mac80211: shrink struct ieee80211_fragment_entry
[deliverable/linux.git] / net / wireless / mlme.c
CommitLineData
6039f6d2
JM
1/*
2 * cfg80211 MLME SAP interface
3 *
4 * Copyright (c) 2009, Jouni Malinen <j@w1.fi>
5 */
6
7#include <linux/kernel.h>
8#include <linux/module.h>
c6fb08aa 9#include <linux/etherdevice.h>
6039f6d2
JM
10#include <linux/netdevice.h>
11#include <linux/nl80211.h>
5a0e3ad6 12#include <linux/slab.h>
a9a11622 13#include <linux/wireless.h>
6039f6d2 14#include <net/cfg80211.h>
a9a11622 15#include <net/iw_handler.h>
6039f6d2
JM
16#include "core.h"
17#include "nl80211.h"
e35e4d28
HG
18#include "rdev-ops.h"
19
6039f6d2 20
6ff57cf8 21void cfg80211_rx_assoc_resp(struct net_device *dev, struct cfg80211_bss *bss,
b0b6aa2c 22 const u8 *buf, size_t len, int uapsd_queues)
6039f6d2 23{
6829c878
JB
24 struct wireless_dev *wdev = dev->ieee80211_ptr;
25 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 26 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
6829c878
JB
27 struct ieee80211_mgmt *mgmt = (struct ieee80211_mgmt *)buf;
28 u8 *ie = mgmt->u.assoc_resp.variable;
95de817b 29 int ieoffs = offsetof(struct ieee80211_mgmt, u.assoc_resp.variable);
ceca7b71 30 u16 status_code = le16_to_cpu(mgmt->u.assoc_resp.status_code);
6829c878 31
4ee3e063 32 trace_cfg80211_send_rx_assoc(dev, bss);
cb0b4beb 33
f401a6f7
JB
34 /*
35 * This is a bit of a hack, we don't notify userspace of
36 * a (re-)association reply if we tried to send a reassoc
37 * and got a reject -- we only try again with an assoc
38 * frame instead of reassoc.
39 */
ceca7b71 40 if (cfg80211_sme_rx_assoc_resp(wdev, status_code)) {
f1940c57 41 cfg80211_unhold_bss(bss_from_pub(bss));
5b112d3d 42 cfg80211_put_bss(wiphy, bss);
8d61ffa5 43 return;
95de817b 44 }
f401a6f7 45
b0b6aa2c 46 nl80211_send_rx_assoc(rdev, dev, buf, len, GFP_KERNEL, uapsd_queues);
ceca7b71 47 /* update current_bss etc., consumes the bss reference */
df7fc0f9
JB
48 __cfg80211_connect_result(dev, mgmt->bssid, NULL, 0, ie, len - ieoffs,
49 status_code,
95de817b 50 status_code == WLAN_STATUS_SUCCESS, bss);
6039f6d2 51}
6ff57cf8 52EXPORT_SYMBOL(cfg80211_rx_assoc_resp);
6039f6d2 53
ceca7b71
JB
54static void cfg80211_process_auth(struct wireless_dev *wdev,
55 const u8 *buf, size_t len)
56{
f26cbf40 57 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wdev->wiphy);
ceca7b71
JB
58
59 nl80211_send_rx_auth(rdev, wdev->netdev, buf, len, GFP_KERNEL);
60 cfg80211_sme_rx_auth(wdev, buf, len);
61}
62
63static void cfg80211_process_deauth(struct wireless_dev *wdev,
6ff57cf8 64 const u8 *buf, size_t len)
6039f6d2 65{
f26cbf40 66 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wdev->wiphy);
6829c878 67 struct ieee80211_mgmt *mgmt = (struct ieee80211_mgmt *)buf;
19957bb3 68 const u8 *bssid = mgmt->bssid;
ceca7b71
JB
69 u16 reason_code = le16_to_cpu(mgmt->u.deauth.reason_code);
70 bool from_ap = !ether_addr_equal(mgmt->sa, wdev->netdev->dev_addr);
6829c878 71
ceca7b71 72 nl80211_send_deauth(rdev, wdev->netdev, buf, len, GFP_KERNEL);
19957bb3 73
ceca7b71
JB
74 if (!wdev->current_bss ||
75 !ether_addr_equal(wdev->current_bss->pub.bssid, bssid))
76 return;
6829c878 77
ceca7b71
JB
78 __cfg80211_disconnected(wdev->netdev, NULL, 0, reason_code, from_ap);
