2 * hostapd / IEEE 802.11 Management
3 * Copyright (c) 2002-2012, Jouni Malinen <j@w1.fi>
5 * This software may be distributed under the terms of the BSD license.
6 * See README for more details.
9 #include "utils/includes.h"
11 #include "utils/common.h"
12 #include "common/ieee802_11_defs.h"
13 #include "common/ocv.h"
16 #include "ap_config.h"
17 #include "ap_drv_ops.h"
19 #include "ieee802_11.h"
22 u8
* hostapd_eid_assoc_comeback_time(struct hostapd_data
*hapd
,
23 struct sta_info
*sta
, u8
*eid
)
27 struct os_reltime now
, passed
;
29 *pos
++ = WLAN_EID_TIMEOUT_INTERVAL
;
31 *pos
++ = WLAN_TIMEOUT_ASSOC_COMEBACK
;
33 os_reltime_sub(&now
, &sta
->sa_query_start
, &passed
);
34 tu
= (passed
.sec
* 1000000 + passed
.usec
) / 1024;
35 if (hapd
->conf
->assoc_sa_query_max_timeout
> tu
)
36 timeout
= hapd
->conf
->assoc_sa_query_max_timeout
- tu
;
39 if (timeout
< hapd
->conf
->assoc_sa_query_max_timeout
)
40 timeout
++; /* add some extra time for local timers */
41 WPA_PUT_LE32(pos
, timeout
);
48 /* MLME-SAQuery.request */
49 void ieee802_11_send_sa_query_req(struct hostapd_data
*hapd
,
50 const u8
*addr
, const u8
*trans_id
)
54 #endif /* CONFIG_OCV */
55 struct ieee80211_mgmt
*mgmt
;
60 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Sending SA Query Request to "
61 MACSTR
, MAC2STR(addr
));
62 wpa_hexdump(MSG_DEBUG
, "IEEE 802.11: SA Query Transaction ID",
63 trans_id
, WLAN_SA_QUERY_TR_ID_LEN
);
66 sta
= ap_get_sta(hapd
, addr
);
67 if (sta
&& wpa_auth_uses_ocv(sta
->wpa_sm
)) {
68 struct wpa_channel_info ci
;
70 if (hostapd_drv_channel_info(hapd
, &ci
) != 0) {
71 wpa_printf(MSG_WARNING
,
72 "Failed to get channel info for OCI element in SA Query Request");
76 oci_ie_len
= OCV_OCI_EXTENDED_LEN
;
77 oci_ie
= os_zalloc(oci_ie_len
);
79 wpa_printf(MSG_WARNING
,
80 "Failed to allocate buffer for OCI element in SA Query Request");
84 if (ocv_insert_extended_oci(&ci
, oci_ie
) < 0) {
89 #endif /* CONFIG_OCV */
91 mgmt
= os_zalloc(sizeof(*mgmt
) + oci_ie_len
);
94 "Failed to allocate buffer for SA Query Response frame");
99 mgmt
->frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
100 WLAN_FC_STYPE_ACTION
);
101 os_memcpy(mgmt
->da
, addr
, ETH_ALEN
);
102 os_memcpy(mgmt
->sa
, hapd
->own_addr
, ETH_ALEN
);
103 os_memcpy(mgmt
->bssid
, hapd
->own_addr
, ETH_ALEN
);
104 mgmt
->u
.action
.category
= WLAN_ACTION_SA_QUERY
;
105 mgmt
->u
.action
.u
.sa_query_req
.action
= WLAN_SA_QUERY_REQUEST
;
106 os_memcpy(mgmt
->u
.action
.u
.sa_query_req
.trans_id
, trans_id
,
107 WLAN_SA_QUERY_TR_ID_LEN
);
108 end
= mgmt
->u
.action
.u
.sa_query_req
.variable
;
110 if (oci_ie_len
> 0) {
111 os_memcpy(end
, oci_ie
, oci_ie_len
);
114 #endif /* CONFIG_OCV */
115 if (hostapd_drv_send_mlme(hapd
, mgmt
, end
- (u8
*) mgmt
, 0, NULL
, 0, 0)
117 wpa_printf(MSG_INFO
, "ieee802_11_send_sa_query_req: send failed");
