]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blame - html/cgi-bin/wlanap.cgi
hostap: Enable option to force clients to use 802.11w
[people/pmueller/ipfire-2.x.git] / html / cgi-bin / wlanap.cgi
CommitLineData
27731caa
CS
1#!/usr/bin/perl
2###############################################################################
3# #
4# IPFire.org - A linux based firewall #
f89678de 5# Copyright (C) 2007-2014 IPFire Team <info@ipfire.org> #
27731caa
CS
6# #
7# This program is free software: you can redistribute it and/or modify #
8# it under the terms of the GNU General Public License as published by #
9# the Free Software Foundation, either version 3 of the License, or #
10# (at your option) any later version. #
11# #
12# This program is distributed in the hope that it will be useful, #
13# but WITHOUT ANY WARRANTY; without even the implied warranty of #
14# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
15# GNU General Public License for more details. #
16# #
17# You should have received a copy of the GNU General Public License #
18# along with this program. If not, see <http://www.gnu.org/licenses/>. #
19# #
20###############################################################################
21#
22# WLAN AP cgi based on wlanap.cgi written by Markus Hoffmann & Olaf Westrik
23#
24
25use strict;
26
27# enable only the following on debugging purpose
8aa49c15
CS
28#use warnings;
29#use CGI::Carp 'fatalsToBrowser';
27731caa
CS
30
31require '/var/ipfire/general-functions.pl';
32require '/var/ipfire/lang.pl';
33require '/var/ipfire/header.pl';
34
35my $debug = 0;
8c2f203c 36my $status = '';
27731caa 37my $errormessage = '';
3827d1f6
AM
38my $status_started = "<td align='center' bgcolor='${Header::colourgreen}'><font color='white'><strong>$Lang::tr{'running'}</strong></font></td>";
39my $status_stopped = "<td align='center' bgcolor='${Header::colourred}'><font color='white'><strong>$Lang::tr{'stopped'}</strong></font></td>";
40my $count=0;
41my $col='';
27731caa
CS
42# get rid of used only once warnings
43my @onlyonce = ( $Header::colourgreen, $Header::colourred );
44undef @onlyonce;
45
46my %selected=();
47my %checked=();
48my %color = ();
49my %mainsettings = ();
54359730
CS
50my %netsettings=();
51my %wlanapsettings=();
27731caa 52my $channel = '';
c3d9a16d 53my $country = '';
27731caa
CS
54my $txpower = '';
55
56&General::readhash("${General::swroot}/main/settings", \%mainsettings);
57&General::readhash("/srv/web/ipfire/html/themes/".$mainsettings{'THEME'}."/include/colors.txt", \%color);
54359730 58&General::readhash("/var/ipfire/ethernet/settings", \%netsettings);
27731caa 59
27731caa 60$wlanapsettings{'APMODE'} = 'on';
23e368ab 61$wlanapsettings{'ACTION'} = '';
92f2665d
CS
62$wlanapsettings{'MACMODE'} = '0';
63$wlanapsettings{'INTERFACE'} = '';
27731caa
CS
64$wlanapsettings{'SSID'} = 'IPFire';
65$wlanapsettings{'HIDESSID'} = 'off';
91197a3f 66$wlanapsettings{'ENC'} = 'wpa2'; # none / wpa1 /wpa2
27731caa 67$wlanapsettings{'TXPOWER'} = 'auto';
2bb836df 68$wlanapsettings{'CHANNEL'} = '6';
c3d9a16d 69$wlanapsettings{'COUNTRY'} = '00';
7d30ef24 70$wlanapsettings{'HW_MODE'} = 'g';
27731caa 71$wlanapsettings{'PWD'} = 'IPFire-2.x';
27731caa
CS
72$wlanapsettings{'SYSLOGLEVEL'} = '0';
73$wlanapsettings{'DEBUG'} = '4';
c17883fd 74$wlanapsettings{'DRIVER'} = 'NL80211';
6e346fe0 75$wlanapsettings{'HTCAPS'} = '';
f887bf5f 76$wlanapsettings{'VHTCAPS'} = '';
d823d5f0 77$wlanapsettings{'NOSCAN'} = 'off';
5b4464a9 78$wlanapsettings{'CLIENTISOLATION'} = 'off';
37a83c83 79$wlanapsettings{'IEEE80211W'} = 'off';
27731caa 80
27731caa 81&General::readhash("/var/ipfire/wlanap/settings", \%wlanapsettings);
