2 * Driver interaction with Linux nl80211/cfg80211
3 * Copyright (c) 2002-2010, Jouni Malinen <j@w1.fi>
4 * Copyright (c) 2003-2004, Instant802 Networks, Inc.
5 * Copyright (c) 2005-2006, Devicescape Software, Inc.
6 * Copyright (c) 2007, Johannes Berg <johannes@sipsolutions.net>
7 * Copyright (c) 2009-2010, Atheros Communications
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License version 2 as
11 * published by the Free Software Foundation.
13 * Alternatively, this software may be distributed under the terms of BSD
16 * See README and COPYING for more details.
20 #include <sys/ioctl.h>
21 #include <sys/types.h>
25 #include <netlink/genl/genl.h>
26 #include <netlink/genl/family.h>
27 #include <netlink/genl/ctrl.h>
28 #include <linux/rtnetlink.h>
29 #include <netpacket/packet.h>
30 #include <linux/filter.h>
31 #include "nl80211_copy.h"
35 #include "utils/list.h"
36 #include "common/ieee802_11_defs.h"
37 #include "common/ieee802_11_common.h"
38 #include "l2_packet/l2_packet.h"
40 #include "linux_ioctl.h"
42 #include "radiotap_iter.h"
47 /* libnl 2.0 compatibility code */
48 #define nl_handle nl_sock
49 #define nl80211_handle_alloc nl_socket_alloc_cb
50 #define nl80211_handle_destroy nl_socket_free
53 * libnl 1.1 has a bug, it tries to allocate socket numbers densely
54 * but when you free a socket again it will mess up its bitmap and
55 * and use the wrong number the next time it needs a socket ID.
56 * Therefore, we wrap the handle alloc/destroy and add our own pid
59 static uint32_t port_bitmap
[32] = { 0 };
61 static struct nl_handle
*nl80211_handle_alloc(void *cb
)
63 struct nl_handle
*handle
;
64 uint32_t pid
= getpid() & 0x3FFFFF;
67 handle
= nl_handle_alloc_cb(cb
);
69 for (i
= 0; i
< 1024; i
++) {
70 if (port_bitmap
[i
/ 32] & (1 << (i
% 32)))
72 port_bitmap
[i
/ 32] |= 1 << (i
% 32);
77 nl_socket_set_local_port(handle
, pid
);
82 static void nl80211_handle_destroy(struct nl_handle
*handle
)
84 uint32_t port
= nl_socket_get_local_port(handle
);
87 port_bitmap
[port
/ 32] &= ~(1 << (port
% 32));
89 nl_handle_destroy(handle
);
92 static inline int __genl_ctrl_alloc_cache(struct nl_handle
*h
,
93 struct nl_cache
**cache
)
95 struct nl_cache
*tmp
= genl_ctrl_alloc_cache(h
);
101 #define genl_ctrl_alloc_cache __genl_ctrl_alloc_cache
102 #endif /* CONFIG_LIBNL20 */
105 struct nl80211_handles
{
106 struct nl_handle
*handle
;
107 struct nl_cache
*cache
;
111 static int nl_create_handles(struct nl80211_handles
*handles
, struct nl_cb
*cb
,
117 handles
->handle
= nl80211_handle_alloc(cb
);
118 if (handles
->handle
== NULL
) {
119 wpa_printf(MSG_ERROR
, "nl80211: Failed to allocate netlink "
120 "callbacks (%s)", dbg
);
124 if (genl_connect(handles
->handle
)) {
125 wpa_printf(MSG_ERROR
, "nl80211: Failed to connect to generic "
126 "netlink (%s)", dbg
);
130 if (genl_ctrl_alloc_cache(handles
->handle
, &handles
->cache
) < 0) {
131 wpa_printf(MSG_ERROR
, "nl80211: Failed to allocate generic "
132 "netlink cache (%s)", dbg
);
138 nl80211_handle_destroy(handles
->handle
);
143 static void nl_destroy_handles(struct nl80211_handles
*handles
)
145 if (handles
->handle
== NULL
)
147 nl_cache_free(handles
->cache
);
148 nl80211_handle_destroy(handles
->handle
);
149 handles
->handle
= NULL
;
154 #define IFF_LOWER_UP 0x10000 /* driver signals L1 up */
157 #define IFF_DORMANT 0x20000 /* driver signals dormant */
160 #ifndef IF_OPER_DORMANT
161 #define IF_OPER_DORMANT 5
167 struct nl80211_global
{
168 struct dl_list interfaces
;
170 struct netlink_data
*netlink
;
172 struct nl80211_handles nl
;
173 struct genl_family
*nl80211
;
174 int ioctl_sock
; /* socket for ioctl() use */
177 static void nl80211_global_deinit(void *priv
);
178 static void wpa_driver_nl80211_deinit(void *priv
);
181 struct wpa_driver_nl80211_data
*drv
;
182 struct i802_bss
*next
;
184 char ifname
[IFNAMSIZ
+ 1];
185 char brname
[IFNAMSIZ
];
186 unsigned int beacon_set
:1;
187 unsigned int added_if_into_bridge
:1;
188 unsigned int added_bridge
:1;
191 struct wpa_driver_nl80211_data
{
192 struct nl80211_global
*global
;
200 int ignore_if_down_event
;
201 struct rfkill_data
*rfkill
;
202 struct wpa_driver_capa capa
;
207 int scan_complete_events
;
209 struct nl80211_handles nl_event
, nl_preq
;
211 u8 auth_bssid
[ETH_ALEN
];
216 enum nl80211_iftype nlmode
;
217 enum nl80211_iftype ap_scan_as_station
;
218 unsigned int assoc_freq
;
222 int no_monitor_iface_capab
;
224 unsigned int disabled_11b_rates
:1;
225 unsigned int pending_remain_on_chan
:1;
226 unsigned int in_interface_list
:1;
228 u64 remain_on_chan_cookie
;
229 u64 send_action_cookie
;
231 unsigned int last_mgmt_freq
;
232 unsigned int ap_oper_freq
;
234 struct wpa_driver_scan_filter
*filter_ssids
;
235 size_t num_filter_ssids
;
237 struct i802_bss first_bss
;
240 struct l2_packet_data
*l2
;
241 #endif /* CONFIG_AP */
244 int eapol_sock
; /* socket for EAPOL frames */
246 int default_if_indices
[16];
256 static void wpa_driver_nl80211_scan_timeout(void *eloop_ctx
,
258 static int wpa_driver_nl80211_set_mode(struct i802_bss
*bss
,
259 enum nl80211_iftype nlmode
);
261 wpa_driver_nl80211_finish_drv_init(struct wpa_driver_nl80211_data
*drv
);
262 static int wpa_driver_nl80211_mlme(struct wpa_driver_nl80211_data
*drv
,
263 const u8
*addr
, int cmd
, u16 reason_code
,
264 int local_state_change
);
265 static void nl80211_remove_monitor_interface(
266 struct wpa_driver_nl80211_data
*drv
);
267 static int nl80211_send_frame_cmd(struct wpa_driver_nl80211_data
*drv
,
268 unsigned int freq
, unsigned int wait
,
269 const u8
*buf
, size_t buf_len
, u64
*cookie
,
271 static int wpa_driver_nl80211_probe_req_report(void *priv
, int report
);
274 static void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
275 static void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
276 static int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
);
277 static int wpa_driver_nl80211_if_remove(void *priv
,
278 enum wpa_driver_if_type type
,
281 static inline void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
285 static inline void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
289 static inline int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
295 static int i802_set_freq(void *priv
, struct hostapd_freq_params
*freq
);
296 static int nl80211_disable_11b_rates(struct wpa_driver_nl80211_data
*drv
,
297 int ifindex
, int disabled
);
299 static int nl80211_leave_ibss(struct wpa_driver_nl80211_data
*drv
);
302 static int is_ap_interface(enum nl80211_iftype nlmode
)
304 return (nlmode
== NL80211_IFTYPE_AP
||
305 nlmode
== NL80211_IFTYPE_P2P_GO
);
309 static int is_sta_interface(enum nl80211_iftype nlmode
)
311 return (nlmode
== NL80211_IFTYPE_STATION
||
312 nlmode
== NL80211_IFTYPE_P2P_CLIENT
);
316 static int is_p2p_interface(enum nl80211_iftype nlmode
)
318 return (nlmode
== NL80211_IFTYPE_P2P_CLIENT
||
319 nlmode
== NL80211_IFTYPE_P2P_GO
);
323 struct nl80211_bss_info_arg
{
324 struct wpa_driver_nl80211_data
*drv
;
325 struct wpa_scan_results
*res
;
326 unsigned int assoc_freq
;
327 u8 assoc_bssid
[ETH_ALEN
];
330 static int bss_info_handler(struct nl_msg
*msg
, void *arg
);
334 static int ack_handler(struct nl_msg
*msg
, void *arg
)
341 static int finish_handler(struct nl_msg
*msg
, void *arg
)
348 static int error_handler(struct sockaddr_nl
*nla
, struct nlmsgerr
*err
,
357 static int no_seq_check(struct nl_msg
*msg
, void *arg
)
363 static int send_and_recv(struct wpa_driver_nl80211_data
*drv
,
364 struct nl_handle
*nl_handle
, struct nl_msg
*msg
,
365 int (*valid_handler
)(struct nl_msg
*, void *),
371 cb
= nl_cb_clone(drv
->global
->nl_cb
);
375 err
= nl_send_auto_complete(nl_handle
, msg
);
381 nl_cb_err(cb
, NL_CB_CUSTOM
, error_handler
, &err
);
382 nl_cb_set(cb
, NL_CB_FINISH
, NL_CB_CUSTOM
, finish_handler
, &err
);
383 nl_cb_set(cb
, NL_CB_ACK
, NL_CB_CUSTOM
, ack_handler
, &err
);
386 nl_cb_set(cb
, NL_CB_VALID
, NL_CB_CUSTOM
,
387 valid_handler
, valid_data
);
390 nl_recvmsgs(nl_handle
, cb
);
398 static int send_and_recv_msgs(struct wpa_driver_nl80211_data
*drv
,
400 int (*valid_handler
)(struct nl_msg
*, void *),
403 return send_and_recv(drv
, drv
->global
->nl
.handle
, msg
, valid_handler
,
414 static int family_handler(struct nl_msg
*msg
, void *arg
)
416 struct family_data
*res
= arg
;
417 struct nlattr
*tb
[CTRL_ATTR_MAX
+ 1];
418 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
419 struct nlattr
*mcgrp
;
422 nla_parse(tb
, CTRL_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
423 genlmsg_attrlen(gnlh
, 0), NULL
);
424 if (!tb
[CTRL_ATTR_MCAST_GROUPS
])
427 nla_for_each_nested(mcgrp
, tb
[CTRL_ATTR_MCAST_GROUPS
], i
) {
428 struct nlattr
*tb2
[CTRL_ATTR_MCAST_GRP_MAX
+ 1];
429 nla_parse(tb2
, CTRL_ATTR_MCAST_GRP_MAX
, nla_data(mcgrp
),
430 nla_len(mcgrp
), NULL
);
431 if (!tb2
[CTRL_ATTR_MCAST_GRP_NAME
] ||
432 !tb2
[CTRL_ATTR_MCAST_GRP_ID
] ||
433 os_strncmp(nla_data(tb2
[CTRL_ATTR_MCAST_GRP_NAME
]),
435 nla_len(tb2
[CTRL_ATTR_MCAST_GRP_NAME
])) != 0)
437 res
->id
= nla_get_u32(tb2
[CTRL_ATTR_MCAST_GRP_ID
]);
445 static int nl_get_multicast_id(struct wpa_driver_nl80211_data
*drv
,
446 const char *family
, const char *group
)
450 struct family_data res
= { group
, -ENOENT
};
455 genlmsg_put(msg
, 0, 0,
456 genl_ctrl_resolve(drv
->global
->nl
.handle
, "nlctrl"),
457 0, 0, CTRL_CMD_GETFAMILY
, 0);
458 NLA_PUT_STRING(msg
, CTRL_ATTR_FAMILY_NAME
, family
);
460 ret
= send_and_recv_msgs(drv
, msg
, family_handler
, &res
);
471 static void * nl80211_cmd(struct wpa_driver_nl80211_data
*drv
,
472 struct nl_msg
*msg
, int flags
, uint8_t cmd
)
474 return genlmsg_put(msg
, 0, 0, genl_family_get_id(drv
->global
->nl80211
),
479 static int wpa_driver_nl80211_get_bssid(void *priv
, u8
*bssid
)
481 struct i802_bss
*bss
= priv
;
482 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
483 if (!drv
->associated
)
485 os_memcpy(bssid
, drv
->bssid
, ETH_ALEN
);
490 static int wpa_driver_nl80211_get_ssid(void *priv
, u8
*ssid
)
492 struct i802_bss
*bss
= priv
;
493 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
494 if (!drv
->associated
)
496 os_memcpy(ssid
, drv
->ssid
, drv
->ssid_len
);
497 return drv
->ssid_len
;
501 static void wpa_driver_nl80211_event_link(struct wpa_driver_nl80211_data
*drv
,
502 char *buf
, size_t len
, int del
)
504 union wpa_event_data event
;
506 os_memset(&event
, 0, sizeof(event
));
507 if (len
> sizeof(event
.interface_status
.ifname
))
508 len
= sizeof(event
.interface_status
.ifname
) - 1;
509 os_memcpy(event
.interface_status
.ifname
, buf
, len
);
510 event
.interface_status
.ievent
= del
? EVENT_INTERFACE_REMOVED
:
511 EVENT_INTERFACE_ADDED
;
513 wpa_printf(MSG_DEBUG
, "RTM_%sLINK, IFLA_IFNAME: Interface '%s' %s",
515 event
.interface_status
.ifname
,
516 del
? "removed" : "added");
518 if (os_strcmp(drv
->first_bss
.ifname
, event
.interface_status
.ifname
) == 0) {
525 wpa_supplicant_event(drv
->ctx
, EVENT_INTERFACE_STATUS
, &event
);
529 static int wpa_driver_nl80211_own_ifname(struct wpa_driver_nl80211_data
*drv
,
532 int attrlen
, rta_len
;
536 attr
= (struct rtattr
*) buf
;
538 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
539 while (RTA_OK(attr
, attrlen
)) {
540 if (attr
->rta_type
== IFLA_IFNAME
) {
541 if (os_strcmp(((char *) attr
) + rta_len
, drv
->first_bss
.ifname
)
547 attr
= RTA_NEXT(attr
, attrlen
);
554 static int wpa_driver_nl80211_own_ifindex(struct wpa_driver_nl80211_data
*drv
,
555 int ifindex
, u8
*buf
, size_t len
)
557 if (drv
->ifindex
== ifindex
)
560 if (drv
->if_removed
&& wpa_driver_nl80211_own_ifname(drv
, buf
, len
)) {
561 drv
->first_bss
.ifindex
= if_nametoindex(drv
->first_bss
.ifname
);
562 wpa_printf(MSG_DEBUG
, "nl80211: Update ifindex for a removed "
564 wpa_driver_nl80211_finish_drv_init(drv
);
572 static struct wpa_driver_nl80211_data
*
573 nl80211_find_drv(struct nl80211_global
*global
, int idx
, u8
*buf
, size_t len
)
575 struct wpa_driver_nl80211_data
*drv
;
576 dl_list_for_each(drv
, &global
->interfaces
,
577 struct wpa_driver_nl80211_data
, list
) {
578 if (wpa_driver_nl80211_own_ifindex(drv
, idx
, buf
, len
) ||
579 have_ifidx(drv
, idx
))
586 static void wpa_driver_nl80211_event_rtm_newlink(void *ctx
,
587 struct ifinfomsg
*ifi
,
590 struct nl80211_global
*global
= ctx
;
591 struct wpa_driver_nl80211_data
*drv
;
592 int attrlen
, rta_len
;
596 drv
= nl80211_find_drv(global
, ifi
->ifi_index
, buf
, len
);
598 wpa_printf(MSG_DEBUG
, "nl80211: Ignore event for foreign "
599 "ifindex %d", ifi
->ifi_index
);
603 wpa_printf(MSG_DEBUG
, "RTM_NEWLINK: operstate=%d ifi_flags=0x%x "
605 drv
->operstate
, ifi
->ifi_flags
,
606 (ifi
->ifi_flags
& IFF_UP
) ? "[UP]" : "",
607 (ifi
->ifi_flags
& IFF_RUNNING
) ? "[RUNNING]" : "",
608 (ifi
->ifi_flags
& IFF_LOWER_UP
) ? "[LOWER_UP]" : "",
609 (ifi
->ifi_flags
& IFF_DORMANT
) ? "[DORMANT]" : "");
611 if (!drv
->if_disabled
&& !(ifi
->ifi_flags
& IFF_UP
)) {
612 char namebuf
[IFNAMSIZ
];
613 if (if_indextoname(ifi
->ifi_index
, namebuf
) &&
614 linux_iface_up(drv
->global
->ioctl_sock
,
615 drv
->first_bss
.ifname
) > 0) {
616 wpa_printf(MSG_DEBUG
, "nl80211: Ignore interface down "
617 "event since interface %s is up", namebuf
);
620 wpa_printf(MSG_DEBUG
, "nl80211: Interface down");
621 if (drv
->ignore_if_down_event
) {
622 wpa_printf(MSG_DEBUG
, "nl80211: Ignore interface down "
623 "event generated by mode change");
624 drv
->ignore_if_down_event
= 0;
626 drv
->if_disabled
= 1;
627 wpa_supplicant_event(drv
->ctx
,
628 EVENT_INTERFACE_DISABLED
, NULL
);
632 if (drv
->if_disabled
&& (ifi
->ifi_flags
& IFF_UP
)) {
633 wpa_printf(MSG_DEBUG
, "nl80211: Interface up");
634 drv
->if_disabled
= 0;
635 wpa_supplicant_event(drv
->ctx
, EVENT_INTERFACE_ENABLED
, NULL
);
639 * Some drivers send the association event before the operup event--in
640 * this case, lifting operstate in wpa_driver_nl80211_set_operstate()
641 * fails. This will hit us when wpa_supplicant does not need to do
642 * IEEE 802.1X authentication
644 if (drv
->operstate
== 1 &&
645 (ifi
->ifi_flags
& (IFF_LOWER_UP
| IFF_DORMANT
)) == IFF_LOWER_UP
&&
646 !(ifi
->ifi_flags
& IFF_RUNNING
))
647 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
,
651 attr
= (struct rtattr
*) buf
;
652 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
653 while (RTA_OK(attr
, attrlen
)) {
654 if (attr
->rta_type
== IFLA_IFNAME
) {
655 wpa_driver_nl80211_event_link(
657 ((char *) attr
) + rta_len
,
658 attr
->rta_len
- rta_len
, 0);
659 } else if (attr
->rta_type
== IFLA_MASTER
)
660 brid
= nla_get_u32((struct nlattr
*) attr
);
661 attr
= RTA_NEXT(attr
, attrlen
);
664 if (ifi
->ifi_family
== AF_BRIDGE
&& brid
) {
665 /* device has been added to bridge */
666 char namebuf
[IFNAMSIZ
];
667 if_indextoname(brid
, namebuf
);
668 wpa_printf(MSG_DEBUG
, "nl80211: Add ifindex %u for bridge %s",
670 add_ifidx(drv
, brid
);
675 static void wpa_driver_nl80211_event_rtm_dellink(void *ctx
,
676 struct ifinfomsg
*ifi
,
679 struct nl80211_global
*global
= ctx
;
680 struct wpa_driver_nl80211_data
*drv
;
681 int attrlen
, rta_len
;
685 drv
= nl80211_find_drv(global
, ifi
->ifi_index
, buf
, len
);
687 wpa_printf(MSG_DEBUG
, "nl80211: Ignore dellink event for "
688 "foreign ifindex %d", ifi
->ifi_index
);
693 attr
= (struct rtattr
*) buf
;
695 rta_len
= RTA_ALIGN(sizeof(struct rtattr
));
696 while (RTA_OK(attr
, attrlen
)) {
697 if (attr
->rta_type
== IFLA_IFNAME
) {
698 wpa_driver_nl80211_event_link(
700 ((char *) attr
) + rta_len
,
701 attr
->rta_len
- rta_len
, 1);
702 } else if (attr
->rta_type
== IFLA_MASTER
)
703 brid
= nla_get_u32((struct nlattr
*) attr
);
704 attr
= RTA_NEXT(attr
, attrlen
);
707 if (ifi
->ifi_family
== AF_BRIDGE
&& brid
) {
708 /* device has been removed from bridge */
709 char namebuf
[IFNAMSIZ
];
710 if_indextoname(brid
, namebuf
);
711 wpa_printf(MSG_DEBUG
, "nl80211: Remove ifindex %u for bridge "
712 "%s", brid
, namebuf
);
713 del_ifidx(drv
, brid
);
718 static void mlme_event_auth(struct wpa_driver_nl80211_data
*drv
,
719 const u8
*frame
, size_t len
)
721 const struct ieee80211_mgmt
*mgmt
;
722 union wpa_event_data event
;
724 mgmt
= (const struct ieee80211_mgmt
*) frame
;
725 if (len
< 24 + sizeof(mgmt
->u
.auth
)) {
726 wpa_printf(MSG_DEBUG
, "nl80211: Too short association event "
731 os_memcpy(drv
->auth_bssid
, mgmt
->sa
, ETH_ALEN
);
732 os_memset(&event
, 0, sizeof(event
));
733 os_memcpy(event
.auth
.peer
, mgmt
->sa
, ETH_ALEN
);
734 event
.auth
.auth_type
= le_to_host16(mgmt
->u
.auth
.auth_alg
);
735 event
.auth
.status_code
= le_to_host16(mgmt
->u
.auth
.status_code
);
736 if (len
> 24 + sizeof(mgmt
->u
.auth
)) {
737 event
.auth
.ies
= mgmt
->u
.auth
.variable
;
738 event
.auth
.ies_len
= len
- 24 - sizeof(mgmt
->u
.auth
);
741 wpa_supplicant_event(drv
->ctx
, EVENT_AUTH
, &event
);
745 static unsigned int nl80211_get_assoc_freq(struct wpa_driver_nl80211_data
*drv
)
749 struct nl80211_bss_info_arg arg
;
751 os_memset(&arg
, 0, sizeof(arg
));
754 goto nla_put_failure
;
756 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
757 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
760 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
763 wpa_printf(MSG_DEBUG
, "nl80211: Operating frequency for the "
764 "associated BSS from scan results: %u MHz",
766 return arg
.assoc_freq
? arg
.assoc_freq
: drv
->assoc_freq
;
768 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
769 "(%s)", ret
, strerror(-ret
));
772 return drv
->assoc_freq
;
776 static void mlme_event_assoc(struct wpa_driver_nl80211_data
*drv
,
777 const u8
*frame
, size_t len
)
779 const struct ieee80211_mgmt
*mgmt
;
780 union wpa_event_data event
;
783 mgmt
= (const struct ieee80211_mgmt
*) frame
;
784 if (len
< 24 + sizeof(mgmt
->u
.assoc_resp
)) {
785 wpa_printf(MSG_DEBUG
, "nl80211: Too short association event "
790 status
= le_to_host16(mgmt
->u
.assoc_resp
.status_code
);
791 if (status
!= WLAN_STATUS_SUCCESS
) {
792 os_memset(&event
, 0, sizeof(event
));
793 event
.assoc_reject
.bssid
= mgmt
->bssid
;
794 if (len
> 24 + sizeof(mgmt
->u
.assoc_resp
)) {
795 event
.assoc_reject
.resp_ies
=
796 (u8
*) mgmt
->u
.assoc_resp
.variable
;
797 event
.assoc_reject
.resp_ies_len
=
798 len
- 24 - sizeof(mgmt
->u
.assoc_resp
);
800 event
.assoc_reject
.status_code
= status
;
802 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC_REJECT
, &event
);
807 os_memcpy(drv
->bssid
, mgmt
->sa
, ETH_ALEN
);
809 os_memset(&event
, 0, sizeof(event
));
810 if (len
> 24 + sizeof(mgmt
->u
.assoc_resp
)) {
811 event
.assoc_info
.resp_ies
= (u8
*) mgmt
->u
.assoc_resp
.variable
;
812 event
.assoc_info
.resp_ies_len
=
813 len
- 24 - sizeof(mgmt
->u
.assoc_resp
);
816 event
.assoc_info
.freq
= drv
->assoc_freq
;
818 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, &event
);
822 static void mlme_event_connect(struct wpa_driver_nl80211_data
*drv
,
823 enum nl80211_commands cmd
, struct nlattr
*status
,
824 struct nlattr
*addr
, struct nlattr
*req_ie
,
825 struct nlattr
*resp_ie
)
827 union wpa_event_data event
;
829 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
831 * Avoid reporting two association events that would confuse
834 wpa_printf(MSG_DEBUG
, "nl80211: Ignore connect event (cmd=%d) "
835 "when using userspace SME", cmd
);
839 os_memset(&event
, 0, sizeof(event
));
840 if (cmd
== NL80211_CMD_CONNECT
&&
841 nla_get_u16(status
) != WLAN_STATUS_SUCCESS
) {
843 event
.assoc_reject
.bssid
= nla_data(addr
);
845 event
.assoc_reject
.resp_ies
= nla_data(resp_ie
);
846 event
.assoc_reject
.resp_ies_len
= nla_len(resp_ie
);
848 event
.assoc_reject
.status_code
= nla_get_u16(status
);
849 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC_REJECT
, &event
);
855 os_memcpy(drv
->bssid
, nla_data(addr
), ETH_ALEN
);
858 event
.assoc_info
.req_ies
= nla_data(req_ie
);
859 event
.assoc_info
.req_ies_len
= nla_len(req_ie
);
862 event
.assoc_info
.resp_ies
= nla_data(resp_ie
);
863 event
.assoc_info
.resp_ies_len
= nla_len(resp_ie
);
866 event
.assoc_info
.freq
= nl80211_get_assoc_freq(drv
);
868 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, &event
);
872 static void mlme_event_disconnect(struct wpa_driver_nl80211_data
*drv
,
873 struct nlattr
*reason
, struct nlattr
*addr
)
875 union wpa_event_data data
;
877 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
879 * Avoid reporting two disassociation events that could
880 * confuse the core code.
882 wpa_printf(MSG_DEBUG
, "nl80211: Ignore disconnect "
883 "event when using userspace SME");
888 os_memset(&data
, 0, sizeof(data
));
890 data
.disassoc_info
.reason_code
= nla_get_u16(reason
);
891 wpa_supplicant_event(drv
->ctx
, EVENT_DISASSOC
, &data
);
895 static void mlme_timeout_event(struct wpa_driver_nl80211_data
*drv
,
896 enum nl80211_commands cmd
, struct nlattr
*addr
)
898 union wpa_event_data event
;
899 enum wpa_event_type ev
;
901 if (nla_len(addr
) != ETH_ALEN
)
904 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d; timeout with " MACSTR
,
905 cmd
, MAC2STR((u8
*) nla_data(addr
)));
907 if (cmd
== NL80211_CMD_AUTHENTICATE
)
908 ev
= EVENT_AUTH_TIMED_OUT
;
909 else if (cmd
== NL80211_CMD_ASSOCIATE
)
910 ev
= EVENT_ASSOC_TIMED_OUT
;
914 os_memset(&event
, 0, sizeof(event
));
915 os_memcpy(event
.timeout_event
.addr
, nla_data(addr
), ETH_ALEN
);
916 wpa_supplicant_event(drv
->ctx
, ev
, &event
);
920 static void mlme_event_mgmt(struct wpa_driver_nl80211_data
*drv
,
921 struct nlattr
*freq
, const u8
*frame
, size_t len
)
923 const struct ieee80211_mgmt
*mgmt
;
924 union wpa_event_data event
;
927 mgmt
= (const struct ieee80211_mgmt
*) frame
;
929 wpa_printf(MSG_DEBUG
, "nl80211: Too short action frame");
933 fc
= le_to_host16(mgmt
->frame_control
);
934 stype
= WLAN_FC_GET_STYPE(fc
);
936 os_memset(&event
, 0, sizeof(event
));
938 event
.rx_action
.freq
= nla_get_u32(freq
);
939 drv
->last_mgmt_freq
= event
.rx_action
.freq
;
941 if (stype
== WLAN_FC_STYPE_ACTION
) {
942 event
.rx_action
.da
= mgmt
->da
;
943 event
.rx_action
.sa
= mgmt
->sa
;
944 event
.rx_action
.bssid
= mgmt
->bssid
;
945 event
.rx_action
.category
= mgmt
->u
.action
.category
;
946 event
.rx_action
.data
= &mgmt
->u
.action
.category
+ 1;
947 event
.rx_action
.len
= frame
+ len
- event
.rx_action
.data
;
948 wpa_supplicant_event(drv
->ctx
, EVENT_RX_ACTION
, &event
);
950 event
.rx_mgmt
.frame
= frame
;
951 event
.rx_mgmt
.frame_len
= len
;
952 wpa_supplicant_event(drv
->ctx
, EVENT_RX_MGMT
, &event
);
957 static void mlme_event_action_tx_status(struct wpa_driver_nl80211_data
*drv
,
958 struct nlattr
*cookie
, const u8
*frame
,
959 size_t len
, struct nlattr
*ack
)
961 union wpa_event_data event
;
962 const struct ieee80211_hdr
*hdr
;
969 cookie_val
= nla_get_u64(cookie
);
970 wpa_printf(MSG_DEBUG
, "nl80211: Action TX status: cookie=0%llx%s "
972 (long long unsigned int) cookie_val
,
973 cookie_val
== drv
->send_action_cookie
?
974 " (match)" : " (unknown)", ack
!= NULL
);
975 if (cookie_val
!= drv
->send_action_cookie
)
978 hdr
= (const struct ieee80211_hdr
*) frame
;
979 fc
= le_to_host16(hdr
->frame_control
);
981 os_memset(&event
, 0, sizeof(event
));
982 event
.tx_status
.type
= WLAN_FC_GET_TYPE(fc
);
983 event
.tx_status
.stype
= WLAN_FC_GET_STYPE(fc
);
984 event
.tx_status
.dst
= hdr
->addr1
;
985 event
.tx_status
.data
= frame
;
986 event
.tx_status
.data_len
= len
;
987 event
.tx_status
.ack
= ack
!= NULL
;
988 wpa_supplicant_event(drv
->ctx
, EVENT_TX_STATUS
, &event
);
992 static void mlme_event_deauth_disassoc(struct wpa_driver_nl80211_data
*drv
,
993 enum wpa_event_type type
,
994 const u8
*frame
, size_t len
)
996 const struct ieee80211_mgmt
*mgmt
;
997 union wpa_event_data event
;
998 const u8
*bssid
= NULL
;
1001 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1003 bssid
= mgmt
->bssid
;
1005 if (drv
->associated
!= 0 &&
1006 os_memcmp(bssid
, drv
->bssid
, ETH_ALEN
) != 0 &&
1007 os_memcmp(bssid
, drv
->auth_bssid
, ETH_ALEN
) != 0) {
1009 * We have presumably received this deauth as a
1010 * response to a clear_state_mismatch() outgoing
1011 * deauth. Don't let it take us offline!