124 static void ieee802_11_send_sa_query_resp(struct hostapd_data
*hapd
,
125 const u8
*sa
, const u8
*trans_id
)
127 struct sta_info
*sta
;
128 struct ieee80211_mgmt
*resp
;
133 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Received SA Query Request from "
134 MACSTR
, MAC2STR(sa
));
135 wpa_hexdump(MSG_DEBUG
, "IEEE 802.11: SA Query Transaction ID",
136 trans_id
, WLAN_SA_QUERY_TR_ID_LEN
);
138 sta
= ap_get_sta(hapd
, sa
);
139 if (sta
== NULL
|| !(sta
->flags
& WLAN_STA_ASSOC
)) {
140 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Ignore SA Query Request "
141 "from unassociated STA " MACSTR
, MAC2STR(sa
));
146 if (wpa_auth_uses_ocv(sta
->wpa_sm
)) {
147 struct wpa_channel_info ci
;
149 if (hostapd_drv_channel_info(hapd
, &ci
) != 0) {
150 wpa_printf(MSG_WARNING
,
151 "Failed to get channel info for OCI element in SA Query Response");
155 oci_ie_len
= OCV_OCI_EXTENDED_LEN
;
156 oci_ie
= os_zalloc(oci_ie_len
);
158 wpa_printf(MSG_WARNING
,
159 "Failed to allocate buffer for for OCI element in SA Query Response");
163 if (ocv_insert_extended_oci(&ci
, oci_ie
) < 0) {
168 #endif /* CONFIG_OCV */
170 resp
= os_zalloc(sizeof(*resp
) + oci_ie_len
);
172 wpa_printf(MSG_DEBUG
,
173 "Failed to allocate buffer for SA Query Response frame");
178 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Sending SA Query Response to "
179 MACSTR
, MAC2STR(sa
));
181 resp
->frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
182 WLAN_FC_STYPE_ACTION
);
183 os_memcpy(resp
->da
, sa
, ETH_ALEN
);
184 os_memcpy(resp
->sa
, hapd
->own_addr
, ETH_ALEN
);
185 os_memcpy(resp
->bssid
, hapd
->own_addr
, ETH_ALEN
);
186 resp
->u
.action
.category
= WLAN_ACTION_SA_QUERY
;
187 resp
->u
.action
.u
.sa_query_req
.action
= WLAN_SA_QUERY_RESPONSE
;
188 os_memcpy(resp
->u
.action
.u
.sa_query_req
.trans_id
, trans_id
,
189 WLAN_SA_QUERY_TR_ID_LEN
);
190 end
= resp
->u
.action
.u
.sa_query_req
.variable
;
192 if (oci_ie_len
> 0) {
193 os_memcpy(end
, oci_ie
, oci_ie_len
);
196 #endif /* CONFIG_OCV */
197 if (hostapd_drv_send_mlme(hapd
, resp
, end
- (u8
*) resp
, 0, NULL
, 0, 0)
199 wpa_printf(MSG_INFO
, "ieee80211_mgmt_sa_query_request: send failed");
206 void ieee802_11_sa_query_action(struct hostapd_data
*hapd
,
207 const struct ieee80211_mgmt
*mgmt
,
210 struct sta_info
*sta
;
212 const u8
*sa
= mgmt
->sa
;
213 const u8 action_type
= mgmt
->u
.action
.u
.sa_query_resp
.action
;
214 const u8
*trans_id
= mgmt
->u
.action
.u
.sa_query_resp
.trans_id
;
216 if (((const u8
*) mgmt
) + len
<
217 mgmt
->u
.action
.u
.sa_query_resp
.variable
) {
218 wpa_printf(MSG_DEBUG
,
219 "IEEE 802.11: Too short SA Query Action frame (len=%lu)",
220 (unsigned long) len
);
224 sta
= ap_get_sta(hapd
, sa
);
227 if (sta
&& wpa_auth_uses_ocv(sta
->wpa_sm
)) {
228 struct ieee802_11_elems elems
;
229 struct wpa_channel_info ci
