[RFC PATCH 16/36] arm64: cpuidle: use new helpers to bypass interrupt priority masking

Vladimir Murzin vladimir.murzin at arm.com
Thu Jul 23 02:57:34 PDT 2026


On 7/22/26 09:38, Jinjie Ruan wrote:
> 
> On 7/9/2026 8:13 PM, Vladimir Murzin wrote:
>> From: Ada Couprie Diaz <ada.coupriediaz at arm.com>
>>
>> When the CPU goes into WFI and pseudo-NMIs are in use, we need to make
>> sure that interrupts are not masked by the PMR otherwise they would not
>> reach the CPU and wake it up.
>>
>> Now that we have a proper API that handles both DAIF and PMR, extend it
>> to provide helpers allowing to temporarily switch to masking interrupts
>> via DAIF only when interrupt priorities are in use.
>> This could allow other parts of the code to make use of it and makes it
>> easier to check for proper use.
>>
>> Replace the custom cpuidle helper with those new helpers.
>>
>> Signed-off-by: Ada Couprie Diaz <ada.coupriediaz at arm.com>
>> Signed-off-by: Vladimir Murzin <vladimir.murzin at arm.com>
>> ---
>>  arch/arm64/include/asm/cpuidle.h            | 14 ++---
>>  arch/arm64/include/asm/interrupts/masking.h | 58 +++++++++++++++++++++
>>  2 files changed, 62 insertions(+), 10 deletions(-)
>>
>> diff --git a/arch/arm64/include/asm/cpuidle.h b/arch/arm64/include/asm/cpuidle.h
>> index 2047713e097d..0c7ccdaf1832 100644
>> --- a/arch/arm64/include/asm/cpuidle.h
>> +++ b/arch/arm64/include/asm/cpuidle.h
>> @@ -5,22 +5,17 @@
>>  #include <asm/proc-fns.h>
>>  
>>  #ifdef CONFIG_ARM64_PSEUDO_NMI
>> -#include <asm/arch_gicv3.h>
>> +#include <asm/interrupts/masking.h>
>>  
>>  struct arm_cpuidle_irq_context {
>> -	unsigned long pmr;
>> -	unsigned long daif_bits;
>> +	arm64_exc_hwstates_t arm64_context;
>>  };
>>  
>>  #define arm_cpuidle_save_irq_context(__c)				\
>>  	do {								\
>>  		struct arm_cpuidle_irq_context *c = __c;		\
>>  		if (system_uses_irq_prio_masking()) {			\
>> -			c->daif_bits = read_sysreg(daif);		\
>> -			write_sysreg(c->daif_bits | PSR_I_BIT | PSR_F_BIT, \
>> -				     daif);				\
>> -			c->pmr = gic_read_pmr();			\
>> -			gic_write_pmr(GIC_PRIO_IRQON | GIC_PRIO_PSR_I_SET); \
>> +			c->arm64_context = local_all_irqs_force_daif_save(); \
>>  		}							\
>>  	} while (0)
>>  
>> @@ -28,8 +23,7 @@ struct arm_cpuidle_irq_context {
>>  	do {								\
>>  		struct arm_cpuidle_irq_context *c = __c;		\
>>  		if (system_uses_irq_prio_masking()) {			\
>> -			gic_write_pmr(c->pmr);				\
>> -			write_sysreg(c->daif_bits, daif);		\
>> +			local_all_irqs_force_daif_restore(c->arm64_context); \
>>  		}							\
>>  	} while (0)
>>  #else
>> diff --git a/arch/arm64/include/asm/interrupts/masking.h b/arch/arm64/include/asm/interrupts/masking.h
>> index 19d32618b2b9..9dc37a571094 100644
>> --- a/arch/arm64/include/asm/interrupts/masking.h
>> +++ b/arch/arm64/include/asm/interrupts/masking.h
>> @@ -99,6 +99,64 @@ static inline void local_all_irqs_final_mask(void)
>>  }
>>  #endif /* CONFIG_DEBUG_IRQFLAGS */
>>  
>> +/*
>> + * In some cases, WFI or guest entry for example, we always want interrupts
>> + * to reach the CPU even if masked. Masking via the PMR prevents them from
>> + * reaching the CPU and waking it up.
>> + * Force IRQ masking using DAIF by raising the priority mask
>> + * and setting the IF flags.
>> + *
>> + * Should only be called when IRQs are already masked.
>> + */
>> +static inline arm64_exc_hwstates_t local_all_irqs_force_daif_save(void)
>> +{
>> +	arm64_exc_hwstates_t states = {};
>> +	/*
>> +	 * Cannot use lockdep_assert here as idle entry enables hardirqs
>> +	 * while keeping interrupts masked.
>> +	 */
>> +	WARN_ON_ONCE(!irqs_disabled());
>> +
>> +	if (system_uses_irq_prio_masking()) {
>> +	        states.saved.daif = read_sysreg(daif);
>> +	        states.saved.pmr = read_sysreg_s(SYS_ICC_PMR_EL1);
>> +		/*
>> +		 * We might have IF set or unset. In case IF already set orring with IF
>> +		 * won't change anything, combined with PMR set to IRQON we might become
>> +		 * one of contexts: CRITICAL, ERROR or NONMI. In case IF is unset (which
>> +		 * also implies that DA is unset) orring with IF and combining with PMR
>> +		 * set to IRQON would effectively gives us NONMI context.
>> +		 */
>> +		states.expected.daif = states.saved.daif | DAIF_PROCCTX_NOIRQ;
>> +		states.expected.pmr = GIC_PRIO_IRQON;
>> +
>> +		arm64_update_exc_hwstate(states.expected, true);
>> +	}
>> +
>> +	return states;
>> +}
>> +
>> +/*
>> + * Return to masking with the PMR, restoring previously saved DAIF and PMR.
>> + *
>> + * IRQs or interrupt priority masking should not have been re-enabled in between
>> + * the save and restore.
>> + */
>> +static inline
>> +void local_all_irqs_force_daif_restore(arm64_exc_hwstates_t states)
>> +{
>> +	/*
>> +	 * Cannot use lockdep_assert here as idle entry enables hardirqs
>> +	 * while keeping interrupts masked.
>> +	 */
>> +	WARN_ON_ONCE(!irqs_disabled());
>> +
>> +	if (system_uses_irq_prio_masking()) {
>> +		arm64_debug_exc_hwstate(states.expected);
>> +		arm64_update_exc_hwstate(states.saved, true);
>> +	}
>> +}
> The newly introduced two helper functions seem to have been used only
> once in the end, and they do not update ALLINT. So, is it necessary to
> introduce these two helpers?
> 

I reckon the general approach is to consolidate hardware exception
state manipulation in a few places and leave it elsewhere only when
strictly necessary.

Cheers
Vladimir

>> +
>>  /*
>>   * During early boot, we unmask PSR.DA before the GIC has been set up.
>>   * If we use IRQ priority masking, the PMR and PSR will be out of sync
> 




More information about the linux-arm-kernel mailing list