mac80211: simplify buffers in aes_128_cmac_vector
[linux-2.6-block.git] / net / mac80211 / mesh_plink.c
CommitLineData
c3896d2c 1/*
264d9b7d 2 * Copyright (c) 2008, 2009 open80211s Ltd.
c3896d2c
LCC
3 * Author: Luis Carlos Cobo <luisca@cozybit.com>
4 *
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License version 2 as
7 * published by the Free Software Foundation.
8 */
5a0e3ad6 9#include <linux/gfp.h>
902acc78
JB
10#include <linux/kernel.h>
11#include <linux/random.h>
c3896d2c 12#include "ieee80211_i.h"
2c8dccc7 13#include "rate.h"
c3896d2c 14#include "mesh.h"
c3896d2c 15
8db09850
TP
16#define PLINK_GET_LLID(p) (p + 2)
17#define PLINK_GET_PLID(p) (p + 4)
c3896d2c
LCC
18
19#define mod_plink_timer(s, t) (mod_timer(&s->plink_timer, \
20 jiffies + HZ * t / 1000))
21
472dbc45
JB
22#define dot11MeshMaxRetries(s) (s->u.mesh.mshcfg.dot11MeshMaxRetries)
23#define dot11MeshRetryTimeout(s) (s->u.mesh.mshcfg.dot11MeshRetryTimeout)
24#define dot11MeshConfirmTimeout(s) (s->u.mesh.mshcfg.dot11MeshConfirmTimeout)
25#define dot11MeshHoldingTimeout(s) (s->u.mesh.mshcfg.dot11MeshHoldingTimeout)
26#define dot11MeshMaxPeerLinks(s) (s->u.mesh.mshcfg.dot11MeshMaxPeerLinks)
c3896d2c 27
3d4f9699
AN
28/* We only need a valid sta if user configured a minimum rssi_threshold. */
29#define rssi_threshold_check(sta, sdata) \
55335137 30 (sdata->u.mesh.mshcfg.rssi_threshold == 0 ||\
3d4f9699
AN
31 (sta && (s8) -ewma_read(&sta->avg_signal) > \
32 sdata->u.mesh.mshcfg.rssi_threshold))
55335137 33
c3896d2c
LCC
34enum plink_event {
35 PLINK_UNDEFINED,
36 OPN_ACPT,
37 OPN_RJCT,
38 OPN_IGNR,
39 CNF_ACPT,
40 CNF_RJCT,
41 CNF_IGNR,
42 CLS_ACPT,
43 CLS_IGNR
44};
45
ba4a14e1
TP
46static int mesh_plink_frame_tx(struct ieee80211_sub_if_data *sdata,
47 enum ieee80211_self_protected_actioncode action,
48 u8 *da, __le16 llid, __le16 plid, __le16 reason);
49
c3896d2c
LCC
50static inline
51void mesh_plink_inc_estab_count(struct ieee80211_sub_if_data *sdata)
52{
472dbc45 53 atomic_inc(&sdata->u.mesh.mshstats.estab_plinks);
d0709a65 54 mesh_accept_plinks_update(sdata);
c3896d2c
LCC
55}
56
57static inline
58void mesh_plink_dec_estab_count(struct ieee80211_sub_if_data *sdata)
59{
472dbc45 60 atomic_dec(&sdata->u.mesh.mshstats.estab_plinks);
d0709a65 61 mesh_accept_plinks_update(sdata);
c3896d2c
LCC
62}
63
64/**
65 * mesh_plink_fsm_restart - restart a mesh peer link finite state machine
66 *
23c7a29c 67 * @sta: mesh peer link to restart
c3896d2c 68 *
07346f81 69 * Locking: this function must be called holding sta->lock
c3896d2c
LCC
70 */
71static inline void mesh_plink_fsm_restart(struct sta_info *sta)
72{
57cf8043 73 sta->plink_state = NL80211_PLINK_LISTEN;
37659ff8
LCC
74 sta->llid = sta->plid = sta->reason = 0;
75 sta->plink_retries = 0;
c3896d2c
LCC
76}
77
93e5deb1 78/*
54ab1ffb 79 * Allocate mesh sta entry and insert into station table
93e5deb1 80 */
03e4497e 81static struct sta_info *mesh_plink_alloc(struct ieee80211_sub_if_data *sdata,
54ab1ffb 82 u8 *hw_addr)
c3896d2c 83{
c3896d2c
LCC
84 struct sta_info *sta;
85
54ab1ffb 86 if (sdata->local->num_sta >= MESH_MAX_PLINKS)
73651ee6 87 return NULL;
c3896d2c 88
34e89507 89 sta = sta_info_alloc(sdata, hw_addr, GFP_KERNEL);
73651ee6
JB
90 if (!sta)
91 return NULL;
c3896d2c 92
83d5cc01
JB
93 sta_info_pre_move_state(sta, IEEE80211_STA_AUTH);
94 sta_info_pre_move_state(sta, IEEE80211_STA_ASSOC);
95 sta_info_pre_move_state(sta, IEEE80211_STA_AUTHORIZED);
d9a7ddb0 96
c2c98fde 97 set_sta_flag(sta, WLAN_STA_WME);
d9a7ddb0 98
c3896d2c
LCC
99 return sta;
100}
101
2c53040f 102/**
cbf9322e 103 * mesh_set_ht_prot_mode - set correct HT protection mode
57aac7c5 104 *
cbf9322e
AN
105 * Section 9.23.3.5 of IEEE 80211-2012 describes the protection rules for HT
106 * mesh STA in a MBSS. Three HT protection modes are supported for now, non-HT
107 * mixed mode, 20MHz-protection and no-protection mode. non-HT mixed mode is
108 * selected if any non-HT peers are present in our MBSS. 20MHz-protection mode
109 * is selected if all peers in our 20/40MHz MBSS support HT and atleast one
110 * HT20 peer is present. Otherwise no-protection mode is selected.