;
235 ies
= mgmt
->u
.action
.u
.sa_query_resp
.variable
;
236 ies_len
= len
- (ies
- (u8
*) mgmt
);
237 if (ieee802_11_parse_elems(ies
, ies_len
, &elems
, 1) ==
239 wpa_printf(MSG_DEBUG
,
240 "SA Query: Failed to parse elements");
244 if (hostapd_drv_channel_info(hapd
, &ci
) != 0) {
245 wpa_printf(MSG_WARNING
,
246 "Failed to get channel info to validate received OCI in SA Query Action frame");
250 if (get_sta_tx_parameters(sta
->wpa_sm
,
251 channel_width_to_int(ci
.chanwidth
),
252 ci
.seg1_idx
, &tx_chanwidth
,
256 if (ocv_verify_tx_params(elems
.oci
, elems
.oci_len
, &ci
,
257 tx_chanwidth
, tx_seg1_idx
) != 0) {
258 wpa_printf(MSG_WARNING
, "%s", ocv_errorstr
);
262 #endif /* CONFIG_OCV */
264 if (action_type
== WLAN_SA_QUERY_REQUEST
) {
265 ieee802_11_send_sa_query_resp(hapd
, sa
, trans_id
);
269 if (action_type
!= WLAN_SA_QUERY_RESPONSE
) {
270 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Unexpected SA Query "
271 "Action %d", action_type
);
275 wpa_printf(MSG_DEBUG
, "IEEE 802.11: Received SA Query Response from "
276 MACSTR
, MAC2STR(sa
));
277 wpa_hexdump(MSG_DEBUG
, "IEEE 802.11: SA Query Transaction ID",
278 trans_id
, WLAN_SA_QUERY_TR_ID_LEN
);
280 /* MLME-SAQuery.confirm */
282 if (sta
== NULL
|| sta
->sa_query_trans_id
== NULL
) {
283 wpa_printf(MSG_DEBUG
, "IEEE 802.11: No matching STA with "
284 "pending SA Query request found");
288 for (i
= 0; i
< sta
->sa_query_count
; i
++) {
289 if (os_memcmp(sta
->sa_query_trans_id
+
290 i
* WLAN_SA_QUERY_TR_ID_LEN
,
291 trans_id
, WLAN_SA_QUERY_TR_ID_LEN
) == 0)
295 if (i
>= sta
->sa_query_count
) {
296 wpa_printf(MSG_DEBUG
, "IEEE 802.11: No matching SA Query "
297 "transaction identifier found");
301 hostapd_logger(hapd
, sta
->addr
, HOSTAPD_MODULE_IEEE80211
,
303 "Reply to pending SA Query received");
304 ap_sta_stop_sa_query(hapd
, sta
);
308 static void hostapd_ext_capab_byte(struct hostapd_data
*hapd
, u8
*pos
, int idx
)
313 case 0: /* Bits 0-7 */
314 if (hapd
->iconf
->obss_interval
)
315 *pos
|= 0x01; /* Bit 0 - Coexistence management */
316 if (hapd
->iface
->drv_flags
& WPA_DRIVER_FLAGS_AP_CSA
)
317 *pos
|= 0x04; /* Bit 2 - Extended Channel Switching */
319 case 1: /* Bits 8-15 */
320 if (hapd
->conf
->proxy_arp
)
321 *pos
|= 0x10; /* Bit 12 - Proxy ARP */
322 if (hapd
->conf
->coloc_intf_reporting
) {
323 /* Bit 13 - Collocated Interference Reporting */
327 case 2: /* Bits 16-23 */
328 if (hapd
->conf
->wnm_sleep_mode
)
329 *pos
|= 0x02; /* Bit 17 - WNM-Sleep Mode */
330 if (hapd
->conf
->bss_transition
)
331 *pos
|= 0x08; /* Bit 19 - BSS Transition */
333 case 3: /* Bits 24-31 */
335 *pos
|= 0x02; /* Bit 25 - SSID List */
336 #endif /* CONFIG_WNM_AP */
337 if (hapd
->conf
->time_advertisement
== 2)
338 *pos
|= 0x08; /* Bit 27 - UTC TSF Offset */
339 if (hapd
->conf
->interworking
)
340 *pos
