Commit | Line | Data |
---|---|---|
f0706e82 JB |
1 | /* |
2 | * BSS client mode implementation | |
3 | * Copyright 2003, Jouni Malinen <jkmaline@cc.hut.fi> | |
4 | * Copyright 2004, Instant802 Networks, Inc. | |
5 | * Copyright 2005, Devicescape Software, Inc. | |
6 | * Copyright 2006-2007 Jiri Benc <jbenc@suse.cz> | |
7 | * Copyright 2007, Michael Wu <flamingice@sourmilk.net> | |
8 | * | |
9 | * This program is free software; you can redistribute it and/or modify | |
10 | * it under the terms of the GNU General Public License version 2 as | |
11 | * published by the Free Software Foundation. | |
12 | */ | |
13 | ||
14 | /* TODO: | |
f0706e82 JB |
15 | * order BSS list by RSSI(?) ("quality of AP") |
16 | * scan result table filtering (by capability (privacy, IBSS/BSS, WPA/RSN IE, | |
17 | * SSID) | |
18 | */ | |
5b323edb | 19 | #include <linux/delay.h> |
f0706e82 JB |
20 | #include <linux/if_ether.h> |
21 | #include <linux/skbuff.h> | |
22 | #include <linux/netdevice.h> | |
23 | #include <linux/if_arp.h> | |
24 | #include <linux/wireless.h> | |
25 | #include <linux/random.h> | |
26 | #include <linux/etherdevice.h> | |
d0709a65 | 27 | #include <linux/rtnetlink.h> |
f0706e82 JB |
28 | #include <net/iw_handler.h> |
29 | #include <asm/types.h> | |
f0706e82 JB |
30 | |
31 | #include <net/mac80211.h> | |
32 | #include "ieee80211_i.h" | |
2c8dccc7 JB |
33 | #include "rate.h" |
34 | #include "led.h" | |
f709fc69 | 35 | #include "mesh.h" |
f0706e82 JB |
36 | |
37 | #define IEEE80211_AUTH_TIMEOUT (HZ / 5) | |
38 | #define IEEE80211_AUTH_MAX_TRIES 3 | |
39 | #define IEEE80211_ASSOC_TIMEOUT (HZ / 5) | |
40 | #define IEEE80211_ASSOC_MAX_TRIES 3 | |
41 | #define IEEE80211_MONITORING_INTERVAL (2 * HZ) | |
f709fc69 | 42 | #define IEEE80211_MESH_HOUSEKEEPING_INTERVAL (60 * HZ) |
f0706e82 JB |
43 | #define IEEE80211_PROBE_INTERVAL (60 * HZ) |
44 | #define IEEE80211_RETRY_AUTH_INTERVAL (1 * HZ) | |
45 | #define IEEE80211_SCAN_INTERVAL (2 * HZ) | |
46 | #define IEEE80211_SCAN_INTERVAL_SLOW (15 * HZ) | |
872ba533 | 47 | #define IEEE80211_IBSS_JOIN_TIMEOUT (7 * HZ) |
f0706e82 JB |
48 | |
49 | #define IEEE80211_PROBE_DELAY (HZ / 33) | |
50 | #define IEEE80211_CHANNEL_TIME (HZ / 33) | |
51 | #define IEEE80211_PASSIVE_CHANNEL_TIME (HZ / 5) | |
52 | #define IEEE80211_SCAN_RESULT_EXPIRE (10 * HZ) | |
53 | #define IEEE80211_IBSS_MERGE_INTERVAL (30 * HZ) | |
54 | #define IEEE80211_IBSS_INACTIVITY_LIMIT (60 * HZ) | |
f709fc69 | 55 | #define IEEE80211_MESH_PEER_INACTIVITY_LIMIT (1800 * HZ) |
f0706e82 JB |
56 | |
57 | #define IEEE80211_IBSS_MAX_STA_ENTRIES 128 | |
58 | ||
59 | ||
f0706e82 JB |
60 | #define ERP_INFO_USE_PROTECTION BIT(1) |
61 | ||
9f985b0e RR |
62 | /* mgmt header + 1 byte action code */ |
63 | #define IEEE80211_MIN_ACTION_SIZE (24 + 1) | |
64 | ||
65 | #define IEEE80211_ADDBA_PARAM_POLICY_MASK 0x0002 | |
66 | #define IEEE80211_ADDBA_PARAM_TID_MASK 0x003C | |
67 | #define IEEE80211_ADDBA_PARAM_BUF_SIZE_MASK 0xFFA0 | |
688b88a4 RR |
68 | #define IEEE80211_DELBA_PARAM_TID_MASK 0xF000 |
69 | #define IEEE80211_DELBA_PARAM_INITIATOR_MASK 0x0800 | |
9f985b0e | 70 | |
07db2183 RR |
71 | /* next values represent the buffer size for A-MPDU frame. |
72 | * According to IEEE802.11n spec size varies from 8K to 64K (in powers of 2) */ | |
73 | #define IEEE80211_MIN_AMPDU_BUF 0x8 | |
74 | #define IEEE80211_MAX_AMPDU_BUF 0x40 | |
75 | ||
f0706e82 JB |
76 | static void ieee80211_send_probe_req(struct net_device *dev, u8 *dst, |
77 | u8 *ssid, size_t ssid_len); | |
78 | static struct ieee80211_sta_bss * | |
8318d78a | 79 | ieee80211_rx_bss_get(struct net_device *dev, u8 *bssid, int freq, |
cffdd30d | 80 | u8 *ssid, u8 ssid_len); |
f0706e82 JB |
81 | static void ieee80211_rx_bss_put(struct net_device *dev, |
82 | struct ieee80211_sta_bss *bss); | |
83 | static int ieee80211_sta_find_ibss(struct net_device *dev, | |
84 | struct ieee80211_if_sta *ifsta); | |
85 | static int ieee80211_sta_wep_configured(struct net_device *dev); | |
86 | static int ieee80211_sta_start_scan(struct net_device *dev, | |
87 | u8 *ssid, size_t ssid_len); | |
88 | static int ieee80211_sta_config_auth(struct net_device *dev, | |
89 | struct ieee80211_if_sta *ifsta); | |
90 | ||
91 | ||
ee385855 LCC |
92 | void ieee802_11_parse_elems(u8 *start, size_t len, |
93 | struct ieee802_11_elems *elems) | |
f0706e82 JB |
94 | { |
95 | size_t left = len; | |
96 | u8 *pos = start; | |
f0706e82 JB |
97 | |
98 | memset(elems, 0, sizeof(*elems)); | |
99 | ||
100 | while (left >= 2) { | |
101 | u8 id, elen; | |
102 | ||
103 | id = *pos++; | |
104 | elen = *pos++; | |
105 | left -= 2; | |
106 | ||
67a4cce4 JL |
107 | if (elen > left) |
108 | return; | |
f0706e82 JB |
109 | |
110 | switch (id) { | |
111 | case WLAN_EID_SSID: | |
112 | elems->ssid = pos; | |
113 | elems->ssid_len = elen; | |
114 | break; | |
115 | case WLAN_EID_SUPP_RATES: | |
116 | elems->supp_rates = pos; | |
117 | elems->supp_rates_len = elen; | |
118 | break; | |
119 | case WLAN_EID_FH_PARAMS: | |
120 | elems->fh_params = pos; | |
121 | elems->fh_params_len = elen; | |
122 | break; | |
123 | case WLAN_EID_DS_PARAMS: | |
124 | elems->ds_params = pos; | |
125 | elems->ds_params_len = elen; | |
126 | break; | |
127 | case WLAN_EID_CF_PARAMS: | |
128 | elems->cf_params = pos; | |
129 | elems->cf_params_len = elen; | |
130 | break; | |
131 | case WLAN_EID_TIM: | |
132 | elems->tim = pos; | |
133 | elems->tim_len = elen; | |
134 | break; | |
135 | case WLAN_EID_IBSS_PARAMS: | |
136 | elems->ibss_params = pos; | |
137 | elems->ibss_params_len = elen; | |
138 | break; | |
139 | case WLAN_EID_CHALLENGE: | |
140 | elems->challenge = pos; | |
141 | elems->challenge_len = elen; | |
142 | break; | |
143 | case WLAN_EID_WPA: | |
144 | if (elen >= 4 && pos[0] == 0x00 && pos[1] == 0x50 && | |
145 | pos[2] == 0xf2) { | |
146 | /* Microsoft OUI (00:50:F2) */ | |
147 | if (pos[3] == 1) { | |
148 | /* OUI Type 1 - WPA IE */ | |
149 | elems->wpa = pos; | |
150 | elems->wpa_len = elen; | |
151 | } else if (elen >= 5 && pos[3] == 2) { | |
152 | if (pos[4] == 0) { | |
153 | elems->wmm_info = pos; | |
154 | elems->wmm_info_len = elen; | |
155 | } else if (pos[4] == 1) { | |
156 | elems->wmm_param = pos; | |
157 | elems->wmm_param_len = elen; | |
158 | } | |
159 | } | |
160 | } | |
161 | break; | |
162 | case WLAN_EID_RSN: | |
163 | elems->rsn = pos; | |
164 | elems->rsn_len = elen; | |
165 | break; | |
166 | case WLAN_EID_ERP_INFO: | |
167 | elems->erp_info = pos; | |
168 | elems->erp_info_len = elen; | |
169 | break; | |
170 | case WLAN_EID_EXT_SUPP_RATES: | |
171 | elems->ext_supp_rates = pos; | |
172 | elems->ext_supp_rates_len = elen; | |
173 | break; | |
c7153508 RR |
174 | case WLAN_EID_HT_CAPABILITY: |
175 | elems->ht_cap_elem = pos; | |
176 | elems->ht_cap_elem_len = elen; | |
177 | break; | |
178 | case WLAN_EID_HT_EXTRA_INFO: | |
179 | elems->ht_info_elem = pos; | |
180 | elems->ht_info_elem_len = elen; | |
181 | break; | |
ee385855 LCC |
182 | case WLAN_EID_MESH_ID: |
183 | elems->mesh_id = pos; | |
184 | elems->mesh_id_len = elen; | |
185 | break; | |
186 | case WLAN_EID_MESH_CONFIG: | |
187 | elems->mesh_config = pos; | |
188 | elems->mesh_config_len = elen; | |
189 | break; | |
190 | case WLAN_EID_PEER_LINK: | |
191 | elems->peer_link = pos; | |
192 | elems->peer_link_len = elen; | |
193 | break; | |
194 | case WLAN_EID_PREQ: | |
195 | elems->preq = pos; | |
196 | elems->preq_len = elen; | |
197 | break; | |
198 | case WLAN_EID_PREP: | |
199 | elems->prep = pos; | |
200 | elems->prep_len = elen; | |
201 | break; | |
202 | case WLAN_EID_PERR: | |
203 | elems->perr = pos; | |
204 | elems->perr_len = elen; | |
205 | break; | |
f0706e82 | 206 | default: |
f0706e82 JB |
207 | break; |
208 | } | |
209 | ||
210 | left -= elen; | |
211 | pos += elen; | |
212 | } | |
f0706e82 JB |
213 | } |
214 | ||
215 | ||
f0706e82 JB |
216 | static int ecw2cw(int ecw) |
217 | { | |
ac2bf324 | 218 | return (1 << ecw) - 1; |
f0706e82 JB |
219 | } |
220 | ||
e2839d8f VK |
221 | |
222 | static void ieee80211_sta_def_wmm_params(struct net_device *dev, | |
223 | struct ieee80211_sta_bss *bss, | |
224 | int ibss) | |
225 | { | |
226 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
227 | struct ieee80211_local *local = sdata->local; | |
228 | int i, have_higher_than_11mbit = 0; | |
229 | ||
230 | ||
231 | /* cf. IEEE 802.11 9.2.12 */ | |
232 | for (i = 0; i < bss->supp_rates_len; i++) | |
233 | if ((bss->supp_rates[i] & 0x7f) * 5 > 110) | |
234 | have_higher_than_11mbit = 1; | |
235 | ||
236 | if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ && | |
237 | have_higher_than_11mbit) | |
238 | sdata->flags |= IEEE80211_SDATA_OPERATING_GMODE; | |
239 | else | |
240 | sdata->flags &= ~IEEE80211_SDATA_OPERATING_GMODE; | |
241 | ||
242 | ||
243 | if (local->ops->conf_tx) { | |
244 | struct ieee80211_tx_queue_params qparam; | |
e2839d8f VK |
245 | |
246 | memset(&qparam, 0, sizeof(qparam)); | |
247 | ||
248 | qparam.aifs = 2; | |
249 | ||
250 | if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ && | |
251 | !(sdata->flags & IEEE80211_SDATA_OPERATING_GMODE)) | |
252 | qparam.cw_min = 31; | |
253 | else | |
254 | qparam.cw_min = 15; | |
255 | ||
256 | qparam.cw_max = 1023; | |
257 | qparam.txop = 0; | |
258 | ||
259 | for (i = IEEE80211_TX_QUEUE_DATA0; i < NUM_TX_DATA_QUEUES; i++) | |
260 | local->ops->conf_tx(local_to_hw(local), | |
261 | i + IEEE80211_TX_QUEUE_DATA0, | |
262 | &qparam); | |
263 | ||
264 | if (ibss) { | |
265 | /* IBSS uses different parameters for Beacon sending */ | |
266 | qparam.cw_min++; | |
267 | qparam.cw_min *= 2; | |
268 | qparam.cw_min--; | |
269 | local->ops->conf_tx(local_to_hw(local), | |
270 | IEEE80211_TX_QUEUE_BEACON, &qparam); | |
271 | } | |
272 | } | |
273 | } | |
274 | ||
f0706e82 JB |
275 | static void ieee80211_sta_wmm_params(struct net_device *dev, |
276 | struct ieee80211_if_sta *ifsta, | |
277 | u8 *wmm_param, size_t wmm_param_len) | |
278 | { | |
279 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
280 | struct ieee80211_tx_queue_params params; | |
281 | size_t left; | |
282 | int count; | |
283 | u8 *pos; | |
284 | ||
285 | if (wmm_param_len < 8 || wmm_param[5] /* version */ != 1) | |
286 | return; | |
287 | count = wmm_param[6] & 0x0f; | |
288 | if (count == ifsta->wmm_last_param_set) | |
289 | return; | |
290 | ifsta->wmm_last_param_set = count; | |
291 | ||
292 | pos = wmm_param + 8; | |
293 | left = wmm_param_len - 8; | |
294 | ||
295 | memset(¶ms, 0, sizeof(params)); | |
296 | ||
297 | if (!local->ops->conf_tx) | |
298 | return; | |
299 | ||
300 | local->wmm_acm = 0; | |
301 | for (; left >= 4; left -= 4, pos += 4) { | |
302 | int aci = (pos[0] >> 5) & 0x03; | |
303 | int acm = (pos[0] >> 4) & 0x01; | |
304 | int queue; | |
305 | ||
306 | switch (aci) { | |
307 | case 1: | |
308 | queue = IEEE80211_TX_QUEUE_DATA3; | |
309 | if (acm) { | |
310 | local->wmm_acm |= BIT(0) | BIT(3); | |
311 | } | |
312 | break; | |
313 | case 2: | |
314 | queue = IEEE80211_TX_QUEUE_DATA1; | |
315 | if (acm) { | |
316 | local->wmm_acm |= BIT(4) | BIT(5); | |
317 | } | |
318 | break; | |
319 | case 3: | |
320 | queue = IEEE80211_TX_QUEUE_DATA0; | |
321 | if (acm) { | |
322 | local->wmm_acm |= BIT(6) | BIT(7); | |
323 | } | |
324 | break; | |
325 | case 0: | |
326 | default: | |
327 | queue = IEEE80211_TX_QUEUE_DATA2; | |
328 | if (acm) { | |
329 | local->wmm_acm |= BIT(1) | BIT(2); | |
330 | } | |
331 | break; | |
332 | } | |
333 | ||
334 | params.aifs = pos[0] & 0x0f; | |
335 | params.cw_max = ecw2cw((pos[1] & 0xf0) >> 4); | |
336 | params.cw_min = ecw2cw(pos[1] & 0x0f); | |
3330d7be JB |
337 | params.txop = pos[2] | (pos[3] << 8); |
338 | #ifdef CONFIG_MAC80211_DEBUG | |
f0706e82 | 339 | printk(KERN_DEBUG "%s: WMM queue=%d aci=%d acm=%d aifs=%d " |
3330d7be | 340 | "cWmin=%d cWmax=%d txop=%d\n", |
f0706e82 | 341 | dev->name, queue, aci, acm, params.aifs, params.cw_min, |
3330d7be JB |
342 | params.cw_max, params.txop); |
343 | #endif | |
f0706e82 JB |
344 | /* TODO: handle ACM (block TX, fallback to next lowest allowed |
345 | * AC for now) */ | |
346 | if (local->ops->conf_tx(local_to_hw(local), queue, ¶ms)) { | |
347 | printk(KERN_DEBUG "%s: failed to set TX queue " | |
348 | "parameters for queue %d\n", dev->name, queue); | |
349 | } | |
350 | } | |
351 | } | |
352 | ||
50c4afb9 JL |
353 | static u32 ieee80211_handle_protect_preamb(struct ieee80211_sub_if_data *sdata, |
354 | bool use_protection, | |
355 | bool use_short_preamble) | |
5628221c | 356 | { |
471b3efd | 357 | struct ieee80211_bss_conf *bss_conf = &sdata->bss_conf; |
5628221c | 358 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; |
0795af57 | 359 | DECLARE_MAC_BUF(mac); |
471b3efd | 360 | u32 changed = 0; |
5628221c | 361 | |
471b3efd | 362 | if (use_protection != bss_conf->use_cts_prot) { |
5628221c DD |
363 | if (net_ratelimit()) { |
364 | printk(KERN_DEBUG "%s: CTS protection %s (BSSID=" | |
0795af57 | 365 | "%s)\n", |
471b3efd | 366 | sdata->dev->name, |
5628221c | 367 | use_protection ? "enabled" : "disabled", |
0795af57 | 368 | print_mac(mac, ifsta->bssid)); |
5628221c | 369 | } |
471b3efd JB |
370 | bss_conf->use_cts_prot = use_protection; |
371 | changed |= BSS_CHANGED_ERP_CTS_PROT; | |
5628221c | 372 | } |
7e9ed188 | 373 | |
d43c7b37 | 374 | if (use_short_preamble != bss_conf->use_short_preamble) { |
7e9ed188 DD |
375 | if (net_ratelimit()) { |
376 | printk(KERN_DEBUG "%s: switched to %s barker preamble" | |
0795af57 | 377 | " (BSSID=%s)\n", |
471b3efd | 378 | sdata->dev->name, |
d43c7b37 | 379 | use_short_preamble ? "short" : "long", |
0795af57 | 380 | print_mac(mac, ifsta->bssid)); |
7e9ed188 | 381 | } |
d43c7b37 | 382 | bss_conf->use_short_preamble = use_short_preamble; |
471b3efd | 383 | changed |= BSS_CHANGED_ERP_PREAMBLE; |
7e9ed188 | 384 | } |
d9430a32 | 385 | |
471b3efd | 386 | return changed; |
5628221c DD |
387 | } |
388 | ||
50c4afb9 JL |
389 | static u32 ieee80211_handle_erp_ie(struct ieee80211_sub_if_data *sdata, |
390 | u8 erp_value) | |
391 | { | |
392 | bool use_protection = (erp_value & WLAN_ERP_USE_PROTECTION) != 0; | |
393 | bool use_short_preamble = (erp_value & WLAN_ERP_BARKER_PREAMBLE) == 0; | |
394 | ||
395 | return ieee80211_handle_protect_preamb(sdata, | |
396 | use_protection, use_short_preamble); | |
397 | } | |
398 | ||
399 | static u32 ieee80211_handle_bss_capability(struct ieee80211_sub_if_data *sdata, | |
400 | struct ieee80211_sta_bss *bss) | |
401 | { | |
402 | u32 changed = 0; | |
403 | ||
404 | if (bss->has_erp_value) | |
405 | changed |= ieee80211_handle_erp_ie(sdata, bss->erp_value); | |
406 | else { | |
407 | u16 capab = bss->capability; | |
408 | changed |= ieee80211_handle_protect_preamb(sdata, false, | |
409 | (capab & WLAN_CAPABILITY_SHORT_PREAMBLE) != 0); | |
410 | } | |
411 | ||
412 | return changed; | |
413 | } | |
414 | ||
c7153508 RR |
415 | int ieee80211_ht_cap_ie_to_ht_info(struct ieee80211_ht_cap *ht_cap_ie, |
416 | struct ieee80211_ht_info *ht_info) | |
417 | { | |
418 | ||
419 | if (ht_info == NULL) | |
420 | return -EINVAL; | |
421 | ||
422 | memset(ht_info, 0, sizeof(*ht_info)); | |
423 | ||
424 | if (ht_cap_ie) { | |
425 | u8 ampdu_info = ht_cap_ie->ampdu_params_info; | |
426 | ||
427 | ht_info->ht_supported = 1; | |
428 | ht_info->cap = le16_to_cpu(ht_cap_ie->cap_info); | |
429 | ht_info->ampdu_factor = | |
430 | ampdu_info & IEEE80211_HT_CAP_AMPDU_FACTOR; | |
431 | ht_info->ampdu_density = | |
432 | (ampdu_info & IEEE80211_HT_CAP_AMPDU_DENSITY) >> 2; | |
433 | memcpy(ht_info->supp_mcs_set, ht_cap_ie->supp_mcs_set, 16); | |
434 | } else | |
435 | ht_info->ht_supported = 0; | |
436 | ||
437 | return 0; | |
438 | } | |
439 | ||
440 | int ieee80211_ht_addt_info_ie_to_ht_bss_info( | |
441 | struct ieee80211_ht_addt_info *ht_add_info_ie, | |
442 | struct ieee80211_ht_bss_info *bss_info) | |
443 | { | |
444 | if (bss_info == NULL) | |
445 | return -EINVAL; | |
446 | ||
447 | memset(bss_info, 0, sizeof(*bss_info)); | |
448 | ||
449 | if (ht_add_info_ie) { | |
450 | u16 op_mode; | |
451 | op_mode = le16_to_cpu(ht_add_info_ie->operation_mode); | |
452 | ||
453 | bss_info->primary_channel = ht_add_info_ie->control_chan; | |
454 | bss_info->bss_cap = ht_add_info_ie->ht_param; | |
455 | bss_info->bss_op_mode = (u8)(op_mode & 0xff); | |
456 | } | |
457 | ||
458 | return 0; | |
459 | } | |
5628221c | 460 | |
f0706e82 JB |
461 | static void ieee80211_sta_send_associnfo(struct net_device *dev, |
462 | struct ieee80211_if_sta *ifsta) | |
463 | { | |
464 | char *buf; | |
465 | size_t len; | |
466 | int i; | |
467 | union iwreq_data wrqu; | |
468 | ||
469 | if (!ifsta->assocreq_ies && !ifsta->assocresp_ies) | |
470 | return; | |
471 | ||
472 | buf = kmalloc(50 + 2 * (ifsta->assocreq_ies_len + | |
0ec0b7ac | 473 | ifsta->assocresp_ies_len), GFP_KERNEL); |
f0706e82 JB |
474 | if (!buf) |
475 | return; | |
476 | ||
477 | len = sprintf(buf, "ASSOCINFO("); | |
478 | if (ifsta->assocreq_ies) { | |
479 | len += sprintf(buf + len, "ReqIEs="); | |
480 | for (i = 0; i < ifsta->assocreq_ies_len; i++) { | |
481 | len += sprintf(buf + len, "%02x", | |
482 | ifsta->assocreq_ies[i]); | |
483 | } | |
484 | } | |
485 | if (ifsta->assocresp_ies) { | |
486 | if (ifsta->assocreq_ies) | |
487 | len += sprintf(buf + len, " "); | |
488 | len += sprintf(buf + len, "RespIEs="); | |
489 | for (i = 0; i < ifsta->assocresp_ies_len; i++) { | |
490 | len += sprintf(buf + len, "%02x", | |
491 | ifsta->assocresp_ies[i]); | |
492 | } | |
493 | } | |
494 | len += sprintf(buf + len, ")"); | |
495 | ||
496 | if (len > IW_CUSTOM_MAX) { | |
497 | len = sprintf(buf, "ASSOCRESPIE="); | |
498 | for (i = 0; i < ifsta->assocresp_ies_len; i++) { | |
499 | len += sprintf(buf + len, "%02x", | |
500 | ifsta->assocresp_ies[i]); | |
501 | } | |
502 | } | |
503 | ||
504 | memset(&wrqu, 0, sizeof(wrqu)); | |
505 | wrqu.data.length = len; | |
506 | wireless_send_event(dev, IWEVCUSTOM, &wrqu, buf); | |
507 | ||
508 | kfree(buf); | |
509 | } | |
510 | ||
511 | ||
512 | static void ieee80211_set_associated(struct net_device *dev, | |
d6f2da5b | 513 | struct ieee80211_if_sta *ifsta, |
47f0c502 | 514 | bool assoc) |
f0706e82 | 515 | { |
471b3efd JB |
516 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
517 | struct ieee80211_local *local = sdata->local; | |
38668c05 | 518 | struct ieee80211_conf *conf = &local_to_hw(local)->conf; |
f0706e82 | 519 | union iwreq_data wrqu; |
471b3efd | 520 | u32 changed = BSS_CHANGED_ASSOC; |
f0706e82 | 521 | |
f0706e82 | 522 | if (assoc) { |
5628221c | 523 | struct ieee80211_sta_bss *bss; |
d6f2da5b JS |
524 | |
525 | ifsta->flags |= IEEE80211_STA_ASSOCIATED; | |
526 | ||
51fb61e7 | 527 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA) |
f0706e82 | 528 | return; |
5628221c | 529 | |
65c107ab | 530 | bss = ieee80211_rx_bss_get(dev, ifsta->bssid, |
38668c05 | 531 | conf->channel->center_freq, |
cffdd30d | 532 | ifsta->ssid, ifsta->ssid_len); |
5628221c | 533 | if (bss) { |
21c0cbe7 TW |
534 | /* set timing information */ |
535 | sdata->bss_conf.beacon_int = bss->beacon_int; | |
536 | sdata->bss_conf.timestamp = bss->timestamp; | |
537 | ||
50c4afb9 | 538 | changed |= ieee80211_handle_bss_capability(sdata, bss); |
21c0cbe7 | 539 | |
5628221c DD |
540 | ieee80211_rx_bss_put(dev, bss); |
541 | } | |
542 | ||
38668c05 TW |
543 | if (conf->flags & IEEE80211_CONF_SUPPORT_HT_MODE) { |
544 | changed |= BSS_CHANGED_HT; | |
545 | sdata->bss_conf.assoc_ht = 1; | |
546 | sdata->bss_conf.ht_conf = &conf->ht_conf; | |
547 | sdata->bss_conf.ht_bss_conf = &conf->ht_bss_conf; | |
548 | } | |
549 | ||
d6f2da5b | 550 | ifsta->flags |= IEEE80211_STA_PREV_BSSID_SET; |
f0706e82 JB |
551 | memcpy(ifsta->prev_bssid, sdata->u.sta.bssid, ETH_ALEN); |
552 | memcpy(wrqu.ap_addr.sa_data, sdata->u.sta.bssid, ETH_ALEN); | |
553 | ieee80211_sta_send_associnfo(dev, ifsta); | |
554 | } else { | |
8db9369f | 555 | netif_carrier_off(dev); |
85249e5f | 556 | ieee80211_sta_tear_down_BA_sessions(dev, ifsta->bssid); |
d6f2da5b | 557 | ifsta->flags &= ~IEEE80211_STA_ASSOCIATED; |
d9430a32 | 558 | ieee80211_reset_erp_info(dev); |
38668c05 TW |
559 | |
560 | sdata->bss_conf.assoc_ht = 0; | |
561 | sdata->bss_conf.ht_conf = NULL; | |
562 | sdata->bss_conf.ht_bss_conf = NULL; | |
563 | ||
f0706e82 JB |
564 | memset(wrqu.ap_addr.sa_data, 0, ETH_ALEN); |
565 | } | |
f0706e82 | 566 | ifsta->last_probe = jiffies; |
47f0c502 | 567 | ieee80211_led_assoc(local, assoc); |
471b3efd | 568 | |
b2205256 | 569 | sdata->bss_conf.assoc = assoc; |
471b3efd | 570 | ieee80211_bss_info_change_notify(sdata, changed); |
8db9369f GC |
571 | |
572 | if (assoc) | |
573 | netif_carrier_on(dev); | |
574 | ||
41a7be48 RC |
575 | wrqu.ap_addr.sa_family = ARPHRD_ETHER; |
576 | wireless_send_event(dev, SIOCGIWAP, &wrqu, NULL); | |
f0706e82 JB |
577 | } |
578 | ||
579 | static void ieee80211_set_disassoc(struct net_device *dev, | |
580 | struct ieee80211_if_sta *ifsta, int deauth) | |
581 | { | |
582 | if (deauth) | |
583 | ifsta->auth_tries = 0; | |
584 | ifsta->assoc_tries = 0; | |
585 | ieee80211_set_associated(dev, ifsta, 0); | |
586 | } | |
587 | ||
ee385855 LCC |
588 | void ieee80211_sta_tx(struct net_device *dev, struct sk_buff *skb, |
589 | int encrypt) | |
f0706e82 JB |
590 | { |
591 | struct ieee80211_sub_if_data *sdata; | |
592 | struct ieee80211_tx_packet_data *pkt_data; | |
593 | ||
594 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
595 | skb->dev = sdata->local->mdev; | |
596 | skb_set_mac_header(skb, 0); | |
597 | skb_set_network_header(skb, 0); | |
598 | skb_set_transport_header(skb, 0); | |
599 | ||
600 | pkt_data = (struct ieee80211_tx_packet_data *) skb->cb; | |
601 | memset(pkt_data, 0, sizeof(struct ieee80211_tx_packet_data)); | |
