图片仅供参考

详细数据请看参考数据手册

Datasheet下载
  • 型号: MC9S08SH16CTL
  • 制造商: Freescale Semiconductor
  • 库位|库存: xxxx|xxxx
  • 要求:
数量阶梯 香港交货 国内含税
+xxxx $xxxx ¥xxxx

查看当月历史价格

查看今年历史价格

MC9S08SH16CTL产品简介:

ICGOO电子元器件商城为您提供MC9S08SH16CTL由Freescale Semiconductor设计生产,在icgoo商城现货销售,并且可以通过原厂、代理商等渠道进行代购。 MC9S08SH16CTL价格参考。Freescale SemiconductorMC9S08SH16CTL封装/规格:嵌入式 - 微控制器, S08 微控制器 IC S08 8-位 40MHz 16KB(16K x 8) 闪存 28-TSSOP。您可以下载MC9S08SH16CTL参考资料、Datasheet数据手册功能说明书,资料中有MC9S08SH16CTL 详细功能的应用电路图电压和使用方法及教程。

产品参数 图文手册 常见问题
参数 数值
A/D位大小

10 bit

产品目录

集成电路 (IC)半导体

描述

IC MCU 8BIT 16KB FLASH 28TSSOP8位微控制器 -MCU S08 16K FLASH

EEPROM容量

-

产品分类

嵌入式 - 微控制器

I/O数

23

品牌

Freescale Semiconductor

产品手册

点击此处下载产品Datasheet

产品图片

rohs

符合RoHS无铅 / 符合限制有害物质指令(RoHS)规范要求

产品系列

嵌入式处理器和控制器,微控制器 - MCU,8位微控制器 -MCU,Freescale Semiconductor MC9S08SH16CTLS08

数据手册

点击此处下载产品Datasheet

产品型号

MC9S08SH16CTL

PCN设计/规格

http://cache.freescale.com/files/shared/doc/pcn/PCN15684.htmhttp://cache.freescale.com/files/shared/doc/pcn/PCN16192.htmhttp://cache.freescale.com/files/shared/doc/pcn/PCN16235.htm

RAM容量

1K x 8

产品种类

8-bit MCUs

供应商器件封装

28-TSSOP

包装

管件

单位重量

115 mg

可用A/D通道

12

可编程输入/输出端数量

23

商标

Freescale Semiconductor

处理器系列

MC9S08

外设

LVD,POR,PWM,WDT

安装风格

SMD/SMT

定时器数量

2

封装

Tube

封装/外壳

28-TSSOP(0.173",4.40mm 宽)

封装/箱体

TSSOP-28

工作温度

-40°C ~ 85°C

工作电源电压

5.5 V

工厂包装数量

50

振荡器类型

内部

接口类型

I2C, SCI, SPI

数据RAM大小

1 kB

数据总线宽度

8 bit

数据转换器

A/D 16x10b

最大工作温度

+ 85 C

最大时钟频率

40 MHz

最小工作温度

- 40 C

标准包装

1,800

核心

S08

核心处理器

S08

核心尺寸

8-位

片上ADC

Yes

电压-电源(Vcc/Vdd)

2.7 V ~ 5.5 V

电源电压-最大

5.5 V

电源电压-最小

2.7 V

程序存储器大小

16 kB

程序存储器类型

Flash

程序存储容量

16KB(16K x 8)

系列

S08SH

输入/输出端数量

23 I/O

连接性

I²C, LIN, SCI, SPI

速度

40MHz

推荐商品

型号:PIC16C924-08/PT

品牌:Microchip Technology

产品名称:集成电路(IC)

获取报价

型号:DSPIC33FJ256MC710A-I/PF

品牌:Microchip Technology

产品名称:集成电路(IC)

获取报价

型号:R5F100GLANA#U0

品牌:Renesas Electronics America

产品名称:集成电路(IC)

获取报价

型号:PIC24FJ16GA002-E/SP

品牌:Microchip Technology

产品名称:集成电路(IC)

获取报价

型号:DSPIC33EP256GM304-I/ML

品牌:Microchip Technology

产品名称:集成电路(IC)

获取报价

型号:PIC16F1615-I/SL

品牌:Microchip Technology

产品名称:集成电路(IC)

获取报价

型号:MK51DX128CMC7

品牌:NXP USA Inc.

产品名称:集成电路(IC)

获取报价

型号:STM8L151F3P6TR

品牌:STMicroelectronics

产品名称:集成电路(IC)

获取报价

样品试用

万种样品免费试用

去申请
MC9S08SH16CTL 相关产品

ATSAM4S16CA-ANR

品牌:Microchip Technology

价格:

P87C591VFA/00,512

品牌:NXP USA Inc.

价格:

DSPIC33FJ32GP101-I/P

品牌:Microchip Technology

价格:

ATA6617C-P3QW-1

品牌:Microchip Technology

价格:

ATMEGA8L-8PI

品牌:Microchip Technology

价格:

ST7FOXK1T6TR

品牌:STMicroelectronics

价格:

MC908QC8CDXE

品牌:NXP USA Inc.

价格:

PIC18F24J50T-I/ML

品牌:Microchip Technology

价格:

PDF Datasheet 数据手册内容提取

MC9S08SH32 MC9S08SH16 Data Sheet HCS08 Microcontrollers MC9S08SH32 Rev. 3 3/2014 freescale.com

None

MC9S08SH32 Series Features 8-Bit HCS08 Central Processor Unit (CPU) Peripherals • 40-MHz HCS08 CPU (central processor unit) (cid:129) ADC — 16-channel, 10-bit resolution, 2.5μs (cid:129) HC08 instruction set with added BGND instruction conversion time, automatic compare function, temperature sensor, internal bandgap reference (cid:129) Support for up to 32 interrupt/reset sources channel; runs in stop3 On-Chip Memory (cid:129) ACMP — Analog comparators with selectable (cid:129) FLASH read/program/erase over full operating interrupt on rising, falling, or either edge of voltage and temperature comparator output; compare option to fixed (cid:129) Random-access memory (RAM) internal bandgap reference voltage; output can be (cid:129) Security circuitry to prevent unauthorized access optionally routed to TPM module; runs in stop3 to RAM and FLASH contents (cid:129) SCI — Full duplex non-return to zero (NRZ); LIN Power-Saving Modes master extended break generation; LIN slave extended break detection; wake up on active edge (cid:129) Two very low power stop modes (cid:129) Reduced power wait mode (cid:129) SPI — Full-duplex or single-wire bidirectional; Double-buffered transmit and receive; Master or (cid:129) Very low power real time counter for use in run, Slave mode; MSB-first or LSB-first shifting wait, and stop (cid:129) IIC — Up to 100 kbps with maximum bus loading; Clock Source Options Multi-master operation; Programmable slave (cid:129) Oscillator (XOSC) — Loop-control Pierce address; Interrupt driven byte-by-byte data oscillator; Crystal or ceramic resonator range of transfer; supports broadcast mode and 10-bit 31.25kHz to 38.4kHz or 1 MHz to 16MHz addressing (cid:129) Internal Clock Source (ICS) — Internal clock (cid:129) MTIM — 8-bit modulo counter with 8-bit prescaler source module containing a frequency-locked and overflow interrupt loop (FLL) controlled by internal or external (cid:129) TPMx — Two 2-channel timer pwm modules reference; precision trimming of internal reference (TPM1, TPM2); Selectable input capture, output allows 0.2% resolution and 2% deviation over compare, or buffered edge- or center-aligned temperature and voltage; 1.5% deviation using PWM on each channel internal temperature compensation. (cid:129) RTC — (Real-time counter) 8-bit modulus counter (cid:129) ICS supports bus frequencies from 2MHz to with binary or decimal based prescaler; External 20MHz. clock source for precise time base, time-of-day, System Protection calendar or task scheduling functions; Free running on-chip low power oscillator (1kHz) for (cid:129) Watchdog computer operating properly (COP) reset with option to run from dedicated 1-kHz cyclic wake-up without external components, runs internal clock source or bus clock in all MCU modes (cid:129) Low-voltage detection with reset or interrupt; Input/Output selectable trip points (cid:129) 23 general purpose I/O pins (GPIOs) and 1 (cid:129) Illegal opcode detection with reset output-only pin (cid:129) Illegal address detection with reset (cid:129) 8 interrupt pins with selectable polarity (cid:129) FLASH block protect (cid:129) Ganged output option for PTB[5:2] and PTC[3:0]; Development Support allows single write to change state of multiple pins (cid:129) Single-wire background debug interface (cid:129) Hysteresis and configurable pull up device on all (cid:129) Breakpoint capability to allow single breakpoint input pins; Configurable slew rate and drive setting during in-circuit debugging (plus two more strength on all output pins. breakpoints in on-chip debug module) Package Options (cid:129) On-chip, in-circuit emulation (ICE) debug module (cid:129) 28-TSSOP, 28-SOIC, 20-TSSOP, 16-TSSOP containing two comparators and nine trigger modes. Eight deep FIFO for storing change-of-flow address and event-only data. Debug module supports both tag and force breakpoints.

None

MC9S08SH32 Data Sheet Covers MC9S08SH32 MC9S08SH16 MC9S08SH32 Rev. 3 3/2014 Freescale™ and the Freescale logo are trademarks of Freescale Semiconductor, Inc. ©Freescale Semiconductor, Inc., 2007-2014. All rights reserved.

Revision History To provide the most up-to-date information, the revision of our documents on the World Wide Web will be the most current. Your printed copy may be an earlier revision. To verify you have the latest information available, refer to: http://freescale.com/ The following revision history table summarizes changes contained in this document. Revision Revision Description of Changes Number Date Updated The ACMP and TPM modules to version 3 and made numerous revi- 1 10/2007 sions to the Electricals. Updated device numbering scheme. Updated some electricals and made some minor grammatical/formatting revi- sions. Corrected the SPI block module version. Removed incorrect ADC temper- 2 4/2008 ature sensor value from the Features section. Updated the package information with a sample mask set identifier. Added a note to the Section9.1, “Introduction”; updated Section11.4.5, “Internal 3 3/2014 Reference Clock”; updated SectionA.14.1, “Radiated Emissions”; updated Figure4-1, Figure4-6; updated Table4-4; updated Table7-2. ©Freescale Semiconductor, Inc., 2007-2014. All rights reserved. This product incorporates SuperFlash® Technology licensed from SST. MC9S08SH32 Series Data Sheet, Rev. 3 6 Freescale Semiconductor

List of Chapters Chapter 1 Device Overview......................................................................19 Chapter 2 Pins and Connections.............................................................23 Chapter 3 Modes of Operation.................................................................31 Chapter 4 Memory.....................................................................................37 Chapter 5 Resets, Interrupts, and General System Control..................59 Chapter 6 Parallel Input/Output Control..................................................75 Chapter 7 Central Processor Unit (S08CPUV3)......................................93 Chapter 8 Analog Comparator 5-V (S08ACMPV3)................................113 Chapter 9 Analog-to-Digital Converter (S08ADC10V1)........................121 Chapter 10 Inter-Integrated Circuit (S08IICV2).......................................149 Chapter 11 Internal Clock Source (S08ICSV2)........................................167 Chapter 12 Modulo Timer (S08MTIMV1)..................................................181 Chapter 13 Real-Time Counter (S08RTCV1)...........................................191 Chapter 14 Serial Communications Interface (S08SCIV4).....................201 Chapter 15 Serial Peripheral Interface (S08SPIV3) ................................221 Chapter 16 Timer Pulse-Width Modulator (S08TPMV3).........................237 Chapter 17 Development Support ...........................................................261 Appendix A Electrical Characteristics......................................................283 Appendix B Ordering Information and Mechanical Drawings................313 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 7

None

Contents Section Number Title Page Chapter 1 Device Overview 1.1 Devices in the MC9S08SH32 Series............................................................................................... 19 1.2 MCU Block Diagram...................................................................................................................... 20 1.3 System Clock Distribution.............................................................................................................. 22 Chapter 2 Pins and Connections 2.1 Device Pin Assignment................................................................................................................... 23 2.2 Recommended System Connections............................................................................................... 25 2.2.1 Power................................................................................................................................ 26 2.2.2 Oscillator (XOSC)............................................................................................................ 26 2.2.3 RESET.............................................................................................................................. 27 2.2.4 Background / Mode Select (BKGD/MS).......................................................................... 27 2.2.5 General-Purpose I/O and Peripheral Ports........................................................................ 28 Chapter 3 Modes of Operation 3.1 Introduction..................................................................................................................................... 31 3.2 Features........................................................................................................................................... 31 3.3 Run Mode........................................................................................................................................ 31 3.4 Active Background Mode............................................................................................................... 31 3.5 Wait Mode....................................................................................................................................... 32 3.6 Stop Modes...................................................................................................................................... 32 3.6.1 Stop3 Mode....................................................................................................................... 33 3.6.2 Stop2 Mode....................................................................................................................... 34 3.6.3 On-Chip Peripheral Modules in Stop Modes.................................................................... 34 Chapter 4 Memory 4.1 MC9S08SH32 Series Memory Map............................................................................................... 37 4.2 Reset and Interrupt Vector Assignments......................................................................................... 38 4.3 Register Addresses and Bit Assignments........................................................................................ 39 4.4 RAM................................................................................................................................................ 46 4.5 FLASH............................................................................................................................................ 46 4.5.1 Features............................................................................................................................. 47 4.5.2 Program and Erase Times................................................................................................. 47 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 9

Section Number Title Page 4.5.3 Program and Erase Command Execution......................................................................... 48 4.5.4 Burst Program Execution.................................................................................................. 49 4.5.5 Access Errors.................................................................................................................... 51 4.5.6 FLASH Block Protection.................................................................................................. 51 4.5.7 Vector Redirection............................................................................................................ 52 4.6 Security............................................................................................................................................ 52 4.7 FLASH Registers and Control Bits................................................................................................. 53 4.7.1 FLASH Clock Divider Register (FCDIV)........................................................................ 54 4.7.2 FLASH Options Register (FOPT and NVOPT)................................................................ 55 4.7.3 FLASH Configuration Register (FCNFG)....................................................................... 56 4.7.4 FLASH Protection Register (FPROT and NVPROT)...................................................... 56 4.7.5 FLASH Status Register (FSTAT)...................................................................................... 57 4.7.6 FLASH Command Register (FCMD)............................................................................... 58 Chapter 5 Resets, Interrupts, and General System Control 5.1 Introduction..................................................................................................................................... 59 5.2 Features........................................................................................................................................... 59 5.3 MCU Reset...................................................................................................................................... 59 5.4 Computer Operating Properly (COP) Watchdog............................................................................. 60 5.5 Interrupts......................................................................................................................................... 61 5.5.1 Interrupt Stack Frame....................................................................................................... 62 5.5.2 External Interrupt Request Pin (IRQ)............................................................................... 63 5.5.3 Interrupt Vectors, Sources, and Local Masks ................................................................... 63 5.6 Low-Voltage Detect (LVD) System................................................................................................ 65 5.6.1 Power-On Reset Operation............................................................................................... 65 5.6.2 Low-Voltage Detection (LVD) Reset Operation............................................................... 65 5.6.3 Low-Voltage Warning (LVW) Interrupt Operation........................................................... 65 5.7 Reset, Interrupt, and System Control Registers and Control Bits................................................... 65 5.7.1 Interrupt Pin Request Status and Control Register (IRQSC)............................................ 66 5.7.2 System Reset Status Register (SRS)................................................................................. 67 5.7.3 System Background Debug Force Reset Register (SBDFR)............................................ 68 5.7.4 System Options Register 1 (SOPT1)................................................................................ 69 5.7.5 System Options Register 2 (SOPT2)................................................................................ 70 5.7.6 System Device Identification Register (SDIDH, SDIDL)................................................ 71 5.7.7 System Power Management Status and Control 1 Register (SPMSC1)........................... 72 5.7.8 System Power Management Status and Control 2 Register (SPMSC2)........................... 73 Chapter 6 Parallel Input/Output Control 6.1 Port Data and Data Direction.......................................................................................................... 75 6.2 Pull-up, Slew Rate, and Drive Strength.......................................................................................... 76 MC9S08SH32 Series Data Sheet, Rev. 3 10 Freescale Semiconductor

Section Number Title Page 6.3 Ganged Output................................................................................................................................ 77 6.4 Pin Interrupts................................................................................................................................... 78 6.4.1 Edge-Only Sensitivity....................................................................................................... 78 6.4.2 Edge and Level Sensitivity............................................................................................... 79 6.4.3 Pull-up/Pull-down Resistors............................................................................................. 79 6.4.4 Pin Interrupt Initialization................................................................................................. 79 6.5 Pin Behavior in Stop Modes............................................................................................................ 79 6.6 Parallel I/O and Pin Control Registers............................................................................................ 80 6.6.1 Port A Registers................................................................................................................ 81 6.6.2 Port B Registers................................................................................................................ 86 6.6.3 Port C Registers................................................................................................................ 90 Chapter 7 Central Processor Unit (S08CPUV3) 7.1 Introduction..................................................................................................................................... 93 7.1.1 Features............................................................................................................................. 93 7.2 Programmer’s Model and CPU Registers....................................................................................... 94 7.2.1 Accumulator (A)............................................................................................................... 94 7.2.2 Index Register (H:X)........................................................................................................ 94 7.2.3 Stack Pointer (SP)............................................................................................................. 95 7.2.4 Program Counter (PC)...................................................................................................... 95 7.2.5 Condition Code Register (CCR)....................................................................................... 95 7.3 Addressing Modes........................................................................................................................... 97 7.3.1 Inherent Addressing Mode (INH)..................................................................................... 97 7.3.2 Relative Addressing Mode (REL).................................................................................... 97 7.3.3 Immediate Addressing Mode (IMM)................................................................................ 97 7.3.4 Direct Addressing Mode (DIR)........................................................................................ 97 7.3.5 Extended Addressing Mode (EXT).................................................................................. 98 7.3.6 Indexed Addressing Mode................................................................................................ 98 7.4 Special Operations........................................................................................................................... 99 7.4.1 Reset Sequence................................................................................................................. 99 7.4.2 Interrupt Sequence............................................................................................................ 99 7.4.3 Wait Mode Operation...................................................................................................... 100 7.4.4 Stop Mode Operation...................................................................................................... 100 7.4.5 BGND Instruction........................................................................................................... 101 7.5 HCS08 Instruction Set Summary.................................................................................................. 102 Chapter 8 Analog Comparator 5-V (S08ACMPV3) 8.1 Introduction................................................................................................................................... 113 8.1.1 ACMP Configuration Information.................................................................................. 113 8.1.2 ACMP/TPM Configuration Information........................................................................ 113 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 11

Section Number Title Page 8.2 Features......................................................................................................................................... 115 8.3 Modes of Operation....................................................................................................................... 115 8.3.1 ACMP in Wait Mode...................................................................................................... 115 8.3.2 ACMP in Stop Modes..................................................................................................... 115 8.3.3 ACMP in Active Background Mode.............................................................................. 115 8.4 Block Diagram.............................................................................................................................. 115 8.5 External Signal Description.......................................................................................................... 117 8.6 Memory Map ................................................................................................................................ 117 8.6.1 Register Descriptions...................................................................................................... 117 8.7 Functional Description.................................................................................................................. 119 Chapter 9 Analog-to-Digital Converter (S08ADC10V1) 9.1 Introduction................................................................................................................................... 121 9.1.1 Channel Assignments..................................................................................................... 121 9.1.2 Analog Power and Ground Signal Names...................................................................... 122 9.1.3 Alternate Clock............................................................................................................... 122 9.1.4 Hardware Trigger............................................................................................................ 122 9.1.5 Temperature Sensor........................................................................................................ 122 9.1.6 Features........................................................................................................................... 125 9.1.7 Block Diagram................................................................................................................ 125 9.2 External Signal Description.......................................................................................................... 126 9.2.1 Analog Power (V ).................................................................................................. 127 DDAD 9.2.2 Analog Ground (V )................................................................................................. 127 SSAD 9.2.3 Voltage Reference High (V )................................................................................... 127 REFH 9.2.4 Voltage Reference Low (V ).................................................................................... 127 REFL 9.2.5 Analog Channel Inputs (ADx)........................................................................................ 127 9.3 Register Definition........................................................................................................................ 127 9.3.1 Status and Control Register 1 (ADCSC1)...................................................................... 127 9.3.2 Status and Control Register 2 (ADCSC2)...................................................................... 129 9.3.3 Data Result High Register (ADCRH)............................................................................. 130 9.3.4 Data Result Low Register (ADCRL).............................................................................. 130 9.3.5 Compare Value High Register (ADCCVH).................................................................... 131 9.3.6 Compare Value Low Register (ADCCVL)..................................................................... 131 9.3.7 Configuration Register (ADCCFG)................................................................................ 131 9.3.8 Pin Control 1 Register (APCTL1).................................................................................. 133 9.3.9 Pin Control 2 Register (APCTL2).................................................................................. 134 9.3.10 Pin Control 3 Register (APCTL3).................................................................................. 135 9.4 Functional Description.................................................................................................................. 136 9.4.1 Clock Select and Divide Control.................................................................................... 136 9.4.2 Input Select and Pin Control........................................................................................... 137 9.4.3 Hardware Trigger............................................................................................................ 137 MC9S08SH32 Series Data Sheet, Rev. 3 12 Freescale Semiconductor

Section Number Title Page 9.4.4 Conversion Control......................................................................................................... 137 9.4.5 Automatic Compare Function......................................................................................... 140 9.4.6 MCU Wait Mode Operation............................................................................................ 140 9.4.7 MCU Stop3 Mode Operation.......................................................................................... 140 9.4.8 MCU Stop1 and Stop2 Mode Operation......................................................................... 141 9.5 Initialization Information.............................................................................................................. 141 9.5.1 ADC Module Initialization Example ............................................................................. 141 9.6 Application Information................................................................................................................ 143 9.6.1 External Pins and Routing.............................................................................................. 143 9.6.2 Sources of Error.............................................................................................................. 145 Chapter 10 Inter-Integrated Circuit (S08IICV2) 10.1 Introduction................................................................................................................................... 149 10.1.1 Module Configuration..................................................................................................... 149 10.1.2 Features........................................................................................................................... 151 10.1.3 Modes of Operation........................................................................................................ 151 10.1.4 Block Diagram................................................................................................................ 151 10.2 External Signal Description.......................................................................................................... 152 10.2.1 SCL — Serial Clock Line............................................................................................... 152 10.2.2 SDA — Serial Data Line................................................................................................ 152 10.3 Register Definition........................................................................................................................ 152 10.3.1 IIC Address Register (IICA)........................................................................................... 153 10.3.2 IIC Frequency Divider Register (IICF).......................................................................... 153 10.3.3 IIC Control Register (IICC1).......................................................................................... 156 10.3.4 IIC Status Register (IICS)............................................................................................... 156 10.3.5 IIC Data I/O Register (IICD).......................................................................................... 157 10.3.6 IIC Control Register 2 (IICC2)....................................................................................... 158 10.4 Functional Description.................................................................................................................. 159 10.4.1 IIC Protocol..................................................................................................................... 159 10.4.2 10-bit Address................................................................................................................. 162 10.4.3 General Call Address...................................................................................................... 163 10.5 Resets............................................................................................................................................ 163 10.6 Interrupts....................................................................................................................................... 163 10.6.1 Byte Transfer Interrupt.................................................................................................... 163 10.6.2 Address Detect Interrupt................................................................................................. 164 10.6.3 Arbitration Lost Interrupt................................................................................................ 164 10.7 Initialization/Application Information.......................................................................................... 165 Chapter 11 Internal Clock Source (S08ICSV2) 11.1 Introduction................................................................................................................................... 167 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 13

Section Number Title Page 11.1.1 Module Configuration..................................................................................................... 167 11.1.2 Features........................................................................................................................... 169 11.1.3 Block Diagram................................................................................................................ 169 11.1.4 Modes of Operation........................................................................................................ 170 11.2 External Signal Description.......................................................................................................... 171 11.3 Register Definition........................................................................................................................ 171 11.3.1 ICS Control Register 1 (ICSC1)..................................................................................... 172 11.3.2 ICS Control Register 2 (ICSC2)..................................................................................... 173 11.3.3 ICS Trim Register (ICSTRM)......................................................................................... 174 11.3.4 ICS Status and Control (ICSSC)..................................................................................... 174 11.4 Functional Description.................................................................................................................. 175 11.4.1 Operational Modes.......................................................................................................... 175 11.4.2 Mode Switching.............................................................................................................. 177 11.4.3 Bus Frequency Divider................................................................................................... 178 11.4.4 Low Power Bit Usage..................................................................................................... 178 11.4.5 Internal Reference Clock................................................................................................ 178 11.4.6 Optional External Reference Clock................................................................................ 178 11.4.7 Fixed Frequency Clock................................................................................................... 179 Chapter 12 Modulo Timer (S08MTIMV1) 12.1 Introduction................................................................................................................................... 181 12.1.1 MTIM Configuration Information.................................................................................. 181 12.1.2 Features........................................................................................................................... 183 12.1.3 Modes of Operation........................................................................................................ 183 12.1.4 Block Diagram................................................................................................................ 184 12.2 External Signal Description.......................................................................................................... 184 12.3 Register Definition........................................................................................................................ 185 12.3.1 MTIM Status and Control Register (MTIMSC)............................................................. 186 12.3.2 MTIM Clock Configuration Register (MTIMCLK)....................................................... 187 12.3.3 MTIM Counter Register (MTIMCNT)........................................................................... 188 12.3.4 MTIM Modulo Register (MTIMMOD).......................................................................... 188 12.4 Functional Description.................................................................................................................. 189 12.4.1 MTIM Operation Example............................................................................................. 190 Chapter 13 Real-Time Counter (S08RTCV1) 13.1 Introduction................................................................................................................................... 191 13.1.1 Features........................................................................................................................... 193 13.1.2 Modes of Operation........................................................................................................ 193 13.1.3 Block Diagram................................................................................................................ 194 13.2 External Signal Description.......................................................................................................... 194 MC9S08SH32 Series Data Sheet, Rev. 3 14 Freescale Semiconductor

Section Number Title Page 13.3 Register Definition........................................................................................................................ 194 13.3.1 RTC Status and Control Register (RTCSC).................................................................... 195 13.3.2 RTC Counter Register (RTCCNT).................................................................................. 196 13.3.3 RTC Modulo Register (RTCMOD)................................................................................ 196 13.4 Functional Description.................................................................................................................. 196 13.4.1 RTC Operation Example................................................................................................. 197 13.5 Initialization/Application Information.......................................................................................... 198 Chapter 14 Serial Communications Interface (S08SCIV4) 14.1 Introduction................................................................................................................................... 201 14.1.1 Features........................................................................................................................... 203 14.1.2 Modes of Operation........................................................................................................ 203 14.1.3 Block Diagram................................................................................................................ 204 14.2 Register Definition........................................................................................................................ 206 14.2.1 SCI Baud Rate Registers (SCIxBDH, SCIxBDL).......................................................... 206 14.2.2 SCI Control Register 1 (SCIxC1)................................................................................... 207 14.2.3 SCI Control Register 2 (SCIxC2)................................................................................... 208 14.2.4 SCI Status Register 1 (SCIxS1)...................................................................................... 209 14.2.5 SCI Status Register 2 (SCIxS2)...................................................................................... 211 14.2.6 SCI Control Register 3 (SCIxC3)................................................................................... 212 14.2.7 SCI Data Register (SCIxD)............................................................................................. 213 14.3 Functional Description.................................................................................................................. 213 14.3.1 Baud Rate Generation..................................................................................................... 213 14.3.2 Transmitter Functional Description................................................................................ 214 14.3.3 Receiver Functional Description.................................................................................... 215 14.3.4 Interrupts and Status Flags.............................................................................................. 217 14.3.5 Additional SCI Functions............................................................................................... 218 Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.1 Introduction................................................................................................................................... 221 15.1.1 Features........................................................................................................................... 223 15.1.2 Block Diagrams.............................................................................................................. 223 15.1.3 SPI Baud Rate Generation.............................................................................................. 225 15.2 External Signal Description.......................................................................................................... 226 15.2.1 SPSCK — SPI Serial Clock............................................................................................ 226 15.2.2 MOSI — Master Data Out, Slave Data In...................................................................... 226 15.2.3 MISO — Master Data In, Slave Data Out...................................................................... 226 15.2.4 SS — Slave Select.......................................................................................................... 226 15.3 Modes of Operation....................................................................................................................... 227 15.3.1 SPI in Stop Modes.......................................................................................................... 227 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 15

Section Number Title Page 15.4 Register Definition........................................................................................................................ 227 15.4.1 SPI Control Register 1 (SPIxC1).................................................................................... 227 15.4.2 SPI Control Register 2 (SPIxC2).................................................................................... 228 15.4.3 SPI Baud Rate Register (SPIxBR).................................................................................. 229 15.4.4 SPI Status Register (SPIxS)............................................................................................ 230 15.4.5 SPI Data Register (SPIxD)............................................................................................. 231 15.5 Functional Description.................................................................................................................. 232 15.5.1 SPI Clock Formats.......................................................................................................... 232 15.5.2 SPI Interrupts.................................................................................................................. 235 15.5.3 Mode Fault Detection..................................................................................................... 235 Chapter 16 Timer Pulse-Width Modulator (S08TPMV3) 16.1 Introduction................................................................................................................................... 237 16.1.1 TPM Configuration Information..................................................................................... 237 16.1.2 TPM Pin Repositioning.................................................................................................. 237 16.1.3 Features........................................................................................................................... 239 16.1.4 Modes of Operation........................................................................................................ 239 16.1.5 Block Diagram................................................................................................................ 240 16.2 Signal Description......................................................................................................................... 242 16.2.1 Detailed Signal Descriptions.......................................................................................... 242 16.3 Register Definition........................................................................................................................ 246 16.3.1 TPM Status and Control Register (TPMxSC)................................................................ 246 16.3.2 TPM-Counter Registers (TPMxCNTH:TPMxCNTL).................................................... 247 16.3.3 TPM Counter Modulo Registers (TPMxMODH:TPMxMODL).................................... 248 16.3.4 TPM Channel n Status and Control Register (TPMxCnSC).......................................... 249 16.3.5 TPM Channel Value Registers (TPMxCnVH:TPMxCnVL).......................................... 251 16.4 Functional Description.................................................................................................................. 252 16.4.1 Counter............................................................................................................................ 253 16.4.2 Channel Mode Selection................................................................................................. 255 16.5 Reset Overview............................................................................................................................. 258 16.5.1 General............................................................................................................................ 258 16.5.2 Description of Reset Operation....................................................................................... 258 16.6 Interrupts....................................................................................................................................... 258 16.6.1 General............................................................................................................................ 258 16.6.2 Description of Interrupt Operation................................................................................. 259 Chapter 17 Development Support 17.1 Introduction................................................................................................................................... 261 17.1.1 Forcing Active Background............................................................................................ 261 17.1.2 Features........................................................................................................................... 262 MC9S08SH32 Series Data Sheet, Rev. 3 16 Freescale Semiconductor

Section Number Title Page 17.2 Background Debug Controller (BDC).......................................................................................... 262 17.2.1 BKGD Pin Description................................................................................................... 263 17.2.2 Communication Details.................................................................................................. 264 17.2.3 BDC Commands............................................................................................................. 268 17.2.4 BDC Hardware Breakpoint............................................................................................. 270 17.3 On-Chip Debug System (DBG).................................................................................................... 271 17.3.1 Comparators A and B..................................................................................................... 271 17.3.2 Bus Capture Information and FIFO Operation............................................................... 271 17.3.3 Change-of-Flow Information.......................................................................................... 272 17.3.4 Tag vs. Force Breakpoints and Triggers......................................................................... 272 17.3.5 Trigger Modes................................................................................................................. 273 17.3.6 Hardware Breakpoints.................................................................................................... 275 17.4 Register Definition........................................................................................................................ 275 17.4.1 BDC Registers and Control Bits..................................................................................... 275 17.4.2 System Background Debug Force Reset Register (SBDFR).......................................... 277 17.4.3 DBG Registers and Control Bits..................................................................................... 278 Appendix A Electrical Characteristics A.1 Introduction....................................................................................................................................283 A.2 Parameter Classification.................................................................................................................283 A.3 Absolute Maximum Ratings...........................................................................................................283 A.4 Thermal Characteristics..................................................................................................................285 A.5 ESD Protection and Latch-Up Immunity.......................................................................................287 A.6 DC Characteristics..........................................................................................................................288 A.7 Supply Current Characteristics.......................................................................................................292 A.8 External Oscillator (XOSC) Characteristics..................................................................................296 A.9 Internal Clock Source (ICS) Characteristics..................................................................................298 A.10 Analog Comparator (ACMP) Electricals.......................................................................................299 A.11 ADC Characteristics.......................................................................................................................300 A.12 AC Characteristics..........................................................................................................................304 A.12.1 Control Timing................................................................................................................304 A.12.2 TPM/MTIM Module Timing...........................................................................................306 A.12.3 SPI....................................................................................................................................307 A.13 Flash Specifications........................................................................................................................310 A.14 EMC Performance..........................................................................................................................311 A.14.1 Radiated Emissions..........................................................................................................311 Appendix B Ordering Information and Mechanical Drawings B.1 Ordering Information.....................................................................................................................313 B.1.1 Device Numbering Scheme.............................................................................................313 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 17

B.2 Package Information and Mechanical Drawings...........................................................................314

Chapter 1 Device Overview The MC9S08SH32 members of the low-cost, high-performance HCS08 Family of 8-bit microcontroller units (MCUs). All MCUs in the family use the enhanced HCS08 core and are available with a variety of modules, memory sizes, memory types, and package types. 1.1 Devices in the MC9S08SH32 Series Table 1-1 summarizes the feature set available in the MC9S08SH32 series of MCUs. Table1-1. MC9S08SH32 Series tFeatures by MCU and Package Feature 9S08SH32 9S08SH16 FLASH size (bytes) 32768 16384 RAM size (bytes) 1024 Pin quantity 28 20 16 28 20 16 ACMP yes ADC channels 16 12 8 16 12 8 DBG yes ICS yes IIC yes IRQ yes MTIM yes Pin Interrupts 8 Pin I/O 1 23 17 13 23 17 13 RTC yes SCI yes SPI yes TPM1 channels 2 TPM2 channels 2 XOSC yes 1 Port I/O count does not include the output-only PTA4/ACMPO/BKGD/MS. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 19

Chapter1 Device Overview 1.2 MCU Block Diagram The block diagram in Figure 1-1 shows the structure of the MC9S08SH32 Series MCU. BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) PTA4/ACMPO/BKGD/MS A T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS When PTA4 is configured as BKGD, pin becomes bi-directional. Figure1-1. MC9S08SH32 Series Block Diagram MC9S08SH32 Series Data Sheet, Rev. 3 20 Freescale Semiconductor

Chapter1 Device Overview Table 1-2 provides the functional version of the on-chip modules Table1-2. Module Versions Module Version Analog Comparator (5V) (ACMP) 3 Analog-to-Digital Converter (ADC) 1 Central Processor Unit (CPU) 3 Inter-Integrated Circuit (IIC) 2 Internal Clock Source (ICS) 2 Low Power Oscillator (XOSC) 1 Modulo Timer (MTIM) 1 On-Chip In-Circuit Emulator (DBG) 2 Real-Time Counter (RTC) 1 Serial Peripheral Interface (SPI) 3 Serial Communications Interface (SCI) 4 Timer Pulse Width Modulator (TPM) 3 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 21

Chapter1 Device Overview 1.3 System Clock Distribution Figure 1-2 shows a simplified clock connection diagram. Some modules in the MCU have selectable clock inputs as shown. The clock inputs to the modules indicate the clock(s) that are used to drive the module function. The following defines the clocks used in this MCU: • BUSCLK — The frequency of the bus is always half of ICSOUT. • ICSOUT — Primary output of the ICS and is twice the bus frequency. • ICSLCLK — Development tools can select this clock source to speed up BDC communications in systems where the bus clock is configured to run at a very slow frequency. • ICSERCLK — External reference clock can be selected as the RTC clock source and as the alternate clock for the ADC module. • ICSIRCLK — Internal reference clock can be selected as the RTC clock source. • ICSFFCLK — Fixed frequency clock can be selected as clock source for the TPM1, TPM2 and MTIM modules. • LPOCLK — Independent 1-kHz clock source that can be selected as the clock source for the COP and RTC modules. • TCLK — External input clock source for TPM1, TPM2 and MTIM and is referenced as TPMCLK in TPM chapters. TCLK 1 kHZ LPOCLK RTC COP TPM1 TPM2 MTIM SCI SPI LPO ICSERCLK ICSIRCLK ICS ICSFFCLK FFCLK* ÷2 SYNC* ICSOUT BUSCLK ÷2 ICSLCLK XOSC CPU BDC ADC IIC FLASH ADC has min and max FLASH has frequency EXTAL XTAL frequency requirements. requirements for program See the ADC chapter and erase operation. See * The fixed frequency clock (FFCLK) is internally and electricals appendix the electricals appendix synchronized to the bus clock and must not exceed one for details. for details. half of the bus clock frequency. Figure1-2. System Clock Distribution Diagram MC9S08SH32 Series Data Sheet, Rev. 3 22 Freescale Semiconductor

Chapter 2 Pins and Connections This section describes signals that connect to package pins. It includes pinout diagrams, recommended system connections, and detailed discussions of signals. 2.1 Device Pin Assignment Figure 2-1 - Figure 2-3 shows the pin assignments for the MC9S08SH32 Series devices. PTC5/ADP13 1 28 PTC6/ADP14 PTC4/ADP12 2 27 PTC7/ADP15 PTA5/IRQ/TCLK/RESET 3 26 PTA0/PIA0/TPM1CH0/ADP0/ACMP+ PTA4/ACMPO/BKGD/MS 4 25 PTA1/PIA1/TPM2CH0/ADP1/ACMP– VDD 5 24 PTA2/PIA2/SDA/ADP2 VDDA/VREFH 6 23 PTA3/PIA3/SCL/ADP3 VSSA/VREFL 7 22 PTA6/TPM2CH0 VSS 8 21 PTA7/TPM2CH1 PTB7/SCL/EXTAL 9 20 PTB0/PIB0/RxD/ADP4 PTB6/SDA/XTAL 10 19 PTB1/PIB1/TxD/ADP5 PTB5/TPM1CH1/SS 11 18 PTB2/PIB2/SPSCK/ADP6 PTB4/TPM2CH1/MISO 12 17 PTB3/PIB3/MOSI/ADP7 PTC3/ADP11 13 16 PTC0/TPM1CH0/ADP8 PTC2/ADP10 14 15 PTC1/TPM1CH1/ADP9 Figure2-1. 28-Pin SOIC and TSSOP PTA5/IRQ/TCLK/RESET 1 20 PTA0/PIA0/TPM1CH0/ADP0/ACMP+ PTA4/ACMPO/BKGD/MS 2 19 PTA1/PIA1/TPM2CH0/ADP1/ACMP– VDD 3 18 PTA2/PIA2/SDA/ADP2 VSS 4 17 PTA3/PIA3/SCL/ADP3 PTB7/SCL/EXTAL 5 16 PTB0/PIB0/RxD/ADP4 PTB6/SDA/XTAL 6 15 PTB1/PIB1/TxD/ADP5 PTB5/TPM1CH1/SS 7 14 PTB2/PIB2/SPSCK/ADP6 PTB4/TPM2CH1/MISO 8 13 PTB3/PIB3/MOSI/ADP7 PTC3/ADP11 9 12 PTC0/TPM1CH0/ADP8 PTC2/ADP10 10 11 PTC1/TPM1CH1/ADP9 Figure2-2. 20-Pin TSSOP MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 23

Chapter2 Pins and Connections PTA5/IRQ/TCLK/RESET 1 16 PTA0/PIA0/TPM1CH0/ADP0/ACMP+ PTA4/ACMPO/BKGD/MS 2 15 PTA1/PIA1/TPM2CH0/ADP1/ACMP– VDD 3 14 PTA2/PIA2/SDA/ADP2 VSS 4 13 PTA3/PIA3/SCL/ADP3 PTB7/SCL/EXTAL 5 12 PTB0/PIB0/RxD/ADP4 PTB6/SDA/XTAL 6 11 PTB1/PIB1/TxD/ADP5 PTB5/TPM1CH1/SS 7 10 PTB2/PIB2/SPSCK/ADP6 PTB4/TPM2CH1/MISO 8 9 PTB3/PIB3/MOSI/ADP7 Figure2-3. 16-Pin TSSOP MC9S08SH32 Series Data Sheet, Rev. 3 24 Freescale Semiconductor

Chapter2 Pins and Connections 2.2 Recommended System Connections Figure 2-4 shows pin connections that are common to MC9S08SH32 Series application systems. BACKGROUND HEADER MC9S08SH32 PTA0/PIA0/TPM1CH0/ADP0/ACMP+ BKGD/MS VDD PTA1/PIA1/TPM2CH0/ADP1/ACMP– VDD PTA2/PIA2/SDA/ADP2 PORT PTA3/PIA3/SCL/ADP3 4.7 kΩ–10 kΩ A PTA4/ACMPO/BKGD/MS RESET PTA5/IRQ/TCLK/RESET PTA6/TPM2CH0 OPTIONAL 0.1 μF PTA7/TPM2CH1 MANUAL RESET PTB0/PIB0/RxD/ADP4 PTB1/PIB1/TxD/ADP5 PTC0/TPM1CH0/ADP8 PTB2/PIB2/SPSCK/ADP6 PTC1/TPM1CH1/ADP9 PORT PTB3/PIB3/MOSI/ADP7 PTC2/ADP10 B PTB4/TPM2CH1/MISO PTC3/ADP11 PORT PTB5/TPM1CH1/SS C PTC4/ADP12 PTB6/SDA/XTAL PTC5/ADP13 PTB7/SCL/EXTAL PTC6/ADP14 PTC7/ADP15 R F R S V DD + CBLK + CBY C1 X1 C2 5 V 10 μF 0.1 μF V SS NOTE 1 V \V SYSTEM DDA REFH POWER CBY 0.1 μF V \V SSA REFL NOTES: 1. External crystal circuit not required if using the internal clock option. 2. RESET pin can only be used to reset into user mode, you can not enter BDM using RESET pin. BDM can be entered by holding MS low during POR or writing a 1 to BDFR in SBDFR with MS low after issuing BDM command. 3. RC filter on RESET pin recommended for noisy environments. 4. For the 16-pin and 20-pin packages: V /V and V /V are double bonded to V and V respectively. DDA REFH SSA REFL DD SS 5. When PTA4 is configured as BKGD, pin becomes bi-directional. Figure2-4. Basic System Connections MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 25

Chapter2 Pins and Connections 2.2.1 Power V and V are the primary power supply pins for the MCU. This voltage source supplies power to all DD SS I/O buffer circuitry and to an internal voltage regulator. The internal voltage regulator provides regulated lower-voltage source to the CPU and other internal circuitry of the MCU. Typically, application systems have two separate capacitors across the power pins. In this case, there should be a bulk electrolytic capacitor, such as a 10-μF tantalum capacitor, to provide bulk charge storage for the overall system and a 0.1-μF ceramic bypass capacitor located as near to the MCU power pins as practical to suppress high-frequency noise. Each pin must have a bypass capacitor for best noise suppression. V and V are the analog power supply pins for MCU. This voltage source supplies power to the DDA SSA ADC module. A 0.1uF ceramic bypass capacitor should be located as near to the MCU power pins as practical to suppress high-frequency noise. The V and V pins are the voltage reference high and REFH REFL voltage reference low inputs, respectively for the ADC module. For this MCU, V shares the V DDA REFH pin and these pins are available only in the 28-pin packages. In the 16-pin and 20-pin packages they are double bonded to the V pin. For this MCU, V shares the V pin and these pins are available only DD SSA REFL in the 28-pin packages. In the 16-pin and 20-pin packages they are double bonded to the V pin. SS 2.2.2 Oscillator (XOSC) Immediately after reset, the MCU uses an internally generated clock provided by the clock source generator (ICS) module. For more information on the ICS, see Chapter 11, “Internal Clock Source (S08ICSV2).” The oscillator (XOSC) in this MCU is a Pierce oscillator that can accommodate a crystal or ceramic resonator. Rather than a crystal or ceramic resonator, an external oscillator can be connected to the EXTAL input pin. Refer to Figure 2-4 for the following discussion. R (when used) and R should be low-inductance S F resistors such as carbon composition resistors. Wire-wound resistors, and some metal film resistors, have too much inductance. C1 and C2 normally should be high-quality ceramic capacitors that are specifically designed for high-frequency applications. R is used to provide a bias path to keep the EXTAL input in its linear range during crystal startup; its value F is not generally critical. Typical systems use 1MΩ to 10MΩ. Higher values are sensitive to humidity and lower values reduce gain and (in extreme cases) could prevent startup. C1 and C2 are typically in the 5-pF to 25-pF range and are chosen to match the requirements of a specific crystal or resonator. Be sure to take into account printed circuit board (PCB) capacitance and MCU pin capacitance when selecting C1 and C2. The crystal manufacturer typically specifies a load capacitance which is the series combination of C1 and C2 (which are usually the same size). As a first-order approximation, use 10pF as an estimate of combined pin and PCB capacitance for each oscillator pin (EXTAL and XTAL). MC9S08SH32 Series Data Sheet, Rev. 3 26 Freescale Semiconductor

Chapter2 Pins and Connections 2.2.3 RESET After a power-on reset (POR), the PTA5/IRQ/TCLK/RESET pin defaults to a general-purpose I/O port pin, PTA5. Setting RSTPE in SOPT1 configures the pin to be the RESET pin with an open-drain drive containing an internal pull-up device. After configured as RESET, the pin will remain RESET until the next POR. The RESET pin when enabled can be used to reset the MCU from an external source when the pin is driven low. Internal power-on reset and low-voltage reset circuitry typically make external reset circuitry unnecessary. This pin is normally connected to the standard 6-pin background debug connector so a development system can directly reset the MCU system. If desired, a manual external reset can be added by supplying a simple switch to ground (pull reset pin low to force a reset). Whenever any non-POR reset is initiated (whether from an external signal or from an internal system), the RESET pin if enabled is driven low for about 66bus cycles. The reset circuitry decodes the cause of reset and records it by setting a corresponding bit in the system reset status register (SRS). NOTE This pin does not contain a clamp diode to V and should not be driven DD above V . DD The voltage measured on the internally pulled up RESET pin will not be pulled to V . The internal gates connected to this pin are pulled to V . If DD DD the RESET pin is required to drive to a V level an external pullup should DD be used. NOTE In EMC-sensitive applications, an external RC filter is recommended on the RESET pin. See Figure 2-4 for an example. 2.2.4 Background / Mode Select (BKGD/MS) During a power-on-reset (POR) or background debug force reset (see Section 5.7.3, “System Background Debug Force Reset Register (SBDFR),” for more information), the PTA4/ACMPO/BKGD/MS pin functions as a mode select pin. Immediately after any reset, the pin functions as the background pin and can be used for background debug communication. When enabled as the BKGD/MS pin (BKGDPE = 1), an internal pullup device is automatically enabled. The background debug communication function is enabled when BKGDPE in SOPT1 is set. BKGDPE is set following any reset of the MCU and must be cleared to use the PTA4/ACMPO/BKGD/MS pin’s alternative pin function. If nothing is connected to this pin, the MCU will enter normal operating mode at the rising edge of the internal reset after a POR or force BDC reset. If a debug system is connected to the 6-pin standard background debug header, it can hold BKGD/MS low during a POR or immediately after issuing a background debug force reset, which will force the MCU to active background mode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 27

Chapter2 Pins and Connections The BKGD pin is used primarily for background debug controller (BDC) communications using a custom protocol that uses 16 clock cycles of the target MCU’s BDC clock per bit time. The target MCU’s BDC clock could be as fast as the maximum bus clock rate, so there must never be any significant capacitance connected to the BKGD/MS pin that could interfere with background serial communications. Although the BKGD pin is a pseudo open-drain pin, the background debug communication protocol provides brief, actively driven, high speedup pulses to ensure fast rise times. Small capacitances from cables and the absolute value of the internal pullup device play almost no role in determining rise and fall times on the BKGD pin. 2.2.5 General-Purpose I/O and Peripheral Ports The MC9S08SH32 Series series of MCUs support up to 23 general-purpose I/O pins and 1 output-only pin, which are shared with on-chip peripheral functions (timers, serial I/O, ADC, etc.). When a port pin is configured as a general-purpose output or a peripheral uses the port pin as an output, software can select one of two drive strengths and enable or disable slew rate control. When a port pin is configured as a general-purpose input or a peripheral uses the port pin as an input, software can enable a pull-up device. Immediately after reset, all of these pins are configured as high-impedance general-purpose inputs with internal pull-up devices disabled. When an on-chip peripheral system is controlling a pin, data direction control bits still determine what is read from port data registers even though the peripheral module controls the pin direction by controlling the enable for the pin’s output buffer. For information about controlling these pins as general-purpose I/O pins, see Chapter6, “Parallel Input/Output Control.” The MC9S08SH32 Series devices contain a ganged output drive feature that allows a safe and reliable method of allowing pins to be tied together externally to produce a higher output current drive. See Section 6.3, “Ganged Output” for more information for configuring the port pins for ganged output drive. NOTE To avoid extra current drain from floating input pins, the reset initialization routine in the application program should either enable on-chip pull-up devices or change the direction of unused pins to outputs so they do not float. When using the 20-pin devices, the user must either enable on-chip pullup devices or change the direction of non-bonded PTC7-PTC4 and PTA7-PTA6 pins to outputs so the pins do not float. When using the 16-pin devices, the user must either enable on-chip pullup devices or change the direction of non-bonded out PTC7-PTC0 and PTA7-PTA6 pins to outputs so the pins do not float. MC9S08SH32 Series Data Sheet, Rev. 3 28 Freescale Semiconductor

Chapter2 Pins and Connections Table2-1. Pin Availability by Package Pin-Count Priority Pin Number Lowest Highest 28-pin 20-pin 16-pin Port Pin Alt 1 Alt 2 Alt 3 Alt 4 Alt5 1 — — PTC5 ADP13 2 — — PTC4 ADP12 3 1 1 PTA5 IRQ TCLK RESET1 4 2 2 PTA4 ACMPO BKGD MS 5 VDD 3 3 6 VDDA VREFH 7 VSSA VREFL 4 4 8 VSS 9 5 5 PTB7 SCL2 EXTAL 10 6 6 PTB6 SDA2 XTAL 11 7 7 PTB5 TPM1CH13 SS PTC04 12 8 8 PTB4 TPM2CH15 MISO PTC04 13 9 — PTC3 PTC04 ADP11 14 10 — PTC2 PTC04 ADP10 15 11 — PTC1 TPM1CH13 PTC04 ADP9 16 12 — PTC0 TPM1CH03 PTC04 ADP8 17 13 9 PTB3 PIB3 MOSI PTC04 ADP7 18 14 10 PTB2 PIB2 SPSCK PTC04 ADP6 19 15 11 PTB1 PIB1 TxD ADP5 20 16 12 PTB0 PIB0 RxD ADP4 21 — — PTA7 TPM2CH15 22 — — PTA6 TPM2CH05 23 17 13 PTA3 PIA3 SCL2 ADP3 24 18 14 PTA2 PIA2 SDA2 ADP2 25 19 15 PTA1 PIA1 TPM2CH05 ADP16 ACMP-6 26 20 16 PTA0 PIA0 TPM1CH03 ADP06 ACMP+6 27 — — PTC7 ADP15 28 — — PTC6 ADP14 1 Pin does not contain a clamp diode to V and should not be driven above V . The voltage measured on DD DD the internally pulled up RESET in will not be pulled to V . The internal gates connected to this pin are DD pulled to V . DD 2 IIC pins can be repositioned using IICPS in SOPT2, default reset locations are PTA2, PTA3. 3 TPM1CHx pins can be repositioned using T1CHxPS bits in SOPT2, default reset locations are PTA0, PTB5. 4 This port pin is part of the ganged output feature. When pin is enabled for ganged output, it will have priority over all digital modules. The output data, drive strength and slew-rate control of this port pin will follow the configuration for the PTC0 pin, even in 16-pin packages where PTC0 doesn’t bond out. 5 TPM2CHx pins can be repositioned using T2CHxPS bits in SOPT2, default reset locations are PTA1, PTB4. 6 If ACMP and ADC are both enabled, both will have access to the pin. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 29

Chapter2 Pins and Connections MC9S08SH32 Series Data Sheet, Rev. 3 30 Freescale Semiconductor

Chapter 3 Modes of Operation 3.1 Introduction The operating modes of the MC9S08SH32 Series are described in this chapter. Entry into each mode, exit from each mode, and functionality while in each of the modes are described. 3.2 Features • Active background mode for code development • Wait mode — CPU shuts down to conserve power; system clocks are running and full regulation is maintained • Stop modes — System clocks are stopped and voltage regulator is in standby — Stop3 — All internal circuits are powered for fast recovery — Stop2 — Partial power down of internal circuits, RAM content is retained 3.3 Run Mode This is the normal operating mode for the MC9S08SH32 Series. This mode is selected upon the MCU exiting reset if the BKGD/MS pin is high. In this mode, the CPU executes code from internal memory with execution beginning at the address fetched from memory at 0xFFFE–0xFFFF after reset. 3.4 Active Background Mode The active background mode functions are managed through the background debug controller (BDC) in the HCS08 core. The BDC, together with the on-chip debug module (DBG), provide the means for analyzing MCU operation during software development. Active background mode is entered in any of the following ways: • When the BKGD/MS pin is low during POR or immediately after issuing a background debug force reset (see Section 5.7.3, “System Background Debug Force Reset Register (SBDFR)”) • When a BACKGROUND command is received through the BKGD/MS pin • When a BGND instruction is executed • When encountering a BDC breakpoint • When encountering a DBG breakpoint After entering active background mode, the CPU is held in a suspended state waiting for serial background commands rather than executing instructions from the user application program. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 31

Chapter3 Modes of Operation Background commands are of two types: • Non-intrusive commands, defined as commands that can be issued while the user program is running. Non-intrusive commands can be issued through the BKGD/MS pin while the MCU is in run mode; non-intrusive commands can also be executed when the MCU is in the active background mode. Non-intrusive commands include: — Memory access commands — Memory-access-with-status commands — BDC register access commands — The BACKGROUND command • Active background commands, which can only be executed while the MCU is in active background mode. Active background commands include commands to: — Read or write CPU registers — Trace one user program instruction at a time — Leave active background mode to return to the user application program (GO) The active background mode is used to program a bootloader or user application program into the FLASH program memory before the MCU is operated in run mode for the first time. When the MC9S08SH32 Series is shipped from the Freescale Semiconductor factory, the FLASH program memory is erased by default unless specifically noted so there is no program that could be executed in run mode until the FLASH memory is initially programmed. The active background mode can also be used to erase and reprogram the FLASH memory after it has been previously programmed. For additional information about the active background mode, refer to Chapter 17, “Development Support.” 3.5 Wait Mode Wait mode is entered by executing a WAIT instruction. Upon execution of the WAIT instruction, the CPU enters a low-power state in which it is not clocked. The I bit in CCR is cleared when the CPU enters the wait mode, enabling interrupts. When an interrupt request occurs, the CPU exits the wait mode and resumes processing, beginning with the stacking operations leading to the interrupt service routine. While the MCU is in wait mode, there are some restrictions on which background debug commands can be used. Only the BACKGROUND command and memory-access-with-status commands are available when the MCU is in wait mode. The memory-access-with-status commands do not allow memory access, but they report an error indicating that the MCU is in either stop or wait mode. The BACKGROUND command can be used to wake the MCU from wait mode and enter active background mode. 3.6 Stop Modes One of two stop modes is entered upon execution of a STOP instruction when STOPE in SOPT1. In any stop mode, the bus and CPU clocks are halted. The ICS module can be configured to leave the reference clocks running. See Chapter 11, “Internal Clock Source (S08ICSV2),” for more information. MC9S08SH32 Series Data Sheet, Rev. 3 32 Freescale Semiconductor

Chapter3 Modes of Operation Table 3-1 shows all of the control bits that affect stop mode selection and the mode selected under various conditions. The selected mode is entered following the execution of a STOP instruction. Table3-1. Stop Mode Selection STOPE ENBDM 1 LVDE LVDSE PPDC Stop Mode 0 x x x Stop modes disabled; illegal opcode reset if STOP instruction executed 1 1 x x Stop3 with BDM enabled 2 1 0 Both bits must be 1 x Stop3 with voltage regulator active 1 0 Either bit a 0 0 Stop3 1 0 Either bit a 0 1 Stop2 1 ENBDM is located in the BDCSCR, which is only accessible through BDC commands, see Section 17.4.1.1, “BDC Status and Control Register (BDCSCR)”. 2 When in Stop3 mode with BDM enabled, The S will be near R levels because internal clocks are enabled. IDD IDD 3.6.1 Stop3 Mode Stop3 mode is entered by executing a STOP instruction under the conditions as shown in Table 3-1. The states of all of the internal registers and logic, RAM contents, and I/O pin states are maintained. Stop3 can be exited by asserting RESET if enabled, or by an interrupt from one of the following sources: the real-time counter (RTC), LVD system, ACMP, ADC, SCI or any pin interrupts. If stop3 is exited by means of the RESET pin, then the MCU is reset and operation will resume after taking the reset vector. Exit by means of one of the internal interrupt sources results in the MCU taking the appropriate interrupt vector. 3.6.1.1 LVD Enabled in Stop3 Mode The LVD system is capable of generating either an interrupt or a reset when the supply voltage drops below the LVD voltage. For configuring the LVD system for interrupt or reset, refer to 5.6, “Low-Voltage Detect (LVD) System”. If the LVD is enabled in stop3 (LVDE and LVDSE bits in SPMSC1 both set) at the time the CPU executes a STOP instruction, then the voltage regulator remains active during stop mode. For the ADC to operate in stop mode, the LVD must be enabled when entering stop3. For the ACMP to operate in stop mode with compare to internal bandgap option, the LVD must be enabled when entering stop3. 3.6.1.2 Active BDM Enabled in Stop3 Mode Entry into the active background mode from run mode is enabled if ENBDM in BDCSCR is set. This register is described in Chapter 17, “Development Support.” If ENBDM is set when the CPU executes a STOP instruction, the system clocks to the background debug logic remain active when the MCU enters stop mode. Because of this, background debug communication remains possible. In addition, the voltage regulator does not enter its low-power standby state but maintains full internal regulation. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 33

Chapter3 Modes of Operation Most background commands are not available in stop mode. The memory-access-with-status commands do not allow memory access, but they report an error indicating that the MCU is in either stop or wait mode. The BACKGROUND command can be used to wake the MCU from stop and enter active background mode if the ENBDM bit is set. After entering background debug mode, all background commands are available. 3.6.2 Stop2 Mode Stop2 mode is entered by executing a STOP instruction under the conditions as shown in Table 3-1. Most of the internal circuitry of the MCU is powered off in stop2 with the exception of the RAM. Upon entering stop2, all I/O pin control signals are latched so that the pins retain their states during stop2. Exit from stop2 is performed by asserting the wake-up pin (PTA5/IRQ/TCLK/RESET) on the MCU. In addition, the real-time counter (RTC) can wake the MCU from stop2, if enabled. Upon wake-up from stop2 mode, the MCU starts up as from a power-on reset (POR): • All module control and status registers are reset • The LVD reset function is enabled and the MCU remains in the reset state if V is below the LVD DD trip point (low trip point selected due to POR) • The CPU takes the reset vector In addition to the above, upon waking up from stop2, the PPDF bit in SPMSC2 is set. This flag is used to direct user code to go to a stop2 recovery routine. PPDF remains set and the I/O pin states remain latched until a 1 is written to PPDACK in SPMSC2. To maintain I/O states for pins that were configured as general-purpose I/O before entering stop2, the user must restore the contents of the I/O port registers, which have been saved in RAM, to the port registers before writing to the PPDACK bit. If the port registers are not restored from RAM before writing to PPDACK, then the pins will switch to their reset states when PPDACK is written. For pins that were configured as peripheral I/O, the user must reconfigure the peripheral module that interfaces to the pin before writing to the PPDACK bit. If the peripheral module is not enabled before writing to PPDACK, the pins will be controlled by their associated port control registers when the I/O latches are opened. 3.6.3 On-Chip Peripheral Modules in Stop Modes When the MCU enters any stop mode, system clocks to the internal peripheral modules are stopped. Even in the exception case (ENBDM = 1), where clocks to the background debug logic continue to operate, clocks to the peripheral systems are halted to reduce power consumption. Refer to Section 3.6.2, “Stop2 Mode,” and Section 3.6.1, “Stop3 Mode,” for specific information on system behavior in stop modes. MC9S08SH32 Series Data Sheet, Rev. 3 34 Freescale Semiconductor

Chapter3 Modes of Operation Table3-2. Stop Mode Behavior Mode Peripheral Stop2 Stop3 CPU Off Standby RAM Standby Standby FLASH Off Standby Parallel Port Registers Off Standby ADC Off Optionally On1 ACMP Off Optionally On2 BDM Off3 Optionally On ICS Off Optionally On4 IIC Off Standby LVD/LVW Off5 Optionally On MTIM Off Standby RTC Optionally On Optionally On SCI Off Standby SPI Off Standby TPM Off Standby Voltage Regulator Standby Optionally On6 XOSC Off Optionally On7 I/O Pins States Held States Held 1 Requires the asynchronous ADC clock and LVD to be enabled, else in standby. 2 Requires the LVD to be enabled when compare to internal bandgap reference option is enabled. 3 If ENBDM is set when entering stop2, the MCU will actually enter stop3. 4 IRCLKEN and IREFSTEN set in ICSC1, else in standby. 5 If LVDSE is set when entering stop2, the MCU will actually enter stop3. 6 Voltage regulator will be on if BDM is enabled or if LVD is enabled when entering stop3. 7 ERCLKEN and EREFSTEN set in ICSC2, else in standby. For high frequency range (RANGE in ICSC2 set) requires the LVD to also be enabled in stop3. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 35

Chapter3 Modes of Operation MC9S08SH32 Series Data Sheet, Rev. 3 36 Freescale Semiconductor

Chapter 4 Memory 4.1 MC9S08SH32 Series Memory Map As shown in Figure 4-1, on-chip memory in the MC9S08SH32 Series series of MCUs consists of RAM, FLASH program memory for nonvolatile data storage, and I/O and control/status registers. The registers are divided into three groups: • Direct-page registers (0x0000 through 0x007F) • High-page registers (0x1800 through 0x185F) • Nonvolatile registers (0xFFB0 through 0xFFBF) 0x0000 0x0000 DIRECT PAGE REGISTERS DIRECT PAGE REGISTERS 0x007F 0x007F 0x0080 0x0080 RAM RAM 1024 BYTES 1024 BYTES 0x047F 0x047F 0x0480 UNIMPLEMENTED 0x0480 UNIMPLEMENTED 0x17FF 4992 BYTES 0x17FF 4992 BYTES 0x1800 0x1800 HIGH PAGE REGISTERS HIGH PAGE REGISTERS 0x185F 0x185F 0x1860 0x1860 UNIMPLEMENTED UNIMPLEMENTED 26,528 BYTES 26,528 BYTES 0x7FFF 0x7FFF 0x8000 0x8000 UNIMPLEMENTED 16,384 BYTES FLASH 0xBFFF 32768 BYTES 0xC000 FLASH 16,384 BYTES 0xFFFF 0xFFFF 9S08SH32 9S08SH16 Figure4-1. MC9S08SH32/16 Memory Map MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 37

Chapter4 Memory 4.2 Reset and Interrupt Vector Assignments Table 4-1 shows address assignments for reset and interrupt vectors. The vector names shown in this table are the labels used in the Freescale Semiconductor provided equate file for the MC9S08SH32 Series. Table4-1. Reset and Interrupt Vectors Address Vector Vector Name (High/Low) 0xFFC0:0xFFC1 Reserved — 0xFFC2:0xFFC3 ACMP Vacmp 0xFFC4:0xFFC5 Reserved — 0xFFC6:0xFFC7 Reserved — 0xFFC8:0xFFC9 Reserved — 0xFFCA:0xFFCB MTIM Overflow Vmtim 0xFFCC:0xFFCD RTC Vrtc 0xFFCE:0xFFCF IIC Viic 0xFFD0:0xFFD1 ADC Conversion Vadc 0xFFD2:0xFFD3 Reserved — 0xFFD4:0xFFD5 Port B Pin Interrupt Vportb 0xFFD6:0xFFD7 Port A Pin Interrupt Vporta 0xFFD8:0xFFD9 Reserved — 0xFFDA:0xFFDB SCI Transmit Vscitx 0xFFDC:0xFFDD SCI Receive Vscirx 0xFFDE:0xFFDF SCI Error Vsc1err 0xFFE0:0xFFE1 SPI Vspi 0xFFE2:0xFFE3 TPM2 Overflow Vtpm2ovf 0xFFE4:0xFFE5 TPM2 Channel 1 Vtpm2ch1 0xFFE6:0xFFE7 TPM2 Channel 0 Vtpm2ch0 0xFFE8:0xFFE9 TPM1 Overflow Vtpm1ovf 0xFFEA:0xFFEB Reserved — 0xFFEC:0xFFED Reserved — 0xFFEE:0xFFEF Reserved — 0xFFF0:0xFFF1 Reserved — 0xFFF2:0xFFF3 TPM1 Channel 1 Vtpm1ch1 0xFFF4:0xFFF5 TPM1 Channel 0 Vtpm1ch0 0xFFF6:0xFFF7 Reserved — 0xFFF8:0xFFF9 Low Voltage Detect Vlvd 0xFFFA:0xFFFB IRQ Virq 0xFFFC:0xFFFD SWI Vswi 0xFFFE:0xFFFF Reset Vreset MC9S08SH32 Series Data Sheet, Rev. 3 38 Freescale Semiconductor

Chapter4 Memory 4.3 Register Addresses and Bit Assignments The registers in the MC9S08SH32 Series are divided into these groups: • Direct-page registers are located in the first 128 locations in the memory map; these are accessible with efficient direct addressing mode instructions. • High-page registers are used much less often, so they are located above 0x1800 in the memory map. This leaves more room in the direct page for more frequently used registers and RAM. • The nonvolatile register area consists of a block of 16locations in FLASH memory at 0xFFB0–0xFFBF. Nonvolatile register locations include: — NVPROT and NVOPT are loaded into working registers at reset — An 8-byte backdoor comparison key that optionally allows a user to gain controlled access to secure memory Because the nonvolatile register locations are FLASH memory, they must be erased and programmed like other FLASH memory locations. Direct-page registers can be accessed with efficient direct addressing mode instructions. Bit manipulation instructions can be used to access any bit in any direct-page register. Table 4-2 is a summary of all user-accessible direct-page registers and control bits. The direct page registers in Table 4-2 can use the more efficient direct addressing mode, which requires only the lower byte of the address. Because of this, the lower byte of the address in column one is shown in bold text. In Table 4-3 and Table4-4, the whole address in column one is shown in bold. In Table4-2, Table 4-3, and Table 4-4, the register names in column two are shown in bold to set them apart from the bit names to the right. Cells that are not associated with named bits are shaded. A shaded cell with a 0 indicates this unused bit always reads as a 0. Shaded cells with dashes indicate unused or reserved bit locations that could read as 1s or 0s. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 39

Chapter4 Memory Table4-2. Direct-Page Register Summary (Sheet 1 of 3) Register Address Bit 7 6 5 4 3 2 1 Bit 0 Name 0x0000 PTAD PTAD7 PTAD6 PTAD5 PTAD4 PTAD3 PTAD2 PTAD1 PTAD0 0x0001 PTADD PTADD7 PTADD6 PTADD5 PTADD4 PTADD3 PTADD2 PTADD1 PTADD0 0x0002 PTBD PTBD7 PTBD6 PTBD5 PTBD4 PTBD3 PTBD2 PTBD1 PTBD0 0x0003 PTBDD PTBDD7 PTBDD6 PTBDD5 PTBDD4 PTBDD3 PTBDD2 PTBDD1 PTBDD0 0x0004 PTCD PTCD7 PTCD6 PTCD5 PTCD4 PTCD3 PTCD2 PTCD1 PTCD0 0x0005 PTCDD PTCDD7 PTCDD6 PTCDD5 PTCDD4 PTCDD3 PTCDD2 PTCDD1 PTCDD0 0x0006 Reserved — — — — — — — — 0x0007 Reserved — — — — — 0 0 0 0x0008– — — — — — — — — Reserved 0x000D — — — — — — — — 0x000E ACMPSC ACME ACBGS ACF ACIE ACO ACOPE ACMOD1 ACMOD0 0x000F Reserved — — — — — — — — 0x0010 ADCSC1 COCO AIEN ADCO ADCH 0x0011 ADCSC2 ADACT ADTRG ACFE ACFGT — — — — 0x0012 ADCRH 0 0 0 0 0 0 ADR9 ADR8 0x0013 ADCRL ADR7 ADR6 ADR5 ADR4 ADR3 ADR2 ADR1 ADR0 0x0014 ADCVH 0 0 0 0 0 0 ADCV9 ADCV8 0x0015 ADCVL ADCV7 ADCV6 ADCV5 ADCV4 ADCV3 ADCV2 ADCV1 ADCV0 0x0016 ADCCFG ADLPC ADIV ADLSMP MODE ADICLK 0x0017 APCTL1 ADPC7 ADPC6 ADPC5 ADPC4 ADPC3 ADPC2 ADPC1 ADPC0 0x0018 APCTL2 ADPC15 ADPC14 ADPC13 ADPC12 ADPC11 ADPC10 ADPC9 ADPC8 0x0019 Reserved — — — — — — — — 0x001A IRQSC 0 IRQPDD IRQEDG IRQPE IRQF IRQACK IRQIE IRQMOD 0x001B Reserved — — — — — — — — 0x001C MTIMSC TOF TOIE TRST TSTP 0 0 0 0 0x001D MTIMCLK 0 0 CLKS PS 0x001E MTIMCNT CNT 0x001F MTIMMOD MOD 0x0020 TPM1SC TOF TOIE CPWMS CLKSB CLKSA PS2 PS1 PS0 0x0021 TPM1CNTH Bit 15 14 13 12 11 10 9 Bit 8 0x0022 TPM1CNTL Bit 7 6 5 4 3 2 1 Bit 0 0x0023 TPM1MODH Bit 15 14 13 12 11 10 9 Bit 8 0x0024 TPM1MODL Bit 7 6 5 4 3 2 1 Bit 0 0x0025 TPM1C0SC CH0F CH0IE MS0B MS0A ELS0B ELS0A 0 0 0x0026 TPM1C0VH Bit 15 14 13 12 11 10 9 Bit 8 0x0027 TPM1C0VL Bit 7 6 5 4 3 2 1 Bit 0 0x0028 TPM1C1SC CH1F CH1IE MS1B MS1A ELS1B ELS1A 0 0 0x0029 TPM1C1VH Bit 15 14 13 12 11 10 9 Bit 8 0x002A TPM1C1VL Bit 7 6 5 4 3 2 1 Bit 0 MC9S08SH32 Series Data Sheet, Rev. 3 40 Freescale Semiconductor

