwd) {
567 a1bb27b1 pbrook
        sd->pwd_len = 0;
568 a1bb27b1 pbrook
    }
569 a1bb27b1 pbrook
570 a1bb27b1 pbrook
    if (lock)
571 a1bb27b1 pbrook
        sd->card_status |= CARD_IS_LOCKED;
572 a1bb27b1 pbrook
    else
573 a1bb27b1 pbrook
        sd->card_status &= ~CARD_IS_LOCKED;
574 a1bb27b1 pbrook
}
575 a1bb27b1 pbrook
576 a1bb27b1 pbrook
static sd_rsp_type_t sd_normal_command(SDState *sd,
577 a1bb27b1 pbrook
                                       struct sd_request_s req)
578 a1bb27b1 pbrook
{
579 a1bb27b1 pbrook
    uint32_t rca = 0x0000;
580 a1bb27b1 pbrook
581 a1bb27b1 pbrook
    if (sd_cmd_type[req.cmd] == sd_ac || sd_cmd_type[req.cmd] == sd_adtc)
582 a1bb27b1 pbrook
        rca = req.arg >> 16;
583 a1bb27b1 pbrook
584 a1bb27b1 pbrook
    DPRINTF("CMD%d 0x%08x state %d\n", req.cmd, req.arg, sd->state);
585 a1bb27b1 pbrook
    switch (req.cmd) {
586 a1bb27b1 pbrook
    /* Basic commands (Class 0 and Class 1) */
587 a1bb27b1 pbrook
    case 0:        /* CMD0:   GO_IDLE_STATE */
588 a1bb27b1 pbrook
        switch (sd->state) {
589 a1bb27b1 pbrook
        case sd_inactive_state:
590 775616c3 pbrook
            return sd->spi ? sd_r1 : sd_r0;
591 a1bb27b1 pbrook
592 a1bb27b1 pbrook
        default:
593 a1bb27b1 pbrook
            sd->state = sd_idle_state;
594 a1bb27b1 pbrook
            sd_reset(sd, sd->bdrv);
595 775616c3 pbrook
            return sd->spi ? sd_r1 : sd_r0;
596 a1bb27b1 pbrook
        }
597 a1bb27b1 pbrook
        break;
598 a1bb27b1 pbrook
599 775616c3 pbrook
    case 1:        /* CMD1:   SEND_OP_CMD */
600 775616c3 pbrook
        if (!sd->spi)
601 775616c3 pbrook
            goto bad_cmd;
602 775616c3 pbrook
603 775616c3 pbrook
        sd->state = sd_transfer_state;
604 775616c3 pbrook
        return sd_r1;
605 775616c3 pbrook
606 a1bb27b1 pbrook
    case 2:        /* CMD2:   ALL_SEND_CID */
607 775616c3 pbrook
        if (sd->spi)
608 775616c3 pbrook
            goto bad_cmd;
609 a1bb27b1 pbrook
        switch (sd->state) {
610 a1bb27b1 pbrook
        case sd_ready_state:
611 a1bb27b1 pbrook
            sd->state = sd_identification_state;
612 a1bb27b1 pbrook
            return sd_r2_i;
613 a1bb27b1 pbrook
614 a1bb27b1 pbrook
        default:
615 a1bb27b1 pbrook
            break;
616 a1bb27b1 pbrook
        }
617 a1bb27b1 pbrook
        break;
618 a1bb27b1 pbrook
619 a1bb27b1 pbrook
    case 3:        /* CMD3:   SEND_RELATIVE_ADDR */
620 775616c3 pbrook
        if (sd->spi)
621 775616c3 pbrook
            goto bad_cmd;
622 a1bb27b1 pbrook
        switch (sd->state) {
623 a1bb27b1 pbrook
        case sd_identification_state:
624 a1bb27b1 pbrook
        case sd_standby_state:
625 a1bb27b1 pbrook
            sd->state = sd_standby_state;
626 a1bb27b1 pbrook
            sd_set_rca(sd);
627 a1bb27b1 pbrook
            return sd_r6;
628 a1bb27b1 pbrook
629 a1bb27b1 pbrook
        default:
630 a1bb27b1 pbrook
            break;
631 a1bb27b1 pbrook
        }
632 a1bb27b1 pbrook
        break;
633 a1bb27b1 pbrook
634 a1bb27b1 pbrook
    case 4:        /* CMD4:   SEND_DSR */
635 775616c3 pbrook
        if (sd->spi)
636 775616c3 pbrook
            goto bad_cmd;
637 a1bb27b1 pbrook
        switch (sd->state) {
638 a1bb27b1 pbrook
        case sd_standby_state:
639 a1bb27b1 pbrook
            break;
640 a1bb27b1 pbrook
641 a1bb27b1 pbrook
        default:
642 a1bb27b1 pbrook
            break;
643 a1bb27b1 pbrook
        }
644 a1bb27b1 pbrook
        break;
645 a1bb27b1 pbrook
646 a1bb27b1 pbrook
    case 6:        /* CMD6:   SWITCH_FUNCTION */
647 775616c3 pbrook
        if (sd->spi)
648 775616c3 pbrook
            goto bad_cmd;
649 a1bb27b1 pbrook
        switch (sd->mode) {
650 a1bb27b1 pbrook
        case sd_data_transfer_mode:
651 a1bb27b1 pbrook
            sd_function_switch(sd, req.arg);
652 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
653 a1bb27b1 pbrook
            sd->data_start = 0;
654 a1bb27b1 pbrook
            sd->data_offset = 0;
655 a1bb27b1 pbrook
            return sd_r1;
656 a1bb27b1 pbrook
657 a1bb27b1 pbrook
        default:
658 a1bb27b1 pbrook
            break;
659 a1bb27b1 pbrook
        }
660 a1bb27b1 pbrook
        break;
661 a1bb27b1 pbrook
662 a1bb27b1 pbrook
    case 7:        /* CMD7:   SELECT/DESELECT_CARD */
663 775616c3 pbrook
        if (sd->spi)
664 775616c3 pbrook
            goto bad_cmd;
665 a1bb27b1 pbrook
        switch (sd->state) {
666 a1bb27b1 pbrook
        case sd_standby_state:
667 a1bb27b1 pbrook
            if (sd->rca != rca)
668 a1bb27b1 pbrook
                return sd_r0;
669 a1bb27b1 pbrook
670 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
671 a1bb27b1 pbrook
            return sd_r1b;
672 a1bb27b1 pbrook
673 a1bb27b1 pbrook
        case sd_transfer_state:
674 a1bb27b1 pbrook
        case sd_sendingdata_state:
675 a1bb27b1 pbrook
            if (sd->rca == rca)
676 a1bb27b1 pbrook
                break;
677 a1bb27b1 pbrook
678 a1bb27b1 pbrook
            sd->state = sd_standby_state;
679 a1bb27b1 pbrook
            return sd_r1b;
680 a1bb27b1 pbrook
681 a1bb27b1 pbrook
        case sd_disconnect_state:
682 a1bb27b1 pbrook
            if (sd->rca != rca)
683 a1bb27b1 pbrook
                return sd_r0;
684 a1bb27b1 pbrook
685 a1bb27b1 pbrook
            sd->state = sd_programming_state;
686 a1bb27b1 pbrook
            return sd_r1b;
687 a1bb27b1 pbrook
688 a1bb27b1 pbrook
        case sd_programming_state:
689 a1bb27b1 pbrook
            if (sd->rca == rca)
690 a1bb27b1 pbrook
                break;
691 a1bb27b1 pbrook
692 a1bb27b1 pbrook
            sd->state = sd_disconnect_state;
693 a1bb27b1 pbrook
            return sd_r1b;
694 a1bb27b1 pbrook
695 a1bb27b1 pbrook
        default:
696 a1bb27b1 pbrook
            break;
697 a1bb27b1 pbrook
        }
698 a1bb27b1 pbrook
        break;
699 a1bb27b1 pbrook
700 1b088995 balrog
    case 8:        /* CMD8:   SEND_IF_COND */
701 1b088995 balrog
        /* Physical Layer Specification Version 2.00 command */
702 1b088995 balrog
        switch (sd->state) {
703 1b088995 balrog
        case sd_idle_state:
704 1b088995 balrog
            sd->vhs = 0;
705 1b088995 balrog
706 1b088995 balrog
            /* No response if not exactly one VHS bit is set.  */