23e368ab 82&Header::getcgihash(\%wlanapsettings);
27731caa 83
23e368ab 84my @macs = $wlanapsettings{'MACS'};
27731caa 85
23e368ab
CS
86delete $wlanapsettings{'__CGI__'};
87delete $wlanapsettings{'x'};
88delete $wlanapsettings{'y'};
89delete $wlanapsettings{'MACS'};
90delete $wlanapsettings{'ACCEPT_MACS'};
91delete $wlanapsettings{'DENY_MACS'};
27731caa
CS
92
93&Header::showhttpheaders();
94
182a817a
JPT
95my $string=();
96my $status=();
97my $errormessage = '';
98my $memory = 0;
99my @memory=();
100my @pid=();
101my @hostapd=();
102sub pid
103{
104# for pid and memory
105 open(FILE, '/usr/local/bin/addonctrl hostapd status | ');
106 @hostapd = <FILE>;
107 close(FILE);
108 $string = join("", @hostapd);
109 $string =~ s/[a-z_]//gi;
110 $string =~ s/\[[0-1]\;[0-9]+//gi;
111 $string =~ s/[\(\)\.]//gi;
112 $string =~ s/ //gi;
113 $string =~ s/\e//gi;
114 @pid = split(/\s/,$string);
115 if (open(FILE, "/proc/$pid[0]/statm")){
116 my $temp = <FILE>;
117 @memory = split(/ /,$temp);
118 close(FILE);
119 }
120 $memory+=$memory[0];
121}
122pid();
123
124
125
126if ( $wlanapsettings{'ACTION'} eq "$Lang::tr{'wlanap del interface'}" ){
127 delete $wlanapsettings{'INTERFACE'};
128 &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings);
129}
130
23e368ab 131if ( $wlanapsettings{'ACTION'} eq "$Lang::tr{'save'}" ){
3af89eb5 132 # verify WPA Passphrase - only with enabled enc
e62efbb7 133 if (($wlanapsettings{'ENC'} eq "wpa1") || ($wlanapsettings{'ENC'} eq "wpa2") || ($wlanapsettings{'ENC'} eq "wpa1+2")){
3af89eb5 134 # must be 8 .. 63 characters
182a817a
JPT
135 if ( (length($wlanapsettings{'PWD'}) < 8) || (length($wlanapsettings{'PWD'}) > 63)){
136 $errormessage .= "$Lang::tr{'wlanap invalid wpa'}<br />";
137 }
3af89eb5 138 # only ASCII alowed
cdbeabe2 139 if ( !($wlanapsettings{'PWD'} !~ /[^\x00-\x7f]/) ){
3af89eb5
AF
140 $errormessage .= "$Lang::tr{'wlanap invalid wpa'}<br />";
141 }
27731caa
CS
142 }
143
144 if ( $errormessage eq '' ){
92f2665d 145 &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings);
27731caa
CS
146 &WriteConfig_hostapd();
147
91197a3f 148 system("/usr/local/bin/wlanapctrl restart >/dev/null 2>&1");
182a817a 149 pid();
27731caa 150 }
182a817a 151}elsif ( $wlanapsettings{'ACTION'} eq "$Lang::tr{'wlanap interface'}" ){
92f2665d 152 &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings);
182a817a 153}elsif ( ($wlanapsettings{'ACTION'} eq "$Lang::tr{'start'}") && ($memory == 0) ){
27731caa 154 system("/usr/local/bin/wlanapctrl start >/dev/null 2>&1");
182a817a
JPT
155 pid();
156}elsif ( $wlanapsettings{'ACTION'} eq "$Lang::tr{'stop'}" ){
27731caa 157 system("/usr/local/bin/wlanapctrl stop >/dev/null 2>&1");
182a817a 158 $memory=0;
27731caa
CS
159}
160
d3790c6a 161&Header::openpage($Lang::tr{'wlanap configuration'}, 1, '', '');
27731caa 162&Header::openbigbox('100%', 'left', '', $errormessage);
27731caa
CS
163
164if ( $errormessage ){
54359730 165 &Header::openbox('100%', 'center', $Lang::tr{'error messages'});
27731caa
CS
166 print "<class name='base'>$errormessage\n";
167 print "&nbsp;</class>\n";
168 &Header::closebox();
169}
170
171
172# Found this usefull piece of code in BlockOutTraffic AddOn 8-)
173# fwrules.cgi
174###############
175# DEBUG DEBUG
176if ( $debug ){
54359730 177 &Header::openbox('100%', 'center', 'DEBUG');
27731caa 178 my $debugCount = 0;
23e368ab
CS
179 foreach my $line (sort keys %wlanapsettings) {
180 print "$line = '$wlanapsettings{$line}'<br />\n";
27731caa
CS
181 $debugCount++;
182 }
183 print "&nbsp;Count: $debugCount\n";
184 &Header::closebox();
185}
186# DEBUG DEBUG
187###############
188
189#
190# Driver and status detection
191#
192my $wlan_card_status = 'dummy';
193my $wlan_ap_status = '';