1013 wpa_printf(MSG_DEBUG
, "nl80211: Deauth received "
1014 "from Unknown BSSID " MACSTR
" -- ignoring",
1020 drv
->associated
= 0;
1021 os_memset(&event
, 0, sizeof(event
));
1023 /* Note: Same offset for Reason Code in both frame subtypes */
1024 if (len
>= 24 + sizeof(mgmt
->u
.deauth
))
1025 reason_code
= le_to_host16(mgmt
->u
.deauth
.reason_code
);
1027 if (type
== EVENT_DISASSOC
) {
1028 event
.disassoc_info
.addr
= bssid
;
1029 event
.disassoc_info
.reason_code
= reason_code
;
1030 if (frame
+ len
> mgmt
->u
.disassoc
.variable
) {
1031 event
.disassoc_info
.ie
= mgmt
->u
.disassoc
.variable
;
1032 event
.disassoc_info
.ie_len
= frame
+ len
-
1033 mgmt
->u
.disassoc
.variable
;
1036 event
.deauth_info
.addr
= bssid
;
1037 event
.deauth_info
.reason_code
= reason_code
;
1038 if (frame
+ len
> mgmt
->u
.deauth
.variable
) {
1039 event
.deauth_info
.ie
= mgmt
->u
.deauth
.variable
;
1040 event
.deauth_info
.ie_len
= frame
+ len
-
1041 mgmt
->u
.deauth
.variable
;
1045 wpa_supplicant_event(drv
->ctx
, type
, &event
);
1049 static void mlme_event_unprot_disconnect(struct wpa_driver_nl80211_data
*drv
,
1050 enum wpa_event_type type
,
1051 const u8
*frame
, size_t len
)
1053 const struct ieee80211_mgmt
*mgmt
;
1054 union wpa_event_data event
;
1055 u16 reason_code
= 0;
1060 mgmt
= (const struct ieee80211_mgmt
*) frame
;
1062 os_memset(&event
, 0, sizeof(event
));
1063 /* Note: Same offset for Reason Code in both frame subtypes */
1064 if (len
>= 24 + sizeof(mgmt
->u
.deauth
))
1065 reason_code
= le_to_host16(mgmt
->u
.deauth
.reason_code
);
1067 if (type
== EVENT_UNPROT_DISASSOC
) {
1068 event
.unprot_disassoc
.sa
= mgmt
->sa
;
1069 event
.unprot_disassoc
.da
= mgmt
->da
;
1070 event
.unprot_disassoc
.reason_code
= reason_code
;
1072 event
.unprot_deauth
.sa
= mgmt
->sa
;
1073 event
.unprot_deauth
.da
= mgmt
->da
;
1074 event
.unprot_deauth
.reason_code
= reason_code
;
1077 wpa_supplicant_event(drv
->ctx
, type
, &event
);
1081 static void mlme_event(struct wpa_driver_nl80211_data
*drv
,
1082 enum nl80211_commands cmd
, struct nlattr
*frame
,
1083 struct nlattr
*addr
, struct nlattr
*timed_out
,
1084 struct nlattr
*freq
, struct nlattr
*ack
,
1085 struct nlattr
*cookie
)
1087 if (timed_out
&& addr
) {
1088 mlme_timeout_event(drv
, cmd
, addr
);
1092 if (frame
== NULL
) {
1093 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d without frame "
1098 wpa_printf(MSG_DEBUG
, "nl80211: MLME event %d", cmd
);
1099 wpa_hexdump(MSG_MSGDUMP
, "nl80211: MLME event frame",
1100 nla_data(frame
), nla_len(frame
));
1103 case NL80211_CMD_AUTHENTICATE
:
1104 mlme_event_auth(drv
, nla_data(frame
), nla_len(frame
));
1106 case NL80211_CMD_ASSOCIATE
:
1107 mlme_event_assoc(drv
, nla_data(frame
), nla_len(frame
));
1109 case NL80211_CMD_DEAUTHENTICATE
:
1110 mlme_event_deauth_disassoc(drv
, EVENT_DEAUTH
,
1111 nla_data(frame
), nla_len(frame
));
1113 case NL80211_CMD_DISASSOCIATE
:
1114 mlme_event_deauth_disassoc(drv
, EVENT_DISASSOC
,
1115 nla_data(frame
), nla_len(frame
));
1117 case NL80211_CMD_FRAME
:
1118 mlme_event_mgmt(drv
, freq
, nla_data(frame
), nla_len(frame
));
1120 case NL80211_CMD_FRAME_TX_STATUS
:
1121 mlme_event_action_tx_status(drv
, cookie
, nla_data(frame
),
1122 nla_len(frame
), ack
);
1124 case NL80211_CMD_UNPROT_DEAUTHENTICATE
:
1125 mlme_event_unprot_disconnect(drv
, EVENT_UNPROT_DEAUTH
,
1126 nla_data(frame
), nla_len(frame
));
1128 case NL80211_CMD_UNPROT_DISASSOCIATE
:
1129 mlme_event_unprot_disconnect(drv
, EVENT_UNPROT_DISASSOC
,
1130 nla_data(frame
), nla_len(frame
));
1138 static void mlme_event_michael_mic_failure(struct wpa_driver_nl80211_data
*drv
,
1139 struct nlattr
*tb
[])
1141 union wpa_event_data data
;
1143 wpa_printf(MSG_DEBUG
, "nl80211: MLME event Michael MIC failure");
1144 os_memset(&data
, 0, sizeof(data
));
1145 if (tb
[NL80211_ATTR_MAC
]) {
1146 wpa_hexdump(MSG_DEBUG
, "nl80211: Source MAC address",
1147 nla_data(tb
[NL80211_ATTR_MAC
]),
1148 nla_len(tb
[NL80211_ATTR_MAC
]));
1149 data
.michael_mic_failure
.src
= nla_data(tb
[NL80211_ATTR_MAC
]);
1151 if (tb
[NL80211_ATTR_KEY_SEQ
]) {
1152 wpa_hexdump(MSG_DEBUG
, "nl80211: TSC",
1153 nla_data(tb
[NL80211_ATTR_KEY_SEQ
]),
1154 nla_len(tb
[NL80211_ATTR_KEY_SEQ
]));
1156 if (tb
[NL80211_ATTR_KEY_TYPE
]) {
1157 enum nl80211_key_type key_type
=
1158 nla_get_u32(tb
[NL80211_ATTR_KEY_TYPE
]);
1159 wpa_printf(MSG_DEBUG
, "nl80211: Key Type %d", key_type
);
1160 if (key_type
== NL80211_KEYTYPE_PAIRWISE
)
1161 data
.michael_mic_failure
.unicast
= 1;
1163 data
.michael_mic_failure
.unicast
= 1;
1165 if (tb
[NL80211_ATTR_KEY_IDX
]) {
1166 u8 key_id
= nla_get_u8(tb
[NL80211_ATTR_KEY_IDX
]);
1167 wpa_printf(MSG_DEBUG
, "nl80211: Key Id %d", key_id
);
1170 wpa_supplicant_event(drv
->ctx
, EVENT_MICHAEL_MIC_FAILURE
, &data
);
1174 static void mlme_event_join_ibss(struct wpa_driver_nl80211_data
*drv
,
1175 struct nlattr
*tb
[])
1177 if (tb
[NL80211_ATTR_MAC
] == NULL
) {
1178 wpa_printf(MSG_DEBUG
, "nl80211: No address in IBSS joined "
1182 os_memcpy(drv
->bssid
, nla_data(tb
[NL80211_ATTR_MAC
]), ETH_ALEN
);
1183 drv
->associated
= 1;
1184 wpa_printf(MSG_DEBUG
, "nl80211: IBSS " MACSTR
" joined",
1185 MAC2STR(drv
->bssid
));
1187 wpa_supplicant_event(drv
->ctx
, EVENT_ASSOC
, NULL
);
1191 static void mlme_event_remain_on_channel(struct wpa_driver_nl80211_data
*drv
,
1192 int cancel_event
, struct nlattr
*tb
[])
1194 unsigned int freq
, chan_type
, duration
;
1195 union wpa_event_data data
;
1198 if (tb
[NL80211_ATTR_WIPHY_FREQ
])
1199 freq
= nla_get_u32(tb
[NL80211_ATTR_WIPHY_FREQ
]);
1203 if (tb
[NL80211_ATTR_WIPHY_CHANNEL_TYPE
])
1204 chan_type
= nla_get_u32(tb
[NL80211_ATTR_WIPHY_CHANNEL_TYPE
]);
1208 if (tb
[NL80211_ATTR_DURATION
])
1209 duration
= nla_get_u32(tb
[NL80211_ATTR_DURATION
]);
1213 if (tb
[NL80211_ATTR_COOKIE
])
1214 cookie
= nla_get_u64(tb
[NL80211_ATTR_COOKIE
]);
1218 wpa_printf(MSG_DEBUG
, "nl80211: Remain-on-channel event (cancel=%d "
1219 "freq=%u channel_type=%u duration=%u cookie=0x%llx (%s))",
1220 cancel_event
, freq
, chan_type
, duration
,
1221 (long long unsigned int) cookie
,
1222 cookie
== drv
->remain_on_chan_cookie
? "match" : "unknown");
1224 if (cookie
!= drv
->remain_on_chan_cookie
)
1225 return; /* not for us */
1228 drv
->pending_remain_on_chan
= 0;
1230 os_memset(&data
, 0, sizeof(data
));
1231 data
.remain_on_channel
.freq
= freq
;
1232 data
.remain_on_channel
.duration
= duration
;
1233 wpa_supplicant_event(drv
->ctx
, cancel_event
?
1234 EVENT_CANCEL_REMAIN_ON_CHANNEL
:
1235 EVENT_REMAIN_ON_CHANNEL
, &data
);
1239 static void send_scan_event(struct wpa_driver_nl80211_data
*drv
, int aborted
,
1240 struct nlattr
*tb
[])
1242 union wpa_event_data event
;
1245 struct scan_info
*info
;
1246 #define MAX_REPORT_FREQS 50
1247 int freqs
[MAX_REPORT_FREQS
];
1250 os_memset(&event
, 0, sizeof(event
));
1251 info
= &event
.scan_info
;
1252 info
->aborted
= aborted
;
1254 if (tb
[NL80211_ATTR_SCAN_SSIDS
]) {
1255 nla_for_each_nested(nl
, tb
[NL80211_ATTR_SCAN_SSIDS
], rem
) {
1256 struct wpa_driver_scan_ssid
*s
=
1257 &info
->ssids
[info
->num_ssids
];
1258 s
->ssid
= nla_data(nl
);
1259 s
->ssid_len
= nla_len(nl
);
1261 if (info
->num_ssids
== WPAS_MAX_SCAN_SSIDS
)
1265 if (tb
[NL80211_ATTR_SCAN_FREQUENCIES
]) {
1266 nla_for_each_nested(nl
, tb
[NL80211_ATTR_SCAN_FREQUENCIES
], rem
)
1268 freqs
[num_freqs
] = nla_get_u32(nl
);
1270 if (num_freqs
== MAX_REPORT_FREQS
- 1)
1273 info
->freqs
= freqs
;
1274 info
->num_freqs
= num_freqs
;
1276 wpa_supplicant_event(drv
->ctx
, EVENT_SCAN_RESULTS
, &event
);
1280 static int get_link_signal(struct nl_msg
*msg
, void *arg
)
1282 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1283 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1284 struct nlattr
*sinfo
[NL80211_STA_INFO_MAX
+ 1];
1285 static struct nla_policy policy
[NL80211_STA_INFO_MAX
+ 1] = {
1286 [NL80211_STA_INFO_SIGNAL
] = { .type
= NLA_U8
},
1288 struct nlattr
*rinfo
[NL80211_RATE_INFO_MAX
+ 1];
1289 static struct nla_policy rate_policy
[NL80211_RATE_INFO_MAX
+ 1] = {
1290 [NL80211_RATE_INFO_BITRATE
] = { .type
= NLA_U16
},
1291 [NL80211_RATE_INFO_MCS
] = { .type
= NLA_U8
},
1292 [NL80211_RATE_INFO_40_MHZ_WIDTH
] = { .type
= NLA_FLAG
},
1293 [NL80211_RATE_INFO_SHORT_GI
] = { .type
= NLA_FLAG
},
1295 struct wpa_signal_info
*sig_change
= arg
;
1297 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1298 genlmsg_attrlen(gnlh
, 0), NULL
);
1299 if (!tb
[NL80211_ATTR_STA_INFO
] ||
1300 nla_parse_nested(sinfo
, NL80211_STA_INFO_MAX
,
1301 tb
[NL80211_ATTR_STA_INFO
], policy
))
1303 if (!sinfo
[NL80211_STA_INFO_SIGNAL
])
1306 sig_change
->current_signal
=
1307 (s8
) nla_get_u8(sinfo
[NL80211_STA_INFO_SIGNAL
]);
1309 if (sinfo
[NL80211_STA_INFO_TX_BITRATE
]) {
1310 if (nla_parse_nested(rinfo
, NL80211_RATE_INFO_MAX
,
1311 sinfo
[NL80211_STA_INFO_TX_BITRATE
],
1313 sig_change
->current_txrate
= 0;
1315 if (rinfo
[NL80211_RATE_INFO_BITRATE
]) {
1316 sig_change
->current_txrate
=
1318 NL80211_RATE_INFO_BITRATE
]) * 100;
1327 static int nl80211_get_link_signal(struct wpa_driver_nl80211_data
*drv
,
1328 struct wpa_signal_info
*sig
)
1332 sig
->current_signal
= -9999;
1333 sig
->current_txrate
= 0;
1335 msg
= nlmsg_alloc();
1339 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_STATION
);
1341 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1342 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, drv
->bssid
);
1344 return send_and_recv_msgs(drv
, msg
, get_link_signal
, sig
);
1350 static int get_link_noise(struct nl_msg
*msg
, void *arg
)
1352 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1353 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1354 struct nlattr
*sinfo
[NL80211_SURVEY_INFO_MAX
+ 1];
1355 static struct nla_policy survey_policy
[NL80211_SURVEY_INFO_MAX
+ 1] = {
1356 [NL80211_SURVEY_INFO_FREQUENCY
] = { .type
= NLA_U32
},
1357 [NL80211_SURVEY_INFO_NOISE
] = { .type
= NLA_U8
},
1359 struct wpa_signal_info
*sig_change
= arg
;
1361 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1362 genlmsg_attrlen(gnlh
, 0), NULL
);
1364 if (!tb
[NL80211_ATTR_SURVEY_INFO
]) {
1365 wpa_printf(MSG_DEBUG
, "nl80211: survey data missing!");
1369 if (nla_parse_nested(sinfo
, NL80211_SURVEY_INFO_MAX
,
1370 tb
[NL80211_ATTR_SURVEY_INFO
],
1372 wpa_printf(MSG_DEBUG
, "nl80211: failed to parse nested "
1377 if (!sinfo
[NL80211_SURVEY_INFO_FREQUENCY
])
1380 if (nla_get_u32(sinfo
[NL80211_SURVEY_INFO_FREQUENCY
]) !=
1381 sig_change
->frequency
)
1384 if (!sinfo
[NL80211_SURVEY_INFO_NOISE
])
1387 sig_change
->current_noise
=
1388 (s8
) nla_get_u8(sinfo
[NL80211_SURVEY_INFO_NOISE
]);
1394 static int nl80211_get_link_noise(struct wpa_driver_nl80211_data
*drv
,
1395 struct wpa_signal_info
*sig_change
)
1399 sig_change
->current_noise
= 9999;
1400 sig_change
->frequency
= drv
->assoc_freq
;
1402 msg
= nlmsg_alloc();
1406 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SURVEY
);
1408 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1410 return send_and_recv_msgs(drv
, msg
, get_link_noise
, sig_change
);
1416 static int get_noise_for_scan_results(struct nl_msg
*msg
, void *arg
)
1418 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1419 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1420 struct nlattr
*sinfo
[NL80211_SURVEY_INFO_MAX
+ 1];
1421 static struct nla_policy survey_policy
[NL80211_SURVEY_INFO_MAX
+ 1] = {
1422 [NL80211_SURVEY_INFO_FREQUENCY
] = { .type
= NLA_U32
},
1423 [NL80211_SURVEY_INFO_NOISE
] = { .type
= NLA_U8
},
1425 struct wpa_scan_results
*scan_results
= arg
;
1426 struct wpa_scan_res
*scan_res
;
1429 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1430 genlmsg_attrlen(gnlh
, 0), NULL
);
1432 if (!tb
[NL80211_ATTR_SURVEY_INFO
]) {
1433 wpa_printf(MSG_DEBUG
, "nl80211: Survey data missing");
1437 if (nla_parse_nested(sinfo
, NL80211_SURVEY_INFO_MAX
,
1438 tb
[NL80211_ATTR_SURVEY_INFO
],
1440 wpa_printf(MSG_DEBUG
, "nl80211: Failed to parse nested "
1445 if (!sinfo
[NL80211_SURVEY_INFO_NOISE
])
1448 if (!sinfo
[NL80211_SURVEY_INFO_FREQUENCY
])
1451 for (i
= 0; i
< scan_results
->num
; ++i
) {
1452 scan_res
= scan_results
->res
[i
];
1455 if ((int) nla_get_u32(sinfo
[NL80211_SURVEY_INFO_FREQUENCY
]) !=
1458 if (!(scan_res
->flags
& WPA_SCAN_NOISE_INVALID
))
1460 scan_res
->noise
= (s8
)
1461 nla_get_u8(sinfo
[NL80211_SURVEY_INFO_NOISE
]);
1462 scan_res
->flags
&= ~WPA_SCAN_NOISE_INVALID
;
1469 static int nl80211_get_noise_for_scan_results(
1470 struct wpa_driver_nl80211_data
*drv
,
1471 struct wpa_scan_results
*scan_res
)
1475 msg
= nlmsg_alloc();
1479 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SURVEY
);
1481 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
1483 return send_and_recv_msgs(drv
, msg
, get_noise_for_scan_results
,
1490 static void nl80211_cqm_event(struct wpa_driver_nl80211_data
*drv
,
1491 struct nlattr
*tb
[])
1493 static struct nla_policy cqm_policy
[NL80211_ATTR_CQM_MAX
+ 1] = {
1494 [NL80211_ATTR_CQM_RSSI_THOLD
] = { .type
= NLA_U32
},
1495 [NL80211_ATTR_CQM_RSSI_HYST
] = { .type
= NLA_U8
},
1496 [NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
] = { .type
= NLA_U32
},
1497 [NL80211_ATTR_CQM_PKT_LOSS_EVENT
] = { .type
= NLA_U32
},
1499 struct nlattr
*cqm
[NL80211_ATTR_CQM_MAX
+ 1];
1500 enum nl80211_cqm_rssi_threshold_event event
;
1501 union wpa_event_data ed
;
1502 struct wpa_signal_info sig
;
1505 if (tb
[NL80211_ATTR_CQM
] == NULL
||
1506 nla_parse_nested(cqm
, NL80211_ATTR_CQM_MAX
, tb
[NL80211_ATTR_CQM
],
1508 wpa_printf(MSG_DEBUG
, "nl80211: Ignore invalid CQM event");
1512 os_memset(&ed
, 0, sizeof(ed
));
1514 if (cqm
[NL80211_ATTR_CQM_PKT_LOSS_EVENT
]) {
1515 if (!tb
[NL80211_ATTR_MAC
])
1517 os_memcpy(ed
.low_ack
.addr
, nla_data(tb
[NL80211_ATTR_MAC
]),
1519 wpa_supplicant_event(drv
->ctx
, EVENT_STATION_LOW_ACK
, &ed
);
1523 if (cqm
[NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
] == NULL
)
1525 event
= nla_get_u32(cqm
[NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT
]);
1527 if (event
== NL80211_CQM_RSSI_THRESHOLD_EVENT_HIGH
) {
1528 wpa_printf(MSG_DEBUG
, "nl80211: Connection quality monitor "
1529 "event: RSSI high");
1530 ed
.signal_change
.above_threshold
= 1;
1531 } else if (event
== NL80211_CQM_RSSI_THRESHOLD_EVENT_LOW
) {
1532 wpa_printf(MSG_DEBUG
, "nl80211: Connection quality monitor "
1534 ed
.signal_change
.above_threshold
= 0;
1538 res
= nl80211_get_link_signal(drv
, &sig
);
1540 ed
.signal_change
.current_signal
= sig
.current_signal
;
1541 ed
.signal_change
.current_txrate
= sig
.current_txrate
;
1542 wpa_printf(MSG_DEBUG
, "nl80211: Signal: %d dBm txrate: %d",
1543 sig
.current_signal
, sig
.current_txrate
);
1546 res
= nl80211_get_link_noise(drv
, &sig
);
1548 ed
.signal_change
.current_noise
= sig
.current_noise
;
1549 wpa_printf(MSG_DEBUG
, "nl80211: Noise: %d dBm",
1553 wpa_supplicant_event(drv
->ctx
, EVENT_SIGNAL_CHANGE
, &ed
);
1557 static void nl80211_new_station_event(struct wpa_driver_nl80211_data
*drv
,
1561 union wpa_event_data data
;
1563 if (tb
[NL80211_ATTR_MAC
] == NULL
)
1565 addr
= nla_data(tb
[NL80211_ATTR_MAC
]);
1566 wpa_printf(MSG_DEBUG
, "nl80211: New station " MACSTR
, MAC2STR(addr
));
1568 if (is_ap_interface(drv
->nlmode
) && drv
->no_monitor_iface_capab
) {
1571 if (tb
[NL80211_ATTR_IE
]) {
1572 ies
= nla_data(tb
[NL80211_ATTR_IE
]);
1573 ies_len
= nla_len(tb
[NL80211_ATTR_IE
]);
1575 wpa_hexdump(MSG_DEBUG
, "nl80211: Assoc Req IEs", ies
, ies_len
);
1576 drv_event_assoc(drv
->ctx
, addr
, ies
, ies_len
, 0);
1580 if (drv
->nlmode
!= NL80211_IFTYPE_ADHOC
)
1583 os_memset(&data
, 0, sizeof(data
));
1584 os_memcpy(data
.ibss_rsn_start
.peer
, addr
, ETH_ALEN
);
1585 wpa_supplicant_event(drv
->ctx
, EVENT_IBSS_RSN_START
, &data
);
1589 static void nl80211_del_station_event(struct wpa_driver_nl80211_data
*drv
,
1593 union wpa_event_data data
;
1595 if (tb
[NL80211_ATTR_MAC
] == NULL
)
1597 addr
= nla_data(tb
[NL80211_ATTR_MAC
]);
1598 wpa_printf(MSG_DEBUG
, "nl80211: Delete station " MACSTR
,
1601 if (is_ap_interface(drv
->nlmode
) && drv
->no_monitor_iface_capab
) {
1602 drv_event_disassoc(drv
->ctx
, addr
);
1606 if (drv
->nlmode
!= NL80211_IFTYPE_ADHOC
)
1609 os_memset(&data
, 0, sizeof(data
));
1610 os_memcpy(data
.ibss_peer_lost
.peer
, addr
, ETH_ALEN
);
1611 wpa_supplicant_event(drv
->ctx
, EVENT_IBSS_PEER_LOST
, &data
);
1615 static void nl80211_rekey_offload_event(struct wpa_driver_nl80211_data
*drv
,
1618 struct nlattr
*rekey_info
[NUM_NL80211_REKEY_DATA
];
1619 static struct nla_policy rekey_policy
[NUM_NL80211_REKEY_DATA
] = {
1620 [NL80211_REKEY_DATA_KEK
] = {
1621 .minlen
= NL80211_KEK_LEN
,
1622 .maxlen
= NL80211_KEK_LEN
,
1624 [NL80211_REKEY_DATA_KCK
] = {
1625 .minlen
= NL80211_KCK_LEN
,
1626 .maxlen
= NL80211_KCK_LEN
,
1628 [NL80211_REKEY_DATA_REPLAY_CTR
] = {
1629 .minlen
= NL80211_REPLAY_CTR_LEN
,
1630 .maxlen
= NL80211_REPLAY_CTR_LEN
,
1633 union wpa_event_data data
;
1635 if (!tb
[NL80211_ATTR_MAC
])
1637 if (!tb
[NL80211_ATTR_REKEY_DATA
])
1639 if (nla_parse_nested(rekey_info
, MAX_NL80211_REKEY_DATA
,
1640 tb
[NL80211_ATTR_REKEY_DATA
], rekey_policy
))
1642 if (!rekey_info
[NL80211_REKEY_DATA_REPLAY_CTR
])
1645 os_memset(&data
, 0, sizeof(data
));
1646 data
.driver_gtk_rekey
.bssid
= nla_data(tb
[NL80211_ATTR_MAC
]);
1647 wpa_printf(MSG_DEBUG
, "nl80211: Rekey offload event for BSSID " MACSTR
,
1648 MAC2STR(data
.driver_gtk_rekey
.bssid
));
1649 data
.driver_gtk_rekey
.replay_ctr
=
1650 nla_data(rekey_info
[NL80211_REKEY_DATA_REPLAY_CTR
]);
1651 wpa_hexdump(MSG_DEBUG
, "nl80211: Rekey offload - Replay Counter",
1652 data
.driver_gtk_rekey
.replay_ctr
, NL80211_REPLAY_CTR_LEN
);
1653 wpa_supplicant_event(drv
->ctx
, EVENT_DRIVER_GTK_REKEY
, &data
);
1657 static void nl80211_pmksa_candidate_event(struct wpa_driver_nl80211_data
*drv
,
1660 struct nlattr
*cand
[NUM_NL80211_PMKSA_CANDIDATE
];
1661 static struct nla_policy cand_policy
[NUM_NL80211_PMKSA_CANDIDATE
] = {
1662 [NL80211_PMKSA_CANDIDATE_INDEX
] = { .type
= NLA_U32
},
1663 [NL80211_PMKSA_CANDIDATE_BSSID
] = {
1667 [NL80211_PMKSA_CANDIDATE_PREAUTH
] = { .type
= NLA_FLAG
},
1669 union wpa_event_data data
;
1671 if (!tb
[NL80211_ATTR_PMKSA_CANDIDATE
])
1673 if (nla_parse_nested(cand
, MAX_NL80211_PMKSA_CANDIDATE
,
1674 tb
[NL80211_ATTR_PMKSA_CANDIDATE
], cand_policy
))
1676 if (!cand
[NL80211_PMKSA_CANDIDATE_INDEX
] ||
1677 !cand
[NL80211_PMKSA_CANDIDATE_BSSID
])
1680 os_memset(&data
, 0, sizeof(data
));
1681 os_memcpy(data
.pmkid_candidate
.bssid
,
1682 nla_data(cand
[NL80211_PMKSA_CANDIDATE_BSSID
]), ETH_ALEN
);
1683 data
.pmkid_candidate
.index
=
1684 nla_get_u32(cand
[NL80211_PMKSA_CANDIDATE_INDEX
]);
1685 data
.pmkid_candidate
.preauth
=
1686 cand
[NL80211_PMKSA_CANDIDATE_PREAUTH
] != NULL
;
1687 wpa_supplicant_event(drv
->ctx
, EVENT_PMKID_CANDIDATE
, &data
);
1691 static int process_event(struct nl_msg
*msg
, void *arg
)
1693 struct wpa_driver_nl80211_data
*drv
= arg
;
1694 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1695 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1697 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1698 genlmsg_attrlen(gnlh
, 0), NULL
);
1700 if (tb
[NL80211_ATTR_IFINDEX
]) {
1701 int ifindex
= nla_get_u32(tb
[NL80211_ATTR_IFINDEX
]);
1702 if (ifindex
!= drv
->ifindex
&& !have_ifidx(drv
, ifindex
)) {
1703 wpa_printf(MSG_DEBUG
, "nl80211: Ignored event (cmd=%d)"
1704 " for foreign interface (ifindex %d)",
1705 gnlh
->cmd
, ifindex
);
1710 if (drv
->ap_scan_as_station
!= NL80211_IFTYPE_UNSPECIFIED
&&
1711 (gnlh
->cmd
== NL80211_CMD_NEW_SCAN_RESULTS
||
1712 gnlh
->cmd
== NL80211_CMD_SCAN_ABORTED
)) {
1713 wpa_driver_nl80211_set_mode(&drv
->first_bss
,
1714 drv
->ap_scan_as_station
);
1715 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
1718 switch (gnlh
->cmd
) {
1719 case NL80211_CMD_TRIGGER_SCAN
:
1720 wpa_printf(MSG_DEBUG
, "nl80211: Scan trigger");
1722 case NL80211_CMD_START_SCHED_SCAN
:
1723 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan started");
1725 case NL80211_CMD_SCHED_SCAN_STOPPED
:
1726 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stopped");
1727 wpa_supplicant_event(drv
->ctx
, EVENT_SCHED_SCAN_STOPPED
, NULL
);
1729 case NL80211_CMD_NEW_SCAN_RESULTS
:
1730 wpa_printf(MSG_DEBUG
, "nl80211: New scan results available");
1731 drv
->scan_complete_events
= 1;
1732 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
,
1734 send_scan_event(drv
, 0, tb
);
1736 case NL80211_CMD_SCHED_SCAN_RESULTS
:
1737 wpa_printf(MSG_DEBUG
,
1738 "nl80211: New sched scan results available");
1739 send_scan_event(drv
, 0, tb
);
1741 case NL80211_CMD_SCAN_ABORTED
:
1742 wpa_printf(MSG_DEBUG
, "nl80211: Scan aborted");
1744 * Need to indicate that scan results are available in order
1745 * not to make wpa_supplicant stop its scanning.