707 1b088995 balrog
            if (!(req.arg >> 8) || (req.arg >> ffs(req.arg & ~0xff)))
708 1b088995 balrog
                return sd->spi ? sd_r7 : sd_r0;
709 1b088995 balrog
710 1b088995 balrog
            /* Accept.  */
711 1b088995 balrog
            sd->vhs = req.arg;
712 1b088995 balrog
            return sd_r7;
713 1b088995 balrog
714 1b088995 balrog
        default:
715 1b088995 balrog
            break;
716 1b088995 balrog
        }
717 1b088995 balrog
        break;
718 1b088995 balrog
719 a1bb27b1 pbrook
    case 9:        /* CMD9:   SEND_CSD */
720 a1bb27b1 pbrook
        switch (sd->state) {
721 a1bb27b1 pbrook
        case sd_standby_state:
722 a1bb27b1 pbrook
            if (sd->rca != rca)
723 a1bb27b1 pbrook
                return sd_r0;
724 a1bb27b1 pbrook
725 a1bb27b1 pbrook
            return sd_r2_s;
726 a1bb27b1 pbrook
727 775616c3 pbrook
        case sd_transfer_state:
728 775616c3 pbrook
            if (!sd->spi)
729 775616c3 pbrook
                break;
730 775616c3 pbrook
            sd->state = sd_sendingdata_state;
731 775616c3 pbrook
            memcpy(sd->data, sd->csd, 16);
732 775616c3 pbrook
            sd->data_start = req.arg;
733 775616c3 pbrook
            sd->data_offset = 0;
734 775616c3 pbrook
            return sd_r1;
735 775616c3 pbrook
736 a1bb27b1 pbrook
        default:
737 a1bb27b1 pbrook
            break;
738 a1bb27b1 pbrook
        }
739 a1bb27b1 pbrook
        break;
740 a1bb27b1 pbrook
741 a1bb27b1 pbrook
    case 10:        /* CMD10:  SEND_CID */
742 a1bb27b1 pbrook
        switch (sd->state) {
743 a1bb27b1 pbrook
        case sd_standby_state:
744 a1bb27b1 pbrook
            if (sd->rca != rca)
745 a1bb27b1 pbrook
                return sd_r0;
746 a1bb27b1 pbrook
747 a1bb27b1 pbrook
            return sd_r2_i;
748 a1bb27b1 pbrook
749 775616c3 pbrook
        case sd_transfer_state:
750 775616c3 pbrook
            if (!sd->spi)
751 775616c3 pbrook
                break;
752 775616c3 pbrook
            sd->state = sd_sendingdata_state;
753 775616c3 pbrook
            memcpy(sd->data, sd->cid, 16);
754 775616c3 pbrook
            sd->data_start = req.arg;
755 775616c3 pbrook
            sd->data_offset = 0;
756 775616c3 pbrook
            return sd_r1;
757 775616c3 pbrook
758 a1bb27b1 pbrook
        default:
759 a1bb27b1 pbrook
            break;
760 a1bb27b1 pbrook
        }
761 a1bb27b1 pbrook
        break;
762 a1bb27b1 pbrook
763 a1bb27b1 pbrook
    case 11:        /* CMD11:  READ_DAT_UNTIL_STOP */
764 775616c3 pbrook
        if (sd->spi)
765 775616c3 pbrook
            goto bad_cmd;
766 a1bb27b1 pbrook
        switch (sd->state) {
767 a1bb27b1 pbrook
        case sd_transfer_state:
768 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
769 a1bb27b1 pbrook
            sd->data_start = req.arg;
770 a1bb27b1 pbrook
            sd->data_offset = 0;
771 a1bb27b1 pbrook
772 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size)
773 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
774 a1bb27b1 pbrook
            return sd_r0;
775 a1bb27b1 pbrook
776 a1bb27b1 pbrook
        default:
777 a1bb27b1 pbrook
            break;
778 a1bb27b1 pbrook
        }
779 a1bb27b1 pbrook
        break;
780 a1bb27b1 pbrook
781 a1bb27b1 pbrook
    case 12:        /* CMD12:  STOP_TRANSMISSION */
782 a1bb27b1 pbrook
        switch (sd->state) {
783 a1bb27b1 pbrook
        case sd_sendingdata_state:
784 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
785 a1bb27b1 pbrook
            return sd_r1b;
786 a1bb27b1 pbrook
787 a1bb27b1 pbrook
        case sd_receivingdata_state:
788 a1bb27b1 pbrook
            sd->state = sd_programming_state;
789 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
790 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
791 a1bb27b1 pbrook
            return sd_r1b;
792 a1bb27b1 pbrook
793 a1bb27b1 pbrook
        default:
794 a1bb27b1 pbrook
            break;
795 a1bb27b1 pbrook
        }
796 a1bb27b1 pbrook
        break;
797 a1bb27b1 pbrook
798 a1bb27b1 pbrook
    case 13:        /* CMD13:  SEND_STATUS */
799 a1bb27b1 pbrook
        switch (sd->mode) {
800 a1bb27b1 pbrook
        case sd_data_transfer_mode:
801 a1bb27b1 pbrook
            if (sd->rca != rca)
802 a1bb27b1 pbrook
                return sd_r0;
803 a1bb27b1 pbrook
804 a1bb27b1 pbrook
            return sd_r1;
805 a1bb27b1 pbrook
806 a1bb27b1 pbrook
        default:
807 a1bb27b1 pbrook
            break;
808 a1bb27b1 pbrook
        }
809 a1bb27b1 pbrook
        break;
810 a1bb27b1 pbrook
811 a1bb27b1 pbrook
    case 15:        /* CMD15:  GO_INACTIVE_STATE */
812 775616c3 pbrook
        if (sd->spi)
813 775616c3 pbrook
            goto bad_cmd;
814 a1bb27b1 pbrook
        switch (sd->mode) {
815 a1bb27b1 pbrook
        case sd_data_transfer_mode:
816 a1bb27b1 pbrook
            if (sd->rca != rca)
817 a1bb27b1 pbrook
                return sd_r0;
818 a1bb27b1 pbrook
819 a1bb27b1 pbrook
            sd->state = sd_inactive_state;
820 a1bb27b1 pbrook
            return sd_r0;
821 a1bb27b1 pbrook
822 a1bb27b1 pbrook
        default:
823 a1bb27b1 pbrook
            break;
824 a1bb27b1 pbrook
        }
825 a1bb27b1 pbrook
        break;
826 a1bb27b1 pbrook
827 a1bb27b1 pbrook
    /* Block read commands (Classs 2) */
828 a1bb27b1 pbrook
    case 16:        /* CMD16:  SET_BLOCKLEN */
829 a1bb27b1 pbrook
        switch (sd->state) {
830 a1bb27b1 pbrook
        case sd_transfer_state:
831 a1bb27b1 pbrook
            if (req.arg > (1 << HWBLOCK_SHIFT))
832 a1bb27b1 pbrook
                sd->card_status |= BLOCK_LEN_ERROR;
833 a1bb27b1 pbrook
            else
834 a1bb27b1 pbrook
                sd->blk_len = req.arg;
835 a1bb27b1 pbrook
836 a1bb27b1 pbrook
            return sd_r1;
837 a1bb27b1 pbrook
838 a1bb27b1 pbrook
        default:
839 a1bb27b1 pbrook
            break;
840 a1bb27b1 pbrook
        }
841 a1bb27b1 pbrook
        break;
842 a1bb27b1 pbrook
843 a1bb27b1 pbrook
    case 17:        /* CMD17:  READ_SINGLE_BLOCK */
844 a1bb27b1 pbrook
        switch (sd->state) {
845 a1bb27b1 pbrook
        case sd_transfer_state:
846 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
847 a1bb27b1 pbrook
            sd->data_start = req.arg;
