2 * WPA Supplicant / Configuration backend: text file
3 * Copyright (c) 2003-2012, Jouni Malinen <j@w1.fi>
5 * This software may be distributed under the terms of the BSD license.
6 * See README for more details.
8 * This file implements a configuration backend for text files. All the
9 * configuration information is stored in a text file that uses a format
10 * described in the sample configuration file, wpa_supplicant.conf.
23 #include "eap_peer/eap_methods.h"
24 #include "eap_peer/eap.h"
27 static int newline_terminated(const char *buf
, size_t buflen
)
29 size_t len
= os_strlen(buf
);
32 if (len
== buflen
- 1 && buf
[buflen
- 1] != '\r' &&
39 static void skip_line_end(FILE *stream
)
42 while (fgets(buf
, sizeof(buf
), stream
)) {
43 buf
[sizeof(buf
) - 1] = '\0';
44 if (newline_terminated(buf
, sizeof(buf
)))
51 * wpa_config_get_line - Read the next configuration file line
52 * @s: Buffer for the line
53 * @size: The buffer length
54 * @stream: File stream to read from
55 * @line: Pointer to a variable storing the file line number
56 * @_pos: Buffer for the pointer to the beginning of data on the text line or
57 * %NULL if not needed (returned value used instead)
58 * Returns: Pointer to the beginning of data on the text line or %NULL if no
59 * more text lines are available.
61 * This function reads the next non-empty line from the configuration file and
62 * removes comments. The returned string is guaranteed to be null-terminated.
64 static char * wpa_config_get_line(char *s
, int size
, FILE *stream
, int *line
,
67 char *pos
, *end
, *sstart
;
69 while (fgets(s
, size
, stream
)) {
72 if (!newline_terminated(s
, size
)) {
74 * The line was truncated - skip rest of it to avoid
75 * confusing error messages.
77 wpa_printf(MSG_INFO
, "Long line in configuration file "
79 skip_line_end(stream
);
83 /* Skip white space from the beginning of line. */
84 while (*pos
== ' ' || *pos
== '\t' || *pos
== '\r')
87 /* Skip comment lines and empty lines */
88 if (*pos
== '#' || *pos
== '\n' || *pos
== '\0')
92 * Remove # comments unless they are within a double quoted
95 sstart
= os_strchr(pos
, '"');
97 sstart
= os_strrchr(sstart
+ 1, '"');
100 end
= os_strchr(sstart
, '#');
104 end
= pos
+ os_strlen(pos
) - 1;
106 /* Remove trailing white space. */
108 (*end
== '\n' || *end
== ' ' || *end
== '\t' ||
126 static int wpa_config_validate_network(struct wpa_ssid
*ssid
, int line
)
130 if (ssid
->passphrase
) {
132 wpa_printf(MSG_ERROR
, "Line %d: both PSK and "
133 "passphrase configured.", line
);
136 wpa_config_update_psk(ssid
);
139 if ((ssid
->group_cipher
& WPA_CIPHER_CCMP
) &&
140 !(ssid
->pairwise_cipher
& WPA_CIPHER_CCMP
) &&
141 !(ssid
->pairwise_cipher
& WPA_CIPHER_NONE
)) {
142 /* Group cipher cannot be stronger than the pairwise cipher. */
143 wpa_printf(MSG_DEBUG
, "Line %d: removed CCMP from group cipher"
144 " list since it was not allowed for pairwise "
146 ssid
->group_cipher
&= ~WPA_CIPHER_CCMP
;
149 if (ssid
->mode
== WPAS_MODE_MESH
&&
150 (ssid
->key_mgmt
!= WPA_KEY_MGMT_NONE
&&
151 ssid
->key_mgmt
!= WPA_KEY_MGMT_SAE
)) {
152 wpa_printf(MSG_ERROR
,
153 "Line %d: key_mgmt for mesh network should be open or SAE",
162 static struct wpa_ssid
* wpa_config_read_network(FILE *f
, int *line
, int id
)
164 struct wpa_ssid
*ssid
;
165 int errors
= 0, end
= 0;
166 char buf
[2000], *pos
, *pos2
;
168 wpa_printf(MSG_MSGDUMP
, "Line: %d - start of a new network block",
170 ssid
= os_zalloc(sizeof(*ssid
));
173 dl_list_init(&ssid
->psk_list
);
176 wpa_config_set_network_defaults(ssid
);
178 while (wpa_config_get_line(buf
, sizeof(buf
), f
, line
, &pos
)) {
179 if (os_strcmp(pos
, "}") == 0) {
184 pos2
= os_strchr(pos
, '=');
186 wpa_printf(MSG_ERROR
, "Line %d: Invalid SSID line "
187 "'%s'.", *line
, pos
);
194 if (os_strchr(pos2
+ 1, '"') == NULL
) {
195 wpa_printf(MSG_ERROR
, "Line %d: invalid "
196 "quotation '%s'.", *line
, pos2
);
202 if (wpa_config_set(ssid
, pos
, pos2
, *line
) < 0)
207 wpa_printf(MSG_ERROR
, "Line %d: network block was not "
208 "terminated properly.", *line
);
212 errors
+= wpa_config_validate_network(ssid
, *line
);
215 wpa_config_free_ssid(ssid
);
223 static struct wpa_cred
* wpa_config_read_cred(FILE *f
, int *line
, int id
)
225 struct wpa_cred
*cred
;
226 int errors
= 0, end
= 0;
227 char buf