79 cfg80211_sme_deauth(wdev);
667503dd 80}
6039f6d2 81
ceca7b71 82static void cfg80211_process_disassoc(struct wireless_dev *wdev,
6ff57cf8 83 const u8 *buf, size_t len)
6039f6d2 84{
f26cbf40 85 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wdev->wiphy);
6829c878 86 struct ieee80211_mgmt *mgmt = (struct ieee80211_mgmt *)buf;
19957bb3 87 const u8 *bssid = mgmt->bssid;
ceca7b71
JB
88 u16 reason_code = le16_to_cpu(mgmt->u.disassoc.reason_code);
89 bool from_ap = !ether_addr_equal(mgmt->sa, wdev->netdev->dev_addr);
6829c878 90
ceca7b71 91 nl80211_send_disassoc(rdev, wdev->netdev, buf, len, GFP_KERNEL);
a3b8b056 92
ceca7b71
JB
93 if (WARN_ON(!wdev->current_bss ||
94 !ether_addr_equal(wdev->current_bss->pub.bssid, bssid)))
596a07c1 95 return;
6829c878 96
ceca7b71
JB
97 __cfg80211_disconnected(wdev->netdev, NULL, 0, reason_code, from_ap);
98 cfg80211_sme_disassoc(wdev);
667503dd 99}
1965c853 100
6ff57cf8
JB
101void cfg80211_rx_mlme_mgmt(struct net_device *dev, const u8 *buf, size_t len)
102{
103 struct wireless_dev *wdev = dev->ieee80211_ptr;
6ff57cf8
JB
104 struct ieee80211_mgmt *mgmt = (void *)buf;
105
106 ASSERT_WDEV_LOCK(wdev);
107
108 trace_cfg80211_rx_mlme_mgmt(dev, buf, len);
109
110 if (WARN_ON(len < 2))
111 return;
112
ceca7b71
JB
113 if (ieee80211_is_auth(mgmt->frame_control))
114 cfg80211_process_auth(wdev, buf, len);
115 else if (ieee80211_is_deauth(mgmt->frame_control))
116 cfg80211_process_deauth(wdev, buf, len);
117 else if (ieee80211_is_disassoc(mgmt->frame_control))
118 cfg80211_process_disassoc(wdev, buf, len);
6ff57cf8
JB
119}
120EXPORT_SYMBOL(cfg80211_rx_mlme_mgmt);
121
122void cfg80211_auth_timeout(struct net_device *dev, const u8 *addr)
a58ce43f
JB
123{
124 struct wireless_dev *wdev = dev->ieee80211_ptr;
125 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 126 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
a58ce43f 127
4ee3e063 128 trace_cfg80211_send_auth_timeout(dev, addr);
a58ce43f
JB
129
130 nl80211_send_auth_timeout(rdev, dev, addr, GFP_KERNEL);
ceca7b71 131 cfg80211_sme_auth_timeout(wdev);
1965c853 132}
6ff57cf8 133EXPORT_SYMBOL(cfg80211_auth_timeout);
1965c853 134
959867fa 135void cfg80211_assoc_timeout(struct net_device *dev, struct cfg80211_bss *bss)
1965c853 136{
6829c878
JB
137 struct wireless_dev *wdev = dev->ieee80211_ptr;
138 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 139 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
19957bb3 140
959867fa 141 trace_cfg80211_send_assoc_timeout(dev, bss->bssid);
cb0b4beb 142
959867fa 143 nl80211_send_assoc_timeout(rdev, dev, bss->bssid, GFP_KERNEL);
ceca7b71 144 cfg80211_sme_assoc_timeout(wdev);
959867fa 145
f1940c57 146 cfg80211_unhold_bss(bss_from_pub(bss));
959867fa 147 cfg80211_put_bss(wiphy, bss);
1965c853 148}
6ff57cf8
JB
149EXPORT_SYMBOL(cfg80211_assoc_timeout);
150
151void cfg80211_tx_mlme_mgmt(struct net_device *dev, const u8 *buf, size_t len)
152{
153 struct wireless_dev *wdev = dev->ieee80211_ptr;
154 struct ieee80211_mgmt *mgmt = (void *)buf;
155
156 ASSERT_WDEV_LOCK(wdev);
157
158 trace_cfg80211_tx_mlme_mgmt(dev, buf, len);
159
160 if (WARN_ON(len < 2))
161 return;
162
163 if (ieee80211_is_deauth(mgmt->frame_control))