1747 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
,
1749 send_scan_event(drv
, 1, tb
);
1751 case NL80211_CMD_AUTHENTICATE
:
1752 case NL80211_CMD_ASSOCIATE
:
1753 case NL80211_CMD_DEAUTHENTICATE
:
1754 case NL80211_CMD_DISASSOCIATE
:
1755 case NL80211_CMD_FRAME
:
1756 case NL80211_CMD_FRAME_TX_STATUS
:
1757 case NL80211_CMD_UNPROT_DEAUTHENTICATE
:
1758 case NL80211_CMD_UNPROT_DISASSOCIATE
:
1759 mlme_event(drv
, gnlh
->cmd
, tb
[NL80211_ATTR_FRAME
],
1760 tb
[NL80211_ATTR_MAC
], tb
[NL80211_ATTR_TIMED_OUT
],
1761 tb
[NL80211_ATTR_WIPHY_FREQ
], tb
[NL80211_ATTR_ACK
],
1762 tb
[NL80211_ATTR_COOKIE
]);
1764 case NL80211_CMD_CONNECT
:
1765 case NL80211_CMD_ROAM
:
1766 mlme_event_connect(drv
, gnlh
->cmd
,
1767 tb
[NL80211_ATTR_STATUS_CODE
],
1768 tb
[NL80211_ATTR_MAC
],
1769 tb
[NL80211_ATTR_REQ_IE
],
1770 tb
[NL80211_ATTR_RESP_IE
]);
1772 case NL80211_CMD_DISCONNECT
:
1773 mlme_event_disconnect(drv
, tb
[NL80211_ATTR_REASON_CODE
],
1774 tb
[NL80211_ATTR_MAC
]);
1776 case NL80211_CMD_MICHAEL_MIC_FAILURE
:
1777 mlme_event_michael_mic_failure(drv
, tb
);
1779 case NL80211_CMD_JOIN_IBSS
:
1780 mlme_event_join_ibss(drv
, tb
);
1782 case NL80211_CMD_REMAIN_ON_CHANNEL
:
1783 mlme_event_remain_on_channel(drv
, 0, tb
);
1785 case NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL
:
1786 mlme_event_remain_on_channel(drv
, 1, tb
);
1788 case NL80211_CMD_NOTIFY_CQM
:
1789 nl80211_cqm_event(drv
, tb
);
1791 case NL80211_CMD_REG_CHANGE
:
1792 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory domain change");
1793 wpa_supplicant_event(drv
->ctx
, EVENT_CHANNEL_LIST_CHANGED
,
1796 case NL80211_CMD_REG_BEACON_HINT
:
1797 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory beacon hint");
1798 wpa_supplicant_event(drv
->ctx
, EVENT_CHANNEL_LIST_CHANGED
,
1801 case NL80211_CMD_NEW_STATION
:
1802 nl80211_new_station_event(drv
, tb
);
1804 case NL80211_CMD_DEL_STATION
:
1805 nl80211_del_station_event(drv
, tb
);
1807 case NL80211_CMD_SET_REKEY_OFFLOAD
:
1808 nl80211_rekey_offload_event(drv
, tb
);
1810 case NL80211_CMD_PMKSA_CANDIDATE
:
1811 nl80211_pmksa_candidate_event(drv
, tb
);
1814 wpa_printf(MSG_DEBUG
, "nl80211: Ignored unknown event "
1815 "(cmd=%d)", gnlh
->cmd
);
1823 static void wpa_driver_nl80211_event_receive(int sock
, void *eloop_ctx
,
1827 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
1829 wpa_printf(MSG_DEBUG
, "nl80211: Event message available");
1831 cb
= nl_cb_clone(drv
->global
->nl_cb
);
1834 nl_cb_set(cb
, NL_CB_SEQ_CHECK
, NL_CB_CUSTOM
, no_seq_check
, NULL
);
1835 nl_cb_set(cb
, NL_CB_VALID
, NL_CB_CUSTOM
, process_event
, drv
);
1836 nl_recvmsgs(handle
, cb
);
1842 * wpa_driver_nl80211_set_country - ask nl80211 to set the regulatory domain
1843 * @priv: driver_nl80211 private data
1844 * @alpha2_arg: country to which to switch to
1845 * Returns: 0 on success, -1 on failure
1847 * This asks nl80211 to set the regulatory domain for given
1848 * country ISO / IEC alpha2.
1850 static int wpa_driver_nl80211_set_country(void *priv
, const char *alpha2_arg
)
1852 struct i802_bss
*bss
= priv
;
1853 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
1857 msg
= nlmsg_alloc();
1861 alpha2
[0] = alpha2_arg
[0];
1862 alpha2
[1] = alpha2_arg
[1];
1865 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REQ_SET_REG
);
1867 NLA_PUT_STRING(msg
, NL80211_ATTR_REG_ALPHA2
, alpha2
);
1868 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
))
1876 struct wiphy_info_data
{
1877 struct wpa_driver_capa
*capa
;
1879 unsigned int error
:1;
1883 static int wiphy_info_handler(struct nl_msg
*msg
, void *arg
)
1885 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
1886 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
1887 struct wiphy_info_data
*info
= arg
;
1888 int p2p_go_supported
= 0, p2p_client_supported
= 0;
1889 int p2p_concurrent
= 0;
1890 int auth_supported
= 0, connect_supported
= 0;
1891 struct wpa_driver_capa
*capa
= info
->capa
;
1892 static struct nla_policy
1893 iface_combination_policy
[NUM_NL80211_IFACE_COMB
] = {
1894 [NL80211_IFACE_COMB_LIMITS
] = { .type
= NLA_NESTED
},
1895 [NL80211_IFACE_COMB_MAXNUM
] = { .type
= NLA_U32
},
1896 [NL80211_IFACE_COMB_STA_AP_BI_MATCH
] = { .type
= NLA_FLAG
},
1897 [NL80211_IFACE_COMB_NUM_CHANNELS
] = { .type
= NLA_U32
},
1899 iface_limit_policy
[NUM_NL80211_IFACE_LIMIT
] = {
1900 [NL80211_IFACE_LIMIT_TYPES
] = { .type
= NLA_NESTED
},
1901 [NL80211_IFACE_LIMIT_MAX
] = { .type
= NLA_U32
},
1904 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
1905 genlmsg_attrlen(gnlh
, 0), NULL
);
1907 if (tb
[NL80211_ATTR_MAX_NUM_SCAN_SSIDS
])
1908 capa
->max_scan_ssids
=
1909 nla_get_u8(tb
[NL80211_ATTR_MAX_NUM_SCAN_SSIDS
]);
1911 if (tb
[NL80211_ATTR_MAX_NUM_SCHED_SCAN_SSIDS
])
1912 capa
->max_sched_scan_ssids
=
1913 nla_get_u8(tb
[NL80211_ATTR_MAX_NUM_SCHED_SCAN_SSIDS
]);
1915 if (tb
[NL80211_ATTR_MAX_MATCH_SETS
])
1916 capa
->max_match_sets
=
1917 nla_get_u8(tb
[NL80211_ATTR_MAX_MATCH_SETS
]);
1919 if (tb
[NL80211_ATTR_SUPPORTED_IFTYPES
]) {
1920 struct nlattr
*nl_mode
;
1922 nla_for_each_nested(nl_mode
,
1923 tb
[NL80211_ATTR_SUPPORTED_IFTYPES
], i
) {
1924 switch (nla_type(nl_mode
)) {
1925 case NL80211_IFTYPE_AP
:
1926 capa
->flags
|= WPA_DRIVER_FLAGS_AP
;
1928 case NL80211_IFTYPE_P2P_GO
:
1929 p2p_go_supported
= 1;
1931 case NL80211_IFTYPE_P2P_CLIENT
:
1932 p2p_client_supported
= 1;
1938 if (tb
[NL80211_ATTR_INTERFACE_COMBINATIONS
]) {
1939 struct nlattr
*nl_combi
;
1942 nla_for_each_nested(nl_combi
,
1943 tb
[NL80211_ATTR_INTERFACE_COMBINATIONS
],
1945 struct nlattr
*tb_comb
[NUM_NL80211_IFACE_COMB
];
1946 struct nlattr
*tb_limit
[NUM_NL80211_IFACE_LIMIT
];
1947 struct nlattr
*nl_limit
, *nl_mode
;
1948 int err
, rem_limit
, rem_mode
;
1949 int combination_has_p2p
= 0, combination_has_mgd
= 0;
1951 err
= nla_parse_nested(tb_comb
, MAX_NL80211_IFACE_COMB
,
1953 iface_combination_policy
);
1954 if (err
|| !tb_comb
[NL80211_IFACE_COMB_LIMITS
] ||
1955 !tb_comb
[NL80211_IFACE_COMB_MAXNUM
] ||
1956 !tb_comb
[NL80211_IFACE_COMB_NUM_CHANNELS
])
1957 goto broken_combination
;
1959 nla_for_each_nested(nl_limit
,
1960 tb_comb
[NL80211_IFACE_COMB_LIMITS
],
1962 err
= nla_parse_nested(tb_limit
,
1963 MAX_NL80211_IFACE_LIMIT
,
1965 iface_limit_policy
);
1967 !tb_limit
[NL80211_IFACE_LIMIT_TYPES
])
1968 goto broken_combination
;
1970 nla_for_each_nested(
1972 tb_limit
[NL80211_IFACE_LIMIT_TYPES
],
1974 int ift
= nla_type(nl_mode
);
1975 if (ift
== NL80211_IFTYPE_P2P_GO
||
1976 ift
== NL80211_IFTYPE_P2P_CLIENT
)
1977 combination_has_p2p
= 1;
1978 if (ift
== NL80211_IFTYPE_STATION
)
1979 combination_has_mgd
= 1;
1981 if (combination_has_p2p
&& combination_has_mgd
)
1985 if (combination_has_p2p
&& combination_has_mgd
) {
1995 if (tb
[NL80211_ATTR_SUPPORTED_COMMANDS
]) {
1996 struct nlattr
*nl_cmd
;
1999 nla_for_each_nested(nl_cmd
,
2000 tb
[NL80211_ATTR_SUPPORTED_COMMANDS
], i
) {
2001 switch (nla_get_u32(nl_cmd
)) {
2002 case NL80211_CMD_AUTHENTICATE
:
2005 case NL80211_CMD_CONNECT
:
2006 connect_supported
= 1;
2008 case NL80211_CMD_START_SCHED_SCAN
:
2009 capa
->sched_scan_supported
= 1;
2015 if (tb
[NL80211_ATTR_OFFCHANNEL_TX_OK
]) {
2016 wpa_printf(MSG_DEBUG
, "nl80211: Using driver-based "
2018 capa
->flags
|= WPA_DRIVER_FLAGS_OFFCHANNEL_TX
;
2021 if (tb
[NL80211_ATTR_ROAM_SUPPORT
]) {
2022 wpa_printf(MSG_DEBUG
, "nl80211: Using driver-based roaming");
2023 capa
->flags
|= WPA_DRIVER_FLAGS_BSS_SELECTION
;
2026 /* default to 5000 since early versions of mac80211 don't set it */
2027 capa
->max_remain_on_chan
= 5000;
2029 if (tb
[NL80211_ATTR_MAX_REMAIN_ON_CHANNEL_DURATION
])
2030 capa
->max_remain_on_chan
=
2031 nla_get_u32(tb
[NL80211_ATTR_MAX_REMAIN_ON_CHANNEL_DURATION
]);
2034 capa
->flags
|= WPA_DRIVER_FLAGS_SME
;
2035 else if (!connect_supported
) {
2036 wpa_printf(MSG_INFO
, "nl80211: Driver does not support "
2037 "authentication/association or connect commands");
2041 if (p2p_go_supported
&& p2p_client_supported
)
2042 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_CAPABLE
;
2043 if (p2p_concurrent
) {
2044 wpa_printf(MSG_DEBUG
, "nl80211: Use separate P2P group "
2045 "interface (driver advertised support)");
2046 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_CONCURRENT
;
2047 capa
->flags
|= WPA_DRIVER_FLAGS_P2P_MGMT_AND_NON_P2P
;
2050 if (tb
[NL80211_ATTR_TDLS_SUPPORT
]) {
2051 wpa_printf(MSG_DEBUG
, "nl80211: TDLS supported");
2052 capa
->flags
|= WPA_DRIVER_FLAGS_TDLS_SUPPORT
;
2054 if (tb
[NL80211_ATTR_TDLS_EXTERNAL_SETUP
]) {
2055 wpa_printf(MSG_DEBUG
, "nl80211: TDLS external setup");
2057 WPA_DRIVER_FLAGS_TDLS_EXTERNAL_SETUP
;
2065 static int wpa_driver_nl80211_get_info(struct wpa_driver_nl80211_data
*drv
,
2066 struct wiphy_info_data
*info
)
2070 os_memset(info
, 0, sizeof(*info
));
2071 info
->capa
= &drv
->capa
;
2073 msg
= nlmsg_alloc();
2077 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_WIPHY
);
2079 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->first_bss
.ifindex
);
2081 if (send_and_recv_msgs(drv
, msg
, wiphy_info_handler
, info
) == 0)
2090 static int wpa_driver_nl80211_capa(struct wpa_driver_nl80211_data
*drv
)
2092 struct wiphy_info_data info
;
2093 if (wpa_driver_nl80211_get_info(drv
, &info
))
2099 drv
->has_capability
= 1;
2100 /* For now, assume TKIP, CCMP, WPA, WPA2 are supported */
2101 drv
->capa
.key_mgmt
= WPA_DRIVER_CAPA_KEY_MGMT_WPA
|
2102 WPA_DRIVER_CAPA_KEY_MGMT_WPA_PSK
|
2103 WPA_DRIVER_CAPA_KEY_MGMT_WPA2
|
2104 WPA_DRIVER_CAPA_KEY_MGMT_WPA2_PSK
;
2105 drv
->capa
.enc
= WPA_DRIVER_CAPA_ENC_WEP40
|
2106 WPA_DRIVER_CAPA_ENC_WEP104
|
2107 WPA_DRIVER_CAPA_ENC_TKIP
|
2108 WPA_DRIVER_CAPA_ENC_CCMP
;
2109 drv
->capa
.auth
= WPA_DRIVER_AUTH_OPEN
|
2110 WPA_DRIVER_AUTH_SHARED
|
2111 WPA_DRIVER_AUTH_LEAP
;
2113 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_SANE_ERROR_CODES
;
2114 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_SET_KEYS_AFTER_ASSOC_DONE
;
2115 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_EAPOL_TX_STATUS
;
2116 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_DEAUTH_TX_STATUS
;
2122 static int wpa_driver_nl80211_init_nl_global(struct nl80211_global
*global
)
2124 global
->nl_cb
= nl_cb_alloc(NL_CB_DEFAULT
);
2125 if (global
->nl_cb
== NULL
) {
2126 wpa_printf(MSG_ERROR
, "nl80211: Failed to allocate netlink "
2131 if (nl_create_handles(&global
->nl
, global
->nl_cb
, "nl"))
2134 global
->nl80211
= genl_ctrl_search_by_name(global
->nl
.cache
,
2136 if (global
->nl80211
== NULL
) {
2137 wpa_printf(MSG_ERROR
, "nl80211: 'nl80211' generic netlink not "
2146 static int wpa_driver_nl80211_init_nl(struct wpa_driver_nl80211_data
*drv
)
2148 struct nl80211_global
*global
= drv
->global
;
2151 /* Initialize generic netlink and nl80211 */
2153 if (nl_create_handles(&drv
->nl_event
, global
->nl_cb
, "event"))
2156 ret
= nl_get_multicast_id(drv
, "nl80211", "scan");
2158 ret
= nl_socket_add_membership(drv
->nl_event
.handle
, ret
);
2160 wpa_printf(MSG_ERROR
, "nl80211: Could not add multicast "
2161 "membership for scan events: %d (%s)",
2162 ret
, strerror(-ret
));
2166 ret
= nl_get_multicast_id(drv
, "nl80211", "mlme");
2168 ret
= nl_socket_add_membership(drv
->nl_event
.handle
, ret
);
2170 wpa_printf(MSG_ERROR
, "nl80211: Could not add multicast "
2171 "membership for mlme events: %d (%s)",
2172 ret
, strerror(-ret
));
2176 ret
= nl_get_multicast_id(drv
, "nl80211", "regulatory");
2178 ret
= nl_socket_add_membership(drv
->nl_event
.handle
, ret
);
2180 wpa_printf(MSG_DEBUG
, "nl80211: Could not add multicast "
2181 "membership for regulatory events: %d (%s)",
2182 ret
, strerror(-ret
));
2183 /* Continue without regulatory events */
2186 eloop_register_read_sock(nl_socket_get_fd(drv
->nl_event
.handle
),
2187 wpa_driver_nl80211_event_receive
, drv
,
2188 drv
->nl_event
.handle
);
2193 nl_destroy_handles(&drv
->nl_event
);
2199 static void wpa_driver_nl80211_rfkill_blocked(void *ctx
)
2201 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL blocked");
2203 * This may be for any interface; use ifdown event to disable
2209 static void wpa_driver_nl80211_rfkill_unblocked(void *ctx
)
2211 struct wpa_driver_nl80211_data
*drv
= ctx
;
2212 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL unblocked");
2213 if (linux_set_iface_flags(drv
->global
->ioctl_sock
,
2214 drv
->first_bss
.ifname
, 1)) {
2215 wpa_printf(MSG_DEBUG
, "nl80211: Could not set interface UP "
2216 "after rfkill unblock");
2219 /* rtnetlink ifup handler will report interface as enabled */
2223 static void nl80211_get_phy_name(struct wpa_driver_nl80211_data
*drv
)
2225 /* Find phy (radio) to which this interface belongs */
2229 drv
->phyname
[0] = '\0';
2230 snprintf(buf
, sizeof(buf
) - 1, "/sys/class/net/%s/phy80211/name",
2231 drv
->first_bss
.ifname
);
2232 f
= open(buf
, O_RDONLY
);
2234 wpa_printf(MSG_DEBUG
, "Could not open file %s: %s",
2235 buf
, strerror(errno
));
2239 rv
= read(f
, drv
->phyname
, sizeof(drv
->phyname
) - 1);
2242 wpa_printf(MSG_DEBUG
, "Could not read file %s: %s",
2243 buf
, strerror(errno
));
2247 drv
->phyname
[rv
] = '\0';
2248 pos
= os_strchr(drv
->phyname
, '\n');
2251 wpa_printf(MSG_DEBUG
, "nl80211: interface %s in phy %s",
2252 drv
->first_bss
.ifname
, drv
->phyname
);
2257 static void nl80211_l2_read(void *ctx
, const u8
*src_addr
, const u8
*buf
,
2260 wpa_printf(MSG_DEBUG
, "nl80211: l2_packet read %u",
2261 (unsigned int) len
);
2263 #endif /* CONFIG_AP */
2267 * wpa_driver_nl80211_init - Initialize nl80211 driver interface
2268 * @ctx: context to be used when calling wpa_supplicant functions,
2269 * e.g., wpa_supplicant_event()
2270 * @ifname: interface name, e.g., wlan0
2271 * @global_priv: private driver global data from global_init()
2272 * Returns: Pointer to private data, %NULL on failure
2274 static void * wpa_driver_nl80211_init(void *ctx
, const char *ifname
,
2277 struct wpa_driver_nl80211_data
*drv
;
2278 struct rfkill_config
*rcfg
;
2279 struct i802_bss
*bss
;
2281 if (global_priv
== NULL
)
2283 drv
= os_zalloc(sizeof(*drv
));
2286 drv
->global
= global_priv
;
2288 bss
= &drv
->first_bss
;
2290 os_strlcpy(bss
->ifname
, ifname
, sizeof(bss
->ifname
));
2291 drv
->monitor_ifidx
= -1;
2292 drv
->monitor_sock
= -1;
2293 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
2295 if (wpa_driver_nl80211_init_nl(drv
)) {
2300 nl80211_get_phy_name(drv
);
2302 rcfg
= os_zalloc(sizeof(*rcfg
));
2306 os_strlcpy(rcfg
->ifname
, ifname
, sizeof(rcfg
->ifname
));
2307 rcfg
->blocked_cb
= wpa_driver_nl80211_rfkill_blocked
;
2308 rcfg
->unblocked_cb
= wpa_driver_nl80211_rfkill_unblocked
;
2309 drv
->rfkill
= rfkill_init(rcfg
);
2310 if (drv
->rfkill
== NULL
) {
2311 wpa_printf(MSG_DEBUG
, "nl80211: RFKILL status not available");
2315 if (wpa_driver_nl80211_finish_drv_init(drv
))
2319 drv
->l2
= l2_packet_init(ifname
, NULL
, ETH_P_EAPOL
,
2320 nl80211_l2_read
, drv
, 0);
2321 #endif /* CONFIG_AP */
2324 dl_list_add(&drv
->global
->interfaces
, &drv
->list
);
2325 drv
->in_interface_list
= 1;
2331 wpa_driver_nl80211_deinit(bss
);
2336 static int nl80211_register_frame(struct wpa_driver_nl80211_data
*drv
,
2337 struct nl_handle
*nl_handle
,
2338 u16 type
, const u8
*match
, size_t match_len
)
2343 msg
= nlmsg_alloc();
2347 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REGISTER_ACTION
);
2349 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
2350 NLA_PUT_U16(msg
, NL80211_ATTR_FRAME_TYPE
, type
);
2351 NLA_PUT(msg
, NL80211_ATTR_FRAME_MATCH
, match_len
, match
);
2353 ret
= send_and_recv(drv
, nl_handle
, msg
, NULL
, NULL
);
2356 wpa_printf(MSG_DEBUG
, "nl80211: Register frame command "
2357 "failed (type=%u): ret=%d (%s)",
2358 type
, ret
, strerror(-ret
));
2359 wpa_hexdump(MSG_DEBUG
, "nl80211: Register frame match",
2361 goto nla_put_failure
;
2370 static int nl80211_register_action_frame(struct wpa_driver_nl80211_data
*drv
,
2371 const u8
*match
, size_t match_len
)
2373 u16 type
= (WLAN_FC_TYPE_MGMT
<< 2) | (WLAN_FC_STYPE_ACTION
<< 4);
2374 return nl80211_register_frame(drv
, drv
->nl_event
.handle
,
2375 type
, match
, match_len
);
2379 static int nl80211_register_action_frames(struct wpa_driver_nl80211_data
*drv
)
2381 #if defined(CONFIG_P2P) || defined(CONFIG_INTERWORKING)
2382 /* GAS Initial Request */
2383 if (nl80211_register_action_frame(drv
, (u8
*) "\x04\x0a", 2) < 0)
2385 /* GAS Initial Response */
2386 if (nl80211_register_action_frame(drv
, (u8
*) "\x04\x0b", 2) < 0)
2388 /* GAS Comeback Request */
2389 if (nl80211_register_action_frame(drv
, (u8
*) "\x04\x0c", 2) < 0)
2391 /* GAS Comeback Response */
2392 if (nl80211_register_action_frame(drv
, (u8
*) "\x04\x0d", 2) < 0)
2394 #endif /* CONFIG_P2P || CONFIG_INTERWORKING */
2396 /* P2P Public Action */
2397 if (nl80211_register_action_frame(drv
,
2398 (u8
*) "\x04\x09\x50\x6f\x9a\x09",
2402 if (nl80211_register_action_frame(drv
,
2403 (u8
*) "\x7f\x50\x6f\x9a\x09",
2406 #endif /* CONFIG_P2P */
2407 #ifdef CONFIG_IEEE80211W
2408 /* SA Query Response */
2409 if (nl80211_register_action_frame(drv
, (u8
*) "\x08\x01", 2) < 0)
2411 #endif /* CONFIG_IEEE80211W */
2413 if ((drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
)) {
2414 /* TDLS Discovery Response */
2415 if (nl80211_register_action_frame(drv
, (u8
*) "\x04\x0e", 2) <
2419 #endif /* CONFIG_TDLS */
2421 /* FT Action frames */
2422 if (nl80211_register_action_frame(drv
, (u8
*) "\x06", 1) < 0)
2425 drv
->capa
.key_mgmt
|= WPA_DRIVER_CAPA_KEY_MGMT_FT
|
2426 WPA_DRIVER_CAPA_KEY_MGMT_FT_PSK
;
2428 /* WNM - BSS Transition Management Request */
2429 if (nl80211_register_action_frame(drv
, (u8
*) "\x0a\x07", 2) < 0)
2436 static void wpa_driver_nl80211_send_rfkill(void *eloop_ctx
, void *timeout_ctx
)
2438 wpa_supplicant_event(timeout_ctx
, EVENT_INTERFACE_DISABLED
, NULL
);
2443 wpa_driver_nl80211_finish_drv_init(struct wpa_driver_nl80211_data
*drv
)
2445 struct i802_bss
*bss
= &drv
->first_bss
;
2446 int send_rfkill_event
= 0;
2448 drv
->ifindex
= if_nametoindex(bss
->ifname
);
2449 drv
->first_bss
.ifindex
= drv
->ifindex
;
2453 * Make sure the interface starts up in station mode unless this is a
2454 * dynamically added interface (e.g., P2P) that was already configured
2455 * with proper iftype.
2457 if (drv
->ifindex
!= drv
->global
->if_add_ifindex
&&
2458 wpa_driver_nl80211_set_mode(bss
, NL80211_IFTYPE_STATION
) < 0) {
2459 wpa_printf(MSG_ERROR
, "nl80211: Could not configure driver to "
2460 "use managed mode");
2464 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1)) {
2465 if (rfkill_is_blocked(drv
->rfkill
)) {
2466 wpa_printf(MSG_DEBUG
, "nl80211: Could not yet enable "
2467 "interface '%s' due to rfkill",
2469 drv
->if_disabled
= 1;
2470 send_rfkill_event
= 1;
2472 wpa_printf(MSG_ERROR
, "nl80211: Could not set "
2473 "interface '%s' UP", bss
->ifname
);
2478 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
,
2479 1, IF_OPER_DORMANT
);
2480 #endif /* HOSTAPD */
2482 if (wpa_driver_nl80211_capa(drv
))
2485 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
2489 if (nl80211_register_action_frames(drv
) < 0) {
2490 wpa_printf(MSG_DEBUG
, "nl80211: Failed to register Action "
2491 "frame processing - ignore for now");
2493 * Older kernel versions did not support this, so ignore the
2494 * error for now. Some functionality may not be available
2499 if (send_rfkill_event
) {
2500 eloop_register_timeout(0, 0, wpa_driver_nl80211_send_rfkill
,
2508 static int wpa_driver_nl80211_del_beacon(struct wpa_driver_nl80211_data
*drv
)
2512 msg
= nlmsg_alloc();
2516 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_BEACON
);
2517 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
2519 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
2526 * wpa_driver_nl80211_deinit - Deinitialize nl80211 driver interface
2527 * @priv: Pointer to private nl80211 data from wpa_driver_nl80211_init()
2529 * Shut down driver interface and processing of driver events. Free
2530 * private data buffer if one was allocated in wpa_driver_nl80211_init().
2532 static void wpa_driver_nl80211_deinit(void *priv
)
2534 struct i802_bss
*bss
= priv
;
2535 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2539 l2_packet_deinit(drv
->l2
);
2540 #endif /* CONFIG_AP */
2542 if (drv
->nl_preq
.handle
)
2543 wpa_driver_nl80211_probe_req_report(bss
, 0);
2544 if (bss
->added_if_into_bridge
) {
2545 if (linux_br_del_if(drv
->global
->ioctl_sock
, bss
->brname
,
2547 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
2548 "interface %s from bridge %s: %s",
2549 bss
->ifname
, bss
->brname
, strerror(errno
));
2551 if (bss
->added_bridge
) {
2552 if (linux_br_del(drv
->global
->ioctl_sock
, bss
->brname
) < 0)
2553 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
2555 bss
->brname
, strerror(errno
));
2558 nl80211_remove_monitor_interface(drv
);
2560 if (is_ap_interface(drv
->nlmode
))
2561 wpa_driver_nl80211_del_beacon(drv
);
2564 if (drv
->last_freq_ht
) {
2565 /* Clear HT flags from the driver */
2566 struct hostapd_freq_params freq
;
2567 os_memset(&freq
, 0, sizeof(freq
));
2568 freq
.freq
= drv
->last_freq
;
2569 i802_set_freq(priv
, &freq
);
2572 if (drv
->eapol_sock
>= 0) {
2573 eloop_unregister_read_sock(drv
->eapol_sock
);
2574 close(drv
->eapol_sock
);
2577 if (drv
->if_indices
!= drv
->default_if_indices
)
2578 os_free(drv
->if_indices
);
2579 #endif /* HOSTAPD */
2581 if (drv
->disabled_11b_rates
)
2582 nl80211_disable_11b_rates(drv
, drv
->ifindex
, 0);
2584 netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
, 0,
2586 rfkill_deinit(drv
->rfkill
);
2588 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
, drv
->ctx
);
2590 (void) linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 0);
2591 wpa_driver_nl80211_set_mode(bss
, NL80211_IFTYPE_STATION
);
2593 eloop_unregister_read_sock(nl_socket_get_fd(drv
->nl_event
.handle
));
2594 nl_destroy_handles(&drv
->nl_event
);
2596 os_free(drv
->filter_ssids
);
2598 if (drv
->in_interface_list
)
2599 dl_list_del(&drv
->list
);
2606 * wpa_driver_nl80211_scan_timeout - Scan timeout to report scan completion
2607 * @eloop_ctx: Driver private data
2608 * @timeout_ctx: ctx argument given to wpa_driver_nl80211_init()
2610 * This function can be used as registered timeout when starting a scan to
2611 * generate a scan completed event if the driver does not report this.
2613 static void wpa_driver_nl80211_scan_timeout(void *eloop_ctx
, void *timeout_ctx
)
2615 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
2616 if (drv
->ap_scan_as_station
!= NL80211_IFTYPE_UNSPECIFIED
) {
2617 wpa_driver_nl80211_set_mode(&drv
->first_bss
,
2618 drv
->ap_scan_as_station
);
2619 drv
->ap_scan_as_station
= NL80211_IFTYPE_UNSPECIFIED
;
2621 wpa_printf(MSG_DEBUG
, "Scan timeout - try to get results");
2622 wpa_supplicant_event(timeout_ctx
, EVENT_SCAN_RESULTS
, NULL
);
2627 * wpa_driver_nl80211_scan - Request the driver to initiate scan
2628 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
2629 * @params: Scan parameters
2630 * Returns: 0 on success, -1 on failure
2632 static int wpa_driver_nl80211_scan(void *priv
,
2633 struct wpa_driver_scan_params
*params
)
2635 struct i802_bss
*bss
= priv
;
2636 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2637 int ret
= 0, timeout
;
2638 struct nl_msg
*msg
, *ssids
, *freqs
, *rates
;
2641 msg
= nlmsg_alloc();
2642 ssids
= nlmsg_alloc();
2643 freqs
= nlmsg_alloc();
2644 rates
= nlmsg_alloc();
2645 if (!msg
|| !ssids
|| !freqs
|| !rates
) {
2653 os_free(drv
->filter_ssids
);
2654 drv
->filter_ssids
= params
->filter_ssids
;
2655 params
->filter_ssids
= NULL
;
2656 drv
->num_filter_ssids
= params
->num_filter_ssids
;
2658 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TRIGGER_SCAN
);
2660 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
2662 for (i
= 0; i
< params
->num_ssids
; i
++) {
2663 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Scan SSID",
2664 params
->ssids
[i
].ssid
,
2665 params
->ssids
[i
].ssid_len
);
2666 NLA_PUT(ssids
, i
+ 1, params
->ssids
[i
].ssid_len
,
2667 params
->ssids
[i
].ssid
);
2669 if (params
->num_ssids
)
2670 nla_put_nested(msg
, NL80211_ATTR_SCAN_SSIDS
, ssids
);
2672 if (params
->extra_ies
) {
2673 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Scan extra IEs",
2674 params
->extra_ies
, params
->extra_ies_len
);
2675 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->extra_ies_len
,
2679 if (params
->freqs
) {
2680 for (i
= 0; params
->freqs
[i
]; i
++) {
2681 wpa_printf(MSG_MSGDUMP
, "nl80211: Scan frequency %u "
2682 "MHz", params
->freqs
[i
]);
2683 NLA_PUT_U32(freqs
, i
+ 1, params
->freqs
[i
]);
2685 nla_put_nested(msg
, NL80211_ATTR_SCAN_FREQUENCIES
, freqs
);
2688 if (params
->p2p_probe
) {
2690 * Remove 2.4 GHz rates 1, 2, 5.5, 11 Mbps from supported rates
2691 * by masking out everything else apart from the OFDM rates 6,
2692 * 9, 12, 18, 24, 36, 48, 54 Mbps from non-MCS rates. All 5 GHz
2693 * rates are left enabled.