848 a1bb27b1 pbrook
            sd->data_offset = 0;
849 a1bb27b1 pbrook
850 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size)
851 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
852 a1bb27b1 pbrook
            return sd_r1;
853 a1bb27b1 pbrook
854 a1bb27b1 pbrook
        default:
855 a1bb27b1 pbrook
            break;
856 a1bb27b1 pbrook
        }
857 a1bb27b1 pbrook
        break;
858 a1bb27b1 pbrook
859 a1bb27b1 pbrook
    case 18:        /* CMD18:  READ_MULTIPLE_BLOCK */
860 a1bb27b1 pbrook
        switch (sd->state) {
861 a1bb27b1 pbrook
        case sd_transfer_state:
862 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
863 a1bb27b1 pbrook
            sd->data_start = req.arg;
864 a1bb27b1 pbrook
            sd->data_offset = 0;
865 a1bb27b1 pbrook
866 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size)
867 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
868 a1bb27b1 pbrook
            return sd_r1;
869 a1bb27b1 pbrook
870 a1bb27b1 pbrook
        default:
871 a1bb27b1 pbrook
            break;
872 a1bb27b1 pbrook
        }
873 a1bb27b1 pbrook
        break;
874 a1bb27b1 pbrook
875 a1bb27b1 pbrook
    /* Block write commands (Class 4) */
876 a1bb27b1 pbrook
    case 24:        /* CMD24:  WRITE_SINGLE_BLOCK */
877 775616c3 pbrook
        if (sd->spi)
878 775616c3 pbrook
            goto unimplemented_cmd;
879 a1bb27b1 pbrook
        switch (sd->state) {
880 a1bb27b1 pbrook
        case sd_transfer_state:
881 775616c3 pbrook
            /* Writing in SPI mode not implemented.  */
882 775616c3 pbrook
            if (sd->spi)
883 775616c3 pbrook
                break;
884 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
885 a1bb27b1 pbrook
            sd->data_start = req.arg;
886 a1bb27b1 pbrook
            sd->data_offset = 0;
887 a1bb27b1 pbrook
            sd->blk_written = 0;
888 a1bb27b1 pbrook
889 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size)
890 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
891 a1bb27b1 pbrook
            if (sd_wp_addr(sd, sd->data_start))
892 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
893 a1bb27b1 pbrook
            if (sd->csd[14] & 0x30)
894 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
895 a1bb27b1 pbrook
            return sd_r1;
896 a1bb27b1 pbrook
897 a1bb27b1 pbrook
        default:
898 a1bb27b1 pbrook
            break;
899 a1bb27b1 pbrook
        }
900 a1bb27b1 pbrook
        break;
901 a1bb27b1 pbrook
902 a1bb27b1 pbrook
    case 25:        /* CMD25:  WRITE_MULTIPLE_BLOCK */
903 775616c3 pbrook
        if (sd->spi)
904 775616c3 pbrook
            goto unimplemented_cmd;
905 a1bb27b1 pbrook
        switch (sd->state) {
906 a1bb27b1 pbrook
        case sd_transfer_state:
907 775616c3 pbrook
            /* Writing in SPI mode not implemented.  */
908 775616c3 pbrook
            if (sd->spi)
909 775616c3 pbrook
                break;
910 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
911 a1bb27b1 pbrook
            sd->data_start = req.arg;
912 a1bb27b1 pbrook
            sd->data_offset = 0;
913 a1bb27b1 pbrook
            sd->blk_written = 0;
914 a1bb27b1 pbrook
915 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size)
916 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
917 a1bb27b1 pbrook
            if (sd_wp_addr(sd, sd->data_start))
918 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
919 a1bb27b1 pbrook
            if (sd->csd[14] & 0x30)
920 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
921 a1bb27b1 pbrook
            return sd_r1;
922 a1bb27b1 pbrook
923 a1bb27b1 pbrook
        default:
924 a1bb27b1 pbrook
            break;
925 a1bb27b1 pbrook
        }
926 a1bb27b1 pbrook
        break;
927 a1bb27b1 pbrook
928 a1bb27b1 pbrook
    case 26:        /* CMD26:  PROGRAM_CID */
929 775616c3 pbrook
        if (sd->spi)
930 775616c3 pbrook
            goto bad_cmd;
931 a1bb27b1 pbrook
        switch (sd->state) {
932 a1bb27b1 pbrook
        case sd_transfer_state:
933 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
934 a1bb27b1 pbrook
            sd->data_start = 0;
935 a1bb27b1 pbrook
            sd->data_offset = 0;
936 a1bb27b1 pbrook
            return sd_r1;
937 a1bb27b1 pbrook
938 a1bb27b1 pbrook
        default:
939 a1bb27b1 pbrook
            break;
940 a1bb27b1 pbrook
        }
941 a1bb27b1 pbrook
        break;
942 a1bb27b1 pbrook
943 a1bb27b1 pbrook
    case 27:        /* CMD27:  PROGRAM_CSD */
944 775616c3 pbrook
        if (sd->spi)
945 775616c3 pbrook
            goto unimplemented_cmd;
946 a1bb27b1 pbrook
        switch (sd->state) {
947 a1bb27b1 pbrook
        case sd_transfer_state:
948 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
949 a1bb27b1 pbrook
            sd->data_start = 0;
950 a1bb27b1 pbrook
            sd->data_offset = 0;
951 a1bb27b1 pbrook
            return sd_r1;
952 a1bb27b1 pbrook
953 a1bb27b1 pbrook
        default:
954 a1bb27b1 pbrook
            break;
955 a1bb27b1 pbrook
        }
956 a1bb27b1 pbrook
        break;
957 a1bb27b1 pbrook
958 a1bb27b1 pbrook
    /* Write protection (Class 6) */
959 a1bb27b1 pbrook
    case 28:        /* CMD28:  SET_WRITE_PROT */
960 a1bb27b1 pbrook
        switch (sd->state) {
961 a1bb27b1 pbrook
        case sd_transfer_state:
962 a1bb27b1 pbrook
            if (req.arg >= sd->size) {
963 a1bb27b1 pbrook
                sd->card_status = ADDRESS_ERROR;
964 a1bb27b1 pbrook
                return sd_r1b;
965 a1bb27b1 pbrook
            }
966 a1bb27b1 pbrook
967 a1bb27b1 pbrook
            sd->state = sd_programming_state;
968 a1bb27b1 pbrook
            sd->wp_groups[req.arg >> (HWBLOCK_SHIFT +
969 a1bb27b1 pbrook
                            SECTOR_SHIFT + WPGROUP_SHIFT)] = 1;
970 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
971 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
972 a1bb27b1 pbrook
            return sd_r1b;
973 a1bb27b1 pbrook
974 a1bb27b1 pbrook
        default:
975 a1bb27b1 pbrook
            break;
976 a1bb27b1 pbrook
        }
977 a1bb27b1 pbrook
        break;
978 a1bb27b1 pbrook
979 a1bb27b1 pbrook
    case 29:        /* CMD29:  CLR_WRITE_PROT */
980 a1bb27b1 pbrook
        switch (sd->state) {
981 a1bb27b1 pbrook
        case sd_transfer_state:
982 a1bb27b1 pbrook
            if (req.arg >= sd->size) {
983 a1bb27b1 pbrook
                sd->card_status = ADDRESS_ERROR;
984 a1bb27b1 pbrook
                return sd_r1b;
985 a1bb27b1 pbrook
            }
986 a1bb27b1 pbrook
987 a1bb27b1 pbrook
            sd->state = sd_programming_state;
988 a1bb27b1 pbrook
            sd->wp_groups[req.arg >> (HWBLOCK_SHIFT +
989 a1bb27b1 pbrook
                            SECTOR_SHIFT + WPGROUP_SHIFT)] = 0;
990 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
991 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
992 a1bb27b1 pbrook
            return sd_r1b;
993 a1bb27b1 pbrook
994 a1bb27b1 pbrook
        default:
995 a1bb27b1 pbrook
            break;
996 a1bb27b1 pbrook
        }
997 a1bb27b1 pbrook
        break;
998 a1bb27b1 pbrook
999 a1bb27b1 pbrook
    case 30:        /* CMD30:  SEND_WRITE_PROT */
1000 a1bb27b1 pbrook
        switch (sd->state) {
1001 a1bb27b1 pbrook
        case sd_transfer_state:
1002 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
1003 a1bb27b1 pbrook
            *(uint32_t *) sd->data = sd_wpbits(sd, req.arg);
1004 a1bb27b1 pbrook
            sd->data_start = req.arg;
1005 a1bb27b1 pbrook
            sd->data_offset = 0;
1006 a1bb27b1 pbrook
            return sd_r1b;
1007 a1bb27b1 pbrook
1008 a1bb27b1 pbrook
        default:
1009 a1bb27b1 pbrook
            break;
1010 a1bb27b1 pbrook
        }
1011 a1bb27b1 pbrook
        break;
1012 a1bb27b1 pbrook
1013 a1bb27b1 pbrook
    /* Erase commands (Class 5) */
1014 a1bb27b1 pbrook
    case 32:        /* CMD32:  ERASE_WR_BLK_START */
1015 a1bb27b1 pbrook
        switch (sd->state) {
1016 a1bb27b1 pbrook
        case sd_transfer_state:
1017 a1bb27b1 pbrook
            sd->erase_start = req.arg;
1018 a1bb27b1 pbrook
            return sd_r1;
1019 a1bb27b1 pbrook
1020 a1bb27b1 pbrook
        default:
1021 a1bb27b1 pbrook
            break;
1022 a1bb27b1 pbrook
        }
1023 a1bb27b1 pbrook
        break;
1024 a1bb27b1 pbrook
1025 a1bb27b1 pbrook
    case 33:        /* CMD33:  ERASE_WR_BLK_END */
1026 a1bb27b1 pbrook
        switch (sd->state) {
1027 a1bb27b1 pbrook
        case sd_transfer_state:
1028 a1bb27b1 pbrook
            sd->erase_end = req.arg;
1029 a1bb27b1 pbrook
            return sd_r1;
1030 a1bb27b1 pbrook
1031 a1bb27b1 pbrook
        default:
1032 a1bb27b1 pbrook
            break;
1033 a1bb27b1 pbrook
        }
1034 a1bb27b1 pbrook
        break;
1035 a1bb27b1 pbrook
1036 a1bb27b1 pbrook
    case 38:        /* CMD38:  ERASE */
1037 a1bb27b1 pbrook
        switch (sd->state) {
1038 a1bb27b1 pbrook
        case sd_transfer_state:
1039 a1bb27b1 pbrook
            if (sd->csd[14] & 0x30) {
1040 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
1041 a1bb27b1 pbrook
                return sd_r1b;
1042 a1bb27b1 pbrook
            }
1043 a1bb27b1 pbrook
1044 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1045 a1bb27b1 pbrook
            sd_erase(sd);
1046 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1047 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1048 a1bb27b1 pbrook
            return sd_r1b;
1049 a1bb27b1 pbrook
1050 a1bb27b1 pbrook
        default:
1051 a1bb27b1 pbrook
            break;
1052 a1bb27b1 pbrook
        }
1053 a1bb27b1 pbrook
        break;
1054 a1bb27b1 pbrook
1055 a1bb27b1 pbrook
    /* Lock card commands (Class 7) */
1056 a1bb27b1 pbrook
    case 42:        /* CMD42:  LOCK_UNLOCK */
1057 775616c3 pbrook
        if (sd->spi)
1058 775616c3 pbrook
            goto unimplemented_cmd;
1059 a1bb27b1 pbrook
        switch (sd->state) {
1060 a1bb27b1 pbrook
        case sd_transfer_state:
1061 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
1062 a1bb27b1 pbrook
            sd->data_start = 0;
1063 a1bb27b1 pbrook
            sd->data_offset = 0;
1064 a1bb27b1 pbrook
            return sd_r1;
1065 a1bb27b1 pbrook
1066 a1bb27b1 pbrook
        default:
1067 a1bb27b1 pbrook
            break;
1068 a1bb27b1 pbrook
        }
1069 a1bb27b1 pbrook
        break;
1070 a1bb27b1 pbrook
1071 a1bb27b1 pbrook
    /* Application specific commands (Class 8) */
1072 a1bb27b1 pbrook
    case 55:        /* CMD55:  APP_CMD */
1073 a1bb27b1 pbrook
        if (sd->rca != rca)
1074 a1bb27b1 pbrook
            return sd_r0;
1075 a1bb27b1 pbrook
1076 a1bb27b1 pbrook
        sd->card_status |= APP_CMD;
1077 a1bb27b1 pbrook
        return sd_r1;
1078 a1bb27b1 pbrook
1079 a1bb27b1 pbrook
    case 56:        /* CMD56:  GEN_CMD */
1080 827df9f3 balrog
        fprintf(stderr, "SD: GEN_CMD 0x%08x\n", req.arg);
1081 a1bb27b1 pbrook
1082 a1bb27b1 pbrook
        switch (sd->state) {
1083 a1bb27b1 pbrook
        case sd_transfer_state:
1084 a1bb27b1 pbrook
            sd->data_offset = 0;
1085 a1bb27b1 pbrook
            if (req.arg & 1)
1086 a1bb27b1 pbrook
                sd->state = sd_sendingdata_state;
1087 a1bb27b1 pbrook
            else
1088 a1bb27b1 pbrook
                sd->state = sd_receivingdata_state;
1089 a1bb27b1 pbrook
            return sd_r1;
1090 a1bb27b1 pbrook
1091 a1bb27b1 pbrook
        default:
1092 a1bb27b1 pbrook
            break;
1093 a1bb27b1 pbrook
        }
1094 a1bb27b1 pbrook
        break;
1095 a1bb27b1 pbrook
1096 a1bb27b1 pbrook
    default:
1097 775616c3 pbrook
    bad_cmd:
1098 a1bb27b1 pbrook
        sd->card_status |= ILLEGAL_COMMAND;
1099 a1bb27b1 pbrook
1100 827df9f3 balrog
        fprintf(stderr, "SD: Unknown CMD%i\n", req.cmd);
1101 a1bb27b1 pbrook
        return sd_r0;
1102 775616c3 pbrook
1103 775616c3 pbrook
    unimplemented_cmd:
1104 775616c3 pbrook
        /* Commands that are recognised but not yet implemented in SPI mode.  */
1105 775616c3 pbrook
        sd->card_status |= ILLEGAL_COMMAND;
1106 827df9f3 balrog
        fprintf(stderr, "SD: CMD%i not implemented in SPI mode\n", req.cmd);
1107 775616c3 pbrook
        return sd_r0;
1108 a1bb27b1 pbrook
    }
1109 a1bb27b1 pbrook
1110 a1bb27b1 pbrook
    sd->card_status |= ILLEGAL_COMMAND;
1111 827df9f3 balrog
    fprintf(stderr, "SD: CMD%i in a wrong state\n", req.cmd);
1112 a1bb27b1 pbrook
    return sd_r0;
1113 a1bb27b1 pbrook
}
1114 a1bb27b1 pbrook
1115 a1bb27b1 pbrook
static sd_rsp_type_t sd_app_command(SDState *sd,