[256], *pos
, *pos2
;
229 wpa_printf(MSG_MSGDUMP
, "Line: %d - start of a new cred block", *line
);
230 cred
= os_zalloc(sizeof(*cred
));
234 cred
->sim_num
= DEFAULT_USER_SELECTED_SIM
;
236 while (wpa_config_get_line(buf
, sizeof(buf
), f
, line
, &pos
)) {
237 if (os_strcmp(pos
, "}") == 0) {
242 pos2
= os_strchr(pos
, '=');
244 wpa_printf(MSG_ERROR
, "Line %d: Invalid cred line "
245 "'%s'.", *line
, pos
);
252 if (os_strchr(pos2
+ 1, '"') == NULL
) {
253 wpa_printf(MSG_ERROR
, "Line %d: invalid "
254 "quotation '%s'.", *line
, pos2
);
260 if (wpa_config_set_cred(cred
, pos
, pos2
, *line
) < 0)
265 wpa_printf(MSG_ERROR
, "Line %d: cred block was not "
266 "terminated properly.", *line
);
271 wpa_config_free_cred(cred
);
279 #ifndef CONFIG_NO_CONFIG_BLOBS
280 static struct wpa_config_blob
* wpa_config_read_blob(FILE *f
, int *line
,
283 struct wpa_config_blob
*blob
;
285 unsigned char *encoded
= NULL
, *nencoded
;
287 size_t encoded_len
= 0, len
;
289 wpa_printf(MSG_MSGDUMP
, "Line: %d - start of a new named blob '%s'",
292 while (wpa_config_get_line(buf
, sizeof(buf
), f
, line
, &pos
)) {
293 if (os_strcmp(pos
, "}") == 0) {
298 len
= os_strlen(pos
);
299 nencoded
= os_realloc(encoded
, encoded_len
+ len
);
300 if (nencoded
== NULL
) {
301 wpa_printf(MSG_ERROR
, "Line %d: not enough memory for "
307 os_memcpy(encoded
+ encoded_len
, pos
, len
);
312 wpa_printf(MSG_ERROR
, "Line %d: blob was not terminated "
318 blob
= os_zalloc(sizeof(*blob
));
323 blob
->name
= os_strdup(name
);
324 blob
->data
= base64_decode(encoded
, encoded_len
, &blob
->len
);
327 if (blob
->name
== NULL
|| blob
->data
== NULL
) {
328 wpa_config_free_blob(blob
);
336 static int wpa_config_process_blob(struct wpa_config
*config
, FILE *f
,
337 int *line
, char *bname
)
340 struct wpa_config_blob
*blob
;
342 name_end
= os_strchr(bname
, '=');
343 if (name_end
== NULL
) {
344 wpa_printf(MSG_ERROR
, "Line %d: no blob name terminator",
350 blob
= wpa_config_read_blob(f
, line
, bname
);
352 wpa_printf(MSG_ERROR
, "Line %d: failed to read blob %s",
356 wpa_config_set_blob(config
, blob
);
359 #endif /* CONFIG_NO_CONFIG_BLOBS */
362 struct wpa_config
* wpa_config_read(const char *name
, struct wpa_config
*cfgp
)
366 int errors
= 0, line
= 0;
367 struct wpa_ssid
*ssid
, *tail
, *head
;
368 struct wpa_cred
*cred
, *cred_tail
, *cred_head
;
369 struct wpa_config
*config
;
378 config
= wpa_config_alloc_empty(NULL
, NULL
);
379 if (config
== NULL
) {
380 wpa_printf(MSG_ERROR
, "Failed to allocate config file "
384 tail
= head
= config
->ssid
;
385 while (tail
&& tail
->next
)
387 cred_tail
= cred_head
= config
->cred
;
388 while (cred_tail
&& cred_tail
->next
)
389 cred_tail
= cred_tail
->next
;
391 wpa_printf(MSG_DEBUG
, "Reading configuration file '%s'", name
);
392 f
= fopen(name
, "r");
394 wpa_printf(MSG_ERROR
, "Failed to open config file '%s', "
395 "error: %s", name
, strerror(errno
));
400 while (wpa_config_get_line(buf
, sizeof(buf
), f
, &line
, &pos
)) {
401 if (os_strcmp(pos
, "network={") == 0) {
402 ssid
= wpa_config_read_network(f
, &line
, id
++);
404 wpa_printf(MSG_ERROR
, "Line %d: failed to "
405 "parse network block.", line
);
415 if (wpa_config_add_prio_network(config
, ssid
)) {
416 wpa_printf(MSG_ERROR
, "Line %d: failed to add "
417 "network block to priority list.",
422 } else if (os_strcmp(pos
, "cred={") == 0) {
423 cred
= wpa_config_read_cred(f
, &line
, cred_id
++);
425 wpa_printf(MSG_ERROR
, "Line %d: failed to "
426 "parse cred block.", line
);
430 if (cred_head
== NULL
) {
431 cred_head
= cred_tail
= cred
;
433 cred_tail
->next
= cred
;
436 #ifndef CONFIG_NO_CONFIG_BLOBS
437 } else if (os_strncmp(pos
, "blob-base64-", 12) == 0) {
438 if (wpa_config_process_blob(config
, f
, &line
, pos
+ 12)
440 wpa_printf(MSG_ERROR
, "Line %d: failed to "
441 "process blob.", line
);
445 #endif /* CONFIG_NO_CONFIG_BLOBS */
446 } else if (wpa_config_process_global(config
, pos
, line
) < 0) {
447 wpa_printf(MSG_ERROR
, "Line %d: Invalid configuration "
448 "line '%s'.", line
, pos
);
457 wpa_config_debug_dump_networks(config
);
458 config
->cred
= cred_head
;
460 #ifndef WPA_IGNORE_CONFIG_ERRORS
462 wpa_config_free(config
);
466 #endif /* WPA_IGNORE_CONFIG_ERRORS */
472 #ifndef CONFIG_NO_CONFIG_WRITE
474 static void write_str(FILE *f
