mac80211: declare ieee80211_ave_rssi as EXPORT
[linux-block.git] / net / wireless / nl80211.c
CommitLineData
55682965
JB
1/*
2 * This is the new netlink-based wireless configuration interface.
3 *
026331c4 4 * Copyright 2006-2010 Johannes Berg <johannes@sipsolutions.net>
55682965
JB
5 */
6
7#include <linux/if.h>
8#include <linux/module.h>
9#include <linux/err.h>
5a0e3ad6 10#include <linux/slab.h>
55682965
JB
11#include <linux/list.h>
12#include <linux/if_ether.h>
13#include <linux/ieee80211.h>
14#include <linux/nl80211.h>
15#include <linux/rtnetlink.h>
16#include <linux/netlink.h>
2a519311 17#include <linux/etherdevice.h>
463d0183 18#include <net/net_namespace.h>
55682965
JB
19#include <net/genetlink.h>
20#include <net/cfg80211.h>
463d0183 21#include <net/sock.h>
55682965
JB
22#include "core.h"
23#include "nl80211.h"
b2e1b302 24#include "reg.h"
55682965 25
5fb628e9
JM
26static bool nl80211_valid_auth_type(enum nl80211_auth_type auth_type);
27static int nl80211_crypto_settings(struct cfg80211_registered_device *rdev,
28 struct genl_info *info,
29 struct cfg80211_crypto_settings *settings,
30 int cipher_limit);
31
4c476991
JB
32static int nl80211_pre_doit(struct genl_ops *ops, struct sk_buff *skb,
33 struct genl_info *info);
34static void nl80211_post_doit(struct genl_ops *ops, struct sk_buff *skb,
35 struct genl_info *info);
36
55682965
JB
37/* the netlink family */
38static struct genl_family nl80211_fam = {
39 .id = GENL_ID_GENERATE, /* don't bother with a hardcoded ID */
40 .name = "nl80211", /* have users key off the name instead */
41 .hdrsize = 0, /* no private header */
42 .version = 1, /* no particular meaning now */
43 .maxattr = NL80211_ATTR_MAX,
463d0183 44 .netnsok = true,
4c476991
JB
45 .pre_doit = nl80211_pre_doit,
46 .post_doit = nl80211_post_doit,
55682965
JB
47};
48
79c97e97 49/* internal helper: get rdev and dev */
00918d33
JB
50static int get_rdev_dev_by_ifindex(struct net *netns, struct nlattr **attrs,
51 struct cfg80211_registered_device **rdev,
52 struct net_device **dev)
55682965
JB
53{
54 int ifindex;
55
bba95fef 56 if (!attrs[NL80211_ATTR_IFINDEX])
55682965
JB
57 return -EINVAL;
58
bba95fef 59 ifindex = nla_get_u32(attrs[NL80211_ATTR_IFINDEX]);
00918d33 60 *dev = dev_get_by_index(netns, ifindex);
55682965
JB
61 if (!*dev)
62 return -ENODEV;
63
00918d33 64 *rdev = cfg80211_get_dev_from_ifindex(netns, ifindex);
79c97e97 65 if (IS_ERR(*rdev)) {
55682965 66 dev_put(*dev);
79c97e97 67 return PTR_ERR(*rdev);
55682965
JB
68 }
69
70 return 0;
71}
72
73/* policy for the attributes */
b54452b0 74static const struct nla_policy nl80211_policy[NL80211_ATTR_MAX+1] = {
55682965
JB
75 [NL80211_ATTR_WIPHY] = { .type = NLA_U32 },
76 [NL80211_ATTR_WIPHY_NAME] = { .type = NLA_NUL_STRING,
079e24ed 77 .len = 20-1 },
31888487 78 [NL80211_ATTR_WIPHY_TXQ_PARAMS] = { .type = NLA_NESTED },
72bdcf34 79 [NL80211_ATTR_WIPHY_FREQ] = { .type = NLA_U32 },
094d05dc 80 [NL80211_ATTR_WIPHY_CHANNEL_TYPE] = { .type = NLA_U32 },
b9a5f8ca
JM
81 [NL80211_ATTR_WIPHY_RETRY_SHORT] = { .type = NLA_U8 },
82 [NL80211_ATTR_WIPHY_RETRY_LONG] = { .type = NLA_U8 },
83 [NL80211_ATTR_WIPHY_FRAG_THRESHOLD] = { .type = NLA_U32 },
84 [NL80211_ATTR_WIPHY_RTS_THRESHOLD] = { .type = NLA_U32 },
81077e82 85 [NL80211_ATTR_WIPHY_COVERAGE_CLASS] = { .type = NLA_U8 },
55682965
JB
86
87 [NL80211_ATTR_IFTYPE] = { .type = NLA_U32 },
88 [NL80211_ATTR_IFINDEX] = { .type = NLA_U32 },
89 [NL80211_ATTR_IFNAME] = { .type = NLA_NUL_STRING, .len = IFNAMSIZ-1 },
41ade00f 90
e007b857
EP
91 [NL80211_ATTR_MAC] = { .len = ETH_ALEN },
92 [NL80211_ATTR_PREV_BSSID] = { .len = ETH_ALEN },
41ade00f 93
b9454e83 94 [NL80211_ATTR_KEY] = { .type = NLA_NESTED, },
41ade00f
JB
95 [NL80211_ATTR_KEY_DATA] = { .type = NLA_BINARY,
96 .len = WLAN_MAX_KEY_LEN },
97 [NL80211_ATTR_KEY_IDX] = { .type = NLA_U8 },
98 [NL80211_ATTR_KEY_CIPHER] = { .type = NLA_U32 },
99 [NL80211_ATTR_KEY_DEFAULT] = { .type = NLA_FLAG },
81962267 100 [NL80211_ATTR_KEY_SEQ] = { .type = NLA_BINARY, .len = 16 },
e31b8213 101 [NL80211_ATTR_KEY_TYPE] = { .type = NLA_U32 },
ed1b6cc7
JB
102
103 [NL80211_ATTR_BEACON_INTERVAL] = { .type = NLA_U32 },
104 [NL80211_ATTR_DTIM_PERIOD] = { .type = NLA_U32 },
105 [NL80211_ATTR_BEACON_HEAD] = { .type = NLA_BINARY,
106 .len = IEEE80211_MAX_DATA_LEN },
107 [NL80211_ATTR_BEACON_TAIL] = { .type = NLA_BINARY,
108 .len = IEEE80211_MAX_DATA_LEN },
5727ef1b
JB
109 [NL80211_ATTR_STA_AID] = { .type = NLA_U16 },
110 [NL80211_ATTR_STA_FLAGS] = { .type = NLA_NESTED },
111 [NL80211_ATTR_STA_LISTEN_INTERVAL] = { .type = NLA_U16 },
112 [NL80211_ATTR_STA_SUPPORTED_RATES] = { .type = NLA_BINARY,
113 .len = NL80211_MAX_SUPP_RATES },
2ec600d6 114 [NL80211_ATTR_STA_PLINK_ACTION] = { .type = NLA_U8 },
5727ef1b 115 [NL80211_ATTR_STA_VLAN] = { .type = NLA_U32 },
0a9542ee 116 [NL80211_ATTR_MNTR_FLAGS] = { /* NLA_NESTED can't be empty */ },
2ec600d6
LCC
117 [NL80211_ATTR_MESH_ID] = { .type = NLA_BINARY,
118 .len = IEEE80211_MAX_MESH_ID_LEN },
119 [NL80211_ATTR_MPATH_NEXT_HOP] = { .type = NLA_U32 },
9f1ba906 120
b2e1b302
LR
121 [NL80211_ATTR_REG_ALPHA2] = { .type = NLA_STRING, .len = 2 },
122 [NL80211_ATTR_REG_RULES] = { .type = NLA_NESTED },
123
9f1ba906
JM
124 [NL80211_ATTR_BSS_CTS_PROT] = { .type = NLA_U8 },
125 [NL80211_ATTR_BSS_SHORT_PREAMBLE] = { .type = NLA_U8 },
126 [NL80211_ATTR_BSS_SHORT_SLOT_TIME] = { .type = NLA_U8 },
90c97a04
JM
127 [NL80211_ATTR_BSS_BASIC_RATES] = { .type = NLA_BINARY,
128 .len = NL80211_MAX_SUPP_RATES },
50b12f59 129 [NL80211_ATTR_BSS_HT_OPMODE] = { .type = NLA_U16 },
36aedc90 130
24bdd9f4 131 [NL80211_ATTR_MESH_CONFIG] = { .type = NLA_NESTED },
15d5dda6 132 [NL80211_ATTR_SUPPORT_MESH_AUTH] = { .type = NLA_FLAG },
93da9cc1 133
6c739419 134 [NL80211_ATTR_HT_CAPABILITY] = { .len = NL80211_HT_CAPABILITY_LEN },
9aed3cc1
JM
135
136 [NL80211_ATTR_MGMT_SUBTYPE] = { .type = NLA_U8 },
137 [NL80211_ATTR_IE] = { .type = NLA_BINARY,
138 .len = IEEE80211_MAX_DATA_LEN },
2a519311
JB
139 [NL80211_ATTR_SCAN_FREQUENCIES] = { .type = NLA_NESTED },
140 [NL80211_ATTR_SCAN_SSIDS] = { .type = NLA_NESTED },
636a5d36
JM
141
142 [NL80211_ATTR_SSID] = { .type = NLA_BINARY,
143 .len = IEEE80211_MAX_SSID_LEN },
144 [NL80211_ATTR_AUTH_TYPE] = { .type = NLA_U32 },
145 [NL80211_ATTR_REASON_CODE] = { .type = NLA_U16 },
04a773ad 146 [NL80211_ATTR_FREQ_FIXED] = { .type = NLA_FLAG },
1965c853 147 [NL80211_ATTR_TIMED_OUT] = { .type = NLA_FLAG },
dc6382ce 148 [NL80211_ATTR_USE_MFP] = { .type = NLA_U32 },
eccb8e8f
JB
149 [NL80211_ATTR_STA_FLAGS2] = {
150 .len = sizeof(struct nl80211_sta_flag_update),
151 },
3f77316c 152 [NL80211_ATTR_CONTROL_PORT] = { .type = NLA_FLAG },
c0692b8f
JB
153 [NL80211_ATTR_CONTROL_PORT_ETHERTYPE] = { .type = NLA_U16 },
154 [NL80211_ATTR_CONTROL_PORT_NO_ENCRYPT] = { .type = NLA_FLAG },
b23aa676
SO
155 [NL80211_ATTR_PRIVACY] = { .type = NLA_FLAG },
156 [NL80211_ATTR_CIPHER_SUITE_GROUP] = { .type = NLA_U32 },
157 [NL80211_ATTR_WPA_VERSIONS] = { .type = NLA_U32 },
463d0183 158 [NL80211_ATTR_PID] = { .type = NLA_U32 },
8b787643 159 [NL80211_ATTR_4ADDR] = { .type = NLA_U8 },
67fbb16b
SO
160 [NL80211_ATTR_PMKID] = { .type = NLA_BINARY,
161 .len = WLAN_PMKID_LEN },
9588bbd5
JM
162 [NL80211_ATTR_DURATION] = { .type = NLA_U32 },
163 [NL80211_ATTR_COOKIE] = { .type = NLA_U64 },
13ae75b1 164 [NL80211_ATTR_TX_RATES] = { .type = NLA_NESTED },
026331c4
JM
165 [NL80211_ATTR_FRAME] = { .type = NLA_BINARY,
166 .len = IEEE80211_MAX_DATA_LEN },
167 [NL80211_ATTR_FRAME_MATCH] = { .type = NLA_BINARY, },
ffb9eb3d 168 [NL80211_ATTR_PS_STATE] = { .type = NLA_U32 },
d6dc1a38 169 [NL80211_ATTR_CQM] = { .type = NLA_NESTED, },
d5cdfacb 170 [NL80211_ATTR_LOCAL_STATE_CHANGE] = { .type = NLA_FLAG },
fd8aaaf3 171 [NL80211_ATTR_AP_ISOLATE] = { .type = NLA_U8 },
98d2ff8b
JO
172 [NL80211_ATTR_WIPHY_TX_POWER_SETTING] = { .type = NLA_U32 },
173 [NL80211_ATTR_WIPHY_TX_POWER_LEVEL] = { .type = NLA_U32 },
2e161f78 174 [NL80211_ATTR_FRAME_TYPE] = { .type = NLA_U16 },
afe0cbf8
BR
175 [NL80211_ATTR_WIPHY_ANTENNA_TX] = { .type = NLA_U32 },
176 [NL80211_ATTR_WIPHY_ANTENNA_RX] = { .type = NLA_U32 },
885a46d0 177 [NL80211_ATTR_MCAST_RATE] = { .type = NLA_U32 },
f7ca38df 178 [NL80211_ATTR_OFFCHANNEL_TX_OK] = { .type = NLA_FLAG },
dbd2fd65 179 [NL80211_ATTR_KEY_DEFAULT_TYPES] = { .type = NLA_NESTED },
ff1b6e69 180 [NL80211_ATTR_WOWLAN_TRIGGERS] = { .type = NLA_NESTED },
9c3990aa 181 [NL80211_ATTR_STA_PLINK_STATE] = { .type = NLA_U8 },
bbe6ad6d 182 [NL80211_ATTR_SCHED_SCAN_INTERVAL] = { .type = NLA_U32 },
e5497d76 183 [NL80211_ATTR_REKEY_DATA] = { .type = NLA_NESTED },
34850ab2 184 [NL80211_ATTR_SCAN_SUPP_RATES] = { .type = NLA_NESTED },
32e9de84 185 [NL80211_ATTR_HIDDEN_SSID] = { .type = NLA_U32 },
9946ecfb
JM
186 [NL80211_ATTR_IE_PROBE_RESP] = { .type = NLA_BINARY,
187 .len = IEEE80211_MAX_DATA_LEN },
188 [NL80211_ATTR_IE_ASSOC_RESP] = { .type = NLA_BINARY,
189 .len = IEEE80211_MAX_DATA_LEN },
f4b34b55 190 [NL80211_ATTR_ROAM_SUPPORT] = { .type = NLA_FLAG },
a1f1c21c 191 [NL80211_ATTR_SCHED_SCAN_MATCH] = { .type = NLA_NESTED },
e9f935e3 192 [NL80211_ATTR_TX_NO_CCK_RATE] = { .type = NLA_FLAG },
109086ce
AN
193 [NL80211_ATTR_TDLS_ACTION] = { .type = NLA_U8 },
194 [NL80211_ATTR_TDLS_DIALOG_TOKEN] = { .type = NLA_U8 },
195 [NL80211_ATTR_TDLS_OPERATION] = { .type = NLA_U8 },
196 [NL80211_ATTR_TDLS_SUPPORT] = { .type = NLA_FLAG },
197 [NL80211_ATTR_TDLS_EXTERNAL_SETUP] = { .type = NLA_FLAG },
e247bd90 198 [NL80211_ATTR_DONT_WAIT_FOR_ACK] = { .type = NLA_FLAG },
00f740e1
AN
199 [NL80211_ATTR_PROBE_RESP] = { .type = NLA_BINARY,
200 .len = IEEE80211_MAX_DATA_LEN },
8b60b078 201 [NL80211_ATTR_DFS_REGION] = { .type = NLA_U8 },
7e7c8926
BG
202 [NL80211_ATTR_DISABLE_HT] = { .type = NLA_FLAG },
203 [NL80211_ATTR_HT_CAPABILITY_MASK] = {
204 .len = NL80211_HT_CAPABILITY_LEN
205 },
1d9d9213 206 [NL80211_ATTR_NOACK_MAP] = { .type = NLA_U16 },
1b658f11 207 [NL80211_ATTR_INACTIVITY_TIMEOUT] = { .type = NLA_U16 },
4486ea98 208 [NL80211_ATTR_BG_SCAN_PERIOD] = { .type = NLA_U16 },
55682965
JB
209};
210
e31b8213 211/* policy for the key attributes */
b54452b0 212static const struct nla_policy nl80211_key_policy[NL80211_KEY_MAX + 1] = {
fffd0934 213 [NL80211_KEY_DATA] = { .type = NLA_BINARY, .len = WLAN_MAX_KEY_LEN },
b9454e83
JB
214 [NL80211_KEY_IDX] = { .type = NLA_U8 },
215 [NL80211_KEY_CIPHER] = { .type = NLA_U32 },
81962267 216 [NL80211_KEY_SEQ] = { .type = NLA_BINARY, .len = 16 },
b9454e83
JB
217 [NL80211_KEY_DEFAULT] = { .type = NLA_FLAG },
218 [NL80211_KEY_DEFAULT_MGMT] = { .type = NLA_FLAG },
e31b8213 219 [NL80211_KEY_TYPE] = { .type = NLA_U32 },
dbd2fd65
JB
220 [NL80211_KEY_DEFAULT_TYPES] = { .type = NLA_NESTED },
221};
222
223/* policy for the key default flags */
224static const struct nla_policy
225nl80211_key_default_policy[NUM_NL80211_KEY_DEFAULT_TYPES] = {
226 [NL80211_KEY_DEFAULT_TYPE_UNICAST] = { .type = NLA_FLAG },
227 [NL80211_KEY_DEFAULT_TYPE_MULTICAST] = { .type = NLA_FLAG },
b9454e83
JB
228};
229
ff1b6e69
JB
230/* policy for WoWLAN attributes */
231static const struct nla_policy
232nl80211_wowlan_policy[NUM_NL80211_WOWLAN_TRIG] = {
233 [NL80211_WOWLAN_TRIG_ANY] = { .type = NLA_FLAG },
234 [NL80211_WOWLAN_TRIG_DISCONNECT] = { .type = NLA_FLAG },
235 [NL80211_WOWLAN_TRIG_MAGIC_PKT] = { .type = NLA_FLAG },
236 [NL80211_WOWLAN_TRIG_PKT_PATTERN] = { .type = NLA_NESTED },
77dbbb13
JB
237 [NL80211_WOWLAN_TRIG_GTK_REKEY_FAILURE] = { .type = NLA_FLAG },
238 [NL80211_WOWLAN_TRIG_EAP_IDENT_REQUEST] = { .type = NLA_FLAG },
239 [NL80211_WOWLAN_TRIG_4WAY_HANDSHAKE] = { .type = NLA_FLAG },
240 [NL80211_WOWLAN_TRIG_RFKILL_RELEASE] = { .type = NLA_FLAG },
ff1b6e69
JB
241};
242
e5497d76
JB
243/* policy for GTK rekey offload attributes */
244static const struct nla_policy
245nl80211_rekey_policy[NUM_NL80211_REKEY_DATA] = {
246 [NL80211_REKEY_DATA_KEK] = { .len = NL80211_KEK_LEN },
247 [NL80211_REKEY_DATA_KCK] = { .len = NL80211_KCK_LEN },
248 [NL80211_REKEY_DATA_REPLAY_CTR] = { .len = NL80211_REPLAY_CTR_LEN },
249};
250
a1f1c21c
LC
251static const struct nla_policy
252nl80211_match_policy[NL80211_SCHED_SCAN_MATCH_ATTR_MAX + 1] = {
253 [NL80211_ATTR_SCHED_SCAN_MATCH_SSID] = { .type = NLA_BINARY,
254 .len = IEEE80211_MAX_SSID_LEN },
255};
256
a043897a
HS
257/* ifidx get helper */
258static int nl80211_get_ifidx(struct netlink_callback *cb)
259{
260 int res;
261
262 res = nlmsg_parse(cb->nlh, GENL_HDRLEN + nl80211_fam.hdrsize,
263 nl80211_fam.attrbuf, nl80211_fam.maxattr,
264 nl80211_policy);
265 if (res)
266 return res;
267
268 if (!nl80211_fam.attrbuf[NL80211_ATTR_IFINDEX])
269 return -EINVAL;
270
271 res = nla_get_u32(nl80211_fam.attrbuf[NL80211_ATTR_IFINDEX]);
272 if (!res)
273 return -EINVAL;
274 return res;
275}
276
67748893
JB
277static int nl80211_prepare_netdev_dump(struct sk_buff *skb,
278 struct netlink_callback *cb,
279 struct cfg80211_registered_device **rdev,
280 struct net_device **dev)
281{
282 int ifidx = cb->args[0];
283 int err;
284
285 if (!ifidx)
286 ifidx = nl80211_get_ifidx(cb);
287 if (ifidx < 0)
288 return ifidx;
289
290 cb->args[0] = ifidx;
291
292 rtnl_lock();
293
294 *dev = __dev_get_by_index(sock_net(skb->sk), ifidx);
295 if (!*dev) {
296 err = -ENODEV;
297 goto out_rtnl;
298 }
299
300 *rdev = cfg80211_get_dev_from_ifindex(sock_net(skb->sk), ifidx);
3cc25e51
FF
301 if (IS_ERR(*rdev)) {
302 err = PTR_ERR(*rdev);
67748893
JB
303 goto out_rtnl;
304 }
305
306 return 0;
307 out_rtnl:
308 rtnl_unlock();
309 return err;
310}
311
312static void nl80211_finish_netdev_dump(struct cfg80211_registered_device *rdev)
313{
314 cfg80211_unlock_rdev(rdev);
315 rtnl_unlock();
316}
317
f4a11bb0
JB
318/* IE validation */
319static bool is_valid_ie_attr(const struct nlattr *attr)
320{
321 const u8 *pos;
322 int len;
323
324 if (!attr)
325 return true;
326
327 pos = nla_data(attr);
328 len = nla_len(attr);
329
330 while (len) {
331 u8 elemlen;
332
333 if (len < 2)
334 return false;
335 len -= 2;
336
337 elemlen = pos[1];
338 if (elemlen > len)
339 return false;
340
341 len -= elemlen;
342 pos += 2 + elemlen;
343 }
344
345 return true;
346}
347
55682965
JB
348/* message building helper */
349static inline void *nl80211hdr_put(struct sk_buff *skb, u32 pid, u32 seq,
350 int flags, u8 cmd)
351{
352 /* since there is no private header just add the generic one */
353 return genlmsg_put(skb, pid, seq, &nl80211_fam, flags, cmd);
354}
355
5dab3b8a
LR
356static int nl80211_msg_put_channel(struct sk_buff *msg,
357 struct ieee80211_channel *chan)
358{
359 NLA_PUT_U32(msg, NL80211_FREQUENCY_ATTR_FREQ,
360 chan->center_freq);
361
362 if (chan->flags & IEEE80211_CHAN_DISABLED)
363 NLA_PUT_FLAG(msg, NL80211_FREQUENCY_ATTR_DISABLED);
364 if (chan->flags & IEEE80211_CHAN_PASSIVE_SCAN)
365 NLA_PUT_FLAG(msg, NL80211_FREQUENCY_ATTR_PASSIVE_SCAN);
366 if (chan->flags & IEEE80211_CHAN_NO_IBSS)
367 NLA_PUT_FLAG(msg, NL80211_FREQUENCY_ATTR_NO_IBSS);
368 if (chan->flags & IEEE80211_CHAN_RADAR)
369 NLA_PUT_FLAG(msg, NL80211_FREQUENCY_ATTR_RADAR);
370
371 NLA_PUT_U32(msg, NL80211_FREQUENCY_ATTR_MAX_TX_POWER,
372 DBM_TO_MBM(chan->max_power));
373
374 return 0;
375
376 nla_put_failure:
377 return -ENOBUFS;
378}
379
55682965
JB
380/* netlink command implementations */
381
b9454e83
JB
382struct key_parse {
383 struct key_params p;
384 int idx;
e31b8213 385 int type;
b9454e83 386 bool def, defmgmt;
dbd2fd65 387 bool def_uni, def_multi;
b9454e83
JB
388};
389
390static int nl80211_parse_key_new(struct nlattr *key, struct key_parse *k)
391{
392 struct nlattr *tb[NL80211_KEY_MAX + 1];
393 int err = nla_parse_nested(tb, NL80211_KEY_MAX, key,
394 nl80211_key_policy);
395 if (err)
396 return err;
397
398 k->def = !!tb[NL80211_KEY_DEFAULT];
399 k->defmgmt = !!tb[NL80211_KEY_DEFAULT_MGMT];
400
dbd2fd65
JB
401 if (k->def) {
402 k->def_uni = true;
403 k->def_multi = true;
404 }
405 if (k->defmgmt)
406 k->def_multi = true;
407
b9454e83
JB
408 if (tb[NL80211_KEY_IDX])
409 k->idx = nla_get_u8(tb[NL80211_KEY_IDX]);
410
411 if (tb[NL80211_KEY_DATA]) {
412 k->p.key = nla_data(tb[NL80211_KEY_DATA]);
413 k->p.key_len = nla_len(tb[NL80211_KEY_DATA]);
414 }
415
416 if (tb[NL80211_KEY_SEQ]) {
