2 * arch/s390/kernel/head.S
4 * Copyright (C) IBM Corp. 1999,2006
6 * Author(s): Hartmut Penner <hp@de.ibm.com>
7 * Martin Schwidefsky <schwidefsky@de.ibm.com>
8 * Rob van der Heij <rvdhei@iae.nl>
9 * Heiko Carstens <heiko.carstens@de.ibm.com>
11 * There are 5 different IPL methods
12 * 1) load the image directly into ram at address 0 and do an PSW restart
13 * 2) linload will load the image from address 0x10000 to memory 0x10000
14 * and start the code thru LPSW 0x0008000080010000 (VM only, deprecated)
15 * 3) generate the tape ipl header, store the generated image on a tape
17 * In case of SL tape you need to IPL 5 times to get past VOL1 etc
18 * 4) generate the vm reader ipl header, move the generated image to the
19 * VM reader (use option NOH!) and do a ipl from reader (VM only)
20 * 5) direct call of start by the SALIPL loader
21 * We use the cpuid to distinguish between VM and native ipl
22 * params for kernel are pushed to 0x10400 (see setup.h)
26 #include <linux/init.h>
27 #include <asm/setup.h>
28 #include <asm/lowcore.h>
29 #include <asm/asm-offsets.h>
30 #include <asm/thread_info.h>
42 .long 0x00080000,0x80000000+startup # Just a restart PSW
44 #ifdef CONFIG_IPL_TAPE
47 .long 0x00080000,0x80000000+iplstart # The first 24 bytes are loaded
48 .long 0x27000000,0x60000001 # by ipl to addresses 0-23.
49 .long 0x02000000,0x20000000+IPL_BS # (a PSW and two CCWs).
50 .long 0x00000000,0x00000000 # external old psw
51 .long 0x00000000,0x00000000 # svc old psw
52 .long 0x00000000,0x00000000 # program check old psw
53 .long 0x00000000,0x00000000 # machine check old psw
54 .long 0x00000000,0x00000000 # io old psw
55 .long 0x00000000,0x00000000
56 .long 0x00000000,0x00000000
57 .long 0x00000000,0x00000000
58 .long 0x000a0000,0x00000058 # external new psw
59 .long 0x000a0000,0x00000060 # svc new psw
60 .long 0x000a0000,0x00000068 # program check new psw
61 .long 0x000a0000,0x00000070 # machine check new psw
62 .long 0x00080000,0x80000000+.Lioint # io new psw
66 # subroutine for loading from tape
72 la %r3,.Lorbread # r3 = address of orb
73 la %r5,.Lirb # r5 = address of irb
74 st %r2,.Lccwread+4 # initialize CCW data addresses
80 ssch 0(%r3) # load chunk of IPL_BS bytes
84 tm 8(%r5),0x82 # do we have a problem ?
87 icm %r7,3,10(%r5) # get residual count
89 la %r7,IPL_BS(%r7) # IPL_BS-residual=#bytes read
90 ar %r2,%r7 # add to total size
91 tm 8(%r5),0x01 # found a tape mark ?
93 l %r0,.Lccwread+4 # update CCW data addresses
99 br %r14 # r2 contains the total size
101 bas %r14,.Lsense # do the sensing
102 bct %r6,.Lssch # dec. retry count & branch
110 ssch 0(%r7) # start sense command
114 tm 8(%r5),0x82 # do we have a problem ?
118 # Wait for interrupt subroutine
123 c %r1,0xb8 # compare subchannel number
127 tm 8(%r5),0x82 # do we have a problem ?
129 tm 8(%r5),0x04 # got device end ?
138 .long 0x00000000,0x0080ff00,.Lccwread
141 .long 0x00000000,0x0080ff00,.Lccwsense
144 .long 0x02200000+IPL_BS,0x00000000
146 .long 0x04200001,0x00000000
148 .long 0x020a0000,0x80000000+.Lioint
150 .Lirb: .long 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0
151 .Lcr6: .long 0xff000000
153 .Lcrash:.long 0x000a0000,0x00000000
156 #endif /* CONFIG_IPL_TAPE */
161 .long 0x00080000,0x80000000+iplstart # The first 24 bytes are loaded
162 .long 0x02000018,0x60000050 # by ipl to addresses 0-23.
163 .long 0x02000068,0x60000050 # (a PSW and two CCWs).