|= 0x80; /* Bit 31 - Interworking */
342 case 4: /* Bits 32-39 */
343 if (hapd
->conf
->qos_map_set_len
)
344 *pos
|= 0x01; /* Bit 32 - QoS Map */
345 if (hapd
->conf
->tdls
& TDLS_PROHIBIT
)
346 *pos
|= 0x40; /* Bit 38 - TDLS Prohibited */
347 if (hapd
->conf
->tdls
& TDLS_PROHIBIT_CHAN_SWITCH
) {
348 /* Bit 39 - TDLS Channel Switching Prohibited */
352 case 5: /* Bits 40-47 */
354 if (hapd
->conf
->hs20
)
355 *pos
|= 0x40; /* Bit 46 - WNM-Notification */
356 #endif /* CONFIG_HS20 */
358 if (hapd
->conf
->mbo_enabled
)
359 *pos
|= 0x40; /* Bit 46 - WNM-Notification */
360 #endif /* CONFIG_MBO */
362 case 6: /* Bits 48-55 */
363 if (hapd
->conf
->ssid
.utf8_ssid
)
364 *pos
|= 0x01; /* Bit 48 - UTF-8 SSID */
366 case 7: /* Bits 56-63 */
368 case 8: /* Bits 64-71 */
369 if (hapd
->conf
->ftm_responder
)
370 *pos
|= 0x40; /* Bit 70 - FTM responder */
371 if (hapd
->conf
->ftm_initiator
)
372 *pos
|= 0x80; /* Bit 71 - FTM initiator */
374 case 9: /* Bits 72-79 */
376 if ((hapd
->conf
->wpa
& WPA_PROTO_RSN
) &&
377 wpa_key_mgmt_fils(hapd
->conf
->wpa_key_mgmt
))
379 #endif /* CONFIG_FILS */
381 case 10: /* Bits 80-87 */
383 if (hapd
->conf
->wpa
&&
384 wpa_key_mgmt_sae(hapd
->conf
->wpa_key_mgmt
)) {
385 int in_use
= hostapd_sae_pw_id_in_use(hapd
->conf
);
388 *pos
|= 0x02; /* Bit 81 - SAE Password
389 * Identifiers In Use */
391 *pos
|= 0x04; /* Bit 82 - SAE Password
392 * Identifiers Used Exclusively */
394 #endif /* CONFIG_SAE */
400 u8
* hostapd_eid_ext_capab(struct hostapd_data
*hapd
, u8
*eid
)
405 if (hapd
->conf
->qos_map_set_len
||
406 (hapd
->conf
->tdls
& (TDLS_PROHIBIT
| TDLS_PROHIBIT_CHAN_SWITCH
)))
409 (hapd
->conf
->time_advertisement
== 2 || hapd
->conf
->interworking
))
412 (hapd
->conf
->wnm_sleep_mode
|| hapd
->conf
->bss_transition
))
415 (hapd
->iconf
->obss_interval
||
416 (hapd
->iface
->drv_flags
& WPA_DRIVER_FLAGS_AP_CSA
)))
419 (hapd
->conf
->proxy_arp
|| hapd
->conf
->coloc_intf_reporting
))
421 if (len
< 7 && hapd
->conf
->ssid
.utf8_ssid
)
424 (hapd
->conf
->ftm_initiator
|| hapd
->conf
->ftm_responder
))
429 #endif /* CONFIG_WNM_AP */
431 if (hapd
->conf
->hs20
&& len
< 6)
433 #endif /* CONFIG_HS20 */
435 if (hapd
->conf
->mbo_enabled
&& len
< 6)
437 #endif /* CONFIG_MBO */
439 if ((!(hapd
->conf
->wpa
& WPA_PROTO_RSN
) ||
440 !wpa_key_mgmt_fils(hapd
->conf
->wpa_key_mgmt
)) && len
< 10)
442 #endif /* CONFIG_FILS */
444 if (len
< 11 && hapd
->conf
->wpa
&&
445 wpa_key_mgmt_sae(hapd
->conf
->wpa_key_mgmt
) &&
446 hostapd_sae_pw_id_in_use(hapd
->conf
))
448 #endif /* CONFIG_SAE */
449 if (len
< hapd
->iface
->extended_capa_len
)
450 len
= hapd
->iface
->extended_capa_len
;
454 *pos
++ = WLAN_EID_EXT_CAPAB
;
456 for (i
= 0; i
< len
; i
++, pos
++) {
457 hostapd_ext_capab_byte(hapd
, pos
, i
);
459 if (i
< hapd
->iface
->extended_capa_len
) {
460 *pos
&= ~hapd
->iface
->extended_capa_mask