2695 NLA_PUT(rates
, NL80211_BAND_2GHZ
, 8,
2696 "\x0c\x12\x18\x24\x30\x48\x60\x6c");
2697 nla_put_nested(msg
, NL80211_ATTR_SCAN_SUPP_RATES
, rates
);
2699 NLA_PUT_FLAG(msg
, NL80211_ATTR_TX_NO_CCK_RATE
);
2702 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
2705 wpa_printf(MSG_DEBUG
, "nl80211: Scan trigger failed: ret=%d "
2706 "(%s)", ret
, strerror(-ret
));
2708 if (is_ap_interface(drv
->nlmode
)) {
2710 * mac80211 does not allow scan requests in AP mode, so
2711 * try to do this in station mode.
2713 if (wpa_driver_nl80211_set_mode(
2714 bss
, NL80211_IFTYPE_STATION
))
2715 goto nla_put_failure
;
2717 if (wpa_driver_nl80211_scan(drv
, params
)) {
2718 wpa_driver_nl80211_set_mode(bss
, drv
->nlmode
);
2719 goto nla_put_failure
;
2722 /* Restore AP mode when processing scan results */
2723 drv
->ap_scan_as_station
= drv
->nlmode
;
2726 goto nla_put_failure
;
2728 goto nla_put_failure
;
2729 #endif /* HOSTAPD */
2732 /* Not all drivers generate "scan completed" wireless event, so try to
2733 * read results after a timeout. */
2735 if (drv
->scan_complete_events
) {
2737 * The driver seems to deliver events to notify when scan is
2738 * complete, so use longer timeout to avoid race conditions
2739 * with scanning and following association request.
2743 wpa_printf(MSG_DEBUG
, "Scan requested (ret=%d) - scan timeout %d "
2744 "seconds", ret
, timeout
);
2745 eloop_cancel_timeout(wpa_driver_nl80211_scan_timeout
, drv
, drv
->ctx
);
2746 eloop_register_timeout(timeout
, 0, wpa_driver_nl80211_scan_timeout
,
2759 * wpa_driver_nl80211_sched_scan - Initiate a scheduled scan
2760 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
2761 * @params: Scan parameters
2762 * @interval: Interval between scan cycles in milliseconds
2763 * Returns: 0 on success, -1 on failure or if not supported
2765 static int wpa_driver_nl80211_sched_scan(void *priv
,
2766 struct wpa_driver_scan_params
*params
,
2769 struct i802_bss
*bss
= priv
;
2770 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2772 struct nl_msg
*msg
, *ssids
, *freqs
, *match_set_ssid
, *match_sets
;
2775 msg
= nlmsg_alloc();
2776 ssids
= nlmsg_alloc();
2777 freqs
= nlmsg_alloc();
2778 if (!msg
|| !ssids
|| !freqs
) {
2785 os_free(drv
->filter_ssids
);
2786 drv
->filter_ssids
= params
->filter_ssids
;
2787 params
->filter_ssids
= NULL
;
2788 drv
->num_filter_ssids
= params
->num_filter_ssids
;
2790 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_START_SCHED_SCAN
);
2792 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
2794 NLA_PUT_U32(msg
, NL80211_ATTR_SCHED_SCAN_INTERVAL
, interval
);
2796 if (drv
->num_filter_ssids
) {
2797 match_sets
= nlmsg_alloc();
2799 for (i
= 0; i
< drv
->num_filter_ssids
; i
++) {
2800 wpa_hexdump_ascii(MSG_MSGDUMP
,
2801 "nl80211: Sched scan filter SSID",
2802 drv
->filter_ssids
[i
].ssid
,
2803 drv
->filter_ssids
[i
].ssid_len
);
2805 match_set_ssid
= nlmsg_alloc();
2806 nla_put(match_set_ssid
,
2807 NL80211_ATTR_SCHED_SCAN_MATCH_SSID
,
2808 drv
->filter_ssids
[i
].ssid_len
,
2809 drv
->filter_ssids
[i
].ssid
);
2811 nla_put_nested(match_sets
, i
+ 1, match_set_ssid
);
2813 nlmsg_free(match_set_ssid
);
2816 nla_put_nested(msg
, NL80211_ATTR_SCHED_SCAN_MATCH
,
2818 nlmsg_free(match_sets
);
2821 for (i
= 0; i
< params
->num_ssids
; i
++) {
2822 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Sched scan SSID",
2823 params
->ssids
[i
].ssid
,
2824 params
->ssids
[i
].ssid_len
);
2825 NLA_PUT(ssids
, i
+ 1, params
->ssids
[i
].ssid_len
,
2826 params
->ssids
[i
].ssid
);
2828 if (params
->num_ssids
)
2829 nla_put_nested(msg
, NL80211_ATTR_SCAN_SSIDS
, ssids
);
2831 if (params
->extra_ies
) {
2832 wpa_hexdump_ascii(MSG_MSGDUMP
, "nl80211: Sched scan extra IEs",
2833 params
->extra_ies
, params
->extra_ies_len
);
2834 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->extra_ies_len
,
2838 if (params
->freqs
) {
2839 for (i
= 0; params
->freqs
[i
]; i
++) {
2840 wpa_printf(MSG_MSGDUMP
, "nl80211: Scan frequency %u "
2841 "MHz", params
->freqs
[i
]);
2842 NLA_PUT_U32(freqs
, i
+ 1, params
->freqs
[i
]);
2844 nla_put_nested(msg
, NL80211_ATTR_SCAN_FREQUENCIES
, freqs
);
2847 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
2849 /* TODO: if we get an error here, we should fall back to normal scan */
2853 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan start failed: "
2854 "ret=%d (%s)", ret
, strerror(-ret
));
2855 goto nla_put_failure
;
2858 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan requested (ret=%d) - "
2859 "scan interval %d msec", ret
, interval
);
2870 * wpa_driver_nl80211_stop_sched_scan - Stop a scheduled scan
2871 * @priv: Pointer to private driver data from wpa_driver_nl80211_init()
2872 * Returns: 0 on success, -1 on failure or if not supported
2874 static int wpa_driver_nl80211_stop_sched_scan(void *priv
)
2876 struct i802_bss
*bss
= priv
;
2877 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
2881 msg
= nlmsg_alloc();
2885 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_STOP_SCHED_SCAN
);
2887 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
2889 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
2892 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stop failed: "
2893 "ret=%d (%s)", ret
, strerror(-ret
));
2894 goto nla_put_failure
;
2897 wpa_printf(MSG_DEBUG
, "nl80211: Sched scan stop sent (ret=%d)", ret
);
2905 static const u8
* nl80211_get_ie(const u8
*ies
, size_t ies_len
, u8 ie
)
2907 const u8
*end
, *pos
;
2913 end
= ies
+ ies_len
;
2915 while (pos
+ 1 < end
) {
2916 if (pos
+ 2 + pos
[1] > end
)
2927 static int nl80211_scan_filtered(struct wpa_driver_nl80211_data
*drv
,
2928 const u8
*ie
, size_t ie_len
)
2933 if (drv
->filter_ssids
== NULL
)
2936 ssid
= nl80211_get_ie(ie
, ie_len
, WLAN_EID_SSID
);
2940 for (i
= 0; i
< drv
->num_filter_ssids
; i
++) {
2941 if (ssid
[1] == drv
->filter_ssids
[i
].ssid_len
&&
2942 os_memcmp(ssid
+ 2, drv
->filter_ssids
[i
].ssid
, ssid
[1]) ==
2951 static int bss_info_handler(struct nl_msg
*msg
, void *arg
)
2953 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
2954 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
2955 struct nlattr
*bss
[NL80211_BSS_MAX
+ 1];
2956 static struct nla_policy bss_policy
[NL80211_BSS_MAX
+ 1] = {
2957 [NL80211_BSS_BSSID
] = { .type
= NLA_UNSPEC
},
2958 [NL80211_BSS_FREQUENCY
] = { .type
= NLA_U32
},
2959 [NL80211_BSS_TSF
] = { .type
= NLA_U64
},
2960 [NL80211_BSS_BEACON_INTERVAL
] = { .type
= NLA_U16
},
2961 [NL80211_BSS_CAPABILITY
] = { .type
= NLA_U16
},
2962 [NL80211_BSS_INFORMATION_ELEMENTS
] = { .type
= NLA_UNSPEC
},
2963 [NL80211_BSS_SIGNAL_MBM
] = { .type
= NLA_U32
},
2964 [NL80211_BSS_SIGNAL_UNSPEC
] = { .type
= NLA_U8
},
2965 [NL80211_BSS_STATUS
] = { .type
= NLA_U32
},
2966 [NL80211_BSS_SEEN_MS_AGO
] = { .type
= NLA_U32
},
2967 [NL80211_BSS_BEACON_IES
] = { .type
= NLA_UNSPEC
},
2969 struct nl80211_bss_info_arg
*_arg
= arg
;
2970 struct wpa_scan_results
*res
= _arg
->res
;
2971 struct wpa_scan_res
**tmp
;
2972 struct wpa_scan_res
*r
;
2973 const u8
*ie
, *beacon_ie
;
2974 size_t ie_len
, beacon_ie_len
;
2978 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
2979 genlmsg_attrlen(gnlh
, 0), NULL
);
2980 if (!tb
[NL80211_ATTR_BSS
])
2982 if (nla_parse_nested(bss
, NL80211_BSS_MAX
, tb
[NL80211_ATTR_BSS
],
2985 if (bss
[NL80211_BSS_STATUS
]) {
2986 enum nl80211_bss_status status
;
2987 status
= nla_get_u32(bss
[NL80211_BSS_STATUS
]);
2988 if (status
== NL80211_BSS_STATUS_ASSOCIATED
&&
2989 bss
[NL80211_BSS_FREQUENCY
]) {
2991 nla_get_u32(bss
[NL80211_BSS_FREQUENCY
]);
2992 wpa_printf(MSG_DEBUG
, "nl80211: Associated on %u MHz",
2995 if (status
== NL80211_BSS_STATUS_ASSOCIATED
&&
2996 bss
[NL80211_BSS_BSSID
]) {
2997 os_memcpy(_arg
->assoc_bssid
,
2998 nla_data(bss
[NL80211_BSS_BSSID
]), ETH_ALEN
);
2999 wpa_printf(MSG_DEBUG
, "nl80211: Associated with "
3000 MACSTR
, MAC2STR(_arg
->assoc_bssid
));
3005 if (bss
[NL80211_BSS_INFORMATION_ELEMENTS
]) {
3006 ie
= nla_data(bss
[NL80211_BSS_INFORMATION_ELEMENTS
]);
3007 ie_len
= nla_len(bss
[NL80211_BSS_INFORMATION_ELEMENTS
]);
3012 if (bss
[NL80211_BSS_BEACON_IES
]) {
3013 beacon_ie
= nla_data(bss
[NL80211_BSS_BEACON_IES
]);
3014 beacon_ie_len
= nla_len(bss
[NL80211_BSS_BEACON_IES
]);
3020 if (nl80211_scan_filtered(_arg
->drv
, ie
? ie
: beacon_ie
,
3021 ie
? ie_len
: beacon_ie_len
))
3024 r
= os_zalloc(sizeof(*r
) + ie_len
+ beacon_ie_len
);
3027 if (bss
[NL80211_BSS_BSSID
])
3028 os_memcpy(r
->bssid
, nla_data(bss
[NL80211_BSS_BSSID
]),
3030 if (bss
[NL80211_BSS_FREQUENCY
])
3031 r
->freq
= nla_get_u32(bss
[NL80211_BSS_FREQUENCY
]);
3032 if (bss
[NL80211_BSS_BEACON_INTERVAL
])
3033 r
->beacon_int
= nla_get_u16(bss
[NL80211_BSS_BEACON_INTERVAL
]);
3034 if (bss
[NL80211_BSS_CAPABILITY
])
3035 r
->caps
= nla_get_u16(bss
[NL80211_BSS_CAPABILITY
]);
3036 r
->flags
|= WPA_SCAN_NOISE_INVALID
;
3037 if (bss
[NL80211_BSS_SIGNAL_MBM
]) {
3038 r
->level
= nla_get_u32(bss
[NL80211_BSS_SIGNAL_MBM
]);
3039 r
->level
/= 100; /* mBm to dBm */
3040 r
->flags
|= WPA_SCAN_LEVEL_DBM
| WPA_SCAN_QUAL_INVALID
;
3041 } else if (bss
[NL80211_BSS_SIGNAL_UNSPEC
]) {
3042 r
->level
= nla_get_u8(bss
[NL80211_BSS_SIGNAL_UNSPEC
]);
3043 r
->flags
|= WPA_SCAN_LEVEL_INVALID
;
3045 r
->flags
|= WPA_SCAN_LEVEL_INVALID
| WPA_SCAN_QUAL_INVALID
;
3046 if (bss
[NL80211_BSS_TSF
])
3047 r
->tsf
= nla_get_u64(bss
[NL80211_BSS_TSF
]);
3048 if (bss
[NL80211_BSS_SEEN_MS_AGO
])
3049 r
->age
= nla_get_u32(bss
[NL80211_BSS_SEEN_MS_AGO
]);
3051 pos
= (u8
*) (r
+ 1);
3053 os_memcpy(pos
, ie
, ie_len
);
3056 r
->beacon_ie_len
= beacon_ie_len
;
3058 os_memcpy(pos
, beacon_ie
, beacon_ie_len
);
3060 if (bss
[NL80211_BSS_STATUS
]) {
3061 enum nl80211_bss_status status
;
3062 status
= nla_get_u32(bss
[NL80211_BSS_STATUS
]);
3064 case NL80211_BSS_STATUS_AUTHENTICATED
:
3065 r
->flags
|= WPA_SCAN_AUTHENTICATED
;
3067 case NL80211_BSS_STATUS_ASSOCIATED
:
3068 r
->flags
|= WPA_SCAN_ASSOCIATED
;
3076 * cfg80211 maintains separate BSS table entries for APs if the same
3077 * BSSID,SSID pair is seen on multiple channels. wpa_supplicant does
3078 * not use frequency as a separate key in the BSS table, so filter out
3079 * duplicated entries. Prefer associated BSS entry in such a case in
3080 * order to get the correct frequency into the BSS table.
3082 for (i
= 0; i
< res
->num
; i
++) {
3084 if (os_memcmp(res
->res
[i
]->bssid
, r
->bssid
, ETH_ALEN
) != 0)
3087 s1
= nl80211_get_ie((u8
*) (res
->res
[i
] + 1),
3088 res
->res
[i
]->ie_len
, WLAN_EID_SSID
);
3089 s2
= nl80211_get_ie((u8
*) (r
+ 1), r
->ie_len
, WLAN_EID_SSID
);
3090 if (s1
== NULL
|| s2
== NULL
|| s1
[1] != s2
[1] ||
3091 os_memcmp(s1
, s2
, 2 + s1
[1]) != 0)
3094 /* Same BSSID,SSID was already included in scan results */
3095 wpa_printf(MSG_DEBUG
, "nl80211: Remove duplicated scan result "
3096 "for " MACSTR
, MAC2STR(r
->bssid
));
3098 if ((r
->flags
& WPA_SCAN_ASSOCIATED
) &&
3099 !(res
->res
[i
]->flags
& WPA_SCAN_ASSOCIATED
)) {
3100 os_free(res
->res
[i
]);
3107 tmp
= os_realloc(res
->res
,
3108 (res
->num
+ 1) * sizeof(struct wpa_scan_res
*));
3113 tmp
[res
->num
++] = r
;
3120 static void clear_state_mismatch(struct wpa_driver_nl80211_data
*drv
,
3123 if (drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
) {
3124 wpa_printf(MSG_DEBUG
, "nl80211: Clear possible state "
3125 "mismatch (" MACSTR
")", MAC2STR(addr
));
3126 wpa_driver_nl80211_mlme(drv
, addr
,
3127 NL80211_CMD_DEAUTHENTICATE
,
3128 WLAN_REASON_PREV_AUTH_NOT_VALID
, 1);
3133 static void wpa_driver_nl80211_check_bss_status(
3134 struct wpa_driver_nl80211_data
*drv
, struct wpa_scan_results
*res
)
3138 for (i
= 0; i
< res
->num
; i
++) {
3139 struct wpa_scan_res
*r
= res
->res
[i
];
3140 if (r
->flags
& WPA_SCAN_AUTHENTICATED
) {
3141 wpa_printf(MSG_DEBUG
, "nl80211: Scan results "
3142 "indicates BSS status with " MACSTR
3143 " as authenticated",
3145 if (is_sta_interface(drv
->nlmode
) &&
3146 os_memcmp(r
->bssid
, drv
->bssid
, ETH_ALEN
) != 0 &&
3147 os_memcmp(r
->bssid
, drv
->auth_bssid
, ETH_ALEN
) !=
3149 wpa_printf(MSG_DEBUG
, "nl80211: Unknown BSSID"
3150 " in local state (auth=" MACSTR
3151 " assoc=" MACSTR
")",
3152 MAC2STR(drv
->auth_bssid
),
3153 MAC2STR(drv
->bssid
));
3154 clear_state_mismatch(drv
, r
->bssid
);
3158 if (r
->flags
& WPA_SCAN_ASSOCIATED
) {
3159 wpa_printf(MSG_DEBUG
, "nl80211: Scan results "
3160 "indicate BSS status with " MACSTR
3163 if (is_sta_interface(drv
->nlmode
) &&
3165 wpa_printf(MSG_DEBUG
, "nl80211: Local state "
3166 "(not associated) does not match "
3168 clear_state_mismatch(drv
, r
->bssid
);
3169 } else if (is_sta_interface(drv
->nlmode
) &&
3170 os_memcmp(drv
->bssid
, r
->bssid
, ETH_ALEN
) !=
3172 wpa_printf(MSG_DEBUG
, "nl80211: Local state "
3173 "(associated with " MACSTR
") does "
3174 "not match with BSS state",
3175 MAC2STR(drv
->bssid
));
3176 clear_state_mismatch(drv
, r
->bssid
);
3177 clear_state_mismatch(drv
, drv
->bssid
);
3184 static struct wpa_scan_results
*
3185 nl80211_get_scan_results(struct wpa_driver_nl80211_data
*drv
)
3188 struct wpa_scan_results
*res
;
3190 struct nl80211_bss_info_arg arg
;
3192 res
= os_zalloc(sizeof(*res
));
3195 msg
= nlmsg_alloc();
3197 goto nla_put_failure
;
3199 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
3200 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3204 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
3207 wpa_printf(MSG_DEBUG
, "nl80211: Received scan results (%lu "
3208 "BSSes)", (unsigned long) res
->num
);
3209 nl80211_get_noise_for_scan_results(drv
, res
);
3212 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
3213 "(%s)", ret
, strerror(-ret
));
3216 wpa_scan_results_free(res
);
3222 * wpa_driver_nl80211_get_scan_results - Fetch the latest scan results
3223 * @priv: Pointer to private wext data from wpa_driver_nl80211_init()
3224 * Returns: Scan results on success, -1 on failure
3226 static struct wpa_scan_results
*
3227 wpa_driver_nl80211_get_scan_results(void *priv
)
3229 struct i802_bss
*bss
= priv
;
3230 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3231 struct wpa_scan_results
*res
;
3233 res
= nl80211_get_scan_results(drv
);
3235 wpa_driver_nl80211_check_bss_status(drv
, res
);
3240 static void nl80211_dump_scan(struct wpa_driver_nl80211_data
*drv
)
3242 struct wpa_scan_results
*res
;
3245 res
= nl80211_get_scan_results(drv
);
3247 wpa_printf(MSG_DEBUG
, "nl80211: Failed to get scan results");
3251 wpa_printf(MSG_DEBUG
, "nl80211: Scan result dump");
3252 for (i
= 0; i
< res
->num
; i
++) {
3253 struct wpa_scan_res
*r
= res
->res
[i
];
3254 wpa_printf(MSG_DEBUG
, "nl80211: %d/%d " MACSTR
"%s%s",
3255 (int) i
, (int) res
->num
, MAC2STR(r
->bssid
),
3256 r
->flags
& WPA_SCAN_AUTHENTICATED
? " [auth]" : "",
3257 r
->flags
& WPA_SCAN_ASSOCIATED
? " [assoc]" : "");
3260 wpa_scan_results_free(res
);
3264 static int wpa_driver_nl80211_set_key(const char *ifname
, void *priv
,
3265 enum wpa_alg alg
, const u8
*addr
,
3266 int key_idx
, int set_tx
,
3267 const u8
*seq
, size_t seq_len
,
3268 const u8
*key
, size_t key_len
)
3270 struct i802_bss
*bss
= priv
;
3271 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3272 int ifindex
= if_nametoindex(ifname
);
3276 wpa_printf(MSG_DEBUG
, "%s: ifindex=%d alg=%d addr=%p key_idx=%d "
3277 "set_tx=%d seq_len=%lu key_len=%lu",
3278 __func__
, ifindex
, alg
, addr
, key_idx
, set_tx
,
3279 (unsigned long) seq_len
, (unsigned long) key_len
);
3283 #endif /* CONFIG_TDLS */
3285 msg
= nlmsg_alloc();
3289 if (alg
== WPA_ALG_NONE
) {
3290 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_KEY
);
3292 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_NEW_KEY
);
3293 NLA_PUT(msg
, NL80211_ATTR_KEY_DATA
, key_len
, key
);
3297 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3298 WLAN_CIPHER_SUITE_WEP40
);
3300 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3301 WLAN_CIPHER_SUITE_WEP104
);
3304 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3305 WLAN_CIPHER_SUITE_TKIP
);
3308 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3309 WLAN_CIPHER_SUITE_CCMP
);
3312 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_CIPHER
,
3313 WLAN_CIPHER_SUITE_AES_CMAC
);
3316 wpa_printf(MSG_ERROR
, "%s: Unsupported encryption "
3317 "algorithm %d", __func__
, alg
);
3324 NLA_PUT(msg
, NL80211_ATTR_KEY_SEQ
, seq_len
, seq
);
3326 if (addr
&& !is_broadcast_ether_addr(addr
)) {
3327 wpa_printf(MSG_DEBUG
, " addr=" MACSTR
, MAC2STR(addr
));
3328 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
3330 if (alg
!= WPA_ALG_WEP
&& key_idx
&& !set_tx
) {
3331 wpa_printf(MSG_DEBUG
, " RSN IBSS RX GTK");
3332 NLA_PUT_U32(msg
, NL80211_ATTR_KEY_TYPE
,
3333 NL80211_KEYTYPE_GROUP
);
3335 } else if (addr
&& is_broadcast_ether_addr(addr
)) {
3336 struct nl_msg
*types
;
3338 wpa_printf(MSG_DEBUG
, " broadcast key");
3339 types
= nlmsg_alloc();
3341 goto nla_put_failure
;
3342 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_MULTICAST
);
3343 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
3347 goto nla_put_failure
;
3349 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, key_idx
);
3350 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
3352 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3353 if ((ret
== -ENOENT
|| ret
== -ENOLINK
) && alg
== WPA_ALG_NONE
)
3356 wpa_printf(MSG_DEBUG
, "nl80211: set_key failed; err=%d %s)",
3357 ret
, strerror(-ret
));
3360 * If we failed or don't need to set the default TX key (below),
3363 if (ret
|| !set_tx
|| alg
== WPA_ALG_NONE
)
3365 if (is_ap_interface(drv
->nlmode
) && addr
&&
3366 !is_broadcast_ether_addr(addr
))
3369 msg
= nlmsg_alloc();
3373 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_KEY
);
3374 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, key_idx
);
3375 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
3376 if (alg
== WPA_ALG_IGTK
)
3377 NLA_PUT_FLAG(msg
, NL80211_ATTR_KEY_DEFAULT_MGMT
);
3379 NLA_PUT_FLAG(msg
, NL80211_ATTR_KEY_DEFAULT
);
3380 if (addr
&& is_broadcast_ether_addr(addr
)) {
3381 struct nl_msg
*types
;
3383 types
= nlmsg_alloc();
3385 goto nla_put_failure
;
3386 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_MULTICAST
);
3387 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
3391 goto nla_put_failure
;
3393 struct nl_msg
*types
;
3395 types
= nlmsg_alloc();
3397 goto nla_put_failure
;
3398 NLA_PUT_FLAG(types
, NL80211_KEY_DEFAULT_TYPE_UNICAST
);
3399 err
= nla_put_nested(msg
, NL80211_ATTR_KEY_DEFAULT_TYPES
,
3403 goto nla_put_failure
;
3406 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3410 wpa_printf(MSG_DEBUG
, "nl80211: set_key default failed; "
3411 "err=%d %s)", ret
, strerror(-ret
));
3419 static int nl_add_key(struct nl_msg
*msg
, enum wpa_alg alg
,
3420 int key_idx
, int defkey
,
3421 const u8
*seq
, size_t seq_len
,
3422 const u8
*key
, size_t key_len
)
3424 struct nlattr
*key_attr
= nla_nest_start(msg
, NL80211_ATTR_KEY
);
3428 if (defkey
&& alg
== WPA_ALG_IGTK
)
3429 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT_MGMT
);
3431 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT
);
3433 NLA_PUT_U8(msg
, NL80211_KEY_IDX
, key_idx
);
3438 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
3439 WLAN_CIPHER_SUITE_WEP40
);
3441 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
3442 WLAN_CIPHER_SUITE_WEP104
);
3445 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
, WLAN_CIPHER_SUITE_TKIP
);
3448 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
, WLAN_CIPHER_SUITE_CCMP
);
3451 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
3452 WLAN_CIPHER_SUITE_AES_CMAC
);
3455 wpa_printf(MSG_ERROR
, "%s: Unsupported encryption "
3456 "algorithm %d", __func__
, alg
);
3461 NLA_PUT(msg
, NL80211_KEY_SEQ
, seq_len
, seq
);
3463 NLA_PUT(msg
, NL80211_KEY_DATA
, key_len
, key
);
3465 nla_nest_end(msg
, key_attr
);
3473 static int nl80211_set_conn_keys(struct wpa_driver_associate_params
*params
,
3477 struct nlattr
*nl_keys
, *nl_key
;
3479 for (i
= 0; i
< 4; i
++) {
3480 if (!params
->wep_key
[i
])
3485 if (params
->wps
== WPS_MODE_PRIVACY
)
3487 if (params
->pairwise_suite
&&
3488 params
->pairwise_suite
!= WPA_CIPHER_NONE
)
3494 NLA_PUT_FLAG(msg
, NL80211_ATTR_PRIVACY
);
3496 nl_keys
= nla_nest_start(msg
, NL80211_ATTR_KEYS
);
3498 goto nla_put_failure
;
3500 for (i
= 0; i
< 4; i
++) {
3501 if (!params
->wep_key
[i
])
3504 nl_key
= nla_nest_start(msg
, i
);
3506 goto nla_put_failure
;
3508 NLA_PUT(msg
, NL80211_KEY_DATA
, params
->wep_key_len
[i
],
3509 params
->wep_key
[i
]);
3510 if (params
->wep_key_len
[i
] == 5)
3511 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
3512 WLAN_CIPHER_SUITE_WEP40
);
3514 NLA_PUT_U32(msg
, NL80211_KEY_CIPHER
,
3515 WLAN_CIPHER_SUITE_WEP104
);
3517 NLA_PUT_U8(msg
, NL80211_KEY_IDX
, i
);
3519 if (i
== params
->wep_tx_keyidx
)
3520 NLA_PUT_FLAG(msg
, NL80211_KEY_DEFAULT
);
3522 nla_nest_end(msg
, nl_key
);
3524 nla_nest_end(msg
, nl_keys
);
3533 static int wpa_driver_nl80211_mlme(struct wpa_driver_nl80211_data
*drv
,
3534 const u8
*addr
, int cmd
, u16 reason_code
,
3535 int local_state_change
)
3540 msg
= nlmsg_alloc();
3544 nl80211_cmd(drv
, msg
, 0, cmd
);
3546 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3547 NLA_PUT_U16(msg
, NL80211_ATTR_REASON_CODE
, reason_code
);
3548 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
3549 if (local_state_change
)
3550 NLA_PUT_FLAG(msg
, NL80211_ATTR_LOCAL_STATE_CHANGE
);
3552 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3555 wpa_printf(MSG_DEBUG
, "nl80211: MLME command failed: ret=%d "
3556 "(%s)", ret
, strerror(-ret
));
3557 goto nla_put_failure
;
3567 static int wpa_driver_nl80211_disconnect(struct wpa_driver_nl80211_data
*drv
,
3568 const u8
*addr
, int reason_code
)
3570 wpa_printf(MSG_DEBUG
, "%s(addr=" MACSTR
" reason_code=%d)",
3571 __func__
, MAC2STR(addr
), reason_code
);
3572 drv
->associated
= 0;
3573 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DISCONNECT
,
3578 static int wpa_driver_nl80211_deauthenticate(void *priv
, const u8
*addr
,
3581 struct i802_bss
*bss
= priv
;
3582 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3583 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
))
3584 return wpa_driver_nl80211_disconnect(drv
, addr
, reason_code
);
3585 wpa_printf(MSG_DEBUG
, "%s(addr=" MACSTR
" reason_code=%d)",
3586 __func__
, MAC2STR(addr
), reason_code
);
3587 drv
->associated
= 0;
3588 if (drv
->nlmode
== NL80211_IFTYPE_ADHOC
)
3589 return nl80211_leave_ibss(drv
);
3590 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DEAUTHENTICATE
,
3595 static int wpa_driver_nl80211_disassociate(void *priv
, const u8
*addr
,
3598 struct i802_bss
*bss
= priv
;
3599 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3600 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
))
3601 return wpa_driver_nl80211_disconnect(drv
, addr
, reason_code
);
3602 wpa_printf(MSG_DEBUG
, "%s", __func__
);
3603 drv
->associated
= 0;
3604 return wpa_driver_nl80211_mlme(drv
, addr
, NL80211_CMD_DISASSOCIATE
,
3609 static int wpa_driver_nl80211_authenticate(
3610 void *priv
, struct wpa_driver_auth_params
*params
)
3612 struct i802_bss
*bss
= priv
;
3613 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
3616 enum nl80211_auth_type type
;
3617 enum nl80211_iftype nlmode
;
3620 drv
->associated
= 0;
3621 os_memset(drv
->auth_bssid
, 0, ETH_ALEN
);
3622 /* FIX: IBSS mode */
3623 nlmode
= params
->p2p
?
