2 * Driver interaction with Linux nl80211/cfg80211
3 * Copyright (c) 2002-2010, Jouni Malinen <j@w1.fi>
4 * Copyright (c) 2003-2004, Instant802 Networks, Inc.
5 * Copyright (c) 2005-2006, Devicescape Software, Inc.
6 * Copyright (c) 2007, Johannes Berg <johannes@sipsolutions.net>
7 * Copyright (c) 2009-2010, Atheros Communications
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License version 2 as
11 * published by the Free Software Foundation.
13 * Alternatively, this software may be distributed under the terms of BSD
16 * See README and COPYING for more details.
20 #include <sys/ioctl.h>
21 #include <sys/types.h>
25 #include <netlink/genl/genl.h>
26 #include <netlink/genl/family.h>
27 #include <netlink/genl/ctrl.h>
28 #include <linux/rtnetlink.h>
29 #include <netpacket/packet.h>
30 #include <linux/filter.h>
31 #include <linux/errqueue.h>
32 #include "nl80211_copy.h"
36 #include "utils/list.h"
37 #include "common/ieee802_11_defs.h"
38 #include "common/ieee802_11_common.h"
39 #include "l2_packet/l2_packet.h"
41 #include "linux_ioctl.h"
43 #include "radiotap_iter.h"
47 #ifndef SO_WIFI_STATUS
48 # if defined(__sparc__)
49 # define SO_WIFI_STATUS 0x0025
50 # elif defined(__parisc__)
51 # define SO_WIFI_STATUS 0x4022
53 # define SO_WIFI_STATUS 41
56 # define SCM_WIFI_STATUS SO_WIFI_STATUS
59 #ifndef SO_EE_ORIGIN_TXSTATUS
60 #define SO_EE_ORIGIN_TXSTATUS 4
63 #ifndef PACKET_TX_TIMESTAMP
64 #define PACKET_TX_TIMESTAMP 16
68 #include "android_drv.h"
71 /* libnl 2.0 compatibility code */
72 #define nl_handle nl_sock
73 #define nl80211_handle_alloc nl_socket_alloc_cb
74 #define nl80211_handle_destroy nl_socket_free
77 * libnl 1.1 has a bug, it tries to allocate socket numbers densely
78 * but when you free a socket again it will mess up its bitmap and
79 * and use the wrong number the next time it needs a socket ID.
80 * Therefore, we wrap the handle alloc/destroy and add our own pid
83 static uint32_t port_bitmap
[32] = { 0 };
85 static struct nl_handle
*nl80211_handle_alloc(void *cb
)
87 struct nl_handle
*handle
;
88 uint32_t pid
= getpid() & 0x3FFFFF;
91 handle
= nl_handle_alloc_cb(cb
);
93 for (i
= 0; i
< 1024; i
++) {
94 if (port_bitmap
[i
/ 32] & (1 << (i
% 32)))
96 port_bitmap
[i
/ 32] |= 1 << (i
% 32);
101 nl_socket_set_local_port(handle
, pid
);
106 static void nl80211_handle_destroy(struct nl_handle
*handle
)
108 uint32_t port
= nl_socket_get_local_port(handle
);
111 port_bitmap
[port
/ 32] &= ~(1 << (port
% 32));
113 nl_handle_destroy(handle
);
115 #endif /* CONFIG_LIBNL20 */
118 static struct nl_handle
* nl_create_handle(struct nl_cb
*cb
, const char *dbg
)
120 struct nl_handle
*handle
;
122 handle
= nl80211_handle_alloc(cb
);
123 if (handle
== NULL
) {
124 wpa_printf(MSG_ERROR
, "nl80211: Failed to allocate netlink "
125 "callbacks (%s)", dbg
);
129 if (genl_connect(handle
)) {
130 wpa_printf(MSG_ERROR
, "nl80211: Failed to connect to generic "
131 "netlink (%s)", dbg
);
132 nl80211_handle_destroy(handle
);
140 static void nl_destroy_handles(struct nl_handle
**handle
)
144 nl80211_handle_destroy(*handle
);
150 #define IFF_LOWER_UP 0x10000 /* driver signals L1 up */
153 #define IFF_DORMANT 0x20000 /* driver signals dormant */
156 #ifndef IF_OPER_DORMANT
157 #define IF_OPER_DORMANT 5
163 struct nl80211_global
{
164 struct dl_list interfaces
;
166 struct netlink_data
*netlink
;
168 struct nl_handle
*nl
;
170 int ioctl_sock
; /* socket for ioctl() use */
172 struct nl_handle
*nl_event
;
175 struct nl80211_wiphy_data
{
180 struct nl_handle
*nl_beacons
;
186 static void nl80211_global_deinit(void *priv
);
187 static void wpa_driver_nl80211_deinit(void *priv
);
190 struct wpa_driver_nl80211_data
*drv
;
191 struct i802_bss
*next
;
193 char ifname
[IFNAMSIZ
+ 1];
194 char brname
[IFNAMSIZ
];
195 unsigned int beacon_set
:1;
196 unsigned int added_if_into_bridge
:1;
197 unsigned int added_bridge
:1;
203 struct nl_handle
*nl_preq
, *nl_mgmt
;
206 struct nl80211_wiphy_data
*wiphy_data
;
207 struct dl_list wiphy_list
;
210 struct wpa_driver_nl80211_data
{
211 struct nl80211_global
*global
;
213 struct dl_list wiphy_list
;
219 int ignore_if_down_event
;
220 struct rfkill_data
*rfkill
;
221 struct wpa_driver_capa capa
;
226 int scan_complete_events
;
230 u8 auth_bssid
[ETH_ALEN
];
235 enum nl80211_iftype nlmode
;
236 enum nl80211_iftype ap_scan_as_station
;
237 unsigned int assoc_freq
;
241 int monitor_refcount
;
243 unsigned int disabled_11b_rates
:1;
244 unsigned int pending_remain_on_chan
:1;
245 unsigned int in_interface_list
:1;
246 unsigned int device_ap_sme
:1;
247 unsigned int poll_command_supported
:1;
248 unsigned int data_tx_status
:1;
249 unsigned int scan_for_auth
:1;
250 unsigned int retry_auth
:1;
251 unsigned int use_monitor
:1;
253 u64 remain_on_chan_cookie
;
254 u64 send_action_cookie
;
256 unsigned int last_mgmt_freq
;
258 struct wpa_driver_scan_filter
*filter_ssids
;
259 size_t num_filter_ssids
;
261 struct i802_bss first_bss
;
266 int eapol_sock
; /* socket for EAPOL frames */
268 int default_if_indices
[16];
276 /* From failed authentication command */
278 u8 auth_bssid_
[ETH_ALEN
];
280 size_t auth_ssid_len
;
284 u8 auth_wep_key
[4][16];
285 size_t auth_wep_key_len
[4];
286 int auth_wep_tx_keyidx
;
287 int auth_local_state_change
;
292 static void wpa_driver_nl80211_scan_timeout(void *eloop_ctx
,
294 static int wpa_driver_nl80211_set_mode(struct i802_bss
*bss
,
295 enum nl80211_iftype nlmode
);
297 wpa_driver_nl80211_finish_drv_init(struct wpa_driver_nl80211_data
*drv
);
298 static int wpa_driver_nl80211_mlme(struct wpa_driver_nl80211_data
*drv
,
299 const u8
*addr
, int cmd
, u16 reason_code
,
300 int local_state_change
);
301 static void nl80211_remove_monitor_interface(
302 struct wpa_driver_nl80211_data
*drv
);
303 static int nl80211_send_frame_cmd(struct i802_bss
*bss
,
304 unsigned int freq
, unsigned int wait
,
305 const u8
*buf
, size_t buf_len
, u64
*cookie
,
306 int no_cck
, int no_ack
, int offchanok
);
307 static int wpa_driver_nl80211_probe_req_report(void *priv
, int report
);
309 static int android_pno_start(struct i802_bss
*bss
,
310 struct wpa_driver_scan_params
*params
);
311 static int android_pno_stop(struct i802_bss
*bss
);
315 static void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
316 static void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
317 static int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
318 static int wpa_driver_nl80211_if_remove(void *priv
,
319 enum wpa_driver_if_type type
,
322 static inline void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
326 static inline void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
330 static inline int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
336 static int i802_set_freq(void *priv
, struct hostapd_freq_params
*freq
);
337 static int nl80211_disable_11b_rates(struct wpa_driver_nl80211_data
*drv
,
338 int ifindex
, int disabled
);
340 static int nl80211_leave_ibss(struct wpa_driver_nl80211_data
*drv
);
341 static int wpa_driver_nl80211_authenticate_retry(
342 struct wpa_driver_nl80211_data
*drv
);
345 static int is_ap_interface(enum nl80211_iftype nlmode
)
347 return (nlmode
== NL80211_IFTYPE_AP
||
348 nlmode
== NL80211_IFTYPE_P2P_GO
);
352 static int is_sta_interface(enum nl80211_iftype nlmode
)
354 return (nlmode
== NL80211_IFTYPE_STATION
||
355 nlmode
== NL80211_IFTYPE_P2P_CLIENT
);
359 static int is_p2p_interface(enum nl80211_iftype nlmode
)
361 return (nlmode
== NL80211_IFTYPE_P2P_CLIENT
||
362 nlmode
== NL80211_IFTYPE_P2P_GO
);
366 struct nl80211_bss_info_arg
{
367 struct wpa_driver_nl80211_data
*drv
;
368 struct wpa_scan_results
*res
;
369 unsigned int assoc_freq
;
370 u8 assoc_bssid
[ETH_ALEN
];
373 static int bss_info_handler(struct nl_msg
*msg
, void *arg
);
377 static int ack_handler(struct nl_msg
*msg
, void *arg
)
384 static int finish_handler(struct nl_msg
*msg
, void *arg
)
391 static int error_handler(struct sockaddr_nl
*nla
, struct nlmsgerr
*err
,
400 static int no_seq_check(struct nl_msg
*msg
, void *arg
)
406 static int send_and_recv(struct nl80211_global
*global
,
407 struct nl_handle
*nl_handle
, struct nl_msg
*msg
,
408 int (*valid_handler
)(struct nl_msg
*, void *),
414 cb
= nl_cb_clone(global
->nl_cb
);
418 err
= nl_send_auto_complete(nl_handle
, msg
);
424 nl_cb_err(cb
, NL_CB_CUSTOM
, error_handler
, &err
);
425 nl_cb_set(cb
, NL_CB_FINISH
, NL_CB_CUSTOM
, finish_handler
, &err
);
426 nl_cb_set(cb
, NL_CB_ACK
, NL_CB_CUSTOM
, ack_handler
, &err
);
429 nl_cb_set(cb
, NL_CB_VALID
, NL_CB_CUSTOM
,
430 valid_handler
, valid_data
);
433 nl_recvmsgs(nl_handle
, cb
);
441 static int send_and_recv_msgs_global(struct nl80211_global
*global
,
443 int (*valid_handler
)(struct nl_msg
*, void *),
446 return send_and_recv(global
, global
->nl
, msg
, valid_handler
,
451 static int send_and_recv_msgs(struct wpa_driver_nl80211_data
*drv
,
453 int (*valid_handler
)(struct nl_msg
*, void *),
456 return send_and_recv(drv
->global
, drv
->global
->nl
, msg
,
457 valid_handler
, valid_data
);
467 static int family_handler(struct nl_msg
*msg
, void *arg
)
469 struct family_data
*res
= arg
;
470 struct nlattr
*tb
[CTRL_ATTR_MAX
+ 1];
471 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
472 struct nlattr
*mcgrp
;
475 nla_parse(tb
, CTRL_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
476 genlmsg_attrlen(gnlh
, 0), NULL
);
477 if (!tb
[CTRL_ATTR_MCAST_GROUPS
])
480 nla_for_each_nested(mcgrp
, tb
[CTRL_ATTR_MCAST_GROUPS
], i
) {
481 struct nlattr
*tb2
[CTRL_ATTR_MCAST_GRP_MAX
+ 1];
482 nla_parse(tb2
, CTRL_ATTR_MCAST_GRP_MAX
, nla_data(mcgrp
),
483 nla_len(mcgrp
), NULL
);
484 if (!tb2
[CTRL_ATTR_MCAST_GRP_NAME
] ||
485 !tb2
[CTRL_ATTR_MCAST_GRP_ID
] ||
486 os_strncmp(nla_data(tb2
[CTRL_ATTR_MCAST_GRP_NAME
]),
488 nla_len(tb2
[CTRL_ATTR_MCAST_GRP_NAME
])) != 0)
490 res
->id
= nla_get_u32(tb2
[CTRL_ATTR_MCAST_GRP_ID
]);
498 static int nl_get_multicast_id(struct nl80211_global
*global
,
499 const char *family
, const char *group
)
503 struct family_data res
= { group
, -ENOENT
};
508 genlmsg_put(msg
, 0, 0, genl_ctrl_resolve(global
->nl
, "nlctrl"),
509 0, 0, CTRL_CMD_GETFAMILY
, 0);
510 NLA_PUT_STRING(msg
, CTRL_ATTR_FAMILY_NAME
, family
);
512 ret
= send_and_recv_msgs_global(global
, msg
, family_handler
, &res
);
523 static void * nl80211_cmd(struct wpa_driver_nl80211_data
*drv
,
524 struct nl_msg
*msg
, int flags
, uint8_t cmd
)
526 return genlmsg_put(msg
, 0, 0, drv
->global
->nl80211_id
,
531 struct wiphy_idx_data
{
536 static int netdev_info_handler(struct nl_msg
*msg
, void *arg
)
538 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
539 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
540 struct wiphy_idx_data
*info
= arg
;
542 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
543 genlmsg_attrlen(gnlh
, 0), NULL
);
545 if (tb
[NL80211_ATTR_WIPHY
])
546 info
->wiphy_idx
= nla_get_u32(tb
[NL80211_ATTR_WIPHY
]);
552 static int nl80211_get_wiphy_index(struct i802_bss
*bss
)
555 struct wiphy_idx_data data
= {
563 nl80211_cmd(bss
->drv
, msg
, 0, NL80211_CMD_GET_INTERFACE
);
565 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
567 if (send_and_recv_msgs(bss
->drv
, msg
, netdev_info_handler
, &data
) == 0)
568 return data
.wiphy_idx
;
576 static int nl80211_register_beacons(struct wpa_driver_nl80211_data
*drv
,
577 struct nl80211_wiphy_data
*w
)
586 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REGISTER_BEACONS
);
588 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY
, w
->wiphy_idx
);
590 ret
= send_and_recv(drv
->global
, w
->nl_beacons
, msg
, NULL
, NULL
);
593 wpa_printf(MSG_DEBUG
, "nl80211: Register beacons command "
594 "failed: ret=%d (%s)",
595 ret
, strerror(-ret
));
596 goto nla_put_failure
;
605 static void nl80211_recv_beacons(int sock
, void *eloop_ctx
, void *handle
)
607 struct nl80211_wiphy_data
*w
= eloop_ctx
;
609 wpa_printf(MSG_DEBUG
, "nl80211: Beacon event message available");
611 nl_recvmsgs(handle
, w
->nl_cb
);
615 static int process_beacon_event(struct nl_msg
*msg
, void *arg
)
617 struct nl80211_wiphy_data
*w
= arg
;
618 struct wpa_driver_nl80211_data
*drv
;
619 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
620 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
621 union wpa_event_data event
;
623 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
624 genlmsg_attrlen(gnlh
, 0), NULL
);
626 if (gnlh
->cmd
!= NL80211_CMD_FRAME
) {
627 wpa_printf(MSG_DEBUG
, "nl80211: Unexpected beacon event? (%d)",
632 if (!tb
[NL80211_ATTR_FRAME
])
635 dl_list_for_each(drv
, &w
->drvs
, struct wpa_driver_nl80211_data
,
637 os_memset(&event
, 0, sizeof(event
));
638 event
.rx_mgmt
.frame
= nla_data(tb
[NL80211_ATTR_FRAME
]);
639 event
.rx_mgmt
.frame_len
= nla_len(tb
[NL80211_ATTR_FRAME
]);
640 wpa_supplicant_event(drv
->ctx
, EVENT_RX_MGMT
, &event
);
647 static struct nl80211_wiphy_data
*
648 nl80211_get_wiphy_data_ap(struct i802_bss
*bss
)
650 static DEFINE_DL_LIST(nl80211_wiphys
);
651 struct nl80211_wiphy_data
*w
;
652 int wiphy_idx
, found
= 0;
653 struct i802_bss
*tmp_bss
;
655 if (bss
->wiphy_data
!= NULL
)
656 return bss
->wiphy_data
;
658 wiphy_idx
= nl80211_get_wiphy_index(bss
);
660 dl_list_for_each(w
, &nl80211_wiphys
, struct nl80211_wiphy_data
, list
) {
661 if (w
->wiphy_idx
== wiphy_idx
)
666 w
= os_zalloc(sizeof(*w
));
669 w
->wiphy_idx
= wiphy_idx
;
670 dl_list_init(&w
->bsss
);
671 dl_list_init(&w
->drvs
);
673 w
->nl_cb
= nl_cb_alloc(NL_CB_DEFAULT
);
678 nl_cb_set(w
->nl_cb
, NL_CB_SEQ_CHECK
, NL_CB_CUSTOM
, no_seq_check
, NULL
);
679 nl_cb_set(w
->nl_cb
, NL_CB_VALID
, NL_CB_CUSTOM
, process_beacon_event
,
682 w
->nl_beacons
= nl_create_handle(bss
->drv
->global
->nl_cb
,
684 if (w
->nl_beacons
== NULL
) {
689 if (nl80211_register_beacons(bss
->drv
, w
)) {
690 nl_destroy_handles(&w
->nl_beacons
);
695 eloop_register_read_sock(nl_socket_get_fd(w
->nl_beacons
),
696 nl80211_recv_beacons
, w
, w
->nl_beacons
);
698 dl_list_add(&nl80211_wiphys
, &w
->list
);
701 /* drv entry for this bss already there? */
702 dl_list_for_each(tmp_bss
, &w
->bsss
, struct i802_bss
, wiphy_list
) {
703 if (tmp_bss
->drv
== bss
->drv
) {
710 dl_list_add(&w
->drvs
, &bss
->drv
->wiphy_list
);
712 dl_list_add(&w
->bsss
, &bss
->wiphy_list
);
718 static void nl80211_put_wiphy_data_ap(struct i802_bss
*bss
)
720 struct nl80211_wiphy_data
*w
= bss
->wiphy_data
;
721 struct i802_bss
*tmp_bss
;
726 bss
->wiphy_data
= NULL
;
727 dl_list_del(&bss
->wiphy_list
);
729 /* still any for this drv present? */
730 dl_list_for_each(tmp_bss
, &w
->bsss
, struct i802_bss
, wiphy_list
) {
731 if (tmp_bss
->drv
== bss
->drv
) {
736 /* if not remove it */
738 dl_list_del(&bss
->drv
->wiphy_list
);
740 if (!dl_list_empty(&w
->bsss
))
743 eloop_unregister_read_sock(nl_socket_get_fd(w
->nl_beacons
));
746 nl_destroy_handles(&w
->nl_beacons
);
747 dl_list_del(&w
->list
);
752 static int wpa_driver_nl80211_get_bssid(void *priv
, u8
*bssid
)
754 struct i802_bss
*bss
= priv
;
755 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
756 if (!drv
->associated
)
758 os_memcpy(bssid
, drv
->bssid
, ETH_ALEN
);
763 static int wpa_driver_nl80211_get_ssid(void *priv
, u8
*ssid
)
765 struct i802_bss
*bss
= priv
;
766 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
767 if (!drv
->associated
)
769 os_memcpy(ssid
, drv
->ssid
, drv
->ssid_len
);
770 return drv
->ssid_len
;
774 static void wpa_driver_nl80211_event_link(struct wpa_driver_nl80211_data
*drv
,
775 char *buf
, size_t len
, int del
)
777 union wpa_event_data event
;
779 os_memset(&event
, 0, sizeof(event
));
780 if (len
> sizeof(event
.interface_status
.ifname
))
781 len
= sizeof(event
.interface_status
.ifname
) - 1;
782 os_memcpy(event
.interface_status
.ifname
, buf
, len
);
783 event
.interface_status
.ievent
= del
? EVENT_INTERFACE_REMOVED
:
784 EVENT_INTERFACE_ADDED
;
786 wpa_printf(MSG_DEBUG
, "RTM_%sLINK, IFLA_IFNAME: Interface '%s' %s",
788 event
.interface_status
.ifname
,
789 del
? "removed" : "added");
791 if (os_strcmp(drv
->first_bss
.ifname
, event
.interface_status
.ifname
) == 0) {
798 wpa_supplicant_event(drv
->ctx
, EVENT_INTERFACE_STATUS
, &event
);
802 static int wpa_driver_nl80211_own_ifname(struct wpa_driver_nl80211_data
*drv
,
805 int attrlen
, rta_len
;
809 attr
= (struct rtattr
*) buf
;
811 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
812 while (RTA_OK(attr
, attrlen
)) {
813 if (attr
->rta_type
== IFLA_IFNAME
) {
814 if (os_strcmp(((char *) attr
) + rta_len
, drv
->first_bss
.ifname
)
820 attr
= RTA_NEXT(attr
, attrlen
);
827 static int wpa_driver_nl80211_own_ifindex(struct wpa_driver_nl80211_data
*drv
,
828 int ifindex
, u8
*buf
, size_t len
)
830 if (drv
->ifindex
== ifindex
)
833 if (drv
->if_removed
&& wpa_driver_nl80211_own_ifname(drv
, buf
, len
)) {
834 drv
->first_bss
.ifindex
= if_nametoindex(drv
->first_bss
.ifname
);
835 wpa_printf(MSG_DEBUG
, "nl80211: Update ifindex for a removed "
837 wpa_driver_nl80211_finish_drv_init(drv
);
845 static struct wpa_driver_nl80211_data
*
846 nl80211_find_drv(struct nl80211_global
*global
, int idx
, u8
*buf
, size_t len
)
848 struct wpa_driver_nl80211_data
*drv
;
849 dl_list_for_each(drv
, &global
->interfaces
,
850 struct wpa_driver_nl80211_data
, list
) {
851 if (wpa_driver_nl80211_own_ifindex(drv
, idx
, buf
, len
) ||
852 have_ifidx(drv
, idx
))
859 static void wpa_driver_nl80211_event_rtm_newlink(void *ctx
,
860 struct ifinfomsg
*ifi
,
863 struct nl80211_global
*global
= ctx
;
864 struct wpa_driver_nl80211_data
*drv
;
865 int attrlen
, rta_len
;
868 char namebuf
[IFNAMSIZ
];
870 drv
= nl80211_find_drv(global
, ifi
->ifi_index
, buf
, len
);
872 wpa_printf(MSG_DEBUG
, "nl80211: Ignore event for foreign "
873 "ifindex %d", ifi
->ifi_index
);
877 wpa_printf(MSG_DEBUG
, "RTM_NEWLINK: operstate=%d ifi_flags=0x%x "
879 drv
->operstate
, ifi
->ifi_flags
,
880 (ifi
->ifi_flags
& IFF_UP
) ? "[UP]" : "",
881 (ifi
->ifi_flags
& IFF_RUNNING
) ? "[RUNNING]" : "",
882 (ifi
->ifi_flags
& IFF_LOWER_UP
) ? "[LOWER_UP]" : "",
883 (ifi
->ifi_flags
& IFF_DORMANT
) ? "[DORMANT]" : "");
885 if (!drv
->if_disabled
&& !(ifi
->ifi_flags
& IFF_UP
)) {
886 if (if_indextoname(ifi
->ifi_index
, namebuf
) &&
887 linux_iface_up(drv
->global
->ioctl_sock
,
888 drv
->first_bss
.ifname
) > 0) {
889 wpa_printf(MSG_DEBUG
, "nl80211: Ignore interface down "
890 "event since interface %s is up", namebuf
);
893 wpa_printf(MSG_DEBUG
, "nl80211: Interface down");
894 if (drv
->ignore_if_down_event
) {
895 wpa_printf(MSG_DEBUG
, "nl80211: Ignore interface down "
896 "event generated by mode change");
897 drv
->ignore_if_down_event
= 0;
899 drv
->if_disabled
= 1;
900 wpa_supplicant_event(drv
->ctx
,
901 EVENT_INTERFACE_DISABLED
, NULL
);
905 if (drv
->if_disabled
&& (ifi
->ifi_flags
& IFF_UP
)) {
906 if (if_indextoname(ifi
->ifi_index
, namebuf
) &&
907 linux_iface_up(drv
->global
->ioctl_sock
,
908 drv
->first_bss
.ifname
) == 0) {
909 wpa_printf(MSG_DEBUG
, "nl80211: Ignore interface up "
910 "event since interface %s is down",
913 wpa_printf(MSG_DEBUG
, "nl80211: Interface up");
914 drv
->if_disabled
= 0;
915 wpa_supplicant_event(drv
->ctx
, EVENT_INTERFACE_ENABLED
,
921 * Some drivers send the association event before the operup event--in
922 * this case, lifting operstate in wpa_driver_nl80211_set_operstate()
923 * fails. This will hit us when wpa_supplicant does not need to do
924 * IEEE 802.1X authentication
926 if (drv
->operstate
== 1 &&
927 (ifi
->ifi_flags
& (IFF_LOWER_UP
| IFF_DORMANT
)) == IFF_LOWER_UP
&&
928 !(ifi
->ifi_flags
& IFF_RUNNING
))
929 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
,
933 attr
= (struct rtattr
*) buf
;
934 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
935 while (RTA_OK(attr
, attrlen
)) {
936 if (attr
->rta_type
== IFLA_IFNAME
) {
937 wpa_driver_nl80211_event_link(
939 ((char *) attr
) + rta_len
,
940 attr
->rta_len
- rta_len
, 0);
941 } else if (attr
->rta_type
== IFLA_MASTER
)
942 brid
= nla_get_u32((struct nlattr
*) attr
);
943 attr
= RTA_NEXT(attr
, attrlen
);
946 if (ifi
->ifi_family
== AF_BRIDGE
&& brid
) {
947 /* device has been added to bridge */
948 if_indextoname(brid
, namebuf
);
949 wpa_printf(MSG_DEBUG
, "nl80211: Add ifindex %u for bridge %s",
951 add_ifidx(drv
, brid
);
956 static void wpa_driver_nl80211_event_rtm_dellink(void *ctx
,
957 struct ifinfomsg
*ifi
,
960 struct nl80211_global
*global
= ctx
;
961 struct wpa_driver_nl80211_data
*drv
;
962 int attrlen
, rta_len
;
966 drv
= nl80211_find_drv(global
, ifi
->ifi_index
, buf
, len
);
968 wpa_printf(MSG_DEBUG
, "nl80211: Ignore dellink event for "
969 "foreign ifindex %d", ifi
->ifi_index
);
974 attr
= (struct rtattr
*) buf
;
976 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
977 while (RTA_OK(attr
, attrlen
)) {
978 if (attr
->rta_type
== IFLA_IFNAME
) {
979 wpa_driver_nl80211_event_link(
981 ((char *) attr
) + rta_len
,
982 attr
->rta_len
- rta_len
, 1);
983 } else if (attr
->rta_type
== IFLA_MASTER
)
984 brid
= nla_get_u32((struct nlattr
*) attr
);
985 attr
= RTA_NEXT(attr
, attrlen
);
988 if (ifi
->ifi_family
== AF_BRIDGE
&& brid
) {
989 /* device has been removed from bridge */
990 char namebuf
[IFNAMSIZ
];
991 if_indextoname(brid
, namebuf
);
992 wpa_printf(MSG_DEBUG
, "nl80211: Remove ifindex %u for bridge "
993 "%s", brid
, namebuf
);
994 del_ifidx(drv
, brid
);
999 static void mlme_event_auth(struct wpa_driver_nl80211_data
*drv
,
1000 const u8
*frame
, size_t len
)
1002 const struct ieee80211_mgmt
*mgmt
;
1003 union wpa_event_data event
;
1005 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1006 if (len
< 24 + sizeof(mgmt
->u
.auth
)) {
1007 wpa_printf(MSG_DEBUG
, "nl80211: Too short association event "
1012 os_memcpy(drv
->auth_bssid
, mgmt
->sa
, ETH_ALEN
);
1013 os_memset(&event
, 0, sizeof(event
));
1014 os_memcpy(event
.auth
.peer
, mgmt
->sa
, ETH_ALEN
);
1015 event
.auth
.auth_type
= le_to_host16(mgmt
->u
.auth
.auth_alg
);
1016 event
.auth
.status_code
= le_to_host16(mgmt
->u
.auth
.status_code
);
1017 if (len
> 24 + sizeof(mgmt
->u
.auth
)) {
1018 event
.auth
.ies
= mgmt
->u
.auth
.variable
;
1019 event
.auth
.ies_len
= len
- 24 - sizeof(mgmt
->u
.auth
);
1022 wpa_supplicant_event(drv
->ctx
, EVENT_AUTH
, &event
);
1026 static unsigned int nl80211_get_assoc_freq(struct wpa_driver_nl80211_data
*drv
)
1030 struct nl80211_bss_info_arg arg
;
1032 os_memset(&arg
, 0, sizeof(arg
));
1033 msg
= nlmsg_alloc();
1035 goto nla_put_failure
;
1037 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
1038 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1041 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
1044 wpa_printf(MSG_DEBUG
, "nl80211: Operating frequency for the "
1045 "associated BSS from scan results: %u MHz",
1047 return arg
.assoc_freq
? arg
.assoc_freq
: drv
->assoc_freq
;
1049 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
1050 "(%s)", ret
, strerror(-ret
));
1053 return drv
->assoc_freq
;
1057 static void mlme_event_assoc(struct wpa_driver_nl80211_data
*drv
,
1058 const u8
*frame
, size_t len
)
1060 const struct ieee80211_mgmt
*mgmt
;
1061 union wpa_event_data event
;
1064 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1065 if (len
< 24 + sizeof(mgmt
->u
.assoc_resp
)) {
1066 wpa_printf(MSG_DEBUG
, "nl80211: Too short association event "
1071 status
= le_to_host16(mgmt
->u
.assoc_resp
.status_code
);
1072 if (status
!= WLAN_STATUS_SUCCESS
) {
1073 os_memset(&event
, 0, sizeof(event
));
1074 event
.assoc_reject
.bssid
= mgmt
->bssid
;
1075 if (len
> 24 + sizeof(mgmt
->u
.assoc_resp
)) {
1076 event
.assoc_reject
.resp_ies
=
1077 (u8
*) mgmt
->u
.assoc_resp
.variable
;
1078 event
.assoc_reject
.resp_ies_len
=
1079 len
- 24 - sizeof(mgmt
->u
.assoc_resp
);
1081 event
.assoc_reject
.status_code
= status
;
1083 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC_REJECT
, &event
);
1087 drv
->associated
= 1;
1088 os_memcpy(drv
->bssid
, mgmt
->sa
, ETH_ALEN
);
1090 os_memset(&event
, 0, sizeof(event
));
1091 if (len
> 24 + sizeof(mgmt
->u
.assoc_resp
)) {
1092 event
.assoc_info
.resp_ies
= (u8
*) mgmt
->u
.assoc_resp
.variable
;
1093 event
.assoc_info
.resp_ies_len
=
1094 len
- 24 - sizeof(mgmt
->u
.assoc_resp
);
1097 event
.assoc_info
.freq
= drv
->assoc_freq
;
1099 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, &event
);
1103 static void mlme_event_connect(struct wpa_driver_nl80211_data
*drv
,
1104 enum nl80211_commands cmd
, struct nlattr
*status
,
1105 struct nlattr
*addr
, struct nlattr
*req_ie
,
1106 struct nlattr
*resp_ie
)
1108 union wpa_event_data event
;
1110 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
1112 * Avoid reporting two association events that would confuse
1115 wpa_printf(MSG_DEBUG
, "nl80211: Ignore connect event (cmd=%d) "
1116 "when using userspace SME", cmd
);
1120 os_memset(&event
, 0, sizeof(event
));
1121 if (cmd
== NL80211_CMD_CONNECT
&&
1122 nla_get_u16(status
) != WLAN_STATUS_SUCCESS
) {
1124 event
.assoc_reject
.bssid
= nla_data(addr
);
1126 event
.assoc_reject
.resp_ies
= nla_data(resp_ie
);
1127 event
.assoc_reject
.resp_ies_len
= nla_len(resp_ie
);
1129 event
.assoc_reject
.status_code
= nla_get_u16(status
);
1130 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC_REJECT
, &event
);
1134 drv
->associated
= 1;
1136 os_memcpy(drv
->bssid
, nla_data(addr
), ETH_ALEN
);
1139 event
.assoc_info
.req_ies
= nla_data(req_ie
);
1140 event
.assoc_info
.req_ies_len
= nla_len(req_ie
);
1143 event
.assoc_info
.resp_ies
= nla_data(resp_ie
);
1144 event
.assoc_info
.resp_ies_len
= nla_len(resp_ie
);
1147 event
.assoc_info
.freq
= nl80211_get_assoc_freq(drv
);
1149 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, &event
);
1153 static void mlme_event_disconnect(struct wpa_driver_nl80211_data
*drv
,
1154 struct nlattr
*reason
, struct nlattr
*addr
)
1156 union wpa_event_data data
;
1158 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
1160 * Avoid reporting two disassociation events that could
1161 * confuse the core code.