602 | pkt_data->ifindex = sdata->dev->ifindex; | |
e8bf9649 JS |
603 | if (!encrypt) |
604 | pkt_data->flags |= IEEE80211_TXPD_DO_NOT_ENCRYPT; | |
f0706e82 JB |
605 | |
606 | dev_queue_xmit(skb); | |
607 | } | |
608 | ||
609 | ||
610 | static void ieee80211_send_auth(struct net_device *dev, | |
611 | struct ieee80211_if_sta *ifsta, | |
612 | int transaction, u8 *extra, size_t extra_len, | |
613 | int encrypt) | |
614 | { | |
615 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
616 | struct sk_buff *skb; | |
617 | struct ieee80211_mgmt *mgmt; | |
618 | ||
619 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + | |
620 | sizeof(*mgmt) + 6 + extra_len); | |
621 | if (!skb) { | |
622 | printk(KERN_DEBUG "%s: failed to allocate buffer for auth " | |
623 | "frame\n", dev->name); | |
624 | return; | |
625 | } | |
626 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
627 | ||
628 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24 + 6); | |
629 | memset(mgmt, 0, 24 + 6); | |
630 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
631 | IEEE80211_STYPE_AUTH); | |
632 | if (encrypt) | |
633 | mgmt->frame_control |= cpu_to_le16(IEEE80211_FCTL_PROTECTED); | |
634 | memcpy(mgmt->da, ifsta->bssid, ETH_ALEN); | |
635 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
636 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
637 | mgmt->u.auth.auth_alg = cpu_to_le16(ifsta->auth_alg); | |
638 | mgmt->u.auth.auth_transaction = cpu_to_le16(transaction); | |
639 | ifsta->auth_transaction = transaction + 1; | |
640 | mgmt->u.auth.status_code = cpu_to_le16(0); | |
641 | if (extra) | |
642 | memcpy(skb_put(skb, extra_len), extra, extra_len); | |
643 | ||
644 | ieee80211_sta_tx(dev, skb, encrypt); | |
645 | } | |
646 | ||
647 | ||
648 | static void ieee80211_authenticate(struct net_device *dev, | |
649 | struct ieee80211_if_sta *ifsta) | |
650 | { | |
0795af57 JP |
651 | DECLARE_MAC_BUF(mac); |
652 | ||
f0706e82 JB |
653 | ifsta->auth_tries++; |
654 | if (ifsta->auth_tries > IEEE80211_AUTH_MAX_TRIES) { | |
0795af57 | 655 | printk(KERN_DEBUG "%s: authentication with AP %s" |
f0706e82 | 656 | " timed out\n", |
0795af57 | 657 | dev->name, print_mac(mac, ifsta->bssid)); |
f0706e82 JB |
658 | ifsta->state = IEEE80211_DISABLED; |
659 | return; | |
660 | } | |
661 | ||
662 | ifsta->state = IEEE80211_AUTHENTICATE; | |
0795af57 JP |
663 | printk(KERN_DEBUG "%s: authenticate with AP %s\n", |
664 | dev->name, print_mac(mac, ifsta->bssid)); | |
f0706e82 JB |
665 | |
666 | ieee80211_send_auth(dev, ifsta, 1, NULL, 0, 0); | |
667 | ||
668 | mod_timer(&ifsta->timer, jiffies + IEEE80211_AUTH_TIMEOUT); | |
669 | } | |
670 | ||
36d16ae7 HS |
671 | static int ieee80211_compatible_rates(struct ieee80211_sta_bss *bss, |
672 | struct ieee80211_supported_band *sband, | |
673 | u64 *rates) | |
674 | { | |
675 | int i, j, count; | |
676 | *rates = 0; | |
677 | count = 0; | |
678 | for (i = 0; i < bss->supp_rates_len; i++) { | |
679 | int rate = (bss->supp_rates[i] & 0x7F) * 5; | |
680 | ||
681 | for (j = 0; j < sband->n_bitrates; j++) | |
682 | if (sband->bitrates[j].bitrate == rate) { | |
683 | *rates |= BIT(j); | |
684 | count++; | |
685 | break; | |
686 | } | |
687 | } | |
688 | ||
689 | return count; | |
690 | } | |
f0706e82 JB |
691 | |
692 | static void ieee80211_send_assoc(struct net_device *dev, | |
693 | struct ieee80211_if_sta *ifsta) | |
694 | { | |
695 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
f0706e82 JB |
696 | struct sk_buff *skb; |
697 | struct ieee80211_mgmt *mgmt; | |
698 | u8 *pos, *ies; | |
36d16ae7 | 699 | int i, len, count, rates_len, supp_rates_len; |
f0706e82 JB |
700 | u16 capab; |
701 | struct ieee80211_sta_bss *bss; | |
702 | int wmm = 0; | |
8318d78a | 703 | struct ieee80211_supported_band *sband; |
36d16ae7 | 704 | u64 rates = 0; |
f0706e82 JB |
705 | |
706 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + | |
707 | sizeof(*mgmt) + 200 + ifsta->extra_ie_len + | |
708 | ifsta->ssid_len); | |
709 | if (!skb) { | |
710 | printk(KERN_DEBUG "%s: failed to allocate buffer for assoc " | |
711 | "frame\n", dev->name); | |
712 | return; | |
713 | } | |
714 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
715 | ||
8318d78a JB |
716 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; |
717 | ||
f0706e82 | 718 | capab = ifsta->capab; |
8318d78a JB |
719 | |
720 | if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ) { | |
721 | if (!(local->hw.flags & IEEE80211_HW_2GHZ_SHORT_SLOT_INCAPABLE)) | |
722 | capab |= WLAN_CAPABILITY_SHORT_SLOT_TIME; | |
723 | if (!(local->hw.flags & IEEE80211_HW_2GHZ_SHORT_PREAMBLE_INCAPABLE)) | |
724 | capab |= WLAN_CAPABILITY_SHORT_PREAMBLE; | |
f0706e82 | 725 | } |
8318d78a JB |
726 | |
727 | bss = ieee80211_rx_bss_get(dev, ifsta->bssid, | |
728 | local->hw.conf.channel->center_freq, | |
cffdd30d | 729 | ifsta->ssid, ifsta->ssid_len); |
f0706e82 JB |
730 | if (bss) { |
731 | if (bss->capability & WLAN_CAPABILITY_PRIVACY) | |
732 | capab |= WLAN_CAPABILITY_PRIVACY; | |
733 | if (bss->wmm_ie) { | |
734 | wmm = 1; | |
735 | } | |
0d580a77 HS |
736 | |
737 | /* get all rates supported by the device and the AP as | |
738 | * some APs don't like getting a superset of their rates | |
739 | * in the association request (e.g. D-Link DAP 1353 in | |
740 | * b-only mode) */ | |
741 | rates_len = ieee80211_compatible_rates(bss, sband, &rates); | |
742 | ||
f0706e82 | 743 | ieee80211_rx_bss_put(dev, bss); |
0d580a77 HS |
744 | } else { |
745 | rates = ~0; | |
746 | rates_len = sband->n_bitrates; | |
f0706e82 JB |
747 | } |
748 | ||
749 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
750 | memset(mgmt, 0, 24); | |
751 | memcpy(mgmt->da, ifsta->bssid, ETH_ALEN); | |
752 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
753 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
754 | ||
d6f2da5b | 755 | if (ifsta->flags & IEEE80211_STA_PREV_BSSID_SET) { |
f0706e82 JB |
756 | skb_put(skb, 10); |
757 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
758 | IEEE80211_STYPE_REASSOC_REQ); | |
759 | mgmt->u.reassoc_req.capab_info = cpu_to_le16(capab); | |
760 | mgmt->u.reassoc_req.listen_interval = cpu_to_le16(1); | |
761 | memcpy(mgmt->u.reassoc_req.current_ap, ifsta->prev_bssid, | |
762 | ETH_ALEN); | |
763 | } else { | |
764 | skb_put(skb, 4); | |
765 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
766 | IEEE80211_STYPE_ASSOC_REQ); | |
767 | mgmt->u.assoc_req.capab_info = cpu_to_le16(capab); | |
768 | mgmt->u.assoc_req.listen_interval = cpu_to_le16(1); | |
769 | } | |
770 | ||
771 | /* SSID */ | |
772 | ies = pos = skb_put(skb, 2 + ifsta->ssid_len); | |
773 | *pos++ = WLAN_EID_SSID; | |
774 | *pos++ = ifsta->ssid_len; | |
775 | memcpy(pos, ifsta->ssid, ifsta->ssid_len); | |
776 | ||
0d580a77 | 777 | /* add all rates which were marked to be used above */ |
36d16ae7 HS |
778 | supp_rates_len = rates_len; |
779 | if (supp_rates_len > 8) | |
780 | supp_rates_len = 8; | |
781 | ||
8318d78a | 782 | len = sband->n_bitrates; |
36d16ae7 | 783 | pos = skb_put(skb, supp_rates_len + 2); |
f0706e82 | 784 | *pos++ = WLAN_EID_SUPP_RATES; |
36d16ae7 | 785 | *pos++ = supp_rates_len; |
f0706e82 | 786 | |
36d16ae7 HS |
787 | count = 0; |
788 | for (i = 0; i < sband->n_bitrates; i++) { | |
789 | if (BIT(i) & rates) { | |
8318d78a | 790 | int rate = sband->bitrates[i].bitrate; |
f0706e82 | 791 | *pos++ = (u8) (rate / 5); |
36d16ae7 HS |
792 | if (++count == 8) |
793 | break; | |
794 | } | |
795 | } | |
796 | ||
797 | if (count == 8) { | |
798 | pos = skb_put(skb, rates_len - count + 2); | |
799 | *pos++ = WLAN_EID_EXT_SUPP_RATES; | |
800 | *pos++ = rates_len - count; | |
801 | ||
802 | for (i++; i < sband->n_bitrates; i++) { | |
803 | if (BIT(i) & rates) { | |
804 | int rate = sband->bitrates[i].bitrate; | |
805 | *pos++ = (u8) (rate / 5); | |
806 | } | |
f0706e82 JB |
807 | } |
808 | } | |
809 | ||
810 | if (ifsta->extra_ie) { | |
811 | pos = skb_put(skb, ifsta->extra_ie_len); | |
812 | memcpy(pos, ifsta->extra_ie, ifsta->extra_ie_len); | |
813 | } | |
814 | ||
d6f2da5b | 815 | if (wmm && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) { |
f0706e82 JB |
816 | pos = skb_put(skb, 9); |
817 | *pos++ = WLAN_EID_VENDOR_SPECIFIC; | |
818 | *pos++ = 7; /* len */ | |
819 | *pos++ = 0x00; /* Microsoft OUI 00:50:F2 */ | |
820 | *pos++ = 0x50; | |
821 | *pos++ = 0xf2; | |
822 | *pos++ = 2; /* WME */ | |
823 | *pos++ = 0; /* WME info */ | |
824 | *pos++ = 1; /* WME ver */ | |
825 | *pos++ = 0; | |
826 | } | |
c7153508 | 827 | /* wmm support is a must to HT */ |
8318d78a JB |
828 | if (wmm && sband->ht_info.ht_supported) { |
829 | __le16 tmp = cpu_to_le16(sband->ht_info.cap); | |
c7153508 RR |
830 | pos = skb_put(skb, sizeof(struct ieee80211_ht_cap)+2); |
831 | *pos++ = WLAN_EID_HT_CAPABILITY; | |
832 | *pos++ = sizeof(struct ieee80211_ht_cap); | |
833 | memset(pos, 0, sizeof(struct ieee80211_ht_cap)); | |
834 | memcpy(pos, &tmp, sizeof(u16)); | |
835 | pos += sizeof(u16); | |
8318d78a JB |
836 | /* TODO: needs a define here for << 2 */ |
837 | *pos++ = sband->ht_info.ampdu_factor | | |
838 | (sband->ht_info.ampdu_density << 2); | |
839 | memcpy(pos, sband->ht_info.supp_mcs_set, 16); | |
c7153508 | 840 | } |
f0706e82 JB |
841 | |
842 | kfree(ifsta->assocreq_ies); | |
843 | ifsta->assocreq_ies_len = (skb->data + skb->len) - ies; | |
0ec0b7ac | 844 | ifsta->assocreq_ies = kmalloc(ifsta->assocreq_ies_len, GFP_KERNEL); |
f0706e82 JB |
845 | if (ifsta->assocreq_ies) |
846 | memcpy(ifsta->assocreq_ies, ies, ifsta->assocreq_ies_len); | |
847 | ||
848 | ieee80211_sta_tx(dev, skb, 0); | |
849 | } | |
850 | ||
851 | ||
852 | static void ieee80211_send_deauth(struct net_device *dev, | |
853 | struct ieee80211_if_sta *ifsta, u16 reason) | |
854 | { | |
855 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
856 | struct sk_buff *skb; | |
857 | struct ieee80211_mgmt *mgmt; | |
858 | ||
859 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt)); | |
860 | if (!skb) { | |
861 | printk(KERN_DEBUG "%s: failed to allocate buffer for deauth " | |
862 | "frame\n", dev->name); | |
863 | return; | |
864 | } | |
865 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
866 | ||
867 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
868 | memset(mgmt, 0, 24); | |
869 | memcpy(mgmt->da, ifsta->bssid, ETH_ALEN); | |
870 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
871 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
872 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
873 | IEEE80211_STYPE_DEAUTH); | |
874 | skb_put(skb, 2); | |
875 | mgmt->u.deauth.reason_code = cpu_to_le16(reason); | |
876 | ||
877 | ieee80211_sta_tx(dev, skb, 0); | |
878 | } | |
879 | ||
880 | ||
881 | static void ieee80211_send_disassoc(struct net_device *dev, | |
882 | struct ieee80211_if_sta *ifsta, u16 reason) | |
883 | { | |
884 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
885 | struct sk_buff *skb; | |
886 | struct ieee80211_mgmt *mgmt; | |
887 | ||
888 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt)); | |
889 | if (!skb) { | |
890 | printk(KERN_DEBUG "%s: failed to allocate buffer for disassoc " | |
891 | "frame\n", dev->name); | |
892 | return; | |
893 | } | |
894 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
895 | ||
896 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
897 | memset(mgmt, 0, 24); | |
898 | memcpy(mgmt->da, ifsta->bssid, ETH_ALEN); | |
899 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
900 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
901 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
902 | IEEE80211_STYPE_DISASSOC); | |
903 | skb_put(skb, 2); | |
904 | mgmt->u.disassoc.reason_code = cpu_to_le16(reason); | |
905 | ||
906 | ieee80211_sta_tx(dev, skb, 0); | |
907 | } | |
908 | ||
909 | ||
910 | static int ieee80211_privacy_mismatch(struct net_device *dev, | |
911 | struct ieee80211_if_sta *ifsta) | |
912 | { | |
65c107ab | 913 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); |
f0706e82 | 914 | struct ieee80211_sta_bss *bss; |
5b98b1f7 JB |
915 | int bss_privacy; |
916 | int wep_privacy; | |
917 | int privacy_invoked; | |
f0706e82 | 918 | |
5b98b1f7 | 919 | if (!ifsta || (ifsta->flags & IEEE80211_STA_MIXED_CELL)) |
f0706e82 JB |
920 | return 0; |
921 | ||
8318d78a JB |
922 | bss = ieee80211_rx_bss_get(dev, ifsta->bssid, |
923 | local->hw.conf.channel->center_freq, | |
cffdd30d | 924 | ifsta->ssid, ifsta->ssid_len); |
f0706e82 JB |
925 | if (!bss) |
926 | return 0; | |
927 | ||
5b98b1f7 JB |
928 | bss_privacy = !!(bss->capability & WLAN_CAPABILITY_PRIVACY); |
929 | wep_privacy = !!ieee80211_sta_wep_configured(dev); | |
930 | privacy_invoked = !!(ifsta->flags & IEEE80211_STA_PRIVACY_INVOKED); | |
f0706e82 JB |
931 | |
932 | ieee80211_rx_bss_put(dev, bss); | |
933 | ||
5b98b1f7 JB |
934 | if ((bss_privacy == wep_privacy) || (bss_privacy == privacy_invoked)) |
935 | return 0; | |
936 | ||
937 | return 1; | |
f0706e82 JB |
938 | } |
939 | ||
940 | ||
941 | static void ieee80211_associate(struct net_device *dev, | |
942 | struct ieee80211_if_sta *ifsta) | |
943 | { | |
0795af57 JP |
944 | DECLARE_MAC_BUF(mac); |
945 | ||
f0706e82 JB |
946 | ifsta->assoc_tries++; |
947 | if (ifsta->assoc_tries > IEEE80211_ASSOC_MAX_TRIES) { | |
0795af57 | 948 | printk(KERN_DEBUG "%s: association with AP %s" |
f0706e82 | 949 | " timed out\n", |
0795af57 | 950 | dev->name, print_mac(mac, ifsta->bssid)); |
f0706e82 JB |
951 | ifsta->state = IEEE80211_DISABLED; |
952 | return; | |
953 | } | |
954 | ||
955 | ifsta->state = IEEE80211_ASSOCIATE; | |
0795af57 JP |
956 | printk(KERN_DEBUG "%s: associate with AP %s\n", |
957 | dev->name, print_mac(mac, ifsta->bssid)); | |
f0706e82 JB |
958 | if (ieee80211_privacy_mismatch(dev, ifsta)) { |
959 | printk(KERN_DEBUG "%s: mismatch in privacy configuration and " | |
960 | "mixed-cell disabled - abort association\n", dev->name); | |
961 | ifsta->state = IEEE80211_DISABLED; | |
962 | return; | |
963 | } | |
964 | ||
965 | ieee80211_send_assoc(dev, ifsta); | |
966 | ||
967 | mod_timer(&ifsta->timer, jiffies + IEEE80211_ASSOC_TIMEOUT); | |
968 | } | |
969 | ||
970 | ||
971 | static void ieee80211_associated(struct net_device *dev, | |
972 | struct ieee80211_if_sta *ifsta) | |
973 | { | |
974 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
975 | struct sta_info *sta; | |
976 | int disassoc; | |
0795af57 | 977 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
978 | |
979 | /* TODO: start monitoring current AP signal quality and number of | |
980 | * missed beacons. Scan other channels every now and then and search | |
981 | * for better APs. */ | |
982 | /* TODO: remove expired BSSes */ | |
983 | ||
984 | ifsta->state = IEEE80211_ASSOCIATED; | |
985 | ||
d0709a65 JB |
986 | rcu_read_lock(); |
987 | ||
f0706e82 JB |
988 | sta = sta_info_get(local, ifsta->bssid); |
989 | if (!sta) { | |
0795af57 JP |
990 | printk(KERN_DEBUG "%s: No STA entry for own AP %s\n", |
991 | dev->name, print_mac(mac, ifsta->bssid)); | |
f0706e82 JB |
992 | disassoc = 1; |
993 | } else { | |
994 | disassoc = 0; | |
995 | if (time_after(jiffies, | |
996 | sta->last_rx + IEEE80211_MONITORING_INTERVAL)) { | |
d6f2da5b | 997 | if (ifsta->flags & IEEE80211_STA_PROBEREQ_POLL) { |
f0706e82 | 998 | printk(KERN_DEBUG "%s: No ProbeResp from " |
0795af57 | 999 | "current AP %s - assume out of " |
f0706e82 | 1000 | "range\n", |
0795af57 | 1001 | dev->name, print_mac(mac, ifsta->bssid)); |
f0706e82 | 1002 | disassoc = 1; |
d0709a65 | 1003 | sta_info_unlink(&sta); |
d6f2da5b | 1004 | } else |
f0706e82 JB |
1005 | ieee80211_send_probe_req(dev, ifsta->bssid, |
1006 | local->scan_ssid, | |
1007 | local->scan_ssid_len); | |
d6f2da5b | 1008 | ifsta->flags ^= IEEE80211_STA_PROBEREQ_POLL; |
f0706e82 | 1009 | } else { |
d6f2da5b | 1010 | ifsta->flags &= ~IEEE80211_STA_PROBEREQ_POLL; |
f0706e82 JB |
1011 | if (time_after(jiffies, ifsta->last_probe + |
1012 | IEEE80211_PROBE_INTERVAL)) { | |
1013 | ifsta->last_probe = jiffies; | |
1014 | ieee80211_send_probe_req(dev, ifsta->bssid, | |
1015 | ifsta->ssid, | |
1016 | ifsta->ssid_len); | |
1017 | } | |
1018 | } | |
f0706e82 | 1019 | } |
d0709a65 JB |
1020 | |
1021 | rcu_read_unlock(); | |
1022 | ||
3b96766f | 1023 | if (disassoc && sta) |
d0709a65 | 1024 | sta_info_destroy(sta); |
d0709a65 | 1025 | |
f0706e82 | 1026 | if (disassoc) { |
2d192d95 MW |
1027 | ifsta->state = IEEE80211_DISABLED; |
1028 | ieee80211_set_associated(dev, ifsta, 0); | |
f0706e82 JB |
1029 | } else { |
1030 | mod_timer(&ifsta->timer, jiffies + | |
1031 | IEEE80211_MONITORING_INTERVAL); | |
1032 | } | |
1033 | } | |
1034 | ||
1035 | ||
1036 | static void ieee80211_send_probe_req(struct net_device *dev, u8 *dst, | |
1037 | u8 *ssid, size_t ssid_len) | |
1038 | { | |
1039 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
8318d78a | 1040 | struct ieee80211_supported_band *sband; |
f0706e82 JB |
1041 | struct sk_buff *skb; |
1042 | struct ieee80211_mgmt *mgmt; | |
1043 | u8 *pos, *supp_rates, *esupp_rates = NULL; | |
1044 | int i; | |
1045 | ||
1046 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt) + 200); | |
1047 | if (!skb) { | |
1048 | printk(KERN_DEBUG "%s: failed to allocate buffer for probe " | |
1049 | "request\n", dev->name); | |
1050 | return; | |
1051 | } | |
1052 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
1053 | ||
1054 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
1055 | memset(mgmt, 0, 24); | |
1056 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
1057 | IEEE80211_STYPE_PROBE_REQ); | |
1058 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
1059 | if (dst) { | |
1060 | memcpy(mgmt->da, dst, ETH_ALEN); | |
1061 | memcpy(mgmt->bssid, dst, ETH_ALEN); | |
1062 | } else { | |
1063 | memset(mgmt->da, 0xff, ETH_ALEN); | |
1064 | memset(mgmt->bssid, 0xff, ETH_ALEN); | |
1065 | } | |
1066 | pos = skb_put(skb, 2 + ssid_len); | |
1067 | *pos++ = WLAN_EID_SSID; | |
1068 | *pos++ = ssid_len; | |
1069 | memcpy(pos, ssid, ssid_len); | |
1070 | ||
1071 | supp_rates = skb_put(skb, 2); | |
1072 | supp_rates[0] = WLAN_EID_SUPP_RATES; | |
1073 | supp_rates[1] = 0; | |
8318d78a JB |
1074 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; |
1075 | ||
1076 | for (i = 0; i < sband->n_bitrates; i++) { | |
1077 | struct ieee80211_rate *rate = &sband->bitrates[i]; | |
f0706e82 JB |
1078 | if (esupp_rates) { |
1079 | pos = skb_put(skb, 1); | |
1080 | esupp_rates[1]++; | |
1081 | } else if (supp_rates[1] == 8) { | |
1082 | esupp_rates = skb_put(skb, 3); | |
1083 | esupp_rates[0] = WLAN_EID_EXT_SUPP_RATES; | |
1084 | esupp_rates[1] = 1; | |
1085 | pos = &esupp_rates[2]; | |
1086 | } else { | |
1087 | pos = skb_put(skb, 1); | |
1088 | supp_rates[1]++; | |
1089 | } | |
8318d78a | 1090 | *pos = rate->bitrate / 5; |
f0706e82 JB |
1091 | } |
1092 | ||
1093 | ieee80211_sta_tx(dev, skb, 0); | |
1094 | } | |
1095 | ||
1096 | ||
1097 | static int ieee80211_sta_wep_configured(struct net_device *dev) | |
1098 | { | |
1099 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
1100 | if (!sdata || !sdata->default_key || | |
8f20fc24 | 1101 | sdata->default_key->conf.alg != ALG_WEP) |
f0706e82 JB |
1102 | return 0; |
1103 | return 1; | |
1104 | } | |
1105 | ||
1106 | ||
1107 | static void ieee80211_auth_completed(struct net_device *dev, | |
1108 | struct ieee80211_if_sta *ifsta) | |
1109 | { | |
1110 | printk(KERN_DEBUG "%s: authenticated\n", dev->name); | |
d6f2da5b | 1111 | ifsta->flags |= IEEE80211_STA_AUTHENTICATED; |
f0706e82 JB |
1112 | ieee80211_associate(dev, ifsta); |
1113 | } | |
1114 | ||
1115 | ||
1116 | static void ieee80211_auth_challenge(struct net_device *dev, | |
1117 | struct ieee80211_if_sta *ifsta, | |
1118 | struct ieee80211_mgmt *mgmt, | |
1119 | size_t len) | |
1120 | { | |
1121 | u8 *pos; | |
1122 | struct ieee802_11_elems elems; | |
1123 | ||
1124 | printk(KERN_DEBUG "%s: replying to auth challenge\n", dev->name); | |
1125 | pos = mgmt->u.auth.variable; | |
67a4cce4 | 1126 | ieee802_11_parse_elems(pos, len - (pos - (u8 *) mgmt), &elems); |
f0706e82 JB |
1127 | if (!elems.challenge) { |
1128 | printk(KERN_DEBUG "%s: no challenge IE in shared key auth " | |
1129 | "frame\n", dev->name); | |
1130 | return; | |
1131 | } | |
1132 | ieee80211_send_auth(dev, ifsta, 3, elems.challenge - 2, | |
1133 | elems.challenge_len + 2, 1); | |
1134 | } | |
1135 | ||
9f985b0e RR |
1136 | static void ieee80211_send_addba_resp(struct net_device *dev, u8 *da, u16 tid, |
1137 | u8 dialog_token, u16 status, u16 policy, | |
1138 | u16 buf_size, u16 timeout) | |
1139 | { | |
1140 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
1141 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
1142 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1143 | struct sk_buff *skb; | |
1144 | struct ieee80211_mgmt *mgmt; | |
1145 | u16 capab; | |
1146 | ||
07db2183 RR |
1147 | skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 + |
1148 | sizeof(mgmt->u.action.u.addba_resp)); | |
9f985b0e RR |
1149 | if (!skb) { |
1150 | printk(KERN_DEBUG "%s: failed to allocate buffer " | |
1151 | "for addba resp frame\n", dev->name); | |
1152 | return; | |
1153 | } | |
1154 | ||
1155 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
1156 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
1157 | memset(mgmt, 0, 24); | |
1158 | memcpy(mgmt->da, da, ETH_ALEN); | |
1159 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
51fb61e7 | 1160 | if (sdata->vif.type == IEEE80211_IF_TYPE_AP) |
9f985b0e RR |
1161 | memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN); |
1162 | else | |
1163 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
1164 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