417 k->p.seq = nla_data(tb[NL80211_KEY_SEQ]);
418 k->p.seq_len = nla_len(tb[NL80211_KEY_SEQ]);
419 }
420
421 if (tb[NL80211_KEY_CIPHER])
422 k->p.cipher = nla_get_u32(tb[NL80211_KEY_CIPHER]);
423
e31b8213
JB
424 if (tb[NL80211_KEY_TYPE]) {
425 k->type = nla_get_u32(tb[NL80211_KEY_TYPE]);
426 if (k->type < 0 || k->type >= NUM_NL80211_KEYTYPES)
427 return -EINVAL;
428 }
429
dbd2fd65
JB
430 if (tb[NL80211_KEY_DEFAULT_TYPES]) {
431 struct nlattr *kdt[NUM_NL80211_KEY_DEFAULT_TYPES];
2da8f419
JB
432 err = nla_parse_nested(kdt, NUM_NL80211_KEY_DEFAULT_TYPES - 1,
433 tb[NL80211_KEY_DEFAULT_TYPES],
434 nl80211_key_default_policy);
dbd2fd65
JB
435 if (err)
436 return err;
437
438 k->def_uni = kdt[NL80211_KEY_DEFAULT_TYPE_UNICAST];
439 k->def_multi = kdt[NL80211_KEY_DEFAULT_TYPE_MULTICAST];
440 }
441
b9454e83
JB
442 return 0;
443}
444
445static int nl80211_parse_key_old(struct genl_info *info, struct key_parse *k)
446{
447 if (info->attrs[NL80211_ATTR_KEY_DATA]) {
448 k->p.key = nla_data(info->attrs[NL80211_ATTR_KEY_DATA]);
449 k->p.key_len = nla_len(info->attrs[NL80211_ATTR_KEY_DATA]);
450 }
451
452 if (info->attrs[NL80211_ATTR_KEY_SEQ]) {
453 k->p.seq = nla_data(info->attrs[NL80211_ATTR_KEY_SEQ]);
454 k->p.seq_len = nla_len(info->attrs[NL80211_ATTR_KEY_SEQ]);
455 }
456
457 if (info->attrs[NL80211_ATTR_KEY_IDX])
458 k->idx = nla_get_u8(info->attrs[NL80211_ATTR_KEY_IDX]);
459
460 if (info->attrs[NL80211_ATTR_KEY_CIPHER])
461 k->p.cipher = nla_get_u32(info->attrs[NL80211_ATTR_KEY_CIPHER]);
462
463 k->def = !!info->attrs[NL80211_ATTR_KEY_DEFAULT];
464 k->defmgmt = !!info->attrs[NL80211_ATTR_KEY_DEFAULT_MGMT];
465
dbd2fd65
JB
466 if (k->def) {
467 k->def_uni = true;
468 k->def_multi = true;
469 }
470 if (k->defmgmt)
471 k->def_multi = true;
472
e31b8213
JB
473 if (info->attrs[NL80211_ATTR_KEY_TYPE]) {
474 k->type = nla_get_u32(info->attrs[NL80211_ATTR_KEY_TYPE]);
475 if (k->type < 0 || k->type >= NUM_NL80211_KEYTYPES)
476 return -EINVAL;
477 }
478
dbd2fd65
JB
479 if (info->attrs[NL80211_ATTR_KEY_DEFAULT_TYPES]) {
480 struct nlattr *kdt[NUM_NL80211_KEY_DEFAULT_TYPES];
481 int err = nla_parse_nested(
482 kdt, NUM_NL80211_KEY_DEFAULT_TYPES - 1,
483 info->attrs[NL80211_ATTR_KEY_DEFAULT_TYPES],
484 nl80211_key_default_policy);
485 if (err)
486 return err;
487
488 k->def_uni = kdt[NL80211_KEY_DEFAULT_TYPE_UNICAST];
489 k->def_multi = kdt[NL80211_KEY_DEFAULT_TYPE_MULTICAST];
490 }
491
b9454e83
JB
492 return 0;
493}
494
495static int nl80211_parse_key(struct genl_info *info, struct key_parse *k)
496{
497 int err;
498
499 memset(k, 0, sizeof(*k));
500 k->idx = -1;
e31b8213 501 k->type = -1;
b9454e83
JB
502
503 if (info->attrs[NL80211_ATTR_KEY])
504 err = nl80211_parse_key_new(info->attrs[NL80211_ATTR_KEY], k);
505 else
506 err = nl80211_parse_key_old(info, k);
507
508 if (err)
509 return err;
510
511 if (k->def && k->defmgmt)
512 return -EINVAL;
513
dbd2fd65
JB
514 if (k->defmgmt) {
515 if (k->def_uni || !k->def_multi)
516 return -EINVAL;
517 }
518
b9454e83
JB
519 if (k->idx != -1) {
520 if (k->defmgmt) {
521 if (k->idx < 4 || k->idx > 5)
522 return -EINVAL;
523 } else if (k->def) {
524 if (k->idx < 0 || k->idx > 3)
525 return -EINVAL;
526 } else {
527 if (k->idx < 0 || k->idx > 5)
528 return -EINVAL;
529 }
530 }
531
532 return 0;
533}
534
fffd0934
JB
535static struct cfg80211_cached_keys *
536nl80211_parse_connkeys(struct cfg80211_registered_device *rdev,
537 struct nlattr *keys)
538{
539 struct key_parse parse;
540 struct nlattr *key;
541 struct cfg80211_cached_keys *result;
542 int rem, err, def = 0;
543
544 result = kzalloc(sizeof(*result), GFP_KERNEL);
545 if (!result)
546 return ERR_PTR(-ENOMEM);
547
548 result->def = -1;
549 result->defmgmt = -1;
550
551 nla_for_each_nested(key, keys, rem) {
552 memset(&parse, 0, sizeof(parse));
553 parse.idx = -1;
554
555 err = nl80211_parse_key_new(key, &parse);
556 if (err)
557 goto error;
558 err = -EINVAL;
559 if (!parse.p.key)
560 goto error;
561 if (parse.idx < 0 || parse.idx > 4)
562 goto error;
563 if (parse.def) {
564 if (def)
565 goto error;
566 def = 1;
567 result->def = parse.idx;
dbd2fd65
JB
568 if (!parse.def_uni || !parse.def_multi)
569 goto error;
fffd0934
JB
570 } else if (parse.defmgmt)
571 goto error;
572 err = cfg80211_validate_key_settings(rdev, &parse.p,
e31b8213 573 parse.idx, false, NULL);
fffd0934
JB
574 if (err)
575 goto error;
576 result->params[parse.idx].cipher = parse.p.cipher;
577 result->params[parse.idx].key_len = parse.p.key_len;
578 result->params[parse.idx].key = result->data[parse.idx];
579 memcpy(result->data[parse.idx], parse.p.key, parse.p.key_len);
580 }
581
582 return result;
583 error:
584 kfree(result);
585 return ERR_PTR(err);
586}
587
588static int nl80211_key_allowed(struct wireless_dev *wdev)
589{
590 ASSERT_WDEV_LOCK(wdev);
591
fffd0934
JB
592 switch (wdev->iftype) {
593 case NL80211_IFTYPE_AP:
594 case NL80211_IFTYPE_AP_VLAN:
074ac8df 595 case NL80211_IFTYPE_P2P_GO:
ff973af7 596 case NL80211_IFTYPE_MESH_POINT:
fffd0934
JB
597 break;
598 case NL80211_IFTYPE_ADHOC:
599 if (!wdev->current_bss)
600 return -ENOLINK;
601 break;
602 case NL80211_IFTYPE_STATION:
074ac8df 603 case NL80211_IFTYPE_P2P_CLIENT:
fffd0934
JB
604 if (wdev->sme_state != CFG80211_SME_CONNECTED)
605 return -ENOLINK;
606 break;
607 default:
608 return -EINVAL;
609 }
610
611 return 0;
612}
613
7527a782
JB
614static int nl80211_put_iftypes(struct sk_buff *msg, u32 attr, u16 ifmodes)
615{
616 struct nlattr *nl_modes = nla_nest_start(msg, attr);
617 int i;
618
619 if (!nl_modes)
620 goto nla_put_failure;
621
622 i = 0;
623 while (ifmodes) {
624 if (ifmodes & 1)
625 NLA_PUT_FLAG(msg, i);
626 ifmodes >>= 1;
627 i++;
628 }
629
630 nla_nest_end(msg, nl_modes);
631 return 0;
632
633nla_put_failure:
634 return -ENOBUFS;
635}
636
637static int nl80211_put_iface_combinations(struct wiphy *wiphy,
638 struct sk_buff *msg)
639{
640 struct nlattr *nl_combis;
641 int i, j;
642
643 nl_combis = nla_nest_start(msg,
644 NL80211_ATTR_INTERFACE_COMBINATIONS);
645 if (!nl_combis)
646 goto nla_put_failure;
647
648 for (i = 0; i < wiphy->n_iface_combinations; i++) {
649 const struct ieee80211_iface_combination *c;
650 struct nlattr *nl_combi, *nl_limits;
651
652 c = &wiphy->iface_combinations[i];
653
654 nl_combi = nla_nest_start(msg, i + 1);
655 if (!nl_combi)
656 goto nla_put_failure;
657
658 nl_limits = nla_nest_start(msg, NL80211_IFACE_COMB_LIMITS);
659 if (!nl_limits)
660 goto nla_put_failure;
661
662 for (j = 0; j < c->n_limits; j++) {
663 struct nlattr *nl_limit;
664
665 nl_limit = nla_nest_start(msg, j + 1);
666 if (!nl_limit)
667 goto nla_put_failure;
668 NLA_PUT_U32(msg, NL80211_IFACE_LIMIT_MAX,
669 c->limits[j].max);
670 if (nl80211_put_iftypes(msg, NL80211_IFACE_LIMIT_TYPES,
671 c->limits[j].types))
672 goto nla_put_failure;
673 nla_nest_end(msg, nl_limit);
674 }
675
676 nla_nest_end(msg, nl_limits);
677
678 if (c->beacon_int_infra_match)
679 NLA_PUT_FLAG(msg,
680 NL80211_IFACE_COMB_STA_AP_BI_MATCH);
681 NLA_PUT_U32(msg, NL80211_IFACE_COMB_NUM_CHANNELS,
682 c->num_different_channels);
683 NLA_PUT_U32(msg, NL80211_IFACE_COMB_MAXNUM,
684 c->max_interfaces);
685
686 nla_nest_end(msg, nl_combi);
687 }
688
689 nla_nest_end(msg, nl_combis);
690
691 return 0;
692nla_put_failure:
693 return -ENOBUFS;
694}
695
55682965
JB
696static int nl80211_send_wiphy(struct sk_buff *msg, u32 pid, u32 seq, int flags,
697 struct cfg80211_registered_device *dev)
698{
699 void *hdr;
ee688b00
JB
700 struct nlattr *nl_bands, *nl_band;
701 struct nlattr *nl_freqs, *nl_freq;
702 struct nlattr *nl_rates, *nl_rate;
8fdc621d 703 struct nlattr *nl_cmds;
ee688b00
JB
704 enum ieee80211_band band;
705 struct ieee80211_channel *chan;
706 struct ieee80211_rate *rate;
707 int i;
2e161f78
JB
708 const struct ieee80211_txrx_stypes *mgmt_stypes =
709 dev->wiphy.mgmt_stypes;
55682965
JB
710
711 hdr = nl80211hdr_put(msg, pid, seq, flags, NL80211_CMD_NEW_WIPHY);
712 if (!hdr)
713 return -1;
714
b5850a7a 715 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, dev->wiphy_idx);
55682965 716 NLA_PUT_STRING(msg, NL80211_ATTR_WIPHY_NAME, wiphy_name(&dev->wiphy));
b9a5f8ca 717
f5ea9120
JB
718 NLA_PUT_U32(msg, NL80211_ATTR_GENERATION,
719 cfg80211_rdev_list_generation);
720
b9a5f8ca
JM
721 NLA_PUT_U8(msg, NL80211_ATTR_WIPHY_RETRY_SHORT,
722 dev->wiphy.retry_short);
723 NLA_PUT_U8(msg, NL80211_ATTR_WIPHY_RETRY_LONG,
724 dev->wiphy.retry_long);
725 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FRAG_THRESHOLD,
726 dev->wiphy.frag_threshold);
727 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_RTS_THRESHOLD,
728 dev->wiphy.rts_threshold);
81077e82
LT
729 NLA_PUT_U8(msg, NL80211_ATTR_WIPHY_COVERAGE_CLASS,
730 dev->wiphy.coverage_class);
2a519311
JB
731 NLA_PUT_U8(msg, NL80211_ATTR_MAX_NUM_SCAN_SSIDS,
732 dev->wiphy.max_scan_ssids);
93b6aa69
LC
733 NLA_PUT_U8(msg, NL80211_ATTR_MAX_NUM_SCHED_SCAN_SSIDS,
734 dev->wiphy.max_sched_scan_ssids);
18a83659
JB
735 NLA_PUT_U16(msg, NL80211_ATTR_MAX_SCAN_IE_LEN,
736 dev->wiphy.max_scan_ie_len);
5a865bad
LC
737 NLA_PUT_U16(msg, NL80211_ATTR_MAX_SCHED_SCAN_IE_LEN,
738 dev->wiphy.max_sched_scan_ie_len);
a1f1c21c
LC
739 NLA_PUT_U8(msg, NL80211_ATTR_MAX_MATCH_SETS,
740 dev->wiphy.max_match_sets);
ee688b00 741
e31b8213
JB
742 if (dev->wiphy.flags & WIPHY_FLAG_IBSS_RSN)
743 NLA_PUT_FLAG(msg, NL80211_ATTR_SUPPORT_IBSS_RSN);
15d5dda6
JC
744 if (dev->wiphy.flags & WIPHY_FLAG_MESH_AUTH)
745 NLA_PUT_FLAG(msg, NL80211_ATTR_SUPPORT_MESH_AUTH);
cedb5412
EP
746 if (dev->wiphy.flags & WIPHY_FLAG_AP_UAPSD)
747 NLA_PUT_FLAG(msg, NL80211_ATTR_SUPPORT_AP_UAPSD);
f4b34b55
VN
748 if (dev->wiphy.flags & WIPHY_FLAG_SUPPORTS_FW_ROAM)
749 NLA_PUT_FLAG(msg, NL80211_ATTR_ROAM_SUPPORT);
109086ce
AN
750 if (dev->wiphy.flags & WIPHY_FLAG_SUPPORTS_TDLS)
751 NLA_PUT_FLAG(msg, NL80211_ATTR_TDLS_SUPPORT);
752 if (dev->wiphy.flags & WIPHY_FLAG_TDLS_EXTERNAL_SETUP)
753 NLA_PUT_FLAG(msg, NL80211_ATTR_TDLS_EXTERNAL_SETUP);
f4b34b55 754
25e47c18
JB
755 NLA_PUT(msg, NL80211_ATTR_CIPHER_SUITES,
756 sizeof(u32) * dev->wiphy.n_cipher_suites,
757 dev->wiphy.cipher_suites);
758
67fbb16b
SO
759 NLA_PUT_U8(msg, NL80211_ATTR_MAX_NUM_PMKIDS,
760 dev->wiphy.max_num_pmkids);
761
c0692b8f
JB
762 if (dev->wiphy.flags & WIPHY_FLAG_CONTROL_PORT_PROTOCOL)
763 NLA_PUT_FLAG(msg, NL80211_ATTR_CONTROL_PORT_ETHERTYPE);
764
39fd5de4
BR
765 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_ANTENNA_AVAIL_TX,
766 dev->wiphy.available_antennas_tx);
767 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_ANTENNA_AVAIL_RX,
768 dev->wiphy.available_antennas_rx);
769
87bbbe22
AN
770 if (dev->wiphy.flags & WIPHY_FLAG_AP_PROBE_RESP_OFFLOAD)
771 NLA_PUT_U32(msg, NL80211_ATTR_PROBE_RESP_OFFLOAD,
772 dev->wiphy.probe_resp_offload);
773
7f531e03
BR
774 if ((dev->wiphy.available_antennas_tx ||
775 dev->wiphy.available_antennas_rx) && dev->ops->get_antenna) {
afe0cbf8
BR
776 u32 tx_ant = 0, rx_ant = 0;
777 int res;
778 res = dev->ops->get_antenna(&dev->wiphy, &tx_ant, &rx_ant);
779 if (!res) {
780 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_ANTENNA_TX, tx_ant);
781 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_ANTENNA_RX, rx_ant);
782 }
783 }
784
7527a782
JB
785 if (nl80211_put_iftypes(msg, NL80211_ATTR_SUPPORTED_IFTYPES,
786 dev->wiphy.interface_modes))
f59ac048
LR
787 goto nla_put_failure;
788
ee688b00
JB
789 nl_bands = nla_nest_start(msg, NL80211_ATTR_WIPHY_BANDS);
790 if (!nl_bands)
791 goto nla_put_failure;
792
793 for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
794 if (!dev->wiphy.bands[band])
795 continue;
796
797 nl_band = nla_nest_start(msg, band);
798 if (!nl_band)
799 goto nla_put_failure;
800
d51626df
JB
801 /* add HT info */
802 if (dev->wiphy.bands[band]->ht_cap.ht_supported) {
803 NLA_PUT(msg, NL80211_BAND_ATTR_HT_MCS_SET,
804 sizeof(dev->wiphy.bands[band]->ht_cap.mcs),
805 &dev->wiphy.bands[band]->ht_cap.mcs);
806 NLA_PUT_U16(msg, NL80211_BAND_ATTR_HT_CAPA,
807 dev->wiphy.bands[band]->ht_cap.cap);
808 NLA_PUT_U8(msg, NL80211_BAND_ATTR_HT_AMPDU_FACTOR,
809 dev->wiphy.bands[band]->ht_cap.ampdu_factor);
810 NLA_PUT_U8(msg, NL80211_BAND_ATTR_HT_AMPDU_DENSITY,
811 dev->wiphy.bands[band]->ht_cap.ampdu_density);
812 }
813
ee688b00
JB
814 /* add frequencies */
815 nl_freqs = nla_nest_start(msg, NL80211_BAND_ATTR_FREQS);
816 if (!nl_freqs)
817 goto nla_put_failure;
818
819 for (i = 0; i < dev->wiphy.bands[band]->n_channels; i++) {
820 nl_freq = nla_nest_start(msg, i);
821 if (!nl_freq)
822 goto nla_put_failure;
823
824 chan = &dev->wiphy.bands[band]->channels[i];
5dab3b8a
LR
825
826 if (nl80211_msg_put_channel(msg, chan))
827 goto nla_put_failure;
e2f367f2 828
ee688b00
JB
829 nla_nest_end(msg, nl_freq);
830 }
831
832 nla_nest_end(msg, nl_freqs);
833
834 /* add bitrates */
835 nl_rates = nla_nest_start(msg, NL80211_BAND_ATTR_RATES);
836 if (!nl_rates)
837 goto nla_put_failure;
838
839 for (i = 0; i < dev->wiphy.bands[band]->n_bitrates; i++) {
840 nl_rate = nla_nest_start(msg, i);
841 if (!nl_rate)
842 goto nla_put_failure;
843
844 rate = &dev->wiphy.bands[band]->bitrates[i];
845 NLA_PUT_U32(msg, NL80211_BITRATE_ATTR_RATE,
846 rate->bitrate);
847 if (rate->flags & IEEE80211_RATE_SHORT_PREAMBLE)
848 NLA_PUT_FLAG(msg,
849 NL80211_BITRATE_ATTR_2GHZ_SHORTPREAMBLE);
850
851 nla_nest_end(msg, nl_rate);
852 }
853
854 nla_nest_end(msg, nl_rates);
855
856 nla_nest_end(msg, nl_band);
857 }
858 nla_nest_end(msg, nl_bands);
859
8fdc621d
JB
860 nl_cmds = nla_nest_start(msg, NL80211_ATTR_SUPPORTED_COMMANDS);
861 if (!nl_cmds)
862 goto nla_put_failure;
863
864 i = 0;
865#define CMD(op, n) \
866 do { \
867 if (dev->ops->op) { \
868 i++; \
869 NLA_PUT_U32(msg, i, NL80211_CMD_ ## n); \
870 } \
871 } while (0)
872
873 CMD(add_virtual_intf, NEW_INTERFACE);
874 CMD(change_virtual_intf, SET_INTERFACE);
875 CMD(add_key, NEW_KEY);
8860020e 876 CMD(start_ap, START_AP);
8fdc621d
JB
877 CMD(add_station, NEW_STATION);
878 CMD(add_mpath, NEW_MPATH);
24bdd9f4 879 CMD(update_mesh_config, SET_MESH_CONFIG);
8fdc621d 880 CMD(change_bss, SET_BSS);
636a5d36
JM
881 CMD(auth, AUTHENTICATE);
882 CMD(assoc, ASSOCIATE);
883 CMD(deauth, DEAUTHENTICATE);
884 CMD(disassoc, DISASSOCIATE);
04a773ad 885 CMD(join_ibss, JOIN_IBSS);
29cbe68c 886 CMD(join_mesh, JOIN_MESH);
67fbb16b
SO
887 CMD(set_pmksa, SET_PMKSA);
888 CMD(del_pmksa, DEL_PMKSA);
889 CMD(flush_pmksa, FLUSH_PMKSA);
7c4ef712
JB
890 if (dev->wiphy.flags & WIPHY_FLAG_HAS_REMAIN_ON_CHANNEL)
891 CMD(remain_on_channel, REMAIN_ON_CHANNEL);
13ae75b1 892 CMD(set_bitrate_mask, SET_TX_BITRATE_MASK);
2e161f78 893 CMD(mgmt_tx, FRAME);
f7ca38df 894 CMD(mgmt_tx_cancel_wait, FRAME_WAIT_CANCEL);
5be83de5 895 if (dev->wiphy.flags & WIPHY_FLAG_NETNS_OK) {
463d0183
JB
896 i++;
897 NLA_PUT_U32(msg, i, NL80211_CMD_SET_WIPHY_NETNS);
898 }
f444de05 899 CMD(set_channel, SET_CHANNEL);
e8347eba 900 CMD(set_wds_peer, SET_WDS_PEER);
109086ce
AN
901 if (dev->wiphy.flags & WIPHY_FLAG_SUPPORTS_TDLS) {
902 CMD(tdls_mgmt, TDLS_MGMT);
903 CMD(tdls_oper, TDLS_OPER);
904 }
807f8a8c
LC
905 if (dev->wiphy.flags & WIPHY_FLAG_SUPPORTS_SCHED_SCAN)
906 CMD(sched_scan_start, START_SCHED_SCAN);
7f6cf311 907 CMD(probe_client, PROBE_CLIENT);
1d9d9213 908 CMD(set_noack_map, SET_NOACK_MAP);
5e760230
JB
909 if (dev->wiphy.flags & WIPHY_FLAG_REPORTS_OBSS) {
910 i++;
911 NLA_PUT_U32(msg, i, NL80211_CMD_REGISTER_BEACONS);
912 }
8fdc621d 913
4745fc09
KV
914#ifdef CONFIG_NL80211_TESTMODE
915 CMD(testmode_cmd, TESTMODE);
916#endif
917
8fdc621d 918#undef CMD
b23aa676 919
6829c878 920 if (dev->ops->connect || dev->ops->auth) {
b23aa676
SO
921 i++;
922 NLA_PUT_U32(msg, i, NL80211_CMD_CONNECT);
923 }
924
6829c878 925 if (dev->ops->disconnect || dev->ops->deauth) {
b23aa676
SO
926 i++;
927 NLA_PUT_U32(msg, i, NL80211_CMD_DISCONNECT);
928 }
929
8fdc621d
JB
930 nla_nest_end(msg, nl_cmds);
931
7c4ef712
JB
932 if (dev->ops->remain_on_channel &&
933 dev->wiphy.flags & WIPHY_FLAG_HAS_REMAIN_ON_CHANNEL)
a293911d
JB
934 NLA_PUT_U32(msg, NL80211_ATTR_MAX_REMAIN_ON_CHANNEL_DURATION,
935 dev->wiphy.max_remain_on_channel_duration);
936
7c4ef712 937 if (dev->wiphy.flags & WIPHY_FLAG_OFFCHAN_TX)