1163 wpa_printf(MSG_DEBUG
, "nl80211: Ignore disconnect "
1164 "event when using userspace SME");
1168 drv
->associated
= 0;
1169 os_memset(&data
, 0, sizeof(data
));
1171 data
.disassoc_info
.reason_code
= nla_get_u16(reason
);
1172 wpa_supplicant_event(drv
->ctx
, EVENT_DISASSOC
, &data
);
1176 static void mlme_timeout_event(struct wpa_driver_nl80211_data
*drv
,
1177 enum nl80211_commands cmd
, struct nlattr
*addr
)
1179 union wpa_event_data event
;
1180 enum wpa_event_type ev
;
1182 if (nla_len(addr
) != ETH_ALEN
)
1185 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d; timeout with " MACSTR
,
1186 cmd
, MAC2STR((u8
*) nla_data(addr
)));
1188 if (cmd
== NL80211_CMD_AUTHENTICATE
)
1189 ev
= EVENT_AUTH_TIMED_OUT
;
1190 else if (cmd
== NL80211_CMD_ASSOCIATE
)
1191 ev
= EVENT_ASSOC_TIMED_OUT
;
1195 os_memset(&event
, 0, sizeof(event
));
1196 os_memcpy(event
.timeout_event
.addr
, nla_data(addr
), ETH_ALEN
);
1197 wpa_supplicant_event(drv
->ctx
, ev
, &event
);
1201 static void mlme_event_mgmt(struct wpa_driver_nl80211_data
*drv
,
1202 struct nlattr
*freq
, const u8
*frame
, size_t len
)
1204 const struct ieee80211_mgmt
*mgmt
;
1205 union wpa_event_data event
;
1208 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1210 wpa_printf(MSG_DEBUG
, "nl80211: Too short action frame");
1214 fc
= le_to_host16(mgmt
->frame_control
);
1215 stype
= WLAN_FC_GET_STYPE(fc
);
1217 os_memset(&event
, 0, sizeof(event
));
1219 event
.rx_action
.freq
= nla_get_u32(freq
);
1220 drv
->last_mgmt_freq
= event
.rx_action
.freq
;
1222 if (stype
== WLAN_FC_STYPE_ACTION
) {
1223 event
.rx_action
.da
= mgmt
->da
;
1224 event
.rx_action
.sa
= mgmt
->sa
;
1225 event
.rx_action
.bssid
= mgmt
->bssid
;
1226 event
.rx_action
.category
= mgmt
->u
.action
.category
;
1227 event
.rx_action
.data
= &mgmt
->u
.action
.category
+ 1;
1228 event
.rx_action
.len
= frame
+ len
- event
.rx_action
.data
;
1229 wpa_supplicant_event(drv
->ctx
, EVENT_RX_ACTION
, &event
);
1231 event
.rx_mgmt
.frame
= frame
;
1232 event
.rx_mgmt
.frame_len
= len
;
1233 wpa_supplicant_event(drv
->ctx
, EVENT_RX_MGMT
, &event
);
1238 static void mlme_event_mgmt_tx_status(struct wpa_driver_nl80211_data
*drv
,
1239 struct nlattr
*cookie
, const u8
*frame
,
1240 size_t len
, struct nlattr
*ack
)
1242 union wpa_event_data event
;
1243 const struct ieee80211_hdr
*hdr
;
1246 if (!is_ap_interface(drv
->nlmode
)) {
1252 cookie_val
= nla_get_u64(cookie
);
1253 wpa_printf(MSG_DEBUG
, "nl80211: Action TX status:"
1254 " cookie=0%llx%s (ack=%d)",
1255 (long long unsigned int) cookie_val
,
1256 cookie_val
== drv
->send_action_cookie
?
1257 " (match)" : " (unknown)", ack
!= NULL
);
1258 if (cookie_val
!= drv
->send_action_cookie
)
1262 hdr
= (const struct ieee80211_hdr
*) frame
;
1263 fc
= le_to_host16(hdr
->frame_control
);
1265 os_memset(&event
, 0, sizeof(event
));
1266 event
.tx_status
.type
= WLAN_FC_GET_TYPE(fc
);
1267 event
.tx_status
.stype
= WLAN_FC_GET_STYPE(fc
);
1268 event
.tx_status
.dst
= hdr
->addr1
;
1269 event
.tx_status
.data
= frame
;
1270 event
.tx_status
.data_len
= len
;
1271 event
.tx_status
.ack
= ack
!= NULL
;
1272 wpa_supplicant_event(drv
->ctx
, EVENT_TX_STATUS
, &event
);
1276 static void mlme_event_deauth_disassoc(struct wpa_driver_nl80211_data
*drv
,
1277 enum wpa_event_type type
,
1278 const u8
*frame
, size_t len
)
1280 const struct ieee80211_mgmt
*mgmt
;
1281 union wpa_event_data event
;
1282 const u8
*bssid
= NULL
;
1283 u16 reason_code
= 0;
1285 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1287 bssid
= mgmt
->bssid
;
1289 if (drv
->associated
!= 0 &&
1290 os_memcmp(bssid
, drv
->bssid
, ETH_ALEN
) != 0 &&
1291 os_memcmp(bssid
, drv
->auth_bssid
, ETH_ALEN
) != 0) {
1293 * We have presumably received this deauth as a
1294 * response to a clear_state_mismatch() outgoing
1295 * deauth. Don't let it take us offline!
1297 wpa_printf(MSG_DEBUG
, "nl80211: Deauth received "
1298 "from Unknown BSSID " MACSTR
" -- ignoring",
1304 drv
->associated
= 0;
1305 os_memset(&event
, 0, sizeof(event
));
1307 /* Note: Same offset for Reason Code in both frame subtypes */
1308 if (len
>= 24 + sizeof(mgmt
->u
.deauth
))
1309 reason_code
= le_to_host16(mgmt
->u
.deauth
.reason_code
);
1311 if (type
== EVENT_DISASSOC
) {
1312 event
.disassoc_info
.addr
= bssid
;
1313 event
.disassoc_info
.reason_code
= reason_code
;
1314 if (frame
+ len
> mgmt
->u
.disassoc
.variable
) {
1315 event
.disassoc_info
.ie
= mgmt
->u
.disassoc
.variable
;
1316 event
.disassoc_info
.ie_len
= frame
+ len
-
1317 mgmt
->u
.disassoc
.variable
;
1320 event
.deauth_info
.addr
= bssid
;
1321 event
.deauth_info
.reason_code
= reason_code
;
1322 if (frame
+ len
> mgmt
->u
.deauth
.variable
) {
1323 event
.deauth_info
.ie
= mgmt
->u
.deauth
.variable
;
1324 event
.deauth_info
.ie_len
= frame
+ len
-
1325 mgmt
->u
.deauth
.variable
;
1329 wpa_supplicant_event(drv
->ctx
, type
, &event
);
1333 static void mlme_event_unprot_disconnect(struct wpa_driver_nl80211_data
*drv
,
1334 enum wpa_event_type type
,
1335 const u8
*frame
, size_t len
)
1337 const struct ieee80211_mgmt
*mgmt
;
1338 union wpa_event_data event
;
1339 u16 reason_code
= 0;
1344 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1346 os_memset(&event
, 0, sizeof(event
));
1347 /* Note: Same offset for Reason Code in both frame subtypes */
1348 if (len
>= 24 + sizeof(mgmt
->u
.deauth
))
1349 reason_code
= le_to_host16(mgmt
->u
.deauth
.reason_code
);
1351 if (type
== EVENT_UNPROT_DISASSOC
) {
1352 event
.unprot_disassoc
.sa
= mgmt
->sa
;
1353 event
.unprot_disassoc
.da
= mgmt
->da
;
1354 event
.unprot_disassoc
.reason_code
= reason_code
;
1356 event
.unprot_deauth
.sa
= mgmt
->sa
;
1357 event
.unprot_deauth
.da
= mgmt
->da
;
1358 event
.unprot_deauth
.reason_code
= reason_code
;
1361 wpa_supplicant_event(drv
->ctx
, type
, &event
);
1365 static void mlme_event(struct wpa_driver_nl80211_data
*drv
,
1366 enum nl80211_commands cmd
, struct nlattr
*frame
,
1367 struct nlattr
*addr
, struct nlattr
*timed_out
,
1368 struct nlattr
*freq
, struct nlattr
*ack
,
1369 struct nlattr
*cookie
)
1371 if (timed_out
&& addr
) {
1372 mlme_timeout_event(drv
, cmd
, addr
);
1376 if (frame
== NULL
) {
1377 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d without frame "
1382 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d", cmd
);
1383 wpa_hexdump(MSG_MSGDUMP
, "nl80211: MLME event frame",
1384 nla_data(frame
), nla_len(frame
));
1387 case NL80211_CMD_AUTHENTICATE
:
1388 mlme_event_auth(drv
, nla_data(frame
), nla_len(frame
));
1390 case NL80211_CMD_ASSOCIATE
:
1391 mlme_event_assoc(drv
, nla_data(frame
), nla_len(frame
));
1393 case NL80211_CMD_DEAUTHENTICATE
:
1394 mlme_event_deauth_disassoc(drv
, EVENT_DEAUTH
,
1395 nla_data(frame
), nla_len(frame
));
1397 case NL80211_CMD_DISASSOCIATE
:
1398 mlme_event_deauth_disassoc(drv
, EVENT_DISASSOC
,
1399 nla_data(frame
), nla_len(frame
));
1401 case NL80211_CMD_FRAME
:
1402 mlme_event_mgmt(drv
, freq
, nla_data(frame
), nla_len(frame
));
1404 case NL80211_CMD_FRAME_TX_STATUS
:
1405 mlme_event_mgmt_tx_status(drv
, cookie
, nla_data(frame
),
1406 nla_len(frame
), ack
);
1408 case NL80211_CMD_UNPROT_DEAUTHENTICATE
:
1409 mlme_event_unprot_disconnect(drv
, EVENT_UNPROT_DEAUTH
,
1410 nla_data(frame
), nla_len(frame
));
1412 case NL80211_CMD_UNPROT_DISASSOCIATE
:
1413 mlme_event_unprot_disconnect(drv
, EVENT_UNPROT_DISASSOC
,
1414 nla_data(frame
), nla_len(frame
));
1422 static void mlme_event_michael_mic_failure(struct wpa_driver_nl80211_data
*drv
,
1423 struct nlattr
*tb
[])
1425 union wpa_event_data data
;
1427 wpa_printf(MSG_DEBUG
, "nl80211: MLME event Michael MIC failure");
1428 os_memset(&data
, 0, sizeof(data
));
1429 if (tb
[NL80211_ATTR_MAC
]) {
1430 wpa_hexdump(MSG_DEBUG
, "nl80211: Source MAC address",
1431 nla_data(tb
[NL80211_ATTR_MAC
]),
1432 nla_len(tb
[NL80211_ATTR_MAC
]));
1433 data
.michael_mic_failure
.src
= nla_data(tb
[NL80211_ATTR_MAC
]);
1435 if (tb
[NL80211_ATTR_KEY_SEQ
]) {
1436 wpa_hexdump(MSG_DEBUG
, "nl80211: TSC",
1437 nla_data(tb
[NL80211_ATTR_KEY_SEQ
]),
1438 nla_len(tb
[NL80211_ATTR_KEY_SEQ
]));
1440 if (tb
[NL80211_ATTR_KEY_TYPE
]) {
1441 enum nl80211_key_type key_type
=
1442 nla_get_u32(tb
[NL80211_ATTR_KEY_TYPE
]);
1443 wpa_printf(MSG_DEBUG
, "nl80211: Key Type %d", key_type
);
1444 if (key_type
== NL80211_KEYTYPE_PAIRWISE
)
1445 data
.michael_mic_failure
.unicast
= 1;
1447 data
.michael_mic_failure
.unicast
= 1;
1449 if (tb
[NL80211_ATTR_KEY_IDX
]) {
1450 u8 key_id
= nla_get_u8(tb
[NL80211_ATTR_KEY_IDX
]);
1451 wpa_printf(MSG_DEBUG
, "nl80211: Key Id %d", key_id
);
1454 wpa_supplicant_event(drv
->ctx
, EVENT_MICHAEL_MIC_FAILURE
, &data
);
1458 static void mlme_event_join_ibss(struct wpa_driver_nl80211_data
*drv
,
1459 struct nlattr
*tb
[])
1461 if (tb
[NL80211_ATTR_MAC
] == NULL
) {
1462 wpa_printf(MSG_DEBUG
, "nl80211: No address in IBSS joined "
1466 os_memcpy(drv
->bssid
, nla_data(tb
[NL80211_ATTR_MAC
]), ETH_ALEN
);
1467 drv
->associated
= 1;
1468 wpa_printf(MSG_DEBUG
, "nl80211: IBSS " MACSTR
" joined",
1469 MAC2STR(drv
->bssid
));
1471 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, NULL
);
1475 static void mlme_event_remain_on_channel(struct wpa_driver_nl80211_data
*drv
,
1476 int cancel_event
, struct nlattr
*tb
[])
1478 unsigned int freq
, chan_type
, duration
;
1479 union wpa_event_data data
;
1482 if (tb
[NL80211_ATTR_WIPHY_FREQ
])
1483 freq
= nla_get_u32(tb
[NL80211_ATTR_WIPHY_FREQ
]);
1487 if (tb
[NL80211_ATTR_WIPHY_CHANNEL_TYPE
])
1488 chan_type
= nla_get_u32(tb
[NL80211_ATTR_WIPHY_CHANNEL_TYPE
]);
1492 if (tb
[NL80211_ATTR_DURATION
])
1493 duration
= nla_get_u32(tb
[NL80211_ATTR_DURATION
]);
1497 if (tb
[NL80211_ATTR_COOKIE
])
1498 cookie
= nla_get_u64(tb
[NL80211_ATTR_COOKIE
]);
1502 wpa_printf(MSG_DEBUG
, "nl80211: Remain-on-channel event (cancel=%d "
1503 "freq=%u channel_type=%u duration=%u cookie=0x%llx (%s))",
1504 cancel_event
, freq
, chan_type
, duration
,
1505 (long long unsigned int) cookie
,
1506 cookie
== drv
->remain_on_chan_cookie
? "match" : "unknown");
1508 if (cookie
!= drv
->remain_on_chan_cookie
)
1509 return; /* not for us */
1512 drv
->pending_remain_on_chan
= 0;
1514 os_memset(&data
, 0, sizeof(data
));
1515 data
.remain_on_channel
.freq
= freq
;
1516 data
.remain_on_channel
.duration
= duration
;
1517 wpa_supplicant_event(drv
->ctx
, cancel_event
?
1518 EVENT_CANCEL_REMAIN_ON_CHANNEL
:
1519 EVENT_REMAIN_ON_CHANNEL
, &data
);
1523 static void send_scan_event(struct wpa_driver_nl80211_data
*drv
, int aborted
,
1524 struct nlattr
*tb
[])
1526 union wpa_event_data event
;
1529 struct scan_info
*info
;
1530 #define MAX_REPORT_FREQS 50
1531 int freqs
[MAX_REPORT_FREQS
];
1534 if (drv
->scan_for_auth
) {
1535 drv
->scan_for_auth
= 0;
1536 wpa_printf(MSG_DEBUG
, "nl80211: Scan results for missing "
1537 "cfg80211 BSS entry");
1538 wpa_driver_nl80211_authenticate_retry(drv
);
1542 os_memset(&event
, 0, sizeof(event
));
1543 info
= &event
.scan_info
;
1544 info
->aborted
= aborted
;
1546 if (tb
[NL80211_ATTR_SCAN_SSIDS
]) {
1547 nla_for_each_nested(nl
, tb
[NL80211_ATTR_SCAN_SSIDS
], rem
) {
1548 struct wpa_driver_scan_ssid
*s
=
1549 &info
->ssids
[info
->num_ssids
];
1550 s
->ssid
= nla_data(nl
);
1551 s
->ssid_len
= nla_len(nl
);
1553 if (info
->num_ssids
== WPAS_MAX_SCAN_SSIDS
)
1557 if (tb
[NL80211_ATTR_SCAN_FREQUENCIES
]) {
1558 nla_for_each_nested(nl
, tb
[NL80211_ATTR_SCAN_FREQUENCIES
], rem
)
1560 freqs
[num_freqs
] = nla_get_u32(nl
);
1562 if (num_freqs
== MAX_REPORT_FREQS
- 1)
1565 info
->freqs
= freqs
;
1566 info
->num_freqs
= num_freqs
;
1568 wpa_supplicant_event(drv
->ctx
, EVENT_SCAN_RESULTS
, &event
);
1572 static int get_link_signal(struct nl_msg
*msg
, void *arg
)
1574 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1575 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1576 struct nlattr
*sinfo
[NL80211_STA_INFO_MAX
+ 1];
1577 static struct nla_policy policy
[NL80211_STA_INFO_MAX
+ 1] = {
1578 [NL80211_STA_INFO_SIGNAL
] = { .type
= NLA_U8
},
1580 struct nlattr
*rinfo
[NL80211_RATE_INFO_MAX
+ 1];
1581 static struct nla_policy rate_policy
[NL80211_RATE_INFO_MAX
+ 1] = {
1582 [NL80211_RATE_INFO_BITRATE
] = { .type
= NLA_U16
},
1583 [NL80211_RATE_INFO_MCS
] = { .type
= NLA_U8
},
1584 [NL80211_RATE_INFO_40_MHZ_WIDTH
] = { .type
= NLA_FLAG
},
1585 [NL80211_RATE_INFO_SHORT_GI
] = { .type
= NLA_FLAG
},
1587 struct wpa_signal_info
*sig_change
= arg
;
1589 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1590 genlmsg_attrlen(gnlh
, 0), NULL
);
1591 if (!tb
[NL80211_ATTR_STA_INFO
] ||
1592 nla_parse_nested(sinfo
, NL80211_STA_INFO_MAX
,
1593 tb
[NL80211_ATTR_STA_INFO
], policy
))
1595 if (!sinfo
[NL80211_STA_INFO_SIGNAL
])
1598 sig_change
->current_signal
=
1599 (s8
) nla_get_u8(sinfo
[NL80211_STA_INFO_SIGNAL
]);
1601 if (sinfo
[NL80211_STA_INFO_TX_BITRATE
]) {
1602 if (nla_parse_nested(rinfo
, NL80211_RATE_INFO_MAX
,
1603 sinfo
[NL80211_STA_INFO_TX_BITRATE
],
1605 sig_change
->current_txrate
= 0;
1607 if (rinfo
[NL80211_RATE_INFO_BITRATE
]) {
1608 sig_change
->current_txrate
=
1610 NL80211_RATE_INFO_BITRATE
]) * 100;
1619 static int nl80211_get_link_signal(struct wpa_driver_nl80211_data
*drv
,
1620 struct wpa_signal_info
*sig
)
1624 sig
->current_signal
= -9999;
1625 sig
->current_txrate
= 0;
1627 msg
= nlmsg_alloc();
1631 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_STATION
);
1633 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1634 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, drv
->bssid
);
1636 return send_and_recv_msgs(drv
, msg
, get_link_signal
, sig
);
1642 static int get_link_noise(struct nl_msg
*msg
, void *arg
)
1644 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1645 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1646 struct nlattr
*sinfo
[NL80211_SURVEY_INFO_MAX
+ 1];
1647 static struct nla_policy survey_policy
[NL80211_SURVEY_INFO_MAX
+ 1] = {
1648 [NL80211_SURVEY_INFO_FREQUENCY
] = { .type
= NLA_U32
},
1649 [NL80211_SURVEY_INFO_NOISE
] = { .type
= NLA_U8
},
1651 struct wpa_signal_info
*sig_change
= arg
;
1653 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1654 genlmsg_attrlen(gnlh
, 0), NULL
);
1656 if (!tb
[NL80211_ATTR_SURVEY_INFO
]) {
1657 wpa_printf(MSG_DEBUG
, "nl80211: survey data missing!");
1661 if (nla_parse_nested(sinfo
, NL80211_SURVEY_INFO_MAX
,
1662 tb
[NL80211_ATTR_SURVEY_INFO
],
1664 wpa_printf(MSG_DEBUG
, "nl80211: failed to parse nested "
1669 if (!sinfo
[NL80211_SURVEY_INFO_FREQUENCY
])
1672 if (nla_get_u32(sinfo
[NL80211_SURVEY_INFO_FREQUENCY
]) !=
1673 sig_change
->frequency
)
1676 if (!sinfo
[NL80211_SURVEY_INFO_NOISE
])
1679 sig_change
->current_noise
=
1680 (s8
) nla_get_u8(sinfo
[NL80211_SURVEY_INFO_NOISE
]);
1686 static int nl80211_get_link_noise(struct wpa_driver_nl80211_data
*drv
,
1687 struct wpa_signal_info
*sig_change
)
1691 sig_change
->current_noise
= 9999;
1692 sig_change
->frequency
= drv
->assoc_freq
;
1694 msg
= nlmsg_alloc();
1698 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SURVEY
);
1700 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1702 return send_and_recv_msgs(drv
, msg
, get_link_noise
, sig_change
);
1708 static int get_noise_for_scan_results(struct nl_msg
*msg
, void *arg
)
1710 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1711 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1712 struct nlattr
*sinfo
[NL80211_SURVEY_INFO_MAX
+ 1];
1713 static struct nla_policy survey_policy
[NL80211_SURVEY_INFO_MAX
+ 1] = {
1714 [NL80211_SURVEY_INFO_FREQUENCY
] = { .type
= NLA_U32
},
1715 [NL80211_SURVEY_INFO_NOISE
] = { .type
= NLA_U8
},
1717 struct wpa_scan_results
*scan_results
= arg
;
1718 struct wpa_scan_res
*scan_res
;
1721 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1722 genlmsg_attrlen(gnlh
, 0), NULL
);
1724 if (!tb
[NL80211_ATTR_SURVEY_INFO
]) {
1725 wpa_printf(MSG_DEBUG
, "nl80211: Survey data missing");
1729 if (nla_parse_nested(sinfo
, NL80211_SURVEY_INFO_MAX
,
1730 tb
[NL80211_ATTR_SURVEY_INFO
],
1732 wpa_printf(MSG_DEBUG
, "nl80211: Failed to parse nested "
1737 if (!sinfo
[NL80211_SURVEY_INFO_NOISE
])
1740 if (!sinfo
[NL80211_SURVEY_INFO_FREQUENCY
])
1743 for (i
= 0; i
< scan_results
->num
; ++i
) {
1744 scan_res
= scan_results
->res
[i
];
1747 if ((int) nla_get_u32(sinfo
[NL80211_SURVEY_INFO_FREQUENCY
]) !=
1750 if (!(scan_res
->flags
& WPA_SCAN_NOISE_INVALID
))
1752 scan_res
->noise
= (s8
)
1753 nla_get_u8(sinfo
[NL80211_SURVEY_INFO_NOISE
]);
1754 scan_res
->flags
&= ~WPA_SCAN_NOISE_INVALID
;
1761 static int nl80211_get_noise_for_scan_results(
1762 struct wpa_driver_nl80211_data
*drv
,
1763 struct wpa_scan_results
*scan_res
)
1767 msg
= nlmsg_alloc();
1771 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SURVEY
);
1773 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1775 return send_and_recv_msgs(drv
, msg
, get_noise_for_scan_results
,
1782 static void nl80211_cqm_event(struct wpa_driver_nl80211_data
*drv
,
1783 struct nlattr
*tb
[])
1785 static struct nla_policy cqm_policy
[NL80211_ATTR_CQM_MAX
+ 1] = {
1786 [NL80211_ATTR_CQM_RSSI_THOLD
] = { .type
= NLA_U32
},
1787 [NL80211_ATTR_CQM_RSSI_HYST
] = { .type
= NLA_U8
},
1788 [NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
] = { .type
= NLA_U32
},
1789 [NL80211_ATTR_CQM_PKT_LOSS_EVENT
] = { .type
= NLA_U32
},
1791 struct nlattr
*cqm
[NL80211_ATTR_CQM_MAX
+ 1];
1792 enum nl80211_cqm_rssi_threshold_event event
;
1793 union wpa_event_data ed
;
1794 struct wpa_signal_info sig
;
1797 if (tb
[NL80211_ATTR_CQM
] == NULL
||
1798 nla_parse_nested(cqm
, NL80211_ATTR_CQM_MAX
, tb
[NL80211_ATTR_CQM
],
1800 wpa_printf(MSG_DEBUG
, "nl80211: Ignore invalid CQM event");
1804 os_memset(&ed
, 0, sizeof(ed
));
1806 if (cqm
[NL80211_ATTR_CQM_PKT_LOSS_EVENT
]) {
1807 if (!tb
[NL80211_ATTR_MAC
])
1809 os_memcpy(ed
.low_ack
.addr
, nla_data(tb
[NL80211_ATTR_MAC
]),
1811 wpa_supplicant_event(drv
->ctx
, EVENT_STATION_LOW_ACK
, &ed
);
1815 if (cqm
[NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
] == NULL
)
1817 event
= nla_get_u32(cqm
[NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
]);
1819 if (event
== NL80211_CQM_RSSI_THRESHOLD_EVENT_HIGH
) {
1820 wpa_printf(MSG_DEBUG
, "nl80211: Connection quality monitor "
1821 "event: RSSI high");
1822 ed
.signal_change
.above_threshold
= 1;
1823 } else if (event
== NL80211_CQM_RSSI_THRESHOLD_EVENT_LOW
) {
1824 wpa_printf(MSG_DEBUG
, "nl80211: Connection quality monitor "
1826 ed
.signal_change
.above_threshold
= 0;
1830 res
= nl80211_get_link_signal(drv
, &sig
);
1832 ed
.signal_change
.current_signal
= sig
.current_signal
;
1833 ed
.signal_change
.current_txrate
= sig
.current_txrate
;
1834 wpa_printf(MSG_DEBUG
, "nl80211: Signal: %d dBm txrate: %d",
1835 sig
.current_signal
, sig
.current_txrate
);
1838 res
= nl80211_get_link_noise(drv
, &sig
);
1840 ed
.signal_change
.current_noise
= sig
.current_noise
;
1841 wpa_printf(MSG_DEBUG
, "nl80211: Noise: %d dBm",
1845 wpa_supplicant_event(drv
->ctx
, EVENT_SIGNAL_CHANGE
, &ed
);
1849 static void nl80211_new_station_event(struct wpa_driver_nl80211_data
*drv
,
1853 union wpa_event_data data
;
1855 if (tb
[NL80211_ATTR_MAC
] == NULL
)
1857 addr
= nla_data(tb
[NL80211_ATTR_MAC
]);
1858 wpa_printf(MSG_DEBUG
, "nl80211: New station " MACSTR
, MAC2STR(addr
));
1860 if (is_ap_interface(drv
->nlmode
) && drv
->device_ap_sme
) {
1863 if (tb
[NL80211_ATTR_IE
]) {
1864 ies
= nla_data(tb
[NL80211_ATTR_IE
]);
1865 ies_len
= nla_len(tb
[NL80211_ATTR_IE
]);
1867 wpa_hexdump(MSG_DEBUG
, "nl80211: Assoc Req IEs", ies
, ies_len
);
1868 drv_event_assoc(drv
->ctx
, addr
, ies
, ies_len
, 0);
1872 if (drv
->nlmode
!= NL80211_IFTYPE_ADHOC
)
1875 os_memset(&data
, 0, sizeof(data
));
1876 os_memcpy(data
.ibss_rsn_start
.peer
, addr
, ETH_ALEN
);
1877 wpa_supplicant_event(drv
->ctx
, EVENT_IBSS_RSN_START
, &data
);
1881 static void nl80211_del_station_event(struct wpa_driver_nl80211_data
*drv
,
1885 union wpa_event_data data
;
1887 if (tb
[NL80211_ATTR_MAC
] == NULL
)
1889 addr
= nla_data(tb
[NL80211_ATTR_MAC
]);
1890 wpa_printf(MSG_DEBUG
, "nl80211: Delete station " MACSTR
,
1893 if (is_ap_interface(drv
->nlmode
) && drv
->device_ap_sme
) {
1894 drv_event_disassoc(drv
->ctx
, addr
);
1898 if (drv
->nlmode
!= NL80211_IFTYPE_ADHOC
)
1901 os_memset(&data
, 0, sizeof(data
));
1902 os_memcpy(data
.ibss_peer_lost
.peer
, addr
, ETH_ALEN
);
1903 wpa_supplicant_event(drv
->ctx
, EVENT_IBSS_PEER_LOST
, &data
);
1907 static void nl80211_rekey_offload_event(struct wpa_driver_nl80211_data
*drv
,
1910 struct nlattr
*rekey_info
[NUM_NL80211_REKEY_DATA
];
1911 static struct nla_policy rekey_policy
[NUM_NL80211_REKEY_DATA
] = {
1912 [NL80211_REKEY_DATA_KEK
] = {
1913 .minlen
= NL80211_KEK_LEN
,
1914 .maxlen
= NL80211_KEK_LEN
,
1916 [NL80211_REKEY_DATA_KCK
] = {
1917 .minlen
= NL80211_KCK_LEN
,
1918 .maxlen
= NL80211_KCK_LEN
,
1920 [NL80211_REKEY_DATA_REPLAY_CTR
] = {
1921 .minlen
= NL80211_REPLAY_CTR_LEN
,
1922 .maxlen
= NL80211_REPLAY_CTR_LEN
,
1925 union wpa_event_data data
;
1927 if (!tb
[NL80211_ATTR_MAC
])
1929 if (!tb
[NL80211_ATTR_REKEY_DATA
])
1931 if (nla_parse_nested(rekey_info
, MAX_NL80211_REKEY_DATA
,
1932 tb
[NL80211_ATTR_REKEY_DATA
], rekey_policy
))
1934 if (!rekey_info
[NL80211_REKEY_DATA_REPLAY_CTR
])
1937 os_memset(&data
, 0, sizeof(data
));
1938 data
.driver_gtk_rekey
.bssid
= nla_data(tb
[NL80211_ATTR_MAC
]);
1939 wpa_printf(MSG_DEBUG
, "nl80211: Rekey offload event for BSSID " MACSTR
,
1940 MAC2STR(data
.driver_gtk_rekey
.bssid
));
1941 data
.driver_gtk_rekey
.replay_ctr
=
1942 nla_data(rekey_info
[NL80211_REKEY_DATA_REPLAY_CTR
]);
1943 wpa_hexdump(MSG_DEBUG
, "nl80211: Rekey offload - Replay Counter",
1944 data
.driver_gtk_rekey
.replay_ctr
, NL80211_REPLAY_CTR_LEN
);
1945 wpa_supplicant_event(drv
->ctx
, EVENT_DRIVER_GTK_REKEY
, &data
);
1949 static void nl80211_pmksa_candidate_event(struct wpa_driver_nl80211_data
*drv
,
1952 struct nlattr
*cand
[NUM_NL80211_PMKSA_CANDIDATE
];
1953 static struct nla_policy cand_policy
[NUM_NL80211_PMKSA_CANDIDATE
] = {
1954 [NL80211_PMKSA_CANDIDATE_INDEX
] = { .type
= NLA_U32
},
1955 [NL80211_PMKSA_CANDIDATE_BSSID
] = {
1959 [NL80211_PMKSA_CANDIDATE_PREAUTH
] = { .type
= NLA_FLAG
},
1961 union wpa_event_data data
;
1963 if (!tb
[NL80211_ATTR_PMKSA_CANDIDATE
])
1965 if (nla_parse_nested(cand
, MAX_NL80211_PMKSA_CANDIDATE
,
1966 tb
[NL80211_ATTR_PMKSA_CANDIDATE
], cand_policy
))
1968 if (!cand
[NL80211_PMKSA_CANDIDATE_INDEX
] ||
1969 !cand
[NL80211_PMKSA_CANDIDATE_BSSID
])
1972 os_memset(&data
, 0, sizeof(data
));
1973 os_memcpy(data
.pmkid_candidate
.bssid
,
1974 nla_data(cand
[NL80211_PMKSA_CANDIDATE_BSSID
]), ETH_ALEN
);
1975 data
.pmkid_candidate
.index
=
1976 nla_get_u32(cand
[NL80211_PMKSA_CANDIDATE_INDEX
]);
1977 data
.pmkid_candidate
.preauth
=
1978 cand
[NL80211_PMKSA_CANDIDATE_PREAUTH
] != NULL
;
1979 wpa_supplicant_event(drv
->ctx
, EVENT_PMKID_CANDIDATE
, &data
);
1983 static void nl80211_client_probe_event(struct wpa_driver_nl80211_data
*drv
,
1986 union wpa_event_data data
;
1988 if (!tb
[NL80211_ATTR_MAC
] || !tb
[NL80211_ATTR_ACK
])
1991 os_memset(&data
, 0, sizeof(data
));
1992 os_memcpy(data
.client_poll
.addr
,
1993 nla_data(tb
[NL80211_ATTR_MAC
]), ETH_ALEN
);
1995 wpa_supplicant_event(drv
->ctx
, EVENT_DRIVER_CLIENT_POLL_OK
, &data
);
1999 static void nl80211_spurious_frame(struct i802_bss
*bss
, struct nlattr
**tb
,
2002 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2003 union wpa_event_data event
;
2005 if (!tb
[NL80211_ATTR_MAC
])
2008 os_memset(&event
, 0, sizeof(event
));
2009 event
.rx_from_unknown
.bssid
= bss
->addr
;
2010 event
.rx_from_unknown
.addr
= nla_data(tb
[NL80211_ATTR_MAC
]);
2011 event
.rx_from_unknown
.wds
= wds
;
2013 wpa_supplicant_event(drv
->ctx
, EVENT_RX_FROM_UNKNOWN
, &event
);
2017 static void do_process_drv_event(struct wpa_driver_nl80211_data
*drv
,
2018 int cmd
, struct nlattr
**tb
)
2020 if (drv
->ap_scan_as_station
!= NL80211_IFTYPE_UNSPECIFIED
&&
2021 (cmd
== NL80211_CMD_NEW_SCAN_RESULTS
||
2022 cmd
== NL80211_CMD_SCAN_ABORTED
)) {
2023 wpa_driver_nl80211_set_mode(&drv
->first_bss
,
2024 drv
->ap_scan_as_station
);
2025 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
2029 case NL80211_CMD_TRIGGER_SCAN
:
2030 wpa_printf(MSG_DEBUG
, "nl80211: Scan trigger");
2032 case NL80211_CMD_START_SCHED_SCAN
:
2033 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan started");
2035 case NL80211_CMD_SCHED_SCAN_STOPPED
:
2036 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stopped");
2037 wpa_supplicant_event(drv
->ctx
, EVENT_SCHED_SCAN_STOPPED
, NULL
);
2039 case NL80211_CMD_NEW_SCAN_RESULTS
:
2040 wpa_printf(MSG_DEBUG
, "nl80211: New scan results available");
2041 drv
->scan_complete_events
= 1;
2042 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
,
2044 send_scan_event(drv
, 0, tb
);
2046 case NL80211_CMD_SCHED_SCAN_RESULTS
:
2047 wpa_printf(MSG_DEBUG
,
2048 "nl80211: New sched scan results available");
2049 send_scan_event(drv
, 0, tb
);
2051 case NL80211_CMD_SCAN_ABORTED
:
2052 wpa_printf(MSG_DEBUG
, "nl80211: Scan aborted");
2054 * Need to indicate that scan results are available in order
2055 * not to make wpa_supplicant stop its scanning.