Chapter4 Memory Table4-2. Direct-Page Register Summary (Sheet 2 of 3) Register Address Bit 7 6 5 4 3 2 1 Bit 0 Name 0x002B– — — — — — — — — Reserved 0x0037 — — — — — — — — 0x0038 SCIBDH LBKDIE RXEDGIE 0 SBR12 SBR11 SBR10 SBR9 SBR8 0x0039 SCIBDL SBR7 SBR6 SBR5 SBR4 SBR3 SBR2 SBR1 SBR0 0x003A SCIC1 LOOPS SCISWAI RSRC M WAKE ILT PE PT 0x003B SCIC2 TIE TCIE RIE ILIE TE RE RWU SBK 0x003C SCIS1 TDRE TC RDRF IDLE OR NF FE PF 0x003D SCIS2 LBKDIF RXEDGIF 0 RXINV RWUID BRK13 LBKDE RAF 0x003E SCIC3 R8 T8 TXDIR TXINV ORIE NEIE FEIE PEIE 0x003F SCID Bit 7 6 5 4 3 2 1 Bit 0 0x0040– — — — — — — — — Reserved 0x0047 — — — — — — — — 0x0048 ICSC1 CLKS RDIV IREFS IRCLKEN IREFSTEN 0x0049 ICSC2 BDIV RANGE HGO LP EREFS ERCLKEN EREFSTEN 0x004A ICSTRM TRIM 0x004B ICSSC 0 0 0 IREFST CLKST OSCINIT FTRIM 0x004C– — — — — — — — — Reserved 0x004F — — — — — — — — 0x0050 SPIC1 SPIE SPE SPTIE MSTR CPOL CPHA SSOE LSBFE 0x0051 SPIC2 0 0 0 MODFEN BIDIROE 0 SPISWAI SPC0 0x0052 SPIBR 0 SPPR2 SPPR1 SPPR0 0 SPR2 SPR1 SPR0 0x0053 SPIS SPRF 0 SPTEF MODF 0 0 0 0 0x0054 Reserved 0 0 0 0 0 0 0 0 0x0055 SPID Bit 7 6 5 4 3 2 1 Bit 0 0x0056– — — — — — — — — Reserved 0x0057 — — — — — — — — 0x0058 IICA AD7 AD6 AD5 AD4 AD3 AD2 AD1 0 0x0059 IICF MULT ICR 0x005A IICC1 IICEN IICIE MST TX TXAK RSTA 0 0 0x005B IICS TCF IAAS BUSY ARBL 0 SRW IICIF RXAK 0x005C IICD DATA 0x005D IICC2 GCAEN ADEXT 0 0 0 AD10 AD9 AD8 0x005E– — — — — — — — — Reserved 0x005F — — — — — — — — 0x0060 TPM2SC TOF TOIE CPWMS CLKSB CLKSA PS2 PS1 PS0 0x0061 TPM2CNTH Bit 15 14 13 12 11 10 9 Bit 8 0x0062 TPM2CNTL Bit 7 6 5 4 3 2 1 Bit 0 0x0063 TPM2MODH Bit 15 14 13 12 11 10 9 Bit 8 0x0064 TPM2MODL Bit 7 6 5 4 3 2 1 Bit 0 0x0065 TPM2C0SC CH0F CH0IE MS0B MS0A ELS0B ELS0A 0 0 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 41

Chapter4 Memory Table4-2. Direct-Page Register Summary (Sheet 3 of 3) Register Address Bit 7 6 5 4 3 2 1 Bit 0 Name 0x0066 TPM2C0VH Bit 15 14 13 12 11 10 9 Bit 8 0x0067 TPM2C0VL Bit 7 6 5 4 3 2 1 Bit 0 0x0068 TPM2C1SC CH1F CH1IE MS1B MS1A ELS1B ELS1A 0 0 0x0069 TPM2C1VH Bit 15 14 13 12 11 10 9 Bit 8 0x006A TPM2C1VL Bit 7 6 5 4 3 2 1 Bit 0 0x006B Reserved — — — — — — — — 0x006C RTCSC RTIF RTCLKS RTIE RTCPS 0x006D RTCCNT RTCCNT 0x006E RTCMOD RTCMOD 0x006F - — — — — — — — — Reserved 0x007F — — — — — — — — MC9S08SH32 Series Data Sheet, Rev. 3 42 Freescale Semiconductor

Chapter4 Memory High-page registers, shown in Table 4-3, are accessed much less often than other I/O and control registers so they have been located outside the direct addressable memory space, starting at 0x1800. Table4-3. High-Page Register Summary (Sheet 1 of 2) Address Register Name Bit 7 6 5 4 3 2 1 Bit 0 0x1800 SRS POR PIN COP ILOP ILAD 0 LVD 0 0x1801 SBDFR 0 0 0 0 0 0 0 BDFR 0x1802 SOPT1 COPT STOPE 0 0 IICPS BKGDPE RSTPE 0x1803 SOPT2 COPCLKS COPW 0 ACIC T2CH1PS T2CH0PS T1CH1PS T1CH0PS 0x1804 – — — — — — — — — Reserved 0x1805 — — — — — — — — 0x1806 SDIDH 0 — — — ID11 ID10 ID9 ID8 0x1807 SDIDL ID7 ID6 ID5 ID4 ID3 ID2 ID1 ID0 0x1808 Reserved — — — — — — — — 0x1809 SPMSC1 LVWF LVWACK LVWIE LVDRE LVDSE LVDE 0 BGBE 0x180A SPMSC2 0 0 LVDV LVWV PPDF PPDACK — PPDC 0x180B– — — — — — — — — Reserved 0x180F — — — — — — — — 0x1810 DBGCAH Bit 15 14 13 12 11 10 9 Bit 8 0x1811 DBGCAL Bit 7 6 5 4 3 2 1 Bit 0 0x1812 DBGCBH Bit 15 14 13 12 11 10 9 Bit 8 0x1813 DBGCBL Bit 7 6 5 4 3 2 1 Bit 0 0x1814 DBGFH Bit 15 14 13 12 11 10 9 Bit 8 0x1815 DBGFL Bit 7 6 5 4 3 2 1 Bit 0 0x1816 DBGC DBGEN ARM TAG BRKEN RWA RWAEN RWB RWBEN 0x1817 DBGT TRGSEL BEGIN 0 0 TRG3 TRG2 TRG1 TRG0 0x1818 DBGS AF BF ARMF 0 CNT3 CNT2 CNT1 CNT0 0x1819– — — — — — — — — Reserved 0x181F — — — — — — — — 0x1820 FCDIV DIVLD PRDIV8 DIV 0x1821 FOPT KEYEN FNORED 0 0 0 0 SEC 0x1822 Reserved — — — — — — — — 0x1823 FCNFG 0 0 KEYACC 0 0 0 0 0 0x1824 FPROT FPS FPDIS 0x1825 FSTAT FCBEF FCCF FPVIOL FACCERR 0 FBLANK 0 0 0x1826 FCMD FCMD 0x1827– — — — — — — — — Reserved 0x183F — — — — — — — — 0x1840 PTAPE PTAPE7 PTAPE6 PTAPE5 PTAPE4 PTAPE3 PTAPE2 PTAPE1 PTAPE0 0x1841 PTASE PTASE7 PTASE6 PTASE5 PTASE4 PTASE3 PTASE2 PTASE1 PTASE0 0x1842 PTADS PTADS7 PTADS6 PTADS5 PTADS4 PTADS3 PTADS2 PTADS1 PTADS0 0x1843 Reserved — — — — — — — — 0x1844 PTASC 0 0 0 0 PTAIF PTAACK PTAIE PTAMOD MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 43

Chapter4 Memory Table4-3. High-Page Register Summary (Sheet 2 of 2) Address Register Name Bit 7 6 5 4 3 2 1 Bit 0 0x1845 PTAPS 0 0 0 0 PTAPS3 PTAPS2 PTAPS1 PTAPS0 0x1846 PTAES 0 0 0 0 PTAES3 PTAES2 PTAES1 PTAES0 0x1847 Reserved — — — — — — — — 0x1848 PTBPE PTBPE7 PTBPE6 PTBPE5 PTBPE4 PTBPE3 PTBPE2 PTBPE1 PTBPE0 0x1849 PTBSE PTBSE7 PTBSE6 PTBSE5 PTBSE4 PTBSE3 PTBSE2 PTBSE1 PTBSE0 0x184A PTBDS PTBDS7 PTBDS6 PTBDS5 PTBDS4 PTBDS3 PTBDS2 PTBDS1 PTBDS0 0x184B Reserved — — — — — — — — 0x184C PTBSC 0 0 0 0 PTBIF PTBACK PTBIE PTBMOD 0x184D PTBPS 0 0 0 0 PTBPS3 PTBPS2 PTBPS1 PTBPS0 0x184E PTBES 0 0 0 0 PTBES3 PTBES2 PTBES1 PTBES0 0x184F Reserved — — — — — — — — 0x1850 PTCPE PTCPE7 PTCPE6 PTCPE5 PTCPE4 PTCPE3 PTCPE2 PTCPE1 PTCPE0 0x1851 PTCSE PTCSE7 PTCSE6 PTCSE5 PTCSE4 PTCSE3 PTCSE2 PTCSE1 PTCSE0 0x1852 PTCDS PTCDS7 PTCDS6 PTCDS5 PTCDS4 PTCDS3 PTCDS2 PTCDS1 PTCDS0 0x1853 GNGC GNGPS7 GNGPS6 GNGPS5 GNGPS4 GNGPS3 GNGPS2 GNGPS1 GNGEN 0x1854 Reserved — — — — — 1 1 1 0x1855 Reserved — — — — — 1 1 1 0x1856 Reserved — — — — — 0 0 0 0x1857– — — — — — — — — Reserved 0x185F — — — — — — — — MC9S08SH32 Series Data Sheet, Rev. 3 44 Freescale Semiconductor

Chapter4 Memory Nonvolatile FLASH registers, shown in Table4-4, are located in the FLASH memory. These registers include an 8-byte backdoor key, NVBACKKEY, which can be used to gain access to secure memory resources. During reset events, the contents of NVPROT and NVOPT in the nonvolatile register area of the FLASH memory are transferred into corresponding FPROT and FOPT working registers in the high-page registers to control security and block protection options. Table4-4. Nonvolatile Register Summary Address Register Name Bit 7 6 5 4 3 2 1 Bit 0 0xFFAE NVFTRIM — — — — — — — FTRIM 0xFFAF NVTRIM TRIM 0xFFB0 – NVBACKKEY 8-Byte Comparison Key 0xFFB7 0xFFB8 – Reserved — — — — — — — — 0xFFBC 0xFFBD NVPROT FPS FPDIS 0xFFBE Reserved — — — — — — — — 0xFFBF NVOPT KEYEN FNORED — — — — SEC Provided the key enable (KEYEN) bit is 1, the 8-byte comparison key can be used to temporarily disengage memory security. This key mechanism can be accessed only through user code running in secure memory. (A security key cannot be entered directly through background debug commands.) This security key can be disabled completely by programming the KEYEN bit to 0. If the security key is disabled, the only way to disengage security is by mass erasing the FLASH if needed (normally through the background debug interface) and verifying that FLASH is blank. To avoid returning to secure mode after the next reset, program the security bits (SEC) to the unsecured state (1:0). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 45

Chapter4 Memory 4.4 RAM The MC9S08SH32 Series includes static RAM. The locations in RAM below 0x0100 can be accessed using the more efficient direct addressing mode, and any single bit in this area can be accessed with the bit manipulation instructions (BCLR, BSET, BRCLR, and BRSET). Locating the most frequently accessed program variables in this area of RAM is preferred. The RAM retains data when the MCU is in low-power wait, stop2, or stop3 mode. At power-on the contents of RAM are uninitialized. RAM data is unaffected by any reset provided that the supply voltage does not drop below the minimum value for RAM retention (V ). RAM For compatibility with M68HC05 MCUs, the HCS08 resets the stack pointer to 0x00FF. In the MC9S08SH32 Series, it is usually best to reinitialize the stack pointer to the top of the RAM so the direct page RAM can be used for frequently accessed RAM variables and bit-addressable program variables. Include the following 2-instruction sequence in your reset initialization routine (where RamLast is equated to the highest address of the RAM in the Freescale Semiconductor-provided equate file). LDHX #RamLast+1 ;point one past RAM TXS ;SP<-(H:X-1) When security is enabled, the RAM is considered a secure memory resource and is not accessible through BDM or through code executing from non-secure memory. See Section 4.6, “Security”, for a detailed description of the security feature. 4.5 FLASH The FLASH memory is intended primarily for program storage. In-circuit programming allows the operating program to be loaded into the FLASH memory after final assembly of the application product. It is possible to program the entire array through the single-wire background debug interface. Because no special voltages are needed for FLASH erase and programming operations, in-application programming is also possible through other software-controlled communication paths. For a more detailed discussion of in-circuit and in-application programming, refer to the HCS08 Family Reference Manual, Volume I, Freescale Semiconductor document order number HCS08RMv1/D. MC9S08SH32 Series Data Sheet, Rev. 3 46 Freescale Semiconductor

Chapter4 Memory 4.5.1 Features Features of the FLASH memory include: • FLASH size — MC9S08SH32: 32,768 bytes (64 pages of 512 bytes each) — MC9S08SH16: 16,384 bytes (32 pages of 512 bytes each) • Single power supply program and erase • Command interface for fast program and erase operation • Up to 100,000 program/erase cycles at typical voltage and temperature • Flexible block protection and vector redirection • Security feature for FLASH and RAM • Auto power-down for low-frequency read accesses 4.5.2 Program and Erase Times Before any program or erase command can be accepted, the FLASH clock divider register (FCDIV) must be written to set the internal clock for the FLASH module to a frequency (f ) between 150kHz and FCLK 200kHz (see Section 4.7.1, “FLASH Clock Divider Register (FCDIV)”). This register can be written only once, so normally this write is done during reset initialization. FCDIV cannot be written if the access error flag, FACCERR in FSTAT, is set. The user must ensure that FACCERR is not set before writing to the FCDIV register. One period of the resulting clock (1/f ) is used by the command processor to time FCLK program and erase pulses. An integer number of these timing pulses are used by the command processor to complete a program or erase command. Table 4-5 shows program and erase times. The bus clock frequency and FCDIV determine the frequency of FCLK (f ). The time for one cycle of FCLK is t = 1/f . The times are shown as a number FCLK FCLK FCLK of cycles of FCLK and as an absolute time for the case where t =5μs. Program and erase times FCLK shown include overhead for the command state machine and enabling and disabling of program and erase voltages. Table4-5. Program and Erase Times Parameter Cycles of FCLK Time if FCLK=200kHz Byte program 9 45μs Byte program (burst) 4 20μs1 Page erase 4000 20ms Mass erase 20,000 100ms 1 Excluding start/end overhead MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 47

Chapter4 Memory 4.5.3 Program and Erase Command Execution The steps for executing any of the commands are listed below. The FCDIV register must be initialized and any error flags cleared before beginning command execution. The command execution steps are: 1. Write a data value to an address in the FLASH array. The address and data information from this write is latched into the FLASH interface. This write is a required first step in any command sequence. For erase and blank check commands, the value of the data is not important. For page erase commands, the address may be any address in the 512-byte page of FLASH to be erased. For mass erase and blank check commands, the address can be any address in the FLASH memory. Whole pages of 512bytes are the smallest block of FLASH that may be erased. NOTE Do not program any byte in the FLASH more than once after a successful erase operation. Reprogramming bits to a byte that is already programmed is not allowed without first erasing the page in which the byte resides or mass erasing the entire FLASH memory. Programming without first erasing may disturb data stored in the FLASH. 2. Write the command code for the desired command to FCMD. The five valid commands are blank check (0x05), byte program (0x20), burst program (0x25), page erase (0x40), and mass erase (0x41). The command code is latched into the command buffer. 3. Write a 1 to the FCBEF bit in FSTAT to clear FCBEF and launch the command (including its address and data information). A partial command sequence can be aborted manually by writing a 0 to FCBEF any time after the write to the memory array and before writing the 1 that clears FCBEF and launches the complete command. Aborting a command in this way sets the FACCERR access error flag, which must be cleared before starting a new command. A strictly monitored procedure must be obeyed or the command will not be accepted. This minimizes the possibility of any unintended changes to the FLASH memory contents. The command complete flag (FCCF) indicates when a command is complete. The command sequence must be completed by clearing FCBEF to launch the command. Figure 4-2 is a flowchart for executing all of the commands except for burst programming. The FCDIV register must be initialized before using any FLASH commands. This must be done only once following a reset. MC9S08SH32 Series Data Sheet, Rev. 3 48 Freescale Semiconductor

Chapter4 Memory WRITE TO FCDIV (Note 1) Note 1: Required only once after reset. FLASH PROGRAM AND ERASE FLOW START 0 FACCERR ? 1 CLEAR ERROR WRITE TO FLASH TO BUFFER ADDRESS AND DATA WRITE COMMAND TO FCMD WRITE 1 TO FCBEF Note 2: Wait at least four bus cycles TO LAUNCH COMMAND before checking FCBEF or FCCF. AND CLEAR FCBEF (Note 2) FPVIOL OR YES ERROR EXIT FACCERR ? NO 0 FCCF ? 1 DONE Figure4-2. FLASH Program and Erase Flowchart 4.5.4 Burst Program Execution The burst program command is used to program sequential bytes of data in less time than would be required using the standard program command. This is possible because the high voltage to the FLASH array does not need to be disabled between program operations. Ordinarily, when a program or erase command is issued, an internal charge pump associated with the FLASH memory must be enabled to supply high voltage to the array. Upon completion of the command, the charge pump is turned off. When a burst program command is issued, the charge pump is enabled and then remains enabled after completion of the burst program operation if these two conditions are met: • The next burst program command has been queued before the current program operation has completed. • The next sequential address selects a byte on the same physical row as the current byte being programmed. A row of FLASH memory consists of 64 bytes. A byte within a row is selected by addresses A5 through A0. A new row begins when addresses A5 through A0 are all zero. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 49

Chapter4 Memory The first byte of a series of sequential bytes being programmed in burst mode will take the same amount of time to program as a byte programmed in standard mode. Subsequent bytes will program in the burst program time provided that the conditions above are met. In the case the next sequential address is the beginning of a new row, the program time for that byte will be the standard time instead of the burst time. This is because the high voltage to the array must be disabled and then enabled again. If a new burst command has not been queued before the current command completes, then the charge pump will be disabled and high voltage removed from the array. Note 1: Required only once after reset. WRITE TO FCDIV (Note 1) FLASH BURST START PROGRAM FLOW 0 FACCERR ? 1 CLEAR ERROR 0 FCBEF ? 1 WRITE TO FLASH TO BUFFER ADDRESS AND DATA WRITE COMMAND (0x25) TO FCMD WRITE 1 TO FCBEF Note 2: Wait at least four bus cycles before TO LAUNCH COMMAND checking FCBEF or FCCF. AND CLEAR FCBEF (Note 2) FPVIO OR YES ERROR EXIT FACCERR ? NO YES NEW BURST COMMAND ? NO 0 FCCF ? 1 DONE Figure4-3. FLASH Burst Program Flowchart MC9S08SH32 Series Data Sheet, Rev. 3 50 Freescale Semiconductor

Chapter4 Memory 4.5.5 Access Errors An access error occurs whenever the command execution protocol is violated. Any of the following specific actions will cause the access error flag (FACCERR) in FSTAT to be set. FACCERR must be cleared by writing a 1 to FACCERR in FSTAT before any command can be processed. • Writing to a FLASH address before the internal FLASH clock frequency has been set by writing to the FCDIV register • Writing to a FLASH address while FCBEF is not set (A new command cannot be started until the command buffer is empty.) • Writing a second time to a FLASH address before launching the previous command (There is only one write to FLASH for every command.) • Writing a second time to FCMD before launching the previous command (There is only one write to FCMD for every command.) • Writing to any FLASH control register other than FCMD after writing to a FLASH address • Writing any command code other than the five allowed codes (0x05, 0x20, 0x25, 0x40, or 0x41) to FCMD • Writing any FLASH control register other than the write to FSTAT (to clear FCBEF and launch the command) after writing the command to FCMD • The MCU enters stop mode while a program or erase command is in progress (The command is aborted.) • Writing the byte program, burst program, or page erase command code (0x20, 0x25, or 0x40) with a background debug command while the MCU is secured (The background debug controller can only do blank check and mass erase commands when the MCU is secure.) • Writing 0 to FCBEF to cancel a partial command 4.5.6 FLASH Block Protection The block protection feature prevents the protected region of FLASH from program or erase changes. Block protection is controlled through the FLASH protection register (FPROT). When enabled, block protection begins at any 512 byte boundary below the last address of FLASH, 0xFFFF. (See Section 4.7.4, “FLASH Protection Register (FPROT and NVPROT)”). After exit from reset, FPROT is loaded with the contents of the NVPROT location, which is in the nonvolatile register block of the FLASH memory. FPROT cannot be changed directly from application software so a runaway program cannot alter the block protection settings. Because NVPROT is within the last 512 bytes of FLASH, if any amount of memory is protected, NVPROT is itself protected and cannot be altered (intentionally or unintentionally) by the application software. FPROT can be written through background debug commands, which allows a way to erase and reprogram a protected FLASH memory. The block protection mechanism is illustrated in Figure 4-4. The FPS bits are used as the upper bits of the last address of unprotected memory. This address is formed by concatenating FPS7:FPS1 with logic 1 bits as shown. For example, to protect the last 1536 bytes of memory (addresses 0xFA00 through 0xFFFF), the FPS bits must be set to 1111 100, which results in the value 0xF9FF as the last address of unprotected memory. In addition to programming the FPS bits to the appropriate value, FPDIS (bit 0 of NVPROT) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 51

Chapter4 Memory must be programmed to logic 0 to enable block protection. Therefore the value 0xF8 must be programmed into NVPROT to protect addresses 0xFA00 through 0xFFFF. FPS7 FPS6 FPS5 FPS4 FPS3 FPS2 FPS1 1 1 1 1 1 1 1 1 1 A15 A14 A13 A12 A11 A10 A9 A8 A7 A6 A5 A4 A3 A2 A1 A0 Figure4-4. Block Protection Mechanism One use for block protection is to block protect an area of FLASH memory for a bootloader program. This bootloader program then can be used to erase the rest of the FLASH memory and reprogram it. Because the bootloader is protected, it remains intact even if MCU power is lost in the middle of an erase and reprogram operation. 4.5.7 Vector Redirection Whenever any block protection is enabled, the reset and interrupt vectors will be protected. Vector redirection allows users to modify interrupt vector information without unprotecting bootloader and reset vector space. Vector redirection is enabled by programming the FNORED bit in the NVOPT register located at address 0xFFBF to zero. For redirection to occur, at least some portion but not all of the FLASH memory must be block protected by programming the NVPROT register located at address 0xFFBD. All of the interrupt vectors (memory locations 0xFFC0–0xFFFD) are redirected, though the reset vector (0xFFFE:FFFF) is not. For example, if 512 bytes of FLASH are protected, the protected address region is from 0xFE00 through 0xFFFF. The interrupt vectors (0xFFC0–0xFFFD) are redirected to the locations 0xFDC0–0xFDFD. Now, if an SPI interrupt is taken for instance, the values in the locations 0xFDE0:FDE1 are used for the vector instead of the values in the locations 0xFFE0:FFE1. This allows the user to reprogram the unprotected portion of the FLASH with new program code including new interrupt vector values while leaving the protected area, which includes the default vector locations, unchanged. 4.6 Security The MC9S08SH32 Series includes circuitry to prevent unauthorized access to the contents of FLASH and RAM memory. When security is engaged, FLASH and RAM are considered secure resources. Direct-page registers, high-page registers, and the background debug controller are considered unsecured resources. Programs executing within secure memory have normal access to any MCU memory locations and resources. Attempts to access a secure memory location with a program executing from an unsecured memory space or through the background debug interface are blocked (writes are ignored and reads return all 0s). Security is engaged or disengaged based on the state of two nonvolatile register bits (SEC01:SEC00) in the FOPT register. During reset, the contents of the nonvolatile location NVOPT are copied from FLASH into the working FOPT register in high-page register space. A user engages security by programming the NVOPT location which can be done at the same time the FLASH memory is programmed. The 1:0 state disengages security and the other three combinations engage security. Notice the erased state (1:1) makes MC9S08SH32 Series Data Sheet, Rev. 3 52 Freescale Semiconductor

Chapter4 Memory the MCU secure. During development, whenever the FLASH is erased, it is good practice to immediately program the SEC00 bit to 0 in NVOPT so SEC01:SEC00= 1:0. This would allow the MCU to remain unsecured after a subsequent reset. The on-chip debug module cannot be enabled while the MCU is secure. The separate background debug controller can still be used for background memory access commands of unsecured resources. A user can choose to allow or disallow a security unlocking mechanism through an 8-byte backdoor security key. If the nonvolatile KEYEN bit in NVOPT/FOPT is 0, the backdoor key is disabled and there is no way to disengage security without completely erasing all FLASH locations. If KEYEN is 1, a secure user program can temporarily disengage security by: 1. Writing 1 to KEYACC in the FCNFG register. This makes the FLASH module interpret writes to the backdoor comparison key locations (NVBACKKEY through NVBACKKEY+7) as values to be compared against the key rather than as the first step in a FLASH program or erase command. 2. Writing the user-entered key values to the NVBACKKEY through NVBACKKEY+7 locations. These writes must be done in order starting with the value for NVBACKKEY and ending with NVBACKKEY+7. STHX should not be used for these writes because these writes cannot be done on adjacent bus cycles. User software normally would get the key codes from outside the MCU system through a communication interface such as a serial I/O. 3. Writing 0 to KEYACC in the FCNFG register. If the 8-byte key that was just written matches the key stored in the FLASH locations, SEC01:SEC00 are automatically changed to 1:0 and security will be disengaged until the next reset. The security key can be written only from secure memory (either RAM or FLASH), so it cannot be entered through background commands without the cooperation of a secure user program. The backdoor comparison key (NVBACKKEY through NVBACKKEY+7) is located in FLASH memory locations in the nonvolatile register space so users can program these locations exactly as they would program any other FLASH memory location. The nonvolatile registers are in the same 512-byte block of FLASH as the reset and interrupt vectors, so block protecting that space also block protects the backdoor comparison key. Block protects cannot be changed from user application programs, so if the vector space is block protected, the backdoor security key mechanism cannot permanently change the block protect, security settings, or the backdoor key. Security can always be disengaged through the background debug interface by taking these steps: 1. Disable any block protections by writing FPROT. FPROT can be written only with background debug commands, not from application software. 2. Mass erase FLASH if necessary. 3. Blank check FLASH. Provided FLASH is completely erased, security is disengaged until the next reset. To avoid returning to secure mode after the next reset, program NVOPT so SEC01:SEC00=1:0. 4.7 FLASH Registers and Control Bits The FLASH module has nine 8-bit registers in the high-page register space, two locations (NVOPT, NVPROT) in the nonvolatile register space in FLASH memory are copied into corresponding high-page MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 53

Chapter4 Memory control registers (FOPT, FPROT) at reset. There is also an 8-byte comparison key in FLASH memory. Refer to Table4-3 and Table 4-4 for the absolute address assignments for all FLASH registers. This section refers to registers and control bits only by their names. A Freescale Semiconductor-provided equate or header file normally is used to translate these names into the appropriate absolute addresses. 4.7.1 FLASH Clock Divider Register (FCDIV) Bit 7 of this register is a read-only flag. Bits 6:0 may be read at any time but can be written only one time. Before any erase or programming operations are possible, write to this register to set the frequency of the clock for the nonvolatile memory system within acceptable limits. 7 6 5 4 3 2 1 0 R DIVLD PRDIV8 DIV W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure4-5. FLASH Clock Divider Register (FCDIV) Table4-6. FCDIV Register Field Descriptions Field Description 7 Divisor Loaded Status Flag — When set, this read-only status flag indicates that the FCDIV register has been DIVLD written since reset. Reset clears this bit and the first write to this register causes this bit to become set regardless of the data written. 0 FCDIV has not been written since reset; erase and program operations disabled for FLASH. 1 FCDIV has been written since reset; erase and program operations enabled for FLASH. 6 Prescale (Divide) FLASH Clock by 8 PRDIV8 0 Clock input to the FLASH clock divider is the bus rate clock. 1 Clock input to the FLASH clock divider is the bus rate clock divided by8. 5:0 Divisor for FLASH Clock Divider — The FLASH clock divider divides the bus rate clock (or the bus rate clock DIV divided by 8 if PRDIV8=1) by the value in the 6-bit DIV field plus one. The resulting frequency of the internal FLASH clock must fall within the range of 200kHz to 150kHz for proper FLASH operations. Program/Erase timing pulses are one cycle of this internal FLASH clock which corresponds to a range of 5μs to 6.7μs. The automated programming logic uses an integer number of these pulses to complete an erase or program operation. See Equation4-1 and Equation4-2. if PRDIV8=0 — f = f ÷ (DIV + 1) Eqn.4-1 FCLK Bus if PRDIV8=1 — f = f ÷ (8 × (DIV + 1)) Eqn.4-2 FCLK Bus Table 4-7 shows the appropriate values for PRDIV8 and DIV for selected bus frequencies. MC9S08SH32 Series Data Sheet, Rev. 3 54 Freescale Semiconductor

Chapter4 Memory Table4-7. FLASH Clock Divider Settings PRDIV8 DIV Program/Erase Timing Pulse f f Bus (Binary) (Decimal) FCLK (5μs Min, 6.7 μs Max) 20 MHz 1 12 192.3 kHz 5.2μs 10 MHz 0 49 200 kHz 5μs 8 MHz 0 39 200 kHz 5μs 4 MHz 0 19 200 kHz 5μs 2 MHz 0 9 200 kHz 5μs 1 MHz 0 4 200 kHz 5μs 200 kHz 0 0 200 kHz 5μs 150 kHz 0 0 150 kHz 6.7μs 4.7.2 FLASH Options Register (FOPT and NVOPT) During reset, the contents of the nonvolatile location NVOPT are copied from FLASH into FOPT. To change the value in this register, erase and reprogram the NVOPT location in FLASH memory as usual and then issue a new MCU reset. 7 6 5 4 3 2 1 0 R KEYEN FNORED — — — — SEC01 SEC00 W Reset This register is loaded from nonvolatile location NVOPT during reset. = Unimplemented or Reserved Figure4-6. FLASH Options Register (FOPT) Table4-8. FOPT Register Field Descriptions Field Description 7 Backdoor Key Mechanism Enable — When this bit is 0, the backdoor key mechanism cannot be used to KEYEN disengage security. The backdoor key mechanism is accessible only from user (secured) firmware. BDM commands cannot be used to write key comparison values that would unlock the backdoor key. For more detailed information about the backdoor key mechanism, refer to Section 4.6, “Security.” 0 No backdoor key access allowed. 1 If user firmware writes an 8-byte value that matches the nonvolatile backdoor key (NVBACKKEY through NVBACKKEY+7 in that order), security is temporarily disengaged until the next MCU reset. 6 Vector Redirection Disable — When this bit is 1, then vector redirection is disabled. FNORED 0 Vector redirection enabled. 1 Vector redirection disabled. 1:0 Security State Code — This 2-bit field determines the security state of the MCU as shown in Table4-9. When SEC0[1:0] the MCU is secure, the contents of RAM and FLASH memory cannot be accessed by instructions from any unsecured source including the background debug interface. SEC01:SEC00 changes to 1:0 after successful backdoor key entry or a successful blank check of FLASH. For more detailed information about security, refer to Section 4.6, “Security.” MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 55

Chapter4 Memory Table4-9. Security States1 SEC01:SEC00 Description 0:0 secure 0:1 secure 1:0 unsecured 1:1 secure 1 SEC01:SEC00 changes to 1:0 after successful backdoor key entry or a successful blank check of FLASH. 4.7.3 FLASH Configuration Register (FCNFG) 7 6 5 4 3 2 1 0 R 0 0 0 0 0 0 0 KEYACC W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure4-7. FLASH Configuration Register (FCNFG) Table4-10. FCNFG Register Field Descriptions Field Description 5 Enable Writing of Access Key — This bit enables writing of the backdoor comparison key. For more detailed KEYACC information about the backdoor key mechanism, refer to Section 4.6, “Security.” 0 Writes to 0xFFB0–0xFFB7 are interpreted as the start of a FLASH programming or erase command. 1 Writes to NVBACKKEY (0xFFB0–0xFFB7) are interpreted as comparison key writes. 4.7.4 FLASH Protection Register (FPROT and NVPROT) During reset, the contents of the nonvolatile location NVPROT are copied from FLASH into FPROT. This register can be read at any time. If FPDIS = 0, protection can be increased (that is, a smaller value of FPS can be written). If FPDIS = 1, writes do not change protection. 7 6 5 4 3 2 1 0 R FPS(1) FPDIS(1) W Reset This register is loaded from nonvolatile location NVPROT during reset. 1 Background commands can be used to change the contents of these bits in FPROT. Figure4-8. FLASH Protection Register (FPROT) MC9S08SH32 Series Data Sheet, Rev. 3 56 Freescale Semiconductor

Chapter4 Memory Table4-11. FPROT Register Field Descriptions Field Description 7:1 FLASH Protect Select Bits — When FPDIS=0, this 7-bit field determines the ending address of unprotected FPS FLASH locations at the high address end of the FLASH. Protected FLASH locations cannot be erased or programmed. 0 FLASH Protection Disable FPDIS 0 FLASH block specified by [7:1] is block protected (program and erase not allowed). 1 No FLASH block is protected. 4.7.5 FLASH Status Register (FSTAT) 7 6 5 4 3 2 1 0 R FCCF 0 FBLANK 0 0 FCBEF FPVIOL FACCERR W Reset 1 1 0 0 0 0 0 0 = Unimplemented or Reserved Figure4-9. FLASH Status Register (FSTAT) Table4-12. FSTAT Register Field Descriptions Field Description 7 FLASH Command Buffer Empty Flag — The FCBEF bit is used to launch commands. It also indicates that the FCBEF command buffer is empty so that a new command sequence can be executed when performing burst programming. The FCBEF bit is cleared by writing a 1 to it or when a burst program command is transferred to the array for programming. Only burst program commands can be buffered. 0 Command buffer is full (not ready for additional commands). 1 A new burst program command can be written to the command buffer. 6 FLASH Command Complete Flag — FCCF is set automatically when the command buffer is empty and no FCCF command is being processed. FCCF is cleared automatically when a new command is started (by writing 1 to FCBEF to register a command). Writing to FCCF has no meaning or effect. 0 Command in progress 1 All commands complete 5 Protection Violation Flag — FPVIOL is set automatically when a command is written that attempts to erase or FPVIOL program a location in a protected block (the erroneous command is ignored). FPVIOL is cleared by writing a 1 to FPVIOL. 0 No protection violation. 1 An attempt was made to erase or program a protected location. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 57

Chapter4 Memory Table4-12. FSTAT Register Field Descriptions (continued) Field Description 4 Access Error Flag — FACCERR is set automatically when the proper command sequence is not obeyed exactly FACCERR (the erroneous command is ignored), if a program or erase operation is attempted before the FCDIV register has been initialized, or if the MCU enters stop while a command was in progress. For a more detailed discussion of the exact actions that are considered access errors, see Section 4.5.5, “Access Errors.” FACCERR is cleared by writing a 1 to FACCERR. Writing a 0 to FACCERR has no meaning or effect. 0 No access error. 1 An access error has occurred. 2 FLASH Verified as All Blank (erased) Flag — FBLANK is set automatically at the conclusion of a blank check FBLANK command if the entire FLASH array was verified to be erased. FBLANK is cleared by clearing FCBEF to write a new valid command. Writing to FBLANK has no meaning or effect. 0 After a blank check command is completed and FCCF=1, FBLANK=0 indicates the FLASH array is not completely erased. 1 After a blank check command is completed and FCCF=1, FBLANK=1 indicates the FLASH array is completely erased (all 0xFF). 4.7.6 FLASH Command Register (FCMD) Only five command codes are recognized in normal user modes as shown in Table 4-13. Refer to Section 4.5.3, “Program and Erase Command Execution,” for a detailed discussion of FLASH programming and erase operations. 7 6 5 4 3 2 1 0 R 0 0 0 0 0 0 0 0 W FCMD Reset 0 0 0 0 0 0 0 0 Figure4-10. FLASH Command Register (FCMD) Table4-13. FLASH Commands Command FCMD Equate File Label Blank check 0x05 mBlank Byte program 0x20 mByteProg Byte program — burst mode 0x25 mBurstProg Page erase (512 bytes/page) 0x40 mPageErase Mass erase (all FLASH) 0x41 mMassErase All other command codes are illegal and generate an access error. It is not necessary to perform a blank check command after a mass erase operation. Only blank check is required as part of the security unlocking mechanism. MC9S08SH32 Series Data Sheet, Rev. 3 58 Freescale Semiconductor

Chapter 5 Resets, Interrupts, and General System Control 5.1 Introduction This section discusses basic reset and interrupt mechanisms and the various sources of reset and interrupt in the MC9S08SH32 Series. Some interrupt sources from peripheral modules are discussed in greater detail within other sections of this data sheet. This section gathers basic information about all reset and interrupt sources in one place for easy reference. A few reset and interrupt sources, including the computer operating properly (COP) watchdog are not part of on-chip peripheral systems with their own chapters. 5.2 Features Reset and interrupt features include: • Multiple sources of reset for flexible system configuration and reliable operation • System reset status register (SRS) to indicate source of most recent reset • Separate interrupt vector for each module (reduces polling overhead) (see Table 5-2) 5.3 MCU Reset Resetting the MCU provides a way to start processing from a known set of initial conditions. During reset, most control and status registers are forced to initial values and the program counter is loaded from the reset vector (0xFFFE:0xFFFF). On-chip peripheral modules are disabled and I/O pins are initially configured as general-purpose high-impedance inputs with pull-up devices disabled. The I bit in the condition code register (CCR) is set to block maskable interrupts so the user program has a chance to initialize the stack pointer (SP) and system control settings. SP is forced to 0x00FF at reset. The MC9S08SH32 Series has the following sources for reset: • Power-on reset (POR) • External pin reset (PIN) - enabled using RSTPE in SOPT1 • Low-voltage detect (LVD) • Computer operating properly (COP) timer • Illegal opcode detect (ILOP) • Illegal address detect (ILAD) - access of any address in memory map that is listed as unimplemented will produce an illegal address reset • Background debug forced reset Each of these sources, with the exception of the background debug forced reset, has an associated bit in the system reset status register (SRS). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 59

Chapter5 Resets, Interrupts, and General System Control 5.4 Computer Operating Properly (COP) Watchdog The COP watchdog is intended to force a system reset when the application software fails to execute as expected. To prevent a system reset from the COP timer (when it is enabled), application software must reset the COP counter periodically. If the application program gets lost and fails to reset the COP counter before it times out, a system reset is generated to force the system back to a known starting point. After any reset, the COP watchdog is enabled (see Section 5.7.4, “System Options Register 1 (SOPT1),” for additional information). If the COP watchdog is not used in an application, it can be disabled by clearing COPT bits in SOPT1. The COP counter is reset by writing 0x0055 and 0x00AA (in this order) to the address of SRS during the selected timeout period. Writes do not affect the data in the read-only SRS. As soon as the write sequence is done, the COP timeout period is restarted. If the program fails to do this during the time-out period, the MCU will reset. Also, if any value other than 0x0055 or 0x00AA is written to SRS, the MCU is immediately reset. The COPCLKS bit in SOPT2 (see Section 5.7.5, “System Options Register 2 (SOPT2),” for additional information) selects the clock source used for the COP timer. The clock source options are either the bus clock or an internal 1-kHz clock source. With each clock source, there are three associated time-outs controlled by the COPT bits in SOPT1. Table 5-1 summaries the control functions of the COPCLKS and COPT bits. The COP watchdog defaults to operation from the 1-kHz clock source and the longest time-out (210 cycles). Table5-1. COP Configuration Options Control Bits COP Window1 Opens Clock Source COP Overflow Count (COPW = 1) COPCLKS COPT[1:0] N/A 0:0 N/A N/A COP is disabled 0 0:1 1 kHz N/A 25 cycles (32 ms2) 0 1:0 1 kHz N/A 28 cycles (256 ms1) 0 1:1 1 kHz N/A 210 cycles (1.024 s1) 1 0:1 Bus 6144 cycles 213 cycles 1 1:0 Bus 49,152 cycles 216 cycles 1 1:1 Bus 196,608 cycles 218 cycles 1 Windowed COP operation requires the user to clear the COP timer in the last 25% of the selected timeout period. This column displays the minimum number of clock counts required before the COP timer can be reset when in windowed COP mode (COPW=1). 2 Values shown in milliseconds based on t =1ms. See t in the appendix Section A.12.1, “Control Timing,” for the LPO LPO tolerance of this value. When the bus clock source is selected, windowed COP operation is available by setting COPW in the SOPT2 register. In this mode, writes to the SRS register to clear the COP timer must occur in the last 25% of the selected timeout period. A premature write immediately resets the MCU. When the 1-kHz clock source is selected, windowed COP operation is not available. MC9S08SH32 Series Data Sheet, Rev. 3 60 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control The COP counter is initialized by the first writes to the SOPT1 and SOPT2 registers after any system reset. Subsequent writes to SOPT1 and SOPT2 have no effect on COP operation. Even if the application will use the reset default settings of COPT, COPCLKS, and COPW bits, the user should write to the write-once SOPT1 and SOPT2 registers during reset initialization to lock in the settings. This will prevent accidental changes if the application program gets lost. The write to SRS that services (clears) the COP counter should not be placed in an interrupt service routine (ISR) because the ISR could continue to be executed periodically even if the main application program fails. If the bus clock source is selected, the COP counter does not increment while the MCU is in background debug mode or while the system is in stop mode. The COP counter resumes when the MCU exits background debug mode or stop mode. If the 1-kHz clock source is selected, the COP counter is re-initialized to zero upon entry to either background debug mode or stop mode and begins from zero upon exit from background debug mode or stop mode. 5.5 Interrupts Interrupts provide a way to save the current CPU status and registers, execute an interrupt service routine (ISR), and then restore the CPU status so processing resumes where it left off before the interrupt. Other than the software interrupt (SWI), which is a program instruction, interrupts are caused by hardware events such as an edge on the IRQ pin or a timer-overflow event. The debug module can also generate an SWI under certain circumstances. If an event occurs in an enabled interrupt source, an associated read-only status flag will become set. The CPU will not respond unless the local interrupt enable is a 1 to enable the interrupt and the I bit in the CCR is 0 to allow interrupts. The global interrupt mask (I bit) in the CCR is initially set after reset which prevents all maskable interrupt sources. The user program initializes the stack pointer and performs other system setup before clearing the I bit to allow the CPU to respond to interrupts. When the CPU receives a qualified interrupt request, it completes the current instruction before responding to the interrupt. The interrupt sequence obeys the same cycle-by-cycle sequence as the SWI instruction and consists of: • Saving the CPU registers on the stack • Setting the I bit in the CCR to mask further interrupts • Fetching the interrupt vector for the highest-priority interrupt that is currently pending • Filling the instruction queue with the first three bytes of program information starting from the address fetched from the interrupt vector locations While the CPU is responding to the interrupt, the I bit is automatically set to avoid the possibility of another interrupt interrupting the ISR itself (this is called nesting of interrupts). Normally, the I bit is restored to 0 when the CCR is restored from the value stacked on entry to the ISR. In rare cases, the I bit can be cleared inside an ISR (after clearing the status flag that generated the interrupt) so that other interrupts can be serviced without waiting for the first service routine to finish. This practice is not MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 61

Chapter5 Resets, Interrupts, and General System Control recommended for anyone other than the most experienced programmers because it can lead to subtle program errors that are difficult to debug. The interrupt service routine ends with a return-from-interrupt (RTI) instruction which restores the CCR, A, X, and PC registers to their pre-interrupt values by reading the previously saved information from the stack. NOTE For compatibility with M68HC08 devices, the H register is not automatically saved and restored. It is good programming practice to push H onto the stack at the start of the interrupt service routine (ISR) and restore it immediately before the RTI that is used to return from the ISR. If more than one interrupt is pending when the I bit is cleared, the highest priority source is serviced first (see Table 5-2). 5.5.1 Interrupt Stack Frame Figure 5-1 shows the contents and organization of a stack frame. Before the interrupt, the stack pointer (SP) points at the next available byte location on the stack. The current values of CPU registers are stored on the stack starting with the low-order byte of the program counter (PCL) and ending with the CCR. After stacking, the SP points at the next available location on the stack which is the address that is one less than the address where the CCR was saved. The PC value that is stacked is the address of the instruction in the main program that would have executed next if the interrupt had not occurred. UNSTACKING TOWARD LOWER ADDRESSES ORDER 7 ² 0 SP AFTER INTERRUPT STACKING 5 1 CONDITION CODE REGISTER 4 2 ACCUMULATOR 3 3 INDEX REGISTER (LOW BYTE X)* 2 4 PROGRAM COUNTER HIGH SP BEFORE 1 5 PROGRAM COUNTER LOW THE INTERRUPT ² ² STACKING TOWARD HIGHER ADDRESSES ORDER ² * High byte (H) of index register is not automatically stacked. Figure5-1. Interrupt Stack Frame When an RTI instruction is executed, these values are recovered from the stack in reverse order. As part of the RTI sequence, the CPU fills the instruction pipeline by reading three bytes of program information, starting from the PC address recovered from the stack. MC9S08SH32 Series Data Sheet, Rev. 3 62 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control The status flag corresponding to the interrupt source must be acknowledged (cleared) before returning from the ISR. Typically, the flag is cleared at the beginning of the ISR so that if another interrupt is generated by this same source, it will be registered so it can be serviced after completion of the current ISR. 5.5.2 External Interrupt Request Pin (IRQ) External interrupts are managed by the IRQ status and control register, IRQSC. When the IRQ function is enabled, synchronous logic monitors the pin for edge-only or edge-and-level events. When the MCU is in stop mode and system clocks are shut down, a separate asynchronous path is used so the IRQ (if enabled) can wake the MCU. 5.5.2.1 Pin Configuration Options The IRQ pin enable (IRQPE) control bit in IRQSC must be 1 in order for the IRQ pin to act as the interrupt request (IRQ) input. As an IRQ input, the user can choose the polarity of edges or levels detected (IRQEDG), whether the pin detects edges-only or edges and levels (IRQMOD), and whether an event causes an interrupt or only sets the IRQF flag which can be polled by software. The IRQ pin, when enabled, defaults to use an internal pull device (IRQPDD = 0), the device is a pull-up or pull-down depending on the polarity chosen. If the user desires to use an external pull-up or pull-down, the IRQPDD can be written to a 1 to turn off the internal device. BIH and BIL instructions may be used to detect the level on the IRQ pin when the pin is configured to act as the IRQ input. NOTE This pin does not contain a clamp diode to V and should not be driven DD above V . DD The voltage measured on the internally pulled up IRQ pin will not be pulled to V . The internal gates connected to this pin are pulled to V . If the DD DD IRQ pin is required to drive to a V level an external pullup should be DD used. 5.5.2.2 Edge and Level Sensitivity The IRQMOD control bit reconfigures the detection logic so it detects edge events and pin levels. In the edge and level detection mode, the IRQF status flag becomes set when an edge is detected (when the IRQ pin changes from the deasserted to the asserted level), but the flag is continuously set (and cannot be cleared) as long as the IRQ pin remains at the asserted level. 5.5.3 Interrupt Vectors, Sources, and Local Masks Table 5-2 provides a summary of all interrupt sources. Higher-priority sources are located toward the bottom of the table. The high-order byte of the address for the interrupt service routine is located at the first address in the vector address column, and the low-order byte of the address for the interrupt service routine is located at the next higher address. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 63

Chapter5 Resets, Interrupts, and General System Control When an interrupt condition occurs, an associated flag bit becomes set. If the associated local interrupt enable is 1, an interrupt request is sent to the CPU. Within the CPU, if the global interrupt mask (I bit in the CCR) is 0, the CPU will finish the current instruction; stack the PCL, PCH, X, A, and CCR CPU registers; set the I bit; and then fetch the interrupt vector for the highest priority pending interrupt. Processing then continues in the interrupt service routine. Table5-2. Vector Summary Vector Vector Address Vector Module Source Enable Description Priority Number (High/Low) Name 31 0xFFC0/0xFFC1 — — — — — 30 0xFFC2/0xFFC3 Vacmp ACMP ACF ACIE Analog comparator Lowest 29 0xFFC4/0xFFC5 — — — — — 28 0xFFC6/0xFFC7 — — — — — 27 0xFFC8/0xFFC9 — — — — — 26 0xFFCA/0xFFCB Vmtim MTIM TOF TOIE MTIM overflow 25 0xFFCC/0xFFCD Vrtc RTC RTIF RTIE Real-time interrupt 24 0xFFCE/0xFFCF Viic IIC IICIS IICIE IIC control 23 0xFFD0/0xFFD1 Vadc ADC COCO AIEN ADC 22 0xFFD2/0xFFD3 — — — — — 21 0xFFD4/0xFFD5 Vportb Port B PTBIF PTBIE Port B Pins 20 0xFFD6/0xFFD7 Vporta Port A PTAIF PTAIE Port A Pins 19 0xFFD8/0xFFD9 — — — — — 18 0xFFDA/0xFFDB Vscitx SCI TDRE, TC TIE, TCIE SCI transmit IDLE, RDRF, ILIE, RIE, 0xFFDC/0xFFDD Vscirx SCI LDBKDIF, LBKDIE, SCI receive 17 RXEDGIF RXEDGIE OR, NF, ORIE, NFIE, 16 0xFFDE/0xFFDF Vscierr SCI SCI error FE, PF FEIE, PFIE SPIF, MODF, 15 0xFFE0/0xFFE1 Vspi SPI SPIE, SPIE, SPTIE SPI SPTEF 14 0xFFE2/0xFFE3 Vtpm2ovf TPM2 TOF TOIE TPM2 overflow 13 0xFFE4/0xFFE5 Vtpm2ch1 TPM2 CH1F CH1IE TPM2 channel 1 12 0xFFE6/0xFFE7 Vtpm2ch0 TPM2 CH0F CH0IE TPM2 channel 0 11 0xFFE8/0xFFE9 Vtpm1ovf TPM1 TOF TOIE TPM1 overflow 10 0xFFEA/0xFFEB — — — — — 9 0xFFEC/0xFFED — — — — — 8 0xFFEE/0xFFEF — — — — — 7 0xFFF0/0xFFF1 — — — — — 6 0xFFF2/0xFFF3 Vtpm1ch1 TPM1 CH1F CH1IE TPM1 channel 1 5 0xFFF4/0xFFF5 Vtpm1ch0 TPM1 CH0F CH0IE TPM1 channel 0 4 0xFFF6/0xFFF7 — — — — — System 3 0xFFF8/0xFFF9 Vlvd LVWF LVWIE Low-voltage warning control 2 0xFFFA/0xFFFB Virq IRQ IRQF IRQIE IRQ pin 1 0xFFFC/0xFFFD Vswi Core SWI Instruction — Software interrupt COP, COPE Watchdog timer LVD, LVDRE Low-voltage detect System 0 0xFFFE/0xFFFF Vreset RESET pin, — External pin control Illegal opcode, — Illegal opcode Highest Illegal address — Illegal address MC9S08SH32 Series Data Sheet, Rev. 3 64 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control 5.6 Low-Voltage Detect (LVD) System The MC9S08SH32 Series includes a system to protect against low voltage conditions in order to protect memory contents and control MCU system states during supply voltage variations. The system is comprised of a power-on reset (POR) circuit and a LVD circuit with trip voltages for warning and detection. The LVD circuit is enabled when LVDE in SPMSC1 is set to 1. The LVD is disabled upon entering any of the stop modes unless LVDSE is set in SPMSC1. If LVDSE and LVDE are both set, then the MCU cannot enter stop2, and the current consumption in stop3 with the LVD enabled will be higher. 5.6.1 Power-On Reset Operation When power is initially applied to the MCU, or when the supply voltage drops below the power-on reset rearm voltage level, V , the POR circuit will cause a reset condition. As the supply voltage rises, the POR LVD circuit will hold the MCU in reset until the supply has risen above the low voltage detection low threshold, V . Both the POR bit and the LVD bit in SRS are set following a POR. LVDL 5.6.2 Low-Voltage Detection (LVD) Reset Operation The LVD can be configured to generate a reset upon detection of a low voltage condition by setting LVDRE to 1. The low voltage detection threshold is determined by the LVDV bit. After an LVD reset has occurred, the LVD system will hold the MCU in reset until the supply voltage has risen above the low voltage detection threshold. The LVD bit in the SRS register is set following either an LVD reset or POR. 5.6.3 Low-Voltage Warning (LVW) Interrupt Operation The LVD system has a low voltage warning flag to indicate to the user that the supply voltage is approaching the low voltage condition. When a low voltage warning condition is detected and is configured for interrupt operation (LVWIE set to 1), LVWF in SPMSC1 will be set and an LVW interrupt request will occur. 5.7 Reset, Interrupt, and System Control Registers and Control Bits One 8-bit register in the direct page register space and eight 8-bit registers in the high-page register space are related to reset and interrupt systems. Refer to Table4-2 and Table 4-3 in Chapter4, “Memory,” of this data sheet for the absolute address assignments for all registers. This section refers to registers and control bits only by their names. A Freescale-provided equate or header file is used to translate these names into the appropriate absolute addresses. Some control bits in the SOPT1 and SPMSC2 registers are related to modes of operation. Although brief descriptions of these bits are provided here, the related functions are discussed in greater detail in Chapter 3, “Modes of Operation.” MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 65

Chapter5 Resets, Interrupts, and General System Control 5.7.1 Interrupt Pin Request Status and Control Register (IRQSC) This direct page register includes status and control bits, which are used to configure the IRQ function, report status, and acknowledge IRQ events. 7 6 5 4 3 2 1 0 R 0 IRQF 0 IRQPDD IRQEDG IRQPE IRQIE IRQMOD W IRQACK Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure5-2. Interrupt Request Status and Control Register (IRQSC) Table5-3. IRQSC Register Field Descriptions Field Description 6 Interrupt Request (IRQ) Pull Device Disable — This read/write control bit is used to disable the internal pullup IRQPDD device when the IRQ pin is enabled (IRQPE = 1) allowing for an external device to be used. 0 IRQ pull device enabled if IRQPE = 1. 1 IRQ pull device disabled if IRQPE = 1. 5 Interrupt Request (IRQ) Edge Select — This read/write control bit is used to select the polarity of edges or IRQEDG levels on the IRQ pin that cause IRQF to be set. The IRQMOD control bit determines whether the IRQ pin is sensitive to both edges and levels or only edges. When the IRQ pin is enabled as the IRQ input and is configured to detect rising edges. When IRQEDG = 1 and the internal pull device is enabled, the pull-up device is reconfigured as an optional pull-down device. 0 IRQ is falling edge or falling edge/low-level sensitive. 1 IRQ is rising edge or rising edge/high-level sensitive. 4 IRQ Pin Enable — This read/write control bit enables the IRQ pin function. When this bit is set the IRQ pin can IRQPE be used as an interrupt request. 0 IRQ pin function is disabled. 1 IRQ pin function is enabled. 3 IRQ Flag — This read-only status bit indicates when an interrupt request event has occurred. IRQF 0 No IRQ request. 1 IRQ event detected. 2 IRQ Acknowledge — This write-only bit is used to acknowledge interrupt request events (write 1 to clear IRQF). IRQACK Writing 0 has no meaning or effect. Reads always return 0. If edge-and-level detection is selected (IRQMOD=1), IRQF cannot be cleared while the IRQ pin remains at its asserted level. 1 IRQ Interrupt Enable — This read/write control bit determines whether IRQ events generate an interrupt IRQIE request. 0 Interrupt request when IRQF set is disabled (use polling). 1 Interrupt requested whenever IRQF=1. 0 IRQ Detection Mode — This read/write control bit selects either edge-only detection or edge-and-level IRQMOD detection. The IRQEDG control bit determines the polarity of edges and levels that are detected as interrupt request events. See Section 5.5.2.2, “Edge and Level Sensitivity,” for more details. 0 IRQ event on falling edges or rising edges only. 1 IRQ event on falling edges and low levels or on rising edges and high levels. MC9S08SH32 Series Data Sheet, Rev. 3 66 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control 5.7.2 System Reset Status Register (SRS) This high page register includes read-only status flags to indicate the source of the most recent reset. When a debug host forces reset by writing 1 to BDFR in the SBDFR register, none of the status bits in SRS will be set. Writing any value to this register address causes a COP reset when the COP is enabled except the values 0x55 and 0xAA. Writing a 0x55-0xAA sequence to this address clears the COP watchdog timer without affecting the contents of this register. The reset state of these bits depends on what caused the MCU to reset. 7 6 5 4 3 2 1 0 R POR PIN COP ILOP ILAD 0 LVD 0 W Writing 0x55, 0xAA to SRS address clears COP watchdog timer. POR: 1 0 0 0 0 0 1 0 LVR: u1 0 0 0 0 0 1 0 Any other 0 Note2 Note2 Note2 Note2 0 0 0 reset: 1 u = unaffected 2 Any of these reset sources that are active at the time of reset entry will cause the corresponding bit(s) to be set; bits corresponding to sources that are not active at the time of reset entry will be cleared. Figure5-3. System Reset Status (SRS) Table5-4. SRS Register Field Descriptions Field Description 7 Power-On Reset — Reset was caused by the power-on detection logic. Because the internal supply voltage was POR ramping up at the time, the low-voltage reset (LVD) status bit is also set to indicate that the reset occurred while the internal supply was below the LVD threshold. 0 Reset not caused by POR. 1 POR caused reset. 6 External Reset Pin — Reset was caused by an active-low level on the external reset pin. PIN 0 Reset not caused by external reset pin. 1 Reset came from external reset pin. 5 Computer Operating Properly (COP) Watchdog — Reset was caused by the COP watchdog timer timing out. COP This reset source can be blocked by COPE=0. 0 Reset not caused by COP timeout. 1 Reset caused by COP timeout. 4 Illegal Opcode — Reset was caused by an attempt to execute an unimplemented or illegal opcode. The STOP ILOP instruction is considered illegal if stop is disabled by STOPE=0 in the SOPT register. The BGND instruction is considered illegal if active background mode is disabled by ENBDM=0 in the BDCSC register. 0 Reset not caused by an illegal opcode. 1 Reset caused by an illegal opcode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 67

Chapter5 Resets, Interrupts, and General System Control Table5-4. SRS Register Field Descriptions Field Description 3 Illegal Address — Reset was caused by an attempt to access either data or an instruction at an unimplemented ILAD memory address. 0 Reset not caused by an illegal address 1 Reset caused by an illegal address 1 Low Voltage Detect — If the LVDRE bit is set and the supply drops below the LVD trip voltage, an LVD reset will LVD occur. This bit is also set by POR. 0 Reset not caused by LVD trip or POR. 1 Reset caused by LVD trip or POR. 5.7.3 System Background Debug Force Reset Register (SBDFR) This high page register contains a single write-only control bit. A serial background command such as WRITE_BYTE must be used to write to SBDFR. Attempts to write this register from a user program are ignored. Reads always return 0x00. 7 6 5 4 3 2 1 0 R 0 0 0 0 0 0 0 0 W BDFR1 Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved 1 BDFR is writable only through serial background debug commands, not from user programs. Figure5-4. System Background Debug Force Reset Register (SBDFR) Table5-5. SBDFR Register Field Descriptions Field Description 0 Background Debug Force Reset — A serial background command such as WRITE_BYTE can be used to allow BDFR an external debug host to force a target system reset. Writing 1 to this bit forces an MCU reset. This bit cannot be written from a user program. MC9S08SH32 Series Data Sheet, Rev. 3 68 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control 5.7.4 System Options Register 1 (SOPT1) This high page register is a write-once register so only the first write after reset is honored. It can be read at any time. Any subsequent attempt to write to SOPT1 (intentionally or unintentionally) is ignored to avoid accidental changes to these sensitive settings. SOPT1 should be written during the user’s reset initialization program to set the desired controls even if the desired settings are the same as the reset settings. 7 6 5 4 3 2 1 0 R 0 0 COPT STOPE IICPS BKGDPE RSTPE W Reset: 1 1 0 0 0 0 1 u(1) POR: 1 0 0 0 0 0 1 0 LVR: 1 0 0 0 0 0 1 u = Unimplemented or Reserved Figure5-5. System Options Register 1 (SOPT1) 1 u = unaffected Table5-6. SOPT1 Register Field Descriptions Field Description 7:6 COP Watchdog Timeout — These write-once bits select the timeout period of the COP. COPT along with COPT[1:0] COPCLKS in SOPT2 defines the COP timeout period. See Table5-1. 5 Stop Mode Enable — This write-once bit is used to enable stop mode. If stop mode is disabled and a user STOPE program attempts to execute a STOP instruction, an illegal opcode reset is forced. 0 Stop mode disabled. 1 Stop mode enabled. 2 IIC Pin Select — This bit selects the location of the SDA and SCL pins of the IIC module. IICPS 0 SDA on PTA2, SCL on PTA3. 1 SDA on PTB6, SCL on PTB7. 1 Background Debug Mode Pin Enable — This write-once bit when set enables the PTA4/ACMPO/BKGD/MS BKGDPE pin to function as BKGD/MS. When clear, the pin functions as one of its output-only alternative functions. This pin defaults to the BKGD/MS function following any MCU reset. 0 PTA4/ACMPO/BKGD/MS pin functions as PTA4 or ACMPO. 1 PTA4/ACMPO/BKGD/MS pin functions as BKGD/MS. 0 RESET Pin Enable — This write-once bit when set enables the PTA5/IRQ/TCLK/RESET pin to function as RSTPE RESET. When clear, the pin functions as one of its alternative functions. This pin defaults to a general-purpose input port function following a POR reset. When configured as RESET, the pin will be unaffected by LVR or other internal resets. When RSTPE is set, an internal pullup device is enabled on RESET. 0 PTA5/IRQ/TCLK/RESET pin functions as PTA5, IRQ or TCLK. 1 PTA5/IRQ/TCLK/RESET pin functions as RESET. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 69

Chapter5 Resets, Interrupts, and General System Control 5.7.5 System Options Register 2 (SOPT2) This high page register contains bits to configure MCU specific features on the MC9S08SH32 Series devices. 7 6 5 4 3 2 1 0 R 0 COPCLKS1 COPW1 ACIC T2CH1PS T2CH0PS T1CH1PS T1CH0PS W Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure5-6. System Options Register 2 (SOPT2) 1 This bit can be written only one time after reset. Additional writes are ignored. Table5-7. SOPT2 Register Field Descriptions Field Description 7 COP Watchdog Clock Select — This write-once bit selects the clock source of the COP watchdog. COPCLKS 0 Internal 1-kHz clock is source to COP. 1 Bus clock is source to COP. 6 COP Window — This write-once bit selects the COP operation mode. When set, the 0x55-0xAA write sequence COPW to the SRS register must occur in the last 25% of the selected period. Any write to the SRS register during the first 75% of the selected period will reset the MCU. 0 Normal COP operation 1 Window COP operation (only if COPCLKS = 1) 4 Analog Comparator to Input Capture Enable— This bit connects the output of ACMP to TPM1 input channel 0. ACIC 0 ACMP output not connected to TPM1 input channel 0. 1 ACMP output connected to TPM1 input channel 0. 3 TPM2CH1 Pin Select— This selects the location of the TPM2CH1 pin of the TPM2 module. T2CH1PS 0 TPM2CH1 on PTB4. 1 TPM2CH1 on PTA7. 2 TPM2CH0 Pin Select— This bit selects the location of the TPM2CH0 pin of the TPM2 module. T2CH0PS 0 TPM2CH0 on PTA1. 1 TPM2CH0 on PTA6. 1 TPM1CH1 Pin Select— This selects the location of the TPM1CH1 pin of the TPM1 module. T1CH1PS 0 TPM1CH1 on PTB5. 1 TPM1CH1 on PTC1. 0 TPM1CH0 Pin Select— This bit selects the location of the TPM1CH0 pin of the TPM1 module. T1CH0PS 0 TPM1CH0 on PTA0. 1 TPM1CH0 on PTC0. MC9S08SH32 Series Data Sheet, Rev. 3 70 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control 5.7.6 System Device Identification Register (SDIDH, SDIDL) These high page read-only registers are included so host development systems can identify the HCS08 derivative and revision number. This allows the development software to recognize where specific memory blocks, registers, and control bits are located in a target MCU. 7 6 5 4 3 2 1 0 R 0 ID11 ID10 ID9 ID8 W Reset: 01 — — — 0 0 0 0 = Unimplemented or Reserved 1 - Bit 7 is a mask option tie off that is used internally to determine that the device is a MC9S08SH32 Series. Figure5-7. System Device Identification Register — High (SDIDH) Table5-8. SDIDH Register Field Descriptions Field Description 7 Bit 7 will read as a 0 for the MC9S08SH32 Series devices; writes have no effect. 6:4 Bits 6:4 are reserved. Reading these bits will result in an indeterminate value; writes have no effect. Reserved 3:0 Part Identification Number — Each derivative in the HCS08 Family has a unique identification number. The ID[11:8] MC9S08SH32 is hard coded to the value 0x01A. See also ID bits in Table5-9. 7 6 5 4 3 2 1 0 R ID7 ID6 ID5 ID4 ID3 ID2 ID1 ID0 W Reset: 0 0 0 1 1 0 1 0 = Unimplemented or Reserved Figure5-8. System Device Identification Register — Low (SDIDL) Table5-9. SDIDL Register Field Descriptions Field Description 7:0 Part Identification Number — Each derivative in the HCS08 Family has a unique identification number. The ID[7:0] MC9S08SH32 is hard coded to the value 0x01A. See also ID bits in Table5-8. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 71

Chapter5 Resets, Interrupts, and General System Control 5.7.7 System Power Management Status and Control 1 Register (SPMSC1) This high page register contains status and control bits to support the low voltage detect function, and to enable the bandgap voltage reference for use by the ADC module. This register should be written during the user’s reset initialization program to set the desired controls even if the desired settings are the same as the reset settings. 7 6 5 4 3 2 1 0 R LVWF1 0 0 LVWIE LVDRE2 LVDSE2 LVDE2 BGBE W LVWACK Reset: 0 0 0 1 1 1 0 0 = Unimplemented or Reserved 1 LVWF will be set in the case when V transitions below the trip point or after reset and V is already below V Supply Supply LVW 2 This bit can be written only one time after reset. Additional writes are ignored. Figure5-9. System Power Management Status and Control 1 Register (SPMSC1) Table5-10. SPMSC1 Register Field Descriptions Field Description 7 Low-Voltage Warning Flag — The LVWF bit indicates the low voltage warning status. LVWF 0 Low voltage warning is not present. 1 Low voltage warning is present or was present. 6 Low-Voltage Warning Acknowledge — The LVWF bit indicates the low voltage warning status.Writing a 1 to LVWACK LVWACK clears LVWF to a 0 if a low voltage warning is not present. 5 Low-Voltage Warning Interrupt Enable — This bit enables hardware interrupt requests for LVWF. LVWIE 0 Hardware interrupt disabled (use polling). 1 Request a hardware interrupt when LVWF = 1. 4 Low-Voltage Detect Reset Enable — This write-once bit enables LVD events to generate a hardware reset LVDRE (provided LVDE = 1). 0 LVD events do not generate hardware resets. 1 Force an MCU reset when an enabled low-voltage detect event occurs. 3 Low-Voltage Detect Stop Enable — Provided LVDE = 1, this write-once bit determines whether the low-voltage LVDSE detect function operates when the MCU is in stop mode. 0 Low-voltage detect disabled during stop mode. 1 Low-voltage detect enabled during stop mode. 2 Low-Voltage Detect Enable — This write-once bit enables low-voltage detect logic and qualifies the operation LVDE of other bits in this register. 0 LVD logic disabled. 1 LVD logic enabled. 0 Bandgap Buffer Enable — This bit enables an internal buffer for the bandgap voltage reference for use by the BGBE ADC and ACMP modules. 0 Bandgap buffer disabled. 1 Bandgap buffer enabled. MC9S08SH32 Series Data Sheet, Rev. 3 72 Freescale Semiconductor