, const char *field
, struct wpa_ssid
*ssid
)
476 char *value
= wpa_config_get(ssid
, field
);
479 fprintf(f
, "\t%s=%s\n", field
, value
);
484 static void write_int(FILE *f
, const char *field
, int value
, int def
)
488 fprintf(f
, "\t%s=%d\n", field
, value
);
492 static void write_bssid(FILE *f
, struct wpa_ssid
*ssid
)
494 char *value
= wpa_config_get(ssid
, "bssid");
497 fprintf(f
, "\tbssid=%s\n", value
);
502 static void write_psk(FILE *f
, struct wpa_ssid
*ssid
)
506 if (ssid
->mem_only_psk
)
509 value
= wpa_config_get(ssid
, "psk");
512 fprintf(f
, "\tpsk=%s\n", value
);
517 static void write_proto(FILE *f
, struct wpa_ssid
*ssid
)
521 if (ssid
->proto
== DEFAULT_PROTO
)
524 value
= wpa_config_get(ssid
, "proto");
528 fprintf(f
, "\tproto=%s\n", value
);
533 static void write_key_mgmt(FILE *f
, struct wpa_ssid
*ssid
)
537 if (ssid
->key_mgmt
== DEFAULT_KEY_MGMT
)
540 value
= wpa_config_get(ssid
, "key_mgmt");
544 fprintf(f
, "\tkey_mgmt=%s\n", value
);
549 static void write_pairwise(FILE *f
, struct wpa_ssid
*ssid
)
553 if (ssid
->pairwise_cipher
== DEFAULT_PAIRWISE
)
556 value
= wpa_config_get(ssid
, "pairwise");
560 fprintf(f
, "\tpairwise=%s\n", value
);
565 static void write_group(FILE *f
, struct wpa_ssid
*ssid
)
569 if (ssid
->group_cipher
== DEFAULT_GROUP
)
572 value
= wpa_config_get(ssid
, "group");
576 fprintf(f
, "\tgroup=%s\n", value
);
581 static void write_auth_alg(FILE *f
, struct wpa_ssid
*ssid
)
585 if (ssid
->auth_alg
== 0)
588 value
= wpa_config_get(ssid
, "auth_alg");
592 fprintf(f
, "\tauth_alg=%s\n", value
);
597 #ifdef IEEE8021X_EAPOL
598 static void write_eap(FILE *f
, struct wpa_ssid
*ssid
)
602 value
= wpa_config_get(ssid
, "eap");
607 fprintf(f
, "\teap=%s\n", value
);
610 #endif /* IEEE8021X_EAPOL */
613 static void write_wep_key(FILE *f
, int idx
, struct wpa_ssid
*ssid
)
615 char field
[20], *value
;
618 res
= os_snprintf(field
, sizeof(field
), "wep_key%d", idx
);
619 if (os_snprintf_error(sizeof(field
), res
))
621 value
= wpa_config_get(ssid
, field
);
623 fprintf(f
, "\t%s=%s\n", field
, value
);
631 static void write_go_p2p_dev_addr(FILE *f
, struct wpa_ssid
*ssid
)
633 char *value
= wpa_config_get(ssid
, "go_p2p_dev_addr");
636 fprintf(f
, "\tgo_p2p_dev_addr=%s\n", value
);
640 static void write_p2p_client_list(FILE *f
, struct wpa_ssid
*ssid
)
642 char *value
= wpa_config_get(ssid
, "p2p_client_list");
645 fprintf(f
, "\tp2p_client_list=%s\n", value
);
650 static void write_psk_list(FILE *f
, struct wpa_ssid
*ssid
)
652 struct psk_list_entry
*psk
;
653 char hex
[32 * 2 + 1];
655 dl_list_for_each(psk
, &ssid
->psk_list
, struct psk_list_entry
, list
) {
656 wpa_snprintf_hex(hex
, sizeof(hex
), psk
->psk
, sizeof(psk
->psk
));
657 fprintf(f
, "\tpsk_list=%s" MACSTR
"-%s\n",
658 psk
->p2p
? "P2P-" : "", MAC2STR(psk
->addr
), hex
);
662 #endif /* CONFIG_P2P */
665 static void wpa_config_write_network(FILE *f
, struct wpa_ssid
*ssid
)
669 #define STR(t) write_str(f, #t, ssid)
670 #define INT(t) write_int(f, #t, ssid->t, 0)
671 #define INTe(t) write_int(f, #t, ssid->eap.t, 0)
672 #define INT_DEF(t, def) write_int(f, #t, ssid->t, def)
673 #define INT_DEFe(t, def) write_int(f, #t, ssid->eap.t, def)
677 write_bssid(f
, ssid
);
678 write_str(f
, "bssid_blacklist", ssid
);
679 write_str(f
, "bssid_whitelist", ssid
);
682 write_proto(f
, ssid
);
683 write_key_mgmt(f
, ssid
);
684 INT_DEF(bg_scan_period
, DEFAULT_BG_SCAN_PERIOD
);
685 write_pairwise(f
, ssid
);
686 write_group(f
, ssid
);
687 write_auth_alg(f
, ssid
);
691 #ifdef IEEE8021X_EAPOL
694 STR(anonymous_identity
);
700 STR(private_key_passwd
);
703 STR(altsubject_match
);
704 STR(domain_suffix_match
);
710 STR(private_key2_passwd
);
713 STR(altsubject_match2
);
714 STR(domain_suffix_match2
);
731 INT_DEF(eapol_flags
, DEFAULT_EAPOL_FLAGS
);
732 STR(openssl_ciphers
);
734 #endif /* IEEE8021X_EAPOL */
735 for (i
= 0; i
< 4; i
++)
736 write_wep_key(f
, i
, ssid
);
739 #ifdef IEEE8021X_EAPOL
740 INT_DEF(eap_workaround
, DEFAULT_EAP_WORKAROUND
);
742 INT_DEFe(fragment_size
, DEFAULT_FRAGMENT_SIZE
);
744 INT_DEFe(sim_num
, DEFAULT_USER_SELECTED_SIM
);
745 #endif /* IEEE8021X_EAPOL */
752 #endif /* CONFIG_ACS */
753 write_int(f
, "proactive_key_caching", ssid
->proactive_key_caching
, -1);
757 INT(max_oper_chwidth
);