f7ca38df
JB
938 NLA_PUT_FLAG(msg, NL80211_ATTR_OFFCHANNEL_TX_OK);
939
2e161f78
JB
940 if (mgmt_stypes) {
941 u16 stypes;
942 struct nlattr *nl_ftypes, *nl_ifs;
943 enum nl80211_iftype ift;
944
945 nl_ifs = nla_nest_start(msg, NL80211_ATTR_TX_FRAME_TYPES);
946 if (!nl_ifs)
947 goto nla_put_failure;
948
949 for (ift = 0; ift < NUM_NL80211_IFTYPES; ift++) {
950 nl_ftypes = nla_nest_start(msg, ift);
951 if (!nl_ftypes)
952 goto nla_put_failure;
953 i = 0;
954 stypes = mgmt_stypes[ift].tx;
955 while (stypes) {
956 if (stypes & 1)
957 NLA_PUT_U16(msg, NL80211_ATTR_FRAME_TYPE,
958 (i << 4) | IEEE80211_FTYPE_MGMT);
959 stypes >>= 1;
960 i++;
961 }
962 nla_nest_end(msg, nl_ftypes);
963 }
964
74b70a4e
JB
965 nla_nest_end(msg, nl_ifs);
966
2e161f78
JB
967 nl_ifs = nla_nest_start(msg, NL80211_ATTR_RX_FRAME_TYPES);
968 if (!nl_ifs)
969 goto nla_put_failure;
970
971 for (ift = 0; ift < NUM_NL80211_IFTYPES; ift++) {
972 nl_ftypes = nla_nest_start(msg, ift);
973 if (!nl_ftypes)
974 goto nla_put_failure;
975 i = 0;
976 stypes = mgmt_stypes[ift].rx;
977 while (stypes) {
978 if (stypes & 1)
979 NLA_PUT_U16(msg, NL80211_ATTR_FRAME_TYPE,
980 (i << 4) | IEEE80211_FTYPE_MGMT);
981 stypes >>= 1;
982 i++;
983 }
984 nla_nest_end(msg, nl_ftypes);
985 }
986 nla_nest_end(msg, nl_ifs);
987 }
988
ff1b6e69
JB
989 if (dev->wiphy.wowlan.flags || dev->wiphy.wowlan.n_patterns) {
990 struct nlattr *nl_wowlan;
991
992 nl_wowlan = nla_nest_start(msg,
993 NL80211_ATTR_WOWLAN_TRIGGERS_SUPPORTED);
994 if (!nl_wowlan)
995 goto nla_put_failure;
996
997 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_ANY)
998 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_ANY);
999 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_DISCONNECT)
1000 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_DISCONNECT);
1001 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_MAGIC_PKT)
1002 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_MAGIC_PKT);
77dbbb13
JB
1003 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_SUPPORTS_GTK_REKEY)
1004 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_GTK_REKEY_SUPPORTED);
1005 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_GTK_REKEY_FAILURE)
1006 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_GTK_REKEY_FAILURE);
1007 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_EAP_IDENTITY_REQ)
1008 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_EAP_IDENT_REQUEST);
1009 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_4WAY_HANDSHAKE)
1010 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_4WAY_HANDSHAKE);
1011 if (dev->wiphy.wowlan.flags & WIPHY_WOWLAN_RFKILL_RELEASE)
1012 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_RFKILL_RELEASE);
ff1b6e69
JB
1013 if (dev->wiphy.wowlan.n_patterns) {
1014 struct nl80211_wowlan_pattern_support pat = {
1015 .max_patterns = dev->wiphy.wowlan.n_patterns,
1016 .min_pattern_len =
1017 dev->wiphy.wowlan.pattern_min_len,
1018 .max_pattern_len =
1019 dev->wiphy.wowlan.pattern_max_len,
1020 };
1021 NLA_PUT(msg, NL80211_WOWLAN_TRIG_PKT_PATTERN,
1022 sizeof(pat), &pat);
1023 }
1024
1025 nla_nest_end(msg, nl_wowlan);
1026 }
1027
7527a782
JB
1028 if (nl80211_put_iftypes(msg, NL80211_ATTR_SOFTWARE_IFTYPES,
1029 dev->wiphy.software_iftypes))
1030 goto nla_put_failure;
1031
1032 if (nl80211_put_iface_combinations(&dev->wiphy, msg))
1033 goto nla_put_failure;
1034
562a7480
JB
1035 if (dev->wiphy.flags & WIPHY_FLAG_HAVE_AP_SME)
1036 NLA_PUT_U32(msg, NL80211_ATTR_DEVICE_AP_SME,
1037 dev->wiphy.ap_sme_capa);
1038
1f074bd8
JB
1039 NLA_PUT_U32(msg, NL80211_ATTR_FEATURE_FLAGS, dev->wiphy.features);
1040
7e7c8926
BG
1041 if (dev->wiphy.ht_capa_mod_mask)
1042 NLA_PUT(msg, NL80211_ATTR_HT_CAPABILITY_MASK,
1043 sizeof(*dev->wiphy.ht_capa_mod_mask),
1044 dev->wiphy.ht_capa_mod_mask);
1045
55682965
JB
1046 return genlmsg_end(msg, hdr);
1047
1048 nla_put_failure:
bc3ed28c
TG
1049 genlmsg_cancel(msg, hdr);
1050 return -EMSGSIZE;
55682965
JB
1051}
1052
1053static int nl80211_dump_wiphy(struct sk_buff *skb, struct netlink_callback *cb)
1054{
1055 int idx = 0;
1056 int start = cb->args[0];
1057 struct cfg80211_registered_device *dev;
1058
a1794390 1059 mutex_lock(&cfg80211_mutex);
79c97e97 1060 list_for_each_entry(dev, &cfg80211_rdev_list, list) {
463d0183
JB
1061 if (!net_eq(wiphy_net(&dev->wiphy), sock_net(skb->sk)))
1062 continue;
b4637271 1063 if (++idx <= start)
55682965
JB
1064 continue;
1065 if (nl80211_send_wiphy(skb, NETLINK_CB(cb->skb).pid,
1066 cb->nlh->nlmsg_seq, NLM_F_MULTI,
b4637271
JV
1067 dev) < 0) {
1068 idx--;
55682965 1069 break;
b4637271 1070 }
55682965 1071 }
a1794390 1072 mutex_unlock(&cfg80211_mutex);
55682965
JB
1073
1074 cb->args[0] = idx;
1075
1076 return skb->len;
1077}
1078
1079static int nl80211_get_wiphy(struct sk_buff *skb, struct genl_info *info)
1080{
1081 struct sk_buff *msg;
4c476991 1082 struct cfg80211_registered_device *dev = info->user_ptr[0];
55682965 1083
fd2120ca 1084 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
55682965 1085 if (!msg)
4c476991 1086 return -ENOMEM;
55682965 1087
4c476991
JB
1088 if (nl80211_send_wiphy(msg, info->snd_pid, info->snd_seq, 0, dev) < 0) {
1089 nlmsg_free(msg);
1090 return -ENOBUFS;
1091 }
55682965 1092
134e6375 1093 return genlmsg_reply(msg, info);
55682965
JB
1094}
1095
31888487
JM
1096static const struct nla_policy txq_params_policy[NL80211_TXQ_ATTR_MAX + 1] = {
1097 [NL80211_TXQ_ATTR_QUEUE] = { .type = NLA_U8 },
1098 [NL80211_TXQ_ATTR_TXOP] = { .type = NLA_U16 },
1099 [NL80211_TXQ_ATTR_CWMIN] = { .type = NLA_U16 },
1100 [NL80211_TXQ_ATTR_CWMAX] = { .type = NLA_U16 },
1101 [NL80211_TXQ_ATTR_AIFS] = { .type = NLA_U8 },
1102};
1103
1104static int parse_txq_params(struct nlattr *tb[],
1105 struct ieee80211_txq_params *txq_params)
1106{
a3304b0a 1107 if (!tb[NL80211_TXQ_ATTR_AC] || !tb[NL80211_TXQ_ATTR_TXOP] ||
31888487
JM
1108 !tb[NL80211_TXQ_ATTR_CWMIN] || !tb[NL80211_TXQ_ATTR_CWMAX] ||
1109 !tb[NL80211_TXQ_ATTR_AIFS])
1110 return -EINVAL;
1111
a3304b0a 1112 txq_params->ac = nla_get_u8(tb[NL80211_TXQ_ATTR_AC]);
31888487
JM
1113 txq_params->txop = nla_get_u16(tb[NL80211_TXQ_ATTR_TXOP]);
1114 txq_params->cwmin = nla_get_u16(tb[NL80211_TXQ_ATTR_CWMIN]);
1115 txq_params->cwmax = nla_get_u16(tb[NL80211_TXQ_ATTR_CWMAX]);
1116 txq_params->aifs = nla_get_u8(tb[NL80211_TXQ_ATTR_AIFS]);
1117
a3304b0a
JB
1118 if (txq_params->ac >= NL80211_NUM_ACS)
1119 return -EINVAL;
1120
31888487
JM
1121 return 0;
1122}
1123
f444de05
JB
1124static bool nl80211_can_set_dev_channel(struct wireless_dev *wdev)
1125{
1126 /*
1127 * You can only set the channel explicitly for AP, mesh
1128 * and WDS type interfaces; all others have their channel
1129 * managed via their respective "establish a connection"
1130 * command (connect, join, ...)
1131 *
1132 * Monitors are special as they are normally slaved to
1133 * whatever else is going on, so they behave as though
1134 * you tried setting the wiphy channel itself.
1135 */
1136 return !wdev ||
1137 wdev->iftype == NL80211_IFTYPE_AP ||
1138 wdev->iftype == NL80211_IFTYPE_WDS ||
1139 wdev->iftype == NL80211_IFTYPE_MESH_POINT ||
074ac8df
JB
1140 wdev->iftype == NL80211_IFTYPE_MONITOR ||
1141 wdev->iftype == NL80211_IFTYPE_P2P_GO;
f444de05
JB
1142}
1143
1144static int __nl80211_set_channel(struct cfg80211_registered_device *rdev,
1145 struct wireless_dev *wdev,
1146 struct genl_info *info)
1147{
1148 enum nl80211_channel_type channel_type = NL80211_CHAN_NO_HT;
1149 u32 freq;
1150 int result;
1151
1152 if (!info->attrs[NL80211_ATTR_WIPHY_FREQ])
1153 return -EINVAL;
1154
1155 if (!nl80211_can_set_dev_channel(wdev))
1156 return -EOPNOTSUPP;
1157
1158 if (info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]) {
1159 channel_type = nla_get_u32(info->attrs[
1160 NL80211_ATTR_WIPHY_CHANNEL_TYPE]);
1161 if (channel_type != NL80211_CHAN_NO_HT &&
1162 channel_type != NL80211_CHAN_HT20 &&
1163 channel_type != NL80211_CHAN_HT40PLUS &&
1164 channel_type != NL80211_CHAN_HT40MINUS)
1165 return -EINVAL;
1166 }
1167
1168 freq = nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]);
1169
1170 mutex_lock(&rdev->devlist_mtx);
1171 if (wdev) {
1172 wdev_lock(wdev);
1173 result = cfg80211_set_freq(rdev, wdev, freq, channel_type);
1174 wdev_unlock(wdev);
1175 } else {
1176 result = cfg80211_set_freq(rdev, NULL, freq, channel_type);
1177 }
1178 mutex_unlock(&rdev->devlist_mtx);
1179
1180 return result;
1181}
1182
1183static int nl80211_set_channel(struct sk_buff *skb, struct genl_info *info)
1184{
4c476991
JB
1185 struct cfg80211_registered_device *rdev = info->user_ptr[0];
1186 struct net_device *netdev = info->user_ptr[1];
f444de05 1187
4c476991 1188 return __nl80211_set_channel(rdev, netdev->ieee80211_ptr, info);
f444de05
JB
1189}
1190
e8347eba
BJ
1191static int nl80211_set_wds_peer(struct sk_buff *skb, struct genl_info *info)
1192{
43b19952
JB
1193 struct cfg80211_registered_device *rdev = info->user_ptr[0];
1194 struct net_device *dev = info->user_ptr[1];
1195 struct wireless_dev *wdev = dev->ieee80211_ptr;
388ac775 1196 const u8 *bssid;
e8347eba
BJ
1197
1198 if (!info->attrs[NL80211_ATTR_MAC])
1199 return -EINVAL;
1200
43b19952
JB
1201 if (netif_running(dev))
1202 return -EBUSY;
e8347eba 1203
43b19952
JB
1204 if (!rdev->ops->set_wds_peer)
1205 return -EOPNOTSUPP;
e8347eba 1206
43b19952
JB
1207 if (wdev->iftype != NL80211_IFTYPE_WDS)
1208 return -EOPNOTSUPP;
e8347eba
BJ
1209
1210 bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
43b19952 1211 return rdev->ops->set_wds_peer(wdev->wiphy, dev, bssid);
e8347eba
BJ
1212}
1213
1214
55682965
JB
1215static int nl80211_set_wiphy(struct sk_buff *skb, struct genl_info *info)
1216{
1217 struct cfg80211_registered_device *rdev;
f444de05
JB
1218 struct net_device *netdev = NULL;
1219 struct wireless_dev *wdev;
a1e567c8 1220 int result = 0, rem_txq_params = 0;
31888487 1221 struct nlattr *nl_txq_params;
b9a5f8ca
JM
1222 u32 changed;
1223 u8 retry_short = 0, retry_long = 0;
1224 u32 frag_threshold = 0, rts_threshold = 0;
81077e82 1225 u8 coverage_class = 0;
55682965 1226
f444de05
JB
1227 /*
1228 * Try to find the wiphy and netdev. Normally this
1229 * function shouldn't need the netdev, but this is
1230 * done for backward compatibility -- previously
1231 * setting the channel was done per wiphy, but now
1232 * it is per netdev. Previous userland like hostapd
1233 * also passed a netdev to set_wiphy, so that it is
1234 * possible to let that go to the right netdev!
1235 */
4bbf4d56
JB
1236 mutex_lock(&cfg80211_mutex);
1237
f444de05
JB
1238 if (info->attrs[NL80211_ATTR_IFINDEX]) {
1239 int ifindex = nla_get_u32(info->attrs[NL80211_ATTR_IFINDEX]);
1240
1241 netdev = dev_get_by_index(genl_info_net(info), ifindex);
1242 if (netdev && netdev->ieee80211_ptr) {
1243 rdev = wiphy_to_dev(netdev->ieee80211_ptr->wiphy);
1244 mutex_lock(&rdev->mtx);
1245 } else
1246 netdev = NULL;
4bbf4d56
JB
1247 }
1248
f444de05
JB
1249 if (!netdev) {
1250 rdev = __cfg80211_rdev_from_info(info);
1251 if (IS_ERR(rdev)) {
1252 mutex_unlock(&cfg80211_mutex);
4c476991 1253 return PTR_ERR(rdev);
f444de05
JB
1254 }
1255 wdev = NULL;
1256 netdev = NULL;
1257 result = 0;
1258
1259 mutex_lock(&rdev->mtx);
1260 } else if (netif_running(netdev) &&
1261 nl80211_can_set_dev_channel(netdev->ieee80211_ptr))
1262 wdev = netdev->ieee80211_ptr;
1263 else
1264 wdev = NULL;
1265
1266 /*
1267 * end workaround code, by now the rdev is available
1268 * and locked, and wdev may or may not be NULL.
1269 */
4bbf4d56
JB
1270
1271 if (info->attrs[NL80211_ATTR_WIPHY_NAME])
31888487
JM
1272 result = cfg80211_dev_rename(
1273 rdev, nla_data(info->attrs[NL80211_ATTR_WIPHY_NAME]));
4bbf4d56
JB
1274
1275 mutex_unlock(&cfg80211_mutex);
1276
1277 if (result)
1278 goto bad_res;
31888487
JM
1279
1280 if (info->attrs[NL80211_ATTR_WIPHY_TXQ_PARAMS]) {
1281 struct ieee80211_txq_params txq_params;
1282 struct nlattr *tb[NL80211_TXQ_ATTR_MAX + 1];
1283
1284 if (!rdev->ops->set_txq_params) {
1285 result = -EOPNOTSUPP;
1286 goto bad_res;
1287 }
1288
f70f01c2
EP
1289 if (!netdev) {
1290 result = -EINVAL;
1291 goto bad_res;
1292 }
1293
133a3ff2
JB
1294 if (netdev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
1295 netdev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO) {
1296 result = -EINVAL;
1297 goto bad_res;
1298 }
1299
2b5f8b0b
JB
1300 if (!netif_running(netdev)) {
1301 result = -ENETDOWN;
1302 goto bad_res;
1303 }
1304
31888487
JM
1305 nla_for_each_nested(nl_txq_params,
1306 info->attrs[NL80211_ATTR_WIPHY_TXQ_PARAMS],
1307 rem_txq_params) {
1308 nla_parse(tb, NL80211_TXQ_ATTR_MAX,
1309 nla_data(nl_txq_params),
1310 nla_len(nl_txq_params),
1311 txq_params_policy);
1312 result = parse_txq_params(tb, &txq_params);
1313 if (result)
1314 goto bad_res;
1315
1316 result = rdev->ops->set_txq_params(&rdev->wiphy,
f70f01c2 1317 netdev,
31888487
JM
1318 &txq_params);
1319 if (result)
1320 goto bad_res;
1321 }
1322 }
55682965 1323
72bdcf34 1324 if (info->attrs[NL80211_ATTR_WIPHY_FREQ]) {
f444de05 1325 result = __nl80211_set_channel(rdev, wdev, info);
72bdcf34
JM
1326 if (result)
1327 goto bad_res;
1328 }
1329
98d2ff8b
JO
1330 if (info->attrs[NL80211_ATTR_WIPHY_TX_POWER_SETTING]) {
1331 enum nl80211_tx_power_setting type;
1332 int idx, mbm = 0;
1333
1334 if (!rdev->ops->set_tx_power) {
60ea385f 1335 result = -EOPNOTSUPP;
98d2ff8b
JO
1336 goto bad_res;
1337 }
1338
1339 idx = NL80211_ATTR_WIPHY_TX_POWER_SETTING;
1340 type = nla_get_u32(info->attrs[idx]);
1341
1342 if (!info->attrs[NL80211_ATTR_WIPHY_TX_POWER_LEVEL] &&
1343 (type != NL80211_TX_POWER_AUTOMATIC)) {
1344 result = -EINVAL;
1345 goto bad_res;
1346 }
1347
1348 if (type != NL80211_TX_POWER_AUTOMATIC) {
1349 idx = NL80211_ATTR_WIPHY_TX_POWER_LEVEL;
1350 mbm = nla_get_u32(info->attrs[idx]);
1351 }
1352
1353 result = rdev->ops->set_tx_power(&rdev->wiphy, type, mbm);
1354 if (result)
1355 goto bad_res;
1356 }
1357
afe0cbf8
BR
1358 if (info->attrs[NL80211_ATTR_WIPHY_ANTENNA_TX] &&
1359 info->attrs[NL80211_ATTR_WIPHY_ANTENNA_RX]) {
1360 u32 tx_ant, rx_ant;
7f531e03
BR
1361 if ((!rdev->wiphy.available_antennas_tx &&
1362 !rdev->wiphy.available_antennas_rx) ||
1363 !rdev->ops->set_antenna) {
afe0cbf8
BR
1364 result = -EOPNOTSUPP;
1365 goto bad_res;
1366 }
1367
1368 tx_ant = nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_ANTENNA_TX]);
1369 rx_ant = nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_ANTENNA_RX]);
1370
a7ffac95 1371 /* reject antenna configurations which don't match the
7f531e03
BR
1372 * available antenna masks, except for the "all" mask */
1373 if ((~tx_ant && (tx_ant & ~rdev->wiphy.available_antennas_tx)) ||
1374 (~rx_ant && (rx_ant & ~rdev->wiphy.available_antennas_rx))) {
a7ffac95
BR
1375 result = -EINVAL;
1376 goto bad_res;
1377 }
1378
7f531e03
BR
1379 tx_ant = tx_ant & rdev->wiphy.available_antennas_tx;
1380 rx_ant = rx_ant & rdev->wiphy.available_antennas_rx;
a7ffac95 1381
afe0cbf8
BR
1382 result = rdev->ops->set_antenna(&rdev->wiphy, tx_ant, rx_ant);
1383 if (result)
1384 goto bad_res;
1385 }
1386
b9a5f8ca
JM
1387 changed = 0;
1388
1389 if (info->attrs[NL80211_ATTR_WIPHY_RETRY_SHORT]) {
1390 retry_short = nla_get_u8(
1391 info->attrs[NL80211_ATTR_WIPHY_RETRY_SHORT]);
1392 if (retry_short == 0) {
1393 result = -EINVAL;
1394 goto bad_res;
1395 }
1396 changed |= WIPHY_PARAM_RETRY_SHORT;
1397 }
1398
1399 if (info->attrs[NL80211_ATTR_WIPHY_RETRY_LONG]) {
1400 retry_long = nla_get_u8(
1401 info->attrs[NL80211_ATTR_WIPHY_RETRY_LONG]);
1402 if (retry_long == 0) {
1403 result = -EINVAL;
1404 goto bad_res;
1405 }
1406 changed |= WIPHY_PARAM_RETRY_LONG;
1407 }
1408
1409 if (info->attrs[NL80211_ATTR_WIPHY_FRAG_THRESHOLD]) {
1410 frag_threshold = nla_get_u32(
1411 info->attrs[NL80211_ATTR_WIPHY_FRAG_THRESHOLD]);
1412 if (frag_threshold < 256) {
1413 result = -EINVAL;
1414 goto bad_res;
1415 }
1416 if (frag_threshold != (u32) -1) {
1417 /*
1418 * Fragments (apart from the last one) are required to
1419 * have even length. Make the fragmentation code
1420 * simpler by stripping LSB should someone try to use
1421 * odd threshold value.