92f2665d
CS
194my $message = "";
195
196$selected{'INTERFACE'}{'green0'} = '';
197$selected{'INTERFACE'}{'blue0'} = '';
198$selected{'ENC'}{$wlanapsettings{'INTERFACE'}} = "selected='selected'";
27731caa 199
92f2665d 200if ( ($wlanapsettings{'INTERFACE'} eq '') ){
182a817a 201 $message = $Lang::tr{'wlanap select interface'};
92f2665d
CS
202 &Header::openbox('100%', 'center', "WLAN AP");
203print <<END
204$message<br />
205<form method='post' action='$ENV{'SCRIPT_NAME'}'>
206<select name='INTERFACE'>
92f2665d
CS
207END
208;
209 if ( $netsettings{'BLUE_DEV'} ne ''){
210 print "<option value='blue0' $selected{'INTERFACE'}{'blue0'}>blue0</option>";
211 }
212print <<END
182a817a 213 <option value='green0' $selected{'INTERFACE'}{'green0'}>green0</option>
92f2665d 214</select>
182a817a
JPT
215<br /><br />
216<hr size='1'>
217 <input type='submit' name='ACTION' value='$Lang::tr{'wlanap interface'}' /></form>
92f2665d
CS
218END
219;
220 &Header::closebox();
221 &Header::closebigbox();
222 &Header::closepage();
223 exit;
27731caa 224}else{
92f2665d 225 my $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} 2>/dev/null`;
27731caa
CS
226
227 if ( $cmd_out eq '' ){
182a817a 228 $message = "$Lang::tr{'wlanap no interface'}";
92f2665d 229 $wlan_card_status = '';
27731caa 230 }else{
92f2665d 231 $cmd_out = `/sbin/ifconfig | /bin/grep $wlanapsettings{'INTERFACE'}`;
27731caa
CS
232 if ( $cmd_out eq '' ){
233 $wlan_card_status = 'down';
234 }else{
235 $wlan_card_status = 'up';
92f2665d 236 $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} | /bin/grep "Mode:Master"`;
27731caa
CS
237 if ( $cmd_out ne '' ){
238 $wlan_ap_status = 'up';
27731caa
CS
239 }
240 }
241 }
242}
243
e62efbb7
AF
244# Change old "n" to "gn"
245if ( $wlanapsettings{'HW_MODE'} eq 'n' ) {
246 $wlanapsettings{'HW_MODE'}='gn';
247}
248
b8990355
CS
249$checked{'HIDESSID'}{'off'} = '';
250$checked{'HIDESSID'}{'on'} = '';
251$checked{'HIDESSID'}{$wlanapsettings{'HIDESSID'}} = "checked='checked'";
27731caa 252
d823d5f0
AF
253$checked{'NOSCAN'}{'off'} = '';
254$checked{'NOSCAN'}{'on'} = '';
255$checked{'NOSCAN'}{$wlanapsettings{'NOSCAN'}} = "checked='checked'";
256
5b4464a9
PM
257$checked{'CLIENTISOLATION'}{'off'} = '';
258$checked{'CLIENTISOLATION'}{'on'} = '';
259$checked{'CLIENTISOLATION'}{$wlanapsettings{'CLIENTISOLATION'}} = "checked='checked'";
260
37a83c83
MT
261$checked{'IEEE80211W'}{'off'} = '';
262$checked{'IEEE80211W'}{'on'} = '';
263$checked{'IEEE80211W'}{$wlanapsettings{'IEEE80211W'}} = "checked='checked'";
264
27731caa 265$selected{'ENC'}{$wlanapsettings{'ENC'}} = "selected='selected'";
30313f28 266$selected{'CHANNEL'}{$wlanapsettings{'CHANNEL'}} = "selected='selected'";
c3d9a16d 267$selected{'COUNTRY'}{$wlanapsettings{'COUNTRY'}} = "selected='selected'";
54359730 268$selected{'TXPOWER'}{$wlanapsettings{'TXPOWER'}} = "selected='selected'";
7d30ef24 269$selected{'HW_MODE'}{$wlanapsettings{'HW_MODE'}} = "selected='selected'";
92f2665d 270$selected{'MACMODE'}{$wlanapsettings{'MACMODE'}} = "selected='selected'";
27731caa 271
c3d9a16d 272my $monwlaninterface = $wlanapsettings{'INTERFACE'};
56c2cc65 273if ( -d '/sys/class/net/mon.'.$wlanapsettings{'INTERFACE'} ) {
c3d9a16d
AF
274 $monwlaninterface = 'mon.'.$wlanapsettings{'INTERFACE'};
275}
276
0f0d6a5a 277my @channellist_cmd;
ea10f1a0 278my @channellist = (0);
0f0d6a5a
AF
279
280if ( $wlanapsettings{'DRIVER'} eq 'NL80211' ){
281my $wiphy = `iw dev $wlanapsettings{'INTERFACE'} info | grep wiphy | cut -d" " -f2`;
282chomp $wiphy;
283
05583186 284@channellist_cmd = `iw phy phy$wiphy info | grep " MHz \\\[" | grep -v "(disabled)" | grep -v "no IBSS" | grep -v "no IR" | grep -v "passive scanning" 2>/dev/null`;