ceca7b71 164 cfg80211_process_deauth(wdev, buf, len);
6ff57cf8 165 else
ceca7b71 166 cfg80211_process_disassoc(wdev, buf, len);
6ff57cf8
JB
167}
168EXPORT_SYMBOL(cfg80211_tx_mlme_mgmt);
1965c853 169
a3b8b056
JM
170void cfg80211_michael_mic_failure(struct net_device *dev, const u8 *addr,
171 enum nl80211_key_type key_type, int key_id,
e6d6e342 172 const u8 *tsc, gfp_t gfp)
a3b8b056
JM
173{
174 struct wiphy *wiphy = dev->ieee80211_ptr->wiphy;
f26cbf40 175 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
3d23e349 176#ifdef CONFIG_CFG80211_WEXT
f58d4ed9 177 union iwreq_data wrqu;
e6d6e342 178 char *buf = kmalloc(128, gfp);
f58d4ed9
JB
179
180 if (buf) {
181 sprintf(buf, "MLME-MICHAELMICFAILURE.indication("
182 "keyid=%d %scast addr=%pM)", key_id,
183 key_type == NL80211_KEYTYPE_GROUP ? "broad" : "uni",
184 addr);
185 memset(&wrqu, 0, sizeof(wrqu));
186 wrqu.data.length = strlen(buf);
187 wireless_send_event(dev, IWEVCUSTOM, &wrqu, buf);
188 kfree(buf);
189 }
190#endif
191
4ee3e063 192 trace_cfg80211_michael_mic_failure(dev, addr, key_type, key_id, tsc);
e6d6e342 193 nl80211_michael_mic_failure(rdev, dev, addr, key_type, key_id, tsc, gfp);
a3b8b056
JM
194}
195EXPORT_SYMBOL(cfg80211_michael_mic_failure);
19957bb3
JB
196
197/* some MLME handling for userspace SME */
91bf9b26
JB
198int cfg80211_mlme_auth(struct cfg80211_registered_device *rdev,
199 struct net_device *dev,
200 struct ieee80211_channel *chan,
201 enum nl80211_auth_type auth_type,
202 const u8 *bssid,
203 const u8 *ssid, int ssid_len,
204 const u8 *ie, int ie_len,
205 const u8 *key, int key_len, int key_idx,
206 const u8 *sae_data, int sae_data_len)
19957bb3
JB
207{
208 struct wireless_dev *wdev = dev->ieee80211_ptr;
7ade7036
JB
209 struct cfg80211_auth_request req = {
210 .ie = ie,
211 .ie_len = ie_len,
212 .sae_data = sae_data,
213 .sae_data_len = sae_data_len,
214 .auth_type = auth_type,
215 .key = key,
216 .key_len = key_len,
217 .key_idx = key_idx,
218 };
95de817b 219 int err;
19957bb3 220
667503dd
JB
221 ASSERT_WDEV_LOCK(wdev);
222
fffd0934
JB
223 if (auth_type == NL80211_AUTHTYPE_SHARED_KEY)
224 if (!key || !key_len || key_idx < 0 || key_idx > 4)
225 return -EINVAL;
226
0a9b5e17 227 if (wdev->current_bss &&
ac422d3c 228 ether_addr_equal(bssid, wdev->current_bss->pub.bssid))
0a9b5e17
JB
229 return -EALREADY;
230
19957bb3 231 req.bss = cfg80211_get_bss(&rdev->wiphy, chan, bssid, ssid, ssid_len,
6eb18137
DL
232 IEEE80211_BSS_TYPE_ESS,
233 IEEE80211_PRIVACY_ANY);
19957bb3
JB
234 if (!req.bss)
235 return -ENOENT;
236
e35e4d28 237 err = rdev_auth(rdev, dev, &req);
19957bb3 238
5b112d3d 239 cfg80211_put_bss(&rdev->wiphy, req.bss);
19957bb3
JB
240 return err;
241}
242
7e7c8926
BG
243/* Do a logical ht_capa &= ht_capa_mask. */
244void cfg80211_oper_and_ht_capa(struct ieee80211_ht_cap *ht_capa,
245 const struct ieee80211_ht_cap *ht_capa_mask)
246{
247 int i;
248 u8 *p1, *p2;
249 if (!ht_capa_mask) {
250 memset(ht_capa, 0, sizeof(*ht_capa));
251 return;
252 }
253
254 p1 = (u8*)(ht_capa);
255 p2 = (u8*)(ht_capa_mask);
256 for (i = 0; i<sizeof(*ht_capa); i++)
257 p1[i] &= p2[i];
258}
259
ee2aca34
JB
260/* Do a logical ht_capa &= ht_capa_mask. */
261void cfg80211_oper_and_vht_capa(struct ieee80211_vht_cap *vht_capa,