3624 NL80211_IFTYPE_P2P_CLIENT
: NL80211_IFTYPE_STATION
;
3625 if (drv
->nlmode
!= nlmode
&&
3626 wpa_driver_nl80211_set_mode(priv
, nlmode
) < 0)
3630 msg
= nlmsg_alloc();
3634 wpa_printf(MSG_DEBUG
, "nl80211: Authenticate (ifindex=%d)",
3637 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_AUTHENTICATE
);
3639 for (i
= 0; i
< 4; i
++) {
3640 if (!params
->wep_key
[i
])
3642 wpa_driver_nl80211_set_key(bss
->ifname
, priv
, WPA_ALG_WEP
,
3644 i
== params
->wep_tx_keyidx
, NULL
, 0,
3646 params
->wep_key_len
[i
]);
3647 if (params
->wep_tx_keyidx
!= i
)
3649 if (nl_add_key(msg
, WPA_ALG_WEP
, i
, 1, NULL
, 0,
3650 params
->wep_key
[i
], params
->wep_key_len
[i
])) {
3656 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
3657 if (params
->bssid
) {
3658 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
3659 MAC2STR(params
->bssid
));
3660 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
3663 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
3664 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
3667 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
3668 params
->ssid
, params
->ssid_len
);
3669 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
3672 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->ie
, params
->ie_len
);
3674 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->ie_len
, params
->ie
);
3675 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
3676 type
= NL80211_AUTHTYPE_OPEN_SYSTEM
;
3677 else if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
3678 type
= NL80211_AUTHTYPE_SHARED_KEY
;
3679 else if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
3680 type
= NL80211_AUTHTYPE_NETWORK_EAP
;
3681 else if (params
->auth_alg
& WPA_AUTH_ALG_FT
)
3682 type
= NL80211_AUTHTYPE_FT
;
3684 goto nla_put_failure
;
3685 wpa_printf(MSG_DEBUG
, " * Auth Type %d", type
);
3686 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
, type
);
3687 if (params
->local_state_change
) {
3688 wpa_printf(MSG_DEBUG
, " * Local state change only");
3689 NLA_PUT_FLAG(msg
, NL80211_ATTR_LOCAL_STATE_CHANGE
);
3692 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
3695 wpa_printf(MSG_DEBUG
, "nl80211: MLME command failed: ret=%d "
3696 "(%s)", ret
, strerror(-ret
));
3698 if (ret
== -EALREADY
&& count
== 1 && params
->bssid
&&
3699 !params
->local_state_change
) {
3701 * mac80211 does not currently accept new
3702 * authentication if we are already authenticated. As a
3703 * workaround, force deauthentication and try again.
3705 wpa_printf(MSG_DEBUG
, "nl80211: Retry authentication "
3706 "after forced deauthentication");
3707 wpa_driver_nl80211_deauthenticate(
3709 WLAN_REASON_PREV_AUTH_NOT_VALID
);
3713 goto nla_put_failure
;
3716 wpa_printf(MSG_DEBUG
, "nl80211: Authentication request send "
3725 struct phy_info_arg
{
3727 struct hostapd_hw_modes
*modes
;
3730 static int phy_info_handler(struct nl_msg
*msg
, void *arg
)
3732 struct nlattr
*tb_msg
[NL80211_ATTR_MAX
+ 1];
3733 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
3734 struct phy_info_arg
*phy_info
= arg
;
3736 struct nlattr
*tb_band
[NL80211_BAND_ATTR_MAX
+ 1];
3738 struct nlattr
*tb_freq
[NL80211_FREQUENCY_ATTR_MAX
+ 1];
3739 static struct nla_policy freq_policy
[NL80211_FREQUENCY_ATTR_MAX
+ 1] = {
3740 [NL80211_FREQUENCY_ATTR_FREQ
] = { .type
= NLA_U32
},
3741 [NL80211_FREQUENCY_ATTR_DISABLED
] = { .type
= NLA_FLAG
},
3742 [NL80211_FREQUENCY_ATTR_PASSIVE_SCAN
] = { .type
= NLA_FLAG
},
3743 [NL80211_FREQUENCY_ATTR_NO_IBSS
] = { .type
= NLA_FLAG
},
3744 [NL80211_FREQUENCY_ATTR_RADAR
] = { .type
= NLA_FLAG
},
3745 [NL80211_FREQUENCY_ATTR_MAX_TX_POWER
] = { .type
= NLA_U32
},
3748 struct nlattr
*tb_rate
[NL80211_BITRATE_ATTR_MAX
+ 1];
3749 static struct nla_policy rate_policy
[NL80211_BITRATE_ATTR_MAX
+ 1] = {
3750 [NL80211_BITRATE_ATTR_RATE
] = { .type
= NLA_U32
},
3751 [NL80211_BITRATE_ATTR_2GHZ_SHORTPREAMBLE
] = { .type
= NLA_FLAG
},
3754 struct nlattr
*nl_band
;
3755 struct nlattr
*nl_freq
;
3756 struct nlattr
*nl_rate
;
3757 int rem_band
, rem_freq
, rem_rate
;
3758 struct hostapd_hw_modes
*mode
;
3759 int idx
, mode_is_set
;
3761 nla_parse(tb_msg
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
3762 genlmsg_attrlen(gnlh
, 0), NULL
);
3764 if (!tb_msg
[NL80211_ATTR_WIPHY_BANDS
])
3767 nla_for_each_nested(nl_band
, tb_msg
[NL80211_ATTR_WIPHY_BANDS
], rem_band
) {
3768 mode
= os_realloc(phy_info
->modes
, (*phy_info
->num_modes
+ 1) * sizeof(*mode
));
3771 phy_info
->modes
= mode
;
3775 mode
= &phy_info
->modes
[*(phy_info
->num_modes
)];
3776 memset(mode
, 0, sizeof(*mode
));
3777 mode
->flags
= HOSTAPD_MODE_FLAG_HT_INFO_KNOWN
;
3778 *(phy_info
->num_modes
) += 1;
3780 nla_parse(tb_band
, NL80211_BAND_ATTR_MAX
, nla_data(nl_band
),
3781 nla_len(nl_band
), NULL
);
3783 if (tb_band
[NL80211_BAND_ATTR_HT_CAPA
]) {
3784 mode
->ht_capab
= nla_get_u16(
3785 tb_band
[NL80211_BAND_ATTR_HT_CAPA
]);
3788 if (tb_band
[NL80211_BAND_ATTR_HT_AMPDU_FACTOR
]) {
3789 mode
->a_mpdu_params
|= nla_get_u8(
3790 tb_band
[NL80211_BAND_ATTR_HT_AMPDU_FACTOR
]) &
3794 if (tb_band
[NL80211_BAND_ATTR_HT_AMPDU_DENSITY
]) {
3795 mode
->a_mpdu_params
|= nla_get_u8(
3796 tb_band
[NL80211_BAND_ATTR_HT_AMPDU_DENSITY
]) <<
3800 if (tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
] &&
3801 nla_len(tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
])) {
3803 mcs
= nla_data(tb_band
[NL80211_BAND_ATTR_HT_MCS_SET
]);
3804 os_memcpy(mode
->mcs_set
, mcs
, 16);
3807 nla_for_each_nested(nl_freq
, tb_band
[NL80211_BAND_ATTR_FREQS
], rem_freq
) {
3808 nla_parse(tb_freq
, NL80211_FREQUENCY_ATTR_MAX
, nla_data(nl_freq
),
3809 nla_len(nl_freq
), freq_policy
);
3810 if (!tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
])
3812 mode
->num_channels
++;
3815 mode
->channels
= os_zalloc(mode
->num_channels
* sizeof(struct hostapd_channel_data
));
3816 if (!mode
->channels
)
3821 nla_for_each_nested(nl_freq
, tb_band
[NL80211_BAND_ATTR_FREQS
], rem_freq
) {
3822 nla_parse(tb_freq
, NL80211_FREQUENCY_ATTR_MAX
, nla_data(nl_freq
),
3823 nla_len(nl_freq
), freq_policy
);
3824 if (!tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
])
3827 mode
->channels
[idx
].freq
= nla_get_u32(tb_freq
[NL80211_FREQUENCY_ATTR_FREQ
]);
3828 mode
->channels
[idx
].flag
= 0;
3831 /* crude heuristic */
3832 if (mode
->channels
[idx
].freq
< 4000)
3833 mode
->mode
= HOSTAPD_MODE_IEEE80211B
;
3835 mode
->mode
= HOSTAPD_MODE_IEEE80211A
;
3839 /* crude heuristic */
3840 if (mode
->channels
[idx
].freq
< 4000)
3841 if (mode
->channels
[idx
].freq
== 2484)
3842 mode
->channels
[idx
].chan
= 14;
3844 mode
->channels
[idx
].chan
= (mode
->channels
[idx
].freq
- 2407) / 5;
3846 mode
->channels
[idx
].chan
= mode
->channels
[idx
].freq
/5 - 1000;
3848 if (tb_freq
[NL80211_FREQUENCY_ATTR_DISABLED
])
3849 mode
->channels
[idx
].flag
|=
3850 HOSTAPD_CHAN_DISABLED
;
3851 if (tb_freq
[NL80211_FREQUENCY_ATTR_PASSIVE_SCAN
])
3852 mode
->channels
[idx
].flag
|=
3853 HOSTAPD_CHAN_PASSIVE_SCAN
;
3854 if (tb_freq
[NL80211_FREQUENCY_ATTR_NO_IBSS
])
3855 mode
->channels
[idx
].flag
|=
3856 HOSTAPD_CHAN_NO_IBSS
;
3857 if (tb_freq
[NL80211_FREQUENCY_ATTR_RADAR
])
3858 mode
->channels
[idx
].flag
|=
3861 if (tb_freq
[NL80211_FREQUENCY_ATTR_MAX_TX_POWER
] &&
3862 !tb_freq
[NL80211_FREQUENCY_ATTR_DISABLED
])
3863 mode
->channels
[idx
].max_tx_power
=
3864 nla_get_u32(tb_freq
[NL80211_FREQUENCY_ATTR_MAX_TX_POWER
]) / 100;
3869 nla_for_each_nested(nl_rate
, tb_band
[NL80211_BAND_ATTR_RATES
], rem_rate
) {
3870 nla_parse(tb_rate
, NL80211_BITRATE_ATTR_MAX
, nla_data(nl_rate
),
3871 nla_len(nl_rate
), rate_policy
);
3872 if (!tb_rate
[NL80211_BITRATE_ATTR_RATE
])
3877 mode
->rates
= os_zalloc(mode
->num_rates
* sizeof(int));
3883 nla_for_each_nested(nl_rate
, tb_band
[NL80211_BAND_ATTR_RATES
], rem_rate
) {
3884 nla_parse(tb_rate
, NL80211_BITRATE_ATTR_MAX
, nla_data(nl_rate
),
3885 nla_len(nl_rate
), rate_policy
);
3886 if (!tb_rate
[NL80211_BITRATE_ATTR_RATE
])
3888 mode
->rates
[idx
] = nla_get_u32(tb_rate
[NL80211_BITRATE_ATTR_RATE
]);
3890 /* crude heuristic */
3891 if (mode
->mode
== HOSTAPD_MODE_IEEE80211B
&&
3892 mode
->rates
[idx
] > 200)
3893 mode
->mode
= HOSTAPD_MODE_IEEE80211G
;
3902 static struct hostapd_hw_modes
*
3903 wpa_driver_nl80211_add_11b(struct hostapd_hw_modes
*modes
, u16
*num_modes
)
3906 struct hostapd_hw_modes
*mode11g
= NULL
, *nmodes
, *mode
;
3907 int i
, mode11g_idx
= -1;
3909 /* If only 802.11g mode is included, use it to construct matching
3910 * 802.11b mode data. */
3912 for (m
= 0; m
< *num_modes
; m
++) {
3913 if (modes
[m
].mode
== HOSTAPD_MODE_IEEE80211B
)
3914 return modes
; /* 802.11b already included */
3915 if (modes
[m
].mode
== HOSTAPD_MODE_IEEE80211G
)
3919 if (mode11g_idx
< 0)
3920 return modes
; /* 2.4 GHz band not supported at all */
3922 nmodes
= os_realloc(modes
, (*num_modes
+ 1) * sizeof(*nmodes
));
3924 return modes
; /* Could not add 802.11b mode */
3926 mode
= &nmodes
[*num_modes
];
3927 os_memset(mode
, 0, sizeof(*mode
));
3931 mode
->mode
= HOSTAPD_MODE_IEEE80211B
;
3933 mode11g
= &modes
[mode11g_idx
];
3934 mode
->num_channels
= mode11g
->num_channels
;
3935 mode
->channels
= os_malloc(mode11g
->num_channels
*
3936 sizeof(struct hostapd_channel_data
));
3937 if (mode
->channels
== NULL
) {
3939 return modes
; /* Could not add 802.11b mode */
3941 os_memcpy(mode
->channels
, mode11g
->channels
,
3942 mode11g
->num_channels
* sizeof(struct hostapd_channel_data
));
3944 mode
->num_rates
= 0;
3945 mode
->rates
= os_malloc(4 * sizeof(int));
3946 if (mode
->rates
== NULL
) {
3947 os_free(mode
->channels
);
3949 return modes
; /* Could not add 802.11b mode */
3952 for (i
= 0; i
< mode11g
->num_rates
; i
++) {
3953 if (mode11g
->rates
[i
] != 10 && mode11g
->rates
[i
] != 20 &&
3954 mode11g
->rates
[i
] != 55 && mode11g
->rates
[i
] != 110)
3956 mode
->rates
[mode
->num_rates
] = mode11g
->rates
[i
];
3958 if (mode
->num_rates
== 4)
3962 if (mode
->num_rates
== 0) {
3963 os_free(mode
->channels
);
3964 os_free(mode
->rates
);
3966 return modes
; /* No 802.11b rates */
3969 wpa_printf(MSG_DEBUG
, "nl80211: Added 802.11b mode based on 802.11g "
3976 static void nl80211_set_ht40_mode(struct hostapd_hw_modes
*mode
, int start
,
3981 for (c
= 0; c
< mode
->num_channels
; c
++) {
3982 struct hostapd_channel_data
*chan
= &mode
->channels
[c
];
3983 if (chan
->freq
- 10 >= start
&& chan
->freq
+ 10 <= end
)
3984 chan
->flag
|= HOSTAPD_CHAN_HT40
;
3989 static void nl80211_set_ht40_mode_sec(struct hostapd_hw_modes
*mode
, int start
,
3994 for (c
= 0; c
< mode
->num_channels
; c
++) {
3995 struct hostapd_channel_data
*chan
= &mode
->channels
[c
];
3996 if (!(chan
->flag
& HOSTAPD_CHAN_HT40
))
3998 if (chan
->freq
- 30 >= start
&& chan
->freq
- 10 <= end
)
3999 chan
->flag
|= HOSTAPD_CHAN_HT40MINUS
;
4000 if (chan
->freq
+ 10 >= start
&& chan
->freq
+ 30 <= end
)
4001 chan
->flag
|= HOSTAPD_CHAN_HT40PLUS
;
4006 static void nl80211_reg_rule_ht40(struct nlattr
*tb
[],
4007 struct phy_info_arg
*results
)
4009 u32 start
, end
, max_bw
;
4012 if (tb
[NL80211_ATTR_FREQ_RANGE_START
] == NULL
||
4013 tb
[NL80211_ATTR_FREQ_RANGE_END
] == NULL
||
4014 tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
] == NULL
)
4017 start
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_START
]) / 1000;
4018 end
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_END
]) / 1000;
4019 max_bw
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
]) / 1000;
4021 wpa_printf(MSG_DEBUG
, "nl80211: %u-%u @ %u MHz",
4022 start
, end
, max_bw
);
4026 for (m
= 0; m
< *results
->num_modes
; m
++) {
4027 if (!(results
->modes
[m
].ht_capab
&
4028 HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET
))
4030 nl80211_set_ht40_mode(&results
->modes
[m
], start
, end
);
4035 static void nl80211_reg_rule_sec(struct nlattr
*tb
[],
4036 struct phy_info_arg
*results
)
4038 u32 start
, end
, max_bw
;
4041 if (tb
[NL80211_ATTR_FREQ_RANGE_START
] == NULL
||
4042 tb
[NL80211_ATTR_FREQ_RANGE_END
] == NULL
||
4043 tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
] == NULL
)
4046 start
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_START
]) / 1000;
4047 end
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_END
]) / 1000;
4048 max_bw
= nla_get_u32(tb
[NL80211_ATTR_FREQ_RANGE_MAX_BW
]) / 1000;
4053 for (m
= 0; m
< *results
->num_modes
; m
++) {
4054 if (!(results
->modes
[m
].ht_capab
&
4055 HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET
))
4057 nl80211_set_ht40_mode_sec(&results
->modes
[m
], start
, end
);
4062 static int nl80211_get_reg(struct nl_msg
*msg
, void *arg
)
4064 struct phy_info_arg
*results
= arg
;
4065 struct nlattr
*tb_msg
[NL80211_ATTR_MAX
+ 1];
4066 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
4067 struct nlattr
*nl_rule
;
4068 struct nlattr
*tb_rule
[NL80211_FREQUENCY_ATTR_MAX
+ 1];
4070 static struct nla_policy reg_policy
[NL80211_FREQUENCY_ATTR_MAX
+ 1] = {
4071 [NL80211_ATTR_REG_RULE_FLAGS
] = { .type
= NLA_U32
},
4072 [NL80211_ATTR_FREQ_RANGE_START
] = { .type
= NLA_U32
},
4073 [NL80211_ATTR_FREQ_RANGE_END
] = { .type
= NLA_U32
},
4074 [NL80211_ATTR_FREQ_RANGE_MAX_BW
] = { .type
= NLA_U32
},
4075 [NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN
] = { .type
= NLA_U32
},
4076 [NL80211_ATTR_POWER_RULE_MAX_EIRP
] = { .type
= NLA_U32
},
4079 nla_parse(tb_msg
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
4080 genlmsg_attrlen(gnlh
, 0), NULL
);
4081 if (!tb_msg
[NL80211_ATTR_REG_ALPHA2
] ||
4082 !tb_msg
[NL80211_ATTR_REG_RULES
]) {
4083 wpa_printf(MSG_DEBUG
, "nl80211: No regulatory information "
4088 wpa_printf(MSG_DEBUG
, "nl80211: Regulatory information - country=%s",
4089 (char *) nla_data(tb_msg
[NL80211_ATTR_REG_ALPHA2
]));
4091 nla_for_each_nested(nl_rule
, tb_msg
[NL80211_ATTR_REG_RULES
], rem_rule
)
4093 nla_parse(tb_rule
, NL80211_FREQUENCY_ATTR_MAX
,
4094 nla_data(nl_rule
), nla_len(nl_rule
), reg_policy
);
4095 nl80211_reg_rule_ht40(tb_rule
, results
);
4098 nla_for_each_nested(nl_rule
, tb_msg
[NL80211_ATTR_REG_RULES
], rem_rule
)
4100 nla_parse(tb_rule
, NL80211_FREQUENCY_ATTR_MAX
,
4101 nla_data(nl_rule
), nla_len(nl_rule
), reg_policy
);
4102 nl80211_reg_rule_sec(tb_rule
, results
);
4109 static int nl80211_set_ht40_flags(struct wpa_driver_nl80211_data
*drv
,
4110 struct phy_info_arg
*results
)
4114 msg
= nlmsg_alloc();
4118 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_REG
);
4119 return send_and_recv_msgs(drv
, msg
, nl80211_get_reg
, results
);
4123 static struct hostapd_hw_modes
*
4124 wpa_driver_nl80211_get_hw_feature_data(void *priv
, u16
*num_modes
, u16
*flags
)
4126 struct i802_bss
*bss
= priv
;
4127 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4129 struct phy_info_arg result
= {
4130 .num_modes
= num_modes
,
4137 msg
= nlmsg_alloc();
4141 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_WIPHY
);
4143 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4145 if (send_and_recv_msgs(drv
, msg
, phy_info_handler
, &result
) == 0) {
4146 nl80211_set_ht40_flags(drv
, &result
);
4147 return wpa_driver_nl80211_add_11b(result
.modes
, num_modes
);
4154 static int wpa_driver_nl80211_send_frame(struct wpa_driver_nl80211_data
*drv
,
4155 const void *data
, size_t len
,
4159 0x00, 0x00, /* radiotap version */
4160 0x0e, 0x00, /* radiotap length */
4161 0x02, 0xc0, 0x00, 0x00, /* bmap: flags, tx and rx flags */
4162 IEEE80211_RADIOTAP_F_FRAG
, /* F_FRAG (fragment if required) */
4164 0x00, 0x00, /* RX and TX flags to indicate that */
4165 0x00, 0x00, /* this is the injected frame directly */
4167 struct iovec iov
[2] = {
4169 .iov_base
= &rtap_hdr
,
4170 .iov_len
= sizeof(rtap_hdr
),
4173 .iov_base
= (void *) data
,
4177 struct msghdr msg
= {
4182 .msg_control
= NULL
,
4183 .msg_controllen
= 0,
4189 rtap_hdr
[8] |= IEEE80211_RADIOTAP_F_WEP
;
4191 if (drv
->monitor_sock
< 0) {
4192 wpa_printf(MSG_DEBUG
, "nl80211: No monitor socket available "
4193 "for %s", __func__
);
4197 res
= sendmsg(drv
->monitor_sock
, &msg
, 0);
4199 wpa_printf(MSG_INFO
, "nl80211: sendmsg: %s", strerror(errno
));
4206 static int wpa_driver_nl80211_send_mlme(void *priv
, const u8
*data
,
4209 struct i802_bss
*bss
= priv
;
4210 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4211 struct ieee80211_mgmt
*mgmt
;
4215 mgmt
= (struct ieee80211_mgmt
*) data
;
4216 fc
= le_to_host16(mgmt
->frame_control
);
4218 if (is_sta_interface(drv
->nlmode
) &&
4219 WLAN_FC_GET_TYPE(fc
) == WLAN_FC_TYPE_MGMT
&&
4220 WLAN_FC_GET_STYPE(fc
) == WLAN_FC_STYPE_PROBE_RESP
) {
4222 * The use of last_mgmt_freq is a bit of a hack,
4223 * but it works due to the single-threaded nature
4224 * of wpa_supplicant.
4226 return nl80211_send_frame_cmd(drv
, drv
->last_mgmt_freq
, 0,
4227 data
, data_len
, NULL
, 1);
4230 if (drv
->no_monitor_iface_capab
&& is_ap_interface(drv
->nlmode
)) {
4231 return nl80211_send_frame_cmd(drv
, drv
->ap_oper_freq
, 0,
4232 data
, data_len
, NULL
, 0);
4235 if (WLAN_FC_GET_TYPE(fc
) == WLAN_FC_TYPE_MGMT
&&
4236 WLAN_FC_GET_STYPE(fc
) == WLAN_FC_STYPE_AUTH
) {
4238 * Only one of the authentication frame types is encrypted.
4239 * In order for static WEP encryption to work properly (i.e.,
4240 * to not encrypt the frame), we need to tell mac80211 about
4241 * the frames that must not be encrypted.
