mac802154: iface: add validation for extended address
[deliverable/linux.git] / net / mac802154 / iface.c
1 /*
2 * Copyright 2007-2012 Siemens AG
3 *
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License version 2
6 * as published by the Free Software Foundation.
7 *
8 * This program is distributed in the hope that it will be useful,
9 * but WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
11 * GNU General Public License for more details.
12 *
13 * Written by:
14 * Dmitry Eremin-Solenikov <dbaryshkov@gmail.com>
15 * Sergey Lapin <slapin@ossfans.org>
16 * Maxim Gorbachyov <maxim.gorbachev@siemens.com>
17 * Alexander Smirnov <alex.bluesman.smirnov@gmail.com>
18 */
19
20 #include <linux/netdevice.h>
21 #include <linux/module.h>
22 #include <linux/if_arp.h>
23 #include <linux/ieee802154.h>
24
25 #include <net/rtnetlink.h>
26 #include <linux/nl802154.h>
27 #include <net/af_ieee802154.h>
28 #include <net/mac802154.h>
29 #include <net/ieee802154_netdev.h>
30 #include <net/cfg802154.h>
31
32 #include "ieee802154_i.h"
33 #include "driver-ops.h"
34
35 static int mac802154_wpan_update_llsec(struct net_device *dev)
36 {
37 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
38 struct ieee802154_mlme_ops *ops = ieee802154_mlme_ops(dev);
39 int rc = 0;
40
41 if (ops->llsec) {
42 struct ieee802154_llsec_params params;
43 int changed = 0;
44
45 params.pan_id = sdata->pan_id;
46 changed |= IEEE802154_LLSEC_PARAM_PAN_ID;
47
48 params.hwaddr = sdata->extended_addr;
49 changed |= IEEE802154_LLSEC_PARAM_HWADDR;
50
51 rc = ops->llsec->set_params(dev, &params, changed);
52 }
53
54 return rc;
55 }
56
57 static int
58 mac802154_wpan_ioctl(struct net_device *dev, struct ifreq *ifr, int cmd)
59 {
60 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
61 struct sockaddr_ieee802154 *sa =
62 (struct sockaddr_ieee802154 *)&ifr->ifr_addr;
63 int err = -ENOIOCTLCMD;
64
65 spin_lock_bh(&sdata->mib_lock);
66
67 switch (cmd) {
68 case SIOCGIFADDR:
69 {
70 u16 pan_id, short_addr;
71
72 pan_id = le16_to_cpu(sdata->pan_id);
73 short_addr = le16_to_cpu(sdata->short_addr);
74 if (pan_id == IEEE802154_PANID_BROADCAST ||
75 short_addr == IEEE802154_ADDR_BROADCAST) {
76 err = -EADDRNOTAVAIL;
77 break;
78 }
79
80 sa->family = AF_IEEE802154;
81 sa->addr.addr_type = IEEE802154_ADDR_SHORT;
82 sa->addr.pan_id = pan_id;
83 sa->addr.short_addr = short_addr;
84
85 err = 0;
86 break;
87 }
88 case SIOCSIFADDR:
89 dev_warn(&dev->dev,
90 "Using DEBUGing ioctl SIOCSIFADDR isn't recommended!\n");
91 if (sa->family != AF_IEEE802154 ||
92 sa->addr.addr_type != IEEE802154_ADDR_SHORT ||
93 sa->addr.pan_id == IEEE802154_PANID_BROADCAST ||
94 sa->addr.short_addr == IEEE802154_ADDR_BROADCAST ||
95 sa->addr.short_addr == IEEE802154_ADDR_UNDEF) {
96 err = -EINVAL;
97 break;
98 }
99
100 sdata->pan_id = cpu_to_le16(sa->addr.pan_id);
101 sdata->short_addr = cpu_to_le16(sa->addr.short_addr);
102
103 err = mac802154_wpan_update_llsec(dev);
104 break;
105 }
106
107 spin_unlock_bh(&sdata->mib_lock);
108 return err;
109 }
110
111 static int mac802154_wpan_mac_addr(struct net_device *dev, void *p)
112 {
113 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
114 struct sockaddr *addr = p;
115 __le64 extended_addr;
116