1165 | IEEE80211_STYPE_ACTION); | |
1166 | ||
1167 | skb_put(skb, 1 + sizeof(mgmt->u.action.u.addba_resp)); | |
1168 | mgmt->u.action.category = WLAN_CATEGORY_BACK; | |
1169 | mgmt->u.action.u.addba_resp.action_code = WLAN_ACTION_ADDBA_RESP; | |
1170 | mgmt->u.action.u.addba_resp.dialog_token = dialog_token; | |
1171 | ||
1172 | capab = (u16)(policy << 1); /* bit 1 aggregation policy */ | |
1173 | capab |= (u16)(tid << 2); /* bit 5:2 TID number */ | |
1174 | capab |= (u16)(buf_size << 6); /* bit 15:6 max size of aggregation */ | |
1175 | ||
1176 | mgmt->u.action.u.addba_resp.capab = cpu_to_le16(capab); | |
1177 | mgmt->u.action.u.addba_resp.timeout = cpu_to_le16(timeout); | |
1178 | mgmt->u.action.u.addba_resp.status = cpu_to_le16(status); | |
1179 | ||
1180 | ieee80211_sta_tx(dev, skb, 0); | |
1181 | ||
1182 | return; | |
1183 | } | |
1184 | ||
eadc8d9e RR |
1185 | void ieee80211_send_addba_request(struct net_device *dev, const u8 *da, |
1186 | u16 tid, u8 dialog_token, u16 start_seq_num, | |
1187 | u16 agg_size, u16 timeout) | |
1188 | { | |
1189 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1190 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
1191 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
1192 | struct sk_buff *skb; | |
1193 | struct ieee80211_mgmt *mgmt; | |
1194 | u16 capab; | |
1195 | ||
1196 | skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 + | |
1197 | sizeof(mgmt->u.action.u.addba_req)); | |
1198 | ||
1199 | ||
1200 | if (!skb) { | |
1201 | printk(KERN_ERR "%s: failed to allocate buffer " | |
1202 | "for addba request frame\n", dev->name); | |
1203 | return; | |
1204 | } | |
1205 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
1206 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
1207 | memset(mgmt, 0, 24); | |
1208 | memcpy(mgmt->da, da, ETH_ALEN); | |
1209 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
1210 | if (sdata->vif.type == IEEE80211_IF_TYPE_AP) | |
1211 | memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN); | |
1212 | else | |
1213 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
1214 | ||
1215 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
1216 | IEEE80211_STYPE_ACTION); | |
1217 | ||
1218 | skb_put(skb, 1 + sizeof(mgmt->u.action.u.addba_req)); | |
1219 | ||
1220 | mgmt->u.action.category = WLAN_CATEGORY_BACK; | |
1221 | mgmt->u.action.u.addba_req.action_code = WLAN_ACTION_ADDBA_REQ; | |
1222 | ||
1223 | mgmt->u.action.u.addba_req.dialog_token = dialog_token; | |
1224 | capab = (u16)(1 << 1); /* bit 1 aggregation policy */ | |
1225 | capab |= (u16)(tid << 2); /* bit 5:2 TID number */ | |
1226 | capab |= (u16)(agg_size << 6); /* bit 15:6 max size of aggergation */ | |
1227 | ||
1228 | mgmt->u.action.u.addba_req.capab = cpu_to_le16(capab); | |
1229 | ||
1230 | mgmt->u.action.u.addba_req.timeout = cpu_to_le16(timeout); | |
1231 | mgmt->u.action.u.addba_req.start_seq_num = | |
1232 | cpu_to_le16(start_seq_num << 4); | |
1233 | ||
1234 | ieee80211_sta_tx(dev, skb, 0); | |
1235 | } | |
1236 | ||
9f985b0e RR |
1237 | static void ieee80211_sta_process_addba_request(struct net_device *dev, |
1238 | struct ieee80211_mgmt *mgmt, | |
1239 | size_t len) | |
1240 | { | |
1241 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
07db2183 RR |
1242 | struct ieee80211_hw *hw = &local->hw; |
1243 | struct ieee80211_conf *conf = &hw->conf; | |
9f985b0e | 1244 | struct sta_info *sta; |
07db2183 RR |
1245 | struct tid_ampdu_rx *tid_agg_rx; |
1246 | u16 capab, tid, timeout, ba_policy, buf_size, start_seq_num, status; | |
9f985b0e | 1247 | u8 dialog_token; |
07db2183 RR |
1248 | int ret = -EOPNOTSUPP; |
1249 | DECLARE_MAC_BUF(mac); | |
9f985b0e | 1250 | |
d0709a65 JB |
1251 | rcu_read_lock(); |
1252 | ||
9f985b0e | 1253 | sta = sta_info_get(local, mgmt->sa); |
d0709a65 JB |
1254 | if (!sta) { |
1255 | rcu_read_unlock(); | |
9f985b0e | 1256 | return; |
d0709a65 | 1257 | } |
9f985b0e RR |
1258 | |
1259 | /* extract session parameters from addba request frame */ | |
1260 | dialog_token = mgmt->u.action.u.addba_req.dialog_token; | |
1261 | timeout = le16_to_cpu(mgmt->u.action.u.addba_req.timeout); | |
07db2183 RR |
1262 | start_seq_num = |
1263 | le16_to_cpu(mgmt->u.action.u.addba_req.start_seq_num) >> 4; | |
9f985b0e RR |
1264 | |
1265 | capab = le16_to_cpu(mgmt->u.action.u.addba_req.capab); | |
1266 | ba_policy = (capab & IEEE80211_ADDBA_PARAM_POLICY_MASK) >> 1; | |
1267 | tid = (capab & IEEE80211_ADDBA_PARAM_TID_MASK) >> 2; | |
1268 | buf_size = (capab & IEEE80211_ADDBA_PARAM_BUF_SIZE_MASK) >> 6; | |
1269 | ||
9f985b0e RR |
1270 | status = WLAN_STATUS_REQUEST_DECLINED; |
1271 | ||
07db2183 RR |
1272 | /* sanity check for incoming parameters: |
1273 | * check if configuration can support the BA policy | |
1274 | * and if buffer size does not exceeds max value */ | |
1275 | if (((ba_policy != 1) | |
1276 | && (!(conf->ht_conf.cap & IEEE80211_HT_CAP_DELAY_BA))) | |
1277 | || (buf_size > IEEE80211_MAX_AMPDU_BUF)) { | |
1278 | status = WLAN_STATUS_INVALID_QOS_PARAM; | |
1279 | #ifdef CONFIG_MAC80211_HT_DEBUG | |
1280 | if (net_ratelimit()) | |
7b9d44cd | 1281 | printk(KERN_DEBUG "AddBA Req with bad params from " |
07db2183 RR |
1282 | "%s on tid %u. policy %d, buffer size %d\n", |
1283 | print_mac(mac, mgmt->sa), tid, ba_policy, | |
1284 | buf_size); | |
1285 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
1286 | goto end_no_lock; | |
1287 | } | |
1288 | /* determine default buffer size */ | |
1289 | if (buf_size == 0) { | |
8318d78a JB |
1290 | struct ieee80211_supported_band *sband; |
1291 | ||
1292 | sband = local->hw.wiphy->bands[conf->channel->band]; | |
07db2183 | 1293 | buf_size = IEEE80211_MIN_AMPDU_BUF; |
8318d78a | 1294 | buf_size = buf_size << sband->ht_info.ampdu_factor; |
07db2183 RR |
1295 | } |
1296 | ||
07db2183 RR |
1297 | |
1298 | /* examine state machine */ | |
1299 | spin_lock_bh(&sta->ampdu_mlme.ampdu_rx); | |
1300 | ||
cee24a3e | 1301 | if (sta->ampdu_mlme.tid_state_rx[tid] != HT_AGG_STATE_IDLE) { |
07db2183 RR |
1302 | #ifdef CONFIG_MAC80211_HT_DEBUG |
1303 | if (net_ratelimit()) | |
7b9d44cd | 1304 | printk(KERN_DEBUG "unexpected AddBA Req from " |
07db2183 RR |
1305 | "%s on tid %u\n", |
1306 | print_mac(mac, mgmt->sa), tid); | |
1307 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
1308 | goto end; | |
1309 | } | |
1310 | ||
cee24a3e RR |
1311 | /* prepare A-MPDU MLME for Rx aggregation */ |
1312 | sta->ampdu_mlme.tid_rx[tid] = | |
1313 | kmalloc(sizeof(struct tid_ampdu_rx), GFP_ATOMIC); | |
1314 | if (!sta->ampdu_mlme.tid_rx[tid]) { | |
1315 | if (net_ratelimit()) | |
1316 | printk(KERN_ERR "allocate rx mlme to tid %d failed\n", | |
1317 | tid); | |
1318 | goto end; | |
1319 | } | |
1320 | /* rx timer */ | |
1321 | sta->ampdu_mlme.tid_rx[tid]->session_timer.function = | |
1322 | sta_rx_agg_session_timer_expired; | |
1323 | sta->ampdu_mlme.tid_rx[tid]->session_timer.data = | |
1324 | (unsigned long)&sta->timer_to_tid[tid]; | |
1325 | init_timer(&sta->ampdu_mlme.tid_rx[tid]->session_timer); | |
1326 | ||
1327 | tid_agg_rx = sta->ampdu_mlme.tid_rx[tid]; | |
1328 | ||
07db2183 RR |
1329 | /* prepare reordering buffer */ |
1330 | tid_agg_rx->reorder_buf = | |
c97c23e3 | 1331 | kmalloc(buf_size * sizeof(struct sk_buff *), GFP_ATOMIC); |
03147dfc JB |
1332 | if (!tid_agg_rx->reorder_buf) { |
1333 | if (net_ratelimit()) | |
1334 | printk(KERN_ERR "can not allocate reordering buffer " | |
1335 | "to tid %d\n", tid); | |
cee24a3e | 1336 | kfree(sta->ampdu_mlme.tid_rx[tid]); |
07db2183 RR |
1337 | goto end; |
1338 | } | |
1339 | memset(tid_agg_rx->reorder_buf, 0, | |
c97c23e3 | 1340 | buf_size * sizeof(struct sk_buff *)); |
07db2183 RR |
1341 | |
1342 | if (local->ops->ampdu_action) | |
1343 | ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_RX_START, | |
0df3ef45 | 1344 | sta->addr, tid, &start_seq_num); |
07db2183 | 1345 | #ifdef CONFIG_MAC80211_HT_DEBUG |
513a1025 | 1346 | printk(KERN_DEBUG "Rx A-MPDU request on tid %d result %d\n", tid, ret); |
07db2183 RR |
1347 | #endif /* CONFIG_MAC80211_HT_DEBUG */ |
1348 | ||
1349 | if (ret) { | |
1350 | kfree(tid_agg_rx->reorder_buf); | |
cee24a3e RR |
1351 | kfree(tid_agg_rx); |
1352 | sta->ampdu_mlme.tid_rx[tid] = NULL; | |
07db2183 RR |
1353 | goto end; |
1354 | } | |
1355 | ||
1356 | /* change state and send addba resp */ | |
cee24a3e | 1357 | sta->ampdu_mlme.tid_state_rx[tid] = HT_AGG_STATE_OPERATIONAL; |
07db2183 RR |
1358 | tid_agg_rx->dialog_token = dialog_token; |
1359 | tid_agg_rx->ssn = start_seq_num; | |
1360 | tid_agg_rx->head_seq_num = start_seq_num; | |
1361 | tid_agg_rx->buf_size = buf_size; | |
1362 | tid_agg_rx->timeout = timeout; | |
1363 | tid_agg_rx->stored_mpdu_num = 0; | |
1364 | status = WLAN_STATUS_SUCCESS; | |
1365 | end: | |
1366 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx); | |
1367 | ||
1368 | end_no_lock: | |
d0709a65 JB |
1369 | ieee80211_send_addba_resp(sta->sdata->dev, sta->addr, tid, |
1370 | dialog_token, status, 1, buf_size, timeout); | |
1371 | rcu_read_unlock(); | |
9f985b0e | 1372 | } |
f0706e82 | 1373 | |
eadc8d9e RR |
1374 | static void ieee80211_sta_process_addba_resp(struct net_device *dev, |
1375 | struct ieee80211_mgmt *mgmt, | |
1376 | size_t len) | |
1377 | { | |
1378 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1379 | struct ieee80211_hw *hw = &local->hw; | |
1380 | struct sta_info *sta; | |
1381 | u16 capab; | |
1382 | u16 tid; | |
1383 | u8 *state; | |
1384 | ||
d0709a65 JB |
1385 | rcu_read_lock(); |
1386 | ||
eadc8d9e | 1387 | sta = sta_info_get(local, mgmt->sa); |
d0709a65 JB |
1388 | if (!sta) { |
1389 | rcu_read_unlock(); | |
eadc8d9e | 1390 | return; |
d0709a65 | 1391 | } |
eadc8d9e RR |
1392 | |
1393 | capab = le16_to_cpu(mgmt->u.action.u.addba_resp.capab); | |
1394 | tid = (capab & IEEE80211_ADDBA_PARAM_TID_MASK) >> 2; | |
1395 | ||
cee24a3e | 1396 | state = &sta->ampdu_mlme.tid_state_tx[tid]; |
eadc8d9e RR |
1397 | |
1398 | spin_lock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1399 | ||
cee24a3e RR |
1400 | if (!(*state & HT_ADDBA_REQUESTED_MSK)) { |
1401 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1402 | printk(KERN_DEBUG "state not HT_ADDBA_REQUESTED_MSK:" | |
1403 | "%d\n", *state); | |
1404 | goto addba_resp_exit; | |
1405 | } | |
1406 | ||
eadc8d9e | 1407 | if (mgmt->u.action.u.addba_resp.dialog_token != |
cee24a3e | 1408 | sta->ampdu_mlme.tid_tx[tid]->dialog_token) { |
eadc8d9e RR |
1409 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); |
1410 | #ifdef CONFIG_MAC80211_HT_DEBUG | |
1411 | printk(KERN_DEBUG "wrong addBA response token, tid %d\n", tid); | |
1412 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
cee24a3e | 1413 | goto addba_resp_exit; |
eadc8d9e RR |
1414 | } |
1415 | ||
cee24a3e | 1416 | del_timer_sync(&sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer); |
eadc8d9e RR |
1417 | #ifdef CONFIG_MAC80211_HT_DEBUG |
1418 | printk(KERN_DEBUG "switched off addBA timer for tid %d \n", tid); | |
1419 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
1420 | if (le16_to_cpu(mgmt->u.action.u.addba_resp.status) | |
1421 | == WLAN_STATUS_SUCCESS) { | |
eadc8d9e RR |
1422 | if (*state & HT_ADDBA_RECEIVED_MSK) |
1423 | printk(KERN_DEBUG "double addBA response\n"); | |
1424 | ||
1425 | *state |= HT_ADDBA_RECEIVED_MSK; | |
cee24a3e | 1426 | sta->ampdu_mlme.addba_req_num[tid] = 0; |
eadc8d9e RR |
1427 | |
1428 | if (*state == HT_AGG_STATE_OPERATIONAL) { | |
1429 | printk(KERN_DEBUG "Aggregation on for tid %d \n", tid); | |
1430 | ieee80211_wake_queue(hw, sta->tid_to_tx_q[tid]); | |
1431 | } | |
1432 | ||
1433 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1434 | printk(KERN_DEBUG "recipient accepted agg: tid %d \n", tid); | |
1435 | } else { | |
1436 | printk(KERN_DEBUG "recipient rejected agg: tid %d \n", tid); | |
1437 | ||
cee24a3e | 1438 | sta->ampdu_mlme.addba_req_num[tid]++; |
eadc8d9e RR |
1439 | /* this will allow the state check in stop_BA_session */ |
1440 | *state = HT_AGG_STATE_OPERATIONAL; | |
1441 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1442 | ieee80211_stop_tx_ba_session(hw, sta->addr, tid, | |
1443 | WLAN_BACK_INITIATOR); | |
1444 | } | |
cee24a3e RR |
1445 | |
1446 | addba_resp_exit: | |
d0709a65 | 1447 | rcu_read_unlock(); |
eadc8d9e RR |
1448 | } |
1449 | ||
1450 | void ieee80211_send_delba(struct net_device *dev, const u8 *da, u16 tid, | |
1451 | u16 initiator, u16 reason_code) | |
07db2183 RR |
1452 | { |
1453 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1454 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
1455 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
1456 | struct sk_buff *skb; | |
1457 | struct ieee80211_mgmt *mgmt; | |
1458 | u16 params; | |
1459 | ||
1460 | skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 + | |
1461 | sizeof(mgmt->u.action.u.delba)); | |
1462 | ||
1463 | if (!skb) { | |
1464 | printk(KERN_ERR "%s: failed to allocate buffer " | |
1465 | "for delba frame\n", dev->name); | |
1466 | return; | |
1467 | } | |
1468 | ||
1469 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
1470 | mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24); | |
1471 | memset(mgmt, 0, 24); | |
1472 | memcpy(mgmt->da, da, ETH_ALEN); | |
1473 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
51fb61e7 | 1474 | if (sdata->vif.type == IEEE80211_IF_TYPE_AP) |
07db2183 RR |
1475 | memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN); |
1476 | else | |
1477 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
1478 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
1479 | IEEE80211_STYPE_ACTION); | |
1480 | ||
1481 | skb_put(skb, 1 + sizeof(mgmt->u.action.u.delba)); | |
1482 | ||
1483 | mgmt->u.action.category = WLAN_CATEGORY_BACK; | |
1484 | mgmt->u.action.u.delba.action_code = WLAN_ACTION_DELBA; | |
1485 | params = (u16)(initiator << 11); /* bit 11 initiator */ | |
1486 | params |= (u16)(tid << 12); /* bit 15:12 TID number */ | |
1487 | ||
1488 | mgmt->u.action.u.delba.params = cpu_to_le16(params); | |
1489 | mgmt->u.action.u.delba.reason_code = cpu_to_le16(reason_code); | |
1490 | ||
1491 | ieee80211_sta_tx(dev, skb, 0); | |
1492 | } | |
1493 | ||
1494 | void ieee80211_sta_stop_rx_ba_session(struct net_device *dev, u8 *ra, u16 tid, | |
1495 | u16 initiator, u16 reason) | |
1496 | { | |
1497 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1498 | struct ieee80211_hw *hw = &local->hw; | |
1499 | struct sta_info *sta; | |
b580781e | 1500 | int ret, i; |
513a1025 | 1501 | DECLARE_MAC_BUF(mac); |
07db2183 | 1502 | |
d0709a65 JB |
1503 | rcu_read_lock(); |
1504 | ||
07db2183 | 1505 | sta = sta_info_get(local, ra); |
d0709a65 JB |
1506 | if (!sta) { |
1507 | rcu_read_unlock(); | |
07db2183 | 1508 | return; |
d0709a65 | 1509 | } |
07db2183 RR |
1510 | |
1511 | /* check if TID is in operational state */ | |
1512 | spin_lock_bh(&sta->ampdu_mlme.ampdu_rx); | |
cee24a3e | 1513 | if (sta->ampdu_mlme.tid_state_rx[tid] |
07db2183 RR |
1514 | != HT_AGG_STATE_OPERATIONAL) { |
1515 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx); | |
d0709a65 | 1516 | rcu_read_unlock(); |
07db2183 RR |
1517 | return; |
1518 | } | |
cee24a3e | 1519 | sta->ampdu_mlme.tid_state_rx[tid] = |
07db2183 RR |
1520 | HT_AGG_STATE_REQ_STOP_BA_MSK | |
1521 | (initiator << HT_AGG_STATE_INITIATOR_SHIFT); | |
513a1025 | 1522 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx); |
07db2183 RR |
1523 | |
1524 | /* stop HW Rx aggregation. ampdu_action existence | |
1525 | * already verified in session init so we add the BUG_ON */ | |
1526 | BUG_ON(!local->ops->ampdu_action); | |
1527 | ||
513a1025 RR |
1528 | #ifdef CONFIG_MAC80211_HT_DEBUG |
1529 | printk(KERN_DEBUG "Rx BA session stop requested for %s tid %u\n", | |
1530 | print_mac(mac, ra), tid); | |
1531 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
1532 | ||
07db2183 | 1533 | ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_RX_STOP, |
0df3ef45 | 1534 | ra, tid, NULL); |
07db2183 RR |
1535 | if (ret) |
1536 | printk(KERN_DEBUG "HW problem - can not stop rx " | |
1537 | "aggergation for tid %d\n", tid); | |
1538 | ||
1539 | /* shutdown timer has not expired */ | |
1540 | if (initiator != WLAN_BACK_TIMER) | |
cee24a3e | 1541 | del_timer_sync(&sta->ampdu_mlme.tid_rx[tid]->session_timer); |
07db2183 RR |
1542 | |
1543 | /* check if this is a self generated aggregation halt */ | |
1544 | if (initiator == WLAN_BACK_RECIPIENT || initiator == WLAN_BACK_TIMER) | |
1545 | ieee80211_send_delba(dev, ra, tid, 0, reason); | |
1546 | ||
1547 | /* free the reordering buffer */ | |
cee24a3e RR |
1548 | for (i = 0; i < sta->ampdu_mlme.tid_rx[tid]->buf_size; i++) { |
1549 | if (sta->ampdu_mlme.tid_rx[tid]->reorder_buf[i]) { | |
b580781e | 1550 | /* release the reordered frames */ |
cee24a3e RR |
1551 | dev_kfree_skb(sta->ampdu_mlme.tid_rx[tid]->reorder_buf[i]); |
1552 | sta->ampdu_mlme.tid_rx[tid]->stored_mpdu_num--; | |
1553 | sta->ampdu_mlme.tid_rx[tid]->reorder_buf[i] = NULL; | |
b580781e RR |
1554 | } |
1555 | } | |
cee24a3e RR |
1556 | /* free resources */ |
1557 | kfree(sta->ampdu_mlme.tid_rx[tid]->reorder_buf); | |
1558 | kfree(sta->ampdu_mlme.tid_rx[tid]); | |
1559 | sta->ampdu_mlme.tid_rx[tid] = NULL; | |
1560 | sta->ampdu_mlme.tid_state_rx[tid] = HT_AGG_STATE_IDLE; | |
07db2183 | 1561 | |
d0709a65 | 1562 | rcu_read_unlock(); |
07db2183 RR |
1563 | } |
1564 | ||
eadc8d9e | 1565 | |
688b88a4 RR |
1566 | static void ieee80211_sta_process_delba(struct net_device *dev, |
1567 | struct ieee80211_mgmt *mgmt, size_t len) | |
1568 | { | |
1569 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1570 | struct sta_info *sta; | |
1571 | u16 tid, params; | |
1572 | u16 initiator; | |
1573 | DECLARE_MAC_BUF(mac); | |
1574 | ||
d0709a65 JB |
1575 | rcu_read_lock(); |
1576 | ||
688b88a4 | 1577 | sta = sta_info_get(local, mgmt->sa); |
d0709a65 JB |
1578 | if (!sta) { |
1579 | rcu_read_unlock(); | |
688b88a4 | 1580 | return; |
d0709a65 | 1581 | } |
688b88a4 RR |
1582 | |
1583 | params = le16_to_cpu(mgmt->u.action.u.delba.params); | |
1584 | tid = (params & IEEE80211_DELBA_PARAM_TID_MASK) >> 12; | |
1585 | initiator = (params & IEEE80211_DELBA_PARAM_INITIATOR_MASK) >> 11; | |
1586 | ||
1587 | #ifdef CONFIG_MAC80211_HT_DEBUG | |
1588 | if (net_ratelimit()) | |
d92684e6 RR |
1589 | printk(KERN_DEBUG "delba from %s (%s) tid %d reason code %d\n", |
1590 | print_mac(mac, mgmt->sa), | |
2e354ed7 | 1591 | initiator ? "initiator" : "recipient", tid, |
688b88a4 RR |
1592 | mgmt->u.action.u.delba.reason_code); |
1593 | #endif /* CONFIG_MAC80211_HT_DEBUG */ | |
1594 | ||
1595 | if (initiator == WLAN_BACK_INITIATOR) | |
1596 | ieee80211_sta_stop_rx_ba_session(dev, sta->addr, tid, | |
1597 | WLAN_BACK_INITIATOR, 0); | |
d92684e6 RR |
1598 | else { /* WLAN_BACK_RECIPIENT */ |
1599 | spin_lock_bh(&sta->ampdu_mlme.ampdu_tx); | |
cee24a3e | 1600 | sta->ampdu_mlme.tid_state_tx[tid] = |
d92684e6 RR |
1601 | HT_AGG_STATE_OPERATIONAL; |
1602 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1603 | ieee80211_stop_tx_ba_session(&local->hw, sta->addr, tid, | |
1604 | WLAN_BACK_RECIPIENT); | |
1605 | } | |
d0709a65 | 1606 | rcu_read_unlock(); |
688b88a4 RR |
1607 | } |
1608 | ||
eadc8d9e RR |
1609 | /* |
1610 | * After sending add Block Ack request we activated a timer until | |
1611 | * add Block Ack response will arrive from the recipient. | |
1612 | * If this timer expires sta_addba_resp_timer_expired will be executed. | |
1613 | */ | |
1614 | void sta_addba_resp_timer_expired(unsigned long data) | |
1615 | { | |
1616 | /* not an elegant detour, but there is no choice as the timer passes | |
1617 | * only one argument, and both sta_info and TID are needed, so init | |
73651ee6 | 1618 | * flow in sta_info_create gives the TID as data, while the timer_to_id |
eadc8d9e | 1619 | * array gives the sta through container_of */ |
70d251b2 | 1620 | u16 tid = *(u8 *)data; |
eadc8d9e RR |
1621 | struct sta_info *temp_sta = container_of((void *)data, |
1622 | struct sta_info, timer_to_tid[tid]); | |
1623 | ||
1624 | struct ieee80211_local *local = temp_sta->local; | |
1625 | struct ieee80211_hw *hw = &local->hw; | |
1626 | struct sta_info *sta; | |
1627 | u8 *state; | |
1628 | ||
d0709a65 JB |
1629 | rcu_read_lock(); |
1630 | ||
eadc8d9e | 1631 | sta = sta_info_get(local, temp_sta->addr); |
d0709a65 JB |
1632 | if (!sta) { |
1633 | rcu_read_unlock(); | |
eadc8d9e | 1634 | return; |
d0709a65 | 1635 | } |
eadc8d9e | 1636 | |
cee24a3e | 1637 | state = &sta->ampdu_mlme.tid_state_tx[tid]; |
eadc8d9e RR |
1638 | /* check if the TID waits for addBA response */ |
1639 | spin_lock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1640 | if (!(*state & HT_ADDBA_REQUESTED_MSK)) { | |
1641 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1642 | *state = HT_AGG_STATE_IDLE; | |
1643 | printk(KERN_DEBUG "timer expired on tid %d but we are not " | |
1644 | "expecting addBA response there", tid); | |
1645 | goto timer_expired_exit; | |
1646 | } | |
1647 | ||
1648 | printk(KERN_DEBUG "addBA response timer expired on tid %d\n", tid); | |
1649 | ||
1650 | /* go through the state check in stop_BA_session */ | |
1651 | *state = HT_AGG_STATE_OPERATIONAL; | |
1652 | spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx); | |
1653 | ieee80211_stop_tx_ba_session(hw, temp_sta->addr, tid, | |
1654 | WLAN_BACK_INITIATOR); | |
1655 | ||
1656 | timer_expired_exit: | |
d0709a65 | 1657 | rcu_read_unlock(); |
eadc8d9e RR |
1658 | } |
1659 | ||
07db2183 | 1660 | /* |
7b9d44cd RR |
1661 | * After accepting the AddBA Request we activated a timer, |
1662 | * resetting it after each frame that arrives from the originator. | |
07db2183 RR |