[i
];
461 *pos
|= hapd
->iface
->extended_capa
[i
];
465 while (len
> 0 && eid
[1 + len
] == 0) {
472 return eid
+ 2 + len
;
476 u8
* hostapd_eid_qos_map_set(struct hostapd_data
*hapd
, u8
*eid
)
479 u8 len
= hapd
->conf
->qos_map_set_len
;
484 *pos
++ = WLAN_EID_QOS_MAP_SET
;
486 os_memcpy(pos
, hapd
->conf
->qos_map_set
, len
);
493 u8
* hostapd_eid_interworking(struct hostapd_data
*hapd
, u8
*eid
)
496 #ifdef CONFIG_INTERWORKING
499 if (!hapd
->conf
->interworking
)
502 *pos
++ = WLAN_EID_INTERWORKING
;
505 *pos
= hapd
->conf
->access_network_type
;
506 if (hapd
->conf
->internet
)
507 *pos
|= INTERWORKING_ANO_INTERNET
;
508 if (hapd
->conf
->asra
)
509 *pos
|= INTERWORKING_ANO_ASRA
;
511 *pos
|= INTERWORKING_ANO_ESR
;
512 if (hapd
->conf
->uesa
)
513 *pos
|= INTERWORKING_ANO_UESA
;
516 if (hapd
->conf
->venue_info_set
) {
517 *pos
++ = hapd
->conf
->venue_group
;
518 *pos
++ = hapd
->conf
->venue_type
;
521 if (!is_zero_ether_addr(hapd
->conf
->hessid
)) {
522 os_memcpy(pos
, hapd
->conf
->hessid
, ETH_ALEN
);
526 *len
= pos
- len
- 1;
527 #endif /* CONFIG_INTERWORKING */
533 u8
* hostapd_eid_adv_proto(struct hostapd_data
*hapd
, u8
*eid
)
536 #ifdef CONFIG_INTERWORKING
538 /* TODO: Separate configuration for ANQP? */
539 if (!hapd
->conf
->interworking
)
542 *pos
++ = WLAN_EID_ADV_PROTO
;
544 *pos
++ = 0x7F; /* Query Response Length Limit | PAME-BI */
545 *pos
++ = ACCESS_NETWORK_QUERY_PROTOCOL
;
546 #endif /* CONFIG_INTERWORKING */
552 u8
* hostapd_eid_roaming_consortium(struct hostapd_data
*hapd
, u8
*eid
)
555 #ifdef CONFIG_INTERWORKING
557 unsigned int i
, count
;
559 if (!hapd
->conf
->interworking
||
560 hapd
->conf
->roaming_consortium
== NULL
||
561 hapd
->conf
->roaming_consortium_count
== 0)
564 *pos
++ = WLAN_EID_ROAMING_CONSORTIUM
;
567 /* Number of ANQP OIs (in addition to the max 3 listed here) */
568 if (hapd
->conf
->roaming_consortium_count
> 3 + 255)
570 else if (hapd
->conf
->roaming_consortium_count
> 3)
571 *pos
++ = hapd
->conf
->roaming_consortium_count
- 3;
575 /* OU #1 and #2 Lengths */
576 *pos
= hapd
->conf
->roaming_consortium
[0].len
;
577 if (hapd
->conf
->roaming_consortium_count
> 1)
578 *pos
|= hapd
->conf
->roaming_consortium
[1].len
<< 4;
581 if (hapd
->conf
->roaming_consortium_count
> 3)
584 count
= hapd
->conf
->roaming_consortium_count
;
586 for (i
= 0; i
< count
; i
++) {
587 os_memcpy(pos
, hapd
->conf
->roaming_consortium
[i
].oi
,
588 hapd
->conf
->roaming_consortium
[i
].len
);
589 pos
+= hapd
->conf
->roaming_consortium
[i
].len
;
592 *len
= pos
- len
- 1;
593 #endif /* CONFIG_INTERWORKING */
599 u8
* hostapd_eid_time_adv(struct hostapd_data
*hapd
, u8
*eid
)
601 if (hapd
->conf
->time_advertisement
!= 2)
604 if (hapd
->time_adv
== NULL
&&
605 hostapd_update_time_adv(hapd
) < 0)
608 if (hapd
->time_adv
== NULL
)
611 os_memcpy(eid