4243 u16 auth_alg
= le_to_host16(mgmt
->u
.auth
.auth_alg
);
4244 u16 auth_trans
= le_to_host16(mgmt
->u
.auth
.auth_transaction
);
4245 if (auth_alg
!= WLAN_AUTH_SHARED_KEY
|| auth_trans
!= 3)
4249 return wpa_driver_nl80211_send_frame(drv
, data
, data_len
, encrypt
);
4253 static int nl80211_set_ap_isolate(struct i802_bss
*bss
, int enabled
)
4255 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4258 msg
= nlmsg_alloc();
4262 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_BSS
);
4264 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
4265 NLA_PUT_U8(msg
, NL80211_ATTR_AP_ISOLATE
, enabled
);
4267 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4273 static int nl80211_set_bss(struct i802_bss
*bss
, int cts
, int preamble
,
4274 int slot
, int ht_opmode
)
4276 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4279 msg
= nlmsg_alloc();
4283 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_BSS
);
4286 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_CTS_PROT
, cts
);
4288 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_SHORT_PREAMBLE
, preamble
);
4290 NLA_PUT_U8(msg
, NL80211_ATTR_BSS_SHORT_SLOT_TIME
, slot
);
4292 NLA_PUT_U16(msg
, NL80211_ATTR_BSS_HT_OPMODE
, ht_opmode
);
4293 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
4295 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4301 static int wpa_driver_nl80211_set_ap(void *priv
,
4302 struct wpa_driver_ap_params
*params
)
4304 struct i802_bss
*bss
= priv
;
4305 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4307 u8 cmd
= NL80211_CMD_NEW_BEACON
;
4310 int ifindex
= if_nametoindex(bss
->ifname
);
4315 beacon_set
= bss
->beacon_set
;
4317 msg
= nlmsg_alloc();
4321 wpa_printf(MSG_DEBUG
, "nl80211: Set beacon (beacon_set=%d)",
4324 cmd
= NL80211_CMD_SET_BEACON
;
4326 nl80211_cmd(drv
, msg
, 0, cmd
);
4327 NLA_PUT(msg
, NL80211_ATTR_BEACON_HEAD
, params
->head_len
, params
->head
);
4328 NLA_PUT(msg
, NL80211_ATTR_BEACON_TAIL
, params
->tail_len
, params
->tail
);
4329 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
4330 NLA_PUT_U32(msg
, NL80211_ATTR_BEACON_INTERVAL
, params
->beacon_int
);
4331 NLA_PUT_U32(msg
, NL80211_ATTR_DTIM_PERIOD
, params
->dtim_period
);
4332 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
4334 switch (params
->hide_ssid
) {
4335 case NO_SSID_HIDING
:
4336 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
4337 NL80211_HIDDEN_SSID_NOT_IN_USE
);
4339 case HIDDEN_SSID_ZERO_LEN
:
4340 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
4341 NL80211_HIDDEN_SSID_ZERO_LEN
);
4343 case HIDDEN_SSID_ZERO_CONTENTS
:
4344 NLA_PUT_U32(msg
, NL80211_ATTR_HIDDEN_SSID
,
4345 NL80211_HIDDEN_SSID_ZERO_CONTENTS
);
4348 if (params
->privacy
)
4349 NLA_PUT_FLAG(msg
, NL80211_ATTR_PRIVACY
);
4350 if ((params
->auth_algs
& (WPA_AUTH_ALG_OPEN
| WPA_AUTH_ALG_SHARED
)) ==
4351 (WPA_AUTH_ALG_OPEN
| WPA_AUTH_ALG_SHARED
)) {
4352 /* Leave out the attribute */
4353 } else if (params
->auth_algs
& WPA_AUTH_ALG_SHARED
)
4354 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
,
4355 NL80211_AUTHTYPE_SHARED_KEY
);
4357 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
,
4358 NL80211_AUTHTYPE_OPEN_SYSTEM
);
4361 if (params
->wpa_version
& WPA_PROTO_WPA
)
4362 ver
|= NL80211_WPA_VERSION_1
;
4363 if (params
->wpa_version
& WPA_PROTO_RSN
)
4364 ver
|= NL80211_WPA_VERSION_2
;
4366 NLA_PUT_U32(msg
, NL80211_ATTR_WPA_VERSIONS
, ver
);
4369 if (params
->key_mgmt_suites
& WPA_KEY_MGMT_IEEE8021X
)
4370 suites
[num_suites
++] = WLAN_AKM_SUITE_8021X
;
4371 if (params
->key_mgmt_suites
& WPA_KEY_MGMT_PSK
)
4372 suites
[num_suites
++] = WLAN_AKM_SUITE_PSK
;
4374 NLA_PUT(msg
, NL80211_ATTR_AKM_SUITES
,
4375 num_suites
* sizeof(u32
), suites
);
4379 if (params
->pairwise_ciphers
& WPA_CIPHER_CCMP
)
4380 suites
[num_suites
++] = WLAN_CIPHER_SUITE_CCMP
;
4381 if (params
->pairwise_ciphers
& WPA_CIPHER_TKIP
)
4382 suites
[num_suites
++] = WLAN_CIPHER_SUITE_TKIP
;
4383 if (params
->pairwise_ciphers
& WPA_CIPHER_WEP104
)
4384 suites
[num_suites
++] = WLAN_CIPHER_SUITE_WEP104
;
4385 if (params
->pairwise_ciphers
& WPA_CIPHER_WEP40
)
4386 suites
[num_suites
++] = WLAN_CIPHER_SUITE_WEP40
;
4388 NLA_PUT(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
,
4389 num_suites
* sizeof(u32
), suites
);
4392 switch (params
->group_cipher
) {
4393 case WPA_CIPHER_CCMP
:
4394 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
4395 WLAN_CIPHER_SUITE_CCMP
);
4397 case WPA_CIPHER_TKIP
:
4398 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
4399 WLAN_CIPHER_SUITE_TKIP
);
4401 case WPA_CIPHER_WEP104
:
4402 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
4403 WLAN_CIPHER_SUITE_WEP104
);
4405 case WPA_CIPHER_WEP40
:
4406 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
,
4407 WLAN_CIPHER_SUITE_WEP40
);
4411 if (params
->beacon_ies
) {
4412 NLA_PUT(msg
, NL80211_ATTR_IE
, wpabuf_len(params
->beacon_ies
),
4413 wpabuf_head(params
->beacon_ies
));
4415 if (params
->proberesp_ies
) {
4416 NLA_PUT(msg
, NL80211_ATTR_IE_PROBE_RESP
,
4417 wpabuf_len(params
->proberesp_ies
),
4418 wpabuf_head(params
->proberesp_ies
));
4420 if (params
->assocresp_ies
) {
4421 NLA_PUT(msg
, NL80211_ATTR_IE_ASSOC_RESP
,
4422 wpabuf_len(params
->assocresp_ies
),
4423 wpabuf_head(params
->assocresp_ies
));
4426 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4428 wpa_printf(MSG_DEBUG
, "nl80211: Beacon set failed: %d (%s)",
4429 ret
, strerror(-ret
));
4431 bss
->beacon_set
= 1;
4432 ret
= nl80211_set_ap_isolate(bss
, params
->isolate
);
4433 if (!params
->isolate
&& ret
) {
4434 wpa_printf(MSG_DEBUG
, "nl80211: Ignore AP isolation "
4435 "configuration error since isolation is "
4440 nl80211_set_bss(bss
, params
->cts_protect
, params
->preamble
,
4441 params
->short_slot_time
, params
->ht_opmode
);
4449 static int wpa_driver_nl80211_set_freq(struct wpa_driver_nl80211_data
*drv
,
4450 int freq
, int ht_enabled
,
4451 int sec_channel_offset
)
4456 wpa_printf(MSG_DEBUG
, "nl80211: Set freq %d (ht_enabled=%d "
4457 "sec_channel_offset=%d)",
4458 freq
, ht_enabled
, sec_channel_offset
);
4459 msg
= nlmsg_alloc();
4463 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
4465 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4466 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
4468 switch (sec_channel_offset
) {
4470 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
4471 NL80211_CHAN_HT40MINUS
);
4474 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
4475 NL80211_CHAN_HT40PLUS
);
4478 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_CHANNEL_TYPE
,
4484 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4487 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set channel (freq=%d): "
4488 "%d (%s)", freq
, ret
, strerror(-ret
));
4494 static u32
sta_flags_nl80211(int flags
)
4498 if (flags
& WPA_STA_AUTHORIZED
)
4499 f
|= BIT(NL80211_STA_FLAG_AUTHORIZED
);
4500 if (flags
& WPA_STA_WMM
)
4501 f
|= BIT(NL80211_STA_FLAG_WME
);
4502 if (flags
& WPA_STA_SHORT_PREAMBLE
)
4503 f
|= BIT(NL80211_STA_FLAG_SHORT_PREAMBLE
);
4504 if (flags
& WPA_STA_MFP
)
4505 f
|= BIT(NL80211_STA_FLAG_MFP
);
4506 if (flags
& WPA_STA_TDLS_PEER
)
4507 f
|= BIT(NL80211_STA_FLAG_TDLS_PEER
);
4513 static int wpa_driver_nl80211_sta_add(void *priv
,
4514 struct hostapd_sta_add_params
*params
)
4516 struct i802_bss
*bss
= priv
;
4517 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4519 struct nl80211_sta_flag_update upd
;
4522 if ((params
->flags
& WPA_STA_TDLS_PEER
) &&
4523 !(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
4526 msg
= nlmsg_alloc();
4530 nl80211_cmd(drv
, msg
, 0, params
->set
? NL80211_CMD_SET_STATION
:
4531 NL80211_CMD_NEW_STATION
);
4533 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
4534 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->addr
);
4535 NLA_PUT(msg
, NL80211_ATTR_STA_SUPPORTED_RATES
, params
->supp_rates_len
,
4536 params
->supp_rates
);
4538 NLA_PUT_U16(msg
, NL80211_ATTR_STA_AID
, params
->aid
);
4539 NLA_PUT_U16(msg
, NL80211_ATTR_STA_LISTEN_INTERVAL
,
4540 params
->listen_interval
);
4542 if (params
->ht_capabilities
) {
4543 NLA_PUT(msg
, NL80211_ATTR_HT_CAPABILITY
,
4544 sizeof(*params
->ht_capabilities
),
4545 params
->ht_capabilities
);
4548 os_memset(&upd
, 0, sizeof(upd
));
4549 upd
.mask
= sta_flags_nl80211(params
->flags
);
4551 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
4553 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4555 wpa_printf(MSG_DEBUG
, "nl80211: NL80211_CMD_%s_STATION "
4556 "result: %d (%s)", params
->set
? "SET" : "NEW", ret
,
4565 static int wpa_driver_nl80211_sta_remove(void *priv
, const u8
*addr
)
4567 struct i802_bss
*bss
= priv
;
4568 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
4572 msg
= nlmsg_alloc();
4576 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_STATION
);
4578 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
4579 if_nametoindex(bss
->ifname
));
4580 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
4582 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4591 static void nl80211_remove_iface(struct wpa_driver_nl80211_data
*drv
,
4596 wpa_printf(MSG_DEBUG
, "nl80211: Remove interface ifindex=%d", ifidx
);
4598 /* stop listening for EAPOL on this interface */
4599 del_ifidx(drv
, ifidx
);
4601 msg
= nlmsg_alloc();
4603 goto nla_put_failure
;
4605 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_INTERFACE
);
4606 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifidx
);
4608 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
4611 wpa_printf(MSG_ERROR
, "Failed to remove interface (ifidx=%d)", ifidx
);
4615 static const char * nl80211_iftype_str(enum nl80211_iftype mode
)
4618 case NL80211_IFTYPE_ADHOC
:
4620 case NL80211_IFTYPE_STATION
:
4622 case NL80211_IFTYPE_AP
:
4624 case NL80211_IFTYPE_MONITOR
:
4626 case NL80211_IFTYPE_P2P_CLIENT
:
4627 return "P2P_CLIENT";
4628 case NL80211_IFTYPE_P2P_GO
:
4636 static int nl80211_create_iface_once(struct wpa_driver_nl80211_data
*drv
,
4638 enum nl80211_iftype iftype
,
4639 const u8
*addr
, int wds
)
4641 struct nl_msg
*msg
, *flags
= NULL
;
4645 wpa_printf(MSG_DEBUG
, "nl80211: Create interface iftype %d (%s)",
4646 iftype
, nl80211_iftype_str(iftype
));
4648 msg
= nlmsg_alloc();
4652 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_NEW_INTERFACE
);
4653 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
4654 NLA_PUT_STRING(msg
, NL80211_ATTR_IFNAME
, ifname
);
4655 NLA_PUT_U32(msg
, NL80211_ATTR_IFTYPE
, iftype
);
4657 if (iftype
== NL80211_IFTYPE_MONITOR
) {
4660 flags
= nlmsg_alloc();
4662 goto nla_put_failure
;
4664 NLA_PUT_FLAG(flags
, NL80211_MNTR_FLAG_COOK_FRAMES
);
4666 err
= nla_put_nested(msg
, NL80211_ATTR_MNTR_FLAGS
, flags
);
4671 goto nla_put_failure
;
4673 NLA_PUT_U8(msg
, NL80211_ATTR_4ADDR
, wds
);
4676 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
4679 wpa_printf(MSG_ERROR
, "Failed to create interface %s: %d (%s)",
4680 ifname
, ret
, strerror(-ret
));
4684 ifidx
= if_nametoindex(ifname
);
4685 wpa_printf(MSG_DEBUG
, "nl80211: New interface %s created: ifindex=%d",
4691 /* start listening for EAPOL on this interface */
4692 add_ifidx(drv
, ifidx
);
4694 if (addr
&& iftype
!= NL80211_IFTYPE_MONITOR
&&
4695 linux_set_ifhwaddr(drv
->global
->ioctl_sock
, ifname
, addr
)) {
4696 nl80211_remove_iface(drv
, ifidx
);
4704 static int nl80211_create_iface(struct wpa_driver_nl80211_data
*drv
,
4705 const char *ifname
, enum nl80211_iftype iftype
,
4706 const u8
*addr
, int wds
)
4710 ret
= nl80211_create_iface_once(drv
, ifname
, iftype
, addr
, wds
);
4712 /* if error occurred and interface exists already */
4713 if (ret
== -ENFILE
&& if_nametoindex(ifname
)) {
4714 wpa_printf(MSG_INFO
, "Try to remove and re-create %s", ifname
);
4716 /* Try to remove the interface that was already there. */
4717 nl80211_remove_iface(drv
, if_nametoindex(ifname
));
4719 /* Try to create the interface again */
4720 ret
= nl80211_create_iface_once(drv
, ifname
, iftype
, addr
,
4724 if (ret
>= 0 && is_p2p_interface(iftype
))
4725 nl80211_disable_11b_rates(drv
, ret
, 1);
4731 static void handle_tx_callback(void *ctx
, u8
*buf
, size_t len
, int ok
)
4733 struct ieee80211_hdr
*hdr
;
4735 union wpa_event_data event
;
4737 hdr
= (struct ieee80211_hdr
*) buf
;
4738 fc
= le_to_host16(hdr
->frame_control
);
4740 os_memset(&event
, 0, sizeof(event
));
4741 event
.tx_status
.type
= WLAN_FC_GET_TYPE(fc
);
4742 event
.tx_status
.stype
= WLAN_FC_GET_STYPE(fc
);
4743 event
.tx_status
.dst
= hdr
->addr1
;
4744 event
.tx_status
.data
= buf
;
4745 event
.tx_status
.data_len
= len
;
4746 event
.tx_status
.ack
= ok
;
4747 wpa_supplicant_event(ctx
, EVENT_TX_STATUS
, &event
);
4751 static void from_unknown_sta(struct wpa_driver_nl80211_data
*drv
,
4752 u8
*buf
, size_t len
)
4754 struct ieee80211_hdr
*hdr
= (void *)buf
;
4756 union wpa_event_data event
;
4758 if (len
< sizeof(*hdr
))
4761 fc
= le_to_host16(hdr
->frame_control
);
4763 os_memset(&event
, 0, sizeof(event
));
4764 event
.rx_from_unknown
.bssid
= get_hdr_bssid(hdr
, len
);
4765 event
.rx_from_unknown
.addr
= hdr
->addr2
;
4766 event
.rx_from_unknown
.wds
= (fc
& (WLAN_FC_FROMDS
| WLAN_FC_TODS
)) ==
4767 (WLAN_FC_FROMDS
| WLAN_FC_TODS
);
4768 wpa_supplicant_event(drv
->ctx
, EVENT_RX_FROM_UNKNOWN
, &event
);
4772 static void handle_frame(struct wpa_driver_nl80211_data
*drv
,
4773 u8
*buf
, size_t len
, int datarate
, int ssi_signal
)
4775 struct ieee80211_hdr
*hdr
;
4777 union wpa_event_data event
;
4779 hdr
= (struct ieee80211_hdr
*) buf
;
4780 fc
= le_to_host16(hdr
->frame_control
);
4782 switch (WLAN_FC_GET_TYPE(fc
)) {
4783 case WLAN_FC_TYPE_MGMT
:
4784 os_memset(&event
, 0, sizeof(event
));
4785 event
.rx_mgmt
.frame
= buf
;
4786 event
.rx_mgmt
.frame_len
= len
;
4787 event
.rx_mgmt
.datarate
= datarate
;
4788 event
.rx_mgmt
.ssi_signal
= ssi_signal
;
4789 wpa_supplicant_event(drv
->ctx
, EVENT_RX_MGMT
, &event
);
4791 case WLAN_FC_TYPE_CTRL
:
4792 /* can only get here with PS-Poll frames */
4793 wpa_printf(MSG_DEBUG
, "CTRL");
4794 from_unknown_sta(drv
, buf
, len
);
4796 case WLAN_FC_TYPE_DATA
:
4797 from_unknown_sta(drv
, buf
, len
);
4803 static void handle_monitor_read(int sock
, void *eloop_ctx
, void *sock_ctx
)
4805 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
4807 unsigned char buf
[3000];
4808 struct ieee80211_radiotap_iterator iter
;
4810 int datarate
= 0, ssi_signal
= 0;
4811 int injected
= 0, failed
= 0, rxflags
= 0;
4813 len
= recv(sock
, buf
, sizeof(buf
), 0);
4819 if (ieee80211_radiotap_iterator_init(&iter
, (void*)buf
, len
)) {
4820 printf("received invalid radiotap frame\n");
4825 ret
= ieee80211_radiotap_iterator_next(&iter
);
4829 printf("received invalid radiotap frame (%d)\n", ret
);
4832 switch (iter
.this_arg_index
) {
4833 case IEEE80211_RADIOTAP_FLAGS
:
4834 if (*iter
.this_arg
& IEEE80211_RADIOTAP_F_FCS
)
4837 case IEEE80211_RADIOTAP_RX_FLAGS
:
4840 case IEEE80211_RADIOTAP_TX_FLAGS
:
4842 failed
= le_to_host16((*(uint16_t *) iter
.this_arg
)) &
4843 IEEE80211_RADIOTAP_F_TX_FAIL
;
4845 case IEEE80211_RADIOTAP_DATA_RETRIES
:
4847 case IEEE80211_RADIOTAP_CHANNEL
:
4848 /* TODO: convert from freq/flags to channel number */
4850 case IEEE80211_RADIOTAP_RATE
:
4851 datarate
= *iter
.this_arg
* 5;
4853 case IEEE80211_RADIOTAP_DB_ANTSIGNAL
:
4854 ssi_signal
= *iter
.this_arg
;
4859 if (rxflags
&& injected
)
4863 handle_frame(drv
, buf
+ iter
.max_length
,
4864 len
- iter
.max_length
, datarate
, ssi_signal
);
4866 handle_tx_callback(drv
->ctx
, buf
+ iter
.max_length
,
4867 len
- iter
.max_length
, !failed
);
4872 * we post-process the filter code later and rewrite
4873 * this to the offset to the last instruction
4878 static struct sock_filter msock_filter_insns
[] = {
4880 * do a little-endian load of the radiotap length field
4882 /* load lower byte into A */
4883 BPF_STMT(BPF_LD
| BPF_B
| BPF_ABS
, 2),
4884 /* put it into X (== index register) */
4885 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
4886 /* load upper byte into A */
4887 BPF_STMT(BPF_LD
| BPF_B
| BPF_ABS
, 3),
4888 /* left-shift it by 8 */
4889 BPF_STMT(BPF_ALU
| BPF_LSH
| BPF_K
, 8),
4891 BPF_STMT(BPF_ALU
| BPF_OR
| BPF_X
, 0),
4892 /* put result into X */
4893 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
4896 * Allow management frames through, this also gives us those
4897 * management frames that we sent ourselves with status
4899 /* load the lower byte of the IEEE 802.11 frame control field */
4900 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
4901 /* mask off frame type and version */
4902 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0xF),
4903 /* accept frame if it's both 0, fall through otherwise */
4904 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0, PASS
, 0),
4907 * TODO: add a bit to radiotap RX flags that indicates
4908 * that the sending station is not associated, then
4909 * add a filter here that filters on our DA and that flag
4910 * to allow us to deauth frames to that bad station.
4912 * For now allow all To DS data frames through.
4914 /* load the IEEE 802.11 frame control field */
4915 BPF_STMT(BPF_LD
| BPF_H
| BPF_IND
, 0),
4916 /* mask off frame type, version and DS status */
4917 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x0F03),
4918 /* accept frame if version 0, type 2 and To DS, fall through otherwise
4920 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0x0801, PASS
, 0),
4924 * drop non-data frames
4926 /* load the lower byte of the frame control field */
4927 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
4928 /* mask off QoS bit */
4929 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x0c),
4930 /* drop non-data frames */
4931 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 8, 0, FAIL
),
4933 /* load the upper byte of the frame control field */
4934 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 1),
4935 /* mask off toDS/fromDS */
4936 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x03),
4937 /* accept WDS frames */
4938 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 3, PASS
, 0),
4941 * add header length to index
4943 /* load the lower byte of the frame control field */
4944 BPF_STMT(BPF_LD
| BPF_B
| BPF_IND
, 0),
4945 /* mask off QoS bit */
4946 BPF_STMT(BPF_ALU
| BPF_AND
| BPF_K
, 0x80),
4947 /* right shift it by 6 to give 0 or 2 */
4948 BPF_STMT(BPF_ALU
| BPF_RSH
| BPF_K
, 6),
4949 /* add data frame header length */
4950 BPF_STMT(BPF_ALU
| BPF_ADD
| BPF_K
, 24),
4951 /* add index, was start of 802.11 header */
4952 BPF_STMT(BPF_ALU
| BPF_ADD
| BPF_X
, 0),
4953 /* move to index, now start of LL header */
4954 BPF_STMT(BPF_MISC
| BPF_TAX
, 0),
4957 * Accept empty data frames, we use those for
4960 BPF_STMT(BPF_LD
| BPF_W
| BPF_LEN
, 0),
4961 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_X
, 0, PASS
, 0),
4964 * Accept EAPOL frames
4966 BPF_STMT(BPF_LD
| BPF_W
| BPF_IND
, 0),
4967 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0xAAAA0300, 0, FAIL
),
4968 BPF_STMT(BPF_LD
| BPF_W
| BPF_IND
, 4),
4969 BPF_JUMP(BPF_JMP
| BPF_JEQ
| BPF_K
, 0x0000888E, PASS
, FAIL
),
4971 /* keep these last two statements or change the code below */
4972 /* return 0 == "DROP" */
4973 BPF_STMT(BPF_RET
| BPF_K
, 0),
4974 /* return ~0 == "keep all" */
4975 BPF_STMT(BPF_RET
| BPF_K
, ~0),
4978 static struct sock_fprog msock_filter
= {
4979 .len
= sizeof(msock_filter_insns
)/sizeof(msock_filter_insns
[0]),
4980 .filter
= msock_filter_insns
,
4984 static int add_monitor_filter(int s
)
4988 /* rewrite all PASS/FAIL jump offsets */
4989 for (idx
= 0; idx
< msock_filter
.len
; idx
++) {
4990 struct sock_filter
*insn
= &msock_filter_insns
[idx
];
4992 if (BPF_CLASS(insn
->code
) == BPF_JMP
) {
4993 if (insn
->code
== (BPF_JMP
|BPF_JA
)) {
4994 if (insn
->k
== PASS
)
4995 insn
->k
= msock_filter
.len
- idx
- 2;
4996 else if (insn
->k
== FAIL
)
4997 insn
->k
= msock_filter
.len
- idx
- 3;
5000 if (insn
->jt
== PASS
)
5001 insn
->jt
= msock_filter
.len
- idx
- 2;
5002 else if (insn
->jt
== FAIL
)
5003 insn
->jt
= msock_filter
.len
- idx
- 3;
5005 if (insn
->jf
== PASS
)
5006 insn
->jf
= msock_filter
.len
- idx
- 2;
5007 else if (insn
->jf
== FAIL
)
5008 insn
->jf
= msock_filter
.len
- idx
- 3;
5012 if (setsockopt(s
, SOL_SOCKET
, SO_ATTACH_FILTER
,
5013 &msock_filter
, sizeof(msock_filter
))) {
5014 perror("SO_ATTACH_FILTER");
5022 static void nl80211_remove_monitor_interface(
5023 struct wpa_driver_nl80211_data
*drv
)
5025 if (drv
->monitor_ifidx
>= 0) {
5026 nl80211_remove_iface(drv
, drv
->monitor_ifidx
);
5027 drv
->monitor_ifidx
= -1;
5029 if (drv
->monitor_sock
>= 0) {
5030 eloop_unregister_read_sock(drv
->monitor_sock
);
5031 close(drv
->monitor_sock
);
5032 drv
->monitor_sock
= -1;
5038 nl80211_create_monitor_interface(struct wpa_driver_nl80211_data
*drv
)
5041 struct sockaddr_ll ll
;
5045 if (os_strncmp(drv
->first_bss
.ifname
, "p2p-", 4) == 0) {
5047 * P2P interface name is of the format p2p-%s-%d. For monitor
5048 * interface name corresponding to P2P GO, replace "p2p-" with
5049 * "mon-" to retain the same interface name length and to
5050 * indicate that it is a monitor interface.
5052 snprintf(buf
, IFNAMSIZ
, "mon-%s", drv
->first_bss
.ifname
+ 4);
5054 /* Non-P2P interface with AP functionality. */
5055 snprintf(buf
, IFNAMSIZ
, "mon.%s", drv
->first_bss
.ifname
);
5058 buf
[IFNAMSIZ
- 1] = '\0';
5060 drv
->monitor_ifidx
=
5061 nl80211_create_iface(drv
, buf
, NL80211_IFTYPE_MONITOR
, NULL
,
5064 if (drv
->monitor_ifidx
== -EOPNOTSUPP
) {
5065 wpa_printf(MSG_DEBUG
, "nl80211: Driver does not support "
5066 "monitor interface type - try to run without it");
5067 drv
->no_monitor_iface_capab
= 1;
5070 if (drv
->monitor_ifidx
< 0)
5073 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, buf
, 1))
5076 memset(&ll
, 0, sizeof(ll
));
5077 ll
.sll_family
= AF_PACKET
;
5078 ll
.sll_ifindex
= drv
->monitor_ifidx
;
5079 drv
->monitor_sock
= socket(PF_PACKET
, SOCK_RAW
, htons(ETH_P_ALL
));
5080 if (drv
->monitor_sock
< 0) {
5081 perror("socket[PF_PACKET,SOCK_RAW]");
5085 if (add_monitor_filter(drv
->monitor_sock
)) {
5086 wpa_printf(MSG_INFO
, "Failed to set socket filter for monitor "
5087 "interface; do filtering in user space");
5088 /* This works, but will cost in performance. */
5091 if (bind(drv
->monitor_sock
, (struct sockaddr
*) &ll
, sizeof(ll
)) < 0) {
5092 perror("monitor socket bind");
5096 optlen
= sizeof(optval
);
5099 (drv
->monitor_sock
, SOL_SOCKET
, SO_PRIORITY
, &optval
, optlen
)) {
5100 perror("Failed to set socket priority");
5104 if (eloop_register_read_sock(drv
->monitor_sock
, handle_monitor_read
,
5106 printf("Could not register monitor read socket\n");
5112 nl80211_remove_monitor_interface(drv
);
5118 static int nl80211_send_eapol_data(struct i802_bss
*bss
,
5119 const u8
*addr
, const u8
*data
,
5120 size_t data_len
, const u8
*own_addr
)
5122 if (bss
->drv
->l2
== NULL
) {
5123 wpa_printf(MSG_DEBUG
, "nl80211: No l2_packet to send EAPOL");
5127 if (l2_packet_send(bss
->drv
->l2
, addr
, ETH_P_EAPOL
, data
, data_len
) <
5132 #endif /* CONFIG_AP */
5135 static const u8 rfc1042_header
[6] = { 0xaa, 0xaa, 0x03, 0x00, 0x00, 0x00 };
5137 static int wpa_driver_nl80211_hapd_send_eapol(
5138 void *priv
, const u8
*addr
, const u8
*data
,
5139 size_t data_len
, int encrypt
, const u8
*own_addr
, u32 flags
)
5141 struct i802_bss
*bss
= priv
;
5142 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5143 struct ieee80211_hdr
*hdr
;
5147 int qos
= flags
& WPA_STA_WMM
;
5150 if (drv
->no_monitor_iface_capab
)
5151 return nl80211_send_eapol_data(bss
, addr
, data
, data_len
,
5153 #endif /* CONFIG_AP */
5155 len
= sizeof(*hdr
) + (qos
? 2 : 0) + sizeof(rfc1042_header
) + 2 +
5157 hdr
= os_zalloc(len
);
5159 printf("malloc() failed for i802_send_data(len=%lu)\n",
5160 (unsigned long) len
);
5164 hdr
->frame_control
=
5165 IEEE80211_FC(WLAN_FC_TYPE_DATA
, WLAN_FC_STYPE_DATA
);
5166 hdr
->frame_control
|= host_to_le16(WLAN_FC_FROMDS
);
5168 hdr
->frame_control
|= host_to_le16(WLAN_FC_ISWEP
);
5170 hdr
->frame_control
|=
5171 host_to_le16(WLAN_FC_STYPE_QOS_DATA
<< 4);
5174 memcpy(hdr
->IEEE80211_DA_FROMDS
, addr
, ETH_ALEN
);
5175 memcpy(hdr
->IEEE80211_BSSID_FROMDS
, own_addr
, ETH_ALEN
);
5176 memcpy(hdr
->IEEE80211_SA_FROMDS
, own_addr
, ETH_ALEN
);
5177 pos
= (u8
*) (hdr
+ 1);
5180 /* add an empty QoS header if needed */
5186 memcpy(pos
, rfc1042_header
, sizeof(rfc1042_header
));
5187 pos
+= sizeof(rfc1042_header
);
5188 WPA_PUT_BE16(pos
, ETH_P_PAE
);
5190 memcpy(pos
, data
, data_len
);
5192 res
= wpa_driver_nl80211_send_frame(drv
, (u8
*) hdr
, len
, encrypt
);
5194 wpa_printf(MSG_ERROR
, "i802_send_eapol - packet len: %lu - "
5196 (unsigned long) len
, errno
, strerror(errno
));
5204 static int wpa_driver_nl80211_sta_set_flags(void *priv
, const u8
*addr
,
5206 int flags_or
, int flags_and
)
5208 struct i802_bss
*bss
= priv
;
5209 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5210 struct nl_msg
*msg
, *flags
= NULL
;
5211 struct nl80211_sta_flag_update upd
;
5213 msg
= nlmsg_alloc();
5217 flags
= nlmsg_alloc();
5223 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
5225 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
5226 if_nametoindex(bss
->ifname
));
5227 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
5230 * Backwards compatibility version using NL80211_ATTR_STA_FLAGS. This
5231 * can be removed eventually.
5233 if (total_flags
& WPA_STA_AUTHORIZED
)
5234 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_AUTHORIZED
);
5236 if (total_flags
& WPA_STA_WMM
)
5237 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_WME
);
5239 if (total_flags
& WPA_STA_SHORT_PREAMBLE
)
5240 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_SHORT_PREAMBLE
);
5242 if (total_flags
& WPA_STA_MFP
)
5243 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_MFP
);
5245 if (total_flags
& WPA_STA_TDLS_PEER
)
5246 NLA_PUT_FLAG(flags
, NL80211_STA_FLAG_TDLS_PEER
);
5248 if (nla_put_nested(msg
, NL80211_ATTR_STA_FLAGS
, flags
))
5249 goto nla_put_failure
;
5251 os_memset(&upd
, 0, sizeof(upd
));
5252 upd
.mask
= sta_flags_nl80211(flags_or
| ~flags_and
);
5253 upd
.set
= sta_flags_nl80211(flags_or
);
5254 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
5258 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5265 static int wpa_driver_nl80211_ap(struct wpa_driver_nl80211_data
*drv
,
5266 struct wpa_driver_associate_params
*params
)
5268 enum nl80211_iftype nlmode
;
5271 wpa_printf(MSG_DEBUG
, "nl80211: Setup AP operations for P2P "
5273 nlmode
= NL80211_IFTYPE_P2P_GO
;
5275 nlmode
= NL80211_IFTYPE_AP
;
5277 if (wpa_driver_nl80211_set_mode(&drv
->first_bss
, nlmode
) ||
5278 wpa_driver_nl80211_set_freq(drv
, params
->freq
, 0, 0)) {
5279 nl80211_remove_monitor_interface(drv
);
5283 if (drv
->no_monitor_iface_capab
) {
5284 if (wpa_driver_nl80211_probe_req_report(&drv
->first_bss
, 1) < 0)
5286 wpa_printf(MSG_DEBUG
, "nl80211: Failed to enable "
5287 "Probe Request frame reporting in AP mode");
5288 /* Try to survive without this */
5292 drv
->ap_oper_freq
= params
->freq
;
5298 static int nl80211_leave_ibss(struct wpa_driver_nl80211_data
*drv
)
5303 msg
= nlmsg_alloc();
5307 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_LEAVE_IBSS
);
5308 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5309 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5312 wpa_printf(MSG_DEBUG
, "nl80211: Leave IBSS failed: ret=%d "
5313 "(%s)", ret
, strerror(-ret
));
5314 goto nla_put_failure
;
5318 wpa_printf(MSG_DEBUG
, "nl80211: Leave IBSS request sent successfully");
5326 static int wpa_driver_nl80211_ibss(struct wpa_driver_nl80211_data
*drv
,
5327 struct wpa_driver_associate_params
*params
)
5333 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS (ifindex=%d)", drv
->ifindex
);
5335 if (wpa_driver_nl80211_set_mode(&drv
->first_bss
,
5336 NL80211_IFTYPE_ADHOC
)) {
5337 wpa_printf(MSG_INFO
, "nl80211: Failed to set interface into "
5343 msg
= nlmsg_alloc();
5347 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_JOIN_IBSS
);
5348 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5350 if (params
->ssid
== NULL
|| params
->ssid_len
> sizeof(drv
->ssid
))
5351 goto nla_put_failure
;
5353 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
5354 params
->ssid
, params
->ssid_len
);
5355 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
5357 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
5358 drv
->ssid_len
= params
->ssid_len
;
5360 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
5361 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
5363 ret
= nl80211_set_conn_keys(params
, msg
);
5365 goto nla_put_failure
;
5367 if (params
->wpa_ie
) {
5368 wpa_hexdump(MSG_DEBUG
,
5369 " * Extra IEs for Beacon/Probe Response frames",
5370 params
->wpa_ie
, params
->wpa_ie_len
);
5371 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
5375 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5378 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS failed: ret=%d (%s)",
5379 ret
, strerror(-ret
));
5381 if (ret
== -EALREADY
&& count
== 1) {
5382 wpa_printf(MSG_DEBUG
, "nl80211: Retry IBSS join after "
5384 nl80211_leave_ibss(drv
);
5389 goto nla_put_failure
;
5392 wpa_printf(MSG_DEBUG
, "nl80211: Join IBSS request sent successfully");
5400 static unsigned int nl80211_get_assoc_bssid(struct wpa_driver_nl80211_data
*drv
,
5405 struct nl80211_bss_info_arg arg
;
5407 os_memset(&arg
, 0, sizeof(arg
));
5408 msg
= nlmsg_alloc();
5410 goto nla_put_failure
;
5412 nl80211_cmd(drv
, msg
, NLM_F_DUMP
, NL80211_CMD_GET_SCAN
);
5413 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5416 ret
= send_and_recv_msgs(drv
, msg
, bss_info_handler
, &arg
);
5419 if (is_zero_ether_addr(arg
.assoc_bssid
))
5421 os_memcpy(bssid
, arg
.assoc_bssid
, ETH_ALEN
);
5424 wpa_printf(MSG_DEBUG
, "nl80211: Scan result fetch failed: ret=%d "
5425 "(%s)", ret
, strerror(-ret
));
5428 return drv
->assoc_freq
;
5432 static int nl80211_disconnect(struct wpa_driver_nl80211_data
*drv
,
5437 if (bssid
== NULL
) {
5438 int res
= nl80211_get_assoc_bssid(drv
, addr
);
5444 return wpa_driver_nl80211_disconnect(drv
, bssid
,
5445 WLAN_REASON_PREV_AUTH_NOT_VALID
);
5449 static int wpa_driver_nl80211_connect(
5450 struct wpa_driver_nl80211_data
*drv
,
5451 struct wpa_driver_associate_params
*params
)
5454 enum nl80211_auth_type type
;
5458 msg
= nlmsg_alloc();
5462 wpa_printf(MSG_DEBUG
, "nl80211: Connect (ifindex=%d)", drv
->ifindex
);
5463 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_CONNECT
);
5465 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5466 if (params
->bssid
) {
5467 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
5468 MAC2STR(params
->bssid
));
5469 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
5472 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
5473 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
5476 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
5477 params
->ssid
, params
->ssid_len
);
5478 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
5480 if (params
->ssid_len
> sizeof(drv
->ssid
))
5481 goto nla_put_failure
;
5482 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
5483 drv
->ssid_len
= params
->ssid_len
;
5485 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->wpa_ie
, params
->wpa_ie_len
);
5487 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
5491 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
5493 if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
5495 if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
5498 wpa_printf(MSG_DEBUG
, " * Leave out Auth Type for automatic "
5500 goto skip_auth_type
;
5503 if (params
->auth_alg
& WPA_AUTH_ALG_OPEN
)
5504 type
= NL80211_AUTHTYPE_OPEN_SYSTEM
;
5505 else if (params
->auth_alg
& WPA_AUTH_ALG_SHARED
)
5506 type
= NL80211_AUTHTYPE_SHARED_KEY
;
5507 else if (params
->auth_alg
& WPA_AUTH_ALG_LEAP
)
5508 type
= NL80211_AUTHTYPE_NETWORK_EAP
;
5509 else if (params
->auth_alg
& WPA_AUTH_ALG_FT
)
5510 type
= NL80211_AUTHTYPE_FT
;
5512 goto nla_put_failure
;
5514 wpa_printf(MSG_DEBUG
, " * Auth Type %d", type
);
5515 NLA_PUT_U32(msg
, NL80211_ATTR_AUTH_TYPE
, type
);
5518 if (params
->wpa_proto
) {
5519 enum nl80211_wpa_versions ver
= 0;
5521 if (params
->wpa_proto
& WPA_PROTO_WPA
)
5522 ver
|= NL80211_WPA_VERSION_1
;
5523 if (params
->wpa_proto
& WPA_PROTO_RSN
)
5524 ver
|= NL80211_WPA_VERSION_2
;
5526 wpa_printf(MSG_DEBUG
, " * WPA Versions 0x%x", ver
);
5527 NLA_PUT_U32(msg
, NL80211_ATTR_WPA_VERSIONS
, ver
);
5530 if (params
->pairwise_suite
!= CIPHER_NONE
) {
5533 switch (params
->pairwise_suite
) {
5535 cipher
= WLAN_CIPHER_SUITE_WEP40
;
5538 cipher
= WLAN_CIPHER_SUITE_WEP104
;
5541 cipher
= WLAN_CIPHER_SUITE_CCMP
;
5545 cipher
= WLAN_CIPHER_SUITE_TKIP
;
5548 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
, cipher
);
5551 if (params
->group_suite
!= CIPHER_NONE
) {
5554 switch (params
->group_suite
) {
5556 cipher
= WLAN_CIPHER_SUITE_WEP40
;
5559 cipher
= WLAN_CIPHER_SUITE_WEP104
;
5562 cipher
= WLAN_CIPHER_SUITE_CCMP
;
5566 cipher
= WLAN_CIPHER_SUITE_TKIP
;
5569 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
, cipher
);
5572 if (params
->key_mgmt_suite
== KEY_MGMT_802_1X
||
5573 params
->key_mgmt_suite
== KEY_MGMT_PSK
) {
5574 int mgmt
= WLAN_AKM_SUITE_PSK
;
5576 switch (params
->key_mgmt_suite
) {
5577 case KEY_MGMT_802_1X
:
5578 mgmt
= WLAN_AKM_SUITE_8021X
;
5582 mgmt
= WLAN_AKM_SUITE_PSK
;
5585 NLA_PUT_U32(msg
, NL80211_ATTR_AKM_SUITES
, mgmt
);
5588 ret
= nl80211_set_conn_keys(params
, msg
);
5590 goto nla_put_failure
;
5592 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5595 wpa_printf(MSG_DEBUG
, "nl80211: MLME connect failed: ret=%d "
5596 "(%s)", ret
, strerror(-ret
));
5598 * cfg80211 does not currently accept new connection if we are
5599 * already connected. As a workaround, force disconnection and
5600 * try again once the driver indicates it completed
5603 if (ret
== -EALREADY
)
5604 nl80211_disconnect(drv
, params
->bssid
);
5605 goto nla_put_failure
;
5608 wpa_printf(MSG_DEBUG
, "nl80211: Connect request send successfully");
5617 static int wpa_driver_nl80211_associate(
5618 void *priv
, struct wpa_driver_associate_params
*params
)
5620 struct i802_bss
*bss
= priv
;
5621 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5625 if (params
->mode
== IEEE80211_MODE_AP
)
5626 return wpa_driver_nl80211_ap(drv
, params
);
5628 if (params
->mode
== IEEE80211_MODE_IBSS
)
5629 return wpa_driver_nl80211_ibss(drv
, params
);
5631 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_SME
)) {
5632 enum nl80211_iftype nlmode
= params
->p2p
?