57aac7c5
AN
111 */
112static u32 mesh_set_ht_prot_mode(struct ieee80211_sub_if_data *sdata)
113{
114 struct ieee80211_local *local = sdata->local;
115 struct sta_info *sta;
116 u32 changed = 0;
117 u16 ht_opmode;
118 bool non_ht_sta = false, ht20_sta = false;
119
120 if (local->_oper_channel_type == NL80211_CHAN_NO_HT)
121 return 0;
122
123 rcu_read_lock();
124 list_for_each_entry_rcu(sta, &local->sta_list, list) {
cbf9322e
AN
125 if (sdata != sta->sdata ||
126 sta->plink_state != NL80211_PLINK_ESTAB)
127 continue;
128
129 switch (sta->ch_type) {
130 case NL80211_CHAN_NO_HT:
bdcbd8e0
JB
131 mpl_dbg(sdata,
132 "mesh_plink %pM: nonHT sta (%pM) is present\n",
cbf9322e
AN
133 sdata->vif.addr, sta->sta.addr);
134 non_ht_sta = true;
135 goto out;
136 case NL80211_CHAN_HT20:
bdcbd8e0
JB
137 mpl_dbg(sdata,
138 "mesh_plink %pM: HT20 sta (%pM) is present\n",
cbf9322e
AN
139 sdata->vif.addr, sta->sta.addr);
140 ht20_sta = true;
141 default:
142 break;
57aac7c5
AN
143 }
144 }
145out:
146 rcu_read_unlock();
147
148 if (non_ht_sta)
149 ht_opmode = IEEE80211_HT_OP_MODE_PROTECTION_NONHT_MIXED;
150 else if (ht20_sta && local->_oper_channel_type > NL80211_CHAN_HT20)
151 ht_opmode = IEEE80211_HT_OP_MODE_PROTECTION_20MHZ;
152 else
153 ht_opmode = IEEE80211_HT_OP_MODE_PROTECTION_NONE;
154
155 if (sdata->vif.bss_conf.ht_operation_mode != ht_opmode) {
156 sdata->vif.bss_conf.ht_operation_mode = ht_opmode;
70c33eaa 157 sdata->u.mesh.mshcfg.ht_opmode = ht_opmode;
57aac7c5 158 changed = BSS_CHANGED_HT;
bdcbd8e0
JB
159 mpl_dbg(sdata,
160 "mesh_plink %pM: protection mode changed to %d\n",
57aac7c5
AN
161 sdata->vif.addr, ht_opmode);
162 }
163
164 return changed;
165}
166
c3896d2c 167/**
c9370197 168 * __mesh_plink_deactivate - deactivate mesh peer link
c3896d2c
LCC
169 *
170 * @sta: mesh peer link to deactivate
171 *
172 * All mesh paths with this peer as next hop will be flushed
173 *
07346f81 174 * Locking: the caller must hold sta->lock
c3896d2c 175 */
c9370197 176static bool __mesh_plink_deactivate(struct sta_info *sta)
c3896d2c 177{
d0709a65 178 struct ieee80211_sub_if_data *sdata = sta->sdata;
c9370197 179 bool deactivated = false;
d0709a65 180
57cf8043 181 if (sta->plink_state == NL80211_PLINK_ESTAB) {
c3896d2c 182 mesh_plink_dec_estab_count(sdata);
c9370197
JL
183 deactivated = true;
184 }
57cf8043 185 sta->plink_state = NL80211_PLINK_BLOCKED;
c3896d2c 186 mesh_path_flush_by_nexthop(sta);
c9370197
JL
187
188 return deactivated;
c3896d2c
LCC
189}
190
902acc78 191/**
c9370197 192 * mesh_plink_deactivate - deactivate mesh peer link
902acc78
JB
193 *
194 * @sta: mesh peer link to deactivate
195 *
196 * All mesh paths with this peer as next hop will be flushed
197 */
198void mesh_plink_deactivate(struct sta_info *sta)
199{
c9370197
JL
200 struct ieee80211_sub_if_data *sdata = sta->sdata;
201 bool deactivated;
202
07346f81 203 spin_lock_bh(&sta->lock);
c9370197 204 deactivated = __mesh_plink_deactivate(sta);
ba4a14e1
TP
205 sta->reason = cpu_to_le16(WLAN_REASON_MESH_PEER_CANCELED);
206 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
207 sta->sta.addr, sta->llid, sta->plid,
208 sta->reason);
07346f81 209 spin_unlock_bh(&sta->lock);
c9370197
JL
210
211 if (deactivated)
212 ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_BEACON);
902acc78
JB
213}
214
f698d856 215static int mesh_plink_frame_tx(struct ieee80211_sub_if_data *sdata,
54ef656b
TP
216 enum ieee80211_self_protected_actioncode action,
217 u8 *da, __le16 llid, __le16 plid, __le16 reason) {
f698d856 218 struct ieee80211_local *local = sdata->local;
3b69a9c5 219 struct sk_buff *skb;
e7570dfb 220 struct ieee80211_tx_info *info;
c3896d2c
LCC
221 struct ieee80211_mgmt *mgmt;
222 bool include_plid = false;
8db09850 223 u16 peering_proto = 0;
3b69a9c5
TP
224 u8 *pos, ie_len = 4;
225 int hdr_len = offsetof(struct ieee80211_mgmt, u.action.u.self_prot) +
226 sizeof(mgmt->u.action.u.self_prot);
f609a43d 227 int err = -ENOMEM;
3b69a9c5 228
65e8b0cc 229 skb = dev_alloc_skb(local->tx_headroom +
3b69a9c5
TP
230 hdr_len +
231 2 + /* capability info */
232 2 + /* AID */
233 2 + 8 + /* supported rates */
234 2 + (IEEE80211_MAX_SUPP_RATES - 8) +
235 2 + sdata->u.mesh.mesh_id_len +
236 2 + sizeof(struct ieee80211_meshconf_ie) +
176f3608 237 2 + sizeof(struct ieee80211_ht_cap) +
074d46d1 238 2 + sizeof(struct ieee80211_ht_operation) +
3b69a9c5
TP
239 2 + 8 + /* peering IE */
240 sdata->u.mesh.ie_len);
c3896d2c
LCC
241 if (!skb)
242 return -1;
e7570dfb 243 info = IEEE80211_SKB_CB(skb);