760 #ifdef CONFIG_IEEE80211W
761 write_int(f
, "ieee80211w", ssid
->ieee80211w
,
762 MGMT_FRAME_PROTECTION_DEFAULT
);
763 #endif /* CONFIG_IEEE80211W */
766 write_go_p2p_dev_addr(f
, ssid
);
767 write_p2p_client_list(f
, ssid
);
768 write_psk_list(f
, ssid
);
769 #endif /* CONFIG_P2P */
770 INT(ap_max_inactivity
);
775 #endif /* CONFIG_MACSEC */
777 INT(update_identifier
);
778 #endif /* CONFIG_HS20 */
779 write_int(f
, "mac_addr", ssid
->mac_addr
, -1);
781 STR(mesh_basic_rates
);
782 INT_DEF(dot11MeshMaxRetries
, DEFAULT_MESH_MAX_RETRIES
);
783 INT_DEF(dot11MeshRetryTimeout
, DEFAULT_MESH_RETRY_TIMEOUT
);
784 INT_DEF(dot11MeshConfirmTimeout
, DEFAULT_MESH_CONFIRM_TIMEOUT
);
785 INT_DEF(dot11MeshHoldingTimeout
, DEFAULT_MESH_HOLDING_TIMEOUT
);
786 #endif /* CONFIG_MESH */
788 INT(ignore_broadcast_ssid
);
789 #ifdef CONFIG_HT_OVERRIDES
790 INT_DEF(disable_ht
, DEFAULT_DISABLE_HT
);
791 INT_DEF(disable_ht40
, DEFAULT_DISABLE_HT40
);
792 INT_DEF(disable_sgi
, DEFAULT_DISABLE_SGI
);
793 INT_DEF(disable_ldpc
, DEFAULT_DISABLE_LDPC
);
794 INT(ht40_intolerant
);
795 INT_DEF(disable_max_amsdu
, DEFAULT_DISABLE_MAX_AMSDU
);
796 INT_DEF(ampdu_factor
, DEFAULT_AMPDU_FACTOR
);
797 INT_DEF(ampdu_density
, DEFAULT_AMPDU_DENSITY
);
799 #endif /* CONFIG_HT_OVERRIDES */
800 #ifdef CONFIG_VHT_OVERRIDES
804 INT_DEF(vht_rx_mcs_nss_1
, -1);
805 INT_DEF(vht_rx_mcs_nss_2
, -1);
806 INT_DEF(vht_rx_mcs_nss_3
, -1);
807 INT_DEF(vht_rx_mcs_nss_4
, -1);
808 INT_DEF(vht_rx_mcs_nss_5
, -1);
809 INT_DEF(vht_rx_mcs_nss_6
, -1);
810 INT_DEF(vht_rx_mcs_nss_7
, -1);
811 INT_DEF(vht_rx_mcs_nss_8
, -1);
812 INT_DEF(vht_tx_mcs_nss_1
, -1);
813 INT_DEF(vht_tx_mcs_nss_2
, -1);
814 INT_DEF(vht_tx_mcs_nss_3
, -1);
815 INT_DEF(vht_tx_mcs_nss_4
, -1);
816 INT_DEF(vht_tx_mcs_nss_5
, -1);
817 INT_DEF(vht_tx_mcs_nss_6
, -1);
818 INT_DEF(vht_tx_mcs_nss_7
, -1);
819 INT_DEF(vht_tx_mcs_nss_8
, -1);
820 #endif /* CONFIG_VHT_OVERRIDES */
828 static void wpa_config_write_cred(FILE *f
, struct wpa_cred
*cred
)
833 fprintf(f
, "\tpriority=%d\n", cred
->priority
);
835 fprintf(f
, "\tpcsc=%d\n", cred
->pcsc
);
837 fprintf(f
, "\trealm=\"%s\"\n", cred
->realm
);
839 fprintf(f
, "\tusername=\"%s\"\n", cred
->username
);
840 if (cred
->password
&& cred
->ext_password
)
841 fprintf(f
, "\tpassword=ext:%s\n", cred
->password
);
842 else if (cred
->password
)
843 fprintf(f
, "\tpassword=\"%s\"\n", cred
->password
);
845 fprintf(f
, "\tca_cert=\"%s\"\n", cred
->ca_cert
);
846 if (cred
->client_cert
)
847 fprintf(f
, "\tclient_cert=\"%s\"\n", cred
->client_cert
);
848 if (cred
->private_key
)
849 fprintf(f
, "\tprivate_key=\"%s\"\n", cred
->private_key
);
850 if (cred
->private_key_passwd
)
851 fprintf(f
, "\tprivate_key_passwd=\"%s\"\n",
852 cred
->private_key_passwd
);
854 fprintf(f
, "\timsi=\"%s\"\n", cred
->imsi
);
856 fprintf(f
, "\tmilenage=\"%s\"\n", cred
->milenage
);
857 for (i
= 0; i
< cred
->num_domain
; i
++)
858 fprintf(f
, "\tdomain=\"%s\"\n", cred
->domain
[i
]);
859 if (cred
->domain_suffix_match
)
860 fprintf(f
, "\tdomain_suffix_match=\"%s\"\n",
861 cred
->domain_suffix_match
);
862 if (cred
->roaming_consortium_len
) {
863 fprintf(f
, "\troaming_consortium=");
864 for (i
= 0; i
< cred
->roaming_consortium_len
; i
++)
865 fprintf(f
, "%02x", cred
->roaming_consortium
[i
]);
868 if (cred
->eap_method
) {
870 name
= eap_get_name(cred
->eap_method
[0].vendor
,
871 cred
->eap_method
[0].method
);
873 fprintf(f
, "\teap=%s\n", name
);
876 fprintf(f
, "\tphase1=\"%s\"\n", cred
->phase1
);
878 fprintf(f
, "\tphase2=\"%s\"\n", cred
->phase2
);
879 if (cred
->excluded_ssid
) {
881 for (i
= 0; i
< cred
->num_excluded_ssid
; i
++) {
882 struct excluded_ssid
*e
= &cred
->excluded_ssid
[i
];
883 fprintf(f
, "\texcluded_ssid=");
884 for (j
= 0; j
< e
->ssid_len
; j
++)
885 fprintf(f
, "%02x", e
->ssid
[j
]);
889 if (cred
->roaming_partner
) {
890 for (i
= 0; i
< cred
->num_roaming_partner
; i
++) {
891 struct roaming_partner
*p
= &cred
->roaming_partner
[i
];
892 fprintf(f
, "\troaming_partner=\"%s,%d,%u,%s\"\n",
893 p
->fqdn
, p
->exact_match
, p
->priority
,
897 if (cred
->update_identifier
)
898 fprintf(f
, "\tupdate_identifier=%d\n", cred
->update_identifier
);
900 if (cred
->provisioning_sp
)
901 fprintf(f
, "\tprovisioning_sp=\"%s\"\n", cred
->provisioning_sp
);
902 if (cred
->sp_priority