1116 a1bb27b1 pbrook
                                    struct sd_request_s req) {
1117 a1bb27b1 pbrook
    uint32_t rca;
1118 a1bb27b1 pbrook
1119 a1bb27b1 pbrook
    if (sd_cmd_type[req.cmd] == sd_ac || sd_cmd_type[req.cmd] == sd_adtc)
1120 a1bb27b1 pbrook
        rca = req.arg >> 16;
1121 a1bb27b1 pbrook
1122 a1bb27b1 pbrook
    DPRINTF("ACMD%d 0x%08x\n", req.cmd, req.arg);
1123 a1bb27b1 pbrook
    switch (req.cmd) {
1124 a1bb27b1 pbrook
    case 6:        /* ACMD6:  SET_BUS_WIDTH */
1125 a1bb27b1 pbrook
        switch (sd->state) {
1126 a1bb27b1 pbrook
        case sd_transfer_state:
1127 a1bb27b1 pbrook
            sd->sd_status[0] &= 0x3f;
1128 a1bb27b1 pbrook
            sd->sd_status[0] |= (req.arg & 0x03) << 6;
1129 a1bb27b1 pbrook
            return sd_r1;
1130 a1bb27b1 pbrook
1131 a1bb27b1 pbrook
        default:
1132 a1bb27b1 pbrook
            break;
1133 a1bb27b1 pbrook
        }
1134 a1bb27b1 pbrook
        break;
1135 a1bb27b1 pbrook
1136 a1bb27b1 pbrook
    case 13:        /* ACMD13: SD_STATUS */
1137 a1bb27b1 pbrook
        switch (sd->state) {
1138 a1bb27b1 pbrook
        case sd_transfer_state:
1139 a1bb27b1 pbrook
            sd->data_start = 0;
1140 a1bb27b1 pbrook
            sd->data_offset = 0;
1141 a1bb27b1 pbrook
            return sd_r1;
1142 a1bb27b1 pbrook
1143 a1bb27b1 pbrook
        default:
1144 a1bb27b1 pbrook
            break;
1145 a1bb27b1 pbrook
        }
1146 a1bb27b1 pbrook
        break;
1147 a1bb27b1 pbrook
1148 a1bb27b1 pbrook
    case 22:        /* ACMD22: SEND_NUM_WR_BLOCKS */
1149 a1bb27b1 pbrook
        switch (sd->state) {
1150 a1bb27b1 pbrook
        case sd_transfer_state:
1151 a1bb27b1 pbrook
            *(uint32_t *) sd->data = sd->blk_written;
1152 a1bb27b1 pbrook
1153 a1bb27b1 pbrook
            sd->data_start = 0;
1154 a1bb27b1 pbrook
            sd->data_offset = 0;
1155 a1bb27b1 pbrook
            return sd_r1;
1156 a1bb27b1 pbrook
1157 a1bb27b1 pbrook
        default:
1158 a1bb27b1 pbrook
            break;
1159 a1bb27b1 pbrook
        }
1160 a1bb27b1 pbrook
        break;
1161 a1bb27b1 pbrook
1162 a1bb27b1 pbrook
    case 23:        /* ACMD23: SET_WR_BLK_ERASE_COUNT */
1163 a1bb27b1 pbrook
        switch (sd->state) {
1164 a1bb27b1 pbrook
        case sd_transfer_state:
1165 a1bb27b1 pbrook
            return sd_r1;
1166 a1bb27b1 pbrook
1167 a1bb27b1 pbrook
        default:
1168 a1bb27b1 pbrook
            break;
1169 a1bb27b1 pbrook
        }
1170 a1bb27b1 pbrook
        break;
1171 a1bb27b1 pbrook
1172 a1bb27b1 pbrook
    case 41:        /* ACMD41: SD_APP_OP_COND */
1173 775616c3 pbrook
        if (sd->spi) {
1174 775616c3 pbrook
            /* SEND_OP_CMD */
1175 775616c3 pbrook
            sd->state = sd_transfer_state;
1176 775616c3 pbrook
            return sd_r1;
1177 775616c3 pbrook
        }
1178 a1bb27b1 pbrook
        switch (sd->state) {
1179 a1bb27b1 pbrook
        case sd_idle_state:
1180 a1bb27b1 pbrook
            /* We accept any voltage.  10000 V is nothing.  */
1181 a1bb27b1 pbrook
            if (req.arg)
1182 a1bb27b1 pbrook
                sd->state = sd_ready_state;
1183 a1bb27b1 pbrook
1184 a1bb27b1 pbrook
            return sd_r3;
1185 a1bb27b1 pbrook
1186 a1bb27b1 pbrook
        default:
1187 a1bb27b1 pbrook
            break;
1188 a1bb27b1 pbrook
        }
1189 a1bb27b1 pbrook
        break;
1190 a1bb27b1 pbrook
1191 a1bb27b1 pbrook
    case 42:        /* ACMD42: SET_CLR_CARD_DETECT */
1192 a1bb27b1 pbrook
        switch (sd->state) {
1193 a1bb27b1 pbrook
        case sd_transfer_state:
1194 a1bb27b1 pbrook
            /* Bringing in the 50KOhm pull-up resistor... Done.  */
1195 a1bb27b1 pbrook
            return sd_r1;
1196 a1bb27b1 pbrook
1197 a1bb27b1 pbrook
        default:
1198 a1bb27b1 pbrook
            break;
1199 a1bb27b1 pbrook
        }
1200 a1bb27b1 pbrook
        break;
1201 a1bb27b1 pbrook
1202 a1bb27b1 pbrook
    case 51:        /* ACMD51: SEND_SCR */
1203 a1bb27b1 pbrook
        switch (sd->state) {
1204 a1bb27b1 pbrook
        case sd_transfer_state:
1205 a1bb27b1 pbrook
            sd->state = sd_sendingdata_state;
1206 a1bb27b1 pbrook
            sd->data_start = 0;
1207 a1bb27b1 pbrook
            sd->data_offset = 0;
1208 a1bb27b1 pbrook
            return sd_r1;
1209 a1bb27b1 pbrook
1210 a1bb27b1 pbrook
        default:
1211 a1bb27b1 pbrook
            break;
1212 a1bb27b1 pbrook
        }
1213 a1bb27b1 pbrook
        break;
1214 a1bb27b1 pbrook
1215 a1bb27b1 pbrook
    default:
1216 a1bb27b1 pbrook
        /* Fall back to standard commands.  */
1217 a1bb27b1 pbrook
        sd->card_status &= ~APP_CMD;
1218 a1bb27b1 pbrook
        return sd_normal_command(sd, req);
1219 a1bb27b1 pbrook
    }
1220 a1bb27b1 pbrook
1221 827df9f3 balrog
    fprintf(stderr, "SD: ACMD%i in a wrong state\n", req.cmd);
1222 a1bb27b1 pbrook
    return sd_r0;
1223 a1bb27b1 pbrook
}
1224 a1bb27b1 pbrook
1225 a1bb27b1 pbrook
int sd_do_command(SDState *sd, struct sd_request_s *req,
1226 a1bb27b1 pbrook
                  uint8_t *response) {
1227 a1bb27b1 pbrook
    uint32_t last_status = sd->card_status;
1228 a1bb27b1 pbrook
    sd_rsp_type_t rtype;
1229 a1bb27b1 pbrook
    int rsplen;
1230 a1bb27b1 pbrook
1231 827df9f3 balrog
    if (!bdrv_is_inserted(sd->bdrv) || !sd->enable) {
1232 a1bb27b1 pbrook
        return 0;
1233 a1bb27b1 pbrook
    }
1234 a1bb27b1 pbrook
1235 a1bb27b1 pbrook
    if (sd_req_crc_validate(req)) {
1236 a1bb27b1 pbrook
        sd->card_status &= ~COM_CRC_ERROR;
1237 a1bb27b1 pbrook
        return 0;
1238 a1bb27b1 pbrook
    }
1239 a1bb27b1 pbrook
1240 a1bb27b1 pbrook
    sd->card_status &= ~CARD_STATUS_B;
1241 a1bb27b1 pbrook
    sd_set_status(sd);
1242 a1bb27b1 pbrook
1243 a1bb27b1 pbrook
    if (last_status & CARD_IS_LOCKED)
1244 a1bb27b1 pbrook
        if (((last_status & APP_CMD) &&
1245 a1bb27b1 pbrook
                                 req->cmd == 41) ||
1246 a1bb27b1 pbrook
                        (!(last_status & APP_CMD) &&
1247 a1bb27b1 pbrook
                         (sd_cmd_class[req->cmd] == 0 ||
1248 a1bb27b1 pbrook
                          sd_cmd_class[req->cmd] == 7 ||
1249 a1bb27b1 pbrook
                          req->cmd == 16 || req->cmd == 55))) {
1250 a1bb27b1 pbrook