1663 | * if this timer expires ieee80211_sta_stop_rx_ba_session will be executed. |
1664 | */ | |
1665 | void sta_rx_agg_session_timer_expired(unsigned long data) | |
1666 | { | |
1667 | /* not an elegant detour, but there is no choice as the timer passes | |
70d251b2 | 1668 | * only one argument, and various sta_info are needed here, so init |
73651ee6 | 1669 | * flow in sta_info_create gives the TID as data, while the timer_to_id |
07db2183 RR |
1670 | * array gives the sta through container_of */ |
1671 | u8 *ptid = (u8 *)data; | |
1672 | u8 *timer_to_id = ptid - *ptid; | |
1673 | struct sta_info *sta = container_of(timer_to_id, struct sta_info, | |
1674 | timer_to_tid[0]); | |
1675 | ||
1676 | printk(KERN_DEBUG "rx session timer expired on tid %d\n", (u16)*ptid); | |
d0709a65 JB |
1677 | ieee80211_sta_stop_rx_ba_session(sta->sdata->dev, sta->addr, |
1678 | (u16)*ptid, WLAN_BACK_TIMER, | |
07db2183 RR |
1679 | WLAN_REASON_QSTA_TIMEOUT); |
1680 | } | |
1681 | ||
85249e5f RR |
1682 | void ieee80211_sta_tear_down_BA_sessions(struct net_device *dev, u8 *addr) |
1683 | { | |
1684 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1685 | int i; | |
1686 | ||
1687 | for (i = 0; i < STA_TID_NUM; i++) { | |
1688 | ieee80211_stop_tx_ba_session(&local->hw, addr, i, | |
1689 | WLAN_BACK_INITIATOR); | |
1690 | ieee80211_sta_stop_rx_ba_session(dev, addr, i, | |
1691 | WLAN_BACK_RECIPIENT, | |
1692 | WLAN_REASON_QSTA_LEAVE_QBSS); | |
1693 | } | |
1694 | } | |
07db2183 | 1695 | |
f0706e82 JB |
1696 | static void ieee80211_rx_mgmt_auth(struct net_device *dev, |
1697 | struct ieee80211_if_sta *ifsta, | |
1698 | struct ieee80211_mgmt *mgmt, | |
1699 | size_t len) | |
1700 | { | |
1701 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
1702 | u16 auth_alg, auth_transaction, status_code; | |
0795af57 | 1703 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
1704 | |
1705 | if (ifsta->state != IEEE80211_AUTHENTICATE && | |
51fb61e7 | 1706 | sdata->vif.type != IEEE80211_IF_TYPE_IBSS) { |
f0706e82 | 1707 | printk(KERN_DEBUG "%s: authentication frame received from " |
0795af57 JP |
1708 | "%s, but not in authenticate state - ignored\n", |
1709 | dev->name, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1710 | return; |
1711 | } | |
1712 | ||
1713 | if (len < 24 + 6) { | |
1714 | printk(KERN_DEBUG "%s: too short (%zd) authentication frame " | |
0795af57 JP |
1715 | "received from %s - ignored\n", |
1716 | dev->name, len, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1717 | return; |
1718 | } | |
1719 | ||
51fb61e7 | 1720 | if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS && |
f0706e82 JB |
1721 | memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) { |
1722 | printk(KERN_DEBUG "%s: authentication frame received from " | |
0795af57 JP |
1723 | "unknown AP (SA=%s BSSID=%s) - " |
1724 | "ignored\n", dev->name, print_mac(mac, mgmt->sa), | |
1725 | print_mac(mac, mgmt->bssid)); | |
f0706e82 JB |
1726 | return; |
1727 | } | |
1728 | ||
51fb61e7 | 1729 | if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS && |
f0706e82 JB |
1730 | memcmp(ifsta->bssid, mgmt->bssid, ETH_ALEN) != 0) { |
1731 | printk(KERN_DEBUG "%s: authentication frame received from " | |
0795af57 JP |
1732 | "unknown BSSID (SA=%s BSSID=%s) - " |
1733 | "ignored\n", dev->name, print_mac(mac, mgmt->sa), | |
1734 | print_mac(mac, mgmt->bssid)); | |
f0706e82 JB |
1735 | return; |
1736 | } | |
1737 | ||
1738 | auth_alg = le16_to_cpu(mgmt->u.auth.auth_alg); | |
1739 | auth_transaction = le16_to_cpu(mgmt->u.auth.auth_transaction); | |
1740 | status_code = le16_to_cpu(mgmt->u.auth.status_code); | |
1741 | ||
0795af57 | 1742 | printk(KERN_DEBUG "%s: RX authentication from %s (alg=%d " |
f0706e82 | 1743 | "transaction=%d status=%d)\n", |
0795af57 | 1744 | dev->name, print_mac(mac, mgmt->sa), auth_alg, |
f0706e82 JB |
1745 | auth_transaction, status_code); |
1746 | ||
51fb61e7 | 1747 | if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS) { |
f0706e82 JB |
1748 | /* IEEE 802.11 standard does not require authentication in IBSS |
1749 | * networks and most implementations do not seem to use it. | |
1750 | * However, try to reply to authentication attempts if someone | |
1751 | * has actually implemented this. | |
1752 | * TODO: Could implement shared key authentication. */ | |
1753 | if (auth_alg != WLAN_AUTH_OPEN || auth_transaction != 1) { | |
1754 | printk(KERN_DEBUG "%s: unexpected IBSS authentication " | |
1755 | "frame (alg=%d transaction=%d)\n", | |
1756 | dev->name, auth_alg, auth_transaction); | |
1757 | return; | |
1758 | } | |
1759 | ieee80211_send_auth(dev, ifsta, 2, NULL, 0, 0); | |
1760 | } | |
1761 | ||
1762 | if (auth_alg != ifsta->auth_alg || | |
1763 | auth_transaction != ifsta->auth_transaction) { | |
1764 | printk(KERN_DEBUG "%s: unexpected authentication frame " | |
1765 | "(alg=%d transaction=%d)\n", | |
1766 | dev->name, auth_alg, auth_transaction); | |
1767 | return; | |
1768 | } | |
1769 | ||
1770 | if (status_code != WLAN_STATUS_SUCCESS) { | |
1771 | printk(KERN_DEBUG "%s: AP denied authentication (auth_alg=%d " | |
1772 | "code=%d)\n", dev->name, ifsta->auth_alg, status_code); | |
1773 | if (status_code == WLAN_STATUS_NOT_SUPPORTED_AUTH_ALG) { | |
1774 | u8 algs[3]; | |
1775 | const int num_algs = ARRAY_SIZE(algs); | |
1776 | int i, pos; | |
1777 | algs[0] = algs[1] = algs[2] = 0xff; | |
1778 | if (ifsta->auth_algs & IEEE80211_AUTH_ALG_OPEN) | |
1779 | algs[0] = WLAN_AUTH_OPEN; | |
1780 | if (ifsta->auth_algs & IEEE80211_AUTH_ALG_SHARED_KEY) | |
1781 | algs[1] = WLAN_AUTH_SHARED_KEY; | |
1782 | if (ifsta->auth_algs & IEEE80211_AUTH_ALG_LEAP) | |
1783 | algs[2] = WLAN_AUTH_LEAP; | |
1784 | if (ifsta->auth_alg == WLAN_AUTH_OPEN) | |
1785 | pos = 0; | |
1786 | else if (ifsta->auth_alg == WLAN_AUTH_SHARED_KEY) | |
1787 | pos = 1; | |
1788 | else | |
1789 | pos = 2; | |
1790 | for (i = 0; i < num_algs; i++) { | |
1791 | pos++; | |
1792 | if (pos >= num_algs) | |
1793 | pos = 0; | |
1794 | if (algs[pos] == ifsta->auth_alg || | |
1795 | algs[pos] == 0xff) | |
1796 | continue; | |
1797 | if (algs[pos] == WLAN_AUTH_SHARED_KEY && | |
1798 | !ieee80211_sta_wep_configured(dev)) | |
1799 | continue; | |
1800 | ifsta->auth_alg = algs[pos]; | |
1801 | printk(KERN_DEBUG "%s: set auth_alg=%d for " | |
1802 | "next try\n", | |
1803 | dev->name, ifsta->auth_alg); | |
1804 | break; | |
1805 | } | |
1806 | } | |
1807 | return; | |
1808 | } | |
1809 | ||
1810 | switch (ifsta->auth_alg) { | |
1811 | case WLAN_AUTH_OPEN: | |
1812 | case WLAN_AUTH_LEAP: | |
1813 | ieee80211_auth_completed(dev, ifsta); | |
1814 | break; | |
1815 | case WLAN_AUTH_SHARED_KEY: | |
1816 | if (ifsta->auth_transaction == 4) | |
1817 | ieee80211_auth_completed(dev, ifsta); | |
1818 | else | |
1819 | ieee80211_auth_challenge(dev, ifsta, mgmt, len); | |
1820 | break; | |
1821 | } | |
1822 | } | |
1823 | ||
1824 | ||
1825 | static void ieee80211_rx_mgmt_deauth(struct net_device *dev, | |
1826 | struct ieee80211_if_sta *ifsta, | |
1827 | struct ieee80211_mgmt *mgmt, | |
1828 | size_t len) | |
1829 | { | |
1830 | u16 reason_code; | |
0795af57 | 1831 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
1832 | |
1833 | if (len < 24 + 2) { | |
1834 | printk(KERN_DEBUG "%s: too short (%zd) deauthentication frame " | |
0795af57 JP |
1835 | "received from %s - ignored\n", |
1836 | dev->name, len, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1837 | return; |
1838 | } | |
1839 | ||
1840 | if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) { | |
1841 | printk(KERN_DEBUG "%s: deauthentication frame received from " | |
0795af57 JP |
1842 | "unknown AP (SA=%s BSSID=%s) - " |
1843 | "ignored\n", dev->name, print_mac(mac, mgmt->sa), | |
1844 | print_mac(mac, mgmt->bssid)); | |
f0706e82 JB |
1845 | return; |
1846 | } | |
1847 | ||
1848 | reason_code = le16_to_cpu(mgmt->u.deauth.reason_code); | |
1849 | ||
0795af57 | 1850 | printk(KERN_DEBUG "%s: RX deauthentication from %s" |
f0706e82 | 1851 | " (reason=%d)\n", |
0795af57 | 1852 | dev->name, print_mac(mac, mgmt->sa), reason_code); |
f0706e82 | 1853 | |
d6f2da5b | 1854 | if (ifsta->flags & IEEE80211_STA_AUTHENTICATED) { |
f0706e82 JB |
1855 | printk(KERN_DEBUG "%s: deauthenticated\n", dev->name); |
1856 | } | |
1857 | ||
1858 | if (ifsta->state == IEEE80211_AUTHENTICATE || | |
1859 | ifsta->state == IEEE80211_ASSOCIATE || | |
1860 | ifsta->state == IEEE80211_ASSOCIATED) { | |
1861 | ifsta->state = IEEE80211_AUTHENTICATE; | |
1862 | mod_timer(&ifsta->timer, jiffies + | |
1863 | IEEE80211_RETRY_AUTH_INTERVAL); | |
1864 | } | |
1865 | ||
1866 | ieee80211_set_disassoc(dev, ifsta, 1); | |
d6f2da5b | 1867 | ifsta->flags &= ~IEEE80211_STA_AUTHENTICATED; |
f0706e82 JB |
1868 | } |
1869 | ||
1870 | ||
1871 | static void ieee80211_rx_mgmt_disassoc(struct net_device *dev, | |
1872 | struct ieee80211_if_sta *ifsta, | |
1873 | struct ieee80211_mgmt *mgmt, | |
1874 | size_t len) | |
1875 | { | |
1876 | u16 reason_code; | |
0795af57 | 1877 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
1878 | |
1879 | if (len < 24 + 2) { | |
1880 | printk(KERN_DEBUG "%s: too short (%zd) disassociation frame " | |
0795af57 JP |
1881 | "received from %s - ignored\n", |
1882 | dev->name, len, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1883 | return; |
1884 | } | |
1885 | ||
1886 | if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) { | |
1887 | printk(KERN_DEBUG "%s: disassociation frame received from " | |
0795af57 JP |
1888 | "unknown AP (SA=%s BSSID=%s) - " |
1889 | "ignored\n", dev->name, print_mac(mac, mgmt->sa), | |
1890 | print_mac(mac, mgmt->bssid)); | |
f0706e82 JB |
1891 | return; |
1892 | } | |
1893 | ||
1894 | reason_code = le16_to_cpu(mgmt->u.disassoc.reason_code); | |
1895 | ||
0795af57 | 1896 | printk(KERN_DEBUG "%s: RX disassociation from %s" |
f0706e82 | 1897 | " (reason=%d)\n", |
0795af57 | 1898 | dev->name, print_mac(mac, mgmt->sa), reason_code); |
f0706e82 | 1899 | |
d6f2da5b | 1900 | if (ifsta->flags & IEEE80211_STA_ASSOCIATED) |
f0706e82 JB |
1901 | printk(KERN_DEBUG "%s: disassociated\n", dev->name); |
1902 | ||
1903 | if (ifsta->state == IEEE80211_ASSOCIATED) { | |
1904 | ifsta->state = IEEE80211_ASSOCIATE; | |
1905 | mod_timer(&ifsta->timer, jiffies + | |
1906 | IEEE80211_RETRY_AUTH_INTERVAL); | |
1907 | } | |
1908 | ||
1909 | ieee80211_set_disassoc(dev, ifsta, 0); | |
1910 | } | |
1911 | ||
1912 | ||
471b3efd | 1913 | static void ieee80211_rx_mgmt_assoc_resp(struct ieee80211_sub_if_data *sdata, |
f0706e82 JB |
1914 | struct ieee80211_if_sta *ifsta, |
1915 | struct ieee80211_mgmt *mgmt, | |
1916 | size_t len, | |
1917 | int reassoc) | |
1918 | { | |
471b3efd JB |
1919 | struct ieee80211_local *local = sdata->local; |
1920 | struct net_device *dev = sdata->dev; | |
8318d78a | 1921 | struct ieee80211_supported_band *sband; |
f0706e82 | 1922 | struct sta_info *sta; |
8318d78a | 1923 | u64 rates, basic_rates; |
f0706e82 JB |
1924 | u16 capab_info, status_code, aid; |
1925 | struct ieee802_11_elems elems; | |
471b3efd | 1926 | struct ieee80211_bss_conf *bss_conf = &sdata->bss_conf; |
f0706e82 JB |
1927 | u8 *pos; |
1928 | int i, j; | |
0795af57 | 1929 | DECLARE_MAC_BUF(mac); |
8318d78a | 1930 | bool have_higher_than_11mbit = false; |
f0706e82 JB |
1931 | |
1932 | /* AssocResp and ReassocResp have identical structure, so process both | |
1933 | * of them in this function. */ | |
1934 | ||
1935 | if (ifsta->state != IEEE80211_ASSOCIATE) { | |
1936 | printk(KERN_DEBUG "%s: association frame received from " | |
0795af57 JP |
1937 | "%s, but not in associate state - ignored\n", |
1938 | dev->name, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1939 | return; |
1940 | } | |
1941 | ||
1942 | if (len < 24 + 6) { | |
1943 | printk(KERN_DEBUG "%s: too short (%zd) association frame " | |
0795af57 JP |
1944 | "received from %s - ignored\n", |
1945 | dev->name, len, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
1946 | return; |
1947 | } | |
1948 | ||
1949 | if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) { | |
1950 | printk(KERN_DEBUG "%s: association frame received from " | |
0795af57 JP |
1951 | "unknown AP (SA=%s BSSID=%s) - " |
1952 | "ignored\n", dev->name, print_mac(mac, mgmt->sa), | |
1953 | print_mac(mac, mgmt->bssid)); | |
f0706e82 JB |
1954 | return; |
1955 | } | |
1956 | ||
1957 | capab_info = le16_to_cpu(mgmt->u.assoc_resp.capab_info); | |
1958 | status_code = le16_to_cpu(mgmt->u.assoc_resp.status_code); | |
1959 | aid = le16_to_cpu(mgmt->u.assoc_resp.aid); | |
f0706e82 | 1960 | |
0795af57 | 1961 | printk(KERN_DEBUG "%s: RX %sssocResp from %s (capab=0x%x " |
f0706e82 | 1962 | "status=%d aid=%d)\n", |
0795af57 | 1963 | dev->name, reassoc ? "Rea" : "A", print_mac(mac, mgmt->sa), |
ddd68587 | 1964 | capab_info, status_code, (u16)(aid & ~(BIT(15) | BIT(14)))); |
f0706e82 JB |
1965 | |
1966 | if (status_code != WLAN_STATUS_SUCCESS) { | |
1967 | printk(KERN_DEBUG "%s: AP denied association (code=%d)\n", | |
1968 | dev->name, status_code); | |
8a69aa93 DD |
1969 | /* if this was a reassociation, ensure we try a "full" |
1970 | * association next time. This works around some broken APs | |
1971 | * which do not correctly reject reassociation requests. */ | |
d6f2da5b | 1972 | ifsta->flags &= ~IEEE80211_STA_PREV_BSSID_SET; |
f0706e82 JB |
1973 | return; |
1974 | } | |
1975 | ||
1dd84aa2 JB |
1976 | if ((aid & (BIT(15) | BIT(14))) != (BIT(15) | BIT(14))) |
1977 | printk(KERN_DEBUG "%s: invalid aid value %d; bits 15:14 not " | |
1978 | "set\n", dev->name, aid); | |
1979 | aid &= ~(BIT(15) | BIT(14)); | |
1980 | ||
f0706e82 | 1981 | pos = mgmt->u.assoc_resp.variable; |
67a4cce4 | 1982 | ieee802_11_parse_elems(pos, len - (pos - (u8 *) mgmt), &elems); |
f0706e82 JB |
1983 | |
1984 | if (!elems.supp_rates) { | |
1985 | printk(KERN_DEBUG "%s: no SuppRates element in AssocResp\n", | |
1986 | dev->name); | |
1987 | return; | |
1988 | } | |
1989 | ||
1990 | printk(KERN_DEBUG "%s: associated\n", dev->name); | |
1991 | ifsta->aid = aid; | |
1992 | ifsta->ap_capab = capab_info; | |
1993 | ||
1994 | kfree(ifsta->assocresp_ies); | |
1995 | ifsta->assocresp_ies_len = len - (pos - (u8 *) mgmt); | |
0ec0b7ac | 1996 | ifsta->assocresp_ies = kmalloc(ifsta->assocresp_ies_len, GFP_KERNEL); |
f0706e82 JB |
1997 | if (ifsta->assocresp_ies) |
1998 | memcpy(ifsta->assocresp_ies, pos, ifsta->assocresp_ies_len); | |
1999 | ||
d0709a65 JB |
2000 | rcu_read_lock(); |
2001 | ||
f0706e82 JB |
2002 | /* Add STA entry for the AP */ |
2003 | sta = sta_info_get(local, ifsta->bssid); | |
2004 | if (!sta) { | |
2005 | struct ieee80211_sta_bss *bss; | |
73651ee6 | 2006 | int err; |
d0709a65 | 2007 | |
73651ee6 JB |
2008 | sta = sta_info_alloc(sdata, ifsta->bssid, GFP_ATOMIC); |
2009 | if (!sta) { | |
2010 | printk(KERN_DEBUG "%s: failed to alloc STA entry for" | |
2011 | " the AP\n", dev->name); | |
d0709a65 | 2012 | rcu_read_unlock(); |
f0706e82 JB |
2013 | return; |
2014 | } | |
65c107ab | 2015 | bss = ieee80211_rx_bss_get(dev, ifsta->bssid, |
8318d78a | 2016 | local->hw.conf.channel->center_freq, |
cffdd30d | 2017 | ifsta->ssid, ifsta->ssid_len); |
f0706e82 JB |
2018 | if (bss) { |
2019 | sta->last_rssi = bss->rssi; | |
2020 | sta->last_signal = bss->signal; | |
2021 | sta->last_noise = bss->noise; | |
2022 | ieee80211_rx_bss_put(dev, bss); | |
2023 | } | |
73651ee6 JB |
2024 | |
2025 | err = sta_info_insert(sta); | |
2026 | if (err) { | |
2027 | printk(KERN_DEBUG "%s: failed to insert STA entry for" | |
2028 | " the AP (error %d)\n", dev->name, err); | |
73651ee6 JB |
2029 | rcu_read_unlock(); |
2030 | return; | |
2031 | } | |
f0706e82 JB |
2032 | } |
2033 | ||
73651ee6 JB |
2034 | /* |
2035 | * FIXME: Do we really need to update the sta_info's information here? | |
2036 | * We already know about the AP (we found it in our list) so it | |
2037 | * should already be filled with the right info, no? | |
2038 | * As is stands, all this is racy because typically we assume | |
2039 | * the information that is filled in here (except flags) doesn't | |
2040 | * change while a STA structure is alive. As such, it should move | |
2041 | * to between the sta_info_alloc() and sta_info_insert() above. | |
2042 | */ | |
2043 | ||
238814fd JB |
2044 | sta->flags |= WLAN_STA_AUTH | WLAN_STA_ASSOC | WLAN_STA_ASSOC_AP | |
2045 | WLAN_STA_AUTHORIZED; | |
f0706e82 JB |
2046 | |
2047 | rates = 0; | |
8318d78a JB |
2048 | basic_rates = 0; |
2049 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; | |
2050 | ||
f0706e82 JB |
2051 | for (i = 0; i < elems.supp_rates_len; i++) { |
2052 | int rate = (elems.supp_rates[i] & 0x7f) * 5; | |
8318d78a JB |
2053 | |
2054 | if (rate > 110) | |
2055 | have_higher_than_11mbit = true; | |
2056 | ||
2057 | for (j = 0; j < sband->n_bitrates; j++) { | |
2058 | if (sband->bitrates[j].bitrate == rate) | |
f0706e82 | 2059 | rates |= BIT(j); |
8318d78a JB |
2060 | if (elems.supp_rates[i] & 0x80) |
2061 | basic_rates |= BIT(j); | |
2062 | } | |
f0706e82 | 2063 | } |
8318d78a | 2064 | |
f0706e82 JB |
2065 | for (i = 0; i < elems.ext_supp_rates_len; i++) { |
2066 | int rate = (elems.ext_supp_rates[i] & 0x7f) * 5; | |
8318d78a JB |
2067 | |
2068 | if (rate > 110) | |
2069 | have_higher_than_11mbit = true; | |
2070 | ||
2071 | for (j = 0; j < sband->n_bitrates; j++) { | |
2072 | if (sband->bitrates[j].bitrate == rate) | |
f0706e82 | 2073 | rates |= BIT(j); |
8318d78a JB |
2074 | if (elems.ext_supp_rates[i] & 0x80) |
2075 | basic_rates |= BIT(j); | |
2076 | } | |
f0706e82 | 2077 | } |
8318d78a JB |
2078 | |
2079 | sta->supp_rates[local->hw.conf.channel->band] = rates; | |
2080 | sdata->basic_rates = basic_rates; | |
2081 | ||
2082 | /* cf. IEEE 802.11 9.2.12 */ | |
2083 | if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ && | |
2084 | have_higher_than_11mbit) | |
2085 | sdata->flags |= IEEE80211_SDATA_OPERATING_GMODE; | |
2086 | else | |
2087 | sdata->flags &= ~IEEE80211_SDATA_OPERATING_GMODE; | |
f0706e82 | 2088 | |
38668c05 | 2089 | if (elems.ht_cap_elem && elems.ht_info_elem && elems.wmm_param) { |
d3c990fb | 2090 | struct ieee80211_ht_bss_info bss_info; |
d3c990fb RR |
2091 | ieee80211_ht_cap_ie_to_ht_info( |
2092 | (struct ieee80211_ht_cap *) | |
2093 | elems.ht_cap_elem, &sta->ht_info); | |
2094 | ieee80211_ht_addt_info_ie_to_ht_bss_info( | |
2095 | (struct ieee80211_ht_addt_info *) | |
2096 | elems.ht_info_elem, &bss_info); | |
38668c05 | 2097 | ieee80211_handle_ht(local, 1, &sta->ht_info, &bss_info); |
d3c990fb RR |
2098 | } |
2099 | ||
f0706e82 JB |
2100 | rate_control_rate_init(sta, local); |
2101 | ||
d6f2da5b | 2102 | if (elems.wmm_param && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) { |
f0706e82 | 2103 | sta->flags |= WLAN_STA_WME; |
e5f98f2d | 2104 | rcu_read_unlock(); |
f0706e82 JB |
2105 | ieee80211_sta_wmm_params(dev, ifsta, elems.wmm_param, |
2106 | elems.wmm_param_len); | |
e5f98f2d JB |
2107 | } else |
2108 | rcu_read_unlock(); | |
f0706e82 | 2109 | |
21c0cbe7 TW |
2110 | /* set AID and assoc capability, |
2111 | * ieee80211_set_associated() will tell the driver */ | |
8318d78a | 2112 | bss_conf->aid = aid; |
21c0cbe7 | 2113 | bss_conf->assoc_capability = capab_info; |
8318d78a | 2114 | ieee80211_set_associated(dev, ifsta, 1); |
f0706e82 | 2115 | |
f0706e82 JB |
2116 | ieee80211_associated(dev, ifsta); |
2117 | } | |
2118 | ||
2119 | ||
2120 | /* Caller must hold local->sta_bss_lock */ | |
2121 | static void __ieee80211_rx_bss_hash_add(struct net_device *dev, | |
2122 | struct ieee80211_sta_bss *bss) | |
2123 | { | |
2124 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
f709fc69 | 2125 | u8 hash_idx; |
902acc78 JB |
2126 | |
2127 | if (bss_mesh_cfg(bss)) | |
2128 | hash_idx = mesh_id_hash(bss_mesh_id(bss), | |
2129 | bss_mesh_id_len(bss)); | |
f709fc69 | 2130 | else |
f709fc69 | 2131 | hash_idx = STA_HASH(bss->bssid); |
902acc78 | 2132 | |
f709fc69 LCC |
2133 | bss->hnext = local->sta_bss_hash[hash_idx]; |
2134 | local->sta_bss_hash[hash_idx] = bss; | |
f0706e82 JB |
2135 | } |
2136 | ||
2137 | ||
2138 | /* Caller must hold local->sta_bss_lock */ | |
2139 | static void __ieee80211_rx_bss_hash_del(struct net_device *dev, | |
2140 | struct ieee80211_sta_bss *bss) | |
2141 | { | |
2142 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2143 | struct ieee80211_sta_bss *b, *prev = NULL; | |
2144 | b = local->sta_bss_hash[STA_HASH(bss->bssid)]; | |
2145 | while (b) { | |
2146 | if (b == bss) { | |
2147 | if (!prev) | |
2148 | local->sta_bss_hash[STA_HASH(bss->bssid)] = | |
2149 | bss->hnext; | |
2150 | else | |
2151 | prev->hnext = bss->hnext; | |
2152 | break; | |
2153 | } | |
2154 | prev = b; | |
2155 | b = b->hnext; | |
2156 | } | |
2157 | } | |
2158 | ||
2159 | ||
2160 | static struct ieee80211_sta_bss * | |
8318d78a | 2161 | ieee80211_rx_bss_add(struct net_device *dev, u8 *bssid, int freq, |
cffdd30d | 2162 | u8 *ssid, u8 ssid_len) |
f0706e82 JB |
2163 | { |
2164 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2165 | struct ieee80211_sta_bss *bss; | |
2166 | ||
dd00cc48 | 2167 | bss = kzalloc(sizeof(*bss), GFP_ATOMIC); |
f0706e82 JB |
2168 | if (!bss) |
2169 | return NULL; | |
f0706e82 JB |
2170 | atomic_inc(&bss->users); |
2171 | atomic_inc(&bss->users); | |
2172 | memcpy(bss->bssid, bssid, ETH_ALEN); | |
8318d78a | 2173 | bss->freq = freq; |
cffdd30d JL |
2174 | if (ssid && ssid_len <= IEEE80211_MAX_SSID_LEN) { |
2175 | memcpy(bss->ssid, ssid, ssid_len); | |
2176 | bss->ssid_len = ssid_len; | |
2177 | } | |
f0706e82 JB |
2178 | |
2179 | spin_lock_bh(&local->sta_bss_lock); | |
2180 | /* TODO: order by RSSI? */ | |
2181 | list_add_tail(&bss->list, &local->sta_bss_list); | |
2182 | __ieee80211_rx_bss_hash_add(dev, bss); | |
2183 | spin_unlock_bh(&local->sta_bss_lock); | |