)
903 fprintf(f
, "\tsp_priority=%d\n", cred
->sp_priority
);
905 if (cred
->min_dl_bandwidth_home
)
906 fprintf(f
, "\tmin_dl_bandwidth_home=%u\n",
907 cred
->min_dl_bandwidth_home
);
908 if (cred
->min_ul_bandwidth_home
)
909 fprintf(f
, "\tmin_ul_bandwidth_home=%u\n",
910 cred
->min_ul_bandwidth_home
);
911 if (cred
->min_dl_bandwidth_roaming
)
912 fprintf(f
, "\tmin_dl_bandwidth_roaming=%u\n",
913 cred
->min_dl_bandwidth_roaming
);
914 if (cred
->min_ul_bandwidth_roaming
)
915 fprintf(f
, "\tmin_ul_bandwidth_roaming=%u\n",
916 cred
->min_ul_bandwidth_roaming
);
918 if (cred
->max_bss_load
)
919 fprintf(f
, "\tmax_bss_load=%u\n",
923 fprintf(f
, "\tocsp=%d\n", cred
->ocsp
);
925 if (cred
->num_req_conn_capab
) {
926 for (i
= 0; i
< cred
->num_req_conn_capab
; i
++) {
929 fprintf(f
, "\treq_conn_capab=%u",
930 cred
->req_conn_capab_proto
[i
]);
931 ports
= cred
->req_conn_capab_port
[i
];
934 for (j
= 0; ports
[j
] != -1; j
++) {
935 fprintf(f
, "%s%d", j
> 0 ? "," : ":",
943 if (cred
->required_roaming_consortium_len
) {
944 fprintf(f
, "\trequired_roaming_consortium=");
945 for (i
= 0; i
< cred
->required_roaming_consortium_len
; i
++)
947 cred
->required_roaming_consortium
[i
]);
951 if (cred
->sim_num
!= DEFAULT_USER_SELECTED_SIM
)
952 fprintf(f
, "\tsim_num=%d\n", cred
->sim_num
);
956 #ifndef CONFIG_NO_CONFIG_BLOBS
957 static int wpa_config_write_blob(FILE *f
, struct wpa_config_blob
*blob
)
959 unsigned char *encoded
;
961 encoded
= base64_encode(blob
->data
, blob
->len
, NULL
);
965 fprintf(f
, "\nblob-base64-%s={\n%s}\n", blob
->name
, encoded
);
969 #endif /* CONFIG_NO_CONFIG_BLOBS */
972 static void write_global_bin(FILE *f
, const char *field
,
973 const struct wpabuf
*val
)
981 fprintf(f
, "%s=", field
);
982 pos
= wpabuf_head(val
);
983 for (i
= 0; i
< wpabuf_len(val
); i
++)
984 fprintf(f
, "%02X", *pos
++);
989 static void wpa_config_write_global(FILE *f
, struct wpa_config
*config
)
991 #ifdef CONFIG_CTRL_IFACE
992 if (config
->ctrl_interface
)
993 fprintf(f
, "ctrl_interface=%s\n", config
->ctrl_interface
);
994 if (config
->ctrl_interface_group
)
995 fprintf(f
, "ctrl_interface_group=%s\n",
996 config
->ctrl_interface_group
);
997 #endif /* CONFIG_CTRL_IFACE */
998 if (config
->eapol_version
!= DEFAULT_EAPOL_VERSION
)
999 fprintf(f
, "eapol_version=%d\n", config
->eapol_version
);
1000 if (config
->ap_scan
!= DEFAULT_AP_SCAN
)
1001 fprintf(f
, "ap_scan=%d\n", config
->ap_scan
);
1002 if (config
->disable_scan_offload
)
1003 fprintf(f
, "disable_scan_offload=%d\n",
1004 config
->disable_scan_offload
);
1005 if (config
->fast_reauth
!= DEFAULT_FAST_REAUTH
)
1006 fprintf(f
, "fast_reauth=%d\n", config
->fast_reauth
);
1007 if (config
->opensc_engine_path
)
1008 fprintf(f
, "opensc_engine_path=%s\n",
1009 config
->opensc_engine_path
);
1010 if (config
->pkcs11_engine_path
)
1011 fprintf(f
, "pkcs11_engine_path=%s\n",
1012 config
->pkcs11_engine_path
);
1013 if (config
->pkcs11_module_path
)
1014 fprintf(f
, "pkcs11_module_path=%s\n",
1015 config
->pkcs11_module_path
);
1016 if (config
->openssl_ciphers
)
1017 fprintf(f
, "openssl_ciphers=%s\n", config
->openssl_ciphers
);
1018 if (config
->pcsc_reader
)
1019 fprintf(f
, "pcsc_reader=%s\n", config
->pcsc_reader
);
1020 if (config
->pcsc_pin
)
1021 fprintf(f
, "pcsc_pin=%s\n", config
->pcsc_pin
);
1022 if (config
->driver_param
)
1023 fprintf(f
, "driver_param=%s\n", config
->driver_param
);
1024 if (config
->dot11RSNAConfigPMKLifetime
)
1025 fprintf(f
, "dot11RSNAConfigPMKLifetime=%u\n",
1026 config
->dot11RSNAConfigPMKLifetime
);
1027 if (config
->dot11RSNAConfigPMKReauthThreshold
)
1028 fprintf(f
, "dot11RSNAConfigPMKReauthThreshold=%u\n",
1029 config
->dot11RSNAConfigPMKReauthThreshold
);
1030 if (config
->dot11RSNAConfigSATimeout
)
1031 fprintf(f
, "dot11RSNAConfigSATimeout=%u\n",
1032 config
->dot11RSNAConfigSATimeout
);
1033 if (config
->update_config
)
1034 fprintf(f
, "update_config=%d\n", config
->update_config
);
1036 if (!is_nil_uuid(config
->uuid
)) {
1038 uuid_bin2str(config
->uuid
, buf
, sizeof(buf
));
1039 fprintf(f
, "uuid=%s\n", buf
);
1041 if (config
->device_name
)
1042 fprintf(f
, "device_name=%s\n", config
->device_name
);
1043 if (config
->manufacturer
)
1044 fprintf(f
, "manufacturer=%s\n", config
->manufacturer
);