2057 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
,
2059 send_scan_event(drv
, 1, tb
);
2061 case NL80211_CMD_AUTHENTICATE
:
2062 case NL80211_CMD_ASSOCIATE
:
2063 case NL80211_CMD_DEAUTHENTICATE
:
2064 case NL80211_CMD_DISASSOCIATE
:
2065 case NL80211_CMD_FRAME_TX_STATUS
:
2066 case NL80211_CMD_UNPROT_DEAUTHENTICATE
:
2067 case NL80211_CMD_UNPROT_DISASSOCIATE
:
2068 mlme_event(drv
, cmd
, tb
[NL80211_ATTR_FRAME
],
2069 tb
[NL80211_ATTR_MAC
], tb
[NL80211_ATTR_TIMED_OUT
],
2070 tb
[NL80211_ATTR_WIPHY_FREQ
], tb
[NL80211_ATTR_ACK
],
2071 tb
[NL80211_ATTR_COOKIE
]);
2073 case NL80211_CMD_CONNECT
:
2074 case NL80211_CMD_ROAM
:
2075 mlme_event_connect(drv
, cmd
,
2076 tb
[NL80211_ATTR_STATUS_CODE
],
2077 tb
[NL80211_ATTR_MAC
],
2078 tb
[NL80211_ATTR_REQ_IE
],
2079 tb
[NL80211_ATTR_RESP_IE
]);
2081 case NL80211_CMD_DISCONNECT
:
2082 mlme_event_disconnect(drv
, tb
[NL80211_ATTR_REASON_CODE
],
2083 tb
[NL80211_ATTR_MAC
]);
2085 case NL80211_CMD_MICHAEL_MIC_FAILURE
:
2086 mlme_event_michael_mic_failure(drv
, tb
);
2088 case NL80211_CMD_JOIN_IBSS
:
2089 mlme_event_join_ibss(drv
, tb
);
2091 case NL80211_CMD_REMAIN_ON_CHANNEL
:
2092 mlme_event_remain_on_channel(drv
, 0, tb
);
2094 case NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL
:
2095 mlme_event_remain_on_channel(drv
, 1, tb
);
2097 case NL80211_CMD_NOTIFY_CQM
:
2098 nl80211_cqm_event(drv
, tb
);
2100 case NL80211_CMD_REG_CHANGE
:
2101 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory domain change");
2102 wpa_supplicant_event(drv
->ctx
, EVENT_CHANNEL_LIST_CHANGED
,
2105 case NL80211_CMD_REG_BEACON_HINT
:
2106 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory beacon hint");
2107 wpa_supplicant_event(drv
->ctx
, EVENT_CHANNEL_LIST_CHANGED
,
2110 case NL80211_CMD_NEW_STATION
:
2111 nl80211_new_station_event(drv
, tb
);
2113 case NL80211_CMD_DEL_STATION
:
2114 nl80211_del_station_event(drv
, tb
);
2116 case NL80211_CMD_SET_REKEY_OFFLOAD
:
2117 nl80211_rekey_offload_event(drv
, tb
);
2119 case NL80211_CMD_PMKSA_CANDIDATE
:
2120 nl80211_pmksa_candidate_event(drv
, tb
);
2122 case NL80211_CMD_PROBE_CLIENT
:
2123 nl80211_client_probe_event(drv
, tb
);
2126 wpa_printf(MSG_DEBUG
, "nl80211: Ignored unknown event "
2133 static int process_drv_event(struct nl_msg
*msg
, void *arg
)
2135 struct wpa_driver_nl80211_data
*drv
= arg
;
2136 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
2137 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
2139 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
2140 genlmsg_attrlen(gnlh
, 0), NULL
);
2142 if (tb
[NL80211_ATTR_IFINDEX
]) {
2143 int ifindex
= nla_get_u32(tb
[NL80211_ATTR_IFINDEX
]);
2144 if (ifindex
!= drv
->ifindex
&& !have_ifidx(drv
, ifindex
)) {
2145 wpa_printf(MSG_DEBUG
, "nl80211: Ignored event (cmd=%d)"
2146 " for foreign interface (ifindex %d)",
2147 gnlh
->cmd
, ifindex
);
2152 do_process_drv_event(drv
, gnlh
->cmd
, tb
);
2157 static int process_global_event(struct nl_msg
*msg
, void *arg
)
2159 struct nl80211_global
*global
= arg
;
2160 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
2161 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
2162 struct wpa_driver_nl80211_data
*drv
;
2165 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
2166 genlmsg_attrlen(gnlh
, 0), NULL
);
2168 if (tb
[NL80211_ATTR_IFINDEX
])
2169 ifidx
= nla_get_u32(tb
[NL80211_ATTR_IFINDEX
]);
2171 dl_list_for_each(drv
, &global
->interfaces
,
2172 struct wpa_driver_nl80211_data
, list
) {
2173 if (ifidx
== -1 || ifidx
== drv
->ifindex
||
2174 have_ifidx(drv
, ifidx
))
2175 do_process_drv_event(drv
, gnlh
->cmd
, tb
);
2182 static int process_bss_event(struct nl_msg
*msg
, void *arg
)
2184 struct i802_bss
*bss
= arg
;
2185 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
2186 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
2188 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
2189 genlmsg_attrlen(gnlh
, 0), NULL
);
2191 switch (gnlh
->cmd
) {
2192 case NL80211_CMD_FRAME
:
2193 case NL80211_CMD_FRAME_TX_STATUS
:
2194 mlme_event(bss
->drv
, gnlh
->cmd
, tb
[NL80211_ATTR_FRAME
],
2195 tb
[NL80211_ATTR_MAC
], tb
[NL80211_ATTR_TIMED_OUT
],
2196 tb
[NL80211_ATTR_WIPHY_FREQ
], tb
[NL80211_ATTR_ACK
],
2197 tb
[NL80211_ATTR_COOKIE
]);
2199 case NL80211_CMD_UNEXPECTED_FRAME
:
2200 nl80211_spurious_frame(bss
, tb
, 0);
2202 case NL80211_CMD_UNEXPECTED_4ADDR_FRAME
:
2203 nl80211_spurious_frame(bss
, tb
, 1);
2206 wpa_printf(MSG_DEBUG
, "nl80211: Ignored unknown event "
2207 "(cmd=%d)", gnlh
->cmd
);
2215 static void wpa_driver_nl80211_event_receive(int sock
, void *eloop_ctx
,
2218 struct nl_cb
*cb
= eloop_ctx
;
2220 wpa_printf(MSG_DEBUG
, "nl80211: Event message available");
2222 nl_recvmsgs(handle
, cb
);
2227 * wpa_driver_nl80211_set_country - ask nl80211 to set the regulatory domain
2228 * @priv: driver_nl80211 private data
2229 * @alpha2_arg: country to which to switch to
2230 * Returns: 0 on success, -1 on failure
2232 * This asks nl80211 to set the regulatory domain for given
2233 * country ISO / IEC alpha2.
2235 static int wpa_driver_nl80211_set_country(void *priv
, const char *alpha2_arg
)
2237 struct i802_bss
*bss
= priv
;
2238 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2242 msg
= nlmsg_alloc();
2246 alpha2
[0] = alpha2_arg
[0];
2247 alpha2
[1] = alpha2_arg
[1];
2250 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REQ_SET_REG
);
2252 NLA_PUT_STRING(msg
, NL80211_ATTR_REG_ALPHA2
, alpha2
);
2253 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
))
2261 struct wiphy_info_data
{
2262 struct wpa_driver_capa
*capa
;
2264 unsigned int error
:1;
2265 unsigned int device_ap_sme
:1;
2266 unsigned int poll_command_supported
:1;
2267 unsigned int data_tx_status
:1;
2271 static unsigned int probe_resp_offload_support(int supp_protocols
)
2273 unsigned int prot
= 0;
2275 if (supp_protocols
& NL80211_PROBE_RESP_OFFLOAD_SUPPORT_WPS
)
2276 prot
|= WPA_DRIVER_PROBE_RESP_OFFLOAD_WPS
;
2277 if (supp_protocols
& NL80211_PROBE_RESP_OFFLOAD_SUPPORT_WPS2
)
2278 prot
|= WPA_DRIVER_PROBE_RESP_OFFLOAD_WPS2
;
2279 if (supp_protocols
& NL80211_PROBE_RESP_OFFLOAD_SUPPORT_P2P
)
2280 prot
|= WPA_DRIVER_PROBE_RESP_OFFLOAD_P2P
;
2281 if (supp_protocols
& NL80211_PROBE_RESP_OFFLOAD_SUPPORT_80211U
)
2282 prot
|= WPA_DRIVER_PROBE_RESP_OFFLOAD_INTERWORKING
;
2288 static int wiphy_info_handler(struct nl_msg
*msg
, void *arg
)
2290 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
2291 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
2292 struct wiphy_info_data
*info
= arg
;
2293 int p2p_go_supported
= 0, p2p_client_supported
= 0;
2294 int p2p_concurrent
= 0;
2295 int auth_supported
= 0, connect_supported
= 0;
2296 struct wpa_driver_capa
*capa
= info
->capa
;
2297 static struct nla_policy
2298 iface_combination_policy
[NUM_NL80211_IFACE_COMB
] = {
2299 [NL80211_IFACE_COMB_LIMITS
] = { .type
= NLA_NESTED
},
2300 [NL80211_IFACE_COMB_MAXNUM
] = { .type
= NLA_U32
},
2301 [NL80211_IFACE_COMB_STA_AP_BI_MATCH
] = { .type
= NLA_FLAG
},
2302 [NL80211_IFACE_COMB_NUM_CHANNELS
] = { .type
= NLA_U32
},
2304 iface_limit_policy
[NUM_NL80211_IFACE_LIMIT
] = {
2305 [NL80211_IFACE_LIMIT_TYPES
] = { .type
= NLA_NESTED
},
2306 [NL80211_IFACE_LIMIT_MAX
] = { .type
= NLA_U32
},
2309 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
2310 genlmsg_attrlen(gnlh
, 0), NULL
);
2312 if (tb
[NL80211_ATTR_MAX_NUM_SCAN_SSIDS
])
2313 capa
->max_scan_ssids
=
2314 nla_get_u8(tb
[NL80211_ATTR_MAX_NUM_SCAN_SSIDS
]);
2316 if (tb
[NL80211_ATTR_MAX_NUM_SCHED_SCAN_SSIDS
])
2317 capa
->max_sched_scan_ssids
=
2318 nla_get_u8(tb
[NL80211_ATTR_MAX_NUM_SCHED_SCAN_SSIDS
]);
2320 if (tb
[NL80211_ATTR_MAX_MATCH_SETS
])
2321 capa
->max_match_sets
=
2322 nla_get_u8(tb
[NL80211_ATTR_MAX_MATCH_SETS
]);
2324 if (tb
[NL80211_ATTR_SUPPORTED_IFTYPES
]) {
2325 struct nlattr
*nl_mode
;
2327 nla_for_each_nested(nl_mode
,
2328 tb
[NL80211_ATTR_SUPPORTED_IFTYPES
], i
) {
2329 switch (nla_type(nl_mode
)) {
2330 case NL80211_IFTYPE_AP
:
2331 capa
->flags
|= WPA_DRIVER_FLAGS_AP
;
2333 case NL80211_IFTYPE_P2P_GO
:
2334 p2p_go_supported
= 1;
2336 case NL80211_IFTYPE_P2P_CLIENT
:
2337 p2p_client_supported
= 1;
2343 if (tb
[NL80211_ATTR_INTERFACE_COMBINATIONS
]) {
2344 struct nlattr
*nl_combi
;
2347 nla_for_each_nested(nl_combi
,
2348 tb
[NL80211_ATTR_INTERFACE_COMBINATIONS
],
2350 struct nlattr
*tb_comb
[NUM_NL80211_IFACE_COMB
];
2351 struct nlattr
*tb_limit
[NUM_NL80211_IFACE_LIMIT
];
2352 struct nlattr
*nl_limit
, *nl_mode
;
2353 int err
, rem_limit
, rem_mode
;
2354 int combination_has_p2p
= 0, combination_has_mgd
= 0;
2356 err
= nla_parse_nested(tb_comb
, MAX_NL80211_IFACE_COMB
,
2358 iface_combination_policy
);
2359 if (err
|| !tb_comb
[NL80211_IFACE_COMB_LIMITS
] ||
2360 !tb_comb
[NL80211_IFACE_COMB_MAXNUM
] ||
2361 !tb_comb
[NL80211_IFACE_COMB_NUM_CHANNELS
])
2362 goto broken_combination
;
2364 nla_for_each_nested(nl_limit
,
2365 tb_comb
[NL80211_IFACE_COMB_LIMITS
],
2367 err
= nla_parse_nested(tb_limit
,
2368 MAX_NL80211_IFACE_LIMIT
,
2370 iface_limit_policy
);
2372 !tb_limit
[NL80211_IFACE_LIMIT_TYPES
])
2373 goto broken_combination
;
2375 nla_for_each_nested(
2377 tb_limit
[NL80211_IFACE_LIMIT_TYPES
],
2379 int ift
= nla_type(nl_mode
);
2380 if (ift
== NL80211_IFTYPE_P2P_GO
||
2381 ift
== NL80211_IFTYPE_P2P_CLIENT
)
2382 combination_has_p2p
= 1;
2383 if (ift
== NL80211_IFTYPE_STATION
)
2384 combination_has_mgd
= 1;
2386 if (combination_has_p2p
&& combination_has_mgd
)
2390 if (combination_has_p2p
&& combination_has_mgd
) {
2400 if (tb
[NL80211_ATTR_SUPPORTED_COMMANDS
]) {
2401 struct nlattr
*nl_cmd
;
2404 nla_for_each_nested(nl_cmd
,
2405 tb
[NL80211_ATTR_SUPPORTED_COMMANDS
], i
) {
2406 switch (nla_get_u32(nl_cmd
)) {
2407 case NL80211_CMD_AUTHENTICATE
:
2410 case NL80211_CMD_CONNECT
:
2411 connect_supported
= 1;
2413 case NL80211_CMD_START_SCHED_SCAN
:
2414 capa
->sched_scan_supported
= 1;
2416 case NL80211_CMD_PROBE_CLIENT
:
2417 info
->poll_command_supported
= 1;
2423 if (tb
[NL80211_ATTR_OFFCHANNEL_TX_OK
]) {
2424 wpa_printf(MSG_DEBUG
, "nl80211: Using driver-based "
2426 capa
->flags
|= WPA_DRIVER_FLAGS_OFFCHANNEL_TX
;
2429 if (tb
[NL80211_ATTR_ROAM_SUPPORT
]) {
2430 wpa_printf(MSG_DEBUG
, "nl80211: Using driver-based roaming");
2431 capa
->flags
|= WPA_DRIVER_FLAGS_BSS_SELECTION
;
2434 /* default to 5000 since early versions of mac80211 don't set it */
2435 capa
->max_remain_on_chan
= 5000;
2437 if (tb
[NL80211_ATTR_MAX_REMAIN_ON_CHANNEL_DURATION
])
2438 capa
->max_remain_on_chan
=
2439 nla_get_u32(tb
[NL80211_ATTR_MAX_REMAIN_ON_CHANNEL_DURATION
]);
2442 capa
->flags
|= WPA_DRIVER_FLAGS_SME
;
2443 else if (!connect_supported
) {
2444 wpa_printf(MSG_INFO
, "nl80211: Driver does not support "
2445 "authentication/association or connect commands");
2449 if (p2p_go_supported
&& p2p_client_supported
)
2450 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_CAPABLE
;
2451 if (p2p_concurrent
) {
2452 wpa_printf(MSG_DEBUG
, "nl80211: Use separate P2P group "
2453 "interface (driver advertised support)");
2454 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_CONCURRENT
;
2455 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_MGMT_AND_NON_P2P
;
2458 if (tb
[NL80211_ATTR_TDLS_SUPPORT
]) {
2459 wpa_printf(MSG_DEBUG
, "nl80211: TDLS supported");
2460 capa
->flags
|= WPA_DRIVER_FLAGS_TDLS_SUPPORT
;
2462 if (tb
[NL80211_ATTR_TDLS_EXTERNAL_SETUP
]) {
2463 wpa_printf(MSG_DEBUG
, "nl80211: TDLS external setup");
2465 WPA_DRIVER_FLAGS_TDLS_EXTERNAL_SETUP
;
2469 if (tb
[NL80211_ATTR_DEVICE_AP_SME
])
2470 info
->device_ap_sme
= 1;
2472 if (tb
[NL80211_ATTR_FEATURE_FLAGS
]) {
2473 u32 flags
= nla_get_u32(tb
[NL80211_ATTR_FEATURE_FLAGS
]);
2475 if (flags
& NL80211_FEATURE_SK_TX_STATUS
)
2476 info
->data_tx_status
= 1;
2479 if (tb
[NL80211_ATTR_PROBE_RESP_OFFLOAD
]) {
2481 nla_get_u32(tb
[NL80211_ATTR_PROBE_RESP_OFFLOAD
]);
2482 wpa_printf(MSG_DEBUG
, "nl80211: Supports Probe Response "
2483 "offload in AP mode");
2484 capa
->flags
|= WPA_DRIVER_FLAGS_PROBE_RESP_OFFLOAD
;
2485 capa
->probe_resp_offloads
=
2486 probe_resp_offload_support(protocols
);
2493 static int wpa_driver_nl80211_get_info(struct wpa_driver_nl80211_data
*drv
,
2494 struct wiphy_info_data
*info
)
2498 os_memset(info
, 0, sizeof(*info
));
2499 info
->capa
= &drv
->capa
;
2501 msg
= nlmsg_alloc();
2505 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_WIPHY
);
2507 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->first_bss
.ifindex
);
2509 if (send_and_recv_msgs(drv
, msg
, wiphy_info_handler
, info
) == 0)
2518 static int wpa_driver_nl80211_capa(struct wpa_driver_nl80211_data
*drv
)
2520 struct wiphy_info_data info
;
2521 if (wpa_driver_nl80211_get_info(drv
, &info
))
2527 drv
->has_capability
= 1;
2528 /* For now, assume TKIP, CCMP, WPA, WPA2 are supported */
2529 drv
->capa
.key_mgmt
= WPA_DRIVER_CAPA_KEY_MGMT_WPA
|
2530 WPA_DRIVER_CAPA_KEY_MGMT_WPA_PSK
|
2531 WPA_DRIVER_CAPA_KEY_MGMT_WPA2
|
2532 WPA_DRIVER_CAPA_KEY_MGMT_WPA2_PSK
;
2533 drv
->capa
.enc
= WPA_DRIVER_CAPA_ENC_WEP40
|
2534 WPA_DRIVER_CAPA_ENC_WEP104
|
2535 WPA_DRIVER_CAPA_ENC_TKIP
|
2536 WPA_DRIVER_CAPA_ENC_CCMP
;
2537 drv
->capa
.auth
= WPA_DRIVER_AUTH_OPEN
|
2538 WPA_DRIVER_AUTH_SHARED
|
2539 WPA_DRIVER_AUTH_LEAP
;
2541 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_SANE_ERROR_CODES
;
2542 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_SET_KEYS_AFTER_ASSOC_DONE
;
2543 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_EAPOL_TX_STATUS
;
2544 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_DEAUTH_TX_STATUS
;
2546 drv
->device_ap_sme
= info
.device_ap_sme
;
2547 drv
->poll_command_supported
= info
.poll_command_supported
;
2548 drv
->data_tx_status
= info
.data_tx_status
;
2551 * If poll command is supported mac80211 is new enough to
2552 * have everything we need to not need monitor interfaces.
2554 drv
->use_monitor
= !info
.poll_command_supported
;
2557 * If we aren't going to use monitor interfaces, but the
2558 * driver doesn't support data TX status, we won't get TX
2559 * status for EAPOL frames.
2561 if (!drv
->use_monitor
&& !info
.data_tx_status
)
2562 drv
->capa
.flags
&= ~WPA_DRIVER_FLAGS_EAPOL_TX_STATUS
;
2568 static int wpa_driver_nl80211_init_nl_global(struct nl80211_global
*global
)
2572 global
->nl_cb
= nl_cb_alloc(NL_CB_DEFAULT
);
2573 if (global
->nl_cb
== NULL
) {
2574 wpa_printf(MSG_ERROR
, "nl80211: Failed to allocate netlink "
2579 global
->nl
= nl_create_handle(global
->nl_cb
, "nl");
2580 if (global
->nl
== NULL
)
2583 global
->nl80211_id
= genl_ctrl_resolve(global
->nl
, "nl80211");
2584 if (global
->nl80211_id
< 0) {
2585 wpa_printf(MSG_ERROR
, "nl80211: 'nl80211' generic netlink not "
2590 global
->nl_event
= nl_create_handle(global
->nl_cb
, "event");
2591 if (global
->nl_event
== NULL
)
2594 ret
= nl_get_multicast_id(global
, "nl80211", "scan");
2596 ret
= nl_socket_add_membership(global
->nl_event
, ret
);
2598 wpa_printf(MSG_ERROR
, "nl80211: Could not add multicast "
2599 "membership for scan events: %d (%s)",
2600 ret
, strerror(-ret
));
2604 ret
= nl_get_multicast_id(global
, "nl80211", "mlme");
2606 ret
= nl_socket_add_membership(global
->nl_event
, ret
);
2608 wpa_printf(MSG_ERROR
, "nl80211: Could not add multicast "
2609 "membership for mlme events: %d (%s)",
2610 ret
, strerror(-ret
));
2614 ret
= nl_get_multicast_id(global
, "nl80211", "regulatory");
2616 ret
= nl_socket_add_membership(global
->nl_event
, ret
);
2618 wpa_printf(MSG_DEBUG
, "nl80211: Could not add multicast "
2619 "membership for regulatory events: %d (%s)",
2620 ret
, strerror(-ret
));
2621 /* Continue without regulatory events */
2624 nl_cb_set(global
->nl_cb
, NL_CB_SEQ_CHECK
, NL_CB_CUSTOM
,
2625 no_seq_check
, NULL
);
2626 nl_cb_set(global
->nl_cb
, NL_CB_VALID
, NL_CB_CUSTOM
,
2627 process_global_event
, global
);
2629 eloop_register_read_sock(nl_socket_get_fd(global
->nl_event
),
2630 wpa_driver_nl80211_event_receive
,
2631 global
->nl_cb
, global
->nl_event
);
2636 nl_destroy_handles(&global
->nl_event
);
2637 nl_destroy_handles(&global
->nl
);
2638 nl_cb_put(global
->nl_cb
);
2639 global
->nl_cb
= NULL
;
2644 static int wpa_driver_nl80211_init_nl(struct wpa_driver_nl80211_data
*drv
)
2646 drv
->nl_cb
= nl_cb_alloc(NL_CB_DEFAULT
);
2648 wpa_printf(MSG_ERROR
, "nl80211: Failed to alloc cb struct");
2652 nl_cb_set(drv
->nl_cb
, NL_CB_SEQ_CHECK
, NL_CB_CUSTOM
,
2653 no_seq_check
, NULL
);
2654 nl_cb_set(drv
->nl_cb
, NL_CB_VALID
, NL_CB_CUSTOM
,
2655 process_drv_event
, drv
);
2661 static void wpa_driver_nl80211_rfkill_blocked(void *ctx
)
2663 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL blocked");
2665 * This may be for any interface; use ifdown event to disable
2671 static void wpa_driver_nl80211_rfkill_unblocked(void *ctx
)
2673 struct wpa_driver_nl80211_data
*drv
= ctx
;
2674 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL unblocked");
2675 if (linux_set_iface_flags(drv
->global
->ioctl_sock
,
2676 drv
->first_bss
.ifname
, 1)) {
2677 wpa_printf(MSG_DEBUG
, "nl80211: Could not set interface UP "
2678 "after rfkill unblock");
2681 /* rtnetlink ifup handler will report interface as enabled */
2685 static void nl80211_get_phy_name(struct wpa_driver_nl80211_data
*drv
)
2687 /* Find phy (radio) to which this interface belongs */
2691 drv
->phyname
[0] = '\0';
2692 snprintf(buf
, sizeof(buf
) - 1, "/sys/class/net/%s/phy80211/name",
2693 drv
->first_bss
.ifname
);
2694 f
= open(buf
, O_RDONLY
);
2696 wpa_printf(MSG_DEBUG
, "Could not open file %s: %s",
2697 buf
, strerror(errno
));
2701 rv
= read(f
, drv
->phyname
, sizeof(drv
->phyname
) - 1);
2704 wpa_printf(MSG_DEBUG
, "Could not read file %s: %s",
2705 buf
, strerror(errno
));
2709 drv
->phyname
[rv
] = '\0';
2710 pos
= os_strchr(drv
->phyname
, '\n');
2713 wpa_printf(MSG_DEBUG
, "nl80211: interface %s in phy %s",
2714 drv
->first_bss
.ifname
, drv
->phyname
);
2718 static void wpa_driver_nl80211_handle_eapol_tx_status(int sock
,
2722 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
2730 struct cmsghdr
*cmsg
;
2731 int res
, found_ee
= 0, found_wifi
= 0, acked
= 0;
2732 union wpa_event_data event
;
2734 memset(&msg
, 0, sizeof(msg
));
2735 msg
.msg_iov
= &entry
;
2737 entry
.iov_base
= data
;
2738 entry
.iov_len
= sizeof(data
);
2739 msg
.msg_control
= &control
;
2740 msg
.msg_controllen
= sizeof(control
);
2742 res
= recvmsg(sock
, &msg
, MSG_ERRQUEUE
);
2743 /* if error or not fitting 802.3 header, return */
2747 for (cmsg
= CMSG_FIRSTHDR(&msg
); cmsg
; cmsg
= CMSG_NXTHDR(&msg
, cmsg
))
2749 if (cmsg
->cmsg_level
== SOL_SOCKET
&&
2750 cmsg
->cmsg_type
== SCM_WIFI_STATUS
) {
2754 ack
= (void *)CMSG_DATA(cmsg
);
2758 if (cmsg
->cmsg_level
== SOL_PACKET
&&
2759 cmsg
->cmsg_type
== PACKET_TX_TIMESTAMP
) {
2760 struct sock_extended_err
*err
=
2761 (struct sock_extended_err
*)CMSG_DATA(cmsg
);
2763 if (err
->ee_origin
== SO_EE_ORIGIN_TXSTATUS
)
2768 if (!found_ee
|| !found_wifi
)
2771 memset(&event
, 0, sizeof(event
));
2772 event
.eapol_tx_status
.dst
= data
;
2773 event
.eapol_tx_status
.data
= data
+ 14;
2774 event
.eapol_tx_status
.data_len
= res
- 14;
2775 event
.eapol_tx_status
.ack
= acked
;
2776 wpa_supplicant_event(drv
->ctx
, EVENT_EAPOL_TX_STATUS
, &event
);
2780 static int nl80211_init_bss(struct i802_bss
*bss
)
2782 bss
->nl_cb
= nl_cb_alloc(NL_CB_DEFAULT
);
2786 nl_cb_set(bss
->nl_cb
, NL_CB_SEQ_CHECK
, NL_CB_CUSTOM
,
2787 no_seq_check
, NULL
);
2788 nl_cb_set(bss
->nl_cb
, NL_CB_VALID
, NL_CB_CUSTOM
,
2789 process_bss_event
, bss
);
2795 static void nl80211_destroy_bss(struct i802_bss
*bss
)
2797 nl_cb_put(bss
->nl_cb
);
2803 * wpa_driver_nl80211_init - Initialize nl80211 driver interface
2804 * @ctx: context to be used when calling wpa_supplicant functions,
2805 * e.g., wpa_supplicant_event()
2806 * @ifname: interface name, e.g., wlan0
2807 * @global_priv: private driver global data from global_init()
2808 * Returns: Pointer to private data, %NULL on failure
2810 static void * wpa_driver_nl80211_init(void *ctx
, const char *ifname
,
2813 struct wpa_driver_nl80211_data
*drv
;
2814 struct rfkill_config
*rcfg
;
2815 struct i802_bss
*bss
;
2817 if (global_priv
== NULL
)
2819 drv
= os_zalloc(sizeof(*drv
));
2822 drv
->global
= global_priv
;
2824 bss
= &drv
->first_bss
;
2826 os_strlcpy(bss
->ifname
, ifname
, sizeof(bss
->ifname
));
2827 drv
->monitor_ifidx
= -1;
2828 drv
->monitor_sock
= -1;
2829 drv
->eapol_tx_sock
= -1;
2830 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
2832 if (wpa_driver_nl80211_init_nl(drv
)) {
2837 if (nl80211_init_bss(bss
))
2840 nl80211_get_phy_name(drv
);
2842 rcfg
= os_zalloc(sizeof(*rcfg
));
2846 os_strlcpy(rcfg
->ifname
, ifname
, sizeof(rcfg
->ifname
));
2847 rcfg
->blocked_cb
= wpa_driver_nl80211_rfkill_blocked
;
2848 rcfg
->unblocked_cb
= wpa_driver_nl80211_rfkill_unblocked
;
2849 drv
->rfkill
= rfkill_init(rcfg
);
2850 if (drv
->rfkill
== NULL
) {
2851 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL status not available");
2855 if (wpa_driver_nl80211_finish_drv_init(drv
))
2858 drv
->eapol_tx_sock
= socket(PF_PACKET
, SOCK_DGRAM
, 0);
2859 if (drv
->eapol_tx_sock
< 0)
2862 if (drv
->data_tx_status
) {
2865 if (setsockopt(drv
->eapol_tx_sock
, SOL_SOCKET
, SO_WIFI_STATUS
,
2866 &enabled
, sizeof(enabled
)) < 0) {
2867 wpa_printf(MSG_DEBUG
,
2868 "nl80211: wifi status sockopt failed\n");
2869 drv
->data_tx_status
= 0;
2870 if (!drv
->use_monitor
)
2872 ~WPA_DRIVER_FLAGS_EAPOL_TX_STATUS
;
2874 eloop_register_read_sock(drv
->eapol_tx_sock
,
2875 wpa_driver_nl80211_handle_eapol_tx_status
,
2881 dl_list_add(&drv
->global
->interfaces
, &drv
->list
);
2882 drv
->in_interface_list
= 1;
2888 wpa_driver_nl80211_deinit(bss
);
2893 static int nl80211_register_frame(struct i802_bss
*bss
,
2894 struct nl_handle
*nl_handle
,
2895 u16 type
, const u8
*match
, size_t match_len
)
2897 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2901 msg
= nlmsg_alloc();
2905 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REGISTER_ACTION
);
2907 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
2908 NLA_PUT_U16(msg
, NL80211_ATTR_FRAME_TYPE
, type
);
2909 NLA_PUT(msg
, NL80211_ATTR_FRAME_MATCH
, match_len
, match
);
2911 ret
= send_and_recv(drv
->global
, nl_handle
, msg
, NULL
, NULL
);
2914 wpa_printf(MSG_DEBUG
, "nl80211: Register frame command "
2915 "failed (type=%u): ret=%d (%s)",
2916 type
, ret
, strerror(-ret
));
2917 wpa_hexdump(MSG_DEBUG
, "nl80211: Register frame match",
2919 goto nla_put_failure
;
2928 static int nl80211_alloc_mgmt_handle(struct i802_bss
*bss
)
2930 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2933 wpa_printf(MSG_DEBUG
, "nl80211: Mgmt reporting "
2938 bss
->nl_mgmt
= nl_create_handle(drv
->nl_cb
, "mgmt");
2939 if (bss
->nl_mgmt
== NULL
)
2942 eloop_register_read_sock(nl_socket_get_fd(bss
->nl_mgmt
),
2943 wpa_driver_nl80211_event_receive
, bss
->nl_cb
,
2950 static int nl80211_register_action_frame(struct i802_bss
*bss
,
2951 const u8
*match
, size_t match_len
)
2953 u16 type
= (WLAN_FC_TYPE_MGMT
<< 2) | (WLAN_FC_STYPE_ACTION
<< 4);
2954 return nl80211_register_frame(bss
, bss
->nl_mgmt
,
2955 type
, match
, match_len
);
2959 static int nl80211_mgmt_subscribe_non_ap(struct i802_bss
*bss
)
2961 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2963 if (nl80211_alloc_mgmt_handle(bss
))
2966 #if defined(CONFIG_P2P) || defined(CONFIG_INTERWORKING)
2967 /* GAS Initial Request */
2968 if (nl80211_register_action_frame(bss
, (u8
*) "\x04\x0a", 2) < 0)
2970 /* GAS Initial Response */
2971 if (nl80211_register_action_frame(bss
, (u8
*) "\x04\x0b", 2) < 0)
2973 /* GAS Comeback Request */
2974 if (nl80211_register_action_frame(bss
, (u8
*) "\x04\x0c", 2) < 0)
2976 /* GAS Comeback Response */
2977 if (nl80211_register_action_frame(bss
, (u8
*) "\x04\x0d", 2) < 0)
2979 #endif /* CONFIG_P2P || CONFIG_INTERWORKING */
2981 /* P2P Public Action */
2982 if (nl80211_register_action_frame(bss
,
2983 (u8
*) "\x04\x09\x50\x6f\x9a\x09",
2987 if (nl80211_register_action_frame(bss
,
2988 (u8
*) "\x7f\x50\x6f\x9a\x09",
2991 #endif /* CONFIG_P2P */
2992 #ifdef CONFIG_IEEE80211W
2993 /* SA Query Response */
2994 if (nl80211_register_action_frame(bss
, (u8
*) "\x08\x01", 2) < 0)
2996 #endif /* CONFIG_IEEE80211W */
2998 if ((drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
)) {
2999 /* TDLS Discovery Response */
3000 if (nl80211_register_action_frame(bss
, (u8
*) "\x04\x0e", 2) <
3004 #endif /* CONFIG_TDLS */
3006 /* FT Action frames */
3007 if (nl80211_register_action_frame(bss
, (u8
*) "\x06", 1) < 0)
3010 drv
->capa
.key_mgmt
|= WPA_DRIVER_CAPA_KEY_MGMT_FT
|
3011 WPA_DRIVER_CAPA_KEY_MGMT_FT_PSK
;
3013 /* WNM - BSS Transition Management Request */
3014 if (nl80211_register_action_frame(bss
, (u8
*) "\x0a\x07", 2) < 0)
3021 static int nl80211_register_spurious_class3(struct i802_bss
*bss
)
3023 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3027 msg
= nlmsg_alloc();
3031 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_UNEXPECTED_FRAME
);
3033 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
3035 ret
= send_and_recv(drv
->global
, bss
->nl_mgmt
, msg
, NULL
, NULL
);
3038 wpa_printf(MSG_DEBUG
, "nl80211: Register spurious class3 "
3039 "failed: ret=%d (%s)",
3040 ret
, strerror(-ret
));
3041 goto nla_put_failure
;
3050 static int nl80211_mgmt_subscribe_ap(struct i802_bss
*bss
)
3052 static const int stypes
[] = {
3054 WLAN_FC_STYPE_ASSOC_REQ
,
3055 WLAN_FC_STYPE_REASSOC_REQ
,
3056 WLAN_FC_STYPE_DISASSOC
,
3057 WLAN_FC_STYPE_DEAUTH
,
3058 WLAN_FC_STYPE_ACTION
,
3059 WLAN_FC_STYPE_PROBE_REQ
,
3060 /* Beacon doesn't work as mac80211 doesn't currently allow
3061 * it, but it wouldn't really be the right thing anyway as
3062 * it isn't per interface ... maybe just dump the scan
3063 * results periodically for OLBC?