164 .fill 80-24,1,0x40 # bytes 24-79 are discarded !!
165 .long 0x020000f0,0x60000050 # The next 160 byte are loaded
166 .long 0x02000140,0x60000050 # to addresses 0x18-0xb7
167 .long 0x02000190,0x60000050 # They form the continuation
168 .long 0x020001e0,0x60000050 # of the CCW program started
169 .long 0x02000230,0x60000050 # by ipl and load the range
170 .long 0x02000280,0x60000050 # 0x0f0-0x730 from the image
171 .long 0x020002d0,0x60000050 # to the range 0x0f0-0x730
172 .long 0x02000320,0x60000050 # in memory. At the end of
173 .long 0x02000370,0x60000050 # the channel program the PSW
174 .long 0x020003c0,0x60000050 # at location 0 is loaded.
175 .long 0x02000410,0x60000050 # Initial processing starts
176 .long 0x02000460,0x60000050 # at 0xf0 = iplstart.
177 .long 0x020004b0,0x60000050
178 .long 0x02000500,0x60000050
179 .long 0x02000550,0x60000050
180 .long 0x020005a0,0x60000050
181 .long 0x020005f0,0x60000050
182 .long 0x02000640,0x60000050
183 .long 0x02000690,0x60000050
184 .long 0x020006e0,0x20000050
188 # subroutine for loading cards from the reader
191 la %r3,.Lorb # r2 = address of orb into r2
192 la %r5,.Lirb # r4 = address of irb
196 st %r2,4(%r6) # initialize CCW data addresses
201 lctl %c6,%c6,.Lcr6 # set IO subclass mask
204 ssch 0(%r3) # load chunk of 1600 bytes
207 mvc 0x78(8),.Lnewpsw # set up IO interrupt psw
210 c %r1,0xb8 # compare subchannel number
215 ic %r0,8(%r5) # get device status
216 chi %r0,8 # channel end ?
218 chi %r0,12 # channel end + device end ?
222 s %r0,8(%r3) # r0/8 = number of ccws executed
223 mhi %r0,10 # *10 = number of bytes in ccws
224 lh %r3,10(%r5) # get residual count
225 sr %r0,%r3 # #ccws*80-residual=#bytes read
228 br %r14 # r2 contains the total size
231 ahi %r2,0x640 # add 0x640 to total size
235 l %r0,4(%r6) # update CCW data addresses
246 .Lorb: .long 0x00000000,0x0080ff00,.Lccws
247 .Lirb: .long 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0
248 .Lcr6: .long 0xff000000
251 .Lcrash:.long 0x000a0000,0x00000000
253 .long 0x00080000,0x80000000+.Lioint
255 .long 0x020a0000,0x80000000+.Lioint
259 .long 0x02600050,0x00000000
261 .long 0x02200050,0x00000000
262 #endif /* CONFIG_IPL_VM */
265 lh %r1,0xb8 # test if subchannel number
266 bct %r1,.Lnoload # is valid
267 l %r1,0xb8 # load ipl subchannel number
268 la %r2,IPL_BS # load start address
269 bas %r14,.Lloader # load rest of ipl image
270 l %r12,.Lparm # pointer to parameter area
271 st %r1,IPL_DEVICE+ARCH_OFFSET-PARMAREA(%r12) # save ipl device number
274 # load parameter file from ipl device
277 l %r2,.Linitrd # ramdisk loc. is temp
278 bas %r14,.Lloader # load parameter file
279 ltr %r2,%r2 # got anything ?
286 clc 0(3,%r4),.L_hdr # if it is HDRx
287 bz .Lagain1 # skip dataset header
288 clc 0(3,%r4),.L_eof # if it is EOFx
289 bz .Lagain1 # skip dateset trailer
293 tm 0(%r5),0x80 # high order bit set ?
294 bo .Ldocv # yes -> convert from EBCDIC
300 tr 0(256,%r4),0(%r3) # convert parameters to ascii
301 tr 256(256,%r4),0(%r3)
302 tr 512(256,%r4),0(%r3)
303 tr 768(122,%r4),0(%r3)
304 .Lnocv: la %r3,COMMAND_LINE-PARMAREA(%r12) # load adr. of command line
305 mvc 0(256,%r3),0(%r4)
306 mvc 256(256,%r3),256(%r4)
307 mvc 512(256,%r3),512(%r4)
308 mvc 768(122,%r3),768(%r4)
313 chi %r0,0x20 # is it a space ?