            sd->card_status |= ILLEGAL_COMMAND;
1251 827df9f3 balrog
            fprintf(stderr, "SD: Card is locked\n");
1252 a1bb27b1 pbrook
            return 0;
1253 a1bb27b1 pbrook
        }
1254 a1bb27b1 pbrook
1255 724d3a8f balrog
    if (last_status & APP_CMD) {
1256 a1bb27b1 pbrook
        rtype = sd_app_command(sd, *req);
1257 724d3a8f balrog
        sd->card_status &= ~APP_CMD;
1258 724d3a8f balrog
    } else
1259 a1bb27b1 pbrook
        rtype = sd_normal_command(sd, *req);
1260 a1bb27b1 pbrook
1261 a1bb27b1 pbrook
    sd->current_cmd = req->cmd;
1262 a1bb27b1 pbrook
1263 a1bb27b1 pbrook
    switch (rtype) {
1264 a1bb27b1 pbrook
    case sd_r1:
1265 a1bb27b1 pbrook
    case sd_r1b:
1266 a1bb27b1 pbrook
        sd_response_r1_make(sd, response, last_status);
1267 a1bb27b1 pbrook
        rsplen = 4;
1268 a1bb27b1 pbrook
        break;
1269 a1bb27b1 pbrook
1270 a1bb27b1 pbrook
    case sd_r2_i:
1271 a1bb27b1 pbrook
        memcpy(response, sd->cid, sizeof(sd->cid));
1272 a1bb27b1 pbrook
        rsplen = 16;
1273 a1bb27b1 pbrook
        break;
1274 a1bb27b1 pbrook
1275 a1bb27b1 pbrook
    case sd_r2_s:
1276 a1bb27b1 pbrook
        memcpy(response, sd->csd, sizeof(sd->csd));
1277 a1bb27b1 pbrook
        rsplen = 16;
1278 a1bb27b1 pbrook
        break;
1279 a1bb27b1 pbrook
1280 a1bb27b1 pbrook
    case sd_r3:
1281 a1bb27b1 pbrook
        sd_response_r3_make(sd, response);
1282 a1bb27b1 pbrook
        rsplen = 4;
1283 a1bb27b1 pbrook
        break;
1284 a1bb27b1 pbrook
1285 a1bb27b1 pbrook
    case sd_r6:
1286 a1bb27b1 pbrook
        sd_response_r6_make(sd, response);
1287 a1bb27b1 pbrook
        rsplen = 4;
1288 a1bb27b1 pbrook
        break;
1289 a1bb27b1 pbrook
1290 1b088995 balrog
    case sd_r7:
1291 1b088995 balrog
        sd_response_r7_make(sd, response);
1292 1b088995 balrog
        rsplen = 4;
1293 1b088995 balrog
        break;
1294 1b088995 balrog
1295 a1bb27b1 pbrook
    case sd_r0:
1296 a1bb27b1 pbrook
    default:
1297 a1bb27b1 pbrook
        rsplen = 0;
1298 a1bb27b1 pbrook
        break;
1299 a1bb27b1 pbrook
    }
1300 a1bb27b1 pbrook
1301 a1bb27b1 pbrook
    if (sd->card_status & ILLEGAL_COMMAND)
1302 a1bb27b1 pbrook
        rsplen = 0;
1303 a1bb27b1 pbrook
1304 a1bb27b1 pbrook
#ifdef DEBUG_SD
1305 a1bb27b1 pbrook
    if (rsplen) {
1306 a1bb27b1 pbrook
        int i;
1307 a1bb27b1 pbrook
        DPRINTF("Response:");
1308 a1bb27b1 pbrook
        for (i = 0; i < rsplen; i++)
1309 a1bb27b1 pbrook
            printf(" %02x", response[i]);
1310 a1bb27b1 pbrook
        printf(" state %d\n", sd->state);
1311 a1bb27b1 pbrook
    } else {
1312 a1bb27b1 pbrook
        DPRINTF("No response %d\n", sd->state);
1313 a1bb27b1 pbrook
    }
1314 a1bb27b1 pbrook
#endif
1315 a1bb27b1 pbrook
1316 a1bb27b1 pbrook
    return rsplen;
1317 a1bb27b1 pbrook
}
1318 a1bb27b1 pbrook
1319 a1bb27b1 pbrook
/* No real need for 64 bit addresses here */
1320 33f00271 balrog
static void sd_blk_read(SDState *sd, uint32_t addr, uint32_t len)
1321 a1bb27b1 pbrook
{
1322 a1bb27b1 pbrook
    uint32_t end = addr + len;
1323 a1bb27b1 pbrook
1324 33f00271 balrog
    if (!sd->bdrv || bdrv_read(sd->bdrv, addr >> 9, sd->buf, 1) == -1) {
1325 827df9f3 balrog
        fprintf(stderr, "sd_blk_read: read error on host side\n");
1326 a1bb27b1 pbrook
        return;
1327 a1bb27b1 pbrook
    }
1328 a1bb27b1 pbrook
1329 a1bb27b1 pbrook
    if (end > (addr & ~511) + 512) {
1330 33f00271 balrog
        memcpy(sd->data, sd->buf + (addr & 511), 512 - (addr & 511));
1331 a1bb27b1 pbrook
1332 33f00271 balrog
        if (bdrv_read(sd->bdrv, end >> 9, sd->buf, 1) == -1) {
1333 827df9f3 balrog
            fprintf(stderr, "sd_blk_read: read error on host side\n");
1334 a1bb27b1 pbrook
            return;
1335 a1bb27b1 pbrook
        }
1336 33f00271 balrog
        memcpy(sd->data + 512 - (addr & 511), sd->buf, end & 511);
1337 a1bb27b1 pbrook
    } else
1338 33f00271 balrog
        memcpy(sd->data, sd->buf + (addr & 511), len);
1339 a1bb27b1 pbrook
}
1340 a1bb27b1 pbrook
1341 33f00271 balrog
static void sd_blk_write(SDState *sd, uint32_t addr, uint32_t len)
1342 a1bb27b1 pbrook
{
1343 a1bb27b1 pbrook
    uint32_t end = addr + len;
1344 a1bb27b1 pbrook
1345 a1bb27b1 pbrook
    if ((addr & 511) || len < 512)
1346 33f00271 balrog
        if (!sd->bdrv || bdrv_read(sd->bdrv, addr >> 9, sd->buf, 1) == -1) {
1347 827df9f3 balrog
            fprintf(stderr, "sd_blk_write: read error on host side\n");
1348 a1bb27b1 pbrook
            return;
1349 a1bb27b1 pbrook
        }
1350 a1bb27b1 pbrook
1351 a1bb27b1 pbrook
    if (end > (addr & ~511) + 512) {
1352 33f00271 balrog
        memcpy(sd->buf + (addr & 511), sd->data, 512 - (addr & 511));
1353 33f00271 balrog
        if (bdrv_write(sd->bdrv, addr >> 9, sd->buf, 1) == -1) {
1354 827df9f3 balrog
            fprintf(stderr, "sd_blk_write: write error on host side\n");
1355 a1bb27b1 pbrook
            return;
1356 a1bb27b1 pbrook
        }
1357 a1bb27b1 pbrook
1358 33f00271 balrog
        if (bdrv_read(sd->bdrv, end >> 9, sd->buf, 1) == -1) {
1359 827df9f3 balrog
            fprintf(stderr, "sd_blk_write: read error on host side\n");
1360 a1bb27b1 pbrook
            return;
1361 a1bb27b1 pbrook
        }
1362 33f00271 balrog
        memcpy(sd->buf, sd->data + 512 - (addr & 511), end & 511);
1363 33f00271 balrog
        if (bdrv_write(sd->bdrv, end >> 9, sd->buf, 1) == -1)
1364 827df9f3 balrog
            fprintf(stderr, "sd_blk_write: write error on host side\n");
1365 a1bb27b1 pbrook
    } else {
1366 33f00271 balrog
        memcpy(sd->buf + (addr & 511), sd->data, len);
1367 33f00271 balrog
        if (!sd->bdrv || bdrv_write(sd->bdrv, addr >> 9, sd->buf, 1) == -1)
1368 827df9f3 balrog
            fprintf(stderr, "sd_blk_write: write error on host side\n");
1369 a1bb27b1 pbrook
    }
1370 a1bb27b1 pbrook
}
1371 a1bb27b1 pbrook
1372 33f00271 balrog
#define BLK_READ_BLOCK(a, len)        sd_blk_read(sd, a, len)
1373 33f00271 balrog
#define BLK_WRITE_BLOCK(a, len)        sd_blk_write(sd, a, len)
1374 a1bb27b1 pbrook
#define APP_READ_BLOCK(a, len)        memset(sd->data, 0xec, len)
1375 a1bb27b1 pbrook
#define APP_WRITE_BLOCK(a, len)
1376 a1bb27b1 pbrook
1377 a1bb27b1 pbrook