2184 | return bss; | |
2185 | } | |
2186 | ||
f0706e82 | 2187 | static struct ieee80211_sta_bss * |
8318d78a | 2188 | ieee80211_rx_bss_get(struct net_device *dev, u8 *bssid, int freq, |
cffdd30d | 2189 | u8 *ssid, u8 ssid_len) |
f0706e82 JB |
2190 | { |
2191 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2192 | struct ieee80211_sta_bss *bss; | |
2193 | ||
2194 | spin_lock_bh(&local->sta_bss_lock); | |
2195 | bss = local->sta_bss_hash[STA_HASH(bssid)]; | |
2196 | while (bss) { | |
902acc78 JB |
2197 | if (!bss_mesh_cfg(bss) && |
2198 | !memcmp(bss->bssid, bssid, ETH_ALEN) && | |
8318d78a | 2199 | bss->freq == freq && |
cffdd30d JL |
2200 | bss->ssid_len == ssid_len && |
2201 | (ssid_len == 0 || !memcmp(bss->ssid, ssid, ssid_len))) { | |
f0706e82 JB |
2202 | atomic_inc(&bss->users); |
2203 | break; | |
2204 | } | |
2205 | bss = bss->hnext; | |
2206 | } | |
2207 | spin_unlock_bh(&local->sta_bss_lock); | |
2208 | return bss; | |
2209 | } | |
2210 | ||
f709fc69 LCC |
2211 | #ifdef CONFIG_MAC80211_MESH |
2212 | static struct ieee80211_sta_bss * | |
2213 | ieee80211_rx_mesh_bss_get(struct net_device *dev, u8 *mesh_id, int mesh_id_len, | |
2214 | u8 *mesh_cfg, int freq) | |
2215 | { | |
2216 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2217 | struct ieee80211_sta_bss *bss; | |
2218 | ||
2219 | spin_lock_bh(&local->sta_bss_lock); | |
2220 | bss = local->sta_bss_hash[mesh_id_hash(mesh_id, mesh_id_len)]; | |
2221 | while (bss) { | |
902acc78 JB |
2222 | if (bss_mesh_cfg(bss) && |
2223 | !memcmp(bss_mesh_cfg(bss), mesh_cfg, MESH_CFG_CMP_LEN) && | |
f709fc69 LCC |
2224 | bss->freq == freq && |
2225 | mesh_id_len == bss->mesh_id_len && | |
2226 | (mesh_id_len == 0 || !memcmp(bss->mesh_id, mesh_id, | |
2227 | mesh_id_len))) { | |
2228 | atomic_inc(&bss->users); | |
2229 | break; | |
2230 | } | |
2231 | bss = bss->hnext; | |
2232 | } | |
2233 | spin_unlock_bh(&local->sta_bss_lock); | |
2234 | return bss; | |
2235 | } | |
2236 | ||
2237 | static struct ieee80211_sta_bss * | |
2238 | ieee80211_rx_mesh_bss_add(struct net_device *dev, u8 *mesh_id, int mesh_id_len, | |
05e5e883 | 2239 | u8 *mesh_cfg, int mesh_config_len, int freq) |
f709fc69 LCC |
2240 | { |
2241 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2242 | struct ieee80211_sta_bss *bss; | |
2243 | ||
05e5e883 LCC |
2244 | if (mesh_config_len != MESH_CFG_LEN) |
2245 | return NULL; | |
2246 | ||
f709fc69 LCC |
2247 | bss = kzalloc(sizeof(*bss), GFP_ATOMIC); |
2248 | if (!bss) | |
2249 | return NULL; | |
2250 | ||
24736701 | 2251 | bss->mesh_cfg = kmalloc(MESH_CFG_CMP_LEN, GFP_ATOMIC); |
f709fc69 LCC |
2252 | if (!bss->mesh_cfg) { |
2253 | kfree(bss); | |
2254 | return NULL; | |
2255 | } | |
2256 | ||
2257 | if (mesh_id_len && mesh_id_len <= IEEE80211_MAX_MESH_ID_LEN) { | |
2258 | bss->mesh_id = kmalloc(mesh_id_len, GFP_ATOMIC); | |
2259 | if (!bss->mesh_id) { | |
2260 | kfree(bss->mesh_cfg); | |
2261 | kfree(bss); | |
2262 | return NULL; | |
2263 | } | |
2264 | memcpy(bss->mesh_id, mesh_id, mesh_id_len); | |
2265 | } | |
2266 | ||
2267 | atomic_inc(&bss->users); | |
2268 | atomic_inc(&bss->users); | |
24736701 | 2269 | memcpy(bss->mesh_cfg, mesh_cfg, MESH_CFG_CMP_LEN); |
f709fc69 LCC |
2270 | bss->mesh_id_len = mesh_id_len; |
2271 | bss->freq = freq; | |
2272 | spin_lock_bh(&local->sta_bss_lock); | |
2273 | /* TODO: order by RSSI? */ | |
2274 | list_add_tail(&bss->list, &local->sta_bss_list); | |
2275 | __ieee80211_rx_bss_hash_add(dev, bss); | |
2276 | spin_unlock_bh(&local->sta_bss_lock); | |
2277 | return bss; | |
2278 | } | |
2279 | #endif | |
f0706e82 JB |
2280 | |
2281 | static void ieee80211_rx_bss_free(struct ieee80211_sta_bss *bss) | |
2282 | { | |
2283 | kfree(bss->wpa_ie); | |
2284 | kfree(bss->rsn_ie); | |
2285 | kfree(bss->wmm_ie); | |
c7153508 | 2286 | kfree(bss->ht_ie); |
902acc78 JB |
2287 | kfree(bss_mesh_id(bss)); |
2288 | kfree(bss_mesh_cfg(bss)); | |
f0706e82 JB |
2289 | kfree(bss); |
2290 | } | |
2291 | ||
2292 | ||
2293 | static void ieee80211_rx_bss_put(struct net_device *dev, | |
2294 | struct ieee80211_sta_bss *bss) | |
2295 | { | |
2296 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
1ebebea8 PE |
2297 | |
2298 | local_bh_disable(); | |
2299 | if (!atomic_dec_and_lock(&bss->users, &local->sta_bss_lock)) { | |
2300 | local_bh_enable(); | |
f0706e82 | 2301 | return; |
1ebebea8 | 2302 | } |
f0706e82 | 2303 | |
f0706e82 JB |
2304 | __ieee80211_rx_bss_hash_del(dev, bss); |
2305 | list_del(&bss->list); | |
2306 | spin_unlock_bh(&local->sta_bss_lock); | |
2307 | ieee80211_rx_bss_free(bss); | |
2308 | } | |
2309 | ||
2310 | ||
2311 | void ieee80211_rx_bss_list_init(struct net_device *dev) | |
2312 | { | |
2313 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2314 | spin_lock_init(&local->sta_bss_lock); | |
2315 | INIT_LIST_HEAD(&local->sta_bss_list); | |
2316 | } | |
2317 | ||
2318 | ||
2319 | void ieee80211_rx_bss_list_deinit(struct net_device *dev) | |
2320 | { | |
2321 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2322 | struct ieee80211_sta_bss *bss, *tmp; | |
2323 | ||
2324 | list_for_each_entry_safe(bss, tmp, &local->sta_bss_list, list) | |
2325 | ieee80211_rx_bss_put(dev, bss); | |
2326 | } | |
2327 | ||
2328 | ||
a607268a BR |
2329 | static int ieee80211_sta_join_ibss(struct net_device *dev, |
2330 | struct ieee80211_if_sta *ifsta, | |
2331 | struct ieee80211_sta_bss *bss) | |
2332 | { | |
2333 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2334 | int res, rates, i, j; | |
2335 | struct sk_buff *skb; | |
2336 | struct ieee80211_mgmt *mgmt; | |
2337 | struct ieee80211_tx_control control; | |
2338 | struct rate_selection ratesel; | |
2339 | u8 *pos; | |
2340 | struct ieee80211_sub_if_data *sdata; | |
2341 | struct ieee80211_supported_band *sband; | |
507b06d0 | 2342 | union iwreq_data wrqu; |
a607268a BR |
2343 | |
2344 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; | |
2345 | ||
9dd6aed0 JB |
2346 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
2347 | ||
a607268a | 2348 | /* Remove possible STA entries from other IBSS networks. */ |
dc6676b7 | 2349 | sta_info_flush_delayed(sdata); |
a607268a BR |
2350 | |
2351 | if (local->ops->reset_tsf) { | |
2352 | /* Reset own TSF to allow time synchronization work. */ | |
2353 | local->ops->reset_tsf(local_to_hw(local)); | |
2354 | } | |
2355 | memcpy(ifsta->bssid, bss->bssid, ETH_ALEN); | |
2356 | res = ieee80211_if_config(dev); | |
2357 | if (res) | |
2358 | return res; | |
2359 | ||
2360 | local->hw.conf.beacon_int = bss->beacon_int >= 10 ? bss->beacon_int : 10; | |
2361 | ||
a607268a BR |
2362 | sdata->drop_unencrypted = bss->capability & |
2363 | WLAN_CAPABILITY_PRIVACY ? 1 : 0; | |
2364 | ||
be038b37 | 2365 | res = ieee80211_set_freq(dev, bss->freq); |
a607268a | 2366 | |
be038b37 AK |
2367 | if (res) |
2368 | return res; | |
a607268a BR |
2369 | |
2370 | /* Set beacon template */ | |
2371 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + 400); | |
2372 | do { | |
2373 | if (!skb) | |
2374 | break; | |
2375 | ||
2376 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
2377 | ||
2378 | mgmt = (struct ieee80211_mgmt *) | |
2379 | skb_put(skb, 24 + sizeof(mgmt->u.beacon)); | |
2380 | memset(mgmt, 0, 24 + sizeof(mgmt->u.beacon)); | |
2381 | mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
2382 | IEEE80211_STYPE_BEACON); | |
2383 | memset(mgmt->da, 0xff, ETH_ALEN); | |
2384 | memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN); | |
2385 | memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN); | |
2386 | mgmt->u.beacon.beacon_int = | |
2387 | cpu_to_le16(local->hw.conf.beacon_int); | |
2388 | mgmt->u.beacon.capab_info = cpu_to_le16(bss->capability); | |
2389 | ||
2390 | pos = skb_put(skb, 2 + ifsta->ssid_len); | |
2391 | *pos++ = WLAN_EID_SSID; | |
2392 | *pos++ = ifsta->ssid_len; | |
2393 | memcpy(pos, ifsta->ssid, ifsta->ssid_len); | |
2394 | ||
2395 | rates = bss->supp_rates_len; | |
2396 | if (rates > 8) | |
2397 | rates = 8; | |
2398 | pos = skb_put(skb, 2 + rates); | |
2399 | *pos++ = WLAN_EID_SUPP_RATES; | |
2400 | *pos++ = rates; | |
2401 | memcpy(pos, bss->supp_rates, rates); | |
2402 | ||
2403 | if (bss->band == IEEE80211_BAND_2GHZ) { | |
2404 | pos = skb_put(skb, 2 + 1); | |
2405 | *pos++ = WLAN_EID_DS_PARAMS; | |
2406 | *pos++ = 1; | |
2407 | *pos++ = ieee80211_frequency_to_channel(bss->freq); | |
2408 | } | |
2409 | ||
2410 | pos = skb_put(skb, 2 + 2); | |
2411 | *pos++ = WLAN_EID_IBSS_PARAMS; | |
2412 | *pos++ = 2; | |
2413 | /* FIX: set ATIM window based on scan results */ | |
2414 | *pos++ = 0; | |
2415 | *pos++ = 0; | |
2416 | ||
2417 | if (bss->supp_rates_len > 8) { | |
2418 | rates = bss->supp_rates_len - 8; | |
2419 | pos = skb_put(skb, 2 + rates); | |
2420 | *pos++ = WLAN_EID_EXT_SUPP_RATES; | |
2421 | *pos++ = rates; | |
2422 | memcpy(pos, &bss->supp_rates[8], rates); | |
2423 | } | |
2424 | ||
2425 | memset(&control, 0, sizeof(control)); | |
2426 | rate_control_get_rate(dev, sband, skb, &ratesel); | |
2427 | if (!ratesel.rate) { | |
2428 | printk(KERN_DEBUG "%s: Failed to determine TX rate " | |
2429 | "for IBSS beacon\n", dev->name); | |
2430 | break; | |
2431 | } | |
2432 | control.vif = &sdata->vif; | |
2433 | control.tx_rate = ratesel.rate; | |
2434 | if (sdata->bss_conf.use_short_preamble && | |
2435 | ratesel.rate->flags & IEEE80211_RATE_SHORT_PREAMBLE) | |
2436 | control.flags |= IEEE80211_TXCTL_SHORT_PREAMBLE; | |
2437 | control.antenna_sel_tx = local->hw.conf.antenna_sel_tx; | |
2438 | control.flags |= IEEE80211_TXCTL_NO_ACK; | |
2439 | control.retry_limit = 1; | |
2440 | ||
2441 | ifsta->probe_resp = skb_copy(skb, GFP_ATOMIC); | |
2442 | if (ifsta->probe_resp) { | |
2443 | mgmt = (struct ieee80211_mgmt *) | |
2444 | ifsta->probe_resp->data; | |
2445 | mgmt->frame_control = | |
2446 | IEEE80211_FC(IEEE80211_FTYPE_MGMT, | |
2447 | IEEE80211_STYPE_PROBE_RESP); | |
2448 | } else { | |
2449 | printk(KERN_DEBUG "%s: Could not allocate ProbeResp " | |
2450 | "template for IBSS\n", dev->name); | |
2451 | } | |
2452 | ||
2453 | if (local->ops->beacon_update && | |
2454 | local->ops->beacon_update(local_to_hw(local), | |
2455 | skb, &control) == 0) { | |
2456 | printk(KERN_DEBUG "%s: Configured IBSS beacon " | |
2457 | "template\n", dev->name); | |
2458 | skb = NULL; | |
2459 | } | |
2460 | ||
2461 | rates = 0; | |
2462 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; | |
2463 | for (i = 0; i < bss->supp_rates_len; i++) { | |
2464 | int bitrate = (bss->supp_rates[i] & 0x7f) * 5; | |
2465 | for (j = 0; j < sband->n_bitrates; j++) | |
2466 | if (sband->bitrates[j].bitrate == bitrate) | |
2467 | rates |= BIT(j); | |
2468 | } | |
2469 | ifsta->supp_rates_bits[local->hw.conf.channel->band] = rates; | |
e2839d8f VK |
2470 | |
2471 | ieee80211_sta_def_wmm_params(dev, bss, 1); | |
a607268a BR |
2472 | } while (0); |
2473 | ||
2474 | if (skb) { | |
2475 | printk(KERN_DEBUG "%s: Failed to configure IBSS beacon " | |
2476 | "template\n", dev->name); | |
2477 | dev_kfree_skb(skb); | |
2478 | } | |
2479 | ||
2480 | ifsta->state = IEEE80211_IBSS_JOINED; | |
2481 | mod_timer(&ifsta->timer, jiffies + IEEE80211_IBSS_MERGE_INTERVAL); | |
2482 | ||
507b06d0 DW |
2483 | memset(&wrqu, 0, sizeof(wrqu)); |
2484 | memcpy(wrqu.ap_addr.sa_data, bss->bssid, ETH_ALEN); | |
2485 | wireless_send_event(dev, SIOCGIWAP, &wrqu, NULL); | |
2486 | ||
a607268a BR |
2487 | return res; |
2488 | } | |
2489 | ||
f709fc69 LCC |
2490 | u64 ieee80211_sta_get_rates(struct ieee80211_local *local, |
2491 | struct ieee802_11_elems *elems, | |
2492 | enum ieee80211_band band) | |
2493 | { | |
2494 | struct ieee80211_supported_band *sband; | |
2495 | struct ieee80211_rate *bitrates; | |
2496 | size_t num_rates; | |
2497 | u64 supp_rates; | |
2498 | int i, j; | |
2499 | sband = local->hw.wiphy->bands[band]; | |
2500 | ||
2501 | if (!sband) { | |
2502 | WARN_ON(1); | |
2503 | sband = local->hw.wiphy->bands[local->hw.conf.channel->band]; | |
2504 | } | |
2505 | ||
2506 | bitrates = sband->bitrates; | |
2507 | num_rates = sband->n_bitrates; | |
2508 | supp_rates = 0; | |
2509 | for (i = 0; i < elems->supp_rates_len + | |
2510 | elems->ext_supp_rates_len; i++) { | |
2511 | u8 rate = 0; | |
2512 | int own_rate; | |
2513 | if (i < elems->supp_rates_len) | |
2514 | rate = elems->supp_rates[i]; | |
2515 | else if (elems->ext_supp_rates) | |
2516 | rate = elems->ext_supp_rates | |
2517 | [i - elems->supp_rates_len]; | |
2518 | own_rate = 5 * (rate & 0x7f); | |
2519 | for (j = 0; j < num_rates; j++) | |
2520 | if (bitrates[j].bitrate == own_rate) | |
2521 | supp_rates |= BIT(j); | |
2522 | } | |
2523 | return supp_rates; | |
2524 | } | |
2525 | ||
a607268a | 2526 | |
f0706e82 JB |
2527 | static void ieee80211_rx_bss_info(struct net_device *dev, |
2528 | struct ieee80211_mgmt *mgmt, | |
2529 | size_t len, | |
2530 | struct ieee80211_rx_status *rx_status, | |
2531 | int beacon) | |
2532 | { | |
2533 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2534 | struct ieee802_11_elems elems; | |
2535 | size_t baselen; | |
8318d78a | 2536 | int freq, clen; |
f0706e82 JB |
2537 | struct ieee80211_sta_bss *bss; |
2538 | struct sta_info *sta; | |
2539 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
9d9bf77d | 2540 | u64 beacon_timestamp, rx_timestamp; |
fab7d4a2 | 2541 | struct ieee80211_channel *channel; |
0795af57 JP |
2542 | DECLARE_MAC_BUF(mac); |
2543 | DECLARE_MAC_BUF(mac2); | |
f0706e82 JB |
2544 | |
2545 | if (!beacon && memcmp(mgmt->da, dev->dev_addr, ETH_ALEN)) | |
2546 | return; /* ignore ProbeResp to foreign address */ | |
2547 | ||
2548 | #if 0 | |
0795af57 | 2549 | printk(KERN_DEBUG "%s: RX %s from %s to %s\n", |
f0706e82 | 2550 | dev->name, beacon ? "Beacon" : "Probe Response", |
0795af57 | 2551 | print_mac(mac, mgmt->sa), print_mac(mac2, mgmt->da)); |
f0706e82 JB |
2552 | #endif |
2553 | ||
2554 | baselen = (u8 *) mgmt->u.beacon.variable - (u8 *) mgmt; | |
2555 | if (baselen > len) | |
2556 | return; | |
2557 | ||
9d9bf77d | 2558 | beacon_timestamp = le64_to_cpu(mgmt->u.beacon.timestamp); |
67a4cce4 | 2559 | ieee802_11_parse_elems(mgmt->u.beacon.variable, len - baselen, &elems); |
f0706e82 | 2560 | |
902acc78 JB |
2561 | if (ieee80211_vif_is_mesh(&sdata->vif) && elems.mesh_id && |
2562 | elems.mesh_config && mesh_matches_local(&elems, dev)) { | |
2563 | u64 rates = ieee80211_sta_get_rates(local, &elems, | |
2564 | rx_status->band); | |
2565 | ||
2566 | mesh_neighbour_update(mgmt->sa, rates, dev, | |
2567 | mesh_peer_accepts_plinks(&elems, dev)); | |
2568 | } | |
f709fc69 | 2569 | |
d0709a65 JB |
2570 | rcu_read_lock(); |
2571 | ||
51fb61e7 | 2572 | if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && elems.supp_rates && |
f0706e82 JB |
2573 | memcmp(mgmt->bssid, sdata->u.sta.bssid, ETH_ALEN) == 0 && |
2574 | (sta = sta_info_get(local, mgmt->sa))) { | |
f709fc69 LCC |
2575 | u64 prev_rates; |
2576 | u64 supp_rates = ieee80211_sta_get_rates(local, &elems, | |
2577 | rx_status->band); | |
f0706e82 | 2578 | |
8318d78a JB |
2579 | prev_rates = sta->supp_rates[rx_status->band]; |
2580 | sta->supp_rates[rx_status->band] &= supp_rates; | |
2581 | if (sta->supp_rates[rx_status->band] == 0) { | |
f0706e82 JB |
2582 | /* No matching rates - this should not really happen. |
2583 | * Make sure that at least one rate is marked | |
2584 | * supported to avoid issues with TX rate ctrl. */ | |
8318d78a JB |
2585 | sta->supp_rates[rx_status->band] = |
2586 | sdata->u.sta.supp_rates_bits[rx_status->band]; | |
f0706e82 | 2587 | } |
8318d78a | 2588 | if (sta->supp_rates[rx_status->band] != prev_rates) { |
f0706e82 | 2589 | printk(KERN_DEBUG "%s: updated supp_rates set for " |
8318d78a JB |
2590 | "%s based on beacon info (0x%llx & 0x%llx -> " |
2591 | "0x%llx)\n", | |
2592 | dev->name, print_mac(mac, sta->addr), | |
2593 | (unsigned long long) prev_rates, | |
2594 | (unsigned long long) supp_rates, | |
2595 | (unsigned long long) sta->supp_rates[rx_status->band]); | |
f0706e82 | 2596 | } |
f0706e82 JB |
2597 | } |
2598 | ||
d0709a65 JB |
2599 | rcu_read_unlock(); |
2600 | ||
f0706e82 | 2601 | if (elems.ds_params && elems.ds_params_len == 1) |
8318d78a | 2602 | freq = ieee80211_channel_to_frequency(elems.ds_params[0]); |
f0706e82 | 2603 | else |
8318d78a | 2604 | freq = rx_status->freq; |
f0706e82 | 2605 | |
fab7d4a2 JB |
2606 | channel = ieee80211_get_channel(local->hw.wiphy, freq); |
2607 | ||
2608 | if (!channel || channel->flags & IEEE80211_CHAN_DISABLED) | |
2609 | return; | |
2610 | ||
f709fc69 LCC |
2611 | #ifdef CONFIG_MAC80211_MESH |
2612 | if (elems.mesh_config) | |
2613 | bss = ieee80211_rx_mesh_bss_get(dev, elems.mesh_id, | |
2614 | elems.mesh_id_len, elems.mesh_config, freq); | |
2615 | else | |
2616 | #endif | |
2617 | bss = ieee80211_rx_bss_get(dev, mgmt->bssid, freq, | |
cffdd30d | 2618 | elems.ssid, elems.ssid_len); |
f709fc69 LCC |
2619 | if (!bss) { |
2620 | #ifdef CONFIG_MAC80211_MESH | |
2621 | if (elems.mesh_config) | |
2622 | bss = ieee80211_rx_mesh_bss_add(dev, elems.mesh_id, | |
05e5e883 LCC |
2623 | elems.mesh_id_len, elems.mesh_config, |
2624 | elems.mesh_config_len, freq); | |
f709fc69 LCC |
2625 | else |
2626 | #endif | |
2627 | bss = ieee80211_rx_bss_add(dev, mgmt->bssid, freq, | |
2628 | elems.ssid, elems.ssid_len); | |
f0706e82 JB |
2629 | if (!bss) |
2630 | return; | |
2631 | } else { | |
2632 | #if 0 | |
2633 | /* TODO: order by RSSI? */ | |
2634 | spin_lock_bh(&local->sta_bss_lock); | |
2635 | list_move_tail(&bss->list, &local->sta_bss_list); | |
2636 | spin_unlock_bh(&local->sta_bss_lock); | |
2637 | #endif | |
2638 | } | |
2639 | ||
5628221c DD |
2640 | /* save the ERP value so that it is available at association time */ |
2641 | if (elems.erp_info && elems.erp_info_len >= 1) { | |
2642 | bss->erp_value = elems.erp_info[0]; | |
2643 | bss->has_erp_value = 1; | |
2644 | } | |
2645 | ||
30b89b0f JB |
2646 | if (elems.ht_cap_elem && |
2647 | (!bss->ht_ie || bss->ht_ie_len != elems.ht_cap_elem_len || | |
2648 | memcmp(bss->ht_ie, elems.ht_cap_elem, elems.ht_cap_elem_len))) { | |
2649 | kfree(bss->ht_ie); | |
2650 | bss->ht_ie = kmalloc(elems.ht_cap_elem_len + 2, GFP_ATOMIC); | |
2651 | if (bss->ht_ie) { | |
2652 | memcpy(bss->ht_ie, elems.ht_cap_elem - 2, | |
2653 | elems.ht_cap_elem_len + 2); | |
2654 | bss->ht_ie_len = elems.ht_cap_elem_len + 2; | |
2655 | } else | |
2656 | bss->ht_ie_len = 0; | |
2657 | } else if (!elems.ht_cap_elem && bss->ht_ie) { | |
2658 | kfree(bss->ht_ie); | |
2659 | bss->ht_ie = NULL; | |
2660 | bss->ht_ie_len = 0; | |
2661 | } | |
2662 | ||
f0706e82 JB |
2663 | bss->beacon_int = le16_to_cpu(mgmt->u.beacon.beacon_int); |
2664 | bss->capability = le16_to_cpu(mgmt->u.beacon.capab_info); | |
f0706e82 JB |
2665 | |
2666 | bss->supp_rates_len = 0; | |
2667 | if (elems.supp_rates) { | |
2668 | clen = IEEE80211_MAX_SUPP_RATES - bss->supp_rates_len; | |
2669 | if (clen > elems.supp_rates_len) | |
2670 | clen = elems.supp_rates_len; | |
2671 | memcpy(&bss->supp_rates[bss->supp_rates_len], elems.supp_rates, | |
2672 | clen); | |
2673 | bss->supp_rates_len += clen; | |
2674 | } | |
2675 | if (elems.ext_supp_rates) { | |
2676 | clen = IEEE80211_MAX_SUPP_RATES - bss->supp_rates_len; | |
2677 | if (clen > elems.ext_supp_rates_len) | |
2678 | clen = elems.ext_supp_rates_len; | |
2679 | memcpy(&bss->supp_rates[bss->supp_rates_len], | |
2680 | elems.ext_supp_rates, clen); | |
2681 | bss->supp_rates_len += clen; | |
2682 | } | |
2683 | ||
30b89b0f JB |
2684 | bss->band = rx_status->band; |
2685 | ||
2686 | bss->timestamp = beacon_timestamp; | |
2687 | bss->last_update = jiffies; | |
2688 | bss->rssi = rx_status->ssi; | |
2689 | bss->signal = rx_status->signal; | |
2690 | bss->noise = rx_status->noise; | |
2691 | if (!beacon && !bss->probe_resp) | |
2692 | bss->probe_resp = true; | |
2693 | ||
2694 | /* | |
2695 | * In STA mode, the remaining parameters should not be overridden | |
2696 | * by beacons because they're not necessarily accurate there. | |
2697 | */ | |
2698 | if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS && | |
2699 | bss->probe_resp && beacon) { | |
2700 | ieee80211_rx_bss_put(dev, bss); | |
2701 | return; | |
2702 | } | |
2703 | ||
f0706e82 JB |
2704 | if (elems.wpa && |
2705 | (!bss->wpa_ie || bss->wpa_ie_len != elems.wpa_len || | |
2706 | memcmp(bss->wpa_ie, elems.wpa, elems.wpa_len))) { | |
2707 | kfree(bss->wpa_ie); | |
2708 | bss->wpa_ie = kmalloc(elems.wpa_len + 2, GFP_ATOMIC); | |
2709 | if (bss->wpa_ie) { | |
2710 | memcpy(bss->wpa_ie, elems.wpa - 2, elems.wpa_len + 2); | |
2711 | bss->wpa_ie_len = elems.wpa_len + 2; | |
2712 | } else | |
2713 | bss->wpa_ie_len = 0; | |
2714 | } else if (!elems.wpa && bss->wpa_ie) { | |
2715 | kfree(bss->wpa_ie); | |
2716 | bss->wpa_ie = NULL; | |
2717 | bss->wpa_ie_len = 0; | |
2718 | } | |
2719 | ||
2720 | if (elems.rsn && | |
2721 | (!bss->rsn_ie || bss->rsn_ie_len != elems.rsn_len || | |
2722 | memcmp(bss->rsn_ie, elems.rsn, elems.rsn_len))) { | |
2723 | kfree(bss->rsn_ie); | |
2724 | bss->rsn_ie = kmalloc(elems.rsn_len + 2, GFP_ATOMIC); | |
2725 | if (bss->rsn_ie) { | |
2726 | memcpy(bss->rsn_ie, elems.rsn - 2, elems.rsn_len + 2); | |
2727 | bss->rsn_ie_len = elems.rsn_len + 2; | |
2728 | } else | |
2729 | bss->rsn_ie_len = 0; | |
2730 | } else if (!elems.rsn && bss->rsn_ie) { | |
2731 | kfree(bss->rsn_ie); | |
2732 | bss->rsn_ie = NULL; | |
2733 | bss->rsn_ie_len = 0; | |
2734 | } | |
2735 | ||
30b89b0f JB |
2736 | /* |
2737 | * Cf. | |
2738 | * http://www.wipo.int/pctdb/en/wo.jsp?wo=2007047181&IA=WO2007047181&DISPLAY=DESC | |
2739 | * | |
2740 | * quoting: | |
2741 | * | |
2742 | * In particular, "Wi-Fi CERTIFIED for WMM - Support for Multimedia | |
2743 | * Applications with Quality of Service in Wi-Fi Networks," Wi- Fi | |