3065 // WLAN_FC_STYPE_BEACON,
3069 if (nl80211_alloc_mgmt_handle(bss
))
3072 for (i
= 0; i
< sizeof(stypes
) / sizeof(stypes
[0]); i
++) {
3073 if (nl80211_register_frame(bss
, bss
->nl_mgmt
,
3074 (WLAN_FC_TYPE_MGMT
<< 2) |
3081 if (nl80211_register_spurious_class3(bss
))
3084 if (nl80211_get_wiphy_data_ap(bss
) == NULL
)
3090 eloop_unregister_read_sock(nl_socket_get_fd(bss
->nl_mgmt
));
3091 nl_destroy_handles(&bss
->nl_mgmt
);
3096 static void nl80211_mgmt_unsubscribe(struct i802_bss
*bss
)
3098 if (bss
->nl_mgmt
== NULL
)
3100 eloop_unregister_read_sock(nl_socket_get_fd(bss
->nl_mgmt
));
3101 nl_destroy_handles(&bss
->nl_mgmt
);
3103 nl80211_put_wiphy_data_ap(bss
);
3107 static void wpa_driver_nl80211_send_rfkill(void *eloop_ctx
, void *timeout_ctx
)
3109 wpa_supplicant_event(timeout_ctx
, EVENT_INTERFACE_DISABLED
, NULL
);
3114 wpa_driver_nl80211_finish_drv_init(struct wpa_driver_nl80211_data
*drv
)
3116 struct i802_bss
*bss
= &drv
->first_bss
;
3117 int send_rfkill_event
= 0;
3119 drv
->ifindex
= if_nametoindex(bss
->ifname
);
3120 drv
->first_bss
.ifindex
= drv
->ifindex
;
3124 * Make sure the interface starts up in station mode unless this is a
3125 * dynamically added interface (e.g., P2P) that was already configured
3126 * with proper iftype.
3128 if (drv
->ifindex
!= drv
->global
->if_add_ifindex
&&
3129 wpa_driver_nl80211_set_mode(bss
, NL80211_IFTYPE_STATION
) < 0) {
3130 wpa_printf(MSG_ERROR
, "nl80211: Could not configure driver to "
3131 "use managed mode");
3135 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1)) {
3136 if (rfkill_is_blocked(drv
->rfkill
)) {
3137 wpa_printf(MSG_DEBUG
, "nl80211: Could not yet enable "
3138 "interface '%s' due to rfkill",
3140 drv
->if_disabled
= 1;
3141 send_rfkill_event
= 1;
3143 wpa_printf(MSG_ERROR
, "nl80211: Could not set "
3144 "interface '%s' UP", bss
->ifname
);
3149 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
,
3150 1, IF_OPER_DORMANT
);
3151 #endif /* HOSTAPD */
3153 if (wpa_driver_nl80211_capa(drv
))
3156 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
3160 if (send_rfkill_event
) {
3161 eloop_register_timeout(0, 0, wpa_driver_nl80211_send_rfkill
,
3169 static int wpa_driver_nl80211_del_beacon(struct wpa_driver_nl80211_data
*drv
)
3173 msg
= nlmsg_alloc();
3177 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_BEACON
);
3178 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3180 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3187 * wpa_driver_nl80211_deinit - Deinitialize nl80211 driver interface
3188 * @priv: Pointer to private nl80211 data from wpa_driver_nl80211_init()
3190 * Shut down driver interface and processing of driver events. Free
3191 * private data buffer if one was allocated in wpa_driver_nl80211_init().
3193 static void wpa_driver_nl80211_deinit(void *priv
)
3195 struct i802_bss
*bss
= priv
;
3196 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3198 if (drv
->data_tx_status
)
3199 eloop_unregister_read_sock(drv
->eapol_tx_sock
);
3200 if (drv
->eapol_tx_sock
>= 0)
3201 close(drv
->eapol_tx_sock
);
3204 wpa_driver_nl80211_probe_req_report(bss
, 0);
3205 if (bss
->added_if_into_bridge
) {
3206 if (linux_br_del_if(drv
->global
->ioctl_sock
, bss
->brname
,
3208 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
3209 "interface %s from bridge %s: %s",
3210 bss
->ifname
, bss
->brname
, strerror(errno
));
3212 if (bss
->added_bridge
) {
3213 if (linux_br_del(drv
->global
->ioctl_sock
, bss
->brname
) < 0)
3214 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
3216 bss
->brname
, strerror(errno
));
3219 nl80211_remove_monitor_interface(drv
);
3221 if (is_ap_interface(drv
->nlmode
))
3222 wpa_driver_nl80211_del_beacon(drv
);
3225 if (drv
->last_freq_ht
) {
3226 /* Clear HT flags from the driver */
3227 struct hostapd_freq_params freq
;
3228 os_memset(&freq
, 0, sizeof(freq
));
3229 freq
.freq
= drv
->last_freq
;
3230 i802_set_freq(priv
, &freq
);
3233 if (drv
->eapol_sock
>= 0) {
3234 eloop_unregister_read_sock(drv
->eapol_sock
);
3235 close(drv
->eapol_sock
);
3238 if (drv
->if_indices
!= drv
->default_if_indices
)
3239 os_free(drv
->if_indices
);
3240 #endif /* HOSTAPD */
3242 if (drv
->disabled_11b_rates
)
3243 nl80211_disable_11b_rates(drv
, drv
->ifindex
, 0);
3245 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
, 0,
3247 rfkill_deinit(drv
->rfkill
);
3249 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
, drv
->ctx
);
3251 (void) linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 0);
3252 wpa_driver_nl80211_set_mode(bss
, NL80211_IFTYPE_STATION
);
3253 nl80211_mgmt_unsubscribe(bss
);
3255 nl_cb_put(drv
->nl_cb
);
3257 nl80211_destroy_bss(&drv
->first_bss
);
3259 os_free(drv
->filter_ssids
);
3261 os_free(drv
->auth_ie
);
3263 if (drv
->in_interface_list
)
3264 dl_list_del(&drv
->list
);
3271 * wpa_driver_nl80211_scan_timeout - Scan timeout to report scan completion
3272 * @eloop_ctx: Driver private data
3273 * @timeout_ctx: ctx argument given to wpa_driver_nl80211_init()
3275 * This function can be used as registered timeout when starting a scan to
3276 * generate a scan completed event if the driver does not report this.
3278 static void wpa_driver_nl80211_scan_timeout(void *eloop_ctx
, void *timeout_ctx
)
3280 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
3281 if (drv
->ap_scan_as_station
!= NL80211_IFTYPE_UNSPECIFIED
) {
3282 wpa_driver_nl80211_set_mode(&drv
->first_bss
,
3283 drv
->ap_scan_as_station
);
3284 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
3286 wpa_printf(MSG_DEBUG
, "Scan timeout - try to get results");
3287 wpa_supplicant_event(timeout_ctx
, EVENT_SCAN_RESULTS
, NULL
);
3292 * wpa_driver_nl80211_scan - Request the driver to initiate scan
3293 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
3294 * @params: Scan parameters
3295 * Returns: 0 on success, -1 on failure
3297 static int wpa_driver_nl80211_scan(void *priv
,
3298 struct wpa_driver_scan_params
*params
)
3300 struct i802_bss
*bss
= priv
;
3301 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3302 int ret
= 0, timeout
;
3303 struct nl_msg
*msg
, *ssids
, *freqs
, *rates
;
3306 drv
->scan_for_auth
= 0;
3308 msg
= nlmsg_alloc();
3309 ssids
= nlmsg_alloc();
3310 freqs
= nlmsg_alloc();
3311 rates
= nlmsg_alloc();
3312 if (!msg
|| !ssids
|| !freqs
|| !rates
) {
3320 os_free(drv
->filter_ssids
);
3321 drv
->filter_ssids
= params
->filter_ssids
;
3322 params
->filter_ssids
= NULL
;
3323 drv
->num_filter_ssids
= params
->num_filter_ssids
;
3325 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TRIGGER_SCAN
);
3327 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3329 for (i
= 0; i
< params
->num_ssids
; i
++) {
3330 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Scan SSID",
3331 params
->ssids
[i
].ssid
,
3332 params
->ssids
[i
].ssid_len
);
3333 NLA_PUT(ssids
, i
+ 1, params
->ssids
[i
].ssid_len
,
3334 params
->ssids
[i
].ssid
);
3336 if (params
->num_ssids
)
3337 nla_put_nested(msg
, NL80211_ATTR_SCAN_SSIDS
, ssids
);
3339 if (params
->extra_ies
) {
3340 wpa_hexdump(MSG_MSGDUMP
, "nl80211: Scan extra IEs",
3341 params
->extra_ies
, params
->extra_ies_len
);
3342 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->extra_ies_len
,
3346 if (params
->freqs
) {
3347 for (i
= 0; params
->freqs
[i
]; i
++) {
3348 wpa_printf(MSG_MSGDUMP
, "nl80211: Scan frequency %u "
3349 "MHz", params
->freqs
[i
]);
3350 NLA_PUT_U32(freqs
, i
+ 1, params
->freqs
[i
]);
3352 nla_put_nested(msg
, NL80211_ATTR_SCAN_FREQUENCIES
, freqs
);
3355 if (params
->p2p_probe
) {
3357 * Remove 2.4 GHz rates 1, 2, 5.5, 11 Mbps from supported rates
3358 * by masking out everything else apart from the OFDM rates 6,
3359 * 9, 12, 18, 24, 36, 48, 54 Mbps from non-MCS rates. All 5 GHz
3360 * rates are left enabled.
3362 NLA_PUT(rates
, NL80211_BAND_2GHZ
, 8,
3363 "\x0c\x12\x18\x24\x30\x48\x60\x6c");
3364 nla_put_nested(msg
, NL80211_ATTR_SCAN_SUPP_RATES
, rates
);
3366 NLA_PUT_FLAG(msg
, NL80211_ATTR_TX_NO_CCK_RATE
);
3369 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3372 wpa_printf(MSG_DEBUG
, "nl80211: Scan trigger failed: ret=%d "
3373 "(%s)", ret
, strerror(-ret
));
3375 if (is_ap_interface(drv
->nlmode
)) {
3377 * mac80211 does not allow scan requests in AP mode, so
3378 * try to do this in station mode.
3380 if (wpa_driver_nl80211_set_mode(
3381 bss
, NL80211_IFTYPE_STATION
))
3382 goto nla_put_failure
;
3384 if (wpa_driver_nl80211_scan(drv
, params
)) {
3385 wpa_driver_nl80211_set_mode(bss
, drv
->nlmode
);
3386 goto nla_put_failure
;
3389 /* Restore AP mode when processing scan results */
3390 drv
->ap_scan_as_station
= drv
->nlmode
;
3393 goto nla_put_failure
;
3395 goto nla_put_failure
;
3396 #endif /* HOSTAPD */
3399 /* Not all drivers generate "scan completed" wireless event, so try to
3400 * read results after a timeout. */
3402 if (drv
->scan_complete_events
) {
3404 * The driver seems to deliver events to notify when scan is
3405 * complete, so use longer timeout to avoid race conditions
3406 * with scanning and following association request.
3410 wpa_printf(MSG_DEBUG
, "Scan requested (ret=%d) - scan timeout %d "
3411 "seconds", ret
, timeout
);
3412 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
, drv
->ctx
);
3413 eloop_register_timeout(timeout
, 0, wpa_driver_nl80211_scan_timeout
,
3426 * wpa_driver_nl80211_sched_scan - Initiate a scheduled scan
3427 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
3428 * @params: Scan parameters
3429 * @interval: Interval between scan cycles in milliseconds
3430 * Returns: 0 on success, -1 on failure or if not supported
3432 static int wpa_driver_nl80211_sched_scan(void *priv
,
3433 struct wpa_driver_scan_params
*params
,
3436 struct i802_bss
*bss
= priv
;
3437 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3439 struct nl_msg
*msg
, *ssids
, *freqs
, *match_set_ssid
, *match_sets
;
3443 if (!drv
->capa
.sched_scan_supported
)
3444 return android_pno_start(bss
, params
);
3445 #endif /* ANDROID */
3447 msg
= nlmsg_alloc();
3448 ssids
= nlmsg_alloc();
3449 freqs
= nlmsg_alloc();
3450 if (!msg
|| !ssids
|| !freqs
) {
3457 os_free(drv
->filter_ssids
);
3458 drv
->filter_ssids
= params
->filter_ssids
;
3459 params
->filter_ssids
= NULL
;
3460 drv
->num_filter_ssids
= params
->num_filter_ssids
;
3462 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_START_SCHED_SCAN
);
3464 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3466 NLA_PUT_U32(msg
, NL80211_ATTR_SCHED_SCAN_INTERVAL
, interval
);
3468 if (drv
->num_filter_ssids
&&
3469 (int) drv
->num_filter_ssids
<= drv
->capa
.max_match_sets
) {
3470 match_sets
= nlmsg_alloc();
3472 for (i
= 0; i
< drv
->num_filter_ssids
; i
++) {
3473 wpa_hexdump_ascii(MSG_MSGDUMP
,
3474 "nl80211: Sched scan filter SSID",
3475 drv
->filter_ssids
[i
].ssid
,
3476 drv
->filter_ssids
[i
].ssid_len
);
3478 match_set_ssid
= nlmsg_alloc();
3479 nla_put(match_set_ssid
,
3480 NL80211_ATTR_SCHED_SCAN_MATCH_SSID
,
3481 drv
->filter_ssids
[i
].ssid_len
,
3482 drv
->filter_ssids
[i
].ssid
);
3484 nla_put_nested(match_sets
, i
+ 1, match_set_ssid
);
3486 nlmsg_free(match_set_ssid
);
3489 nla_put_nested(msg
, NL80211_ATTR_SCHED_SCAN_MATCH
,
3491 nlmsg_free(match_sets
);
3494 for (i
= 0; i
< params
->num_ssids
; i
++) {
3495 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Sched scan SSID",
3496 params
->ssids
[i
].ssid
,
3497 params
->ssids
[i
].ssid_len
);
3498 NLA_PUT(ssids
, i
+ 1, params
->ssids
[i
].ssid_len
,
3499 params
->ssids
[i
].ssid
);
3501 if (params
->num_ssids
)
3502 nla_put_nested(msg
, NL80211_ATTR_SCAN_SSIDS
, ssids
);
3504 if (params
->extra_ies
) {
3505 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Sched scan extra IEs",
3506 params
->extra_ies
, params
->extra_ies_len
);
3507 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->extra_ies_len
,
3511 if (params
->freqs
) {
3512 for (i
= 0; params
->freqs
[i
]; i
++) {
3513 wpa_printf(MSG_MSGDUMP
, "nl80211: Scan frequency %u "
3514 "MHz", params
->freqs
[i
]);
3515 NLA_PUT_U32(freqs
, i
+ 1, params
->freqs
[i
]);
3517 nla_put_nested(msg
, NL80211_ATTR_SCAN_FREQUENCIES
, freqs
);
3520 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3522 /* TODO: if we get an error here, we should fall back to normal scan */
3526 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan start failed: "
3527 "ret=%d (%s)", ret
, strerror(-ret
));
3528 goto nla_put_failure
;
3531 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan requested (ret=%d) - "
3532 "scan interval %d msec", ret
, interval
);
3543 * wpa_driver_nl80211_stop_sched_scan - Stop a scheduled scan
3544 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
3545 * Returns: 0 on success, -1 on failure or if not supported
3547 static int wpa_driver_nl80211_stop_sched_scan(void *priv
)
3549 struct i802_bss
*bss
= priv
;
3550 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3555 if (!drv
->capa
.sched_scan_supported
)
3556 return android_pno_stop(bss
);
3557 #endif /* ANDROID */
3559 msg
= nlmsg_alloc();
3563 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_STOP_SCHED_SCAN
);
3565 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3567 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3570 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stop failed: "
3571 "ret=%d (%s)", ret
, strerror(-ret
));
3572 goto nla_put_failure
;
3575 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stop sent (ret=%d)", ret
);
3583 static const u8
* nl80211_get_ie(const u8
*ies
, size_t ies_len
, u8 ie
)
3585 const u8
*end
, *pos
;
3591 end
= ies
+ ies_len
;
3593 while (pos
+ 1 < end
) {
3594 if (pos
+ 2 + pos
[1] > end
)
3605 static int nl80211_scan_filtered(struct wpa_driver_nl80211_data
*drv
,
3606 const u8
*ie
, size_t ie_len
)
3611 if (drv
->filter_ssids
== NULL
)
3614 ssid
= nl80211_get_ie(ie
, ie_len
, WLAN_EID_SSID
);
3618 for (i
= 0; i
< drv
->num_filter_ssids
; i
++) {
3619 if (ssid
[1] == drv
->filter_ssids
[i
].ssid_len
&&
3620 os_memcmp(ssid
+ 2, drv
->filter_ssids
[i
].ssid
, ssid
[1]) ==
3629 static int bss_info_handler(struct nl_msg
*msg
, void *arg
)
3631 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
3632 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
3633 struct nlattr
*bss
[NL80211_BSS_MAX
+ 1];
3634 static struct nla_policy bss_policy
[NL80211_BSS_MAX
+ 1] = {
3635 [NL80211_BSS_BSSID
] = { .type
= NLA_UNSPEC
},
3636 [NL80211_BSS_FREQUENCY
] = { .type
= NLA_U32
},
3637 [NL80211_BSS_TSF
] = { .type
= NLA_U64
},
3638 [NL80211_BSS_BEACON_INTERVAL
] = { .type
= NLA_U16
},
3639 [NL80211_BSS_CAPABILITY
] = { .type
= NLA_U16
},
3640 [NL80211_BSS_INFORMATION_ELEMENTS
] = { .type
= NLA_UNSPEC
},
3641 [NL80211_BSS_SIGNAL_MBM
] = { .type
= NLA_U32
},
3642 [NL80211_BSS_SIGNAL_UNSPEC
] = { .type
= NLA_U8
},
3643 [NL80211_BSS_STATUS
] = { .type
= NLA_U32
},
3644 [NL80211_BSS_SEEN_MS_AGO
] = { .type
= NLA_U32
},
3645 [NL80211_BSS_BEACON_IES
] = { .type
= NLA_UNSPEC
},
3647 struct nl80211_bss_info_arg
*_arg
= arg
;
3648 struct wpa_scan_results
*res
= _arg
->res
;
3649 struct wpa_scan_res
**tmp
;
3650 struct wpa_scan_res
*r
;
3651 const u8
*ie
, *beacon_ie
;
3652 size_t ie_len
, beacon_ie_len
;
3656 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
3657 genlmsg_attrlen(gnlh
, 0), NULL
);
3658 if (!tb
[NL80211_ATTR_BSS
])
3660 if (nla_parse_nested(bss
, NL80211_BSS_MAX
, tb
[NL80211_ATTR_BSS
],
3663 if (bss
[NL80211_BSS_STATUS
]) {
3664 enum nl80211_bss_status status
;
3665 status
= nla_get_u32(bss
[NL80211_BSS_STATUS
]);
3666 if (status
== NL80211_BSS_STATUS_ASSOCIATED
&&
3667 bss
[NL80211_BSS_FREQUENCY
]) {
3669 nla_get_u32(bss
[NL80211_BSS_FREQUENCY
]);
3670 wpa_printf(MSG_DEBUG
, "nl80211: Associated on %u MHz",
3673 if (status
== NL80211_BSS_STATUS_ASSOCIATED
&&
3674 bss
[NL80211_BSS_BSSID
]) {
3675 os_memcpy(_arg
->assoc_bssid
,
3676 nla_data(bss
[NL80211_BSS_BSSID
]), ETH_ALEN
);
3677 wpa_printf(MSG_DEBUG
, "nl80211: Associated with "
3678 MACSTR
, MAC2STR(_arg
->assoc_bssid
));
3683 if (bss
[NL80211_BSS_INFORMATION_ELEMENTS
]) {
3684 ie
= nla_data(bss
[NL80211_BSS_INFORMATION_ELEMENTS
]);
3685 ie_len
= nla_len(bss
[NL80211_BSS_INFORMATION_ELEMENTS
]);
3690 if (bss
[NL80211_BSS_BEACON_IES
]) {
3691 beacon_ie
= nla_data(bss
[NL80211_BSS_BEACON_IES
]);
3692 beacon_ie_len
= nla_len(bss
[NL80211_BSS_BEACON_IES
]);
3698 if (nl80211_scan_filtered(_arg
->drv
, ie
? ie
: beacon_ie
,
3699 ie
? ie_len
: beacon_ie_len
))
3702 r
= os_zalloc(sizeof(*r
) + ie_len
+ beacon_ie_len
);
3705 if (bss
[NL80211_BSS_BSSID
])
3706 os_memcpy(r
->bssid
, nla_data(bss
[NL80211_BSS_BSSID
]),
3708 if (bss
[NL80211_BSS_FREQUENCY
])
3709 r
->freq
= nla_get_u32(bss
[NL80211_BSS_FREQUENCY
]);
3710 if (bss
[NL80211_BSS_BEACON_INTERVAL
])
3711 r
->beacon_int
= nla_get_u16(bss
[NL80211_BSS_BEACON_INTERVAL
]);
3712 if (bss
[NL80211_BSS_CAPABILITY
])
3713 r
->caps
= nla_get_u16(bss
[NL80211_BSS_CAPABILITY
]);
3714 r
->flags
|= WPA_SCAN_NOISE_INVALID
;
3715 if (bss
[NL80211_BSS_SIGNAL_MBM
]) {
3716 r
->level
= nla_get_u32(bss
[NL80211_BSS_SIGNAL_MBM
]);
3717 r
->level
/= 100; /* mBm to dBm */
3718 r
->flags
|= WPA_SCAN_LEVEL_DBM
| WPA_SCAN_QUAL_INVALID
;
3719 } else if (bss
[NL80211_BSS_SIGNAL_UNSPEC
]) {
3720 r
->level
= nla_get_u8(bss
[NL80211_BSS_SIGNAL_UNSPEC
]);
3721 r
->flags
|= WPA_SCAN_QUAL_INVALID
;
3723 r
->flags
|= WPA_SCAN_LEVEL_INVALID
| WPA_SCAN_QUAL_INVALID
;
3724 if (bss
[NL80211_BSS_TSF
])
3725 r
->tsf
= nla_get_u64(bss
[NL80211_BSS_TSF
]);
3726 if (bss
[NL80211_BSS_SEEN_MS_AGO
])
3727 r
->age
= nla_get_u32(bss
[NL80211_BSS_SEEN_MS_AGO
]);
3729 pos
= (u8
*) (r
+ 1);
3731 os_memcpy(pos
, ie
, ie_len
);
3734 r
->beacon_ie_len
= beacon_ie_len
;
3736 os_memcpy(pos
, beacon_ie
, beacon_ie_len
);
3738 if (bss
[NL80211_BSS_STATUS
]) {
3739 enum nl80211_bss_status status
;
3740 status
= nla_get_u32(bss
[NL80211_BSS_STATUS
]);
3742 case NL80211_BSS_STATUS_AUTHENTICATED
:
3743 r
->flags
|= WPA_SCAN_AUTHENTICATED
;
3745 case NL80211_BSS_STATUS_ASSOCIATED
:
3746 r
->flags
|= WPA_SCAN_ASSOCIATED
;
3754 * cfg80211 maintains separate BSS table entries for APs if the same
3755 * BSSID,SSID pair is seen on multiple channels. wpa_supplicant does
3756 * not use frequency as a separate key in the BSS table, so filter out
3757 * duplicated entries. Prefer associated BSS entry in such a case in
3758 * order to get the correct frequency into the BSS table.
3760 for (i
= 0; i
< res
->num
; i
++) {
3762 if (os_memcmp(res
->res
[i
]->bssid
, r
->bssid
, ETH_ALEN
) != 0)
3765 s1
= nl80211_get_ie((u8
*) (res
->res
[i
] + 1),
3766 res
->res
[i
]->ie_len
, WLAN_EID_SSID
);
3767 s2
= nl80211_get_ie((u8
*) (r
+ 1), r
->ie_len
, WLAN_EID_SSID
);
3768 if (s1
== NULL
|| s2
== NULL
|| s1
[1] != s2
[1] ||
3769 os_memcmp(s1
, s2
, 2 + s1
[1]) != 0)
3772 /* Same BSSID,SSID was already included in scan results */
3773 wpa_printf(MSG_DEBUG
, "nl80211: Remove duplicated scan result "
3774 "for " MACSTR
, MAC2STR(r
->bssid
));
3776 if ((r
->flags
& WPA_SCAN_ASSOCIATED
) &&
3777 !(res
->res
[i
]->flags
& WPA_SCAN_ASSOCIATED
)) {
3778 os_free(res
->res
[i
]);
3785 tmp
= os_realloc(res
->res
,
3786 (res
->num
+ 1) * sizeof(struct wpa_scan_res
*));
3791 tmp
[res
->num
++] = r
;
3798 static void clear_state_mismatch(struct wpa_driver_nl80211_data
*drv
,
3801 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
3802 wpa_printf(MSG_DEBUG
, "nl80211: Clear possible state "
3803 "mismatch (" MACSTR
")", MAC2STR(addr
));
3804 wpa_driver_nl80211_mlme(drv
, addr
,
3805 NL80211_CMD_DEAUTHENTICATE
,
3806 WLAN_REASON_PREV_AUTH_NOT_VALID
, 1);
3811 static void wpa_driver_nl80211_check_bss_status(
3812 struct wpa_driver_nl80211_data
*drv
, struct wpa_scan_results
*res
)
3816 for (i
= 0; i
< res
->num
; i
++) {
3817 struct wpa_scan_res
*r
= res
->res
[i
];
3818 if (r
->flags
& WPA_SCAN_AUTHENTICATED
) {
3819 wpa_printf(MSG_DEBUG
, "nl80211: Scan results "
3820 "indicates BSS status with " MACSTR
3821 " as authenticated",
3823 if (is_sta_interface(drv
->nlmode
) &&
3824 os_memcmp(r
->bssid
, drv
->bssid
, ETH_ALEN
) != 0 &&
3825 os_memcmp(r
->bssid
, drv
->auth_bssid
, ETH_ALEN
) !=
3827 wpa_printf(MSG_DEBUG
, "nl80211: Unknown BSSID"
3828 " in local state (auth=" MACSTR
3829 " assoc=" MACSTR
")",
3830 MAC2STR(drv
->auth_bssid
),
3831 MAC2STR(drv
->bssid
));
3832 clear_state_mismatch(drv
, r
->bssid
);
3836 if (r
->flags
& WPA_SCAN_ASSOCIATED
) {
3837 wpa_printf(MSG_DEBUG
, "nl80211: Scan results "
3838 "indicate BSS status with " MACSTR
3841 if (is_sta_interface(drv
->nlmode
) &&
3843 wpa_printf(MSG_DEBUG
, "nl80211: Local state "
3844 "(not associated) does not match "
3846 clear_state_mismatch(drv
, r
->bssid
);
3847 } else if (is_sta_interface(drv
->nlmode
) &&
3848 os_memcmp(drv
->bssid
, r
->bssid
, ETH_ALEN
) !=
3850 wpa_printf(MSG_DEBUG
, "nl80211: Local state "
3851 "(associated with " MACSTR
") does "
3852 "not match with BSS state",
3853 MAC2STR(drv
->bssid
));
3854 clear_state_mismatch(drv
, r
->bssid
);
3855 clear_state_mismatch(drv
, drv
->bssid
);
3862 static struct wpa_scan_results
*
3863 nl80211_get_scan_results(struct wpa_driver_nl80211_data
*drv
)
3866 struct wpa_scan_results
*res
;
3868 struct nl80211_bss_info_arg arg
;
3870 res
= os_zalloc(sizeof(*res
));
3873 msg
= nlmsg_alloc();
3875 goto nla_put_failure
;
3877 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
3878 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3882 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
3885 wpa_printf(MSG_DEBUG
, "nl80211: Received scan results (%lu "
3886 "BSSes)", (unsigned long) res
->num
);
3887 nl80211_get_noise_for_scan_results(drv
, res
);
3890 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
3891 "(%s)", ret
, strerror(-ret
));
3894 wpa_scan_results_free(res
);
3900 * wpa_driver_nl80211_get_scan_results - Fetch the latest scan results
3901 * @priv: Pointer to private wext data from wpa_driver_nl80211_init()
3902 * Returns: Scan results on success, -1 on failure
3904 static struct wpa_scan_results
*
3905 wpa_driver_nl80211_get_scan_results(void *priv
)
3907 struct i802_bss
*bss
= priv
;
3908 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3909 struct wpa_scan_results
*res
;
3911 res
= nl80211_get_scan_results(drv
);
3913 wpa_driver_nl80211_check_bss_status(drv
, res
);
3918 static void nl80211_dump_scan(struct wpa_driver_nl80211_data
*drv
)
3920 struct wpa_scan_results
*res
;
3923 res
= nl80211_get_scan_results(drv
);
3925 wpa_printf(MSG_DEBUG
, "nl80211: Failed to get scan results");
3929 wpa_printf(MSG_DEBUG
, "nl80211: Scan result dump");
3930 for (i
= 0; i
< res
->num
; i
++) {
3931 struct wpa_scan_res
*r
= res
->res
[i
];
3932 wpa_printf(MSG_DEBUG
, "nl80211: %d/%d " MACSTR
"%s%s",
3933 (int) i
, (int) res
->num
, MAC2STR(r
->bssid
),
3934 r
->flags
& WPA_SCAN_AUTHENTICATED
? " [auth]" : "",
3935 r
->flags
& WPA_SCAN_ASSOCIATED
? " [assoc]" : "");
3938 wpa_scan_results_free(res
);
3942 static int wpa_driver_nl80211_set_key(const char *ifname
, void *priv
,
3943 enum wpa_alg alg
, const u8
*addr
,
3944 int key_idx
, int set_tx
,
3945 const u8
*seq
, size_t seq_len
,
3946 const u8
*key
, size_t key_len
)
3948 struct i802_bss
*bss
= priv
;
3949 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3950 int ifindex
= if_nametoindex(ifname
);
3954 wpa_printf(MSG_DEBUG
, "%s: ifindex=%d alg=%d addr=%p key_idx=%d "
3955 "set_tx=%d seq_len=%lu key_len=%lu",
3956 __func__
, ifindex
, alg
, addr
, key_idx
, set_tx
,
3957 (unsigned long) seq_len
, (unsigned long) key_len
);
3961 #endif /* CONFIG_TDLS */
3963 msg
= nlmsg_alloc();
3967 if (alg
== WPA_ALG_NONE
) {
3968 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_KEY
);
3970 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_NEW_KEY
);
3971 NLA_PUT(msg
, NL80211_ATTR_KEY_DATA
, key_len
, key
);
3975 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3976 WLAN_CIPHER_SUITE_WEP40
);
3978 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3979 WLAN_CIPHER_SUITE_WEP104
);
3982 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3983 WLAN_CIPHER_SUITE_TKIP
);
3986 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3987 WLAN_CIPHER_SUITE_CCMP
);
3990 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3991 WLAN_CIPHER_SUITE_AES_CMAC
);
3994 wpa_printf(MSG_ERROR
, "%s: Unsupported encryption "
3995 "algorithm %d", __func__
, alg
);
4002 NLA_PUT(msg
, NL80211_ATTR_KEY_SEQ
, seq_len
, seq
);
4004 if (addr
&& !is_broadcast_ether_addr(addr
)) {
4005 wpa_printf(MSG_DEBUG
, " addr=" MACSTR
, MAC2STR(addr
));
4006 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
4008 if (alg
!= WPA_ALG_WEP
&& key_idx
&& !set_tx
) {
4009 wpa_printf(MSG_DEBUG
, " RSN IBSS RX GTK");
4010 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_TYPE
,
4011 NL80211_KEYTYPE_GROUP
);
4013 } else if (addr
&& is_broadcast_ether_addr(addr
)) {
4014 struct nl_msg
*types
;
4016 wpa_printf(MSG_DEBUG
, " broadcast key");
4017 types
= nlmsg_alloc();
4019 goto nla_put_failure
;
4020 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_MULTICAST
);
4021 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
4025 goto nla_put_failure
;
4027 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, key_idx
);
4028 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
4030 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4031 if ((ret
== -ENOENT
|| ret
== -ENOLINK
) && alg
== WPA_ALG_NONE
)
4034 wpa_printf(MSG_DEBUG
, "nl80211: set_key failed; err=%d %s)",
4035 ret
, strerror(-ret
));
4038 * If we failed or don't need to set the default TX key (below),
4041 if (ret
|| !set_tx
|| alg
== WPA_ALG_NONE
)
4043 if (is_ap_interface(drv
->nlmode
) && addr
&&
4044 !is_broadcast_ether_addr(addr
))
4047 msg
= nlmsg_alloc();
4051 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_KEY
);
4052 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, key_idx
);
4053 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
4054 if (alg
== WPA_ALG_IGTK
)
4055 NLA_PUT_FLAG(msg
, NL80211_ATTR_KEY_DEFAULT_MGMT
);
4057 NLA_PUT_FLAG(msg
, NL80211_ATTR_KEY_DEFAULT
);
4058 if (addr
&& is_broadcast_ether_addr(addr
)) {
4059 struct nl_msg
*types
;
4061 types
= nlmsg_alloc();
4063 goto nla_put_failure
;
4064 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_MULTICAST
);
4065 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
4069 goto nla_put_failure
;
4071 struct nl_msg
*types
;
4073 types
= nlmsg_alloc();
4075 goto nla_put_failure
;
4076 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_UNICAST
);
4077 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
4081 goto nla_put_failure
;
4084 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4088 wpa_printf(MSG_DEBUG
, "nl80211: set_key default failed; "
4089 "err=%d %s)", ret
, strerror(-ret
));
4097 static int nl_add_key(struct nl_msg
*msg
, enum wpa_alg alg
,
4098 int key_idx
, int defkey
,
4099 const u8
*seq
, size_t seq_len
,
4100 const u8
*key
, size_t key_len
)
4102 struct nlattr
*key_attr
= nla_nest_start(msg
, NL80211_ATTR_KEY
);
4106 if (defkey
&& alg
== WPA_ALG_IGTK
)
4107 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT_MGMT
);
4109 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT
);
4111 NLA_PUT_U8(msg
, NL80211_KEY_IDX
, key_idx
);
4116 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
4117 WLAN_CIPHER_SUITE_WEP40
);
4119 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
4120 WLAN_CIPHER_SUITE_WEP104
);
4123 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
, WLAN_CIPHER_SUITE_TKIP
);
4126 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
, WLAN_CIPHER_SUITE_CCMP
);
4129 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
4130 WLAN_CIPHER_SUITE_AES_CMAC
);
4133 wpa_printf(MSG_ERROR
, "%s: Unsupported encryption "
4134 "algorithm %d", __func__
, alg
);
4139 NLA_PUT(msg
, NL80211_KEY_SEQ
, seq_len
, seq
);
4141 NLA_PUT(msg
, NL80211_KEY_DATA
, key_len
, key
);
4143 nla_nest_end(msg
, key_attr
);
4151 static int nl80211_set_conn_keys(struct wpa_driver_associate_params
*params
,
4155 struct nlattr
*nl_keys
, *nl_key
;
4157 for (i
= 0; i
< 4; i
++) {
4158 if (!params
->wep_key
[i
])
4163 if (params
->wps
== WPS_MODE_PRIVACY
)
4165 if (params
->pairwise_suite
&&
4166 params
->pairwise_suite
!= WPA_CIPHER_NONE
)
4172 NLA_PUT_FLAG(msg
, NL80211_ATTR_PRIVACY
);
4174 nl_keys
= nla_nest_start(msg
, NL80211_ATTR_KEYS
);
4176 goto nla_put_failure
;
4178 for (i
= 0; i
< 4; i
++) {
4179 if (!params
->wep_key
[i
])
4182 nl_key
= nla_nest_start(msg
, i
);
4184 goto nla_put_failure
;
4186 NLA_PUT(msg
, NL80211_KEY_DATA
, params
->wep_key_len
[i
],
4187 params
->wep_key
[i
]);
4188 if (params
->wep_key_len
[i
] == 5)
4189 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
4190 WLAN_CIPHER_SUITE_WEP40
);
4192 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
4193 WLAN_CIPHER_SUITE_WEP104
);
4195 NLA_PUT_U8(msg
, NL80211_KEY_IDX
, i
);
4197 if (i
== params
->wep_tx_keyidx
)
4198 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT
);
4200 nla_nest_end(msg
, nl_key
);
4202 nla_nest_end(msg
, nl_keys
);
4211 static int wpa_driver_nl80211_mlme(struct wpa_driver_nl80211_data
*drv
,
4212 const u8
*addr
, int cmd
, u16 reason_code
,
4213 int local_state_change
)
4218 msg
= nlmsg_alloc();
4222 nl80211_cmd(drv
, msg
, 0, cmd
);
4224 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4225 NLA_PUT_U16(msg
, NL80211_ATTR_REASON_CODE
, reason_code
);
4226 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
4227 if (local_state_change
)
4228 NLA_PUT_FLAG(msg
, NL80211_ATTR_LOCAL_STATE_CHANGE
);
4230 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4233 wpa_dbg(drv
->ctx
, MSG_DEBUG
,
4234 "nl80211: MLME command failed: reason=%u ret=%d (%s)",
4235 reason_code
, ret
, strerror(-ret
));
4236 goto nla_put_failure
;
4246 static int wpa_driver_nl80211_disconnect(struct wpa_driver_nl80211_data
*drv
,
4247 const u8
*addr
, int reason_code
)
4249 wpa_printf(MSG_DEBUG
, "%s(addr=" MACSTR
" reason_code=%d)",
4250 __func__
, MAC2STR(addr
), reason_code
);
4251 drv
->associated
= 0;
4252 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DISCONNECT
,
4257 static int wpa_driver_nl80211_deauthenticate(void *priv
, const u8
*addr
,
4260 struct i802_bss
*bss
= priv
;
4261 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4262 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
))
4263 return wpa_driver_nl80211_disconnect(drv
, addr
, reason_code
);
4264 wpa_printf(MSG_DEBUG
, "%s(addr=" MACSTR
" reason_code=%d)",
4265 __func__
, MAC2STR(addr
), reason_code
);
4266 drv
->associated
= 0;
4267 if (drv
->nlmode
== NL80211_IFTYPE_ADHOC
)
4268 return nl80211_leave_ibss(drv
);
4269 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DEAUTHENTICATE
,
4274 static int wpa_driver_nl80211_disassociate(void *priv
, const u8
*addr
,
4277 struct i802_bss
*bss
= priv
;
4278 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4279 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
))
4280 return wpa_driver_nl80211_disconnect(drv
, addr
, reason_code
);
4281 wpa_printf(MSG_DEBUG
, "%s", __func__
);
4282 drv
->associated
= 0;
4283 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DISASSOCIATE
,
4288 static void nl80211_copy_auth_params(struct wpa_driver_nl80211_data
*drv
,
4289 struct wpa_driver_auth_params
*params
)
4293 drv
->auth_freq
= params
->freq
;
4294 drv
->auth_alg
= params
->auth_alg
;
4295 drv
->auth_wep_tx_keyidx
= params
->wep_tx_keyidx
;
4296 drv
->auth_local_state_change
= params
->local_state_change
;
4297 drv
->auth_p2p
= params
->p2p
;
4300 os_memcpy(drv
->auth_bssid_
, params
->bssid
, ETH_ALEN
);
4302 os_memset(drv
->auth_bssid_
, 0, ETH_ALEN
);
4305 os_memcpy(drv
->auth_ssid
, params
->ssid
, params
->ssid_len
);
4306 drv
->auth_ssid_len
= params
->ssid_len
;
4308 drv
->auth_ssid_len
= 0;
4311 os_free(drv
->auth_ie
);
4312 drv
->auth_ie
= NULL
;
4313 drv
->auth_ie_len
= 0;
4315 drv
->auth_ie
= os_malloc(params
->ie_len
);
4317 os_memcpy(drv
->auth_ie
, params
->ie
, params
->ie_len
);
4318 drv
->auth_ie_len
= params
->ie_len
;
4322 for (i
= 0; i
< 4; i
++) {
4323 if (params
->wep_key
[i
] && params
->wep_key_len
[i
] &&
4324 params
->wep_key_len
[i
] <= 16) {
4325 os_memcpy(drv
->auth_wep_key
[i
], params
->wep_key
[i
],
4326 params
->wep_key_len
[i
]);
4327 drv
->auth_wep_key_len
[i
] = params
->wep_key_len
[i
];
4329 drv
->auth_wep_key_len
[i
] = 0;
4334 static int wpa_driver_nl80211_authenticate(
4335 void *priv
, struct wpa_driver_auth_params
*params
)
4337 struct i802_bss
*bss
= priv
;
4338 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4341 enum nl80211_auth_type type
;
4342 enum nl80211_iftype nlmode
;
4346 is_retry
= drv
->retry_auth
;
4347 drv
->retry_auth
= 0;
4349 drv
->associated
= 0;
4350 os_memset(drv
->auth_bssid
, 0, ETH_ALEN
);
4351 /* FIX: IBSS mode */
4352 nlmode
= params
->p2p
?
