2 ###############################################################################
4 # IPFire.org - A linux based firewall #
5 # Copyright (C) 2010 Michael Tremer & Christian Schmidt #
7 # This program is free software: you can redistribute it and/or modify #
8 # it under the terms of the GNU General Public License as published by #
9 # the Free Software Foundation, either version 3 of the License, or #
10 # (at your option) any later version. #
12 # This program is distributed in the hope that it will be useful, #
13 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
14 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
15 # GNU General Public License for more details. #
17 # You should have received a copy of the GNU General Public License #
18 # along with this program. If not, see <http://www.gnu.org/licenses/>. #
20 ###############################################################################
22 .
/usr
/lib
/network
/header-port
24 HOOK_PORT_PATTERN
="${PORT_PATTERN_ACCESSPOINT}"
42 # Disable WPA3+2 by default
43 DEFAULT_WPA3_PERSONAL
="off"
44 DEFAULT_WPA2_PERSONAL
="off"
46 # Broadcast SSID by default
47 DEFAULT_BROADCAST_SSID
="on"
49 # Perform radar detection by default when possible
52 # 802.11w - Management Frame Protection
55 DEFAULT_ENVIRONMENT
="${WIRELESS_DEFAULT_ENVIRONMENT}"
57 hook_check_settings
() {
60 assert isset BROADCAST_SSID
61 assert isbool BROADCAST_SSID
66 assert isoneof MODE
${HOSTAPD_SUPPORTED_MODES}
71 assert wireless_environment_is_valid
"${ENVIRONMENT}"
74 hook_parse_cmdline
() {
75 while [ $# -gt 0 ]; do
78 BROADCAST_SSID
=$
(cli_get_val
"${1}")
81 CHANNEL
=$
(cli_get_val
"${1}")
83 --channel-bandwidth=*)
84 CHANNEL_BANDWIDTH
="$(cli_get_val "${1}")"
87 DFS
="$(cli_get_bool "${1}")"
90 ENVIRONMENT
="$(cli_get_val "${1}")"
92 if ! wireless_environment_is_valid
"${ENVIRONMENT}"; then
93 error
"Invalid wireless environment: ${ENVIRONMENT}"
98 ADDRESS
=$
(cli_get_val
"${1}")
101 MFP
="$(cli_get_bool "${1}")"
104 MODE
=$
(cli_get_val
"${1}")
106 if ! isoneof MODE
${HOSTAPD_SUPPORTED_MODES}; then
107 error
"Unsupported mode: ${MODE}"
108 error
"Mode must be one of ${HOSTAPD_SUPPORTED_MODES}"
113 PHY
=$
(cli_get_val
"${1}")
116 SECRET
="$(cli_get_val "${1}")"
119 SSID
=$
(cli_get_val
"${1}")
122 WPA2_PERSONAL
="$(cli_get_bool "${1}")"
125 WPA3_PERSONAL
="$(cli_get_bool "${1}")"
128 warning
"Ignoring unknown argument '${1}'"
134 # Generate a random MAC address if none is set
135 if ! isset ADDRESS
; then
136 ADDRESS
="$(mac_generate)"
140 if ! isset MODE
; then
141 error
"--mode is not set"
145 # Automatically enable ACS if no channel is set and ACS is available
146 if ! isset CHANNEL
&& phy_supports_acs
"${PHY}"; then
149 log INFO
"Automatic Channel Selection (ACS) enabled"
152 # Channel bandwidth must match the mode
153 if isset CHANNEL_BANDWIDTH
&& ! wireless_channel_bandwidth_is_valid
"${MODE}" "${CHANNEL_BANDWIDTH}"; then
154 error
"Channel Bandwidth '${CHANNEL_BANDWIDTH}' is not supported for ${MODE}"
158 # Check if SECRET is set when WPA* is enabled
159 if enabled WPA3_PERSONAL || enabled WPA2_PERSONAL
; then
160 if ! isset SECRET
; then
161 error
"Secret is not set when PSK authentication is enabled"
165 # Check if SECRET is valid
166 if ! wireless_pre_shared_key_is_valid
"${SECRET}"; then
167 error
"The secret is in an invalid format"
172 # Save address of phy do identify it again
173 PHY
=$
(phy_get
${PHY})
174 PHY
=$
(phy_get_address
${PHY})
181 if ! hook_default_edit
"$@"; then
185 # To apply all changes, we need to restart the port
186 port_restart
"${port}"
193 device_exists
"${port}" && exit ${EXIT_OK}
195 port_settings_read
"${port}"
197 # Check if the PHY is present.
198 local phy
=$
(phy_get
${PHY})
200 log DEBUG
"phy '${PHY}' is not present"
204 # Create the wireless device
205 wireless_create
"${port}" \
208 --address="${ADDRESS}"
217 # Remove the device if present
218 if device_exists
"${port}"; then
219 wireless_remove
"${port}"
229 # The port must already exist before
230 # hostapd is started. Otherwise it will
231 # fail horribly over and over again.
232 assert device_exists
"${port}"
234 hostapd_start
"${port}"
241 hostapd_stop
"${port}"
248 case "$(hotplug_action)" in
250 # Create the port when the phy is plugged in
251 if hotplug_event_port_uses_phy
"${port}"; then
252 hook_create
"${port}"
258 if hotplug_event_port_is_interface
"${port}"; then
259 hostapd_stop
"${port}"
266 exit ${EXIT_NOT_HANDLED}