65e8b0cc 244 skb_reserve(skb, local->tx_headroom);
3b69a9c5
TP
245 mgmt = (struct ieee80211_mgmt *) skb_put(skb, hdr_len);
246 memset(mgmt, 0, hdr_len);
e7827a70
HH
247 mgmt->frame_control = cpu_to_le16(IEEE80211_FTYPE_MGMT |
248 IEEE80211_STYPE_ACTION);
c3896d2c 249 memcpy(mgmt->da, da, ETH_ALEN);
47846c9b 250 memcpy(mgmt->sa, sdata->vif.addr, ETH_ALEN);
915b5c50 251 memcpy(mgmt->bssid, sdata->vif.addr, ETH_ALEN);
8db09850
TP
252 mgmt->u.action.category = WLAN_CATEGORY_SELF_PROTECTED;
253 mgmt->u.action.u.self_prot.action_code = action;
c3896d2c 254
8db09850
TP
255 if (action != WLAN_SP_MESH_PEERING_CLOSE) {
256 /* capability info */
257 pos = skb_put(skb, 2);
258 memset(pos, 0, 2);
54ef656b 259 if (action == WLAN_SP_MESH_PEERING_CONFIRM) {
8db09850
TP
260 /* AID */
261 pos = skb_put(skb, 2);
77fa76bb 262 memcpy(pos + 2, &plid, 2);
c3896d2c 263 }
6b77863b
JB
264 if (ieee80211_add_srates_ie(sdata, skb, true,
265 local->oper_channel->band) ||
266 ieee80211_add_ext_srates_ie(sdata, skb, true,
267 local->oper_channel->band) ||
082ebb0c
TP
268 mesh_add_rsn_ie(skb, sdata) ||
269 mesh_add_meshid_ie(skb, sdata) ||
270 mesh_add_meshconf_ie(skb, sdata))
f609a43d 271 goto free;
8db09850 272 } else { /* WLAN_SP_MESH_PEERING_CLOSE */
e7570dfb 273 info->flags |= IEEE80211_TX_CTL_NO_ACK;
8db09850 274 if (mesh_add_meshid_ie(skb, sdata))
f609a43d 275 goto free;
c3896d2c
LCC
276 }
277
8db09850 278 /* Add Mesh Peering Management element */
c3896d2c 279 switch (action) {
54ef656b 280 case WLAN_SP_MESH_PEERING_OPEN:
c3896d2c 281 break;
54ef656b 282 case WLAN_SP_MESH_PEERING_CONFIRM:
8db09850 283 ie_len += 2;
c3896d2c
LCC
284 include_plid = true;
285 break;
54ef656b 286 case WLAN_SP_MESH_PEERING_CLOSE:
8db09850
TP
287 if (plid) {
288 ie_len += 2;
c3896d2c
LCC
289 include_plid = true;
290 }
8db09850 291 ie_len += 2; /* reason code */
c3896d2c 292 break;
8db09850 293 default:
f609a43d
TP
294 err = -EINVAL;
295 goto free;
c3896d2c
LCC
296 }
297
8db09850 298 if (WARN_ON(skb_tailroom(skb) < 2 + ie_len))
f609a43d 299 goto free;
8db09850 300
c3896d2c 301 pos = skb_put(skb, 2 + ie_len);
8db09850 302 *pos++ = WLAN_EID_PEER_MGMT;
c3896d2c 303 *pos++ = ie_len;
8db09850
TP
304 memcpy(pos, &peering_proto, 2);
305 pos += 2;
c3896d2c 306 memcpy(pos, &llid, 2);
8db09850 307 pos += 2;
c3896d2c 308 if (include_plid) {
c3896d2c 309 memcpy(pos, &plid, 2);
8db09850 310 pos += 2;
c3896d2c 311 }
54ef656b 312 if (action == WLAN_SP_MESH_PEERING_CLOSE) {
c3896d2c 313 memcpy(pos, &reason, 2);
8db09850 314 pos += 2;
c3896d2c 315 }
176f3608
TP
316
317 if (action != WLAN_SP_MESH_PEERING_CLOSE) {
318 if (mesh_add_ht_cap_ie(skb, sdata) ||
074d46d1 319 mesh_add_ht_oper_ie(skb, sdata))
f609a43d 320 goto free;
176f3608
TP
321 }
322
8db09850 323 if (mesh_add_vendor_ies(skb, sdata))
f609a43d 324 goto free;
c3896d2c 325
62ae67be 326 ieee80211_tx_skb(sdata, skb);
c3896d2c 327 return 0;
f609a43d
TP
328free:
329 kfree_skb(skb);
330 return err;
c3896d2c
LCC
331}
332
2c53040f
BH
333/**
334 * mesh_peer_init - initialize new mesh peer and return resulting sta_info
54ab1ffb
TP
335 *
336 * @sdata: local meshif
337 * @addr: peer's address
54ab1ffb
TP
338 * @elems: IEs from beacon or mesh peering frame
339 *
340 * call under RCU
341 */
342static struct sta_info *mesh_peer_init(struct ieee80211_sub_if_data *sdata,
f743ff49 343 u8 *addr,
54ab1ffb 344 struct ieee802_11_elems *elems)
c3896d2c 345{
f698d856 346 struct ieee80211_local *local = sdata->local;
f743ff49 347 enum ieee80211_band band = local->oper_channel->band;
54ab1ffb 348 struct ieee80211_supported_band *sband;
f743ff49 349 u32 rates, basic_rates = 0;
c3896d2c 350 struct sta_info *sta;
e87278e7 351 bool insert = false;
c3896d2c 352
f743ff49
TP
353 sband = local->hw.wiphy->bands[band];
354 rates = ieee80211_sta_get_rates(local, elems, band, &basic_rates);
d0709a65 355
54ab1ffb 356 sta = sta_info_get(sdata, addr);
c3896d2c 357 if (!sta) {
f5c56814
TP
358 /* Userspace handles peer allocation when security is enabled */
359 if (sdata->u.mesh.security & IEEE80211_MESH_SEC_AUTHED) {
360 cfg80211_notify_new_peer_candidate(sdata->dev, addr,
361 elems->ie_start,
362 elems->total_len,
363 GFP_ATOMIC);
364 return NULL;
365 }
366
54ab1ffb 367 sta = mesh_plink_alloc(sdata, addr);
34e89507 368 if (!sta)
54ab1ffb 369 return NULL;
e87278e7 370 insert = true;
c3896d2c
LCC
371 }
372
54ab1ffb 373 spin_lock_bh(&sta->lock);
c3896d2c 374 sta->last_rx = jiffies;
bae35d92
CYY
375 if (sta->plink_state == NL80211_PLINK_ESTAB) {
376 spin_unlock_bh(&sta->lock);
377 return sta;