1422 */
1423 frag_threshold &= ~0x1;
1424 }
1425 changed |= WIPHY_PARAM_FRAG_THRESHOLD;
1426 }
1427
1428 if (info->attrs[NL80211_ATTR_WIPHY_RTS_THRESHOLD]) {
1429 rts_threshold = nla_get_u32(
1430 info->attrs[NL80211_ATTR_WIPHY_RTS_THRESHOLD]);
1431 changed |= WIPHY_PARAM_RTS_THRESHOLD;
1432 }
1433
81077e82
LT
1434 if (info->attrs[NL80211_ATTR_WIPHY_COVERAGE_CLASS]) {
1435 coverage_class = nla_get_u8(
1436 info->attrs[NL80211_ATTR_WIPHY_COVERAGE_CLASS]);
1437 changed |= WIPHY_PARAM_COVERAGE_CLASS;
1438 }
1439
b9a5f8ca
JM
1440 if (changed) {
1441 u8 old_retry_short, old_retry_long;
1442 u32 old_frag_threshold, old_rts_threshold;
81077e82 1443 u8 old_coverage_class;
b9a5f8ca
JM
1444
1445 if (!rdev->ops->set_wiphy_params) {
1446 result = -EOPNOTSUPP;
1447 goto bad_res;
1448 }
1449
1450 old_retry_short = rdev->wiphy.retry_short;
1451 old_retry_long = rdev->wiphy.retry_long;
1452 old_frag_threshold = rdev->wiphy.frag_threshold;
1453 old_rts_threshold = rdev->wiphy.rts_threshold;
81077e82 1454 old_coverage_class = rdev->wiphy.coverage_class;
b9a5f8ca
JM
1455
1456 if (changed & WIPHY_PARAM_RETRY_SHORT)
1457 rdev->wiphy.retry_short = retry_short;
1458 if (changed & WIPHY_PARAM_RETRY_LONG)
1459 rdev->wiphy.retry_long = retry_long;
1460 if (changed & WIPHY_PARAM_FRAG_THRESHOLD)
1461 rdev->wiphy.frag_threshold = frag_threshold;
1462 if (changed & WIPHY_PARAM_RTS_THRESHOLD)
1463 rdev->wiphy.rts_threshold = rts_threshold;
81077e82
LT
1464 if (changed & WIPHY_PARAM_COVERAGE_CLASS)
1465 rdev->wiphy.coverage_class = coverage_class;
b9a5f8ca
JM
1466
1467 result = rdev->ops->set_wiphy_params(&rdev->wiphy, changed);
1468 if (result) {
1469 rdev->wiphy.retry_short = old_retry_short;
1470 rdev->wiphy.retry_long = old_retry_long;
1471 rdev->wiphy.frag_threshold = old_frag_threshold;
1472 rdev->wiphy.rts_threshold = old_rts_threshold;
81077e82 1473 rdev->wiphy.coverage_class = old_coverage_class;
b9a5f8ca
JM
1474 }
1475 }
72bdcf34 1476
306d6112 1477 bad_res:
4bbf4d56 1478 mutex_unlock(&rdev->mtx);
f444de05
JB
1479 if (netdev)
1480 dev_put(netdev);
55682965
JB
1481 return result;
1482}
1483
1484
1485static int nl80211_send_iface(struct sk_buff *msg, u32 pid, u32 seq, int flags,
d726405a 1486 struct cfg80211_registered_device *rdev,
55682965
JB
1487 struct net_device *dev)
1488{
1489 void *hdr;
1490
1491 hdr = nl80211hdr_put(msg, pid, seq, flags, NL80211_CMD_NEW_INTERFACE);
1492 if (!hdr)
1493 return -1;
1494
1495 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
d726405a 1496 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
55682965 1497 NLA_PUT_STRING(msg, NL80211_ATTR_IFNAME, dev->name);
60719ffd 1498 NLA_PUT_U32(msg, NL80211_ATTR_IFTYPE, dev->ieee80211_ptr->iftype);
f5ea9120
JB
1499
1500 NLA_PUT_U32(msg, NL80211_ATTR_GENERATION,
1501 rdev->devlist_generation ^
1502 (cfg80211_rdev_list_generation << 2));
1503
d91df0e3
PF
1504 if (rdev->ops->get_channel) {
1505 struct ieee80211_channel *chan;
1506 enum nl80211_channel_type channel_type;
1507
1508 chan = rdev->ops->get_channel(&rdev->wiphy, &channel_type);
1509 if (chan) {
1510 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FREQ,
1511 chan->center_freq);
1512 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_CHANNEL_TYPE,
1513 channel_type);
1514 }
1515 }
1516
55682965
JB
1517 return genlmsg_end(msg, hdr);
1518
1519 nla_put_failure:
bc3ed28c
TG
1520 genlmsg_cancel(msg, hdr);
1521 return -EMSGSIZE;
55682965
JB
1522}
1523
1524static int nl80211_dump_interface(struct sk_buff *skb, struct netlink_callback *cb)
1525{
1526 int wp_idx = 0;
1527 int if_idx = 0;
1528 int wp_start = cb->args[0];
1529 int if_start = cb->args[1];
f5ea9120 1530 struct cfg80211_registered_device *rdev;
55682965
JB
1531 struct wireless_dev *wdev;
1532
a1794390 1533 mutex_lock(&cfg80211_mutex);
f5ea9120
JB
1534 list_for_each_entry(rdev, &cfg80211_rdev_list, list) {
1535 if (!net_eq(wiphy_net(&rdev->wiphy), sock_net(skb->sk)))
463d0183 1536 continue;
bba95fef
JB
1537 if (wp_idx < wp_start) {
1538 wp_idx++;
55682965 1539 continue;
bba95fef 1540 }
55682965
JB
1541 if_idx = 0;
1542
f5ea9120
JB
1543 mutex_lock(&rdev->devlist_mtx);
1544 list_for_each_entry(wdev, &rdev->netdev_list, list) {
bba95fef
JB
1545 if (if_idx < if_start) {
1546 if_idx++;
55682965 1547 continue;
bba95fef 1548 }
55682965
JB
1549 if (nl80211_send_iface(skb, NETLINK_CB(cb->skb).pid,
1550 cb->nlh->nlmsg_seq, NLM_F_MULTI,
f5ea9120
JB
1551 rdev, wdev->netdev) < 0) {
1552 mutex_unlock(&rdev->devlist_mtx);
bba95fef
JB
1553 goto out;
1554 }
1555 if_idx++;
55682965 1556 }
f5ea9120 1557 mutex_unlock(&rdev->devlist_mtx);
bba95fef
JB
1558
1559 wp_idx++;
55682965 1560 }
bba95fef 1561 out:
a1794390 1562 mutex_unlock(&cfg80211_mutex);
55682965
JB
1563
1564 cb->args[0] = wp_idx;
1565 cb->args[1] = if_idx;
1566
1567 return skb->len;
1568}
1569
1570static int nl80211_get_interface(struct sk_buff *skb, struct genl_info *info)
1571{
1572 struct sk_buff *msg;
4c476991
JB
1573 struct cfg80211_registered_device *dev = info->user_ptr[0];
1574 struct net_device *netdev = info->user_ptr[1];
55682965 1575
fd2120ca 1576 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
55682965 1577 if (!msg)
4c476991 1578 return -ENOMEM;
55682965 1579
d726405a 1580 if (nl80211_send_iface(msg, info->snd_pid, info->snd_seq, 0,
4c476991
JB
1581 dev, netdev) < 0) {
1582 nlmsg_free(msg);
1583 return -ENOBUFS;
1584 }
55682965 1585
134e6375 1586 return genlmsg_reply(msg, info);
55682965
JB
1587}
1588
66f7ac50
MW
1589static const struct nla_policy mntr_flags_policy[NL80211_MNTR_FLAG_MAX + 1] = {
1590 [NL80211_MNTR_FLAG_FCSFAIL] = { .type = NLA_FLAG },
1591 [NL80211_MNTR_FLAG_PLCPFAIL] = { .type = NLA_FLAG },
1592 [NL80211_MNTR_FLAG_CONTROL] = { .type = NLA_FLAG },
1593 [NL80211_MNTR_FLAG_OTHER_BSS] = { .type = NLA_FLAG },
1594 [NL80211_MNTR_FLAG_COOK_FRAMES] = { .type = NLA_FLAG },
1595};
1596
1597static int parse_monitor_flags(struct nlattr *nla, u32 *mntrflags)
1598{
1599 struct nlattr *flags[NL80211_MNTR_FLAG_MAX + 1];
1600 int flag;
1601
1602 *mntrflags = 0;
1603
1604 if (!nla)
1605 return -EINVAL;
1606
1607 if (nla_parse_nested(flags, NL80211_MNTR_FLAG_MAX,
1608 nla, mntr_flags_policy))
1609 return -EINVAL;
1610
1611 for (flag = 1; flag <= NL80211_MNTR_FLAG_MAX; flag++)
1612 if (flags[flag])
1613 *mntrflags |= (1<<flag);
1614
1615 return 0;
1616}
1617
9bc383de 1618static int nl80211_valid_4addr(struct cfg80211_registered_device *rdev,
ad4bb6f8
JB
1619 struct net_device *netdev, u8 use_4addr,
1620 enum nl80211_iftype iftype)
9bc383de 1621{
ad4bb6f8 1622 if (!use_4addr) {
f350a0a8 1623 if (netdev && (netdev->priv_flags & IFF_BRIDGE_PORT))
ad4bb6f8 1624 return -EBUSY;
9bc383de 1625 return 0;
ad4bb6f8 1626 }
9bc383de
JB
1627
1628 switch (iftype) {
1629 case NL80211_IFTYPE_AP_VLAN:
1630 if (rdev->wiphy.flags & WIPHY_FLAG_4ADDR_AP)
1631 return 0;
1632 break;
1633 case NL80211_IFTYPE_STATION:
1634 if (rdev->wiphy.flags & WIPHY_FLAG_4ADDR_STATION)
1635 return 0;
1636 break;
1637 default:
1638 break;
1639 }
1640
1641 return -EOPNOTSUPP;
1642}
1643
55682965
JB
1644static int nl80211_set_interface(struct sk_buff *skb, struct genl_info *info)
1645{
4c476991 1646 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2ec600d6 1647 struct vif_params params;
e36d56b6 1648 int err;
04a773ad 1649 enum nl80211_iftype otype, ntype;
4c476991 1650 struct net_device *dev = info->user_ptr[1];
92ffe055 1651 u32 _flags, *flags = NULL;
ac7f9cfa 1652 bool change = false;
55682965 1653
2ec600d6
LCC
1654 memset(&params, 0, sizeof(params));
1655
04a773ad 1656 otype = ntype = dev->ieee80211_ptr->iftype;
55682965 1657
723b038d 1658 if (info->attrs[NL80211_ATTR_IFTYPE]) {
ac7f9cfa 1659 ntype = nla_get_u32(info->attrs[NL80211_ATTR_IFTYPE]);
04a773ad 1660 if (otype != ntype)
ac7f9cfa 1661 change = true;
4c476991
JB
1662 if (ntype > NL80211_IFTYPE_MAX)
1663 return -EINVAL;
723b038d
JB
1664 }
1665
92ffe055 1666 if (info->attrs[NL80211_ATTR_MESH_ID]) {
29cbe68c
JB
1667 struct wireless_dev *wdev = dev->ieee80211_ptr;
1668
4c476991
JB
1669 if (ntype != NL80211_IFTYPE_MESH_POINT)
1670 return -EINVAL;
29cbe68c
JB
1671 if (netif_running(dev))
1672 return -EBUSY;
1673
1674 wdev_lock(wdev);
1675 BUILD_BUG_ON(IEEE80211_MAX_SSID_LEN !=
1676 IEEE80211_MAX_MESH_ID_LEN);
1677 wdev->mesh_id_up_len =
1678 nla_len(info->attrs[NL80211_ATTR_MESH_ID]);
1679 memcpy(wdev->ssid, nla_data(info->attrs[NL80211_ATTR_MESH_ID]),
1680 wdev->mesh_id_up_len);
1681 wdev_unlock(wdev);
2ec600d6
LCC
1682 }
1683
8b787643
FF
1684 if (info->attrs[NL80211_ATTR_4ADDR]) {
1685 params.use_4addr = !!nla_get_u8(info->attrs[NL80211_ATTR_4ADDR]);
1686 change = true;
ad4bb6f8 1687 err = nl80211_valid_4addr(rdev, dev, params.use_4addr, ntype);
9bc383de 1688 if (err)
4c476991 1689 return err;
8b787643
FF
1690 } else {
1691 params.use_4addr = -1;
1692 }
1693
92ffe055 1694 if (info->attrs[NL80211_ATTR_MNTR_FLAGS]) {
4c476991
JB
1695 if (ntype != NL80211_IFTYPE_MONITOR)
1696 return -EINVAL;
92ffe055
JB
1697 err = parse_monitor_flags(info->attrs[NL80211_ATTR_MNTR_FLAGS],
1698 &_flags);
ac7f9cfa 1699 if (err)
4c476991 1700 return err;
ac7f9cfa
JB
1701
1702 flags = &_flags;
1703 change = true;
92ffe055 1704 }
3b85875a 1705
ac7f9cfa 1706 if (change)
3d54d255 1707 err = cfg80211_change_iface(rdev, dev, ntype, flags, &params);
ac7f9cfa
JB
1708 else
1709 err = 0;
60719ffd 1710
9bc383de
JB
1711 if (!err && params.use_4addr != -1)
1712 dev->ieee80211_ptr->use_4addr = params.use_4addr;
1713
55682965
JB
1714 return err;
1715}
1716
1717static int nl80211_new_interface(struct sk_buff *skb, struct genl_info *info)
1718{
4c476991 1719 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2ec600d6 1720 struct vif_params params;
f9e10ce4 1721 struct net_device *dev;
55682965
JB
1722 int err;
1723 enum nl80211_iftype type = NL80211_IFTYPE_UNSPECIFIED;
66f7ac50 1724 u32 flags;
55682965 1725
2ec600d6
LCC
1726 memset(&params, 0, sizeof(params));
1727
55682965
JB
1728 if (!info->attrs[NL80211_ATTR_IFNAME])
1729 return -EINVAL;
1730
1731 if (info->attrs[NL80211_ATTR_IFTYPE]) {
1732 type = nla_get_u32(info->attrs[NL80211_ATTR_IFTYPE]);
1733 if (type > NL80211_IFTYPE_MAX)
1734 return -EINVAL;
1735 }
1736
79c97e97 1737 if (!rdev->ops->add_virtual_intf ||
4c476991
JB
1738 !(rdev->wiphy.interface_modes & (1 << type)))
1739 return -EOPNOTSUPP;
55682965 1740
9bc383de 1741 if (info->attrs[NL80211_ATTR_4ADDR]) {
8b787643 1742 params.use_4addr = !!nla_get_u8(info->attrs[NL80211_ATTR_4ADDR]);
ad4bb6f8 1743 err = nl80211_valid_4addr(rdev, NULL, params.use_4addr, type);
9bc383de 1744 if (err)
4c476991 1745 return err;
9bc383de 1746 }
8b787643 1747
66f7ac50
MW
1748 err = parse_monitor_flags(type == NL80211_IFTYPE_MONITOR ?
1749 info->attrs[NL80211_ATTR_MNTR_FLAGS] : NULL,
1750 &flags);
f9e10ce4 1751 dev = rdev->ops->add_virtual_intf(&rdev->wiphy,
66f7ac50 1752 nla_data(info->attrs[NL80211_ATTR_IFNAME]),
2ec600d6 1753 type, err ? NULL : &flags, &params);
f9e10ce4
JB
1754 if (IS_ERR(dev))
1755 return PTR_ERR(dev);
2ec600d6 1756
29cbe68c
JB
1757 if (type == NL80211_IFTYPE_MESH_POINT &&
1758 info->attrs[NL80211_ATTR_MESH_ID]) {
1759 struct wireless_dev *wdev = dev->ieee80211_ptr;
1760
1761 wdev_lock(wdev);
1762 BUILD_BUG_ON(IEEE80211_MAX_SSID_LEN !=
1763 IEEE80211_MAX_MESH_ID_LEN);
1764 wdev->mesh_id_up_len =
1765 nla_len(info->attrs[NL80211_ATTR_MESH_ID]);
1766 memcpy(wdev->ssid, nla_data(info->attrs[NL80211_ATTR_MESH_ID]),
1767 wdev->mesh_id_up_len);
1768 wdev_unlock(wdev);
1769 }
1770
f9e10ce4 1771 return 0;
55682965
JB
1772}
1773
1774static int nl80211_del_interface(struct sk_buff *skb, struct genl_info *info)
1775{
4c476991
JB
1776 struct cfg80211_registered_device *rdev = info->user_ptr[0];
1777 struct net_device *dev = info->user_ptr[1];
55682965 1778
4c476991
JB
1779 if (!rdev->ops->del_virtual_intf)
1780 return -EOPNOTSUPP;
55682965 1781
4c476991 1782 return rdev->ops->del_virtual_intf(&rdev->wiphy, dev);
55682965
JB
1783}
1784
1d9d9213
SW
1785static int nl80211_set_noack_map(struct sk_buff *skb, struct genl_info *info)
1786{
1787 struct cfg80211_registered_device *rdev = info->user_ptr[0];
1788 struct net_device *dev = info->user_ptr[1];
1789 u16 noack_map;
1790
1791 if (!info->attrs[NL80211_ATTR_NOACK_MAP])
1792 return -EINVAL;
1793
1794 if (!rdev->ops->set_noack_map)
1795 return -EOPNOTSUPP;
1796
1797 noack_map = nla_get_u16(info->attrs[NL80211_ATTR_NOACK_MAP]);
1798
1799 return rdev->ops->set_noack_map(&rdev->wiphy, dev, noack_map);
1800}
1801
41ade00f
JB
1802struct get_key_cookie {
1803 struct sk_buff *msg;
1804 int error;
b9454e83 1805 int idx;
41ade00f
JB
1806};
1807
1808static void get_key_callback(void *c, struct key_params *params)
1809{
b9454e83 1810 struct nlattr *key;
41ade00f
JB
1811 struct get_key_cookie *cookie = c;
1812
1813 if (params->key)
1814 NLA_PUT(cookie->msg, NL80211_ATTR_KEY_DATA,
1815 params->key_len, params->key);
1816
1817 if (params->seq)
1818 NLA_PUT(cookie->msg, NL80211_ATTR_KEY_SEQ,
1819 params->seq_len, params->seq);
1820
1821 if (params->cipher)
1822 NLA_PUT_U32(cookie->msg, NL80211_ATTR_KEY_CIPHER,
1823 params->cipher);
1824
b9454e83
JB
1825 key = nla_nest_start(cookie->msg, NL80211_ATTR_KEY);
1826 if (!key)
1827 goto nla_put_failure;
1828
1829 if (params->key)
1830 NLA_PUT(cookie->msg, NL80211_KEY_DATA,
1831 params->key_len, params->key);
1832
1833 if (params->seq)
1834 NLA_PUT(cookie->msg, NL80211_KEY_SEQ,
1835 params->seq_len, params->seq);
1836
1837 if (params->cipher)
1838 NLA_PUT_U32(cookie->msg, NL80211_KEY_CIPHER,
1839 params->cipher);
1840
1841 NLA_PUT_U8(cookie->msg, NL80211_ATTR_KEY_IDX, cookie->idx);
1842
1843 nla_nest_end(cookie->msg, key);
1844
41ade00f
JB
1845 return;
1846 nla_put_failure:
1847 cookie->error = 1;
1848}
1849
1850static int nl80211_get_key(struct sk_buff *skb, struct genl_info *info)
1851{
4c476991 1852 struct cfg80211_registered_device *rdev = info->user_ptr[0];
41ade00f 1853 int err;
4c476991 1854 struct net_device *dev = info->user_ptr[1];
41ade00f 1855 u8 key_idx = 0;
e31b8213
JB
1856 const u8 *mac_addr = NULL;
1857 bool pairwise;
41ade00f
JB
1858 struct get_key_cookie cookie = {
1859 .error = 0,
1860 };
1861 void *hdr;
1862 struct sk_buff *msg;
1863
1864 if (info->attrs[NL80211_ATTR_KEY_IDX])
1865 key_idx = nla_get_u8(info->attrs[NL80211_ATTR_KEY_IDX]);
1866
3cfcf6ac 1867 if (key_idx > 5)
41ade00f
JB
1868 return -EINVAL;
1869
1870 if (info->attrs[NL80211_ATTR_MAC])
1871 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
1872
e31b8213
JB
1873 pairwise = !!mac_addr;
1874 if (info->attrs[NL80211_ATTR_KEY_TYPE]) {
1875 u32 kt = nla_get_u32(info->attrs[NL80211_ATTR_KEY_TYPE]);
1876 if (kt >= NUM_NL80211_KEYTYPES)
1877 return -EINVAL;
1878 if (kt != NL80211_KEYTYPE_GROUP &&
1879 kt != NL80211_KEYTYPE_PAIRWISE)
1880 return -EINVAL;
1881 pairwise = kt == NL80211_KEYTYPE_PAIRWISE;
1882 }
1883
4c476991
JB
1884 if (!rdev->ops->get_key)
1885 return -EOPNOTSUPP;
41ade00f 1886
fd2120ca 1887 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
4c476991
JB