2744 | * Alliance (September 1, 2004) is incorporated by reference herein. | |
2745 | * The inclusion of the WMM Parameters in probe responses and | |
2746 | * association responses is mandatory for WMM enabled networks. The | |
2747 | * inclusion of the WMM Parameters in beacons, however, is optional. | |
2748 | */ | |
2749 | ||
f0706e82 JB |
2750 | if (elems.wmm_param && |
2751 | (!bss->wmm_ie || bss->wmm_ie_len != elems.wmm_param_len || | |
2752 | memcmp(bss->wmm_ie, elems.wmm_param, elems.wmm_param_len))) { | |
2753 | kfree(bss->wmm_ie); | |
2754 | bss->wmm_ie = kmalloc(elems.wmm_param_len + 2, GFP_ATOMIC); | |
2755 | if (bss->wmm_ie) { | |
2756 | memcpy(bss->wmm_ie, elems.wmm_param - 2, | |
2757 | elems.wmm_param_len + 2); | |
2758 | bss->wmm_ie_len = elems.wmm_param_len + 2; | |
2759 | } else | |
2760 | bss->wmm_ie_len = 0; | |
a46f025d AK |
2761 | } else if (elems.wmm_info && |
2762 | (!bss->wmm_ie || bss->wmm_ie_len != elems.wmm_info_len || | |
2763 | memcmp(bss->wmm_ie, elems.wmm_info, elems.wmm_info_len))) { | |
2764 | /* As for certain AP's Fifth bit is not set in WMM IE in | |
2765 | * beacon frames.So while parsing the beacon frame the | |
2766 | * wmm_info structure is used instead of wmm_param. | |
2767 | * wmm_info structure was never used to set bss->wmm_ie. | |
2768 | * This code fixes this problem by copying the WME | |
2769 | * information from wmm_info to bss->wmm_ie and enabling | |
2770 | * n-band association. | |
2771 | */ | |
2772 | kfree(bss->wmm_ie); | |
2773 | bss->wmm_ie = kmalloc(elems.wmm_info_len + 2, GFP_ATOMIC); | |
2774 | if (bss->wmm_ie) { | |
2775 | memcpy(bss->wmm_ie, elems.wmm_info - 2, | |
2776 | elems.wmm_info_len + 2); | |
2777 | bss->wmm_ie_len = elems.wmm_info_len + 2; | |
2778 | } else | |
2779 | bss->wmm_ie_len = 0; | |
2780 | } else if (!elems.wmm_param && !elems.wmm_info && bss->wmm_ie) { | |
f0706e82 JB |
2781 | kfree(bss->wmm_ie); |
2782 | bss->wmm_ie = NULL; | |
2783 | bss->wmm_ie_len = 0; | |
2784 | } | |
9d9bf77d BR |
2785 | |
2786 | /* check if we need to merge IBSS */ | |
2787 | if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && beacon && | |
2788 | !local->sta_sw_scanning && !local->sta_hw_scanning && | |
fba4a1e6 | 2789 | bss->capability & WLAN_CAPABILITY_IBSS && |
9d9bf77d BR |
2790 | bss->freq == local->oper_channel->center_freq && |
2791 | elems.ssid_len == sdata->u.sta.ssid_len && | |
2792 | memcmp(elems.ssid, sdata->u.sta.ssid, sdata->u.sta.ssid_len) == 0) { | |
2793 | if (rx_status->flag & RX_FLAG_TSFT) { | |
2794 | /* in order for correct IBSS merging we need mactime | |
2795 | * | |
2796 | * since mactime is defined as the time the first data | |
2797 | * symbol of the frame hits the PHY, and the timestamp | |
2798 | * of the beacon is defined as "the time that the data | |
2799 | * symbol containing the first bit of the timestamp is | |
2800 | * transmitted to the PHY plus the transmitting STA’s | |
2801 | * delays through its local PHY from the MAC-PHY | |
2802 | * interface to its interface with the WM" | |
2803 | * (802.11 11.1.2) - equals the time this bit arrives at | |
2804 | * the receiver - we have to take into account the | |
2805 | * offset between the two. | |
2806 | * e.g: at 1 MBit that means mactime is 192 usec earlier | |
2807 | * (=24 bytes * 8 usecs/byte) than the beacon timestamp. | |
2808 | */ | |
2809 | int rate = local->hw.wiphy->bands[rx_status->band]-> | |
2810 | bitrates[rx_status->rate_idx].bitrate; | |
2811 | rx_timestamp = rx_status->mactime + (24 * 8 * 10 / rate); | |
2812 | } else if (local && local->ops && local->ops->get_tsf) | |
2813 | /* second best option: get current TSF */ | |
2814 | rx_timestamp = local->ops->get_tsf(local_to_hw(local)); | |
2815 | else | |
2816 | /* can't merge without knowing the TSF */ | |
2817 | rx_timestamp = -1LLU; | |
2818 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
2819 | printk(KERN_DEBUG "RX beacon SA=%s BSSID=" | |
2820 | "%s TSF=0x%llx BCN=0x%llx diff=%lld @%lu\n", | |
2821 | print_mac(mac, mgmt->sa), | |
2822 | print_mac(mac2, mgmt->bssid), | |
2823 | (unsigned long long)rx_timestamp, | |
2824 | (unsigned long long)beacon_timestamp, | |
2825 | (unsigned long long)(rx_timestamp - beacon_timestamp), | |
2826 | jiffies); | |
2827 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ | |
2828 | if (beacon_timestamp > rx_timestamp) { | |
fba4a1e6 | 2829 | #ifndef CONFIG_MAC80211_IBSS_DEBUG |
d97cf015 | 2830 | if (net_ratelimit()) |
fba4a1e6 | 2831 | #endif |
9d9bf77d BR |
2832 | printk(KERN_DEBUG "%s: beacon TSF higher than " |
2833 | "local TSF - IBSS merge with BSSID %s\n", | |
2834 | dev->name, print_mac(mac, mgmt->bssid)); | |
2835 | ieee80211_sta_join_ibss(dev, &sdata->u.sta, bss); | |
2836 | ieee80211_ibss_add_sta(dev, NULL, | |
2837 | mgmt->bssid, mgmt->sa); | |
2838 | } | |
2839 | } | |
2840 | ||
f0706e82 JB |
2841 | ieee80211_rx_bss_put(dev, bss); |
2842 | } | |
2843 | ||
2844 | ||
2845 | static void ieee80211_rx_mgmt_probe_resp(struct net_device *dev, | |
2846 | struct ieee80211_mgmt *mgmt, | |
2847 | size_t len, | |
2848 | struct ieee80211_rx_status *rx_status) | |
2849 | { | |
2850 | ieee80211_rx_bss_info(dev, mgmt, len, rx_status, 0); | |
2851 | } | |
2852 | ||
2853 | ||
2854 | static void ieee80211_rx_mgmt_beacon(struct net_device *dev, | |
2855 | struct ieee80211_mgmt *mgmt, | |
2856 | size_t len, | |
2857 | struct ieee80211_rx_status *rx_status) | |
2858 | { | |
f0706e82 JB |
2859 | struct ieee80211_sub_if_data *sdata; |
2860 | struct ieee80211_if_sta *ifsta; | |
f0706e82 JB |
2861 | size_t baselen; |
2862 | struct ieee802_11_elems elems; | |
d3c990fb RR |
2863 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); |
2864 | struct ieee80211_conf *conf = &local->hw.conf; | |
471b3efd | 2865 | u32 changed = 0; |
f0706e82 JB |
2866 | |
2867 | ieee80211_rx_bss_info(dev, mgmt, len, rx_status, 1); | |
2868 | ||
2869 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
51fb61e7 | 2870 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA) |
f0706e82 JB |
2871 | return; |
2872 | ifsta = &sdata->u.sta; | |
2873 | ||
d6f2da5b | 2874 | if (!(ifsta->flags & IEEE80211_STA_ASSOCIATED) || |
f0706e82 JB |
2875 | memcmp(ifsta->bssid, mgmt->bssid, ETH_ALEN) != 0) |
2876 | return; | |
2877 | ||
2878 | /* Process beacon from the current BSS */ | |
2879 | baselen = (u8 *) mgmt->u.beacon.variable - (u8 *) mgmt; | |
2880 | if (baselen > len) | |
2881 | return; | |
2882 | ||
67a4cce4 | 2883 | ieee802_11_parse_elems(mgmt->u.beacon.variable, len - baselen, &elems); |
f0706e82 | 2884 | |
d18ef29f RC |
2885 | if (elems.wmm_param && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) { |
2886 | ieee80211_sta_wmm_params(dev, ifsta, elems.wmm_param, | |
2887 | elems.wmm_param_len); | |
2888 | } | |
2889 | ||
2890 | /* Do not send changes to driver if we are scanning. This removes | |
2891 | * requirement that driver's bss_info_changed function needs to be | |
2892 | * atomic. */ | |
2893 | if (local->sta_sw_scanning || local->sta_hw_scanning) | |
2894 | return; | |
2895 | ||
5628221c | 2896 | if (elems.erp_info && elems.erp_info_len >= 1) |
471b3efd | 2897 | changed |= ieee80211_handle_erp_ie(sdata, elems.erp_info[0]); |
50c4afb9 JL |
2898 | else { |
2899 | u16 capab = le16_to_cpu(mgmt->u.beacon.capab_info); | |
2900 | changed |= ieee80211_handle_protect_preamb(sdata, false, | |
2901 | (capab & WLAN_CAPABILITY_SHORT_PREAMBLE) != 0); | |
2902 | } | |
f0706e82 | 2903 | |
d3c990fb | 2904 | if (elems.ht_cap_elem && elems.ht_info_elem && |
38668c05 | 2905 | elems.wmm_param && conf->flags & IEEE80211_CONF_SUPPORT_HT_MODE) { |
d3c990fb RR |
2906 | struct ieee80211_ht_bss_info bss_info; |
2907 | ||
2908 | ieee80211_ht_addt_info_ie_to_ht_bss_info( | |
2909 | (struct ieee80211_ht_addt_info *) | |
2910 | elems.ht_info_elem, &bss_info); | |
38668c05 TW |
2911 | changed |= ieee80211_handle_ht(local, 1, &conf->ht_conf, |
2912 | &bss_info); | |
d3c990fb RR |
2913 | } |
2914 | ||
471b3efd | 2915 | ieee80211_bss_info_change_notify(sdata, changed); |
f0706e82 JB |
2916 | } |
2917 | ||
2918 | ||
2919 | static void ieee80211_rx_mgmt_probe_req(struct net_device *dev, | |
2920 | struct ieee80211_if_sta *ifsta, | |
2921 | struct ieee80211_mgmt *mgmt, | |
2922 | size_t len, | |
2923 | struct ieee80211_rx_status *rx_status) | |
2924 | { | |
2925 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
2926 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
2927 | int tx_last_beacon; | |
2928 | struct sk_buff *skb; | |
2929 | struct ieee80211_mgmt *resp; | |
2930 | u8 *pos, *end; | |
0795af57 JP |
2931 | DECLARE_MAC_BUF(mac); |
2932 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
2933 | DECLARE_MAC_BUF(mac2); | |
2934 | DECLARE_MAC_BUF(mac3); | |
2935 | #endif | |
f0706e82 | 2936 | |
51fb61e7 | 2937 | if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS || |
f0706e82 JB |
2938 | ifsta->state != IEEE80211_IBSS_JOINED || |
2939 | len < 24 + 2 || !ifsta->probe_resp) | |
2940 | return; | |
2941 | ||
2942 | if (local->ops->tx_last_beacon) | |
2943 | tx_last_beacon = local->ops->tx_last_beacon(local_to_hw(local)); | |
2944 | else | |
2945 | tx_last_beacon = 1; | |
2946 | ||
2947 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
0795af57 JP |
2948 | printk(KERN_DEBUG "%s: RX ProbeReq SA=%s DA=%s BSSID=" |
2949 | "%s (tx_last_beacon=%d)\n", | |
2950 | dev->name, print_mac(mac, mgmt->sa), print_mac(mac2, mgmt->da), | |
2951 | print_mac(mac3, mgmt->bssid), tx_last_beacon); | |
f0706e82 JB |
2952 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ |
2953 | ||
2954 | if (!tx_last_beacon) | |
2955 | return; | |
2956 | ||
2957 | if (memcmp(mgmt->bssid, ifsta->bssid, ETH_ALEN) != 0 && | |
2958 | memcmp(mgmt->bssid, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) != 0) | |
2959 | return; | |
2960 | ||
2961 | end = ((u8 *) mgmt) + len; | |
2962 | pos = mgmt->u.probe_req.variable; | |
2963 | if (pos[0] != WLAN_EID_SSID || | |
2964 | pos + 2 + pos[1] > end) { | |
2965 | if (net_ratelimit()) { | |
2966 | printk(KERN_DEBUG "%s: Invalid SSID IE in ProbeReq " | |
0795af57 JP |
2967 | "from %s\n", |
2968 | dev->name, print_mac(mac, mgmt->sa)); | |
f0706e82 JB |
2969 | } |
2970 | return; | |
2971 | } | |
2972 | if (pos[1] != 0 && | |
2973 | (pos[1] != ifsta->ssid_len || | |
2974 | memcmp(pos + 2, ifsta->ssid, ifsta->ssid_len) != 0)) { | |
2975 | /* Ignore ProbeReq for foreign SSID */ | |
2976 | return; | |
2977 | } | |
2978 | ||
2979 | /* Reply with ProbeResp */ | |
0ec0b7ac | 2980 | skb = skb_copy(ifsta->probe_resp, GFP_KERNEL); |
f0706e82 JB |
2981 | if (!skb) |
2982 | return; | |
2983 | ||
2984 | resp = (struct ieee80211_mgmt *) skb->data; | |
2985 | memcpy(resp->da, mgmt->sa, ETH_ALEN); | |
2986 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
0795af57 JP |
2987 | printk(KERN_DEBUG "%s: Sending ProbeResp to %s\n", |
2988 | dev->name, print_mac(mac, resp->da)); | |
f0706e82 JB |
2989 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ |
2990 | ieee80211_sta_tx(dev, skb, 0); | |
2991 | } | |
2992 | ||
4e20cb29 JB |
2993 | static void ieee80211_rx_mgmt_action(struct net_device *dev, |
2994 | struct ieee80211_if_sta *ifsta, | |
2995 | struct ieee80211_mgmt *mgmt, | |
f709fc69 LCC |
2996 | size_t len, |
2997 | struct ieee80211_rx_status *rx_status) | |
9f985b0e | 2998 | { |
f709fc69 | 2999 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
f709fc69 | 3000 | |
9f985b0e RR |
3001 | if (len < IEEE80211_MIN_ACTION_SIZE) |
3002 | return; | |
3003 | ||
3004 | switch (mgmt->u.action.category) { | |
3005 | case WLAN_CATEGORY_BACK: | |
3006 | switch (mgmt->u.action.u.addba_req.action_code) { | |
3007 | case WLAN_ACTION_ADDBA_REQ: | |
3008 | if (len < (IEEE80211_MIN_ACTION_SIZE + | |
3009 | sizeof(mgmt->u.action.u.addba_req))) | |
3010 | break; | |
3011 | ieee80211_sta_process_addba_request(dev, mgmt, len); | |
3012 | break; | |
eadc8d9e RR |
3013 | case WLAN_ACTION_ADDBA_RESP: |
3014 | if (len < (IEEE80211_MIN_ACTION_SIZE + | |
3015 | sizeof(mgmt->u.action.u.addba_resp))) | |
3016 | break; | |
3017 | ieee80211_sta_process_addba_resp(dev, mgmt, len); | |
3018 | break; | |
688b88a4 RR |
3019 | case WLAN_ACTION_DELBA: |
3020 | if (len < (IEEE80211_MIN_ACTION_SIZE + | |
3021 | sizeof(mgmt->u.action.u.delba))) | |
3022 | break; | |
3023 | ieee80211_sta_process_delba(dev, mgmt, len); | |
3024 | break; | |
9f985b0e RR |
3025 | default: |
3026 | if (net_ratelimit()) | |
688b88a4 | 3027 | printk(KERN_DEBUG "%s: Rx unknown A-MPDU action\n", |
9f985b0e RR |
3028 | dev->name); |
3029 | break; | |
3030 | } | |
3031 | break; | |
f709fc69 | 3032 | case PLINK_CATEGORY: |
902acc78 | 3033 | if (ieee80211_vif_is_mesh(&sdata->vif)) |
f709fc69 LCC |
3034 | mesh_rx_plink_frame(dev, mgmt, len, rx_status); |
3035 | break; | |
f709fc69 | 3036 | case MESH_PATH_SEL_CATEGORY: |
902acc78 | 3037 | if (ieee80211_vif_is_mesh(&sdata->vif)) |
f709fc69 LCC |
3038 | mesh_rx_path_sel_frame(dev, mgmt, len); |
3039 | break; | |
9f985b0e | 3040 | default: |
f709fc69 LCC |
3041 | if (net_ratelimit()) |
3042 | printk(KERN_DEBUG "%s: Rx unknown action frame - " | |
3043 | "category=%d\n", dev->name, mgmt->u.action.category); | |
9f985b0e RR |
3044 | break; |
3045 | } | |
3046 | } | |
f0706e82 JB |
3047 | |
3048 | void ieee80211_sta_rx_mgmt(struct net_device *dev, struct sk_buff *skb, | |
3049 | struct ieee80211_rx_status *rx_status) | |
3050 | { | |
3051 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3052 | struct ieee80211_sub_if_data *sdata; | |
3053 | struct ieee80211_if_sta *ifsta; | |
3054 | struct ieee80211_mgmt *mgmt; | |
3055 | u16 fc; | |
3056 | ||
3057 | if (skb->len < 24) | |
3058 | goto fail; | |
3059 | ||
3060 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3061 | ifsta = &sdata->u.sta; | |
3062 | ||
3063 | mgmt = (struct ieee80211_mgmt *) skb->data; | |
3064 | fc = le16_to_cpu(mgmt->frame_control); | |
3065 | ||
3066 | switch (fc & IEEE80211_FCTL_STYPE) { | |
3067 | case IEEE80211_STYPE_PROBE_REQ: | |
3068 | case IEEE80211_STYPE_PROBE_RESP: | |
3069 | case IEEE80211_STYPE_BEACON: | |
f709fc69 | 3070 | case IEEE80211_STYPE_ACTION: |
f0706e82 JB |
3071 | memcpy(skb->cb, rx_status, sizeof(*rx_status)); |
3072 | case IEEE80211_STYPE_AUTH: | |
3073 | case IEEE80211_STYPE_ASSOC_RESP: | |
3074 | case IEEE80211_STYPE_REASSOC_RESP: | |
3075 | case IEEE80211_STYPE_DEAUTH: | |
3076 | case IEEE80211_STYPE_DISASSOC: | |
3077 | skb_queue_tail(&ifsta->skb_queue, skb); | |
3078 | queue_work(local->hw.workqueue, &ifsta->work); | |
3079 | return; | |
3080 | default: | |
3081 | printk(KERN_DEBUG "%s: received unknown management frame - " | |
3082 | "stype=%d\n", dev->name, | |
3083 | (fc & IEEE80211_FCTL_STYPE) >> 4); | |
3084 | break; | |
3085 | } | |
3086 | ||
3087 | fail: | |
3088 | kfree_skb(skb); | |
3089 | } | |
3090 | ||
3091 | ||
3092 | static void ieee80211_sta_rx_queued_mgmt(struct net_device *dev, | |
3093 | struct sk_buff *skb) | |
3094 | { | |
3095 | struct ieee80211_rx_status *rx_status; | |
3096 | struct ieee80211_sub_if_data *sdata; | |
3097 | struct ieee80211_if_sta *ifsta; | |
3098 | struct ieee80211_mgmt *mgmt; | |
3099 | u16 fc; | |
3100 | ||
3101 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3102 | ifsta = &sdata->u.sta; | |
3103 | ||
3104 | rx_status = (struct ieee80211_rx_status *) skb->cb; | |
3105 | mgmt = (struct ieee80211_mgmt *) skb->data; | |
3106 | fc = le16_to_cpu(mgmt->frame_control); | |
3107 | ||
3108 | switch (fc & IEEE80211_FCTL_STYPE) { | |
3109 | case IEEE80211_STYPE_PROBE_REQ: | |
3110 | ieee80211_rx_mgmt_probe_req(dev, ifsta, mgmt, skb->len, | |
3111 | rx_status); | |
3112 | break; | |
3113 | case IEEE80211_STYPE_PROBE_RESP: | |
3114 | ieee80211_rx_mgmt_probe_resp(dev, mgmt, skb->len, rx_status); | |
3115 | break; | |
3116 | case IEEE80211_STYPE_BEACON: | |
3117 | ieee80211_rx_mgmt_beacon(dev, mgmt, skb->len, rx_status); | |
3118 | break; | |
3119 | case IEEE80211_STYPE_AUTH: | |
3120 | ieee80211_rx_mgmt_auth(dev, ifsta, mgmt, skb->len); | |
3121 | break; | |
3122 | case IEEE80211_STYPE_ASSOC_RESP: | |
471b3efd | 3123 | ieee80211_rx_mgmt_assoc_resp(sdata, ifsta, mgmt, skb->len, 0); |
f0706e82 JB |
3124 | break; |
3125 | case IEEE80211_STYPE_REASSOC_RESP: | |
471b3efd | 3126 | ieee80211_rx_mgmt_assoc_resp(sdata, ifsta, mgmt, skb->len, 1); |
f0706e82 JB |
3127 | break; |
3128 | case IEEE80211_STYPE_DEAUTH: | |
3129 | ieee80211_rx_mgmt_deauth(dev, ifsta, mgmt, skb->len); | |
3130 | break; | |
3131 | case IEEE80211_STYPE_DISASSOC: | |
3132 | ieee80211_rx_mgmt_disassoc(dev, ifsta, mgmt, skb->len); | |
3133 | break; | |
9f985b0e | 3134 | case IEEE80211_STYPE_ACTION: |
f709fc69 | 3135 | ieee80211_rx_mgmt_action(dev, ifsta, mgmt, skb->len, rx_status); |
9f985b0e | 3136 | break; |
f0706e82 JB |
3137 | } |
3138 | ||
3139 | kfree_skb(skb); | |
3140 | } | |
3141 | ||
3142 | ||
9ae54c84 | 3143 | ieee80211_rx_result |
ece8eddd ZY |
3144 | ieee80211_sta_rx_scan(struct net_device *dev, struct sk_buff *skb, |
3145 | struct ieee80211_rx_status *rx_status) | |
f0706e82 JB |
3146 | { |
3147 | struct ieee80211_mgmt *mgmt; | |
3148 | u16 fc; | |
3149 | ||
ece8eddd | 3150 | if (skb->len < 2) |
e4c26add | 3151 | return RX_DROP_UNUSABLE; |
f0706e82 JB |
3152 | |
3153 | mgmt = (struct ieee80211_mgmt *) skb->data; | |
3154 | fc = le16_to_cpu(mgmt->frame_control); | |
3155 | ||
ece8eddd | 3156 | if ((fc & IEEE80211_FCTL_FTYPE) == IEEE80211_FTYPE_CTL) |
9ae54c84 | 3157 | return RX_CONTINUE; |
ece8eddd ZY |
3158 | |
3159 | if (skb->len < 24) | |
e4c26add | 3160 | return RX_DROP_MONITOR; |
ece8eddd | 3161 | |
f0706e82 JB |
3162 | if ((fc & IEEE80211_FCTL_FTYPE) == IEEE80211_FTYPE_MGMT) { |
3163 | if ((fc & IEEE80211_FCTL_STYPE) == IEEE80211_STYPE_PROBE_RESP) { | |
3164 | ieee80211_rx_mgmt_probe_resp(dev, mgmt, | |
3165 | skb->len, rx_status); | |
ece8eddd | 3166 | dev_kfree_skb(skb); |
9ae54c84 | 3167 | return RX_QUEUED; |
f0706e82 JB |
3168 | } else if ((fc & IEEE80211_FCTL_STYPE) == IEEE80211_STYPE_BEACON) { |
3169 | ieee80211_rx_mgmt_beacon(dev, mgmt, skb->len, | |
3170 | rx_status); | |
ece8eddd | 3171 | dev_kfree_skb(skb); |
9ae54c84 | 3172 | return RX_QUEUED; |
f0706e82 JB |
3173 | } |
3174 | } | |
9ae54c84 | 3175 | return RX_CONTINUE; |
f0706e82 JB |
3176 | } |
3177 | ||
3178 | ||
3179 | static int ieee80211_sta_active_ibss(struct net_device *dev) | |
3180 | { | |
3181 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3182 | int active = 0; | |
3183 | struct sta_info *sta; | |
d0709a65 | 3184 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
f0706e82 | 3185 | |
d0709a65 JB |
3186 | rcu_read_lock(); |
3187 | ||
3188 | list_for_each_entry_rcu(sta, &local->sta_list, list) { | |
3189 | if (sta->sdata == sdata && | |
f0706e82 JB |
3190 | time_after(sta->last_rx + IEEE80211_IBSS_MERGE_INTERVAL, |
3191 | jiffies)) { | |
3192 | active++; | |
3193 | break; | |
3194 | } | |
3195 | } | |
d0709a65 JB |
3196 | |
3197 | rcu_read_unlock(); | |
f0706e82 JB |
3198 | |
3199 | return active; | |
3200 | } | |
3201 | ||
3202 | ||
f709fc69 | 3203 | static void ieee80211_sta_expire(struct net_device *dev, unsigned long exp_time) |
f0706e82 JB |
3204 | { |
3205 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3206 | struct sta_info *sta, *tmp; | |
be8755e1 | 3207 | LIST_HEAD(tmp_list); |
0795af57 | 3208 | DECLARE_MAC_BUF(mac); |
d0709a65 | 3209 | unsigned long flags; |
f0706e82 | 3210 | |
d0709a65 | 3211 | spin_lock_irqsave(&local->sta_lock, flags); |
f0706e82 | 3212 | list_for_each_entry_safe(sta, tmp, &local->sta_list, list) |
f709fc69 | 3213 | if (time_after(jiffies, sta->last_rx + exp_time)) { |
0795af57 JP |
3214 | printk(KERN_DEBUG "%s: expiring inactive STA %s\n", |
3215 | dev->name, print_mac(mac, sta->addr)); | |
cb585bcc | 3216 | __sta_info_unlink(&sta); |
d0709a65 JB |
3217 | if (sta) |
3218 | list_add(&sta->list, &tmp_list); | |
f0706e82 | 3219 | } |
d0709a65 | 3220 | spin_unlock_irqrestore(&local->sta_lock, flags); |
be8755e1 | 3221 | |
d0709a65 JB |
3222 | list_for_each_entry_safe(sta, tmp, &tmp_list, list) |
3223 | sta_info_destroy(sta); | |
f0706e82 JB |
3224 | } |
3225 | ||
3226 | ||
3227 | static void ieee80211_sta_merge_ibss(struct net_device *dev, | |
3228 | struct ieee80211_if_sta *ifsta) | |
3229 | { | |
3230 | mod_timer(&ifsta->timer, jiffies + IEEE80211_IBSS_MERGE_INTERVAL); | |
3231 | ||
f709fc69 | 3232 | ieee80211_sta_expire(dev, IEEE80211_IBSS_INACTIVITY_LIMIT); |
f0706e82 JB |
3233 | if (ieee80211_sta_active_ibss(dev)) |
3234 | return; | |
3235 | ||
3236 | printk(KERN_DEBUG "%s: No active IBSS STAs - trying to scan for other " | |
3237 | "IBSS networks with same SSID (merge)\n", dev->name); | |
3238 | ieee80211_sta_req_scan(dev, ifsta->ssid, ifsta->ssid_len); | |
3239 | } | |
3240 | ||
3241 | ||
f709fc69 LCC |
3242 | #ifdef CONFIG_MAC80211_MESH |
3243 | static void ieee80211_mesh_housekeeping(struct net_device *dev, | |
3244 | struct ieee80211_if_sta *ifsta) | |
3245 | { | |
3246 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3247 | bool free_plinks; | |
3248 | ||
3249 | ieee80211_sta_expire(dev, IEEE80211_MESH_PEER_INACTIVITY_LIMIT); | |
3250 | mesh_path_expire(dev); | |
3251 | ||
3252 | free_plinks = mesh_plink_availables(sdata); | |
3253 | if (free_plinks != sdata->u.sta.accepting_plinks) | |
3254 | ieee80211_if_config_beacon(dev); | |
3255 | ||
3256 | mod_timer(&ifsta->timer, jiffies + | |
3257 | IEEE80211_MESH_HOUSEKEEPING_INTERVAL); | |
3258 | } | |
3259 | ||
3260 | ||
3261 | void ieee80211_start_mesh(struct net_device *dev) | |
3262 | { | |
3263 | struct ieee80211_if_sta *ifsta; | |
3264 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3265 | ifsta = &sdata->u.sta; | |
3266 | ifsta->state = IEEE80211_MESH_UP; | |