Chapter5 Resets, Interrupts, and General System Control 5.7.8 System Power Management Status and Control 2 Register (SPMSC2) This register is used to report the status of the low voltage warning function, and to configure the stop mode behavior of the MCU. This register should be written during the user’s reset initialization program to set the desired controls even if the desired settings are the same as the reset settings ese 7 6 5 4 3 2 1 0 R 0 0 PPDF 0 0 LVDV1 LVWV PPDC2 W PPDACK Power-on Reset: 0 0 0 0 0 0 0 0 LVD Reset: 0 0 u u 0 0 0 0 Any other Reset: 0 0 u u 0 0 0 0 = Unimplemented or Reserved u = Unaffected by reset 1 This bit can be written only one time after power-on reset. Additional writes are ignored. 2 This bit can be written only one time after reset. Additional writes are ignored. Figure5-10. System Power Management Status and Control 2 Register (SPMSC2) Table5-11. SPMSC2 Register Field Descriptions Field Description 5 Low-Voltage Detect Voltage Select — This write-once bit selects the low voltage detect (LVD) trip point setting. LVDV It also selects the warning voltage range. See Table5-12. 4 Low-Voltage Warning Voltage Select — This bit selects the low voltage warning (LVW) trip point voltage. See LVWV Table5-12. 3 Partial Power Down Flag — This read-only status bit indicates that the MCU has recovered from stop2 mode. PPDF 0 MCU has not recovered from stop2 mode. 1 MCU recovered from stop2 mode. 2 Partial Power Down Acknowledge — Writing a 1 to PPDACK clears the PPDF bit PPDACK 0 Partial Power Down Control — This write-once bit controls whether stop2 or stop3 mode is selected. PPDC 0 Stop3 mode enabled. 1 Stop2, partial power down, mode enabled. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 73

Chapter5 Resets, Interrupts, and General System Control Table5-12. LVD and LVW trip point typical values1 LVDV:LVWV LVW Trip Point LVD Trip Point 0:0 V = 2.74 V V = 2.56 V LVW0 LVD0 0:1 V = 2.92 V LVW1 1:0 V = 4.3 V V = 4.0 V LVW2 LVD1 1:1 V = 4.6 V LVW3 1 See Electrical Characteristics appendix for minimum and maximum values. MC9S08SH32 Series Data Sheet, Rev. 3 74 Freescale Semiconductor

Chapter 6 Parallel Input/Output Control This section explains software controls related to parallel input/output (I/O) and pin control. The MC9S08SH32 has three parallel I/O ports which include a total of 23 I/O pins and one output-only pin. See Chapter2, “Pins and Connections,” for more information about pin assignments and external hardware considerations of these pins. Many of these pins are shared with on-chip peripherals such as timer systems, communication systems, or pin interrupts as shown in Table2-1. The peripheral modules have priority over the general-purpose I/O functions so that when a peripheral is enabled, the I/O functions associated with the shared pins are disabled. After reset, the shared peripheral functions are disabled and the pins are configured as inputs (PTxDDn= 0). The pin control functions for each pin are configured as follows: slew rate disabled PTxSEn = 0, low drive strength selected (PTxDSn = 0), and internal pull-ups disabled (PTxPEn = 0). NOTE Not all general-purpose I/O pins are available on all packages. To avoid extra current drain from floating input pins, the user’s reset initialization routine in the application program must either enable on-chip pull-up devices or change the direction of unconnected pins to outputs so the pins do not float. 6.1 Port Data and Data Direction Reading and writing of parallel I/Os are performed through the port data registers. The direction, either input or output, is controlled through the port data direction registers. The parallel I/O port function for an individual pin is illustrated in the block diagram shown in Figure 6-1. The data direction control bit (PTxDDn) determines whether the output buffer for the associated pin is enabled, and also controls the source for port data register reads. The input buffer for the associated pin is always enabled unless the pin is enabled as an analog function or is an output-only pin. When a shared digital function is enabled for a pin, the output buffer is controlled by the shared function. However, the data direction register bit will continue to control the source for reads of the port data register. When a shared analog function is enabled for a pin, both the input and output buffers are disabled. A value of 0 is read for any port data bit where the bit is an input (PTxDDn = 0) and the input buffer is disabled. In general, whenever a pin is shared with both an alternate digital function and an analog function, the analog function has priority such that if both the digital and analog functions are enabled, the analog function controls the pin. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 75

Chapter6 Parallel Input/Output Control It is a good programming practice to write to the port data register before changing the direction of a port pin to become an output. This ensures that the pin will not be driven momentarily with an old data value that happened to be in the port data register. PTxDDn Output Enable D Q PTxDn D Q Output Data 1 Port Read Data 0 Synchronizer Input Data BUSCLK Figure6-1. Parallel I/O Block Diagram 6.2 Pull-up, Slew Rate, and Drive Strength Associated with the parallel I/O ports is a set of registers located in the high page register space that operate independently of the parallel I/O registers. These registers are used to control pull-ups, slew rate, and drive strength for the pins. An internal pull-up device can be enabled for each port pin by setting the corresponding bit in the pull-up enable register (PTxPEn). The pull-up device is disabled if the pin is configured as an output by the parallel I/O control logic or any shared peripheral function regardless of the state of the corresponding pull-up enable register bit. The pull-up device is also disabled if the pin is controlled by an analog function. Slew rate control can be enabled for each port pin by setting the corresponding bit in the slew rate control register (PTxSEn). When enabled, slew control limits the rate at which an output can transition in order to reduce EMC emissions. Slew rate control has no effect on pins that are configured as inputs. An output pin can be selected to have high output drive strength by setting the corresponding bit in the drive strength select register (PTxDSn). When high drive is selected, a pin is capable of sourcing and sinking greater current. Even though every I/O pin can be selected as high drive, the user must ensure that the total current source and sink limits for the MCU are not exceeded. Drive strength selection is intended to affect the DC behavior of I/O pins. However, the AC behavior is also affected. High drive allows a pin to drive a greater load with the same switching speed as a low drive enabled pin into a smaller load. Because of this, the EMC emissions may be affected by enabling pins as high drive. MC9S08SH32 Series Data Sheet, Rev. 3 76 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.3 Ganged Output The MC9S08SH32 Series devices contain a feature that allows for up to eight port pins to be tied together externally to allow higher output current drive. The ganged output drive control register (GNGC) is a write-once register that is used to enabled the ganged output feature and select which port pins will be used as ganged outputs. The GNGEN bit in GNGC enables ganged output. The GNGPS[7:1] bits are used to select which pin will be part of the ganged output. When GNGEN is set, any pin that is enabled as a ganged output will be automatically configured as an output and follow the data, drive strength and slew rate control of PTC0. The ganged output drive pin mapping is shown in Table6-1. NOTE See the DC characteristics in the electrical section for maximum Port I/O currents allowed for this MCU. When a pin is enabled as ganged output, this feature will have priority over any digital module. An enabled analog function will have priority over the ganged output pin. See Table 2-1 for information on pin priority. Table6-1. Ganged Output Pin Enable GNGC Register Bits GNGPS7 GNGPS6 GNGPS5 GNGPS4 GNGPS3 GNGPS2 GNGPS1 GNGEN1 Port Pin 2 PTB5 PTB4 PTB3 PTB2 PTC3 PTC2 PTC1 PTC0 Data Direction Control Pin is automatically configured as output when pin is enabled as ganged output. Data Control PTCD0 in PTCD controls data value of output Drive Strength Control PTCDS0 in PTCDS controls drive strength of output Slew Rate Control PTCSE0 in PTCSE controls slew rate of output 1 Ganged output on PTC3-PTC0 not available on 16-pin packages, however PTC0 control registers are still used to control ganged output. 2 When GNGEN = 1, PTC0 is forced to an output, regardless of the value in PTCDD0 in PTCDD. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 77

Chapter6 Parallel Input/Output Control 6.4 Pin Interrupts Port A[3:0] and port B[3:0] pins can be configured as external interrupt inputs and as an external means of waking the MCU from stop3 or wait low-power modes. The block diagram for the pin interrupts is shown Figure 6-2. PTxACK BUSCLK 1 VDD RESET PTxIF PIxn 0S PTxPS0 DCLRQ SYNCHRONIZER CK PTxES0 PORT STOP STOP BYPASS PTx INTERRUPT FF INTERRUPT 1 REQUEST PIxn 0 S PTxPSn PTxMOD PTxIE PTxESn Figure6-2. Pin Interrupt Block Diagram Writing to the PTxPSn bits in the port interrupt pin enable register (PTxPS) independently enables or disables each port pin interrupt. Each port can be configured as edge sensitive or edge and level sensitive based on the PTxMOD bit in the port interrupt status and control register (PTxSC). Edge sensitivity can be software programmed to be either falling or rising; the level can be either low or high. The polarity of the edge or edge and level sensitivity is selected using the PTxESn bits in the port interrupt edge select register (PTxES). Synchronous logic is used to detect edges. Prior to detecting an edge, enabled pin interrupt inputs must be at the deasserted logic level. A falling edge is detected when an enabled port input signal is seen as a logic 1 (the deasserted level) during one bus cycle and then a logic 0 (the asserted level) during the next cycle. A rising edge is detected when the input signal is seen as a logic 0 during one bus cycle and then a logic 1 during the next cycle. 6.4.1 Edge-Only Sensitivity A valid edge on an enabled pin interrupt sets PTxIF in PTxSC. If PTxIE in PTxSC is set, an interrupt request is presented to the CPU. To clear PTxIF, write a 1 to PTxACK in PTxSC. NOTE If a pin is enabled for interrupt on edge-sensitive only, a falling (or rising) edge on the pin does not latch an interrupt request if another pin interrupt is already asserted. To prevent losing an interrupt request on one pin because another pin is asserted, software can disable the asserted pin interrupt while having the unasserted pin interrupt enabled. The asserted status of a pin is reflected by its associated I/O general purpose data register. MC9S08SH32 Series Data Sheet, Rev. 3 78 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.4.2 Edge and Level Sensitivity A valid edge or level on an enabled pin interrupt sets PTxIF in PTxSC. If PTxIE in PTxSC is set, an interrupt request is presented to the CPU. To clear PTxIF, write a 1 to PTxACK in PTxSC provided all enabled pin interrupt inputs are at their de-asserted levels. PTxIF remains set if any enabled pin interrupt is asserted while attempting to clear by writing a 1 to PTxACK. 6.4.3 Pull-up/Pull-down Resistors The pin interrupts can be configured to use an internal pull-up/pull-down resistor using the associated I/O port pull-up enable register. If an internal resistor is enabled, the PTxES register is used to select whether the resistor is a pull-up (PTxESn = 0) or a pull-down (PTxESn = 1). 6.4.4 Pin Interrupt Initialization When a pin interrupt is first enabled, it is possible to get a false interrupt flag. To prevent a false interrupt request during pin interrupt initialization, the user should do the following: 1. Mask interrupts by clearing PTxIE in PTxSC. 2. Select the pin polarity by setting the appropriate PTxESn bits in PTxES. 3. If using internal pull-up/pull-down device, configure the associated pull enable bits in PTxPE. 4. Enable the interrupt pins by setting the appropriate PTxPSn bits in PTxPS. 5. Write to PTxACK in PTxSC to clear any false interrupts. 6. Set PTxIE in PTxSC to enable interrupts. 6.5 Pin Behavior in Stop Modes Pin behavior following execution of a STOP instruction depends on the stop mode that is entered. An explanation of pin behavior for the various stop modes follows: • Stop2 mode is a partial power-down mode, whereby I/O latches are maintained in their state as before the STOP instruction was executed. CPU register status and the state of I/O registers should be saved in RAM before the STOP instruction is executed to place the MCU in stop2 mode. Upon recovery from stop2 mode, before accessing any I/O, the user should examine the state of the PPDF bit in the SPMSC2 register. If the PPDF bit is 0, I/O must be initialized as if a power on reset had occurred. If the PPDF bit is 1, I/O data previously stored in RAM, before the STOP instruction was executed, peripherals may require being initialized and restored to their pre-stop condition. The user must then write a 1 to the PPDACK bit in the SPMSC2 register. Access to I/O is now permitted again in the user application program. • In stop3 mode, all I/O is maintained because internal logic circuity stays powered up. Upon recovery, normal I/O function is available to the user. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 79

Chapter6 Parallel Input/Output Control 6.6 Parallel I/O and Pin Control Registers This section provides information about the registers associated with the parallel I/O ports. The data and data direction registers are located in page zero of the memory map. The pull up, slew rate, drive strength, and interrupt control registers are located in the high page section of the memory map. Refer to tables in Chapter 4, “Memory,” for the absolute address assignments for all parallel I/O and their pin control registers. This section refers to registers and control bits only by their names. A Freescale Semiconductor-provided equate or header file normally is used to translate these names into the appropriate absolute addresses. MC9S08SH32 Series Data Sheet, Rev. 3 80 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.1 Port A Registers Port A is controlled by the registers listed below. The pins PTA4 and PTA5 are unique. PTA4 is output-only, so the control bits for the input function will not have any effect on this pin. PTA5, when configured as an output, is open drain. NOTE This PTA5 pin does not contain a clamp diode to V and should not be DD driven above V . DD When the internal pullup device is enabled on PTA5 when used as an input or open drain output the voltage measured on PTA5 will not be pulled to V . The internal gates connected to this pin are pulled to V . If the PTA5 DD DD pin is required to drive to a V level an external pullup should be used. DD 6.6.1.1 Port A Data Register (PTAD) 7 6 5 4 3 2 1 0 R PTAD7 PTAD6 PTAD5 PTAD41 PTAD3 PTAD2 PTAD1 PTAD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-3. Port A Data Register (PTAD) 1 Reads of bit PTAD4 always return the contents of PTAD4, regardless of the value stored in bit PTADD4. Table6-2. PTAD Register Field Descriptions Field Description Port A Data Register Bits — For port A pins that are inputs, reads return the logic level on the pin. For port A 7:0 pins that are configured as outputs, reads return the last value written to this register. PTAD[7:0] Writes are latched into all bits of this register. For port A pins that are configured as outputs, the logic level is driven out the corresponding MCU pin. Reset forces PTAD to all 0s, but these 0s are not driven out the corresponding pins because reset also configures all port pins as high-impedance inputs with pull-ups/pull-downs disabled. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 81

Chapter6 Parallel Input/Output Control 6.6.1.2 Port A Data Direction Register (PTADD) 7 6 5 4 3 2 1 0 R PTADD7 PTADD6 PTADD5 PTADD41 PTADD3 PTADD2 PTADD1 PTADD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-4. Port A Data Direction Register (PTADD) 1 PTADD4 has no effect on the output-only PTA4 pin. Table6-3. PTADD Register Field Descriptions Field Description Data Direction for Port A Bits — These read/write bits control the direction of port A pins and what is read for 7:0 PTAD reads. PTADD[7:0] 0 Input (output driver disabled) and reads return the pin value. 1 Output driver enabled for port A bit n and PTAD reads return the contents of PTADn. 6.6.1.3 Port A Pull Enable Register (PTAPE) 7 6 5 4 3 2 1 0 R PTAPE7 PTAPE6 PTAPE51 PTAPE42 PTAPE3 PTAPE2 PTAPE1 PTAPE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-5. Internal Pull Enable for Port A Register (PTAPE) 1 PTAPE5 can be used to pullup PTA5 when configured as open drain output pin, however pullup will not pull pin all the way to V . An external pullup should be used if applications requires PTA5 to be driven to V . DD DD 2 PTAPE4 has no effect on the output-only PTA4 pin. Table6-4. PTAPE Register Field Descriptions Field Description Internal Pull Enable for Port A Bits — Each of these control bits determines if the internal pull-up or pull-down 7:0 device is enabled for the associated PTA pin. For port A pins (except for PTA5) that are configured as outputs, PTAPE[7:0] these bits have no effect and the internal pull devices are disabled. 0 Internal pull-up/pull-down device disabled for port A bit n. 1 Internal pull-up/pull-down device enabled for port A bit n. NOTE Pull-down devices only apply when using pin interrupt functions, when corresponding edge select and pin select functions are configured to detect rising edges. MC9S08SH32 Series Data Sheet, Rev. 3 82 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.1.4 Port A Slew Rate Enable Register (PTASE) 7 6 5 4 3 2 1 0 R PTASE7 PTASE6 R PTASE4 PTASE3 PTASE2 PTASE1 PTASE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-6. Slew Rate Enable for Port A Register (PTASE) Table6-5. PTASE Register Field Descriptions Field Description Output Slew Rate Enable for Port A Bits — Each of these control bits determines if the output slew rate control 7:6,4:0 is enabled for the associated PTA pin. For port A pins that are configured as inputs, these bits have no effect. PTASE 0 Output slew rate control disabled for port A bit n. [7:6, 4:0] 1 Output slew rate control enabled for port A bit n. 5 Reserved Bits — These bits are unused on this MCU, writes have no affect and could read as 1s or 0s. Reserved 6.6.1.5 Port A Drive Strength Selection Register (PTADS) 7 6 5 4 3 2 1 0 R PTADS7 PTADS6 R PTADS4 PTADS3 PTADS2 PTADS1 PTADS0 W Reset: 0 0 0 0 0 0 0 0 Figure6-7. Drive Strength Selection for Port A Register (PTADS) Table6-6. PTADS Register Field Descriptions Field Description Output Drive Strength Selection for Port A Bits — Each of these control bits selects between low and high 7:6, 4:0 output drive for the associated PTA pin. For port A pins that are configured as inputs, these bits have no effect. PTADS 0 Low output drive strength selected for port A bit n. [7:6, 4:0] 1 High output drive strength selected for port A bit n. 5 Reserved Bits — These bits are unused on this MCU, writes have no affect and could read as 1s or 0s. Reserved MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 83

Chapter6 Parallel Input/Output Control 6.6.1.6 Port A Interrupt Status and Control Register (PTASC) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTAIF 0 PTAIE PTAMOD W PTAACK Reset: 0 0 0 0 0 0 0 0 Figure6-8. Port A Interrupt Status and Control Register (PTASC) Table6-7. PTASC Register Field Descriptions Field Description 3 Port A Interrupt Flag — PTAIF indicates when a port A interrupt is detected. Writes have no effect on PTAIF. PTAIF 0 No port A interrupt detected. 1 Port A interrupt detected. 2 Port A Interrupt Acknowledge — Writing a 1 to PTAACK is part of the flag clearing mechanism. PTAACK PTAACK always reads as 0. 1 Port A Interrupt Enable — PTAIE determines whether a port A interrupt is enabled. PTAIE 0 Port A interrupt request not enabled. 1 Port A interrupt request enabled. 0 Port A Detection Mode — PTAMOD (along with the PTAES bits) controls the detection mode of the port A PTAMOD interrupt pins. 0 Port A pins detect edges only. 1 Port A pins detect both edges and levels. 6.6.1.7 Port A Interrupt Pin Select Register (PTAPS) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTAPS3 PTAPS2 PTAPS1 PTAPS0 W Reset: 0 0 0 0 0 0 0 0 Figure6-9. Port A Interrupt Pin Select Register (PTAPS) Table6-8. PTAPS Register Field Descriptions Field Description 3:0 Port A Interrupt Pin Selects — Each of the PTAPSn bits enable the corresponding port A interrupt pin. PTAPS[3:0] 0 Pin not enabled as interrupt. 1 Pin enabled as interrupt. MC9S08SH32 Series Data Sheet, Rev. 3 84 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.1.8 Port A Interrupt Edge Select Register (PTAES) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTAES3 PTAES2 PTAES1 PTAES0 W Reset: 0 0 0 0 0 0 0 0 Figure6-10. Port A Edge Select Register (PTAES) Table6-9. PTAES Register Field Descriptions Field Description 3:0 Port A Edge Selects — Each of the PTAESn bits serves a dual purpose by selecting the polarity of the active PTAES[3:0] interrupt edge as well as selecting a pull-up or pull-down device if enabled. 0 A pull-up device is connected to the associated pin and detects falling edge/low level for interrupt generation. 1 A pull-down device is connected to the associated pin and detects rising edge/high level for interrupt generation. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 85

Chapter6 Parallel Input/Output Control 6.6.2 Port B Registers Port B is controlled by the registers listed below. 6.6.2.1 Port B Data Register (PTBD) 7 6 5 4 3 2 1 0 R PTBD7 PTBD6 PTBD5 PTBD4 PTBD3 PTBD2 PTBD1 PTBD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-11. Port B Data Register (PTBD) Table6-10. PTBD Register Field Descriptions Field Description 7:0 Port B Data Register Bits — For port B pins that are inputs, reads return the logic level on the pin. For port B PTBD[7:0] pins that are configured as outputs, reads return the last value written to this register. Writes are latched into all bits of this register. For port B pins that are configured as outputs, the logic level is driven out the corresponding MCU pin. Reset forces PTBD to all 0s, but these 0s are not driven out the corresponding pins because reset also configures all port pins as high-impedance inputs with pull-ups/pull-downs disabled. 6.6.2.2 Port B Data Direction Register (PTBDD) 7 6 5 4 3 2 1 0 R PTBDD7 PTBDD6 PTBDD5 PTBDD4 PTBDD3 PTBDD2 PTBDD1 PTBDD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-12. Port B Data Direction Register (PTBDD) Table6-11. PTBDD Register Field Descriptions Field Description 7:0 Data Direction for Port B Bits — These read/write bits control the direction of port B pins and what is read for PTBDD[7:0] PTBD reads. 0 Input (output driver disabled) and reads return the pin value. 1 Output driver enabled for port B bit n and PTBD reads return the contents of PTBDn. MC9S08SH32 Series Data Sheet, Rev. 3 86 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.2.3 Port B Pull Enable Register (PTBPE) 7 6 5 4 3 2 1 0 R PTBPE7 PTBPE6 PTBPE5 PTBPE4 PTBPE3 PTBPE2 PTBPE1 PTBPE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-13. Internal Pull Enable for Port B Register (PTBPE) Table6-12. PTBPE Register Field Descriptions Field Description 7:0 Internal Pull Enable for Port B Bits — Each of these control bits determines if the internal pull-up or pull-down PTBPE[7:0] device is enabled for the associated PTB pin. For port B pins that are configured as outputs, these bits have no effect and the internal pull devices are disabled. 0 Internal pull-up/pull-down device disabled for port B bit n. 1 Internal pull-up/pull-down device enabled for port B bit n. NOTE Pull-down devices only apply when using pin interrupt functions, when corresponding edge select and pin select functions are configured to detect rising edges. 6.6.2.4 Port B Slew Rate Enable Register (PTBSE) 7 6 5 4 3 2 1 0 R PTBSE7 PTBSE6 PTBSE5 PTBSE4 PTBSE3 PTBSE2 PTBSE1 PTBSE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-14. Slew Rate Enable for Port B Register (PTBSE) Table6-13. PTBSE Register Field Descriptions Field Description 7:0 Output Slew Rate Enable for Port B Bits — Each of these control bits determines if the output slew rate control PTBSE[7:0] is enabled for the associated PTB pin. For port B pins that are configured as inputs, these bits have no effect. 0 Output slew rate control disabled for port B bit n. 1 Output slew rate control enabled for port B bit n. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 87

Chapter6 Parallel Input/Output Control 6.6.2.5 Port B Drive Strength Selection Register (PTBDS) 7 6 5 4 3 2 1 0 R PTBDS7 PTBDS6 PTBDS5 PTBDS4 PTBDS3 PTBDS2 PTBDS1 PTBDS0 W Reset: 0 0 0 0 0 0 0 0 Figure6-15. Drive Strength Selection for Port B Register (PTBDS) Table6-14. PTBDS Register Field Descriptions Field Description 7:0 Output Drive Strength Selection for Port B Bits — Each of these control bits selects between low and high PTBDS[7:0] output drive for the associated PTB pin. For port B pins that are configured as inputs, these bits have no effect. 0 Low output drive strength selected for port B bit n. 1 High output drive strength selected for port B bit n. 6.6.2.6 Port B Interrupt Status and Control Register (PTBSC) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTBIF 0 PTBIE PTBMOD W PTBACK Reset: 0 0 0 0 0 0 0 0 Figure6-16. Port B Interrupt Status and Control Register (PTBSC) Table6-15. PTBSC Register Field Descriptions Field Description 3 Port B Interrupt Flag — PTBIF indicates when a Port B interrupt is detected. Writes have no effect on PTBIF. PTBIF 0 No Port B interrupt detected. 1 Port B interrupt detected. 2 Port B Interrupt Acknowledge — Writing a 1 to PTBACK is part of the flag clearing mechanism. PTBACK PTBACK always reads as 0. 1 Port B Interrupt Enable — PTBIE determines whether a port B interrupt is enabled. PTBIE 0 Port B interrupt request not enabled. 1 Port B interrupt request enabled. 0 Port B Detection Mode — PTBMOD (along with the PTBES bits) controls the detection mode of the port B PTBMOD interrupt pins. 0 Port B pins detect edges only. 1 Port B pins detect both edges and levels. MC9S08SH32 Series Data Sheet, Rev. 3 88 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.2.7 Port B Interrupt Pin Select Register (PTBPS) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTBPS3 PTBPS2 PTBPS1 PTBPS0 W Reset: 0 0 0 0 0 0 0 0 Figure6-17. Port B Interrupt Pin Select Register (PTBPS) Table6-16. PTBPS Register Field Descriptions Field Description 3:0 Port B Interrupt Pin Selects — Each of the PTBPSn bits enable the corresponding port B interrupt pin. PTBPS[3:0] 0 Pin not enabled as interrupt. 1 Pin enabled as interrupt. 6.6.2.8 Port B Interrupt Edge Select Register (PTBES) 7 6 5 4 3 2 1 0 R 0 0 0 0 PTBES3 PTBES2 PTBES1 PTBES0 W Reset: 0 0 0 0 0 0 0 0 Figure6-18. Port B Edge Select Register (PTBES) Table6-17. PTBES Register Field Descriptions Field Description 3:0 Port B Edge Selects — Each of the PTBESn bits serves a dual purpose by selecting the polarity of the active PTBES[3:0] interrupt edge as well as selecting a pull-up or pull-down device if enabled. 0 A pull-up device is connected to the associated pin and detects falling edge/low level for interrupt generation. 1 A pull-down device is connected to the associated pin and detects rising edge/high level for interrupt generation. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 89

Chapter6 Parallel Input/Output Control 6.6.3 Port C Registers Port C is controlled by the registers listed below. 6.6.3.1 Port C Data Register (PTCD) 7 6 5 4 3 2 1 0 R PTCD7 PTCD6 PTCD5 PTCD4 PTCD3 PTCD2 PTCD1 PTCD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-19. Port C Data Register (PTCD) Table6-18. PTCD Register Field Descriptions Field Description 7:0 Port C Data Register Bits — For port C pins that are inputs, reads return the logic level on the pin. For port C PTCD[7:0] pins that are configured as outputs, reads return the last value written to this register. Writes are latched into all bits of this register. For port C pins that are configured as outputs, the logic level is driven out the corresponding MCU pin. Reset forces PTCD to all 0s, but these 0s are not driven out the corresponding pins because reset also configures all port pins as high-impedance inputs with pull-ups disabled. 6.6.3.2 Port C Data Direction Register (PTCDD) 7 6 5 4 3 2 1 0 R PTCDD7 PTCDD6 PTCDD5 PTCDD4 PTCDD3 PTCDD2 PTCDD1 PTCDD0 W Reset: 0 0 0 0 0 0 0 0 Figure6-20. Port C Data Direction Register (PTCDD) Table6-19. PTCDD Register Field Descriptions Field Description 7:0 Data Direction for Port C Bits — These read/write bits control the direction of port C pins and what is read for PTCDD[7:0] PTCD reads. 0 Input (output driver disabled) and reads return the pin value. 1 Output driver enabled for port C bit n and PTCD reads return the contents of PTCDn. MC9S08SH32 Series Data Sheet, Rev. 3 90 Freescale Semiconductor

Chapter6 Parallel Input/Output Control 6.6.3.3 Port C Pull Enable Register (PTCPE) 7 6 5 4 3 2 1 0 R PTCPE7 PTCPE6 PTCPE5 PTCPE4 PTCPE3 PTCPE2 PTCPE1 PTCPE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-21. Internal Pull Enable for Port C Register (PTCPE) Table6-20. PTCPE Register Field Descriptions Field Description 7:0 Internal Pull Enable for Port C Bits — Each of these control bits determines if the internal pull-up device is PTCPE[7:0] enabled for the associated PTC pin. For port C pins that are configured as outputs, these bits have no effect and the internal pull devices are disabled. 0 Internal pull-up device disabled for port C bit n. 1 Internal pull-up device enabled for port C bit n. 6.6.3.4 Port C Slew Rate Enable Register (PTCSE) 7 6 5 4 3 2 1 0 R PTCSE7 PTCSE6 PTCSE5 PTCSE4 PTCSE3 PTCSE2 PTCSE1 PTCSE0 W Reset: 0 0 0 0 0 0 0 0 Figure6-22. Slew Rate Enable for Port C Register (PTCSE) Table6-21. PTCSE Register Field Descriptions Field Description 7:0 Output Slew Rate Enable for Port C Bits — Each of these control bits determines if the output slew rate control PTCSE[7:0] is enabled for the associated PTC pin. For port C pins that are configured as inputs, these bits have no effect. 0 Output slew rate control disabled for port C bit n. 1 Output slew rate control enabled for port C bit n. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 91

Chapter6 Parallel Input/Output Control 6.6.3.5 Port C Drive Strength Selection Register (PTCDS) 7 6 5 4 3 2 1 0 R PTCDS7 PTCDS6 PTCDS5 PTCDS4 PTCDS3 PTCDS2 PTCDS1 PTCDS0 W Reset: 0 0 0 0 0 0 0 0 Figure6-23. Drive Strength Selection for Port C Register (PTCDS) Table6-22. PTCDS Register Field Descriptions Field Description 7:0 Output Drive Strength Selection for Port C Bits — Each of these control bits selects between low and high PTCDS[7:0] output drive for the associated PTC pin. For port C pins that are configured as inputs, these bits have no effect. 0 Low output drive strength selected for port C bit n. 1 High output drive strength selected for port C bit n. 6.6.3.6 Ganged Output Drive Control Register (GNGC) 7 6 5 4 3 2 1 0 R GNGPS7 GNGPS6 GNGPS5 GNGPS4 GNGPS3 GNGPS2 GNGPS1 GNGEN W Reset: 0 0 0 0 0 0 0 0 Figure6-24. Ganged Output Drive Control Register (GNGC) Table6-23. GNGC Register Field Descriptions Field Description 7:1 Ganged Output Pin Select Bits— These write-once control bits selects whether the associated pin (see GNGP[7:1] Table6-1for pins available) is enabled for ganged output. When GNGEN = 1, all enabled ganged output pins will be controlled by the data, drive strength and slew rate settings for PTCO. 0 Associated pin is not part of the ganged output drive. 1 Associated pin is part of the ganged output drive. Requires GNGEN = 1. 0 Ganged Output Drive Enable Bit— This write-once control bit selects whether the ganged output drive feature GNGEN is enabled. 0 Ganged output drive disabled. 1 Ganged output drive enabled. PTC0 forced to output regardless of the value of PTCDD0 in PTCDD. MC9S08SH32 Series Data Sheet, Rev. 3 92 Freescale Semiconductor

Chapter 7 Central Processor Unit (S08CPUV3) 7.1 Introduction This section provides summary information about the registers, addressing modes, and instruction set of the CPU of the HCS08 Family. For a more detailed discussion, refer to the HCS08 Family Reference Manual, volume 1, Freescale Semiconductor document order number HCS08RMV1/D. The HCS08 CPU is fully source- and object-code-compatible with the M68HC08 CPU. Several instructions and enhanced addressing modes were added to improve C compiler efficiency and to support a new background debug system which replaces the monitor mode of earlier M68HC08 microcontrollers (MCU). 7.1.1 Features Features of the HCS08 CPU include: • Object code fully upward-compatible with M68HC05 and M68HC08 Families • All registers and memory are mapped to a single 64-Kbyte address space • 16-bit stack pointer (any size stack anywhere in 64-Kbyte address space) • 16-bit index register (H:X) with powerful indexed addressing modes • 8-bit accumulator (A) • Many instructions treat X as a second general-purpose 8-bit register • Seven addressing modes: — Inherent — Operands in internal registers — Relative — 8-bit signed offset to branch destination — Immediate — Operand in next object code byte(s) — Direct — Operand in memory at 0x0000–0x00FF — Extended — Operand anywhere in 64-Kbyte address space — Indexed relative to H:X — Five submodes including auto increment — Indexed relative to SP — Improves C efficiency dramatically • Memory-to-memory data move instructions with four address mode combinations • Overflow, half-carry, negative, zero, and carry condition codes support conditional branching on the results of signed, unsigned, and binary-coded decimal (BCD) operations • Efficient bit manipulation instructions • Fast 8-bit by 8-bit multiply and 16-bit by 8-bit divide instructions • STOP and WAIT instructions to invoke low-power operating modes MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 93

Chapter7 Central Processor Unit (S08CPUV3) 7.2 Programmer’s Model and CPU Registers Figure 7-1 shows the five CPU registers. CPU registers are not part of the memory map. 7 0 ACCUMULATOR A 16-BIT INDEX REGISTER H:X H INDEX REGISTER (HIGH) INDEX REGISTER (LOW) X 15 8 7 0 STACK POINTER SP 15 0 PROGRAM COUNTER PC 7 0 CONDITION CODE REGISTER V 1 1 H I N Z C CCR CARRY ZERO NEGATIVE INTERRUPT MASK HALF-CARRY (FROM BIT 3) TWO’S COMPLEMENT OVERFLOW Figure7-1. CPU Registers 7.2.1 Accumulator (A) The A accumulator is a general-purpose 8-bit register. One operand input to the arithmetic logic unit (ALU) is connected to the accumulator and the ALU results are often stored into the A accumulator after arithmetic and logical operations. The accumulator can be loaded from memory using various addressing modes to specify the address where the loaded data comes from, or the contents of A can be stored to memory using various addressing modes to specify the address where data from A will be stored. Reset has no effect on the contents of the A accumulator. 7.2.2 Index Register (H:X) This 16-bit register is actually two separate 8-bit registers (H and X), which often work together as a 16-bit address pointer where H holds the upper byte of an address and X holds the lower byte of the address. All indexed addressing mode instructions use the full 16-bit value in H:X as an index reference pointer; however, for compatibility with the earlier M68HC05 Family, some instructions operate only on the low-order 8-bit half (X). Many instructions treat X as a second general-purpose 8-bit register that can be used to hold 8-bit data values. X can be cleared, incremented, decremented, complemented, negated, shifted, or rotated. Transfer instructions allow data to be transferred from A or transferred to A where arithmetic and logical operations can then be performed. For compatibility with the earlier M68HC05 Family, H is forced to 0x00 during reset. Reset has no effect on the contents of X. MC9S08SH32 Series Data Sheet, Rev. 3 94 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) 7.2.3 Stack Pointer (SP) This 16-bit address pointer register points at the next available location on the automatic last-in-first-out (LIFO) stack. The stack may be located anywhere in the 64-Kbyte address space that has RAM and can be any size up to the amount of available RAM. The stack is used to automatically save the return address for subroutine calls, the return address and CPU registers during interrupts, and for local variables. The AIS (add immediate to stack pointer) instruction adds an 8-bit signed immediate value to SP. This is most often used to allocate or deallocate space for local variables on the stack. SP is forced to 0x00FF at reset for compatibility with the earlier M68HC05 Family. HCS08 programs normally change the value in SP to the address of the last location (highest address) in on-chip RAM during reset initialization to free up direct page RAM (from the end of the on-chip registers to 0x00FF). The RSP (reset stack pointer) instruction was included for compatibility with the M68HC05 Family and is seldom used in new HCS08 programs because it only affects the low-order half of the stack pointer. 7.2.4 Program Counter (PC) The program counter is a 16-bit register that contains the address of the next instruction or operand to be fetched. During normal program execution, the program counter automatically increments to the next sequential memory location every time an instruction or operand is fetched. Jump, branch, interrupt, and return operations load the program counter with an address other than that of the next sequential location. This is called a change-of-flow. During reset, the program counter is loaded with the reset vector that is located at 0xFFFE and 0xFFFF. The vector stored there is the address of the first instruction that will be executed after exiting the reset state. 7.2.5 Condition Code Register (CCR) The 8-bit condition code register contains the interrupt mask (I) and five flags that indicate the results of the instruction just executed. Bits 6 and 5 are set permanently to 1. The following paragraphs describe the functions of the condition code bits in general terms. For a more detailed explanation of how each instruction sets the CCR bits, refer to the HCS08 Family Reference Manual, volume 1, Freescale Semiconductor document order number HCS08RMv1. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 95

Chapter7 Central Processor Unit (S08CPUV3) 7 0 CONDITION CODE REGISTER V 1 1 H I N Z C CCR CARRY ZERO NEGATIVE INTERRUPT MASK HALF-CARRY (FROM BIT 3) TWO’S COMPLEMENT OVERFLOW Figure7-2. Condition Code Register Table7-1. CCR Register Field Descriptions Field Description 7 Two’s Complement Overflow Flag — The CPU sets the overflow flag when a two’s complement overflow occurs. V The signed branch instructions BGT, BGE, BLE, and BLT use the overflow flag. 0 No overflow 1 Overflow 4 Half-Carry Flag — The CPU sets the half-carry flag when a carry occurs between accumulator bits 3 and 4 during H an add-without-carry (ADD) or add-with-carry (ADC) operation. The half-carry flag is required for binary-coded decimal (BCD) arithmetic operations. The DAA instruction uses the states of the H and C condition code bits to automatically add a correction value to the result from a previous ADD or ADC on BCD operands to correct the result to a valid BCD value. 0 No carry between bits 3 and 4 1 Carry between bits 3 and 4 3 Interrupt Mask Bit — When the interrupt mask is set, all maskable CPU interrupts are disabled. CPU interrupts I are enabled when the interrupt mask is cleared. When a CPU interrupt occurs, the interrupt mask is set automatically after the CPU registers are saved on the stack, but before the first instruction of the interrupt service routine is executed. Interrupts are not recognized at the instruction boundary after any instruction that clears I (CLI or TAP). This ensures that the next instruction after a CLI or TAP will always be executed without the possibility of an intervening interrupt, provided I was set. 0 Interrupts enabled 1 Interrupts disabled 2 Negative Flag — The CPU sets the negative flag when an arithmetic operation, logic operation, or data N manipulation produces a negative result, setting bit7 of the result. Simply loading or storing an 8-bit or 16-bit value causes N to be set if the most significant bit of the loaded or stored value was 1. 0 Non-negative result 1 Negative result 1 Zero Flag — The CPU sets the zero flag when an arithmetic operation, logic operation, or data manipulation Z produces a result of 0x00 or 0x0000. Simply loading or storing an 8-bit or 16-bit value causes Z to be set if the loaded or stored value was all 0s. 0 Non-zero result 1 Zero result 0 Carry/Borrow Flag — The CPU sets the carry/borrow flag when an addition operation produces a carry out of bit C 7 of the accumulator or when a subtraction operation requires a borrow. Some instructions — such as bit test and branch, shift, and rotate — also clear or set the carry/borrow flag. 0 No carry out of bit 7 1 Carry out of bit 7 MC9S08SH32 Series Data Sheet, Rev. 3 96 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) 7.3 Addressing Modes Addressing modes define the way the CPU accesses operands and data. In the HCS08, all memory, status and control registers, and input/output (I/O) ports share a single 64-Kbyte linear address space so a 16-bit binary address can uniquely identify any memory location. This arrangement means that the same instructions that access variables in RAM can also be used to access I/O and control registers or nonvolatile program space. Some instructions use more than one addressing mode. For instance, move instructions use one addressing mode to specify the source operand and a second addressing mode to specify the destination address. Instructions such as BRCLR, BRSET, CBEQ, and DBNZ use one addressing mode to specify the location of an operand for a test and then use relative addressing mode to specify the branch destination address when the tested condition is true. For BRCLR, BRSET, CBEQ, and DBNZ, the addressing mode listed in the instruction set tables is the addressing mode needed to access the operand to be tested, and relative addressing mode is implied for the branch destination. 7.3.1 Inherent Addressing Mode (INH) In this addressing mode, operands needed to complete the instruction (if any) are located within CPU registers so the CPU does not need to access memory to get any operands. 7.3.2 Relative Addressing Mode (REL) Relative addressing mode is used to specify the destination location for branch instructions. A signed 8-bit offset value is located in the memory location immediately following the opcode. During execution, if the branch condition is true, the signed offset is sign-extended to a 16-bit value and is added to the current contents of the program counter, which causes program execution to continue at the branch destination address. 7.3.3 Immediate Addressing Mode (IMM) In immediate addressing mode, the operand needed to complete the instruction is included in the object code immediately following the instruction opcode in memory. In the case of a 16-bit immediate operand, the high-order byte is located in the next memory location after the opcode, and the low-order byte is located in the next memory location after that. 7.3.4 Direct Addressing Mode (DIR) In direct addressing mode, the instruction includes the low-order eight bits of an address in the direct page (0x0000–0x00FF). During execution a 16-bit address is formed by concatenating an implied 0x00 for the high-order half of the address and the direct address from the instruction to get the 16-bit address where the desired operand is located. This is faster and more memory efficient than specifying a complete 16-bit address for the operand. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 97

Chapter7 Central Processor Unit (S08CPUV3) 7.3.5 Extended Addressing Mode (EXT) In extended addressing mode, the full 16-bit address of the operand is located in the next two bytes of program memory after the opcode (high byte first). 7.3.6 Indexed Addressing Mode Indexed addressing mode has seven variations including five that use the 16-bit H:X index register pair and two that use the stack pointer as the base reference. 7.3.6.1 Indexed, No Offset (IX) This variation of indexed addressing uses the 16-bit value in the H:X index register pair as the address of the operand needed to complete the instruction. 7.3.6.2 Indexed, No Offset with Post Increment (IX+) This variation of indexed addressing uses the 16-bit value in the H:X index register pair as the address of the operand needed to complete the instruction. The index register pair is then incremented (H:X =H:X+ 0x0001) after the operand has been fetched. This addressing mode is only used for MOV and CBEQ instructions. 7.3.6.3 Indexed, 8-Bit Offset (IX1) This variation of indexed addressing uses the 16-bit value in the H:X index register pair plus an unsigned 8-bit offset included in the instruction as the address of the operand needed to complete the instruction. 7.3.6.4 Indexed, 8-Bit Offset with Post Increment (IX1+) This variation of indexed addressing uses the 16-bit value in the H:X index register pair plus an unsigned 8-bit offset included in the instruction as the address of the operand needed to complete the instruction. The index register pair is then incremented (H:X= H:X+ 0x0001) after the operand has been fetched. This addressing mode is used only for the CBEQ instruction. 7.3.6.5 Indexed, 16-Bit Offset (IX2) This variation of indexed addressing uses the 16-bit value in the H:X index register pair plus a 16-bit offset included in the instruction as the address of the operand needed to complete the instruction. 7.3.6.6 SP-Relative, 8-Bit Offset (SP1) This variation of indexed addressing uses the 16-bit value in the stack pointer (SP) plus an unsigned 8-bit offset included in the instruction as the address of the operand needed to complete the instruction. MC9S08SH32 Series Data Sheet, Rev. 3 98 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) 7.3.6.7 SP-Relative, 16-Bit Offset (SP2) This variation of indexed addressing uses the 16-bit value in the stack pointer (SP) plus a 16-bit offset included in the instruction as the address of the operand needed to complete the instruction. 7.4 Special Operations The CPU performs a few special operations that are similar to instructions but do not have opcodes like other CPU instructions. In addition, a few instructions such as STOP and WAIT directly affect other MCU circuitry. This section provides additional information about these operations. 7.4.1 Reset Sequence Reset can be caused by a power-on-reset (POR) event, internal conditions such as the COP (computer operating properly) watchdog, or by assertion of an external active-low reset pin. When a reset event occurs, the CPU immediately stops whatever it is doing (the MCU does not wait for an instruction boundary before responding to a reset event). For a more detailed discussion about how the MCU recognizes resets and determines the source, refer to the Resets, Interrupts, and System Configuration chapter. The reset event is considered concluded when the sequence to determine whether the reset came from an internal source is done and when the reset pin is no longer asserted. At the conclusion of a reset event, the CPU performs a 6-cycle sequence to fetch the reset vector from 0xFFFE and 0xFFFF and to fill the instruction queue in preparation for execution of the first program instruction. 7.4.2 Interrupt Sequence When an interrupt is requested, the CPU completes the current instruction before responding to the interrupt. At this point, the program counter is pointing at the start of the next instruction, which is where the CPU should return after servicing the interrupt. The CPU responds to an interrupt by performing the same sequence of operations as for a software interrupt (SWI) instruction, except the address used for the vector fetch is determined by the highest priority interrupt that is pending when the interrupt sequence started. The CPU sequence for an interrupt is: 1. Store the contents of PCL, PCH, X, A, and CCR on the stack, in that order. 2. Set the I bit in the CCR. 3. Fetch the high-order half of the interrupt vector. 4. Fetch the low-order half of the interrupt vector. 5. Delay for one free bus cycle. 6. Fetch three bytes of program information starting at the address indicated by the interrupt vector to fill the instruction queue in preparation for execution of the first instruction in the interrupt service routine. After the CCR contents are pushed onto the stack, the I bit in the CCR is set to prevent other interrupts while in the interrupt service routine. Although it is possible to clear the I bit with an instruction in the MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 99

Chapter7 Central Processor Unit (S08CPUV3) interrupt service routine, this would allow nesting of interrupts (which is not recommended because it leads to programs that are difficult to debug and maintain). For compatibility with the earlier M68HC05 MCUs, the high-order half of the H:X index register pair (H) is not saved on the stack as part of the interrupt sequence. The user must use a PSHH instruction at the beginning of the service routine to save H and then use a PULH instruction just before the RTI that ends the interrupt service routine. It is not necessary to save H if you are certain that the interrupt service routine does not use any instructions or auto-increment addressing modes that might change the value of H. The software interrupt (SWI) instruction is like a hardware interrupt except that it is not masked by the global I bit in the CCR and it is associated with an instruction opcode within the program so it is not asynchronous to program execution. 7.4.3 Wait Mode Operation The WAIT instruction enables interrupts by clearing the I bit in the CCR. It then halts the clocks to the CPU to reduce overall power consumption while the CPU is waiting for the interrupt or reset event that will wake the CPU from wait mode. When an interrupt or reset event occurs, the CPU clocks will resume and the interrupt or reset event will be processed normally. If a serial BACKGROUND command is issued to the MCU through the background debug interface while the CPU is in wait mode, CPU clocks will resume and the CPU will enter active background mode where other serial background commands can be processed. This ensures that a host development system can still gain access to a target MCU even if it is in wait mode. 7.4.4 Stop Mode Operation Usually, all system clocks, including the crystal oscillator (when used), are halted during stop mode to minimize power consumption. In such systems, external circuitry is needed to control the time spent in stop mode and to issue a signal to wake up the target MCU when it is time to resume processing. Unlike the earlier M68HC05 and M68HC08 MCUs, the HCS08 can be configured to keep a minimum set of clocks running in stop mode. This optionally allows an internal periodic signal to wake the target MCU fromstop mode. When a host debug system is connected to the background debug pin (BKGD) and the ENBDM control bit has been set by a serial command through the background interface (or because the MCU was reset into active background mode), the oscillator is forced to remain active when the MCU enters stop mode. In this case, if a serial BACKGROUND command is issued to the MCU through the background debug interface while the CPU is in stop mode, CPU clocks will resume and the CPU will enter active background mode where other serial background commands can be processed. This ensures that a host development system can still gain access to a target MCU even if it is in stop mode. Recovery from stop mode depends on the particular HCS08 and whether the oscillator was stopped in stop mode. Refer to the Modes of Operation chapter for more details. MC9S08SH32 Series Data Sheet, Rev. 3 100 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) 7.4.5 BGND Instruction The BGND instruction is new to the HCS08 compared to the M68HC08. BGND would not be used in normal user programs because it forces the CPU to stop processing user instructions and enter the active background mode. The only way to resume execution of the user program is through reset or by a host debug system issuing a GO, TRACE1, or TAGGO serial command through the background debug interface. Software-based breakpoints can be set by replacing an opcode at the desired breakpoint address with the BGND opcode. When the program reaches this breakpoint address, the CPU is forced to active background mode rather than continuing the user program. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 101

Chapter7 Central Processor Unit (S08CPUV3) 7.5 HCS08 Instruction Set Summary Table 7-2 provides a summary of the HCS08 instruction set in all possible addressing modes. The table shows operand construction, execution time in internal bus clock cycles, and cycle-by-cycle details for each addressing mode variation of each instruction. Table7-2. Instruction Set Summary (Sheet 1 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C ADC #opr8i IMM A9 ii 2 pp ADC opr8a DIR B9 dd 3 rpp ADC opr16a EXT C9 hh ll 4 prpp ADC oprx16,X Add with Carry IX2 D9 ee ff 4 prpp ↕ 1 1 ↕ – ↕ ↕ ↕ ADC oprx8,X A← (A) + (M) + (C) IX1 E9 ff 3 rpp ADC ,X IX F9 3 rfp ADC oprx16,SP SP2 9E D9 ee ff 5 pprpp ADC oprx8,SP SP1 9E E9 ff 4 prpp ADD #opr8i IMM AB ii 2 pp ADD opr8a DIR BB dd 3 rpp ADD opr16a EXT CB hh ll 4 prpp ADD oprx16,X Add without Carry IX2 DB ee ff 4 prpp ↕ 1 1 ↕ – ↕ ↕ ↕ ADD oprx8,X A← (A) + (M) IX1 EB ff 3 rpp ADD ,X IX FB 3 rfp ADD oprx16,SP SP2 9E DB ee ff 5 pprpp ADD oprx8,SP SP1 9E EB ff 4 prpp Add Immediate Value (Signed) to AIS #opr8i StackPointer IMM A7 ii 2 pp – 1 1 – – – – – SP← (SP) + (M) Add Immediate Value (Signed) to AIX #opr8i IndexRegister (H:X) IMM AF ii 2 pp – 1 1 – – – – – H:X← (H:X) + (M) AND #opr8i IMM A4 ii 2 pp AND opr8a DIR B4 dd 3 rpp AND opr16a EXT C4 hh ll 4 prpp AND oprx16,X Logical AND IX2 D4 ee ff 4 prpp 0 1 1 – – ↕ ↕ – AND oprx8,X A← (A) & (M) IX1 E4 ff 3 rpp AND ,X IX F4 3 rfp AND oprx16,SP SP2 9E D4 ee ff 5 pprpp AND oprx8,SP SP1 9E E4 ff 4 prpp ASL opr8a Arithmetic Shift Left DIR 38 dd 5 rfwpp ASLA INH 48 1 p ASLX INH 58 1 p C 0 ↕ 1 1 – – ↕ ↕ ↕ ASL oprx8,X IX1 68 ff 5 rfwpp b7 b0 ASL ,X IX 78 4 rfwp ASL oprx8,SP (Same as LSL) SP1 9E 68 ff 6 prfwpp ASR opr8a DIR 37 dd 5 rfwpp ASRA Arithmetic Shift Right INH 47 1 p ASRX INH 57 1 p ↕ 1 1 – – ↕ ↕ ↕ ASR oprx8,X C IX1 67 ff 5 rfwpp ASR ,X b7 b0 IX 77 4 rfwp ASR oprx8,SP SP1 9E 67 ff 6 prfwpp MC9S08SH32 Series Data Sheet, Rev. 3 102 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 2 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C Branch if Carry Bit Clear BCC rel REL 24 rr 3 ppp – 1 1 – – – – – (if C = 0) DIR (b0) 11 dd 5 rfwpp DIR (b1) 13 dd 5 rfwpp DIR (b2) 15 dd 5 rfwpp Clear Bit n in Memory DIR (b3) 17 dd 5 rfwpp BCLR n,opr8a – 1 1 – – – – – (Mn← 0) DIR (b4) 19 dd 5 rfwpp DIR (b5) 1B dd 5 rfwpp DIR (b6) 1D dd 5 rfwpp DIR (b7) 1F dd 5 rfwpp Branch if Carry Bit Set (if C = 1) BCS rel REL 25 rr 3 ppp – 1 1 – – – – – (Same as BLO) BEQ rel Branch if Equal (if Z = 1) REL 27 rr 3 ppp – 1 1 – – – – – Branch if Greater Than or Equal To BGE rel REL 90 rr 3 ppp – 1 1 – – – – – (if N ⊕ V=0) (Signed) Enter active background if ENBDM=1 BGND Waits for and processes BDM commands INH 82 5+ fp...ppp – 1 1 – – – – – until GO, TRACE1, or TAGGO Branch if Greater Than (if Z| (N ⊕ V)=0) BGT rel REL 92 rr 3 ppp – 1 1 – – – – – (Signed) BHCC rel Branch if Half Carry Bit Clear (if H = 0) REL 28 rr 3 ppp – 1 1 – – – – – BHCS rel Branch if Half Carry Bit Set (if H = 1) REL 29 rr 3 ppp – 1 1 – – – – – BHI rel Branch if Higher (if C | Z = 0) REL 22 rr 3 ppp – 1 1 – – – – – Branch if Higher or Same (if C = 0) BHS rel REL 24 rr 3 ppp – 1 1 – – – – – (Same as BCC) BIHrel Branch if IRQ Pin High (if IRQ pin = 1) REL 2F rr 3 ppp – 1 1 – – – – – BIL rel Branch if IRQ Pin Low (if IRQ pin = 0) REL 2E rr 3 ppp – 1 1 – – – – – BIT #opr8i IMM A5 ii 2 pp BIT opr8a DIR B5 dd 3 rpp BIT opr16a EXT C5 hh ll 4 prpp Bit Test BIT oprx16,X IX2 D5 ee ff 4 prpp (A) & (M) 0 1 1 – – ↕ ↕ – BIT oprx8,X IX1 E5 ff 3 rpp (CCR Updated but Operands Not Changed) BIT ,X IX F5 3 rfp BIT oprx16,SP SP2 9E D5 ee ff 5 pprpp BIT oprx8,SP SP1 9E E5 ff 4 prpp Branch if Less Than or Equal To BLE rel REL 93 rr 3 ppp – 1 1 – – – – – (if Z| (N⊕V) = 1) (Signed) BLO rel Branch if Lower (if C = 1) (Same as BCS) REL 25 rr 3 ppp – 1 1 – – – – – BLS rel Branch if Lower or Same (if C | Z = 1) REL 23 rr 3 ppp – 1 1 – – – – – BLTrel Branch if Less Than (if N ⊕ V =1) (Signed) REL 91 rr 3 ppp – 1 1 – – – – – BMC rel Branch if Interrupt Mask Clear (if I = 0) REL 2C rr 3 ppp – 1 1 – – – – – BMI rel Branch if Minus (if N = 1) REL 2B rr 3 ppp – 1 1 – – – – – BMS rel Branch if Interrupt Mask Set (if I = 1) REL 2D rr 3 ppp – 1 1 – – – – – BNE rel Branch if Not Equal (if Z = 0) REL 26 rr 3 ppp – 1 1 – – – – – MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 103

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 3 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C BPL rel Branch if Plus (if N = 0) REL 2A rr 3 ppp – 1 1 – – – – – BRA rel Branch Always REL 20 rr 3 ppp – 1 1 – – – – – DIR (b0) 01 dd rr 5 rpppp DIR (b1) 03 dd rr 5 rpppp DIR (b2) 05 dd rr 5 rpppp DIR (b3) 07 dd rr 5 rpppp BRCLR n,opr8a,rel Branch if Bitn inMemory Clear (if (Mn) = 0) – 1 1 – – – – ↕ DIR (b4) 09 dd rr 5 rpppp DIR (b5) 0B dd rr 5 rpppp DIR (b6) 0D dd rr 5 rpppp DIR (b7) 0F dd rr 5 rpppp BRN rel Branch Never REL 21 rr 3 ppp – 1 1 – – – – – DIR (b0) 00 dd rr 5 rpppp DIR (b1) 02 dd rr 5 rpppp DIR (b2) 04 dd rr 5 rpppp DIR (b3) 06 dd rr 5 rpppp BRSET n,opr8a,rel Branch if Bitn inMemory Set (if (Mn) = 1) – 1 1 – – – – ↕ DIR (b4) 08 dd rr 5 rpppp DIR (b5) 0A dd rr 5 rpppp DIR (b6) 0C dd rr 5 rpppp DIR (b7) 0E dd rr 5 rpppp DIR (b0) 10 dd 5 rfwpp DIR (b1) 12 dd 5 rfwpp DIR (b2) 14 dd 5 rfwpp DIR (b3) 16 dd 5 rfwpp BSET n,opr8a Set Bitnin Memory (Mn← 1) – 1 1 – – – – – DIR (b4) 18 dd 5 rfwpp DIR (b5) 1A dd 5 rfwpp DIR (b6) 1C dd 5 rfwpp DIR (b7) 1E dd 5 rfwpp Branch to Subroutine PC←(PC) + $0002 BSR rel push (PCL); SP← (SP) – $0001 REL AD rr 5 ssppp – 1 1 – – – – – push (PCH); SP← (SP) – $0001 PC← (PC) +rel CBEQ opr8a,rel Compare and... Branch if (A) = (M) DIR 31 dd rr 5 rpppp CBEQA #opr8i,rel Branch if (A) = (M) IMM 41 ii rr 4 pppp CBEQX #opr8i,rel Branch if (X) = (M) IMM 51 ii rr 4 pppp – 1 1 – – – – – CBEQ oprx8,X+,rel Branch if (A) = (M) IX1+ 61 ff rr 5 rpppp CBEQ ,X+,rel Branch if (A) = (M) IX+ 71 rr 5 rfppp CBEQoprx8,SP,rel Branch if (A) = (M) SP1 9E 61 ff rr 6 prpppp CLC Clear Carry Bit (C← 0) INH 98 1 p – 1 1 – – – – 0 CLI Clear Interrupt Mask Bit (I← 0) INH 9A 1 p – 1 1 – 0 – – – CLR opr8a Clear M← $00 DIR 3F dd 5 rfwpp CLRA A← $00 INH 4F 1 p CLRX X← $00 INH 5F 1 p CLRH H← $00 INH 8C 1 p 0 1 1 – – 0 1 – CLR oprx8,X M← $00 IX1 6F ff 5 rfwpp CLR ,X M← $00 IX 7F 4 rfwp CLR oprx8,SP M← $00 SP1 9E 6F ff 6 prfwpp MC9S08SH32 Series Data Sheet, Rev. 3 104 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 4 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C CMP #opr8i IMM A1 ii 2 pp CMP opr8a DIR B1 dd 3 rpp CMP opr16a EXT C1 hh ll 4 prpp Compare Accumulator with Memory CMP oprx16,X IX2 D1 ee ff 4 prpp A – M ↕ 1 1 – – ↕ ↕ ↕ CMP oprx8,X IX1 E1 ff 3 rpp (CCR Updated But Operands Not Changed) CMP ,X IX F1 3 rfp CMP oprx16,SP SP2 9E D1 ee ff 5 pprpp CMP oprx8,SP SP1 9E E1 ff 4 prpp COM opr8a Complement M← (M)= $FF – (M) DIR 33 dd 5 rfwpp COMA (One’s Complement) A← (A) = $FF – (A) INH 43 1 p COMX X← (X) = $FF – (X) INH 53 1 p 0 1 1 – – ↕ ↕ 1 COM oprx8,X M← (M) = $FF – (M) IX1 63 ff 5 rfwpp COM ,X M← (M) = $FF – (M) IX 73 4 rfwp COM oprx8,SP M← (M) = $FF – (M) SP1 9E 63 ff 6 prfwpp CPHXopr16a EXT 3E hh ll 6 prrfpp Compare IndexRegister (H:X) withMemory CPHX #opr16i IMM 65 jj kk 3 ppp (H:X) – (M:M + $0001) ↕ 1 1 – – ↕ ↕ ↕ CPHXopr8a DIR 75 dd 5 rrfpp (CCR Updated But Operands Not Changed) CPHX oprx8,SP SP1 9E F3 ff 6 prrfpp CPX #opr8i IMM A3 ii 2 pp CPX opr8a DIR B3 dd 3 rpp CPX opr16a Compare X (Index Register Low) with EXT C3 hh ll 4 prpp CPX oprx16,X Memory IX2 D3 ee ff 4 prpp ↕ 1 1 – – ↕ ↕ ↕ CPX oprx8,X X – M IX1 E3 ff 3 rpp CPX ,X (CCR Updated But Operands Not Changed) IX F3 3 rfp CPX oprx16,SP SP2 9E D3 ee ff 5 pprpp CPX oprx8,SP SP1 9E E3 ff 4 prpp Decimal Adjust Accumulator DAA INH 72 1 p U 1 1 – – ↕ ↕ ↕ After ADD or ADC of BCD Values DBNZ opr8a,rel DIR 3B dd rr 7 rfwpppp DBNZA rel INH 4B rr 4 fppp Decrement A, X, or M and Branch if Not Zero DBNZX rel INH 5B rr 4 fppp (if (result)≠0) – 1 1 – – – – – DBNZ oprx8,X,rel IX1 6B ff rr 7 rfwpppp DBNZX Affects X Not H DBNZ ,X,rel IX 7B rr 6 rfwppp DBNZ oprx8,SP,rel SP1 9E 6B ff rr 8 prfwpppp DEC opr8a Decrement M← (M) – $01 DIR 3A dd 5 rfwpp DECA A← (A) – $01 INH 4A 1 p DECX X← (X) – $01 INH 5A 1 p ↕ 1 1 – – ↕ ↕ – DEC oprx8,X M← (M) – $01 IX1 6A ff 5 rfwpp DEC ,X M← (M) – $01 IX 7A 4 rfwp DEC oprx8,SP M← (M) – $01 SP1 9E 6A ff 6 prfwpp Divide DIV INH 52 6 fffffp – 1 1 – – – ↕ ↕ A← (H:A)÷(X); H← Remainder EOR #opr8i Exclusive OR Memory with Accumulator IMM A8 ii 2 pp EOR opr8a A← (A⊕ M) DIR B8 dd 3 rpp EOR opr16a EXT C8 hh ll 4 prpp EOR oprx16,X IX2 D8 ee ff 4 prpp 0 1 1 – – ↕ ↕ – EOR oprx8,X IX1 E8 ff 3 rpp EOR ,X IX F8 3 rfp EOR oprx16,SP SP2 9E D8 ee ff 5 pprpp EOR oprx8,SP SP1 9E E8 ff 4 prpp MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 105

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 5 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C INC opr8a Increment M← (M) + $01 DIR 3C dd 5 rfwpp INCA A← (A) + $01 INH 4C 1 p INCX X← (X) + $01 INH 5C 1 p ↕ 1 1 – – ↕ ↕ – INC oprx8,X M← (M) + $01 IX1 6C ff 5 rfwpp INC ,X M← (M) + $01 IX 7C 4 rfwp INC oprx8,SP M← (M) + $01 SP1 9E 6C ff 6 prfwpp JMP opr8a DIR BC dd 3 ppp JMP opr16a EXT CC hh ll 4 pppp Jump JMP oprx16,X IX2 DC ee ff 4 pppp – 1 1 – – – – – PC← Jump Address JMP oprx8,X IX1 EC ff 3 ppp JMP ,X IX FC 3 ppp JSR opr8a Jump to Subroutine DIR BD dd 5 ssppp JSR opr16a PC← (PC) +n (n = 1, 2, or 3) EXT CD hh ll 6 pssppp JSR oprx16,X Push (PCL); SP← (SP) – $0001 IX2 DD ee ff 6 pssppp – 1 1 – – – – – JSR oprx8,X Push (PCH); SP← (SP) – $0001 IX1 ED ff 5 ssppp JSR ,X PC← Unconditional Address IX FD 5 ssppp LDA #opr8i IMM A6 ii 2 pp LDA opr8a DIR B6 dd 3 rpp LDA opr16a EXT C6 hh ll 4 prpp LDA oprx16,X Load Accumulator from Memory IX2 D6 ee ff 4 prpp 0 1 1 – – ↕ ↕ – LDA oprx8,X A← (M) IX1 E6 ff 3 rpp LDA ,X IX F6 3 rfp LDA oprx16,SP SP2 9E D6 ee ff 5 pprpp LDA oprx8,SP SP1 9E E6 ff 4 prpp LDHX #opr16i IMM 45 jj kk 3 ppp LDHX opr8a DIR 55 dd 4 rrpp LDHX opr16a EXT 32 hh ll 5 prrpp Load Index Register (H:X) LDHX ,X IX 9E AE 5 prrfp 0 1 1 – – ↕ ↕ – H:X← (M:M+ $0001) LDHX oprx16,X IX2 9E BE ee ff 6 pprrpp LDHX oprx8,X IX1 9E CE ff 5 prrpp LDHX oprx8,SP SP1 9E FE ff 5 prrpp LDX #opr8i IMM AE ii 2 pp LDX opr8a DIR BE dd 3 rpp LDX opr16a EXT CE hh ll 4 prpp LDX oprx16,X Load X (Index Register Low) from Memory IX2 DE ee ff 4 prpp 0 1 1 – – ↕ ↕ – LDX oprx8,X X← (M) IX1 EE ff 3 rpp LDX ,X IX FE 3 rfp LDX oprx16,SP SP2 9E DE ee ff 5 pprpp LDX oprx8,SP SP1 9E EE ff 4 prpp LSL opr8a Logical Shift Left DIR 38 dd 5 rfwpp LSLA INH 48 1 p LSLX C 0 INH 58 1 p ↕ 1 1 – – ↕ ↕ ↕ LSL oprx8,X IX1 68 ff 5 rfwpp b7 b0 LSL ,X IX 78 4 rfwp LSL oprx8,SP (Same as ASL) SP1 9E 68 ff 6 prfwpp LSR opr8a DIR 34 dd 5 rfwpp Logical Shift Right LSRA INH 44 1 p LSRX INH 54 1 p ↕ 1 1 – – 0 ↕ ↕ LSR oprx8,X 0 C IX1 64 ff 5 rfwpp LSR ,X b7 b0 IX 74 4 rfwp LSR oprx8,SP SP1 9E 64 ff 6 prfwpp MC9S08SH32 Series Data Sheet, Rev. 3 106 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 6 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C MOVopr8a,opr8a Move DIR/DIR 4E dd dd 5 rpwpp MOV opr8a,X+ (M) ←(M) DIR/IX+ 5E dd 5 rfwpp destination source 0 1 1 – – ↕ ↕ – MOV #opr8i,opr8a In IX+/DIR and DIR/IX+ Modes, IMM/DIR 6E ii dd 4 pwpp MOV ,X+,opr8a H:X← (H:X) + $0001 IX+/DIR 7E dd 5 rfwpp Unsigned multiply MUL INH 42 5 ffffp – 1 1 0 – – – 0 X:A← (X)× (A) NEG opr8a Negate M← – (M) = $00 – (M) DIR 30 dd 5 rfwpp NEGA (Two’s Complement) A← – (A) = $00 – (A) INH 40 1 p NEGX X← – (X) = $00 – (X) INH 50 1 p ↕ 1 1 – – ↕ ↕ ↕ NEG oprx8,X M← – (M) = $00 – (M) IX1 60 ff 5 rfwpp NEG ,X M← – (M) = $00 – (M) IX 70 4 rfwp NEG oprx8,SP M← – (M) = $00 – (M) SP1 9E 60 ff 6 prfwpp NOP No Operation — Uses 1 Bus Cycle INH 9D 1 p – 1 1 – – – – – Nibble Swap Accumulator NSA INH 62 1 p – 1 1 – – – – – A← (A[3:0]:A[7:4]) ORA #opr8i IMM AA ii 2 pp ORA opr8a DIR BA dd 3 rpp ORA opr16a EXT CA hh ll 4 prpp ORA oprx16,X Inclusive ORAccumulator andMemory IX2 DA ee ff 4 prpp 0 1 1 – – ↕ ↕ – ORA oprx8,X A← (A) | (M) IX1 EA ff 3 rpp ORA ,X IX FA 3 rfp ORA oprx16,SP SP2 9E DA ee ff 5 pprpp ORA oprx8,SP SP1 9E EA ff 4 prpp Push Accumulator onto Stack PSHA INH 87 2 sp – 1 1 – – – – – Push (A); SP←(SP) – $0001 Push H (Index Register High) onto Stack PSHH INH 8B 2 sp – 1 1 – – – – – Push (H); SP←(SP) – $0001 Push X (Index Register Low) onto Stack PSHX INH 89 2 sp – 1 1 – – – – – Push (X); SP←(SP) – $0001 Pull Accumulator from Stack PULA INH 86 3 ufp – 1 1 – – – – – SP←(SP +$0001); Pull (A) Pull H (Index Register High) from Stack PULH INH 8A 3 ufp – 1 1 – – – – – SP←(SP +$0001); Pull (H) Pull X (Index Register Low) from Stack PULX INH 88 3 ufp – 1 1 – – – – – SP←(SP +$0001); Pull (X) ROL opr8a Rotate Left through Carry DIR 39 dd 5 rfwpp ROLA INH 49 1 p ROLX INH 59 1 p ROL oprx8,X C IX1 69 ff 5 rfwpp ↕ 1 1 – – ↕ ↕ ↕ ROL ,X b7 b0 IX 79 4 rfwp ROL oprx8,SP SP1 9E 69 ff 6 prfwpp ROR opr8a Rotate Right through Carry DIR 36 dd 5 rfwpp RORA INH 46 1 p RORX INH 56 1 p ROR oprx8,X C IX1 66 ff 5 rfwpp ↕ 1 1 – – ↕ ↕ ↕ ROR ,X b7 b0 IX 76 4 rfwp ROR oprx8,SP SP1 9E 66 ff 6 prfwpp MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 107