1888 if (!msg)
1889 return -ENOMEM;
41ade00f
JB
1890
1891 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
1892 NL80211_CMD_NEW_KEY);
4c476991
JB
1893 if (IS_ERR(hdr))
1894 return PTR_ERR(hdr);
41ade00f
JB
1895
1896 cookie.msg = msg;
b9454e83 1897 cookie.idx = key_idx;
41ade00f
JB
1898
1899 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
1900 NLA_PUT_U8(msg, NL80211_ATTR_KEY_IDX, key_idx);
1901 if (mac_addr)
1902 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, mac_addr);
1903
e31b8213
JB
1904 if (pairwise && mac_addr &&
1905 !(rdev->wiphy.flags & WIPHY_FLAG_IBSS_RSN))
1906 return -ENOENT;
1907
1908 err = rdev->ops->get_key(&rdev->wiphy, dev, key_idx, pairwise,
1909 mac_addr, &cookie, get_key_callback);
41ade00f
JB
1910
1911 if (err)
6c95e2a2 1912 goto free_msg;
41ade00f
JB
1913
1914 if (cookie.error)
1915 goto nla_put_failure;
1916
1917 genlmsg_end(msg, hdr);
4c476991 1918 return genlmsg_reply(msg, info);
41ade00f
JB
1919
1920 nla_put_failure:
1921 err = -ENOBUFS;
6c95e2a2 1922 free_msg:
41ade00f 1923 nlmsg_free(msg);
41ade00f
JB
1924 return err;
1925}
1926
1927static int nl80211_set_key(struct sk_buff *skb, struct genl_info *info)
1928{
4c476991 1929 struct cfg80211_registered_device *rdev = info->user_ptr[0];
b9454e83 1930 struct key_parse key;
41ade00f 1931 int err;
4c476991 1932 struct net_device *dev = info->user_ptr[1];
41ade00f 1933
b9454e83
JB
1934 err = nl80211_parse_key(info, &key);
1935 if (err)
1936 return err;
41ade00f 1937
b9454e83 1938 if (key.idx < 0)
41ade00f
JB
1939 return -EINVAL;
1940
b9454e83
JB
1941 /* only support setting default key */
1942 if (!key.def && !key.defmgmt)
41ade00f
JB
1943 return -EINVAL;
1944
dbd2fd65 1945 wdev_lock(dev->ieee80211_ptr);
3cfcf6ac 1946
dbd2fd65
JB
1947 if (key.def) {
1948 if (!rdev->ops->set_default_key) {
1949 err = -EOPNOTSUPP;
1950 goto out;
1951 }
41ade00f 1952
dbd2fd65
JB
1953 err = nl80211_key_allowed(dev->ieee80211_ptr);
1954 if (err)
1955 goto out;
1956
dbd2fd65
JB
1957 err = rdev->ops->set_default_key(&rdev->wiphy, dev, key.idx,
1958 key.def_uni, key.def_multi);
1959
1960 if (err)
1961 goto out;
fffd0934 1962
3d23e349 1963#ifdef CONFIG_CFG80211_WEXT
dbd2fd65
JB
1964 dev->ieee80211_ptr->wext.default_key = key.idx;
1965#endif
1966 } else {
1967 if (key.def_uni || !key.def_multi) {
1968 err = -EINVAL;
1969 goto out;
1970 }
1971
1972 if (!rdev->ops->set_default_mgmt_key) {
1973 err = -EOPNOTSUPP;
1974 goto out;
1975 }
1976
1977 err = nl80211_key_allowed(dev->ieee80211_ptr);
1978 if (err)
1979 goto out;
1980
1981 err = rdev->ops->set_default_mgmt_key(&rdev->wiphy,
1982 dev, key.idx);
1983 if (err)
1984 goto out;
1985
1986#ifdef CONFIG_CFG80211_WEXT
1987 dev->ieee80211_ptr->wext.default_mgmt_key = key.idx;
08645126 1988#endif
dbd2fd65
JB
1989 }
1990
1991 out:
fffd0934 1992 wdev_unlock(dev->ieee80211_ptr);
41ade00f 1993
41ade00f
JB
1994 return err;
1995}
1996
1997static int nl80211_new_key(struct sk_buff *skb, struct genl_info *info)
1998{
4c476991 1999 struct cfg80211_registered_device *rdev = info->user_ptr[0];
fffd0934 2000 int err;
4c476991 2001 struct net_device *dev = info->user_ptr[1];
b9454e83 2002 struct key_parse key;
e31b8213 2003 const u8 *mac_addr = NULL;
41ade00f 2004
b9454e83
JB
2005 err = nl80211_parse_key(info, &key);
2006 if (err)
2007 return err;
41ade00f 2008
b9454e83 2009 if (!key.p.key)
41ade00f
JB
2010 return -EINVAL;
2011
41ade00f
JB
2012 if (info->attrs[NL80211_ATTR_MAC])
2013 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2014
e31b8213
JB
2015 if (key.type == -1) {
2016 if (mac_addr)
2017 key.type = NL80211_KEYTYPE_PAIRWISE;
2018 else
2019 key.type = NL80211_KEYTYPE_GROUP;
2020 }
2021
2022 /* for now */
2023 if (key.type != NL80211_KEYTYPE_PAIRWISE &&
2024 key.type != NL80211_KEYTYPE_GROUP)
2025 return -EINVAL;
2026
4c476991
JB
2027 if (!rdev->ops->add_key)
2028 return -EOPNOTSUPP;
25e47c18 2029
e31b8213
JB
2030 if (cfg80211_validate_key_settings(rdev, &key.p, key.idx,
2031 key.type == NL80211_KEYTYPE_PAIRWISE,
2032 mac_addr))
4c476991 2033 return -EINVAL;
41ade00f 2034
fffd0934
JB
2035 wdev_lock(dev->ieee80211_ptr);
2036 err = nl80211_key_allowed(dev->ieee80211_ptr);
2037 if (!err)
2038 err = rdev->ops->add_key(&rdev->wiphy, dev, key.idx,
e31b8213 2039 key.type == NL80211_KEYTYPE_PAIRWISE,
fffd0934
JB
2040 mac_addr, &key.p);
2041 wdev_unlock(dev->ieee80211_ptr);
41ade00f 2042
41ade00f
JB
2043 return err;
2044}
2045
2046static int nl80211_del_key(struct sk_buff *skb, struct genl_info *info)
2047{
4c476991 2048 struct cfg80211_registered_device *rdev = info->user_ptr[0];
41ade00f 2049 int err;
4c476991 2050 struct net_device *dev = info->user_ptr[1];
41ade00f 2051 u8 *mac_addr = NULL;
b9454e83 2052 struct key_parse key;
41ade00f 2053
b9454e83
JB
2054 err = nl80211_parse_key(info, &key);
2055 if (err)
2056 return err;
41ade00f
JB
2057
2058 if (info->attrs[NL80211_ATTR_MAC])
2059 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2060
e31b8213
JB
2061 if (key.type == -1) {
2062 if (mac_addr)
2063 key.type = NL80211_KEYTYPE_PAIRWISE;
2064 else
2065 key.type = NL80211_KEYTYPE_GROUP;
2066 }
2067
2068 /* for now */
2069 if (key.type != NL80211_KEYTYPE_PAIRWISE &&
2070 key.type != NL80211_KEYTYPE_GROUP)
2071 return -EINVAL;
2072
4c476991
JB
2073 if (!rdev->ops->del_key)
2074 return -EOPNOTSUPP;
41ade00f 2075
fffd0934
JB
2076 wdev_lock(dev->ieee80211_ptr);
2077 err = nl80211_key_allowed(dev->ieee80211_ptr);
e31b8213
JB
2078
2079 if (key.type == NL80211_KEYTYPE_PAIRWISE && mac_addr &&
2080 !(rdev->wiphy.flags & WIPHY_FLAG_IBSS_RSN))
2081 err = -ENOENT;
2082
fffd0934 2083 if (!err)
e31b8213
JB
2084 err = rdev->ops->del_key(&rdev->wiphy, dev, key.idx,
2085 key.type == NL80211_KEYTYPE_PAIRWISE,
2086 mac_addr);
41ade00f 2087
3d23e349 2088#ifdef CONFIG_CFG80211_WEXT
08645126 2089 if (!err) {
b9454e83 2090 if (key.idx == dev->ieee80211_ptr->wext.default_key)
08645126 2091 dev->ieee80211_ptr->wext.default_key = -1;
b9454e83 2092 else if (key.idx == dev->ieee80211_ptr->wext.default_mgmt_key)
08645126
JB
2093 dev->ieee80211_ptr->wext.default_mgmt_key = -1;
2094 }
2095#endif
fffd0934 2096 wdev_unlock(dev->ieee80211_ptr);
08645126 2097
41ade00f
JB
2098 return err;
2099}
2100
8860020e
JB
2101static int nl80211_parse_beacon(struct genl_info *info,
2102 struct cfg80211_beacon_data *bcn)
ed1b6cc7 2103{
8860020e 2104 bool haveinfo = false;
ed1b6cc7 2105
9946ecfb
JM
2106 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_BEACON_TAIL]) ||
2107 !is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]) ||
2108 !is_valid_ie_attr(info->attrs[NL80211_ATTR_IE_PROBE_RESP]) ||
2109 !is_valid_ie_attr(info->attrs[NL80211_ATTR_IE_ASSOC_RESP]))
f4a11bb0
JB
2110 return -EINVAL;
2111
8860020e 2112 memset(bcn, 0, sizeof(*bcn));
ed1b6cc7 2113
ed1b6cc7 2114 if (info->attrs[NL80211_ATTR_BEACON_HEAD]) {
8860020e
JB
2115 bcn->head = nla_data(info->attrs[NL80211_ATTR_BEACON_HEAD]);
2116 bcn->head_len = nla_len(info->attrs[NL80211_ATTR_BEACON_HEAD]);
2117 if (!bcn->head_len)
2118 return -EINVAL;
2119 haveinfo = true;
ed1b6cc7
JB
2120 }
2121
2122 if (info->attrs[NL80211_ATTR_BEACON_TAIL]) {
8860020e
JB
2123 bcn->tail = nla_data(info->attrs[NL80211_ATTR_BEACON_TAIL]);
2124 bcn->tail_len =
ed1b6cc7 2125 nla_len(info->attrs[NL80211_ATTR_BEACON_TAIL]);
8860020e 2126 haveinfo = true;
ed1b6cc7
JB
2127 }
2128
4c476991
JB
2129 if (!haveinfo)
2130 return -EINVAL;
3b85875a 2131
9946ecfb 2132 if (info->attrs[NL80211_ATTR_IE]) {
8860020e
JB
2133 bcn->beacon_ies = nla_data(info->attrs[NL80211_ATTR_IE]);
2134 bcn->beacon_ies_len = nla_len(info->attrs[NL80211_ATTR_IE]);
9946ecfb
JM
2135 }
2136
2137 if (info->attrs[NL80211_ATTR_IE_PROBE_RESP]) {
8860020e 2138 bcn->proberesp_ies =
9946ecfb 2139 nla_data(info->attrs[NL80211_ATTR_IE_PROBE_RESP]);
8860020e 2140 bcn->proberesp_ies_len =
9946ecfb
JM
2141 nla_len(info->attrs[NL80211_ATTR_IE_PROBE_RESP]);
2142 }
2143
2144 if (info->attrs[NL80211_ATTR_IE_ASSOC_RESP]) {
8860020e 2145 bcn->assocresp_ies =
9946ecfb 2146 nla_data(info->attrs[NL80211_ATTR_IE_ASSOC_RESP]);
8860020e 2147 bcn->assocresp_ies_len =
9946ecfb
JM
2148 nla_len(info->attrs[NL80211_ATTR_IE_ASSOC_RESP]);
2149 }
2150
00f740e1 2151 if (info->attrs[NL80211_ATTR_PROBE_RESP]) {
8860020e 2152 bcn->probe_resp =
00f740e1 2153 nla_data(info->attrs[NL80211_ATTR_PROBE_RESP]);
8860020e 2154 bcn->probe_resp_len =
00f740e1
AN
2155 nla_len(info->attrs[NL80211_ATTR_PROBE_RESP]);
2156 }
2157
8860020e
JB
2158 return 0;
2159}
2160
2161static int nl80211_start_ap(struct sk_buff *skb, struct genl_info *info)
2162{
2163 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2164 struct net_device *dev = info->user_ptr[1];
2165 struct wireless_dev *wdev = dev->ieee80211_ptr;
2166 struct cfg80211_ap_settings params;
2167 int err;
2168
2169 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
2170 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
2171 return -EOPNOTSUPP;
2172
2173 if (!rdev->ops->start_ap)
2174 return -EOPNOTSUPP;
2175
2176 if (wdev->beacon_interval)
2177 return -EALREADY;
2178
2179 memset(&params, 0, sizeof(params));
2180
2181 /* these are required for START_AP */
2182 if (!info->attrs[NL80211_ATTR_BEACON_INTERVAL] ||
2183 !info->attrs[NL80211_ATTR_DTIM_PERIOD] ||
2184 !info->attrs[NL80211_ATTR_BEACON_HEAD])
2185 return -EINVAL;
2186
2187 err = nl80211_parse_beacon(info, &params.beacon);
2188 if (err)
2189 return err;
2190
2191 params.beacon_interval =
2192 nla_get_u32(info->attrs[NL80211_ATTR_BEACON_INTERVAL]);
2193 params.dtim_period =
2194 nla_get_u32(info->attrs[NL80211_ATTR_DTIM_PERIOD]);
2195
2196 err = cfg80211_validate_beacon_int(rdev, params.beacon_interval);
2197 if (err)
2198 return err;
2199
2200 /*
2201 * In theory, some of these attributes should be required here
2202 * but since they were not used when the command was originally
2203 * added, keep them optional for old user space programs to let
2204 * them continue to work with drivers that do not need the
2205 * additional information -- drivers must check!
2206 */
2207 if (info->attrs[NL80211_ATTR_SSID]) {
2208 params.ssid = nla_data(info->attrs[NL80211_ATTR_SSID]);
2209 params.ssid_len =
2210 nla_len(info->attrs[NL80211_ATTR_SSID]);
2211 if (params.ssid_len == 0 ||
2212 params.ssid_len > IEEE80211_MAX_SSID_LEN)
2213 return -EINVAL;
2214 }
2215
2216 if (info->attrs[NL80211_ATTR_HIDDEN_SSID]) {
2217 params.hidden_ssid = nla_get_u32(
2218 info->attrs[NL80211_ATTR_HIDDEN_SSID]);
2219 if (params.hidden_ssid != NL80211_HIDDEN_SSID_NOT_IN_USE &&
2220 params.hidden_ssid != NL80211_HIDDEN_SSID_ZERO_LEN &&
2221 params.hidden_ssid != NL80211_HIDDEN_SSID_ZERO_CONTENTS)
2222 return -EINVAL;
2223 }
2224
2225 params.privacy = !!info->attrs[NL80211_ATTR_PRIVACY];
2226
2227 if (info->attrs[NL80211_ATTR_AUTH_TYPE]) {
2228 params.auth_type = nla_get_u32(
2229 info->attrs[NL80211_ATTR_AUTH_TYPE]);
2230 if (!nl80211_valid_auth_type(params.auth_type))
2231 return -EINVAL;
2232 } else
2233 params.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
2234
2235 err = nl80211_crypto_settings(rdev, info, &params.crypto,
2236 NL80211_MAX_NR_CIPHER_SUITES);
2237 if (err)
2238 return err;
2239
1b658f11
VT
2240 if (info->attrs[NL80211_ATTR_INACTIVITY_TIMEOUT]) {
2241 if (!(rdev->wiphy.features & NL80211_FEATURE_INACTIVITY_TIMER))
2242 return -EOPNOTSUPP;
2243 params.inactivity_timeout = nla_get_u16(
2244 info->attrs[NL80211_ATTR_INACTIVITY_TIMEOUT]);
2245 }
2246
8860020e
JB
2247 err = rdev->ops->start_ap(&rdev->wiphy, dev, &params);
2248 if (!err)
2249 wdev->beacon_interval = params.beacon_interval;
56d1893d 2250 return err;
ed1b6cc7
JB
2251}
2252
8860020e
JB
2253static int nl80211_set_beacon(struct sk_buff *skb, struct genl_info *info)
2254{
2255 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2256 struct net_device *dev = info->user_ptr[1];
2257 struct wireless_dev *wdev = dev->ieee80211_ptr;
2258 struct cfg80211_beacon_data params;
2259 int err;
2260
2261 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
2262 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
2263 return -EOPNOTSUPP;
2264
2265 if (!rdev->ops->change_beacon)
2266 return -EOPNOTSUPP;
2267
2268 if (!wdev->beacon_interval)
2269 return -EINVAL;
2270
2271 err = nl80211_parse_beacon(info, &params);
2272 if (err)
2273 return err;
2274
2275 return rdev->ops->change_beacon(&rdev->wiphy, dev, &params);
2276}
2277
2278static int nl80211_stop_ap(struct sk_buff *skb, struct genl_info *info)
ed1b6cc7 2279{
4c476991
JB
2280 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2281 struct net_device *dev = info->user_ptr[1];
56d1893d
JB
2282 struct wireless_dev *wdev = dev->ieee80211_ptr;
2283 int err;
ed1b6cc7 2284
8860020e 2285 if (!rdev->ops->stop_ap)
4c476991 2286 return -EOPNOTSUPP;
ed1b6cc7 2287
074ac8df 2288 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
4c476991
JB
2289 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
2290 return -EOPNOTSUPP;
3b85875a 2291
8860020e
JB
2292 if (!wdev->beacon_interval)
2293 return -ENOENT;
2294
2295 err = rdev->ops->stop_ap(&rdev->wiphy, dev);
56d1893d
JB
2296 if (!err)
2297 wdev->beacon_interval = 0;
2298 return err;
ed1b6cc7
JB
2299}
2300
5727ef1b
JB
2301static const struct nla_policy sta_flags_policy[NL80211_STA_FLAG_MAX + 1] = {
2302 [NL80211_STA_FLAG_AUTHORIZED] = { .type = NLA_FLAG },
2303 [NL80211_STA_FLAG_SHORT_PREAMBLE] = { .type = NLA_FLAG },
2304 [NL80211_STA_FLAG_WME] = { .type = NLA_FLAG },
0e46724a 2305 [NL80211_STA_FLAG_MFP] = { .type = NLA_FLAG },
b39c48fa 2306 [NL80211_STA_FLAG_AUTHENTICATED] = { .type = NLA_FLAG },
d83023da 2307 [NL80211_STA_FLAG_TDLS_PEER] = { .type = NLA_FLAG },
5727ef1b
JB
2308};
2309
eccb8e8f 2310static int parse_station_flags(struct genl_info *info,
bdd3ae3d 2311 enum nl80211_iftype iftype,
eccb8e8f 2312 struct station_parameters *params)
5727ef1b
JB
2313{
2314 struct nlattr *flags[NL80211_STA_FLAG_MAX + 1];
eccb8e8f 2315 struct nlattr *nla;
5727ef1b
JB
2316 int flag;
2317
eccb8e8f
JB
2318 /*
2319 * Try parsing the new attribute first so userspace
2320 * can specify both for older kernels.
2321 */
2322 nla = info->attrs[NL80211_ATTR_STA_FLAGS2];
2323 if (nla) {
2324 struct nl80211_sta_flag_update *sta_flags;
2325
2326 sta_flags = nla_data(nla);
2327 params->sta_flags_mask = sta_flags->mask;
2328 params->sta_flags_set = sta_flags->set;
2329 if ((params->sta_flags_mask |
2330 params->sta_flags_set) & BIT(__NL80211_STA_FLAG_INVALID))
2331 return -EINVAL;
2332 return 0;
2333 }
2334
2335 /* if present, parse the old attribute */
5727ef1b 2336
eccb8e8f 2337 nla = info->attrs[NL80211_ATTR_STA_FLAGS];
5727ef1b
JB
2338 if (!nla)
2339 return 0;
2340
2341 if (nla_parse_nested(flags, NL80211_STA_FLAG_MAX,
2342 nla, sta_flags_policy))
2343 return -EINVAL;
2344
bdd3ae3d
JB
2345 /*
2346 * Only allow certain flags for interface types so that
2347 * other attributes are silently ignored. Remember that
2348 * this is backward compatibility code with old userspace
2349 * and shouldn't be hit in other cases anyway.