0f0d6a5a
AF
285# get available channels
286
287my @temp;
288foreach (@channellist_cmd){
289$_ =~ /(.*) \[(\d+)(.*)\]/;
290$channel = $2;chomp $channel;
12f74b8f 291if ( $channel =~ /\d+/ ){push(@temp,$channel + 0);}
0f0d6a5a 292}
ea10f1a0 293push(@channellist, @temp);
0f0d6a5a
AF
294} else {
295@channellist_cmd = `iwlist $monwlaninterface channel|tail -n +2 2>/dev/null`;
27731caa 296# get available channels
27731caa 297
54359730 298my @temp;
8c2f203c 299foreach (@channellist_cmd){
54359730 300$_ =~ /(.*)Channel (\d+)(.*):/;
8c2f203c 301$channel = $2;chomp $channel;
12f74b8f 302if ( $channel =~ /\d+/ ){push(@temp,$channel + 0);}
27731caa 303}
ea10f1a0 304push(@channellist, @temp);
0f0d6a5a 305}
54359730 306
c3d9a16d
AF
307my @countrylist_cmd = `regdbdump /usr/lib/crda/regulatory.bin 2>/dev/null`;
308# get available country codes
309
8e23b351 310my @temp = "00";
c3d9a16d
AF
311foreach (@countrylist_cmd){
312$_ =~ /country (.*):/;
313$country = $1;chomp $country;
314if ( $country =~ /[0,A-Z][0,A-Z]/ ) {push(@temp,$country);}
315}
316my @countrylist = @temp;
317
318my @txpower_cmd = `iwlist $monwlaninterface txpower 2>/dev/null`;
319if ( $wlanapsettings{'DRIVER'} eq 'NL80211' ){
320 # There is a bug with NL80211 only all devices can displayed
321 @txpower_cmd = `iwlist txpower 2>/dev/null | sed -e "s|unknown transmit-power information.||g"`;
322}
323# get available power
27731caa 324
27731caa 325$selected{'SYSLOGLEVEL'}{$wlanapsettings{'SYSLOGLEVEL'}} = "selected='selected'";
27731caa
CS
326$selected{'DEBUG'}{$wlanapsettings{'DEBUG'}} = "selected='selected'";
327
328#
329# Status box
330#
54359730 331&Header::openbox('100%', 'center', "WLAN AP");
27731caa 332print <<END
3827d1f6 333<table width='80%' cellspacing='1' class='tbl'>
27731caa
CS
334END
335;
182a817a 336
27731caa 337if ( $wlan_card_status ne '' ){
3827d1f6
AM
338 print "<tr><th align='left' width='50%'><strong>$Lang::tr{'service'}</strong></th><th width='22%'>Status</th><th width='10%'>PID</th><th width='15%'>$Lang::tr{'memory'}</th><th colspan='2'width='5%'>$Lang::tr{'action'}</th></tr>";
339 print "<tr><td class='base'>$Lang::tr{'wlanap wlan card'} ($wlanapsettings{'DRIVER'})</td>";
27731caa 340 print $wlan_card_status eq 'up' ? $status_started : $status_stopped;
3827d1f6 341 print"<td colspan='4'></td></tr>";
d3790c6a 342 print "<tr><td class='base' bgcolor='$color{'color22'}'>$Lang::tr{'wlanap'}</td>";
27731caa 343 print $wlan_ap_status eq 'up' ? $status_started : $status_stopped;
3827d1f6
AM
344 if ( ($memory != 0) && (@pid[0] ne "///") ){
345 print "<td bgcolor='$color{'color22'}' align='center'>@pid[0]</td>";
346 print "<td bgcolor='$color{'color22'}' align='center'>$memory KB</td>";
347 print "<td bgcolor='$color{'color22'}'><form method='post' action='$ENV{'SCRIPT_NAME'}'><input type='hidden' name='ACTION' value='$Lang::tr{'start'}' /><input type='image' alt='$Lang::tr{'start'}' title='$Lang::tr{'start'}' src='/images/go-up.png' /></form></td>";
348 print "<td bgcolor='$color{'color22'}'><form method='post' action='$ENV{'SCRIPT_NAME'}'><input type='hidden' name='ACTION' value='$Lang::tr{'stop'}' /><input type='image' alt='$Lang::tr{'stop'}' title='$Lang::tr{'stop'}' src='/images/go-down.png' /></form></td>";
349 }else{
350 print"<td colspan='2' bgcolor='$color{'color22'}'></td>";
351 print "<td bgcolor='$color{'color22'}'><form method='post' action='$ENV{'SCRIPT_NAME'}'><input type='hidden' name='ACTION' value='$Lang::tr{'start'}' /><input type='image' alt='$Lang::tr{'start'}' title='$Lang::tr{'start'}' src='/images/go-up.png' /></form></td>";