262 const struct ieee80211_vht_cap *vht_capa_mask)
263{
264 int i;
265 u8 *p1, *p2;
266 if (!vht_capa_mask) {
267 memset(vht_capa, 0, sizeof(*vht_capa));
268 return;
269 }
270
271 p1 = (u8*)(vht_capa);
272 p2 = (u8*)(vht_capa_mask);
273 for (i = 0; i < sizeof(*vht_capa); i++)
274 p1[i] &= p2[i];
275}
276
91bf9b26
JB
277int cfg80211_mlme_assoc(struct cfg80211_registered_device *rdev,
278 struct net_device *dev,
279 struct ieee80211_channel *chan,
280 const u8 *bssid,
281 const u8 *ssid, int ssid_len,
282 struct cfg80211_assoc_request *req)
19957bb3
JB
283{
284 struct wireless_dev *wdev = dev->ieee80211_ptr;
95de817b 285 int err;
19957bb3 286
667503dd
JB
287 ASSERT_WDEV_LOCK(wdev);
288
ceca7b71
JB
289 if (wdev->current_bss &&
290 (!req->prev_bssid || !ether_addr_equal(wdev->current_bss->pub.bssid,
291 req->prev_bssid)))
19957bb3
JB
292 return -EALREADY;
293
f62fab73 294 cfg80211_oper_and_ht_capa(&req->ht_capa_mask,
7e7c8926 295 rdev->wiphy.ht_capa_mod_mask);
f62fab73 296 cfg80211_oper_and_vht_capa(&req->vht_capa_mask,
ee2aca34 297 rdev->wiphy.vht_capa_mod_mask);
7e7c8926 298
f62fab73 299 req->bss = cfg80211_get_bss(&rdev->wiphy, chan, bssid, ssid, ssid_len,
6eb18137
DL
300 IEEE80211_BSS_TYPE_ESS,
301 IEEE80211_PRIVACY_ANY);
ceca7b71 302 if (!req->bss)
19957bb3
JB
303 return -ENOENT;
304
f62fab73 305 err = rdev_assoc(rdev, dev, req);
f1940c57
JB
306 if (!err)
307 cfg80211_hold_bss(bss_from_pub(req->bss));
73de86a3 308 else
f62fab73 309 cfg80211_put_bss(&rdev->wiphy, req->bss);
19957bb3 310
19957bb3
JB
311 return err;
312}
313
91bf9b26
JB
314int cfg80211_mlme_deauth(struct cfg80211_registered_device *rdev,
315 struct net_device *dev, const u8 *bssid,
316 const u8 *ie, int ie_len, u16 reason,
317 bool local_state_change)
19957bb3
JB
318{
319 struct wireless_dev *wdev = dev->ieee80211_ptr;
95de817b
JB
320 struct cfg80211_deauth_request req = {
321 .bssid = bssid,
322 .reason_code = reason,
323 .ie = ie,
324 .ie_len = ie_len,
6863255b 325 .local_state_change = local_state_change,
95de817b 326 };
19957bb3 327
667503dd
JB
328 ASSERT_WDEV_LOCK(wdev);
329
ceca7b71
JB
330 if (local_state_change &&
331 (!wdev->current_bss ||
332 !ether_addr_equal(wdev->current_bss->pub.bssid, bssid)))
95de817b 333 return 0;
19957bb3 334
e35e4d28 335 return rdev_deauth(rdev, dev, &req);
19957bb3
JB
336}
337
91bf9b26
JB
338int cfg80211_mlme_disassoc(struct cfg80211_registered_device *rdev,
339 struct net_device *dev, const u8 *bssid,
340 const u8 *ie, int ie_len, u16 reason,
341 bool local_state_change)
19957bb3
JB
342{
343 struct wireless_dev *wdev = dev->ieee80211_ptr;
7ade7036
JB
344 struct cfg80211_disassoc_request req = {
345 .reason_code = reason,
346 .local_state_change = local_state_change,
347 .ie = ie,
348 .ie_len = ie_len,
349 };
ceca7b71 350 int err;
19957bb3 351
667503dd
JB
352 ASSERT_WDEV_LOCK(wdev);
353
ceca7b71 354 if (!wdev->current_bss)
f9d6b402
JB
355 return -ENOTCONN;
356
ac422d3c 357 if (ether_addr_equal(wdev->current_bss->pub.bssid, bssid))
19957bb3
JB
358 req.bss = &wdev->current_bss->pub;
359 else
360 return -ENOTCONN;
361
ceca7b71
JB
362 err = rdev_disassoc(rdev, dev, &req);
363 if (err)
364 return err;
365
366 /* driver should have reported the disassoc */