2350 */
2351 switch (iftype) {
2352 case NL80211_IFTYPE_AP:
2353 case NL80211_IFTYPE_AP_VLAN:
2354 case NL80211_IFTYPE_P2P_GO:
2355 params->sta_flags_mask = BIT(NL80211_STA_FLAG_AUTHORIZED) |
2356 BIT(NL80211_STA_FLAG_SHORT_PREAMBLE) |
2357 BIT(NL80211_STA_FLAG_WME) |
2358 BIT(NL80211_STA_FLAG_MFP);
2359 break;
2360 case NL80211_IFTYPE_P2P_CLIENT:
2361 case NL80211_IFTYPE_STATION:
2362 params->sta_flags_mask = BIT(NL80211_STA_FLAG_AUTHORIZED) |
2363 BIT(NL80211_STA_FLAG_TDLS_PEER);
2364 break;
2365 case NL80211_IFTYPE_MESH_POINT:
2366 params->sta_flags_mask = BIT(NL80211_STA_FLAG_AUTHENTICATED) |
2367 BIT(NL80211_STA_FLAG_MFP) |
2368 BIT(NL80211_STA_FLAG_AUTHORIZED);
2369 default:
2370 return -EINVAL;
2371 }
5727ef1b
JB
2372
2373 for (flag = 1; flag <= NL80211_STA_FLAG_MAX; flag++)
2374 if (flags[flag])
eccb8e8f 2375 params->sta_flags_set |= (1<<flag);
5727ef1b
JB
2376
2377 return 0;
2378}
2379
c8dcfd8a
FF
2380static bool nl80211_put_sta_rate(struct sk_buff *msg, struct rate_info *info,
2381 int attr)
2382{
2383 struct nlattr *rate;
2384 u16 bitrate;
2385
2386 rate = nla_nest_start(msg, attr);
2387 if (!rate)
2388 goto nla_put_failure;
2389
2390 /* cfg80211_calculate_bitrate will return 0 for mcs >= 32 */
2391 bitrate = cfg80211_calculate_bitrate(info);
2392 if (bitrate > 0)
2393 NLA_PUT_U16(msg, NL80211_RATE_INFO_BITRATE, bitrate);
2394
2395 if (info->flags & RATE_INFO_FLAGS_MCS)
2396 NLA_PUT_U8(msg, NL80211_RATE_INFO_MCS, info->mcs);
2397 if (info->flags & RATE_INFO_FLAGS_40_MHZ_WIDTH)
2398 NLA_PUT_FLAG(msg, NL80211_RATE_INFO_40_MHZ_WIDTH);
2399 if (info->flags & RATE_INFO_FLAGS_SHORT_GI)
2400 NLA_PUT_FLAG(msg, NL80211_RATE_INFO_SHORT_GI);
2401
2402 nla_nest_end(msg, rate);
2403 return true;
2404
2405nla_put_failure:
2406 return false;
2407}
2408
fd5b74dc 2409static int nl80211_send_station(struct sk_buff *msg, u32 pid, u32 seq,
66266b3a
JL
2410 int flags,
2411 struct cfg80211_registered_device *rdev,
2412 struct net_device *dev,
98b62183 2413 const u8 *mac_addr, struct station_info *sinfo)
fd5b74dc
JB
2414{
2415 void *hdr;
f4263c98 2416 struct nlattr *sinfoattr, *bss_param;
fd5b74dc
JB
2417
2418 hdr = nl80211hdr_put(msg, pid, seq, flags, NL80211_CMD_NEW_STATION);
2419 if (!hdr)
2420 return -1;
2421
2422 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
2423 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, mac_addr);
2424
f5ea9120
JB
2425 NLA_PUT_U32(msg, NL80211_ATTR_GENERATION, sinfo->generation);
2426
2ec600d6
LCC
2427 sinfoattr = nla_nest_start(msg, NL80211_ATTR_STA_INFO);
2428 if (!sinfoattr)
fd5b74dc 2429 goto nla_put_failure;
ebe27c91
MSS
2430 if (sinfo->filled & STATION_INFO_CONNECTED_TIME)
2431 NLA_PUT_U32(msg, NL80211_STA_INFO_CONNECTED_TIME,
2432 sinfo->connected_time);
2ec600d6
LCC
2433 if (sinfo->filled & STATION_INFO_INACTIVE_TIME)
2434 NLA_PUT_U32(msg, NL80211_STA_INFO_INACTIVE_TIME,
2435 sinfo->inactive_time);
2436 if (sinfo->filled & STATION_INFO_RX_BYTES)
2437 NLA_PUT_U32(msg, NL80211_STA_INFO_RX_BYTES,
2438 sinfo->rx_bytes);
2439 if (sinfo->filled & STATION_INFO_TX_BYTES)
2440 NLA_PUT_U32(msg, NL80211_STA_INFO_TX_BYTES,
2441 sinfo->tx_bytes);
2442 if (sinfo->filled & STATION_INFO_LLID)
2443 NLA_PUT_U16(msg, NL80211_STA_INFO_LLID,
2444 sinfo->llid);
2445 if (sinfo->filled & STATION_INFO_PLID)
2446 NLA_PUT_U16(msg, NL80211_STA_INFO_PLID,
2447 sinfo->plid);
2448 if (sinfo->filled & STATION_INFO_PLINK_STATE)
2449 NLA_PUT_U8(msg, NL80211_STA_INFO_PLINK_STATE,
2450 sinfo->plink_state);
66266b3a
JL
2451 switch (rdev->wiphy.signal_type) {
2452 case CFG80211_SIGNAL_TYPE_MBM:
2453 if (sinfo->filled & STATION_INFO_SIGNAL)
2454 NLA_PUT_U8(msg, NL80211_STA_INFO_SIGNAL,
2455 sinfo->signal);
2456 if (sinfo->filled & STATION_INFO_SIGNAL_AVG)
2457 NLA_PUT_U8(msg, NL80211_STA_INFO_SIGNAL_AVG,
2458 sinfo->signal_avg);
2459 break;
2460 default:
2461 break;
2462 }
420e7fab 2463 if (sinfo->filled & STATION_INFO_TX_BITRATE) {
c8dcfd8a
FF
2464 if (!nl80211_put_sta_rate(msg, &sinfo->txrate,
2465 NL80211_STA_INFO_TX_BITRATE))
2466 goto nla_put_failure;
2467 }
2468 if (sinfo->filled & STATION_INFO_RX_BITRATE) {
2469 if (!nl80211_put_sta_rate(msg, &sinfo->rxrate,
2470 NL80211_STA_INFO_RX_BITRATE))
420e7fab 2471 goto nla_put_failure;
420e7fab 2472 }
98c8a60a
JM
2473 if (sinfo->filled & STATION_INFO_RX_PACKETS)
2474 NLA_PUT_U32(msg, NL80211_STA_INFO_RX_PACKETS,
2475 sinfo->rx_packets);
2476 if (sinfo->filled & STATION_INFO_TX_PACKETS)
2477 NLA_PUT_U32(msg, NL80211_STA_INFO_TX_PACKETS,
2478 sinfo->tx_packets);
b206b4ef
BR
2479 if (sinfo->filled & STATION_INFO_TX_RETRIES)
2480 NLA_PUT_U32(msg, NL80211_STA_INFO_TX_RETRIES,
2481 sinfo->tx_retries);
2482 if (sinfo->filled & STATION_INFO_TX_FAILED)
2483 NLA_PUT_U32(msg, NL80211_STA_INFO_TX_FAILED,
2484 sinfo->tx_failed);
a85e1d55
PS
2485 if (sinfo->filled & STATION_INFO_BEACON_LOSS_COUNT)
2486 NLA_PUT_U32(msg, NL80211_STA_INFO_BEACON_LOSS,
2487 sinfo->beacon_loss_count);
f4263c98
PS
2488 if (sinfo->filled & STATION_INFO_BSS_PARAM) {
2489 bss_param = nla_nest_start(msg, NL80211_STA_INFO_BSS_PARAM);
2490 if (!bss_param)
2491 goto nla_put_failure;
2492
2493 if (sinfo->bss_param.flags & BSS_PARAM_FLAGS_CTS_PROT)
2494 NLA_PUT_FLAG(msg, NL80211_STA_BSS_PARAM_CTS_PROT);
2495 if (sinfo->bss_param.flags & BSS_PARAM_FLAGS_SHORT_PREAMBLE)
2496 NLA_PUT_FLAG(msg, NL80211_STA_BSS_PARAM_SHORT_PREAMBLE);
2497 if (sinfo->bss_param.flags & BSS_PARAM_FLAGS_SHORT_SLOT_TIME)
2498 NLA_PUT_FLAG(msg,
2499 NL80211_STA_BSS_PARAM_SHORT_SLOT_TIME);
2500 NLA_PUT_U8(msg, NL80211_STA_BSS_PARAM_DTIM_PERIOD,
2501 sinfo->bss_param.dtim_period);
2502 NLA_PUT_U16(msg, NL80211_STA_BSS_PARAM_BEACON_INTERVAL,
2503 sinfo->bss_param.beacon_interval);
2504
2505 nla_nest_end(msg, bss_param);
2506 }
bb6e753e
HS
2507 if (sinfo->filled & STATION_INFO_STA_FLAGS)
2508 NLA_PUT(msg, NL80211_STA_INFO_STA_FLAGS,
2509 sizeof(struct nl80211_sta_flag_update),
2510 &sinfo->sta_flags);
d299a1f2
JC
2511 if (sinfo->filled & STATION_INFO_T_OFFSET)
2512 NLA_PUT_U64(msg, NL80211_STA_INFO_T_OFFSET,
2513 sinfo->t_offset);
2ec600d6 2514 nla_nest_end(msg, sinfoattr);
fd5b74dc 2515
040bdf71 2516 if (sinfo->filled & STATION_INFO_ASSOC_REQ_IES)
50d3dfb7
JM
2517 NLA_PUT(msg, NL80211_ATTR_IE, sinfo->assoc_req_ies_len,
2518 sinfo->assoc_req_ies);
2519
fd5b74dc
JB
2520 return genlmsg_end(msg, hdr);
2521
2522 nla_put_failure:
bc3ed28c
TG
2523 genlmsg_cancel(msg, hdr);
2524 return -EMSGSIZE;
fd5b74dc
JB
2525}
2526
2ec600d6 2527static int nl80211_dump_station(struct sk_buff *skb,
bba95fef 2528 struct netlink_callback *cb)
2ec600d6 2529{
2ec600d6
LCC
2530 struct station_info sinfo;
2531 struct cfg80211_registered_device *dev;
bba95fef 2532 struct net_device *netdev;
2ec600d6 2533 u8 mac_addr[ETH_ALEN];
bba95fef 2534 int sta_idx = cb->args[1];
2ec600d6 2535 int err;
2ec600d6 2536
67748893
JB
2537 err = nl80211_prepare_netdev_dump(skb, cb, &dev, &netdev);
2538 if (err)
2539 return err;
bba95fef
JB
2540
2541 if (!dev->ops->dump_station) {
eec60b03 2542 err = -EOPNOTSUPP;
bba95fef
JB
2543 goto out_err;
2544 }
2545
bba95fef 2546 while (1) {
f612cedf 2547 memset(&sinfo, 0, sizeof(sinfo));
bba95fef
JB
2548 err = dev->ops->dump_station(&dev->wiphy, netdev, sta_idx,
2549 mac_addr, &sinfo);
2550 if (err == -ENOENT)
2551 break;
2552 if (err)
3b85875a 2553 goto out_err;
bba95fef
JB
2554
2555 if (nl80211_send_station(skb,
2556 NETLINK_CB(cb->skb).pid,
2557 cb->nlh->nlmsg_seq, NLM_F_MULTI,
66266b3a 2558 dev, netdev, mac_addr,
bba95fef
JB
2559 &sinfo) < 0)
2560 goto out;
2561
2562 sta_idx++;
2563 }
2564
2565
2566 out:
2567 cb->args[1] = sta_idx;
2568 err = skb->len;
bba95fef 2569 out_err:
67748893 2570 nl80211_finish_netdev_dump(dev);
bba95fef
JB
2571
2572 return err;
2ec600d6 2573}
fd5b74dc 2574
5727ef1b
JB
2575static int nl80211_get_station(struct sk_buff *skb, struct genl_info *info)
2576{
4c476991
JB
2577 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2578 struct net_device *dev = info->user_ptr[1];
2ec600d6 2579 struct station_info sinfo;
fd5b74dc
JB
2580 struct sk_buff *msg;
2581 u8 *mac_addr = NULL;
4c476991 2582 int err;
fd5b74dc 2583
2ec600d6 2584 memset(&sinfo, 0, sizeof(sinfo));
fd5b74dc
JB
2585
2586 if (!info->attrs[NL80211_ATTR_MAC])
2587 return -EINVAL;
2588
2589 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2590
4c476991
JB
2591 if (!rdev->ops->get_station)
2592 return -EOPNOTSUPP;
3b85875a 2593
4c476991 2594 err = rdev->ops->get_station(&rdev->wiphy, dev, mac_addr, &sinfo);
fd5b74dc 2595 if (err)
4c476991 2596 return err;
2ec600d6 2597
fd2120ca 2598 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
fd5b74dc 2599 if (!msg)
4c476991 2600 return -ENOMEM;
fd5b74dc
JB
2601
2602 if (nl80211_send_station(msg, info->snd_pid, info->snd_seq, 0,
66266b3a 2603 rdev, dev, mac_addr, &sinfo) < 0) {
4c476991
JB
2604 nlmsg_free(msg);
2605 return -ENOBUFS;
2606 }
3b85875a 2607
4c476991 2608 return genlmsg_reply(msg, info);
5727ef1b
JB
2609}
2610
2611/*
c258d2de 2612 * Get vlan interface making sure it is running and on the right wiphy.
5727ef1b 2613 */
80b99899
JB
2614static struct net_device *get_vlan(struct genl_info *info,
2615 struct cfg80211_registered_device *rdev)
5727ef1b 2616{
463d0183 2617 struct nlattr *vlanattr = info->attrs[NL80211_ATTR_STA_VLAN];
80b99899
JB
2618 struct net_device *v;
2619 int ret;
2620
2621 if (!vlanattr)
2622 return NULL;
2623
2624 v = dev_get_by_index(genl_info_net(info), nla_get_u32(vlanattr));
2625 if (!v)
2626 return ERR_PTR(-ENODEV);
2627
2628 if (!v->ieee80211_ptr || v->ieee80211_ptr->wiphy != &rdev->wiphy) {
2629 ret = -EINVAL;
2630 goto error;
5727ef1b 2631 }
80b99899
JB
2632
2633 if (!netif_running(v)) {
2634 ret = -ENETDOWN;
2635 goto error;
2636 }
2637
2638 return v;
2639 error:
2640 dev_put(v);
2641 return ERR_PTR(ret);
5727ef1b
JB
2642}
2643
2644static int nl80211_set_station(struct sk_buff *skb, struct genl_info *info)
2645{
4c476991 2646 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5727ef1b 2647 int err;
4c476991 2648 struct net_device *dev = info->user_ptr[1];
5727ef1b
JB
2649 struct station_parameters params;
2650 u8 *mac_addr = NULL;
2651
2652 memset(&params, 0, sizeof(params));
2653
2654 params.listen_interval = -1;
57cf8043 2655 params.plink_state = -1;
5727ef1b
JB
2656
2657 if (info->attrs[NL80211_ATTR_STA_AID])
2658 return -EINVAL;
2659
2660 if (!info->attrs[NL80211_ATTR_MAC])
2661 return -EINVAL;
2662
2663 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2664
2665 if (info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES]) {
2666 params.supported_rates =
2667 nla_data(info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES]);
2668 params.supported_rates_len =
2669 nla_len(info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES]);
2670 }
2671
2672 if (info->attrs[NL80211_ATTR_STA_LISTEN_INTERVAL])
2673 params.listen_interval =
2674 nla_get_u16(info->attrs[NL80211_ATTR_STA_LISTEN_INTERVAL]);
2675
36aedc90
JM
2676 if (info->attrs[NL80211_ATTR_HT_CAPABILITY])
2677 params.ht_capa =
2678 nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY]);
2679
bdd90d5e
JB
2680 if (!rdev->ops->change_station)
2681 return -EOPNOTSUPP;
2682
bdd3ae3d 2683 if (parse_station_flags(info, dev->ieee80211_ptr->iftype, &params))
5727ef1b
JB
2684 return -EINVAL;
2685
2ec600d6
LCC
2686 if (info->attrs[NL80211_ATTR_STA_PLINK_ACTION])
2687 params.plink_action =
2688 nla_get_u8(info->attrs[NL80211_ATTR_STA_PLINK_ACTION]);
2689
9c3990aa
JC
2690 if (info->attrs[NL80211_ATTR_STA_PLINK_STATE])
2691 params.plink_state =
2692 nla_get_u8(info->attrs[NL80211_ATTR_STA_PLINK_STATE]);
2693
a97f4424
JB
2694 switch (dev->ieee80211_ptr->iftype) {
2695 case NL80211_IFTYPE_AP:
2696 case NL80211_IFTYPE_AP_VLAN:
074ac8df 2697 case NL80211_IFTYPE_P2P_GO:
a97f4424
JB
2698 /* disallow mesh-specific things */
2699 if (params.plink_action)
bdd90d5e
JB
2700 return -EINVAL;
2701
2702 /* TDLS can't be set, ... */
2703 if (params.sta_flags_set & BIT(NL80211_STA_FLAG_TDLS_PEER))
2704 return -EINVAL;
2705 /*
2706 * ... but don't bother the driver with it. This works around
2707 * a hostapd/wpa_supplicant issue -- it always includes the
2708 * TLDS_PEER flag in the mask even for AP mode.
2709 */
2710 params.sta_flags_mask &= ~BIT(NL80211_STA_FLAG_TDLS_PEER);
2711
2712 /* accept only the listed bits */
2713 if (params.sta_flags_mask &
2714 ~(BIT(NL80211_STA_FLAG_AUTHORIZED) |
2715 BIT(NL80211_STA_FLAG_SHORT_PREAMBLE) |
2716 BIT(NL80211_STA_FLAG_WME) |
2717 BIT(NL80211_STA_FLAG_MFP)))
2718 return -EINVAL;
2719
2720 /* must be last in here for error handling */
2721 params.vlan = get_vlan(info, rdev);
2722 if (IS_ERR(params.vlan))
2723 return PTR_ERR(params.vlan);
a97f4424 2724 break;
074ac8df 2725 case NL80211_IFTYPE_P2P_CLIENT:
a97f4424 2726 case NL80211_IFTYPE_STATION:
bdd90d5e
JB
2727 /*
2728 * Don't allow userspace to change the TDLS_PEER flag,
2729 * but silently ignore attempts to change it since we
2730 * don't have state here to verify that it doesn't try
2731 * to change the flag.
2732 */
2733 params.sta_flags_mask &= ~BIT(NL80211_STA_FLAG_TDLS_PEER);
267335d6
AQ
2734 /* fall through */
2735 case NL80211_IFTYPE_ADHOC:
2736 /* disallow things sta doesn't support */
2737 if (params.plink_action)
2738 return -EINVAL;
2739 if (params.ht_capa)
2740 return -EINVAL;
2741 if (params.listen_interval >= 0)
2742 return -EINVAL;
bdd90d5e
JB
2743 /* reject any changes other than AUTHORIZED */
2744 if (params.sta_flags_mask & ~BIT(NL80211_STA_FLAG_AUTHORIZED))
2745 return -EINVAL;
a97f4424
JB
2746 break;
2747 case NL80211_IFTYPE_MESH_POINT:
2748 /* disallow things mesh doesn't support */
2749 if (params.vlan)
bdd90d5e 2750 return -EINVAL;
a97f4424 2751 if (params.ht_capa)
bdd90d5e 2752 return -EINVAL;
a97f4424 2753 if (params.listen_interval >= 0)
bdd90d5e
JB
2754 return -EINVAL;
2755 /*
2756 * No special handling for TDLS here -- the userspace
2757 * mesh code doesn't have this bug.
2758 */
b39c48fa
JC
2759 if (params.sta_flags_mask &
2760 ~(BIT(NL80211_STA_FLAG_AUTHENTICATED) |
8429828e 2761 BIT(NL80211_STA_FLAG_MFP) |
b39c48fa 2762 BIT(NL80211_STA_FLAG_AUTHORIZED)))
bdd90d5e 2763 return -EINVAL;
a97f4424
JB
2764 break;
2765 default:
bdd90d5e 2766 return -EOPNOTSUPP;
034d655e
JB
2767 }
2768
bdd90d5e 2769 /* be aware of params.vlan when changing code here */
5727ef1b 2770
79c97e97 2771 err = rdev->ops->change_station(&rdev->wiphy, dev, mac_addr, &params);
5727ef1b 2772
5727ef1b
JB
2773 if (params.vlan)
2774 dev_put(params.vlan);
3b85875a 2775
5727ef1b
JB
2776 return err;
2777}
2778
c75786c9
EP
2779static struct nla_policy
2780nl80211_sta_wme_policy[NL80211_STA_WME_MAX + 1] __read_mostly = {
2781 [NL80211_STA_WME_UAPSD_QUEUES] = { .type = NLA_U8 },
2782 [NL80211_STA_WME_MAX_SP] = { .type = NLA_U8 },
2783};
2784
5727ef1b
JB
2785static int nl80211_new_station(struct sk_buff *skb, struct genl_info *info)
2786{
4c476991 2787 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5727ef1b 2788 int err;
4c476991 2789 struct net_device *dev = info->user_ptr[1];
5727ef1b
JB
2790 struct station_parameters params;
2791 u8 *mac_addr = NULL;
2792
2793 memset(&params, 0, sizeof(params));
2794
2795 if (!info->attrs[NL80211_ATTR_MAC])
2796 return -EINVAL;
2797
5727ef1b
JB
2798 if (!info->attrs[NL80211_ATTR_STA_LISTEN_INTERVAL])
2799 return -EINVAL;
2800
2801 if (!info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES])
2802 return -EINVAL;
2803
0e956c13
TLSC
2804 if (!info->attrs[NL80211_ATTR_STA_AID])
2805 return -EINVAL;
2806
5727ef1b
JB
2807 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2808 params.supported_rates =
2809 nla_data(info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES]);
2810 params.supported_rates_len =
2811 nla_len(info->attrs[NL80211_ATTR_STA_SUPPORTED_RATES]);
2812 params.listen_interval =
2813 nla_get_u16(info->attrs[NL80211_ATTR_STA_LISTEN_INTERVAL]);
51b50fbe 2814
0e956c13
TLSC
2815 params.aid = nla_get_u16(info->attrs[NL80211_ATTR_STA_AID]);
2816 if (!params.aid || params.aid > IEEE80211_MAX_AID)
2817 return -EINVAL;
51b50fbe 2818
36aedc90
JM
2819 if (info->attrs[NL80211_ATTR_HT_CAPABILITY])
2820 params.ht_capa =
2821 nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY]);
5727ef1b 2822
96b78dff
JC
2823 if (info->attrs[NL80211_ATTR_STA_PLINK_ACTION])
2824 params.plink_action =
2825 nla_get_u8(info->attrs[NL80211_ATTR_STA_PLINK_ACTION]);
2826
bdd90d5e
JB
2827 if (!rdev->ops->add_station)
2828 return -EOPNOTSUPP;
2829
bdd3ae3d 2830 if (parse_station_flags(info, dev->ieee80211_ptr->iftype, &params))
5727ef1b
JB
2831 return -EINVAL;
2832
bdd90d5e
JB
2833 switch (dev->ieee80211_ptr->iftype) {
2834 case NL80211_IFTYPE_AP:
2835 case NL80211_IFTYPE_AP_VLAN:
2836 case NL80211_IFTYPE_P2P_GO:
2837 /* parse WME attributes if sta is WME capable */
2838 if ((rdev->wiphy.flags & WIPHY_FLAG_AP_UAPSD) &&
2839 (params.sta_flags_set & BIT(NL80211_STA_FLAG_WME)) &&
2840 info->attrs[NL80211_ATTR_STA_WME]) {
2841 struct nlattr *tb[NL80211_STA_WME_MAX + 1];
2842 struct nlattr *nla;
2843
2844 nla = info->attrs[NL80211_ATTR_STA_WME];
2845 err = nla_parse_nested(tb, NL80211_STA_WME_MAX, nla,
2846 nl80211_sta_wme_policy);
2847 if (err)
2848 return err;
2849
2850 if (tb[NL80211_STA_WME_UAPSD_QUEUES])
2851 params.uapsd_queues =
2852 nla_get_u8(tb[NL80211_STA_WME_UAPSD_QUEUES]);
2853 if (params.uapsd_queues &
2854 ~IEEE80211_WMM_IE_STA_QOSINFO_AC_MASK)
2855 return -EINVAL;
c75786c9 2856
bdd90d5e
JB
2857 if (tb[NL80211_STA_WME_MAX_SP])
2858 params.max_sp =
2859 nla_get_u8(tb[NL80211_STA_WME_MAX_SP]);
c75786c9 2860
bdd90d5e
JB
2861 if (params.max_sp &
2862 ~IEEE80211_WMM_IE_STA_QOSINFO_SP_MASK)
2863 return -EINVAL;
4319e193 2864
bdd90d5e
JB
2865 params.sta_modify_mask |= STATION_PARAM_APPLY_UAPSD;
2866 }
2867 /* TDLS peers cannot be added */
2868 if (params.sta_flags_set & BIT(NL80211_STA_FLAG_TDLS_PEER))
4319e193 2869 return -EINVAL;
bdd90d5e
JB
2870 /* but don't bother the driver with it */
2871 params.sta_flags_mask &= ~BIT(NL80211_STA_FLAG_TDLS_PEER);
3b9ce80c 2872
bdd90d5e
JB
2873 /* must be last in here for error handling */
2874 params.vlan = get_vlan(info, rdev);
2875 if (IS_ERR(params.vlan))
2876 return PTR_ERR(params.vlan);
2877 break;
2878 case NL80211_IFTYPE_MESH_POINT:
2879 /* TDLS peers cannot be added */
2880 if (params.sta_flags_set & BIT(NL80211_STA_FLAG_TDLS_PEER))
2881 return -EINVAL;
2882 break;
2883 case NL80211_IFTYPE_STATION:
2884 /* Only TDLS peers can be added */
2885 if (!(params.sta_flags_set & BIT(NL80211_STA_FLAG_TDLS_PEER)))
2886 return -EINVAL;
2887 /* Can only add if TDLS ... */
2888 if (!(rdev->wiphy.flags & WIPHY_FLAG_SUPPORTS_TDLS))
2889 return -EOPNOTSUPP;
2890 /* ... with external setup is supported */
2891 if (!(rdev->wiphy.flags & WIPHY_FLAG_TDLS_EXTERNAL_SETUP))
2892 return -EOPNOTSUPP;
2893 break;
2894 default:
2895 return -EOPNOTSUPP;
c75786c9
EP
2896 }
2897
bdd90d5e 2898 /* be aware of params.vlan when changing code here */
5727ef1b 2899
79c97e97 2900 err = rdev->ops->add_station(&rdev->wiphy, dev, mac_addr, &params);
5727ef1b 2901
5727ef1b
JB
2902 if (params.vlan)
2903 dev_put(params.vlan);
5727ef1b
JB
2904 return err;
2905}
2906
2907static int nl80211_del_station(struct sk_buff *skb, struct genl_info *info)
2908{
4c476991
JB
2909 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2910 struct net_device *dev = info->user_ptr[1];
5727ef1b
JB
2911 u8 *mac_addr = NULL;
2912
2913 if (info->attrs[NL80211_ATTR_MAC])
2914 mac_addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
2915
e80cf853 2916 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
d5d9de02 2917 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP_VLAN &&
074ac8df 2918 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT &&
4c476991
JB
2919 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
2920 return -EINVAL;
5727ef1b 2921
4c476991
JB
2922 if (!rdev->ops->del_station)
2923 return -EOPNOTSUPP;
3b85875a 2924
4c476991 2925 return rdev->ops->del_station(&rdev->wiphy, dev, mac_addr);
5727ef1b
JB
2926}
2927
2ec600d6
LCC
2928static int nl80211_send_mpath(struct sk_buff *msg, u32 pid, u32 seq,
2929 int flags, struct net_device *dev,
2930 u8 *dst, u8 *next_hop,
2931 struct mpath_info *pinfo)
2932{
2933 void *hdr;
2934 struct nlattr *pinfoattr;
2935
2936 hdr = nl80211hdr_put(msg, pid, seq, flags, NL80211_CMD_NEW_STATION);
2937 if (!hdr)
2938 return -1;
2939
2940 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
2941 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, dst);
2942 NLA_PUT(msg, NL80211_ATTR_MPATH_NEXT_HOP, ETH_ALEN, next_hop);
2943
f5ea9120
JB
2944 NLA_PUT_U32(msg, NL80211_ATTR_GENERATION, pinfo->generation);
2945
2ec600d6
LCC
2946 pinfoattr = nla_nest_start(msg, NL80211_ATTR_MPATH_INFO);
2947 if (!pinfoattr)
2948 goto nla_put_failure;
2949 if (pinfo->filled & MPATH_INFO_FRAME_QLEN)
2950 NLA_PUT_U32(msg, NL80211_MPATH_INFO_FRAME_QLEN,
2951 pinfo->frame_qlen);
d19b3bf6
RP
2952 if (pinfo->filled & MPATH_INFO_SN)
2953 NLA_PUT_U32(msg, NL80211_MPATH_INFO_SN,
2954 pinfo->sn);
2ec600d6
LCC
2955 if (pinfo->filled & MPATH_INFO_METRIC)
2956 NLA_PUT_U32(msg, NL80211_MPATH_INFO_METRIC,
2957 pinfo->metric);
2958 if (pinfo->filled & MPATH_INFO_EXPTIME)
2959 NLA_PUT_U32(msg, NL80211_MPATH_INFO_EXPTIME,