352 print "<td bgcolor='$color{'color22'}'><form method='post' action='$ENV{'SCRIPT_NAME'}'><input type='hidden' name='ACTION' value='$Lang::tr{'stop'}' /><input type='image' alt='$Lang::tr{'stop'}' title='$Lang::tr{'stop'}' src='/images/go-down.png' /></form></td>";
353 }
182a817a 354
27731caa 355}else{
3827d1f6 356 print "<tr><td class='base'>$message";
182a817a
JPT
357}
358 print "</table>";
359
3827d1f6
AM
360if ( $wlan_card_status eq '' ){
361 print "<br />";
362 print "<table width='80%' cellspacing='0' border='0'>";
363 print "<tr align='center'>";
364 print "<td colspan='4'></td>";
182a817a 365 print "</tr>";
3827d1f6
AM
366 print "<tr align='center'>";
367 print "<td width='40%'>&nbsp;</td>";
368 print "<td width='20%'><form method='post' action='/cgi-bin/wlanap.cgi'><input type='submit' name='ACTION' value='$Lang::tr{'wlanap del interface'}' /></form></td>";
369 print "<td width='20%'></td>";
370 print "<td width='20%'></td>";
182a817a
JPT
371 print "</tr>";
372 print "</table>";
27731caa 373}
27731caa
CS
374
375if ( $wlan_card_status eq '' ){
92f2665d 376 &Header::closebox();
27731caa
CS
377 &Header::closebigbox();
378 &Header::closepage();
379 exit 0;
380}
27731caa 381print <<END
3827d1f6 382<br><br>
23e368ab 383<form method='post' action='$ENV{'SCRIPT_NAME'}'>
3827d1f6
AM
384<table width='80%' cellspacing='0' class='tbl' border='0'>
385<tr><th bgcolor='$color{'color20'}' colspan='4' align='left'><strong>$Lang::tr{'wlanap wlan settings'}</strong></th></tr>
386<tr><td colspan='4'><br></td></tr>
387<tr><td width='25%' class='base'>SSID:&nbsp;</td><td class='base' colspan='3'><input type='text' name='SSID' size='30' value='$wlanapsettings{'SSID'}' /></td></tr>
0d4e628e
JPT
388<!--SSID Broadcast: on => HIDESSID: off -->
389<tr><td width='25%' class='base'>SSID Broadcast:&nbsp;</td><td class='base' colspan='3'>on <input type='radio' name='HIDESSID' value='off' $checked{'HIDESSID'}{'off'} /> | <input type='radio' name='HIDESSID' value='on' $checked{'HIDESSID'}{'on'} /> off</td></tr>
5b4464a9 390<tr><td width='25%' class='base'>Client Isolation:&nbsp;</td><td class='base' colspan='3'>on <input type='radio' name='CLIENTISOLATION' value='off' $checked{'CLIENTISOLATION'}{'off'} /> | <input type='radio' name='CLIENTISOLATION' value='on' $checked{'CLIENTISOLATION'}{'on'} /> off</td></tr>
3827d1f6
AM
391
392
393<tr><td width='25%' class='base'>$Lang::tr{'wlanap country'}:&nbsp;</td><td class='base' colspan='3'>
394 <select name='COUNTRY'>
395END
396;
397foreach $country (@countrylist){
398 print "<option $selected{'COUNTRY'}{$country}>$country</option>";
399}
400print<<END
401</select></td></tr>
7d30ef24
AF
402<tr><td width='25%' class='base'>HW Mode:&nbsp;</td><td class='base' colspan='3'>
403 <select name='HW_MODE'>
182a817a
JPT
404 <option value='a' $selected{'HW_MODE'}{'a'}>802.11a</option>
405 <option value='b' $selected{'HW_MODE'}{'b'}>802.11b</option>
406 <option value='g' $selected{'HW_MODE'}{'g'}>802.11g</option>
e62efbb7
AF
407 <option value='an' $selected{'HW_MODE'}{'an'}>802.11an</option>
408 <option value='gn' $selected{'HW_MODE'}{'gn'}>802.11gn</option>
f887bf5f 409 <option value='ac' $selected{'HW_MODE'}{'ac'}>802.11ac</option>
7d30ef24
AF
410 </select>
411</td></tr>
fe3f3050
AF
412END
413;
414
fe3f3050
AF
415if ( scalar @channellist > 0 ){
416 print <<END
182a817a 417<tr><td width='25%' class='base'>$Lang::tr{'wlanap channel'}:&nbsp;</td><td class='base' colspan='3'>
30313f28 418 <select name='CHANNEL'>
27731caa
CS
419END
420;
fe3f3050 421 foreach $channel (@channellist){
ea10f1a0
MT
422 print "<option $selected{'CHANNEL'}{$channel}>";
423 if ($channel eq 0) {
424 print "- $Lang::tr{'wlanap auto'} -";
425 } else {
426 print $channel;
427 }
428 print "</option>";