378 }
379
f743ff49 380 sta->sta.supp_rates[band] = rates;
e76781e4
TP
381 if (elems->ht_cap_elem &&
382 sdata->local->_oper_channel_type != NL80211_CHAN_NO_HT)
54ab1ffb
TP
383 ieee80211_ht_cap_ie_to_sta_ht_cap(sdata, sband,
384 elems->ht_cap_elem,
385 &sta->sta.ht_cap);
386 else
387 memset(&sta->sta.ht_cap, 0, sizeof(sta->sta.ht_cap));
388
57aac7c5 389 if (elems->ht_operation) {
c7d25828
TP
390 if (!(elems->ht_operation->ht_param &
391 IEEE80211_HT_PARAM_CHAN_WIDTH_ANY))
392 sta->sta.ht_cap.cap &=
393 ~IEEE80211_HT_CAP_SUP_WIDTH_20_40;
57aac7c5
AN
394 sta->ch_type =
395 ieee80211_ht_oper_to_channel_type(elems->ht_operation);
396 }
c7d25828 397
54ab1ffb
TP
398 rate_control_rate_init(sta);
399 spin_unlock_bh(&sta->lock);
400
e87278e7
TP
401 if (insert && sta_info_insert(sta))
402 return NULL;
403
54ab1ffb
TP
404 return sta;
405}
406
f743ff49
TP
407void mesh_neighbour_update(struct ieee80211_sub_if_data *sdata,
408 u8 *hw_addr,
54ab1ffb
TP
409 struct ieee802_11_elems *elems)
410{
411 struct sta_info *sta;
412
54ab1ffb 413 rcu_read_lock();
f743ff49 414 sta = mesh_peer_init(sdata, hw_addr, elems);
54ab1ffb
TP
415 if (!sta)
416 goto out;
417
1570ca59 418 if (mesh_peer_accepts_plinks(elems) &&
54ab1ffb
TP
419 sta->plink_state == NL80211_PLINK_LISTEN &&
420 sdata->u.mesh.accepting_plinks &&
421 sdata->u.mesh.mshcfg.auto_open_plinks &&
422 rssi_threshold_check(sta, sdata))
c3896d2c
LCC
423 mesh_plink_open(sta);
424
54ab1ffb 425out:
d0709a65 426 rcu_read_unlock();
c3896d2c
LCC
427}
428
429static void mesh_plink_timer(unsigned long data)
430{
431 struct sta_info *sta;
432 __le16 llid, plid, reason;
c3896d2c 433 struct ieee80211_sub_if_data *sdata;
c3896d2c 434
d0709a65
JB
435 /*
436 * This STA is valid because sta_info_destroy() will
437 * del_timer_sync() this timer after having made sure
438 * it cannot be readded (by deleting the plink.)
439 */
c3896d2c
LCC
440 sta = (struct sta_info *) data;
441
5bb644a0
JB
442 if (sta->sdata->local->quiescing) {
443 sta->plink_timer_was_running = true;
444 return;
445 }
446
07346f81 447 spin_lock_bh(&sta->lock);
c3896d2c
LCC
448 if (sta->ignore_plink_timer) {
449 sta->ignore_plink_timer = false;
07346f81 450 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
451 return;
452 }
bdcbd8e0
JB
453 mpl_dbg(sta->sdata,
454 "Mesh plink timer for %pM fired on state %d\n",
0c68ae26 455 sta->sta.addr, sta->plink_state);
c3896d2c
LCC
456 reason = 0;
457 llid = sta->llid;
458 plid = sta->plid;
d0709a65 459 sdata = sta->sdata;
c3896d2c
LCC
460
461 switch (sta->plink_state) {
57cf8043
JC
462 case NL80211_PLINK_OPN_RCVD:
463 case NL80211_PLINK_OPN_SNT:
c3896d2c
LCC
464 /* retry timer */
465 if (sta->plink_retries < dot11MeshMaxRetries(sdata)) {
466 u32 rand;
bdcbd8e0
JB
467 mpl_dbg(sta->sdata,
468 "Mesh plink for %pM (retry, timeout): %d %d\n",
0c68ae26
JB
469 sta->sta.addr, sta->plink_retries,
470 sta->plink_timeout);
c3896d2c
LCC
471 get_random_bytes(&rand, sizeof(u32));
472 sta->plink_timeout = sta->plink_timeout +
473 rand % sta->plink_timeout;
474 ++sta->plink_retries;
d0709a65 475 mod_plink_timer(sta, sta->plink_timeout);
07346f81 476 spin_unlock_bh(&sta->lock);
54ef656b
TP
477 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_OPEN,
478 sta->sta.addr, llid, 0, 0);
c3896d2c
LCC
479 break;
480 }
54ef656b 481 reason = cpu_to_le16(WLAN_REASON_MESH_MAX_RETRIES);
c3896d2c 482 /* fall through on else */
57cf8043 483 case NL80211_PLINK_CNF_RCVD:
c3896d2c
LCC
484 /* confirm timer */
485 if (!reason)
54ef656b 486 reason = cpu_to_le16(WLAN_REASON_MESH_CONFIRM_TIMEOUT);
57cf8043 487 sta->plink_state = NL80211_PLINK_HOLDING;
d0709a65 488 mod_plink_timer(sta, dot11MeshHoldingTimeout(sdata));
07346f81 489 spin_unlock_bh(&sta->lock);
54ef656b
TP
490 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
491 sta->sta.addr, llid, plid, reason);
c3896d2c 492 break;
57cf8043 493 case NL80211_PLINK_HOLDING:
c3896d2c 494 /* holding timer */
d0709a65 495 del_timer(&sta->plink_timer);
c3896d2c 496 mesh_plink_fsm_restart(sta);
07346f81 497 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
498 break;
499 default:
07346f81 500 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
501 break;
502 }
c3896d2c
LCC
503}
504
5bb644a0
JB
505#ifdef CONFIG_PM
506void mesh_plink_quiesce(struct sta_info *sta)
507{
508 if (del_timer_sync(&sta->plink_timer))
509 sta->plink_timer_was_running = true;
510}
511
512void mesh_plink_restart(struct sta_info *sta)
513{
514 if (sta->plink_timer_was_running) {
515 add_timer(&sta->plink_timer);