1045 if (config
->model_name
)
1046 fprintf(f
, "model_name=%s\n", config
->model_name
);
1047 if (config
->model_number
)
1048 fprintf(f
, "model_number=%s\n", config
->model_number
);
1049 if (config
->serial_number
)
1050 fprintf(f
, "serial_number=%s\n", config
->serial_number
);
1052 char _buf
[WPS_DEV_TYPE_BUFSIZE
], *buf
;
1053 buf
= wps_dev_type_bin2str(config
->device_type
,
1054 _buf
, sizeof(_buf
));
1055 if (os_strcmp(buf
, "0-00000000-0") != 0)
1056 fprintf(f
, "device_type=%s\n", buf
);
1058 if (WPA_GET_BE32(config
->os_version
))
1059 fprintf(f
, "os_version=%08x\n",
1060 WPA_GET_BE32(config
->os_version
));
1061 if (config
->config_methods
)
1062 fprintf(f
, "config_methods=%s\n", config
->config_methods
);
1063 if (config
->wps_cred_processing
)
1064 fprintf(f
, "wps_cred_processing=%d\n",
1065 config
->wps_cred_processing
);
1066 if (config
->wps_vendor_ext_m1
) {
1067 int i
, len
= wpabuf_len(config
->wps_vendor_ext_m1
);
1068 const u8
*p
= wpabuf_head_u8(config
->wps_vendor_ext_m1
);
1070 fprintf(f
, "wps_vendor_ext_m1=");
1071 for (i
= 0; i
< len
; i
++)
1072 fprintf(f
, "%02x", *p
++);
1076 #endif /* CONFIG_WPS */
1078 if (config
->p2p_listen_reg_class
)
1079 fprintf(f
, "p2p_listen_reg_class=%d\n",
1080 config
->p2p_listen_reg_class
);
1081 if (config
->p2p_listen_channel
)
1082 fprintf(f
, "p2p_listen_channel=%d\n",
1083 config
->p2p_listen_channel
);
1084 if (config
->p2p_oper_reg_class
)
1085 fprintf(f
, "p2p_oper_reg_class=%d\n",
1086 config
->p2p_oper_reg_class
);
1087 if (config
->p2p_oper_channel
)
1088 fprintf(f
, "p2p_oper_channel=%d\n", config
->p2p_oper_channel
);
1089 if (config
->p2p_go_intent
!= DEFAULT_P2P_GO_INTENT
)
1090 fprintf(f
, "p2p_go_intent=%d\n", config
->p2p_go_intent
);
1091 if (config
->p2p_ssid_postfix
)
1092 fprintf(f
, "p2p_ssid_postfix=%s\n", config
->p2p_ssid_postfix
);
1093 if (config
->persistent_reconnect
)
1094 fprintf(f
, "persistent_reconnect=%d\n",
1095 config
->persistent_reconnect
);
1096 if (config
->p2p_intra_bss
!= DEFAULT_P2P_INTRA_BSS
)
1097 fprintf(f
, "p2p_intra_bss=%d\n", config
->p2p_intra_bss
);
1098 if (config
->p2p_group_idle
)
1099 fprintf(f
, "p2p_group_idle=%d\n", config
->p2p_group_idle
);
1100 if (config
->p2p_passphrase_len
)
1101 fprintf(f
, "p2p_passphrase_len=%u\n",
1102 config
->p2p_passphrase_len
);
1103 if (config
->p2p_pref_chan
) {
1105 fprintf(f
, "p2p_pref_chan=");
1106 for (i
= 0; i
< config
->num_p2p_pref_chan
; i
++) {
1107 fprintf(f
, "%s%u:%u", i
> 0 ? "," : "",
1108 config
->p2p_pref_chan
[i
].op_class
,
1109 config
->p2p_pref_chan
[i
].chan
);
1113 if (config
->p2p_no_go_freq
.num
) {
1114 char *val
= freq_range_list_str(&config
->p2p_no_go_freq
);
1116 fprintf(f
, "p2p_no_go_freq=%s\n", val
);
1120 if (config
->p2p_add_cli_chan
)
1121 fprintf(f
, "p2p_add_cli_chan=%d\n", config
->p2p_add_cli_chan
);
1122 if (config
->p2p_optimize_listen_chan
!=
1123 DEFAULT_P2P_OPTIMIZE_LISTEN_CHAN
)
1124 fprintf(f
, "p2p_optimize_listen_chan=%d\n",
1125 config
->p2p_optimize_listen_chan
);
1126 if (config
->p2p_go_ht40
)
1127 fprintf(f
, "p2p_go_ht40=%d\n", config
->p2p_go_ht40
);
1128 if (config
->p2p_go_vht
)
1129 fprintf(f
, "p2p_go_vht=%d\n", config
->p2p_go_vht
);
1130 if (config
->p2p_go_ctwindow
!= DEFAULT_P2P_GO_CTWINDOW
)
1131 fprintf(f
, "p2p_go_ctwindow=%d\n", config
->p2p_go_ctwindow
);
1132 if (config
->p2p_disabled
)
1133 fprintf(f
, "p2p_disabled=%d\n", config
->p2p_disabled
);
1134 if (config
->p2p_no_group_iface
)
1135 fprintf(f
, "p2p_no_group_iface=%d\n",
1136 config
->p2p_no_group_iface
);
1137 if (config
->p2p_ignore_shared_freq
)
1138 fprintf(f
, "p2p_ignore_shared_freq=%d\n",
1139 config
->p2p_ignore_shared_freq
);
1140 if (config
->p2p_cli_probe
)
1141 fprintf(f
, "p2p_cli_probe=%d\n", config
->p2p_cli_probe
);
1142 if (config
->p2p_go_freq_change_policy
!= DEFAULT_P2P_GO_FREQ_MOVE
)
1143 fprintf(f
, "p2p_go_freq_change_policy=%u\n",
1144 config
->p2p_go_freq_change_policy
);
1145 if (WPA_GET_BE32(config
->ip_addr_go
))
1146 fprintf(f
, "ip_addr_go=%u.%u.%u.%u\n",
1147 config
->ip_addr_go
[0], config
->ip_addr_go
[1],
1148 config
->ip_addr_go
[2], config
->ip_addr_go
[3]);
1149 if (WPA_GET_BE32(config
->ip_addr_mask
))
1150 fprintf(f
, "ip_addr_mask=%u.%u.%u.%u\n",
1151 config
->ip_addr_mask
[0], config
->ip_addr_mask