367 WARN_ON(wdev->current_bss);
368 return 0;
667503dd
JB
369}
370
19957bb3
JB
371void cfg80211_mlme_down(struct cfg80211_registered_device *rdev,
372 struct net_device *dev)
373{
374 struct wireless_dev *wdev = dev->ieee80211_ptr;
95de817b 375 u8 bssid[ETH_ALEN];
19957bb3 376
667503dd
JB
377 ASSERT_WDEV_LOCK(wdev);
378
19957bb3
JB
379 if (!rdev->ops->deauth)
380 return;
381
95de817b
JB
382 if (!wdev->current_bss)
383 return;
19957bb3 384
95de817b 385 memcpy(bssid, wdev->current_bss->pub.bssid, ETH_ALEN);
ceca7b71
JB
386 cfg80211_mlme_deauth(rdev, dev, bssid, NULL, 0,
387 WLAN_REASON_DEAUTH_LEAVING, false);
19957bb3 388}
9588bbd5 389
2e161f78 390struct cfg80211_mgmt_registration {
026331c4
JM
391 struct list_head list;
392
15e47304 393 u32 nlportid;
026331c4
JM
394
395 int match_len;
396
2e161f78
JB
397 __le16 frame_type;
398
026331c4
JM
399 u8 match[];
400};
401
15e47304 402int cfg80211_mlme_register_mgmt(struct wireless_dev *wdev, u32 snd_portid,
2e161f78
JB
403 u16 frame_type, const u8 *match_data,
404 int match_len)
026331c4 405{
271733cf 406 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 407 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
2e161f78 408 struct cfg80211_mgmt_registration *reg, *nreg;
026331c4 409 int err = 0;
2e161f78
JB
410 u16 mgmt_type;
411
412 if (!wdev->wiphy->mgmt_stypes)
413 return -EOPNOTSUPP;
414
415 if ((frame_type & IEEE80211_FCTL_FTYPE) != IEEE80211_FTYPE_MGMT)
416 return -EINVAL;
417
418 if (frame_type & ~(IEEE80211_FCTL_FTYPE | IEEE80211_FCTL_STYPE))
419 return -EINVAL;
420
421 mgmt_type = (frame_type & IEEE80211_FCTL_STYPE) >> 4;
422 if (!(wdev->wiphy->mgmt_stypes[wdev->iftype].rx & BIT(mgmt_type)))
423 return -EINVAL;
026331c4
JM
424
425 nreg = kzalloc(sizeof(*reg) + match_len, GFP_KERNEL);
426 if (!nreg)
427 return -ENOMEM;
428
2e161f78 429 spin_lock_bh(&wdev->mgmt_registrations_lock);
026331c4 430
2e161f78 431 list_for_each_entry(reg, &wdev->mgmt_registrations, list) {
026331c4
JM
432 int mlen = min(match_len, reg->match_len);
433
2e161f78
JB
434 if (frame_type != le16_to_cpu(reg->frame_type))
435 continue;
436
026331c4
JM
437 if (memcmp(reg->match, match_data, mlen) == 0) {
438 err = -EALREADY;
439 break;
440 }
441 }
442
443 if (err) {
444 kfree(nreg);
445 goto out;
446 }
447
448 memcpy(nreg->match, match_data, match_len);
449 nreg->match_len = match_len;
15e47304 450 nreg->nlportid = snd_portid;
2e161f78
JB
451 nreg->frame_type = cpu_to_le16(frame_type);
452 list_add(&nreg->list, &wdev->mgmt_registrations);
026331c4 453
271733cf 454 if (rdev->ops->mgmt_frame_register)
e35e4d28 455 rdev_mgmt_frame_register(rdev, wdev, frame_type, true);
271733cf 456
026331c4 457 out:
2e161f78 458 spin_unlock_bh(&wdev->mgmt_registrations_lock);
271733cf 459
026331c4
JM
460 return err;
461}
462
15e47304 463void cfg80211_mlme_unregister_socket(struct wireless_dev *wdev, u32 nlportid)
026331c4 464{
271733cf 465 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 466 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
2e161f78 467 struct cfg80211_mgmt_registration *reg, *tmp;
026331c4 468
2e161f78 469 spin_lock_bh(&wdev->mgmt_registrations_lock);
026331c4 470
2e161f78 471 list_for_each_entry_safe(reg, tmp, &wdev->mgmt_registrations, list) {