2960 pinfo->exptime);
2961 if (pinfo->filled & MPATH_INFO_FLAGS)
2962 NLA_PUT_U8(msg, NL80211_MPATH_INFO_FLAGS,
2963 pinfo->flags);
2964 if (pinfo->filled & MPATH_INFO_DISCOVERY_TIMEOUT)
2965 NLA_PUT_U32(msg, NL80211_MPATH_INFO_DISCOVERY_TIMEOUT,
2966 pinfo->discovery_timeout);
2967 if (pinfo->filled & MPATH_INFO_DISCOVERY_RETRIES)
2968 NLA_PUT_U8(msg, NL80211_MPATH_INFO_DISCOVERY_RETRIES,
2969 pinfo->discovery_retries);
2970
2971 nla_nest_end(msg, pinfoattr);
2972
2973 return genlmsg_end(msg, hdr);
2974
2975 nla_put_failure:
bc3ed28c
TG
2976 genlmsg_cancel(msg, hdr);
2977 return -EMSGSIZE;
2ec600d6
LCC
2978}
2979
2980static int nl80211_dump_mpath(struct sk_buff *skb,
bba95fef 2981 struct netlink_callback *cb)
2ec600d6 2982{
2ec600d6
LCC
2983 struct mpath_info pinfo;
2984 struct cfg80211_registered_device *dev;
bba95fef 2985 struct net_device *netdev;
2ec600d6
LCC
2986 u8 dst[ETH_ALEN];
2987 u8 next_hop[ETH_ALEN];
bba95fef 2988 int path_idx = cb->args[1];
2ec600d6 2989 int err;
2ec600d6 2990
67748893
JB
2991 err = nl80211_prepare_netdev_dump(skb, cb, &dev, &netdev);
2992 if (err)
2993 return err;
bba95fef
JB
2994
2995 if (!dev->ops->dump_mpath) {
eec60b03 2996 err = -EOPNOTSUPP;
bba95fef
JB
2997 goto out_err;
2998 }
2999
eec60b03
JM
3000 if (netdev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT) {
3001 err = -EOPNOTSUPP;
0448b5fc 3002 goto out_err;
eec60b03
JM
3003 }
3004
bba95fef
JB
3005 while (1) {
3006 err = dev->ops->dump_mpath(&dev->wiphy, netdev, path_idx,
3007 dst, next_hop, &pinfo);
3008 if (err == -ENOENT)
2ec600d6 3009 break;
bba95fef 3010 if (err)
3b85875a 3011 goto out_err;
2ec600d6 3012
bba95fef
JB
3013 if (nl80211_send_mpath(skb, NETLINK_CB(cb->skb).pid,
3014 cb->nlh->nlmsg_seq, NLM_F_MULTI,
3015 netdev, dst, next_hop,
3016 &pinfo) < 0)
3017 goto out;
2ec600d6 3018
bba95fef 3019 path_idx++;
2ec600d6 3020 }
2ec600d6 3021
2ec600d6 3022
bba95fef
JB
3023 out:
3024 cb->args[1] = path_idx;
3025 err = skb->len;
bba95fef 3026 out_err:
67748893 3027 nl80211_finish_netdev_dump(dev);
bba95fef 3028 return err;
2ec600d6
LCC
3029}
3030
3031static int nl80211_get_mpath(struct sk_buff *skb, struct genl_info *info)
3032{
4c476991 3033 struct cfg80211_registered_device *rdev = info->user_ptr[0];
2ec600d6 3034 int err;
4c476991 3035 struct net_device *dev = info->user_ptr[1];
2ec600d6
LCC
3036 struct mpath_info pinfo;
3037 struct sk_buff *msg;
3038 u8 *dst = NULL;
3039 u8 next_hop[ETH_ALEN];
3040
3041 memset(&pinfo, 0, sizeof(pinfo));
3042
3043 if (!info->attrs[NL80211_ATTR_MAC])
3044 return -EINVAL;
3045
3046 dst = nla_data(info->attrs[NL80211_ATTR_MAC]);
3047
4c476991
JB
3048 if (!rdev->ops->get_mpath)
3049 return -EOPNOTSUPP;
2ec600d6 3050
4c476991
JB
3051 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT)
3052 return -EOPNOTSUPP;
eec60b03 3053
79c97e97 3054 err = rdev->ops->get_mpath(&rdev->wiphy, dev, dst, next_hop, &pinfo);
2ec600d6 3055 if (err)
4c476991 3056 return err;
2ec600d6 3057
fd2120ca 3058 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
2ec600d6 3059 if (!msg)
4c476991 3060 return -ENOMEM;
2ec600d6
LCC
3061
3062 if (nl80211_send_mpath(msg, info->snd_pid, info->snd_seq, 0,
4c476991
JB
3063 dev, dst, next_hop, &pinfo) < 0) {
3064 nlmsg_free(msg);
3065 return -ENOBUFS;
3066 }
3b85875a 3067
4c476991 3068 return genlmsg_reply(msg, info);
2ec600d6
LCC
3069}
3070
3071static int nl80211_set_mpath(struct sk_buff *skb, struct genl_info *info)
3072{
4c476991
JB
3073 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3074 struct net_device *dev = info->user_ptr[1];
2ec600d6
LCC
3075 u8 *dst = NULL;
3076 u8 *next_hop = NULL;
3077
3078 if (!info->attrs[NL80211_ATTR_MAC])
3079 return -EINVAL;
3080
3081 if (!info->attrs[NL80211_ATTR_MPATH_NEXT_HOP])
3082 return -EINVAL;
3083
3084 dst = nla_data(info->attrs[NL80211_ATTR_MAC]);
3085 next_hop = nla_data(info->attrs[NL80211_ATTR_MPATH_NEXT_HOP]);
3086
4c476991
JB
3087 if (!rdev->ops->change_mpath)
3088 return -EOPNOTSUPP;
35a8efe1 3089
4c476991
JB
3090 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT)
3091 return -EOPNOTSUPP;
2ec600d6 3092
4c476991 3093 return rdev->ops->change_mpath(&rdev->wiphy, dev, dst, next_hop);
2ec600d6 3094}
4c476991 3095
2ec600d6
LCC
3096static int nl80211_new_mpath(struct sk_buff *skb, struct genl_info *info)
3097{
4c476991
JB
3098 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3099 struct net_device *dev = info->user_ptr[1];
2ec600d6
LCC
3100 u8 *dst = NULL;
3101 u8 *next_hop = NULL;
3102
3103 if (!info->attrs[NL80211_ATTR_MAC])
3104 return -EINVAL;
3105
3106 if (!info->attrs[NL80211_ATTR_MPATH_NEXT_HOP])
3107 return -EINVAL;
3108
3109 dst = nla_data(info->attrs[NL80211_ATTR_MAC]);
3110 next_hop = nla_data(info->attrs[NL80211_ATTR_MPATH_NEXT_HOP]);
3111
4c476991
JB
3112 if (!rdev->ops->add_mpath)
3113 return -EOPNOTSUPP;
35a8efe1 3114
4c476991
JB
3115 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT)
3116 return -EOPNOTSUPP;
2ec600d6 3117
4c476991 3118 return rdev->ops->add_mpath(&rdev->wiphy, dev, dst, next_hop);
2ec600d6
LCC
3119}
3120
3121static int nl80211_del_mpath(struct sk_buff *skb, struct genl_info *info)
3122{
4c476991
JB
3123 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3124 struct net_device *dev = info->user_ptr[1];
2ec600d6
LCC
3125 u8 *dst = NULL;
3126
3127 if (info->attrs[NL80211_ATTR_MAC])
3128 dst = nla_data(info->attrs[NL80211_ATTR_MAC]);
3129
4c476991
JB
3130 if (!rdev->ops->del_mpath)
3131 return -EOPNOTSUPP;
3b85875a 3132
4c476991 3133 return rdev->ops->del_mpath(&rdev->wiphy, dev, dst);
2ec600d6
LCC
3134}
3135
9f1ba906
JM
3136static int nl80211_set_bss(struct sk_buff *skb, struct genl_info *info)
3137{
4c476991
JB
3138 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3139 struct net_device *dev = info->user_ptr[1];
9f1ba906
JM
3140 struct bss_parameters params;
3141
3142 memset(&params, 0, sizeof(params));
3143 /* default to not changing parameters */
3144 params.use_cts_prot = -1;
3145 params.use_short_preamble = -1;
3146 params.use_short_slot_time = -1;
fd8aaaf3 3147 params.ap_isolate = -1;
50b12f59 3148 params.ht_opmode = -1;
9f1ba906
JM
3149
3150 if (info->attrs[NL80211_ATTR_BSS_CTS_PROT])
3151 params.use_cts_prot =
3152 nla_get_u8(info->attrs[NL80211_ATTR_BSS_CTS_PROT]);
3153 if (info->attrs[NL80211_ATTR_BSS_SHORT_PREAMBLE])
3154 params.use_short_preamble =
3155 nla_get_u8(info->attrs[NL80211_ATTR_BSS_SHORT_PREAMBLE]);
3156 if (info->attrs[NL80211_ATTR_BSS_SHORT_SLOT_TIME])
3157 params.use_short_slot_time =
3158 nla_get_u8(info->attrs[NL80211_ATTR_BSS_SHORT_SLOT_TIME]);
90c97a04
JM
3159 if (info->attrs[NL80211_ATTR_BSS_BASIC_RATES]) {
3160 params.basic_rates =
3161 nla_data(info->attrs[NL80211_ATTR_BSS_BASIC_RATES]);
3162 params.basic_rates_len =
3163 nla_len(info->attrs[NL80211_ATTR_BSS_BASIC_RATES]);
3164 }
fd8aaaf3
FF
3165 if (info->attrs[NL80211_ATTR_AP_ISOLATE])
3166 params.ap_isolate = !!nla_get_u8(info->attrs[NL80211_ATTR_AP_ISOLATE]);
50b12f59
HS
3167 if (info->attrs[NL80211_ATTR_BSS_HT_OPMODE])
3168 params.ht_opmode =
3169 nla_get_u16(info->attrs[NL80211_ATTR_BSS_HT_OPMODE]);
9f1ba906 3170
4c476991
JB
3171 if (!rdev->ops->change_bss)
3172 return -EOPNOTSUPP;
9f1ba906 3173
074ac8df 3174 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
4c476991
JB
3175 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
3176 return -EOPNOTSUPP;
3b85875a 3177
4c476991 3178 return rdev->ops->change_bss(&rdev->wiphy, dev, &params);
9f1ba906
JM
3179}
3180
b54452b0 3181static const struct nla_policy reg_rule_policy[NL80211_REG_RULE_ATTR_MAX + 1] = {
b2e1b302
LR
3182 [NL80211_ATTR_REG_RULE_FLAGS] = { .type = NLA_U32 },
3183 [NL80211_ATTR_FREQ_RANGE_START] = { .type = NLA_U32 },
3184 [NL80211_ATTR_FREQ_RANGE_END] = { .type = NLA_U32 },
3185 [NL80211_ATTR_FREQ_RANGE_MAX_BW] = { .type = NLA_U32 },
3186 [NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN] = { .type = NLA_U32 },
3187 [NL80211_ATTR_POWER_RULE_MAX_EIRP] = { .type = NLA_U32 },
3188};
3189
3190static int parse_reg_rule(struct nlattr *tb[],
3191 struct ieee80211_reg_rule *reg_rule)
3192{
3193 struct ieee80211_freq_range *freq_range = &reg_rule->freq_range;
3194 struct ieee80211_power_rule *power_rule = &reg_rule->power_rule;
3195
3196 if (!tb[NL80211_ATTR_REG_RULE_FLAGS])
3197 return -EINVAL;
3198 if (!tb[NL80211_ATTR_FREQ_RANGE_START])
3199 return -EINVAL;
3200 if (!tb[NL80211_ATTR_FREQ_RANGE_END])
3201 return -EINVAL;
3202 if (!tb[NL80211_ATTR_FREQ_RANGE_MAX_BW])
3203 return -EINVAL;
3204 if (!tb[NL80211_ATTR_POWER_RULE_MAX_EIRP])
3205 return -EINVAL;
3206
3207 reg_rule->flags = nla_get_u32(tb[NL80211_ATTR_REG_RULE_FLAGS]);
3208
3209 freq_range->start_freq_khz =
3210 nla_get_u32(tb[NL80211_ATTR_FREQ_RANGE_START]);
3211 freq_range->end_freq_khz =
3212 nla_get_u32(tb[NL80211_ATTR_FREQ_RANGE_END]);
3213 freq_range->max_bandwidth_khz =
3214 nla_get_u32(tb[NL80211_ATTR_FREQ_RANGE_MAX_BW]);
3215
3216 power_rule->max_eirp =
3217 nla_get_u32(tb[NL80211_ATTR_POWER_RULE_MAX_EIRP]);
3218
3219 if (tb[NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN])
3220 power_rule->max_antenna_gain =
3221 nla_get_u32(tb[NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN]);
3222
3223 return 0;
3224}
3225
3226static int nl80211_req_set_reg(struct sk_buff *skb, struct genl_info *info)
3227{
3228 int r;
3229 char *data = NULL;
3230
80778f18
LR
3231 /*
3232 * You should only get this when cfg80211 hasn't yet initialized
3233 * completely when built-in to the kernel right between the time
3234 * window between nl80211_init() and regulatory_init(), if that is
3235 * even possible.
3236 */
3237 mutex_lock(&cfg80211_mutex);
3238 if (unlikely(!cfg80211_regdomain)) {
fe33eb39
LR
3239 mutex_unlock(&cfg80211_mutex);
3240 return -EINPROGRESS;
80778f18 3241 }
fe33eb39 3242 mutex_unlock(&cfg80211_mutex);
80778f18 3243
fe33eb39
LR
3244 if (!info->attrs[NL80211_ATTR_REG_ALPHA2])
3245 return -EINVAL;
b2e1b302
LR
3246
3247 data = nla_data(info->attrs[NL80211_ATTR_REG_ALPHA2]);
3248
fe33eb39
LR
3249 r = regulatory_hint_user(data);
3250
b2e1b302
LR
3251 return r;
3252}
3253
24bdd9f4 3254static int nl80211_get_mesh_config(struct sk_buff *skb,
29cbe68c 3255 struct genl_info *info)
93da9cc1 3256{
4c476991 3257 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4c476991 3258 struct net_device *dev = info->user_ptr[1];
29cbe68c
JB
3259 struct wireless_dev *wdev = dev->ieee80211_ptr;
3260 struct mesh_config cur_params;
3261 int err = 0;
93da9cc1 3262 void *hdr;
3263 struct nlattr *pinfoattr;
3264 struct sk_buff *msg;
3265
29cbe68c
JB
3266 if (wdev->iftype != NL80211_IFTYPE_MESH_POINT)
3267 return -EOPNOTSUPP;
3268
24bdd9f4 3269 if (!rdev->ops->get_mesh_config)
4c476991 3270 return -EOPNOTSUPP;
f3f92586 3271
29cbe68c
JB
3272 wdev_lock(wdev);
3273 /* If not connected, get default parameters */
3274 if (!wdev->mesh_id_len)
3275 memcpy(&cur_params, &default_mesh_config, sizeof(cur_params));
3276 else
24bdd9f4 3277 err = rdev->ops->get_mesh_config(&rdev->wiphy, dev,
29cbe68c
JB
3278 &cur_params);
3279 wdev_unlock(wdev);
3280
93da9cc1 3281 if (err)
4c476991 3282 return err;
93da9cc1 3283
3284 /* Draw up a netlink message to send back */
fd2120ca 3285 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
4c476991
JB
3286 if (!msg)
3287 return -ENOMEM;
93da9cc1 3288 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
24bdd9f4 3289 NL80211_CMD_GET_MESH_CONFIG);
93da9cc1 3290 if (!hdr)
efe1cf0c 3291 goto out;
24bdd9f4 3292 pinfoattr = nla_nest_start(msg, NL80211_ATTR_MESH_CONFIG);
93da9cc1 3293 if (!pinfoattr)
3294 goto nla_put_failure;
3295 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
3296 NLA_PUT_U16(msg, NL80211_MESHCONF_RETRY_TIMEOUT,
3297 cur_params.dot11MeshRetryTimeout);
3298 NLA_PUT_U16(msg, NL80211_MESHCONF_CONFIRM_TIMEOUT,
3299 cur_params.dot11MeshConfirmTimeout);
3300 NLA_PUT_U16(msg, NL80211_MESHCONF_HOLDING_TIMEOUT,
3301 cur_params.dot11MeshHoldingTimeout);
3302 NLA_PUT_U16(msg, NL80211_MESHCONF_MAX_PEER_LINKS,
3303 cur_params.dot11MeshMaxPeerLinks);
3304 NLA_PUT_U8(msg, NL80211_MESHCONF_MAX_RETRIES,
3305 cur_params.dot11MeshMaxRetries);
3306 NLA_PUT_U8(msg, NL80211_MESHCONF_TTL,
3307 cur_params.dot11MeshTTL);
45904f21
JC
3308 NLA_PUT_U8(msg, NL80211_MESHCONF_ELEMENT_TTL,
3309 cur_params.element_ttl);
93da9cc1 3310 NLA_PUT_U8(msg, NL80211_MESHCONF_AUTO_OPEN_PLINKS,
3311 cur_params.auto_open_plinks);
d299a1f2
JC
3312 NLA_PUT_U32(msg, NL80211_MESHCONF_SYNC_OFFSET_MAX_NEIGHBOR,
3313 cur_params.dot11MeshNbrOffsetMaxNeighbor);
93da9cc1 3314 NLA_PUT_U8(msg, NL80211_MESHCONF_HWMP_MAX_PREQ_RETRIES,
3315 cur_params.dot11MeshHWMPmaxPREQretries);
3316 NLA_PUT_U32(msg, NL80211_MESHCONF_PATH_REFRESH_TIME,
3317 cur_params.path_refresh_time);
3318 NLA_PUT_U16(msg, NL80211_MESHCONF_MIN_DISCOVERY_TIMEOUT,
3319 cur_params.min_discovery_timeout);
3320 NLA_PUT_U32(msg, NL80211_MESHCONF_HWMP_ACTIVE_PATH_TIMEOUT,
3321 cur_params.dot11MeshHWMPactivePathTimeout);
3322 NLA_PUT_U16(msg, NL80211_MESHCONF_HWMP_PREQ_MIN_INTERVAL,
3323 cur_params.dot11MeshHWMPpreqMinInterval);
dca7e943
TP
3324 NLA_PUT_U16(msg, NL80211_MESHCONF_HWMP_PERR_MIN_INTERVAL,
3325 cur_params.dot11MeshHWMPperrMinInterval);
93da9cc1 3326 NLA_PUT_U16(msg, NL80211_MESHCONF_HWMP_NET_DIAM_TRVS_TIME,
3327 cur_params.dot11MeshHWMPnetDiameterTraversalTime);
63c5723b
RP
3328 NLA_PUT_U8(msg, NL80211_MESHCONF_HWMP_ROOTMODE,
3329 cur_params.dot11MeshHWMPRootMode);
0507e159
JC
3330 NLA_PUT_U16(msg, NL80211_MESHCONF_HWMP_RANN_INTERVAL,
3331 cur_params.dot11MeshHWMPRannInterval);
16dd7267
JC
3332 NLA_PUT_U8(msg, NL80211_MESHCONF_GATE_ANNOUNCEMENTS,
3333 cur_params.dot11MeshGateAnnouncementProtocol);
94f90656
CYY
3334 NLA_PUT_U8(msg, NL80211_MESHCONF_FORWARDING,
3335 cur_params.dot11MeshForwarding);
55335137
AN
3336 NLA_PUT_U32(msg, NL80211_MESHCONF_RSSI_THRESHOLD,
3337 cur_params.rssi_threshold);
93da9cc1 3338 nla_nest_end(msg, pinfoattr);
3339 genlmsg_end(msg, hdr);
4c476991 3340 return genlmsg_reply(msg, info);
93da9cc1 3341
3b85875a 3342 nla_put_failure:
93da9cc1 3343 genlmsg_cancel(msg, hdr);
efe1cf0c 3344 out:
d080e275 3345 nlmsg_free(msg);
4c476991 3346 return -ENOBUFS;
93da9cc1 3347}
3348
b54452b0 3349static const struct nla_policy nl80211_meshconf_params_policy[NL80211_MESHCONF_ATTR_MAX+1] = {
93da9cc1 3350 [NL80211_MESHCONF_RETRY_TIMEOUT] = { .type = NLA_U16 },
3351 [NL80211_MESHCONF_CONFIRM_TIMEOUT] = { .type = NLA_U16 },
3352 [NL80211_MESHCONF_HOLDING_TIMEOUT] = { .type = NLA_U16 },
3353 [NL80211_MESHCONF_MAX_PEER_LINKS] = { .type = NLA_U16 },
3354 [NL80211_MESHCONF_MAX_RETRIES] = { .type = NLA_U8 },
3355 [NL80211_MESHCONF_TTL] = { .type = NLA_U8 },
45904f21 3356 [NL80211_MESHCONF_ELEMENT_TTL] = { .type = NLA_U8 },
93da9cc1 3357 [NL80211_MESHCONF_AUTO_OPEN_PLINKS] = { .type = NLA_U8 },
d299a1f2 3358 [NL80211_MESHCONF_SYNC_OFFSET_MAX_NEIGHBOR] = { .type = NLA_U32 },
93da9cc1 3359
3360 [NL80211_MESHCONF_HWMP_MAX_PREQ_RETRIES] = { .type = NLA_U8 },
3361 [NL80211_MESHCONF_PATH_REFRESH_TIME] = { .type = NLA_U32 },
3362 [NL80211_MESHCONF_MIN_DISCOVERY_TIMEOUT] = { .type = NLA_U16 },
3363 [NL80211_MESHCONF_HWMP_ACTIVE_PATH_TIMEOUT] = { .type = NLA_U32 },
3364 [NL80211_MESHCONF_HWMP_PREQ_MIN_INTERVAL] = { .type = NLA_U16 },
dca7e943 3365 [NL80211_MESHCONF_HWMP_PERR_MIN_INTERVAL] = { .type = NLA_U16 },
93da9cc1 3366 [NL80211_MESHCONF_HWMP_NET_DIAM_TRVS_TIME] = { .type = NLA_U16 },
699403db 3367 [NL80211_MESHCONF_HWMP_ROOTMODE] = { .type = NLA_U8 },
0507e159 3368 [NL80211_MESHCONF_HWMP_RANN_INTERVAL] = { .type = NLA_U16 },
16dd7267 3369 [NL80211_MESHCONF_GATE_ANNOUNCEMENTS] = { .type = NLA_U8 },
94f90656 3370 [NL80211_MESHCONF_FORWARDING] = { .type = NLA_U8 },
55335137 3371 [NL80211_MESHCONF_RSSI_THRESHOLD] = { .type = NLA_U32},
93da9cc1 3372};
3373
c80d545d
JC
3374static const struct nla_policy
3375 nl80211_mesh_setup_params_policy[NL80211_MESH_SETUP_ATTR_MAX+1] = {
d299a1f2 3376 [NL80211_MESH_SETUP_ENABLE_VENDOR_SYNC] = { .type = NLA_U8 },
c80d545d
JC
3377 [NL80211_MESH_SETUP_ENABLE_VENDOR_PATH_SEL] = { .type = NLA_U8 },
3378 [NL80211_MESH_SETUP_ENABLE_VENDOR_METRIC] = { .type = NLA_U8 },
15d5dda6 3379 [NL80211_MESH_SETUP_USERSPACE_AUTH] = { .type = NLA_FLAG },
581a8b0f 3380 [NL80211_MESH_SETUP_IE] = { .type = NLA_BINARY,
c80d545d 3381 .len = IEEE80211_MAX_DATA_LEN },
b130e5ce 3382 [NL80211_MESH_SETUP_USERSPACE_AMPE] = { .type = NLA_FLAG },
c80d545d
JC
3383};
3384
24bdd9f4 3385static int nl80211_parse_mesh_config(struct genl_info *info,
bd90fdcc
JB
3386 struct mesh_config *cfg,
3387 u32 *mask_out)
93da9cc1 3388{
93da9cc1 3389 struct nlattr *tb[NL80211_MESHCONF_ATTR_MAX + 1];
bd90fdcc 3390 u32 mask = 0;
93da9cc1 3391
bd90fdcc
JB
3392#define FILL_IN_MESH_PARAM_IF_SET(table, cfg, param, mask, attr_num, nla_fn) \
3393do {\
3394 if (table[attr_num]) {\
3395 cfg->param = nla_fn(table[attr_num]); \
3396 mask |= (1 << (attr_num - 1)); \
3397 } \
3398} while (0);\
3399
3400
24bdd9f4 3401 if (!info->attrs[NL80211_ATTR_MESH_CONFIG])
93da9cc1 3402 return -EINVAL;
3403 if (nla_parse_nested(tb, NL80211_MESHCONF_ATTR_MAX,
24bdd9f4 3404 info->attrs[NL80211_ATTR_MESH_CONFIG],
bd90fdcc 3405 nl80211_meshconf_params_policy))
93da9cc1 3406 return -EINVAL;
3407
93da9cc1 3408 /* This makes sure that there aren't more than 32 mesh config
3409 * parameters (otherwise our bitfield scheme would not work.) */
3410 BUILD_BUG_ON(NL80211_MESHCONF_ATTR_MAX > 32);
3411
3412 /* Fill in the params struct */
93da9cc1 3413 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshRetryTimeout,
3414 mask, NL80211_MESHCONF_RETRY_TIMEOUT, nla_get_u16);
3415 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshConfirmTimeout,
3416 mask, NL80211_MESHCONF_CONFIRM_TIMEOUT, nla_get_u16);
3417 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshHoldingTimeout,
3418 mask, NL80211_MESHCONF_HOLDING_TIMEOUT, nla_get_u16);
3419 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshMaxPeerLinks,
3420 mask, NL80211_MESHCONF_MAX_PEER_LINKS, nla_get_u16);
3421 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshMaxRetries,
3422 mask, NL80211_MESHCONF_MAX_RETRIES, nla_get_u8);
3423 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshTTL,
3424 mask, NL80211_MESHCONF_TTL, nla_get_u8);
45904f21
JC
3425 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, element_ttl,
3426 mask, NL80211_MESHCONF_ELEMENT_TTL, nla_get_u8);
93da9cc1 3427 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, auto_open_plinks,
3428 mask, NL80211_MESHCONF_AUTO_OPEN_PLINKS, nla_get_u8);
d299a1f2
JC
3429 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshNbrOffsetMaxNeighbor,
3430 mask, NL80211_MESHCONF_SYNC_OFFSET_MAX_NEIGHBOR,
3431 nla_get_u32);
93da9cc1 3432 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshHWMPmaxPREQretries,
3433 mask, NL80211_MESHCONF_HWMP_MAX_PREQ_RETRIES,
3434 nla_get_u8);
3435 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, path_refresh_time,
3436 mask, NL80211_MESHCONF_PATH_REFRESH_TIME, nla_get_u32);
3437 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, min_discovery_timeout,
3438 mask, NL80211_MESHCONF_MIN_DISCOVERY_TIMEOUT,
3439 nla_get_u16);
3440 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshHWMPactivePathTimeout,
3441 mask, NL80211_MESHCONF_HWMP_ACTIVE_PATH_TIMEOUT,
3442 nla_get_u32);
3443 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshHWMPpreqMinInterval,
3444 mask, NL80211_MESHCONF_HWMP_PREQ_MIN_INTERVAL,
3445 nla_get_u16);
dca7e943
TP
3446 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshHWMPperrMinInterval,
3447 mask, NL80211_MESHCONF_HWMP_PERR_MIN_INTERVAL,
3448 nla_get_u16);
93da9cc1 3449 FILL_IN_MESH_PARAM_IF_SET(tb, cfg,
3450 dot11MeshHWMPnetDiameterTraversalTime,
3451 mask, NL80211_MESHCONF_HWMP_NET_DIAM_TRVS_TIME,
3452 nla_get_u16);
63c5723b
RP
3453 FILL_IN_MESH_PARAM_IF_SET(tb, cfg,
3454 dot11MeshHWMPRootMode, mask,
3455 NL80211_MESHCONF_HWMP_ROOTMODE,
3456 nla_get_u8);
0507e159
JC
3457 FILL_IN_MESH_PARAM_IF_SET(tb, cfg,
3458 dot11MeshHWMPRannInterval, mask,
3459 NL80211_MESHCONF_HWMP_RANN_INTERVAL,
3460 nla_get_u16);
16dd7267
JC
3461 FILL_IN_MESH_PARAM_IF_SET(tb, cfg,
3462 dot11MeshGateAnnouncementProtocol, mask,
3463 NL80211_MESHCONF_GATE_ANNOUNCEMENTS,
3464 nla_get_u8);
94f90656
CYY
3465 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, dot11MeshForwarding,
3466 mask, NL80211_MESHCONF_FORWARDING, nla_get_u8);
55335137
AN
3467 FILL_IN_MESH_PARAM_IF_SET(tb, cfg, rssi_threshold,
3468 mask, NL80211_MESHCONF_RSSI_THRESHOLD, nla_get_u32);
bd90fdcc
JB
3469 if (mask_out)
3470 *mask_out = mask;
c80d545d 3471
bd90fdcc
JB
3472 return 0;
3473
3474#undef FILL_IN_MESH_PARAM_IF_SET
3475}
3476
c80d545d
JC
3477static int nl80211_parse_mesh_setup(struct genl_info *info,
3478 struct mesh_setup *setup)
3479{
3480 struct nlattr *tb[NL80211_MESH_SETUP_ATTR_MAX + 1];
3481
3482 if (!info->attrs[NL80211_ATTR_MESH_SETUP])
3483 return -EINVAL;
3484 if (nla_parse_nested(tb, NL80211_MESH_SETUP_ATTR_MAX,
3485 info->attrs[NL80211_ATTR_MESH_SETUP],
3486 nl80211_mesh_setup_params_policy))
3487 return -EINVAL;
3488
d299a1f2
JC
3489 if (tb[NL80211_MESH_SETUP_ENABLE_VENDOR_SYNC])
3490 setup->sync_method =
3491 (nla_get_u8(tb[NL80211_MESH_SETUP_ENABLE_VENDOR_SYNC])) ?