, wpabuf_head(hapd
->time_adv
),
612 wpabuf_len(hapd
->time_adv
));
613 eid
+= wpabuf_len(hapd
->time_adv
);
619 u8
* hostapd_eid_time_zone(struct hostapd_data
*hapd
, u8
*eid
)
623 if (hapd
->conf
->time_advertisement
!= 2 || !hapd
->conf
->time_zone
)
626 len
= os_strlen(hapd
->conf
->time_zone
);
628 *eid
++ = WLAN_EID_TIME_ZONE
;
630 os_memcpy(eid
, hapd
->conf
->time_zone
, len
);
637 int hostapd_update_time_adv(struct hostapd_data
*hapd
)
639 const int elen
= 2 + 1 + 10 + 5 + 1;
644 if (hapd
->conf
->time_advertisement
!= 2)
647 if (os_get_time(&t
) < 0 || os_gmtime(t
.sec
, &tm
) < 0)
650 if (!hapd
->time_adv
) {
651 hapd
->time_adv
= wpabuf_alloc(elen
);
652 if (hapd
->time_adv
== NULL
)
654 pos
= wpabuf_put(hapd
->time_adv
, elen
);
656 pos
= wpabuf_mhead_u8(hapd
->time_adv
);
658 *pos
++ = WLAN_EID_TIME_ADVERTISEMENT
;
659 *pos
++ = 1 + 10 + 5 + 1;
661 *pos
++ = 2; /* UTC time at which the TSF timer is 0 */
663 /* Time Value at TSF 0 */
664 /* FIX: need to calculate this based on the current TSF value */
665 WPA_PUT_LE16(pos
, tm
.year
); /* Year */
667 *pos
++ = tm
.month
; /* Month */
668 *pos
++ = tm
.day
; /* Day of month */
669 *pos
++ = tm
.hour
; /* Hours */
670 *pos
++ = tm
.min
; /* Minutes */
671 *pos
++ = tm
.sec
; /* Seconds */
672 WPA_PUT_LE16(pos
, 0); /* Milliseconds (not used) */
674 *pos
++ = 0; /* Reserved */
677 /* TODO: fill in an estimate on the error */
684 *pos
++ = hapd
->time_update_counter
++;
690 u8
* hostapd_eid_bss_max_idle_period(struct hostapd_data
*hapd
, u8
*eid
)
695 if (hapd
->conf
->ap_max_inactivity
> 0) {
697 *pos
++ = WLAN_EID_BSS_MAX_IDLE_PERIOD
;
699 val
= hapd
->conf
->ap_max_inactivity
;
708 WPA_PUT_LE16(pos
, val
);
710 *pos
++ = 0x00; /* TODO: Protected Keep-Alive Required */
712 #endif /* CONFIG_WNM_AP */
720 u8
* hostapd_eid_mbo_rssi_assoc_rej(struct hostapd_data
*hapd
, u8
*eid
,
721 size_t len
, int delta
)
725 mbo
[0] = OCE_ATTR_ID_RSSI_BASED_ASSOC_REJECT
;
730 mbo
[3] = hapd
->iconf
->rssi_reject_assoc_timeout
;
732 return eid
+ mbo_add_ie(eid
, len
, mbo
, 4);
736 u8
* hostapd_eid_mbo(struct hostapd_data
*hapd
, u8
*eid
, size_t len
)
738 u8 mbo
[9], *mbo_pos
= mbo
;
741 if (!hapd
->conf
->mbo_enabled
&&
742 !OCE_STA_CFON_ENABLED(hapd
) && !OCE_AP_ENABLED(hapd
))
745 if (hapd
->conf
->mbo_enabled
) {
746 *mbo_pos
++ = MBO_ATTR_ID_AP_CAPA_IND
;
748 /* Not Cellular aware */
752 if (hapd
->conf
->mbo_enabled
&& hapd
->mbo_assoc_disallow
) {
753 *mbo_pos
++ = MBO_ATTR_ID_ASSOC_DISALLOW
;
755 *mbo_pos
++ = hapd
->mbo_assoc_disallow
;
758 if (OCE_STA_CFON_ENABLED(hapd
) || OCE_AP_ENABLED(hapd
)) {
762 if (OCE_STA_CFON_ENABLED(hapd
) && !OCE_AP_ENABLED(hapd
))
763 ctrl
|= OCE_IS_STA_CFON
;
765 *mbo_pos
++ = OCE_ATTR_ID_CAPA_IND
;
770 pos
+= mbo_add_ie(pos
, len
, mbo
, mbo_pos
- mbo
);
776 u8
hostapd_mbo_ie_len(struct hostapd_data
*hapd
)