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 7 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C Reset Stack Pointer (Low Byte) RSP SPL← $FF INH 9C 1 p – 1 1 – – – – – (High Byte Not Affected) Return from Interrupt SP← (SP) + $0001; Pull (CCR) SP← (SP) + $0001; Pull (A) RTI INH 80 9 uuuuufppp ↕ 1 1 ↕ ↕ ↕ ↕ ↕ SP← (SP) + $0001; Pull (X) SP← (SP) + $0001; Pull (PCH) SP← (SP) + $0001; Pull (PCL) Return from Subroutine RTS SP← SP + $0001;Pull (PCH) INH 81 5 ufppp – 1 1 – – – – – SP← SP + $0001; Pull (PCL) SBC #opr8i IMM A2 ii 2 pp SBC opr8a DIR B2 dd 3 rpp SBC opr16a EXT C2 hh ll 4 prpp SBC oprx16,X Subtract with Carry IX2 D2 ee ff 4 prpp ↕ 1 1 – – ↕ ↕ ↕ SBC oprx8,X A← (A) – (M) – (C) IX1 E2 ff 3 rpp SBC ,X IX F2 3 rfp SBC oprx16,SP SP2 9E D2 ee ff 5 pprpp SBC oprx8,SP SP1 9E E2 ff 4 prpp Set Carry Bit SEC INH 99 1 p – 1 1 – – – – 1 (C← 1) Set Interrupt Mask Bit SEI INH 9B 1 p – 1 1 – 1 – – – (I← 1) STA opr8a DIR B7 dd 3 wpp STA opr16a EXT C7 hh ll 4 pwpp STA oprx16,X IX2 D7 ee ff 4 pwpp Store Accumulator in Memory STA oprx8,X IX1 E7 ff 3 wpp 0 1 1 – – ↕ ↕ – M←(A) STA ,X IX F7 2 wp STA oprx16,SP SP2 9E D7 ee ff 5 ppwpp STA oprx8,SP SP1 9E E7 ff 4 pwpp STHXopr8a DIR 35 dd 4 wwpp Store H:X (Index Reg.) STHXopr16a EXT 96 hh ll 5 pwwpp 0 1 1 – – ↕ ↕ – (M:M + $0001)← (H:X) STHX oprx8,SP SP1 9E FF ff 5 pwwpp Enable Interrupts: Stop Processing STOP Refer to MCU Documentation INH 8E 2 fp... – 1 1 – 0 – – – I bit← 0; Stop Processing STX opr8a DIR BF dd 3 wpp STX opr16a EXT CF hh ll 4 pwpp STX oprx16,X Store X (Low 8 Bits of Index Register) IX2 DF ee ff 4 pwpp STX oprx8,X in Memory IX1 EF ff 3 wpp 0 1 1 – – ↕ ↕ – STX ,X M←(X) IX FF 2 wp STX oprx16,SP SP2 9E DF ee ff 5 ppwpp STX oprx8,SP SP1 9E EF ff 4 pwpp MC9S08SH32 Series Data Sheet, Rev. 3 108 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 8 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C SUB #opr8i IMM A0 ii 2 pp SUB opr8a DIR B0 dd 3 rpp SUB opr16a EXT C0 hh ll 4 prpp SUB oprx16,X Subtract IX2 D0 ee ff 4 prpp ↕ 1 1 – – ↕ ↕ ↕ SUB oprx8,X A← (A) – (M) IX1 E0 ff 3 rpp SUB ,X IX F0 3 rfp SUB oprx16,SP SP2 9E D0 ee ff 5 pprpp SUB oprx8,SP SP1 9E E0 ff 4 prpp Software Interrupt PC← (PC) + $0001 Push (PCL); SP← (SP) – $0001 Push (PCH); SP← (SP) – $0001 Push (X); SP← (SP) – $0001 SWI INH 83 11 sssssvvfppp – 1 1 – 1 – – – Push (A); SP← (SP) – $0001 Push (CCR); SP← (SP) – $0001 I← 1; PCH← Interrupt Vector High Byte PCL← Interrupt Vector Low Byte Transfer Accumulator to CCR TAP INH 84 1 p ↕ 1 1 ↕ ↕ ↕ ↕ ↕ CCR← (A) Transfer Accumulator to X (Index Register TAX Low) INH 97 1 p – 1 1 – – – – – X← (A) Transfer CCR to Accumulator TPA INH 85 1 p – 1 1 – – – – – A← (CCR) TST opr8a Test for Negative or Zero (M) – $00 DIR 3D dd 4 rfpp TSTA (A) – $00 INH 4D 1 p TSTX (X) – $00 INH 5D 1 p 0 1 1 – – ↕ ↕ – TST oprx8,X (M) – $00 IX1 6D ff 4 rfpp TST ,X (M) – $00 IX 7D 3 rfp TST oprx8,SP (M) – $00 SP1 9E 6D ff 5 prfpp Transfer SP to Index Reg. TSX INH 95 2 fp – 1 1 – – – – – H:X← (SP) + $0001 Transfer X (Index Reg. Low) to Accumulator TXA INH 9F 1 p – 1 1 – – – – – A← (X) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 109

Chapter7 Central Processor Unit (S08CPUV3) Table7-2. Instruction Set Summary (Sheet 9 of 9) s Affect SFoourrmce Operation AddresMode Object Code Cycles CyDce-btayi-lCsyc V1 1onH CCI NR Z C Transfer Index Reg. to SP TXS INH 94 2 fp – 1 1 – – – – – SP← (H:X) – $0001 Enable Interrupts; Wait for Interrupt WAIT INH 8F 2+ fp... – 1 1 – 0 – – – I bit← 0; Halt CPU Source Form: Everything in the source forms columns, except expressions in italic characters, is literal information which must appear in the assembly source file exactly as shown. The initial 3- to 5-letter mnemonic and the characters (# , ( ) and +) are always a literal characters. n Any label or expression that evaluates to a single integer in the range 0-7. opr8i Any label or expression that evaluates to an 8-bit immediate value. opr16i Any label or expression that evaluates to a 16-bit immediate value. opr8a Any label or expression that evaluates to an 8-bit direct-page address ($00xx). opr16a Any label or expression that evaluates to a 16-bit address. oprx8 Any label or expression that evaluates to an unsigned 8-bit value, used for indexed addressing. oprx16 Any label or expression that evaluates to a 16-bit value, used for indexed addressing. rel Any label or expression that refers to an address that is within –128 to +127 locations from the start of the next instruction. Operation Symbols: Addressing Modes: A Accumulator DIR Direct addressing mode CCR Condition code register EXT Extended addressing mode H Index register high byte IMM Immediate addressing mode M Memory location INH Inherent addressing mode n Any bit IX Indexed, no offset addressing mode opr Operand (one or two bytes) IX1 Indexed, 8-bit offset addressing mode PC Program counter IX2 Indexed, 16-bit offset addressing mode PCH Program counter high byte IX+ Indexed, no offset, post increment addressing mode PCL Program counter low byte IX1+ Indexed, 8-bit offset, post increment addressing mode rel Relative program counter offset byte REL Relative addressing mode SP Stack pointer SP1 Stack pointer, 8-bit offset addressing mode SPL Stack pointer low byte SP2 Stack pointer 16-bit offset addressing mode X Index register low byte Cycle-by-Cycle Codes: & Logical AND f Free cycle. This indicates a cycle where the CPU | Logical OR ⊕ does not require use of the system buses. An f Logical EXCLUSIVE OR cycle is always one cycle of the system bus clock ( ) Contents of + Add and is always a read cycle. p Program fetch; read from next consecutive – Subtract, Negation (two’s complement) × Multiply location in program memory ÷ Divide r Read 8-bit operand s Push (write) one byte onto stack # Immediate value ← Loaded with u Pop (read) one byte from stack v Read vector from $FFxx (high byte first) : Concatenated with w Write 8-bit operand CCR Bits: CCR Effects: V Overflow bit ↕ Set or cleared H Half-carry bit – Not affected I Interrupt mask U Undefined N Negative bit Z Zero bit C Carry/borrow bit MC9S08SH32 Series Data Sheet, Rev. 3 110 Freescale Semiconductor

Chapter7 Central Processor Unit (S08CPUV3) Table7-3. Opcode Map (Sheet 1 of 2) Bit-Manipulation Branch Read-Modify-Write Control Register/Memory 00 5 10 5 20 3 30 5 40 1 50 1 60 5 70 4 80 9 90 3 A0 2 B0 3 C0 4 D0 4 E0 3 F0 3 BRSET0 BSET0 BRA NEG NEGA NEGX NEG NEG RTI BGE SUB SUB SUB SUB SUB SUB 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 2 REL 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 01 5 11 5 21 3 31 5 41 4 51 4 61 5 71 5 81 6 91 3 A1 2 B1 3 C1 4 D1 4 E1 3 F1 3 BRCLR0 BCLR0 BRN CBEQ CBEQA CBEQX CBEQ CBEQ RTS BLT CMP CMP CMP CMP CMP CMP 3 DIR 2 DIR 2 REL 3 DIR 3 IMM 3 IMM 3 IX1+ 2 IX+ 1 INH 2 REL 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 02 5 12 5 22 3 32 5 42 5 52 6 62 1 72 1 82 5+ 92 3 A2 2 B2 3 C2 4 D2 4 E2 3 F2 3 BRSET1 BSET1 BHI LDHX MUL DIV NSA DAA BGND BGT SBC SBC SBC SBC SBC SBC 3 DIR 2 DIR 2 REL 3 EXT 1 INH 1 INH 1 INH 1 INH 1 INH 2 REL 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 03 5 13 5 23 3 33 5 43 1 53 1 63 5 73 4 83 11 93 3 A3 2 B3 3 C3 4 D3 4 E3 3 F3 3 BRCLR1 BCLR1 BLS COM COMA COMX COM COM SWI BLE CPX CPX CPX CPX CPX CPX 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 2 REL 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 04 5 14 5 24 3 34 5 44 1 54 1 64 5 74 4 84 1 94 2 A4 2 B4 3 C4 4 D4 4 E4 3 F4 3 BRSET2 BSET2 BCC LSR LSRA LSRX LSR LSR TAP TXS AND AND AND AND AND AND 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 05 5 15 5 25 3 35 4 45 3 55 4 65 3 75 5 85 1 95 2 A5 2 B5 3 C5 4 D5 4 E5 3 F5 3 BRCLR2 BCLR2 BCS STHX LDHX LDHX CPHX CPHX TPA TSX BIT BIT BIT BIT BIT BIT 3 DIR 2 DIR 2 REL 2 DIR 3 IMM 2 DIR 3 IMM 2 DIR 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 06 5 16 5 26 3 36 5 46 1 56 1 66 5 76 4 86 3 96 5 A6 2 B6 3 C6 4 D6 4 E6 3 F6 3 BRSET3 BSET3 BNE ROR RORA RORX ROR ROR PULA STHX LDA LDA LDA LDA LDA LDA 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 3 EXT 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 07 5 17 5 27 3 37 5 47 1 57 1 67 5 77 4 87 2 97 1 A7 2 B7 3 C7 4 D7 4 E7 3 F7 2 BRCLR3 BCLR3 BEQ ASR ASRA ASRX ASR ASR PSHA TAX AIS STA STA STA STA STA 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 08 5 18 5 28 3 38 5 48 1 58 1 68 5 78 4 88 3 98 1 A8 2 B8 3 C8 4 D8 4 E8 3 F8 3 BRSET4 BSET4 BHCC LSL LSLA LSLX LSL LSL PULX CLC EOR EOR EOR EOR EOR EOR 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 09 5 19 5 29 3 39 5 49 1 59 1 69 5 79 4 89 2 99 1 A9 2 B9 3 C9 4 D9 4 E9 3 F9 3 BRCLR4 BCLR4 BHCS ROL ROLA ROLX ROL ROL PSHX SEC ADC ADC ADC ADC ADC ADC 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0A 5 1A 5 2A 3 3A 5 4A 1 5A 1 6A 5 7A 4 8A 3 9A 1 AA 2 BA 3 CA 4 DA 4 EA 3 FA 3 BRSET5 BSET5 BPL DEC DECA DECX DEC DEC PULH CLI ORA ORA ORA ORA ORA ORA 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0B 5 1B 5 2B 3 3B 7 4B 4 5B 4 6B 7 7B 6 8B 2 9B 1 AB 2 BB 3 CB 4 DB 4 EB 3 FB 3 BRCLR5 BCLR5 BMI DBNZ DBNZA DBNZX DBNZ DBNZ PSHH SEI ADD ADD ADD ADD ADD ADD 3 DIR 2 DIR 2 REL 3 DIR 2 INH 2 INH 3 IX1 2 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0C 5 1C 5 2C 3 3C 5 4C 1 5C 1 6C 5 7C 4 8C 1 9C 1 BC 3 CC 4 DC 4 EC 3 FC 3 BRSET6 BSET6 BMC INC INCA INCX INC INC CLRH RSP JMP JMP JMP JMP JMP 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0D 5 1D 5 2D 3 3D 4 4D 1 5D 1 6D 4 7D 3 9D 1 AD 5 BD 5 CD 6 DD 6 ED 5 FD 5 BRCLR6 BCLR6 BMS TST TSTA TSTX TST TST NOP BSR JSR JSR JSR JSR JSR 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 2 REL 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0E 5 1E 5 2E 3 3E 6 4E 5 5E 5 6E 4 7E 5 8E 2+ 9E AE 2 BE 3 CE 4 DE 4 EE 3 FE 3 BRSET7 BSET7 BIL CPHX MOV MOV MOV MOV STOP Page 2 LDX LDX LDX LDX LDX LDX 3 DIR 2 DIR 2 REL 3 EXT 3 DD 2 DIX+ 3 IMD 2 IX+D 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX 0F 5 1F 5 2F 3 3F 5 4F 1 5F 1 6F 5 7F 4 8F 2+ 9F 1 AF 2 BF 3 CF 4 DF 4 EF 3 FF 2 BRCLR7 BCLR7 BIH CLR CLRA CLRX CLR CLR WAIT TXA AIX STX STX STX STX STX 3 DIR 2 DIR 2 REL 2 DIR 1 INH 1 INH 2 IX1 1 IX 1 INH 1 INH 2 IMM 2 DIR 3 EXT 3 IX2 2 IX1 1 IX INH Inherent REL Relative SP1 Stack Pointer, 8-Bit Offset IMM Immediate IX Indexed, No Offset SP2 Stack Pointer, 16-Bit Offset DIR Direct IX1 Indexed, 8-Bit Offset IX+ Indexed, No Offset with EXT Extended IX2 Indexed, 16-Bit Offset Post Increment DD DIR to DIR IMD IMM to DIR IX1+ Indexed, 1-Byte Offset with IX+D IX+ to DIR DIX+ DIR to IX+ Post Increment Opcode in Hexadecimal F0 3 HCS08 Cycles SUB Instruction Mnemonic Number of Bytes 1 IX Addressing Mode MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 111

Chapter7 Central Processor Unit (S08CPUV3) Table7-3. Opcode Map (Sheet 2 of 2) Bit-Manipulation Branch Read-Modify-Write Control Register/Memory 9E60 6 9ED0 5 9EE0 4 NEG SUB SUB 3 SP1 4 SP2 3 SP1 9E61 6 9ED1 5 9EE1 4 CBEQ CMP CMP 4 SP1 4 SP2 3 SP1 9ED2 5 9EE2 4 SBC SBC 4 SP2 3 SP1 9E63 6 9ED3 5 9EE3 4 9EF3 6 COM CPX CPX CPHX 3 SP1 4 SP2 3 SP1 3 SP1 9E64 6 9ED4 5 9EE4 4 LSR AND AND 3 SP1 4 SP2 3 SP1 9ED5 5 9EE5 4 BIT BIT 4 SP2 3 SP1 9E66 6 9ED6 5 9EE6 4 ROR LDA LDA 3 SP1 4 SP2 3 SP1 9E67 6 9ED7 5 9EE7 4 ASR STA STA 3 SP1 4 SP2 3 SP1 9E68 6 9ED8 5 9EE8 4 LSL EOR EOR 3 SP1 4 SP2 3 SP1 9E69 6 9ED9 5 9EE9 4 ROL ADC ADC 3 SP1 4 SP2 3 SP1 9E6A 6 9EDA 5 9EEA 4 DEC ORA ORA 3 SP1 4 SP2 3 SP1 9E6B 8 9EDB 5 9EEB 4 DBNZ ADD ADD 4 SP1 4 SP2 3 SP1 9E6C 6 INC 3 SP1 9E6D 5 TST 3 SP1 9EAE 5 9EBE 6 9ECE 5 9EDE 5 9EEE 4 9EFE 5 LDHX LDHX LDHX LDX LDX LDHX 2 IX 4 IX2 3 IX1 4 SP2 3 SP1 3 SP1 9E6F 6 9EDF 5 9EEF 4 9EFF 5 CLR STX STX STHX 3 SP1 4 SP2 3 SP1 3 SP1 INH Inherent REL Relative SP1 Stack Pointer, 8-Bit Offset IMM Immediate IX Indexed, No Offset SP2 Stack Pointer, 16-Bit Offset DIR Direct IX1 Indexed, 8-Bit Offset IX+ Indexed, No Offset with EXT Extended IX2 Indexed, 16-Bit Offset Post Increment DD DIR to DIR IMD IMM to DIR IX1+ Indexed, 1-Byte Offset with IX+D IX+ to DIR DIX+ DIR to IX+ Post Increment Note: All Sheet 2 Opcodes are Preceded by the Page 2 Prebyte (9E) Prebyte (9E) and Opcode in Hexadecimal 9E60 6 HCS08 Cycles NEG Instruction Mnemonic Number of Bytes 3 SP1 Addressing Mode MC9S08SH32 Series Data Sheet, Rev. 3 112 Freescale Semiconductor

Chapter 8 Analog Comparator 5-V (S08ACMPV3) 8.1 Introduction The analog comparator module (ACMP) provides a circuit for comparing two analog input voltages or for comparing one analog input voltage to an internal reference voltage. The comparator circuit is designed to operate across the full range of the supply voltage (rail-to-rail operation). Figure 8-1 shows the MC9S08SH32 Series block diagram with the ACMP highlighted. 8.1.1 ACMP Configuration Information When using the bandgap reference voltage for input to ACMP+, the user must enable the bandgap buffer by setting BGBE =1 in SPMSC1 see Section5.7.6, “System Power Management Status and Control 1 Register (SPMSC1)”. For value of bandgap voltage reference see SectionA.6, “DC Characteristics”. 8.1.2 ACMP/TPM Configuration Information The ACMP module can be configured to connect the output of the analog comparator to TPM1 input capture channel 0 by setting ACIC in SOPT2. With ACIC set, the TPM1CH0 pin is not available externally regardless of the configuration of the TPM1 module for channel 0. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 113

Chapter8 Analog Comparator 5-V (S08ACMPV3) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure8-1. MC9S08SH32 Series Block Diagram Highlighting ACMP Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 114 Freescale Semiconductor

Chapter 8 Analog Comparator (S08ACMPV3) 8.2 Features The ACMP has the following features: • Full rail to rail supply operation. • Selectable interrupt on rising edge, falling edge, or either rising or falling edges of comparator output. • Option to compare to fixed internal bandgap reference voltage. • Option to allow comparator output to be visible on a pin, ACMPO. • Can operate in stop3 mode 8.3 Modes of Operation This section defines the ACMP operation in wait, stop and background debug modes. 8.3.1 ACMP in Wait Mode The ACMP continues to run in wait mode if enabled before executing the WAIT instruction. Therefore, the ACMP can be used to bring the MCU out of wait mode if the ACMP interrupt, ACIE is enabled. For lowest possible current consumption, the ACMP should be disabled by software if not required as an interrupt source during wait mode. 8.3.2 ACMP in Stop Modes 8.3.2.1 Stop3 Mode Operation The ACMP continues to operate in stop3 mode if enabled and compare operation remains active. If ACOPE is enabled, comparator output operates as in the normal operating mode and comparator output is placed onto the external pin. The MCU is brought out of stop when a compare event occurs and ACIE is enabled; ACF flag sets accordingly. If stop is exited with a reset, the ACMP will be put into its reset state. 8.3.2.2 Stop2 and Stop1 Mode Operation During either stop2 and stop1 mode, the ACMP module will be fully powered down. Upon wake-up from stop2 or stop1 mode, the ACMP module will be in the reset state. 8.3.3 ACMP in Active Background Mode When the microcontroller is in active background mode, the ACMP will continue to operate normally. 8.4 Block Diagram The block diagram for the Analog Comparator module is shown Figure8-2. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 115

Chapter 8 Analog Comparator (S08ACMPV3) Internal Bus Internal Reference ACMP INTERRUPT ACIE REQUEST ACBGS Status & Control ACME ACF Register ACOPE D F O C M A ACMP+ AC set + Interrupt Control - ACMP- Comparator ACMPO Figure8-2. Analog Comparator 5V (ACMP5) Block Diagram MC9S08SH32 Series Data Sheet, Rev. 3 116 Freescale Semiconductor

Chapter 8 Analog Comparator (S08ACMPV3) 8.5 External Signal Description The ACMP has two analog input pins, ACMP+ and ACMP- and one digital output pin ACMPO. Each of these pins can accept an input voltage that varies across the full operating voltage range of the MCU. As shown in Figure8-2, the ACMP- pin is connected to the inverting input of the comparator, and the ACMP+ pin is connected to the comparator non-inverting input if ACBGS is a 0. As shown in Figure 8-2, the ACMPO pin can be enabled to drive an external pin. The signal properties of ACMP are shown in Table 8-1. Table8-1. Signal Properties Signal Function I/O ACMP- Inverting analog input to the ACMP. I (Minus input) ACMP+ Non-inverting analog input to the ACMP. I (Positive input) ACMPO Digital output of the ACMP. O 8.6 Memory Map 8.6.1 Register Descriptions The ACMP includes one register: • An 8-bit status and control register Refer to the direct-page register summary in the memory section of this data sheet for the absolute address assignments for all ACMP registers.This section refers to registers and control bits only by their names. Some MCUs may have more than one ACMP, so register names include placeholder characters to identify which ACMP is being referenced. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 117

Chapter 8 Analog Comparator (S08ACMPV3) 8.6.1.1 ACMP Status and Control Register (ACMPSC) ACMPSC contains the status flag and control bits which are used to enable and configure the ACMP. 7 6 5 4 3 2 1 0 R ACO ACME ACBGS ACF ACIE ACOPE ACMOD W Reset: 0 0 0 0 0 0 0 0 = Unimplemented Figure8-3. ACMP Status and Control Register Table8-2. ACMP Status and Control Register Field Descriptions Field Description 7 Analog Comparator Module Enable — ACME enables the ACMP module. ACME 0 ACMP not enabled 1 ACMP is enabled 6 Analog Comparator Bandgap Select — ACBGS is used to select between the bandgap reference voltage or ACBGS the ACMP+ pin as the input to the non-inverting input of the analog comparatorr. 0 External pin ACMP+ selected as non-inverting input to comparator 1 Internal reference select as non-inverting input to comparator Note: refer to this chapter introduction to verify if any other config bits are necessary to enable the bandgap reference in the chip level. 5 Analog Comparator Flag — ACF is set when a compare event occurs. Compare events are defined by ACMOD. ACF ACF is cleared by writing a one to ACF. 0 Compare event has not occurred 1 Compare event has occurred 4 Analog Comparator Interrupt Enable — ACIE enables the interrupt from the ACMP. When ACIE is set, an ACIE interrupt will be asserted when ACF is set. 0 Interrupt disabled 1 Interrupt enabled 3 Analog Comparator Output — Reading ACO will return the current value of the analog comparator output. ACO ACO is reset to a 0 and will read as a 0 when the ACMP is disabled (ACME = 0). 2 Analog Comparator Output Pin Enable — ACOPE is used to enable the comparator output to be placed onto ACOPE the external pin, ACMPO. 0 Analog comparator output not available on ACMPO 1 Analog comparator output is driven out on ACMPO 1:0 Analog Comparator Mode — ACMOD selects the type of compare event which sets ACF. ACMOD 00 Encoding 0 — Comparator output falling edge 01 Encoding 1 — Comparator output rising edge 10 Encoding 2 — Comparator output falling edge 11 Encoding 3 — Comparator output rising or falling edge MC9S08SH32 Series Data Sheet, Rev. 3 118 Freescale Semiconductor

Chapter 8 Analog Comparator (S08ACMPV3) 8.7 Functional Description The analog comparator can be used to compare two analog input voltages applied to ACMP+ and ACMP-; or it can be used to compare an analog input voltage applied to ACMP- with an internal bandgap reference voltage. ACBGS is used to select between the bandgap reference voltage or the ACMP+ pin as the input to the non-inverting input of the analog comparator. The comparator output is high when the non-inverting input is greater than the inverting input, and is low when the non-inverting input is less than the inverting input. ACMOD is used to select the condition which will cause ACF to be set. ACF can be set on a rising edge of the comparator output, a falling edge of the comparator output, or either a rising or a falling edge (toggle). The comparator output can be read directly through ACO. The comparator output can be driven onto the ACMPO pin using ACOPE. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 119

Chapter 8 Analog Comparator (S08ACMPV3) MC9S08SH32 Series Data Sheet, Rev. 3 120 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.1 Introduction The 10-bit analog-to-digital converter (ADC) is a successive approximation ADC designed for operation within an integrated microcontroller system-on-chip. NOTE • MC9S08SH32 Series devices operate at a higher voltage range (2.7 V to 5.5V) and do not include stop1 mode. Please ignore references to stop1. • MC9S08SH32 Series devices have up to 16 analog inputs. Consequently, the APCTL3 register is not available on these devices. The ADC channel assignments, alternate clock function, and hardware trigger function are configured as described below for the MC9S08SH32 Series family of devices. 9.1.1 Channel Assignments The ADC channel assignments for the MC9S08SH32 Series devices are shown in Table 9-1. Reserved channels convert to an unknown value.This chapter shows bits for all S08ADCV1 channels. MC9S08SH32 Series MCUs do not use all of these channels. All bits corresponding to channels that are not available on a device are reserved. Table9-1. ADC Channel Assignment ADCH Channel Input ADCH Channel Input 00000 AD0 PTA0/AD0 10000 AD16 V SS 00001 AD1 PTA1/ADP1 10001 AD17 V SS 00010 AD2 PTA2/ADP2 10010 AD18 V SS 00011 AD3 PTA3/ADP3 10011 AD19 V SS 00100 AD4 PTB0/ADP4 10100 AD20 V SS 00101 AD5 PTB1/ADP5 10101 AD21 V SS 00110 AD6 PTB2/ADP6 10110 AD22 Reserved 00111 AD7 PTB3/ADP7 10111 AD23 Reserved 01000 AD8 PTC0/ADP8 11000 AD24 Reserved 01001 AD9 PTC1/ADP9 11001 AD25 Reserved 01010 AD10 PTC2/ADP10 11010 AD26 Temperature Sensor1 01011 AD11 PTC3/ADP11 11011 AD27 Internal Bandgap2 01100 AD12 PTC4/ADP12 11100 - Reserved 01101 AD13 PTC5/ADP13 11101 V V REFH DD 01110 AD14 PTC6/ADP14 11110 V V REFL SS MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 121

Chapter9 Analog-to-Digital Converter (S08ADCV1) Table9-1. ADC Channel Assignment (continued) ADCH Channel Input ADCH Channel Input 01111 AD15 PTC7/ADP15 11111 Module Disabled None 1 For information, see Section9.1.5, “Temperature Sensor”. 2 Requires BGBE =1 in SPMSC1 see Section5.7.6, “System Power Management Status and Control 1 Register (SPMSC1)”. For value of bandgap voltage reference see A.6, “DC Characteristics”. 9.1.2 Analog Power and Ground Signal Names References to V and V in this chapter correspond to signals V and V , respectively. DDAD SSAD DDA SSA 9.1.3 Alternate Clock The ADC module is capable of performing conversions using the MCU bus clock, the bus clock divided by two, the local asynchronous clock (ADACK) within the module, or the alternate clock, ALTCLK. The alternate clock for the MC9S08SH32 Series MCU devices is the external reference clock (ICSERCLK). The selected clock source must run at a frequency such that the ADC conversion clock (ADCK) runs at a frequency within its specified range (f ) after being divided down from the ALTCLK input as ADCK determined by the ADIV bits. ALTCLK is active while the MCU is in wait mode provided the conditions described above are met. This allows ALTCLK to be used as the conversion clock source for the ADC while the MCU is in wait mode. ALTCLK cannot be used as the ADC conversion clock source while the MCU is in either stop2 or stop3. 9.1.4 Hardware Trigger The ADC hardware trigger, ADHWT, is the output from the real time counter (RTC). The RTC counter can be clocked by either ICSERCLK, ICSIRCLK or a nominal 1 kHz clock source. The period of the RTC is determined by the input clock frequency, the RTCPS bits, and the RTCMOD register. When the ADC hardware trigger is enabled, a conversion is initiated upon an RTC counter overflow. The RTIE does not have to be set for RTC to cause a hardware trigger. The RTC can be configured to cause a hardware trigger in MCU run, wait, and stop3. 9.1.5 Temperature Sensor To use the on-chip temperature sensor, the user must perform the following: • Configure ADC for long sample with a maximum of 1 MHz clock • Convert the bandgap voltage reference channel (AD27) — By converting the digital value of the bandgap voltage reference channel using the value of V the user can determine V . For value of bandgap voltage, see SectionA.6, “DC BG DD Characteristics”. • Convert the temperature sensor channel (AD26) MC9S08SH32 Series Data Sheet, Rev. 3 122 Freescale Semiconductor

Chapter9 Analog-to-Digital Converter (S08ADCV1) — By using the calculated value of V , convert the digital value of AD26 into a voltage, V DD TEMP Equation9-1 provides an approximate transfer function of the temperature sensor. Temp = 25 - ((V -V ) ÷ m) Eqn.9-1 TEMP TEMP25 where: — V is the voltage of the temperature sensor channel at the ambient temperature. TEMP — V is the voltage of the temperature sensor channel at 25°C. TEMP25 — m is the hot or cold voltage versus temperature slope in V/°C. For temperature calculations, use the V and m values from the ADC Electricals table. TEMP25 In application code, the user reads the temperature sensor channel, calculates V , and compares to TEMP V . If V is greater than V the cold slope value is applied in Equation9-1. If V is TEMP25 TEMP TEMP25 TEMP less than V the hot slope value is applied in Equation9-1. To improve accuracy the user should TEMP25 calibrate the bandgap voltage reference and temperature sensor. Calibrating at 25°C will improve accuracy to ±4.5°C. Calibration at three points, -40°C, 25°C, and 125°C will improve accuracy to ±2.5°C. Once calibration has been completed, the user will need to calculate the slope for both hot and cold. In application code, the user would then calculate the temperature using Equation9-1 as detailed above and then determine if the temperature is above or below 25°C. Once determined if the temperature is above or below 25°C, the user can recalculate the temperature using the hot or cold slope value obtained during calibration. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 123

Chapter9 Analog-to-Digital Converter (S08ADCV1) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS When PTA4 is configured as BKGD, pin becomes bi-directional. Figure9-1. MC9S08SH32 Series Block Diagram Highlighting ADC Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 124 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.1.6 Features Features of the ADC module include: • Linear successive approximation algorithm with 10bits resolution. • Up to 28 analog inputs. • Output formatted in 10- or 8-bit right-justified format. • Single or continuous conversion (automatic return to idle after single conversion). • Configurable sample time and conversion speed/power. • Conversion complete flag and interrupt. • Input clock selectable from up to four sources. • Operation in wait or stop3 modes for lower noise operation. • Asynchronous clock source for lower noise operation. • Selectable asynchronous hardware conversion trigger. • Automatic compare with interrupt for less-than, or greater-than or equal-to, programmable value. 9.1.7 Block Diagram Figure 9-2 provides a block diagram of the ADC module MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 125

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 3 Compare true ADCSC1 ADCCFG O N C ADCH AIE1 CO2 ADCO complete ADTRG MODE ADLSMP ADLPC ADIV ADICLK CloAcsky Gncen ADACK Bus Clock MCU STOP ADCK Clock ADHWT Control Sequencer Divide ÷2 AD0 initialize sample convert transfer abort ALTCLK • AIEN 1 Interrupt • • ADVIN COCO 2 SAR Converter AD27 V REFH Data Registers V REFL m u S Compare true 3 Compare Logic Value CFGT A Compare Value Registers ADCSC2 Figure9-2. ADC Block Diagram 9.2 External Signal Description The ADC module supports up to 28 separate analog inputs. It also requires four supply/reference/ground connections. Table9-2. Signal Properties Name Function AD27–AD0 Analog Channel inputs V High reference voltage REFH V Low reference voltage REFL V Analog power supply DDAD V Analog ground SSAD MC9S08SH32 Series Data Sheet, Rev. 3 126 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.2.1 Analog Power (V ) DDAD The ADC analog portion uses V as its power connection. In some packages, V is connected DDAD DDAD internally to V . If externally available, connect the V pin to the same voltage potential as V . DD DDAD DD External filtering may be necessary to ensure clean V for good results. DDAD 9.2.2 Analog Ground (V ) SSAD The ADC analog portion uses V as its ground connection. In some packages, V is connected SSAD SSAD internally to V . If externally available, connect the V pin to the same voltage potential as V . SS SSAD SS 9.2.3 Voltage Reference High (V ) REFH V is the high reference voltage for the converter. In some packages, V is connected internally to REFH REFH V . If externally available, V may be connected to the same potential as V , or may be DDAD REFH DDAD driven by an external source that is between the minimum V spec and the V potential (V DDAD DDAD REFH must never exceed V ). DDAD 9.2.4 Voltage Reference Low (V ) REFL V is the low reference voltage for the converter. In some packages, V is connected internally to REFL REFL V . If externally available, connect the V pin to the same voltage potential as V . SSAD REFL SSAD 9.2.5 Analog Channel Inputs (ADx) The ADC module supports up to 28 separate analog inputs. An input is selected for conversion through the ADCH channel select bits. 9.3 Register Definition These memory mapped registers control and monitor operation of the ADC: • Status and control register, ADCSC1 • Status and control register, ADCSC2 • Data result registers, ADCRH and ADCRL • Compare value registers, ADCCVH and ADCCVL • Configuration register, ADCCFG • Pin enable registers, APCTL1, APCTL2, APCTL3 9.3.1 Status and Control Register 1 (ADCSC1) This section describes the function of the ADC status and control register (ADCSC1). Writing ADCSC1 aborts the current conversion and initiates a new conversion (if the ADCH bits are equal to a value other than all 1s). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 127

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 7 6 5 4 3 2 1 0 R COCO AIEN ADCO ADCH W Reset: 0 0 0 1 1 1 1 1 = Unimplemented or Reserved Figure9-3. Status and Control Register (ADCSC1) Table9-3. ADCSC1 Register Field Descriptions Field Description 7 Conversion Complete Flag — The COCO flag is a read-only bit which is set each time a conversion is COCO completed when the compare function is disabled (ACFE = 0). When the compare function is enabled (ACFE = 1) the COCO flag is set upon completion of a conversion only if the compare result is true. This bit is cleared whenever ADCSC1 is written or whenever ADCRL is read. 0 Conversion not completed 1 Conversion completed 6 Interrupt Enable — AIEN is used to enable conversion complete interrupts. When COCO becomes set while AIEN AIEN is high, an interrupt is asserted. 0 Conversion complete interrupt disabled 1 Conversion complete interrupt enabled 5 Continuous Conversion Enable — ADCO is used to enable continuous conversions. ADCO 0 One conversion following a write to the ADCSC1 when software triggered operation is selected, or one conversion following assertion of ADHWT when hardware triggered operation is selected. 1 Continuous conversions initiated following a write to ADCSC1 when software triggered operation is selected. Continuous conversions are initiated by an ADHWT event when hardware triggered operation is selected. 4:0 Input Channel Select — The ADCH bits form a 5-bit field which is used to select one of the input channels. The ADCH input channels are detailed in Figure9-4. The successive approximation converter subsystem is turned off when the channel select bits are all set to 1. This feature allows for explicit disabling of the ADC and isolation of the input channel from all sources. Terminating continuous conversions this way will prevent an additional, single conversion from being performed. It is not necessary to set the channel select bits to all 1s to place the ADC in a low-power state when continuous conversions are not enabled because the module automatically enters a low-power state when a conversion completes. Figure9-4. Input Channel Select ADCH Input Select ADCH Input Select 00000 AD0 10000 AD16 00001 AD1 10001 AD17 00010 AD2 10010 AD18 00011 AD3 10011 AD19 00100 AD4 10100 AD20 00101 AD5 10101 AD21 00110 AD6 10110 AD22 00111 AD7 10111 AD23 MC9S08SH32 Series Data Sheet, Rev. 3 128 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Figure9-4. Input Channel Select (continued) ADCH Input Select ADCH Input Select 01000 AD8 11000 AD24 01001 AD9 11001 AD25 01010 AD10 11010 AD26 01011 AD11 11011 AD27 01100 AD12 11100 Reserved 01101 AD13 11101 V REFH 01110 AD14 11110 V REFL 01111 AD15 11111 Module disabled 9.3.2 Status and Control Register 2 (ADCSC2) The ADCSC2 register is used to control the compare function, conversion trigger and conversion active of the ADC module. 7 6 5 4 3 2 1 0 R ADACT 0 0 ADTRG ACFE ACFGT R1 R1 W Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved 1 Bits 1 and 0 are reserved bits that must always be written to 0. Figure9-5. Status and Control Register 2 (ADCSC2) Table9-4. ADCSC2 Register Field Descriptions Field Description 7 Conversion Active — ADACT indicates that a conversion is in progress. ADACT is set when a conversion is ADACT initiated and cleared when a conversion is completed or aborted. 0 Conversion not in progress 1 Conversion in progress 6 Conversion Trigger Select — ADTRG is used to select the type of trigger to be used for initiating a conversion. ADTRG Two types of trigger are selectable: software trigger and hardware trigger. When software trigger is selected, a conversion is initiated following a write to ADCSC1. When hardware trigger is selected, a conversion is initiated following the assertion of the ADHWT input. 0 Software trigger selected 1 Hardware trigger selected MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 129

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Table9-4. ADCSC2 Register Field Descriptions (continued) Field Description 5 Compare Function Enable — ACFE is used to enable the compare function. ACFE 0 Compare function disabled 1 Compare function enabled 4 Compare Function Greater Than Enable — ACFGT is used to configure the compare function to trigger when ACFGT the result of the conversion of the input being monitored is greater than or equal to the compare value. The compare function defaults to triggering when the result of the compare of the input being monitored is less than the compare value. 0 Compare triggers when input is less than compare level 1 Compare triggers when input is greater than or equal to compare level 9.3.3 Data Result High Register (ADCRH) ADCRH contains the upper two bits of the result of a 10-bit conversion. When configured for 8-bit conversions both ADR8 and ADR9 are equal to zero. ADCRH is updated each time a conversion completes except when automatic compare is enabled and the compare condition is not met. In 10-bit MODE, reading ADCRH prevents the ADC from transferring subsequent conversion results into the result registers until ADCRL is read. If ADCRL is not read until after the next conversion is completed, then the intermediate conversion result will be lost. In 8-bit mode there is no interlocking with ADCRL. In the case that the MODE bits are changed, any data in ADCRH becomes invalid. 7 6 5 4 3 2 1 0 R 0 0 0 0 0 0 ADR9 ADR8 W Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure9-6. Data Result High Register (ADCRH) 9.3.4 Data Result Low Register (ADCRL) ADCRL contains the lower eight bits of the result of a 10-bit conversion, and all eight bits of an 8-bit conversion. This register is updated each time a conversion completes except when automatic compare is enabled and the compare condition is not met. In 10-bit mode, reading ADCRH prevents the ADC from transferring subsequent conversion results into the result registers until ADCRL is read. If ADCRL is not read until the after next conversion is completed, then the intermediate conversion results will be lost. In 8-bit mode, there is no interlocking with ADCRH. In the case that the MODE bits are changed, any data in ADCRL becomes invalid. MC9S08SH32 Series Data Sheet, Rev. 3 130 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 7 6 5 4 3 2 1 0 R ADR7 ADR6 ADR5 ADR4 ADR3 ADR2 ADR1 ADR0 W Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure9-7. Data Result Low Register (ADCRL) 9.3.5 Compare Value High Register (ADCCVH) This register holds the upper two bits of the 10-bit compare value. These bits are compared to the upper two bits of the result following a conversion in 10-bit mode when the compare function is enabled.In 8-bit operation, ADCCVH is not used during compare. 7 6 5 4 3 2 1 0 R 0 0 0 0 ADCV9 ADCV8 W Reset: 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure9-8. Compare Value High Register (ADCCVH) 9.3.6 Compare Value Low Register (ADCCVL) This register holds the lower 8 bits of the 10-bit compare value, or all 8 bits of the 8-bit compare value. Bits ADCV7:ADCV0 are compared to the lower 8 bits of the result following a conversion in either 10-bit or 8-bit mode. 7 6 5 4 3 2 1 0 R ADCV7 ADCV6 ADCV5 ADCV4 ADCV3 ADCV2 ADCV1 ADCV0 W Reset: 0 0 0 0 0 0 0 0 Figure9-9. Compare Value Low Register(ADCCVL) 9.3.7 Configuration Register (ADCCFG) ADCCFG is used to select the mode of operation, clock source, clock divide, and configure for low power or long sample time. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 131

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 7 6 5 4 3 2 1 0 R ADLPC ADIV ADLSMP MODE ADICLK W Reset: 0 0 0 0 0 0 0 0 Figure9-10. Configuration Register (ADCCFG) Table9-5. ADCCFG Register Field Descriptions Field Description 7 Low Power Configuration — ADLPC controls the speed and power configuration of the successive ADLPC approximation converter. This is used to optimize power consumption when higher sample rates are not required. 0 High speed configuration 1 Low power configuration: {FC31}The power is reduced at the expense of maximum clock speed. 6:5 Clock Divide Select — ADIV select the divide ratio used by the ADC to generate the internal clock ADCK. ADIV Table9-6 shows the available clock configurations. 4 Long Sample Time Configuration — ADLSMP selects between long and short sample time. This adjusts the ADLSMP sample period to allow higher impedance inputs to be accurately sampled or to maximize conversion speed for lower impedance inputs. Longer sample times can also be used to lower overall power consumption when continuous conversions are enabled if high conversion rates are not required. 0 Short sample time 1 Long sample time 3:2 Conversion Mode Selection — MODE bits are used to select between 10- or 8-bit operation. See Table9-7. MODE 1:0 Input Clock Select — ADICLK bits select the input clock source to generate the internal clock ADCK. See ADICLK Table9-8. Table9-6. Clock Divide Select ADIV Divide Ratio Clock Rate 00 1 Input clock 01 2 Input clock ÷ 2 10 4 Input clock ÷ 4 11 8 Input clock ÷ 8 Table9-7. Conversion Modes MODE Mode Description 00 8-bit conversion (N=8) 01 Reserved 10 10-bit conversion (N=10) 11 Reserved MC9S08SH32 Series Data Sheet, Rev. 3 132 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Table9-8. Input Clock Select ADICLK Selected Clock Source 00 Bus clock 01 Bus clock divided by 2 10 Alternate clock (ALTCLK) 11 Asynchronous clock (ADACK) 9.3.8 Pin Control 1 Register (APCTL1) The pin control registers are used to disable the I/O port control of MCU pins used as analog inputs. APCTL1 is used to control the pins associated with channels 0–7 of the ADC module. 7 6 5 4 3 2 1 0 R ADPC7 ADPC6 ADPC5 ADPC4 ADPC3 ADPC2 ADPC1 ADPC0 W Reset: 0 0 0 0 0 0 0 0 Figure9-11. Pin Control 1 Register (APCTL1) Table9-9. APCTL1 Register Field Descriptions Field Description 7 ADC Pin Control 7 — ADPC7 is used to control the pin associated with channel AD7. ADPC7 0 AD7 pin I/O control enabled 1 AD7 pin I/O control disabled 6 ADC Pin Control 6 — ADPC6 is used to control the pin associated with channel AD6. ADPC6 0 AD6 pin I/O control enabled 1 AD6 pin I/O control disabled 5 ADC Pin Control 5 — ADPC5 is used to control the pin associated with channel AD5. ADPC5 0 AD5 pin I/O control enabled 1 AD5 pin I/O control disabled 4 ADC Pin Control 4 — ADPC4 is used to control the pin associated with channel AD4. ADPC4 0 AD4 pin I/O control enabled 1 AD4 pin I/O control disabled 3 ADC Pin Control 3 — ADPC3 is used to control the pin associated with channel AD3. ADPC3 0 AD3 pin I/O control enabled 1 AD3 pin I/O control disabled 2 ADC Pin Control 2 — ADPC2 is used to control the pin associated with channel AD2. ADPC2 0 AD2 pin I/O control enabled 1 AD2 pin I/O control disabled MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 133

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Table9-9. APCTL1 Register Field Descriptions (continued) Field Description 1 ADC Pin Control 1 — ADPC1 is used to control the pin associated with channel AD1. ADPC1 0 AD1 pin I/O control enabled 1 AD1 pin I/O control disabled 0 ADC Pin Control 0 — ADPC0 is used to control the pin associated with channel AD0. ADPC0 0 AD0 pin I/O control enabled 1 AD0 pin I/O control disabled 9.3.9 Pin Control 2 Register (APCTL2) APCTL2 is used to control channels 8–15 of the ADC module. 7 6 5 4 3 2 1 0 R ADPC15 ADPC14 ADPC13 ADPC12 ADPC11 ADPC10 ADPC9 ADPC8 W Reset: 0 0 0 0 0 0 0 0 Figure9-12. Pin Control 2 Register (APCTL2) Table9-10. APCTL2 Register Field Descriptions Field Description 7 ADC Pin Control 15 — ADPC15 is used to control the pin associated with channel AD15. ADPC15 0 AD15 pin I/O control enabled 1 AD15 pin I/O control disabled 6 ADC Pin Control 14 — ADPC14 is used to control the pin associated with channel AD14. ADPC14 0 AD14 pin I/O control enabled 1 AD14 pin I/O control disabled 5 ADC Pin Control 13 — ADPC13 is used to control the pin associated with channel AD13. ADPC13 0 AD13 pin I/O control enabled 1 AD13 pin I/O control disabled 4 ADC Pin Control 12 — ADPC12 is used to control the pin associated with channel AD12. ADPC12 0 AD12 pin I/O control enabled 1 AD12 pin I/O control disabled 3 ADC Pin Control 11 — ADPC11 is used to control the pin associated with channel AD11. ADPC11 0 AD11 pin I/O control enabled 1 AD11 pin I/O control disabled 2 ADC Pin Control 10 — ADPC10 is used to control the pin associated with channel AD10. ADPC10 0 AD10 pin I/O control enabled 1 AD10 pin I/O control disabled MC9S08SH32 Series Data Sheet, Rev. 3 134 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Table9-10. APCTL2 Register Field Descriptions (continued) Field Description 1 ADC Pin Control 9 — ADPC9 is used to control the pin associated with channel AD9. ADPC9 0 AD9 pin I/O control enabled 1 AD9 pin I/O control disabled 0 ADC Pin Control 8 — ADPC8 is used to control the pin associated with channel AD8. ADPC8 0 AD8 pin I/O control enabled 1 AD8 pin I/O control disabled 9.3.10 Pin Control 3 Register (APCTL3) APCTL3 is used to control channels 16–23 of the ADC module. 7 6 5 4 3 2 1 0 R ADPC23 ADPC22 ADPC21 ADPC20 ADPC19 ADPC18 ADPC17 ADPC16 W Reset: 0 0 0 0 0 0 0 0 Figure9-13. Pin Control 3 Register (APCTL3) Table9-11. APCTL3 Register Field Descriptions Field Description 7 ADC Pin Control 23 — ADPC23 is used to control the pin associated with channel AD23. ADPC23 0 AD23 pin I/O control enabled 1 AD23 pin I/O control disabled 6 ADC Pin Control 22 — ADPC22 is used to control the pin associated with channel AD22. ADPC22 0 AD22 pin I/O control enabled 1 AD22 pin I/O control disabled 5 ADC Pin Control 21 — ADPC21 is used to control the pin associated with channel AD21. ADPC21 0 AD21 pin I/O control enabled 1 AD21 pin I/O control disabled 4 ADC Pin Control 20 — ADPC20 is used to control the pin associated with channel AD20. ADPC20 0 AD20 pin I/O control enabled 1 AD20 pin I/O control disabled 3 ADC Pin Control 19 — ADPC19 is used to control the pin associated with channel AD19. ADPC19 0 AD19 pin I/O control enabled 1 AD19 pin I/O control disabled 2 ADC Pin Control 18 — ADPC18 is used to control the pin associated with channel AD18. ADPC18 0 AD18 pin I/O control enabled 1 AD18 pin I/O control disabled MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 135

Chapter 9 Analog-to-Digital Converter (S08ADCV1) Table9-11. APCTL3 Register Field Descriptions (continued) Field Description 1 ADC Pin Control 17 — ADPC17 is used to control the pin associated with channel AD17. ADPC17 0 AD17 pin I/O control enabled 1 AD17 pin I/O control disabled 0 ADC Pin Control 16 — ADPC16 is used to control the pin associated with channel AD16. ADPC16 0 AD16 pin I/O control enabled 1 AD16 pin I/O control disabled 9.4 Functional Description The ADC module is disabled during reset or when the ADCH bits are all high. The module is idle when a conversion has completed and another conversion has not been initiated. When idle, the module is in its lowest power state. The ADC can perform an analog-to-digital conversion on any of the software selectable channels. The selected channel voltage is converted by a successive approximation algorithm into an 11-bit digital result. In 8-bit mode, the selected channel voltage is converted by a successive approximation algorithm into a 9-bit digital result. When the conversion is completed, the result is placed in the data registers (ADCRH and ADCRL).In 10-bit mode, the result is rounded to 10 bits and placed in ADCRH and ADCRL. In 8-bit mode, the result is rounded to 8 bits and placed in ADCRL. The conversion complete flag (COCO) is then set and an interrupt is generated if the conversion complete interrupt has been enabled (AIEN = 1). The ADC module has the capability of automatically comparing the result of a conversion with the contents of its compare registers. The compare function is enabled by setting the ACFE bit and operates in conjunction with any of the conversion modes and configurations. 9.4.1 Clock Select and Divide Control One of four clock sources can be selected as the clock source for the ADC module. This clock source is then divided by a configurable value to generate the input clock to the converter (ADCK). The clock is selected from one of the following sources by means of the ADICLK bits. • The bus clock, which is equal to the frequency at which software is executed. This is the default selection following reset. • The bus clock divided by 2. For higher bus clock rates, this allows a maximum divide by 16 of the bus clock. • ALTCLK, as defined for this MCU (See module section introduction). • The asynchronous clock (ADACK) – This clock is generated from a clock source within the ADC module. When selected as the clock source this clock remains active while the MCU is in wait or stop3 mode and allows conversions in these modes for lower noise operation. Whichever clock is selected, its frequency must fall within the specified frequency range for ADCK. If the available clocks are too slow, the ADC will not perform according to specifications. If the available clocks MC9S08SH32 Series Data Sheet, Rev. 3 136 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) are too fast, then the clock must be divided to the appropriate frequency. This divider is specified by the ADIV bits and can be divide-by 1, 2, 4, or 8. 9.4.2 Input Select and Pin Control The pin control registers (APCTL3, APCTL2, and APCTL1) are used to disable the I/O port control of the pins used as analog inputs.When a pin control register bit is set, the following conditions are forced for the associated MCU pin: • The output buffer is forced to its high impedance state. • The input buffer is disabled. A read of the I/O port returns a zero for any pin with its input buffer disabled. • The pullup is disabled. 9.4.3 Hardware Trigger The ADC module has a selectable asynchronous hardware conversion trigger, ADHWT, that is enabled when the ADTRG bit is set. This source is not available on all MCUs. Consult the module introduction for information on the ADHWT source specific to this MCU. When ADHWT source is available and hardware trigger is enabled (ADTRG=1), a conversion is initiated on the rising edge of ADHWT. If a conversion is in progress when a rising edge occurs, the rising edge is ignored. In continuous convert configuration, only the initial rising edge to launch continuous conversions is observed. The hardware trigger function operates in conjunction with any of the conversion modes and configurations. 9.4.4 Conversion Control Conversions can be performed in either 10-bit mode or 8-bit mode as determined by the MODE bits. Conversions can be initiated by either a software or hardware trigger. In addition, the ADC module can be configured for low power operation, long sample time, continuous conversion, and automatic compare of the conversion result to a software determined compare value. 9.4.4.1 Initiating Conversions A conversion is initiated: • Following a write to ADCSC1 (with ADCH bits not all 1s) if software triggered operation is selected. • Following a hardware trigger (ADHWT) event if hardware triggered operation is selected. • Following the transfer of the result to the data registers when continuous conversion is enabled. If continuous conversions are enabled a new conversion is automatically initiated after the completion of the current conversion. In software triggered operation, continuous conversions begin after ADCSC1 is written and continue until aborted. In hardware triggered operation, continuous conversions begin after a hardware trigger event and continue until aborted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 137

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.4.4.2 Completing Conversions A conversion is completed when the result of the conversion is transferred into the data result registers, ADCRH and ADCRL. This is indicated by the setting of COCO. An interrupt is generated if AIEN is high at the time that COCO is set. A blocking mechanism prevents a new result from overwriting previous data in ADCRH and ADCRL if the previous data is in the process of being read while in 10-bit MODE (the ADCRH register has been read but the ADCRL register has not). When blocking is active, the data transfer is blocked, COCO is not set, and the new result is lost. In the case of single conversions with the compare function enabled and the compare condition false, blocking has no effect and ADC operation is terminated. In all other cases of operation, when a data transfer is blocked, another conversion is initiated regardless of the state of ADCO (single or continuous conversions enabled). If single conversions are enabled, the blocking mechanism could result in several discarded conversions and excess power consumption. To avoid this issue, the data registers must not be read after initiating a single conversion until the conversion completes. 9.4.4.3 Aborting Conversions Any conversion in progress will be aborted when: • A write to ADCSC1 occurs (the current conversion will be aborted and a new conversion will be initiated, if ADCH are not all 1s). • A write to ADCSC2, ADCCFG, ADCCVH, or ADCCVL occurs. This indicates a mode of operation change has occurred and the current conversion is therefore invalid. • The MCU is reset. • The MCU enters stop mode with ADACK not enabled. When a conversion is aborted, the contents of the data registers, ADCRH and ADCRL, are not altered but continue to be the values transferred after the completion of the last successful conversion. In the case that the conversion was aborted by a reset, ADCRH and ADCRL return to their reset states. 9.4.4.4 Power Control The ADC module remains in its idle state until a conversion is initiated. If ADACK is selected as the conversion clock source, the ADACK clock generator is also enabled. Power consumption when active can be reduced by setting ADLPC. This results in a lower maximum value for f (see the electrical specifications). ADCK 9.4.4.5 Total Conversion Time The total conversion time depends on the sample time (as determined by ADLSMP), the MCU bus frequency, the conversion mode (8-bit or 10-bit), and the frequency of the conversion clock (f ). After ADCK the module becomes active, sampling of the input begins. ADLSMP is used to select between short and long sample times.When sampling is complete, the converter is isolated from the input channel and a successive approximation algorithm is performed to determine the digital value of the analog signal. The MC9S08SH32 Series Data Sheet, Rev. 3 138 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) result of the conversion is transferred to ADCRH and ADCRL upon completion of the conversion algorithm. If the bus frequency is less than the f frequency, precise sample time for continuous conversions ADCK cannot be guaranteed when short sample is enabled (ADLSMP=0). If the bus frequency is less than 1/11th of the f frequency, precise sample time for continuous conversions cannot be guaranteed when long ADCK sample is enabled (ADLSMP=1). The maximum total conversion time for different conditions is summarized in Table 9-12. Table9-12. Total Conversion Time vs. Control Conditions Conversion Type ADICLK ADLSMP Max Total Conversion Time Single or first continuous 8-bit 0x, 10 0 20 ADCK cycles + 5 bus clock cycles Single or first continuous 10-bit 0x, 10 0 23 ADCK cycles + 5 bus clock cycles Single or first continuous 8-bit 0x, 10 1 40 ADCK cycles + 5 bus clock cycles Single or first continuous 10-bit 0x, 10 1 43 ADCK cycles + 5 bus clock cycles Single or first continuous 8-bit 11 0 5 μs + 20 ADCK + 5 bus clock cycles Single or first continuous 10-bit 11 0 5 μs + 23 ADCK + 5 bus clock cycles Single or first continuous 8-bit 11 1 5 μs + 40 ADCK + 5 bus clock cycles Single or first continuous 10-bit 11 1 5 μs + 43 ADCK + 5 bus clock cycles Subsequent continuous 8-bit; xx 0 17 ADCK cycles f > f BUS ADCK Subsequent continuous 10-bit; xx 0 20 ADCK cycles f > f BUS ADCK Subsequent continuous 8-bit; xx 1 37 ADCK cycles f > f /11 BUS ADCK Subsequent continuous 10-bit; xx 1 40 ADCK cycles f > f /11 BUS ADCK The maximum total conversion time is determined by the clock source chosen and the divide ratio selected. The clock source is selectable by the ADICLK bits, and the divide ratio is specified by the ADIV bits. For example, in 10-bit mode, with the bus clock selected as the input clock source, the input clock divide-by-1 ratio selected, and a bus frequency of 8 MHz, then the conversion time for a single conversion is: 23 ADCK cyc 5 bus cyc Conversion time = + = 3.5 μs 8 MHz/1 8 MHz Number of bus cycles = 3.5 μs x 8 MHz = 28 cycles NOTE The ADCK frequency must be between f minimum and f ADCK ADCK maximum to meet ADC specifications. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 139

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.4.5 Automatic Compare Function The compare function can be configured to check for either an upper limit or lower limit. After the input is sampled and converted, the result is added to the two’s complement of the compare value (ADCCVH and ADCCVL). When comparing to an upper limit (ACFGT = 1), if the result is greater-than or equal-to the compare value, COCO is set. When comparing to a lower limit (ACFGT = 0), if the result is less than the compare value, COCO is set. The value generated by the addition of the conversion result and the two’s complement of the compare value is transferred to ADCRH and ADCRL. Upon completion of a conversion while the compare function is enabled, if the compare condition is not true, COCO is not set and no data is transferred to the result registers. An ADC interrupt is generated upon the setting of COCO if the ADC interrupt is enabled (AIEN = 1). NOTE The compare function can be used to monitor the voltage on a channel while the MCU is in either wait or stop3 mode. The ADC interrupt will wake the MCU when the compare condition is met. 9.4.6 MCU Wait Mode Operation The WAIT instruction puts the MCU in a lower power-consumption standby mode from which recovery is very fast because the clock sources remain active. If a conversion is in progress when the MCU enters wait mode, it continues until completion. Conversions can be initiated while the MCU is in wait mode by means of the hardware trigger or if continuous conversions are enabled. The bus clock, bus clock divided by two, and ADACK are available as conversion clock sources while in wait mode. The use of ALTCLK as the conversion clock source in wait is dependent on the definition of ALTCLK for this MCU. Consult the module introduction for information on ALTCLK specific to this MCU. A conversion complete event sets the COCO and generates an ADC interrupt to wake the MCU from wait mode if the ADC interrupt is enabled (AIEN = 1). 9.4.7 MCU Stop3 Mode Operation The STOP instruction is used to put the MCU in a low power-consumption standby mode during which most or all clock sources on the MCU are disabled. 9.4.7.1 Stop3 Mode With ADACK Disabled If the asynchronous clock, ADACK, is not selected as the conversion clock, executing a STOP instruction aborts the current conversion and places the ADC in its idle state. The contents of ADCRH and ADCRL are unaffected by stop3 mode.After exiting from stop3 mode, a software or hardware trigger is required to resume conversions. MC9S08SH32 Series Data Sheet, Rev. 3 140 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.4.7.2 Stop3 Mode With ADACK Enabled If ADACK is selected as the conversion clock, the ADC continues operation during stop3 mode. For guaranteed ADC operation, the MCU’s voltage regulator must remain active during stop3 mode. Consult the module introduction for configuration information for this MCU. If a conversion is in progress when the MCU enters stop3 mode, it continues until completion. Conversions can be initiated while the MCU is in stop3 mode by means of the hardware trigger or if continuous conversions are enabled. A conversion complete event sets the COCO and generates an ADC interrupt to wake the MCU from stop3 mode if the ADC interrupt is enabled (AIEN = 1). NOTE It is possible for the ADC module to wake the system from low power stop and cause the MCU to begin consuming run-level currents without generating a system level interrupt. To prevent this scenario, software should ensure that the data transfer blocking mechanism (discussed in Section9.4.4.2, “Completing Conversions) is cleared when entering stop3 and continuing ADC conversions. 9.4.8 MCU Stop1 and Stop2 Mode Operation The ADC module is automatically disabled when the MCU enters either stop1 or stop2 mode. All module registers contain their reset values following exit from stop1 or stop2. Therefore the module must be re-enabled and re-configured following exit from stop1 or stop2. 9.5 Initialization Information This section gives an example which provides some basic direction on how a user would initialize and configure the ADC module. The user has the flexibility of choosing between configuring the module for 8-bit or 10-bit resolution, single or continuous conversion, and a polled or interrupt approach, among many other options. Refer to Table 9-6, Table9-7, and Table 9-8 for information used in this example. NOTE Hexadecimal values designated by a preceding 0x, binary values designated by a preceding %, and decimal values have no preceding character. 9.5.1 ADC Module Initialization Example 9.5.1.1 Initialization Sequence Before the ADC module can be used to complete conversions, an initialization procedure must be performed. A typical sequence is as follows: 1. Update the configuration register (ADCCFG) to select the input clock source and the divide ratio used to generate the internal clock, ADCK. This register is also used for selecting sample time and low-power configuration. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 141

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 2. Update status and control register 2 (ADCSC2) to select the conversion trigger (hardware or software) and compare function options, if enabled. 3. Update status and control register 1 (ADCSC1) to select whether conversions will be continuous or completed only once, and to enable or disable conversion complete interrupts. The input channel on which conversions will be performed is also selected here. 9.5.1.2 Pseudo — Code Example In this example, the ADC module will be set up with interrupts enabled to perform a single 10-bit conversion at low power with a long sample time on input channel 1, where the internal ADCK clock will be derived from the bus clock divided by 1. ADCCFG = 0x98 (%10011000) Bit 7 ADLPC 1 Configures for low power (lowers maximum clock speed) Bit 6:5 ADIV 00 Sets the ADCK to the input clock ÷ 1 Bit 4 ADLSMP 1 Configures for long sample time Bit 3:2 MODE 10 Sets mode at 10-bit conversions Bit 1:0 ADICLK 00 Selects bus clock as input clock source ADCSC2 = 0x00 (%00000000) Bit 7 ADACT 0 Flag indicates if a conversion is in progress Bit 6 ADTRG 0 Software trigger selected Bit 5 ACFE 0 Compare function disabled Bit 4 ACFGT 0 Not used in this example Bit 3:2 00 Unimplemented or reserved, always reads zero Bit 1:0 00 Reserved for Freescale’s internal use; always write zero ADCSC1 = 0x41 (%01000001) Bit 7 COCO 0 Read-only flag which is set when a conversion completes Bit 6 AIEN 1 Conversion complete interrupt enabled Bit 5 ADCO 0 One conversion only (continuous conversions disabled) Bit 4:0 ADCH 00001 Input channel 1 selected as ADC input channel ADCRH/L = 0xxx Holds results of conversion. Read high byte (ADCRH) before low byte (ADCRL) so that conversion data cannot be overwritten with data from the next conversion. ADCCVH/L = 0xxx Holds compare value when compare function enabled APCTL1=0x02 AD1 pin I/O control disabled. All other AD pins remain general purpose I/O pins APCTL2=0x00 All other AD pins remain general purpose I/O pins MC9S08SH32 Series Data Sheet, Rev. 3 142 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) RESET INITIALIZE ADC ADCCFG = $98 ADCSC2 = $00 ADCSC1 = $41 CHECK NO COCO=1? YES READ ADCRH THEN ADCRL TO CLEAR COCO BIT CONTINUE Figure9-14. Initialization Flowchart for Example 9.6 Application Information This section contains information for using the ADC module in applications. The ADC has been designed to be integrated into a microcontroller for use in embedded control applications requiring an A/D converter. 9.6.1 External Pins and Routing The following sections discuss the external pins associated with the ADC module and how they should be used for best results. 9.6.1.1 Analog Supply Pins The ADC module has analog power and ground supplies (V and V ) which are available as DDAD SSAD separate pins on some devices. On other devices, V is shared on the same pin as the MCU digital V , SSAD SS and on others, both V and V are shared with the MCU digital supply pins. In these cases, there SSAD DDAD are separate pads for the analog supplies which are bonded to the same pin as the corresponding digital supply so that some degree of isolation between the supplies is maintained. When available on a separate pin, both V and V must be connected to the same voltage potential DDAD SSAD as their corresponding MCU digital supply (V and V ) and must be routed carefully for maximum DD SS noise immunity and bypass capacitors placed as near as possible to the package. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 143

Chapter 9 Analog-to-Digital Converter (S08ADCV1) In cases where separate power supplies are used for analog and digital power, the ground connection between these supplies must be at the V pin. This should be the only ground connection between these SSAD supplies if possible. The V pin makes a good single point ground location. SSAD 9.6.1.2 Analog Reference Pins In addition to the analog supplies, the ADC module has connections for two reference voltage inputs. The high reference is V , which may be shared on the same pin as V on some devices. The low REFH DDAD reference is V , which may be shared on the same pin as V on some devices. REFL SSAD When available on a separate pin, V may be connected to the same potential as V , or may be REFH DDAD driven by an external source that is between the minimum V spec and the V potential (V DDAD DDAD REFH must never exceed V ). When available on a separate pin, V must be connected to the same DDAD REFL voltage potential as V . Both V and V must be routed carefully for maximum noise SSAD REFH REFL immunity and bypass capacitors placed as near as possible to the package. AC current in the form of current spikes required to supply charge to the capacitor array at each successive approximation step is drawn through the V and V loop. The best external component to meet this REFH REFL current demand is a 0.1 μF capacitor with good high frequency characteristics. This capacitor is connected between V and V and must be placed as near as possible to the package pins. Resistance in the REFH REFL path is not recommended because the current will cause a voltage drop which could result in conversion errors. Inductance in this path must be minimum (parasitic only). 9.6.1.3 Analog Input Pins The external analog inputs are typically shared with digital I/O pins on MCU devices. The pin I/O control is disabled by setting the appropriate control bit in one of the pin control registers. Conversions can be performed on inputs without the associated pin control register bit set. It is recommended that the pin control register bit always be set when using a pin as an analog input. This avoids problems with contention because the output buffer will be in its high impedance state and the pullup is disabled. Also, the input buffer draws dc current when its input is not at either V or V . Setting the pin control register bits for DD SS all pins used as analog inputs should be done to achieve lowest operating current. Empirical data shows that capacitors on the analog inputs improve performance in the presence of noise or when the source impedance is high. Use of 0.01 μF capacitors with good high-frequency characteristics is sufficient. These capacitors are not necessary in all cases, but when used they must be placed as near as possible to the package pins and be referenced to V . SSA For proper conversion, the input voltage must fall between V and V . If the input is equal to or REFH REFL exceeds V , the converter circuit converts the signal to $3FF (full scale 10-bit representation) or $FF REFH (full scale 8-bit representation). If the input is equal to or less than V ,the converter circuit converts it REFL to $000. Input voltages between V and V are straight-line linear conversions. There will be a REFH REFL brief current associated with V when the sampling capacitor is charging. The input is sampled for REFL 3.5cycles of the ADCK source when ADLSMP is low, or 23.5cycles when ADLSMP is high. For minimal loss of accuracy due to current injection, pins adjacent to the analog input pins should not be transitioning during conversions. MC9S08SH32 Series Data Sheet, Rev. 3 144 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) 9.6.2 Sources of Error Several sources of error exist for A/D conversions. These are discussed in the following sections. 9.6.2.1 Sampling Error For proper conversions, the input must be sampled long enough to achieve the proper accuracy. Given the maximum input resistance of approximately 7kΩ and input capacitance of approximately 5.5pF, sampling to within 1/4LSB (at 10-bit resolution) can be achieved within the minimum sample window (3.5cycles @ 8MHz maximum ADCK frequency) provided the resistance of the external analog source (R ) is kept AS below 5kΩ. Higher source resistances or higher-accuracy sampling is possible by setting ADLSMP (to increase the sample window to 23.5 cycles) or decreasing ADCK frequency to increase sample time. 9.6.2.2 Pin Leakage Error Leakage on the I/O pins can cause conversion error if the external analog source resistance (R ) is high. AS If this error cannot be tolerated by the application, keep R lower than V / (2N*I ) for less than AS DDAD LEAK 1/4LSB leakage error (N = 8 in 8-bit mode or 10 in 10-bit mode). 9.6.2.3 Noise-Induced Errors System noise which occurs during the sample or conversion process can affect the accuracy of the conversion. The ADC accuracy numbers are guaranteed as specified only if the following conditions are met: • There is a 0.1μF low-ESR capacitor from V to V . REFH REFL • There is a 0.1μF low-ESR capacitor from V to V . DDAD SSAD • If inductive isolation is used from the primary supply, an additional 1 μF capacitor is placed from V to V . DDAD SSAD • V (and V , if connected) is connected to V at a quiet point in the ground plane. SSAD REFL SS • Operate the MCU in wait or stop3 mode before initiating (hardware triggered conversions) or immediately after initiating (hardware or software triggered conversions) the ADC conversion. — For software triggered conversions, immediately follow the write to the ADCSC1 with a WAIT instruction or STOP instruction. — For stop3 mode operation, select ADACK as the clock source. Operation in stop3 reduces V DD noise but increases effective conversion time due to stop recovery. • There is no I/O switching, input or output, on the MCU during the conversion. There are some situations where external system activity causes radiated or conducted noise emissions or excessive V noise is coupled into the ADC. In these situations, or when the MCU cannot be placed in DD wait or stop3 or I/O activity cannot be halted, these recommended actions may reduce the effect of noise on the accuracy: • Place a 0.01μF capacitor (C ) on the selected input channel to V or V (this will AS REFL SSAD improve noise issues but will affect sample rate based on the external analog source resistance). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 145