15e47304 472 if (reg->nlportid != nlportid)
271733cf
JB
473 continue;
474
475 if (rdev->ops->mgmt_frame_register) {
476 u16 frame_type = le16_to_cpu(reg->frame_type);
477
e35e4d28
HG
478 rdev_mgmt_frame_register(rdev, wdev,
479 frame_type, false);
026331c4 480 }
271733cf
JB
481
482 list_del(&reg->list);
483 kfree(reg);
026331c4
JM
484 }
485
2e161f78 486 spin_unlock_bh(&wdev->mgmt_registrations_lock);
28946da7 487
5de17984
AS
488 if (nlportid && rdev->crit_proto_nlportid == nlportid) {
489 rdev->crit_proto_nlportid = 0;
490 rdev_crit_proto_stop(rdev, wdev);
491 }
492
15e47304
EB
493 if (nlportid == wdev->ap_unexpected_nlportid)
494 wdev->ap_unexpected_nlportid = 0;
026331c4
JM
495}
496
2e161f78 497void cfg80211_mlme_purge_registrations(struct wireless_dev *wdev)
026331c4 498{
2e161f78 499 struct cfg80211_mgmt_registration *reg, *tmp;
026331c4 500
2e161f78 501 spin_lock_bh(&wdev->mgmt_registrations_lock);
026331c4 502
2e161f78 503 list_for_each_entry_safe(reg, tmp, &wdev->mgmt_registrations, list) {
026331c4
JM
504 list_del(&reg->list);
505 kfree(reg);
506 }
507
2e161f78 508 spin_unlock_bh(&wdev->mgmt_registrations_lock);
026331c4
JM
509}
510
2e161f78 511int cfg80211_mlme_mgmt_tx(struct cfg80211_registered_device *rdev,
71bbc994 512 struct wireless_dev *wdev,
b176e629 513 struct cfg80211_mgmt_tx_params *params, u64 *cookie)
026331c4 514{
026331c4 515 const struct ieee80211_mgmt *mgmt;
2e161f78
JB
516 u16 stype;
517
518 if (!wdev->wiphy->mgmt_stypes)
519 return -EOPNOTSUPP;
026331c4 520
2e161f78 521 if (!rdev->ops->mgmt_tx)
026331c4 522 return -EOPNOTSUPP;
2e161f78 523
b176e629 524 if (params->len < 24 + 1)
026331c4
JM
525 return -EINVAL;
526
b176e629 527 mgmt = (const struct ieee80211_mgmt *)params->buf;
2e161f78
JB
528
529 if (!ieee80211_is_mgmt(mgmt->frame_control))
026331c4 530 return -EINVAL;
2e161f78
JB
531
532 stype = le16_to_cpu(mgmt->frame_control) & IEEE80211_FCTL_STYPE;
533 if (!(wdev->wiphy->mgmt_stypes[wdev->iftype].tx & BIT(stype >> 4)))
534 return -EINVAL;
535
536 if (ieee80211_is_action(mgmt->frame_control) &&
537 mgmt->u.action.category != WLAN_CATEGORY_PUBLIC) {
663fcafd
JB
538 int err = 0;
539
fe100acd
JB
540 wdev_lock(wdev);
541
663fcafd
JB
542 switch (wdev->iftype) {
543 case NL80211_IFTYPE_ADHOC:
544 case NL80211_IFTYPE_STATION:
545 case NL80211_IFTYPE_P2P_CLIENT:
546 if (!wdev->current_bss) {
547 err = -ENOTCONN;
548 break;
549 }
550
ac422d3c
JP
551 if (!ether_addr_equal(wdev->current_bss->pub.bssid,
552 mgmt->bssid)) {
663fcafd
JB
553 err = -ENOTCONN;
554 break;
555 }
556
557 /*
558 * check for IBSS DA must be done by driver as
559 * cfg80211 doesn't track the stations
560 */
561 if (wdev->iftype == NL80211_IFTYPE_ADHOC)
562 break;
fe100acd 563
663fcafd 564 /* for station, check that DA is the AP */
ac422d3c
JP
565 if (!ether_addr_equal(wdev->current_bss->pub.bssid,
566 mgmt->da)) {
663fcafd
JB
567 err = -ENOTCONN;
568 break;
569 }
570 break;
571 case NL80211_IFTYPE_AP:
572 case NL80211_IFTYPE_P2P_GO:
573 case NL80211_IFTYPE_AP_VLAN:
98104fde 574 if (!ether_addr_equal(mgmt->bssid, wdev_address(wdev)))
663fcafd
JB
575 err = -EINVAL;
576 break;
0778a6a3 577 case NL80211_IFTYPE_MESH_POINT:
ac422d3c 578 if (!ether_addr_equal(mgmt->sa, mgmt->bssid)) {