780 if (!hapd
->conf
->mbo_enabled
&&
781 !OCE_STA_CFON_ENABLED(hapd
) && !OCE_AP_ENABLED(hapd
))
785 * MBO IE header (6) + Capability Indication attribute (3) +
786 * Association Disallowed attribute (3) = 12
789 if (hapd
->conf
->mbo_enabled
)
790 len
+= 3 + (hapd
->mbo_assoc_disallow
? 3 : 0);
792 /* OCE capability indication attribute (3) */
793 if (OCE_STA_CFON_ENABLED(hapd
) || OCE_AP_ENABLED(hapd
))
799 #endif /* CONFIG_MBO */
803 static int hostapd_eid_owe_trans_enabled(struct hostapd_data
*hapd
)
805 return hapd
->conf
->owe_transition_ssid_len
> 0 &&
806 !is_zero_ether_addr(hapd
->conf
->owe_transition_bssid
);
808 #endif /* CONFIG_OWE */
811 size_t hostapd_eid_owe_trans_len(struct hostapd_data
*hapd
)
814 if (!hostapd_eid_owe_trans_enabled(hapd
))
816 return 6 + ETH_ALEN
+ 1 + hapd
->conf
->owe_transition_ssid_len
;
817 #else /* CONFIG_OWE */
819 #endif /* CONFIG_OWE */
823 u8
* hostapd_eid_owe_trans(struct hostapd_data
*hapd
, u8
*eid
,
830 if (hapd
->conf
->owe_transition_ifname
[0] &&
831 !hostapd_eid_owe_trans_enabled(hapd
))
832 hostapd_owe_trans_get_info(hapd
);
834 if (!hostapd_eid_owe_trans_enabled(hapd
))
837 elen
= hostapd_eid_owe_trans_len(hapd
);
839 wpa_printf(MSG_DEBUG
,
840 "OWE: Not enough room in the buffer for OWE IE");
844 *pos
++ = WLAN_EID_VENDOR_SPECIFIC
;
846 WPA_PUT_BE24(pos
, OUI_WFA
);
848 *pos
++ = OWE_OUI_TYPE
;
849 os_memcpy(pos
, hapd
->conf
->owe_transition_bssid
, ETH_ALEN
);
851 *pos
++ = hapd
->conf
->owe_transition_ssid_len
;
852 os_memcpy(pos
, hapd
->conf
->owe_transition_ssid
,
853 hapd
->conf
->owe_transition_ssid_len
);
854 pos
+= hapd
->conf
->owe_transition_ssid_len
;
857 #else /* CONFIG_OWE */
859 #endif /* CONFIG_OWE */
863 void ap_copy_sta_supp_op_classes(struct sta_info
*sta
,
864 const u8
*supp_op_classes
,
865 size_t supp_op_classes_len
)
867 if (!supp_op_classes
)
869 os_free(sta
->supp_op_classes
);
870 sta
->supp_op_classes
= os_malloc(1 + supp_op_classes_len
);
871 if (!sta
->supp_op_classes
)
874 sta
->supp_op_classes
[0] = supp_op_classes_len
;
875 os_memcpy(sta
->supp_op_classes
+ 1, supp_op_classes
,
876 supp_op_classes_len
);
880 u8
* hostapd_eid_fils_indic(struct hostapd_data
*hapd
, u8
*eid
, int hessid
)
887 struct fils_realm
*realm
;
889 if (!(hapd
->conf
->wpa
& WPA_PROTO_RSN
) ||
890 !wpa_key_mgmt_fils(hapd
->conf
->wpa_key_mgmt
))
893 realms
= dl_list_len(&hapd
->conf
->fils_realms
);
895 realms
= 7; /* 3 bit count field limits this to max 7 */
897 *pos
++ = WLAN_EID_FILS_INDICATION
;
899 /* TODO: B0..B2: Number of Public Key Identifiers */
900 if (hapd
->conf
->erp_domain
) {
901 /* B3..B5: Number of Realm Identifiers */
902 fils_info
|= realms
<< 3;
904 /* TODO: B6: FILS IP Address Configuration */
905 if (hapd
->conf
->fils_cache_id_set
)
907 if (hessid
&& !is_zero_ether_addr(hapd
->conf
->hessid
))
908 fils_info