fe3f3050
AF
429 }
430 print "</select></td></tr>"
431} else {
432 print <<END
433<tr><td width='25%' class='base'>$Lang::tr{'wlanap channel'}:&nbsp;</td><td class='base' colspan='3'>
434<input type='text' name='CHANNEL' size='10' value='$wlanapsettings{'CHANNEL'}' />
435</td></tr>
436END
437;
27731caa 438}
3827d1f6 439print<<END
d823d5f0 440<tr><td width='25%' class='base'>$Lang::tr{'wlanap neighbor scan'}:&nbsp;</td><td class='base' >on <input type='radio' name='NOSCAN' value='off' $checked{'NOSCAN'}{'off'} /> | <input type='radio' name='NOSCAN' value='on' $checked{'NOSCAN'}{'on'} /> off</td><td class='base' colspan='2'>$Lang::tr{'wlanap neighbor scan warning'}</td></tr>
3827d1f6
AM
441<tr><td colspan='4'><br></td></tr>
442<tr><td width='25%' class='base'>$Lang::tr{'wlanap encryption'}:&nbsp;</td><td class='base' colspan='3'>
443 <select name='ENC'>
444 <option value='none' $selected{'ENC'}{'none'}>$Lang::tr{'wlanap none'}</option>
445 <option value='wpa1' $selected{'ENC'}{'wpa1'}>WPA1</option>
446 <option value='wpa2' $selected{'ENC'}{'wpa2'}>WPA2</option>
447 <option value='wpa1+2' $selected{'ENC'}{'wpa1+2'}>WPA1+2</option>
448 </select>
449</td></tr>
450<tr><td width='25%' class='base'>Passphrase:&nbsp;</td><td class='base' colspan='3'><input type='text' name='PWD' size='30' value='$wlanapsettings{'PWD'}' /></td></tr>
37a83c83
MT
451<tr>
452 <td width='25%' class='base'>$Lang::tr{'wlanap management frame protection'}:&nbsp;</td>
453 <td class='base' colspan="3">
454 <label>
455 $Lang::tr{'on'} <input type='radio' name='IEEE80211W' value='on' $checked{'IEEE80211W'}{'on'} />
456 </label> |
457 <label>
458 <input type='radio' name='IEEE80211W' value='off' $checked{'IEEE80211W'}{'off'} /> $Lang::tr{'off'}
459 </label>
460 </td>
461</tr>
3827d1f6 462<tr><td colspan='4'><br></td></tr>
c3d9a16d
AF
463END
464;
27731caa 465print <<END
3827d1f6 466<tr><td width='25%' class='base'>HT Caps:&nbsp;</td><td class='base' colspan='3'><input type='text' name='HTCAPS' size='30' value='$wlanapsettings{'HTCAPS'}' /></td></tr>
f887bf5f 467<tr><td width='25%' class='base'>VHT Caps:&nbsp;</td><td class='base' colspan='3'><input type='text' name='VHTCAPS' size='30' value='$wlanapsettings{'VHTCAPS'}' /></td></tr>
c17883fd 468<tr><td width='25%' class='base'>Tx Power:&nbsp;</td><td class='base' colspan='3'><input type='text' name='TXPOWER' size='10' value='$wlanapsettings{'TXPOWER'}' /></td></tr>
27731caa
CS
469<tr><td width='25%' class='base'>Loglevel (hostapd):&nbsp;</td><td class='base' width='25%'>
470 <select name='SYSLOGLEVEL'>
182a817a
JPT
471 <option value='0' $selected{'SYSLOGLEVEL'}{'0'}>0 ($Lang::tr{'wlanap verbose'})</option>
472 <option value='1' $selected{'SYSLOGLEVEL'}{'1'}>1 ($Lang::tr{'wlanap debugging'})</option>
473 <option value='2' $selected{'SYSLOGLEVEL'}{'2'}>2 ($Lang::tr{'wlanap informations'})</option>
474 <option value='3' $selected{'SYSLOGLEVEL'}{'3'}>3 ($Lang::tr{'wlanap notifications'})</option>
475 <option value='4' $selected{'SYSLOGLEVEL'}{'4'}>4 ($Lang::tr{'wlanap warnings'})</option>
27731caa
CS
476 </select>
477</td>
478<td width='25%' class='base'>Debuglevel (hostapd):&nbsp;</td><td class='base' width='25%'>
479 <select name='DEBUG'>
182a817a
JPT
480 <option value='0' $selected{'DEBUG'}{'0'}>0 ($Lang::tr{'wlanap verbose'})</option>
481 <option value='1' $selected{'DEBUG'}{'1'}>1 ($Lang::tr{'wlanap debugging'})</option>
482 <option value='2' $selected{'DEBUG'}{'2'}>2 ($Lang::tr{'wlanap informations'})</option>
483 <option value='3' $selected{'DEBUG'}{'3'}>3 ($Lang::tr{'wlanap notifications'})</option>
484 <option value='4' $selected{'DEBUG'}{'4'}>4 ($Lang::tr{'wlanap warnings'})</option>
27731caa