4353 NL80211_IFTYPE_P2P_CLIENT
: NL80211_IFTYPE_STATION
;
4354 if (drv
->nlmode
!= nlmode
&&
4355 wpa_driver_nl80211_set_mode(priv
, nlmode
) < 0)
4359 msg
= nlmsg_alloc();
4363 wpa_printf(MSG_DEBUG
, "nl80211: Authenticate (ifindex=%d)",
4366 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_AUTHENTICATE
);
4368 for (i
= 0; i
< 4; i
++) {
4369 if (!params
->wep_key
[i
])
4371 wpa_driver_nl80211_set_key(bss
->ifname
, priv
, WPA_ALG_WEP
,
4373 i
== params
->wep_tx_keyidx
, NULL
, 0,
4375 params
->wep_key_len
[i
]);
4376 if (params
->wep_tx_keyidx
!= i
)
4378 if (nl_add_key(msg
, WPA_ALG_WEP
, i
, 1, NULL
, 0,
4379 params
->wep_key
[i
], params
->wep_key_len
[i
])) {
4385 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4386 if (params
->bssid
) {
4387 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
4388 MAC2STR(params
->bssid
));
4389 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
4392 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
4393 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
4396 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
4397 params
->ssid
, params
->ssid_len
);
4398 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
4401 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->ie
, params
->ie_len
);
4403 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->ie_len
, params
->ie
);
4404 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
4405 type
= NL80211_AUTHTYPE_OPEN_SYSTEM
;
4406 else if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
4407 type
= NL80211_AUTHTYPE_SHARED_KEY
;
4408 else if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
4409 type
= NL80211_AUTHTYPE_NETWORK_EAP
;
4410 else if (params
->auth_alg
& WPA_AUTH_ALG_FT
)
4411 type
= NL80211_AUTHTYPE_FT
;
4413 goto nla_put_failure
;
4414 wpa_printf(MSG_DEBUG
, " * Auth Type %d", type
);
4415 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
, type
);
4416 if (params
->local_state_change
) {
4417 wpa_printf(MSG_DEBUG
, " * Local state change only");
4418 NLA_PUT_FLAG(msg
, NL80211_ATTR_LOCAL_STATE_CHANGE
);
4421 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4424 wpa_dbg(drv
->ctx
, MSG_DEBUG
,
4425 "nl80211: MLME command failed (auth): ret=%d (%s)",
4426 ret
, strerror(-ret
));
4428 if (ret
== -EALREADY
&& count
== 1 && params
->bssid
&&
4429 !params
->local_state_change
) {
4431 * mac80211 does not currently accept new
4432 * authentication if we are already authenticated. As a
4433 * workaround, force deauthentication and try again.
4435 wpa_printf(MSG_DEBUG
, "nl80211: Retry authentication "
4436 "after forced deauthentication");
4437 wpa_driver_nl80211_deauthenticate(
4439 WLAN_REASON_PREV_AUTH_NOT_VALID
);
4444 if (ret
== -ENOENT
&& params
->freq
&& !is_retry
) {
4446 * cfg80211 has likely expired the BSS entry even
4447 * though it was previously available in our internal
4448 * BSS table. To recover quickly, start a single
4449 * channel scan on the specified channel.
4451 struct wpa_driver_scan_params scan
;
4454 os_memset(&scan
, 0, sizeof(scan
));
4457 scan
.ssids
[0].ssid
= params
->ssid
;
4458 scan
.ssids
[0].ssid_len
= params
->ssid_len
;
4460 freqs
[0] = params
->freq
;
4463 wpa_printf(MSG_DEBUG
, "nl80211: Trigger single "
4464 "channel scan to refresh cfg80211 BSS "
4466 ret
= wpa_driver_nl80211_scan(bss
, &scan
);
4468 nl80211_copy_auth_params(drv
, params
);
4469 drv
->scan_for_auth
= 1;
4471 } else if (is_retry
) {
4473 * Need to indicate this with an event since the return
4474 * value from the retry is not delivered to core code.
4476 union wpa_event_data event
;
4477 wpa_printf(MSG_DEBUG
, "nl80211: Authentication retry "
4479 os_memset(&event
, 0, sizeof(event
));
4480 os_memcpy(event
.timeout_event
.addr
, drv
->auth_bssid_
,
4482 wpa_supplicant_event(drv
->ctx
, EVENT_AUTH_TIMED_OUT
,
4486 goto nla_put_failure
;
4489 wpa_printf(MSG_DEBUG
, "nl80211: Authentication request send "
4498 static int wpa_driver_nl80211_authenticate_retry(
4499 struct wpa_driver_nl80211_data
*drv
)
4501 struct wpa_driver_auth_params params
;
4502 struct i802_bss
*bss
= &drv
->first_bss
;
4505 wpa_printf(MSG_DEBUG
, "nl80211: Try to authenticate again");
4507 os_memset(¶ms
, 0, sizeof(params
));
4508 params
.freq
= drv
->auth_freq
;
4509 params
.auth_alg
= drv
->auth_alg
;
4510 params
.wep_tx_keyidx
= drv
->auth_wep_tx_keyidx
;
4511 params
.local_state_change
= drv
->auth_local_state_change
;
4512 params
.p2p
= drv
->auth_p2p
;
4514 if (!is_zero_ether_addr(drv
->auth_bssid_
))
4515 params
.bssid
= drv
->auth_bssid_
;
4517 if (drv
->auth_ssid_len
) {
4518 params
.ssid
= drv
->auth_ssid
;
4519 params
.ssid_len
= drv
->auth_ssid_len
;
4522 params
.ie
= drv
->auth_ie
;
4523 params
.ie_len
= drv
->auth_ie_len
;
4525 for (i
= 0; i
< 4; i
++) {
4526 if (drv
->auth_wep_key_len
[i
]) {
4527 params
.wep_key
[i
] = drv
->auth_wep_key
[i
];
4528 params
.wep_key_len
[i
] = drv
->auth_wep_key_len
[i
];
4532 drv
->retry_auth
= 1;
4533 return wpa_driver_nl80211_authenticate(bss
, ¶ms
);
4537 struct phy_info_arg
{
4539 struct hostapd_hw_modes
*modes
;
4542 static int phy_info_handler(struct nl_msg
*msg
, void *arg
)
4544 struct nlattr
*tb_msg
[NL80211_ATTR_MAX
+ 1];
4545 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
4546 struct phy_info_arg
*phy_info
= arg
;
4548 struct nlattr
*tb_band
[NL80211_BAND_ATTR_MAX
+ 1];
4550 struct nlattr
*tb_freq
[NL80211_FREQUENCY_ATTR_MAX
+ 1];
4551 static struct nla_policy freq_policy
[NL80211_FREQUENCY_ATTR_MAX
+ 1] = {
4552 [NL80211_FREQUENCY_ATTR_FREQ
] = { .type
= NLA_U32
},
4553 [NL80211_FREQUENCY_ATTR_DISABLED
] = { .type
= NLA_FLAG
},
4554 [NL80211_FREQUENCY_ATTR_PASSIVE_SCAN
] = { .type
= NLA_FLAG
},
4555 [NL80211_FREQUENCY_ATTR_NO_IBSS
] = { .type
= NLA_FLAG
},
4556 [NL80211_FREQUENCY_ATTR_RADAR
] = { .type
= NLA_FLAG
},
4557 [NL80211_FREQUENCY_ATTR_MAX_TX_POWER
] = { .type
= NLA_U32
},
4560 struct nlattr
*tb_rate
[NL80211_BITRATE_ATTR_MAX
+ 1];
4561 static struct nla_policy rate_policy
[NL80211_BITRATE_ATTR_MAX
+ 1] = {
4562 [NL80211_BITRATE_ATTR_RATE
] = { .type
= NLA_U32
},
4563 [NL80211_BITRATE_ATTR_2GHZ_SHORTPREAMBLE
] = { .type
= NLA_FLAG
},
4566 struct nlattr
*nl_band
;
4567 struct nlattr
*nl_freq
;
4568 struct nlattr
*nl_rate
;
4569 int rem_band
, rem_freq
, rem_rate
;
4570 struct hostapd_hw_modes
*mode
;
4571 int idx
, mode_is_set
;
4573 nla_parse(tb_msg
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
4574 genlmsg_attrlen(gnlh
, 0), NULL
);
4576 if (!tb_msg
[NL80211_ATTR_WIPHY_BANDS
])
4579 nla_for_each_nested(nl_band
, tb_msg
[NL80211_ATTR_WIPHY_BANDS
], rem_band
) {
4580 mode
= os_realloc(phy_info
->modes
, (*phy_info
->num_modes
+ 1) * sizeof(*mode
));
4583 phy_info
->modes
= mode
;
4587 mode
= &phy_info
->modes
[*(phy_info
->num_modes
)];
4588 memset(mode
, 0, sizeof(*mode
));
4589 mode
->flags
= HOSTAPD_MODE_FLAG_HT_INFO_KNOWN
;
4590 *(phy_info
->num_modes
) += 1;
4592 nla_parse(tb_band
, NL80211_BAND_ATTR_MAX
, nla_data(nl_band
),
4593 nla_len(nl_band
), NULL
);
4595 if (tb_band
[NL80211_BAND_ATTR_HT_CAPA
]) {
4596 mode
->ht_capab
= nla_get_u16(
4597 tb_band
[NL80211_BAND_ATTR_HT_CAPA
]);
4600 if (tb_band
[NL80211_BAND_ATTR_HT_AMPDU_FACTOR
]) {
4601 mode
->a_mpdu_params
|= nla_get_u8(
4602 tb_band
[NL80211_BAND_ATTR_HT_AMPDU_FACTOR
]) &
4606 if (tb_band
[NL80211_BAND_ATTR_HT_AMPDU_DENSITY
]) {
4607 mode
->a_mpdu_params
|= nla_get_u8(
4608 tb_band
[NL80211_BAND_ATTR_HT_AMPDU_DENSITY
]) <<
4612 if (tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
] &&
4613 nla_len(tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
])) {
4615 mcs
= nla_data(tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
]);
4616 os_memcpy(mode
->mcs_set
, mcs
, 16);
4619 nla_for_each_nested(nl_freq
, tb_band
[NL80211_BAND_ATTR_FREQS
], rem_freq
) {
4620 nla_parse(tb_freq
, NL80211_FREQUENCY_ATTR_MAX
, nla_data(nl_freq
),
4621 nla_len(nl_freq
), freq_policy
);
4622 if (!tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
])
4624 mode
->num_channels
++;
4627 mode
->channels
= os_zalloc(mode
->num_channels
* sizeof(struct hostapd_channel_data
));
4628 if (!mode
->channels
)
4633 nla_for_each_nested(nl_freq
, tb_band
[NL80211_BAND_ATTR_FREQS
], rem_freq
) {
4634 nla_parse(tb_freq
, NL80211_FREQUENCY_ATTR_MAX
, nla_data(nl_freq
),
4635 nla_len(nl_freq
), freq_policy
);
4636 if (!tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
])
4639 mode
->channels
[idx
].freq
= nla_get_u32(tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
]);
4640 mode
->channels
[idx
].flag
= 0;
4643 /* crude heuristic */
4644 if (mode
->channels
[idx
].freq
< 4000)
4645 mode
->mode
= HOSTAPD_MODE_IEEE80211B
;
4647 mode
->mode
= HOSTAPD_MODE_IEEE80211A
;
4651 /* crude heuristic */
4652 if (mode
->channels
[idx
].freq
< 4000)
4653 if (mode
->channels
[idx
].freq
== 2484)
4654 mode
->channels
[idx
].chan
= 14;
4656 mode
->channels
[idx
].chan
= (mode
->channels
[idx
].freq
- 2407) / 5;
4658 mode
->channels
[idx
].chan
= mode
->channels
[idx
].freq
/5 - 1000;
4660 if (tb_freq
[NL80211_FREQUENCY_ATTR_DISABLED
])
4661 mode
->channels
[idx
].flag
|=
4662 HOSTAPD_CHAN_DISABLED
;
4663 if (tb_freq
[NL80211_FREQUENCY_ATTR_PASSIVE_SCAN
])
4664 mode
->channels
[idx
].flag
|=
4665 HOSTAPD_CHAN_PASSIVE_SCAN
;
4666 if (tb_freq
[NL80211_FREQUENCY_ATTR_NO_IBSS
])
4667 mode
->channels
[idx
].flag
|=
4668 HOSTAPD_CHAN_NO_IBSS
;
4669 if (tb_freq
[NL80211_FREQUENCY_ATTR_RADAR
])
4670 mode
->channels
[idx
].flag
|=
4673 if (tb_freq
[NL80211_FREQUENCY_ATTR_MAX_TX_POWER
] &&
4674 !tb_freq
[NL80211_FREQUENCY_ATTR_DISABLED
])
4675 mode
->channels
[idx
].max_tx_power
=
4676 nla_get_u32(tb_freq
[NL80211_FREQUENCY_ATTR_MAX_TX_POWER
]) / 100;
4681 nla_for_each_nested(nl_rate
, tb_band
[NL80211_BAND_ATTR_RATES
], rem_rate
) {
4682 nla_parse(tb_rate
, NL80211_BITRATE_ATTR_MAX
, nla_data(nl_rate
),
4683 nla_len(nl_rate
), rate_policy
);
4684 if (!tb_rate
[NL80211_BITRATE_ATTR_RATE
])
4689 mode
->rates
= os_zalloc(mode
->num_rates
* sizeof(int));
4695 nla_for_each_nested(nl_rate
, tb_band
[NL80211_BAND_ATTR_RATES
], rem_rate
) {
4696 nla_parse(tb_rate
, NL80211_BITRATE_ATTR_MAX
, nla_data(nl_rate
),
4697 nla_len(nl_rate
), rate_policy
);
4698 if (!tb_rate
[NL80211_BITRATE_ATTR_RATE
])
4700 mode
->rates
[idx
] = nla_get_u32(tb_rate
[NL80211_BITRATE_ATTR_RATE
]);
4702 /* crude heuristic */
4703 if (mode
->mode
== HOSTAPD_MODE_IEEE80211B
&&
4704 mode
->rates
[idx
] > 200)
4705 mode
->mode
= HOSTAPD_MODE_IEEE80211G
;
4714 static struct hostapd_hw_modes
*
4715 wpa_driver_nl80211_add_11b(struct hostapd_hw_modes
*modes
, u16
*num_modes
)
4718 struct hostapd_hw_modes
*mode11g
= NULL
, *nmodes
, *mode
;
4719 int i
, mode11g_idx
= -1;
4721 /* If only 802.11g mode is included, use it to construct matching
4722 * 802.11b mode data. */
4724 for (m
= 0; m
< *num_modes
; m
++) {
4725 if (modes
[m
].mode
== HOSTAPD_MODE_IEEE80211B
)
4726 return modes
; /* 802.11b already included */
4727 if (modes
[m
].mode
== HOSTAPD_MODE_IEEE80211G
)
4731 if (mode11g_idx
< 0)
4732 return modes
; /* 2.4 GHz band not supported at all */
4734 nmodes
= os_realloc(modes
, (*num_modes
+ 1) * sizeof(*nmodes
));
4736 return modes
; /* Could not add 802.11b mode */
4738 mode
= &nmodes
[*num_modes
];
4739 os_memset(mode
, 0, sizeof(*mode
));
4743 mode
->mode
= HOSTAPD_MODE_IEEE80211B
;
4745 mode11g
= &modes
[mode11g_idx
];
4746 mode
->num_channels
= mode11g
->num_channels
;
4747 mode
->channels
= os_malloc(mode11g
->num_channels
*
4748 sizeof(struct hostapd_channel_data
));
4749 if (mode
->channels
== NULL
) {
4751 return modes
; /* Could not add 802.11b mode */
4753 os_memcpy(mode
->channels
, mode11g
->channels
,
4754 mode11g
->num_channels
* sizeof(struct hostapd_channel_data
));
4756 mode
->num_rates
= 0;
4757 mode
->rates
= os_malloc(4 * sizeof(int));
4758 if (mode
->rates
== NULL
) {
4759 os_free(mode
->channels
);
4761 return modes
; /* Could not add 802.11b mode */
4764 for (i
= 0; i
< mode11g
->num_rates
; i
++) {
4765 if (mode11g
->rates
[i
] != 10 && mode11g
->rates
[i
] != 20 &&
4766 mode11g
->rates
[i
] != 55 && mode11g
->rates
[i
] != 110)
4768 mode
->rates
[mode
->num_rates
] = mode11g
->rates
[i
];
4770 if (mode
->num_rates
== 4)
4774 if (mode
->num_rates
== 0) {
4775 os_free(mode
->channels
);
4776 os_free(mode
->rates
);
4778 return modes
; /* No 802.11b rates */
4781 wpa_printf(MSG_DEBUG
, "nl80211: Added 802.11b mode based on 802.11g "
4788 static void nl80211_set_ht40_mode(struct hostapd_hw_modes
*mode
, int start
,
4793 for (c
= 0; c
< mode
->num_channels
; c
++) {
4794 struct hostapd_channel_data
*chan
= &mode
->channels
[c
];
4795 if (chan
->freq
- 10 >= start
&& chan
->freq
+ 10 <= end
)
4796 chan
->flag
|= HOSTAPD_CHAN_HT40
;
4801 static void nl80211_set_ht40_mode_sec(struct hostapd_hw_modes
*mode
, int start
,
4806 for (c
= 0; c
< mode
->num_channels
; c
++) {
4807 struct hostapd_channel_data
*chan
= &mode
->channels
[c
];
4808 if (!(chan
->flag
& HOSTAPD_CHAN_HT40
))
4810 if (chan
->freq
- 30 >= start
&& chan
->freq
- 10 <= end
)
4811 chan
->flag
|= HOSTAPD_CHAN_HT40MINUS
;
4812 if (chan
->freq
+ 10 >= start
&& chan
->freq
+ 30 <= end
)
4813 chan
->flag
|= HOSTAPD_CHAN_HT40PLUS
;
4818 static void nl80211_reg_rule_ht40(struct nlattr
*tb
[],
4819 struct phy_info_arg
*results
)
4821 u32 start
, end
, max_bw
;
4824 if (tb
[NL80211_ATTR_FREQ_RANGE_START
] == NULL
||
4825 tb
[NL80211_ATTR_FREQ_RANGE_END
] == NULL
||
4826 tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
] == NULL
)
4829 start
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_START
]) / 1000;
4830 end
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_END
]) / 1000;
4831 max_bw
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
]) / 1000;
4833 wpa_printf(MSG_DEBUG
, "nl80211: %u-%u @ %u MHz",
4834 start
, end
, max_bw
);
4838 for (m
= 0; m
< *results
->num_modes
; m
++) {
4839 if (!(results
->modes
[m
].ht_capab
&
4840 HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET
))
4842 nl80211_set_ht40_mode(&results
->modes
[m
], start
, end
);
4847 static void nl80211_reg_rule_sec(struct nlattr
*tb
[],
4848 struct phy_info_arg
*results
)
4850 u32 start
, end
, max_bw
;
4853 if (tb
[NL80211_ATTR_FREQ_RANGE_START
] == NULL
||
4854 tb
[NL80211_ATTR_FREQ_RANGE_END
] == NULL
||
4855 tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
] == NULL
)
4858 start
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_START
]) / 1000;
4859 end
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_END
]) / 1000;
4860 max_bw
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
]) / 1000;
4865 for (m
= 0; m
< *results
->num_modes
; m
++) {
4866 if (!(results
->modes
[m
].ht_capab
&
4867 HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET
))
4869 nl80211_set_ht40_mode_sec(&results
->modes
[m
], start
, end
);
4874 static int nl80211_get_reg(struct nl_msg
*msg
, void *arg
)
4876 struct phy_info_arg
*results
= arg
;
4877 struct nlattr
*tb_msg
[NL80211_ATTR_MAX
+ 1];
4878 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
4879 struct nlattr
*nl_rule
;
4880 struct nlattr
*tb_rule
[NL80211_FREQUENCY_ATTR_MAX
+ 1];
4882 static struct nla_policy reg_policy
[NL80211_FREQUENCY_ATTR_MAX
+ 1] = {
4883 [NL80211_ATTR_REG_RULE_FLAGS
] = { .type
= NLA_U32
},
4884 [NL80211_ATTR_FREQ_RANGE_START
] = { .type
= NLA_U32
},
4885 [NL80211_ATTR_FREQ_RANGE_END
] = { .type
= NLA_U32
},
4886 [NL80211_ATTR_FREQ_RANGE_MAX_BW
] = { .type
= NLA_U32
},
4887 [NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN
] = { .type
= NLA_U32
},
4888 [NL80211_ATTR_POWER_RULE_MAX_EIRP
] = { .type
= NLA_U32
},
4891 nla_parse(tb_msg
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
4892 genlmsg_attrlen(gnlh
, 0), NULL
);
4893 if (!tb_msg
[NL80211_ATTR_REG_ALPHA2
] ||
4894 !tb_msg
[NL80211_ATTR_REG_RULES
]) {
4895 wpa_printf(MSG_DEBUG
, "nl80211: No regulatory information "
4900 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory information - country=%s",
4901 (char *) nla_data(tb_msg
[NL80211_ATTR_REG_ALPHA2
]));
4903 nla_for_each_nested(nl_rule
, tb_msg
[NL80211_ATTR_REG_RULES
], rem_rule
)
4905 nla_parse(tb_rule
, NL80211_FREQUENCY_ATTR_MAX
,
4906 nla_data(nl_rule
), nla_len(nl_rule
), reg_policy
);
4907 nl80211_reg_rule_ht40(tb_rule
, results
);
4910 nla_for_each_nested(nl_rule
, tb_msg
[NL80211_ATTR_REG_RULES
], rem_rule
)
4912 nla_parse(tb_rule
, NL80211_FREQUENCY_ATTR_MAX
,
4913 nla_data(nl_rule
), nla_len(nl_rule
), reg_policy
);
4914 nl80211_reg_rule_sec(tb_rule
, results
);
4921 static int nl80211_set_ht40_flags(struct wpa_driver_nl80211_data
*drv
,
4922 struct phy_info_arg
*results
)
4926 msg
= nlmsg_alloc();
4930 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_REG
);
4931 return send_and_recv_msgs(drv
, msg
, nl80211_get_reg
, results
);
4935 static struct hostapd_hw_modes
*
4936 wpa_driver_nl80211_get_hw_feature_data(void *priv
, u16
*num_modes
, u16
*flags
)
4938 struct i802_bss
*bss
= priv
;
4939 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4941 struct phy_info_arg result
= {
4942 .num_modes
= num_modes
,
4949 msg
= nlmsg_alloc();
4953 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_WIPHY
);
4955 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4957 if (send_and_recv_msgs(drv
, msg
, phy_info_handler
, &result
) == 0) {
4958 nl80211_set_ht40_flags(drv
, &result
);
4959 return wpa_driver_nl80211_add_11b(result
.modes
, num_modes
);
4966 static int wpa_driver_nl80211_send_mntr(struct wpa_driver_nl80211_data
*drv
,
4967 const void *data
, size_t len
,
4968 int encrypt
, int noack
)
4971 0x00, 0x00, /* radiotap version */
4972 0x0e, 0x00, /* radiotap length */
4973 0x02, 0xc0, 0x00, 0x00, /* bmap: flags, tx and rx flags */
4974 IEEE80211_RADIOTAP_F_FRAG
, /* F_FRAG (fragment if required) */
4976 0x00, 0x00, /* RX and TX flags to indicate that */
4977 0x00, 0x00, /* this is the injected frame directly */
4979 struct iovec iov
[2] = {
4981 .iov_base
= &rtap_hdr
,
4982 .iov_len
= sizeof(rtap_hdr
),
4985 .iov_base
= (void *) data
,
4989 struct msghdr msg
= {
4994 .msg_control
= NULL
,
4995 .msg_controllen
= 0,
5002 rtap_hdr
[8] |= IEEE80211_RADIOTAP_F_WEP
;
5004 if (drv
->monitor_sock
< 0) {
5005 wpa_printf(MSG_DEBUG
, "nl80211: No monitor socket available "
5006 "for %s", __func__
);
5011 txflags
|= IEEE80211_RADIOTAP_F_TX_NOACK
;
5012 *(le16
*) &rtap_hdr
[12] = host_to_le16(txflags
);
5014 res
= sendmsg(drv
->monitor_sock
, &msg
, 0);
5016 wpa_printf(MSG_INFO
, "nl80211: sendmsg: %s", strerror(errno
));
5023 static int wpa_driver_nl80211_send_frame(struct i802_bss
*bss
,
5024 const void *data
, size_t len
,
5025 int encrypt
, int noack
)
5027 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5030 if (drv
->use_monitor
)
5031 return wpa_driver_nl80211_send_mntr(drv
, data
, len
,
5034 return nl80211_send_frame_cmd(bss
, bss
->freq
, 0, data
, len
,
5035 &cookie
, 0, noack
, 0);
5039 static int wpa_driver_nl80211_send_mlme(void *priv
, const u8
*data
,
5040 size_t data_len
, int noack
)
5042 struct i802_bss
*bss
= priv
;
5043 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5044 struct ieee80211_mgmt
*mgmt
;
5048 mgmt
= (struct ieee80211_mgmt
*) data
;
5049 fc
= le_to_host16(mgmt
->frame_control
);
5051 if (is_sta_interface(drv
->nlmode
) &&
5052 WLAN_FC_GET_TYPE(fc
) == WLAN_FC_TYPE_MGMT
&&
5053 WLAN_FC_GET_STYPE(fc
) == WLAN_FC_STYPE_PROBE_RESP
) {
5055 * The use of last_mgmt_freq is a bit of a hack,
5056 * but it works due to the single-threaded nature
5057 * of wpa_supplicant.
5059 return nl80211_send_frame_cmd(bss
, drv
->last_mgmt_freq
, 0,
5060 data
, data_len
, NULL
, 1, noack
,
5064 if (drv
->device_ap_sme
&& is_ap_interface(drv
->nlmode
)) {
5065 return nl80211_send_frame_cmd(bss
, bss
->freq
, 0,
5066 data
, data_len
, NULL
,
5070 if (WLAN_FC_GET_TYPE(fc
) == WLAN_FC_TYPE_MGMT
&&
5071 WLAN_FC_GET_STYPE(fc
) == WLAN_FC_STYPE_AUTH
) {
5073 * Only one of the authentication frame types is encrypted.
5074 * In order for static WEP encryption to work properly (i.e.,
5075 * to not encrypt the frame), we need to tell mac80211 about
5076 * the frames that must not be encrypted.