|= BIT(8); /* HESSID Included */
909 /* FILS Shared Key Authentication without PFS Supported */
911 if (hapd
->conf
->fils_dh_group
) {
912 /* FILS Shared Key Authentication with PFS Supported */
913 fils_info
|= BIT(10);
915 /* TODO: B11: FILS Public Key Authentication Supported */
916 /* B12..B15: Reserved */
917 WPA_PUT_LE16(pos
, fils_info
);
919 if (hapd
->conf
->fils_cache_id_set
) {
920 os_memcpy(pos
, hapd
->conf
->fils_cache_id
, FILS_CACHE_ID_LEN
);
921 pos
+= FILS_CACHE_ID_LEN
;
923 if (hessid
&& !is_zero_ether_addr(hapd
->conf
->hessid
)) {
924 os_memcpy(pos
, hapd
->conf
->hessid
, ETH_ALEN
);
928 dl_list_for_each(realm
, &hapd
->conf
->fils_realms
, struct fils_realm
,
933 os_memcpy(pos
, realm
->hash
, 2);
936 *len
= pos
- len
- 1;
937 #endif /* CONFIG_FILS */
944 int get_tx_parameters(struct sta_info
*sta
, int ap_max_chanwidth
,
945 int ap_seg1_idx
, int *bandwidth
, int *seg1_idx
)
951 if (sta
->ht_capabilities
)
952 ht_40mhz
= !!(sta
->ht_capabilities
->ht_capabilities_info
&
953 HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET
);
955 if (sta
->vht_operation
) {
956 struct ieee80211_vht_operation
*oper
= sta
->vht_operation
;
959 * If a VHT Operation element was present, use it to determine
960 * the supported channel bandwidth.
962 if (oper
->vht_op_info_chwidth
== 0) {
963 requested_bw
= ht_40mhz
? 40 : 20;
964 } else if (oper
->vht_op_info_chan_center_freq_seg1_idx
== 0) {
971 oper
->vht_op_info_chan_center_freq_seg0_idx
-
973 oper
->vht_op_info_chan_center_freq_seg1_idx
);
974 vht_80p80
= oper
->vht_op_info_chan_center_freq_seg1_idx
977 } else if (sta
->vht_capabilities
) {
978 struct ieee80211_vht_capabilities
*capab
;
981 capab
= sta
->vht_capabilities
;
984 * If only the VHT Capabilities element is present (e.g., for
985 * normal clients), use it to determine the supported channel
988 vht_chanwidth
= capab
->vht_capabilities_info
&
989 VHT_CAP_SUPP_CHAN_WIDTH_MASK
;
990 vht_80p80
= capab
->vht_capabilities_info
&
991 VHT_CAP_SUPP_CHAN_WIDTH_160_80PLUS80MHZ
;
993 /* TODO: Also take into account Extended NSS BW Support field */
994 requested_bw
= vht_chanwidth
? 160 : 80;
996 requested_bw
= ht_40mhz
? 40 : 20;
999 *bandwidth
= requested_bw
< ap_max_chanwidth
?
1000 requested_bw
: ap_max_chanwidth
;
1003 if (ap_seg1_idx
&& vht_80p80
)
1004 *seg1_idx
= ap_seg1_idx
;
1008 #endif /* CONFIG_OCV */
1011 u8
* hostapd_eid_rsnxe(struct hostapd_data
*hapd
, u8
*eid
, size_t len
)
1015 if (!(hapd
->conf
->wpa
& WPA_PROTO_RSN
) ||
1016 !wpa_key_mgmt_sae(hapd
->conf
->wpa_key_mgmt
) ||
1017 (hapd
->conf
->sae_pwe
!= 1 && hapd
->conf
->sae_pwe
!= 2 &&
1018 !hostapd_sae_pw_id_in_use(hapd
->conf
)) ||
1019 hapd
->conf
->sae_pwe
== 3 ||
1023 *pos
++ = WLAN_EID_RSNX
;
1025 /* bits 0-3 = 0 since only one octet of Extended RSN Capabilities is
1027 *pos
++ = BIT(WLAN_RSNX_CAPAB_SAE_H2E
);