Chapter 9 Analog-to-Digital Converter (S08ADCV1) • Average the result by converting the analog input many times in succession and dividing the sum of the results. Four samples are required to eliminate the effect of a 1LSB, one-time error. • Reduce the effect of synchronous noise by operating off the asynchronous clock (ADACK) and averaging. Noise that is synchronous to ADCK cannot be averaged out. 9.6.2.4 Code Width and Quantization Error The ADC quantizes the ideal straight-line transfer function into 1024 steps (in 10-bit mode). Each step ideally has the same height (1 code) and width. The width is defined as the delta between the transition points to one code and the next. The ideal code width for an N bit converter (in this case N can be 8 or 10), defined as 1LSB, is: 1LSB = (VREFH - VREFL) / 2N Eqn.9-2 There is an inherent quantization error due to the digitization of the result. For 8-bit or 10-bit conversions the code will transition when the voltage is at the midpoint between the points where the straight line transfer function is exactly represented by the actual transfer function. Therefore, the quantization error will be ± 1/2LSB in 8- or 10-bit mode. As a consequence, however, the code width of the first ($000) conversion is only 1/2LSB and the code width of the last ($FF or $3FF) is 1.5LSB. 9.6.2.5 Linearity Errors The ADC may also exhibit non-linearity of several forms. Every effort has been made to reduce these errors but the system should be aware of them because they affect overall accuracy. These errors are: • Zero-scale error (E ) (sometimes called offset) — This error is defined as the difference between ZS the actual code width of the first conversion and the ideal code width (1/2LSB). Note, if the first conversion is $001, then the difference between the actual $001 code width and its ideal (1LSB) is used. • Full-scale error (E ) — This error is defined as the difference between the actual code width of FS the last conversion and the ideal code width (1.5LSB). Note, if the last conversion is $3FE, then the difference between the actual $3FE code width and its ideal (1LSB) is used. • Differential non-linearity (DNL) — This error is defined as the worst-case difference between the actual code width and the ideal code width for all conversions. • Integral non-linearity (INL) — This error is defined as the highest-value the (absolute value of the) running sum of DNL achieves. More simply, this is the worst-case difference of the actual transition voltage to a given code and its corresponding ideal transition voltage, for all codes. • Total unadjusted error (TUE) — This error is defined as the difference between the actual transfer function and the ideal straight-line transfer function, and therefore includes all forms of error. 9.6.2.6 Code Jitter, Non-Monotonicity and Missing Codes Analog-to-digital converters are susceptible to three special forms of error. These are code jitter, non-monotonicity, and missing codes. Code jitter is when, at certain points, a given input voltage converts to one of two values when sampled repeatedly. Ideally, when the input voltage is infinitesimally smaller than the transition voltage, the MC9S08SH32 Series Data Sheet, Rev. 3 146 Freescale Semiconductor

Chapter 9 Analog-to-Digital Converter (S08ADCV1) converter yields the lower code (and vice-versa). However, even very small amounts of system noise can cause the converter to be indeterminate (between two codes) for a range of input voltages around the transition voltage. This range is normally around ±1/2 LSB and will increase with noise. This error may be reduced by repeatedly sampling the input and averaging the result. Additionally the techniques discussed in Section9.6.2.3 will reduce this error. Non-monotonicity is defined as when, except for code jitter, the converter converts to a lower code for a higher input voltage. Missing codes are those values which are never converted for any input value. In 8-bit or 10-bit mode, the ADC is guaranteed to be monotonic and to have no missing codes. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 147

Chapter 9 Analog-to-Digital Converter (S08ADCV1) MC9S08SH32 Series Data Sheet, Rev. 3 148 Freescale Semiconductor

Chapter 10 Inter-Integrated Circuit (S08IICV2) 10.1 Introduction The inter-integrated circuit (IIC) provides a method of communication between a number of devices. The interface is designed to operate up to 100kbps with maximum bus loading and timing. The device is capable of operating at higher baud rates, up to a maximum of clock/20, with reduced bus loading. The maximum communication length and the number of devices that can be connected are limited by a maximum bus capacitance of 400 pF. NOTE The SDA and SCL should not be driven above V . These pins are pseudo DD open-drain containing a protection diode to V . DD 10.1.1 Module Configuration The IIC module pins, SDA and SCL can be repositioned under software control using IICPS in SOPT1 as as shown in Table10-1. IICPS in SOPT1 selects which general-purpose I/O ports are associated with IIC operation. Table10-1. IIC Position Options IICPS in SOPT1 Port Pin for SDA Port Pin for SCL 0 (default) PTA2 PTA3 1 PTB6 PTB7 Figure 10-1 shows the MC9S08SH32 Series block diagram with the IIC module highlighted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 149

Chapter10 Inter-Integrated Circuit (S08IICV2) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SDA/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure10-1. MC9S08SH32 Series Block Diagram Highlighting IIC Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 150 Freescale Semiconductor

Chapter 10 Inter-Integrated Circuit (S08IICV2) 10.1.2 Features The IIC includes these distinctive features: • Compatible with IIC bus standard • Multi-master operation • Software programmable for one of 64 different serial clock frequencies • Software selectable acknowledge bit • Interrupt driven byte-by-byte data transfer • Arbitration lost interrupt with automatic mode switching from master to slave • Calling address identification interrupt • Start and stop signal generation/detection • Repeated start signal generation • Acknowledge bit generation/detection • Bus busy detection • General call recognition • 10-bit address extension 10.1.3 Modes of Operation A brief description of the IIC in the various MCU modes is given here. • Run mode — This is the basic mode of operation. To conserve power in this mode, disable the module. • Wait mode — The module continues to operate while the MCU is in wait mode and can provide a wake-up interrupt. • Stop mode — The IIC is inactive in stop3 mode for reduced power consumption. The stop instruction does not affect IIC register states. Stop2 resets the register contents. 10.1.4 Block Diagram Figure 10-2 is a block diagram of the IIC. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 151

Inter-Integrated Circuit (S08IICV2) Address Data Bus Interrupt ADDR_DECODE DATA_MUX CTRL_REG FREQ_REG ADDR_REG STATUS_REG DATA_REG Input Sync In/Out Start Data Stop Shift Arbitration Register Control Clock Control Address Compare SCL SDA Figure10-2. IIC Functional Block Diagram 10.2 External Signal Description This section describes each user-accessible pin signal. 10.2.1 SCL — Serial Clock Line The bidirectional SCL is the serial clock line of the IIC system. 10.2.2 SDA — Serial Data Line The bidirectional SDA is the serial data line of the IIC system. 10.3 Register Definition This section consists of the IIC register descriptions in address order. Refer to the direct-page register summary in the memory chapter of this document for the absolute address assignments for all IIC registers. This section refers to registers and control bits only by their names. A MC9S08SH32 Series Data Sheet, Rev. 3 152 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) Freescale-provided equate or header file is used to translate these names into the appropriate absolute addresses. 10.3.1 IIC Address Register (IICA) 7 6 5 4 3 2 1 0 R 0 AD7 AD6 AD5 AD4 AD3 AD2 AD1 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure10-3. IIC Address Register (IICA) Table10-2. IICA Field Descriptions Field Description 7–1 Slave Address. The AD[7:1] field contains the slave address to be used by the IIC module. This field is used on AD[7:1] the 7-bit address scheme and the lower seven bits of the 10-bit address scheme. 10.3.2 IIC Frequency Divider Register (IICF) 7 6 5 4 3 2 1 0 R MULT ICR W Reset 0 0 0 0 0 0 0 0 Figure10-4. IIC Frequency Divider Register (IICF) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 153

Inter-Integrated Circuit (S08IICV2) Table10-3. IICF Field Descriptions Field Description 7–6 IIC Multiplier Factor. The MULT bits define the multiplier factor, mul. This factor, along with the SCL divider, MULT generates the IIC baud rate. The multiplier factor mul as defined by the MULT bits is provided below. 00 mul = 01 01 mul = 02 10 mul = 04 11 Reserved 5–0 IIC Clock Rate. The ICR bits are used to prescale the bus clock for bit rate selection. These bits and the MULT ICR bits determine the IIC baud rate, the SDA hold time, the SCL Start hold time, and the SCL Stop hold time. Table10-5 provides the SCL divider and hold values for corresponding values of the ICR. The SCL divider multiplied by multiplier factor mul generates IIC baud rate. bus speed (Hz) IIC baud rate = --------------------------------------------- Eqn.10-1 mul×SCLdivider SDA hold time is the delay from the falling edge of SCL (IIC clock) to the changing of SDA (IIC data). SDA hold time = bus period (s) × mul × SDA hold value Eqn.10-2 SCL start hold time is the delay from the falling edge of SDA (IIC data) while SCL is high (Start condition) to the falling edge of SCL (IIC clock). SCL Start hold time = bus period (s) × mul × SCL Start hold value Eqn.10-3 SCL stop hold time is the delay from the rising edge of SCL (IIC clock) to the rising edge of SDA SDA (IIC data) while SCL is high (Stop condition). SCL Stop hold time = bus period (s) × mul × SCL Stop hold value Eqn.10-4 For example, if the bus speed is 8MHz, the table below shows the possible hold time values with different ICR and MULT selections to achieve an IIC baud rate of 100 kbps. Table10-4. Hold Time Values for 8 MHz Bus Speed Hold Times (μs) MULT ICR SDA SCL Start SCL Stop 0x2 0x00 3.500 3.000 5.500 0x1 0x07 2.500 4.000 5.250 0x1 0x0B 2.250 4.000 5.250 0x0 0x14 2.125 4.250 5.125 0x0 0x18 1.125 4.750 5.125 MC9S08SH32 Series Data Sheet, Rev. 3 154 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) Table10-5. IIC Divider and Hold Values SCL Hold SCL Hold SDA SCL Hold SCL Hold ICR SCL SDA Hold ICR SCL (Start) (Stop) Hold (Start) (Stop) (hex) Divider Value (hex) Divider Value Value Value Value Value 00 20 7 6 11 20 160 17 78 81 01 22 7 7 12 21 192 17 94 97 02 24 8 8 13 22 224 33 110 113 03 26 8 9 14 23 256 33 126 129 04 28 9 10 15 24 288 49 142 145 05 30 9 11 16 25 320 49 158 161 06 34 10 13 18 26 384 65 190 193 07 40 10 16 21 27 480 65 238 241 08 28 7 10 15 28 320 33 158 161 09 32 7 12 17 29 384 33 190 193 0A 36 9 14 19 2A 448 65 222 225 0B 40 9 16 21 2B 512 65 254 257 0C 44 11 18 23 2C 576 97 286 289 0D 48 11 20 25 2D 640 97 318 321 0E 56 13 24 29 2E 768 129 382 385 0F 68 13 30 35 2F 960 129 478 481 10 48 9 18 25 30 640 65 318 321 11 56 9 22 29 31 768 65 382 385 12 64 13 26 33 32 896 129 446 449 13 72 13 30 37 33 1024 129 510 513 14 80 17 34 41 34 1152 193 574 577 15 88 17 38 45 35 1280 193 638 641 16 104 21 46 53 36 1536 257 766 769 17 128 21 58 65 37 1920 257 958 961 18 80 9 38 41 38 1280 129 638 641 19 96 9 46 49 39 1536 129 766 769 1A 112 17 54 57 3A 1792 257 894 897 1B 128 17 62 65 3B 2048 257 1022 1025 1C 144 25 70 73 3C 2304 385 1150 1153 1D 160 25 78 81 3D 2560 385 1278 1281 1E 192 33 94 97 3E 3072 513 1534 1537 1F 240 33 118 121 3F 3840 513 1918 1921 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 155

Inter-Integrated Circuit (S08IICV2) 10.3.3 IIC Control Register (IICC1) 7 6 5 4 3 2 1 0 R 0 0 0 IICEN IICIE MST TX TXAK W RSTA Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure10-5. IIC Control Register (IICC1) Table10-6. IICC1 Field Descriptions Field Description 7 IIC Enable. The IICEN bit determines whether the IIC module is enabled. IICEN 0 IIC is not enabled 1 IIC is enabled 6 IIC Interrupt Enable. The IICIE bit determines whether an IIC interrupt is requested. IICIE 0 IIC interrupt request not enabled 1 IIC interrupt request enabled 5 Master Mode Select. The MST bit changes from a 0 to a 1 when a start signal is generated on the bus and MST master mode is selected. When this bit changes from a 1 to a 0 a stop signal is generated and the mode of operation changes from master to slave. 0 Slave mode 1 Master mode 4 Transmit Mode Select. The TX bit selects the direction of master and slave transfers. In master mode, this bit TX should be set according to the type of transfer required. Therefore, for address cycles, this bit is always high. When addressed as a slave, this bit should be set by software according to the SRW bit in the status register. 0 Receive 1 Transmit 3 Transmit Acknowledge Enable. This bit specifies the value driven onto the SDA during data acknowledge TXAK cycles for master and slave receivers. 0 An acknowledge signal is sent out to the bus after receiving one data byte 1 No acknowledge signal response is sent 2 Repeat start. Writing a 1 to this bit generates a repeated start condition provided it is the current master. This RSTA bit is always read as cleared. Attempting a repeat at the wrong time results in loss of arbitration. 10.3.4 IIC Status Register (IICS) 7 6 5 4 3 2 1 0 R TCF BUSY 0 SRW RXAK IAAS ARBL IICIF W Reset 1 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure10-6. IIC Status Register (IICS) MC9S08SH32 Series Data Sheet, Rev. 3 156 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) Table10-7. IICS Field Descriptions Field Description 7 Transfer Complete Flag. This bit is set on the completion of a byte transfer. This bit is only valid during or TCF immediately following a transfer to the IIC module or from the IIC module.The TCF bit is cleared by reading the IICD register in receive mode or writing to the IICD in transmit mode. 0 Transfer in progress 1 Transfer complete 6 Addressed as a Slave. The IAAS bit is set when the calling address matches the programmed slave address or IAAS when the GCAEN bit is set and a general call is received. Writing the IICC register clears this bit. 0 Not addressed 1 Addressed as a slave 5 Bus Busy. The BUSY bit indicates the status of the bus regardless of slave or master mode. The BUSY bit is BUSY set when a start signal is detected and cleared when a stop signal is detected. 0 Bus is idle 1 Bus is busy 4 Arbitration Lost. This bit is set by hardware when the arbitration procedure is lost. The ARBL bit must be cleared ARBL by software by writing a 1 to it. 0 Standard bus operation 1 Loss of arbitration 2 Slave Read/Write. When addressed as a slave, the SRW bit indicates the value of the R/W command bit of the SRW calling address sent to the master. 0 Slave receive, master writing to slave 1 Slave transmit, master reading from slave 1 IIC Interrupt Flag. The IICIF bit is set when an interrupt is pending. This bit must be cleared by software, by IICIF writing a 1 to it in the interrupt routine. One of the following events can set the IICIF bit: (cid:129) One byte transfer completes (cid:129) Match of slave address to calling address (cid:129) Arbitration lost 0 No interrupt pending 1 Interrupt pending 0 Receive Acknowledge. When the RXAK bit is low, it indicates an acknowledge signal has been received after RXAK the completion of one byte of data transmission on the bus. If the RXAK bit is high it means that no acknowledge signal is detected. 0 Acknowledge received 1 No acknowledge received 10.3.5 IIC Data I/O Register (IICD) 7 6 5 4 3 2 1 0 R DATA W Reset 0 0 0 0 0 0 0 0 Figure10-7. IIC Data I/O Register (IICD) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 157

Inter-Integrated Circuit (S08IICV2) Table10-8. IICD Field Descriptions Field Description 7–0 Data — In master transmit mode, when data is written to the IICD, a data transfer is initiated. The most significant DATA bit is sent first. In master receive mode, reading this register initiates receiving of the next byte of data. NOTE When transitioning out of master receive mode, the IIC mode should be switched before reading the IICD register to prevent an inadvertent initiation of a master receive data transfer. In slave mode, the same functions are available after an address match has occurred. The TX bit in IICC must correctly reflect the desired direction of transfer in master and slave modes for the transmission to begin. For instance, if the IIC is configured for master transmit but a master receive is desired, reading the IICD does not initiate the receive. Reading the IICD returns the last byte received while the IIC is configured in master receive or slave receive modes. The IICD does not reflect every byte transmitted on the IIC bus, nor can software verify that a byte has been written to the IICD correctly by reading it back. In master transmit mode, the first byte of data written to IICD following assertion of MST is used for the address transfer and should comprise of the calling address (in bit 7 to bit 1) concatenated with the required R/W bit (in position bit 0). 10.3.6 IIC Control Register 2 (IICC2) 7 6 5 4 3 2 1 0 R 0 0 0 GCAEN ADEXT AD10 AD9 AD8 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure10-8. IIC Control Register (IICC2) Table10-9. IICC2 Field Descriptions Field Description 7 General Call Address Enable. The GCAEN bit enables or disables general call address. GCAEN 0 General call address is disabled 1 General call address is enabled 6 Address Extension. The ADEXT bit controls the number of bits used for the slave address. ADEXT 0 7-bit address scheme 1 10-bit address scheme 2–0 Slave Address. The AD[10:8] field contains the upper three bits of the slave address in the 10-bit address AD[10:8] scheme. This field is only valid when the ADEXT bit is set. MC9S08SH32 Series Data Sheet, Rev. 3 158 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) 10.4 Functional Description This section provides a complete functional description of the IIC module. 10.4.1 IIC Protocol The IIC bus system uses a serial data line (SDA) and a serial clock line (SCL) for data transfer. All devices connected to it must have open drain or open collector outputs. A logic AND function is exercised on both lines with external pullup resistors. The value of these resistors is system dependent. Normally, a standard communication is composed of four parts: • Start signal • Slave address transmission • Data transfer • Stop signal The stop signal should not be confused with the CPU stop instruction. The IIC bus system communication is described briefly in the following sections and illustrated in Figure 10-9. msb lsb msb lsb SCL 1 2 3 4 5 6 7 8 9 1 2 3 4 5 6 7 8 9 SDA AD7 AD6 AD5 AD4 AD3 AD2 AD1 R/W XXX D7 D6 D5 D4 D3 D2 D1 D0 Start Calling Address Read/ Ack Data Byte No Stop Signal Write Bit Ack Signal Bit msb lsb msb lsb SCL 1 2 3 4 5 6 7 8 9 1 2 3 4 5 6 7 8 9 SDA AD7 AD6 AD5 AD4 AD3 AD2 AD1 R/W XX AD7 AD6 AD5 AD4 AD3 AD2 AD1 R/W Start Calling Address Read/ Ack Repeated New Calling Address Read/ No Stop Signal Write Bit Start Write Ack Signal Signal Bit Figure10-9. IIC Bus Transmission Signals 10.4.1.1 Start Signal When the bus is free, no master device is engaging the bus (SCL and SDA lines are at logical high), a master may initiate communication by sending a start signal. As shown in Figure10-9, a start signal is defined as a high-to-low transition of SDA while SCL is high. This signal denotes the beginning of a new data transfer (each data transfer may contain several bytes of data) and brings all slaves out of their idle states. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 159

Inter-Integrated Circuit (S08IICV2) 10.4.1.2 Slave Address Transmission The first byte of data transferred immediately after the start signal is the slave address transmitted by the master. This is a seven-bit calling address followed by a R/W bit. The R/W bit tells the slave the desired direction of data transfer. 1 = Read transfer, the slave transmits data to the master. 0 = Write transfer, the master transmits data to the slave. Only the slave with a calling address that matches the one transmitted by the master responds by sending back an acknowledge bit. This is done by pulling the SDA low at the ninth clock (see Figure 10-9). No two slaves in the system may have the same address. If the IIC module is the master, it must not transmit an address equal to its own slave address. The IIC cannot be master and slave at the same time. However, if arbitration is lost during an address cycle, the IIC reverts to slave mode and operates correctly even if it is being addressed by another master. 10.4.1.3 Data Transfer Before successful slave addressing is achieved, the data transfer can proceed byte-by-byte in a direction specified by the R/W bit sent by the calling master. All transfers that come after an address cycle are referred to as data transfers, even if they carry sub-address information for the slave device Each data byte is 8 bits long. Data may be changed only while SCL is low and must be held stable while SCL is high as shown in Figure 10-9. There is one clock pulse on SCL for each data bit, the msb being transferred first. Each data byte is followed by a 9th (acknowledge) bit, which is signalled from the receiving device. An acknowledge is signalled by pulling the SDA low at the ninth clock. In summary, one complete data transfer needs nine clock pulses. If the slave receiver does not acknowledge the master in the ninth bit time, the SDA line must be left high by the slave. The master interprets the failed acknowledge as an unsuccessful data transfer. If the master receiver does not acknowledge the slave transmitter after a data byte transmission, the slave interprets this as an end of data transfer and releases the SDA line. In either case, the data transfer is aborted and the master does one of two things: • Relinquishes the bus by generating a stop signal. • Commences a new calling by generating a repeated start signal. 10.4.1.4 Stop Signal The master can terminate the communication by generating a stop signal to free the bus. However, the master may generate a start signal followed by a calling command without generating a stop signal first. This is called repeated start. A stop signal is defined as a low-to-high transition of SDA while SCL at logical 1 (see Figure 10-9). The master can generate a stop even if the slave has generated an acknowledge at which point the slave must release the bus. MC9S08SH32 Series Data Sheet, Rev. 3 160 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) 10.4.1.5 Repeated Start Signal As shown in Figure 10-9, a repeated start signal is a start signal generated without first generating a stop signal to terminate the communication. This is used by the master to communicate with another slave or with the same slave in different mode (transmit/receive mode) without releasing the bus. 10.4.1.6 Arbitration Procedure The IIC bus is a true multi-master bus that allows more than one master to be connected on it. If two or more masters try to control the bus at the same time, a clock synchronization procedure determines the bus clock, for which the low period is equal to the longest clock low period and the high is equal to the shortest one among the masters. The relative priority of the contending masters is determined by a data arbitration procedure, a bus master loses arbitration if it transmits logic 1 while another master transmits logic 0. The losing masters immediately switch over to slave receive mode and stop driving SDA output. In this case, the transition from master to slave mode does not generate a stop condition. Meanwhile, a status bit is set by hardware to indicate loss of arbitration. 10.4.1.7 Clock Synchronization Because wire-AND logic is performed on the SCL line, a high-to-low transition on the SCL line affects all the devices connected on the bus. The devices start counting their low period and after a device’s clock has gone low, it holds the SCL line low until the clock high state is reached. However, the change of low to high in this device clock may not change the state of the SCL line if another device clock is still within its low period. Therefore, synchronized clock SCL is held low by the device with the longest low period. Devices with shorter low periods enter a high wait state during this time (see Figure 10-10). When all devices concerned have counted off their low period, the synchronized clock SCL line is released and pulled high. There is then no difference between the device clocks and the state of the SCL line and all the devices start counting their high periods. The first device to complete its high period pulls the SCL line low again. Delay Start Counting High Period SCL1 SCL2 SCL Internal Counter Reset Figure10-10. IIC Clock Synchronization MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 161

Inter-Integrated Circuit (S08IICV2) 10.4.1.8 Handshaking The clock synchronization mechanism can be used as a handshake in data transfer. Slave devices may hold the SCL low after completion of one byte transfer (9 bits). In such a case, it halts the bus clock and forces the master clock into wait states until the slave releases the SCL line. 10.4.1.9 Clock Stretching The clock synchronization mechanism can be used by slaves to slow down the bit rate of a transfer. After the master has driven SCL low the slave can drive SCL low for the required period and then release it. If the slave SCL low period is greater than the master SCL low period then the resulting SCL bus signal low period is stretched. 10.4.2 10-bit Address For 10-bit addressing, 0x11110 is used for the first 5 bits of the first address byte. Various combinations of read/write formats are possible within a transfer that includes 10-bit addressing. 10.4.2.1 Master-Transmitter Addresses a Slave-Receiver The transfer direction is not changed (see Table10-10). When a 10-bit address follows a start condition, each slave compares the first seven bits of the first byte of the slave address (11110XX) with its own address and tests whether the eighth bit (R/W direction bit) is 0. More than one device can find a match and generate an acknowledge (A1). Then, each slave that finds a match compares the eight bits of the second byte of the slave address with its own address. Only one slave finds a match and generates an acknowledge (A2). The matching slave remains addressed by the master until it receives a stop condition (P) or a repeated start condition (Sr) followed by a different slave address. Slave Address 1st 7 bits R/W Slave Address 2nd byte S A1 A2 Data A ... Data A/A P 11110 + AD10 + AD9 0 AD[8:1] Table10-10. Master-Transmitter Addresses Slave-Receiver with a 10-bit Address After the master-transmitter has sent the first byte of the 10-bit address, the slave-receiver sees an IIC interrupt. Software must ensure the contents of IICD are ignored and not treated as valid data for this interrupt. 10.4.2.2 Master-Receiver Addresses a Slave-Transmitter The transfer direction is changed after the second R/W bit (see Table 10-11). Up to and including acknowledge bit A2, the procedure is the same as that described for a master-transmitter addressing a slave-receiver. After the repeated start condition (Sr), a matching slave remembers that it was addressed before. This slave then checks whether the first seven bits of the first byte of the slave address following Sr are the same as they were after the start condition (S) and tests whether the eighth (R/W) bit is 1. If there is a match, the slave considers that it has been addressed as a transmitter and generates acknowledge A3. The slave-transmitter remains addressed until it receives a stop condition (P) or a repeated start condition (Sr) followed by a different slave address. MC9S08SH32 Series Data Sheet, Rev. 3 162 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) After a repeated start condition (Sr), all other slave devices also compare the first seven bits of the first byte of the slave address with their own addresses and test the eighth (R/W) bit. However, none of them are addressed because R/W = 1 (for 10-bit devices) or the 11110XX slave address (for 7-bit devices) does not match. Slave Address Slave Address Slave Address R/W R/W S 1st 7 bits A1 2nd byte A2 Sr 1st 7 bits A3 Data A ... Data A P 11110 + AD10 + AD9 0 AD[8:1] 11110 + AD10 + AD9 1 Table10-11. Master-Receiver Addresses a Slave-Transmitter with a 10-bit Address After the master-receiver has sent the first byte of the 10-bit address, the slave-transmitter sees an IIC interrupt. Software must ensure the contents of IICD are ignored and not treated as valid data for this interrupt. 10.4.3 General Call Address General calls can be requested in 7-bit address or 10-bit address. If the GCAEN bit is set, the IIC matches the general call address as well as its own slave address. When the IIC responds to a general call, it acts as a slave-receiver and the IAAS bit is set after the address cycle. Software must read the IICD register after the first byte transfer to determine whether the address matches is its own slave address or a general call. If the value is 00, the match is a general call. If the GCAEN bit is clear, the IIC ignores any data supplied from a general call address by not issuing an acknowledgement. 10.5 Resets The IIC is disabled after reset. The IIC cannot cause an MCU reset. 10.6 Interrupts The IIC generates a single interrupt. An interrupt from the IIC is generated when any of the events in Table 10-12 occur, provided the IICIE bit is set. The interrupt is driven by bit IICIF (of the IIC status register) and masked with bit IICIE (of the IIC control register). The IICIF bit must be cleared by software by writing a 1 to it in the interrupt routine. You can determine the interrupt type by reading the status register. Table10-12. Interrupt Summary Interrupt Source Status Flag Local Enable Complete 1-byte transfer TCF IICIF IICIE Match of received calling address IAAS IICIF IICIE Arbitration Lost ARBL IICIF IICIE 10.6.1 Byte Transfer Interrupt The TCF (transfer complete flag) bit is set at the falling edge of the ninth clock to indicate the completion of byte transfer. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 163

Inter-Integrated Circuit (S08IICV2) 10.6.2 Address Detect Interrupt When the calling address matches the programmed slave address (IIC address register) or when the GCAEN bit is set and a general call is received, the IAAS bit in the status register is set. The CPU is interrupted, provided the IICIE is set. The CPU must check the SRW bit and set its Tx mode accordingly. 10.6.3 Arbitration Lost Interrupt The IIC is a true multi-master bus that allows more than one master to be connected on it. If two or more masters try to control the bus at the same time, the relative priority of the contending masters is determined by a data arbitration procedure. The IIC module asserts this interrupt when it loses the data arbitration process and the ARBL bit in the status register is set. Arbitration is lost in the following circumstances: • SDA sampled as a low when the master drives a high during an address or data transmit cycle. • SDA sampled as a low when the master drives a high during the acknowledge bit of a data receive cycle. • A start cycle is attempted when the bus is busy. • A repeated start cycle is requested in slave mode. • A stop condition is detected when the master did not request it. This bit must be cleared by software writing a 1 to it. MC9S08SH32 Series Data Sheet, Rev. 3 164 Freescale Semiconductor

Inter-Integrated Circuit (S08IICV2) 10.7 Initialization/Application Information Module Initialization (Slave) 1. Write: IICC2 — to enable or disable general call — to select 10-bit or 7-bit addressing mode 2. Write: IICA — to set the slave address 3. Write: IICC1 — to enable IIC and interrupts 4. Initialize RAM variables (IICEN = 1 and IICIE = 1) for transmit data 5. Initialize RAM variables used to achieve the routine shown in Figure 10-12 Module Initialization (Master) 1. Write: IICF — to set the IIC baud rate (example provided in this chapter) 2. Write: IICC1 — to enable IIC and interrupts 3. Initialize RAM variables (IICEN = 1 and IICIE = 1) for transmit data 4. Initialize RAM variables used to achieve the routine shown in Figure 10-12 5. Write: IICC1 — to enable TX Register Model IICA AD[7:1] 0 When addressed as a slave (in slave mode), the module responds to this address IICF MULT ICR Baud rate = BUSCLK / (2 x MULT x (SCL DIVIDER)) IICC1 IICEN IICIE MST TX TXAK RSTA 0 0 Module configuration IICS TCF IAAS BUSY ARBL 0 SRW IICIF RXAK Module status flags IICD DATA Data register; Write to transmit IIC data read to read IIC data IICC2 GCAEN ADEXT 0 0 0 AD10 AD9 AD8 Address configuration Figure10-11. IIC Module Quick Start MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 165

Inter-Integrated Circuit (S08IICV2) Clear IICIF Y Master N Mode ? TX Tx/Rx RX Y Arbitration Lost ? ? N Last Byte Transmitted Y Clear ARBL ? N RXAK=0 N Byte tLoa Bset Read Y N IAAS=1 Y IAAS=1 ? ? ? ? Y N Y N Address Transfer Data Transfer See Note 1 See Note 2 Y Y AdEdnr dC oyfc le Y Byte2 tnod B Lea sRt ead (Read) SRW=1 TX/RX RX (Mast?er Rx) ? ? ? N N N(Write) TX Write Next Generate Set TX Y ACK from Set TXACK =1 Stop Signal Receiver Byte to IICD Mode (MST = 0) ? N Read Data Write Data Tx Next from IICD to IICD Byte and Store Switch to Set RX Switch to Rx Mode Mode Rx Mode Generate Read Data Dummy Read Dummy Read Dummy Read Stop Signal from IICD from IICD from IICD from IICD (MST = 0) and Store RTI NOTES: 1 If general call is enabled, a check must be done to determine whether the received address was a general call address (0x00). If the received address was a general call address, then the general call must be handled by user software. 2 When 10-bit addressing is used to address a slave, the slave sees an interrupt following the first byte of the extended address. User software must ensure that for this interrupt, the contents of IICD are ignored and not treated as a valid data transfer. Figure10-12. Typical IIC Interrupt Routine MC9S08SH32 Series Data Sheet, Rev. 3 166 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) 11.1 Introduction The internal clock source (ICS) module provides clock source choices for the MCU. The module contains a frequency-locked loop (FLL) as a clock source that is controllable by either an internal or an external reference clock. The module can provide this FLL clock or either of the internal or external reference clocks as a source for the MCU system clock. There are also signals provided to control a low power oscillator (XOSC) module to allow the use of an external crystal/resonator as the external reference clock. Whichever clock source is chosen, it is passed through a reduced bus divider (BDIV) which allows a lower final output clock frequency to be derived. The bus frequency will be one-half of the ICSOUT frequency. After reset, the ICS is configured for FEI mode and BDIV is reset to 0:1 to introduce an extra divide-by-two before ICSOUT so the bus frequency is f /4. At POR, the TRIM and FTRIM settings are reset to 0x80 and 0 respectively so the dco frequency dco is f . For other resets, the trim settings keep the value that was present before the reset. dco_ut NOTE Refer to Section1.3, “System Clock Distribution for a detailed view of the distribution of clock sources throughout the MCU. 11.1.1 Module Configuration When the internal reference is enabled in stop mode (IREFSTEN = 1), the voltage regulator must also be enabled in stop mode by setting the LVDE and LVDSE bits in the SPMSC1 register. Figure 11-1 shows the MC9S08SH32 block diagram with the ICS highlighted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 167

Chapter11 Internal Clock Source (S08ICSV2) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure11-1. MC9S08SH32 Series Block Diagram Highlighting ICS Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 168 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) 11.1.2 Features Key features of the ICS module follow. For device specific information, refer to the ICS Characteristics in the Electricals section of the documentation. • Frequency-locked loop (FLL) is trimmable for accuracy — 0.1% resolution using internal 32kHz reference — 2% deviation over voltage and temperature using internal 32kHz reference • Internal or external reference clocks up to 5MHz can be used to control the FLL — 3 bit select for reference divider is provided • Internal reference clock has 9 trim bits available • Internal or external reference clocks can be selected as the clock source for the MCU • Whichever clock is selected as the source can be divided down — 2 bit select for clock divider is provided – Allowable dividers are: 1, 2, 4, 8 – BDC clock is provided as a constant divide by 2 of the DCO output • Control signals for a low power oscillator as the external reference clock are provided — HGO, RANGE, EREFS, ERCLKEN, EREFSTEN • FLL Engaged Internal mode is automatically selected out of reset 11.1.3 Block Diagram Figure 11-2 is the ICS block diagram. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 169

Chapter 11 Internal Clock Source (S08ICSV2) Optional External Reference Clock Source Block ICSERCLK RANGE EREFS ERCLKEN HGO EREFSTEN IRCLKEN ICSIRCLK IREFSTEN CLKS BDIV / 2n ICSOUT Internal n=0-3 Reference LP Clock DCOOUT IREFS 9 DCO / 2 ICSLCLK TRIM ICSFFCLK 9 / 2n RDIV_CLK Filter n=0-7 FLL RDIV Internal Clock Source Block Figure11-2. Internal Clock Source (ICS) Block Diagram 11.1.4 Modes of Operation There are seven modes of operation for the ICS: FEI, FEE, FBI, FBILP, FBE, FBELP, and stop. 11.1.4.1 FLL Engaged Internal (FEI) In FLL engaged internal mode, which is the default mode, the ICS supplies a clock derived from the FLL which is controlled by the internal reference clock. The BDC clock is supplied from the FLL. 11.1.4.2 FLL Engaged External (FEE) In FLL engaged external mode, the ICS supplies a clock derived from the FLL which is controlled by an external reference clock. The BDC clock is supplied from the FLL. 11.1.4.3 FLL Bypassed Internal (FBI) In FLL bypassed internal mode, the FLL is enabled and controlled by the internal reference clock, but is bypassed. The ICS supplies a clock derived from the internal reference clock. The BDC clock is supplied from the FLL. MC9S08SH32 Series Data Sheet, Rev. 3 170 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) 11.1.4.4 FLL Bypassed Internal Low Power (FBILP) In FLL bypassed internal low power mode, the FLL is disabled and bypassed, and the ICS supplies a clock derived from the internal reference clock. The BDC clock is not available. 11.1.4.5 FLL Bypassed External (FBE) In FLL bypassed external mode, the FLL is enabled and controlled by an external reference clock, but is bypassed. The ICS supplies a clock derived from the external reference clock. The external reference clock can be an external crystal/resonator supplied by an OSC controlled by the ICS, or it can be another external clock source. The BDC clock is supplied from the FLL. 11.1.4.6 FLL Bypassed External Low Power (FBELP) In FLL bypassed external low power mode, the FLL is disabled and bypassed, and the ICS supplies a clock derived from the external reference clock. The external reference clock can be an external crystal/resonator supplied by an OSC controlled by the ICS, or it can be another external clock source. The BDC clock is not available. 11.1.4.7 Stop (STOP) In stop mode the FLL is disabled and the internal or external reference clocks can be selected to be enabled or disabled. The BDC clock is not available and the ICS does not provide an MCU clock source. 11.2 External Signal Description There are no ICS signals that connect off chip. 11.3 Register Definition Figure 11-1 is a summary of ICS registers. Table11-1. ICS Register Summary Name 7 6 5 4 3 2 1 0 R ICSC1 CLKS RDIV IREFS IRCLKEN IREFSTEN W R ICSC2 BDIV RANGE HGO LP EREFS ERCLKEN EREFSTEN W R ICSTRM TRIM W R 0 0 0 IREFST CLKST OSCINIT ICSSC FTRIM W MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 171

Chapter 11 Internal Clock Source (S08ICSV2) 11.3.1 ICS Control Register 1 (ICSC1) 7 6 5 4 3 2 1 0 R CLKS RDIV IREFS IRCLKEN IREFSTEN W Reset: 0 0 0 0 0 1 0 0 Figure11-3. ICS Control Register 1 (ICSC1) Table11-2. ICS Control Register 1 Field Descriptions Field Description 7:6 Clock Source Select — Selects the clock source that controls the bus frequency. The actual bus frequency CLKS depends on the value of the BDIV bits. 00 Output of FLL is selected. 01 Internal reference clock is selected. 10 External reference clock is selected. 11 Reserved, defaults to 00. 5:3 Reference Divider — Selects the amount to divide down the FLL reference clock selected by the IREFS bits. RDIV Resulting frequency must be in the range 31.25 kHz to 39.0625 kHz. 000 Encoding 0 — Divides reference clock by 1 (reset default) 001 Encoding 1 — Divides reference clock by 2 010 Encoding 2 — Divides reference clock by 4 011 Encoding 3 — Divides reference clock by 8 100 Encoding 4 — Divides reference clock by 16 101 Encoding 5 — Divides reference clock by 32 110 Encoding 6 — Divides reference clock by 64 111 Encoding 7 — Divides reference clock by 128 2 Internal Reference Select — The IREFS bit selects the reference clock source for the FLL. IREFS 1 Internal reference clock selected 0 External reference clock selected 1 Internal Reference Clock Enable — The IRCLKEN bit enables the internal reference clock for use as IRCLKEN ICSIRCLK. 1 ICSIRCLK active 0 ICSIRCLK inactive 0 Internal Reference Stop Enable — The IREFSTEN bit controls whether or not the internal reference clock IREFSTEN remains enabled when the ICS enters stop mode. 1 Internal reference clock stays enabled in stop if IRCLKEN is set or if ICS is in FEI, FBI, or FBILP mode before entering stop 0 Internal reference clock is disabled in stop MC9S08SH32 Series Data Sheet, Rev. 3 172 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) 11.3.2 ICS Control Register 2 (ICSC2) 7 6 5 4 3 2 1 0 R BDIV RANGE HGO LP EREFS ERCLKEN EREFSTEN W Reset: 0 1 0 0 0 0 0 0 Figure11-4. ICS Control Register 2 (ICSC2) Table11-3. ICS Control Register 2 Field Descriptions Field Description 7:6 Bus Frequency Divider — Selects the amount to divide down the clock source selected by the CLKS bits. This BDIV controls the bus frequency. 00 Encoding 0 — Divides selected clock by 1 01 Encoding 1 — Divides selected clock by 2 (reset default) 10 Encoding 2 — Divides selected clock by 4 11 Encoding 3 — Divides selected clock by 8 5 Frequency Range Select — Selects the frequency range for the external oscillator. RANGE 1 High frequency range selected for the external oscillator 0 Low frequency range selected for the external oscillator 4 High Gain Oscillator Select — The HGO bit controls the external oscillator mode of operation. HGO 1 Configure external oscillator for high gain operation 0 Configure external oscillator for low power operation 3 Low Power Select — The LP bit controls whether the FLL is disabled in FLL bypassed modes. LP 1 FLL is disabled in bypass modes unless BDM is active 0 FLL is not disabled in bypass mode 2 External Reference Select — The EREFS bit selects the source for the external reference clock. EREFS 1 Oscillator requested 0 External Clock Source requested 1 External Reference Enable — The ERCLKEN bit enables the external reference clock for use as ICSERCLK. ERCLKEN 1 ICSERCLK active 0 ICSERCLK inactive 0 External Reference Stop Enable — The EREFSTEN bit controls whether or not the external reference clock EREFSTEN remains enabled when the ICS enters stop mode. 1 External reference clock stays enabled in stop if ERCLKEN is set or if ICS is in FEE, FBE, or FBELP mode before entering stop 0 External reference clock is disabled in stop MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 173

Chapter 11 Internal Clock Source (S08ICSV2) 11.3.3 ICS Trim Register (ICSTRM) 7 6 5 4 3 2 1 0 R TRIM W POR: 1 0 0 0 0 0 0 0 Reset: U U U U U U U U Figure11-5. ICS Trim Register (ICSTRM) Table11-4. ICS Trim Register Field Descriptions Field Description 7:0 ICS Trim Setting — The TRIM bits control the internal reference clock frequency by controlling the internal TRIM reference clock period. The bits’ effect are binary weighted (i.e., bit 1 will adjust twice as much as bit 0). Increasing the binary value in TRIM will increase the period, and decreasing the value will decrease the period. An additional fine trim bit is available in ICSSC as the FTRIM bit. 11.3.4 ICS Status and Control (ICSSC) 7 6 5 4 3 2 1 0 R 0 0 0 IREFST CLKST OSCINIT FTRIM W POR: 0 0 0 1 0 0 0 0 Reset: 0 0 0 1 0 0 0 U Figure11-6. ICS Status and Control Register (ICSSC) Table11-5. ICS Status and Control Register Field Descriptions Field Description 7:5 Reserved, should be cleared. 4 Internal Reference Status — The IREFST bit indicates the current source for the reference clock. The IREFST IREFST bit does not update immediately after a write to the IREFS bit due to internal synchronization between clock domains. 0 Source of reference clock is external clock. 1 Source of reference clock is internal clock. 3-2 Clock Mode Status — The CLKST bits indicate the current clock mode. The CLKST bits don’t update CLKST immediately after a write to the CLKS bits due to internal synchronization between clock domains. 00 Output of FLL is selected. 01 FLL Bypassed, Internal reference clock is selected. 10 FLL Bypassed, External reference clock is selected. 11 Reserved. MC9S08SH32 Series Data Sheet, Rev. 3 174 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) Table11-5. ICS Status and Control Register Field Descriptions (continued) Field Description 1 OSC Initialization — If the external reference clock is selected by ERCLKEN or by the ICS being in FEE, FBE, or FBELP mode, and if EREFS is set, then this bit is set after the initialization cycles of the external oscillator clock have completed. This bit is only cleared when either ERCLKEN or EREFS are cleared. 0 ICS Fine Trim — The FTRIM bit controls the smallest adjustment of the internal reference clock frequency. Setting FTRIM will increase the period and clearing FTRIM will decrease the period by the smallest amount possible. 11.4 Functional Description 11.4.1 Operational Modes IREFS=1 CLKS=00 FLL Engaged IREFS=0 Internal (FEI) IREFS=1 CLKS=10 CLKS=01 BDM Enabled BDM Enabled or LP =0 or LP=0 FLL Bypassed FLL Bypassed FLL Bypassed FLL Bypassed External Low Internal Low External (FBE) Internal (FBI) Power(FBELP) Power(FBILP) IREFS=0 IREFS=1 CLKS=10 CLKS=01 BDM Disabled BDM Disabled and LP=1 FLL Engaged and LP=1 External (FEE) IREFS=0 CLKS=00 Returns to state that was active Entered from any state Stop before MCU entered stop, unless when MCU enters stop RESET occurs while in stop. Figure11-7. Clock Switching Modes The seven states of the ICS are shown as a state diagram and are described below. The arrows indicate the allowed movements between the states. 11.4.1.1 FLL Engaged Internal (FEI) FLL engaged internal (FEI) is the default mode of operation and is entered when all the following conditions occur: MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 175

Chapter 11 Internal Clock Source (S08ICSV2) • CLKS bits are written to 00 • IREFS bit is written to 1 • RDIV bits are written to divide trimmed reference clock to be within the range of 31.25 kHz to 39.0625 kHz. In FLL engaged internal mode, the ICSOUT clock is derived from the FLL clock, which is controlled by the internal reference clock. The FLL loop will lock the frequency to 1024 times the reference frequency, as selected by the RDIV bits. The ICSLCLK is available for BDC communications, and the internal reference clock is enabled. 11.4.1.2 FLL Engaged External (FEE) The FLL engaged external (FEE) mode is entered when all the following conditions occur: • CLKS bits are written to 00 • IREFS bit is written to 0 • RDIV bits are written to divide reference clock to be within the range of 31.25 kHz to 39.0625 kHz In FLL engaged external mode, the ICSOUT clock is derived from the FLL clock which is controlled by the external reference clock.The FLL loop will lock the frequency to 1024 times the reference frequency, as selected by the RDIV bits. The ICSLCLK is available for BDC communications, and the external reference clock is enabled. 11.4.1.3 FLL Bypassed Internal (FBI) The FLL bypassed internal (FBI) mode is entered when all the following conditions occur: • CLKS bits are written to 01 • IREFS bit is written to 1. • BDM mode is active or LP bit is written to 0 In FLL bypassed internal mode, the ICSOUT clock is derived from the internal reference clock. The FLL clock is controlled by the internal reference clock, and the FLL loop will lock the FLL frequency to 1024 times the reference frequency, as selected by the RDIV bits. The ICSLCLK will be available for BDC communications, and the internal reference clock is enabled. 11.4.1.4 FLL Bypassed Internal Low Power (FBILP) The FLL bypassed internal low power (FBILP) mode is entered when all the following conditions occur: • CLKS bits are written to 01 • IREFS bit is written to 1. • BDM mode is not active and LP bit is written to 1 In FLL bypassed internal low power mode, the ICSOUT clock is derived from the internal reference clock and the FLL is disabled. The ICSLCLK will be not be available for BDC communications, and the internal reference clock is enabled. MC9S08SH32 Series Data Sheet, Rev. 3 176 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) 11.4.1.5 FLL Bypassed External (FBE) The FLL bypassed external (FBE) mode is entered when all the following conditions occur: • CLKS bits are written to 10. • IREFS bit is written to 0. • BDM mode is active or LP bit is written to 0. In FLL bypassed external mode, the ICSOUT clock is derived from the external reference clock. The FLL clock is controlled by the external reference clock, and the FLL loop will lock the FLL frequency to 1024 times the reference frequency, as selected by the RDIV bits, so that the ICSLCLK will be available for BDC communications, and the external reference clock is enabled. 11.4.1.6 FLL Bypassed External Low Power (FBELP) The FLL bypassed external low power (FBELP) mode is entered when all the following conditions occur: • CLKS bits are written to 10. • IREFS bit is written to 0. • BDM mode is not active and LP bit is written to 1. In FLL bypassed external low power mode, the ICSOUT clock is derived from the external reference clock and the FLL is disabled. The ICSLCLK will be not be available for BDC communications. The external reference clock is enabled. 11.4.1.7 Stop Stop mode is entered whenever the MCU enters a STOP state. In this mode, all ICS clock signals are static except in the following cases: ICSIRCLK will be active in stop mode when all the following conditions occur: • IRCLKEN bit is written to 1 • IREFSTEN bit is written to 1 ICSERCLK will be active in stop mode when all the following conditions occur: • ERCLKEN bit is written to 1 • EREFSTEN bit is written to 1 11.4.2 Mode Switching When switching between FLL engaged internal (FEI) and FLL engaged external (FEE) modes the IREFS bit can be changed at anytime, but the RDIV bits must be changed simultaneously so that the resulting frequency stays in the range of 31.25 kHz to 39.0625 kHz. After a change in the IREFS value the FLL will begin locking again after a few full cycles of the resulting divided reference frequency. The completion of the switch is shown by the IREFST bit. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 177

Chapter 11 Internal Clock Source (S08ICSV2) The CLKS bits can also be changed at anytime, but the RDIV bits must be changed simultaneously so that the resulting frequency stays in the range of 31.25 kHz to 39.0625 kHz. The actual switch to the newly selected clock will not occur until after a few full cycles of the new clock. If the newly selected clock is not available, the previous clock will remain selected. 11.4.3 Bus Frequency Divider The BDIV bits can be changed at anytime and the actual switch to the new frequency will occur immediately. 11.4.4 Low Power Bit Usage The low power bit (LP) is provided to allow the FLL to be disabled and thus conserve power when it is not being used. However, in some applications it may be desirable to enable the FLL and allow it to lock for maximum accuracy before switching to an FLL engaged mode. Do this by writing the LP bit to 0. 11.4.5 Internal Reference Clock When IRCLKEN is set the internal reference clock signal will be presented as ICSIRCLK, which can be used as an additional clock source. The ICSIRCLK frequency can be re-targeted by trimming the period of the internal reference clock. This can be done by writing a new value to the TRIM bits in the ICSTRM register. Writing a larger value will slow down the ICSIRCLK frequency, and writing a smaller value to the ICSTRM register will speed up the ICSIRCLK frequency. The TRIM bits will effect the ICSOUT frequency if the ICS is in FLL engaged internal (FEI), FLL bypassed internal (FBI), or FLL bypassed internal low power (FBILP) mode. The TRIM and FTRIM value will not be affected by a reset. Until ICSIRCLK is trimmed, programming low reference divider (RDIV) factors may result in ICSOUT frequencies that exceed the maximum chip-level frequency and violate the chip-level clock timing specifications (see the Device Overview chapter). If IREFSTEN is set and the IRCLKEN bit is written to 1, the internal reference clock will keep running during stop mode in order to provide a fast recovery upon exiting stop. All MCU devices are factory programmed with a trim value in a reserved memory location (NVTRIM:NVFTRIM). This value can be copied to the ICSTRM register during reset initialization. The factory trim value includes the FTRIM bit. For finer precision, the user can trim the internal oscillator in the application to take into account small differences between the factory test setup and actual application conditions. 11.4.6 Optional External Reference Clock The ICS module can support an external reference clock with frequencies between 31.25 kHz to 5 MHz in all modes. When the ERCLKEN is set, the external reference clock signal will be presented as ICSERCLK, which can be used as an additional clock source. When IREFS = 1, the external reference clock will not be used by the FLL and will only be used as ICSERCLK. In these modes, the frequency can be equal to the maximum frequency the chip-level timing specifications will support (see the Device Overview chapter). MC9S08SH32 Series Data Sheet, Rev. 3 178 Freescale Semiconductor

Chapter 11 Internal Clock Source (S08ICSV2) If EREFSTEN is set and the ERCLKEN bit is written to 1, the external reference clock will keep running during stop mode in order to provide a fast recovery upon exiting stop. 11.4.7 Fixed Frequency Clock The ICS presents the divided FLL reference clock as ICSFFCLK for use as an additional clock source for peripheral modules. The ICS provides an output signal (ICSFFE) which indicates when the ICS is providing ICSOUT frequencies four times or greater than the divided FLL reference clock (ICSFFCLK). In FLL Engaged mode (FEI and FEE) this is always true and ICSFFE is always high. In ICS Bypass modes, ICSFFE will get asserted for the following combinations of BDIV and RDIV values: • BDIV=00 (divide by 1), RDIV ≥ 010 • BDIV=01 (divide by 2), RDIV ≥ 011 • BDIV=10 (divide by 4), RDIV ≥ 100 • BDIV=11 (divide by 8), RDIV ≥ 101 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 179

Chapter 11 Internal Clock Source (S08ICSV2) MC9S08SH32 Series Data Sheet, Rev. 3 180 Freescale Semiconductor

Chapter 12 Modulo Timer (S08MTIMV1) 12.1 Introduction The MTIM is a simple 8-bit timer with several software selectable clock sources and a programmable interrupt. The central component of the MTIM is the 8-bit counter, which can operate as a free-running counter or a modulo counter. A timer overflow interrupt can be enabled to generate periodic interrupts for time-based software loops. Figure 12-1 shows the MC9S08SH32 Series block diagram with the MTIM highlighted. 12.1.1 MTIM Configuration Information The external clock for the MTIM module, TCLK, is selected by setting CLKS = 1:1 or 1:0 in MTIMCLK, which selects the TCLK pin input. The TCLK input can be enabled as external clock inputs to both the MTIM and TPM modules simultaneously. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 181

Chapter12 Modulo Timer (S08MTIMV1) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure12-1. MC9S08SH32 Series Block Diagram Highlighting MTIM Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 182 Freescale Semiconductor

Chapter 12 Modulo Timer (S08MTIMV1) 12.1.2 Features Timer system features include: • 8-bit up-counter — Free-running or 8-bit modulo limit — Software controllable interrupt on overflow — Counter reset bit (TRST) — Counter stop bit (TSTP) • Four software selectable clock sources for input to prescaler: — System bus clock — rising edge — Fixed frequency clock (XCLK) — rising edge — External clock source on the TCLK pin — rising edge — External clock source on the TCLK pin — falling edge • Nine selectable clock prescale values: — Clock source divide by 1, 2, 4, 8, 16, 32, 64, 128, or 256 12.1.3 Modes of Operation This section defines the MTIM’s operation in stop, wait and background debug modes. 12.1.3.1 MTIM in Wait Mode The MTIM continues to run in wait mode if enabled before executing the WAIT instruction. Therefore, the MTIM can be used to bring the MCU out of wait mode if the timer overflow interrupt is enabled. For lowest possible current consumption, the MTIM should be stopped by software if not needed as an interrupt source during wait mode. 12.1.3.2 MTIM in Stop Modes The MTIM is disabled in all stop modes, regardless of the settings before executing the STOP instruction. Therefore, the MTIM cannot be used as a wake up source from stop modes. Waking from stop1 and stop2 modes, the MTIM will be put into its reset state. If stop3 is exited with a reset, the MTIM will be put into its reset state. If stop3 is exited with an interrupt, the MTIM continues from the state it was in when stop3 was entered. If the counter was active upon entering stop3, the count will resume from the current value. 12.1.3.3 MTIM in Active Background Mode The MTIM suspends all counting until the microcontroller returns to normal user operating mode. Counting resumes from the suspended value as long as an MTIM reset did not occur (TRST written to a 1 or MTIMMOD written). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 183

Chapter 12 Modulo Timer (S08MTIMV1) 12.1.4 Block Diagram The block diagram for the modulo timer module is shown Figure 12-2. BUSCLK CLOCK PRESCALE 8-BIT COUNTER TRST XCLK SOURCE AND SELECT (MTIMCNT) TSTP TCLK SYNC SELECT DIVIDE BY 8-BIT COMPARATOR CLKS PS MTIM INTERRUPT REQUEST 8-BIT MODULO TOIE TOF (MTIMMOD) REG set_tof_pulse Figure12-2. Modulo Timer (MTIM) Block Diagram 12.2 External Signal Description The MTIM includes one external signal, TCLK, used to input an external clock when selected as the MTIM clock source. The signal properties of TCLK are shown in Table12-1. Table12-1. Signal Properties Signal Function I/O TCLK External clock source input into MTIM I The TCLK input must be synchronized by the bus clock. Also, variations in duty cycle and clock jitter must be accommodated. Therefore, the TCLK signal must be limited to one-fourth of the bus frequency. The TCLK pin can be muxed with a general-purpose port pin. See the Pins and Connections chapter for the pin location and priority of this function. MC9S08SH32 Series Data Sheet, Rev. 3 184 Freescale Semiconductor

Chapter 12 Modulo Timer (S08MTIMV1) 12.3 Register Definition Figure 12-3 is a summary of MTIM registers. Name 7 6 5 4 3 2 1 0 R TOF 0 0 0 0 0 MTIMSC TOIE TSTP W TRST R 0 0 MTIMCLK CLKS PS W R COUNT MTIMCNT W R MTIMMOD MOD W Figure12-3. MTIM Register Summary Each MTIM includes four registers: • An 8-bit status and control register • An 8-bit clock configuration register • An 8-bit counter register • An 8-bit modulo register Refer to the direct-page register summary in the Memory chapter of this data sheet for the absolute address assignments for all MTIM registers.This section refers to registers and control bits only by their names and relative address offsets. Some MCUs may have more than one MTIM, so register names include placeholder characters to identify which MTIM is being referenced. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 185

Chapter 12 Modulo Timer (S08MTIMV1) 12.3.1 MTIM Status and Control Register (MTIMSC) MTIMSC contains the overflow status flag and control bits which are used to configure the interrupt enable, reset the counter, and stop the counter. 7 6 5 4 3 2 1 0 R TOF 0 0 0 0 0 TOIE TSTP W TRST Reset: 0 0 0 1 0 0 0 0 Figure12-4. MTIM Status and Control Register Table12-2. MTIM Status and Control Register Field Descriptions Field Description 7 MTIM Overflow Flag — This read-only bit is set when the MTIM counter register overflows to $00 after reaching TOF the value in the MTIM modulo register. Clear TOF by reading the MTIMSC register while TOF is set, then writing a 0 to TOF. TOF is also cleared when TRST is written to a 1 or when any value is written to the MTIMMOD register. 0 MTIM counter has not reached the overflow value in the MTIM modulo register. 1 MTIM counter has reached the overflow value in the MTIM modulo register. 6 MTIM Overflow Interrupt Enable — This read/write bit enables MTIM overflow interrupts. If TOIE is set, then an TOIE interrupt is generated when TOF = 1. Reset clears TOIE. Do not set TOIE if TOF = 1. Clear TOF first, then set TOIE. 0 TOF interrupts are disabled. Use software polling. 1 TOF interrupts are enabled. 5 MTIM Counter Reset — When a 1 is written to this write-only bit, the MTIM counter register resets to $00 and TOF TRST is cleared. Reading this bit always returns 0. 0 No effect. MTIM counter remains at current state. 1 MTIM counter is reset to $00. 4 MTIM Counter Stop — When set, this read/write bit stops the MTIM counter at its current value. Counting resumes TSTP from the current value when TSTP is cleared. Reset sets TSTP to prevent the MTIM from counting. 0 MTIM counter is active. 1 MTIM counter is stopped. 3:0 Unused register bits, always read 0. MC9S08SH32 Series Data Sheet, Rev. 3 186 Freescale Semiconductor

Chapter 12 Modulo Timer (S08MTIMV1) 12.3.2 MTIM Clock Configuration Register (MTIMCLK) MTIMCLK contains the clock select bits (CLKS) and the prescaler select bits (PS). 7 6 5 4 3 2 1 0 R 0 0 CLKS PS W Reset: 0 0 0 0 0 0 0 0 Figure12-5. MTIM Clock Configuration Register Table12-3. MTIM Clock Configuration Register Field Description Field Description 7:6 Unused register bits, always read 0. 5:4 Clock Source Select — These two read/write bits select one of four different clock sources as the input to the CLKS MTIM prescaler. Changing the clock source while the counter is active does not clear the counter. The count continues with the new clock source. Reset clears CLKS to 000. 00 Encoding 0. Bus clock (BUSCLK) 01 Encoding 1. Fixed-frequency clock (XCLK) 10 Encoding 3. External source (TCLK pin), falling edge 11 Encoding 4. External source (TCLK pin), rising edge All other encodings default to the bus clock (BUSCLK). 3:0 Clock Source Prescaler — These four read/write bits select one of nine outputs from the 8-bit prescaler. PS Changing the prescaler value while the counter is active does not clear the counter. The count continues with the new prescaler value. Reset clears PS to 0000. 0000 Encoding 0. MTIM clock source ÷ 1 0001 Encoding 1. MTIM clock source ÷ 2 0010 Encoding 2. MTIM clock source ÷ 4 0011 Encoding 3. MTIM clock source ÷ 8 0100 Encoding 4. MTIM clock source ÷ 16 0101 Encoding 5. MTIM clock source ÷ 32 0110 Encoding 6. MTIM clock source ÷ 64 0111 Encoding 7. MTIM clock source ÷ 128 1000 Encoding 8. MTIM clock source ÷ 256 All other encodings default to MTIM clock source ÷ 256. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 187

Chapter 12 Modulo Timer (S08MTIMV1) 12.3.3 MTIM Counter Register (MTIMCNT) MTIMCNT is the read-only value of the current MTIM count of the 8-bit counter. 7 6 5 4 3 2 1 0 R COUNT W Reset: 0 0 0 0 0 0 0 0 Figure12-6. MTIM Counter Register Table12-4. MTIM Counter Register Field Description Field Description 7:0 MTIM Count — These eight read-only bits contain the current value of the 8-bit counter. Writes have no effect to COUNT this register. Reset clears the count to $00. 12.3.4 MTIM Modulo Register (MTIMMOD) 7 6 5 4 3 2 1 0 R MOD W Reset: 0 0 0 0 0 0 0 0 Figure12-7. MTIM Modulo Register Table12-5. MTIM Modulo Register Field Descriptions Field Description 7:0 MTIM Modulo — These eight read/write bits contain the modulo value used to reset the count and set TOF. A value MOD of $00 puts the MTIM in free-running mode. Writing to MTIMMOD resets the COUNT to $00 and clears TOF. Reset sets the modulo to $00. MC9S08SH32 Series Data Sheet, Rev. 3 188 Freescale Semiconductor

Chapter 12 Modulo Timer (S08MTIMV1) 12.4 Functional Description The MTIM is composed of a main 8-bit up-counter with an 8-bit modulo register, a clock source selector, and a prescaler block with nine selectable values. The module also contains software selectable interrupt logic. The MTIM counter (MTIMCNT) has three modes of operation: stopped, free-running, and modulo. Out of reset, the counter is stopped. If the counter is started without writing a new value to the modulo register, then the counter will be in free-running mode. The counter is in modulo mode when a value other than $00 is in the modulo register while the counter is running. After any MCU reset, the counter is stopped and reset to $00, and the modulus is set to $00. The bus clock is selected as the default clock source and the prescale value is divide by 1. To start the MTIM in free-running mode, simply write to the MTIM status and control register (MTIMSC) and clear the MTIM stop bit (TSTP). Four clock sources are software selectable: the internal bus clock, the fixed frequency clock (XCLK), and an external clock on the TCLK pin, selectable as incrementing on either rising or falling edges. The MTIM clock select bits (CLKS1:CLKS0) in MTIMSC are used to select the desired clock source. If the counter is active (TSTP = 0) when a new clock source is selected, the counter will continue counting from the previous value using the new clock source. Nine prescale values are software selectable: clock source divided by 1, 2, 4, 8, 16, 32, 64, 128, or 256. The prescaler select bits (PS[3:0]) in MTIMSC select the desired prescale value. If the counter is active (TSTP = 0) when a new prescaler value is selected, the counter will continue counting from the previous value using the new prescaler value. The MTIM modulo register (MTIMMOD) allows the overflow compare value to be set to any value from $01 to $FF. Reset clears the modulo value to $00, which results in a free running counter. When the counter is active (TSTP = 0), the counter increments at the selected rate until the count matches the modulo value. When these values match, the counter overflows to $00 and continues counting. The MTIM overflow flag (TOF) is set whenever the counter overflows. The flag sets on the transition from the modulo value to $00. Writing to MTIMMOD while the counter is active resets the counter to $00 and clears TOF. Clearing TOF is a two-step process. The first step is to read the MTIMSC register while TOF is set. The second step is to write a 0 to TOF. If another overflow occurs between the first and second steps, the clearing process is reset and TOF will remain set after the second step is performed. This will prevent the second occurrence from being missed. TOF is also cleared when a 1 is written to TRST or when any value is written to the MTIMMOD register. The MTIM allows for an optional interrupt to be generated whenever TOF is set. To enable the MTIM overflow interrupt, set the MTIM overflow interrupt enable bit (TOIE) in MTIMSC. TOIE should never be written to a 1 while TOF = 1. Instead, TOF should be cleared first, then the TOIE can be set to 1. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 189

Chapter 12 Modulo Timer (S08MTIMV1) 12.4.1 MTIM Operation Example This section shows an example of the MTIM operation as the counter reaches a matching value from the modulo register. selected clock source MTIM clock (PS=%0010) MTIMCNT $A7 $A8 $A9 $AA $00 $01 TOF MTIMMOD: $AA Figure12-8. MTIM counter overflow example In the example of Figure 12-8, the selected clock source could be any of the five possible choices. The prescaler is set to PS = %0010 or divide-by-4. The modulo value in the MTIMMOD register is set to $AA. When the counter, MTIMCNT, reaches the modulo value of $AA, the counter overflows to $00 and continues counting. The timer overflow flag, TOF, sets when the counter value changes from $AA to $00. An MTIM overflow interrupt is generated when TOF is set, if TOIE = 1. MC9S08SH32 Series Data Sheet, Rev. 3 190 Freescale Semiconductor

Chapter 13 Real-Time Counter (S08RTCV1) 13.1 Introduction The RTC module consists of one 8-bit counter, one 8-bit comparator, several binary-based and decimal-based prescaler dividers, two clock sources, and one programmable periodic interrupt. This module can be used for time-of-day, calendar or any task scheduling functions. It can also serve as a cyclic wake up from low power modes without the need of external components. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 191

Chapter13 Real-Time Counter (S08RTCV1) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure13-1. MC9S08SH32 Series Block Diagram Highlighting RTC Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 192 Freescale Semiconductor

Chapter 13 Real-Time Counter (S08RTCV1) 13.1.1 Features Features of the RTC module include: • 8-bit up-counter — 8-bit modulo match limit — Software controllable periodic interrupt on match • Three software selectable clock sources for input to prescaler with selectable binary-based and decimal-based divider values — 1-kHz internal low-power oscillator (LPO) — External clock (ERCLK) — 32-kHz internal clock (IRCLK) 13.1.2 Modes of Operation This section defines the operation in stop, wait and background debug modes. 13.1.2.1 Wait Mode The RTC continues to run in wait mode if enabled before executing the appropriate instruction. Therefore, the RTC can bring the MCU out of wait mode if the real-time interrupt is enabled. For lowest possible current consumption, the RTC should be stopped by software if not needed as an interrupt source during wait mode. 13.1.2.2 Stop Modes The RTC continues to run in stop2 or stop3 mode if the RTC is enabled before executing the STOP instruction. Therefore, the RTC can bring the MCU out of stop modes with no external components, if the real-time interrupt is enabled. The LPO clock can be used in stop2 and stop3 modes. ERCLK and IRCLK clocks are only available in stop3 mode. Power consumption is lower when all clock sources are disabled, but in that case, the real-time interrupt cannot wake up the MCU from stop modes. 13.1.2.3 Active Background Mode The RTC suspends all counting during active background mode until the microcontroller returns to normal user operating mode. Counting resumes from the suspended value as long as the RTCMOD register is not written and the RTCPS and RTCLKS bits are not altered. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 193

Chapter 13 Real-Time Counter (S08RTCV1) 13.1.3 Block Diagram The block diagram for the RTC module is shown in Figure 13-2. LPO Clock Source ERCLK Select IRCLK V 8-Bit Modulo DD (RTCMOD) RTCLKS Background D Q RTIF RTC Mode Interrupt Request RTCLKS[0] RTCPS 8-Bit Comparator E R RTC RTIE Write 1 to Prescaler Clock 8-Bit Counter RTIF Divide-By (RTCCNT) Figure13-2. Real-Time Counter (RTC) Block Diagram 13.2 External Signal Description The RTC does not include any off-chip signals. 13.3 Register Definition The RTC includes a status and control register, an 8-bit counter register, and an 8-bit modulo register. Refer to the direct-page register summary in the memory section of this document for the absolute address assignments for all RTC registers.This section refers to registers and control bits only by their names and relative address offsets. Table 13-1 is a summary of RTC registers. Table13-1. RTC Register Summary Name 7 6 5 4 3 2 1 0 R RTCSC RTIF RTCLKS RTIE RTCPS W R RTCCNT RTCCNT W R RTCMOD RTCMOD W MC9S08SH32 Series Data Sheet, Rev. 3 194 Freescale Semiconductor