516 sta->plink_timer_was_running = false;
517 }
518}
519#endif
520
c3896d2c
LCC
521static inline void mesh_plink_timer_set(struct sta_info *sta, int timeout)
522{
523 sta->plink_timer.expires = jiffies + (HZ * timeout / 1000);
524 sta->plink_timer.data = (unsigned long) sta;
525 sta->plink_timer.function = mesh_plink_timer;
526 sta->plink_timeout = timeout;
c3896d2c
LCC
527 add_timer(&sta->plink_timer);
528}
529
530int mesh_plink_open(struct sta_info *sta)
531{
532 __le16 llid;
d0709a65 533 struct ieee80211_sub_if_data *sdata = sta->sdata;
c3896d2c 534
c2c98fde 535 if (!test_sta_flag(sta, WLAN_STA_AUTH))
53e80511
JC
536 return -EPERM;
537
07346f81 538 spin_lock_bh(&sta->lock);
c3896d2c
LCC
539 get_random_bytes(&llid, 2);
540 sta->llid = llid;
57cf8043 541 if (sta->plink_state != NL80211_PLINK_LISTEN) {
07346f81 542 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
543 return -EBUSY;
544 }
57cf8043 545 sta->plink_state = NL80211_PLINK_OPN_SNT;
c3896d2c 546 mesh_plink_timer_set(sta, dot11MeshRetryTimeout(sdata));
07346f81 547 spin_unlock_bh(&sta->lock);
bdcbd8e0
JB
548 mpl_dbg(sdata,
549 "Mesh plink: starting establishment with %pM\n",
0c68ae26 550 sta->sta.addr);
c3896d2c 551
54ef656b 552 return mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_OPEN,
17741cdc 553 sta->sta.addr, llid, 0, 0);
c3896d2c
LCC
554}
555
556void mesh_plink_block(struct sta_info *sta)
557{
c9370197
JL
558 struct ieee80211_sub_if_data *sdata = sta->sdata;
559 bool deactivated;
560
07346f81 561 spin_lock_bh(&sta->lock);
c9370197 562 deactivated = __mesh_plink_deactivate(sta);
57cf8043 563 sta->plink_state = NL80211_PLINK_BLOCKED;
07346f81 564 spin_unlock_bh(&sta->lock);
c9370197
JL
565
566 if (deactivated)
567 ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_BEACON);
c3896d2c
LCC
568}
569
c3896d2c 570
f698d856 571void mesh_rx_plink_frame(struct ieee80211_sub_if_data *sdata, struct ieee80211_mgmt *mgmt,
c3896d2c
LCC
572 size_t len, struct ieee80211_rx_status *rx_status)
573{
c3896d2c
LCC
574 struct ieee802_11_elems elems;
575 struct sta_info *sta;
576 enum plink_event event;
54ef656b 577 enum ieee80211_self_protected_actioncode ftype;
c3896d2c 578 size_t baselen;
57aac7c5 579 bool matches_local = true;
c3896d2c
LCC
580 u8 ie_len;
581 u8 *baseaddr;
57aac7c5 582 u32 changed = 0;
c3896d2c 583 __le16 plid, llid, reason;
1460dd15 584 static const char *mplstates[] = {
57cf8043
JC
585 [NL80211_PLINK_LISTEN] = "LISTEN",
586 [NL80211_PLINK_OPN_SNT] = "OPN-SNT",
587 [NL80211_PLINK_OPN_RCVD] = "OPN-RCVD",
588 [NL80211_PLINK_CNF_RCVD] = "CNF_RCVD",
589 [NL80211_PLINK_ESTAB] = "ESTAB",
590 [NL80211_PLINK_HOLDING] = "HOLDING",
591 [NL80211_PLINK_BLOCKED] = "BLOCKED"
1460dd15 592 };
c3896d2c 593
9c80d3dc
JB
594 /* need action_code, aux */
595 if (len < IEEE80211_MIN_ACTION_SIZE + 3)
596 return;
597
c3896d2c 598 if (is_multicast_ether_addr(mgmt->da)) {
bdcbd8e0
JB
599 mpl_dbg(sdata,
600 "Mesh plink: ignore frame from multicast address\n");
c3896d2c
LCC
601 return;
602 }
603
8db09850
TP
604 baseaddr = mgmt->u.action.u.self_prot.variable;
605 baselen = (u8 *) mgmt->u.action.u.self_prot.variable - (u8 *) mgmt;
606 if (mgmt->u.action.u.self_prot.action_code ==
54ef656b 607 WLAN_SP_MESH_PEERING_CONFIRM) {
c3896d2c 608 baseaddr += 4;
70bdb6b2 609 baselen += 4;
c3896d2c
LCC
610 }
611 ieee802_11_parse_elems(baseaddr, len - baselen, &elems);
8db09850 612 if (!elems.peering) {
bdcbd8e0
JB
613 mpl_dbg(sdata,
614 "Mesh plink: missing necessary peer link ie\n");
c3896d2c
LCC
615 return;
616 }
b130e5ce
JC
617 if (elems.rsn_len &&
618 sdata->u.mesh.security == IEEE80211_MESH_SEC_NONE) {
bdcbd8e0
JB
619 mpl_dbg(sdata,
620 "Mesh plink: can't establish link with secure peer\n");
5cff5e01
JC
621 return;
622 }
c3896d2c 623
8db09850
TP
624 ftype = mgmt->u.action.u.self_prot.action_code;
625 ie_len = elems.peering_len;
626 if ((ftype == WLAN_SP_MESH_PEERING_OPEN && ie_len != 4) ||
627 (ftype == WLAN_SP_MESH_PEERING_CONFIRM && ie_len != 6) ||
628 (ftype == WLAN_SP_MESH_PEERING_CLOSE && ie_len != 6
629 && ie_len != 8)) {
bdcbd8e0
JB
630 mpl_dbg(sdata,
631 "Mesh plink: incorrect plink ie length %d %d\n",
632 ftype, ie_len);
c3896d2c
LCC
633 return;
634 }
635
54ef656b
TP
636 if (ftype != WLAN_SP_MESH_PEERING_CLOSE &&
637 (!elems.mesh_id || !elems.mesh_config)) {
bdcbd8e0 638 mpl_dbg(sdata, "Mesh plink: missing necessary ie\n");
c3896d2c
LCC
639 return;
640 }
641 /* Note the lines below are correct, the llid in the frame is the plid
642 * from the point of view of this host.