[1],
1152 config
->ip_addr_mask
[2], config
->ip_addr_mask
[3]);
1153 if (WPA_GET_BE32(config
->ip_addr_start
))
1154 fprintf(f
, "ip_addr_start=%u.%u.%u.%u\n",
1155 config
->ip_addr_start
[0], config
->ip_addr_start
[1],
1156 config
->ip_addr_start
[2], config
->ip_addr_start
[3]);
1157 if (WPA_GET_BE32(config
->ip_addr_end
))
1158 fprintf(f
, "ip_addr_end=%u.%u.%u.%u\n",
1159 config
->ip_addr_end
[0], config
->ip_addr_end
[1],
1160 config
->ip_addr_end
[2], config
->ip_addr_end
[3]);
1161 #endif /* CONFIG_P2P */
1162 if (config
->country
[0] && config
->country
[1]) {
1163 fprintf(f
, "country=%c%c\n",
1164 config
->country
[0], config
->country
[1]);
1166 if (config
->bss_max_count
!= DEFAULT_BSS_MAX_COUNT
)
1167 fprintf(f
, "bss_max_count=%u\n", config
->bss_max_count
);
1168 if (config
->bss_expiration_age
!= DEFAULT_BSS_EXPIRATION_AGE
)
1169 fprintf(f
, "bss_expiration_age=%u\n",
1170 config
->bss_expiration_age
);
1171 if (config
->bss_expiration_scan_count
!=
1172 DEFAULT_BSS_EXPIRATION_SCAN_COUNT
)
1173 fprintf(f
, "bss_expiration_scan_count=%u\n",
1174 config
->bss_expiration_scan_count
);
1175 if (config
->filter_ssids
)
1176 fprintf(f
, "filter_ssids=%d\n", config
->filter_ssids
);
1177 if (config
->max_num_sta
!= DEFAULT_MAX_NUM_STA
)
1178 fprintf(f
, "max_num_sta=%u\n", config
->max_num_sta
);
1179 if (config
->disassoc_low_ack
)
1180 fprintf(f
, "disassoc_low_ack=%d\n", config
->disassoc_low_ack
);
1183 fprintf(f
, "hs20=1\n");
1184 #endif /* CONFIG_HS20 */
1185 #ifdef CONFIG_INTERWORKING
1186 if (config
->interworking
)
1187 fprintf(f
, "interworking=%d\n", config
->interworking
);
1188 if (!is_zero_ether_addr(config
->hessid
))
1189 fprintf(f
, "hessid=" MACSTR
"\n", MAC2STR(config
->hessid
));
1190 if (config
->access_network_type
!= DEFAULT_ACCESS_NETWORK_TYPE
)
1191 fprintf(f
, "access_network_type=%d\n",
1192 config
->access_network_type
);
1193 #endif /* CONFIG_INTERWORKING */
1194 if (config
->pbc_in_m1
)
1195 fprintf(f
, "pbc_in_m1=%d\n", config
->pbc_in_m1
);
1196 if (config
->wps_nfc_pw_from_config
) {
1197 if (config
->wps_nfc_dev_pw_id
)
1198 fprintf(f
, "wps_nfc_dev_pw_id=%d\n",
1199 config
->wps_nfc_dev_pw_id
);
1200 write_global_bin(f
, "wps_nfc_dh_pubkey",
1201 config
->wps_nfc_dh_pubkey
);
1202 write_global_bin(f
, "wps_nfc_dh_privkey",
1203 config
->wps_nfc_dh_privkey
);
1204 write_global_bin(f
, "wps_nfc_dev_pw", config
->wps_nfc_dev_pw
);
1207 if (config
->ext_password_backend
)
1208 fprintf(f
, "ext_password_backend=%s\n",
1209 config
->ext_password_backend
);
1210 if (config
->p2p_go_max_inactivity
!= DEFAULT_P2P_GO_MAX_INACTIVITY
)
1211 fprintf(f
, "p2p_go_max_inactivity=%d\n",
1212 config
->p2p_go_max_inactivity
);
1213 if (config
->auto_interworking
)
1214 fprintf(f
, "auto_interworking=%d\n",
1215 config
->auto_interworking
);
1217 fprintf(f
, "okc=%d\n", config
->okc
);
1219 fprintf(f
, "pmf=%d\n", config
->pmf
);
1220 if (config
->dtim_period
)
1221 fprintf(f
, "dtim_period=%d\n", config
->dtim_period
);
1222 if (config
->beacon_int
)
1223 fprintf(f
, "beacon_int=%d\n", config
->beacon_int
);
1225 if (config
->sae_groups
) {
1227 fprintf(f
, "sae_groups=");
1228 for (i
= 0; config
->sae_groups
[i
] >= 0; i
++) {
1229 fprintf(f
, "%s%d", i
> 0 ? " " : "",
1230 config
->sae_groups
[i
]);
1235 if (config
->ap_vendor_elements
) {
1236 int i
, len
= wpabuf_len(config
->ap_vendor_elements
);
1237 const u8
*p
= wpabuf_head_u8(config
->ap_vendor_elements
);
1239 fprintf(f
, "ap_vendor_elements=");
1240 for (i
= 0; i
< len
; i
++)
1241 fprintf(f
, "%02x", *p
++);
1246 if (config
->ignore_old_scan_res
)
1247 fprintf(f
, "ignore_old_scan_res=%d\n",
1248 config
->ignore_old_scan_res
);
1250 if (config
->freq_list
&& config
->freq_list
[0]) {
1252 fprintf(f
, "freq_list=");
1253 for (i
= 0; config
->freq_list
[i
]; i
++) {
1254 fprintf(f
, "%s%d", i
> 0 ? " " : "",
1255 config
->freq_list
[i
]);
1259 if (config
->scan_cur_freq
!= DEFAULT_SCAN_CUR_FREQ
)
1260 fprintf(f
, "scan_cur_freq=%d\n", config
->scan_cur_freq
);
1262 if (config
->sched_scan_interval
)
1263 fprintf(f
, "sched_scan_interval=%u\n",
1264 config
->sched_scan_interval
);
1266 if (config
->external_sim
)
1267 fprintf(f
, "external_sim=%d\n", config
->external_sim
);
1269 if (config
->tdls_external_control
)
1270 fprintf(f