Chapter 13 Real-Time Counter (S08RTCV1) 13.3.1 RTC Status and Control Register (RTCSC) RTCSC contains the real-time interrupt status flag (RTIF), the clock select bits (RTCLKS), the real-time interrupt enable bit (RTIE), and the prescaler select bits (RTCPS). 7 6 5 4 3 2 1 0 R RTIF RTCLKS RTIE RTCPS W Reset: 0 0 0 0 0 0 0 0 Figure13-3. RTC Status and Control Register (RTCSC) Table13-2. RTCSC Field Descriptions Field Description 7 Real-Time Interrupt Flag This status bit indicates the RTC counter register reached the value in the RTC modulo RTIF register. Writing a logic 0 has no effect. Writing a logic 1 clears the bit and the real-time interrupt request. Reset clears RTIF. 0 RTC counter has not reached the value in the RTC modulo register. 1 RTC counter has reached the value in the RTC modulo register. 6–5 Real-Time Clock Source Select. These two read/write bits select the clock source input to the RTC prescaler. RTCLKS Changing the clock source clears the prescaler and RTCCNT counters. When selecting a clock source, ensure that the clock source is properly enabled (if applicable) to ensure correct operation of the RTC. Reset clears RTCLKS. 00 Real-time clock source is the 1-kHz low power oscillator (LPO) 01 Real-time clock source is the external clock (ERCLK) 1x Real-time clock source is the internal clock (IRCLK) 4 Real-Time Interrupt Enable. This read/write bit enables real-time interrupts. If RTIE is set, then an interrupt is RTIE generated when RTIF is set. Reset clears RTIE. 0 Real-time interrupt requests are disabled. Use software polling. 1 Real-time interrupt requests are enabled. 3–0 Real-Time Clock Prescaler Select. These four read/write bits select binary-based or decimal-based divide-by RTCPS values for the clock source. See Table13-3. Changing the prescaler value clears the prescaler and RTCCNT counters. Reset clears RTCPS. Table13-3. RTC Prescaler Divide-by values RTCPS RTCLKS[0] 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 0 Off 23 25 26 27 28 29 210 1 2 22 10 24 102 5x102 103 1 Off 210 211 212 213 214 215 216 103 2x103 5x103 104 2x104 5x104 105 2x105 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 195

Chapter 13 Real-Time Counter (S08RTCV1) 13.3.2 RTC Counter Register (RTCCNT) RTCCNT is the read-only value of the current RTC count of the 8-bit counter. 7 6 5 4 3 2 1 0 R RTCCNT W Reset: 0 0 0 0 0 0 0 0 Figure13-4. RTC Counter Register (RTCCNT) Table13-4. RTCCNT Field Descriptions Field Description 7:0 RTC Count. These eight read-only bits contain the current value of the 8-bit counter. Writes have no effect to this RTCCNT register. Reset, writing to RTCMOD, or writing different values to RTCLKS and RTCPS clear the count to 0x00. 13.3.3 RTC Modulo Register (RTCMOD) 7 6 5 4 3 2 1 0 R RTCMOD W Reset: 0 0 0 0 0 0 0 0 Figure13-5. RTC Modulo Register (RTCMOD) Table13-5. RTCMOD Field Descriptions Field Description 7:0 RTC Modulo. These eight read/write bits contain the modulo value used to reset the count to 0x00 upon a compare RTCMOD match and set the RTIF status bit. A value of 0x00 sets the RTIF bit on each rising edge of the prescaler output. Writing to RTCMOD resets the prescaler and the RTCCNT counters to 0x00. Reset sets the modulo to 0x00. 13.4 Functional Description The RTC is composed of a main 8-bit up-counter with an 8-bit modulo register, a clock source selector, and a prescaler block with binary-based and decimal-based selectable values. The module also contains software selectable interrupt logic. After any MCU reset, the counter is stopped and reset to 0x00, the modulus register is set to 0x00, and the prescaler is off. The 1-kHz internal oscillator clock is selected as the default clock source. To start the prescaler, write any value other than zero to the prescaler select bits (RTCPS). Three clock sources are software selectable: the low power oscillator clock (LPO), the external clock (ERCLK), and the internal clock (IRCLK). The RTC clock select bits (RTCLKS) select the desired clock source. If a different value is written to RTCLKS, the prescaler and RTCCNT counters are reset to 0x00. MC9S08SH32 Series Data Sheet, Rev. 3 196 Freescale Semiconductor

Chapter 13 Real-Time Counter (S08RTCV1) RTCPS and the RTCLKS[0] bit select the desired divide-by value. If a different value is written to RTCPS, the prescaler and RTCCNT counters are reset to 0x00. Table 13-6 shows different prescaler period values. Table13-6. Prescaler Period 1-kHz Internal Clock 1-MHz External Clock 32-kHz Internal Clock 32-kHz Internal Clock RTCPS (RTCLKS = 00) (RTCLKS = 01) (RTCLKS = 10) (RTCLKS = 11) 0000 Off Off Off Off 0001 8 ms 1.024 ms 250 μs 32 ms 0010 32 ms 2.048 ms 1 ms 64 ms 0011 64 ms 4.096 ms 2 ms 128 ms 0100 128 ms 8.192 ms 4 ms 256 ms 0101 256 ms 16.4 ms 8 ms 512 ms 0110 512 ms 32.8 ms 16 ms 1.024 s 0111 1.024 s 65.5 ms 32 ms 2.048 s 1000 1 ms 1 ms 31.25 μs 31.25 ms 1001 2 ms 2 ms 62.5 μs 62.5 ms 1010 4 ms 5 ms 125 μs 156.25 ms 1011 10 ms 10 ms 312.5 μs 312.5 ms 1100 16 ms 20 ms 0.5 ms 0.625 s 1101 0.1 s 50 ms 3.125 ms 1.5625 s 1110 0.5 s 0.1 s 15.625 ms 3.125 s 1111 1 s 0.2 s 31.25 ms 6.25 s The RTC modulo register (RTCMOD) allows the compare value to be set to any value from 0x00 to 0xFF. When the counter is active, the counter increments at the selected rate until the count matches the modulo value. When these values match, the counter resets to 0x00 and continues counting. The real-time interrupt flag (RTIF) is set when a match occurs. The flag sets on the transition from the modulo value to 0x00. Writing to RTCMOD resets the prescaler and the RTCCNT counters to 0x00. The RTC allows for an interrupt to be generated when RTIF is set. To enable the real-time interrupt, set the real-time interrupt enable bit (RTIE) in RTCSC. RTIF is cleared by writing a 1 to RTIF. 13.4.1 RTC Operation Example This section shows an example of the RTC operation as the counter reaches a matching value from the modulo register. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 197

Chapter 13 Real-Time Counter (S08RTCV1) Internal 1-kHz Clock Source RTC Clock (RTCPS=0xA) RTCCNT 0x52 0x53 0x54 0x55 0x00 0x01 RTIF RTCMOD 0x55 Figure13-6. RTC Counter Overflow Example In the example of Figure 13-6, the selected clock source is the 1-kHz internal oscillator clock source. The prescaler (RTCPS) is set to 0xA or divide-by-4. The modulo value in the RTCMOD register is set to 0x55. When the counter, RTCCNT, reaches the modulo value of 0x55, the counter overflows to 0x00 and continues counting. The real-time interrupt flag, RTIF, sets when the counter value changes from 0x55 to 0x00. A real-time interrupt is generated when RTIF is set, if RTIE is set. 13.5 Initialization/Application Information This section provides example code to give some basic direction to a user on how to initialize and configure the RTC module. The example software is implemented in C language. The example below shows how to implement time of day with the RTC using the 1-kHz clock source to achieve the lowest possible power consumption. Because the 1-kHz clock source is not as accurate as a crystal, software can be added for any adjustments. For accuracy without adjustments at the expense of additional power consumption, the external clock (ERCLK) or the internal clock (IRCLK) can be selected with appropriate prescaler and modulo values. /* Initialize the elapsed time counters */ Seconds = 0; Minutes = 0; Hours = 0; Days=0; /* Configure RTC to interrupt every 1 second from 1-kHz clock source */ RTCMOD.byte = 0x00; RTCSC.byte = 0x1F; /********************************************************************** Function Name : RTC_ISR Notes : Interrupt service routine for RTC module. **********************************************************************/ MC9S08SH32 Series Data Sheet, Rev. 3 198 Freescale Semiconductor

Chapter 13 Real-Time Counter (S08RTCV1) #pragma TRAP_PROC void RTC_ISR(void) { /* Clear the interrupt flag */ RTCSC.byte = RTCSC.byte | 0x80; /* RTC interrupts every 1 Second */ Seconds++; /* 60 seconds in a minute */ if (Seconds > 59){ Minutes++; Seconds = 0; } /* 60 minutes in an hour */ if (Minutes > 59){ Hours++; Minutes = 0; } /* 24 hours in a day */ if (Hours > 23){ Days ++; Hours = 0; } MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 199

Chapter 13 Real-Time Counter (S08RTCV1) MC9S08SH32 Series Data Sheet, Rev. 3 200 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) 14.1 Introduction Figure 14-1 shows the MC9S08SH32 Series block diagram with the SCI module highlighted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 201

Chapter14 Serial Communications Interface (S08SCIV4) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure14-1. MC9S08SH32 Series Block Diagram Highlighting SCI Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 202 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) 14.1.1 Features Features of SCI module include: • Full-duplex, standard non-return-to-zero (NRZ) format • Double-buffered transmitter and receiver with separate enables • Programmable baud rates (13-bit modulo divider) • Interrupt-driven or polled operation: — Transmit data register empty and transmission complete — Receive data register full — Receive overrun, parity error, framing error, and noise error — Idle receiver detect — Active edge on receive pin — Break detect supporting LIN • Hardware parity generation and checking • Programmable 8-bit or 9-bit character length • Receiver wakeup by idle-line or address-mark • Optional 13-bit break character generation / 11-bit break character detection • Selectable transmitter output polarity 14.1.2 Modes of Operation See Section14.3, “Functional Description,” For details concerning SCI operation in these modes: • 8- and 9-bit data modes • Stop mode operation • Loop mode • Single-wire mode MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 203

Chapter 14 Serial Communications Interface (S08SCIV4) 14.1.3 Block Diagram Figure 14-2 shows the transmitter portion of the SCI. INTERNAL BUS (WRITE-ONLY) LOOPS SCID – Tx BUFFER RSRC LOOP TO RECEIVE 11-BIT TRANSMIT SHIFT REGISTER CONTROL DATA IN M T P R O A T T S S TO TxD PIN H 8 7 6 5 4 3 2 1 0 L 1 × BAUD RATE CLOCK B SHIFT DIRECTION S L TXINV D s) PE PTA8RITY D FROM SCIx SHIFT ENABLE REAMBLE (ALL 1 BREAK (ALL 0s) PT GENERATION OA P L SCI CONTROLS TxD TE SBK TO TxD TRANSMIT CONTROL TxD DIRECTION PIN LOGIC TXDIR BRK13 TDRE TIE Tx INTERRUPT TC REQUEST TCIE Figure14-2. SCI Transmitter Block Diagram MC9S08SH32 Series Data Sheet, Rev. 3 204 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) Figure 14-3 shows the receiver portion of the SCI. INTERNAL BUS (READ-ONLY) 16 × BAUD DIVIDE RATE CLOCK SCID – Rx BUFFER BY 16 FROM TRANSMITTER 11-BIT RECEIVE SHIFT REGISTER T LOOPS SINGLE-WIRE M TOP SB TAR RSRC LOOP CONTROL S L S LBKDE H 8 7 6 5 4 3 2 1 0 L FROM RxD PIN s RXINV DATA RECOVERY ALL 1 MSB SHIFT DIRECTION WAKE WAKEUP RWU RWUID LOGIC ILT ACTIVE EDGE DETECT RDRF RIE IDLE ILIE Rx INTERRUPT REQUEST LBKDIF LBKDIE RXEDGIF RXEDGIE OR ORIE FE FEIE ERROR INTERRUPT REQUEST NF NEIE PE PARITY PF CHECKING PT PEIE Figure14-3. SCI Receiver Block Diagram MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 205

Chapter 14 Serial Communications Interface (S08SCIV4) 14.2 Register Definition The SCI has eight 8-bit registers to control baud rate, select SCI options, report SCI status, and for transmit/receive data. Refer to the direct-page register summary in the Memory chapter of this data sheet for the absolute address assignments for all SCI registers. This section refers to registers and control bits only by their names. A Freescale-provided equate or header file is used to translate these names into the appropriate absolute addresses. 14.2.1 SCI Baud Rate Registers (SCIxBDH, SCIxBDL) This pair of registers controls the prescale divisor for SCI baud rate generation. To update the 13-bit baud rate setting [SBR12:SBR0], first write to SCIxBDH to buffer the high half of the new value and then write to SCIxBDL. The working value in SCIxBDH does not change until SCIxBDL is written. SCIxBDL is reset to a non-zero value, so after reset the baud rate generator remains disabled until the first time the receiver or transmitter is enabled (RE or TE bits in SCIxC2 are written to 1). 7 6 5 4 3 2 1 0 R 0 LBKDIE RXEDGIE SBR12 SBR11 SBR10 SBR9 SBR8 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure14-4. SCI Baud Rate Register (SCIxBDH) Table14-1. SCIxBDH Field Descriptions Field Description 7 LIN Break Detect Interrupt Enable (for LBKDIF) LBKDIE 0 Hardware interrupts from LBKDIF disabled (use polling). 1 Hardware interrupt requested when LBKDIFflag is 1. 6 RxD Input Active Edge Interrupt Enable (for RXEDGIF) RXEDGIE 0 Hardware interrupts from RXEDGIF disabled (use polling). 1 Hardware interrupt requested when RXEDGIF flag is 1. 4:0 Baud Rate Modulo Divisor — The 13 bits in SBR[12:0] are referred to collectively as BR, and they set the SBR[12:8] modulo divide rate for the SCI baud rate generator. When BR=0, the SCI baud rate generator is disabled to reduce supply current. When BR=1 to 8191, the SCI baud rate=BUSCLK/(16×BR). See also BR bits in Table14-2. MC9S08SH32 Series Data Sheet, Rev. 3 206 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) 7 6 5 4 3 2 1 0 R SBR7 SBR6 SBR5 SBR4 SBR3 SBR2 SBR1 SBR0 W Reset 0 0 0 0 0 1 0 0 Figure14-5. SCI Baud Rate Register (SCIxBDL) Table14-2. SCIxBDL Field Descriptions Field Description 7:0 Baud Rate Modulo Divisor — These 13 bits in SBR[12:0] are referred to collectively as BR, and they set the SBR[7:0] modulo divide rate for the SCI baud rate generator. When BR=0, the SCI baud rate generator is disabled to reduce supply current. When BR=1 to 8191, the SCI baud rate=BUSCLK/(16×BR). See also BR bits in Table14-1. 14.2.2 SCI Control Register 1 (SCIxC1) This read/write register is used to control various optional features of the SCI system. 7 6 5 4 3 2 1 0 R LOOPS SCISWAI RSRC M WAKE ILT PE PT W Reset 0 0 0 0 0 0 0 0 Figure14-6. SCI Control Register 1 (SCIxC1) Table14-3. SCIxC1 Field Descriptions Field Description 7 Loop Mode Select — Selects between loop back modes and normal 2-pin full-duplex modes. When LOOPS=1, LOOPS the transmitter output is internally connected to the receiver input. 0 Normal operation — RxD and TxD use separate pins. 1 Loop mode or single-wire mode where transmitter outputs are internally connected to receiver input. (See RSRC bit.) RxD pin is not used by SCI. 6 SCI Stops in Wait Mode SCISWAI 0 SCI clocks continue to run in wait mode so the SCI can be the source of an interrupt that wakes up the CPU. 1 SCI clocks freeze while CPU is in wait mode. 5 Receiver Source Select — This bit has no meaning or effect unless the LOOPS bit is set to 1. When RSRC LOOPS=1, the receiver input is internally connected to the TxD pin and RSRC determines whether this connection is also connected to the transmitter output. 0 Provided LOOPS=1, RSRC=0 selects internal loop back mode and the SCI does not use the RxD pins. 1 Single-wire SCI mode where the TxD pin is connected to the transmitter output and receiver input. 4 9-Bit or 8-Bit Mode Select M 0 Normal — start + 8 data bits (LSB first) + stop. 1 Receiver and transmitter use 9-bit data characters start + 8 data bits (LSB first) + 9th data bit + stop. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 207

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-3. SCIxC1 Field Descriptions (continued) Field Description 3 Receiver Wakeup Method Select — Refer to Section14.3.3.2, “Receiver Wakeup Operation” for more WAKE information. 0 Idle-line wakeup. 1 Address-mark wakeup. 2 Idle Line Type Select — Setting this bit to 1 ensures that the stop bit and logic1 bits at the end of a character ILT do not count toward the 10 or 11 bit times of logic high level needed by the idle line detection logic. Refer to Section14.3.3.2.1, “Idle-Line Wakeup” for more information. 0 Idle character bit count starts after start bit. 1 Idle character bit count starts after stop bit. 1 Parity Enable — Enables hardware parity generation and checking. When parity is enabled, the most significant PE bit (MSB) of the data character (eighth or ninth data bit) is treated as the parity bit. 0 No hardware parity generation or checking. 1 Parity enabled. 0 Parity Type — Provided parity is enabled (PE=1), this bit selects even or odd parity. Odd parity means the total PT number of 1s in the data character, including the parity bit, is odd. Even parity means the total number of 1s in the data character, including the parity bit, is even. 0 Even parity. 1 Odd parity. 14.2.3 SCI Control Register 2 (SCIxC2) This register can be read or written at any time. 7 6 5 4 3 2 1 0 R TIE TCIE RIE ILIE TE RE RWU SBK W Reset 0 0 0 0 0 0 0 0 Figure14-7. SCI Control Register 2 (SCIxC2) Table14-4. SCIxC2 Field Descriptions Field Description 7 Transmit Interrupt Enable (for TDRE) TIE 0 Hardware interrupts from TDRE disabled (use polling). 1 Hardware interrupt requested when TDRE flag is 1. 6 Transmission Complete Interrupt Enable (for TC) TCIE 0 Hardware interrupts from TC disabled (use polling). 1 Hardware interrupt requested when TC flag is 1. 5 Receiver Interrupt Enable (for RDRF) RIE 0 Hardware interrupts from RDRF disabled (use polling). 1 Hardware interrupt requested when RDRF flag is 1. 4 Idle Line Interrupt Enable (for IDLE) ILIE 0 Hardware interrupts from IDLE disabled (use polling). 1 Hardware interrupt requested when IDLE flag is 1. MC9S08SH32 Series Data Sheet, Rev. 3 208 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-4. SCIxC2 Field Descriptions (continued) Field Description 3 Transmitter Enable TE 0 Transmitter off. 1 Transmitter on. TE must be 1 in order to use the SCI transmitter. When TE=1, the SCI forces the TxD pin to act as an output for the SCI system. When the SCI is configured for single-wire operation (LOOPS=RSRC=1), TXDIR controls the direction of traffic on the single SCI communication line (TxD pin). TE also can be used to queue an idle character by writing TE=0 then TE=1 while a transmission is in progress. Refer to Section14.3.2.1, “Send Break and Queued Idle” for more details. When TE is written to 0, the transmitter keeps control of the port TxD pin until any data, queued idle, or queued break character finishes transmitting before allowing the pin to revert to a general-purpose I/O pin. 2 Receiver Enable — When the SCI receiver is off, the RxD pin reverts to being a general-purpose port I/O pin. If RE LOOPS=1 the RxD pin reverts to being a general-purpose I/O pin even if RE=1. 0 Receiver off. 1 Receiver on. 1 Receiver Wakeup Control — This bit can be written to 1 to place the SCI receiver in a standby state where it RWU waits for automatic hardware detection of a selected wakeup condition. The wakeup condition is either an idle line between messages (WAKE=0, idle-line wakeup), or a logic 1 in the most significant data bit in a character (WAKE=1, address-mark wakeup). Application software sets RWU and (normally) a selected hardware condition automatically clears RWU. Refer to Section14.3.3.2, “Receiver Wakeup Operation” for more details. 0 Normal SCI receiver operation. 1 SCI receiver in standby waiting for wakeup condition. 0 Send Break — Writing a 1 and then a 0 to SBK queues a break character in the transmit data stream. Additional SBK break characters of 10 or 11(13 or 14 if BRK13 = 1) bit times of logic 0 are queued as long as SBK=1. Depending on the timing of the set and clear of SBK relative to the information currently being transmitted, a second break character may be queued before software clears SBK. Refer to Section14.3.2.1, “Send Break and Queued Idle” for more details. 0 Normal transmitter operation. 1 Queue break character(s) to be sent. 14.2.4 SCI Status Register 1 (SCIxS1) This register has eight read-only status flags. Writes have no effect. Special software sequences (which do not involve writing to this register) are used to clear these status flags. 7 6 5 4 3 2 1 0 R TDRE TC RDRF IDLE OR NF FE PF W Reset 1 1 0 0 0 0 0 0 = Unimplemented or Reserved Figure14-8. SCI Status Register 1 (SCIxS1) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 209

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-5. SCIxS1 Field Descriptions Field Description 7 Transmit Data Register Empty Flag — TDRE is set out of reset and when a transmit data value transfers from TDRE the transmit data buffer to the transmit shifter, leaving room for a new character in the buffer. To clear TDRE, read SCIxS1 with TDRE=1 and then write to the SCI data register (SCIxD). 0 Transmit data register (buffer) full. 1 Transmit data register (buffer) empty. 6 Transmission Complete Flag — TC is set out of reset and when TDRE=1 and no data, preamble, or break TC character is being transmitted. 0 Transmitter active (sending data, a preamble, or a break). 1 Transmitter idle (transmission activity complete). TC is cleared automatically by reading SCIxS1 with TC=1 and then doing one of the following three things: (cid:129) Write to the SCI data register (SCIxD) to transmit new data (cid:129) Queue a preamble by changing TE from 0 to 1 (cid:129) Queue a break character by writing 1 to SBK in SCIxC2 5 Receive Data Register Full Flag — RDRF becomes set when a character transfers from the receive shifter into RDRF the receive data register (SCIxD). To clear RDRF, read SCIxS1 with RDRF = 1 and then read the SCI data register (SCIxD). 0 Receive data register empty. 1 Receive data register full. 4 Idle Line Flag — IDLE is set when the SCI receive line becomes idle for a full character time after a period of IDLE activity. When ILT=0, the receiver starts counting idle bit times after the start bit. So if the receive character is all 1s, these bit times and the stop bit time count toward the full character time of logic high (10 or 11 bit times depending on the M control bit) needed for the receiver to detect an idle line. When ILT=1, the receiver doesn’t start counting idle bit times until after the stop bit. So the stop bit and any logic high bit times at the end of the previous character do not count toward the full character time of logic high needed for the receiver to detect an idle line. To clear IDLE, read SCIxS1 with IDLE=1 and then read the SCI data register (SCIxD). After IDLE has been cleared, it cannot become set again until after a new character has been received and RDRF has been set. IDLE will get set only once even if the receive line remains idle for an extended period. 0 No idle line detected. 1 Idle line was detected. 3 Receiver Overrun Flag — OR is set when a new serial character is ready to be transferred to the receive data OR register (buffer), but the previously received character has not been read from SCIxD yet. In this case, the new character (and all associated error information) is lost because there is no room to move it into SCIxD. To clear OR, read SCIxS1 with OR=1 and then read the SCI data register (SCIxD). 0 No overrun. 1 Receive overrun (new SCI data lost). 2 Noise Flag — The advanced sampling technique used in the receiver takes seven samples during the start bit NF and three samples in each data bit and the stop bit. If any of these samples disagrees with the rest of the samples within any bit time in the frame, the flag NF will be set at the same time as the flag RDRF gets set for the character. To clear NF, read SCIxS1 and then read the SCI data register (SCIxD). 0 No noise detected. 1 Noise detected in the received character in SCIxD. MC9S08SH32 Series Data Sheet, Rev. 3 210 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-5. SCIxS1 Field Descriptions (continued) Field Description 1 Framing Error Flag — FE is set at the same time as RDRF when the receiver detects a logic0 where the stop FE bit was expected. This suggests the receiver was not properly aligned to a character frame. To clear FE, read SCIxS1 with FE=1 and then read the SCI data register (SCIxD). 0 No framing error detected. This does not guarantee the framing is correct. 1 Framing error. 0 Parity Error Flag — PF is set at the same time as RDRF when parity is enabled (PE=1) and the parity bit in PF the received character does not agree with the expected parity value. To clear PF, read SCIxS1 and then read the SCI data register (SCIxD). 0 No parity error. 1 Parity error. 14.2.5 SCI Status Register 2 (SCIxS2) This register has one read-only status flag. 7 6 5 4 3 2 1 0 R 0 RAF LBKDIF RXEDGIF RXINV RWUID BRK13 LBKDE W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure14-9. SCI Status Register 2 (SCIxS2) Table14-6. SCIxS2 Field Descriptions Field Description 7 LIN Break Detect Interrupt Flag — LBKDIF is set when the LIN break detect circuitry is enabled and a LIN break LBKDIF character is detected. LBKDIF is cleared by writing a “1” to it. 0 No LIN break character has been detected. 1 LIN break character has been detected. 6 RxD Pin Active Edge Interrupt Flag — RXEDGIF is set when an active edge (falling if RXINV = 0, rising if RXEDGIF RXINV=1) on the RxD pin occurs. RXEDGIF is cleared by writing a “1” to it. 0 No active edge on the receive pin has occurred. 1 An active edge on the receive pin has occurred. 4 Receive Data Inversion — Setting this bit reverses the polarity of the received data input. RXINV1 0 Receive data not inverted 1 Receive data inverted 3 Receive Wake Up Idle Detect— RWUID controls whether the idle character that wakes up the receiver sets the RWUID IDLE bit. 0 During receive standby state (RWU = 1), the IDLE bit does not get set upon detection of an idle character. 1 During receive standby state (RWU = 1), the IDLE bit gets set upon detection of an idle character. 2 Break Character Generation Length — BRK13 is used to select a longer transmitted break character length. BRK13 Detection of a framing error is not affected by the state of this bit. 0 Break character is transmitted with length of 10 bit times (11 if M = 1) 1 Break character is transmitted with length of 13 bit times (14 if M = 1) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 211

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-6. SCIxS2 Field Descriptions (continued) Field Description 1 LIN Break Detection Enable— LBKDE is used to select a longer break character detection length. While LBKDE LBKDE is set, framing error (FE) and receive data register full (RDRF) flags are prevented from setting. 0 Break character is detected at length of 10 bit times (11 if M = 1). 1 Break character is detected at length of 11 bit times (12 if M = 1). 0 Receiver Active Flag — RAF is set when the SCI receiver detects the beginning of a valid start bit, and RAF is RAF cleared automatically when the receiver detects an idle line. This status flag can be used to check whether an SCI character is being received before instructing the MCU to go to stop mode. 0 SCI receiver idle waiting for a start bit. 1 SCI receiver active (RxD input not idle). 1 Setting RXINV inverts the RxD input for all cases: data bits, start and stop bits, break, and idle. When using an internal oscillator in a LIN system, it is necessary to raise the break detection threshold by one bit time. Under the worst case timing conditions allowed in LIN, it is possible that a 0x00 data character can appear to be 10.26 bit times long at a slave which is running 14% faster than the master. This would trigger normal break detection circuitry which is designed to detect a 10 bit break symbol. When the LBKDE bit is set, framing errors are inhibited and the break detection threshold changes from 10 bits to 11 bits, preventing false detection of a 0x00 data character as a LIN break symbol. 14.2.6 SCI Control Register 3 (SCIxC3) 7 6 5 4 3 2 1 0 R R8 T8 TXDIR TXINV ORIE NEIE FEIE PEIE W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure14-10. SCI Control Register 3 (SCIxC3) Table14-7. SCIxC3 Field Descriptions Field Description 7 Ninth Data Bit for Receiver — When the SCI is configured for 9-bit data (M=1), R8 can be thought of as a ninth R8 receive data bit to the left of the MSB of the buffered data in the SCIxD register. When reading 9-bit data, read R8 before reading SCIxD because reading SCIxD completes automatic flag clearing sequences which could allow R8 and SCIxD to be overwritten with new data. 6 Ninth Data Bit for Transmitter — When the SCI is configured for 9-bit data (M=1), T8 may be thought of as a T8 ninth transmit data bit to the left of the MSB of the data in the SCIxD register. When writing 9-bit data, the entire 9-bit value is transferred to the SCI shift register after SCIxD is written so T8 should be written (if it needs to change from its previous value) before SCIxD is written. If T8 does not need to change in the new value (such as when it is used to generate mark or space parity), it need not be written each time SCIxD is written. 5 TxD Pin Direction in Single-Wire Mode — When the SCI is configured for single-wire half-duplex operation TXDIR (LOOPS=RSRC=1), this bit determines the direction of data at the TxD pin. 0 TxD pin is an input in single-wire mode. 1 TxD pin is an output in single-wire mode. MC9S08SH32 Series Data Sheet, Rev. 3 212 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) Table14-7. SCIxC3 Field Descriptions (continued) Field Description 4 Transmit Data Inversion — Setting this bit reverses the polarity of the transmitted data output. TXINV1 0 Transmit data not inverted 1 Transmit data inverted 3 Overrun Interrupt Enable — This bit enables the overrun flag (OR) to generate hardware interrupt requests. ORIE 0 OR interrupts disabled (use polling). 1 Hardware interrupt requested when OR=1. 2 Noise Error Interrupt Enable — This bit enables the noise flag (NF) to generate hardware interrupt requests. NEIE 0 NF interrupts disabled (use polling). 1 Hardware interrupt requested when NF=1. 1 Framing Error Interrupt Enable — This bit enables the framing error flag (FE) to generate hardware interrupt FEIE requests. 0 FE interrupts disabled (use polling). 1 Hardware interrupt requested when FE=1. 0 Parity Error Interrupt Enable — This bit enables the parity error flag (PF) to generate hardware interrupt PEIE requests. 0 PF interrupts disabled (use polling). 1 Hardware interrupt requested when PF=1. 1 Setting TXINV inverts the TxD output for all cases: data bits, start and stop bits, break, and idle. 14.2.7 SCI Data Register (SCIxD) This register is actually two separate registers. Reads return the contents of the read-only receive data buffer and writes go to the write-only transmit data buffer. Reads and writes of this register are also involved in the automatic flag clearing mechanisms for the SCI status flags. 7 6 5 4 3 2 1 0 R R7 R6 R5 R4 R3 R2 R1 R0 W T7 T6 T5 T4 T3 T2 T1 T0 Reset 0 0 0 0 0 0 0 0 Figure14-11. SCI Data Register (SCIxD) 14.3 Functional Description The SCI allows full-duplex, asynchronous, NRZ serial communication among the MCU and remote devices, including other MCUs. The SCI comprises a baud rate generator, transmitter, and receiver block. The transmitter and receiver operate independently, although they use the same baud rate generator. During normal operation, the MCU monitors the status of the SCI, writes the data to be transmitted, and processes received data. The following describes each of the blocks of the SCI. 14.3.1 Baud Rate Generation As shown in Figure 14-12, the clock source for the SCI baud rate generator is the bus-rate clock. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 213

Chapter 14 Serial Communications Interface (S08SCIV4) MODULO DIVIDE BY (1 THROUGH 8191) DIVIDE BY BUSCLK SBR12:SBR0 16 Tx BAUD RATE Rx SAMPLING CLOCK BAUD RATE GENERATOR (16 × BAUD RATE) OFF IF [SBR12:SBR0] =0 BUSCLK BAUD RATE = [SBR12:SBR0] × 16 Figure14-12. SCI Baud Rate Generation SCI communications require the transmitter and receiver (which typically derive baud rates from independent clock sources) to use the same baud rate. Allowed tolerance on this baud frequency depends on the details of how the receiver synchronizes to the leading edge of the start bit and how bit sampling is performed. The MCU resynchronizes to bit boundaries on every high-to-low transition, but in the worst case, there are no such transitions in the full 10- or 11-bit time character frame so any mismatch in baud rate is accumulated for the whole character time. For a Freescale Semiconductor SCI system whose bus frequency is driven by a crystal, the allowed baud rate mismatch is about ±4.5 percent for 8-bit data format and about ±4 percent for 9-bit data format. Although baud rate modulo divider settings do not always produce baud rates that exactly match standard rates, it is normally possible to get within a few percent, which is acceptable for reliable communications. 14.3.2 Transmitter Functional Description This section describes the overall block diagram for the SCI transmitter, as well as specialized functions for sending break and idle characters. The transmitter block diagram is shown in Figure 14-2. The transmitter output (TxD) idle state defaults to logic high (TXINV = 0 following reset). The transmitter output is inverted by setting TXINV = 1. The transmitter is enabled by setting the TE bit in SCIxC2. This queues a preamble character that is one full character frame of the idle state. The transmitter then remains idle until data is available in the transmit data buffer. Programs store data into the transmit data buffer by writing to the SCI data register (SCIxD). The central element of the SCI transmitter is the transmit shift register that is either 10 or 11 bits long depending on the setting in the M control bit. For the remainder of this section, we will assume M =0, selecting the normal 8-bit data mode. In 8-bit data mode, the shift register holds a start bit, eight data bits, and a stop bit. When the transmit shift register is available for a new SCI character, the value waiting in the transmit data register is transferred to the shift register (synchronized with the baud rate clock) and the transmit data register empty (TDRE) status flag is set to indicate another character may be written to the transmit data buffer at SCIxD. If no new character is waiting in the transmit data buffer after a stop bit is shifted out the TxD pin, the transmitter sets the transmit complete flag and enters an idle mode, with TxD high, waiting for more characters to transmit. MC9S08SH32 Series Data Sheet, Rev. 3 214 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) Writing 0 to TE does not immediately release the pin to be a general-purpose I/O pin. Any transmit activity that is in progress must first be completed. This includes data characters in progress, queued idle characters, and queued break characters. 14.3.2.1 Send Break and Queued Idle The SBK control bit in SCIxC2 is used to send break characters which were originally used to gain the attention of old teletype receivers. Break characters are a full character time of logic 0 (10 bit times including the start and stop bits). A longer break of 13 bit times can be enabled by setting BRK13 = 1. Normally, a program would wait for TDRE to become set to indicate the last character of a message has moved to the transmit shifter, then write 1 and then write 0 to the SBK bit. This action queues a break character to be sent as soon as the shifter is available. If SBK is still 1 when the queued break moves into the shifter (synchronized to the baud rate clock), an additional break character is queued. If the receiving device is another Freescale Semiconductor SCI, the break characters will be received as 0s in all eight data bits and a framing error (FE= 1) occurs. When idle-line wakeup is used, a full character time of idle (logic 1) is needed between messages to wake up any sleeping receivers. Normally, a program would wait for TDRE to become set to indicate the last character of a message has moved to the transmit shifter, then write 0 and then write 1 to the TE bit. This action queues an idle character to be sent as soon as the shifter is available. As long as the character in the shifter does not finish while TE= 0, the SCI transmitter never actually releases control of the TxD pin. If there is a possibility of the shifter finishing while TE = 0, set the general-purpose I/O controls so the pin that is shared with TxD is an output driving a logic 1. This ensures that the TxD line will look like a normal idle line even if the SCI loses control of the port pin between writing 0 and then 1 to TE. The length of the break character is affected by the BRK13 and M bits as shown below. Table14-8. Break Character Length BRK13 M Break Character Length 0 0 10 bit times 0 1 11 bit times 1 0 13 bit times 1 1 14 bit times 14.3.3 Receiver Functional Description In this section, the receiver block diagram (Figure 14-3) is used as a guide for the overall receiver functional description. Next, the data sampling technique used to reconstruct receiver data is described in more detail. Finally, two variations of the receiver wakeup function are explained. The receiver input is inverted by setting RXINV = 1. The receiver is enabled by setting the RE bit in SCIxC2. Character frames consist of a start bit of logic 0, eight (or nine) data bits (LSB first), and a stop bit of logic 1. For information about 9-bit data mode, refer to Section14.3.5.1, “8- and 9-Bit Data Modes.” For the remainder of this discussion, we assume the SCI is configured for normal 8-bit data mode. After receiving the stop bit into the receive shifter, and provided the receive data register is not already full, the data character is transferred to the receive data register and the receive data register full (RDRF) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 215

Chapter 14 Serial Communications Interface (S08SCIV4) status flag is set. If RDRF was already set indicating the receive data register (buffer) was already full, the overrun (OR) status flag is set and the new data is lost. Because the SCI receiver is double-buffered, the program has one full character time after RDRF is set before the data in the receive data buffer must be read to avoid a receiver overrun. When a program detects that the receive data register is full (RDRF= 1), it gets the data from the receive data register by reading SCIxD. The RDRF flag is cleared automatically by a 2-step sequence which is normally satisfied in the course of the user’s program that handles receive data. Refer to Section14.3.4, “Interrupts and Status Flags” for more details about flag clearing. 14.3.3.1 Data Sampling Technique The SCI receiver uses a 16× baud rate clock for sampling. The receiver starts by taking logic level samples at 16 times the baud rate to search for a falling edge on the RxD serial data input pin. A falling edge is defined as a logic 0 sample after three consecutive logic 1 samples. The 16× baud rate clock is used to divide the bit time into 16segments labeled RT1 through RT16. When a falling edge is located, three more samples are taken at RT3, RT5, and RT7 to make sure this was a real start bit and not merely noise. If at least two of these three samples are 0, the receiver assumes it is synchronized to a receive character. The receiver then samples each bit time, including the start and stop bits, at RT8, RT9, and RT10 to determine the logic level for that bit. The logic level is interpreted to be that of the majority of the samples taken during the bit time. In the case of the start bit, the bit is assumed to be 0 if at least two of the samples at RT3, RT5, and RT7 are 0 even if one or all of the samples taken at RT8, RT9, and RT10 are 1s. If any sample in any bit time (including the start and stop bits) in a character frame fails to agree with the logic level for that bit, the noise flag (NF) will be set when the received character is transferred to the receive data buffer. The falling edge detection logic continuously looks for falling edges, and if an edge is detected, the sample clock is resynchronized to bit times. This improves the reliability of the receiver in the presence of noise or mismatched baud rates. It does not improve worst case analysis because some characters do not have any extra falling edges anywhere in the character frame. In the case of a framing error, provided the received character was not a break character, the sampling logic that searches for a falling edge is filled with three logic 1 samples so that a new start bit can be detected almost immediately. In the case of a framing error, the receiver is inhibited from receiving any new characters until the framing error flag is cleared. The receive shift register continues to function, but a complete character cannot transfer to the receive data buffer if FE is still set. 14.3.3.2 Receiver Wakeup Operation Receiver wakeup is a hardware mechanism that allows an SCI receiver to ignore the characters in a message that is intended for a different SCI receiver. In such a system, all receivers evaluate the first character(s) of each message, and as soon as they determine the message is intended for a different receiver, they write logic 1 to the receiver wake up (RWU) control bit in SCIxC2. When RWU bit is set, the status flags associated with the receiver (with the exception of the idle bit, IDLE, when RWUID bit is set) are inhibited from setting, thus eliminating the software overhead for handling the unimportant MC9S08SH32 Series Data Sheet, Rev. 3 216 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) message characters. At the end of a message, or at the beginning of the next message, all receivers automatically force RWU to 0 so all receivers wake up in time to look at the first character(s) of the next message. 14.3.3.2.1 Idle-Line Wakeup When WAKE = 0, the receiver is configured for idle-line wakeup. In this mode, RWU is cleared automatically when the receiver detects a full character time of the idle-line level. The M control bit selects 8-bit or 9-bit data mode that determines how many bit times of idle are needed to constitute a full character time (10 or 11 bit times because of the start and stop bits). When RWU is one and RWUID is zero, the idle condition that wakes up the receiver does not set the IDLE flag. The receiver wakes up and waits for the first data character of the next message which will set the RDRF flag and generate an interrupt if enabled. When RWUID is one, any idle condition sets the IDLE flag and generates an interrupt if enabled, regardless of whether RWU is zero or one. The idle-line type (ILT) control bit selects one of two ways to detect an idle line. When ILT = 0, the idle bit counter starts after the start bit so the stop bit and any logic 1s at the end of a character count toward the full character time of idle. When ILT = 1, the idle bit counter does not start until after a stop bit time, so the idle detection is not affected by the data in the last character of the previous message. 14.3.3.2.2 Address-Mark Wakeup When WAKE = 1, the receiver is configured for address-mark wakeup. In this mode, RWU is cleared automatically when the receiver detects a logic 1 in the most significant bit of a received character (eighth bit in M = 0 mode and ninth bit in M = 1 mode). Address-mark wakeup allows messages to contain idle characters but requires that the MSB be reserved for use in address frames. The logic 1 MSB of an address frame clears the RWU bit before the stop bit is received and sets the RDRF flag. In this case the character with the MSB set is received even though the receiver was sleeping during most of this character time. 14.3.4 Interrupts and Status Flags The SCI system has three separate interrupt vectors to reduce the amount of software needed to isolate the cause of the interrupt. One interrupt vector is associated with the transmitter for TDRE and TC events. Another interrupt vector is associated with the receiver for RDRF, IDLE, RXEDGIF and LBKDIF events, and a third vector is used for OR, NF, FE, and PF error conditions. Each of these ten interrupt sources can be separately masked by local interrupt enable masks. The flags can still be polled by software when the local masks are cleared to disable generation of hardware interrupt requests. The SCI transmitter has two status flags that optionally can generate hardware interrupt requests. Transmit data register empty (TDRE) indicates when there is room in the transmit data buffer to write another transmit character to SCIxD. If the transmit interrupt enable (TIE) bit is set, a hardware interrupt will be requested whenever TDRE=1. Transmit complete (TC) indicates that the transmitter is finished transmitting all data, preamble, and break characters and is idle with TxD at the inactive level. This flag is often used in systems with modems to determine when it is safe to turn off the modem. If the transmit complete interrupt enable (TCIE) bit is set, a hardware interrupt will be requested whenever TC= 1. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 217

Chapter 14 Serial Communications Interface (S08SCIV4) Instead of hardware interrupts, software polling may be used to monitor the TDRE and TC status flags if the corresponding TIE or TCIE local interrupt masks are 0s. When a program detects that the receive data register is full (RDRF= 1), it gets the data from the receive data register by reading SCIxD. The RDRF flag is cleared by reading SCIxS1 while RDRF=1 and then reading SCIxD. When polling is used, this sequence is naturally satisfied in the normal course of the user program. If hardware interrupts are used, SCIxS1 must be read in the interrupt service routine (ISR). Normally, this is done in the ISR anyway to check for receive errors, so the sequence is automatically satisfied. The IDLE status flag includes logic that prevents it from getting set repeatedly when the RxD line remains idle for an extended period of time. IDLE is cleared by reading SCIxS1 while IDLE=1 and then reading SCIxD. After IDLE has been cleared, it cannot become set again until the receiver has received at least one new character and has set RDRF. If the associated error was detected in the received character that caused RDRF to be set, the error flags — noise flag (NF), framing error (FE), and parity error flag (PF) — get set at the same time as RDRF. These flags are not set in overrun cases. If RDRF was already set when a new character is ready to be transferred from the receive shifter to the receive data buffer, the overrun (OR) flag gets set instead the data along with any associated NF, FE, or PF condition is lost. At any time, an active edge on the RxD serial data input pin causes the RXEDGIF flag to set. The RXEDGIF flag is cleared by writing a “1” to it. This function does depend on the receiver being enabled (RE = 1). 14.3.5 Additional SCI Functions The following sections describe additional SCI functions. 14.3.5.1 8- and 9-Bit Data Modes The SCI system (transmitter and receiver) can be configured to operate in 9-bit data mode by setting the M control bit in SCIxC1. In 9-bit mode, there is a ninth data bit to the left of the MSB of the SCI data register. For the transmit data buffer, this bit is stored in T8 in SCIxC3. For the receiver, the ninth bit is held in R8 in SCIxC3. For coherent writes to the transmit data buffer, write to the T8 bit before writing to SCIxD. If the bit value to be transmitted as the ninth bit of a new character is the same as for the previous character, it is not necessary to write to T8 again. When data is transferred from the transmit data buffer to the transmit shifter, the value in T8 is copied at the same time data is transferred from SCIxD to the shifter. 9-bit data mode typically is used in conjunction with parity to allow eight bits of data plus the parity in the ninth bit. Or it is used with address-mark wakeup so the ninth data bit can serve as the wakeup bit. In custom protocols, the ninth bit can also serve as a software-controlled marker. MC9S08SH32 Series Data Sheet, Rev. 3 218 Freescale Semiconductor

Chapter 14 Serial Communications Interface (S08SCIV4) 14.3.5.2 Stop Mode Operation During all stop modes, clocks to the SCI module are halted. In stop1 and stop2 modes, all SCI register data is lost and must be re-initialized upon recovery from these two stop modes. No SCI module registers are affected in stop3 mode. The receive input active edge detect circuit is still active in stop3 mode, but not in stop2. . An active edge on the receive input brings the CPU out of stop3 mode if the interrupt is not masked (RXEDGIE = 1). Note, because the clocks are halted, the SCI module will resume operation upon exit from stop (only in stop3 mode). Software should ensure stop mode is not entered while there is a character being transmitted out of or received into the SCI module. 14.3.5.3 Loop Mode When LOOPS= 1, the RSRC bit in the same register chooses between loop mode (RSRC= 0) or single-wire mode (RSRC= 1). Loop mode is sometimes used to check software, independent of connections in the external system, to help isolate system problems. In this mode, the transmitter output is internally connected to the receiver input and the RxD pin is not used by the SCI, so it reverts to a general-purpose port I/O pin. 14.3.5.4 Single-Wire Operation When LOOPS= 1, the RSRC bit in the same register chooses between loop mode (RSRC= 0) or single-wire mode (RSRC= 1). Single-wire mode is used to implement a half-duplex serial connection. The receiver is internally connected to the transmitter output and to the TxD pin. The RxD pin is not used and reverts to a general-purpose port I/O pin. In single-wire mode, the TXDIR bit in SCIxC3 controls the direction of serial data on the TxD pin. When TXDIR= 0, the TxD pin is an input to the SCI receiver and the transmitter is temporarily disconnected from the TxD pin so an external device can send serial data to the receiver. When TXDIR= 1, the TxD pin is an output driven by the transmitter. In single-wire mode, the internal loop back connection from the transmitter to the receiver causes the receiver to receive characters that are sent out by the transmitter. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 219

Chapter 14 Serial Communications Interface (S08SCIV4) MC9S08SH32 Series Data Sheet, Rev. 3 220 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.1 Introduction The serial peripheral interface (SPI) module provides for full-duplex, synchronous, serial communication between the MCU and peripheral devices. These peripheral devices can include other microcontrollers, analog-to-digital converters, shift registers, sensors, memories, and so forth. The SPI runs at a baud rate up to that of the bus clock divided by two in master mode and bus clock divided by four in slave mode. The SPI operation can be interrupt driven or software can poll the status flags. All devices in the MC9S08SH32 Series MCUs contain one SPI module, as shown in the following block diagram. Figure 15-1 shows the MC9S08SH32 Series block diagram with the SPI modules highlighted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 221

Chapter15 Serial Peripheral Interface (S08SPIV3) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure15-1. MC9S08SH32 Series Block Diagram Highlighting SPI Block and Pin MC9S08SH32 Series Data Sheet, Rev. 3 222 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.1.1 Features Features of the SPI module include: • Master or slave mode operation • Full-duplex or single-wire bidirectional option • Programmable transmit bit rate • Double-buffered transmit and receive • Serial clock phase and polarity options • Slave select output • Selectable MSB-first or LSB-first shifting 15.1.2 Block Diagrams This section includes block diagrams showing SPI system connections, the internal organization of the SPI module, and the SPI clock dividers that control the master mode bit rate. 15.1.2.1 SPI System Block Diagram Figure 15-2 shows the SPI modules of two MCUs connected in a master-slave arrangement. The master device initiates all SPI data transfers. During a transfer, the master shifts data out (on the MOSI pin) to the slave while simultaneously shifting data in (on the MISO pin) from the slave. The transfer effectively exchanges the data that was in the SPI shift registers of the two SPI systems. The SPSCK signal is a clock output from the master and an input to the slave. The slave device must be selected by a low level on the slave select input (SS pin). In this system, the master device has configured its SS pin as an optional slave select output. MASTER SLAVE MOSI MOSI SPI SHIFTER SPI SHIFTER 7 6 5 4 3 2 1 0 7 6 5 4 3 2 1 0 MISO MISO SPSCK SPSCK CLOCK GENERATOR SS SS Figure15-2. SPI System Connections MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 223

Chapter 15 Serial Peripheral Interface (S08SPIV3) The most common uses of the SPI system include connecting simple shift registers for adding input or output ports or connecting small peripheral devices such as serial A/D or D/A converters. Although Figure 15-2 shows a system where data is exchanged between two MCUs, many practical systems involve simpler connections where data is unidirectionally transferred from the master MCU to a slave or from a slave to the master MCU. 15.1.2.2 SPI Module Block Diagram Figure 15-3 is a block diagram of the SPI module. The central element of the SPI is the SPI shift register. Data is written to the double-buffered transmitter (write to SPIxD) and gets transferred to the SPI shift register at the start of a data transfer. After shifting in a byte of data, the data is transferred into the double-buffered receiver where it can be read (read from SPIxD). Pin multiplexing logic controls connections between MCU pins and the SPI module. When the SPI is configured as a master, the clock output is routed to the SPSCK pin, the shifter output is routed to MOSI, and the shifter input is routed from the MISO pin. When the SPI is configured as a slave, the SPSCK pin is routed to the clock input of the SPI, the shifter output is routed to MISO, and the shifter input is routed from the MOSI pin. In the external SPI system, simply connect all SPSCK pins to each other, all MISO pins together, and all MOSI pins together. Peripheral devices often use slightly different names for these pins. MC9S08SH32 Series Data Sheet, Rev. 3 224 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) PIN CONTROL M MOSI SPE S (MOMI) Tx BUFFER (WRITE SPIxD) ENABLE SPI SYSTEM M MISO SHIFT SPI SHIFT REGISTER SHIFT S (SISO) OUT IN SPC0 Rx BUFFER (READ SPIxD) BIDIROE SHIFT SHIFT Rx BUFFER Tx BUFFER LSBFE DIRECTION CLOCK FULL EMPTY MASTER CLOCK M BUS RATE SPIBR CLOCK SPSCK CLOCK CLOCK GENERATOR LOGIC SLAVE CLOCK S MASTER/SLAVE MASTER/ MSTR MODE SELECT SLAVE MODFEN SSOE MODE FAULT SS DETECTION SPRF SPTEF SPTIE SPI INTERRUPT MODF REQUEST SPIE Figure15-3. SPI Module Block Diagram 15.1.3 SPI Baud Rate Generation As shown in Figure 15-4, the clock source for the SPI baud rate generator is the bus clock. The three prescale bits (SPPR2:SPPR1:SPPR0) choose a prescale divisor of 1, 2, 3, 4, 5, 6, 7, or 8. The three rate select bits (SPR2:SPR1:SPR0) divide the output of the prescaler stage by 2, 4, 8, 16, 32, 64, 128, or 256 to get the internal SPI master mode bit-rate clock. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 225

Chapter 15 Serial Peripheral Interface (S08SPIV3) PRESCALER CLOCK RATE DIVIDER DIVIDE BY DIVIDE BY MASTER BUS CLOCK SPI 1, 2, 3, 4, 5, 6, 7, or 8 2, 4, 8, 16, 32, 64, 128, or 256 BIT RATE SPPR2:SPPR1:SPPR0 SPR2:SPR1:SPR0 Figure15-4. SPI Baud Rate Generation 15.2 External Signal Description The SPI optionally shares four port pins. The function of these pins depends on the settings of SPI control bits. When the SPI is disabled (SPE = 0), these four pins revert to being general-purpose port I/O pins that are not controlled by the SPI. 15.2.1 SPSCK — SPI Serial Clock When the SPI is enabled as a slave, this pin is the serial clock input. When the SPI is enabled as a master, this pin is the serial clock output. 15.2.2 MOSI — Master Data Out, Slave Data In When the SPI is enabled as a master and SPI pin control zero (SPC0) is 0 (not bidirectional mode), this pin is the serial data output. When the SPI is enabled as a slave and SPC0= 0, this pin is the serial data input. If SPC0= 1 to select single-wire bidirectional mode, and master mode is selected, this pin becomes the bidirectional data I/O pin (MOMI). Also, the bidirectional mode output enable bit determines whether the pin acts as an input (BIDIROE =0) or an output (BIDIROE= 1). If SPC0= 1 and slave mode is selected, this pin is not used by the SPI and reverts to being a general-purpose port I/O pin. 15.2.3 MISO — Master Data In, Slave Data Out When the SPI is enabled as a master and SPI pin control zero (SPC0) is 0 (not bidirectional mode), this pin is the serial data input. When the SPI is enabled as a slave and SPC0= 0, this pin is the serial data output. If SPC0= 1 to select single-wire bidirectional mode, and slave mode is selected, this pin becomes the bidirectional data I/O pin (SISO) and the bidirectional mode output enable bit determines whether the pin acts as an input (BIDIROE= 0) or an output (BIDIROE= 1). If SPC0= 1 and master mode is selected, this pin is not used by the SPI and reverts to being a general-purpose port I/O pin. 15.2.4 SS — Slave Select When the SPI is enabled as a slave, this pin is the low-true slave select input. When the SPI is enabled as a master and mode fault enable is off (MODFEN= 0), this pin is not used by the SPI and reverts to being a general-purpose port I/O pin. When the SPI is enabled as a master and MODFEN= 1, the slave select output enable bit determines whether this pin acts as the mode fault input (SSOE= 0) or as the slave select output (SSOE= 1). MC9S08SH32 Series Data Sheet, Rev. 3 226 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.3 Modes of Operation 15.3.1 SPI in Stop Modes The SPI is disabled in all stop modes, regardless of the settings before executing the STOP instruction. During either stop1 or stop2 mode, the SPI module will be fully powered down. Upon wake-up from stop1 or stop2 mode, the SPI module will be in the reset state. During stop3 mode, clocks to the SPI module are halted. No registers are affected. If stop3 is exited with a reset, the SPI will be put into its reset state. If stop3 is exited with an interrupt, the SPI continues from the state it was in when stop3 was entered. 15.4 Register Definition The SPI has five 8-bit registers to select SPI options, control baud rate, report SPI status, and for transmit/receive data. Refer to the direct-page register summary in the Memory chapter of this data sheet for the absolute address assignments for all SPI registers. This section refers to registers and control bits only by their names, and a Freescale-provided equate or header file is used to translate these names into the appropriate absolute addresses. 15.4.1 SPI Control Register 1 (SPIxC1) This read/write register includes the SPI enable control, interrupt enables, and configuration options. 7 6 5 4 3 2 1 0 R SPIE SPE SPTIE MSTR CPOL CPHA SSOE LSBFE W Reset 0 0 0 0 0 1 0 0 Figure15-5. SPI Control Register 1 (SPIxC1) Table15-1. SPIxC1 Field Descriptions Field Description 7 SPI Interrupt Enable (for SPRF and MODF) — This is the interrupt enable for SPI receive buffer full (SPRF) SPIE and mode fault (MODF) events. 0 Interrupts from SPRF and MODF inhibited (use polling) 1 When SPRF or MODF is 1, request a hardware interrupt 6 SPI System Enable — Disabling the SPI halts any transfer that is in progress, clears data buffers, and initializes SPE internal state machines. SPRF is cleared and SPTEF is set to indicate the SPI transmit data buffer is empty. 0 SPI system inactive 1 SPI system enabled 5 SPI Transmit Interrupt Enable — This is the interrupt enable bit for SPI transmit buffer empty (SPTEF). SPTIE 0 Interrupts from SPTEF inhibited (use polling) 1 When SPTEF is 1, hardware interrupt requested MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 227

Chapter 15 Serial Peripheral Interface (S08SPIV3) Table15-1. SPIxC1 Field Descriptions (continued) Field Description 4 Master/Slave Mode Select MSTR 0 SPI module configured as a slave SPI device 1 SPI module configured as a master SPI device 3 Clock Polarity — This bit effectively places an inverter in series with the clock signal from a master SPI or to a CPOL slave SPI device. Refer to Section15.5.1, “SPI Clock Formats” for more details. 0 Active-high SPI clock (idles low) 1 Active-low SPI clock (idles high) 2 Clock Phase — This bit selects one of two clock formats for different kinds of synchronous serial peripheral CPHA devices. Refer to Section15.5.1, “SPI Clock Formats” for more details. 0 First edge on SPSCK occurs at the middle of the first cycle of an 8-cycle data transfer 1 First edge on SPSCK occurs at the start of the first cycle of an 8-cycle data transfer 1 Slave Select Output Enable — This bit is used in combination with the mode fault enable (MODFEN) bit in SSOE SPCR2 and the master/slave (MSTR) control bit to determine the function of the SS pin as shown in Table15-2. 0 LSB First (Shifter Direction) LSBFE 0 SPI serial data transfers start with most significant bit 1 SPI serial data transfers start with least significant bit Table15-2. SS Pin Function MODFEN SSOE Master Mode Slave Mode 0 0 General-purpose I/O (not SPI) Slave select input 0 1 General-purpose I/O (not SPI) Slave select input 1 0 SS input for mode fault Slave select input 1 1 Automatic SS output Slave select input NOTE Ensure that the SPI should not be disabled (SPE=0) at the same time as a bit change to the CPHA bit. These changes should be performed as separate operations or unexpected behavior may occur. 15.4.2 SPI Control Register 2 (SPIxC2) This read/write register is used to control optional features of the SPI system. Bits 7, 6, 5, and 2 are not implemented and always read 0. 7 6 5 4 3 2 1 0 R 0 0 0 0 MODFEN BIDIROE SPISWAI SPC0 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure15-6. SPI Control Register 2 (SPIxC2) MC9S08SH32 Series Data Sheet, Rev. 3 228 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) Table15-3. SPIxC2 Register Field Descriptions Field Description 4 Master Mode-Fault Function Enable — When the SPI is configured for slave mode, this bit has no meaning or MODFEN effect. (The SS pin is the slave select input.) In master mode, this bit determines how the SS pin is used (refer to Table15-2 for more details). 0 Mode fault function disabled, master SS pin reverts to general-purpose I/O not controlled by SPI 1 Mode fault function enabled, master SS pin acts as the mode fault input or the slave select output 3 Bidirectional Mode Output Enable — When bidirectional mode is enabled by SPI pin control 0 (SPC0)=1, BIDIROE BIDIROE determines whether the SPI data output driver is enabled to the single bidirectional SPI I/O pin. Depending on whether the SPI is configured as a master or a slave, it uses either the MOSI (MOMI) or MISO (SISO) pin, respectively, as the single SPI data I/O pin. When SPC0=0, BIDIROE has no meaning or effect. 0 Output driver disabled so SPI data I/O pin acts as an input 1 SPI I/O pin enabled as an output 1 SPI Stop in Wait Mode SPISWAI 0 SPI clocks continue to operate in wait mode 1 SPI clocks stop when the MCU enters wait mode 0 SPI Pin Control 0 — The SPC0 bit chooses single-wire bidirectional mode. If MSTR=0 (slave mode), the SPI SPC0 uses the MISO (SISO) pin for bidirectional SPI data transfers. If MSTR=1 (master mode), the SPI uses the MOSI (MOMI) pin for bidirectional SPI data transfers. When SPC0=1, BIDIROE is used to enable or disable the output driver for the single bidirectional SPI I/O pin. 0 SPI uses separate pins for data input and data output 1 SPI configured for single-wire bidirectional operation 15.4.3 SPI Baud Rate Register (SPIxBR) This register is used to set the prescaler and bit rate divisor for an SPI master. This register may be read or written at any time. 7 6 5 4 3 2 1 0 R 0 0 SPPR2 SPPR1 SPPR0 SPR2 SPR1 SPR0 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure15-7. SPI Baud Rate Register (SPIxBR) Table15-4. SPIxBR Register Field Descriptions Field Description 6:4 SPI Baud Rate Prescale Divisor — This 3-bit field selects one of eight divisors for the SPI baud rate prescaler SPPR[2:0] as shown in Table15-5. The input to this prescaler is the bus rate clock (BUSCLK). The output of this prescaler drives the input of the SPI baud rate divider (see Figure15-4). 2:0 SPI Baud Rate Divisor — This 3-bit field selects one of eight divisors for the SPI baud rate divider as shown in SPR[2:0] Table15-6. The input to this divider comes from the SPI baud rate prescaler (see Figure15-4). The output of this divider is the SPI bit rate clock for master mode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 229

Chapter 15 Serial Peripheral Interface (S08SPIV3) Table15-5. SPI Baud Rate Prescaler Divisor SPPR2:SPPR1:SPPR0 Prescaler Divisor 0:0:0 1 0:0:1 2 0:1:0 3 0:1:1 4 1:0:0 5 1:0:1 6 1:1:0 7 1:1:1 8 Table15-6. SPI Baud Rate Divisor SPR2:SPR1:SPR0 Rate Divisor 0:0:0 2 0:0:1 4 0:1:0 8 0:1:1 16 1:0:0 32 1:0:1 64 1:1:0 128 1:1:1 256 15.4.4 SPI Status Register (SPIxS) This register has three read-only status bits. Bits 6, 3, 2, 1, and 0 are not implemented and always read 0. Writes have no meaning or effect. 7 6 5 4 3 2 1 0 R SPRF 0 SPTEF MODF 0 0 0 0 W Reset 0 0 1 0 0 0 0 0 = Unimplemented or Reserved Figure15-8. SPI Status Register (SPIxS) MC9S08SH32 Series Data Sheet, Rev. 3 230 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) Table15-7. SPIxS Register Field Descriptions Field Description 7 SPI Read Buffer Full Flag — SPRF is set at the completion of an SPI transfer to indicate that received data may SPRF be read from the SPI data register (SPIxD). SPRF is cleared by reading SPRF while it is set, then reading the SPI data register. 0 No data available in the receive data buffer 1 Data available in the receive data buffer 5 SPI Transmit Buffer Empty Flag — This bit is set when there is room in the transmit data buffer. It is cleared SPTEF by reading SPIxS with SPTEF set, followed by writing a data value to the transmit buffer at SPIxD. SPIxS must be read with SPTEF=1 before writing data to SPIxD or the SPIxD write will be ignored. SPTEF generates an SPTEF CPU interrupt request if the SPTIE bit in the SPIxC1 is also set. SPTEF is automatically set when a data byte transfers from the transmit buffer into the transmit shift register. For an idle SPI (no data in the transmit buffer or the shift register and no transfer in progress), data written to SPIxD is transferred to the shifter almost immediately so SPTEF is set within two bus cycles allowing a second 8-bit data value to be queued into the transmit buffer. After completion of the transfer of the value in the shift register, the queued value from the transmit buffer will automatically move to the shifter and SPTEF will be set to indicate there is room for new data in the transmit buffer. If no new data is waiting in the transmit buffer, SPTEF simply remains set and no data moves from the buffer to the shifter. 0 SPI transmit buffer not empty 1 SPI transmit buffer empty 4 Master Mode Fault Flag — MODF is set if the SPI is configured as a master and the slave select input goes low, MODF indicating some other SPI device is also configured as a master. The SS pin acts as a mode fault error input only when MSTR=1, MODFEN=1, and SSOE=0; otherwise, MODF will never be set. MODF is cleared by reading MODF while it is 1, then writing to SPI control register 1 (SPIxC1). 0 No mode fault error 1 Mode fault error detected 15.4.5 SPI Data Register (SPIxD) 7 6 5 4 3 2 1 0 R Bit 7 6 5 4 3 2 1 Bit 0 W Reset 0 0 0 0 0 0 0 0 Figure15-9. SPI Data Register (SPIxD) Reads of this register return the data read from the receive data buffer. Writes to this register write data to the transmit data buffer. When the SPI is configured as a master, writing data to the transmit data buffer initiates an SPI transfer. Data should not be written to the transmit data buffer unless the SPI transmit buffer empty flag (SPTEF) is set, indicating there is room in the transmit buffer to queue a new transmit byte. Data may be read from SPIxD any time after SPRF is set and before another transfer is finished. Failure to read the data out of the receive data buffer before a new transfer ends causes a receive overrun condition and the data from the new transfer is lost. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 231

Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.5 Functional Description An SPI transfer is initiated by checking for the SPI transmit buffer empty flag (SPTEF= 1) and then writing a byte of data to the SPI data register (SPIxD) in the master SPI device. When the SPI shift register is available, this byte of data is moved from the transmit data buffer to the shifter, SPTEF is set to indicate there is room in the buffer to queue another transmit character if desired, and the SPI serial transfer starts. During the SPI transfer, data is sampled (read) on the MISO pin at one SPSCK edge and shifted, changing the bit value on the MOSI pin, one-half SPSCK cycle later. After eight SPSCK cycles, the data that was in the shift register of the master has been shifted out the MOSI pin to the slave while eight bits of data were shifted in the MISO pin into the master’s shift register. At the end of this transfer, the received data byte is moved from the shifter into the receive data buffer and SPRF is set to indicate the data can be read by reading SPIxD. If another byte of data is waiting in the transmit buffer at the end of a transfer, it is moved into the shifter, SPTEF is set, and a new transfer is started. Normally, SPI data is transferred most significant bit (MSB) first. If the least significant bit first enable (LSBFE) bit is set, SPI data is shifted LSB first. When the SPI is configured as a slave, its SS pin must be driven low before a transfer starts and SS must stay low throughout the transfer. If a clock format where CPHA =0 is selected, SS must be driven to a logic 1 between successive transfers. If CPHA =1, SS may remain low between successive transfers. See Section15.5.1, “SPI Clock Formats” for more details. Because the transmitter and receiver are double buffered, a second byte, in addition to the byte currently being shifted out, can be queued into the transmit data buffer, and a previously received character can be in the receive data buffer while a new character is being shifted in. The SPTEF flag indicates when the transmit buffer has room for a new character. The SPRF flag indicates when a received character is available in the receive data buffer. The received character must be read out of the receive buffer (read SPIxD) before the next transfer is finished or a receive overrun error results. In the case of a receive overrun, the new data is lost because the receive buffer still held the previous character and was not ready to accept the new data. There is no indication for such an overrun condition so the application system designer must ensure that previous data has been read from the receive buffer before a new transfer is initiated. 15.5.1 SPI Clock Formats To accommodate a wide variety of synchronous serial peripherals from different manufacturers, the SPI system has a clock polarity (CPOL) bit and a clock phase (CPHA) control bit to select one of four clock formats for data transfers. CPOL selectively inserts an inverter in series with the clock. CPHA chooses between two different clock phase relationships between the clock and data. Figure 15-10 shows the clock formats when CPHA = 1. At the top of the figure, the eight bit times are shown for reference with bit 1 starting at the first SPSCK edge and bit 8 ending one-half SPSCK cycle after the sixteenth SPSCK edge. The MSB first and LSB first lines show the order of SPI data bits depending on the setting in LSBFE. Both variations of SPSCK polarity are shown, but only one of these waveforms applies for a specific transfer, depending on the value in CPOL. The SAMPLE IN waveform applies to the MOSI input of a slave or the MISO input of a master. The MOSI waveform applies to the MC9S08SH32 Series Data Sheet, Rev. 3 232 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) MOSI output pin from a master and the MISO waveform applies to the MISO output from a slave. The SS OUT waveform applies to the slave select output from a master (provided MODFEN and SSOE= 1). The master SS output goes to active low one-half SPSCK cycle before the start of the transfer and goes back high at the end of the eighth bit time of the transfer. The SSIN waveform applies to the slave select input of a slave. BIT TIME # (REFERENCE) 1 2 ... 6 7 8 SPSCK (CPOL=0) SPSCK (CPOL=1) SAMPLE IN (MISO OR MOSI) MOSI (MASTER OUT) MSB FIRST BIT 7 BIT 6 ... BIT 2 BIT 1 BIT 0 LSB FIRST BIT 0 BIT 1 ... BIT 5 BIT 6 BIT 7 MISO (SLAVE OUT) SS OUT (MASTER) SS IN (SLAVE) Figure15-10. SPI Clock Formats (CPHA = 1) When CPHA =1, the slave begins to drive its MISO output when SS goes to active low, but the data is not defined until the first SPSCK edge. The first SPSCK edge shifts the first bit of data from the shifter onto the MOSI output of the master and the MISO output of the slave. The next SPSCK edge causes both the master and the slave to sample the data bit values on their MISO and MOSI inputs, respectively. At the third SPSCK edge, the SPI shifter shifts one bit position which shifts in the bit value that was just sampled, and shifts the second data bit value out the other end of the shifter to the MOSI and MISO outputs of the master and slave, respectively. When CHPA= 1, the slave’s SS input is not required to go to its inactive high level between transfers. Figure 15-11 shows the clock formats when CPHA = 0. At the top of the figure, the eight bit times are shown for reference with bit 1 starting as the slave is selected (SS IN goes low), and bit 8 ends at the last SPSCK edge. The MSB first and LSB first lines show the order of SPI data bits depending on the setting MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 233

Chapter 15 Serial Peripheral Interface (S08SPIV3) in LSBFE. Both variations of SPSCK polarity are shown, but only one of these waveforms applies for a specific transfer, depending on the value in CPOL. The SAMPLE IN waveform applies to the MOSI input of a slave or the MISO input of a master. The MOSI waveform applies to the MOSI output pin from a master and the MISO waveform applies to the MISO output from a slave. The SS OUT waveform applies to the slave select output from a master (provided MODFEN and SSOE= 1). The master SS output goes to active low at the start of the first bit time of the transfer and goes back high one-half SPSCK cycle after the end of the eighth bit time of the transfer. The SSIN waveform applies to the slave select input of a slave. BIT TIME # (REFERENCE) 1 2 ... 6 7 8 SPSCK (CPOL=0) SPSCK (CPOL=1) SAMPLE IN (MISO OR MOSI) MOSI (MASTER OUT) MSB FIRST BIT 7 BIT 6 ... BIT 2 BIT 1 BIT 0 LSB FIRST BIT 0 BIT 1 ... BIT 5 BIT 6 BIT 7 MISO (SLAVE OUT) SS OUT (MASTER) SS IN (SLAVE) Figure15-11. SPI Clock Formats (CPHA = 0) When CPHA= 0, the slave begins to drive its MISO output with the first data bit value (MSB or LSB depending on LSBFE) when SS goes to active low. The first SPSCK edge causes both the master and the slave to sample the data bit values on their MISO and MOSI inputs, respectively. At the second SPSCK edge, the SPI shifter shifts one bit position which shifts in the bit value that was just sampled and shifts the second data bit value out the other end of the shifter to the MOSI and MISO outputs of the master and slave, respectively. When CPHA= 0, the slave’s SS input must go to its inactive high level between transfers. MC9S08SH32 Series Data Sheet, Rev. 3 234 Freescale Semiconductor