643 */
8db09850 644 memcpy(&plid, PLINK_GET_LLID(elems.peering), 2);
54ef656b 645 if (ftype == WLAN_SP_MESH_PEERING_CONFIRM ||
8db09850
TP
646 (ftype == WLAN_SP_MESH_PEERING_CLOSE && ie_len == 8))
647 memcpy(&llid, PLINK_GET_PLID(elems.peering), 2);
c3896d2c 648
d0709a65
JB
649 rcu_read_lock();
650
abe60632 651 sta = sta_info_get(sdata, mgmt->sa);
54ef656b 652 if (!sta && ftype != WLAN_SP_MESH_PEERING_OPEN) {
bdcbd8e0 653 mpl_dbg(sdata, "Mesh plink: cls or cnf from unknown peer\n");
d0709a65 654 rcu_read_unlock();
c3896d2c
LCC
655 return;
656 }
657
55335137 658 if (ftype == WLAN_SP_MESH_PEERING_OPEN &&
3d4f9699 659 !rssi_threshold_check(sta, sdata)) {
bdcbd8e0 660 mpl_dbg(sdata, "Mesh plink: %pM does not meet rssi threshold\n",
3d4f9699 661 mgmt->sa);
55335137
AN
662 rcu_read_unlock();
663 return;
664 }
665
c2c98fde 666 if (sta && !test_sta_flag(sta, WLAN_STA_AUTH)) {
bdcbd8e0 667 mpl_dbg(sdata, "Mesh plink: Action frame from non-authed peer\n");
53e80511
JC
668 rcu_read_unlock();
669 return;
670 }
671
57cf8043 672 if (sta && sta->plink_state == NL80211_PLINK_BLOCKED) {
d0709a65 673 rcu_read_unlock();
c3896d2c
LCC
674 return;
675 }
676
677 /* Now we will figure out the appropriate event... */
678 event = PLINK_UNDEFINED;
54ef656b 679 if (ftype != WLAN_SP_MESH_PEERING_CLOSE &&
f743ff49 680 !mesh_matches_local(sdata, &elems)) {
d12c7452 681 matches_local = false;
c3896d2c 682 switch (ftype) {
54ef656b 683 case WLAN_SP_MESH_PEERING_OPEN:
c3896d2c
LCC
684 event = OPN_RJCT;
685 break;
54ef656b 686 case WLAN_SP_MESH_PEERING_CONFIRM:
c3896d2c
LCC
687 event = CNF_RJCT;
688 break;
54ef656b 689 default:
c3896d2c
LCC
690 break;
691 }
d12c7452
CL
692 }
693
694 if (!sta && !matches_local) {
695 rcu_read_unlock();
54ef656b 696 reason = cpu_to_le16(WLAN_REASON_MESH_CONFIG);
d12c7452 697 llid = 0;
54ef656b
TP
698 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
699 mgmt->sa, llid, plid, reason);
d12c7452 700 return;
c3896d2c 701 } else if (!sta) {
54ef656b 702 /* ftype == WLAN_SP_MESH_PEERING_OPEN */
c3896d2c 703 if (!mesh_plink_free_count(sdata)) {
bdcbd8e0 704 mpl_dbg(sdata, "Mesh plink error: no more free plinks\n");
73651ee6
JB
705 rcu_read_unlock();
706 return;
707 }
c3896d2c 708 event = OPN_ACPT;
d12c7452 709 } else if (matches_local) {
c3896d2c 710 switch (ftype) {
54ef656b 711 case WLAN_SP_MESH_PEERING_OPEN:
c3896d2c 712 if (!mesh_plink_free_count(sdata) ||
d0709a65 713 (sta->plid && sta->plid != plid))
c3896d2c
LCC
714 event = OPN_IGNR;
715 else
716 event = OPN_ACPT;
717 break;
54ef656b 718 case WLAN_SP_MESH_PEERING_CONFIRM:
c3896d2c 719 if (!mesh_plink_free_count(sdata) ||
d0709a65 720 (sta->llid != llid || sta->plid != plid))
c3896d2c
LCC
721 event = CNF_IGNR;
722 else
723 event = CNF_ACPT;
724 break;
54ef656b 725 case WLAN_SP_MESH_PEERING_CLOSE:
57cf8043 726 if (sta->plink_state == NL80211_PLINK_ESTAB)
c3896d2c
LCC
727 /* Do not check for llid or plid. This does not
728 * follow the standard but since multiple plinks
729 * per sta are not supported, it is necessary in
730 * order to avoid a livelock when MP A sees an
731 * establish peer link to MP B but MP B does not
732 * see it. This can be caused by a timeout in
733 * B's peer link establishment or B beign
734 * restarted.