321 stc %r0,0(%r2,%r3) # terminate buffer
325 # load ramdisk from ipl device
328 l %r2,.Linitrd # addr of ramdisk
329 st %r2,INITRD_START+ARCH_OFFSET-PARMAREA(%r12)
330 bas %r14,.Lloader # load ramdisk
331 st %r2,INITRD_SIZE+ARCH_OFFSET-PARMAREA(%r12) # store size of rd
334 st %r2,INITRD_START+ARCH_OFFSET-PARMAREA(%r12) # no ramdisk found
338 clc 0(3,%r2),.L_hdr # skip HDRx and EOFx
345 # reset files in VM reader
347 stidp __LC_CPUID # store cpuid
348 tm __LC_CPUID,0xff # running VM ?
354 stsch 0(%r5) # check if irq is pending
355 tm 30(%r5),0x0f # by verifying if any of the
356 bnz .Lwaitforirq # activity or status control
357 tm 31(%r5),0xff # bits is set in the schib
360 mvc 0x78(8),.Lrdrnewpsw # set up IO interrupt psw
364 c %r1,0xb8 # compare subchannel number
373 .long 0x00080000,0x80000000+.Lrdrint
375 .long 0x020a0000,0x80000000+.Lrdrint
379 # everything loaded, go for it
385 .Linitrd:.long _end + 0x400000 # default address of initrd
386 .Lparm: .long PARMAREA
387 .Lstartup: .long startup
388 .Lcvtab:.long _ebcasc # ebcdic to ascii table
389 .Lreset:.byte 0xc3,0xc8,0xc1,0xd5,0xc7,0xc5,0x40,0xd9,0xc4,0xd9,0x40
390 .byte 0xc1,0xd3,0xd3,0x40,0xd2,0xc5,0xc5,0xd7,0x40,0xd5,0xd6
391 .byte 0xc8,0xd6,0xd3,0xc4 # "change rdr all keep nohold"
392 .L_eof: .long 0xc5d6c600 /* C'EOF' */
393 .L_hdr: .long 0xc8c4d900 /* C'HDR' */
395 #endif /* CONFIG_IPL */
398 # SALIPL loader support. Based on a patch by Rob van der Heij.
399 # This entry point is called directly from the SALIPL loader and
400 # doesn't need a builtin ipl record.
405 stm %r0,%r15,0x07b0 # store registers
409 l %r8,.cmd # pointer to command buffer
411 ltr %r9,%r9 # do we have SALIPL parameters?
414 mvc 0(64,%r8),0x00b0 # copy saved registers
415 xc 64(240-64,%r8),0(%r8) # remainder of buffer
416 tr 0(64,%r8),.lowcase
419 mvc 0(240,%r8),0(%r9) # copy iplparms into buffer
421 l %r10,.tbl # EBCDIC to ASCII table
422 tr 0(240,%r8),0(%r10)
424 st %r0,INITRD_SIZE+ARCH_OFFSET-PARMAREA(%r11)
425 st %r0,INITRD_START+ARCH_OFFSET-PARMAREA(%r11)
426 j startup # continue with startup
427 .tbl: .long _ebcasc # translate table
428 .cmd: .long COMMAND_LINE # address of command line buffer
429 .parm: .long PARMAREA
431 .byte 0x00,0x01,0x02,0x03,0x04,0x05,0x06,0x07
432 .byte 0x08,0x09,0x0a,0x0b,0x0c,0x0d,0x0e,0x0f
433 .byte 0x10,0x11,0x12,0x13,0x14,0x15,0x16,0x17
434 .byte 0x18,0x19,0x1a,0x1b,0x1c,0x1d,0x1e,0x1f
435 .byte 0x20,0x21,0x22,0x23,0x24,0x25,0x26,0x27
436 .byte 0x28,0x29,0x2a,0x2b,0x2c,0x2d,0x2e,0x2f
437 .byte 0x30,0x31,0x32,0x33,0x34,0x35,0x36,0x37