3267 | ieee80211_sta_timer((unsigned long)sdata); | |
3268 | } | |
3269 | #endif | |
3270 | ||
3271 | ||
f0706e82 JB |
3272 | void ieee80211_sta_timer(unsigned long data) |
3273 | { | |
3274 | struct ieee80211_sub_if_data *sdata = | |
3275 | (struct ieee80211_sub_if_data *) data; | |
3276 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
3277 | struct ieee80211_local *local = wdev_priv(&sdata->wdev); | |
3278 | ||
3279 | set_bit(IEEE80211_STA_REQ_RUN, &ifsta->request); | |
3280 | queue_work(local->hw.workqueue, &ifsta->work); | |
3281 | } | |
3282 | ||
f0706e82 JB |
3283 | void ieee80211_sta_work(struct work_struct *work) |
3284 | { | |
3285 | struct ieee80211_sub_if_data *sdata = | |
3286 | container_of(work, struct ieee80211_sub_if_data, u.sta.work); | |
3287 | struct net_device *dev = sdata->dev; | |
3288 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3289 | struct ieee80211_if_sta *ifsta; | |
3290 | struct sk_buff *skb; | |
3291 | ||
3292 | if (!netif_running(dev)) | |
3293 | return; | |
3294 | ||
ece8eddd | 3295 | if (local->sta_sw_scanning || local->sta_hw_scanning) |
f0706e82 JB |
3296 | return; |
3297 | ||
51fb61e7 | 3298 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA && |
f709fc69 LCC |
3299 | sdata->vif.type != IEEE80211_IF_TYPE_IBSS && |
3300 | sdata->vif.type != IEEE80211_IF_TYPE_MESH_POINT) { | |
f0706e82 | 3301 | printk(KERN_DEBUG "%s: ieee80211_sta_work: non-STA interface " |
51fb61e7 | 3302 | "(type=%d)\n", dev->name, sdata->vif.type); |
f0706e82 JB |
3303 | return; |
3304 | } | |
3305 | ifsta = &sdata->u.sta; | |
3306 | ||
3307 | while ((skb = skb_dequeue(&ifsta->skb_queue))) | |
3308 | ieee80211_sta_rx_queued_mgmt(dev, skb); | |
3309 | ||
f709fc69 | 3310 | #ifdef CONFIG_MAC80211_MESH |
902acc78 JB |
3311 | if (ifsta->preq_queue_len && |
3312 | time_after(jiffies, | |
3313 | ifsta->last_preq + msecs_to_jiffies(ifsta->mshcfg.dot11MeshHWMPpreqMinInterval))) | |
f709fc69 LCC |
3314 | mesh_path_start_discovery(dev); |
3315 | #endif | |
3316 | ||
f0706e82 JB |
3317 | if (ifsta->state != IEEE80211_AUTHENTICATE && |
3318 | ifsta->state != IEEE80211_ASSOCIATE && | |
3319 | test_and_clear_bit(IEEE80211_STA_REQ_SCAN, &ifsta->request)) { | |
a0af5f14 HS |
3320 | if (ifsta->scan_ssid_len) |
3321 | ieee80211_sta_start_scan(dev, ifsta->scan_ssid, ifsta->scan_ssid_len); | |
3322 | else | |
3323 | ieee80211_sta_start_scan(dev, NULL, 0); | |
f0706e82 JB |
3324 | return; |
3325 | } | |
3326 | ||
3327 | if (test_and_clear_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request)) { | |
3328 | if (ieee80211_sta_config_auth(dev, ifsta)) | |
3329 | return; | |
3330 | clear_bit(IEEE80211_STA_REQ_RUN, &ifsta->request); | |
3331 | } else if (!test_and_clear_bit(IEEE80211_STA_REQ_RUN, &ifsta->request)) | |
3332 | return; | |
3333 | ||
3334 | switch (ifsta->state) { | |
3335 | case IEEE80211_DISABLED: | |
3336 | break; | |
3337 | case IEEE80211_AUTHENTICATE: | |
3338 | ieee80211_authenticate(dev, ifsta); | |
3339 | break; | |
3340 | case IEEE80211_ASSOCIATE: | |
3341 | ieee80211_associate(dev, ifsta); | |
3342 | break; | |
3343 | case IEEE80211_ASSOCIATED: | |
3344 | ieee80211_associated(dev, ifsta); | |
3345 | break; | |
3346 | case IEEE80211_IBSS_SEARCH: | |
3347 | ieee80211_sta_find_ibss(dev, ifsta); | |
3348 | break; | |
3349 | case IEEE80211_IBSS_JOINED: | |
3350 | ieee80211_sta_merge_ibss(dev, ifsta); | |
3351 | break; | |
f709fc69 LCC |
3352 | #ifdef CONFIG_MAC80211_MESH |
3353 | case IEEE80211_MESH_UP: | |
3354 | ieee80211_mesh_housekeeping(dev, ifsta); | |
3355 | break; | |
3356 | #endif | |
f0706e82 JB |
3357 | default: |
3358 | printk(KERN_DEBUG "ieee80211_sta_work: Unknown state %d\n", | |
3359 | ifsta->state); | |
3360 | break; | |
3361 | } | |
3362 | ||
3363 | if (ieee80211_privacy_mismatch(dev, ifsta)) { | |
3364 | printk(KERN_DEBUG "%s: privacy configuration mismatch and " | |
3365 | "mixed-cell disabled - disassociate\n", dev->name); | |
3366 | ||
3367 | ieee80211_send_disassoc(dev, ifsta, WLAN_REASON_UNSPECIFIED); | |
3368 | ieee80211_set_disassoc(dev, ifsta, 0); | |
3369 | } | |
3370 | } | |
3371 | ||
3372 | ||
3373 | static void ieee80211_sta_reset_auth(struct net_device *dev, | |
3374 | struct ieee80211_if_sta *ifsta) | |
3375 | { | |
3376 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3377 | ||
3378 | if (local->ops->reset_tsf) { | |
3379 | /* Reset own TSF to allow time synchronization work. */ | |
3380 | local->ops->reset_tsf(local_to_hw(local)); | |
3381 | } | |
3382 | ||
3383 | ifsta->wmm_last_param_set = -1; /* allow any WMM update */ | |
3384 | ||
3385 | ||
3386 | if (ifsta->auth_algs & IEEE80211_AUTH_ALG_OPEN) | |
3387 | ifsta->auth_alg = WLAN_AUTH_OPEN; | |
3388 | else if (ifsta->auth_algs & IEEE80211_AUTH_ALG_SHARED_KEY) | |
3389 | ifsta->auth_alg = WLAN_AUTH_SHARED_KEY; | |
3390 | else if (ifsta->auth_algs & IEEE80211_AUTH_ALG_LEAP) | |
3391 | ifsta->auth_alg = WLAN_AUTH_LEAP; | |
3392 | else | |
3393 | ifsta->auth_alg = WLAN_AUTH_OPEN; | |
3394 | printk(KERN_DEBUG "%s: Initial auth_alg=%d\n", dev->name, | |
3395 | ifsta->auth_alg); | |
3396 | ifsta->auth_transaction = -1; | |
d6f2da5b JS |
3397 | ifsta->flags &= ~IEEE80211_STA_ASSOCIATED; |
3398 | ifsta->auth_tries = ifsta->assoc_tries = 0; | |
f0706e82 JB |
3399 | netif_carrier_off(dev); |
3400 | } | |
3401 | ||
3402 | ||
3403 | void ieee80211_sta_req_auth(struct net_device *dev, | |
3404 | struct ieee80211_if_sta *ifsta) | |
3405 | { | |
3406 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3407 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3408 | ||
51fb61e7 | 3409 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA) |
f0706e82 JB |
3410 | return; |
3411 | ||
d6f2da5b JS |
3412 | if ((ifsta->flags & (IEEE80211_STA_BSSID_SET | |
3413 | IEEE80211_STA_AUTO_BSSID_SEL)) && | |
3414 | (ifsta->flags & (IEEE80211_STA_SSID_SET | | |
3415 | IEEE80211_STA_AUTO_SSID_SEL))) { | |
f0706e82 JB |
3416 | set_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request); |
3417 | queue_work(local->hw.workqueue, &ifsta->work); | |
3418 | } | |
3419 | } | |
3420 | ||
3421 | static int ieee80211_sta_match_ssid(struct ieee80211_if_sta *ifsta, | |
3422 | const char *ssid, int ssid_len) | |
3423 | { | |
3424 | int tmp, hidden_ssid; | |
3425 | ||
48225709 MW |
3426 | if (ssid_len == ifsta->ssid_len && |
3427 | !memcmp(ifsta->ssid, ssid, ssid_len)) | |
f0706e82 JB |
3428 | return 1; |
3429 | ||
d6f2da5b | 3430 | if (ifsta->flags & IEEE80211_STA_AUTO_BSSID_SEL) |
f0706e82 JB |
3431 | return 0; |
3432 | ||
3433 | hidden_ssid = 1; | |
3434 | tmp = ssid_len; | |
3435 | while (tmp--) { | |
3436 | if (ssid[tmp] != '\0') { | |
3437 | hidden_ssid = 0; | |
3438 | break; | |
3439 | } | |
3440 | } | |
3441 | ||
3442 | if (hidden_ssid && ifsta->ssid_len == ssid_len) | |
3443 | return 1; | |
3444 | ||
3445 | if (ssid_len == 1 && ssid[0] == ' ') | |
3446 | return 1; | |
3447 | ||
3448 | return 0; | |
3449 | } | |
3450 | ||
3451 | static int ieee80211_sta_config_auth(struct net_device *dev, | |
3452 | struct ieee80211_if_sta *ifsta) | |
3453 | { | |
3454 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3455 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3456 | struct ieee80211_sta_bss *bss, *selected = NULL; | |
3457 | int top_rssi = 0, freq; | |
3458 | ||
f0706e82 | 3459 | spin_lock_bh(&local->sta_bss_lock); |
8318d78a | 3460 | freq = local->oper_channel->center_freq; |
f0706e82 JB |
3461 | list_for_each_entry(bss, &local->sta_bss_list, list) { |
3462 | if (!(bss->capability & WLAN_CAPABILITY_ESS)) | |
3463 | continue; | |
3464 | ||
34a961f7 AK |
3465 | if ((ifsta->flags & (IEEE80211_STA_AUTO_SSID_SEL | |
3466 | IEEE80211_STA_AUTO_BSSID_SEL | | |
3467 | IEEE80211_STA_AUTO_CHANNEL_SEL)) && | |
3468 | (!!(bss->capability & WLAN_CAPABILITY_PRIVACY) ^ | |
3469 | !!sdata->default_key)) | |
f0706e82 JB |
3470 | continue; |
3471 | ||
d6f2da5b JS |
3472 | if (!(ifsta->flags & IEEE80211_STA_AUTO_CHANNEL_SEL) && |
3473 | bss->freq != freq) | |
f0706e82 JB |
3474 | continue; |
3475 | ||
d6f2da5b | 3476 | if (!(ifsta->flags & IEEE80211_STA_AUTO_BSSID_SEL) && |
f0706e82 JB |
3477 | memcmp(bss->bssid, ifsta->bssid, ETH_ALEN)) |
3478 | continue; | |
3479 | ||
d6f2da5b | 3480 | if (!(ifsta->flags & IEEE80211_STA_AUTO_SSID_SEL) && |
f0706e82 JB |
3481 | !ieee80211_sta_match_ssid(ifsta, bss->ssid, bss->ssid_len)) |
3482 | continue; | |
3483 | ||
3484 | if (!selected || top_rssi < bss->rssi) { | |
3485 | selected = bss; | |
3486 | top_rssi = bss->rssi; | |
3487 | } | |
3488 | } | |
3489 | if (selected) | |
3490 | atomic_inc(&selected->users); | |
3491 | spin_unlock_bh(&local->sta_bss_lock); | |
3492 | ||
3493 | if (selected) { | |
be038b37 | 3494 | ieee80211_set_freq(dev, selected->freq); |
d6f2da5b | 3495 | if (!(ifsta->flags & IEEE80211_STA_SSID_SET)) |
f0706e82 JB |
3496 | ieee80211_sta_set_ssid(dev, selected->ssid, |
3497 | selected->ssid_len); | |
3498 | ieee80211_sta_set_bssid(dev, selected->bssid); | |
e2839d8f | 3499 | ieee80211_sta_def_wmm_params(dev, selected, 0); |
f0706e82 JB |
3500 | ieee80211_rx_bss_put(dev, selected); |
3501 | ifsta->state = IEEE80211_AUTHENTICATE; | |
f0706e82 JB |
3502 | ieee80211_sta_reset_auth(dev, ifsta); |
3503 | return 0; | |
3504 | } else { | |
3505 | if (ifsta->state != IEEE80211_AUTHENTICATE) { | |
d6f2da5b | 3506 | if (ifsta->flags & IEEE80211_STA_AUTO_SSID_SEL) |
b9bf1e60 JL |
3507 | ieee80211_sta_start_scan(dev, NULL, 0); |
3508 | else | |
3509 | ieee80211_sta_start_scan(dev, ifsta->ssid, | |
3510 | ifsta->ssid_len); | |
f0706e82 JB |
3511 | ifsta->state = IEEE80211_AUTHENTICATE; |
3512 | set_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request); | |
3513 | } else | |
3514 | ifsta->state = IEEE80211_DISABLED; | |
3515 | } | |
f0706e82 JB |
3516 | return -1; |
3517 | } | |
3518 | ||
f0706e82 JB |
3519 | |
3520 | static int ieee80211_sta_create_ibss(struct net_device *dev, | |
3521 | struct ieee80211_if_sta *ifsta) | |
3522 | { | |
3523 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3524 | struct ieee80211_sta_bss *bss; | |
cffdd30d | 3525 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
8318d78a | 3526 | struct ieee80211_supported_band *sband; |
f0706e82 JB |
3527 | u8 bssid[ETH_ALEN], *pos; |
3528 | int i; | |
167ad6f7 | 3529 | int ret; |
0795af57 | 3530 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
3531 | |
3532 | #if 0 | |
3533 | /* Easier testing, use fixed BSSID. */ | |
3534 | memset(bssid, 0xfe, ETH_ALEN); | |
3535 | #else | |
3536 | /* Generate random, not broadcast, locally administered BSSID. Mix in | |
3537 | * own MAC address to make sure that devices that do not have proper | |
3538 | * random number generator get different BSSID. */ | |
3539 | get_random_bytes(bssid, ETH_ALEN); | |
3540 | for (i = 0; i < ETH_ALEN; i++) | |
3541 | bssid[i] ^= dev->dev_addr[i]; | |
3542 | bssid[0] &= ~0x01; | |
3543 | bssid[0] |= 0x02; | |
3544 | #endif | |
3545 | ||
0795af57 JP |
3546 | printk(KERN_DEBUG "%s: Creating new IBSS network, BSSID %s\n", |
3547 | dev->name, print_mac(mac, bssid)); | |
f0706e82 | 3548 | |
8318d78a JB |
3549 | bss = ieee80211_rx_bss_add(dev, bssid, |
3550 | local->hw.conf.channel->center_freq, | |
cffdd30d | 3551 | sdata->u.sta.ssid, sdata->u.sta.ssid_len); |
f0706e82 JB |
3552 | if (!bss) |
3553 | return -ENOMEM; | |
3554 | ||
8318d78a JB |
3555 | bss->band = local->hw.conf.channel->band; |
3556 | sband = local->hw.wiphy->bands[bss->band]; | |
f0706e82 JB |
3557 | |
3558 | if (local->hw.conf.beacon_int == 0) | |
f709fc69 | 3559 | local->hw.conf.beacon_int = 10000; |
f0706e82 | 3560 | bss->beacon_int = local->hw.conf.beacon_int; |
f0706e82 JB |
3561 | bss->last_update = jiffies; |
3562 | bss->capability = WLAN_CAPABILITY_IBSS; | |
3563 | if (sdata->default_key) { | |
3564 | bss->capability |= WLAN_CAPABILITY_PRIVACY; | |
3565 | } else | |
3566 | sdata->drop_unencrypted = 0; | |
8318d78a | 3567 | bss->supp_rates_len = sband->n_bitrates; |
f0706e82 | 3568 | pos = bss->supp_rates; |
8318d78a JB |
3569 | for (i = 0; i < sband->n_bitrates; i++) { |
3570 | int rate = sband->bitrates[i].bitrate; | |
f0706e82 JB |
3571 | *pos++ = (u8) (rate / 5); |
3572 | } | |
3573 | ||
167ad6f7 TW |
3574 | ret = ieee80211_sta_join_ibss(dev, ifsta, bss); |
3575 | ieee80211_rx_bss_put(dev, bss); | |
3576 | return ret; | |
f0706e82 JB |
3577 | } |
3578 | ||
3579 | ||
3580 | static int ieee80211_sta_find_ibss(struct net_device *dev, | |
3581 | struct ieee80211_if_sta *ifsta) | |
3582 | { | |
3583 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3584 | struct ieee80211_sta_bss *bss; | |
3585 | int found = 0; | |
3586 | u8 bssid[ETH_ALEN]; | |
3587 | int active_ibss; | |
0795af57 JP |
3588 | DECLARE_MAC_BUF(mac); |
3589 | DECLARE_MAC_BUF(mac2); | |
f0706e82 JB |
3590 | |
3591 | if (ifsta->ssid_len == 0) | |
3592 | return -EINVAL; | |
3593 | ||
3594 | active_ibss = ieee80211_sta_active_ibss(dev); | |
3595 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
3596 | printk(KERN_DEBUG "%s: sta_find_ibss (active_ibss=%d)\n", | |
3597 | dev->name, active_ibss); | |
3598 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ | |
3599 | spin_lock_bh(&local->sta_bss_lock); | |
3600 | list_for_each_entry(bss, &local->sta_bss_list, list) { | |
3601 | if (ifsta->ssid_len != bss->ssid_len || | |
3602 | memcmp(ifsta->ssid, bss->ssid, bss->ssid_len) != 0 | |
3603 | || !(bss->capability & WLAN_CAPABILITY_IBSS)) | |
3604 | continue; | |
3605 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
0795af57 JP |
3606 | printk(KERN_DEBUG " bssid=%s found\n", |
3607 | print_mac(mac, bss->bssid)); | |
f0706e82 JB |
3608 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ |
3609 | memcpy(bssid, bss->bssid, ETH_ALEN); | |
3610 | found = 1; | |
3611 | if (active_ibss || memcmp(bssid, ifsta->bssid, ETH_ALEN) != 0) | |
3612 | break; | |
3613 | } | |
3614 | spin_unlock_bh(&local->sta_bss_lock); | |
3615 | ||
3616 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
0795af57 JP |
3617 | printk(KERN_DEBUG " sta_find_ibss: selected %s current " |
3618 | "%s\n", print_mac(mac, bssid), print_mac(mac2, ifsta->bssid)); | |
f0706e82 JB |
3619 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ |
3620 | if (found && memcmp(ifsta->bssid, bssid, ETH_ALEN) != 0 && | |
8318d78a JB |
3621 | (bss = ieee80211_rx_bss_get(dev, bssid, |
3622 | local->hw.conf.channel->center_freq, | |
cffdd30d | 3623 | ifsta->ssid, ifsta->ssid_len))) { |
167ad6f7 | 3624 | int ret; |
0795af57 | 3625 | printk(KERN_DEBUG "%s: Selected IBSS BSSID %s" |
f0706e82 | 3626 | " based on configured SSID\n", |
0795af57 | 3627 | dev->name, print_mac(mac, bssid)); |
167ad6f7 TW |
3628 | ret = ieee80211_sta_join_ibss(dev, ifsta, bss); |
3629 | ieee80211_rx_bss_put(dev, bss); | |
3630 | return ret; | |
f0706e82 JB |
3631 | } |
3632 | #ifdef CONFIG_MAC80211_IBSS_DEBUG | |
3633 | printk(KERN_DEBUG " did not try to join ibss\n"); | |
3634 | #endif /* CONFIG_MAC80211_IBSS_DEBUG */ | |
3635 | ||
3636 | /* Selected IBSS not found in current scan results - try to scan */ | |
3637 | if (ifsta->state == IEEE80211_IBSS_JOINED && | |
3638 | !ieee80211_sta_active_ibss(dev)) { | |
3639 | mod_timer(&ifsta->timer, jiffies + | |
3640 | IEEE80211_IBSS_MERGE_INTERVAL); | |
3641 | } else if (time_after(jiffies, local->last_scan_completed + | |
3642 | IEEE80211_SCAN_INTERVAL)) { | |
3643 | printk(KERN_DEBUG "%s: Trigger new scan to find an IBSS to " | |
3644 | "join\n", dev->name); | |
3645 | return ieee80211_sta_req_scan(dev, ifsta->ssid, | |
3646 | ifsta->ssid_len); | |
3647 | } else if (ifsta->state != IEEE80211_IBSS_JOINED) { | |
3648 | int interval = IEEE80211_SCAN_INTERVAL; | |
3649 | ||
3650 | if (time_after(jiffies, ifsta->ibss_join_req + | |
3651 | IEEE80211_IBSS_JOIN_TIMEOUT)) { | |
d6f2da5b | 3652 | if ((ifsta->flags & IEEE80211_STA_CREATE_IBSS) && |
8318d78a JB |
3653 | (!(local->oper_channel->flags & |
3654 | IEEE80211_CHAN_NO_IBSS))) | |
f0706e82 | 3655 | return ieee80211_sta_create_ibss(dev, ifsta); |
d6f2da5b | 3656 | if (ifsta->flags & IEEE80211_STA_CREATE_IBSS) { |
8318d78a JB |
3657 | printk(KERN_DEBUG "%s: IBSS not allowed on" |
3658 | " %d MHz\n", dev->name, | |
3659 | local->hw.conf.channel->center_freq); | |
f0706e82 JB |
3660 | } |
3661 | ||
3662 | /* No IBSS found - decrease scan interval and continue | |
3663 | * scanning. */ | |
3664 | interval = IEEE80211_SCAN_INTERVAL_SLOW; | |
3665 | } | |
3666 | ||
3667 | ifsta->state = IEEE80211_IBSS_SEARCH; | |
3668 | mod_timer(&ifsta->timer, jiffies + interval); | |
3669 | return 0; | |
3670 | } | |
3671 | ||
3672 | return 0; | |
3673 | } | |
3674 | ||
3675 | ||
3676 | int ieee80211_sta_set_ssid(struct net_device *dev, char *ssid, size_t len) | |
3677 | { | |
8318d78a | 3678 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
f0706e82 | 3679 | struct ieee80211_if_sta *ifsta; |
f0706e82 JB |
3680 | |
3681 | if (len > IEEE80211_MAX_SSID_LEN) | |
3682 | return -EINVAL; | |
3683 | ||
f0706e82 JB |
3684 | ifsta = &sdata->u.sta; |
3685 | ||
3686 | if (ifsta->ssid_len != len || memcmp(ifsta->ssid, ssid, len) != 0) | |
d6f2da5b | 3687 | ifsta->flags &= ~IEEE80211_STA_PREV_BSSID_SET; |
f0706e82 JB |
3688 | memcpy(ifsta->ssid, ssid, len); |
3689 | memset(ifsta->ssid + len, 0, IEEE80211_MAX_SSID_LEN - len); | |
3690 | ifsta->ssid_len = len; | |
3691 | ||
d6f2da5b JS |
3692 | if (len) |
3693 | ifsta->flags |= IEEE80211_STA_SSID_SET; | |
3694 | else | |
3695 | ifsta->flags &= ~IEEE80211_STA_SSID_SET; | |
51fb61e7 | 3696 | if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && |
d6f2da5b | 3697 | !(ifsta->flags & IEEE80211_STA_BSSID_SET)) { |
f0706e82 JB |
3698 | ifsta->ibss_join_req = jiffies; |
3699 | ifsta->state = IEEE80211_IBSS_SEARCH; | |
3700 | return ieee80211_sta_find_ibss(dev, ifsta); | |
3701 | } | |
3702 | return 0; | |
3703 | } | |
3704 | ||
3705 | ||
3706 | int ieee80211_sta_get_ssid(struct net_device *dev, char *ssid, size_t *len) | |
3707 | { | |
3708 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3709 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
3710 | memcpy(ssid, ifsta->ssid, ifsta->ssid_len); | |
3711 | *len = ifsta->ssid_len; | |
3712 | return 0; | |
3713 | } | |
3714 | ||
3715 | ||
3716 | int ieee80211_sta_set_bssid(struct net_device *dev, u8 *bssid) | |
3717 | { | |
3718 | struct ieee80211_sub_if_data *sdata; | |
3719 | struct ieee80211_if_sta *ifsta; | |
3720 | int res; | |
3721 | ||
3722 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
3723 | ifsta = &sdata->u.sta; | |
3724 | ||
3725 | if (memcmp(ifsta->bssid, bssid, ETH_ALEN) != 0) { | |
3726 | memcpy(ifsta->bssid, bssid, ETH_ALEN); | |
3727 | res = ieee80211_if_config(dev); | |
3728 | if (res) { | |
3729 | printk(KERN_DEBUG "%s: Failed to config new BSSID to " | |
3730 | "the low-level driver\n", dev->name); | |
3731 | return res; | |
3732 | } | |
3733 | } | |
3734 | ||
d6f2da5b JS |
3735 | if (is_valid_ether_addr(bssid)) |
3736 | ifsta->flags |= IEEE80211_STA_BSSID_SET; | |
f0706e82 | 3737 | else |
d6f2da5b JS |
3738 | ifsta->flags &= ~IEEE80211_STA_BSSID_SET; |
3739 | ||
f0706e82 JB |
3740 | return 0; |
3741 | } | |
3742 | ||
3743 | ||
3744 | static void ieee80211_send_nullfunc(struct ieee80211_local *local, | |
3745 | struct ieee80211_sub_if_data *sdata, | |
3746 | int powersave) | |
3747 | { | |
3748 | struct sk_buff *skb; | |
3749 | struct ieee80211_hdr *nullfunc; | |
3750 | u16 fc; | |
3751 | ||
3752 | skb = dev_alloc_skb(local->hw.extra_tx_headroom + 24); | |
3753 | if (!skb) { | |
3754 | printk(KERN_DEBUG "%s: failed to allocate buffer for nullfunc " | |
3755 | "frame\n", sdata->dev->name); | |
3756 | return; | |
3757 | } | |
3758 | skb_reserve(skb, local->hw.extra_tx_headroom); | |
3759 | ||
3760 | nullfunc = (struct ieee80211_hdr *) skb_put(skb, 24); | |
3761 | memset(nullfunc, 0, 24); | |
3762 | fc = IEEE80211_FTYPE_DATA | IEEE80211_STYPE_NULLFUNC | | |
3763 | IEEE80211_FCTL_TODS; | |
3764 | if (powersave) | |
3765 | fc |= IEEE80211_FCTL_PM; | |
3766 | nullfunc->frame_control = cpu_to_le16(fc); | |
3767 | memcpy(nullfunc->addr1, sdata->u.sta.bssid, ETH_ALEN); | |
3768 | memcpy(nullfunc->addr2, sdata->dev->dev_addr, ETH_ALEN); | |
3769 | memcpy(nullfunc->addr3, sdata->u.sta.bssid, ETH_ALEN); | |
3770 | ||
3771 | ieee80211_sta_tx(sdata->dev, skb, 0); | |
3772 | } | |
3773 | ||
3774 | ||
69d3b6f4 JB |
3775 | static void ieee80211_restart_sta_timer(struct ieee80211_sub_if_data *sdata) |
3776 | { | |
3777 | if (sdata->vif.type == IEEE80211_IF_TYPE_STA || | |
3778 | ieee80211_vif_is_mesh(&sdata->vif)) | |
3779 | ieee80211_sta_timer((unsigned long)sdata); | |
3780 | } | |
3781 | ||
f0706e82 JB |
3782 | void ieee80211_scan_completed(struct ieee80211_hw *hw) |
3783 | { | |
3784 | struct ieee80211_local *local = hw_to_local(hw); | |
3785 | struct net_device *dev = local->scan_dev; | |
3786 | struct ieee80211_sub_if_data *sdata; | |
3787 | union iwreq_data wrqu; | |
3788 | ||
3789 | local->last_scan_completed = jiffies; | |
ece8eddd ZY |
3790 | memset(&wrqu, 0, sizeof(wrqu)); |
3791 | wireless_send_event(dev, SIOCGIWSCAN, &wrqu, NULL); | |
f0706e82 | 3792 | |
ece8eddd ZY |
3793 | if (local->sta_hw_scanning) { |
3794 | local->sta_hw_scanning = 0; | |
675ef586 MA |
3795 | if (ieee80211_hw_config(local)) |
3796 | printk(KERN_DEBUG "%s: failed to restore operational " | |
3797 | "channel after scan\n", dev->name); | |
69d3b6f4 JB |
3798 | /* Restart STA timer for HW scan case */ |
3799 | rcu_read_lock(); | |
3800 | list_for_each_entry_rcu(sdata, &local->interfaces, list) | |
3801 | ieee80211_restart_sta_timer(sdata); | |
3802 | rcu_read_unlock(); | |
3803 | ||
ece8eddd ZY |
3804 | goto done; |
3805 | } | |
3806 | ||
3807 | local->sta_sw_scanning = 0; | |