5078 u16 auth_alg
= le_to_host16(mgmt
->u
.auth
.auth_alg
);
5079 u16 auth_trans
= le_to_host16(mgmt
->u
.auth
.auth_transaction
);
5080 if (auth_alg
!= WLAN_AUTH_SHARED_KEY
|| auth_trans
!= 3)
5084 return wpa_driver_nl80211_send_frame(bss
, data
, data_len
, encrypt
,
5089 static int nl80211_set_bss(struct i802_bss
*bss
, int cts
, int preamble
,
5090 int slot
, int ht_opmode
, int ap_isolate
,
5093 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5096 msg
= nlmsg_alloc();
5100 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_BSS
);
5103 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_CTS_PROT
, cts
);
5105 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_SHORT_PREAMBLE
, preamble
);
5107 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_SHORT_SLOT_TIME
, slot
);
5109 NLA_PUT_U16(msg
, NL80211_ATTR_BSS_HT_OPMODE
, ht_opmode
);
5110 if (ap_isolate
>= 0)
5111 NLA_PUT_U8(msg
, NL80211_ATTR_AP_ISOLATE
, ap_isolate
);
5114 u8 rates
[NL80211_MAX_SUPP_RATES
];
5118 for (i
= 0; i
< NL80211_MAX_SUPP_RATES
&& basic_rates
[i
] >= 0;
5120 rates
[rates_len
++] = basic_rates
[i
] / 5;
5122 NLA_PUT(msg
, NL80211_ATTR_BSS_BASIC_RATES
, rates_len
, rates
);
5125 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
5127 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5133 static int wpa_driver_nl80211_set_ap(void *priv
,
5134 struct wpa_driver_ap_params
*params
)
5136 struct i802_bss
*bss
= priv
;
5137 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5139 u8 cmd
= NL80211_CMD_NEW_BEACON
;
5142 int ifindex
= if_nametoindex(bss
->ifname
);
5147 beacon_set
= bss
->beacon_set
;
5149 msg
= nlmsg_alloc();
5153 wpa_printf(MSG_DEBUG
, "nl80211: Set beacon (beacon_set=%d)",
5156 cmd
= NL80211_CMD_SET_BEACON
;
5158 nl80211_cmd(drv
, msg
, 0, cmd
);
5159 NLA_PUT(msg
, NL80211_ATTR_BEACON_HEAD
, params
->head_len
, params
->head
);
5160 NLA_PUT(msg
, NL80211_ATTR_BEACON_TAIL
, params
->tail_len
, params
->tail
);
5161 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
5162 NLA_PUT_U32(msg
, NL80211_ATTR_BEACON_INTERVAL
, params
->beacon_int
);
5163 NLA_PUT_U32(msg
, NL80211_ATTR_DTIM_PERIOD
, params
->dtim_period
);
5164 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
5166 if (params
->proberesp
&& params
->proberesp_len
)
5167 NLA_PUT(msg
, NL80211_ATTR_PROBE_RESP
, params
->proberesp_len
,
5169 switch (params
->hide_ssid
) {
5170 case NO_SSID_HIDING
:
5171 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
5172 NL80211_HIDDEN_SSID_NOT_IN_USE
);
5174 case HIDDEN_SSID_ZERO_LEN
:
5175 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
5176 NL80211_HIDDEN_SSID_ZERO_LEN
);
5178 case HIDDEN_SSID_ZERO_CONTENTS
:
5179 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
5180 NL80211_HIDDEN_SSID_ZERO_CONTENTS
);
5183 if (params
->privacy
)
5184 NLA_PUT_FLAG(msg
, NL80211_ATTR_PRIVACY
);
5185 if ((params
->auth_algs
& (WPA_AUTH_ALG_OPEN
| WPA_AUTH_ALG_SHARED
)) ==
5186 (WPA_AUTH_ALG_OPEN
| WPA_AUTH_ALG_SHARED
)) {
5187 /* Leave out the attribute */
5188 } else if (params
->auth_algs
& WPA_AUTH_ALG_SHARED
)
5189 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
,
5190 NL80211_AUTHTYPE_SHARED_KEY
);
5192 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
,
5193 NL80211_AUTHTYPE_OPEN_SYSTEM
);
5196 if (params
->wpa_version
& WPA_PROTO_WPA
)
5197 ver
|= NL80211_WPA_VERSION_1
;
5198 if (params
->wpa_version
& WPA_PROTO_RSN
)
5199 ver
|= NL80211_WPA_VERSION_2
;
5201 NLA_PUT_U32(msg
, NL80211_ATTR_WPA_VERSIONS
, ver
);
5204 if (params
->key_mgmt_suites
& WPA_KEY_MGMT_IEEE8021X
)
5205 suites
[num_suites
++] = WLAN_AKM_SUITE_8021X
;
5206 if (params
->key_mgmt_suites
& WPA_KEY_MGMT_PSK
)
5207 suites
[num_suites
++] = WLAN_AKM_SUITE_PSK
;
5209 NLA_PUT(msg
, NL80211_ATTR_AKM_SUITES
,
5210 num_suites
* sizeof(u32
), suites
);
5213 if (params
->key_mgmt_suites
& WPA_KEY_MGMT_IEEE8021X
&&
5214 params
->pairwise_ciphers
& (WPA_CIPHER_WEP104
| WPA_CIPHER_WEP40
))
5215 NLA_PUT_FLAG(msg
, NL80211_ATTR_CONTROL_PORT_NO_ENCRYPT
);
5218 if (params
->pairwise_ciphers
& WPA_CIPHER_CCMP
)
5219 suites
[num_suites
++] = WLAN_CIPHER_SUITE_CCMP
;
5220 if (params
->pairwise_ciphers
& WPA_CIPHER_TKIP
)
5221 suites
[num_suites
++] = WLAN_CIPHER_SUITE_TKIP
;
5222 if (params
->pairwise_ciphers
& WPA_CIPHER_WEP104
)
5223 suites
[num_suites
++] = WLAN_CIPHER_SUITE_WEP104
;
5224 if (params
->pairwise_ciphers
& WPA_CIPHER_WEP40
)
5225 suites
[num_suites
++] = WLAN_CIPHER_SUITE_WEP40
;
5227 NLA_PUT(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
,
5228 num_suites
* sizeof(u32
), suites
);
5231 switch (params
->group_cipher
) {
5232 case WPA_CIPHER_CCMP
:
5233 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
5234 WLAN_CIPHER_SUITE_CCMP
);
5236 case WPA_CIPHER_TKIP
:
5237 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
5238 WLAN_CIPHER_SUITE_TKIP
);
5240 case WPA_CIPHER_WEP104
:
5241 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
5242 WLAN_CIPHER_SUITE_WEP104
);
5244 case WPA_CIPHER_WEP40
:
5245 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
5246 WLAN_CIPHER_SUITE_WEP40
);
5250 if (params
->beacon_ies
) {
5251 NLA_PUT(msg
, NL80211_ATTR_IE
, wpabuf_len(params
->beacon_ies
),
5252 wpabuf_head(params
->beacon_ies
));
5254 if (params
->proberesp_ies
) {
5255 NLA_PUT(msg
, NL80211_ATTR_IE_PROBE_RESP
,
5256 wpabuf_len(params
->proberesp_ies
),
5257 wpabuf_head(params
->proberesp_ies
));
5259 if (params
->assocresp_ies
) {
5260 NLA_PUT(msg
, NL80211_ATTR_IE_ASSOC_RESP
,
5261 wpabuf_len(params
->assocresp_ies
),
5262 wpabuf_head(params
->assocresp_ies
));
5265 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5267 wpa_printf(MSG_DEBUG
, "nl80211: Beacon set failed: %d (%s)",
5268 ret
, strerror(-ret
));
5270 bss
->beacon_set
= 1;
5271 nl80211_set_bss(bss
, params
->cts_protect
, params
->preamble
,
5272 params
->short_slot_time
, params
->ht_opmode
,
5273 params
->isolate
, params
->basic_rates
);
5281 static int wpa_driver_nl80211_set_freq(struct i802_bss
*bss
,
5282 int freq
, int ht_enabled
,
5283 int sec_channel_offset
)
5285 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5289 wpa_printf(MSG_DEBUG
, "nl80211: Set freq %d (ht_enabled=%d "
5290 "sec_channel_offset=%d)",
5291 freq
, ht_enabled
, sec_channel_offset
);
5292 msg
= nlmsg_alloc();
5296 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
5298 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5299 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
5301 switch (sec_channel_offset
) {
5303 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
5304 NL80211_CHAN_HT40MINUS
);
5307 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
5308 NL80211_CHAN_HT40PLUS
);
5311 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
5317 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5322 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set channel (freq=%d): "
5323 "%d (%s)", freq
, ret
, strerror(-ret
));
5329 static u32
sta_flags_nl80211(int flags
)
5333 if (flags
& WPA_STA_AUTHORIZED
)
5334 f
|= BIT(NL80211_STA_FLAG_AUTHORIZED
);
5335 if (flags
& WPA_STA_WMM
)
5336 f
|= BIT(NL80211_STA_FLAG_WME
);
5337 if (flags
& WPA_STA_SHORT_PREAMBLE
)
5338 f
|= BIT(NL80211_STA_FLAG_SHORT_PREAMBLE
);
5339 if (flags
& WPA_STA_MFP
)
5340 f
|= BIT(NL80211_STA_FLAG_MFP
);
5341 if (flags
& WPA_STA_TDLS_PEER
)
5342 f
|= BIT(NL80211_STA_FLAG_TDLS_PEER
);
5348 static int wpa_driver_nl80211_sta_add(void *priv
,
5349 struct hostapd_sta_add_params
*params
)
5351 struct i802_bss
*bss
= priv
;
5352 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5354 struct nl80211_sta_flag_update upd
;
5357 if ((params
->flags
& WPA_STA_TDLS_PEER
) &&
5358 !(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
5361 msg
= nlmsg_alloc();
5365 nl80211_cmd(drv
, msg
, 0, params
->set
? NL80211_CMD_SET_STATION
:
5366 NL80211_CMD_NEW_STATION
);
5368 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
5369 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->addr
);
5370 NLA_PUT(msg
, NL80211_ATTR_STA_SUPPORTED_RATES
, params
->supp_rates_len
,
5371 params
->supp_rates
);
5373 NLA_PUT_U16(msg
, NL80211_ATTR_STA_AID
, params
->aid
);
5374 NLA_PUT_U16(msg
, NL80211_ATTR_STA_LISTEN_INTERVAL
,
5375 params
->listen_interval
);
5377 if (params
->ht_capabilities
) {
5378 NLA_PUT(msg
, NL80211_ATTR_HT_CAPABILITY
,
5379 sizeof(*params
->ht_capabilities
),
5380 params
->ht_capabilities
);
5383 os_memset(&upd
, 0, sizeof(upd
));
5384 upd
.mask
= sta_flags_nl80211(params
->flags
);
5386 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
5388 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5390 wpa_printf(MSG_DEBUG
, "nl80211: NL80211_CMD_%s_STATION "
5391 "result: %d (%s)", params
->set
? "SET" : "NEW", ret
,
5400 static int wpa_driver_nl80211_sta_remove(void *priv
, const u8
*addr
)
5402 struct i802_bss
*bss
= priv
;
5403 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5407 msg
= nlmsg_alloc();
5411 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_STATION
);
5413 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
5414 if_nametoindex(bss
->ifname
));
5415 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
5417 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5426 static void nl80211_remove_iface(struct wpa_driver_nl80211_data
*drv
,
5431 wpa_printf(MSG_DEBUG
, "nl80211: Remove interface ifindex=%d", ifidx
);
5433 /* stop listening for EAPOL on this interface */
5434 del_ifidx(drv
, ifidx
);
5436 msg
= nlmsg_alloc();
5438 goto nla_put_failure
;
5440 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_INTERFACE
);
5441 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifidx
);
5443 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
5446 wpa_printf(MSG_ERROR
, "Failed to remove interface (ifidx=%d)", ifidx
);
5450 static const char * nl80211_iftype_str(enum nl80211_iftype mode
)
5453 case NL80211_IFTYPE_ADHOC
:
5455 case NL80211_IFTYPE_STATION
:
5457 case NL80211_IFTYPE_AP
:
5459 case NL80211_IFTYPE_MONITOR
:
5461 case NL80211_IFTYPE_P2P_CLIENT
:
5462 return "P2P_CLIENT";
5463 case NL80211_IFTYPE_P2P_GO
:
5471 static int nl80211_create_iface_once(struct wpa_driver_nl80211_data
*drv
,
5473 enum nl80211_iftype iftype
,
5474 const u8
*addr
, int wds
)
5476 struct nl_msg
*msg
, *flags
= NULL
;
5480 wpa_printf(MSG_DEBUG
, "nl80211: Create interface iftype %d (%s)",
5481 iftype
, nl80211_iftype_str(iftype
));
5483 msg
= nlmsg_alloc();
5487 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_NEW_INTERFACE
);
5488 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5489 NLA_PUT_STRING(msg
, NL80211_ATTR_IFNAME
, ifname
);
5490 NLA_PUT_U32(msg
, NL80211_ATTR_IFTYPE
, iftype
);
5492 if (iftype
== NL80211_IFTYPE_MONITOR
) {
5495 flags
= nlmsg_alloc();
5497 goto nla_put_failure
;
5499 NLA_PUT_FLAG(flags
, NL80211_MNTR_FLAG_COOK_FRAMES
);
5501 err
= nla_put_nested(msg
, NL80211_ATTR_MNTR_FLAGS
, flags
);
5506 goto nla_put_failure
;
5508 NLA_PUT_U8(msg
, NL80211_ATTR_4ADDR
, wds
);
5511 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5514 wpa_printf(MSG_ERROR
, "Failed to create interface %s: %d (%s)",
5515 ifname
, ret
, strerror(-ret
));
5519 ifidx
= if_nametoindex(ifname
);
5520 wpa_printf(MSG_DEBUG
, "nl80211: New interface %s created: ifindex=%d",
5526 /* start listening for EAPOL on this interface */
5527 add_ifidx(drv
, ifidx
);
5529 if (addr
&& iftype
!= NL80211_IFTYPE_MONITOR
&&
5530 linux_set_ifhwaddr(drv
->global
->ioctl_sock
, ifname
, addr
)) {
5531 nl80211_remove_iface(drv
, ifidx
);
5539 static int nl80211_create_iface(struct wpa_driver_nl80211_data
*drv
,
5540 const char *ifname
, enum nl80211_iftype iftype
,
5541 const u8
*addr
, int wds
)
5545 ret
= nl80211_create_iface_once(drv
, ifname
, iftype
, addr
, wds
);
5547 /* if error occurred and interface exists already */
5548 if (ret
== -ENFILE
&& if_nametoindex(ifname
)) {
5549 wpa_printf(MSG_INFO
, "Try to remove and re-create %s", ifname
);
5551 /* Try to remove the interface that was already there. */
5552 nl80211_remove_iface(drv
, if_nametoindex(ifname
));
5554 /* Try to create the interface again */
5555 ret
= nl80211_create_iface_once(drv
, ifname
, iftype
, addr
,
5559 if (ret
>= 0 && is_p2p_interface(iftype
))
5560 nl80211_disable_11b_rates(drv
, ret
, 1);
5566 static void handle_tx_callback(void *ctx
, u8
*buf
, size_t len
, int ok
)
5568 struct ieee80211_hdr
*hdr
;
5570 union wpa_event_data event
;
5572 hdr
= (struct ieee80211_hdr
*) buf
;
5573 fc
= le_to_host16(hdr
->frame_control
);
5575 os_memset(&event
, 0, sizeof(event
));
5576 event
.tx_status
.type
= WLAN_FC_GET_TYPE(fc
);
5577 event
.tx_status
.stype
= WLAN_FC_GET_STYPE(fc
);
5578 event
.tx_status
.dst
= hdr
->addr1
;
5579 event
.tx_status
.data
= buf
;
5580 event
.tx_status
.data_len
= len
;
5581 event
.tx_status
.ack
= ok
;
5582 wpa_supplicant_event(ctx
, EVENT_TX_STATUS
, &event
);
5586 static void from_unknown_sta(struct wpa_driver_nl80211_data
*drv
,
5587 u8
*buf
, size_t len
)
5589 struct ieee80211_hdr
*hdr
= (void *)buf
;
5591 union wpa_event_data event
;
5593 if (len
< sizeof(*hdr
))
5596 fc
= le_to_host16(hdr
->frame_control
);
5598 os_memset(&event
, 0, sizeof(event
));
5599 event
.rx_from_unknown
.bssid
= get_hdr_bssid(hdr
, len
);
5600 event
.rx_from_unknown
.addr
= hdr
->addr2
;
5601 event
.rx_from_unknown
.wds
= (fc
& (WLAN_FC_FROMDS
| WLAN_FC_TODS
)) ==
5602 (WLAN_FC_FROMDS
| WLAN_FC_TODS
);
5603 wpa_supplicant_event(drv
->ctx
, EVENT_RX_FROM_UNKNOWN
, &event
);
5607 static void handle_frame(struct wpa_driver_nl80211_data
*drv
,
5608 u8
*buf
, size_t len
, int datarate
, int ssi_signal
)
5610 struct ieee80211_hdr
*hdr
;
5612 union wpa_event_data event
;
5614 hdr
= (struct ieee80211_hdr
*) buf
;
5615 fc
= le_to_host16(hdr
->frame_control
);
5617 switch (WLAN_FC_GET_TYPE(fc
)) {
5618 case WLAN_FC_TYPE_MGMT
:
5619 os_memset(&event
, 0, sizeof(event
));
5620 event
.rx_mgmt
.frame
= buf
;
5621 event
.rx_mgmt
.frame_len
= len
;
5622 event
.rx_mgmt
.datarate
= datarate
;
5623 event
.rx_mgmt
.ssi_signal
= ssi_signal
;
5624 wpa_supplicant_event(drv
->ctx
, EVENT_RX_MGMT
, &event
);
5626 case WLAN_FC_TYPE_CTRL
:
5627 /* can only get here with PS-Poll frames */
5628 wpa_printf(MSG_DEBUG
, "CTRL");
5629 from_unknown_sta(drv
, buf
, len
);
5631 case WLAN_FC_TYPE_DATA
:
5632 from_unknown_sta(drv
, buf
, len
);
5638 static void handle_monitor_read(int sock
, void *eloop_ctx
, void *sock_ctx
)
5640 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
5642 unsigned char buf
[3000];
5643 struct ieee80211_radiotap_iterator iter
;
5645 int datarate
= 0, ssi_signal
= 0;
5646 int injected
= 0, failed
= 0, rxflags
= 0;
5648 len
= recv(sock
, buf
, sizeof(buf
), 0);
5654 if (ieee80211_radiotap_iterator_init(&iter
, (void*)buf
, len
)) {
5655 printf("received invalid radiotap frame\n");
5660 ret
= ieee80211_radiotap_iterator_next(&iter
);
5664 printf("received invalid radiotap frame (%d)\n", ret
);
5667 switch (iter
.this_arg_index
) {
5668 case IEEE80211_RADIOTAP_FLAGS
:
5669 if (*iter
.this_arg
& IEEE80211_RADIOTAP_F_FCS
)
5672 case IEEE80211_RADIOTAP_RX_FLAGS
:
5675 case IEEE80211_RADIOTAP_TX_FLAGS
:
5677 failed
= le_to_host16((*(uint16_t *) iter
.this_arg
)) &
5678 IEEE80211_RADIOTAP_F_TX_FAIL
;
5680 case IEEE80211_RADIOTAP_DATA_RETRIES
:
5682 case IEEE80211_RADIOTAP_CHANNEL
:
5683 /* TODO: convert from freq/flags to channel number */
5685 case IEEE80211_RADIOTAP_RATE
:
5686 datarate
= *iter
.this_arg
* 5;
5688 case IEEE80211_RADIOTAP_DB_ANTSIGNAL
:
5689 ssi_signal
= *iter
.this_arg
;
5694 if (rxflags
&& injected
)
5698 handle_frame(drv
, buf
+ iter
.max_length
,
5699 len
- iter
.max_length
, datarate
, ssi_signal
);
5701 handle_tx_callback(drv
->ctx
, buf
+ iter
.max_length
,
5702 len
- iter
.max_length
, !failed
);
5707 * we post-process the filter code later and rewrite
5708 * this to the offset to the last instruction
5713 static struct sock_filter msock_filter_insns
[] = {
5715 * do a little-endian load of the radiotap length field
5717 /* load lower byte into A */
5718 BPF_STMT(BPF_LD
| BPF_B
| BPF_ABS
, 2),
5719 /* put it into X (== index register) */
5720 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
5721 /* load upper byte into A */
5722 BPF_STMT(BPF_LD
| BPF_B
| BPF_ABS
, 3),
5723 /* left-shift it by 8 */
5724 BPF_STMT(BPF_ALU
| BPF_LSH
| BPF_K
, 8),
5726 BPF_STMT(BPF_ALU
| BPF_OR
| BPF_X
, 0),
5727 /* put result into X */
5728 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
5731 * Allow management frames through, this also gives us those
5732 * management frames that we sent ourselves with status
5734 /* load the lower byte of the IEEE 802.11 frame control field */
5735 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
5736 /* mask off frame type and version */
5737 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0xF),
5738 /* accept frame if it's both 0, fall through otherwise */
5739 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0, PASS
, 0),
5742 * TODO: add a bit to radiotap RX flags that indicates
5743 * that the sending station is not associated, then
5744 * add a filter here that filters on our DA and that flag
5745 * to allow us to deauth frames to that bad station.
5747 * For now allow all To DS data frames through.
5749 /* load the IEEE 802.11 frame control field */
5750 BPF_STMT(BPF_LD
| BPF_H
| BPF_IND
, 0),
5751 /* mask off frame type, version and DS status */
5752 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x0F03),
5753 /* accept frame if version 0, type 2 and To DS, fall through otherwise
5755 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0x0801, PASS
, 0),
5759 * drop non-data frames
5761 /* load the lower byte of the frame control field */
5762 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
5763 /* mask off QoS bit */
5764 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x0c),
5765 /* drop non-data frames */
5766 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 8, 0, FAIL
),
5768 /* load the upper byte of the frame control field */
5769 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 1),
5770 /* mask off toDS/fromDS */
5771 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x03),
5772 /* accept WDS frames */
5773 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 3, PASS
, 0),
5776 * add header length to index
5778 /* load the lower byte of the frame control field */
5779 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
5780 /* mask off QoS bit */
5781 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x80),
5782 /* right shift it by 6 to give 0 or 2 */
5783 BPF_STMT(BPF_ALU
| BPF_RSH
| BPF_K
, 6),
5784 /* add data frame header length */
5785 BPF_STMT(BPF_ALU
| BPF_ADD
| BPF_K
, 24),
5786 /* add index, was start of 802.11 header */
5787 BPF_STMT(BPF_ALU
| BPF_ADD
| BPF_X
, 0),
5788 /* move to index, now start of LL header */
5789 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
5792 * Accept empty data frames, we use those for
5795 BPF_STMT(BPF_LD
| BPF_W
| BPF_LEN
, 0),
5796 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_X
, 0, PASS
, 0),
5799 * Accept EAPOL frames
5801 BPF_STMT(BPF_LD
| BPF_W
| BPF_IND
, 0),
5802 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0xAAAA0300, 0, FAIL
),
5803 BPF_STMT(BPF_LD
| BPF_W
| BPF_IND
, 4),
5804 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0x0000888E, PASS
, FAIL
),
5806 /* keep these last two statements or change the code below */
5807 /* return 0 == "DROP" */
5808 BPF_STMT(BPF_RET
| BPF_K
, 0),
5809 /* return ~0 == "keep all" */
5810 BPF_STMT(BPF_RET
| BPF_K
, ~0),
5813 static struct sock_fprog msock_filter
= {
5814 .len
= sizeof(msock_filter_insns
)/sizeof(msock_filter_insns
[0]),
5815 .filter
= msock_filter_insns
,
5819 static int add_monitor_filter(int s
)
5823 /* rewrite all PASS/FAIL jump offsets */
5824 for (idx
= 0; idx
< msock_filter
.len
; idx
++) {
5825 struct sock_filter
*insn
= &msock_filter_insns
[idx
];
5827 if (BPF_CLASS(insn
->code
) == BPF_JMP
) {
5828 if (insn
->code
== (BPF_JMP
|BPF_JA
)) {
5829 if (insn
->k
== PASS
)
5830 insn
->k
= msock_filter
.len
- idx
- 2;
5831 else if (insn
->k
== FAIL
)
5832 insn
->k
= msock_filter
.len
- idx
- 3;
5835 if (insn
->jt
== PASS
)
5836 insn
->jt
= msock_filter
.len
- idx
- 2;
5837 else if (insn
->jt
== FAIL
)
5838 insn
->jt
= msock_filter
.len
- idx
- 3;
5840 if (insn
->jf
== PASS
)
5841 insn
->jf
= msock_filter
.len
- idx
- 2;
5842 else if (insn
->jf
== FAIL
)
5843 insn
->jf
= msock_filter
.len
- idx
- 3;
5847 if (setsockopt(s
, SOL_SOCKET
, SO_ATTACH_FILTER
,
5848 &msock_filter
, sizeof(msock_filter
))) {
5849 perror("SO_ATTACH_FILTER");
5857 static void nl80211_remove_monitor_interface(
5858 struct wpa_driver_nl80211_data
*drv
)
5860 drv
->monitor_refcount
--;
5861 if (drv
->monitor_refcount
> 0)
5864 if (drv
->monitor_ifidx
>= 0) {
5865 nl80211_remove_iface(drv
, drv
->monitor_ifidx
);
5866 drv
->monitor_ifidx
= -1;
5868 if (drv
->monitor_sock
>= 0) {
5869 eloop_unregister_read_sock(drv
->monitor_sock
);
5870 close(drv
->monitor_sock
);
5871 drv
->monitor_sock
= -1;
5877 nl80211_create_monitor_interface(struct wpa_driver_nl80211_data
*drv
)
5880 struct sockaddr_ll ll
;
5884 if (drv
->monitor_ifidx
>= 0) {
5885 drv
->monitor_refcount
++;
5889 if (os_strncmp(drv
->first_bss
.ifname
, "p2p-", 4) == 0) {
5891 * P2P interface name is of the format p2p-%s-%d. For monitor
5892 * interface name corresponding to P2P GO, replace "p2p-" with
5893 * "mon-" to retain the same interface name length and to
5894 * indicate that it is a monitor interface.
5896 snprintf(buf
, IFNAMSIZ
, "mon-%s", drv
->first_bss
.ifname
+ 4);
5898 /* Non-P2P interface with AP functionality. */
5899 snprintf(buf
, IFNAMSIZ
, "mon.%s", drv
->first_bss
.ifname
);
5902 buf
[IFNAMSIZ
- 1] = '\0';
5904 drv
->monitor_ifidx
=
5905 nl80211_create_iface(drv
, buf
, NL80211_IFTYPE_MONITOR
, NULL
,
5908 if (drv
->monitor_ifidx
== -EOPNOTSUPP
) {
5910 * This is backward compatibility for a few versions of
5911 * the kernel only that didn't advertise the right
5912 * attributes for the only driver that then supported
5913 * AP mode w/o monitor -- ath6kl.
5915 wpa_printf(MSG_DEBUG
, "nl80211: Driver does not support "
5916 "monitor interface type - try to run without it");
5917 drv
->device_ap_sme
= 1;
5920 if (drv
->monitor_ifidx
< 0)
5923 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, buf
, 1))
5926 memset(&ll
, 0, sizeof(ll
));
5927 ll
.sll_family
= AF_PACKET
;
5928 ll
.sll_ifindex
= drv
->monitor_ifidx
;
5929 drv
->monitor_sock
= socket(PF_PACKET
, SOCK_RAW
, htons(ETH_P_ALL
));
5930 if (drv
->monitor_sock
< 0) {
5931 perror("socket[PF_PACKET,SOCK_RAW]");
5935 if (add_monitor_filter(drv
->monitor_sock
)) {
5936 wpa_printf(MSG_INFO
, "Failed to set socket filter for monitor "
5937 "interface; do filtering in user space");
5938 /* This works, but will cost in performance. */
5941 if (bind(drv
->monitor_sock
, (struct sockaddr
*) &ll
, sizeof(ll
)) < 0) {
5942 perror("monitor socket bind");
5946 optlen
= sizeof(optval
);
5949 (drv
->monitor_sock
, SOL_SOCKET
, SO_PRIORITY
, &optval
, optlen
)) {
5950 perror("Failed to set socket priority");
5954 if (eloop_register_read_sock(drv
->monitor_sock
, handle_monitor_read
,
5956 printf("Could not register monitor read socket\n");
5962 nl80211_remove_monitor_interface(drv
);
5967 static int nl80211_setup_ap(struct i802_bss
*bss
)
5969 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5972 * Disable Probe Request reporting unless we need it in this way for
5973 * devices that include the AP SME, in the other case (unless using
5974 * monitor iface) we'll get it through the nl_mgmt socket instead.
5976 if (!drv
->device_ap_sme
)
5977 wpa_driver_nl80211_probe_req_report(bss
, 0);
5979 if (!drv
->device_ap_sme
&& !drv
->use_monitor
)
5980 if (nl80211_mgmt_subscribe_ap(bss
))
5983 if (!drv
->device_ap_sme
&& drv
->use_monitor
&&
5984 nl80211_create_monitor_interface(drv
) &&
5985 !drv
->device_ap_sme
)
5988 if (drv
->device_ap_sme
&&
5989 wpa_driver_nl80211_probe_req_report(bss
, 1) < 0) {
5990 wpa_printf(MSG_DEBUG
, "nl80211: Failed to enable "
5991 "Probe Request frame reporting in AP mode");
5992 /* Try to survive without this */
5999 static void nl80211_teardown_ap(struct i802_bss
*bss
)
6001 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6003 if (drv
->device_ap_sme
)
6004 wpa_driver_nl80211_probe_req_report(bss
, 0);
6005 else if (drv
->use_monitor
)
6006 nl80211_remove_monitor_interface(drv
);
6008 nl80211_mgmt_unsubscribe(bss
);
6010 bss
->beacon_set
= 0;
6014 static int nl80211_send_eapol_data(struct i802_bss
*bss
,
6015 const u8
*addr
, const u8
*data
,
6018 struct sockaddr_ll ll
;
6021 if (bss
->drv
->eapol_tx_sock
< 0) {
6022 wpa_printf(MSG_DEBUG
, "nl80211: No socket to send EAPOL");
6026 os_memset(&ll
, 0, sizeof(ll
));
6027 ll
.sll_family
= AF_PACKET
;
6028 ll
.sll_ifindex
= bss
->ifindex
;
6029 ll
.sll_protocol
= htons(ETH_P_PAE
);
6030 ll
.sll_halen
= ETH_ALEN
;
6031 os_memcpy(ll
.sll_addr
, addr
, ETH_ALEN
);
6032 ret
= sendto(bss
->drv
->eapol_tx_sock
, data
, data_len
, 0,
6033 (struct sockaddr
*) &ll
, sizeof(ll
));
6035 wpa_printf(MSG_ERROR
, "nl80211: EAPOL TX: %s",
6042 static const u8 rfc1042_header
[6] = { 0xaa, 0xaa, 0x03, 0x00, 0x00, 0x00 };
6044 static int wpa_driver_nl80211_hapd_send_eapol(
6045 void *priv
, const u8
*addr
, const u8
*data
,
6046 size_t data_len
, int encrypt
, const u8
*own_addr
, u32 flags
)
6048 struct i802_bss
*bss
= priv
;
6049 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6050 struct ieee80211_hdr
*hdr
;
6054 int qos
= flags
& WPA_STA_WMM
;
6056 if (drv
->device_ap_sme
|| !drv
->use_monitor
)
6057 return nl80211_send_eapol_data(bss
, addr
, data
, data_len
);
6059 len
= sizeof(*hdr
) + (qos
? 2 : 0) + sizeof(rfc1042_header
) + 2 +
6061 hdr
= os_zalloc(len
);
6063 printf("malloc() failed for i802_send_data(len=%lu)\n",
6064 (unsigned long) len
);
6068 hdr
->frame_control
=
6069 IEEE80211_FC(WLAN_FC_TYPE_DATA
, WLAN_FC_STYPE_DATA
);
6070 hdr
->frame_control
|= host_to_le16(WLAN_FC_FROMDS
);
6072 hdr
->frame_control
|= host_to_le16(WLAN_FC_ISWEP
);
6074 hdr
->frame_control
|=
6075 host_to_le16(WLAN_FC_STYPE_QOS_DATA
<< 4);
6078 memcpy(hdr
->IEEE80211_DA_FROMDS
, addr
, ETH_ALEN
);
6079 memcpy(hdr
->IEEE80211_BSSID_FROMDS
, own_addr
, ETH_ALEN
);
6080 memcpy(hdr
->IEEE80211_SA_FROMDS
, own_addr
, ETH_ALEN
);
6081 pos
= (u8
*) (hdr
+ 1);
6084 /* add an empty QoS header if needed */
6090 memcpy(pos
, rfc1042_header
, sizeof(rfc1042_header
));
6091 pos
+= sizeof(rfc1042_header
);
6092 WPA_PUT_BE16(pos
, ETH_P_PAE
);
6094 memcpy(pos
, data
, data_len
);
6096 res
= wpa_driver_nl80211_send_frame(bss
, (u8
*) hdr
, len
, encrypt
, 0);
6098 wpa_printf(MSG_ERROR
, "i802_send_eapol - packet len: %lu - "
6100 (unsigned long) len
, errno
, strerror(errno
));
6108 static int wpa_driver_nl80211_sta_set_flags(void *priv
, const u8
*addr
,
6110 int flags_or
, int flags_and
)
6112 struct i802_bss
*bss
= priv
;
6113 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6114 struct nl_msg
*msg
, *flags
= NULL
;
6115 struct nl80211_sta_flag_update upd
;
6117 msg
= nlmsg_alloc();
6121 flags
= nlmsg_alloc();
6127 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
6129 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
6130 if_nametoindex(bss
->ifname
));
6131 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
6134 * Backwards compatibility version using NL80211_ATTR_STA_FLAGS. This
6135 * can be removed eventually.