0778a6a3
JC
579 err = -EINVAL;
580 break;
581 }
582 /*
583 * check for mesh DA must be done by driver as
584 * cfg80211 doesn't track the stations
585 */
586 break;
98104fde
JB
587 case NL80211_IFTYPE_P2P_DEVICE:
588 /*
589 * fall through, P2P device only supports
590 * public action frames
591 */
663fcafd
JB
592 default:
593 err = -EOPNOTSUPP;
594 break;
595 }
fe100acd 596 wdev_unlock(wdev);
663fcafd
JB
597
598 if (err)
599 return err;
026331c4
JM
600 }
601
98104fde 602 if (!ether_addr_equal(mgmt->sa, wdev_address(wdev)))
026331c4
JM
603 return -EINVAL;
604
605 /* Transmit the Action frame as requested by user space */
b176e629 606 return rdev_mgmt_tx(rdev, wdev, params, cookie);
026331c4
JM
607}
608
71bbc994 609bool cfg80211_rx_mgmt(struct wireless_dev *wdev, int freq, int sig_mbm,
970fdfa8 610 const u8 *buf, size_t len, u32 flags)
026331c4 611{
026331c4 612 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 613 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
2e161f78
JB
614 struct cfg80211_mgmt_registration *reg;
615 const struct ieee80211_txrx_stypes *stypes =
616 &wiphy->mgmt_stypes[wdev->iftype];
617 struct ieee80211_mgmt *mgmt = (void *)buf;
618 const u8 *data;
619 int data_len;
026331c4 620 bool result = false;
2e161f78
JB
621 __le16 ftype = mgmt->frame_control &
622 cpu_to_le16(IEEE80211_FCTL_FTYPE | IEEE80211_FCTL_STYPE);
623 u16 stype;
026331c4 624
4ee3e063 625 trace_cfg80211_rx_mgmt(wdev, freq, sig_mbm);
2e161f78 626 stype = (le16_to_cpu(mgmt->frame_control) & IEEE80211_FCTL_STYPE) >> 4;
026331c4 627
4ee3e063
BL
628 if (!(stypes->rx & BIT(stype))) {
629 trace_cfg80211_return_bool(false);
2e161f78 630 return false;
4ee3e063 631 }
026331c4 632
2e161f78
JB
633 data = buf + ieee80211_hdrlen(mgmt->frame_control);
634 data_len = len - ieee80211_hdrlen(mgmt->frame_control);
635
636 spin_lock_bh(&wdev->mgmt_registrations_lock);
637
638 list_for_each_entry(reg, &wdev->mgmt_registrations, list) {
639 if (reg->frame_type != ftype)
640 continue;
026331c4 641
2e161f78 642 if (reg->match_len > data_len)
026331c4
JM
643 continue;
644
2e161f78 645 if (memcmp(reg->match, data, reg->match_len))
026331c4
JM
646 continue;
647
648 /* found match! */
649
650 /* Indicate the received Action frame to user space */
15e47304 651 if (nl80211_send_mgmt(rdev, wdev, reg->nlportid,
804483e9 652 freq, sig_mbm,
970fdfa8 653 buf, len, flags, GFP_ATOMIC))
026331c4
JM
654 continue;
655
656 result = true;
657 break;
658 }
659
2e161f78 660 spin_unlock_bh(&wdev->mgmt_registrations_lock);
026331c4 661
4ee3e063 662 trace_cfg80211_return_bool(result);
026331c4
JM
663 return result;
664}
2e161f78 665EXPORT_SYMBOL(cfg80211_rx_mgmt);
026331c4 666
04f39047
SW
667void cfg80211_dfs_channels_update_work(struct work_struct *work)
668{
669 struct delayed_work *delayed_work;
670 struct cfg80211_registered_device *rdev;
671 struct cfg80211_chan_def chandef;
672 struct ieee80211_supported_band *sband;
673 struct ieee80211_channel *c;
674 struct wiphy *wiphy;
675 bool check_again = false;
676 unsigned long timeout, next_time = 0;
677 int bandid, i;
678
679 delayed_work = container_of(work, struct delayed_work, work);
680 rdev = container_of(delayed_work, struct cfg80211_registered_device,