CS
485 </select>
486</td></tr>
3827d1f6 487<tr><td colspan='4'><br></td></tr>
27731caa 488</table>
92f2665d
CS
489END
490;
491if ( $wlanapsettings{'INTERFACE'} =~ /green0/ ){
492 print <<END
493<br />
3827d1f6
AM
494<table width='80%' cellspacing='0' class='tbl' border='1'>
495<tr>
496 <th colspan='3' align='left'>$Lang::tr{'mac filter'}</th>
497</tr>
92f2665d
CS
498<td width='25%' class='base'>Mac Filter:&nbsp;</td><td class='base' width='25%'>
499 <select name='MACMODE'>
500 <option value='0' $selected{'MACMODE'}{'0'}>0 (off)</option>
8aa49c15
CS
501 <option value='1' $selected{'MACMODE'}{'1'}>1 (Accept MACs)</option>
502 <option value='2' $selected{'MACMODE'}{'2'}>2 (Deny MACs)</option>
92f2665d 503 </select>
8aa49c15 504</td><td colspan='2'>Mac Adress List (one per line)<br /><textarea name='MACS' cols='20' rows='5' wrap='off'>
92f2665d
CS
505END
506;
8aa49c15 507 print `cat /var/ipfire/wlanap/macfile`;
92f2665d
CS
508print <<END
509</textarea></td>
92f2665d
CS
510</table>
511END
512;
513}
514print <<END
54359730 515<br />
3827d1f6 516<table width='80%' cellspacing='0'>
735fce60 517<tr><td align='center'>
182a817a 518<form method='post' action='$ENV{'SCRIPT_NAME'}'>
735fce60
JPT
519 <input type='hidden' name='ACTION' value=$Lang::tr{'save'} />
520 <input type='image' alt='$Lang::tr{'save'}' title='$Lang::tr{'save'}' src='/images/media-floppy.png' /></form></td>
27731caa
CS
521</tr>
522</table>
523END
524;
0f0d6a5a 525my @status;
7d30ef24 526if ( $wlanapsettings{'DRIVER'} eq 'NL80211' ){
513c321e 527 @status = `iw dev $wlanapsettings{'INTERFACE'} info && iw dev $wlanapsettings{'INTERFACE'} station dump && echo ""`;
7d30ef24 528}
54359730
CS
529print <<END
530<br />
3827d1f6
AM
531<table width='80%' cellspacing='0' class='tbl'>
532<tr><th colspan='3' bgcolor='$color{'color20'}' align='left'><strong>$Lang::tr{'wlanap wlan status'}</strong></th></tr>
533END
534;
0f0d6a5a
AF
535
536for (my $i=0;$i<$#status;$i++){
537
538if (@status[$i]=~"^Station ") { $count++; }
539if ($count % 2){
3827d1f6
AM
540 $col="bgcolor='$color{'color20'}'";
541 }else{
542 $col="bgcolor='$color{'color22'}'";
543 }
0f0d6a5a
AF
544 print"<tr><td colspan='3' $col><pre>@status[$i]</pre></td></tr>";
545 if (! @status[$i]=~"^/t" ) { $count++; }
3827d1f6 546}
0f0d6a5a
AF
547 $count++;
548
549foreach my $nr (@channellist_cmd){
550 if ($count % 2){
3827d1f6
AM
551 $col="bgcolor='$color{'color20'}'";
552 }else{
553 $col="bgcolor='$color{'color22'}'";
554 }
0f0d6a5a 555 print"<tr><td colspan='3' $col>$nr</td></tr>";
3827d1f6
AM
556 $count++;
557}
0f0d6a5a
AF
558
559for (my $i=0;$i<$#txpower_cmd;$i=$i+2){
3827d1f6
AM
560 if ($count % 2){
561 $col="bgcolor='$color{'color20'}'";
562 }else{
563 $col="bgcolor='$color{'color22'}'";
564 }
0f0d6a5a 565 print "<tr><td $col>@txpower_cmd[$i]</td></tr>";
3827d1f6
AM
566 $count++;
567}
568print "</table><br>";
569print <<END
182a817a 570<br />
3827d1f6
AM
571<table width='80%' cellspacing='0' class='tbl' border='0'>
572<tr><td bgcolor='$color{'color20'}' align='left'><strong>$Lang::tr{'wlan clients'}</strong></td></tr>
182a817a
JPT
573<tr><td>&nbsp;<a href="/cgi-bin/wireless.cgi">$Lang::tr{'wlanap link wireless'}</a></td></tr>
574<tr><td>&nbsp;<a href="/cgi-bin/dhcp.cgi">$Lang::tr{'wlanap link dhcp'}</a></td></tr>
3827d1f6 575<tr><td><br></td></tr>
182a817a 576</table>
54359730
CS
577END
578;
579&Header::closebox();
27731caa
CS
580print "</form>";
581&Header::closebigbox();
582&Header::closepage();
583
27731caa
CS
584sub WriteConfig_hostapd{
585 $wlanapsettings{'DRIVER_HOSTAPD'} = lc($wlanapsettings{'DRIVER'});
586
587 open (CONFIGFILE, ">/var/ipfire/wlanap/hostapd.conf");
588 print CONFIGFILE <<END