, "tdls_external_control=%d\n",
1271 config
->tdls_external_control
);
1273 if (config
->wowlan_triggers
)
1274 fprintf(f
, "wowlan_triggers=%s\n",
1275 config
->wowlan_triggers
);
1278 fprintf(f
, "bgscan=\"%s\"\n", config
->bgscan
);
1280 if (config
->p2p_search_delay
!= DEFAULT_P2P_SEARCH_DELAY
)
1281 fprintf(f
, "p2p_search_delay=%u\n",
1282 config
->p2p_search_delay
);
1284 if (config
->mac_addr
)
1285 fprintf(f
, "mac_addr=%d\n", config
->mac_addr
);
1287 if (config
->rand_addr_lifetime
!= DEFAULT_RAND_ADDR_LIFETIME
)
1288 fprintf(f
, "rand_addr_lifetime=%u\n",
1289 config
->rand_addr_lifetime
);
1291 if (config
->preassoc_mac_addr
)
1292 fprintf(f
, "preassoc_mac_addr=%d\n", config
->preassoc_mac_addr
);
1294 if (config
->key_mgmt_offload
!= DEFAULT_KEY_MGMT_OFFLOAD
)
1295 fprintf(f
, "key_mgmt_offload=%d\n", config
->key_mgmt_offload
);
1297 if (config
->user_mpm
!= DEFAULT_USER_MPM
)
1298 fprintf(f
, "user_mpm=%d\n", config
->user_mpm
);
1300 if (config
->max_peer_links
!= DEFAULT_MAX_PEER_LINKS
)
1301 fprintf(f
, "max_peer_links=%d\n", config
->max_peer_links
);
1303 if (config
->cert_in_cb
!= DEFAULT_CERT_IN_CB
)
1304 fprintf(f
, "cert_in_cb=%d\n", config
->cert_in_cb
);
1306 if (config
->mesh_max_inactivity
!= DEFAULT_MESH_MAX_INACTIVITY
)
1307 fprintf(f
, "mesh_max_inactivity=%d\n",
1308 config
->mesh_max_inactivity
);
1310 if (config
->dot11RSNASAERetransPeriod
!=
1311 DEFAULT_DOT11_RSNA_SAE_RETRANS_PERIOD
)
1312 fprintf(f
, "dot11RSNASAERetransPeriod=%d\n",
1313 config
->dot11RSNASAERetransPeriod
);
1315 if (config
->passive_scan
)
1316 fprintf(f
, "passive_scan=%d\n", config
->passive_scan
);
1318 if (config
->reassoc_same_bss_optim
)
1319 fprintf(f
, "reassoc_same_bss_optim=%d\n",
1320 config
->reassoc_same_bss_optim
);
1322 if (config
->wps_priority
)
1323 fprintf(f
, "wps_priority=%d\n", config
->wps_priority
);
1325 if (config
->wpa_rsc_relaxation
!= DEFAULT_WPA_RSC_RELAXATION
)
1326 fprintf(f
, "wpa_rsc_relaxation=%d\n",
1327 config
->wpa_rsc_relaxation
);
1329 if (config
->sched_scan_plans
)
1330 fprintf(f
, "sched_scan_plans=%s\n", config
->sched_scan_plans
);
1333 if (config
->non_pref_chan
)
1334 fprintf(f
, "non_pref_chan=%s\n", config
->non_pref_chan
);
1335 if (config
->mbo_cell_capa
!= DEFAULT_MBO_CELL_CAPA
)
1336 fprintf(f
, "mbo_cell_capa=%u\n", config
->mbo_cell_capa
);
1337 #endif /* CONFIG_MBO */
1339 if (config
->gas_address3
)
1340 fprintf(f
, "gas_address3=%d\n", config
->gas_address3
);
1343 #endif /* CONFIG_NO_CONFIG_WRITE */
1346 int wpa_config_write(const char *name
, struct wpa_config
*config
)
1348 #ifndef CONFIG_NO_CONFIG_WRITE
1350 struct wpa_ssid
*ssid
;
1351 struct wpa_cred
*cred
;
1352 #ifndef CONFIG_NO_CONFIG_BLOBS
1353 struct wpa_config_blob
*blob
;
1354 #endif /* CONFIG_NO_CONFIG_BLOBS */
1356 const char *orig_name
= name
;
1357 int tmp_len
= os_strlen(name
) + 5; /* allow space for .tmp suffix */
1358 char *tmp_name
= os_malloc(tmp_len
);
1361 os_snprintf(tmp_name
, tmp_len
, "%s.tmp", name
);
1365 wpa_printf(MSG_DEBUG
, "Writing configuration file '%s'", name
);
1367 f
= fopen(name
, "w");
1369 wpa_printf(MSG_DEBUG
, "Failed to open '%s' for writing", name
);
1374 wpa_config_write_global(f
, config
);
1376 for (cred
= config
->cred
; cred
; cred
= cred
->next
) {
1377 if (cred
->temporary
)
1379 fprintf(f
, "\ncred={\n");
1380 wpa_config_write_cred(f
, cred
);
1384 for (ssid
= config
->ssid
; ssid
; ssid
= ssid
->next
) {
1385 if (ssid
->key_mgmt
== WPA_KEY_MGMT_WPS
|| ssid
->temporary
)
1386 continue; /* do not save temporary networks */
1387 if (wpa_key_mgmt_wpa_psk(ssid
->key_mgmt
) && !ssid
->psk_set
&&
1389 continue; /* do not save invalid network */
1390 fprintf(f
, "\nnetwork={\n");
1391 wpa_config_write_network(f
, ssid
);
1395 #ifndef CONFIG_NO_CONFIG_BLOBS
1396 for (blob
= config
->blobs
; blob
; blob
= blob
->next
) {
1397 ret
= wpa_config_write_blob(f
, blob
);
1401 #endif /* CONFIG_NO_CONFIG_BLOBS */
1411 chmod_ret
= chmod(tmp_name
,
1412 S_IRUSR
| S_IWUSR
| S_IRGRP
| S_IWGRP
);
1413 #endif /* ANDROID */
1414 if (chmod_ret
!= 0 || rename(tmp_name
, orig_name
) != 0)
1420 wpa_printf(MSG_DEBUG
, "Configuration file '%s' written %ssuccessfully",
1421 orig_name
, ret
? "un" : "");
1423 #else /* CONFIG_NO_CONFIG_WRITE */
1425 #endif /* CONFIG_NO_CONFIG_WRITE */