117 if (netif_running(dev))
118 return -EBUSY;
119
120 extended_addr = ieee802154_netdev_to_extended_addr(addr->sa_data);
121 if (!ieee802154_is_valid_extended_addr(extended_addr))
122 return -EINVAL;
123
124 memcpy(dev->dev_addr, addr->sa_data, dev->addr_len);
125 sdata->extended_addr = extended_addr;
126
127 return mac802154_wpan_update_llsec(dev);
128 }
129
130 int mac802154_set_mac_params(struct net_device *dev,
131 const struct ieee802154_mac_params *params)
132 {
133 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
134
135 mutex_lock(&sdata->local->iflist_mtx);
136 sdata->mac_params = *params;
137 mutex_unlock(&sdata->local->iflist_mtx);
138
139 return 0;
140 }
141
142 void mac802154_get_mac_params(struct net_device *dev,
143 struct ieee802154_mac_params *params)
144 {
145 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
146
147 mutex_lock(&sdata->local->iflist_mtx);
148 *params = sdata->mac_params;
149 mutex_unlock(&sdata->local->iflist_mtx);
150 }
151
152 static int mac802154_slave_open(struct net_device *dev)
153 {
154 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
155 struct ieee802154_sub_if_data *subif;
156 struct ieee802154_local *local = sdata->local;
157 int res = 0;
158
159 ASSERT_RTNL();
160
161 if (sdata->type == IEEE802154_DEV_WPAN) {
162 mutex_lock(&sdata->local->iflist_mtx);
163 list_for_each_entry(subif, &sdata->local->interfaces, list) {
164 if (subif != sdata && subif->type == sdata->type &&
165 ieee802154_sdata_running(subif)) {
166 mutex_unlock(&sdata->local->iflist_mtx);
167 return -EBUSY;
168 }
169 }
170 mutex_unlock(&sdata->local->iflist_mtx);
171 }
172
173 set_bit(SDATA_STATE_RUNNING, &sdata->state);
174
175 if (!local->open_count) {
176 res = drv_start(local);
177 WARN_ON(res);
178 if (res)
179 goto err;
180 }
181
182 local->open_count++;
183 netif_start_queue(dev);
184 return 0;
185 err:
186 /* might already be clear but that doesn't matter */
187 clear_bit(SDATA_STATE_RUNNING, &sdata->state);
188
189 return res;
190 }
191
192 static int mac802154_wpan_open(struct net_device *dev)
193 {
194 int rc;
195 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
196 struct ieee802154_local *local = sdata->local;
197 struct wpan_phy *phy = sdata->local->phy;
198
199 rc = mac802154_slave_open(dev);
200 if (rc < 0)
201 return rc;
202
203 mutex_lock(&phy->pib_lock);
204
205 if (local->hw.flags & IEEE802154_HW_PROMISCUOUS) {
206 rc = drv_set_promiscuous_mode(local, sdata->promisuous_mode);
207 if (rc < 0)
208 goto out;
209 }
210
211 if (local->hw.flags & IEEE802154_HW_AFILT) {
212 rc = drv_set_pan_id(local, sdata->pan_id);
213 if (rc < 0)
214 goto out;
215
216 rc = drv_set_extended_addr(local, sdata->extended_addr);
217 if (rc < 0)
218 goto out;
219
220 rc = drv_set_short_addr(local, sdata->short_addr);
221 if (rc < 0)
222 goto out;
223 }
224
225 if (local->hw.flags & IEEE802154_HW_LBT) {
226 rc = drv_set_lbt_mode(local, sdata->mac_params.lbt);
227 if (rc < 0)
228 goto out;
229 }
230
231 if (local->hw.flags & IEEE802154_HW_CSMA_PARAMS) {
232 rc = drv_set_csma_params(local, sdata->mac_params.min_be,
233 sdata->mac_params.max_be,
234 sdata->mac_params.csma_retries);
235 if (rc < 0)
236 goto out;
237 }
238
239 if (local->hw.flags & IEEE802154_HW_FRAME_RETRIES) {