6137 if (total_flags
& WPA_STA_AUTHORIZED
)
6138 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_AUTHORIZED
);
6140 if (total_flags
& WPA_STA_WMM
)
6141 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_WME
);
6143 if (total_flags
& WPA_STA_SHORT_PREAMBLE
)
6144 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_SHORT_PREAMBLE
);
6146 if (total_flags
& WPA_STA_MFP
)
6147 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_MFP
);
6149 if (total_flags
& WPA_STA_TDLS_PEER
)
6150 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_TDLS_PEER
);
6152 if (nla_put_nested(msg
, NL80211_ATTR_STA_FLAGS
, flags
))
6153 goto nla_put_failure
;
6155 os_memset(&upd
, 0, sizeof(upd
));
6156 upd
.mask
= sta_flags_nl80211(flags_or
| ~flags_and
);
6157 upd
.set
= sta_flags_nl80211(flags_or
);
6158 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
6162 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6169 static int wpa_driver_nl80211_ap(struct wpa_driver_nl80211_data
*drv
,
6170 struct wpa_driver_associate_params
*params
)
6172 enum nl80211_iftype nlmode
;
6175 wpa_printf(MSG_DEBUG
, "nl80211: Setup AP operations for P2P "
6177 nlmode
= NL80211_IFTYPE_P2P_GO
;
6179 nlmode
= NL80211_IFTYPE_AP
;
6181 if (wpa_driver_nl80211_set_mode(&drv
->first_bss
, nlmode
) ||
6182 wpa_driver_nl80211_set_freq(&drv
->first_bss
, params
->freq
, 0, 0)) {
6183 nl80211_remove_monitor_interface(drv
);
6191 static int nl80211_leave_ibss(struct wpa_driver_nl80211_data
*drv
)
6196 msg
= nlmsg_alloc();
6200 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_LEAVE_IBSS
);
6201 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6202 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6205 wpa_printf(MSG_DEBUG
, "nl80211: Leave IBSS failed: ret=%d "
6206 "(%s)", ret
, strerror(-ret
));
6207 goto nla_put_failure
;
6211 wpa_printf(MSG_DEBUG
, "nl80211: Leave IBSS request sent successfully");
6219 static int wpa_driver_nl80211_ibss(struct wpa_driver_nl80211_data
*drv
,
6220 struct wpa_driver_associate_params
*params
)
6226 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS (ifindex=%d)", drv
->ifindex
);
6228 if (wpa_driver_nl80211_set_mode(&drv
->first_bss
,
6229 NL80211_IFTYPE_ADHOC
)) {
6230 wpa_printf(MSG_INFO
, "nl80211: Failed to set interface into "
6236 msg
= nlmsg_alloc();
6240 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_JOIN_IBSS
);
6241 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6243 if (params
->ssid
== NULL
|| params
->ssid_len
> sizeof(drv
->ssid
))
6244 goto nla_put_failure
;
6246 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
6247 params
->ssid
, params
->ssid_len
);
6248 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
6250 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
6251 drv
->ssid_len
= params
->ssid_len
;
6253 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
6254 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
6256 ret
= nl80211_set_conn_keys(params
, msg
);
6258 goto nla_put_failure
;
6260 if (params
->wpa_ie
) {
6261 wpa_hexdump(MSG_DEBUG
,
6262 " * Extra IEs for Beacon/Probe Response frames",
6263 params
->wpa_ie
, params
->wpa_ie_len
);
6264 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
6268 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6271 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS failed: ret=%d (%s)",
6272 ret
, strerror(-ret
));
6274 if (ret
== -EALREADY
&& count
== 1) {
6275 wpa_printf(MSG_DEBUG
, "nl80211: Retry IBSS join after "
6277 nl80211_leave_ibss(drv
);
6282 goto nla_put_failure
;
6285 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS request sent successfully");
6293 static unsigned int nl80211_get_assoc_bssid(struct wpa_driver_nl80211_data
*drv
,
6298 struct nl80211_bss_info_arg arg
;
6300 os_memset(&arg
, 0, sizeof(arg
));
6301 msg
= nlmsg_alloc();
6303 goto nla_put_failure
;
6305 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
6306 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6309 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
6312 if (is_zero_ether_addr(arg
.assoc_bssid
))
6314 os_memcpy(bssid
, arg
.assoc_bssid
, ETH_ALEN
);
6317 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
6318 "(%s)", ret
, strerror(-ret
));
6321 return drv
->assoc_freq
;
6325 static int nl80211_disconnect(struct wpa_driver_nl80211_data
*drv
,
6330 if (bssid
== NULL
) {
6331 int res
= nl80211_get_assoc_bssid(drv
, addr
);
6337 return wpa_driver_nl80211_disconnect(drv
, bssid
,
6338 WLAN_REASON_PREV_AUTH_NOT_VALID
);
6342 static int wpa_driver_nl80211_connect(
6343 struct wpa_driver_nl80211_data
*drv
,
6344 struct wpa_driver_associate_params
*params
)
6347 enum nl80211_auth_type type
;
6351 msg
= nlmsg_alloc();
6355 wpa_printf(MSG_DEBUG
, "nl80211: Connect (ifindex=%d)", drv
->ifindex
);
6356 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_CONNECT
);
6358 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6359 if (params
->bssid
) {
6360 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
6361 MAC2STR(params
->bssid
));
6362 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
6365 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
6366 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
6369 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
6370 params
->ssid
, params
->ssid_len
);
6371 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
6373 if (params
->ssid_len
> sizeof(drv
->ssid
))
6374 goto nla_put_failure
;
6375 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
6376 drv
->ssid_len
= params
->ssid_len
;
6378 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->wpa_ie
, params
->wpa_ie_len
);
6380 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
6384 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
6386 if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
6388 if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
6391 wpa_printf(MSG_DEBUG
, " * Leave out Auth Type for automatic "
6393 goto skip_auth_type
;
6396 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
6397 type
= NL80211_AUTHTYPE_OPEN_SYSTEM
;
6398 else if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
6399 type
= NL80211_AUTHTYPE_SHARED_KEY
;
6400 else if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
6401 type
= NL80211_AUTHTYPE_NETWORK_EAP
;
6402 else if (params
->auth_alg
& WPA_AUTH_ALG_FT
)
6403 type
= NL80211_AUTHTYPE_FT
;
6405 goto nla_put_failure
;
6407 wpa_printf(MSG_DEBUG
, " * Auth Type %d", type
);
6408 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
, type
);
6411 if (params
->wpa_proto
) {
6412 enum nl80211_wpa_versions ver
= 0;
6414 if (params
->wpa_proto
& WPA_PROTO_WPA
)
6415 ver
|= NL80211_WPA_VERSION_1
;
6416 if (params
->wpa_proto
& WPA_PROTO_RSN
)
6417 ver
|= NL80211_WPA_VERSION_2
;
6419 wpa_printf(MSG_DEBUG
, " * WPA Versions 0x%x", ver
);
6420 NLA_PUT_U32(msg
, NL80211_ATTR_WPA_VERSIONS
, ver
);
6423 if (params
->pairwise_suite
!= CIPHER_NONE
) {
6426 switch (params
->pairwise_suite
) {
6428 cipher
= WLAN_CIPHER_SUITE_WEP40
;
6431 cipher
= WLAN_CIPHER_SUITE_WEP104
;
6434 cipher
= WLAN_CIPHER_SUITE_CCMP
;
6438 cipher
= WLAN_CIPHER_SUITE_TKIP
;
6441 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
, cipher
);
6444 if (params
->group_suite
!= CIPHER_NONE
) {
6447 switch (params
->group_suite
) {
6449 cipher
= WLAN_CIPHER_SUITE_WEP40
;
6452 cipher
= WLAN_CIPHER_SUITE_WEP104
;
6455 cipher
= WLAN_CIPHER_SUITE_CCMP
;
6459 cipher
= WLAN_CIPHER_SUITE_TKIP
;
6462 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
, cipher
);
6465 if (params
->key_mgmt_suite
== KEY_MGMT_802_1X
||
6466 params
->key_mgmt_suite
== KEY_MGMT_PSK
) {
6467 int mgmt
= WLAN_AKM_SUITE_PSK
;
6469 switch (params
->key_mgmt_suite
) {
6470 case KEY_MGMT_802_1X
:
6471 mgmt
= WLAN_AKM_SUITE_8021X
;
6475 mgmt
= WLAN_AKM_SUITE_PSK
;
6478 NLA_PUT_U32(msg
, NL80211_ATTR_AKM_SUITES
, mgmt
);
6481 ret
= nl80211_set_conn_keys(params
, msg
);
6483 goto nla_put_failure
;
6485 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6488 wpa_printf(MSG_DEBUG
, "nl80211: MLME connect failed: ret=%d "
6489 "(%s)", ret
, strerror(-ret
));
6491 * cfg80211 does not currently accept new connection if we are
6492 * already connected. As a workaround, force disconnection and
6493 * try again once the driver indicates it completed
6496 if (ret
== -EALREADY
)
6497 nl80211_disconnect(drv
, params
->bssid
);
6498 goto nla_put_failure
;
6501 wpa_printf(MSG_DEBUG
, "nl80211: Connect request send successfully");
6510 static int wpa_driver_nl80211_associate(
6511 void *priv
, struct wpa_driver_associate_params
*params
)
6513 struct i802_bss
*bss
= priv
;
6514 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6518 if (params
->mode
== IEEE80211_MODE_AP
)
6519 return wpa_driver_nl80211_ap(drv
, params
);
6521 if (params
->mode
== IEEE80211_MODE_IBSS
)
6522 return wpa_driver_nl80211_ibss(drv
, params
);
6524 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
)) {
6525 enum nl80211_iftype nlmode
= params
->p2p
?
6526 NL80211_IFTYPE_P2P_CLIENT
: NL80211_IFTYPE_STATION
;
6528 if (wpa_driver_nl80211_set_mode(priv
, nlmode
) < 0)
6530 return wpa_driver_nl80211_connect(drv
, params
);
6533 drv
->associated
= 0;
6535 msg
= nlmsg_alloc();
6539 wpa_printf(MSG_DEBUG
, "nl80211: Associate (ifindex=%d)",
6541 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_ASSOCIATE
);
6543 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6544 if (params
->bssid
) {
6545 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
6546 MAC2STR(params
->bssid
));
6547 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
6550 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
6551 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
6552 drv
->assoc_freq
= params
->freq
;
6554 drv
->assoc_freq
= 0;
6556 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
6557 params
->ssid
, params
->ssid_len
);
6558 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
6560 if (params
->ssid_len
> sizeof(drv
->ssid
))
6561 goto nla_put_failure
;
6562 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
6563 drv
->ssid_len
= params
->ssid_len
;
6565 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->wpa_ie
, params
->wpa_ie_len
);
6567 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
6570 if (params
->pairwise_suite
!= CIPHER_NONE
) {
6573 switch (params
->pairwise_suite
) {
6575 cipher
= WLAN_CIPHER_SUITE_WEP40
;
6578 cipher
= WLAN_CIPHER_SUITE_WEP104
;
6581 cipher
= WLAN_CIPHER_SUITE_CCMP
;
6585 cipher
= WLAN_CIPHER_SUITE_TKIP
;
6588 wpa_printf(MSG_DEBUG
, " * pairwise=0x%x", cipher
);
6589 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
, cipher
);
6592 if (params
->group_suite
!= CIPHER_NONE
) {
6595 switch (params
->group_suite
) {
6597 cipher
= WLAN_CIPHER_SUITE_WEP40
;
6600 cipher
= WLAN_CIPHER_SUITE_WEP104
;
6603 cipher
= WLAN_CIPHER_SUITE_CCMP
;
6607 cipher
= WLAN_CIPHER_SUITE_TKIP
;
6610 wpa_printf(MSG_DEBUG
, " * group=0x%x", cipher
);
6611 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
, cipher
);
6614 #ifdef CONFIG_IEEE80211W
6615 if (params
->mgmt_frame_protection
== MGMT_FRAME_PROTECTION_REQUIRED
)
6616 NLA_PUT_U32(msg
, NL80211_ATTR_USE_MFP
, NL80211_MFP_REQUIRED
);
6617 #endif /* CONFIG_IEEE80211W */
6619 NLA_PUT_FLAG(msg
, NL80211_ATTR_CONTROL_PORT
);
6621 if (params
->prev_bssid
) {
6622 wpa_printf(MSG_DEBUG
, " * prev_bssid=" MACSTR
,
6623 MAC2STR(params
->prev_bssid
));
6624 NLA_PUT(msg
, NL80211_ATTR_PREV_BSSID
, ETH_ALEN
,
6625 params
->prev_bssid
);
6629 wpa_printf(MSG_DEBUG
, " * P2P group");
6631 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6634 wpa_dbg(drv
->ctx
, MSG_DEBUG
,
6635 "nl80211: MLME command failed (assoc): ret=%d (%s)",
6636 ret
, strerror(-ret
));
6637 nl80211_dump_scan(drv
);
6638 goto nla_put_failure
;
6641 wpa_printf(MSG_DEBUG
, "nl80211: Association request send "
6650 static int nl80211_set_mode(struct wpa_driver_nl80211_data
*drv
,
6651 int ifindex
, enum nl80211_iftype mode
)
6656 wpa_printf(MSG_DEBUG
, "nl80211: Set mode ifindex %d iftype %d (%s)",
6657 ifindex
, mode
, nl80211_iftype_str(mode
));
6659 msg
= nlmsg_alloc();
6663 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_INTERFACE
);
6664 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
6665 NLA_PUT_U32(msg
, NL80211_ATTR_IFTYPE
, mode
);
6667 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6671 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set interface %d to mode %d:"
6672 " %d (%s)", ifindex
, mode
, ret
, strerror(-ret
));
6677 static int wpa_driver_nl80211_set_mode(struct i802_bss
*bss
,
6678 enum nl80211_iftype nlmode
)
6680 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6683 int was_ap
= is_ap_interface(drv
->nlmode
);
6686 res
= nl80211_set_mode(drv
, drv
->ifindex
, nlmode
);
6688 drv
->nlmode
= nlmode
;
6696 if (nlmode
== drv
->nlmode
) {
6697 wpa_printf(MSG_DEBUG
, "nl80211: Interface already in "
6698 "requested mode - ignore error");
6700 goto done
; /* Already in the requested mode */
6703 /* mac80211 doesn't allow mode changes while the device is up, so
6704 * take the device down, try to set the mode again, and bring the
6707 wpa_printf(MSG_DEBUG
, "nl80211: Try mode change after setting "
6709 for (i
= 0; i
< 10; i
++) {
6710 res
= linux_set_iface_flags(drv
->global
->ioctl_sock
,
6712 if (res
== -EACCES
|| res
== -ENODEV
)
6715 /* Try to set the mode again while the interface is
6717 ret
= nl80211_set_mode(drv
, drv
->ifindex
, nlmode
);
6720 res
= linux_set_iface_flags(drv
->global
->ioctl_sock
,
6724 else if (ret
!= -EBUSY
)
6727 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set "
6729 os_sleep(0, 100000);
6733 wpa_printf(MSG_DEBUG
, "nl80211: Mode change succeeded while "
6734 "interface is down");
6735 drv
->nlmode
= nlmode
;
6736 drv
->ignore_if_down_event
= 1;
6741 wpa_printf(MSG_DEBUG
, "nl80211: Interface mode change to %d "
6742 "from %d failed", nlmode
, drv
->nlmode
);
6746 if (is_ap_interface(nlmode
)) {
6747 nl80211_mgmt_unsubscribe(bss
);
6748 /* Setup additional AP mode functionality if needed */
6749 if (nl80211_setup_ap(bss
))
6751 } else if (was_ap
) {
6752 /* Remove additional AP mode functionality */
6753 nl80211_teardown_ap(bss
);
6755 nl80211_mgmt_unsubscribe(bss
);
6758 if (!is_ap_interface(nlmode
) &&
6759 nl80211_mgmt_subscribe_non_ap(bss
) < 0)
6760 wpa_printf(MSG_DEBUG
, "nl80211: Failed to register Action "
6761 "frame processing - ignore for now");
6767 static int wpa_driver_nl80211_get_capa(void *priv
,
6768 struct wpa_driver_capa
*capa
)
6770 struct i802_bss
*bss
= priv
;
6771 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6772 if (!drv
->has_capability
)
6774 os_memcpy(capa
, &drv
->capa
, sizeof(*capa
));
6779 static int wpa_driver_nl80211_set_operstate(void *priv
, int state
)
6781 struct i802_bss
*bss
= priv
;
6782 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6784 wpa_printf(MSG_DEBUG
, "%s: operstate %d->%d (%s)",
6785 __func__
, drv
->operstate
, state
, state
? "UP" : "DORMANT");
6786 drv
->operstate
= state
;
6787 return netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
, -1,
6788 state
? IF_OPER_UP
: IF_OPER_DORMANT
);
6792 static int wpa_driver_nl80211_set_supp_port(void *priv
, int authorized
)
6794 struct i802_bss
*bss
= priv
;
6795 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6797 struct nl80211_sta_flag_update upd
;
6799 msg
= nlmsg_alloc();
6803 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
6805 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
6806 if_nametoindex(bss
->ifname
));
6807 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, drv
->bssid
);
6809 os_memset(&upd
, 0, sizeof(upd
));
6810 upd
.mask
= BIT(NL80211_STA_FLAG_AUTHORIZED
);
6812 upd
.set
= BIT(NL80211_STA_FLAG_AUTHORIZED
);
6813 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
6815 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6821 /* Set kernel driver on given frequency (MHz) */
6822 static int i802_set_freq(void *priv
, struct hostapd_freq_params
*freq
)
6824 struct i802_bss
*bss
= priv
;
6825 return wpa_driver_nl80211_set_freq(bss
, freq
->freq
, freq
->ht_enabled
,
6826 freq
->sec_channel_offset
);
6830 #if defined(HOSTAPD) || defined(CONFIG_AP)
6832 static inline int min_int(int a
, int b
)
6840 static int get_key_handler(struct nl_msg
*msg
, void *arg
)
6842 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
6843 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
6845 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
6846 genlmsg_attrlen(gnlh
, 0), NULL
);
6849 * TODO: validate the key index and mac address!
6850 * Otherwise, there's a race condition as soon as
6851 * the kernel starts sending key notifications.
6854 if (tb
[NL80211_ATTR_KEY_SEQ
])
6855 memcpy(arg
, nla_data(tb
[NL80211_ATTR_KEY_SEQ
]),
6856 min_int(nla_len(tb
[NL80211_ATTR_KEY_SEQ
]), 6));
6861 static int i802_get_seqnum(const char *iface
, void *priv
, const u8
*addr
,
6864 struct i802_bss
*bss
= priv
;
6865 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6868 msg
= nlmsg_alloc();
6872 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_KEY
);
6875 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
6876 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, idx
);
6877 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(iface
));
6881 return send_and_recv_msgs(drv
, msg
, get_key_handler
, seq
);
6887 static int i802_set_rts(void *priv
, int rts
)
6889 struct i802_bss
*bss
= priv
;
6890 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6895 msg
= nlmsg_alloc();
6904 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
6905 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6906 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_RTS_THRESHOLD
, val
);
6908 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6912 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set RTS threshold %d: "
6913 "%d (%s)", rts
, ret
, strerror(-ret
));
6918 static int i802_set_frag(void *priv
, int frag
)
6920 struct i802_bss
*bss
= priv
;
6921 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6926 msg
= nlmsg_alloc();
6935 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
6936 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6937 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FRAG_THRESHOLD
, val
);
6939 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6943 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set fragmentation threshold "
6944 "%d: %d (%s)", frag
, ret
, strerror(-ret
));
6949 static int i802_flush(void *priv
)
6951 struct i802_bss
*bss
= priv
;
6952 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6955 msg
= nlmsg_alloc();
6959 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_STATION
);
6962 * XXX: FIX! this needs to flush all VLANs too
6964 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
6965 if_nametoindex(bss
->ifname
));
6967 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6973 static int get_sta_handler(struct nl_msg
*msg
, void *arg
)
6975 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
6976 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
6977 struct hostap_sta_driver_data
*data
= arg
;
6978 struct nlattr
*stats
[NL80211_STA_INFO_MAX
+ 1];
6979 static struct nla_policy stats_policy
[NL80211_STA_INFO_MAX
+ 1] = {
6980 [NL80211_STA_INFO_INACTIVE_TIME
] = { .type
= NLA_U32
},
6981 [NL80211_STA_INFO_RX_BYTES
] = { .type
= NLA_U32
},
6982 [NL80211_STA_INFO_TX_BYTES
] = { .type
= NLA_U32
},
6983 [NL80211_STA_INFO_RX_PACKETS
] = { .type
= NLA_U32
},
6984 [NL80211_STA_INFO_TX_PACKETS
] = { .type
= NLA_U32
},
6987 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
6988 genlmsg_attrlen(gnlh
, 0), NULL
);
6991 * TODO: validate the interface and mac address!
6992 * Otherwise, there's a race condition as soon as
6993 * the kernel starts sending station notifications.
6996 if (!tb
[NL80211_ATTR_STA_INFO
]) {
6997 wpa_printf(MSG_DEBUG
, "sta stats missing!");
7000 if (nla_parse_nested(stats
, NL80211_STA_INFO_MAX
,
7001 tb
[NL80211_ATTR_STA_INFO
],
7003 wpa_printf(MSG_DEBUG
, "failed to parse nested attributes!");
7007 if (stats
[NL80211_STA_INFO_INACTIVE_TIME
])
7008 data
->inactive_msec
=
7009 nla_get_u32(stats
[NL80211_STA_INFO_INACTIVE_TIME
]);
7010 if (stats
[NL80211_STA_INFO_RX_BYTES
])
7011 data
->rx_bytes
= nla_get_u32(stats
[NL80211_STA_INFO_RX_BYTES
]);
7012 if (stats
[NL80211_STA_INFO_TX_BYTES
])
7013 data
->tx_bytes
= nla_get_u32(stats
[NL80211_STA_INFO_TX_BYTES
]);
7014 if (stats
[NL80211_STA_INFO_RX_PACKETS
])
7016 nla_get_u32(stats
[NL80211_STA_INFO_RX_PACKETS
]);
7017 if (stats
[NL80211_STA_INFO_TX_PACKETS
])
7019 nla_get_u32(stats
[NL80211_STA_INFO_TX_PACKETS
]);
7024 static int i802_read_sta_data(void *priv
, struct hostap_sta_driver_data
*data
,
7027 struct i802_bss
*bss
= priv
;
7028 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7031 os_memset(data
, 0, sizeof(*data
));
7032 msg
= nlmsg_alloc();
7036 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_STATION
);
7038 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
7039 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
7041 return send_and_recv_msgs(drv
, msg
, get_sta_handler
, data
);
7047 static int i802_set_tx_queue_params(void *priv
, int queue
, int aifs
,
7048 int cw_min
, int cw_max
, int burst_time
)
7050 struct i802_bss
*bss
= priv
;
7051 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7053 struct nlattr
*txq
, *params
;
7055 msg
= nlmsg_alloc();
7059 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
7061 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
7063 txq
= nla_nest_start(msg
, NL80211_ATTR_WIPHY_TXQ_PARAMS
);
7065 goto nla_put_failure
;
7067 /* We are only sending parameters for a single TXQ at a time */
7068 params
= nla_nest_start(msg
, 1);
7070 goto nla_put_failure
;
7074 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_VO
);
7077 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_VI
);
7080 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_BE
);
7083 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_BK
);
7086 /* Burst time is configured in units of 0.1 msec and TXOP parameter in
7087 * 32 usec, so need to convert the value here. */
7088 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_TXOP
, (burst_time
* 100 + 16) / 32);
7089 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_CWMIN
, cw_min
);
7090 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_CWMAX
, cw_max
);
7091 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_AIFS
, aifs
);
7093 nla_nest_end(msg
, params
);
7095 nla_nest_end(msg
, txq
);
7097 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
7104 static int i802_set_sta_vlan(void *priv
, const u8
*addr
,
7105 const char *ifname
, int vlan_id
)
7107 struct i802_bss
*bss
= priv
;
7108 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7112 msg
= nlmsg_alloc();
7116 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
7118 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
7119 if_nametoindex(bss
->ifname
));
7120 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
7121 NLA_PUT_U32(msg
, NL80211_ATTR_STA_VLAN
,
7122 if_nametoindex(ifname
));
7124 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7126 wpa_printf(MSG_ERROR
, "nl80211: NL80211_ATTR_STA_VLAN (addr="
7127 MACSTR
" ifname=%s vlan_id=%d) failed: %d (%s)",
7128 MAC2STR(addr
), ifname
, vlan_id
, ret
,
7136 static int i802_get_inact_sec(void *priv
, const u8
*addr
)
7138 struct hostap_sta_driver_data data
;
7141 data
.inactive_msec
= (unsigned long) -1;
7142 ret
= i802_read_sta_data(priv
, &data
, addr
);
7143 if (ret
|| data
.inactive_msec
== (unsigned long) -1)
7145 return data
.inactive_msec
/ 1000;
7149 static int i802_sta_clear_stats(void *priv
, const u8
*addr
)
7158 static int i802_sta_deauth(void *priv
, const u8
*own_addr
, const u8
*addr
,
7161 struct i802_bss
*bss
= priv
;
7162 struct ieee80211_mgmt mgmt
;
7164 memset(&mgmt
, 0, sizeof(mgmt
));
7165 mgmt
.frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
7166 WLAN_FC_STYPE_DEAUTH
);
7167 memcpy(mgmt
.da
, addr
, ETH_ALEN
);
7168 memcpy(mgmt
.sa
, own_addr
, ETH_ALEN
);
7169 memcpy(mgmt
.bssid
, own_addr
, ETH_ALEN
);
7170 mgmt
.u
.deauth
.reason_code
= host_to_le16(reason
);
7171 return wpa_driver_nl80211_send_mlme(bss
, (u8
*) &mgmt
,
7173 sizeof(mgmt
.u
.deauth
), 0);
7177 static int i802_sta_disassoc(void *priv
, const u8
*own_addr
, const u8
*addr
,
7180 struct i802_bss
*bss
= priv
;
7181 struct ieee80211_mgmt mgmt
;
7183 memset(&mgmt
, 0, sizeof(mgmt
));
7184 mgmt
.frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
7185 WLAN_FC_STYPE_DISASSOC
);
7186 memcpy(mgmt
.da
, addr
, ETH_ALEN
);
7187 memcpy(mgmt
.sa
, own_addr
, ETH_ALEN
);
7188 memcpy(mgmt
.bssid
, own_addr
, ETH_ALEN
);
7189 mgmt
.u
.disassoc
.reason_code
= host_to_le16(reason
);
7190 return wpa_driver_nl80211_send_mlme(bss
, (u8
*) &mgmt
,
7192 sizeof(mgmt
.u
.disassoc
), 0);
7195 #endif /* HOSTAPD || CONFIG_AP */
7199 static void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
7204 wpa_printf(MSG_DEBUG
, "nl80211: Add own interface ifindex %d",
7206 for (i
= 0; i
< drv
->num_if_indices
; i
++) {
7207 if (drv
->if_indices
[i
] == 0) {
7208 drv
->if_indices
[i
] = ifidx
;
7213 if (drv
->if_indices
!= drv
->default_if_indices
)
7214 old
= drv
->if_indices
;
7218 drv
->if_indices
= os_realloc(old
,
7219 sizeof(int) * (drv
->num_if_indices
+ 1));
7220 if (!drv
->if_indices
) {
7222 drv
->if_indices
= drv
->default_if_indices
;
7224 drv
->if_indices
= old
;
7225 wpa_printf(MSG_ERROR
, "Failed to reallocate memory for "
7227 wpa_printf(MSG_ERROR
, "Ignoring EAPOL on interface %d", ifidx
);
7230 os_memcpy(drv
->if_indices
, drv
->default_if_indices
,
7231 sizeof(drv
->default_if_indices
));
7232 drv
->if_indices
[drv
->num_if_indices
] = ifidx
;
7233 drv
->num_if_indices
++;
7237 static void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
7241 for (i
= 0; i
< drv
->num_if_indices
; i
++) {
7242 if (drv
->if_indices
[i
] == ifidx
) {
7243 drv
->if_indices
[i
] = 0;
7250 static int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
7254 for (i
= 0; i
< drv
->num_if_indices
; i
++)
7255 if (drv
->if_indices
[i
] == ifidx
)
7262 static int i802_set_wds_sta(void *priv
, const u8
*addr
, int aid
, int val
,
7263 const char *bridge_ifname
)
7265 struct i802_bss
*bss
= priv
;
7266 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7267 char name
[IFNAMSIZ
+ 1];
7269 os_snprintf(name
, sizeof(name
), "%s.sta%d", bss
->ifname
, aid
);
7270 wpa_printf(MSG_DEBUG
, "nl80211: Set WDS STA addr=" MACSTR
7271 " aid=%d val=%d name=%s", MAC2STR(addr
), aid
, val
, name
);
7273 if (!if_nametoindex(name
)) {
7274 if (nl80211_create_iface(drv
, name
,
7275 NL80211_IFTYPE_AP_VLAN
,
7278 if (bridge_ifname
&&
7279 linux_br_add_if(drv
->global
->ioctl_sock
,
7280 bridge_ifname
, name
) < 0)
7283 linux_set_iface_flags(drv
->global
->ioctl_sock
, name
, 1);
7284 return i802_set_sta_vlan(priv
, addr
, name
, 0);
7286 i802_set_sta_vlan(priv
, addr
, bss
->ifname
, 0);
7287 return wpa_driver_nl80211_if_remove(priv
, WPA_IF_AP_VLAN
,
7293 static void handle_eapol(int sock
, void *eloop_ctx
, void *sock_ctx
)
7295 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
7296 struct sockaddr_ll lladdr
;
7297 unsigned char buf
[3000];
7299 socklen_t fromlen
= sizeof(lladdr
);
7301 len
= recvfrom(sock
, buf
, sizeof(buf
), 0,
7302 (struct sockaddr
*)&lladdr
, &fromlen
);
7308 if (have_ifidx(drv
, lladdr
.sll_ifindex
))
7309 drv_event_eapol_rx(drv
->ctx
, lladdr
.sll_addr
, buf
, len
);
7313 static int i802_check_bridge(struct wpa_driver_nl80211_data
*drv
,
7314 struct i802_bss
*bss
,
7315 const char *brname
, const char *ifname
)
7318 char in_br
[IFNAMSIZ
];
7320 os_strlcpy(bss
->brname
, brname
, IFNAMSIZ
);
7321 ifindex
= if_nametoindex(brname
);
7324 * Bridge was configured, but the bridge device does
7325 * not exist. Try to add it now.