Chapter 15 Serial Peripheral Interface (S08SPIV3) 15.5.2 SPI Interrupts There are three flag bits, two interrupt mask bits, and one interrupt vector associated with the SPI system. The SPI interrupt enable mask (SPIE) enables interrupts from the SPI receiver full flag (SPRF) and mode fault flag (MODF). The SPI transmit interrupt enable mask (SPTIE) enables interrupts from the SPI transmit buffer empty flag (SPTEF). When one of the flag bits is set, and the associated interrupt mask bit is set, a hardware interrupt request is sent to the CPU. If the interrupt mask bits are cleared, software can poll the associated flag bits instead of using interrupts. The SPI interrupt service routine (ISR) should check the flag bits to determine what event caused the interrupt. The service routine should also clear the flag bit(s) before returning from the ISR (usually near the beginning of the ISR). 15.5.3 Mode Fault Detection A mode fault occurs and the mode fault flag (MODF) becomes set when a master SPI device detects an error on the SS pin (provided the SS pin is configured as the mode fault input signal). The SS pin is configured to be the mode fault input signal when MSTR= 1, mode fault enable is set (MODFEN= 1), and slave select output enable is clear (SSOE= 0). The mode fault detection feature can be used in a system where more than one SPI device might become a master at the same time. The error is detected when a master’s SS pin is low, indicating that some other SPI device is trying to address this master as if it were a slave. This could indicate a harmful output driver conflict, so the mode fault logic is designed to disable all SPI output drivers when such an error is detected. When a mode fault is detected, MODF is set and MSTR is cleared to change the SPI configuration back to slave mode. The output drivers on the SPSCK, MOSI, and MISO (if not bidirectional mode) are disabled. MODF is cleared by reading it while it is set, then writing to the SPI control register 1 (SPIxC1). User software should verify the error condition has been corrected before changing the SPI back to master mode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 235

Chapter 15 Serial Peripheral Interface (S08SPIV3) MC9S08SH32 Series Data Sheet, Rev. 3 236 Freescale Semiconductor

Chapter 16 Timer Pulse-Width Modulator (S08TPMV3) 16.1 Introduction The TPM uses one input/output (I/O) pin per channel, TPMxCHn where x is the TPM number (for example, 1 or 2) and n is the channel number (for example, 0–1). The TPM shares its I/O pins with general-purpose I/O port pins (refer to the Pins and Connections chapter for more information). All MC9S08SH32 Series MCUs have two TPM modules. Figure 16-1 shows the MC9S08SH32 Series block diagram with the TPM modules highlighted. 16.1.1 TPM Configuration Information The external clock for the MTIM module, TCLK, is selected by setting CLKS = 1:1 or 1:0 in MTIMCLK, which selects the TCLK pin input. The TCLK input can be enabled as external clock inputs to both the MTIM and TPM modules simultaneously. . 16.1.2 TPM Pin Repositioning The TPM modules pins, TPM1CHx and TPM2CHx can be repositioned under software control using TxCHnPS bits in SOPT2 as shown in Table 16-1. Table16-1. TPM Position Options TxCHxPS in SOPT2 Port Pin for TPM2CH1 Port Pin for TPM2CH0 Port Pin for TPM1CH1 Port Pin for TPM1CH0 0 (default) PTB4 PTA1 PTB5 PTA0 1 PTA7 PTA6 PTC1 PTC0 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 237

Chapter16 Timer Pulse-Width Modulator (S08TPMV3) BKGD/MS HCS08 CORE DEBUG MODULE (DBG) PTA7/TPM2CH1 CPU BDC PTA6/TPM2CH0 8-BIT MODULO TIMER TCLK PTA5/IRQ/TCLK/RESET HCS08 SYSTEM CONTROL MODULE (MTIM) A PTA4/ACMPO/BKGD/MS T RESETS AND INTERRUPTS SCL OR PTA3/PIA3/SCL/ADP3 MODES OF OPERATION P POWER MANAGEMENT IRQ IIC MODULE (IIC) SDA PTA2/PIA2/SD/ADP2 PTA1/PIA1/TPM2CH0/ADP1/ACMP– COP IRQ LVD SS PTA0/PIA0/TPM1CH0/ADP0/ACMP+ MISO SERIAL PERIPHERAL MOSI INTERFACE MODULE (SPI) USER FLASH SPSCK (MC9S08SH32 = 32,768 BYTES) (MC9S08SH16 = 16,384 BYTES) PTB7/SCL/EXTAL SERIAL COMMUNICATIONS RxD PTB6/SDA/XTAL INTERFACE MODULE (SCI) TxD USER RAM PTB5/TPM1CH1/SS (MC9S08SH32/16 = 1024 BYTES) TCLK B PTB4/TPM2CH1/MISO 16-BIT TIMER/PWM TPM1CH0 RT PTB3/PIB3/MOSI/ADP7 O MODULE (TPM1) TPM1CH1 P PTB2/PIB2/SPSCK/ADP6 REAL-TIME COUNTER (RTC) PTB1/PIB1/TxD/ADP5 TCLK 40-MHz INTERNAL CLOCK PTB0/PIB0/RxD/ADP4 16-BIT TIMER/PWM TPM2CH0 SOURCE (ICS) MODULE (TPM2) TPM2CH1 LOW-POWER OSCILLATOR EXTAL 31.25 kHz to 38.4 kHz ACMPO 1 MHz to 16 MHz (XOSC) XTAL ANALOG COMPARATOR ACMP– PTC7/ADP15 (ACMP) ACMP+ PTC6/ADP14 V SS PTC5/ADP13 VOLTAGE REGULATOR VDD 10-BIT ADP15-ADP0 C PTC4/ADP12 ANALOG-TO-DIGITAL RT PTC3/ADP11 VDDA/VREFH VDDA CONVERTER (ADC) PO PTC2/ADP10 V /V V SSA REFL SSA PTC1/TPM1CH1/ADP9 V REFH PTC0/TPM1CH0/ADP8 V REFL = Pin can be enabled as part of the ganged output drive feature NOTE: - PTC7-PTC0 and PTA7-PTA6 not available on 16--pin Packages - PTC7-PTC4 and PTA7-PTA6 not available on 20-pin Packages - For the 16-pin and 20-pin packages: V /V and V /V , are double bonded to V and V respectively. DDA REFH SSA REFL DD SS - When PTA4 is configured as BKGD, pin becomes bi-directional. Figure16-1. MC9S08SH32 Series Block Diagram Highlighting TPM Block and Pins MC9S08SH32 Series Data Sheet, Rev. 3 238 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) 16.1.3 Features The TPM includes these distinctive features: • One to eight channels: — Each channel may be input capture, output compare, or edge-aligned PWM — Rising-Edge, falling-edge, or any-edge input capture trigger — Set, clear, or toggle output compare action — Selectable polarity on PWM outputs • Module may be configured for buffered, center-aligned pulse-width-modulation (CPWM) on all channels • Timer clock source selectable as prescaled bus clock, fixed system clock, or an external clock pin — Prescale taps for divide-by 1, 2, 4, 8, 16, 32, 64, or 128 — Fixed system clock source are synchronized to the bus clock by an on-chip synchronization circuit — External clock pin may be shared with any timer channel pin or a separated input pin • 16-bit free-running or modulo up/down count operation • Timer system enable • One interrupt per channel plus terminal count interrupt 16.1.4 Modes of Operation In general, TPM channels may be independently configured to operate in input capture, output compare, or edge-aligned PWM modes. A control bit allows the whole TPM (all channels) to switch to center-aligned PWM mode. When center-aligned PWM mode is selected, input capture, output compare, and edge-aligned PWM functions are not available on any channels of this TPM module. When the microcontroller is in active BDM background or BDM foreground mode, the TPM temporarily suspends all counting until the microcontroller returns to normal user operating mode. During stop mode, all system clocks, including the main oscillator, are stopped; therefore, the TPM is effectively disabled until clocks resume. During wait mode, the TPM continues to operate normally. Provided the TPM does not need to produce a real time reference or provide the interrupt source(s) needed to wake the MCU from wait mode, the user can save power by disabling TPM functions before entering wait mode. • Input capture mode When a selected edge event occurs on the associated MCU pin, the current value of the 16-bit timer counter is captured into the channel value register and an interrupt flag bit is set. Rising edges, falling edges, any edge, or no edge (disable channel) may be selected as the active edge which triggers the input capture. • Output compare mode When the value in the timer counter register matches the channel value register, an interrupt flag bit is set, and a selected output action is forced on the associated MCU pin. The output compare action may be selected to force the pin to zero, force the pin to one, toggle the pin, or ignore the pin (used for software timing functions). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 239

Chapter 16 Timer/PWM Module (S08TPMV3) • Edge-aligned PWM mode The value of a 16-bit modulo register plus 1 sets the period of the PWM output signal. The channel value register sets the duty cycle of the PWM output signal. The user may also choose the polarity of the PWM output signal. Interrupts are available at the end of the period and at the duty-cycle transition point. This type of PWM signal is called edge-aligned because the leading edges of all PWM signals are aligned with the beginning of the period, which is the same for all channels within a TPM. • Center-aligned PWM mode Twice the value of a 16-bit modulo register sets the period of the PWM output, and the channel-value register sets the half-duty-cycle duration. The timer counter counts up until it reaches the modulo value and then counts down until it reaches zero. As the count matches the channel value register while counting down, the PWM output becomes active. When the count matches the channel value register while counting up, the PWM output becomes inactive. This type of PWM signal is called center-aligned because the centers of the active duty cycle periods for all channels are aligned with a count value of zero. This type of PWM is required for types of motors used in small appliances. This is a high-level description only. Detailed descriptions of operating modes are in later sections. 16.1.5 Block Diagram The TPM uses one input/output (I/O) pin per channel, TPMxCHn (timer channel n) where n is the channel number (1-8). The TPM shares its I/O pins with general purpose I/O port pins (refer to I/O pin descriptions in full-chip specification for the specific chip implementation). Figure 16-2 shows the TPM structure. The central component of the TPM is the 16-bit counter that can operate as a free-running counter or a modulo up/down counter. The TPM counter (when operating in normal up-counting mode) provides the timing reference for the input capture, output compare, and edge-aligned PWM functions. The timer counter modulo registers, TPMxMODH:TPMxMODL, control the modulo value of the counter (the values 0x0000 or 0xFFFF effectively make the counter free running). Software can read the counter value at any time without affecting the counting sequence. Any write to either half of the TPMxCNT counter resets the counter, regardless of the data value written. MC9S08SH32 Series Data Sheet, Rev. 3 240 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) BUS CLOCK CLOCK SOURCE PRESCALE AND SELECT SELECT ³1, 2, 4, 8, 16, 32, 64, FIXED SYSTEM CLOCK OFF, BUS, FIXED SYNC or ³128 EXTERNAL CLOCK SYSTEM CLOCK, EXT CLKSB:CLKSA PS2:PS1:PS0 CPWMS 16-BIT COUNTER TOF INTER- COUNTER RESET RUPT TOIE LOGIC 16-BIT COMPARATOR TPMxMODH:TPMxMODL CHANNEL 0 ELS0B ELS0A PORT LOGIC TPMxCH0 16-BIT COMPARATOR TPMxC0VH:TPMxC0VL CH0F INTER- 16-BIT LATCH RUPT LOGIC MS0B MS0A CH0IE S CHANNEL 1 ELS1B ELS1A PORT TPMxCH1 U LOGIC L B 16-BIT COMPARATOR A RN TPMxC1VH:TPMxC1VL CH1F E INTER- NT 16-BIT LATCH RUPT I LOGIC CH1IE MS1B MS1A Up to 8 channels CHANNEL 7 ELS7B ELS7A PORT TPMxCH7 LOGIC 16-BIT COMPARATOR TPMxC7VH:TPMxC7VL CH7F INTER- 16-BIT LATCH RUPT LOGIC CH7IE MS7B MS7A Figure16-2. TPM Block Diagram MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 241

Chapter 16 Timer/PWM Module (S08TPMV3) The TPM channels are programmable independently as input capture, output compare, or edge-aligned PWM channels. Alternately, the TPM can be configured to produce CPWM outputs on all channels. When the TPM is configured for CPWMs, the counter operates as an up/down counter; input capture, output compare, and EPWM functions are not practical. If a channel is configured as input capture, an internal pullup device may be enabled for that channel. The details of how a module interacts with pin controls depends upon the chip implementation because the I/O pins and associated general purpose I/O controls are not part of the module. Refer to the discussion of the I/O port logic in a full-chip specification. Because center-aligned PWMs are usually used to drive 3-phase AC-induction motors and brushless DC motors, they are typically used in sets of three or six channels. 16.2 Signal Description Table 16-2 shows the user-accessible signals for the TPM. The number of channels may be varied from one to eight. When an external clock is included, it can be shared with the same pin as any TPM channel; however, it could be connected to a separate input pin. Refer to the I/O pin descriptions in full-chip specification for the specific chip implementation. Table16-2. Signal Properties Name Function EXTCLK1 External clock source which may be selected to drive the TPM counter. TPMxCHn2 I/O pin associated with TPM channel n 1 When preset, this signal can share any channel pin; however depending upon full-chip implementation, this signal could be connected to a separate external pin. 2 n=channel number (1 to 8) Refer to documentation for the full-chip for details about reset states, port connections, and whether there is any pullup device on these pins. TPM channel pins can be associated with general purpose I/O pins and have passive pullup devices which can be enabled with a control bit when the TPM or general purpose I/O controls have configured the associated pin as an input. When no TPM function is enabled to use a corresponding pin, the pin reverts to being controlled by general purpose I/O controls, including the port-data and data-direction registers. Immediately after reset, no TPM functions are enabled, so all associated pins revert to general purpose I/O control. 16.2.1 Detailed Signal Descriptions This section describes each user-accessible pin signal in detail. Although Table 16-2 grouped all channel pins together, any TPM pin can be shared with the external clock source signal. Since I/O pin logic is not part of the TPM, refer to full-chip documentation for a specific derivative for more details about the interaction of TPM pin functions and general purpose I/O controls including port data, data direction, and pullup controls. MC9S08SH32 Series Data Sheet, Rev. 3 242 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) 16.2.1.1 EXTCLK — External Clock Source Control bits in the timer status and control register allow the user to select nothing (timer disable), the bus-rate clock (the normal default source), a crystal-related clock, or an external clock as the clock which drives the TPM prescaler and subsequently the 16-bit TPM counter. The external clock source is synchronized in the TPM. The bus clock clocks the synchronizer; the frequency of the external source must be no more than one-fourth the frequency of the bus-rate clock, to meet Nyquist criteria and allowing for jitter. The external clock signal shares the same pin as a channel I/O pin, so the channel pin will not be usable for channel I/O function when selected as the external clock source. It is the user’s responsibility to avoid such settings. If this pin is used as an external clock source (CLKSB:CLKSA = 1:1), the channel can still be used in output compare mode as a software timer (ELSnB:ELSnA = 0:0). 16.2.1.2 TPMxCHn — TPM Channel n I/O Pin(s) Each TPM channel is associated with an I/O pin on the MCU. The function of this pin depends on the channel configuration. The TPM pins share with general purpose I/O pins, where each pin has a port data register bit, and a data direction control bit, and the port has optional passive pullups which may be enabled whenever a port pin is acting as an input. The TPM channel does not control the I/O pin when (ELSnB:ELSnA = 0:0) or when (CLKSB:CLKSA = 0:0) so it normally reverts to general purpose I/O control. When CPWMS = 1 (and ELSnB:ELSnA not = 0:0), all channels within the TPM are configured for center-aligned PWM and the TPMxCHn pins are all controlled by the TPM system. When CPWMS=0, the MSnB:MSnA control bits determine whether the channel is configured for input capture, output compare, or edge-aligned PWM. When a channel is configured for input capture (CPWMS=0, MSnB:MSnA = 0:0 and ELSnB:ELSnA not = 0:0), the TPMxCHn pin is forced to act as an edge-sensitive input to the TPM. ELSnB:ELSnA control bits determine what polarity edge or edges will trigger input-capture events. A synchronizer based on the bus clock is used to synchronize input edges to the bus clock. This implies the minimum pulse width—that can be reliably detected—on an input capture pin is four bus clock periods (with ideal clock pulses as near as two bus clocks can be detected). TPM uses this pin as an input capture input to override the port data and data direction controls for the same pin. When a channel is configured for output compare (CPWMS=0, MSnB:MSnA = 0:1 and ELSnB:ELSnA not = 0:0), the associated data direction control is overridden, the TPMxCHn pin is considered an output controlled by the TPM, and the ELSnB:ELSnA control bits determine how the pin is controlled. The remaining three combinations of ELSnB:ELSnA determine whether the TPMxCHn pin is toggled, cleared, or set each time the 16-bit channel value register matches the timer counter. When the output compare toggle mode is initially selected, the previous value on the pin is driven out until the next output compare event—then the pin is toggled. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 243

Chapter 16 Timer/PWM Module (S08TPMV3) When a channel is configured for edge-aligned PWM (CPWMS=0, MSnB=1 and ELSnB:ELSnA not = 0:0), the data direction is overridden, the TPMxCHn pin is forced to be an output controlled by the TPM, and ELSnA controls the polarity of the PWM output signal on the pin. When ELSnB:ELSnA=1:0, the TPMxCHn pin is forced high at the start of each new period (TPMxCNT=0x0000), and the pin is forced low when the channel value register matches the timer counter. When ELSnA=1, the TPMxCHn pin is forced low at the start of each new period (TPMxCNT=0x0000), and the pin is forced high when the channel value register matches the timer counter. TPMxMODH:TPMxMODL = 0x0008 TPMxMODH:TPMxMODL = 0x0005 TPMxCNTH:TPMxCNTL... 0 1 2 3 4 5 6 7 8 0 1 2 ... TPMxCHn CHnF BIT TOF BIT Figure16-3. High-True Pulse of an Edge-Aligned PWM TPMxMODH:TPMxMODL = 0x0008 TPMxMODH:TPMxMODL = 0x0005 TPMxCNTH:TPMxCNTL... 0 1 2 3 4 5 6 7 8 0 1 2 ... TPMxCHn CHnF BIT TOF BIT Figure16-4. Low-True Pulse of an Edge-Aligned PWM MC9S08SH32 Series Data Sheet, Rev. 3 244 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) When the TPM is configured for center-aligned PWM (and ELSnB:ELSnA not = 0:0), the data direction for all channels in this TPM are overridden, the TPMxCHn pins are forced to be outputs controlled by the TPM, and the ELSnA bits control the polarity of each TPMxCHn output. If ELSnB:ELSnA=1:0, the corresponding TPMxCHn pin is cleared when the timer counter is counting up, and the channel value register matches the timer counter; the TPMxCHn pin is set when the timer counter is counting down, and the channel value register matches the timer counter. If ELSnA=1, the corresponding TPMxCHn pin is set when the timer counter is counting up and the channel value register matches the timer counter; the TPMxCHn pin is cleared when the timer counter is counting down and the channel value register matches the timer counter. TPMxMODH:TPMxMODL = 0x0008 TPMxMODH:TPMxMODL = 0x0005 TPMxCNTH:TPMxCNTL... 7 8 7 6 5 4 3 2 1 0 1 2 3 4 5 6 7 8 7 6 5 ... TPMxCHn CHnF BIT TOF BIT Figure16-5. High-True Pulse of a Center-Aligned PWM TPMxMODH:TPMxMODL = 0x0008 TPMxMODH:TPMxMODL = 0x0005 TPMxCNTH:TPMxCNTL... 7 8 7 6 5 4 3 2 1 0 1 2 3 4 5 6 7 8 7 6 5 ... TPMxCHn CHnF BIT TOF BIT Figure16-6. Low-True Pulse of a Center-Aligned PWM MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 245

Chapter 16 Timer/PWM Module (S08TPMV3) 16.3 Register Definition This section consists of register descriptions in address order. A typical MCU system may contain multiple TPMs, and each TPM may have one to eight channels, so register names include placeholder characters to identify which TPM and which channel is being referenced. For example, TPMxCnSC refers to timer (TPM) x, channel n. TPM1C2SC would be the status and control register for channel 2 of timer 1. 16.3.1 TPM Status and Control Register (TPMxSC) TPMxSC contains the overflow status flag and control bits used to configure the interrupt enable, TPM configuration, clock source, and prescale factor. These controls relate to all channels within this timer module. 7 6 5 4 3 2 1 0 R TOF TOIE CPWMS CLKSB CLKSA PS2 PS1 PS0 W 0 Reset 0 0 0 0 0 0 0 0 Figure16-7. TPM Status and Control Register (TPMxSC) Table16-3. TPMxSC Field Descriptions Field Description 7 Timer overflow flag. This read/write flag is set when the TPM counter resets to 0x0000 after reaching the modulo TOF value programmed in the TPM counter modulo registers. Clear TOF by reading the TPM status and control register when TOF is set and then writing a logic 0 to TOF. If another TPM overflow occurs before the clearing sequence is complete, the sequence is reset so TOF would remain set after the clear sequence was completed for the earlier TOF. This is done so a TOF interrupt request cannot be lost during the clearing sequence for a previous TOF. Reset clears TOF. Writing a logic 1 to TOF has no effect. 0 TPM counter has not reached modulo value or overflow 1 TPM counter has overflowed 6 Timer overflow interrupt enable. This read/write bit enables TPM overflow interrupts. If TOIE is set, an interrupt is TOIE generated when TOF equals one. Reset clears TOIE. 0 TOF interrupts inhibited (use for software polling) 1 TOF interrupts enabled 5 Center-aligned PWM select. When present, this read/write bit selects CPWM operating mode. By default, the TPM CPWMS operates in up-counting mode for input capture, output compare, and edge-aligned PWM functions. Setting CPWMS reconfigures the TPM to operate in up/down counting mode for CPWM functions. Reset clears CPWMS. 0 All channels operate as input capture, output compare, or edge-aligned PWM mode as selected by the MSnB:MSnA control bits in each channel’s status and control register. 1 All channels operate in center-aligned PWM mode. MC9S08SH32 Series Data Sheet, Rev. 3 246 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) Table16-3. TPMxSC Field Descriptions (continued) Field Description 4–3 Clock source selects. As shown in Table16-4, this 2-bit field is used to disable the TPM system or select one of CLKS[B:A] three clock sources to drive the counter prescaler. The fixed system clock source is only meaningful in systems with a PLL-based or FLL-based system clock. When there is no PLL or FLL, the fixed-system clock source is the same as the bus rate clock. The external source is synchronized to the bus clock by TPM module, and the fixed system clock source (when a PLL or FLL is present) is synchronized to the bus clock by an on-chip synchronization circuit. When a PLL or FLL is present but not enabled, the fixed-system clock source is the same as the bus-rate clock. 2–0 Prescale factor select. This 3-bit field selects one of 8 division factors for the TPM clock input as shown in PS[2:0] Table16-5. This prescaler is located after any clock source synchronization or clock source selection so it affects the clock source selected to drive the TPM system. The new prescale factor will affect the clock source on the next system clock cycle after the new value is updated into the register bits. Table16-4. TPM-Clock-Source Selection CLKSB:CLKSA TPM Clock Source to Prescaler Input 00 No clock selected (TPM counter disable) 01 Bus rate clock 10 Fixed system clock 11 External source Table16-5. Prescale Factor Selection PS2:PS1:PS0 TPM Clock Source Divided-by 000 1 001 2 010 4 011 8 100 16 101 32 110 64 111 128 16.3.2 TPM-Counter Registers (TPMxCNTH:TPMxCNTL) The two read-only TPM counter registers contain the high and low bytes of the value in the TPM counter. Reading either byte (TPMxCNTH or TPMxCNTL) latches the contents of both bytes into a buffer where they remain latched until the other half is read. This allows coherent 16-bit reads in either big-endian or little-endian order which makes this more friendly to various compiler implementations. The coherency mechanism is automatically restarted by an MCU reset or any write to the timer status/control register (TPMxSC). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 247

Chapter 16 Timer/PWM Module (S08TPMV3) Reset clears the TPM counter registers. Writing any value to TPMxCNTH or TPMxCNTL also clears the TPM counter (TPMxCNTH:TPMxCNTL) and resets the coherency mechanism, regardless of the data involved in the write. 7 6 5 4 3 2 1 0 R Bit 15 14 13 12 11 10 9 Bit 8 W Any write to TPMxCNTH clears the 16-bit counter Reset 0 0 0 0 0 0 0 0 Figure16-8. TPM Counter Register High (TPMxCNTH) 7 6 5 4 3 2 1 0 R Bit 7 6 5 4 3 2 1 Bit 0 W Any write to TPMxCNTL clears the 16-bit counter Reset 0 0 0 0 0 0 0 0 Figure16-9. TPM Counter Register Low (TPMxCNTL) When BDM is active, the timer counter is frozen (this is the value that will be read by user); the coherency mechanism is frozen such that the buffer latches remain in the state they were in when the BDM became active, even if one or both counter halves are read while BDM is active. This assures that if the user was in the middle of reading a 16-bit register when BDM became active, it will read the appropriate value from the other half of the 16-bit value after returning to normal execution. In BDM mode, writing any value to TPMxSC, TPMxCNTH or TPMxCNTL registers resets the read coherency mechanism of the TPMxCNTH:L registers, regardless of the data involved in the write. 16.3.3 TPM Counter Modulo Registers (TPMxMODH:TPMxMODL) The read/write TPM modulo registers contain the modulo value for the TPM counter. After the TPM counter reaches the modulo value, the TPM counter resumes counting from 0x0000 at the next clock, and the overflow flag (TOF) becomes set. Writing to TPMxMODH or TPMxMODL inhibits the TOF bit and overflow interrupts until the other byte is written. Reset sets the TPM counter modulo registers to 0x0000 which results in a free running timer counter (modulo disabled). Writing to either byte (TPMxMODH or TPMxMODL) latches the value into a buffer and the registers are updated with the value of their write buffer according to the value of CLKSB:CLKSA bits, so: • If (CLKSB:CLKSA = 0:0), then the registers are updated when the second byte is written • If (CLKSB:CLKSA not = 0:0), then the registers are updated after both bytes were written, and the TPM counter changes from (TPMxMODH:TPMxMODL - 1) to (TPMxMODH:TPMxMODL). If the TPM counter is a free-running counter, the update is made when the TPM counter changes from 0xFFFE to 0xFFFF The latching mechanism may be manually reset by writing to the TPMxSC address (whether BDM is active or not). MC9S08SH32 Series Data Sheet, Rev. 3 248 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) When BDM is active, the coherency mechanism is frozen (unless reset by writing to TPMxSC register) such that the buffer latches remain in the state they were in when the BDM became active, even if one or both halves of the modulo register are written while BDM is active. Any write to the modulo registers bypasses the buffer latches and directly writes to the modulo register while BDM is active. 7 6 5 4 3 2 1 0 R Bit 15 14 13 12 11 10 9 Bit 8 W Reset 0 0 0 0 0 0 0 0 Figure16-10. TPM Counter Modulo Register High (TPMxMODH) 7 6 5 4 3 2 1 0 R Bit 7 6 5 4 3 2 1 Bit 0 W Reset 0 0 0 0 0 0 0 0 Figure16-11. TPM Counter Modulo Register Low (TPMxMODL) Reset the TPM counter before writing to the TPM modulo registers to avoid confusion about when the first counter overflow will occur. 16.3.4 TPM Channel n Status and Control Register (TPMxCnSC) TPMxCnSC contains the channel-interrupt-status flag and control bits used to configure the interrupt enable, channel configuration, and pin function. 7 6 5 4 3 2 1 0 R CHnF 0 0 CHnIE MSnB MSnA ELSnB ELSnA W 0 Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure16-12. TPM Channel n Status and Control Register (TPMxCnSC) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 249

Chapter 16 Timer/PWM Module (S08TPMV3) Table16-6. TPMxCnSC Field Descriptions Field Description 7 Channel n flag. When channel n is an input-capture channel, this read/write bit is set when an active edge occurs CHnF on the channel n pin. When channel n is an output compare or edge-aligned/center-aligned PWM channel, CHnF is set when the value in the TPM counter registers matches the value in the TPM channel n value registers. When channel n is an edge-aligned/center-aligned PWM channel and the duty cycle is set to 0% or 100%, CHnF will not be set even when the value in the TPM counter registers matches the value in the TPM channel n value registers. A corresponding interrupt is requested when CHnF is set and interrupts are enabled (CHnIE = 1). Clear CHnF by reading TPMxCnSC while CHnF is set and then writing a logic 0 to CHnF. If another interrupt request occurs before the clearing sequence is complete, the sequence is reset so CHnF remains set after the clear sequence completed for the earlier CHnF. This is done so a CHnF interrupt request cannot be lost due to clearing a previous CHnF. Reset clears the CHnF bit. Writing a logic 1 to CHnF has no effect. 0 No input capture or output compare event occurred on channel n 1 Input capture or output compare event on channel n 6 Channel n interrupt enable. This read/write bit enables interrupts from channel n. Reset clears CHnIE. CHnIE 0 Channel n interrupt requests disabled (use for software polling) 1 Channel n interrupt requests enabled 5 Mode select B for TPM channel n. When CPWMS=0, MSnB=1 configures TPM channel n for edge-aligned PWM MSnB mode. Refer to the summary of channel mode and setup controls in Table16-7. 4 Mode select A for TPM channel n. When CPWMS=0 and MSnB=0, MSnA configures TPM channel n for MSnA input-capture mode or output compare mode. Refer to Table16-7 for a summary of channel mode and setup controls. Note:If the associated port pin is not stable for at least two bus clock cycles before changing to input capture mode, it is possible to get an unexpected indication of an edge trigger. 3–2 Edge/level select bits. Depending upon the operating mode for the timer channel as set by CPWMS:MSnB:MSnA ELSnB and shown in Table16-7, these bits select the polarity of the input edge that triggers an input capture event, select ELSnA the level that will be driven in response to an output compare match, or select the polarity of the PWM output. Setting ELSnB:ELSnA to 0:0 configures the related timer pin as a general purpose I/O pin not related to any timer functions. This function is typically used to temporarily disable an input capture channel or to make the timer pin available as a general purpose I/O pin when the associated timer channel is set up as a software timer that does not require the use of a pin. Table16-7. Mode, Edge, and Level Selection CPWMS MSnB:MSnA ELSnB:ELSnA Mode Configuration X XX 00 Pin not used for TPM - revert to general purpose I/O or other peripheral control MC9S08SH32 Series Data Sheet, Rev. 3 250 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) Table16-7. Mode, Edge, and Level Selection CPWMS MSnB:MSnA ELSnB:ELSnA Mode Configuration 0 00 01 Input capture Capture on rising edge only 10 Capture on falling edge only 11 Capture on rising or falling edge 01 01 Output compare Toggle output on compare 10 Clear output on compare 11 Set output on compare 1X 10 Edge-aligned High-true pulses (clear PWM output on compare) X1 Low-true pulses (set output on compare) 1 XX 10 Center-aligned High-true pulses (clear PWM output on compare-up) X1 Low-true pulses (set output on compare-up) 16.3.5 TPM Channel Value Registers (TPMxCnVH:TPMxCnVL) These read/write registers contain the captured TPM counter value of the input capture function or the output compare value for the output compare or PWM functions. The channel registers are cleared by reset. 7 6 5 4 3 2 1 0 R Bit 15 14 13 12 11 10 9 Bit 8 W Reset 0 0 0 0 0 0 0 0 Figure16-13. TPM Channel Value Register High (TPMxCnVH) 7 6 5 4 3 2 1 0 R Bit 7 6 5 4 3 2 1 Bit 0 W Reset 0 0 0 0 0 0 0 0 Figure16-14. TPM Channel Value Register Low (TPMxCnVL) In input capture mode, reading either byte (TPMxCnVH or TPMxCnVL) latches the contents of both bytes into a buffer where they remain latched until the other half is read. This latching mechanism also resets MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 251

Chapter 16 Timer/PWM Module (S08TPMV3) (becomes unlatched) when the TPMxCnSC register is written (whether BDM mode is active or not). Any write to the channel registers will be ignored during the input capture mode. When BDM is active, the coherency mechanism is frozen (unless reset by writing to TPMxCnSC register) such that the buffer latches remain in the state they were in when the BDM became active, even if one or both halves of the channel register are read while BDM is active. This assures that if the user was in the middle of reading a 16-bit register when BDM became active, it will read the appropriate value from the other half of the 16-bit value after returning to normal execution. The value read from the TPMxCnVH and TPMxCnVL registers in BDM mode is the value of these registers and not the value of their read buffer. In output compare or PWM modes, writing to either byte (TPMxCnVH or TPMxCnVL) latches the value into a buffer. After both bytes are written, they are transferred as a coherent 16-bit value into the timer-channel registers according to the value of CLKSB:CLKSA bits and the selected mode, so: • If (CLKSB:CLKSA = 0:0), then the registers are updated when the second byte is written. • If (CLKSB:CLKSA not = 0:0 and in output compare mode) then the registers are updated after the second byte is written and on the next change of the TPM counter (end of the prescaler counting). • If (CLKSB:CLKSA not = 0:0 and in EPWM or CPWM modes), then the registers are updated after the both bytes were written, and the TPM counter changes from (TPMxMODH:TPMxMODL - 1) to (TPMxMODH:TPMxMODL). If the TPM counter is a free-running counter then the update is made when the TPM counter changes from 0xFFFE to 0xFFFF. The latching mechanism may be manually reset by writing to the TPMxCnSC register (whether BDM mode is active or not). This latching mechanism allows coherent 16-bit writes in either big-endian or little-endian order which is friendly to various compiler implementations. When BDM is active, the coherency mechanism is frozen such that the buffer latches remain in the state they were in when the BDM became active even if one or both halves of the channel register are written while BDM is active. Any write to the channel registers bypasses the buffer latches and directly write to the channel register while BDM is active. The values written to the channel register while BDM is active are used for PWM & output compare operation once normal execution resumes. Writes to the channel registers while BDM is active do not interfere with partial completion of a coherency sequence. After the coherency mechanism has been fully exercised, the channel registers are updated using the buffered values written (while BDM was not active) by the user. 16.4 Functional Description All TPM functions are associated with a central 16-bit counter which allows flexible selection of the clock source and prescale factor. There is also a 16-bit modulo register associated with the main counter. The CPWMS control bit chooses between center-aligned PWM operation for all channels in the TPM (CPWMS=1) or general purpose timing functions (CPWMS=0) where each channel can independently be configured to operate in input capture, output compare, or edge-aligned PWM mode. The CPWMS control bit is located in the main TPM status and control register because it affects all channels within the TPM and influences the way the main counter operates. (In CPWM mode, the counter changes to an up/down mode rather than the up-counting mode used for general purpose timer functions.) MC9S08SH32 Series Data Sheet, Rev. 3 252 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) The following sections describe the main counter and each of the timer operating modes (input capture, output compare, edge-aligned PWM, and center-aligned PWM). Because details of pin operation and interrupt activity depend upon the operating mode, these topics will be covered in the associated mode explanation sections. 16.4.1 Counter All timer functions are based on the main 16-bit counter (TPMxCNTH:TPMxCNTL). This section discusses selection of the clock source, end-of-count overflow, up-counting vs. up/down counting, and manual counter reset. 16.4.1.1 Counter Clock Source The 2-bit field, CLKSB:CLKSA, in the timer status and control register (TPMxSC) selects one of three possible clock sources or OFF (which effectively disables the TPM). See Table 16-4. After any MCU reset, CLKSB:CLKSA=0:0 so no clock source is selected, and the TPM is in a very low power state. These control bits may be read or written at any time and disabling the timer (writing 00 to the CLKSB:CLKSA field) does not affect the values in the counter or other timer registers. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 253

Chapter 16 Timer/PWM Module (S08TPMV3) Table16-8. TPM Clock Source Selection CLKSB:CLKSA TPM Clock Source to Prescaler Input 00 No clock selected (TPM counter disabled) 01 Bus rate clock 10 Fixed system clock 11 External source The bus rate clock is the main system bus clock for the MCU. This clock source requires no synchronization because it is the clock that is used for all internal MCU activities including operation of the CPU and buses. In MCUs that have no PLL and FLL or the PLL and FLL are not engaged, the fixed system clock source is the same as the bus-rate-clock source, and it does not go through a synchronizer. When a PLL or FLL is present and engaged, a synchronizer is required between the crystal divided-by two clock source and the timer counter so counter transitions will be properly aligned to bus-clock transitions. A synchronizer will be used at chip level to synchronize the crystal-related source clock to the bus clock. The external clock source may be connected to any TPM channel pin. This clock source always has to pass through a synchronizer to assure that counter transitions are properly aligned to bus clock transitions. The bus-rate clock drives the synchronizer; therefore, to meet Nyquist criteria even with jitter, the frequency of the external clock source must not be faster than the bus rate divided-by four. With ideal clocks the external clock can be as fast as bus clock divided by four. When the external clock source shares the TPM channel pin, this pin should not be used for other channel timing functions. For example, it would be ambiguous to configure channel 0 for input capture when the TPM channel 0 pin was also being used as the timer external clock source. (It is the user’s responsibility to avoid such settings.) The TPM channel could still be used in output compare mode for software timing functions (pin controls set not to affect the TPM channel pin). 16.4.1.2 Counter Overflow and Modulo Reset An interrupt flag and enable are associated with the 16-bit main counter. The flag (TOF) is a software-accessible indication that the timer counter has overflowed. The enable signal selects between software polling (TOIE=0) where no hardware interrupt is generated, or interrupt-driven operation (TOIE=1) where a static hardware interrupt is generated whenever the TOF flag is equal to one. The conditions causing TOF to become set depend on whether the TPM is configured for center-aligned PWM (CPWMS=1). In the simplest mode, there is no modulus limit and the TPM is not in CPWMS=1 mode. In this case, the 16-bit timer counter counts from 0x0000 through 0xFFFF and overflows to 0x0000 on the next counting clock. TOF becomes set at the transition from 0xFFFF to 0x0000. When a modulus limit is set, TOF becomes set at the transition from the value set in the modulus register to 0x0000. When the TPM is in center-aligned PWM mode (CPWMS=1), the TOF flag gets set as the counter changes direction at the end of the count value set in the modulus register (that is, at the transition from the value set in the modulus register to the next lower count value). This corresponds to the end of a PWM period (the 0x0000 count value corresponds to the center of a period). MC9S08SH32 Series Data Sheet, Rev. 3 254 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) 16.4.1.3 Counting Modes The main timer counter has two counting modes. When center-aligned PWM is selected (CPWMS=1), the counter operates in up/down counting mode. Otherwise, the counter operates as a simple up counter. As an up counter, the timer counter counts from 0x0000 through its terminal count and then continues with 0x0000. The terminal count is 0xFFFF or a modulus value in TPMxMODH:TPMxMODL. When center-aligned PWM operation is specified, the counter counts up from 0x0000 through its terminal count and then down to 0x0000 where it changes back to up counting. Both 0x0000 and the terminal count value are normal length counts (one timer clock period long). In this mode, the timer overflow flag (TOF) becomes set at the end of the terminal-count period (as the count changes to the next lower count value). 16.4.1.4 Manual Counter Reset The main timer counter can be manually reset at any time by writing any value to either half of TPMxCNTH or TPMxCNTL. Resetting the counter in this manner also resets the coherency mechanism in case only half of the counter was read before resetting the count. 16.4.2 Channel Mode Selection Provided CPWMS=0, the MSnB and MSnA control bits in the channel n status and control registers determine the basic mode of operation for the corresponding channel. Choices include input capture, output compare, and edge-aligned PWM. 16.4.2.1 Input Capture Mode With the input-capture function, the TPM can capture the time at which an external event occurs. When an active edge occurs on the pin of an input-capture channel, the TPM latches the contents of the TPM counter into the channel-value registers (TPMxCnVH:TPMxCnVL). Rising edges, falling edges, or any edge may be chosen as the active edge that triggers an input capture. In input capture mode, the TPMxCnVH and TPMxCnVL registers are read only. When either half of the 16-bit capture register is read, the other half is latched into a buffer to support coherent 16-bit accesses in big-endian or little-endian order. The coherency sequence can be manually reset by writing to the channel status/control register (TPMxCnSC). An input capture event sets a flag bit (CHnF) which may optionally generate a CPU interrupt request. While in BDM, the input capture function works as configured by the user. When an external event occurs, the TPM latches the contents of the TPM counter (which is frozen because of the BDM mode) into the channel value registers and sets the flag bit. 16.4.2.2 Output Compare Mode With the output-compare function, the TPM can generate timed pulses with programmable position, polarity, duration, and frequency. When the counter reaches the value in the channel-value registers of an output-compare channel, the TPM can set, clear, or toggle the channel pin. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 255

Chapter 16 Timer/PWM Module (S08TPMV3) In output compare mode, values are transferred to the corresponding timer channel registers only after both 8-bit halves of a 16-bit register have been written and according to the value of CLKSB:CLKSA bits, so: • If (CLKSB:CLKSA = 0:0), the registers are updated when the second byte is written • If (CLKSB:CLKSA not = 0:0), the registers are updated at the next change of the TPM counter (end of the prescaler counting) after the second byte is written. The coherency sequence can be manually reset by writing to the channel status/control register (TPMxCnSC). An output compare event sets a flag bit (CHnF) which may optionally generate a CPU-interrupt request. 16.4.2.3 Edge-Aligned PWM Mode This type of PWM output uses the normal up-counting mode of the timer counter (CPWMS=0) and can be used when other channels in the same TPM are configured for input capture or output compare functions. The period of this PWM signal is determined by the value of the modulus register (TPMxMODH:TPMxMODL) plus 1. The duty cycle is determined by the setting in the timer channel register (TPMxCnVH:TPMxCnVL). The polarity of this PWM signal is determined by the setting in the ELSnA control bit. 0% and 100% duty cycle cases are possible. The output compare value in the TPM channel registers determines the pulse width (duty cycle) of the PWM signal (Figure 16-15). The time between the modulus overflow and the output compare is the pulse width. If ELSnA=0, the counter overflow forces the PWM signal high, and the output compare forces the PWM signal low. If ELSnA=1, the counter overflow forces the PWM signal low, and the output compare forces the PWM signal high. OVERFLOW OVERFLOW OVERFLOW PERIOD PULSE WIDTH TPMxCHn OUTPUT OUTPUT OUTPUT COMPARE COMPARE COMPARE Figure16-15. PWM Period and Pulse Width (ELSnA=0) When the channel value register is set to 0x0000, the duty cycle is 0%. 100% duty cycle can be achieved by setting the timer-channel register (TPMxCnVH:TPMxCnVL) to a value greater than the modulus setting. This implies that the modulus setting must be less than 0xFFFF in order to get 100% duty cycle. Because the TPM may be used in an 8-bit MCU, the settings in the timer channel registers are buffered to ensure coherent 16-bit updates and to avoid unexpected PWM pulse widths. Writes to any of the registers TPMxCnVH and TPMxCnVL, actually write to buffer registers. In edge-aligned PWM mode, values are transferred to the corresponding timer-channel registers according to the value of CLKSB:CLKSA bits, so: • If (CLKSB:CLKSA = 0:0), the registers are updated when the second byte is written • If (CLKSB:CLKSA not = 0:0), the registers are updated after the both bytes were written, and the TPM counter changes from (TPMxMODH:TPMxMODL - 1) to (TPMxMODH:TPMxMODL). If MC9S08SH32 Series Data Sheet, Rev. 3 256 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) the TPM counter is a free-running counter then the update is made when the TPM counter changes from 0xFFFE to 0xFFFF. 16.4.2.4 Center-Aligned PWM Mode This type of PWM output uses the up/down counting mode of the timer counter (CPWMS=1). The output compare value in TPMxCnVH:TPMxCnVL determines the pulse width (duty cycle) of the PWM signal while the period is determined by the value in TPMxMODH:TPMxMODL. TPMxMODH:TPMxMODL should be kept in the range of 0x0001 to 0x7FFF because values outside this range can produce ambiguous results. ELSnA will determine the polarity of the CPWM output. pulse width = 2 x (TPMxCnVH:TPMxCnVL) period = 2 x (TPMxMODH:TPMxMODL); TPMxMODH:TPMxMODL=0x0001-0x7FFF If the channel-value register TPMxCnVH:TPMxCnVL is zero or negative (bit 15 set), the duty cycle will be 0%. If TPMxCnVH:TPMxCnVL is a positive value (bit 15 clear) and is greater than the (non-zero) modulus setting, the duty cycle will be 100% because the duty cycle compare will never occur. This implies the usable range of periods set by the modulus register is 0x0001 through 0x7FFE (0x7FFF if you do not need to generate 100% duty cycle). This is not a significant limitation. The resulting period would be much longer than required for normal applications. TPMxMODH:TPMxMODL=0x0000 is a special case that should not be used with center-aligned PWM mode. When CPWMS=0, this case corresponds to the counter running free from 0x0000 through 0xFFFF, but when CPWMS=1 the counter needs a valid match to the modulus register somewhere other than at 0x0000 in order to change directions from up-counting to down-counting. The output compare value in the TPM channel registers (times 2) determines the pulse width (duty cycle) of the CPWM signal (Figure16-16). If ELSnA=0, a compare occurred while counting up forces the CPWM output signal low and a compare occurred while counting down forces the output high. The counter counts up until it reaches the modulo setting in TPMxMODH:TPMxMODL, then counts down until it reaches zero. This sets the period equal to two times TPMxMODH:TPMxMODL. OUTPUT COUNT= 0 OUTPUT COUNT= COMPARE COMPARE COUNT= TPMxMODH:TPMxMODL (COUNT DOWN) (COUNT UP) TPMxMODH:TPMxMODL TPMxCHn PULSE WIDTH 2 x TPMxCnVH:TPMxCnVL PERIOD 2 x TPMxMODH:TPMxMODL Figure16-16. CPWM Period and Pulse Width (ELSnA=0) Center-aligned PWM outputs typically produce less noise than edge-aligned PWMs because fewer I/O pin transitions are lined up at the same system clock edge. This type of PWM is also required for some types of motor drives. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 257

Chapter 16 Timer/PWM Module (S08TPMV3) Input capture, output compare, and edge-aligned PWM functions do not make sense when the counter is operating in up/down counting mode so this implies that all active channels within a TPM must be used in CPWM mode when CPWMS=1. The TPM may be used in an 8-bit MCU. The settings in the timer channel registers are buffered to ensure coherent 16-bit updates and to avoid unexpected PWM pulse widths. Writes to any of the registers TPMxMODH, TPMxMODL, TPMxCnVH, and TPMxCnVL, actually write to buffer registers. In center-aligned PWM mode, the TPMxCnVH:L registers are updated with the value of their write buffer according to the value of CLKSB:CLKSA bits, so: • If (CLKSB:CLKSA = 0:0), the registers are updated when the second byte is written • If (CLKSB:CLKSA not = 0:0), the registers are updated after the both bytes were written, and the TPM counter changes from (TPMxMODH:TPMxMODL - 1) to (TPMxMODH:TPMxMODL). If the TPM counter is a free-running counter, the update is made when the TPM counter changes from 0xFFFE to 0xFFFF. When TPMxCNTH:TPMxCNTL=TPMxMODH:TPMxMODL, the TPM can optionally generate a TOF interrupt (at the end of this count). Writing to TPMxSC cancels any values written to TPMxMODH and/or TPMxMODL and resets the coherency mechanism for the modulo registers. Writing to TPMxCnSC cancels any values written to the channel value registers and resets the coherency mechanism for TPMxCnVH:TPMxCnVL. 16.5 Reset Overview 16.5.1 General The TPM is reset whenever any MCU reset occurs. 16.5.2 Description of Reset Operation Reset clears the TPMxSC register which disables clocks to the TPM and disables timer overflow interrupts (TOIE=0). CPWMS, MSnB, MSnA, ELSnB, and ELSnA are all cleared which configures all TPM channels for input-capture operation with the associated pins disconnected from I/O pin logic (so all MCU pins related to the TPM revert to general purpose I/O pins). 16.6 Interrupts 16.6.1 General The TPM generates an optional interrupt for the main counter overflow and an interrupt for each channel. The meaning of channel interrupts depends on each channel’s mode of operation. If the channel is configured for input capture, the interrupt flag is set each time the selected input capture edge is recognized. If the channel is configured for output compare or PWM modes, the interrupt flag is set each time the main timer counter matches the value in the 16-bit channel value register. MC9S08SH32 Series Data Sheet, Rev. 3 258 Freescale Semiconductor

Chapter 16 Timer/PWM Module (S08TPMV3) All TPM interrupts are listed in Table16-9 which shows the interrupt name, the name of any local enable that can block the interrupt request from leaving the TPM and getting recognized by the separate interrupt processing logic. Table16-9. Interrupt Summary Local Interrupt Source Description Enable TOF TOIE Counter overflow Set each time the timer counter reaches its terminal count (at transition to next count value which is usually 0x0000) CHnF CHnIE Channel event An input capture or output compare event took place on channel n The TPM module will provide a high-true interrupt signal. Vectors and priorities are determined at chip integration time in the interrupt module so refer to the user’s guide for the interrupt module or to the chip’s complete documentation for details. 16.6.2 Description of Interrupt Operation For each interrupt source in the TPM, a flag bit is set upon recognition of the interrupt condition such as timer overflow, channel-input capture, or output-compare events. This flag may be read (polled) by software to determine that the action has occurred, or an associated enable bit (TOIE or CHnIE) can be set to enable hardware interrupt generation. While the interrupt enable bit is set, a static interrupt will generate whenever the associated interrupt flag equals one. The user’s software must perform a sequence of steps to clear the interrupt flag before returning from the interrupt-service routine. TPM interrupt flags are cleared by a two-step process including a read of the flag bit while it is set (1) followed by a write of zero (0) to the bit. If a new event is detected between these two steps, the sequence is reset and the interrupt flag remains set after the second step to avoid the possibility of missing the new event. 16.6.2.1 Timer Overflow Interrupt (TOF) Description The meaning and details of operation for TOF interrupts varies slightly depending upon the mode of operation of the TPM system (general purpose timing functions versus center-aligned PWM operation). The flag is cleared by the two step sequence described above. 16.6.2.1.1 Normal Case Normally TOF is set when the timer counter changes from 0xFFFF to 0x0000. When the TPM is not configured for center-aligned PWM (CPWMS=0), TOF gets set when the timer counter changes from the terminal count (the value in the modulo register) to 0x0000. This case corresponds to the normal meaning of counter overflow. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 259

Chapter 16 Timer/PWM Module (S08TPMV3) 16.6.2.1.2 Center-Aligned PWM Case When CPWMS=1, TOF gets set when the timer counter changes direction from up-counting to down-counting at the end of the terminal count (the value in the modulo register). In this case the TOF corresponds to the end of a PWM period. 16.6.2.2 Channel Event Interrupt Description The meaning of channel interrupts depends on the channel’s current mode (input-capture, output-compare, edge-aligned PWM, or center-aligned PWM). 16.6.2.2.1 Input Capture Events When a channel is configured as an input capture channel, the ELSnB:ELSnA control bits select no edge (off), rising edges, falling edges or any edge as the edge which triggers an input capture event. When the selected edge is detected, the interrupt flag is set. The flag is cleared by the two-step sequence described in Section16.6.2, “Description of Interrupt Operation.” 16.6.2.2.2 Output Compare Events When a channel is configured as an output compare channel, the interrupt flag is set each time the main timer counter matches the 16-bit value in the channel value register. The flag is cleared by the two-step sequence described Section16.6.2, “Description of Interrupt Operation.” 16.6.2.2.3 PWM End-of-Duty-Cycle Events For channels configured for PWM operation there are two possibilities. When the channel is configured for edge-aligned PWM, the channel flag gets set when the timer counter matches the channel value register which marks the end of the active duty cycle period. When the channel is configured for center-aligned PWM, the timer count matches the channel value register twice during each PWM cycle. In this CPWM case, the channel flag is set at the start and at the end of the active duty cycle period which are the times when the timer counter matches the channel value register. The flag is cleared by the two-step sequence described Section16.6.2, “Description of Interrupt Operation.” MC9S08SH32 Series Data Sheet, Rev. 3 260 Freescale Semiconductor

Chapter 17 Development Support 17.1 Introduction Development support systems in the HCS08 include the background debug controller (BDC) and the on-chip debug module (DBG). The BDC provides a single-wire debug interface to the target MCU that provides a convenient interface for programming the on-chip FLASH and other nonvolatile memories. The BDC is also the primary debug interface for development and allows non-intrusive access to memory data and traditional debug features such as CPU register modify, breakpoints, and single instruction trace commands. In the HCS08 Family, address and data bus signals are not available on external pins (not even in test modes). Debug is done through commands fed into the target MCU via the single-wire background debug interface. The debug module provides a means to selectively trigger and capture bus information so an external development system can reconstruct what happened inside the MCU on a cycle-by-cycle basis without having external access to the address and data signals. 17.1.1 Forcing Active Background The method for forcing active background mode depends on the specific HCS08 derivative. For the MC9S08SH32 Series, you can force active background after a power-on reset by holding the BKGD pin low as the device exits the reset condition. You can also force active background by driving BKGD low immediately after a serial background command that writes a one to the BDFR bit in the SBDFR register. Other causes of reset including an external pin reset or an internally generated error reset ignore the state of the BKGD pin and reset into normal user mode. If no debug pod is connected to the BKGD pin, the MCU will always reset into normal operating mode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 261

Chapter 17 Development Support 17.1.2 Features Features of the BDC module include: • Single pin for mode selection and background communications • BDC registers are not located in the memory map • SYNC command to determine target communications rate • Non-intrusive commands for memory access • Active background mode commands for CPU register access • GO and TRACE1 commands • BACKGROUND command can wake CPU from stop or wait modes • One hardware address breakpoint built into BDC • Oscillator runs in stop mode, if BDC enabled • COP watchdog disabled while in active background mode Features of the ICE system include: • Two trigger comparators: Two address + read/write (R/W) or one full address + data + R/W • Flexible 8-word by 16-bit FIFO (first-in, first-out) buffer for capture information: — Change-of-flow addresses or — Event-only data • Two types of breakpoints: — Tag breakpoints for instruction opcodes — Force breakpoints for any address access • Nine trigger modes: — Basic: A-only, A OR B — Sequence: A then B — Full: A AND B data, A AND NOT B data — Event (store data): Event-only B, A then event-only B — Range: Inside range (A ≤ address ≤ B), outside range (address < A or address > B) 17.2 Background Debug Controller (BDC) All MCUs in the HCS08 Family contain a single-wire background debug interface that supports in-circuit programming of on-chip nonvolatile memory and sophisticated non-intrusive debug capabilities. Unlike debug interfaces on earlier 8-bit MCUs, this system does not interfere with normal application resources. It does not use any user memory or locations in the memory map and does not share any on-chip peripherals. BDC commands are divided into two groups: • Active background mode commands require that the target MCU is in active background mode (the user program is not running). Active background mode commands allow the CPU registers to be read or written, and allow the user to trace one user instruction at a time, or GO to the user program from active background mode. MC9S08SH32 Series Data Sheet, Rev. 3 262 Freescale Semiconductor

Chapter 17 Development Support • Non-intrusive commands can be executed at any time even while the user’s program is running. Non-intrusive commands allow a user to read or write MCU memory locations or access status and control registers within the background debug controller. Typically, a relatively simple interface pod is used to translate commands from a host computer into commands for the custom serial interface to the single-wire background debug system. Depending on the development tool vendor, this interface pod may use a standard RS-232 serial port, a parallel printer port, or some other type of communications such as a universal serial bus (USB) to communicate between the host PC and the pod. The pod typically connects to the target system with ground, the BKGD pin, RESET, and sometimes V . An open-drain connection to reset allows the host to force a target system reset, DD which is useful to regain control of a lost target system or to control startup of a target system before the on-chip nonvolatile memory has been programmed. Sometimes V can be used to allow the pod to use DD power from the target system to avoid the need for a separate power supply. However, if the pod is powered separately, it can be connected to a running target system without forcing a target system reset or otherwise disturbing the running application program. BKGD 1 2 GND NO CONNECT 3 4 RESET NO CONNECT 5 6 V DD Figure17-1. BDM Tool Connector 17.2.1 BKGD Pin Description BKGD is the single-wire background debug interface pin. The primary function of this pin is for bidirectional serial communication of active background mode commands and data. During reset, this pin is used to select between starting in active background mode or starting the user’s application program. This pin is also used to request a timed sync response pulse to allow a host development tool to determine the correct clock frequency for background debug serial communications. BDC serial communications use a custom serial protocol first introduced on the M68HC12 Family of microcontrollers. This protocol assumes the host knows the communication clock rate that is determined by the target BDC clock rate. All communication is initiated and controlled by the host that drives a high-to-low edge to signal the beginning of each bit time. Commands and data are sent most significant bit first (MSB first). For a detailed description of the communications protocol, refer to Section17.2.2, “Communication Details.” If a host is attempting to communicate with a target MCU that has an unknown BDC clock rate, a SYNC command may be sent to the target MCU to request a timed sync response signal from which the host can determine the correct communication speed. BKGD is a pseudo-open-drain pin and there is an on-chip pullup so no external pullup resistor is required. Unlike typical open-drain pins, the external RC time constant on this pin, which is influenced by external capacitance, plays almost no role in signal rise time. The custom protocol provides for brief, actively driven speedup pulses to force rapid rise times on this pin without risking harmful drive level conflicts. Refer to Section17.2.2, “Communication Details,” for more detail. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 263

Chapter 17 Development Support When no debugger pod is connected to the 6-pin BDM interface connector, the internal pullup on BKGD chooses normal operating mode. When a debug pod is connected to BKGD it is possible to force the MCU into active background mode after reset. The specific conditions for forcing active background depend upon the HCS08 derivative (refer to the introduction to this Development Support section). It is not necessary to reset the target MCU to communicate with it through the background debug interface. 17.2.2 Communication Details The BDC serial interface requires the external controller to generate a falling edge on the BKGD pin to indicate the start of each bit time. The external controller provides this falling edge whether data is transmitted or received. BKGD is a pseudo-open-drain pin that can be driven either by an external controller or by the MCU. Data is transferred MSB first at 16BDC clock cycles per bit (nominal speed). The interface times out if 512BDC clock cycles occur between falling edges from the host. Any BDC command that was in progress when this timeout occurs is aborted without affecting the memory or operating mode of the target MCU system. The custom serial protocol requires the debug pod to know the target BDC communication clock speed. The clock switch (CLKSW) control bit in the BDC status and control register allows the user to select the BDC clock source. The BDC clock source can either be the bus or the alternate BDC clock source. The BKGD pin can receive a high or low level or transmit a high or low level. The following diagrams show timing for each of these cases. Interface timing is synchronous to clocks in the target BDC, but asynchronous to the external host. The internal BDC clock signal is shown for reference in counting cycles. MC9S08SH32 Series Data Sheet, Rev. 3 264 Freescale Semiconductor

Chapter 17 Development Support Figure 17-2 shows an external host transmitting a logic 1 or 0 to the BKGD pin of a target HCS08 MCU. The host is asynchronous to the target so there is a 0-to-1 cycle delay from the host-generated falling edge to where the target perceives the beginning of the bit time. Ten target BDC clock cycles later, the target senses the bit level on the BKGD pin. Typically, the host actively drives the pseudo-open-drain BKGD pin during host-to-target transmissions to speed up rising edges. Because the target does not drive the BKGD pin during the host-to-target transmission period, there is no need to treat the line as an open-drain signal during this period. BDC CLOCK (TARGET MCU) HOST TRANSMIT 1 HOST TRANSMIT 0 10 CYCLES EARLIEST START OF NEXT BIT SYNCHRONIZATION TARGET SENSES BIT LEVEL UNCERTAINTY PERCEIVED START OF BIT TIME Figure17-2. BDC Host-to-Target Serial Bit Timing MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 265

Chapter 17 Development Support Figure 17-3 shows the host receiving a logic 1 from the target HCS08 MCU. Because the host is asynchronous to the target MCU, there is a 0-to-1 cycle delay from the host-generated falling edge on BKGD to the perceived start of the bit time in the target MCU. The host holds the BKGD pin low long enough for the target to recognize it (at least two target BDC cycles). The host must release the low drive before the target MCU drives a brief active-high speedup pulse seven cycles after the perceived start of the bit time. The host should sample the bit level about 10cycles after it started the bit time. BDC CLOCK (TARGET MCU) HOST DRIVE TO BKGD PIN HIGH-IMPEDANCE TARGET MCU SPEEDUP PULSE HIGH-IMPEDANCE HIGH-IMPEDANCE PERCEIVED START OF BIT TIME R-C RISE BKGD PIN 10 CYCLES EARLIEST START OF NEXT BIT 10 CYCLES HOST SAMPLES BKGD PIN Figure17-3. BDC Target-to-Host Serial Bit Timing (Logic 1) MC9S08SH32 Series Data Sheet, Rev. 3 266 Freescale Semiconductor

Chapter 17 Development Support Figure 17-4 shows the host receiving a logic 0 from the target HCS08 MCU. Because the host is asynchronous to the target MCU, there is a 0-to-1 cycle delay from the host-generated falling edge on BKGD to the start of the bit time as perceived by the target MCU. The host initiates the bit time but the target HCS08 finishes it. Because the target wants the host to receive a logic 0, it drives the BKGD pin low for 13 BDC clock cycles, then briefly drives it high to speed up the rising edge. The host samples the bit level about 10 cycles after starting the bit time. BDC CLOCK (TARGET MCU) HOST DRIVE HIGH-IMPEDANCE TO BKGD PIN SPEEDUP TARGET MCU PULSE DRIVE AND SPEED-UP PULSE PERCEIVED START OF BIT TIME BKGD PIN 10 CYCLES EARLIEST START OF NEXT BIT 10 CYCLES HOST SAMPLES BKGD PIN Figure17-4. BDM Target-to-Host Serial Bit Timing (Logic 0) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 267

Chapter 17 Development Support 17.2.3 BDC Commands BDC commands are sent serially from a host computer to the BKGD pin of the target HCS08 MCU. All commands and data are sent MSB-first using a custom BDC communications protocol. Active background mode commands require that the target MCU is currently in the active background mode while non-intrusive commands may be issued at any time whether the target MCU is in active background mode or running a user application program. Table 17-1 shows all HCS08 BDC commands, a shorthand description of their coding structure, and the meaning of each command. Coding Structure Nomenclature This nomenclature is used in Table 17-1 to describe the coding structure of the BDC commands. Commands begin with an 8-bit hexadecimal command code in the host-to-target direction (most significant bit first) / = separates parts of the command d = delay 16 target BDC clock cycles AAAA = a 16-bit address in the host-to-target direction RD = 8 bits of read data in the target-to-host direction WD = 8 bits of write data in the host-to-target direction RD16 = 16 bits of read data in the target-to-host direction WD16 = 16 bits of write data in the host-to-target direction SS = the contents of BDCSCR in the target-to-host direction (STATUS) CC = 8 bits of write data for BDCSCR in the host-to-target direction (CONTROL) RBKP = 16 bits of read data in the target-to-host direction (from BDCBKPT breakpoint register) WBKP = 16 bits of write data in the host-to-target direction (for BDCBKPT breakpoint register) MC9S08SH32 Series Data Sheet, Rev. 3 268 Freescale Semiconductor

Chapter 17 Development Support Table17-1. BDC Command Summary Command Active BDM/ Coding Description Mnemonic Non-intrusive Structure Request a timed reference pulse to determine SYNC Non-intrusive n/a1 target BDC communication speed Enable acknowledge protocol. Refer to ACK_ENABLE Non-intrusive D5/d Freescale document order no. HCS08RMv1/D. Disable acknowledge protocol. Refer to ACK_DISABLE Non-intrusive D6/d Freescale document order no. HCS08RMv1/D. Enter active background mode if enabled BACKGROUND Non-intrusive 90/d (ignore if ENBDM bit equals 0) READ_STATUS Non-intrusive E4/SS Read BDC status from BDCSCR WRITE_CONTROL Non-intrusive C4/CC Write BDC controls in BDCSCR READ_BYTE Non-intrusive E0/AAAA/d/RD Read a byte from target memory READ_BYTE_WS Non-intrusive E1/AAAA/d/SS/RD Read a byte and report status Re-read byte from address just read and report READ_LAST Non-intrusive E8/SS/RD status WRITE_BYTE Non-intrusive C0/AAAA/WD/d Write a byte to target memory WRITE_BYTE_WS Non-intrusive C1/AAAA/WD/d/SS Write a byte and report status READ_BKPT Non-intrusive E2/RBKP Read BDCBKPT breakpoint register WRITE_BKPT Non-intrusive C2/WBKP Write BDCBKPT breakpoint register Go to execute the user application program GO Active BDM 08/d starting at the address currently in the PC Trace 1 user instruction at the address in the TRACE1 Active BDM 10/d PC, then return to active background mode Same as GO but enable external tagging TAGGO Active BDM 18/d (HCS08 devices have no external tagging pin) READ_A Active BDM 68/d/RD Read accumulator (A) READ_CCR Active BDM 69/d/RD Read condition code register (CCR) READ_PC Active BDM 6B/d/RD16 Read program counter (PC) READ_HX Active BDM 6C/d/RD16 Read H and X register pair (H:X) READ_SP Active BDM 6F/d/RD16 Read stack pointer (SP) Increment H:X by one then read memory byte READ_NEXT Active BDM 70/d/RD located at H:X Increment H:X by one then read memory byte READ_NEXT_WS Active BDM 71/d/SS/RD located at H:X. Report status and data. WRITE_A Active BDM 48/WD/d Write accumulator (A) WRITE_CCR Active BDM 49/WD/d Write condition code register (CCR) WRITE_PC Active BDM 4B/WD16/d Write program counter (PC) WRITE_HX Active BDM 4C/WD16/d Write H and X register pair (H:X) WRITE_SP Active BDM 4F/WD16/d Write stack pointer (SP) Increment H:X by one, then write memory byte WRITE_NEXT Active BDM 50/WD/d located at H:X Increment H:X by one, then write memory byte WRITE_NEXT_WS Active BDM 51/WD/d/SS located at H:X. Also report status. 1 The SYNC command is a special operation that does not have a command code. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 269

Chapter 17 Development Support The SYNC command is unlike other BDC commands because the host does not necessarily know the correct communications speed to use for BDC communications until after it has analyzed the response to the SYNC command. To issue a SYNC command, the host: • Drives the BKGD pin low for at least 128 cycles of the slowest possible BDC clock (The slowest clock is normally the reference oscillator/64 or the self-clocked rate/64.) • Drives BKGD high for a brief speedup pulse to get a fast rise time (This speedup pulse is typically one cycle of the fastest clock in the system.) • Removes all drive to the BKGD pin so it reverts to high impedance • Monitors the BKGD pin for the sync response pulse The target, upon detecting the SYNC request from the host (which is a much longer low time than would ever occur during normal BDC communications): • Waits for BKGD to return to a logic high • Delays 16cycles to allow the host to stop driving the high speedup pulse • Drives BKGD low for 128BDC clock cycles • Drives a 1-cycle high speedup pulse to force a fast rise time on BKGD • Removes all drive to the BKGD pin so it reverts to high impedance The host measures the low time of this 128-cycle sync response pulse and determines the correct speed for subsequent BDC communications. Typically, the host can determine the correct communication speed within a few percent of the actual target speed and the communication protocol can easily tolerate speed errors of several percent. 17.2.4 BDC Hardware Breakpoint The BDC includes one relatively simple hardware breakpoint that compares the CPU address bus to a 16-bit match value in the BDCBKPT register. This breakpoint can generate a forced breakpoint or a tagged breakpoint. A forced breakpoint causes the CPU to enter active background mode at the first instruction boundary following any access to the breakpoint address. The tagged breakpoint causes the instruction opcode at the breakpoint address to be tagged so that the CPU will enter active background mode rather than executing that instruction if and when it reaches the end of the instruction queue. This implies that tagged breakpoints can only be placed at the address of an instruction opcode while forced breakpoints can be set at any address. The breakpoint enable (BKPTEN) control bit in the BDC status and control register (BDCSCR) is used to enable the breakpoint logic (BKPTEN= 1). When BKPTEN= 0, its default value after reset, the breakpoint logic is disabled and no BDC breakpoints are requested regardless of the values in other BDC breakpoint registers and control bits. The force/tag select (FTS) control bit in BDCSCR is used to select forced (FTS= 1) or tagged (FTS= 0) type breakpoints. The on-chip debug module (DBG) includes circuitry for two additional hardware breakpoints that are more flexible than the simple breakpoint in the BDC module. MC9S08SH32 Series Data Sheet, Rev. 3 270 Freescale Semiconductor