681 dfs_update_channels_wk);
682 wiphy = &rdev->wiphy;
683
5fe231e8 684 rtnl_lock();
04f39047
SW
685 for (bandid = 0; bandid < IEEE80211_NUM_BANDS; bandid++) {
686 sband = wiphy->bands[bandid];
687 if (!sband)
688 continue;
689
690 for (i = 0; i < sband->n_channels; i++) {
691 c = &sband->channels[i];
692
693 if (c->dfs_state != NL80211_DFS_UNAVAILABLE)
694 continue;
695
c532a58b
MK
696 timeout = c->dfs_state_entered + msecs_to_jiffies(
697 IEEE80211_DFS_MIN_NOP_TIME_MS);
04f39047
SW
698
699 if (time_after_eq(jiffies, timeout)) {
700 c->dfs_state = NL80211_DFS_USABLE;
bbe09bbc
MK
701 c->dfs_state_entered = jiffies;
702
04f39047
SW
703 cfg80211_chandef_create(&chandef, c,
704 NL80211_CHAN_NO_HT);
705
706 nl80211_radar_notify(rdev, &chandef,
707 NL80211_RADAR_NOP_FINISHED,
708 NULL, GFP_ATOMIC);
709 continue;
710 }
711
712 if (!check_again)
713 next_time = timeout - jiffies;
714 else
715 next_time = min(next_time, timeout - jiffies);
716 check_again = true;
717 }
718 }
5fe231e8 719 rtnl_unlock();
04f39047
SW
720
721 /* reschedule if there are other channels waiting to be cleared again */
722 if (check_again)
723 queue_delayed_work(cfg80211_wq, &rdev->dfs_update_channels_wk,
724 next_time);
725}
726
727
728void cfg80211_radar_event(struct wiphy *wiphy,
729 struct cfg80211_chan_def *chandef,
730 gfp_t gfp)
731{
f26cbf40 732 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
04f39047
SW
733 unsigned long timeout;
734
735 trace_cfg80211_radar_event(wiphy, chandef);
736
737 /* only set the chandef supplied channel to unavailable, in
738 * case the radar is detected on only one of multiple channels
739 * spanned by the chandef.
740 */
741 cfg80211_set_dfs_state(wiphy, chandef, NL80211_DFS_UNAVAILABLE);
742
743 timeout = msecs_to_jiffies(IEEE80211_DFS_MIN_NOP_TIME_MS);
744 queue_delayed_work(cfg80211_wq, &rdev->dfs_update_channels_wk,
745 timeout);
746
747 nl80211_radar_notify(rdev, chandef, NL80211_RADAR_DETECTED, NULL, gfp);
748}
749EXPORT_SYMBOL(cfg80211_radar_event);
750
751void cfg80211_cac_event(struct net_device *netdev,
d2859df5 752 const struct cfg80211_chan_def *chandef,
04f39047
SW
753 enum nl80211_radar_event event, gfp_t gfp)
754{
755 struct wireless_dev *wdev = netdev->ieee80211_ptr;
756 struct wiphy *wiphy = wdev->wiphy;
f26cbf40 757 struct cfg80211_registered_device *rdev = wiphy_to_rdev(wiphy);
04f39047
SW
758 unsigned long timeout;
759
760 trace_cfg80211_cac_event(netdev, event);
761
762 if (WARN_ON(!wdev->cac_started))
763 return;
764
9e0e2961 765 if (WARN_ON(!wdev->chandef.chan))
04f39047
SW
766 return;
767
04f39047
SW
768 switch (event) {
769 case NL80211_RADAR_CAC_FINISHED:
770 timeout = wdev->cac_start_time +
31559f35 771 msecs_to_jiffies(wdev->cac_time_ms);
04f39047 772 WARN_ON(!time_after_eq(jiffies, timeout));
d2859df5 773 cfg80211_set_dfs_state(wiphy, chandef, NL80211_DFS_AVAILABLE);
04f39047
SW
774 break;
775 case NL80211_RADAR_CAC_ABORTED:
776 break;
777 default:
778 WARN_ON(1);
779 return;
780 }
781 wdev->cac_started = false;
782
d2859df5 783 nl80211_radar_notify(rdev, chandef, event, netdev, gfp);
04f39047
SW
784}
785EXPORT_SYMBOL(cfg80211_cac_event);
This page took 0.402589 seconds and 5 git commands to generate.