735 */
736 event = CLS_ACPT;
737 else if (sta->plid != plid)
738 event = CLS_IGNR;
739 else if (ie_len == 7 && sta->llid != llid)
740 event = CLS_IGNR;
741 else
742 event = CLS_ACPT;
743 break;
744 default:
bdcbd8e0 745 mpl_dbg(sdata, "Mesh plink: unknown frame subtype\n");
d0709a65 746 rcu_read_unlock();
c3896d2c
LCC
747 return;
748 }
54ab1ffb
TP
749 }
750
751 if (event == OPN_ACPT) {
752 /* allocate sta entry if necessary and update info */
f743ff49 753 sta = mesh_peer_init(sdata, mgmt->sa, &elems);
54ab1ffb 754 if (!sta) {
bdcbd8e0 755 mpl_dbg(sdata, "Mesh plink: failed to init peer!\n");
54ab1ffb
TP
756 rcu_read_unlock();
757 return;
758 }
c3896d2c
LCC
759 }
760
bdcbd8e0
JB
761 mpl_dbg(sdata,
762 "Mesh plink (peer, state, llid, plid, event): %pM %s %d %d %d\n",
1460dd15 763 mgmt->sa, mplstates[sta->plink_state],
0c68ae26
JB
764 le16_to_cpu(sta->llid), le16_to_cpu(sta->plid),
765 event);
c3896d2c 766 reason = 0;
54ab1ffb 767 spin_lock_bh(&sta->lock);
c3896d2c
LCC
768 switch (sta->plink_state) {
769 /* spin_unlock as soon as state is updated at each case */
57cf8043 770 case NL80211_PLINK_LISTEN:
c3896d2c
LCC
771 switch (event) {
772 case CLS_ACPT:
773 mesh_plink_fsm_restart(sta);
07346f81 774 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
775 break;
776 case OPN_ACPT:
57cf8043 777 sta->plink_state = NL80211_PLINK_OPN_RCVD;
c3896d2c
LCC
778 sta->plid = plid;
779 get_random_bytes(&llid, 2);
780 sta->llid = llid;
781 mesh_plink_timer_set(sta, dot11MeshRetryTimeout(sdata));
07346f81 782 spin_unlock_bh(&sta->lock);
54ef656b
TP
783 mesh_plink_frame_tx(sdata,
784 WLAN_SP_MESH_PEERING_OPEN,
785 sta->sta.addr, llid, 0, 0);
786 mesh_plink_frame_tx(sdata,
787 WLAN_SP_MESH_PEERING_CONFIRM,
788 sta->sta.addr, llid, plid, 0);
c3896d2c
LCC
789 break;
790 default:
07346f81 791 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
792 break;
793 }
794 break;
795
57cf8043 796 case NL80211_PLINK_OPN_SNT:
c3896d2c
LCC
797 switch (event) {
798 case OPN_RJCT:
799 case CNF_RJCT:
54ef656b 800 reason = cpu_to_le16(WLAN_REASON_MESH_CONFIG);
c3896d2c
LCC
801 case CLS_ACPT:
802 if (!reason)
54ef656b 803 reason = cpu_to_le16(WLAN_REASON_MESH_CLOSE);
c3896d2c 804 sta->reason = reason;
57cf8043 805 sta->plink_state = NL80211_PLINK_HOLDING;
c3896d2c
LCC
806 if (!mod_plink_timer(sta,
807 dot11MeshHoldingTimeout(sdata)))
808 sta->ignore_plink_timer = true;
809
810 llid = sta->llid;
07346f81 811 spin_unlock_bh(&sta->lock);
54ef656b
TP
812 mesh_plink_frame_tx(sdata,
813 WLAN_SP_MESH_PEERING_CLOSE,
814 sta->sta.addr, llid, plid, reason);
c3896d2c
LCC
815 break;
816 case OPN_ACPT:
817 /* retry timer is left untouched */
57cf8043 818 sta->plink_state = NL80211_PLINK_OPN_RCVD;
c3896d2c
LCC
819 sta->plid = plid;
820 llid = sta->llid;
07346f81 821 spin_unlock_bh(&sta->lock);
54ef656b
TP
822 mesh_plink_frame_tx(sdata,
823 WLAN_SP_MESH_PEERING_CONFIRM,
824 sta->sta.addr, llid, plid, 0);
c3896d2c
LCC
825 break;
826 case CNF_ACPT:
57cf8043 827 sta->plink_state = NL80211_PLINK_CNF_RCVD;
c3896d2c
LCC
828 if (!mod_plink_timer(sta,
829 dot11MeshConfirmTimeout(sdata)))
830 sta->ignore_plink_timer = true;
831
07346f81 832 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
833 break;
834 default:
07346f81 835 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
836 break;
837 }
838 break;
839
57cf8043 840 case NL80211_PLINK_OPN_RCVD:
c3896d2c
LCC
841 switch (event) {
842 case OPN_RJCT:
843 case CNF_RJCT:
54ef656b 844 reason = cpu_to_le16(WLAN_REASON_MESH_CONFIG);
c3896d2c
LCC
845 case CLS_ACPT:
846 if (!reason)
54ef656b 847 reason = cpu_to_le16(WLAN_REASON_MESH_CLOSE);
c3896d2c 848 sta->reason = reason;
57cf8043 849 sta->plink_state = NL80211_PLINK_HOLDING;
c3896d2c
LCC
850 if (!mod_plink_timer(sta,
851 dot11MeshHoldingTimeout(sdata)))
852 sta->ignore_plink_timer = true;
853
854 llid = sta->llid;
07346f81 855 spin_unlock_bh(&sta->lock);
54ef656b
TP
856 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
857 sta->sta.addr, llid, plid, reason);
c3896d2c
LCC
858 break;
859 case OPN_ACPT:
860 llid = sta->llid;