void sd_write_data(SDState *sd, uint8_t value)
1378 a1bb27b1 pbrook
{
1379 a1bb27b1 pbrook
    int i;
1380 a1bb27b1 pbrook
1381 827df9f3 balrog
    if (!sd->bdrv || !bdrv_is_inserted(sd->bdrv) || !sd->enable)
1382 a1bb27b1 pbrook
        return;
1383 a1bb27b1 pbrook
1384 a1bb27b1 pbrook
    if (sd->state != sd_receivingdata_state) {
1385 827df9f3 balrog
        fprintf(stderr, "sd_write_data: not in Receiving-Data state\n");
1386 a1bb27b1 pbrook
        return;
1387 a1bb27b1 pbrook
    }
1388 a1bb27b1 pbrook
1389 a1bb27b1 pbrook
    if (sd->card_status & (ADDRESS_ERROR | WP_VIOLATION))
1390 a1bb27b1 pbrook
        return;
1391 a1bb27b1 pbrook
1392 a1bb27b1 pbrook
    switch (sd->current_cmd) {
1393 a1bb27b1 pbrook
    case 24:        /* CMD24:  WRITE_SINGLE_BLOCK */
1394 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1395 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1396 a1bb27b1 pbrook
            /* TODO: Check CRC before committing */
1397 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1398 a1bb27b1 pbrook
            BLK_WRITE_BLOCK(sd->data_start, sd->data_offset);
1399 a1bb27b1 pbrook
            sd->blk_written ++;
1400 a1bb27b1 pbrook
            sd->csd[14] |= 0x40;
1401 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1402 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1403 a1bb27b1 pbrook
        }
1404 a1bb27b1 pbrook
        break;
1405 a1bb27b1 pbrook
1406 a1bb27b1 pbrook
    case 25:        /* CMD25:  WRITE_MULTIPLE_BLOCK */
1407 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1408 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1409 a1bb27b1 pbrook
            /* TODO: Check CRC before committing */
1410 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1411 a1bb27b1 pbrook
            BLK_WRITE_BLOCK(sd->data_start, sd->data_offset);
1412 a1bb27b1 pbrook
            sd->blk_written ++;
1413 a1bb27b1 pbrook
            sd->data_start += sd->blk_len;
1414 a1bb27b1 pbrook
            sd->data_offset = 0;
1415 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size) {
1416 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
1417 a1bb27b1 pbrook
                break;
1418 a1bb27b1 pbrook
            }
1419 a1bb27b1 pbrook
            if (sd_wp_addr(sd, sd->data_start)) {
1420 a1bb27b1 pbrook
                sd->card_status |= WP_VIOLATION;
1421 a1bb27b1 pbrook
                break;
1422 a1bb27b1 pbrook
            }
1423 a1bb27b1 pbrook
            sd->csd[14] |= 0x40;
1424 a1bb27b1 pbrook
1425 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1426 a1bb27b1 pbrook
            sd->state = sd_receivingdata_state;
1427 a1bb27b1 pbrook
        }
1428 a1bb27b1 pbrook
        break;
1429 a1bb27b1 pbrook
1430 a1bb27b1 pbrook
    case 26:        /* CMD26:  PROGRAM_CID */
1431 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1432 a1bb27b1 pbrook
        if (sd->data_offset >= sizeof(sd->cid)) {
1433 a1bb27b1 pbrook
            /* TODO: Check CRC before committing */
1434 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1435 a1bb27b1 pbrook
            for (i = 0; i < sizeof(sd->cid); i ++)
1436 a1bb27b1 pbrook
                if ((sd->cid[i] | 0x00) != sd->data[i])
1437 a1bb27b1 pbrook
                    sd->card_status |= CID_CSD_OVERWRITE;
1438 a1bb27b1 pbrook
1439 a1bb27b1 pbrook
            if (!(sd->card_status & CID_CSD_OVERWRITE))
1440 a1bb27b1 pbrook
                for (i = 0; i < sizeof(sd->cid); i ++) {
1441 a1bb27b1 pbrook
                    sd->cid[i] |= 0x00;
1442 a1bb27b1 pbrook
                    sd->cid[i] &= sd->data[i];
1443 a1bb27b1 pbrook
                }
1444 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1445 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1446 a1bb27b1 pbrook
        }
1447 a1bb27b1 pbrook
        break;
1448 a1bb27b1 pbrook
1449 a1bb27b1 pbrook
    case 27:        /* CMD27:  PROGRAM_CSD */
1450 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1451 a1bb27b1 pbrook
        if (sd->data_offset >= sizeof(sd->csd)) {
1452 a1bb27b1 pbrook
            /* TODO: Check CRC before committing */
1453 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1454 a1bb27b1 pbrook
            for (i = 0; i < sizeof(sd->csd); i ++)
1455 a1bb27b1 pbrook
                if ((sd->csd[i] | sd_csd_rw_mask[i]) !=
1456 a1bb27b1 pbrook
                    (sd->data[i] | sd_csd_rw_mask[i]))
1457 a1bb27b1 pbrook
                    sd->card_status |= CID_CSD_OVERWRITE;
1458 a1bb27b1 pbrook
1459 a1bb27b1 pbrook
            /* Copy flag (OTP) & Permanent write protect */
1460 a1bb27b1 pbrook
            if (sd->csd[14] & ~sd->data[14] & 0x60)
1461 a1bb27b1 pbrook
                sd->card_status |= CID_CSD_OVERWRITE;
1462 a1bb27b1 pbrook
1463 a1bb27b1 pbrook
            if (!(sd->card_status & CID_CSD_OVERWRITE))
1464 a1bb27b1 pbrook
                for (i = 0; i < sizeof(sd->csd); i ++) {
1465 a1bb27b1 pbrook
                    sd->csd[i] |= sd_csd_rw_mask[i];
1466 a1bb27b1 pbrook
                    sd->csd[i] &= sd->data[i];
1467 a1bb27b1 pbrook
                }
1468 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1469 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1470 a1bb27b1 pbrook
        }
1471 a1bb27b1 pbrook
        break;
1472 a1bb27b1 pbrook
1473 a1bb27b1 pbrook
    case 42:        /* CMD42:  LOCK_UNLOCK */
1474 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1475 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1476 a1bb27b1 pbrook
            /* TODO: Check CRC before committing */
1477 a1bb27b1 pbrook
            sd->state = sd_programming_state;
1478 a1bb27b1 pbrook
            sd_lock_command(sd);
1479 a1bb27b1 pbrook
            /* Bzzzzzzztt .... Operation complete.  */
1480 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1481 a1bb27b1 pbrook
        }
1482 a1bb27b1 pbrook
        break;
1483 a1bb27b1 pbrook
1484 a1bb27b1 pbrook
    case 56:        /* CMD56:  GEN_CMD */
1485 a1bb27b1 pbrook
        sd->data[sd->data_offset ++] = value;
1486 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1487 a1bb27b1 pbrook
            APP_WRITE_BLOCK(sd->data_start, sd->data_offset);
1488 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1489 a1bb27b1 pbrook