5633 NL80211_IFTYPE_P2P_CLIENT
: NL80211_IFTYPE_STATION
;
5635 if (wpa_driver_nl80211_set_mode(priv
, nlmode
) < 0)
5637 return wpa_driver_nl80211_connect(drv
, params
);
5640 drv
->associated
= 0;
5642 msg
= nlmsg_alloc();
5646 wpa_printf(MSG_DEBUG
, "nl80211: Associate (ifindex=%d)",
5648 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_ASSOCIATE
);
5650 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
5651 if (params
->bssid
) {
5652 wpa_printf(MSG_DEBUG
, " * bssid=" MACSTR
,
5653 MAC2STR(params
->bssid
));
5654 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, params
->bssid
);
5657 wpa_printf(MSG_DEBUG
, " * freq=%d", params
->freq
);
5658 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, params
->freq
);
5659 drv
->assoc_freq
= params
->freq
;
5661 drv
->assoc_freq
= 0;
5663 wpa_hexdump_ascii(MSG_DEBUG
, " * SSID",
5664 params
->ssid
, params
->ssid_len
);
5665 NLA_PUT(msg
, NL80211_ATTR_SSID
, params
->ssid_len
,
5667 if (params
->ssid_len
> sizeof(drv
->ssid
))
5668 goto nla_put_failure
;
5669 os_memcpy(drv
->ssid
, params
->ssid
, params
->ssid_len
);
5670 drv
->ssid_len
= params
->ssid_len
;
5672 wpa_hexdump(MSG_DEBUG
, " * IEs", params
->wpa_ie
, params
->wpa_ie_len
);
5674 NLA_PUT(msg
, NL80211_ATTR_IE
, params
->wpa_ie_len
,
5677 if (params
->pairwise_suite
!= CIPHER_NONE
) {
5680 switch (params
->pairwise_suite
) {
5682 cipher
= WLAN_CIPHER_SUITE_WEP40
;
5685 cipher
= WLAN_CIPHER_SUITE_WEP104
;
5688 cipher
= WLAN_CIPHER_SUITE_CCMP
;
5692 cipher
= WLAN_CIPHER_SUITE_TKIP
;
5695 wpa_printf(MSG_DEBUG
, " * pairwise=0x%x", cipher
);
5696 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITES_PAIRWISE
, cipher
);
5699 if (params
->group_suite
!= CIPHER_NONE
) {
5702 switch (params
->group_suite
) {
5704 cipher
= WLAN_CIPHER_SUITE_WEP40
;
5707 cipher
= WLAN_CIPHER_SUITE_WEP104
;
5710 cipher
= WLAN_CIPHER_SUITE_CCMP
;
5714 cipher
= WLAN_CIPHER_SUITE_TKIP
;
5717 wpa_printf(MSG_DEBUG
, " * group=0x%x", cipher
);
5718 NLA_PUT_U32(msg
, NL80211_ATTR_CIPHER_SUITE_GROUP
, cipher
);
5721 #ifdef CONFIG_IEEE80211W
5722 if (params
->mgmt_frame_protection
== MGMT_FRAME_PROTECTION_REQUIRED
)
5723 NLA_PUT_U32(msg
, NL80211_ATTR_USE_MFP
, NL80211_MFP_REQUIRED
);
5724 #endif /* CONFIG_IEEE80211W */
5726 NLA_PUT_FLAG(msg
, NL80211_ATTR_CONTROL_PORT
);
5728 if (params
->prev_bssid
) {
5729 wpa_printf(MSG_DEBUG
, " * prev_bssid=" MACSTR
,
5730 MAC2STR(params
->prev_bssid
));
5731 NLA_PUT(msg
, NL80211_ATTR_PREV_BSSID
, ETH_ALEN
,
5732 params
->prev_bssid
);
5736 wpa_printf(MSG_DEBUG
, " * P2P group");
5738 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5741 wpa_printf(MSG_DEBUG
, "nl80211: MLME command failed: ret=%d "
5742 "(%s)", ret
, strerror(-ret
));
5743 nl80211_dump_scan(drv
);
5744 goto nla_put_failure
;
5747 wpa_printf(MSG_DEBUG
, "nl80211: Association request send "
5756 static int nl80211_set_mode(struct wpa_driver_nl80211_data
*drv
,
5757 int ifindex
, enum nl80211_iftype mode
)
5762 wpa_printf(MSG_DEBUG
, "nl80211: Set mode ifindex %d iftype %d (%s)",
5763 ifindex
, mode
, nl80211_iftype_str(mode
));
5765 msg
= nlmsg_alloc();
5769 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_INTERFACE
);
5770 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
5771 NLA_PUT_U32(msg
, NL80211_ATTR_IFTYPE
, mode
);
5773 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5777 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set interface %d to mode %d:"
5778 " %d (%s)", ifindex
, mode
, ret
, strerror(-ret
));
5783 static int wpa_driver_nl80211_set_mode(struct i802_bss
*bss
,
5784 enum nl80211_iftype nlmode
)
5786 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5789 int was_ap
= is_ap_interface(drv
->nlmode
);
5791 if (nl80211_set_mode(drv
, drv
->ifindex
, nlmode
) == 0) {
5792 drv
->nlmode
= nlmode
;
5797 if (nlmode
== drv
->nlmode
) {
5798 wpa_printf(MSG_DEBUG
, "nl80211: Interface already in "
5799 "requested mode - ignore error");
5801 goto done
; /* Already in the requested mode */
5804 /* mac80211 doesn't allow mode changes while the device is up, so
5805 * take the device down, try to set the mode again, and bring the
5808 wpa_printf(MSG_DEBUG
, "nl80211: Try mode change after setting "
5810 for (i
= 0; i
< 10; i
++) {
5812 res
= linux_set_iface_flags(drv
->global
->ioctl_sock
,
5814 if (res
== -EACCES
|| res
== -ENODEV
)
5817 /* Try to set the mode again while the interface is
5819 ret
= nl80211_set_mode(drv
, drv
->ifindex
, nlmode
);
5822 res
= linux_set_iface_flags(drv
->global
->ioctl_sock
,
5826 else if (ret
!= -EBUSY
)
5829 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set "
5831 os_sleep(0, 100000);
5835 wpa_printf(MSG_DEBUG
, "nl80211: Mode change succeeded while "
5836 "interface is down");
5837 drv
->nlmode
= nlmode
;
5838 drv
->ignore_if_down_event
= 1;
5842 if (!ret
&& is_ap_interface(nlmode
)) {
5843 /* Setup additional AP mode functionality if needed */
5844 if (!drv
->no_monitor_iface_capab
&& drv
->monitor_ifidx
< 0 &&
5845 nl80211_create_monitor_interface(drv
) &&
5846 !drv
->no_monitor_iface_capab
)
5848 } else if (!ret
&& !is_ap_interface(nlmode
)) {
5849 /* Remove additional AP mode functionality */
5850 if (was_ap
&& drv
->no_monitor_iface_capab
)
5851 wpa_driver_nl80211_probe_req_report(bss
, 0);
5852 nl80211_remove_monitor_interface(drv
);
5853 bss
->beacon_set
= 0;
5856 if (!ret
&& is_p2p_interface(drv
->nlmode
)) {
5857 nl80211_disable_11b_rates(drv
, drv
->ifindex
, 1);
5858 drv
->disabled_11b_rates
= 1;
5859 } else if (!ret
&& drv
->disabled_11b_rates
) {
5860 nl80211_disable_11b_rates(drv
, drv
->ifindex
, 0);
5861 drv
->disabled_11b_rates
= 0;
5865 wpa_printf(MSG_DEBUG
, "nl80211: Interface mode change to %d "
5866 "from %d failed", nlmode
, drv
->nlmode
);
5872 static int wpa_driver_nl80211_get_capa(void *priv
,
5873 struct wpa_driver_capa
*capa
)
5875 struct i802_bss
*bss
= priv
;
5876 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5877 if (!drv
->has_capability
)
5879 os_memcpy(capa
, &drv
->capa
, sizeof(*capa
));
5884 static int wpa_driver_nl80211_set_operstate(void *priv
, int state
)
5886 struct i802_bss
*bss
= priv
;
5887 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5889 wpa_printf(MSG_DEBUG
, "%s: operstate %d->%d (%s)",
5890 __func__
, drv
->operstate
, state
, state
? "UP" : "DORMANT");
5891 drv
->operstate
= state
;
5892 return netlink_send_oper_ifla(drv
->global
->netlink
, drv
->ifindex
, -1,
5893 state
? IF_OPER_UP
: IF_OPER_DORMANT
);
5897 static int wpa_driver_nl80211_set_supp_port(void *priv
, int authorized
)
5899 struct i802_bss
*bss
= priv
;
5900 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5902 struct nl80211_sta_flag_update upd
;
5904 msg
= nlmsg_alloc();
5908 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
5910 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
5911 if_nametoindex(bss
->ifname
));
5912 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, drv
->bssid
);
5914 os_memset(&upd
, 0, sizeof(upd
));
5915 upd
.mask
= BIT(NL80211_STA_FLAG_AUTHORIZED
);
5917 upd
.set
= BIT(NL80211_STA_FLAG_AUTHORIZED
);
5918 NLA_PUT(msg
, NL80211_ATTR_STA_FLAGS2
, sizeof(upd
), &upd
);
5920 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
5926 /* Set kernel driver on given frequency (MHz) */
5927 static int i802_set_freq(void *priv
, struct hostapd_freq_params
*freq
)
5929 struct i802_bss
*bss
= priv
;
5930 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5931 return wpa_driver_nl80211_set_freq(drv
, freq
->freq
, freq
->ht_enabled
,
5932 freq
->sec_channel_offset
);
5936 #if defined(HOSTAPD) || defined(CONFIG_AP)
5938 static inline int min_int(int a
, int b
)
5946 static int get_key_handler(struct nl_msg
*msg
, void *arg
)
5948 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
5949 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
5951 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
5952 genlmsg_attrlen(gnlh
, 0), NULL
);
5955 * TODO: validate the key index and mac address!
5956 * Otherwise, there's a race condition as soon as
5957 * the kernel starts sending key notifications.
5960 if (tb
[NL80211_ATTR_KEY_SEQ
])
5961 memcpy(arg
, nla_data(tb
[NL80211_ATTR_KEY_SEQ
]),
5962 min_int(nla_len(tb
[NL80211_ATTR_KEY_SEQ
]), 6));
5967 static int i802_get_seqnum(const char *iface
, void *priv
, const u8
*addr
,
5970 struct i802_bss
*bss
= priv
;
5971 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5974 msg
= nlmsg_alloc();
5978 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_KEY
);
5981 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
5982 NLA_PUT_U8(msg
, NL80211_ATTR_KEY_IDX
, idx
);
5983 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(iface
));
5987 return send_and_recv_msgs(drv
, msg
, get_key_handler
, seq
);
5993 static int i802_set_rate_sets(void *priv
, int *supp_rates
, int *basic_rates
,
5996 struct i802_bss
*bss
= priv
;
5997 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
5999 u8 rates
[NL80211_MAX_SUPP_RATES
];
6003 msg
= nlmsg_alloc();
6007 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_BSS
);
6009 for (i
= 0; i
< NL80211_MAX_SUPP_RATES
&& basic_rates
[i
] >= 0; i
++)
6010 rates
[rates_len
++] = basic_rates
[i
] / 5;
6012 NLA_PUT(msg
, NL80211_ATTR_BSS_BASIC_RATES
, rates_len
, rates
);
6014 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
6016 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6022 static int i802_set_rts(void *priv
, int rts
)
6024 struct i802_bss
*bss
= priv
;
6025 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6030 msg
= nlmsg_alloc();
6039 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
6040 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6041 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_RTS_THRESHOLD
, val
);
6043 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6047 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set RTS threshold %d: "
6048 "%d (%s)", rts
, ret
, strerror(-ret
));
6053 static int i802_set_frag(void *priv
, int frag
)
6055 struct i802_bss
*bss
= priv
;
6056 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6061 msg
= nlmsg_alloc();
6070 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
6071 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6072 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FRAG_THRESHOLD
, val
);
6074 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6078 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set fragmentation threshold "
6079 "%d: %d (%s)", frag
, ret
, strerror(-ret
));
6084 static int i802_flush(void *priv
)
6086 struct i802_bss
*bss
= priv
;
6087 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6090 msg
= nlmsg_alloc();
6094 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_DEL_STATION
);
6097 * XXX: FIX! this needs to flush all VLANs too
6099 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
6100 if_nametoindex(bss
->ifname
));
6102 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6108 static int get_sta_handler(struct nl_msg
*msg
, void *arg
)
6110 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
6111 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
6112 struct hostap_sta_driver_data
*data
= arg
;
6113 struct nlattr
*stats
[NL80211_STA_INFO_MAX
+ 1];
6114 static struct nla_policy stats_policy
[NL80211_STA_INFO_MAX
+ 1] = {
6115 [NL80211_STA_INFO_INACTIVE_TIME
] = { .type
= NLA_U32
},
6116 [NL80211_STA_INFO_RX_BYTES
] = { .type
= NLA_U32
},
6117 [NL80211_STA_INFO_TX_BYTES
] = { .type
= NLA_U32
},
6118 [NL80211_STA_INFO_RX_PACKETS
] = { .type
= NLA_U32
},
6119 [NL80211_STA_INFO_TX_PACKETS
] = { .type
= NLA_U32
},
6122 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
6123 genlmsg_attrlen(gnlh
, 0), NULL
);
6126 * TODO: validate the interface and mac address!
6127 * Otherwise, there's a race condition as soon as
6128 * the kernel starts sending station notifications.
6131 if (!tb
[NL80211_ATTR_STA_INFO
]) {
6132 wpa_printf(MSG_DEBUG
, "sta stats missing!");
6135 if (nla_parse_nested(stats
, NL80211_STA_INFO_MAX
,
6136 tb
[NL80211_ATTR_STA_INFO
],
6138 wpa_printf(MSG_DEBUG
, "failed to parse nested attributes!");
6142 if (stats
[NL80211_STA_INFO_INACTIVE_TIME
])
6143 data
->inactive_msec
=
6144 nla_get_u32(stats
[NL80211_STA_INFO_INACTIVE_TIME
]);
6145 if (stats
[NL80211_STA_INFO_RX_BYTES
])
6146 data
->rx_bytes
= nla_get_u32(stats
[NL80211_STA_INFO_RX_BYTES
]);
6147 if (stats
[NL80211_STA_INFO_TX_BYTES
])
6148 data
->tx_bytes
= nla_get_u32(stats
[NL80211_STA_INFO_TX_BYTES
]);
6149 if (stats
[NL80211_STA_INFO_RX_PACKETS
])
6151 nla_get_u32(stats
[NL80211_STA_INFO_RX_PACKETS
]);
6152 if (stats
[NL80211_STA_INFO_TX_PACKETS
])
6154 nla_get_u32(stats
[NL80211_STA_INFO_TX_PACKETS
]);
6159 static int i802_read_sta_data(void *priv
, struct hostap_sta_driver_data
*data
,
6162 struct i802_bss
*bss
= priv
;
6163 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6166 os_memset(data
, 0, sizeof(*data
));
6167 msg
= nlmsg_alloc();
6171 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_GET_STATION
);
6173 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
6174 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
6176 return send_and_recv_msgs(drv
, msg
, get_sta_handler
, data
);
6182 static int i802_set_tx_queue_params(void *priv
, int queue
, int aifs
,
6183 int cw_min
, int cw_max
, int burst_time
)
6185 struct i802_bss
*bss
= priv
;
6186 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6188 struct nlattr
*txq
, *params
;
6190 msg
= nlmsg_alloc();
6194 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_WIPHY
);
6196 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
6198 txq
= nla_nest_start(msg
, NL80211_ATTR_WIPHY_TXQ_PARAMS
);
6200 goto nla_put_failure
;
6202 /* We are only sending parameters for a single TXQ at a time */
6203 params
= nla_nest_start(msg
, 1);
6205 goto nla_put_failure
;
6209 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_VO
);
6212 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_VI
);
6215 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_BE
);
6218 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_QUEUE
, NL80211_TXQ_Q_BK
);
6221 /* Burst time is configured in units of 0.1 msec and TXOP parameter in
6222 * 32 usec, so need to convert the value here. */
6223 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_TXOP
, (burst_time
* 100 + 16) / 32);
6224 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_CWMIN
, cw_min
);
6225 NLA_PUT_U16(msg
, NL80211_TXQ_ATTR_CWMAX
, cw_max
);
6226 NLA_PUT_U8(msg
, NL80211_TXQ_ATTR_AIFS
, aifs
);
6228 nla_nest_end(msg
, params
);
6230 nla_nest_end(msg
, txq
);
6232 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
6239 static int i802_set_sta_vlan(void *priv
, const u8
*addr
,
6240 const char *ifname
, int vlan_id
)
6242 struct i802_bss
*bss
= priv
;
6243 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6247 msg
= nlmsg_alloc();
6251 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_STATION
);
6253 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
,
6254 if_nametoindex(bss
->ifname
));
6255 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, addr
);
6256 NLA_PUT_U32(msg
, NL80211_ATTR_STA_VLAN
,
6257 if_nametoindex(ifname
));
6259 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6261 wpa_printf(MSG_ERROR
, "nl80211: NL80211_ATTR_STA_VLAN (addr="
6262 MACSTR
" ifname=%s vlan_id=%d) failed: %d (%s)",
6263 MAC2STR(addr
), ifname
, vlan_id
, ret
,
6271 static int i802_get_inact_sec(void *priv
, const u8
*addr
)
6273 struct hostap_sta_driver_data data
;
6276 data
.inactive_msec
= (unsigned long) -1;
6277 ret
= i802_read_sta_data(priv
, &data
, addr
);
6278 if (ret
|| data
.inactive_msec
== (unsigned long) -1)
6280 return data
.inactive_msec
/ 1000;
6284 static int i802_sta_clear_stats(void *priv
, const u8
*addr
)
6293 static int i802_sta_deauth(void *priv
, const u8
*own_addr
, const u8
*addr
,
6296 struct i802_bss
*bss
= priv
;
6297 struct ieee80211_mgmt mgmt
;
6299 memset(&mgmt
, 0, sizeof(mgmt
));
6300 mgmt
.frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
6301 WLAN_FC_STYPE_DEAUTH
);
6302 memcpy(mgmt
.da
, addr
, ETH_ALEN
);
6303 memcpy(mgmt
.sa
, own_addr
, ETH_ALEN
);
6304 memcpy(mgmt
.bssid
, own_addr
, ETH_ALEN
);
6305 mgmt
.u
.deauth
.reason_code
= host_to_le16(reason
);
6306 return wpa_driver_nl80211_send_mlme(bss
, (u8
*) &mgmt
,
6308 sizeof(mgmt
.u
.deauth
));
6312 static int i802_sta_disassoc(void *priv
, const u8
*own_addr
, const u8
*addr
,
6315 struct i802_bss
*bss
= priv
;
6316 struct ieee80211_mgmt mgmt
;
6318 memset(&mgmt
, 0, sizeof(mgmt
));
6319 mgmt
.frame_control
= IEEE80211_FC(WLAN_FC_TYPE_MGMT
,
6320 WLAN_FC_STYPE_DISASSOC
);
6321 memcpy(mgmt
.da
, addr
, ETH_ALEN
);
6322 memcpy(mgmt
.sa
, own_addr
, ETH_ALEN
);
6323 memcpy(mgmt
.bssid
, own_addr
, ETH_ALEN
);
6324 mgmt
.u
.disassoc
.reason_code
= host_to_le16(reason
);
6325 return wpa_driver_nl80211_send_mlme(bss
, (u8
*) &mgmt
,
6327 sizeof(mgmt
.u
.disassoc
));
6330 #endif /* HOSTAPD || CONFIG_AP */
6334 static void add_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
6339 wpa_printf(MSG_DEBUG
, "nl80211: Add own interface ifindex %d",
6341 for (i
= 0; i
< drv
->num_if_indices
; i
++) {
6342 if (drv
->if_indices
[i
] == 0) {
6343 drv
->if_indices
[i
] = ifidx
;
6348 if (drv
->if_indices
!= drv
->default_if_indices
)
6349 old
= drv
->if_indices
;
6353 drv
->if_indices
= os_realloc(old
,
6354 sizeof(int) * (drv
->num_if_indices
+ 1));
6355 if (!drv
->if_indices
) {
6357 drv
->if_indices
= drv
->default_if_indices
;
6359 drv
->if_indices
= old
;
6360 wpa_printf(MSG_ERROR
, "Failed to reallocate memory for "
6362 wpa_printf(MSG_ERROR
, "Ignoring EAPOL on interface %d", ifidx
);
6365 os_memcpy(drv
->if_indices
, drv
->default_if_indices
,
6366 sizeof(drv
->default_if_indices
));
6367 drv
->if_indices
[drv
->num_if_indices
] = ifidx
;
6368 drv
->num_if_indices
++;
6372 static void del_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
6376 for (i
= 0; i
< drv
->num_if_indices
; i
++) {
6377 if (drv
->if_indices
[i
] == ifidx
) {
6378 drv
->if_indices
[i
] = 0;
6385 static int have_ifidx(struct wpa_driver_nl80211_data
*drv
, int ifidx
)
6389 for (i
= 0; i
< drv
->num_if_indices
; i
++)
6390 if (drv
->if_indices
[i
] == ifidx
)
6397 static int i802_set_wds_sta(void *priv
, const u8
*addr
, int aid
, int val
,
6398 const char *bridge_ifname
)
6400 struct i802_bss
*bss
= priv
;
6401 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6402 char name
[IFNAMSIZ
+ 1];
6404 os_snprintf(name
, sizeof(name
), "%s.sta%d", bss
->ifname
, aid
);
6405 wpa_printf(MSG_DEBUG
, "nl80211: Set WDS STA addr=" MACSTR
6406 " aid=%d val=%d name=%s", MAC2STR(addr
), aid
, val
, name
);
6408 if (!if_nametoindex(name
)) {
6409 if (nl80211_create_iface(drv
, name
,
6410 NL80211_IFTYPE_AP_VLAN
,
6413 if (bridge_ifname
&&
6414 linux_br_add_if(drv
->global
->ioctl_sock
,
6415 bridge_ifname
, name
) < 0)
6418 linux_set_iface_flags(drv
->global
->ioctl_sock
, name
, 1);
6419 return i802_set_sta_vlan(priv
, addr
, name
, 0);
6421 i802_set_sta_vlan(priv
, addr
, bss
->ifname
, 0);
6422 return wpa_driver_nl80211_if_remove(priv
, WPA_IF_AP_VLAN
,
6428 static void handle_eapol(int sock
, void *eloop_ctx
, void *sock_ctx
)
6430 struct wpa_driver_nl80211_data
*drv
= eloop_ctx
;
6431 struct sockaddr_ll lladdr
;
6432 unsigned char buf
[3000];
6434 socklen_t fromlen
= sizeof(lladdr
);
6436 len
= recvfrom(sock
, buf
, sizeof(buf
), 0,
6437 (struct sockaddr
*)&lladdr
, &fromlen
);
6443 if (have_ifidx(drv
, lladdr
.sll_ifindex
))
6444 drv_event_eapol_rx(drv
->ctx
, lladdr
.sll_addr
, buf
, len
);
6448 static int i802_check_bridge(struct wpa_driver_nl80211_data
*drv
,
6449 struct i802_bss
*bss
,
6450 const char *brname
, const char *ifname
)
6453 char in_br
[IFNAMSIZ
];
6455 os_strlcpy(bss
->brname
, brname
, IFNAMSIZ
);
6456 ifindex
= if_nametoindex(brname
);
6459 * Bridge was configured, but the bridge device does
6460 * not exist. Try to add it now.