438 .byte 0x38,0x39,0x3a,0x3b,0x3c,0x3d,0x3e,0x3f
439 .byte 0x40,0x41,0x42,0x43,0x44,0x45,0x46,0x47
440 .byte 0x48,0x49,0x4a,0x4b,0x4c,0x4d,0x4e,0x4f
441 .byte 0x50,0x51,0x52,0x53,0x54,0x55,0x56,0x57
442 .byte 0x58,0x59,0x5a,0x5b,0x5c,0x5d,0x5e,0x5f
443 .byte 0x60,0x61,0x62,0x63,0x64,0x65,0x66,0x67
444 .byte 0x68,0x69,0x6a,0x6b,0x6c,0x6d,0x6e,0x6f
445 .byte 0x70,0x71,0x72,0x73,0x74,0x75,0x76,0x77
446 .byte 0x78,0x79,0x7a,0x7b,0x7c,0x7d,0x7e,0x7f
448 .byte 0x80,0x81,0x82,0x83,0x84,0x85,0x86,0x87
449 .byte 0x88,0x89,0x8a,0x8b,0x8c,0x8d,0x8e,0x8f
450 .byte 0x90,0x91,0x92,0x93,0x94,0x95,0x96,0x97
451 .byte 0x98,0x99,0x9a,0x9b,0x9c,0x9d,0x9e,0x9f
452 .byte 0xa0,0xa1,0xa2,0xa3,0xa4,0xa5,0xa6,0xa7
453 .byte 0xa8,0xa9,0xaa,0xab,0xac,0xad,0xae,0xaf
454 .byte 0xb0,0xb1,0xb2,0xb3,0xb4,0xb5,0xb6,0xb7
455 .byte 0xb8,0xb9,0xba,0xbb,0xbc,0xbd,0xbe,0xbf
456 .byte 0xc0,0x81,0x82,0x83,0x84,0x85,0x86,0x87 # .abcdefg
457 .byte 0x88,0x89,0xca,0xcb,0xcc,0xcd,0xce,0xcf # hi
458 .byte 0xd0,0x91,0x92,0x93,0x94,0x95,0x96,0x97 # .jklmnop
459 .byte 0x98,0x99,0xda,0xdb,0xdc,0xdd,0xde,0xdf # qr
460 .byte 0xe0,0xe1,0xa2,0xa3,0xa4,0xa5,0xa6,0xa7 # ..stuvwx
461 .byte 0xa8,0xa9,0xea,0xeb,0xec,0xed,0xee,0xef # yz
462 .byte 0xf0,0xf1,0xf2,0xf3,0xf4,0xf5,0xf6,0xf7
463 .byte 0xf8,0xf9,0xfa,0xfb,0xfc,0xfd,0xfe,0xff
466 # startup-code at 0x10000, running in absolute addressing mode
467 # this is called either by the ipl loader or directly by PSW restart
468 # or linload or SALIPL
471 startup:basr %r13,0 # get base
473 xc 0x200(256),0x200 # partially clear lowcore
478 mvc __LC_LAST_UPDATE_CLOCK(8),0(%r1)
479 mvc __LC_LAST_UPDATE_TIMER(8),6f-.LPG0(%r13)
480 mvc __LC_EXIT_TIMER(8),5f-.LPG0(%r13)
481 #ifndef CONFIG_MARCH_G5
482 # check processor version against MARCH_{G5,Z900,Z990,Z9_109,Z10}
483 stidp __LC_CPUID # store cpuid
485 la %r1,2f-.LPG0(%r13)
486 0: clc __LC_CPUID+4(2),0(%r1)
488 lpsw 1f-.LPG0(13) # machine type not good enough, crash
490 1: .long 0x000a0000,0x00000000
492 #if defined(CONFIG_MARCH_Z10)
493 .short 0x9672, 0x2064, 0x2066, 0x2084, 0x2086, 0x2094, 0x2096
494 #elif defined(CONFIG_MARCH_Z9_109)
495 .short 0x9672, 0x2064, 0x2066, 0x2084, 0x2086
496 #elif defined(CONFIG_MARCH_Z990)
497 .short 0x9672, 0x2064, 0x2066
498 #elif defined(CONFIG_MARCH_Z900)
505 l %r13,4f-.LPG0(%r13)
508 4: .long startup_continue
509 5: .long sched_clock_base_cc
511 6: .long 0x7fffffff,0xffffffff
514 # params at 10400 (setup.h)
517 .long 0,0 # IPL_DEVICE
518 .long 0,0 # INITRD_START
519 .long 0,0 # INITRD_SIZE
522 .byte "root=/dev/ram0 ro"