07346f81 861 spin_unlock_bh(&sta->lock);
54ef656b
TP
862 mesh_plink_frame_tx(sdata,
863 WLAN_SP_MESH_PEERING_CONFIRM,
864 sta->sta.addr, llid, plid, 0);
c3896d2c
LCC
865 break;
866 case CNF_ACPT:
d0709a65 867 del_timer(&sta->plink_timer);
57cf8043 868 sta->plink_state = NL80211_PLINK_ESTAB;
07346f81 869 spin_unlock_bh(&sta->lock);
c9370197 870 mesh_plink_inc_estab_count(sdata);
57aac7c5
AN
871 changed |= mesh_set_ht_prot_mode(sdata);
872 changed |= BSS_CHANGED_BEACON;
bdcbd8e0 873 mpl_dbg(sdata, "Mesh plink with %pM ESTABLISHED\n",
0c68ae26 874 sta->sta.addr);
c3896d2c
LCC
875 break;
876 default:
07346f81 877 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
878 break;
879 }
880 break;
881
57cf8043 882 case NL80211_PLINK_CNF_RCVD:
c3896d2c
LCC
883 switch (event) {
884 case OPN_RJCT:
885 case CNF_RJCT:
54ef656b 886 reason = cpu_to_le16(WLAN_REASON_MESH_CONFIG);
c3896d2c
LCC
887 case CLS_ACPT:
888 if (!reason)
54ef656b 889 reason = cpu_to_le16(WLAN_REASON_MESH_CLOSE);
c3896d2c 890 sta->reason = reason;
57cf8043 891 sta->plink_state = NL80211_PLINK_HOLDING;
c3896d2c
LCC
892 if (!mod_plink_timer(sta,
893 dot11MeshHoldingTimeout(sdata)))
894 sta->ignore_plink_timer = true;
895
896 llid = sta->llid;
07346f81 897 spin_unlock_bh(&sta->lock);
54ef656b
TP
898 mesh_plink_frame_tx(sdata,
899 WLAN_SP_MESH_PEERING_CLOSE,
900 sta->sta.addr, llid, plid, reason);
ff59dc76 901 break;
c3896d2c 902 case OPN_ACPT:
d0709a65 903 del_timer(&sta->plink_timer);
57cf8043 904 sta->plink_state = NL80211_PLINK_ESTAB;
07346f81 905 spin_unlock_bh(&sta->lock);
c9370197 906 mesh_plink_inc_estab_count(sdata);
57aac7c5
AN
907 changed |= mesh_set_ht_prot_mode(sdata);
908 changed |= BSS_CHANGED_BEACON;
bdcbd8e0 909 mpl_dbg(sdata, "Mesh plink with %pM ESTABLISHED\n",
0c68ae26 910 sta->sta.addr);
54ef656b
TP
911 mesh_plink_frame_tx(sdata,
912 WLAN_SP_MESH_PEERING_CONFIRM,
913 sta->sta.addr, llid, plid, 0);
c3896d2c
LCC
914 break;
915 default:
07346f81 916 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
917 break;
918 }
919 break;
920
57cf8043 921 case NL80211_PLINK_ESTAB:
c3896d2c
LCC
922 switch (event) {
923 case CLS_ACPT:
54ef656b 924 reason = cpu_to_le16(WLAN_REASON_MESH_CLOSE);
c3896d2c 925 sta->reason = reason;
57aac7c5 926 __mesh_plink_deactivate(sta);
57cf8043 927 sta->plink_state = NL80211_PLINK_HOLDING;
c3896d2c 928 llid = sta->llid;
d0709a65 929 mod_plink_timer(sta, dot11MeshHoldingTimeout(sdata));
07346f81 930 spin_unlock_bh(&sta->lock);
57aac7c5
AN
931 changed |= mesh_set_ht_prot_mode(sdata);
932 changed |= BSS_CHANGED_BEACON;
54ef656b
TP
933 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
934 sta->sta.addr, llid, plid, reason);
c3896d2c
LCC
935 break;
936 case OPN_ACPT:
937 llid = sta->llid;
07346f81 938 spin_unlock_bh(&sta->lock);
54ef656b
TP
939 mesh_plink_frame_tx(sdata,
940 WLAN_SP_MESH_PEERING_CONFIRM,
941 sta->sta.addr, llid, plid, 0);
c3896d2c
LCC
942 break;
943 default:
07346f81 944 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
945 break;
946 }
947 break;
57cf8043 948 case NL80211_PLINK_HOLDING:
c3896d2c
LCC
949 switch (event) {
950 case CLS_ACPT:
d0709a65 951 if (del_timer(&sta->plink_timer))
c3896d2c 952 sta->ignore_plink_timer = 1;
c3896d2c 953 mesh_plink_fsm_restart(sta);
07346f81 954 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
955 break;
956 case OPN_ACPT:
957 case CNF_ACPT:
958 case OPN_RJCT:
959 case CNF_RJCT:
960 llid = sta->llid;
961 reason = sta->reason;
07346f81 962 spin_unlock_bh(&sta->lock);
54ef656b
TP
963 mesh_plink_frame_tx(sdata, WLAN_SP_MESH_PEERING_CLOSE,
964 sta->sta.addr, llid, plid, reason);
c3896d2c
LCC
965 break;
966 default:
07346f81 967 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
968 }
969 break;
970 default:
b4e08ea1 971 /* should not get here, PLINK_BLOCKED is dealt with at the
3ad2f3fb 972 * beginning of the function
c3896d2c 973 */
07346f81 974 spin_unlock_bh(&sta->lock);
c3896d2c
LCC
975 break;
976 }
d0709a65
JB
977
978 rcu_read_unlock();
57aac7c5
AN
979
980 if (changed)
981 ieee80211_bss_info_change_notify(sdata, changed);
c3896d2c 982}