Chapter 17 Development Support 17.3 On-Chip Debug System (DBG) Because HCS08 devices do not have external address and data buses, the most important functions of an in-circuit emulator have been built onto the chip with the MCU. The debug system consists of an 8-stage FIFO that can store address or data bus information, and a flexible trigger system to decide when to capture bus information and what information to capture. The system relies on the single-wire background debug system to access debug control registers and to read results out of the eight stage FIFO. The debug module includes control and status registers that are accessible in the user’s memory map. These registers are located in the high register space to avoid using valuable direct page memory space. Most of the debug module’s functions are used during development, and user programs rarely access any of the control and status registers for the debug module. The one exception is that the debug system can provide the means to implement a form of ROM patching. This topic is discussed in greater detail in Section17.3.6, “Hardware Breakpoints.” 17.3.1 Comparators A and B Two 16-bit comparators (A and B) can optionally be qualified with the R/W signal and an opcode tracking circuit. Separate control bits allow you to ignore R/W for each comparator. The opcode tracking circuitry optionally allows you to specify that a trigger will occur only if the opcode at the specified address is actually executed as opposed to only being read from memory into the instruction queue. The comparators are also capable of magnitude comparisons to support the inside range and outside range trigger modes. Comparators are disabled temporarily during all BDC accesses. The A comparator is always associated with the 16-bit CPU address. The B comparator compares to the CPU address or the 8-bit CPU data bus, depending on the trigger mode selected. Because the CPU data bus is separated into a read data bus and a write data bus, the RWAEN and RWA control bits have an additional purpose, in full address plus data comparisons they are used to decide which of these buses to use in the comparator B data bus comparisons. If RWAEN= 1 (enabled) and RWA= 0 (write), the CPU’s write data bus is used. Otherwise, the CPU’s read data bus is used. The currently selected trigger mode determines what the debugger logic does when a comparator detects a qualified match condition. A match can cause: • Generation of a breakpoint to the CPU • Storage of data bus values into the FIFO • Starting to store change-of-flow addresses into the FIFO (begin type trace) • Stopping the storage of change-of-flow addresses into the FIFO (end type trace) 17.3.2 Bus Capture Information and FIFO Operation The usual way to use the FIFO is to setup the trigger mode and other control options, then arm the debugger. When the FIFO has filled or the debugger has stopped storing data into the FIFO, you would read the information out of it in the order it was stored into the FIFO. Status bits indicate the number of words of valid information that are in the FIFO as data is stored into it. If a trace run is manually halted by writing 0 to ARM before the FIFO is full (CNT = 1:0:0:0), the information is shifted by one position and MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 271

Chapter 17 Development Support the host must perform ((8 – CNT) – 1) dummy reads of the FIFO to advance it to the first significant entry in the FIFO. In most trigger modes, the information stored in the FIFO consists of 16-bit change-of-flow addresses. In these cases, read DBGFH then DBGFL to get one coherent word of information out of the FIFO. Reading DBGFL (the low-order byte of the FIFO data port) causes the FIFO to shift so the next word of information is available at the FIFO data port. In the event-only trigger modes (see Section17.3.5, “Trigger Modes”), 8-bit data information is stored into the FIFO. In these cases, the high-order half of the FIFO (DBGFH) is not used and data is read out of the FIFO by simply reading DBGFL. Each time DBGFL is read, the FIFO is shifted so the next data value is available through the FIFO data port at DBGFL. In trigger modes where the FIFO is storing change-of-flow addresses, there is a delay between CPU addresses and the input side of the FIFO. Because of this delay, if the trigger event itself is a change-of-flow address or a change-of-flow address appears during the next two bus cycles after a trigger event starts the FIFO, it will not be saved into the FIFO. In the case of an end-trace, if the trigger event is a change-of-flow, it will be saved as the last change-of-flow entry for that debug run. The FIFO can also be used to generate a profile of executed instruction addresses when the debugger is not armed. When ARM= 0, reading DBGFL causes the address of the most-recently fetched opcode to be saved in the FIFO. To use the profiling feature, a host debugger would read addresses out of the FIFO by reading DBGFH then DBGFL at regular periodic intervals. The first eight values would be discarded because they correspond to the eight DBGFL reads needed to initially fill the FIFO. Additional periodic reads of DBGFH and DBGFL return delayed information about executed instructions so the host debugger can develop a profile of executed instruction addresses. 17.3.3 Change-of-Flow Information To minimize the amount of information stored in the FIFO, only information related to instructions that cause a change to the normal sequential execution of instructions is stored. With knowledge of the source and object code program stored in the target system, an external debugger system can reconstruct the path of execution through many instructions from the change-of-flow information stored in the FIFO. For conditional branch instructions where the branch is taken (branch condition was true), the source address is stored (the address of the conditional branch opcode). Because BRA and BRN instructions are not conditional, these events do not cause change-of-flow information to be stored in the FIFO. Indirect JMP and JSR instructions use the current contents of the H:X index register pair to determine the destination address, so the debug system stores the run-time destination address for any indirect JMP or JSR. For interrupts, RTI, or RTS, the destination address is stored in the FIFO as change-of-flow information. 17.3.4 Tag vs. Force Breakpoints and Triggers Tagging is a term that refers to identifying an instruction opcode as it is fetched into the instruction queue, but not taking any other action until and unless that instruction is actually executed by the CPU. This distinction is important because any change-of-flow from a jump, branch, subroutine call, or interrupt causes some instructions that have been fetched into the instruction queue to be thrown away without being executed. MC9S08SH32 Series Data Sheet, Rev. 3 272 Freescale Semiconductor

Chapter 17 Development Support A force-type breakpoint waits for the current instruction to finish and then acts upon the breakpoint request. The usual action in response to a breakpoint is to go to active background mode rather than continuing to the next instruction in the user application program. The tag vs. force terminology is used in two contexts within the debug module. The first context refers to breakpoint requests from the debug module to the CPU. The second refers to match signals from the comparators to the debugger control logic. When a tag-type break request is sent to the CPU, a signal is entered into the instruction queue along with the opcode so that if/when this opcode ever executes, the CPU will effectively replace the tagged opcode with a BGND opcode so the CPU goes to active background mode rather than executing the tagged instruction. When the TRGSEL control bit in the DBGT register is set to select tag-type operation, the output from comparator A or B is qualified by a block of logic in the debug module that tracks opcodes and only produces a trigger to the debugger if the opcode at the compare address is actually executed. There is separate opcode tracking logic for each comparator so more than one compare event can be tracked through the instruction queue at a time. 17.3.5 Trigger Modes The trigger mode controls the overall behavior of a debug run. The 4-bit TRG field in the DBGT register selects one of nine trigger modes. When TRGSEL= 1 in the DBGT register, the output of the comparator must propagate through an opcode tracking circuit before triggering FIFO actions. The BEGIN bit in DBGT chooses whether the FIFO begins storing data when the qualified trigger is detected (begin trace), or the FIFO stores data in a circular fashion from the time it is armed until the qualified trigger is detected (end trigger). A debug run is started by writing a 1 to the ARM bit in the DBGC register, which sets the ARMF flag and clears the AF and BF flags and the CNT bits in DBGS. A begin-trace debug run ends when the FIFO gets full. An end-trace run ends when the selected trigger event occurs. Any debug run can be stopped manually by writing a 0 to ARM or DBGEN in DBGC. In all trigger modes except event-only modes, the FIFO stores change-of-flow addresses. In event-only trigger modes, the FIFO stores data in the low-order eight bits of the FIFO. The BEGIN control bit is ignored in event-only trigger modes and all such debug runs are begin type traces. When TRGSEL= 1 to select opcode fetch triggers, it is not necessary to use R/W in comparisons because opcode tags would only apply to opcode fetches that are always read cycles. It would also be unusual to specify TRGSEL =1 while using a full mode trigger because the opcode value is normally known at a particular address. The following trigger mode descriptions only state the primary comparator conditions that lead to a trigger. Either comparator can usually be further qualified with R/W by setting RWAEN (RWBEN) and the corresponding RWA (RWB) value to be matched against R/W. The signal from the comparator with optional R/W qualification is used to request a CPU breakpoint if BRKEN =1 and TAG determines whether the CPU request will be a tag request or a force request. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 273

Chapter 17 Development Support A-Only — Trigger when the address matches the value in comparator A A OR B — Trigger when the address matches either the value in comparator A or the value in comparatorB A Then B — Trigger when the address matches the value in comparator B but only after the address for another cycle matched the value in comparator A. There can be any number of cycles after the A match and before the B match. A AND B Data (Full Mode) — This is called a full mode because address, data, and R/W (optionally) must match within the same bus cycle to cause a trigger event. Comparator A checks address, the low byte of comparator B checks data, and R/W is checked against RWA if RWAEN= 1. The high-order half of comparator B is not used. In full trigger modes it is not useful to specify a tag-type CPU breakpoint (BRKEN= TAG= 1), but if you do, the comparator B data match is ignored for the purpose of issuing the tag request to the CPU and the CPU breakpoint is issued when the comparator A address matches. A AND NOT B Data (Full Mode) — Address must match comparator A, data must not match the low half of comparator B, and R/W must match RWA if RWAEN= 1. All three conditions must be met within the same bus cycle to cause a trigger. In full trigger modes it is not useful to specify a tag-type CPU breakpoint (BRKEN= TAG= 1), but if you do, the comparator B data match is ignored for the purpose of issuing the tag request to the CPU and the CPU breakpoint is issued when the comparator A address matches. Event-Only B (Store Data) — Trigger events occur each time the address matches the value in comparator B. Trigger events cause the data to be captured into the FIFO. The debug run ends when the FIFO becomes full. A Then Event-Only B (Store Data) — After the address has matched the value in comparator A, a trigger event occurs each time the address matches the value in comparator B. Trigger events cause the data to be captured into the FIFO. The debug run ends when the FIFO becomes full. Inside Range (A ≤ Address ≤ B) — A trigger occurs when the address is greater than or equal to the value in comparator A and less than or equal to the value in comparator B at the same time. Outside Range (Address < A or Address > B) — A trigger occurs when the address is either less than the value in comparator A or greater than the value in comparator B. MC9S08SH32 Series Data Sheet, Rev. 3 274 Freescale Semiconductor

Chapter 17 Development Support 17.3.6 Hardware Breakpoints The BRKEN control bit in the DBGC register may be set to 1 to allow any of the trigger conditions described in Section17.3.5, “Trigger Modes,” to be used to generate a hardware breakpoint request to the CPU. TAG in DBGC controls whether the breakpoint request will be treated as a tag-type breakpoint or a force-type breakpoint. A tag breakpoint causes the current opcode to be marked as it enters the instruction queue. If a tagged opcode reaches the end of the pipe, the CPU executes a BGND instruction to go to active background mode rather than executing the tagged opcode. A force-type breakpoint causes the CPU to finish the current instruction and then go to active background mode. If the background mode has not been enabled (ENBDM= 1) by a serial WRITE_CONTROL command through the BKGD pin, the CPU will execute an SWI instruction instead of going to active background mode. 17.4 Register Definition This section contains the descriptions of the BDC and DBG registers and control bits. Refer to the high-page register summary in the device overview chapter of this data sheet for the absolute address assignments for all DBG registers. This section refers to registers and control bits only by their names. A Freescale-provided equate or header file is used to translate these names into the appropriate absolute addresses. 17.4.1 BDC Registers and Control Bits The BDC has two registers: • The BDC status and control register (BDCSCR) is an 8-bit register containing control and status bits for the background debug controller. • The BDC breakpoint match register (BDCBKPT) holds a 16-bit breakpoint match address. These registers are accessed with dedicated serial BDC commands and are not located in the memory space of the target MCU (so they do not have addresses and cannot be accessed by user programs). Some of the bits in the BDCSCR have write limitations; otherwise, these registers may be read or written at any time. For example, the ENBDM control bit may not be written while the MCU is in active background mode. (This prevents the ambiguous condition of the control bit forbidding active background mode while the MCU is already in active background mode.) Also, the four status bits (BDMACT, WS, WSF, and DVF) are read-only status indicators and can never be written by the WRITE_CONTROL serial BDC command. The clock switch (CLKSW) control bit may be read or written at any time. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 275

Chapter 17 Development Support 17.4.1.1 BDC Status and Control Register (BDCSCR) This register can be read or written by serial BDC commands (READ_STATUS and WRITE_CONTROL) but is not accessible to user programs because it is not located in the normal memory map of the MCU. 7 6 5 4 3 2 1 0 R BDMACT WS WSF DVF ENBDM BKPTEN FTS CLKSW W Normal 0 0 0 0 0 0 0 0 Reset Reset in 1 1 0 0 1 0 0 0 Active BDM: = Unimplemented or Reserved Figure17-5. BDC Status and Control Register (BDCSCR) Table17-2. BDCSCR Register Field Descriptions Field Description 7 Enable BDM (Permit Active Background Mode) — Typically, this bit is written to 1 by the debug host shortly ENBDM after the beginning of a debug session or whenever the debug host resets the target and remains 1 until a normal reset clears it. 0 BDM cannot be made active (non-intrusive commands still allowed) 1 BDM can be made active to allow active background mode commands 6 Background Mode Active Status — This is a read-only status bit. BDMACT 0 BDM not active (user application program running) 1 BDM active and waiting for serial commands 5 BDC Breakpoint Enable — If this bit is clear, the BDC breakpoint is disabled and the FTS (force tag select) BKPTEN control bit and BDCBKPT match register are ignored. 0 BDC breakpoint disabled 1 BDC breakpoint enabled 4 Force/Tag Select — When FTS=1, a breakpoint is requested whenever the CPU address bus matches the FTS BDCBKPT match register. When FTS=0, a match between the CPU address bus and the BDCBKPT register causes the fetched opcode to be tagged. If this tagged opcode ever reaches the end of the instruction queue, the CPU enters active background mode rather than executing the tagged opcode. 0 Tag opcode at breakpoint address and enter active background mode if CPU attempts to execute that instruction 1 Breakpoint match forces active background mode at next instruction boundary (address need not be an opcode) 3 Select Source for BDC Communications Clock — CLKSW defaults to 0, which selects the alternate BDC CLKSW clock source. 0 Alternate BDC clock source 1 MCU bus clock MC9S08SH32 Series Data Sheet, Rev. 3 276 Freescale Semiconductor

Chapter 17 Development Support Table17-2. BDCSCR Register Field Descriptions (continued) Field Description 2 Wait or Stop Status — When the target CPU is in wait or stop mode, most BDC commands cannot function. WS However, the BACKGROUND command can be used to force the target CPU out of wait or stop and into active background mode where all BDC commands work. Whenever the host forces the target MCU into active background mode, the host should issue a READ_STATUS command to check that BDMACT=1 before attempting other BDC commands. 0 Target CPU is running user application code or in active background mode (was not in wait or stop mode when background became active) 1 Target CPU is in wait or stop mode, or a BACKGROUND command was used to change from wait or stop to active background mode 1 Wait or Stop Failure Status — This status bit is set if a memory access command failed due to the target CPU WSF executing a wait or stop instruction at or about the same time. The usual recovery strategy is to issue a BACKGROUND command to get out of wait or stop mode into active background mode, repeat the command that failed, then return to the user program. (Typically, the host would restore CPU registers and stack values and re-execute the wait or stop instruction.) 0 Memory access did not conflict with a wait or stop instruction 1 Memory access command failed because the CPU entered wait or stop mode 0 Data Valid Failure Status — This status bit is not used in the MC9S08SH32 Series because it does not have DVF any slow access memory. 0 Memory access did not conflict with a slow memory access 1 Memory access command failed because CPU was not finished with a slow memory access 17.4.1.2 BDC Breakpoint Match Register (BDCBKPT) This 16-bit register holds the address for the hardware breakpoint in the BDC. The BKPTEN and FTS control bits in BDCSCR are used to enable and configure the breakpoint logic. Dedicated serial BDC commands (READ_BKPT and WRITE_BKPT) are used to read and write the BDCBKPT register but is not accessible to user programs because it is not located in the normal memory map of the MCU. Breakpoints are normally set while the target MCU is in active background mode before running the user application program. For additional information about setup and use of the hardware breakpoint logic in the BDC, refer to Section17.2.4, “BDC Hardware Breakpoint.” 17.4.2 System Background Debug Force Reset Register (SBDFR) This register contains a single write-only control bit. A serial background mode command such as WRITE_BYTE must be used to write to SBDFR. Attempts to write this register from a user program are ignored. Reads always return 0x00. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 277

Chapter 17 Development Support 7 6 5 4 3 2 1 0 R 0 0 0 0 0 0 0 0 W BDFR1 Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved 1 BDFR is writable only through serial background mode debug commands, not from user programs. Figure17-6. System Background Debug Force Reset Register (SBDFR) Table17-3. SBDFR Register Field Description Field Description 0 Background Debug Force Reset — A serial active background mode command such as WRITE_BYTE allows BDFR an external debug host to force a target system reset. Writing 1 to this bit forces an MCU reset. This bit cannot be written from a user program. 17.4.3 DBG Registers and Control Bits The debug module includes nine bytes of register space for three 16-bit registers and three 8-bit control and status registers. These registers are located in the high register space of the normal memory map so they are accessible to normal application programs. These registers are rarely if ever accessed by normal user application programs with the possible exception of a ROM patching mechanism that uses the breakpoint logic. 17.4.3.1 Debug Comparator A High Register (DBGCAH) This register contains compare value bits for the high-order eight bits of comparator A. This register is forced to 0x00 at reset and can be read at any time or written at any time unless ARM = 1. 17.4.3.2 Debug Comparator A Low Register (DBGCAL) This register contains compare value bits for the low-order eight bits of comparator A. This register is forced to 0x00 at reset and can be read at any time or written at any time unless ARM = 1. 17.4.3.3 Debug Comparator B High Register (DBGCBH) This register contains compare value bits for the high-order eight bits of comparator B. This register is forced to 0x00 at reset and can be read at any time or written at any time unless ARM = 1. 17.4.3.4 Debug Comparator B Low Register (DBGCBL) This register contains compare value bits for the low-order eight bits of comparator B. This register is forced to 0x00 at reset and can be read at any time or written at any time unless ARM = 1. MC9S08SH32 Series Data Sheet, Rev. 3 278 Freescale Semiconductor

Chapter 17 Development Support 17.4.3.5 Debug FIFO High Register (DBGFH) This register provides read-only access to the high-order eight bits of the FIFO. Writes to this register have no meaning or effect. In the event-only trigger modes, the FIFO only stores data into the low-order byte of each FIFO word, so this register is not used and will read 0x00. Reading DBGFH does not cause the FIFO to shift to the next word. When reading 16-bit words out of the FIFO, read DBGFH before reading DBGFL because reading DBGFL causes the FIFO to advance to the next word of information. 17.4.3.6 Debug FIFO Low Register (DBGFL) This register provides read-only access to the low-order eight bits of the FIFO. Writes to this register have no meaning or effect. Reading DBGFL causes the FIFO to shift to the next available word of information. When the debug module is operating in event-only modes, only 8-bit data is stored into the FIFO (high-order half of each FIFO word is unused). When reading 8-bit words out of the FIFO, simply read DBGFL repeatedly to get successive bytes of data from the FIFO. It isn’t necessary to read DBGFH in this case. Do not attempt to read data from the FIFO while it is still armed (after arming but before the FIFO is filled or ARMF is cleared) because the FIFO is prevented from advancing during reads of DBGFL. This can interfere with normal sequencing of reads from the FIFO. Reading DBGFL while the debugger is not armed causes the address of the most-recently fetched opcode to be stored to the last location in the FIFO. By reading DBGFH then DBGFL periodically, external host software can develop a profile of program execution. After eight reads from the FIFO, the ninth read will return the information that was stored as a result of the first read. To use the profiling feature, read the FIFO eight times without using the data to prime the sequence and then begin using the data to get a delayed picture of what addresses were being executed. The information stored into the FIFO on reads of DBGFL (while the FIFO is not armed) is the address of the most-recently fetched opcode. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 279

Chapter 17 Development Support 17.4.3.7 Debug Control Register (DBGC) This register can be read or written at any time. 7 6 5 4 3 2 1 0 R DBGEN ARM TAG BRKEN RWA RWAEN RWB RWBEN W Reset 0 0 0 0 0 0 0 0 Figure17-7. Debug Control Register (DBGC) Table17-4. DBGC Register Field Descriptions Field Description 7 Debug Module Enable — Used to enable the debug module. DBGEN cannot be set to 1 if the MCU is secure. DBGEN 0 DBG disabled 1 DBG enabled 6 Arm Control — Controls whether the debugger is comparing and storing information in the FIFO. A write is used ARM to set this bit (and ARMF) and completion of a debug run automatically clears it. Any debug run can be manually stopped by writing 0 to ARM or to DBGEN. 0 Debugger not armed 1 Debugger armed 5 Tag/Force Select — Controls whether break requests to the CPU will be tag or force type requests. If TAG BRKEN=0, this bit has no meaning or effect. 0 CPU breaks requested as force type requests 1 CPU breaks requested as tag type requests 4 Break Enable — Controls whether a trigger event will generate a break request to the CPU. Trigger events can BRKEN cause information to be stored in the FIFO without generating a break request to the CPU. For an end trace, CPU break requests are issued to the CPU when the comparator(s) and R/W meet the trigger requirements. For a begin trace, CPU break requests are issued when the FIFO becomes full. TRGSEL does not affect the timing of CPU break requests. 0 CPU break requests not enabled 1 Triggers cause a break request to the CPU 3 R/W Comparison Value for Comparator A — When RWAEN=1, this bit determines whether a read or a write RWA access qualifies comparator A. When RWAEN=0, RWA and the R/W signal do not affect comparator A. 0 Comparator A can only match on a write cycle 1 Comparator A can only match on a read cycle 2 Enable R/W for Comparator A — Controls whether the level of R/W is considered for a comparator A match. RWAEN 0 R/W is not used in comparison A 1 R/W is used in comparison A 1 R/W Comparison Value for Comparator B — When RWBEN=1, this bit determines whether a read or a write RWB access qualifies comparator B. When RWBEN=0, RWB and the R/W signal do not affect comparator B. 0 Comparator B can match only on a write cycle 1 Comparator B can match only on a read cycle 0 Enable R/W for Comparator B — Controls whether the level of R/W is considered for a comparator B match. RWBEN 0 R/W is not used in comparison B 1 R/W is used in comparison B MC9S08SH32 Series Data Sheet, Rev. 3 280 Freescale Semiconductor

Chapter 17 Development Support 17.4.3.8 Debug Trigger Register (DBGT) This register can be read any time, but may be written only if ARM =0, except bits 4 and 5 are hard-wired to 0s. 7 6 5 4 3 2 1 0 R 0 0 TRGSEL BEGIN TRG3 TRG2 TRG1 TRG0 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure17-8. Debug Trigger Register (DBGT) Table17-5. DBGT Register Field Descriptions Field Description 7 Trigger Type — Controls whether the match outputs from comparators A and B are qualified with the opcode TRGSEL tracking logic in the debug module. If TRGSEL is set, a match signal from comparator A or B must propagate through the opcode tracking logic and a trigger event is only signalled to the FIFO logic if the opcode at the match address is actually executed. 0 Trigger on access to compare address (force) 1 Trigger if opcode at compare address is executed (tag) 6 Begin/End Trigger Select — Controls whether the FIFO starts filling at a trigger or fills in a circular manner until BEGIN a trigger ends the capture of information. In event-only trigger modes, this bit is ignored and all debug runs are assumed to be begin traces. 0 Data stored in FIFO until trigger (end trace) 1 Trigger initiates data storage (begin trace) 3:0 Select Trigger Mode — Selects one of nine triggering modes, as described below. TRG[3:0] 0000 A-only 0001 A OR B 0010 A Then B 0011 Event-only B (store data) 0100 A then event-only B (store data) 0101 A AND B data (full mode) 0110 A AND NOT B data (full mode) 0111 Inside range: A ≤ address ≤ B 1000 Outside range: address < A or address > B 1001 – 1111 (No trigger) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 281

Chapter 17 Development Support 17.4.3.9 Debug Status Register (DBGS) This is a read-only status register. 7 6 5 4 3 2 1 0 R AF BF ARMF 0 CNT3 CNT2 CNT1 CNT0 W Reset 0 0 0 0 0 0 0 0 = Unimplemented or Reserved Figure17-9. Debug Status Register (DBGS) Table17-6. DBGS Register Field Descriptions Field Description 7 Trigger Match A Flag — AF is cleared at the start of a debug run and indicates whether a trigger match A AF condition was met since arming. 0 Comparator A has not matched 1 Comparator A match 6 Trigger Match B Flag — BF is cleared at the start of a debug run and indicates whether a trigger match B BF condition was met since arming. 0 Comparator B has not matched 1 Comparator B match 5 Arm Flag — While DBGEN=1, this status bit is a read-only image of ARM in DBGC. This bit is set by writing 1 ARMF to the ARM control bit in DBGC (while DBGEN=1) and is automatically cleared at the end of a debug run. A debug run is completed when the FIFO is full (begin trace) or when a trigger event is detected (end trace). A debug run can also be ended manually by writing 0 to ARM or DBGEN in DBGC. 0 Debugger not armed 1 Debugger armed 3:0 FIFO Valid Count — These bits are cleared at the start of a debug run and indicate the number of words of valid CNT[3:0] data in the FIFO at the end of a debug run. The value in CNT does not decrement as data is read out of the FIFO. The external debug host is responsible for keeping track of the count as information is read out of the FIFO. 0000 Number of valid words in FIFO = No valid data 0001 Number of valid words in FIFO = 1 0010 Number of valid words in FIFO = 2 0011 Number of valid words in FIFO = 3 0100 Number of valid words in FIFO = 4 0101 Number of valid words in FIFO = 5 0110 Number of valid words in FIFO = 6 0111 Number of valid words in FIFO = 7 1000 Number of valid words in FIFO = 8 MC9S08SH32 Series Data Sheet, Rev. 3 282 Freescale Semiconductor

Appendix A Electrical Characteristics A.1 Introduction This section contains electrical and timing specifications for the MC9S08SH32 Series of microcontrollers available at the time of publication. A.2 Parameter Classification The electrical parameters shown in this supplement are guaranteed by various methods. To give the customer a better understanding, the following classification is used and the parameters are tagged accordingly in the tables where appropriate: TableA-1. Parameter Classifications P Those parameters are guaranteed during production testing on each individual device. Those parameters are achieved through the design characterization by measuring a statistically relevant C sample size across process variations. Those parameters are achieved by design characterization on a small sample size from typical devices T under typical conditions unless otherwise noted. All values shown in the typical column are within this category. D Those parameters are derived mainly from simulations. NOTE The classification is shown in the column labeled “C” in the parameter tables where appropriate. A.3 Absolute Maximum Ratings Absolute maximum ratings are stress ratings only, and functional operation at the maxima is not guaranteed. Stress beyond the limits specified in Table A-2 may affect device reliability or cause permanent damage to the device. For functional operating conditions, refer to the remaining tables in this section. This device contains circuitry protecting against damage due to high static voltage or electrical fields; however, it is advised that normal precautions be taken to avoid application of any voltages higher than maximum-rated voltages to this high-impedance circuit. Reliability of operation is enhanced if unused MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 283

AppendixA Electrical Characteristics inputs are tied to an appropriate logic voltage level (for instance, either V or V ) or the programmable SS DD pull-up resistor associated with the pin is enabled. TableA-2. Absolute Maximum Ratings # Rating Symbol Value Unit 1 Supply voltage V –0.3 to +5.8 V DD 2 Maximum current into V I 120 mA DD DD 3 Digital input voltage V –0.3 to V +0.3 V In DD Instantaneous maximum current 4 I ± 25 mA Single pin limit (applies to all port pins)1,2,3 D 5 Storage temperature range T –55 to 150 °C stg 1 Input must be current limited to the value specified. To determine the value of the required current-limiting resistor, calculate resistance values for positive (V ) and negative (V ) clamp DD SS voltages, then use the larger of the two resistance values. 2 All functional non-supply pins except PTA5/IRQ/TCLK/RESET are internally clamped to V and SS V . DD 3 Power supply must maintain regulation within operating V range during instantaneous and DD operating maximum current conditions. If positive injection current (V > V ) is greater than I , In DD DD the injection current may flow out of V and could result in external power supply going out of DD regulation. Ensure external V load will shunt current greater than maximum injection current. DD This will be the greatest risk when the MCU is not consuming power. Examples are: if no system clock is present, or if the clock rate is very low (which would reduce overall power consumption). MC9S08SH32 Series Data Sheet, Rev. 3 284 Freescale Semiconductor

AppendixA Electrical Characteristics A.4 Thermal Characteristics This section provides information about operating temperature range, power dissipation, and package thermal resistance. Power dissipation on I/O pins is usually small compared to the power dissipation in on-chip logic and voltage regulator circuits, and it is user-determined rather than being controlled by the MCU design. To take P into account in power calculations, determine the difference between actual pin I/O voltage and V or V and multiply by the pin current for each I/O pin. Except in cases of unusually high SS DD pin current (heavy loads), the difference between pin voltage and V or V will be very small. SS DD TableA-3. Thermal Characteristics # C Rating Symbol Value Unit Operating temperature range — (packaged) 1 Temperature Code M T –40 to 125 °C A Temperature Code C –40 to 85 Thermal resistance, Single-layer board 28-pin TSSOP θ 72 °C/W JA D 2 28-pin SOIC 57 20-pin TSSOP 94 16-pin TSSOP 108 Thermal resistance, Four-layer board 28-pin TSSOP θ 51 °C/W JA D 3 28-pin SOIC 42 20-pin TSSOP 68 16-pin TSSOP 78 4 D Maximum junction temperature T 135 °C J MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 285

AppendixA Electrical Characteristics The average chip-junction temperature (T ) in °C can be obtained from: J T = T + (P × θ ) Eqn.A-1 J A D JA where: T = Ambient temperature, °C A θ = Package thermal resistance, junction-to-ambient, °C/W JA P = P + P D int I/O P = I × V , Watts — chip internal power int DD DD P = Power dissipation on input and output pins — user determined I/O For most applications, P << P and can be neglected. An approximate relationship between P and T I/O int D J (if P is neglected) is: I/O P = K ÷ (T + 273°C) Eqn.A-2 D J Solving EquationA-1 and EquationA-2 for K gives: K = P × (T + 273°C) + θ × (P )2 Eqn.A-3 D A JA D where K is a constant pertaining to the particular part. K can be determined from equation 3 by measuring P (at equilibrium) for a known T . Using this value of K, the values of P and T can be obtained by D A D J solving EquationA-1 and EquationA-2 iteratively for any value of T . A MC9S08SH32 Series Data Sheet, Rev. 3 286 Freescale Semiconductor

AppendixA Electrical Characteristics A.5 ESD Protection and Latch-Up Immunity Although damage from electrostatic discharge (ESD) is much less common on these devices than on early CMOS circuits, normal handling precautions should be used to avoid exposure to static discharge. Qualification tests are performed to ensure that these devices can withstand exposure to reasonable levels of static without suffering any permanent damage. All ESD testing is in conformity with AEC-Q100 Stress Test Qualification for Automotive Grade Integrated Circuits. During the device qualification ESD stresses were performed for the human body model (HBM) and the charge device model (CDM). A device is defined as a failure if after exposure to ESD pulses the device no longer meets the device specification. Complete DC parametric and functional testing is performed per the applicable device specification at room temperature followed by hot temperature, unless specified otherwise in the device specification. TableA-4. ESD and Latch-up Test Conditions Model Description Symbol Value Unit Series resistance R1 1500 Ω Human Storage capacitance C 100 pF Body Number of pulses per pin — 3 — Minimum input voltage limit — – 2.5 V Latch-up Maximum input voltage limit — 7.5 V TableA-5. ESD and Latch-Up Protection Characteristics No. Rating1 Symbol Min Max Unit 1 Human body model (HBM) VHBM ± 2000 — V 2 Charge device model (CDM) VCDM ± 500 — V 3 Latch-up current at TA = 125°C ILAT ± 100 — mA 1 Parameter is achieved by design characterization on a small sample size from typical devices under typical conditions unless otherwise noted. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 287

AppendixA Electrical Characteristics A.6 DC Characteristics This section includes information about power supply requirements and I/O pin characteristics. TableA-6. DC Characteristics # C Characteristic Symbol Condition Min Typ1 Max Unit 1 — Operating Voltage V — 2.7 — 5.5 V DD C All I/O pins, 5 V, I = –4 mA V – 1.5 — — V Load DD P low-drive strength 5 V, I = –2 mA V – 0.8 — — V Load DD C Output high V 3 V, I = –1 mA V – 0.8 — — V OH Load DD 2 C voltage 5 V, I = –20 mA V – 1.5 — — V Load DD P All I/O pins, 5 V, I = –10 mA V – 0.8 — — V Load DD C high-drive strength 3 V, I = –5 mA V – 0.8 — — V Load DD Output high Max total I for 3 D OH I V < V 0 — –100 mA current all ports OHT OUT DD C All I/O pins 5 V, I = 4 mA — — 1.5 V Load P low-drive strength 5 V, I = 2 mA — — 0.8 V Load C Output low V 3 V, I = 1 mA — — 0.8 V OL Load 4 C voltage 5 V, I = 20 mA — — 1.5 V Load P All I/O pins 5 V, I = 10 mA — — 0.8 V Load C high-drive strength 3 V, I = 5 mA — — 0.8 V Load Output Max total I for 5 D OL I V > V 0 — 100 mA low current all ports OLT OUT SS P Input high voltage; all digital inputs V 5V 0.65 x V — — V IH DD 6 C 3V 0.7 x V — — V DD P Input low voltage; all digital inputs V 5V — — 0.35 x V V IL DD 7 C 3V — — 0.35 x V V DD 8 C Input hysteresis V — 0.06 x V — — V hys DD | | 9 P Input leakage current (per pin) I V = V or V — — 1 μA In In DD SS Hi-Z (off-state) leakage current (per pin) P input/output port pins |I | VIn = VDD or VSS; — — 1 μA 10 OZ temperature PTA5/IRQ/TCLK/RESET, PTB6/SDA/XTAL pins V = V or V — — 2 μA In DD SS Pullup or Pulldown2 resistors; when enabled 11 P I/O pins R ,R — 17 37 52 kΩ PU PD C PTA5/IRQ/TCLK/RESET3 R — 17 37 52 kΩ PU MC9S08SH32 Series Data Sheet, Rev. 3 288 Freescale Semiconductor

AppendixA Electrical Characteristics TableA-6. DC Characteristics (continued) # C Characteristic Symbol Condition Min Typ1 Max Unit DC injection current 4, 5, 6, 7 Single pin limit V > V 0 — 2 mA IN DD 12 D I V < V , 0 — –0.2 mA IC IN SS Total MCU limit, includes V > V 0 — 25 mA IN DD sum of all stressed pins V < V , 0 — –5 mA IN SS 13 D Input Capacitance, all pins C — — — 8 pF In 14 D RAM retention voltage V — — 0.6 1.0 V RAM 15 D POR re-arm voltage8 V — 0.9 1.4 2.0 V POR 16 D POR re-arm time9 t — 10 — — μs POR Low-voltage detection threshold — high range 17 — P V falling V 3.9 4.0 4.1 DD LVD1 V V rising 4.0 4.1 4.2 DD Low-voltage detection threshold — low range 18 — P V falling V 2.48 2.56 2.64 DD LVD0 V V rising 2.54 2.62 2.70 DD Low-voltage warning threshold — high range 1 19 — P V falling V 4.5 4.6 4.7 DD LVW3 V V rising 4.6 4.7 4.8 DD Low-voltage warning threshold — high range 0 20 — P V falling V 4.2 4.3 4.4 DD LVW2 V V rising 4.3 4.4 4.5 DD Low-voltage warning threshold low range 1 21 — P V falling V 2.84 2.92 3.00 DD LVW1 V V rising 2.90 2.98 3.06 DD Low-voltage warning threshold — low range 0 22 — P V falling V 2.66 2.74 2.82 DD LVW0 V V rising 2.72 2.80 2.88 DD Low-voltage inhibit reset/recover 5 V — 100 — mV 23 T V hysteresis hys 3 V — 60 — mV 24 P Bandgap Voltage Reference10 V — 1.18 1.202 1.21 V BG 1 Typical values are measured at 25°C. Characterized, not tested 2 When IRQ or a pin interrupt is configured to detect rising edges, pulldown resistors are used in place of pullup resistors. 3 The specified resistor value is the actual value internal to the device. The pullup value may measure higher when measured externally on the pin. 4 Power supply must maintain regulation within operating V range during instantaneous and operating maximum current DD conditions. If positive injection current (V > V ) is greater than I , the injection current may flow out of V and could result In DD DD DD in external power supply going out of regulation. Ensure external V load will shunt current greater than maximum injection DD current. This will be the greatest risk when the MCU is not consuming power. Examples are: if no system clock is present, or if clock rate is very low (which would reduce overall power consumption). 5 All functional non-supply pins except PTA5/IRQ/TCLK/RESET are internally clamped to V and V . SS DD MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 289

AppendixA Electrical Characteristics 6 Input must be current limited to the value specified. To determine the value of the required current-limiting resistor, calculate resistance values for positive and negative clamp voltages, then use the larger of the two values. 7 The RESET pin does not have a clamp diode to V . Do not drive this pin above V . DD DD 8 Maximum is highest voltage that POR is guaranteed. 9 Simulated, not tested. 10Factory trimmed at V = 5.0 V, Temp = 25°C. DD 2 1.0 12255°°CC Max 1.5V@20mA 12255°°CC Max 0.8V@5mA –40°C –40°C 0.8 1.5 ) )0.6 V V (L 1 (L O O V V0.4 0.5 0.2 0 0 0 5 10 15 20 25 0 2 4 6 8 10 I (mA) I (mA) OL OL a) V = 5V, High Drive b) V = 3V, High Drive DD DD FigureA-1. Typical V vs I , High Drive Strength OL OL 2 1.0 12255°°CC Max 1.5V@4mA 12255°°CC Max 0.8V@1mA –40°C –40°C 0.8 1.5 ) )0.6 V V (L 1 (L O O V V0.4 0.5 0.2 0 0 0 1 2 3 4 5 0 0.4 0.8 1.2 1.6 2.0 I (mA) I (mA) OL OL a) V = 5V, Low Drive b) V = 3V, Low Drive DD DD FigureA-2. Typical V vs I , Low Drive Strength OL OL MC9S08SH32 Series Data Sheet, Rev. 3 290 Freescale Semiconductor

AppendixA Electrical Characteristics 2 1.0 12255°°CC Max 1.5V@20mA 12255°°CC Max 0.8V@5mA –40°C –40°C 0.8 1.5 V) V) (H (H 0.6 O O V 1 V – – D D 0.4 D D V V 0.5 0.2 0 0 0 –5 –10 –15 –20 –25 0 –2 –4 –6 –8 –10 I (mA) I (mA) OH OH a) V = 5V, High Drive b) V = 3V, High Drive DD DD FigureA-3. Typical V – V vs I , High Drive Strength DD OH OH 2 1.0 12255°°CC Max 1.5V@4mA 12255°°CC Max 0.8V@1mA –40°C –40°C 0.8 1.5 V) V) (H (H 0.6 O O V 1 V – – D D 0.4 D D V V 0.5 0.2 0 0 0 –1 –2 –3 –4 –5 0 –0.4 –0.8 –1.2 –1.6 –2.0 I (mA) I (mA) OH OH a) V = 5V, Low Drive b) V = 3V, Low Drive DD DD FigureA-4. Typical V – V vs I , Low Drive Strength DD OH OH MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 291

AppendixA Electrical Characteristics A.7 Supply Current Characteristics This section includes information about power supply current in various operating modes. TableA-7. Supply Current Characteristics V # C Parameter Symbol DD Typ1 Max2 Unit (V) C 3 5 1.4 3 mA Run supply current measured at 1 C (CPU clock = 4MHz, fBus = 2 MHz) RIDD 3 1.3 2.5 mA P Run supply current3 measured at 5 4.7 7.5 mA 2 C (CPU clock = 16MHz, fBus = 8 MHz) RIDD 3 4.6 7 mA C 4 5 8.9 10 mA Run supply current measured at 3 C (CPU clock = 32MHz, fBus = 16MHz) RIDD 3 8.7 9.6 mA Stop3 mode supply current –40°C (C and M suffix) 0.96 – μA P 25°C (All parts) 1.3 – μA P5 85°C (C suffix only) 5 16.9 35 μA 4 P5 125°C (M suffix only) S3I 84 150 μA DD C –40°C (C and M suffix) 0.85 – μA P 25°C (All parts) 1.2 – μA P5 85°C (C suffix only) 3 14.8 30 μA P5 125°C (M suffix only) 75 130 μA MC9S08SH32 Series Data Sheet, Rev. 3 292 Freescale Semiconductor

AppendixA Electrical Characteristics TableA-7. Supply Current Characteristics (continued) V # C Parameter Symbol DD Typ1 Max2 Unit (V) Stop2 mode supply current C –40°C (C and Msuffix) 0.94 – μA P 25°C (All parts) 1.25 – μA P5 85°C (C suffix only) 5 13.4 30 μA 5 P5 125°C (M suffix only) S2I 65 120 μA DD C –40°C (C and Msuffix) 0.83 – μA P 25°C (All parts) 1.1 – μA P5 85°C (C suffix only) 3 11.5 25 μA P5 125°C (M suffix only) 57 100 μA RTC adder to stop2 or stop36 5 300 500 nA 6 C S23I DDRTI 3 300 500 nA LVD adder to stop3 (LVDE = LVDSE = 1) 5 110 180 μA 7 C S3I DDLVD 3 90 160 μA Adder to stop3 for oscillator enabled7 8 C S3I 5,3 5 8 μA (EREFSTEN =1) DDOSC 1 Typical values are based on characterization data at 25°C. See FigureA-5 through FigureA-7 for typical curves across temperature and voltage. 2 Max values in this column apply for the full operating temperature range of the device unless otherwise noted. 3 All modules except ADC active, ICS configured for FBELP, and does not include any dc loads on port pins 4 All modules except ADC active, ICS configured for FEI, and does not include any dc loads on port pins 5 Stop Currents are tested in production for 25 Con all parts. Tests at other temperatures depend upon the part number suffix and maturity of the product. Freescale may eliminate a test insertion at a particular temperature from the production test flow once sufficient data has been collected and is approved. 6 Most customers are expected to find that auto-wakeup from stop2 or stop3 can be used instead of the higher current wait mode. 7 Values given under the following conditions: low range operation (RANGE = 0) with a 32.768kHz crystal and low power mode (HGO = 0). MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 293

AppendixA Electrical Characteristics 12 FEI FBELP 10 8 ) A m 6 ( D D n I 4 u R 2 0 0 1 2 4 8 16 20 f (MHz) bus FigureA-5. Typical Run I vs. Bus Frequency (V = 5V) DD DD 6 RUN 5 4 ) A m 3 ( D D n I 2 WAIT u R 1 0 –40 0 25 85 105 125 Temperature (°C) FigureA-6. Typical Run and Wait I vs. Temperature (V = 5V; f = 8MHz) DD DD bus MC9S08SH32 Series Data Sheet, Rev. 3 294 Freescale Semiconductor

AppendixA Electrical Characteristics A) 90 (µ 80 DD70 P I 60 O 50 T S 40 30 20 10 0 –40 0 25 85 105 125 Temperature (°C) FigureA-7. Typical Stop I vs. Temperature (V = 5V) DD DD MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 295

AppendixA Electrical Characteristics A.8 External Oscillator (XOSC) Characteristics TableA-8. Oscillator Electrical Specifications (Temperature Range = –40 to 125°C Ambient) # C Rating Symbol Min Typ1 Max Unit Oscillator crystal or resonator (EREFS=1, ERCLKEN = 1) Low range (RANGE = 0) flo 32 — 38.4 kHz 1 C High range (RANGE = 1) FEE or FBE mode 2 fhi 1 — 5 MHz High range (RANGE = 1, HGO = 1) FBELP mode fhi-hgo 1 — 16 MHz High range (RANGE = 1, HGO = 0) FBELP mode fhi-lp 1 — 8 MHz See crystal or resonator 2 — Load capacitors C1, C2 manufacturer’s recommendation. Feedback resistor 3 — Low range (32 kHz to 100 kHz) RF — 10 — MΩ High range (1 MHz to 16 MHz) — 1 — MΩ Series resistor Low range, low gain (RANGE = 0, HGO = 0) — 0 — kΩ Low range, high gain (RANGE = 0, HGO = 1) — 100 — kΩ High range, low gain (RANGE = 1, HGO = 0) — 0 — kΩ 4 — RS High range, high gain (RANGE = 1, HGO = 1) ≥ 8 MHz — 0 0 kΩ 4 MHz — 0 10 kΩ 1 MHz — 0 20 kΩ Crystal start-up time 3 Low range, low gain (RANGE = 0, HGO = 0) t — 200 — ms CSTL-LP 5 T Low range, high gain (RANGE = 0, HGO = 1) tCSTL-HGO — 400 — ms High range, low gain (RANGE = 1, HGO = 0)4 t — 5 — ms CSTH-LP High range, high gain (RANGE = 1, HGO = 1)4 t — 20 — ms CSTH-HGO Square wave input clock frequency (EREFS=0, ERCLKEN = 1) 6 T FEE or FBE mode 2 0.03125 — 5 MHz f extal FBELP mode 0 — 40 MHz 1 Typical data was characterized at 5.0 V, 25°C or is recommended value. 2 The input clock source must be divided using RDIV to within the range of 31.25 kHz to 39.0625 kHz. 3 Characterized and not tested on each device. Proper PC board layout procedures must be followed to achieve specifications. 4 4 MHz crystal MC9S08SH32 Series Data Sheet, Rev. 3 296 Freescale Semiconductor

AppendixA Electrical Characteristics MCU EXTAL XTAL R R S F C1 Crystal or Resonator C2 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 297

AppendixA Electrical Characteristics A.9 Internal Clock Source (ICS) Characteristics TableA-9. ICS Frequency Specifications(Te mperature Range = –40 to 125°C Ambient) # C Rating Symbol Min Typical Max Unit Internal reference frequency — factory 1 P trimmed at V = 5 V and temperature = 25°C fint_ft — 31.25 — kHz DD 2 T Internal reference frequency — untrimmed1 fint_ut 25 36 41.66 kHz 3 P Internal reference frequency — trimmed fint_t 31.25 — 39.0625 kHz 4 D Internal reference startup time tirefst — 55 100 μs DCO output frequency range — untrimmed1 5 — value provided for reference: fdco_ut = 1024 x fdco_ut 25.6 36.86 42.66 MHz f int_ut 6 D DCO output frequency range — trimmed fdco_t 32 — 40 MHz Resolution of trimmed DCO output frequency 7 D at fixed voltage and temperature (using FTRIM) Δfdco_res_t — ± 0.1 ± 0.2 %fdco Resolution of trimmed DCO output frequency 8 D at fixed voltage and temperature (not using Δfdco_res_t — ± 0.2 ± 0.4 %fdco FTRIM) Total deviation of trimmed DCO output + 0.5 9 D frequency over voltage and temperature Δfdco_t — – 1.0 ± 2 %fdco Total deviation of trimmed DCO output 10 D frequency over fixed voltage and temperature Δfdco_t — ± 0.5 ± 1 %fdco range of 0°C to 70 °C 11 D FLL acquisition time 2 tacquire — 1 ms DCO output clock long term jitter (over 2 ms 12 D interval) 3 CJitter — 0.02 0.2 %fdco 1 TRIM register at default value (0x80) and FTRIM control bit at default value (0x0). 2 This specification applies to any time the FLL reference source or reference divider is changed, trim value changed or changing from FLL disabled (FBELP, FBILP) to FLL enabled (FEI, FEE, FBE, FBI). If a crystal/resonator is being used as the reference, this specification assumes it is already running. 3 Jitter is the average deviation from the programmed frequency measured over the specified interval at maximum f . Measurements are made with the device powered by filtered supplies and clocked by a stable external clock BUS signal. Noise injected into the FLL circuitry via V and V and variation in crystal oscillator frequency increase the DD SS C percentage for a given interval. Jitter MC9S08SH32 Series Data Sheet, Rev. 3 298 Freescale Semiconductor

AppendixA Electrical Characteristics y c n+2% e u q e Fr+1% d e m m 0 Tri m o r–1% n f o ati vi–2% e D –40 0 25 85 105 125 Temperature (°C) FigureA-8. Typical Frequency Deviation vs Temperature (ICS Trimmed to 16MHz bus@25°C, 5V, FEI)1 A.10 Analog Comparator (ACMP) Electricals TableA-10. Analog Comparat or Electrical Specifications # C Rating Symbol Min Typical Max Unit 1 — Supply voltage VDD 2.7 — 5.5 V 2 C/T Supply current (active) IDDAC — 20 35 μA 3 D Analog input voltage V V – 0.3 — V V AIN SS DD 4 D Analog input offset voltage V — 20 40 mV AIO 5 D Analog Comparator hysteresis VH 3.0 6.0 20.0 mV 6 D Analog input leakage current IALKG — — 1.0 μA 7 D Analog Comparator initialization delay t — — 1.0 μs AINIT 1.Based on the average of several hundred units from a typical characterization lot. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 299

AppendixA Electrical Characteristics A.11 ADC Characteristics TableA-11. ADC Operating Conditions # Characteristic Conditions Symb Min Typ1 Max Unit Comment 1 Supply voltage Absolute V 2.7 — 5.5 V DDAD Input Voltage V 2 V V — REF V ADIN REFL H Input 3 C — 4.5 5.5 pF Capacitance ADIN Input 4 R — 3 5 kΩ Resistance ADIN Analog Source 10 bit mode Resistance f > 4MHz — — 5 kΩ ADCK f < 4MHz — — 10 External to 5 ADCK R AS MCU 8 bit mode (all valid — — 10 kΩ f ) ADCK ADC High Speed (ADLPC=0) 0.4 — 8.0 MHz 6 Conversion f ADCK Clock Freq. Low Power (ADLPC=1) 0.4 — 4.0 MHz 1 Typical values assume V = V = 5.0V, Temp = 25°C, f =1.0MHz unless otherwise stated. Typical values are DDAD DD ADCK for reference only and are not tested in production. SIMPLIFIED INPUT PIN EQUIVALENT CIRCUIT ZADIN SIMPLIFIED Pad ZAS leakage CHANNEL SELECT due to CIRCUIT ADC SAR R input R ENGINE AS protection ADIN + V ADIN – C V + AS AS – R ADIN INPUT PIN R ADIN INPUT PIN R ADIN INPUT PIN C ADIN FigureA-9. ADC Input Impedance Equivalency Diagram MC9S08SH32 Series Data Sheet, Rev. 3 300 Freescale Semiconductor

AppendixA Electrical Characteristics TableA-12. ADC Characteristics # Characteristic Conditions C Symb Min Typ1 Max Unit Comment ADLPC=1 ADLSMP=1 I + ADC current T DD — 133 — μA ADCO=1 I only DDAD ADLPC=1 ADLSMP=0 I + ADC current T DD — 218 — μA ADCO=1 I only DDAD 1 Supply current ADLPC=0 ADLSMP=1 I + ADC current T DD — 327 — μA ADCO=1 I only DDAD ADLPC=0 ADLSMP=0 I + 0.58 ADC current P DD — 1 mA ADCO=1 I 2 only DDAD ADC High speed (ADLPC=0) 2 3.3 5 P t = 2 asynchronous f MHz ADACK clock source Low power (ADLPC=1) ADACK 1.25 2 3.3 1/fADACK Conversion Short sample — 20 — time (including (ADLSMP=0) ADCK 3 sample time) D tADC cycles Long sample — 40 — See ADC (ADLSMP=1) Chapter for conversion Sample time Short sample — 3.5 — time variances (ADLSMP=0) ADCK 4 D t ADS cycles Long sample — 23.5 — (ADLSMP=1) 28-pin packages only Total 10-bit mode — ±1 ±2.5 unadjusted error (includes 8-bit mode P ETUE LSB2 — ±0.5 ±1 quantization) 20-pin packages 5 10-bit mode — ±.5 ±3.5 P E LSB2 TUE 8-bit mode — ±0.7 ±1.5 16-pin packages 10-bit mode — ±.5 ±3.5 P E LSB2 TUE 8-bit mode — ±0.7 ±1.5 MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 301

AppendixA Electrical Characteristics TableA-12. ADC Characteristics (continued) # Characteristic Conditions C Symb Min Typ1 Max Unit Comment Differential 10-bit mode — ±0.5 ±1.0 Non-Linearity P DNL LSB2 6 8-bit mode — ±0.3 ±0.5 Monotonicity and No-Missing-Codes guaranteed Integral 10-bit mode — ±0.5 ±1.0 7 non-linearity T INL LSB2 8-bit mode — ±0.3 ±0.5 28-pin packages only 10-bit mode P E — ±0.5 ±1.5 LSB2 ZS Zero-scale 8-bit mode — ±0.5 ±0.5 error 20-pin packages 10-bit mode P E — ±1.5 ±2.5 LSB2 ZS 8 8-bit mode — ±0.5 ±0.7 16-pin packages 10-bit mode P E — ±1.5 ±2.5 LSB2 ZS 8-bit mode — ±0.5 ±0.7 MC9S08SH32 Series Data Sheet, Rev. 3 302 Freescale Semiconductor

AppendixA Electrical Characteristics TableA-12. ADC Characteristics (continued) # Characteristic Conditions C Symb Min Typ1 Max Unit Comment 28-pin packages only 10-bit mode 0 ±0.5 ±1 LSB2 T E FS Full-scale error 8-bit mode 0 ±0.5 ±0.5 LSB2 20-pin packages 10-bit mode 0 ±1.0 ±1.5 LSB2 T E FS 8-bit mode 0 ±0.5 ±0.5 LSB2 16-pin packages 10-bit mode 0 ±1.0 ±1.5 LSB2 T E FS 8-bit mode 0 ±0.5 ±0.5 LSB2 Quantization 10-bit mode — — ±0.5 LSB2 error D E Q 8-bit mode — — ±0.5 LSB2 Input leakage 10-bit mode 0 ±0.2 ±2.5 LSB2 Pad leakage3 error D E 8-bit mode IL 0 ±0.1 ±1 LSB2 * RAS Temp sensor -40°C to 25°C 3.26 — — mV/°C slope 6 D m 25°C to 125°C 3.63 — — mV/°C 8 Temp sensor 25°C V 1.39 D TEMP — — V voltage 6 25 1 Typical values assume V = 5.0 V, Temp = 25°C, f = 1.0 MHz unless otherwise stated. Typical values are for DD ADCK reference only and are not tested in production. 2 1 LSB = (V - V )/2N REFH REFL 3 Based on input pad leakage current. Refer to pad electricals. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 303

AppendixA Electrical Characteristics A.12 AC Characteristics This section describes ac timing characteristics for each peripheral system. A.12.1 Control Timing TableA-1 3. Control Timing Num C Rating Symbol Min Typ1 Max Unit Bus frequency 1 D (tcyc = 1/fBus) -40 °C to 125 °C fBus dc — 20 MHz Internal low power 2 D oscillator period -40 °C to 125 °C tLPO 700 1500 μs 3 D External reset pulse width2 textrst 100 — ns 4 D Reset low drive3 trstdrv 66 x tcyc — ns IRQ pulse width Asynchronous 5 D 100 path2 t t — — ns ILIH, IHIL 1.5 x t Synchronous path4 cyc Pin interrupt pulse width 6 D Asynchronous path2 100 t t — — ns Synchronous path4 ILIH, IHIL 1.5 x t cyc Port rise and fall time — Low output drive (PTxDS = 0) (load = 50 pF)5 Slew rate control — 40 — disabled (PTxSE = 0) tRise, tFall ns Slew rate control — 75 — enabled (PTxSE = 1) 7 C Port rise and fall time — High output drive (PTxDS = 1) (load = 50 pF)5 Slew rate control disabled (PTxSE = 0) tRise, tFall — 11 — ns Slew rate control enabled (PTxSE = 1) tRise, tFall — 35 — 1 Typical values are based on characterization data at V = 5.0V, 25°C unless otherwise stated. DD 2 This is the shortest pulse that is guaranteed to be recognized as a reset pin request. 3 When any reset is initiated, internal circuitry drives the reset pin low for about 66cycles of t . After POR reset, cyc the bus clock frequency changes to the untrimmed DCO frequency (f = (f )/4) because TRIM is reset to reset dco_ut 0x80 and FTRIM is reset to 0, and there is an extra divide-by-two because BDIV is reset to 0:1. After other resets trim stays at the pre-reset value. 4 This is the minimum pulse width that is guaranteed to pass through the pin synchronization circuitry. Shorter pulses may or may not be recognized. In stop mode, the synchronizer is bypassed so shorter pulses can be recognized in that case. 5 Timing is shown with respect to 20% V and 80% V levels. Temperature range –40°C to 125°C. DD DD MC9S08SH32 Series Data Sheet, Rev. 3 304 Freescale Semiconductor

AppendixA Electrical Characteristics t extrst RESET PIN FigureA-10. Reset Timing t IHIL IRQ/Pin Interrupts IRQ/Pin Interrupts t ILIH FigureA-11. IRQ/Pin Interrupt Timing MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 305

AppendixA Electrical Characteristics A.12.2 TPM/MTIM Module Timing Synchronizer circuits determine the shortest input pulses that can be recognized or the fastest clock that can be used as the optional external source to the timer counter. These synchronizers operate from the current bus rate clock. TableA-14. TPM Input Timing # C Rating Symbol Min Max Unit 1 — External clock frequency (1/tTCLK) fTCLK dc fBus/4 MHz 2 — External clock period tTCLK 4 — tcyc 3 — External clock high time tclkh 1.5 — tcyc 4 — External clock low time tclkl 1.5 — tcyc 5 — Input capture pulse width tICPW 1.5 — tcyc t TCLK t clkh TCLK t clkl FigureA-12. Timer External Clock t ICPW TPMCHn TPMCHn t ICPW FigureA-13. Timer Input Capture Pulse MC9S08SH32 Series Data Sheet, Rev. 3 306 Freescale Semiconductor

AppendixA Electrical Characteristics A.12.3 SPI Table A-15 and FigureA-14 through Figure A-17 describe the timing requirements for the SPI system. TableA-15. SPI Electrical Characteristic Num1 C Rating2 Symbol Min Max Unit 1 D Cycle time Master t 2 2048 t SCK cyc Slave t 4 — t SCK cyc 2 D Enable lead time Master t — 1/2 t Lead SCK Slave t 1/2 — t Lead SCK 3 D Enable lag time Master t — 1/2 t Lag SCK Slave t 1/2 — t Lag SCK 4 D Clock (SPSCK) high time Master and Slave t 1/2 t – 25 — ns SCKH SCK 5 D Clock (SPSCK) low time Master and Slave t 1/2 t – 25 — ns SCKL SCK 6 D Data setup time (inputs) Master t 30 — ns SI(M) Slave t 30 — ns SI(S) 7 D Data hold time (inputs) Master t 30 — ns HI(M) Slave t 30 — ns HI(S) 8 D Access time, slave3 t 0 40 ns A 9 D Disable time, slave4 t — 40 ns dis 10 D Data setup time (outputs) Master t — 25 ns SO Slave t — 25 ns SO 11 D Data hold time (outputs) Master t –10 — ns HO Slave t –10 — ns HO D Operating frequency 12 Master fop fBus/2048 55 MHz Slave f dc f /4 op Bus 1 Refer to FigureA-14 through FigureA-17. 2 All timing is shown with respect to 20% V and 70% V , unless noted; 100 pF load on all SPI pins. All timing DD DD assumes slew rate control disabled and high drive strength enabled for SPI output pins. 3 Time to data active from high-impedance state. 4 Hold time to high-impedance state. 5 Maximum baud rate must be limited to 5 MHz due to input filter characteristics. MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 307

AppendixA Electrical Characteristics SS1 (OUTPUT) 2 1 3 SCK 5 (CPOL = 0) (OUTPUT) 4 SCK 5 (CPOL = 1) 4 (OUTPUT) 6 7 MISO (INPUT) MSB IN2 BIT 6 . . . 1 LSB IN 10 10 11 MOSI MSB OUT2 BIT 6 . . . 1 LSB OUT (OUTPUT) NOTES: 1. SS output mode (MODFEN = 1, SSOE = 1). 2. LSBF = 0. For LSBF = 1, bit order is LSB, bit 1, ..., bit 6, MSB. FigureA-14. SPI Master Timing (CPHA = 0) SS(1) (OUTPUT) 1 2 3 SCK 5 (CPOL = 0) (OUTPUT) 4 SCK 5 (CPOL = 1) 4 (OUTPUT) 6 7 MISO (INPUT) MSB IN(2) BIT 6 . . . 1 LSB IN 10 11 MOSI MSB OUT(2) BIT 6 . . . 1 LSB OUT (OUTPUT) NOTES: 1. SS output mode (MODFEN = 1, SSOE = 1). 2. LSBF = 0. For LSBF = 1, bit order is LSB, bit 1, ..., bit 6, MSB. FigureA-15. SPI Master Timing (CPHA = 1) MC9S08SH32 Series Data Sheet, Rev. 3 308 Freescale Semiconductor

AppendixA Electrical Characteristics SS (INPUT) 1 3 SCK 5 (CPOL = 0) (INPUT) 4 2 SCK 5 (CPOL = 1) (INPUT) 4 9 8 10 11 MISO SEE (OUTPUT) SLAVE MSB OUT BIT 6 . . . 1 SLAVE LSB OUT NOTE 6 7 MOSI (INPUT) MSB IN BIT 6 . . . 1 LSB IN NOTE: 1. Not defined but normally MSB of character just received FigureA-16. SPI Slave Timing (CPHA = 0) SS (INPUT) 1 3 2 SCK (CPOL = 0) 5 (INPUT) 4 SCK 5 (CPOL = 1) 4 (INPUT) 10 11 9 MISO SEE (OUTPUT) NOTE SLAVE MSB OUT BIT 6 . . . 1 SLAVE LSB OUT 8 6 7 MOSI (INPUT) MSB IN BIT 6 . . . 1 LSB IN NOTE: 1. Not defined but normally LSB of character just received FigureA-17. SPI Slave Timing (CPHA = 1) MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 309

AppendixA Electrical Characteristics A.13 Flash Specifications This section provides details about program/erase times and program-erase endurance for the Flash memory. Program and erase operations do not require any special power sources other than the normal V supply. DD For more detailed information about program/erase operations, see the Memory section. TableA-16. Flash Characteristics # C Characteristic Symbol Min Typical Max Unit 1 — Supply voltage for program/erase V 2.7 — 5.5 V prog/erase 2 — Supply voltage for read operation V 2.7 — 5.5 V Read 3 — Internal FCLK frequency1 f 150 — 200 kHz FCLK 4 — Internal FCLK period (1/f ) t 5 — 6.67 μs FCLK Fcyc 5 — Byte program time (random location)2 t 9 t prog Fcyc 6 — Byte program time (burst mode)2 t 4 t Burst Fcyc 7 — Page erase time2 t 4000 t Page Fcyc 8 — Mass erase time2 t 20,000 t Mass Fcyc Program/erase endurance3 nFLPE cycles 9 C T to T = –40°C to +125°C 10,000 — — L H T = 25°C 10,000 100,000 — 10 C Data retention4 t 15 100 — years D_ret 1 The frequency of this clock is controlled by a software setting. 2 These values are hardware state machine controlled. User code does not need to count cycles. This information supplied for calculating approximate time to program and erase. 3 Typical endurance for Flash is based upon the intrinsic bit cell performance. For additional information on how Freescale defines typical endurance, please refer to Engineering Bulletin EB619/D, Typical Endurance for Nonvolatile Memory. 4 Typical data retention values are based on intrinsic capability of the technology measured at high temperature and de-rated to 25°C using the Arrhenius equation. For additional information on how Freescale defines typical data retention, please refer to Engineering Bulletin EB618/D, Typical Data Retention for Nonvolatile Memory. MC9S08SH32 Series Data Sheet, Rev. 3 310 Freescale Semiconductor

AppendixA Electrical Characteristics A.14 EMC Performance Electromagnetic compatibility (EMC) performance is highly dependant on the environment in which the MCU resides. Board design and layout, circuit topology choices, location and characteristics of external components as well as MCU software operation all play a significant role in EMC performance. The system designer should consult Freescale applications notes such as AN2321, AN1050, AN1263, AN2764, and AN1259 for advice and guidance specifically targeted at optimizing EMC performance. A.14.1 Radiated Emissions Microcontroller radiated RF emissions are measured from 150 kHz to 1 GHz using the TEM/GTEM Cell method in accordance with the IEC 61967-2 and SAE J1752/3 standards. The measurement is performed with the microcontroller installed on a custom EMC evaluation board while running specialized EMC test software. The radiated emissions from the microcontroller are measured in a TEM cell in two package orientations (North and East). The maximum radiated RF emissions of the tested configuration in all orientations are less than or equal to the reported emissions levels. TableA-17. Radiated Emissions, Electric Field Level1 Parameter Symbol Conditions Frequency f /f Unit OSC BUS (Max) 0.15 – 50 MHz 12 50 – 150 MHz 12 V = 5 V dBμV DD Radiated emissions, T = +25oC 150 – 500 MHz 4 MHz crystal 6 V A electric field RE_TEM package type 20 MHz bus 500 – 1000 MHz –8 28 TSSOP IEC Level2 N — SAE Level3 2 — 1 Data based on qualification test results. 2 IEC Level Maximums: N ≤ 12dBμV, L ≤ 24dBμV, I ≤ 36dBμV 3 SAE Level Maximums: 1 ≤ 10dBμV, 2 ≤ 20dBμV, 3 ≤ 30dBμV, 4 ≤ 40dBμV MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 311

AppendixA Electrical Characteristics MC9S08SH32 Series Data Sheet, Rev. 3 312 Freescale Semiconductor

AppendixB Ordering Information and Mechanical Drawings Appendix B Ordering Information and Mechanical Drawings B.1 Ordering Information This section contains ordering information for MC9S08SH32 and MC9S08SH16 devices. Jennifer TableB-1. Device Numbering System Part Number1 Memory Temp Rated Available Packages2 0 d e r d a a Flash RAM d r 28-Pin 20-Pin 16-Pin n G Sta EC A AEC MC9S08SH32 32 K 1024 B Grade 1 28 TSSOP 20 TSSOP 16 TSSOP 28 SOIC AEC MC9S08SH16 16 K 1024 B Grade 1 1 See Table1-1 for a complete description of modules included on each device. 2 See TableB-2 for package information. B.1.1 Device Numbering Scheme This device uses a smart numbering system. Refer to the following diagram to understand what each element of the device number represents. MC 9 S08 SH n C xx R Tape and Reel Suffix (optiona Status - R = Tape and Reel - MC = Fully Qualified Package Designator Two letter descriptor (refer to Main Memory Type TableB-2). - 9 = Flash-based Temperature Option - C = –40 to 85 °C Core Family - M = –40 to 125 °C - SH Memory Size - 32 Kbytes - 16 Kbytes FigureB-1. MC9S08SH32 Device Numbering Scheme MC9S08SH32 Series Data Sheet, Rev. 3 Freescale Semiconductor 313

AppendixB Ordering Information and Mechanical Drawings B.2 Package Information and Mechanical Drawings Table B-2 provides the available package types and their document numbers. The latest package outline/mechanical drawings are available on the MC9S08SH32 Series Product Summary pages at http://www.freescale.com. To view the latest drawing, either: • Click on the appropriate link in Table B-2, or • Open a browser to the Freescale® website (http://www.freescale.com), and enter the appropriate document number (from Table B-2) in the “Enter Keyword” search box at the top of the page. The following pages are mechanical specifications for MC9S08SH32 Series package options. See Table B-2 for the document number for each package type. is TableB-2. Package Information Pin Count Type Designator Document No. 28 SOIC WL 98ASB42345B 28 TSSOP TL 98ARS23923W 20 TSSOP TJ 98ASH70169A 16 TSSOP TG 98ASH70247A MC9S08SH32 Series Data Sheet, Rev. 3 314 Freescale Semiconductor

None

How to Reach Us: Information in this document is provided solely to enable system and software implementers to use Freescale products. There are no express Home Page: or implied copyright licenses granted hereunder to design or fabricate freescale.com any integrated circuits based on the information in this document. Web Support: Freescale reserves the right to make changes without further notice to freescale.com/support any products herein. Freescale makes no warranty, representation, or guarantee regarding the suitability of its products for any particular purpose, nor does Freescale assume any liability arising out of the application or use of any product or circuit, and specifically disclaims any and all liability, including without limitation consequential or incidental damages. “Typical” parameters that may be provided in Freescale data sheets and/or specifications can and do vary in different applications, and actual performance may vary over time. All operating parameters, including “typicals,” must be validated for each customer application by customer's technical experts. Freescale does not convey any license under its patent rights nor the rights of others. Freescale sells products pursuant to standard terms and conditions of sale, which can be found at the following address: freescale.com/SalesTermsandConditions. Freescale and the Freescale logo are trademarks of Freescale Semiconductor, Inc., Reg. U.S. Pat. & Tm. Off. All other product or service names are the property of their respective owners. © 2007-2014 Freescale Semiconductor, Inc. Document Number MC9S08SH32 Revision 3, 3/2014

Mouser Electronics Authorized Distributor Click to View Pricing, Inventory, Delivery & Lifecycle Information: N XP: MC9S08SH32CTLR MC9S08SH16CTJR MC9S08SH32CTGR MC9S08SH16CTGR MC9S08SH32CWLR MC9S08SH32CTL MC9S08SH16CTG MC9S08SH32CTG MC9S08SH32CTJ MC9S08SH16CTL MC9S08SH16CTJ MC9S08SH16CWL MC9S08SH32CWL MC9S08SH16MTG MC9S08SH16MTJ MC9S08SH16MTL MC9S08SH16MWL MC9S08SH16VTG MC9S08SH16VTJ MC9S08SH16VTL MC9S08SH16VWL MC9S08SH32MTG MC9S08SH32MTJ MC9S08SH32MTL MC9S08SH32MWL MC9S08SH32VTG MC9S08SH32VTJ MC9S08SH32VTL MC9S08SH32VWL MC9S08SH16CTLR MC9S08SH16CWLR MC9S08SH16VTJR MC9S08SH16MTJR MC9S08SH32MTJR