        }
1490 a1bb27b1 pbrook
        break;
1491 a1bb27b1 pbrook
1492 a1bb27b1 pbrook
    default:
1493 827df9f3 balrog
        fprintf(stderr, "sd_write_data: unknown command\n");
1494 a1bb27b1 pbrook
        break;
1495 a1bb27b1 pbrook
    }
1496 a1bb27b1 pbrook
}
1497 a1bb27b1 pbrook
1498 a1bb27b1 pbrook
uint8_t sd_read_data(SDState *sd)
1499 a1bb27b1 pbrook
{
1500 a1bb27b1 pbrook
    /* TODO: Append CRCs */
1501 a1bb27b1 pbrook
    uint8_t ret;
1502 a1bb27b1 pbrook
1503 827df9f3 balrog
    if (!sd->bdrv || !bdrv_is_inserted(sd->bdrv) || !sd->enable)
1504 a1bb27b1 pbrook
        return 0x00;
1505 a1bb27b1 pbrook
1506 a1bb27b1 pbrook
    if (sd->state != sd_sendingdata_state) {
1507 827df9f3 balrog
        fprintf(stderr, "sd_read_data: not in Sending-Data state\n");
1508 a1bb27b1 pbrook
        return 0x00;
1509 a1bb27b1 pbrook
    }
1510 a1bb27b1 pbrook
1511 a1bb27b1 pbrook
    if (sd->card_status & (ADDRESS_ERROR | WP_VIOLATION))
1512 a1bb27b1 pbrook
        return 0x00;
1513 a1bb27b1 pbrook
1514 a1bb27b1 pbrook
    switch (sd->current_cmd) {
1515 a1bb27b1 pbrook
    case 6:        /* CMD6:   SWITCH_FUNCTION */
1516 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1517 a1bb27b1 pbrook
1518 a1bb27b1 pbrook
        if (sd->data_offset >= 64)
1519 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1520 a1bb27b1 pbrook
        break;
1521 a1bb27b1 pbrook
1522 775616c3 pbrook
    case 9:        /* CMD9:   SEND_CSD */
1523 775616c3 pbrook
    case 10:        /* CMD10:  SEND_CID */
1524 775616c3 pbrook
        ret = sd->data[sd->data_offset ++];
1525 775616c3 pbrook
1526 775616c3 pbrook
        if (sd->data_offset >= 16)
1527 775616c3 pbrook
            sd->state = sd_transfer_state;
1528 775616c3 pbrook
        break;
1529 775616c3 pbrook
1530 a1bb27b1 pbrook
    case 11:        /* CMD11:  READ_DAT_UNTIL_STOP */
1531 a1bb27b1 pbrook
        if (sd->data_offset == 0)
1532 a1bb27b1 pbrook
            BLK_READ_BLOCK(sd->data_start, sd->blk_len);
1533 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1534 a1bb27b1 pbrook
1535 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1536 a1bb27b1 pbrook
            sd->data_start += sd->blk_len;
1537 a1bb27b1 pbrook
            sd->data_offset = 0;
1538 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size) {
1539 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
1540 a1bb27b1 pbrook
                break;
1541 a1bb27b1 pbrook
            }
1542 a1bb27b1 pbrook
        }
1543 a1bb27b1 pbrook
        break;
1544 a1bb27b1 pbrook
1545 a1bb27b1 pbrook
    case 13:        /* ACMD13: SD_STATUS */
1546 a1bb27b1 pbrook
        ret = sd->sd_status[sd->data_offset ++];
1547 a1bb27b1 pbrook
1548 a1bb27b1 pbrook
        if (sd->data_offset >= sizeof(sd->sd_status))
1549 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1550 a1bb27b1 pbrook
        break;
1551 a1bb27b1 pbrook
1552 a1bb27b1 pbrook
    case 17:        /* CMD17:  READ_SINGLE_BLOCK */
1553 a1bb27b1 pbrook
        if (sd->data_offset == 0)
1554 a1bb27b1 pbrook
            BLK_READ_BLOCK(sd->data_start, sd->blk_len);
1555 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1556 a1bb27b1 pbrook
1557 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len)
1558 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1559 a1bb27b1 pbrook
        break;
1560 a1bb27b1 pbrook
1561 a1bb27b1 pbrook
    case 18:        /* CMD18:  READ_MULTIPLE_BLOCK */
1562 a1bb27b1 pbrook
        if (sd->data_offset == 0)
1563 a1bb27b1 pbrook
            BLK_READ_BLOCK(sd->data_start, sd->blk_len);
1564 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1565 a1bb27b1 pbrook
1566 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len) {
1567 a1bb27b1 pbrook
            sd->data_start += sd->blk_len;
1568 a1bb27b1 pbrook
            sd->data_offset = 0;
1569 a1bb27b1 pbrook
            if (sd->data_start + sd->blk_len > sd->size) {
1570 a1bb27b1 pbrook
                sd->card_status |= ADDRESS_ERROR;
1571 a1bb27b1 pbrook
                break;
1572 a1bb27b1 pbrook
            }
1573 a1bb27b1 pbrook
        }
1574 a1bb27b1 pbrook
        break;
1575 a1bb27b1 pbrook
1576 a1bb27b1 pbrook
    case 22:        /* ACMD22: SEND_NUM_WR_BLOCKS */
1577 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1578 a1bb27b1 pbrook
1579 a1bb27b1 pbrook
        if (sd->data_offset >= 4)
1580 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1581 a1bb27b1 pbrook
        break;
1582 a1bb27b1 pbrook
1583 a1bb27b1 pbrook
    case 30:        /* CMD30:  SEND_WRITE_PROT */
1584 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1585 a1bb27b1 pbrook
1586 a1bb27b1 pbrook
        if (sd->data_offset >= 4)
1587 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1588 a1bb27b1 pbrook
        break;
1589 a1bb27b1 pbrook
1590 a1bb27b1 pbrook
    case 51:        /* ACMD51: SEND_SCR */
1591 a1bb27b1 pbrook
        ret = sd->scr[sd->data_offset ++];
1592 a1bb27b1 pbrook
1593 a1bb27b1 pbrook
        if (sd->data_offset >= sizeof(sd->scr))
1594 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1595 a1bb27b1 pbrook
        break;
1596 a1bb27b1 pbrook
1597 a1bb27b1 pbrook
    case 56:        /* CMD56:  GEN_CMD */
1598 a1bb27b1 pbrook
        if (sd->data_offset == 0)
1599 a1bb27b1 pbrook
            APP_READ_BLOCK(sd->data_start, sd->blk_len);
1600 a1bb27b1 pbrook
        ret = sd->data[sd->data_offset ++];
1601 a1bb27b1 pbrook
1602 a1bb27b1 pbrook
        if (sd->data_offset >= sd->blk_len)
1603 a1bb27b1 pbrook
            sd->state = sd_transfer_state;
1604 a1bb27b1 pbrook
        break;
1605 a1bb27b1 pbrook
1606 a1bb27b1 pbrook
    default:
1607 827df9f3 balrog
        fprintf(stderr, "sd_read_data: unknown command\n");
1608 a1bb27b1 pbrook
        return 0x00;
1609 a1bb27b1 pbrook
    }
1610 a1bb27b1 pbrook
1611 a1bb27b1 pbrook
    return ret;
1612 a1bb27b1 pbrook
}
1613 a1bb27b1 pbrook
1614 a1bb27b1 pbrook
int sd_data_ready(SDState *sd)
1615 a1bb27b1 pbrook
{
1616 a1bb27b1 pbrook
    return sd->state == sd_sendingdata_state;
1617 a1bb27b1 pbrook
}
1618 827df9f3 balrog
1619 827df9f3 balrog
void sd_enable(SDState *sd, int enable)
1620 827df9f3 balrog
{
1621 827df9f3 balrog
    sd->enable = enable;
1622 827df9f3 balrog
}