f0706e82 | 3808 | if (ieee80211_hw_config(local)) |
4b50e388 | 3809 | printk(KERN_DEBUG "%s: failed to restore operational " |
f0706e82 JB |
3810 | "channel after scan\n", dev->name); |
3811 | ||
4150c572 JB |
3812 | |
3813 | netif_tx_lock_bh(local->mdev); | |
3814 | local->filter_flags &= ~FIF_BCN_PRBRESP_PROMISC; | |
3815 | local->ops->configure_filter(local_to_hw(local), | |
3816 | FIF_BCN_PRBRESP_PROMISC, | |
3817 | &local->filter_flags, | |
3818 | local->mdev->mc_count, | |
3819 | local->mdev->mc_list); | |
3820 | ||
3821 | netif_tx_unlock_bh(local->mdev); | |
f0706e82 | 3822 | |
79010420 JB |
3823 | rcu_read_lock(); |
3824 | list_for_each_entry_rcu(sdata, &local->interfaces, list) { | |
14042cbe MN |
3825 | |
3826 | /* No need to wake the master device. */ | |
3827 | if (sdata->dev == local->mdev) | |
3828 | continue; | |
3829 | ||
69d3b6f4 JB |
3830 | /* Tell AP we're back */ |
3831 | if (sdata->vif.type == IEEE80211_IF_TYPE_STA && | |
3832 | sdata->u.sta.flags & IEEE80211_STA_ASSOCIATED) | |
3833 | ieee80211_send_nullfunc(local, sdata, 0); | |
14042cbe | 3834 | |
69d3b6f4 | 3835 | ieee80211_restart_sta_timer(sdata); |
f709fc69 | 3836 | |
f0706e82 JB |
3837 | netif_wake_queue(sdata->dev); |
3838 | } | |
79010420 | 3839 | rcu_read_unlock(); |
f0706e82 | 3840 | |
ece8eddd | 3841 | done: |
f0706e82 | 3842 | sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
51fb61e7 | 3843 | if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS) { |
f0706e82 | 3844 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; |
d6f2da5b | 3845 | if (!(ifsta->flags & IEEE80211_STA_BSSID_SET) || |
f0706e82 JB |
3846 | (!ifsta->state == IEEE80211_IBSS_JOINED && |
3847 | !ieee80211_sta_active_ibss(dev))) | |
3848 | ieee80211_sta_find_ibss(dev, ifsta); | |
3849 | } | |
3850 | } | |
3851 | EXPORT_SYMBOL(ieee80211_scan_completed); | |
3852 | ||
3853 | void ieee80211_sta_scan_work(struct work_struct *work) | |
3854 | { | |
3855 | struct ieee80211_local *local = | |
3856 | container_of(work, struct ieee80211_local, scan_work.work); | |
3857 | struct net_device *dev = local->scan_dev; | |
3858 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
8318d78a | 3859 | struct ieee80211_supported_band *sband; |
f0706e82 JB |
3860 | struct ieee80211_channel *chan; |
3861 | int skip; | |
3862 | unsigned long next_delay = 0; | |
3863 | ||
ece8eddd | 3864 | if (!local->sta_sw_scanning) |
f0706e82 JB |
3865 | return; |
3866 | ||
3867 | switch (local->scan_state) { | |
3868 | case SCAN_SET_CHANNEL: | |
69d464d5 JB |
3869 | /* |
3870 | * Get current scan band. scan_band may be IEEE80211_NUM_BANDS | |
3871 | * after we successfully scanned the last channel of the last | |
3872 | * band (and the last band is supported by the hw) | |
3873 | */ | |
8318d78a JB |
3874 | if (local->scan_band < IEEE80211_NUM_BANDS) |
3875 | sband = local->hw.wiphy->bands[local->scan_band]; | |
3876 | else | |
3877 | sband = NULL; | |
3878 | ||
69d464d5 JB |
3879 | /* |
3880 | * If we are at an unsupported band and have more bands | |
3881 | * left to scan, advance to the next supported one. | |
3882 | */ | |
3883 | while (!sband && local->scan_band < IEEE80211_NUM_BANDS - 1) { | |
8318d78a JB |
3884 | local->scan_band++; |
3885 | sband = local->hw.wiphy->bands[local->scan_band]; | |
3886 | local->scan_channel_idx = 0; | |
3887 | } | |
3888 | ||
69d464d5 JB |
3889 | /* if no more bands/channels left, complete scan */ |
3890 | if (!sband || local->scan_channel_idx >= sband->n_channels) { | |
f0706e82 JB |
3891 | ieee80211_scan_completed(local_to_hw(local)); |
3892 | return; | |
3893 | } | |
8318d78a JB |
3894 | skip = 0; |
3895 | chan = &sband->channels[local->scan_channel_idx]; | |
3896 | ||
3897 | if (chan->flags & IEEE80211_CHAN_DISABLED || | |
51fb61e7 | 3898 | (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && |
8318d78a | 3899 | chan->flags & IEEE80211_CHAN_NO_IBSS)) |
f0706e82 JB |
3900 | skip = 1; |
3901 | ||
3902 | if (!skip) { | |
f0706e82 JB |
3903 | local->scan_channel = chan; |
3904 | if (ieee80211_hw_config(local)) { | |
8318d78a JB |
3905 | printk(KERN_DEBUG "%s: failed to set freq to " |
3906 | "%d MHz for scan\n", dev->name, | |
3907 | chan->center_freq); | |
f0706e82 JB |
3908 | skip = 1; |
3909 | } | |
3910 | } | |
3911 | ||
69d464d5 | 3912 | /* advance state machine to next channel/band */ |
f0706e82 | 3913 | local->scan_channel_idx++; |
8318d78a | 3914 | if (local->scan_channel_idx >= sband->n_channels) { |
69d464d5 JB |
3915 | /* |
3916 | * scan_band may end up == IEEE80211_NUM_BANDS, but | |
3917 | * we'll catch that case above and complete the scan | |
3918 | * if that is the case. | |
3919 | */ | |
8318d78a JB |
3920 | local->scan_band++; |
3921 | local->scan_channel_idx = 0; | |
f0706e82 JB |
3922 | } |
3923 | ||
3924 | if (skip) | |
3925 | break; | |
3926 | ||
3927 | next_delay = IEEE80211_PROBE_DELAY + | |
3928 | usecs_to_jiffies(local->hw.channel_change_time); | |
3929 | local->scan_state = SCAN_SEND_PROBE; | |
3930 | break; | |
3931 | case SCAN_SEND_PROBE: | |
8318d78a | 3932 | next_delay = IEEE80211_PASSIVE_CHANNEL_TIME; |
f0706e82 | 3933 | local->scan_state = SCAN_SET_CHANNEL; |
8318d78a JB |
3934 | |
3935 | if (local->scan_channel->flags & IEEE80211_CHAN_PASSIVE_SCAN) | |
3936 | break; | |
3937 | ieee80211_send_probe_req(dev, NULL, local->scan_ssid, | |
3938 | local->scan_ssid_len); | |
3939 | next_delay = IEEE80211_CHANNEL_TIME; | |
f0706e82 JB |
3940 | break; |
3941 | } | |
3942 | ||
ece8eddd | 3943 | if (local->sta_sw_scanning) |
f0706e82 JB |
3944 | queue_delayed_work(local->hw.workqueue, &local->scan_work, |
3945 | next_delay); | |
3946 | } | |
3947 | ||
3948 | ||
3949 | static int ieee80211_sta_start_scan(struct net_device *dev, | |
3950 | u8 *ssid, size_t ssid_len) | |
3951 | { | |
3952 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
3953 | struct ieee80211_sub_if_data *sdata; | |
3954 | ||
3955 | if (ssid_len > IEEE80211_MAX_SSID_LEN) | |
3956 | return -EINVAL; | |
3957 | ||
3958 | /* MLME-SCAN.request (page 118) page 144 (11.1.3.1) | |
3959 | * BSSType: INFRASTRUCTURE, INDEPENDENT, ANY_BSS | |
3960 | * BSSID: MACAddress | |
3961 | * SSID | |
3962 | * ScanType: ACTIVE, PASSIVE | |
3963 | * ProbeDelay: delay (in microseconds) to be used prior to transmitting | |
3964 | * a Probe frame during active scanning | |
3965 | * ChannelList | |
3966 | * MinChannelTime (>= ProbeDelay), in TU | |
3967 | * MaxChannelTime: (>= MinChannelTime), in TU | |
3968 | */ | |
3969 | ||
3970 | /* MLME-SCAN.confirm | |
3971 | * BSSDescriptionSet | |
3972 | * ResultCode: SUCCESS, INVALID_PARAMETERS | |
3973 | */ | |
3974 | ||
ece8eddd | 3975 | if (local->sta_sw_scanning || local->sta_hw_scanning) { |
f0706e82 JB |
3976 | if (local->scan_dev == dev) |
3977 | return 0; | |
3978 | return -EBUSY; | |
3979 | } | |
3980 | ||
3981 | if (local->ops->hw_scan) { | |
3982 | int rc = local->ops->hw_scan(local_to_hw(local), | |
ece8eddd | 3983 | ssid, ssid_len); |
f0706e82 | 3984 | if (!rc) { |
ece8eddd | 3985 | local->sta_hw_scanning = 1; |
f0706e82 JB |
3986 | local->scan_dev = dev; |
3987 | } | |
3988 | return rc; | |
3989 | } | |
3990 | ||
ece8eddd | 3991 | local->sta_sw_scanning = 1; |
f0706e82 | 3992 | |
79010420 JB |
3993 | rcu_read_lock(); |
3994 | list_for_each_entry_rcu(sdata, &local->interfaces, list) { | |
14042cbe MN |
3995 | |
3996 | /* Don't stop the master interface, otherwise we can't transmit | |
3997 | * probes! */ | |
3998 | if (sdata->dev == local->mdev) | |
3999 | continue; | |
4000 | ||
f0706e82 | 4001 | netif_stop_queue(sdata->dev); |
51fb61e7 | 4002 | if (sdata->vif.type == IEEE80211_IF_TYPE_STA && |
d6f2da5b | 4003 | (sdata->u.sta.flags & IEEE80211_STA_ASSOCIATED)) |
f0706e82 JB |
4004 | ieee80211_send_nullfunc(local, sdata, 1); |
4005 | } | |
79010420 | 4006 | rcu_read_unlock(); |
f0706e82 JB |
4007 | |
4008 | if (ssid) { | |
4009 | local->scan_ssid_len = ssid_len; | |
4010 | memcpy(local->scan_ssid, ssid, ssid_len); | |
4011 | } else | |
4012 | local->scan_ssid_len = 0; | |
4013 | local->scan_state = SCAN_SET_CHANNEL; | |
f0706e82 | 4014 | local->scan_channel_idx = 0; |
8318d78a | 4015 | local->scan_band = IEEE80211_BAND_2GHZ; |
f0706e82 JB |
4016 | local->scan_dev = dev; |
4017 | ||
4150c572 JB |
4018 | netif_tx_lock_bh(local->mdev); |
4019 | local->filter_flags |= FIF_BCN_PRBRESP_PROMISC; | |
4020 | local->ops->configure_filter(local_to_hw(local), | |
4021 | FIF_BCN_PRBRESP_PROMISC, | |
4022 | &local->filter_flags, | |
4023 | local->mdev->mc_count, | |
4024 | local->mdev->mc_list); | |
4025 | netif_tx_unlock_bh(local->mdev); | |
f0706e82 JB |
4026 | |
4027 | /* TODO: start scan as soon as all nullfunc frames are ACKed */ | |
4028 | queue_delayed_work(local->hw.workqueue, &local->scan_work, | |
4029 | IEEE80211_CHANNEL_TIME); | |
4030 | ||
4031 | return 0; | |
4032 | } | |
4033 | ||
4034 | ||
4035 | int ieee80211_sta_req_scan(struct net_device *dev, u8 *ssid, size_t ssid_len) | |
4036 | { | |
4037 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
4038 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
4039 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
4040 | ||
51fb61e7 | 4041 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA) |
f0706e82 JB |
4042 | return ieee80211_sta_start_scan(dev, ssid, ssid_len); |
4043 | ||
ece8eddd | 4044 | if (local->sta_sw_scanning || local->sta_hw_scanning) { |
f0706e82 JB |
4045 | if (local->scan_dev == dev) |
4046 | return 0; | |
4047 | return -EBUSY; | |
4048 | } | |
4049 | ||
a0af5f14 HS |
4050 | ifsta->scan_ssid_len = ssid_len; |
4051 | if (ssid_len) | |
4052 | memcpy(ifsta->scan_ssid, ssid, ssid_len); | |
f0706e82 JB |
4053 | set_bit(IEEE80211_STA_REQ_SCAN, &ifsta->request); |
4054 | queue_work(local->hw.workqueue, &ifsta->work); | |
4055 | return 0; | |
4056 | } | |
4057 | ||
4058 | static char * | |
4059 | ieee80211_sta_scan_result(struct net_device *dev, | |
4060 | struct ieee80211_sta_bss *bss, | |
4061 | char *current_ev, char *end_buf) | |
4062 | { | |
4063 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
4064 | struct iw_event iwe; | |
4065 | ||
4066 | if (time_after(jiffies, | |
4067 | bss->last_update + IEEE80211_SCAN_RESULT_EXPIRE)) | |
4068 | return current_ev; | |
4069 | ||
f0706e82 JB |
4070 | memset(&iwe, 0, sizeof(iwe)); |
4071 | iwe.cmd = SIOCGIWAP; | |
4072 | iwe.u.ap_addr.sa_family = ARPHRD_ETHER; | |
4073 | memcpy(iwe.u.ap_addr.sa_data, bss->bssid, ETH_ALEN); | |
4074 | current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe, | |
4075 | IW_EV_ADDR_LEN); | |
4076 | ||
4077 | memset(&iwe, 0, sizeof(iwe)); | |
4078 | iwe.cmd = SIOCGIWESSID; | |
902acc78 JB |
4079 | if (bss_mesh_cfg(bss)) { |
4080 | iwe.u.data.length = bss_mesh_id_len(bss); | |
f709fc69 LCC |
4081 | iwe.u.data.flags = 1; |
4082 | current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, | |
902acc78 | 4083 | bss_mesh_id(bss)); |
f709fc69 LCC |
4084 | } else { |
4085 | iwe.u.data.length = bss->ssid_len; | |
4086 | iwe.u.data.flags = 1; | |
4087 | current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, | |
4088 | bss->ssid); | |
4089 | } | |
f0706e82 | 4090 | |
1d1b5359 LCC |
4091 | if (bss->capability & (WLAN_CAPABILITY_ESS | WLAN_CAPABILITY_IBSS) |
4092 | || bss_mesh_cfg(bss)) { | |
f0706e82 JB |
4093 | memset(&iwe, 0, sizeof(iwe)); |
4094 | iwe.cmd = SIOCGIWMODE; | |
902acc78 | 4095 | if (bss_mesh_cfg(bss)) |
f709fc69 LCC |
4096 | iwe.u.mode = IW_MODE_MESH; |
4097 | else if (bss->capability & WLAN_CAPABILITY_ESS) | |
f0706e82 JB |
4098 | iwe.u.mode = IW_MODE_MASTER; |
4099 | else | |
4100 | iwe.u.mode = IW_MODE_ADHOC; | |
4101 | current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe, | |
4102 | IW_EV_UINT_LEN); | |
4103 | } | |
4104 | ||
4105 | memset(&iwe, 0, sizeof(iwe)); | |
4106 | iwe.cmd = SIOCGIWFREQ; | |
9381be05 TW |
4107 | iwe.u.freq.m = ieee80211_frequency_to_channel(bss->freq); |
4108 | iwe.u.freq.e = 0; | |
f0706e82 JB |
4109 | current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe, |
4110 | IW_EV_FREQ_LEN); | |
8318d78a JB |
4111 | |
4112 | memset(&iwe, 0, sizeof(iwe)); | |
4113 | iwe.cmd = SIOCGIWFREQ; | |
9381be05 TW |
4114 | iwe.u.freq.m = bss->freq; |
4115 | iwe.u.freq.e = 6; | |
f0706e82 JB |
4116 | current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe, |
4117 | IW_EV_FREQ_LEN); | |
f0706e82 JB |
4118 | memset(&iwe, 0, sizeof(iwe)); |
4119 | iwe.cmd = IWEVQUAL; | |
4120 | iwe.u.qual.qual = bss->signal; | |
4121 | iwe.u.qual.level = bss->rssi; | |
4122 | iwe.u.qual.noise = bss->noise; | |
4123 | iwe.u.qual.updated = local->wstats_flags; | |
4124 | current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe, | |
4125 | IW_EV_QUAL_LEN); | |
4126 | ||
4127 | memset(&iwe, 0, sizeof(iwe)); | |
4128 | iwe.cmd = SIOCGIWENCODE; | |
4129 | if (bss->capability & WLAN_CAPABILITY_PRIVACY) | |
4130 | iwe.u.data.flags = IW_ENCODE_ENABLED | IW_ENCODE_NOKEY; | |
4131 | else | |
4132 | iwe.u.data.flags = IW_ENCODE_DISABLED; | |
4133 | iwe.u.data.length = 0; | |
4134 | current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, ""); | |
4135 | ||
4136 | if (bss && bss->wpa_ie) { | |
4137 | memset(&iwe, 0, sizeof(iwe)); | |
4138 | iwe.cmd = IWEVGENIE; | |
4139 | iwe.u.data.length = bss->wpa_ie_len; | |
4140 | current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, | |
4141 | bss->wpa_ie); | |
4142 | } | |
4143 | ||
4144 | if (bss && bss->rsn_ie) { | |
4145 | memset(&iwe, 0, sizeof(iwe)); | |
4146 | iwe.cmd = IWEVGENIE; | |
4147 | iwe.u.data.length = bss->rsn_ie_len; | |
4148 | current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, | |
4149 | bss->rsn_ie); | |
4150 | } | |
4151 | ||
4152 | if (bss && bss->supp_rates_len > 0) { | |
4153 | /* display all supported rates in readable format */ | |
4154 | char *p = current_ev + IW_EV_LCP_LEN; | |
4155 | int i; | |
4156 | ||
4157 | memset(&iwe, 0, sizeof(iwe)); | |
4158 | iwe.cmd = SIOCGIWRATE; | |
4159 | /* Those two flags are ignored... */ | |
4160 | iwe.u.bitrate.fixed = iwe.u.bitrate.disabled = 0; | |
4161 | ||
4162 | for (i = 0; i < bss->supp_rates_len; i++) { | |
4163 | iwe.u.bitrate.value = ((bss->supp_rates[i] & | |
4164 | 0x7f) * 500000); | |
4165 | p = iwe_stream_add_value(current_ev, p, | |
4166 | end_buf, &iwe, IW_EV_PARAM_LEN); | |
4167 | } | |
4168 | current_ev = p; | |
4169 | } | |
4170 | ||
4171 | if (bss) { | |
4172 | char *buf; | |
4173 | buf = kmalloc(30, GFP_ATOMIC); | |
4174 | if (buf) { | |
4175 | memset(&iwe, 0, sizeof(iwe)); | |
4176 | iwe.cmd = IWEVCUSTOM; | |
4177 | sprintf(buf, "tsf=%016llx", (unsigned long long)(bss->timestamp)); | |
4178 | iwe.u.data.length = strlen(buf); | |
4179 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4180 | &iwe, buf); | |
4181 | kfree(buf); | |
4182 | } | |
4183 | } | |
4184 | ||
902acc78 | 4185 | if (bss_mesh_cfg(bss)) { |
f709fc69 | 4186 | char *buf; |
24736701 | 4187 | u8 *cfg = bss_mesh_cfg(bss); |
4f5d4c4d | 4188 | buf = kmalloc(50, GFP_ATOMIC); |
f709fc69 LCC |
4189 | if (buf) { |
4190 | memset(&iwe, 0, sizeof(iwe)); | |
4191 | iwe.cmd = IWEVCUSTOM; | |
24736701 | 4192 | sprintf(buf, "Mesh network (version %d)", cfg[0]); |
4f5d4c4d LCC |
4193 | iwe.u.data.length = strlen(buf); |
4194 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4195 | &iwe, buf); | |
4196 | sprintf(buf, "Path Selection Protocol ID: " | |
24736701 JL |
4197 | "0x%02X%02X%02X%02X", cfg[1], cfg[2], cfg[3], |
4198 | cfg[4]); | |
4f5d4c4d LCC |
4199 | iwe.u.data.length = strlen(buf); |
4200 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4201 | &iwe, buf); | |
4202 | sprintf(buf, "Path Selection Metric ID: " | |
24736701 JL |
4203 | "0x%02X%02X%02X%02X", cfg[5], cfg[6], cfg[7], |
4204 | cfg[8]); | |
4f5d4c4d LCC |
4205 | iwe.u.data.length = strlen(buf); |
4206 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4207 | &iwe, buf); | |
4208 | sprintf(buf, "Congestion Control Mode ID: " | |
24736701 JL |
4209 | "0x%02X%02X%02X%02X", cfg[9], cfg[10], |
4210 | cfg[11], cfg[12]); | |
4f5d4c4d LCC |
4211 | iwe.u.data.length = strlen(buf); |
4212 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4213 | &iwe, buf); | |
4214 | sprintf(buf, "Channel Precedence: " | |
24736701 JL |
4215 | "0x%02X%02X%02X%02X", cfg[13], cfg[14], |
4216 | cfg[15], cfg[16]); | |
f709fc69 LCC |
4217 | iwe.u.data.length = strlen(buf); |
4218 | current_ev = iwe_stream_add_point(current_ev, end_buf, | |
4219 | &iwe, buf); | |
4220 | kfree(buf); | |
4221 | } | |
4222 | } | |
4223 | ||
f0706e82 JB |
4224 | return current_ev; |
4225 | } | |
4226 | ||
4227 | ||
4228 | int ieee80211_sta_scan_results(struct net_device *dev, char *buf, size_t len) | |
4229 | { | |
4230 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
4231 | char *current_ev = buf; | |
4232 | char *end_buf = buf + len; | |
4233 | struct ieee80211_sta_bss *bss; | |
4234 | ||
4235 | spin_lock_bh(&local->sta_bss_lock); | |
4236 | list_for_each_entry(bss, &local->sta_bss_list, list) { | |
4237 | if (buf + len - current_ev <= IW_EV_ADDR_LEN) { | |
4238 | spin_unlock_bh(&local->sta_bss_lock); | |
4239 | return -E2BIG; | |
4240 | } | |
4241 | current_ev = ieee80211_sta_scan_result(dev, bss, current_ev, | |
4242 | end_buf); | |
4243 | } | |
4244 | spin_unlock_bh(&local->sta_bss_lock); | |
4245 | return current_ev - buf; | |
4246 | } | |
4247 | ||
4248 | ||
4249 | int ieee80211_sta_set_extra_ie(struct net_device *dev, char *ie, size_t len) | |
4250 | { | |
4251 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
4252 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
4253 | kfree(ifsta->extra_ie); | |
4254 | if (len == 0) { | |
4255 | ifsta->extra_ie = NULL; | |
4256 | ifsta->extra_ie_len = 0; | |
4257 | return 0; | |
4258 | } | |
4259 | ifsta->extra_ie = kmalloc(len, GFP_KERNEL); | |
4260 | if (!ifsta->extra_ie) { | |
4261 | ifsta->extra_ie_len = 0; | |
4262 | return -ENOMEM; | |
4263 | } | |
4264 | memcpy(ifsta->extra_ie, ie, len); | |
4265 | ifsta->extra_ie_len = len; | |
4266 | return 0; | |
4267 | } | |
4268 | ||
4269 | ||
4270 | struct sta_info * ieee80211_ibss_add_sta(struct net_device *dev, | |
4271 | struct sk_buff *skb, u8 *bssid, | |
4272 | u8 *addr) | |
4273 | { | |
4274 | struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr); | |
4275 | struct sta_info *sta; | |
91fa558b | 4276 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); |
0795af57 | 4277 | DECLARE_MAC_BUF(mac); |
f0706e82 JB |
4278 | |
4279 | /* TODO: Could consider removing the least recently used entry and | |
4280 | * allow new one to be added. */ | |
4281 | if (local->num_sta >= IEEE80211_IBSS_MAX_STA_ENTRIES) { | |
4282 | if (net_ratelimit()) { | |
4283 | printk(KERN_DEBUG "%s: No room for a new IBSS STA " | |
0795af57 | 4284 | "entry %s\n", dev->name, print_mac(mac, addr)); |
f0706e82 JB |
4285 | } |
4286 | return NULL; | |
4287 | } | |
4288 | ||
0795af57 | 4289 | printk(KERN_DEBUG "%s: Adding new IBSS station %s (dev=%s)\n", |
dd1cd4c6 | 4290 | wiphy_name(local->hw.wiphy), print_mac(mac, addr), dev->name); |
f0706e82 | 4291 | |
73651ee6 JB |
4292 | sta = sta_info_alloc(sdata, addr, GFP_ATOMIC); |
4293 | if (!sta) | |
f0706e82 JB |
4294 | return NULL; |
4295 | ||
238814fd JB |
4296 | sta->flags |= WLAN_STA_AUTHORIZED; |
4297 | ||
8318d78a JB |
4298 | sta->supp_rates[local->hw.conf.channel->band] = |
4299 | sdata->u.sta.supp_rates_bits[local->hw.conf.channel->band]; | |
f0706e82 JB |
4300 | |
4301 | rate_control_rate_init(sta, local); | |
4302 | ||
93e5deb1 | 4303 | if (sta_info_insert(sta)) |
73651ee6 | 4304 | return NULL; |
73651ee6 | 4305 | |
d0709a65 | 4306 | return sta; |
f0706e82 JB |
4307 | } |
4308 | ||
4309 | ||
4310 | int ieee80211_sta_deauthenticate(struct net_device *dev, u16 reason) | |
4311 | { | |
4312 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
4313 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
4314 | ||
4315 | printk(KERN_DEBUG "%s: deauthenticate(reason=%d)\n", | |
4316 | dev->name, reason); | |
4317 | ||
51fb61e7 JB |
4318 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA && |
4319 | sdata->vif.type != IEEE80211_IF_TYPE_IBSS) | |
f0706e82 JB |
4320 | return -EINVAL; |
4321 | ||
4322 | ieee80211_send_deauth(dev, ifsta, reason); | |
4323 | ieee80211_set_disassoc(dev, ifsta, 1); | |
4324 | return 0; | |
4325 | } | |
4326 | ||
4327 | ||
4328 | int ieee80211_sta_disassociate(struct net_device *dev, u16 reason) | |
4329 | { | |
4330 | struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev); | |
4331 | struct ieee80211_if_sta *ifsta = &sdata->u.sta; | |
4332 | ||
4333 | printk(KERN_DEBUG "%s: disassociate(reason=%d)\n", | |
4334 | dev->name, reason); | |
4335 | ||
51fb61e7 | 4336 | if (sdata->vif.type != IEEE80211_IF_TYPE_STA) |
f0706e82 JB |
4337 | return -EINVAL; |
4338 | ||
d6f2da5b | 4339 | if (!(ifsta->flags & IEEE80211_STA_ASSOCIATED)) |
f0706e82 JB |
4340 | return -1; |
4341 | ||
4342 | ieee80211_send_disassoc(dev, ifsta, reason); | |
4343 | ieee80211_set_disassoc(dev, ifsta, 0); | |
4344 | return 0; | |
4345 | } | |
84363e6e MA |
4346 | |
4347 | void ieee80211_notify_mac(struct ieee80211_hw *hw, | |
4348 | enum ieee80211_notification_types notif_type) | |
4349 | { | |
4350 | struct ieee80211_local *local = hw_to_local(hw); | |
4351 | struct ieee80211_sub_if_data *sdata; | |
4352 | ||
4353 | switch (notif_type) { | |
4354 | case IEEE80211_NOTIFY_RE_ASSOC: | |
4355 | rcu_read_lock(); | |
4356 | list_for_each_entry_rcu(sdata, &local->interfaces, list) { | |
4357 | ||
4358 | if (sdata->vif.type == IEEE80211_IF_TYPE_STA) { | |
4359 | ieee80211_sta_req_auth(sdata->dev, | |
4360 | &sdata->u.sta); | |
4361 | } | |
4362 | ||
4363 | } | |
4364 | rcu_read_unlock(); | |
4365 | break; | |
4366 | } | |
4367 | } | |
4368 | EXPORT_SYMBOL(ieee80211_notify_mac); |