7327 if (linux_br_add(drv
->global
->ioctl_sock
, brname
) < 0) {
7328 wpa_printf(MSG_ERROR
, "nl80211: Failed to add the "
7329 "bridge interface %s: %s",
7330 brname
, strerror(errno
));
7333 bss
->added_bridge
= 1;
7334 add_ifidx(drv
, if_nametoindex(brname
));
7337 if (linux_br_get(in_br
, ifname
) == 0) {
7338 if (os_strcmp(in_br
, brname
) == 0)
7339 return 0; /* already in the bridge */
7341 wpa_printf(MSG_DEBUG
, "nl80211: Removing interface %s from "
7342 "bridge %s", ifname
, in_br
);
7343 if (linux_br_del_if(drv
->global
->ioctl_sock
, in_br
, ifname
) <
7345 wpa_printf(MSG_ERROR
, "nl80211: Failed to "
7346 "remove interface %s from bridge "
7348 ifname
, brname
, strerror(errno
));
7353 wpa_printf(MSG_DEBUG
, "nl80211: Adding interface %s into bridge %s",
7355 if (linux_br_add_if(drv
->global
->ioctl_sock
, brname
, ifname
) < 0) {
7356 wpa_printf(MSG_ERROR
, "nl80211: Failed to add interface %s "
7357 "into bridge %s: %s",
7358 ifname
, brname
, strerror(errno
));
7361 bss
->added_if_into_bridge
= 1;
7367 static void *i802_init(struct hostapd_data
*hapd
,
7368 struct wpa_init_params
*params
)
7370 struct wpa_driver_nl80211_data
*drv
;
7371 struct i802_bss
*bss
;
7373 char brname
[IFNAMSIZ
];
7374 int ifindex
, br_ifindex
;
7377 bss
= wpa_driver_nl80211_init(hapd
, params
->ifname
,
7378 params
->global_priv
);
7383 drv
->nlmode
= NL80211_IFTYPE_AP
;
7384 drv
->eapol_sock
= -1;
7386 if (linux_br_get(brname
, params
->ifname
) == 0) {
7387 wpa_printf(MSG_DEBUG
, "nl80211: Interface %s is in bridge %s",
7388 params
->ifname
, brname
);
7389 br_ifindex
= if_nametoindex(brname
);
7395 drv
->num_if_indices
= sizeof(drv
->default_if_indices
) / sizeof(int);
7396 drv
->if_indices
= drv
->default_if_indices
;
7397 for (i
= 0; i
< params
->num_bridge
; i
++) {
7398 if (params
->bridge
[i
]) {
7399 ifindex
= if_nametoindex(params
->bridge
[i
]);
7401 add_ifidx(drv
, ifindex
);
7402 if (ifindex
== br_ifindex
)
7406 if (!br_added
&& br_ifindex
&&
7407 (params
->num_bridge
== 0 || !params
->bridge
[0]))
7408 add_ifidx(drv
, br_ifindex
);
7410 /* start listening for EAPOL on the default AP interface */
7411 add_ifidx(drv
, drv
->ifindex
);
7413 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 0))
7416 if (params
->bssid
) {
7417 if (linux_set_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
7422 if (wpa_driver_nl80211_set_mode(bss
, drv
->nlmode
)) {
7423 wpa_printf(MSG_ERROR
, "nl80211: Failed to set interface %s "
7424 "into AP mode", bss
->ifname
);
7428 if (params
->num_bridge
&& params
->bridge
[0] &&
7429 i802_check_bridge(drv
, bss
, params
->bridge
[0], params
->ifname
) < 0)
7432 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1))
7435 drv
->eapol_sock
= socket(PF_PACKET
, SOCK_DGRAM
, htons(ETH_P_PAE
));
7436 if (drv
->eapol_sock
< 0) {
7437 perror("socket(PF_PACKET, SOCK_DGRAM, ETH_P_PAE)");
7441 if (eloop_register_read_sock(drv
->eapol_sock
, handle_eapol
, drv
, NULL
))
7443 printf("Could not register read socket for eapol\n");
7447 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
7451 memcpy(bss
->addr
, params
->own_addr
, ETH_ALEN
);
7456 wpa_driver_nl80211_deinit(bss
);
7461 static void i802_deinit(void *priv
)
7463 wpa_driver_nl80211_deinit(priv
);
7466 #endif /* HOSTAPD */
7469 static enum nl80211_iftype
wpa_driver_nl80211_if_type(
7470 enum wpa_driver_if_type type
)
7473 case WPA_IF_STATION
:
7474 return NL80211_IFTYPE_STATION
;
7475 case WPA_IF_P2P_CLIENT
:
7476 case WPA_IF_P2P_GROUP
:
7477 return NL80211_IFTYPE_P2P_CLIENT
;
7478 case WPA_IF_AP_VLAN
:
7479 return NL80211_IFTYPE_AP_VLAN
;
7481 return NL80211_IFTYPE_AP
;
7483 return NL80211_IFTYPE_P2P_GO
;
7491 static int nl80211_addr_in_use(struct nl80211_global
*global
, const u8
*addr
)
7493 struct wpa_driver_nl80211_data
*drv
;
7494 dl_list_for_each(drv
, &global
->interfaces
,
7495 struct wpa_driver_nl80211_data
, list
) {
7496 if (os_memcmp(addr
, drv
->first_bss
.addr
, ETH_ALEN
) == 0)
7503 static int nl80211_p2p_interface_addr(struct wpa_driver_nl80211_data
*drv
,
7511 os_memcpy(new_addr
, drv
->first_bss
.addr
, ETH_ALEN
);
7512 for (idx
= 0; idx
< 64; idx
++) {
7513 new_addr
[0] = drv
->first_bss
.addr
[0] | 0x02;
7514 new_addr
[0] ^= idx
<< 2;
7515 if (!nl80211_addr_in_use(drv
->global
, new_addr
))
7521 wpa_printf(MSG_DEBUG
, "nl80211: Assigned new P2P Interface Address "
7522 MACSTR
, MAC2STR(new_addr
));
7527 #endif /* CONFIG_P2P */
7530 static int wpa_driver_nl80211_if_add(void *priv
, enum wpa_driver_if_type type
,
7531 const char *ifname
, const u8
*addr
,
7532 void *bss_ctx
, void **drv_priv
,
7533 char *force_ifname
, u8
*if_addr
,
7536 struct i802_bss
*bss
= priv
;
7537 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7540 struct i802_bss
*new_bss
= NULL
;
7542 if (type
== WPA_IF_AP_BSS
) {
7543 new_bss
= os_zalloc(sizeof(*new_bss
));
7544 if (new_bss
== NULL
)
7547 #endif /* HOSTAPD */
7550 os_memcpy(if_addr
, addr
, ETH_ALEN
);
7551 ifidx
= nl80211_create_iface(drv
, ifname
,
7552 wpa_driver_nl80211_if_type(type
), addr
,
7557 #endif /* HOSTAPD */
7562 linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
7564 nl80211_remove_iface(drv
, ifidx
);
7570 (type
== WPA_IF_P2P_CLIENT
|| type
== WPA_IF_P2P_GROUP
||
7571 type
== WPA_IF_P2P_GO
)) {
7572 /* Enforce unique P2P Interface Address */
7573 u8 new_addr
[ETH_ALEN
], own_addr
[ETH_ALEN
];
7575 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
7577 linux_get_ifhwaddr(drv
->global
->ioctl_sock
, ifname
,
7579 nl80211_remove_iface(drv
, ifidx
);
7582 if (os_memcmp(own_addr
, new_addr
, ETH_ALEN
) == 0) {
7583 wpa_printf(MSG_DEBUG
, "nl80211: Allocate new address "
7584 "for P2P group interface");
7585 if (nl80211_p2p_interface_addr(drv
, new_addr
) < 0) {
7586 nl80211_remove_iface(drv
, ifidx
);
7589 if (linux_set_ifhwaddr(drv
->global
->ioctl_sock
, ifname
,
7591 nl80211_remove_iface(drv
, ifidx
);
7595 os_memcpy(if_addr
, new_addr
, ETH_ALEN
);
7597 #endif /* CONFIG_P2P */
7601 i802_check_bridge(drv
, new_bss
, bridge
, ifname
) < 0) {
7602 wpa_printf(MSG_ERROR
, "nl80211: Failed to add the new "
7603 "interface %s to a bridge %s", ifname
, bridge
);
7604 nl80211_remove_iface(drv
, ifidx
);
7609 if (type
== WPA_IF_AP_BSS
) {
7610 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, ifname
, 1))
7612 nl80211_remove_iface(drv
, ifidx
);
7616 os_strlcpy(new_bss
->ifname
, ifname
, IFNAMSIZ
);
7617 os_memcpy(new_bss
->addr
, if_addr
, ETH_ALEN
);
7618 new_bss
->ifindex
= ifidx
;
7620 new_bss
->next
= drv
->first_bss
.next
;
7621 drv
->first_bss
.next
= new_bss
;
7623 *drv_priv
= new_bss
;
7624 nl80211_init_bss(new_bss
);
7626 #endif /* HOSTAPD */
7629 drv
->global
->if_add_ifindex
= ifidx
;
7635 static int wpa_driver_nl80211_if_remove(void *priv
,
7636 enum wpa_driver_if_type type
,
7639 struct i802_bss
*bss
= priv
;
7640 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7641 int ifindex
= if_nametoindex(ifname
);
7643 wpa_printf(MSG_DEBUG
, "nl80211: %s(type=%d ifname=%s) ifindex=%d",
7644 __func__
, type
, ifname
, ifindex
);
7649 if (bss
->added_if_into_bridge
) {
7650 if (linux_br_del_if(drv
->global
->ioctl_sock
, bss
->brname
,
7652 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
7653 "interface %s from bridge %s: %s",
7654 bss
->ifname
, bss
->brname
, strerror(errno
));
7656 if (bss
->added_bridge
) {
7657 if (linux_br_del(drv
->global
->ioctl_sock
, bss
->brname
) < 0)
7658 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
7660 bss
->brname
, strerror(errno
));
7662 #endif /* HOSTAPD */
7664 nl80211_remove_iface(drv
, ifindex
);
7667 if (type
!= WPA_IF_AP_BSS
)
7670 if (bss
!= &drv
->first_bss
) {
7671 struct i802_bss
*tbss
;
7673 for (tbss
= &drv
->first_bss
; tbss
; tbss
= tbss
->next
) {
7674 if (tbss
->next
== bss
) {
7675 tbss
->next
= bss
->next
;
7676 nl80211_destroy_bss(bss
);
7683 wpa_printf(MSG_INFO
, "nl80211: %s - could not find "
7684 "BSS %p in the list", __func__
, bss
);
7686 #endif /* HOSTAPD */
7692 static int cookie_handler(struct nl_msg
*msg
, void *arg
)
7694 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
7695 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
7697 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
7698 genlmsg_attrlen(gnlh
, 0), NULL
);
7699 if (tb
[NL80211_ATTR_COOKIE
])
7700 *cookie
= nla_get_u64(tb
[NL80211_ATTR_COOKIE
]);
7705 static int nl80211_send_frame_cmd(struct i802_bss
*bss
,
7706 unsigned int freq
, unsigned int wait
,
7707 const u8
*buf
, size_t buf_len
,
7708 u64
*cookie_out
, int no_cck
, int no_ack
,
7711 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7716 msg
= nlmsg_alloc();
7720 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_FRAME
);
7722 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
7723 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
7725 NLA_PUT_U32(msg
, NL80211_ATTR_DURATION
, wait
);
7727 NLA_PUT_FLAG(msg
, NL80211_ATTR_OFFCHANNEL_TX_OK
);
7729 NLA_PUT_FLAG(msg
, NL80211_ATTR_TX_NO_CCK_RATE
);
7731 NLA_PUT_FLAG(msg
, NL80211_ATTR_DONT_WAIT_FOR_ACK
);
7733 NLA_PUT(msg
, NL80211_ATTR_FRAME
, buf_len
, buf
);
7736 ret
= send_and_recv_msgs(drv
, msg
, cookie_handler
, &cookie
);
7739 wpa_printf(MSG_DEBUG
, "nl80211: Frame command failed: ret=%d "
7740 "(%s) (freq=%u wait=%u)", ret
, strerror(-ret
),
7742 goto nla_put_failure
;
7744 wpa_printf(MSG_DEBUG
, "nl80211: Frame TX command accepted%s; "
7745 "cookie 0x%llx", no_ack
? " (no ACK)" : "",
7746 (long long unsigned int) cookie
);
7749 *cookie_out
= no_ack
? (u64
) -1 : cookie
;
7757 static int wpa_driver_nl80211_send_action(void *priv
, unsigned int freq
,
7758 unsigned int wait_time
,
7759 const u8
*dst
, const u8
*src
,
7761 const u8
*data
, size_t data_len
,
7764 struct i802_bss
*bss
= priv
;
7765 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7768 struct ieee80211_hdr
*hdr
;
7770 wpa_printf(MSG_DEBUG
, "nl80211: Send Action frame (ifindex=%d, "
7771 "wait=%d ms no_cck=%d)", drv
->ifindex
, wait_time
, no_cck
);
7773 buf
= os_zalloc(24 + data_len
);
7776 os_memcpy(buf
+ 24, data
, data_len
);
7777 hdr
= (struct ieee80211_hdr
*) buf
;
7778 hdr
->frame_control
=
7779 IEEE80211_FC(WLAN_FC_TYPE_MGMT
, WLAN_FC_STYPE_ACTION
);
7780 os_memcpy(hdr
->addr1
, dst
, ETH_ALEN
);
7781 os_memcpy(hdr
->addr2
, src
, ETH_ALEN
);
7782 os_memcpy(hdr
->addr3
, bssid
, ETH_ALEN
);
7784 if (is_ap_interface(drv
->nlmode
))
7785 ret
= wpa_driver_nl80211_send_mlme(priv
, buf
, 24 + data_len
,
7788 ret
= nl80211_send_frame_cmd(bss
, freq
, wait_time
, buf
,
7790 &drv
->send_action_cookie
,
7798 static void wpa_driver_nl80211_send_action_cancel_wait(void *priv
)
7800 struct i802_bss
*bss
= priv
;
7801 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7805 msg
= nlmsg_alloc();
7809 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_FRAME_WAIT_CANCEL
);
7811 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7812 NLA_PUT_U64(msg
, NL80211_ATTR_COOKIE
, drv
->send_action_cookie
);
7814 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7817 wpa_printf(MSG_DEBUG
, "nl80211: wait cancel failed: ret=%d "
7818 "(%s)", ret
, strerror(-ret
));
7825 static int wpa_driver_nl80211_remain_on_channel(void *priv
, unsigned int freq
,
7826 unsigned int duration
)
7828 struct i802_bss
*bss
= priv
;
7829 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7834 msg
= nlmsg_alloc();
7838 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REMAIN_ON_CHANNEL
);
7840 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7841 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
7842 NLA_PUT_U32(msg
, NL80211_ATTR_DURATION
, duration
);
7845 ret
= send_and_recv_msgs(drv
, msg
, cookie_handler
, &cookie
);
7847 wpa_printf(MSG_DEBUG
, "nl80211: Remain-on-channel cookie "
7848 "0x%llx for freq=%u MHz duration=%u",
7849 (long long unsigned int) cookie
, freq
, duration
);
7850 drv
->remain_on_chan_cookie
= cookie
;
7851 drv
->pending_remain_on_chan
= 1;
7854 wpa_printf(MSG_DEBUG
, "nl80211: Failed to request remain-on-channel "
7855 "(freq=%d duration=%u): %d (%s)",
7856 freq
, duration
, ret
, strerror(-ret
));
7862 static int wpa_driver_nl80211_cancel_remain_on_channel(void *priv
)
7864 struct i802_bss
*bss
= priv
;
7865 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7869 if (!drv
->pending_remain_on_chan
) {
7870 wpa_printf(MSG_DEBUG
, "nl80211: No pending remain-on-channel "
7875 wpa_printf(MSG_DEBUG
, "nl80211: Cancel remain-on-channel with cookie "
7877 (long long unsigned int) drv
->remain_on_chan_cookie
);
7879 msg
= nlmsg_alloc();
7883 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL
);
7885 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7886 NLA_PUT_U64(msg
, NL80211_ATTR_COOKIE
, drv
->remain_on_chan_cookie
);
7888 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7891 wpa_printf(MSG_DEBUG
, "nl80211: Failed to cancel remain-on-channel: "
7892 "%d (%s)", ret
, strerror(-ret
));
7898 static int wpa_driver_nl80211_probe_req_report(void *priv
, int report
)
7900 struct i802_bss
*bss
= priv
;
7901 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7905 eloop_unregister_read_sock(
7906 nl_socket_get_fd(bss
->nl_preq
));
7907 nl_destroy_handles(&bss
->nl_preq
);
7913 wpa_printf(MSG_DEBUG
, "nl80211: Probe Request reporting "
7918 bss
->nl_preq
= nl_create_handle(drv
->global
->nl_cb
, "preq");
7919 if (bss
->nl_preq
== NULL
)
7922 if (nl80211_register_frame(bss
, bss
->nl_preq
,
7923 (WLAN_FC_TYPE_MGMT
<< 2) |
7924 (WLAN_FC_STYPE_PROBE_REQ
<< 4),
7928 eloop_register_read_sock(nl_socket_get_fd(bss
->nl_preq
),
7929 wpa_driver_nl80211_event_receive
, bss
->nl_cb
,
7935 nl_destroy_handles(&bss
->nl_preq
);
7940 static int nl80211_disable_11b_rates(struct wpa_driver_nl80211_data
*drv
,
7941 int ifindex
, int disabled
)
7944 struct nlattr
*bands
, *band
;
7947 msg
= nlmsg_alloc();
7951 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_TX_BITRATE_MASK
);
7952 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
7954 bands
= nla_nest_start(msg
, NL80211_ATTR_TX_RATES
);
7956 goto nla_put_failure
;
7959 * Disable 2 GHz rates 1, 2, 5.5, 11 Mbps by masking out everything
7960 * else apart from 6, 9, 12, 18, 24, 36, 48, 54 Mbps from non-MCS
7961 * rates. All 5 GHz rates are left enabled.
7963 band
= nla_nest_start(msg
, NL80211_BAND_2GHZ
);
7965 goto nla_put_failure
;
7967 NLA_PUT(msg
, NL80211_TXRATE_LEGACY
, 8,
7968 "\x0c\x12\x18\x24\x30\x48\x60\x6c");
7970 nla_nest_end(msg
, band
);
7972 nla_nest_end(msg
, bands
);
7974 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7977 wpa_printf(MSG_DEBUG
, "nl80211: Set TX rates failed: ret=%d "
7978 "(%s)", ret
, strerror(-ret
));
7989 static int wpa_driver_nl80211_deinit_ap(void *priv
)
7991 struct i802_bss
*bss
= priv
;
7992 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7993 if (!is_ap_interface(drv
->nlmode
))
7995 wpa_driver_nl80211_del_beacon(drv
);
7996 return wpa_driver_nl80211_set_mode(priv
, NL80211_IFTYPE_STATION
);
8000 static void wpa_driver_nl80211_resume(void *priv
)
8002 struct i802_bss
*bss
= priv
;
8003 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8004 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1)) {
8005 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set interface up on "
8011 static int nl80211_send_ft_action(void *priv
, u8 action
, const u8
*target_ap
,
8012 const u8
*ies
, size_t ies_len
)
8014 struct i802_bss
*bss
= priv
;
8015 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8019 const u8
*own_addr
= bss
->addr
;
8022 wpa_printf(MSG_ERROR
, "nl80211: Unsupported send_ft_action "
8023 "action %d", action
);
8028 * Action frame payload:
8029 * Category[1] = 6 (Fast BSS Transition)
8030 * Action[1] = 1 (Fast BSS Transition Request)
8036 data_len
= 2 + 2 * ETH_ALEN
+ ies_len
;
8037 data
= os_malloc(data_len
);
8041 *pos
++ = 0x06; /* FT Action category */
8043 os_memcpy(pos
, own_addr
, ETH_ALEN
);
8045 os_memcpy(pos
, target_ap
, ETH_ALEN
);
8047 os_memcpy(pos
, ies
, ies_len
);
8049 ret
= wpa_driver_nl80211_send_action(bss
, drv
->assoc_freq
, 0,
8050 drv
->bssid
, own_addr
, drv
->bssid
,
8058 static int nl80211_signal_monitor(void *priv
, int threshold
, int hysteresis
)
8060 struct i802_bss
*bss
= priv
;
8061 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8062 struct nl_msg
*msg
, *cqm
= NULL
;
8064 wpa_printf(MSG_DEBUG
, "nl80211: Signal monitor threshold=%d "
8065 "hysteresis=%d", threshold
, hysteresis
);
8067 msg
= nlmsg_alloc();
8071 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_CQM
);
8073 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
8075 cqm
= nlmsg_alloc();
8079 NLA_PUT_U32(cqm
, NL80211_ATTR_CQM_RSSI_THOLD
, threshold
);
8080 NLA_PUT_U32(cqm
, NL80211_ATTR_CQM_RSSI_HYST
, hysteresis
);
8081 nla_put_nested(msg
, NL80211_ATTR_CQM
, cqm
);
8083 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
8095 static int nl80211_signal_poll(void *priv
, struct wpa_signal_info
*si
)
8097 struct i802_bss
*bss
= priv
;
8098 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8101 os_memset(si
, 0, sizeof(*si
));
8102 res
= nl80211_get_link_signal(drv
, si
);
8106 return nl80211_get_link_noise(drv
, si
);
8110 static int wpa_driver_nl80211_shared_freq(void *priv
)
8112 struct i802_bss
*bss
= priv
;
8113 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8114 struct wpa_driver_nl80211_data
*driver
;
8118 * If the same PHY is in connected state with some other interface,
8119 * then retrieve the assoc freq.
8121 wpa_printf(MSG_DEBUG
, "nl80211: Get shared freq for PHY %s",
8124 dl_list_for_each(driver
, &drv
->global
->interfaces
,
8125 struct wpa_driver_nl80211_data
, list
) {
8126 if (drv
== driver
||
8127 os_strcmp(drv
->phyname
, driver
->phyname
) != 0 ||
8128 !driver
->associated
)
8131 wpa_printf(MSG_DEBUG
, "nl80211: Found a match for PHY %s - %s "
8133 driver
->phyname
, driver
->first_bss
.ifname
,
8134 MAC2STR(driver
->first_bss
.addr
));
8135 freq
= nl80211_get_assoc_freq(driver
);
8136 wpa_printf(MSG_DEBUG
, "nl80211: Shared freq for PHY %s: %d",
8137 drv
->phyname
, freq
);
8141 wpa_printf(MSG_DEBUG
, "nl80211: No shared interface for "
8142 "PHY (%s) in associated state", drv
->phyname
);
8148 static int nl80211_send_frame(void *priv
, const u8
*data
, size_t data_len
,
8151 struct i802_bss
*bss
= priv
;
8152 return wpa_driver_nl80211_send_frame(bss
, data
, data_len
, encrypt
, 0);
8156 static int nl80211_set_param(void *priv
, const char *param
)
8158 wpa_printf(MSG_DEBUG
, "nl80211: driver param='%s'", param
);
8163 if (os_strstr(param
, "use_p2p_group_interface=1")) {
8164 struct i802_bss
*bss
= priv
;
8165 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8167 wpa_printf(MSG_DEBUG
, "nl80211: Use separate P2P group "
8169 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_P2P_CONCURRENT
;
8170 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_P2P_MGMT_AND_NON_P2P
;
8172 #endif /* CONFIG_P2P */
8178 static void * nl80211_global_init(void)
8180 struct nl80211_global
*global
;
8181 struct netlink_config
*cfg
;
8183 global
= os_zalloc(sizeof(*global
));
8186 global
->ioctl_sock
= -1;
8187 dl_list_init(&global
->interfaces
);
8188 global
->if_add_ifindex
= -1;
8190 cfg
= os_zalloc(sizeof(*cfg
));
8195 cfg
->newlink_cb
= wpa_driver_nl80211_event_rtm_newlink
;
8196 cfg
->dellink_cb
= wpa_driver_nl80211_event_rtm_dellink
;
8197 global
->netlink
= netlink_init(cfg
);
8198 if (global
->netlink
== NULL
) {
8203 if (wpa_driver_nl80211_init_nl_global(global
) < 0)
8206 global
->ioctl_sock
= socket(PF_INET
, SOCK_DGRAM
, 0);
8207 if (global
->ioctl_sock
< 0) {
8208 perror("socket(PF_INET,SOCK_DGRAM)");
8215 nl80211_global_deinit(global
);
8220 static void nl80211_global_deinit(void *priv
)
8222 struct nl80211_global
*global
= priv
;
8225 if (!dl_list_empty(&global
->interfaces
)) {
8226 wpa_printf(MSG_ERROR
, "nl80211: %u interface(s) remain at "
8227 "nl80211_global_deinit",
8228 dl_list_len(&global
->interfaces
));
8231 if (global
->netlink
)
8232 netlink_deinit(global
->netlink
);
8234 nl_destroy_handles(&global
->nl
);
8236 if (global
->nl_event
) {
8237 eloop_unregister_read_sock(
8238 nl_socket_get_fd(global
->nl_event
));
8239 nl_destroy_handles(&global
->nl_event
);
8242 nl_cb_put(global
->nl_cb
);
8244 if (global
->ioctl_sock
>= 0)
8245 close(global
->ioctl_sock
);
8251 static const char * nl80211_get_radio_name(void *priv
)
8253 struct i802_bss
*bss
= priv
;
8254 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8255 return drv
->phyname
;
8259 static int nl80211_pmkid(struct i802_bss
*bss
, int cmd
, const u8
*bssid
,
8264 msg
= nlmsg_alloc();
8268 nl80211_cmd(bss
->drv
, msg
, 0, cmd
);
8270 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
8272 NLA_PUT(msg
, NL80211_ATTR_PMKID
, 16, pmkid
);
8274 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, bssid
);
8276 return send_and_recv_msgs(bss
->drv
, msg
, NULL
, NULL
);
8282 static int nl80211_add_pmkid(void *priv
, const u8
*bssid
, const u8
*pmkid
)
8284 struct i802_bss
*bss
= priv
;
8285 wpa_printf(MSG_DEBUG
, "nl80211: Add PMKID for " MACSTR
, MAC2STR(bssid
));
8286 return nl80211_pmkid(bss
, NL80211_CMD_SET_PMKSA
, bssid
, pmkid
);
8290 static int nl80211_remove_pmkid(void *priv
, const u8
*bssid
, const u8
*pmkid
)
8292 struct i802_bss
*bss
= priv
;
8293 wpa_printf(MSG_DEBUG
, "nl80211: Delete PMKID for " MACSTR
,
8295 return nl80211_pmkid(bss
, NL80211_CMD_DEL_PMKSA
, bssid
, pmkid
);
8299 static int nl80211_flush_pmkid(void *priv
)
8301 struct i802_bss
*bss
= priv
;
8302 wpa_printf(MSG_DEBUG
, "nl80211: Flush PMKIDs");
8303 return nl80211_pmkid(bss
, NL80211_CMD_FLUSH_PMKSA
, NULL
, NULL
);
8307 static void nl80211_set_rekey_info(void *priv
, const u8
*kek
, const u8
*kck
,
8308 const u8
*replay_ctr
)
8310 struct i802_bss
*bss
= priv
;
8311 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8312 struct nlattr
*replay_nested
;
8315 msg
= nlmsg_alloc();
8319 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_REKEY_OFFLOAD
);
8321 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
8323 replay_nested
= nla_nest_start(msg
, NL80211_ATTR_REKEY_DATA
);
8325 goto nla_put_failure
;
8327 NLA_PUT(msg
, NL80211_REKEY_DATA_KEK
, NL80211_KEK_LEN
, kek
);
8328 NLA_PUT(msg
, NL80211_REKEY_DATA_KCK
, NL80211_KCK_LEN
, kck
);
8329 NLA_PUT(msg
, NL80211_REKEY_DATA_REPLAY_CTR
, NL80211_REPLAY_CTR_LEN
,
8332 nla_nest_end(msg
, replay_nested
);
8334 send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
8341 static void nl80211_send_null_frame(struct i802_bss
*bss
, const u8
*own_addr
,
8342 const u8
*addr
, int qos
)
8344 /* send data frame to poll STA and check whether
8345 * this frame is ACKed */
8347 struct ieee80211_hdr hdr
;
8349 } STRUCT_PACKED nulldata
;
8352 /* Send data frame to poll STA and check whether this frame is ACKed */
8354 os_memset(&nulldata
, 0, sizeof(nulldata
));
8357 nulldata
.hdr
.frame_control
=
8358 IEEE80211_FC(WLAN_FC_TYPE_DATA
,
8359 WLAN_FC_STYPE_QOS_NULL
);
8360 size
= sizeof(nulldata
);
8362 nulldata
.hdr
.frame_control
=
8363 IEEE80211_FC(WLAN_FC_TYPE_DATA
,
8364 WLAN_FC_STYPE_NULLFUNC
);
8365 size
= sizeof(struct ieee80211_hdr
);
8368 nulldata
.hdr
.frame_control
|= host_to_le16(WLAN_FC_FROMDS
);
8369 os_memcpy(nulldata
.hdr
.IEEE80211_DA_FROMDS
, addr
, ETH_ALEN
);
8370 os_memcpy(nulldata
.hdr
.IEEE80211_BSSID_FROMDS
, own_addr
, ETH_ALEN
);
8371 os_memcpy(nulldata
.hdr
.IEEE80211_SA_FROMDS
, own_addr
, ETH_ALEN
);
8373 if (wpa_driver_nl80211_send_mlme(bss
, (u8
*) &nulldata
, size
, 0) < 0)
8374 wpa_printf(MSG_DEBUG
, "nl80211_send_null_frame: Failed to "
8378 static void nl80211_poll_client(void *priv
, const u8
*own_addr
, const u8
*addr
,
8381 struct i802_bss
*bss
= priv
;
8382 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8385 if (!drv
->poll_command_supported
) {
8386 nl80211_send_null_frame(bss
, own_addr
, addr
, qos
);
8390 msg
= nlmsg_alloc();
8394 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_PROBE_CLIENT
);
8396 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
8397 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
8399 send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
8406 static int nl80211_set_power_save(struct i802_bss
*bss
, int enabled
)
8410 msg
= nlmsg_alloc();
8414 nl80211_cmd(bss
->drv
, msg
, 0, NL80211_CMD_SET_POWER_SAVE
);
8415 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
8416 NLA_PUT_U32(msg
, NL80211_ATTR_PS_STATE
,
8417 enabled
? NL80211_PS_ENABLED
: NL80211_PS_DISABLED
);
8418 return send_and_recv_msgs(bss
->drv
, msg
, NULL
, NULL
);
8425 static int nl80211_set_p2p_powersave(void *priv
, int legacy_ps
, int opp_ps
,
8428 struct i802_bss
*bss
= priv
;
8430 wpa_printf(MSG_DEBUG
, "nl80211: set_p2p_powersave (legacy_ps=%d "
8431 "opp_ps=%d ctwindow=%d)", legacy_ps
, opp_ps
, ctwindow
);
8433 if (opp_ps
!= -1 || ctwindow
!= -1)
8434 return -1; /* Not yet supported */
8436 if (legacy_ps
== -1)
8438 if (legacy_ps
!= 0 && legacy_ps
!= 1)
8439 return -1; /* Not yet supported */
8441 return nl80211_set_power_save(bss
, legacy_ps
);
8447 static int nl80211_send_tdls_mgmt(void *priv
, const u8
*dst
, u8 action_code
,
8448 u8 dialog_token
, u16 status_code
,
8449 const u8
*buf
, size_t len
)
8451 struct i802_bss
*bss
= priv
;
8452 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8455 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
8461 msg
= nlmsg_alloc();
8465 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TDLS_MGMT
);
8466 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
8467 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, dst
);
8468 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_ACTION
, action_code
);
8469 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_DIALOG_TOKEN
, dialog_token
);
8470 NLA_PUT_U16(msg
, NL80211_ATTR_STATUS_CODE
, status_code
);
8471 NLA_PUT(msg
, NL80211_ATTR_IE
, len
, buf
);
8473 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
8481 static int nl80211_tdls_oper(void *priv
, enum tdls_oper oper
, const u8
*peer
)
8483 struct i802_bss
*bss
= priv
;
8484 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8486 enum nl80211_tdls_operation nl80211_oper
;
8488 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
8492 case TDLS_DISCOVERY_REQ
:
8493 nl80211_oper
= NL80211_TDLS_DISCOVERY_REQ
;
8496 nl80211_oper
= NL80211_TDLS_SETUP
;
8499 nl80211_oper
= NL80211_TDLS_TEARDOWN
;
8501 case TDLS_ENABLE_LINK
:
8502 nl80211_oper
= NL80211_TDLS_ENABLE_LINK
;
8504 case TDLS_DISABLE_LINK
:
8505 nl80211_oper
= NL80211_TDLS_DISABLE_LINK
;
8515 msg
= nlmsg_alloc();
8519 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TDLS_OPER
);
8520 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_OPERATION
, nl80211_oper
);
8521 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
8522 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, peer
);
8524 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
8531 #endif /* CONFIG TDLS */
8536 typedef struct android_wifi_priv_cmd
{
8540 } android_wifi_priv_cmd
;
8542 static int drv_errors
= 0;
8544 static void wpa_driver_send_hang_msg(struct wpa_driver_nl80211_data
*drv
)
8547 if (drv_errors
> DRV_NUMBER_SEQUENTIAL_ERRORS
) {
8549 wpa_msg(drv
->ctx
, MSG_INFO
, WPA_EVENT_DRIVER_STATE
"HANGED");
8554 static int android_priv_cmd(struct i802_bss
*bss
, const char *cmd
)
8556 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8558 android_wifi_priv_cmd priv_cmd
;
8559 char buf
[MAX_DRV_CMD_SIZE
];
8562 os_memset(&ifr
, 0, sizeof(ifr
));
8563 os_memset(&priv_cmd
, 0, sizeof(priv_cmd
));
8564 os_strlcpy(ifr
.ifr_name
, bss
->ifname
, IFNAMSIZ
);
8566 os_memset(buf
, 0, sizeof(buf
));
8567 os_strlcpy(buf
, cmd
, sizeof(buf
));
8570 priv_cmd
.used_len
= sizeof(buf
);
8571 priv_cmd
.total_len
= sizeof(buf
);
8572 ifr
.ifr_data
= &priv_cmd
;
8574 ret
= ioctl(drv
->global
->ioctl_sock
, SIOCDEVPRIVATE
+ 1, &ifr
);
8576 wpa_printf(MSG_ERROR
, "%s: failed to issue private commands",
8578 wpa_driver_send_hang_msg(drv
);
8587 static int android_pno_start(struct i802_bss
*bss
,
8588 struct wpa_driver_scan_params
*params
)
8590 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
8592 android_wifi_priv_cmd priv_cmd
;
8593 int ret
= 0, i
= 0, bp
;
8594 char buf
[WEXT_PNO_MAX_COMMAND_SIZE
];
8596 bp
= WEXT_PNOSETUP_HEADER_SIZE
;
8597 os_memcpy(buf
, WEXT_PNOSETUP_HEADER
, bp
);
8598 buf
[bp
++] = WEXT_PNO_TLV_PREFIX
;
8599 buf
[bp
++] = WEXT_PNO_TLV_VERSION
;
8600 buf
[bp
++] = WEXT_PNO_TLV_SUBVERSION
;
8601 buf
[bp
++] = WEXT_PNO_TLV_RESERVED
;
8603 while (i
< WEXT_PNO_AMOUNT
&& (size_t) i
< params
->num_ssids
) {
8604 /* Check that there is enough space needed for 1 more SSID, the
8605 * other sections and null termination */
8606 if ((bp
+ WEXT_PNO_SSID_HEADER_SIZE
+ MAX_SSID_LEN
+
8607 WEXT_PNO_NONSSID_SECTIONS_SIZE
+ 1) >= (int) sizeof(buf
))
8609 wpa_hexdump_ascii(MSG_DEBUG
, "For PNO Scan",
8610 params
->ssids
[i
].ssid
,
8611 params
->ssids
[i
].ssid_len
);
8612 buf
[bp
++] = WEXT_PNO_SSID_SECTION
;
8613 buf
[bp
++] = params
->ssids
[i
].ssid_len
;
8614 os_memcpy(&buf
[bp
], params
->ssids
[i
].ssid
,
8615 params
->ssids
[i
].ssid_len
);
8616 bp
+= params
->ssids
[i
].ssid_len
;
8620 buf
[bp
++] = WEXT_PNO_SCAN_INTERVAL_SECTION
;
8621 os_snprintf(&buf
[bp
], WEXT_PNO_SCAN_INTERVAL_LENGTH
+ 1, "%x",
8622 WEXT_PNO_SCAN_INTERVAL
);
8623 bp
+= WEXT_PNO_SCAN_INTERVAL_LENGTH
;
8625 buf
[bp
++] = WEXT_PNO_REPEAT_SECTION
;
8626 os_snprintf(&buf
[bp
], WEXT_PNO_REPEAT_LENGTH
+ 1, "%x",
8628 bp
+= WEXT_PNO_REPEAT_LENGTH
;
8630 buf
[bp
++] = WEXT_PNO_MAX_REPEAT_SECTION
;
8631 os_snprintf(&buf
[bp
], WEXT_PNO_MAX_REPEAT_LENGTH
+ 1, "%x",
8632 WEXT_PNO_MAX_REPEAT
);
8633 bp
+= WEXT_PNO_MAX_REPEAT_LENGTH
+ 1;
8635 memset(&ifr
, 0, sizeof(ifr
));
8636 memset(&priv_cmd
, 0, sizeof(priv_cmd
));
8637 os_strncpy(ifr
.ifr_name
, bss
->ifname
, IFNAMSIZ
);
8640 priv_cmd
.used_len
= bp
;
8641 priv_cmd
.total_len
= bp
;
8642 ifr
.ifr_data
= &priv_cmd
;
8644 ret
= ioctl(drv
->global
->ioctl_sock
, SIOCDEVPRIVATE
+ 1, &ifr
);
8647 wpa_printf(MSG_ERROR
, "ioctl[SIOCSIWPRIV] (pnosetup): %d",
8649 wpa_driver_send_hang_msg(drv
);
8655 return android_priv_cmd(bss
, "PNOFORCE 1");
8659 static int android_pno_stop(struct i802_bss
*bss
)
8661 return android_priv_cmd(bss
, "PNOFORCE 0");
8664 #endif /* ANDROID */
8667 const struct wpa_driver_ops wpa_driver_nl80211_ops
= {
8669 .desc
= "Linux nl80211/cfg80211",
8670 .get_bssid
= wpa_driver_nl80211_get_bssid
,
8671 .get_ssid
= wpa_driver_nl80211_get_ssid
,
8672 .set_key
= wpa_driver_nl80211_set_key
,
8673 .scan2
= wpa_driver_nl80211_scan
,
8674 .sched_scan
= wpa_driver_nl80211_sched_scan
,
8675 .stop_sched_scan
= wpa_driver_nl80211_stop_sched_scan
,
8676 .get_scan_results2
= wpa_driver_nl80211_get_scan_results
,
8677 .deauthenticate
= wpa_driver_nl80211_deauthenticate
,
8678 .disassociate
= wpa_driver_nl80211_disassociate
,
8679 .authenticate
= wpa_driver_nl80211_authenticate
,
8680 .associate
= wpa_driver_nl80211_associate
,
8681 .global_init
= nl80211_global_init
,
8682 .global_deinit
= nl80211_global_deinit
,
8683 .init2
= wpa_driver_nl80211_init
,
8684 .deinit
= wpa_driver_nl80211_deinit
,
8685 .get_capa
= wpa_driver_nl80211_get_capa
,
8686 .set_operstate
= wpa_driver_nl80211_set_operstate
,
8687 .set_supp_port
= wpa_driver_nl80211_set_supp_port
,
8688 .set_country
= wpa_driver_nl80211_set_country
,
8689 .set_ap
= wpa_driver_nl80211_set_ap
,
8690 .if_add
= wpa_driver_nl80211_if_add
,
8691 .if_remove
= wpa_driver_nl80211_if_remove
,
8692 .send_mlme
= wpa_driver_nl80211_send_mlme
,
8693 .get_hw_feature_data
= wpa_driver_nl80211_get_hw_feature_data
,
8694 .sta_add
= wpa_driver_nl80211_sta_add
,
8695 .sta_remove
= wpa_driver_nl80211_sta_remove
,
8696 .hapd_send_eapol
= wpa_driver_nl80211_hapd_send_eapol
,
8697 .sta_set_flags
= wpa_driver_nl80211_sta_set_flags
,
8699 .hapd_init
= i802_init
,
8700 .hapd_deinit
= i802_deinit
,
8701 .set_wds_sta
= i802_set_wds_sta
,
8702 #endif /* HOSTAPD */
8703 #if defined(HOSTAPD) || defined(CONFIG_AP)
8704 .get_seqnum
= i802_get_seqnum
,
8705 .flush
= i802_flush
,
8706 .read_sta_data
= i802_read_sta_data
,
8707 .get_inact_sec
= i802_get_inact_sec
,
8708 .sta_clear_stats
= i802_sta_clear_stats
,
8709 .set_rts
= i802_set_rts
,
8710 .set_frag
= i802_set_frag
,
8711 .set_tx_queue_params
= i802_set_tx_queue_params
,
8712 .set_sta_vlan
= i802_set_sta_vlan
,
8713 .sta_deauth
= i802_sta_deauth
,
8714 .sta_disassoc
= i802_sta_disassoc
,
8715 #endif /* HOSTAPD || CONFIG_AP */
8716 .set_freq
= i802_set_freq
,
8717 .send_action
= wpa_driver_nl80211_send_action
,
8718 .send_action_cancel_wait
= wpa_driver_nl80211_send_action_cancel_wait
,
8719 .remain_on_channel
= wpa_driver_nl80211_remain_on_channel
,
8720 .cancel_remain_on_channel
=
8721 wpa_driver_nl80211_cancel_remain_on_channel
,
8722 .probe_req_report
= wpa_driver_nl80211_probe_req_report
,
8723 .deinit_ap
= wpa_driver_nl80211_deinit_ap
,
8724 .resume
= wpa_driver_nl80211_resume
,
8725 .send_ft_action
= nl80211_send_ft_action
,
8726 .signal_monitor
= nl80211_signal_monitor
,
8727 .signal_poll
= nl80211_signal_poll
,
8728 .send_frame
= nl80211_send_frame
,
8729 .shared_freq
= wpa_driver_nl80211_shared_freq
,
8730 .set_param
= nl80211_set_param
,
8731 .get_radio_name
= nl80211_get_radio_name
,
8732 .add_pmkid
= nl80211_add_pmkid
,
8733 .remove_pmkid
= nl80211_remove_pmkid
,
8734 .flush_pmkid
= nl80211_flush_pmkid
,
8735 .set_rekey_info
= nl80211_set_rekey_info
,
8736 .poll_client
= nl80211_poll_client
,
8737 .set_p2p_powersave
= nl80211_set_p2p_powersave
,
8739 .send_tdls_mgmt
= nl80211_send_tdls_mgmt
,
8740 .tdls_oper
= nl80211_tdls_oper
,
8741 #endif /* CONFIG_TDLS */