240 rc = drv_set_max_frame_retries(local,
241 sdata->mac_params.frame_retries);
242 if (rc < 0)
243 goto out;
244 }
245
246 mutex_unlock(&phy->pib_lock);
247 return 0;
248
249 out:
250 mutex_unlock(&phy->pib_lock);
251 return rc;
252 }
253
254 static int mac802154_slave_close(struct net_device *dev)
255 {
256 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
257 struct ieee802154_local *local = sdata->local;
258
259 ASSERT_RTNL();
260
261 netif_stop_queue(dev);
262 local->open_count--;
263
264 clear_bit(SDATA_STATE_RUNNING, &sdata->state);
265
266 if (!local->open_count)
267 drv_stop(local);
268
269 return 0;
270 }
271
272 static int mac802154_set_header_security(struct ieee802154_sub_if_data *sdata,
273 struct ieee802154_hdr *hdr,
274 const struct ieee802154_mac_cb *cb)
275 {
276 struct ieee802154_llsec_params params;
277 u8 level;
278
279 mac802154_llsec_get_params(&sdata->sec, &params);
280
281 if (!params.enabled && cb->secen_override && cb->secen)
282 return -EINVAL;
283 if (!params.enabled ||
284 (cb->secen_override && !cb->secen) ||
285 !params.out_level)
286 return 0;
287 if (cb->seclevel_override && !cb->seclevel)
288 return -EINVAL;
289
290 level = cb->seclevel_override ? cb->seclevel : params.out_level;
291
292 hdr->fc.security_enabled = 1;
293 hdr->sec.level = level;
294 hdr->sec.key_id_mode = params.out_key.mode;
295 if (params.out_key.mode == IEEE802154_SCF_KEY_SHORT_INDEX)
296 hdr->sec.short_src = params.out_key.short_source;
297 else if (params.out_key.mode == IEEE802154_SCF_KEY_HW_INDEX)
298 hdr->sec.extended_src = params.out_key.extended_source;
299 hdr->sec.key_id = params.out_key.id;
300
301 return 0;
302 }
303
304 static int mac802154_header_create(struct sk_buff *skb,
305 struct net_device *dev,
306 unsigned short type,
307 const void *daddr,
308 const void *saddr,
309 unsigned len)
310 {
311 struct ieee802154_hdr hdr;
312 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
313 struct ieee802154_mac_cb *cb = mac_cb(skb);
314 int hlen;
315
316 if (!daddr)
317 return -EINVAL;
318
319 memset(&hdr.fc, 0, sizeof(hdr.fc));
320 hdr.fc.type = cb->type;
321 hdr.fc.security_enabled = cb->secen;
322 hdr.fc.ack_request = cb->ackreq;
323 hdr.seq = ieee802154_mlme_ops(dev)->get_dsn(dev);
324
325 if (mac802154_set_header_security(sdata, &hdr, cb) < 0)
326 return -EINVAL;
327
328 if (!saddr) {
329 spin_lock_bh(&sdata->mib_lock);
330
331 if (sdata->short_addr == cpu_to_le16(IEEE802154_ADDR_BROADCAST) ||
332 sdata->short_addr == cpu_to_le16(IEEE802154_ADDR_UNDEF) ||
333 sdata->pan_id == cpu_to_le16(IEEE802154_PANID_BROADCAST)) {
334 hdr.source.mode = IEEE802154_ADDR_LONG;
335 hdr.source.extended_addr = sdata->extended_addr;
336 } else {
337 hdr.source.mode = IEEE802154_ADDR_SHORT;
338 hdr.source.short_addr = sdata->short_addr;
339 }
340
341 hdr.source.pan_id = sdata->pan_id;
342
343 spin_unlock_bh(&sdata->mib_lock);
344 } else {
345 hdr.source = *(const struct ieee802154_addr *)saddr;
346 }
347
348 hdr.dest = *(const struct ieee802154_addr *)daddr;
349
350 hlen = ieee802154_hdr_push(skb, &hdr);
351 if (hlen < 0)
352 return -EINVAL;
353
354 skb_reset_mac_header(skb);
355 skb->mac_len = hlen;
356
357 if (len > ieee802154_max_payload(&hdr))
358 return -EMSGSIZE;