cdbeabe2 589driver=$wlanapsettings{'DRIVER_HOSTAPD'}
54359730 590######################### basic hostapd configuration ##########################
891b6138 591#
92f2665d 592interface=$wlanapsettings{'INTERFACE'}
cdbeabe2
AF
593country_code=$wlanapsettings{'COUNTRY'}
594ieee80211d=1
f89678de 595ieee80211h=1
7d30ef24 596channel=$wlanapsettings{'CHANNEL'}
b8012afd
CS
597END
598;
e62efbb7
AF
599 if ( $wlanapsettings{'HW_MODE'} eq 'an' ){
600 print CONFIGFILE <<END
601hw_mode=a
602ieee80211n=1
603wmm_enabled=1
604ht_capab=$wlanapsettings{'HTCAPS'}
605END
606;
607
608 }elsif ( $wlanapsettings{'HW_MODE'} eq 'gn' ){
b8012afd
CS
609 print CONFIGFILE <<END
610hw_mode=g
611ieee80211n=1
6e346fe0
CS
612wmm_enabled=1
613ht_capab=$wlanapsettings{'HTCAPS'}
b8012afd 614END
f887bf5f
MT
615;
616
617 }elsif ( $wlanapsettings{'HW_MODE'} eq 'ac' ){
618 print CONFIGFILE <<END
619hw_mode=a
620ieee80211ac=1
621ieee80211n=1
622wmm_enabled=1
623ht_capab=$wlanapsettings{'HTCAPS'}
624vht_capab=$wlanapsettings{'VHTCAPS'}
625END
b8012afd
CS
626;
627
628 }else{
629 print CONFIGFILE <<END
8ad457eb
CS
630hw_mode=$wlanapsettings{'HW_MODE'}
631END
b8012afd
CS
632;
633
634 }
635
8ad457eb 636print CONFIGFILE <<END
27731caa
CS
637logger_syslog=-1
638logger_syslog_level=$wlanapsettings{'SYSLOGLEVEL'}
639logger_stdout=-1
54359730 640logger_stdout_level=$wlanapsettings{'DEBUG'}
27731caa 641dump_file=/tmp/hostapd.dump
7d30ef24 642auth_algs=1
27731caa
CS
643ctrl_interface=/var/run/hostapd
644ctrl_interface_group=0
70a7c454 645disassoc_low_ack=1
27731caa
CS
646END
647;
54359730
CS
648 if ( $wlanapsettings{'HIDESSID'} eq 'on' ){
649 print CONFIGFILE <<END
650ssid=$wlanapsettings{'SSID'}
651ignore_broadcast_ssid=2
652END
653;
654
655 }else{
656 print CONFIGFILE <<END
657ssid=$wlanapsettings{'SSID'}
658ignore_broadcast_ssid=0
659END
660;
661
662 }
92f2665d 663
5b4464a9
PM
664 # https://forum.ipfire.org/viewtopic.php?f=22&t=12274&p=79070#p79070
665 if ( $wlanapsettings{'CLIENTISOLATION'} eq 'on' ){
666 print CONFIGFILE <<END
667ap_isolate=1
668END
669;
670 }
671
d823d5f0
AF
672 if ( $wlanapsettings{'NOSCAN'} eq 'on' ){
673 print CONFIGFILE <<END
674noscan=1
675END
676;
677
678 }else{
679 print CONFIGFILE <<END
680noscan=0
681END
682;
683
684 }
685
37a83c83
MT
686 # Management Frame Protection (802.11w)
687 if ($wlanapsettings{'IEEE80211W'} eq "on") {
688 print CONFIGFILE "ieee80211w=2\n";
689 } else {
690 print CONFIGFILE "ieee80211w=0\n";
691 }
692
8c2f203c
CS
693 if ( $wlanapsettings{'ENC'} eq 'wpa1'){
694 print CONFIGFILE <<END
695######################### wpa hostapd configuration ############################
891b6138 696#
8c2f203c
CS
697wpa=1
698wpa_passphrase=$wlanapsettings{'PWD'}
891b6138 699wpa_key_mgmt=WPA-PSK
e62efbb7 700wpa_pairwise=TKIP
8c2f203c
CS
701END
702;
703 }elsif ( $wlanapsettings{'ENC'} eq 'wpa2'){
54359730
CS
704 print CONFIGFILE <<END
705######################### wpa hostapd configuration ############################
891b6138 706#
8c2f203c 707wpa=2
54359730 708wpa_passphrase=$wlanapsettings{'PWD'}
891b6138 709wpa_key_mgmt=WPA-PSK
e62efbb7
AF
710rsn_pairwise=CCMP
711END
712;
713 } elsif ( $wlanapsettings{'ENC'} eq 'wpa1+2'){
714 print CONFIGFILE <<END
715######################### wpa hostapd configuration ############################
716#
717wpa=3
718wpa_passphrase=$wlanapsettings{'PWD'}
719wpa_key_mgmt=WPA-PSK
720wpa_pairwise=TKIP
721rsn_pairwise=CCMP
54359730
CS
722END
723;
724 }
27731caa 725 close CONFIGFILE;
92f2665d 726
8aa49c15 727 open (MACFILE, ">/var/ipfire/wlanap/macfile");
23e368ab
CS
728 foreach(@macs){
729 $_ =~ s/\r//gi;
730 chomp($_);
731 if ( $_ ne "" ){print MACFILE $_;}
732 }
92f2665d 733 close MACFILE;
27731caa 734}