6462 if (linux_br_add(drv
->global
->ioctl_sock
, brname
) < 0) {
6463 wpa_printf(MSG_ERROR
, "nl80211: Failed to add the "
6464 "bridge interface %s: %s",
6465 brname
, strerror(errno
));
6468 bss
->added_bridge
= 1;
6469 add_ifidx(drv
, if_nametoindex(brname
));
6472 if (linux_br_get(in_br
, ifname
) == 0) {
6473 if (os_strcmp(in_br
, brname
) == 0)
6474 return 0; /* already in the bridge */
6476 wpa_printf(MSG_DEBUG
, "nl80211: Removing interface %s from "
6477 "bridge %s", ifname
, in_br
);
6478 if (linux_br_del_if(drv
->global
->ioctl_sock
, in_br
, ifname
) <
6480 wpa_printf(MSG_ERROR
, "nl80211: Failed to "
6481 "remove interface %s from bridge "
6483 ifname
, brname
, strerror(errno
));
6488 wpa_printf(MSG_DEBUG
, "nl80211: Adding interface %s into bridge %s",
6490 if (linux_br_add_if(drv
->global
->ioctl_sock
, brname
, ifname
) < 0) {
6491 wpa_printf(MSG_ERROR
, "nl80211: Failed to add interface %s "
6492 "into bridge %s: %s",
6493 ifname
, brname
, strerror(errno
));
6496 bss
->added_if_into_bridge
= 1;
6502 static void *i802_init(struct hostapd_data
*hapd
,
6503 struct wpa_init_params
*params
)
6505 struct wpa_driver_nl80211_data
*drv
;
6506 struct i802_bss
*bss
;
6508 char brname
[IFNAMSIZ
];
6509 int ifindex
, br_ifindex
;
6512 bss
= wpa_driver_nl80211_init(hapd
, params
->ifname
,
6513 params
->global_priv
);
6518 drv
->nlmode
= NL80211_IFTYPE_AP
;
6519 drv
->eapol_sock
= -1;
6521 if (linux_br_get(brname
, params
->ifname
) == 0) {
6522 wpa_printf(MSG_DEBUG
, "nl80211: Interface %s is in bridge %s",
6523 params
->ifname
, brname
);
6524 br_ifindex
= if_nametoindex(brname
);
6530 drv
->num_if_indices
= sizeof(drv
->default_if_indices
) / sizeof(int);
6531 drv
->if_indices
= drv
->default_if_indices
;
6532 for (i
= 0; i
< params
->num_bridge
; i
++) {
6533 if (params
->bridge
[i
]) {
6534 ifindex
= if_nametoindex(params
->bridge
[i
]);
6536 add_ifidx(drv
, ifindex
);
6537 if (ifindex
== br_ifindex
)
6541 if (!br_added
&& br_ifindex
&&
6542 (params
->num_bridge
== 0 || !params
->bridge
[0]))
6543 add_ifidx(drv
, br_ifindex
);
6545 /* start listening for EAPOL on the default AP interface */
6546 add_ifidx(drv
, drv
->ifindex
);
6548 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 0))
6551 if (params
->bssid
) {
6552 if (linux_set_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
6557 if (wpa_driver_nl80211_set_mode(bss
, drv
->nlmode
)) {
6558 wpa_printf(MSG_ERROR
, "nl80211: Failed to set interface %s "
6559 "into AP mode", bss
->ifname
);
6563 if (params
->num_bridge
&& params
->bridge
[0] &&
6564 i802_check_bridge(drv
, bss
, params
->bridge
[0], params
->ifname
) < 0)
6567 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1))
6570 drv
->eapol_sock
= socket(PF_PACKET
, SOCK_DGRAM
, htons(ETH_P_PAE
));
6571 if (drv
->eapol_sock
< 0) {
6572 perror("socket(PF_PACKET, SOCK_DGRAM, ETH_P_PAE)");
6576 if (eloop_register_read_sock(drv
->eapol_sock
, handle_eapol
, drv
, NULL
))
6578 printf("Could not register read socket for eapol\n");
6582 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
6589 wpa_driver_nl80211_deinit(bss
);
6594 static void i802_deinit(void *priv
)
6596 wpa_driver_nl80211_deinit(priv
);
6599 #endif /* HOSTAPD */
6602 static enum nl80211_iftype
wpa_driver_nl80211_if_type(
6603 enum wpa_driver_if_type type
)
6606 case WPA_IF_STATION
:
6607 return NL80211_IFTYPE_STATION
;
6608 case WPA_IF_P2P_CLIENT
:
6609 case WPA_IF_P2P_GROUP
:
6610 return NL80211_IFTYPE_P2P_CLIENT
;
6611 case WPA_IF_AP_VLAN
:
6612 return NL80211_IFTYPE_AP_VLAN
;
6614 return NL80211_IFTYPE_AP
;
6616 return NL80211_IFTYPE_P2P_GO
;
6624 static int nl80211_addr_in_use(struct nl80211_global
*global
, const u8
*addr
)
6626 struct wpa_driver_nl80211_data
*drv
;
6627 dl_list_for_each(drv
, &global
->interfaces
,
6628 struct wpa_driver_nl80211_data
, list
) {
6629 if (os_memcmp(addr
, drv
->addr
, ETH_ALEN
) == 0)
6636 static int nl80211_p2p_interface_addr(struct wpa_driver_nl80211_data
*drv
,
6644 os_memcpy(new_addr
, drv
->addr
, ETH_ALEN
);
6645 for (idx
= 0; idx
< 64; idx
++) {
6646 new_addr
[0] = drv
->addr
[0] | 0x02;
6647 new_addr
[0] ^= idx
<< 2;
6648 if (!nl80211_addr_in_use(drv
->global
, new_addr
))
6654 wpa_printf(MSG_DEBUG
, "nl80211: Assigned new P2P Interface Address "
6655 MACSTR
, MAC2STR(new_addr
));
6660 #endif /* CONFIG_P2P */
6663 static int wpa_driver_nl80211_if_add(void *priv
, enum wpa_driver_if_type type
,
6664 const char *ifname
, const u8
*addr
,
6665 void *bss_ctx
, void **drv_priv
,
6666 char *force_ifname
, u8
*if_addr
,
6669 struct i802_bss
*bss
= priv
;
6670 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6673 struct i802_bss
*new_bss
= NULL
;
6675 if (type
== WPA_IF_AP_BSS
) {
6676 new_bss
= os_zalloc(sizeof(*new_bss
));
6677 if (new_bss
== NULL
)
6680 #endif /* HOSTAPD */
6683 os_memcpy(if_addr
, addr
, ETH_ALEN
);
6684 ifidx
= nl80211_create_iface(drv
, ifname
,
6685 wpa_driver_nl80211_if_type(type
), addr
,
6690 #endif /* HOSTAPD */
6695 linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
6697 nl80211_remove_iface(drv
, ifidx
);
6703 (type
== WPA_IF_P2P_CLIENT
|| type
== WPA_IF_P2P_GROUP
||
6704 type
== WPA_IF_P2P_GO
)) {
6705 /* Enforce unique P2P Interface Address */
6706 u8 new_addr
[ETH_ALEN
], own_addr
[ETH_ALEN
];
6708 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
6710 linux_get_ifhwaddr(drv
->global
->ioctl_sock
, ifname
,
6712 nl80211_remove_iface(drv
, ifidx
);
6715 if (os_memcmp(own_addr
, new_addr
, ETH_ALEN
) == 0) {
6716 wpa_printf(MSG_DEBUG
, "nl80211: Allocate new address "
6717 "for P2P group interface");
6718 if (nl80211_p2p_interface_addr(drv
, new_addr
) < 0) {
6719 nl80211_remove_iface(drv
, ifidx
);
6722 if (linux_set_ifhwaddr(drv
->global
->ioctl_sock
, ifname
,
6724 nl80211_remove_iface(drv
, ifidx
);
6728 os_memcpy(if_addr
, new_addr
, ETH_ALEN
);
6730 #endif /* CONFIG_P2P */
6734 i802_check_bridge(drv
, new_bss
, bridge
, ifname
) < 0) {
6735 wpa_printf(MSG_ERROR
, "nl80211: Failed to add the new "
6736 "interface %s to a bridge %s", ifname
, bridge
);
6737 nl80211_remove_iface(drv
, ifidx
);
6742 if (type
== WPA_IF_AP_BSS
) {
6743 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, ifname
, 1))
6745 nl80211_remove_iface(drv
, ifidx
);
6749 os_strlcpy(new_bss
->ifname
, ifname
, IFNAMSIZ
);
6750 new_bss
->ifindex
= ifidx
;
6752 new_bss
->next
= drv
->first_bss
.next
;
6753 drv
->first_bss
.next
= new_bss
;
6755 *drv_priv
= new_bss
;
6757 #endif /* HOSTAPD */
6760 drv
->global
->if_add_ifindex
= ifidx
;
6766 static int wpa_driver_nl80211_if_remove(void *priv
,
6767 enum wpa_driver_if_type type
,
6770 struct i802_bss
*bss
= priv
;
6771 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6772 int ifindex
= if_nametoindex(ifname
);
6774 wpa_printf(MSG_DEBUG
, "nl80211: %s(type=%d ifname=%s) ifindex=%d",
6775 __func__
, type
, ifname
, ifindex
);
6780 if (bss
->added_if_into_bridge
) {
6781 if (linux_br_del_if(drv
->global
->ioctl_sock
, bss
->brname
,
6783 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
6784 "interface %s from bridge %s: %s",
6785 bss
->ifname
, bss
->brname
, strerror(errno
));
6787 if (bss
->added_bridge
) {
6788 if (linux_br_del(drv
->global
->ioctl_sock
, bss
->brname
) < 0)
6789 wpa_printf(MSG_INFO
, "nl80211: Failed to remove "
6791 bss
->brname
, strerror(errno
));
6793 #endif /* HOSTAPD */
6795 nl80211_remove_iface(drv
, ifindex
);
6798 if (type
!= WPA_IF_AP_BSS
)
6801 if (bss
!= &drv
->first_bss
) {
6802 struct i802_bss
*tbss
;
6804 for (tbss
= &drv
->first_bss
; tbss
; tbss
= tbss
->next
) {
6805 if (tbss
->next
== bss
) {
6806 tbss
->next
= bss
->next
;
6813 wpa_printf(MSG_INFO
, "nl80211: %s - could not find "
6814 "BSS %p in the list", __func__
, bss
);
6816 #endif /* HOSTAPD */
6822 static int cookie_handler(struct nl_msg
*msg
, void *arg
)
6824 struct nlattr
*tb
[NL80211_ATTR_MAX
+ 1];
6825 struct genlmsghdr
*gnlh
= nlmsg_data(nlmsg_hdr(msg
));
6827 nla_parse(tb
, NL80211_ATTR_MAX
, genlmsg_attrdata(gnlh
, 0),
6828 genlmsg_attrlen(gnlh
, 0), NULL
);
6829 if (tb
[NL80211_ATTR_COOKIE
])
6830 *cookie
= nla_get_u64(tb
[NL80211_ATTR_COOKIE
]);
6835 static int nl80211_send_frame_cmd(struct wpa_driver_nl80211_data
*drv
,
6836 unsigned int freq
, unsigned int wait
,
6837 const u8
*buf
, size_t buf_len
,
6838 u64
*cookie_out
, int no_cck
)
6844 msg
= nlmsg_alloc();
6848 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_FRAME
);
6850 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6851 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
6853 NLA_PUT_U32(msg
, NL80211_ATTR_DURATION
, wait
);
6854 NLA_PUT_FLAG(msg
, NL80211_ATTR_OFFCHANNEL_TX_OK
);
6856 NLA_PUT_FLAG(msg
, NL80211_ATTR_TX_NO_CCK_RATE
);
6858 NLA_PUT(msg
, NL80211_ATTR_FRAME
, buf_len
, buf
);
6861 ret
= send_and_recv_msgs(drv
, msg
, cookie_handler
, &cookie
);
6864 wpa_printf(MSG_DEBUG
, "nl80211: Frame command failed: ret=%d "
6865 "(%s) (freq=%u wait=%u)", ret
, strerror(-ret
),
6867 goto nla_put_failure
;
6869 wpa_printf(MSG_DEBUG
, "nl80211: Frame TX command accepted; "
6870 "cookie 0x%llx", (long long unsigned int) cookie
);
6873 *cookie_out
= cookie
;
6881 static int wpa_driver_nl80211_send_action(void *priv
, unsigned int freq
,
6882 unsigned int wait_time
,
6883 const u8
*dst
, const u8
*src
,
6885 const u8
*data
, size_t data_len
,
6888 struct i802_bss
*bss
= priv
;
6889 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6892 struct ieee80211_hdr
*hdr
;
6894 wpa_printf(MSG_DEBUG
, "nl80211: Send Action frame (ifindex=%d, "
6895 "wait=%d ms no_cck=%d)", drv
->ifindex
, wait_time
, no_cck
);
6897 buf
= os_zalloc(24 + data_len
);
6900 os_memcpy(buf
+ 24, data
, data_len
);
6901 hdr
= (struct ieee80211_hdr
*) buf
;
6902 hdr
->frame_control
=
6903 IEEE80211_FC(WLAN_FC_TYPE_MGMT
, WLAN_FC_STYPE_ACTION
);
6904 os_memcpy(hdr
->addr1
, dst
, ETH_ALEN
);
6905 os_memcpy(hdr
->addr2
, src
, ETH_ALEN
);
6906 os_memcpy(hdr
->addr3
, bssid
, ETH_ALEN
);
6908 if (is_ap_interface(drv
->nlmode
))
6909 ret
= wpa_driver_nl80211_send_mlme(priv
, buf
, 24 + data_len
);
6911 ret
= nl80211_send_frame_cmd(drv
, freq
, wait_time
, buf
,
6913 &drv
->send_action_cookie
,
6921 static void wpa_driver_nl80211_send_action_cancel_wait(void *priv
)
6923 struct i802_bss
*bss
= priv
;
6924 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6928 msg
= nlmsg_alloc();
6932 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_FRAME_WAIT_CANCEL
);
6934 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6935 NLA_PUT_U64(msg
, NL80211_ATTR_COOKIE
, drv
->send_action_cookie
);
6937 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
6940 wpa_printf(MSG_DEBUG
, "nl80211: wait cancel failed: ret=%d "
6941 "(%s)", ret
, strerror(-ret
));
6948 static int wpa_driver_nl80211_remain_on_channel(void *priv
, unsigned int freq
,
6949 unsigned int duration
)
6951 struct i802_bss
*bss
= priv
;
6952 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6957 msg
= nlmsg_alloc();
6961 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_REMAIN_ON_CHANNEL
);
6963 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
6964 NLA_PUT_U32(msg
, NL80211_ATTR_WIPHY_FREQ
, freq
);
6965 NLA_PUT_U32(msg
, NL80211_ATTR_DURATION
, duration
);
6968 ret
= send_and_recv_msgs(drv
, msg
, cookie_handler
, &cookie
);
6970 wpa_printf(MSG_DEBUG
, "nl80211: Remain-on-channel cookie "
6971 "0x%llx for freq=%u MHz duration=%u",
6972 (long long unsigned int) cookie
, freq
, duration
);
6973 drv
->remain_on_chan_cookie
= cookie
;
6974 drv
->pending_remain_on_chan
= 1;
6977 wpa_printf(MSG_DEBUG
, "nl80211: Failed to request remain-on-channel "
6978 "(freq=%d duration=%u): %d (%s)",
6979 freq
, duration
, ret
, strerror(-ret
));
6985 static int wpa_driver_nl80211_cancel_remain_on_channel(void *priv
)
6987 struct i802_bss
*bss
= priv
;
6988 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
6992 if (!drv
->pending_remain_on_chan
) {
6993 wpa_printf(MSG_DEBUG
, "nl80211: No pending remain-on-channel "
6998 wpa_printf(MSG_DEBUG
, "nl80211: Cancel remain-on-channel with cookie "
7000 (long long unsigned int) drv
->remain_on_chan_cookie
);
7002 msg
= nlmsg_alloc();
7006 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL
);
7008 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7009 NLA_PUT_U64(msg
, NL80211_ATTR_COOKIE
, drv
->remain_on_chan_cookie
);
7011 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7014 wpa_printf(MSG_DEBUG
, "nl80211: Failed to cancel remain-on-channel: "
7015 "%d (%s)", ret
, strerror(-ret
));
7021 static int wpa_driver_nl80211_probe_req_report(void *priv
, int report
)
7023 struct i802_bss
*bss
= priv
;
7024 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7027 if (drv
->nl_preq
.handle
) {
7028 eloop_unregister_read_sock(
7029 nl_socket_get_fd(drv
->nl_preq
.handle
));
7030 nl_destroy_handles(&drv
->nl_preq
);
7035 if (drv
->nl_preq
.handle
) {
7036 wpa_printf(MSG_DEBUG
, "nl80211: Probe Request reporting "
7041 if (nl_create_handles(&drv
->nl_preq
, drv
->global
->nl_cb
, "preq"))
7044 if (nl80211_register_frame(drv
, drv
->nl_preq
.handle
,
7045 (WLAN_FC_TYPE_MGMT
<< 2) |
7046 (WLAN_FC_STYPE_PROBE_REQ
<< 4),
7050 eloop_register_read_sock(nl_socket_get_fd(drv
->nl_preq
.handle
),
7051 wpa_driver_nl80211_event_receive
, drv
,
7052 drv
->nl_preq
.handle
);
7057 nl_destroy_handles(&drv
->nl_preq
);
7062 static int nl80211_disable_11b_rates(struct wpa_driver_nl80211_data
*drv
,
7063 int ifindex
, int disabled
)
7066 struct nlattr
*bands
, *band
;
7069 msg
= nlmsg_alloc();
7073 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_TX_BITRATE_MASK
);
7074 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, ifindex
);
7076 bands
= nla_nest_start(msg
, NL80211_ATTR_TX_RATES
);
7078 goto nla_put_failure
;
7081 * Disable 2 GHz rates 1, 2, 5.5, 11 Mbps by masking out everything
7082 * else apart from 6, 9, 12, 18, 24, 36, 48, 54 Mbps from non-MCS
7083 * rates. All 5 GHz rates are left enabled.
7085 band
= nla_nest_start(msg
, NL80211_BAND_2GHZ
);
7087 goto nla_put_failure
;
7089 NLA_PUT(msg
, NL80211_TXRATE_LEGACY
, 8,
7090 "\x0c\x12\x18\x24\x30\x48\x60\x6c");
7092 nla_nest_end(msg
, band
);
7094 nla_nest_end(msg
, bands
);
7096 ret
= send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7099 wpa_printf(MSG_DEBUG
, "nl80211: Set TX rates failed: ret=%d "
7100 "(%s)", ret
, strerror(-ret
));
7111 static int wpa_driver_nl80211_deinit_ap(void *priv
)
7113 struct i802_bss
*bss
= priv
;
7114 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7115 if (!is_ap_interface(drv
->nlmode
))
7117 wpa_driver_nl80211_del_beacon(drv
);
7118 return wpa_driver_nl80211_set_mode(priv
, NL80211_IFTYPE_STATION
);
7122 static void wpa_driver_nl80211_resume(void *priv
)
7124 struct i802_bss
*bss
= priv
;
7125 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7126 if (linux_set_iface_flags(drv
->global
->ioctl_sock
, bss
->ifname
, 1)) {
7127 wpa_printf(MSG_DEBUG
, "nl80211: Failed to set interface up on "
7133 static int nl80211_send_ft_action(void *priv
, u8 action
, const u8
*target_ap
,
7134 const u8
*ies
, size_t ies_len
)
7136 struct i802_bss
*bss
= priv
;
7137 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7141 u8 own_addr
[ETH_ALEN
];
7143 if (linux_get_ifhwaddr(drv
->global
->ioctl_sock
, bss
->ifname
,
7148 wpa_printf(MSG_ERROR
, "nl80211: Unsupported send_ft_action "
7149 "action %d", action
);
7154 * Action frame payload:
7155 * Category[1] = 6 (Fast BSS Transition)
7156 * Action[1] = 1 (Fast BSS Transition Request)
7162 data_len
= 2 + 2 * ETH_ALEN
+ ies_len
;
7163 data
= os_malloc(data_len
);
7167 *pos
++ = 0x06; /* FT Action category */
7169 os_memcpy(pos
, own_addr
, ETH_ALEN
);
7171 os_memcpy(pos
, target_ap
, ETH_ALEN
);
7173 os_memcpy(pos
, ies
, ies_len
);
7175 ret
= wpa_driver_nl80211_send_action(bss
, drv
->assoc_freq
, 0,
7176 drv
->bssid
, own_addr
, drv
->bssid
,
7184 static int nl80211_signal_monitor(void *priv
, int threshold
, int hysteresis
)
7186 struct i802_bss
*bss
= priv
;
7187 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7188 struct nl_msg
*msg
, *cqm
= NULL
;
7190 wpa_printf(MSG_DEBUG
, "nl80211: Signal monitor threshold=%d "
7191 "hysteresis=%d", threshold
, hysteresis
);
7193 msg
= nlmsg_alloc();
7197 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_CQM
);
7199 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
7201 cqm
= nlmsg_alloc();
7205 NLA_PUT_U32(cqm
, NL80211_ATTR_CQM_RSSI_THOLD
, threshold
);
7206 NLA_PUT_U32(cqm
, NL80211_ATTR_CQM_RSSI_HYST
, hysteresis
);
7207 nla_put_nested(msg
, NL80211_ATTR_CQM
, cqm
);
7209 if (send_and_recv_msgs(drv
, msg
, NULL
, NULL
) == 0)
7221 static int nl80211_signal_poll(void *priv
, struct wpa_signal_info
*si
)
7223 struct i802_bss
*bss
= priv
;
7224 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7227 os_memset(si
, 0, sizeof(*si
));
7228 res
= nl80211_get_link_signal(drv
, si
);
7232 return nl80211_get_link_noise(drv
, si
);
7236 static int nl80211_send_frame(void *priv
, const u8
*data
, size_t data_len
,
7239 struct i802_bss
*bss
= priv
;
7240 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7241 return wpa_driver_nl80211_send_frame(drv
, data
, data_len
, encrypt
);
7245 static int nl80211_set_param(void *priv
, const char *param
)
7247 wpa_printf(MSG_DEBUG
, "nl80211: driver param='%s'", param
);
7252 if (os_strstr(param
, "use_p2p_group_interface=1")) {
7253 struct i802_bss
*bss
= priv
;
7254 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7256 wpa_printf(MSG_DEBUG
, "nl80211: Use separate P2P group "
7258 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_P2P_CONCURRENT
;
7259 drv
->capa
.flags
|= WPA_DRIVER_FLAGS_P2P_MGMT_AND_NON_P2P
;
7261 #endif /* CONFIG_P2P */
7267 static void * nl80211_global_init(void)
7269 struct nl80211_global
*global
;
7270 struct netlink_config
*cfg
;
7272 global
= os_zalloc(sizeof(*global
));
7275 global
->ioctl_sock
= -1;
7276 dl_list_init(&global
->interfaces
);
7277 global
->if_add_ifindex
= -1;
7279 cfg
= os_zalloc(sizeof(*cfg
));
7284 cfg
->newlink_cb
= wpa_driver_nl80211_event_rtm_newlink
;
7285 cfg
->dellink_cb
= wpa_driver_nl80211_event_rtm_dellink
;
7286 global
->netlink
= netlink_init(cfg
);
7287 if (global
->netlink
== NULL
) {
7292 if (wpa_driver_nl80211_init_nl_global(global
) < 0)
7295 global
->ioctl_sock
= socket(PF_INET
, SOCK_DGRAM
, 0);
7296 if (global
->ioctl_sock
< 0) {
7297 perror("socket(PF_INET,SOCK_DGRAM)");
7304 nl80211_global_deinit(global
);
7309 static void nl80211_global_deinit(void *priv
)
7311 struct nl80211_global
*global
= priv
;
7314 if (!dl_list_empty(&global
->interfaces
)) {
7315 wpa_printf(MSG_ERROR
, "nl80211: %u interface(s) remain at "
7316 "nl80211_global_deinit",
7317 dl_list_len(&global
->interfaces
));
7320 if (global
->netlink
)
7321 netlink_deinit(global
->netlink
);
7323 if (global
->nl80211
)
7324 genl_family_put(global
->nl80211
);
7325 nl_destroy_handles(&global
->nl
);
7328 nl_cb_put(global
->nl_cb
);
7330 if (global
->ioctl_sock
>= 0)
7331 close(global
->ioctl_sock
);
7337 static const char * nl80211_get_radio_name(void *priv
)
7339 struct i802_bss
*bss
= priv
;
7340 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7341 return drv
->phyname
;
7345 static int nl80211_pmkid(struct i802_bss
*bss
, int cmd
, const u8
*bssid
,
7350 msg
= nlmsg_alloc();
7354 nl80211_cmd(bss
->drv
, msg
, 0, cmd
);
7356 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, if_nametoindex(bss
->ifname
));
7358 NLA_PUT(msg
, NL80211_ATTR_PMKID
, 16, pmkid
);
7360 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, bssid
);
7362 return send_and_recv_msgs(bss
->drv
, msg
, NULL
, NULL
);
7368 static int nl80211_add_pmkid(void *priv
, const u8
*bssid
, const u8
*pmkid
)
7370 struct i802_bss
*bss
= priv
;
7371 wpa_printf(MSG_DEBUG
, "nl80211: Add PMKID for " MACSTR
, MAC2STR(bssid
));
7372 return nl80211_pmkid(bss
, NL80211_CMD_SET_PMKSA
, bssid
, pmkid
);
7376 static int nl80211_remove_pmkid(void *priv
, const u8
*bssid
, const u8
*pmkid
)
7378 struct i802_bss
*bss
= priv
;
7379 wpa_printf(MSG_DEBUG
, "nl80211: Delete PMKID for " MACSTR
,
7381 return nl80211_pmkid(bss
, NL80211_CMD_DEL_PMKSA
, bssid
, pmkid
);
7385 static int nl80211_flush_pmkid(void *priv
)
7387 struct i802_bss
*bss
= priv
;
7388 wpa_printf(MSG_DEBUG
, "nl80211: Flush PMKIDs");
7389 return nl80211_pmkid(bss
, NL80211_CMD_FLUSH_PMKSA
, NULL
, NULL
);
7393 static void nl80211_set_rekey_info(void *priv
, const u8
*kek
, const u8
*kck
,
7394 const u8
*replay_ctr
)
7396 struct i802_bss
*bss
= priv
;
7397 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7398 struct nlattr
*replay_nested
;
7401 msg
= nlmsg_alloc();
7405 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_SET_REKEY_OFFLOAD
);
7407 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, bss
->ifindex
);
7409 replay_nested
= nla_nest_start(msg
, NL80211_ATTR_REKEY_DATA
);
7411 goto nla_put_failure
;
7413 NLA_PUT(msg
, NL80211_REKEY_DATA_KEK
, NL80211_KEK_LEN
, kek
);
7414 NLA_PUT(msg
, NL80211_REKEY_DATA_KCK
, NL80211_KCK_LEN
, kck
);
7415 NLA_PUT(msg
, NL80211_REKEY_DATA_REPLAY_CTR
, NL80211_REPLAY_CTR_LEN
,
7418 nla_nest_end(msg
, replay_nested
);
7420 send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7427 static void nl80211_poll_client(void *priv
, const u8
*own_addr
, const u8
*addr
,
7430 struct i802_bss
*bss
= priv
;
7432 struct ieee80211_hdr hdr
;
7434 } STRUCT_PACKED nulldata
;
7437 /* Send data frame to poll STA and check whether this frame is ACKed */
7439 os_memset(&nulldata
, 0, sizeof(nulldata
));
7442 nulldata
.hdr
.frame_control
=
7443 IEEE80211_FC(WLAN_FC_TYPE_DATA
,
7444 WLAN_FC_STYPE_QOS_NULL
);
7445 size
= sizeof(nulldata
);
7447 nulldata
.hdr
.frame_control
=
7448 IEEE80211_FC(WLAN_FC_TYPE_DATA
,
7449 WLAN_FC_STYPE_NULLFUNC
);
7450 size
= sizeof(struct ieee80211_hdr
);
7453 nulldata
.hdr
.frame_control
|= host_to_le16(WLAN_FC_FROMDS
);
7454 os_memcpy(nulldata
.hdr
.IEEE80211_DA_FROMDS
, addr
, ETH_ALEN
);
7455 os_memcpy(nulldata
.hdr
.IEEE80211_BSSID_FROMDS
, own_addr
, ETH_ALEN
);
7456 os_memcpy(nulldata
.hdr
.IEEE80211_SA_FROMDS
, own_addr
, ETH_ALEN
);
7458 if (wpa_driver_nl80211_send_mlme(bss
, (u8
*) &nulldata
, size
) < 0)
7459 wpa_printf(MSG_DEBUG
, "nl80211_send_null_frame: Failed to "
7466 static int nl80211_send_tdls_mgmt(void *priv
, const u8
*dst
, u8 action_code
,
7467 u8 dialog_token
, u16 status_code
,
7468 const u8
*buf
, size_t len
)
7470 struct i802_bss
*bss
= priv
;
7471 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7474 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
7480 msg
= nlmsg_alloc();
7484 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TDLS_MGMT
);
7485 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7486 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, dst
);
7487 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_ACTION
, action_code
);
7488 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_DIALOG_TOKEN
, dialog_token
);
7489 NLA_PUT_U16(msg
, NL80211_ATTR_STATUS_CODE
, status_code
);
7490 NLA_PUT(msg
, NL80211_ATTR_IE
, len
, buf
);
7492 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7500 static int nl80211_tdls_oper(void *priv
, enum tdls_oper oper
, const u8
*peer
)
7502 struct i802_bss
*bss
= priv
;
7503 struct wpa_driver_nl80211_data
*drv
= bss
->drv
;
7505 enum nl80211_tdls_operation nl80211_oper
;
7507 if (!(drv
->capa
.flags
& WPA_DRIVER_FLAGS_TDLS_SUPPORT
))
7511 case TDLS_DISCOVERY_REQ
:
7512 nl80211_oper
= NL80211_TDLS_DISCOVERY_REQ
;
7515 nl80211_oper
= NL80211_TDLS_SETUP
;
7518 nl80211_oper
= NL80211_TDLS_TEARDOWN
;
7520 case TDLS_ENABLE_LINK
:
7521 nl80211_oper
= NL80211_TDLS_ENABLE_LINK
;
7523 case TDLS_DISABLE_LINK
:
7524 nl80211_oper
= NL80211_TDLS_DISABLE_LINK
;
7534 msg
= nlmsg_alloc();
7538 nl80211_cmd(drv
, msg
, 0, NL80211_CMD_TDLS_OPER
);
7539 NLA_PUT_U8(msg
, NL80211_ATTR_TDLS_OPERATION
, nl80211_oper
);
7540 NLA_PUT_U32(msg
, NL80211_ATTR_IFINDEX
, drv
->ifindex
);
7541 NLA_PUT(msg
, NL80211_ATTR_MAC
, ETH_ALEN
, peer
);
7543 return send_and_recv_msgs(drv
, msg
, NULL
, NULL
);
7550 #endif /* CONFIG TDLS */
7553 const struct wpa_driver_ops wpa_driver_nl80211_ops
= {
7555 .desc
= "Linux nl80211/cfg80211",
7556 .get_bssid
= wpa_driver_nl80211_get_bssid
,
7557 .get_ssid
= wpa_driver_nl80211_get_ssid
,
7558 .set_key
= wpa_driver_nl80211_set_key
,
7559 .scan2
= wpa_driver_nl80211_scan
,
7560 .sched_scan
= wpa_driver_nl80211_sched_scan
,
7561 .stop_sched_scan
= wpa_driver_nl80211_stop_sched_scan
,
7562 .get_scan_results2
= wpa_driver_nl80211_get_scan_results
,
7563 .deauthenticate
= wpa_driver_nl80211_deauthenticate
,
7564 .disassociate
= wpa_driver_nl80211_disassociate
,
7565 .authenticate
= wpa_driver_nl80211_authenticate
,
7566 .associate
= wpa_driver_nl80211_associate
,
7567 .global_init
= nl80211_global_init
,
7568 .global_deinit
= nl80211_global_deinit
,
7569 .init2
= wpa_driver_nl80211_init
,
7570 .deinit
= wpa_driver_nl80211_deinit
,
7571 .get_capa
= wpa_driver_nl80211_get_capa
,
7572 .set_operstate
= wpa_driver_nl80211_set_operstate
,
7573 .set_supp_port
= wpa_driver_nl80211_set_supp_port
,
7574 .set_country
= wpa_driver_nl80211_set_country
,
7575 .set_ap
= wpa_driver_nl80211_set_ap
,
7576 .if_add
= wpa_driver_nl80211_if_add
,
7577 .if_remove
= wpa_driver_nl80211_if_remove
,
7578 .send_mlme
= wpa_driver_nl80211_send_mlme
,
7579 .get_hw_feature_data
= wpa_driver_nl80211_get_hw_feature_data
,
7580 .sta_add
= wpa_driver_nl80211_sta_add
,
7581 .sta_remove
= wpa_driver_nl80211_sta_remove
,
7582 .hapd_send_eapol
= wpa_driver_nl80211_hapd_send_eapol
,
7583 .sta_set_flags
= wpa_driver_nl80211_sta_set_flags
,
7585 .hapd_init
= i802_init
,
7586 .hapd_deinit
= i802_deinit
,
7587 .set_wds_sta
= i802_set_wds_sta
,
7588 #endif /* HOSTAPD */
7589 #if defined(HOSTAPD) || defined(CONFIG_AP)
7590 .get_seqnum
= i802_get_seqnum
,
7591 .flush
= i802_flush
,
7592 .read_sta_data
= i802_read_sta_data
,
7593 .get_inact_sec
= i802_get_inact_sec
,
7594 .sta_clear_stats
= i802_sta_clear_stats
,
7595 .set_rts
= i802_set_rts
,
7596 .set_frag
= i802_set_frag
,
7597 .set_tx_queue_params
= i802_set_tx_queue_params
,
7598 .set_sta_vlan
= i802_set_sta_vlan
,
7599 .set_rate_sets
= i802_set_rate_sets
,
7600 .sta_deauth
= i802_sta_deauth
,
7601 .sta_disassoc
= i802_sta_disassoc
,
7602 #endif /* HOSTAPD || CONFIG_AP */
7603 .set_freq
= i802_set_freq
,
7604 .send_action
= wpa_driver_nl80211_send_action
,
7605 .send_action_cancel_wait
= wpa_driver_nl80211_send_action_cancel_wait
,
7606 .remain_on_channel
= wpa_driver_nl80211_remain_on_channel
,
7607 .cancel_remain_on_channel
=
7608 wpa_driver_nl80211_cancel_remain_on_channel
,
7609 .probe_req_report
= wpa_driver_nl80211_probe_req_report
,
7610 .deinit_ap
= wpa_driver_nl80211_deinit_ap
,
7611 .resume
= wpa_driver_nl80211_resume
,
7612 .send_ft_action
= nl80211_send_ft_action
,
7613 .signal_monitor
= nl80211_signal_monitor
,
7614 .signal_poll
= nl80211_signal_poll
,
7615 .send_frame
= nl80211_send_frame
,
7616 .set_param
= nl80211_set_param
,
7617 .get_radio_name
= nl80211_get_radio_name
,
7618 .add_pmkid
= nl80211_add_pmkid
,
7619 .remove_pmkid
= nl80211_remove_pmkid
,
7620 .flush_pmkid
= nl80211_flush_pmkid
,
7621 .set_rekey_info
= nl80211_set_rekey_info
,
7622 .poll_client
= nl80211_poll_client
,
7624 .send_tdls_mgmt
= nl80211_send_tdls_mgmt
,
7625 .tdls_oper
= nl80211_tdls_oper
,
7626 #endif /* CONFIG_TDLS */