359
360 return hlen;
361 }
362
363 static int
364 mac802154_header_parse(const struct sk_buff *skb, unsigned char *haddr)
365 {
366 struct ieee802154_hdr hdr;
367 struct ieee802154_addr *addr = (struct ieee802154_addr *)haddr;
368
369 if (ieee802154_hdr_peek_addrs(skb, &hdr) < 0) {
370 pr_debug("malformed packet\n");
371 return 0;
372 }
373
374 *addr = hdr.source;
375 return sizeof(*addr);
376 }
377
378 static struct header_ops mac802154_header_ops = {
379 .create = mac802154_header_create,
380 .parse = mac802154_header_parse,
381 };
382
383 static const struct net_device_ops mac802154_wpan_ops = {
384 .ndo_open = mac802154_wpan_open,
385 .ndo_stop = mac802154_slave_close,
386 .ndo_start_xmit = ieee802154_subif_start_xmit,
387 .ndo_do_ioctl = mac802154_wpan_ioctl,
388 .ndo_set_mac_address = mac802154_wpan_mac_addr,
389 };
390
391 static const struct net_device_ops mac802154_monitor_ops = {
392 .ndo_open = mac802154_wpan_open,
393 .ndo_stop = mac802154_slave_close,
394 .ndo_start_xmit = ieee802154_monitor_start_xmit,
395 };
396
397 static void mac802154_wpan_free(struct net_device *dev)
398 {
399 struct ieee802154_sub_if_data *sdata = IEEE802154_DEV_TO_SUB_IF(dev);
400
401 mac802154_llsec_destroy(&sdata->sec);
402
403 free_netdev(dev);
404 }
405
406 void mac802154_wpan_setup(struct net_device *dev)
407 {
408 struct ieee802154_sub_if_data *sdata;
409
410 dev->addr_len = IEEE802154_ADDR_LEN;
411 memset(dev->broadcast, 0xff, IEEE802154_ADDR_LEN);
412
413 dev->hard_header_len = MAC802154_FRAME_HARD_HEADER_LEN;
414 dev->header_ops = &mac802154_header_ops;
415 dev->needed_tailroom = 2 + 16; /* FCS + MIC */
416 dev->mtu = IEEE802154_MTU;
417 dev->tx_queue_len = 300;
418 dev->type = ARPHRD_IEEE802154;
419 dev->flags = IFF_NOARP | IFF_BROADCAST;
420
421 dev->destructor = mac802154_wpan_free;
422 dev->netdev_ops = &mac802154_wpan_ops;
423 dev->ml_priv = &mac802154_mlme_wpan;
424
425 sdata = IEEE802154_DEV_TO_SUB_IF(dev);
426 sdata->type = IEEE802154_DEV_WPAN;
427
428 spin_lock_init(&sdata->mib_lock);
429 mutex_init(&sdata->sec_mtx);
430
431 get_random_bytes(&sdata->bsn, 1);
432 get_random_bytes(&sdata->dsn, 1);
433
434 /* defaults per 802.15.4-2011 */
435 sdata->mac_params.min_be = 3;
436 sdata->mac_params.max_be = 5;
437 sdata->mac_params.csma_retries = 4;
438 /* for compatibility, actual default is 3 */
439 sdata->mac_params.frame_retries = -1;
440
441 sdata->pan_id = cpu_to_le16(IEEE802154_PANID_BROADCAST);
442 sdata->short_addr = cpu_to_le16(IEEE802154_ADDR_BROADCAST);
443
444 sdata->promisuous_mode = false;
445
446 mac802154_llsec_init(&sdata->sec);
447 }
448
449 void mac802154_monitor_setup(struct net_device *dev)
450 {
451 struct ieee802154_sub_if_data *sdata;
452
453 dev->needed_tailroom = 2; /* room for FCS */
454 dev->mtu = IEEE802154_MTU;
455 dev->tx_queue_len = 10;
456 dev->type = ARPHRD_IEEE802154_MONITOR;
457 dev->flags = IFF_NOARP | IFF_BROADCAST;
458
459 dev->destructor = free_netdev;
460 dev->netdev_ops = &mac802154_monitor_ops;
461 dev->ml_priv = &mac802154_mlme_reduced;
462
463 sdata = IEEE802154_DEV_TO_SUB_IF(dev);
464 sdata->type = IEEE802154_DEV_MONITOR;
465
466 sdata->promisuous_mode = true;
467 }
This page took 0.041476 seconds and 6 git commands to generate.