3492 IEEE80211_SYNC_METHOD_VENDOR :
3493 IEEE80211_SYNC_METHOD_NEIGHBOR_OFFSET;
3494
c80d545d
JC
3495 if (tb[NL80211_MESH_SETUP_ENABLE_VENDOR_PATH_SEL])
3496 setup->path_sel_proto =
3497 (nla_get_u8(tb[NL80211_MESH_SETUP_ENABLE_VENDOR_PATH_SEL])) ?
3498 IEEE80211_PATH_PROTOCOL_VENDOR :
3499 IEEE80211_PATH_PROTOCOL_HWMP;
3500
3501 if (tb[NL80211_MESH_SETUP_ENABLE_VENDOR_METRIC])
3502 setup->path_metric =
3503 (nla_get_u8(tb[NL80211_MESH_SETUP_ENABLE_VENDOR_METRIC])) ?
3504 IEEE80211_PATH_METRIC_VENDOR :
3505 IEEE80211_PATH_METRIC_AIRTIME;
3506
581a8b0f
JC
3507
3508 if (tb[NL80211_MESH_SETUP_IE]) {
c80d545d 3509 struct nlattr *ieattr =
581a8b0f 3510 tb[NL80211_MESH_SETUP_IE];
c80d545d
JC
3511 if (!is_valid_ie_attr(ieattr))
3512 return -EINVAL;
581a8b0f
JC
3513 setup->ie = nla_data(ieattr);
3514 setup->ie_len = nla_len(ieattr);
c80d545d 3515 }
b130e5ce
JC
3516 setup->is_authenticated = nla_get_flag(tb[NL80211_MESH_SETUP_USERSPACE_AUTH]);
3517 setup->is_secure = nla_get_flag(tb[NL80211_MESH_SETUP_USERSPACE_AMPE]);
c80d545d
JC
3518
3519 return 0;
3520}
3521
24bdd9f4 3522static int nl80211_update_mesh_config(struct sk_buff *skb,
29cbe68c 3523 struct genl_info *info)
bd90fdcc
JB
3524{
3525 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3526 struct net_device *dev = info->user_ptr[1];
29cbe68c 3527 struct wireless_dev *wdev = dev->ieee80211_ptr;
bd90fdcc
JB
3528 struct mesh_config cfg;
3529 u32 mask;
3530 int err;
3531
29cbe68c
JB
3532 if (wdev->iftype != NL80211_IFTYPE_MESH_POINT)
3533 return -EOPNOTSUPP;
3534
24bdd9f4 3535 if (!rdev->ops->update_mesh_config)
bd90fdcc
JB
3536 return -EOPNOTSUPP;
3537
24bdd9f4 3538 err = nl80211_parse_mesh_config(info, &cfg, &mask);
bd90fdcc
JB
3539 if (err)
3540 return err;
3541
29cbe68c
JB
3542 wdev_lock(wdev);
3543 if (!wdev->mesh_id_len)
3544 err = -ENOLINK;
3545
3546 if (!err)
24bdd9f4 3547 err = rdev->ops->update_mesh_config(&rdev->wiphy, dev,
29cbe68c
JB
3548 mask, &cfg);
3549
3550 wdev_unlock(wdev);
3551
3552 return err;
93da9cc1 3553}
3554
f130347c
LR
3555static int nl80211_get_reg(struct sk_buff *skb, struct genl_info *info)
3556{
3557 struct sk_buff *msg;
3558 void *hdr = NULL;
3559 struct nlattr *nl_reg_rules;
3560 unsigned int i;
3561 int err = -EINVAL;
3562
a1794390 3563 mutex_lock(&cfg80211_mutex);
f130347c
LR
3564
3565 if (!cfg80211_regdomain)
3566 goto out;
3567
fd2120ca 3568 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
f130347c
LR
3569 if (!msg) {
3570 err = -ENOBUFS;
3571 goto out;
3572 }
3573
3574 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
3575 NL80211_CMD_GET_REG);
3576 if (!hdr)
efe1cf0c 3577 goto put_failure;
f130347c
LR
3578
3579 NLA_PUT_STRING(msg, NL80211_ATTR_REG_ALPHA2,
3580 cfg80211_regdomain->alpha2);
8b60b078
LR
3581 if (cfg80211_regdomain->dfs_region)
3582 NLA_PUT_U8(msg, NL80211_ATTR_DFS_REGION,
3583 cfg80211_regdomain->dfs_region);
f130347c
LR
3584
3585 nl_reg_rules = nla_nest_start(msg, NL80211_ATTR_REG_RULES);
3586 if (!nl_reg_rules)
3587 goto nla_put_failure;
3588
3589 for (i = 0; i < cfg80211_regdomain->n_reg_rules; i++) {
3590 struct nlattr *nl_reg_rule;
3591 const struct ieee80211_reg_rule *reg_rule;
3592 const struct ieee80211_freq_range *freq_range;
3593 const struct ieee80211_power_rule *power_rule;
3594
3595 reg_rule = &cfg80211_regdomain->reg_rules[i];
3596 freq_range = &reg_rule->freq_range;
3597 power_rule = &reg_rule->power_rule;
3598
3599 nl_reg_rule = nla_nest_start(msg, i);
3600 if (!nl_reg_rule)
3601 goto nla_put_failure;
3602
3603 NLA_PUT_U32(msg, NL80211_ATTR_REG_RULE_FLAGS,
3604 reg_rule->flags);
3605 NLA_PUT_U32(msg, NL80211_ATTR_FREQ_RANGE_START,
3606 freq_range->start_freq_khz);
3607 NLA_PUT_U32(msg, NL80211_ATTR_FREQ_RANGE_END,
3608 freq_range->end_freq_khz);
3609 NLA_PUT_U32(msg, NL80211_ATTR_FREQ_RANGE_MAX_BW,
3610 freq_range->max_bandwidth_khz);
3611 NLA_PUT_U32(msg, NL80211_ATTR_POWER_RULE_MAX_ANT_GAIN,
3612 power_rule->max_antenna_gain);
3613 NLA_PUT_U32(msg, NL80211_ATTR_POWER_RULE_MAX_EIRP,
3614 power_rule->max_eirp);
3615
3616 nla_nest_end(msg, nl_reg_rule);
3617 }
3618
3619 nla_nest_end(msg, nl_reg_rules);
3620
3621 genlmsg_end(msg, hdr);
134e6375 3622 err = genlmsg_reply(msg, info);
f130347c
LR
3623 goto out;
3624
3625nla_put_failure:
3626 genlmsg_cancel(msg, hdr);
efe1cf0c 3627put_failure:
d080e275 3628 nlmsg_free(msg);
f130347c
LR
3629 err = -EMSGSIZE;
3630out:
a1794390 3631 mutex_unlock(&cfg80211_mutex);
f130347c
LR
3632 return err;
3633}
3634
b2e1b302
LR
3635static int nl80211_set_reg(struct sk_buff *skb, struct genl_info *info)
3636{
3637 struct nlattr *tb[NL80211_REG_RULE_ATTR_MAX + 1];
3638 struct nlattr *nl_reg_rule;
3639 char *alpha2 = NULL;
3640 int rem_reg_rules = 0, r = 0;
3641 u32 num_rules = 0, rule_idx = 0, size_of_regd;
8b60b078 3642 u8 dfs_region = 0;
b2e1b302
LR
3643 struct ieee80211_regdomain *rd = NULL;
3644
3645 if (!info->attrs[NL80211_ATTR_REG_ALPHA2])
3646 return -EINVAL;
3647
3648 if (!info->attrs[NL80211_ATTR_REG_RULES])
3649 return -EINVAL;
3650
3651 alpha2 = nla_data(info->attrs[NL80211_ATTR_REG_ALPHA2]);
3652
8b60b078
LR
3653 if (info->attrs[NL80211_ATTR_DFS_REGION])
3654 dfs_region = nla_get_u8(info->attrs[NL80211_ATTR_DFS_REGION]);
3655
b2e1b302
LR
3656 nla_for_each_nested(nl_reg_rule, info->attrs[NL80211_ATTR_REG_RULES],
3657 rem_reg_rules) {
3658 num_rules++;
3659 if (num_rules > NL80211_MAX_SUPP_REG_RULES)
4776c6e7 3660 return -EINVAL;
b2e1b302
LR
3661 }
3662
61405e97
LR
3663 mutex_lock(&cfg80211_mutex);
3664
d0e18f83
LR
3665 if (!reg_is_valid_request(alpha2)) {
3666 r = -EINVAL;
3667 goto bad_reg;
3668 }
b2e1b302
LR
3669
3670 size_of_regd = sizeof(struct ieee80211_regdomain) +
3671 (num_rules * sizeof(struct ieee80211_reg_rule));
3672
3673 rd = kzalloc(size_of_regd, GFP_KERNEL);
d0e18f83
LR
3674 if (!rd) {
3675 r = -ENOMEM;
3676 goto bad_reg;
3677 }
b2e1b302
LR
3678
3679 rd->n_reg_rules = num_rules;
3680 rd->alpha2[0] = alpha2[0];
3681 rd->alpha2[1] = alpha2[1];
3682
8b60b078
LR
3683 /*
3684 * Disable DFS master mode if the DFS region was
3685 * not supported or known on this kernel.
3686 */
3687 if (reg_supported_dfs_region(dfs_region))
3688 rd->dfs_region = dfs_region;
3689
b2e1b302
LR
3690 nla_for_each_nested(nl_reg_rule, info->attrs[NL80211_ATTR_REG_RULES],
3691 rem_reg_rules) {
3692 nla_parse(tb, NL80211_REG_RULE_ATTR_MAX,
3693 nla_data(nl_reg_rule), nla_len(nl_reg_rule),
3694 reg_rule_policy);
3695 r = parse_reg_rule(tb, &rd->reg_rules[rule_idx]);
3696 if (r)
3697 goto bad_reg;
3698
3699 rule_idx++;
3700
d0e18f83
LR
3701 if (rule_idx > NL80211_MAX_SUPP_REG_RULES) {
3702 r = -EINVAL;
b2e1b302 3703 goto bad_reg;
d0e18f83 3704 }
b2e1b302
LR
3705 }
3706
3707 BUG_ON(rule_idx != num_rules);
3708
b2e1b302 3709 r = set_regdom(rd);
61405e97 3710
a1794390 3711 mutex_unlock(&cfg80211_mutex);
d0e18f83 3712
b2e1b302
LR
3713 return r;
3714
d2372b31 3715 bad_reg:
61405e97 3716 mutex_unlock(&cfg80211_mutex);
b2e1b302 3717 kfree(rd);
d0e18f83 3718 return r;
b2e1b302
LR
3719}
3720
83f5e2cf
JB
3721static int validate_scan_freqs(struct nlattr *freqs)
3722{
3723 struct nlattr *attr1, *attr2;
3724 int n_channels = 0, tmp1, tmp2;
3725
3726 nla_for_each_nested(attr1, freqs, tmp1) {
3727 n_channels++;
3728 /*
3729 * Some hardware has a limited channel list for
3730 * scanning, and it is pretty much nonsensical
3731 * to scan for a channel twice, so disallow that
3732 * and don't require drivers to check that the
3733 * channel list they get isn't longer than what
3734 * they can scan, as long as they can scan all
3735 * the channels they registered at once.
3736 */
3737 nla_for_each_nested(attr2, freqs, tmp2)
3738 if (attr1 != attr2 &&
3739 nla_get_u32(attr1) == nla_get_u32(attr2))
3740 return 0;
3741 }
3742
3743 return n_channels;
3744}
3745
2a519311
JB
3746static int nl80211_trigger_scan(struct sk_buff *skb, struct genl_info *info)
3747{
4c476991
JB
3748 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3749 struct net_device *dev = info->user_ptr[1];
2a519311 3750 struct cfg80211_scan_request *request;
2a519311
JB
3751 struct nlattr *attr;
3752 struct wiphy *wiphy;
83f5e2cf 3753 int err, tmp, n_ssids = 0, n_channels, i;
70692ad2 3754 size_t ie_len;
2a519311 3755
f4a11bb0
JB
3756 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
3757 return -EINVAL;
3758
79c97e97 3759 wiphy = &rdev->wiphy;
2a519311 3760
4c476991
JB
3761 if (!rdev->ops->scan)
3762 return -EOPNOTSUPP;
2a519311 3763
4c476991
JB
3764 if (rdev->scan_req)
3765 return -EBUSY;
2a519311
JB
3766
3767 if (info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]) {
83f5e2cf
JB
3768 n_channels = validate_scan_freqs(
3769 info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]);
4c476991
JB
3770 if (!n_channels)
3771 return -EINVAL;
2a519311 3772 } else {
34850ab2 3773 enum ieee80211_band band;
83f5e2cf
JB
3774 n_channels = 0;
3775
2a519311
JB
3776 for (band = 0; band < IEEE80211_NUM_BANDS; band++)
3777 if (wiphy->bands[band])
3778 n_channels += wiphy->bands[band]->n_channels;
3779 }
3780
3781 if (info->attrs[NL80211_ATTR_SCAN_SSIDS])
3782 nla_for_each_nested(attr, info->attrs[NL80211_ATTR_SCAN_SSIDS], tmp)
3783 n_ssids++;
3784
4c476991
JB
3785 if (n_ssids > wiphy->max_scan_ssids)
3786 return -EINVAL;
2a519311 3787
70692ad2
JM
3788 if (info->attrs[NL80211_ATTR_IE])
3789 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
3790 else
3791 ie_len = 0;
3792
4c476991
JB
3793 if (ie_len > wiphy->max_scan_ie_len)
3794 return -EINVAL;
18a83659 3795
2a519311 3796 request = kzalloc(sizeof(*request)
a2cd43c5
LC
3797 + sizeof(*request->ssids) * n_ssids
3798 + sizeof(*request->channels) * n_channels
70692ad2 3799 + ie_len, GFP_KERNEL);
4c476991
JB
3800 if (!request)
3801 return -ENOMEM;
2a519311 3802
2a519311 3803 if (n_ssids)
5ba63533 3804 request->ssids = (void *)&request->channels[n_channels];
2a519311 3805 request->n_ssids = n_ssids;
70692ad2
JM
3806 if (ie_len) {
3807 if (request->ssids)
3808 request->ie = (void *)(request->ssids + n_ssids);
3809 else
3810 request->ie = (void *)(request->channels + n_channels);
3811 }
2a519311 3812
584991dc 3813 i = 0;
2a519311
JB
3814 if (info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]) {
3815 /* user specified, bail out if channel not found */
2a519311 3816 nla_for_each_nested(attr, info->attrs[NL80211_ATTR_SCAN_FREQUENCIES], tmp) {
584991dc
JB
3817 struct ieee80211_channel *chan;
3818
3819 chan = ieee80211_get_channel(wiphy, nla_get_u32(attr));
3820
3821 if (!chan) {
2a519311
JB
3822 err = -EINVAL;
3823 goto out_free;
3824 }
584991dc
JB
3825
3826 /* ignore disabled channels */
3827 if (chan->flags & IEEE80211_CHAN_DISABLED)
3828 continue;
3829
3830 request->channels[i] = chan;
2a519311
JB
3831 i++;
3832 }
3833 } else {
34850ab2
JB
3834 enum ieee80211_band band;
3835
2a519311 3836 /* all channels */
2a519311
JB
3837 for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
3838 int j;
3839 if (!wiphy->bands[band])
3840 continue;
3841 for (j = 0; j < wiphy->bands[band]->n_channels; j++) {
584991dc
JB
3842 struct ieee80211_channel *chan;
3843
3844 chan = &wiphy->bands[band]->channels[j];
3845
3846 if (chan->flags & IEEE80211_CHAN_DISABLED)
3847 continue;
3848
3849 request->channels[i] = chan;
2a519311
JB
3850 i++;
3851 }
3852 }
3853 }
3854
584991dc
JB
3855 if (!i) {
3856 err = -EINVAL;
3857 goto out_free;
3858 }
3859
3860 request->n_channels = i;
3861
2a519311
JB
3862 i = 0;
3863 if (info->attrs[NL80211_ATTR_SCAN_SSIDS]) {
3864 nla_for_each_nested(attr, info->attrs[NL80211_ATTR_SCAN_SSIDS], tmp) {
57a27e1d 3865 if (nla_len(attr) > IEEE80211_MAX_SSID_LEN) {
2a519311
JB
3866 err = -EINVAL;
3867 goto out_free;
3868 }
57a27e1d 3869 request->ssids[i].ssid_len = nla_len(attr);
2a519311 3870 memcpy(request->ssids[i].ssid, nla_data(attr), nla_len(attr));
2a519311
JB
3871 i++;
3872 }
3873 }
3874
70692ad2
JM
3875 if (info->attrs[NL80211_ATTR_IE]) {
3876 request->ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
de95a54b
JB
3877 memcpy((void *)request->ie,
3878 nla_data(info->attrs[NL80211_ATTR_IE]),
70692ad2
JM
3879 request->ie_len);
3880 }
3881
34850ab2 3882 for (i = 0; i < IEEE80211_NUM_BANDS; i++)
a401d2bb
JB
3883 if (wiphy->bands[i])
3884 request->rates[i] =
3885 (1 << wiphy->bands[i]->n_bitrates) - 1;
34850ab2
JB
3886
3887 if (info->attrs[NL80211_ATTR_SCAN_SUPP_RATES]) {
3888 nla_for_each_nested(attr,
3889 info->attrs[NL80211_ATTR_SCAN_SUPP_RATES],
3890 tmp) {
3891 enum ieee80211_band band = nla_type(attr);
3892
84404623 3893 if (band < 0 || band >= IEEE80211_NUM_BANDS) {
34850ab2
JB
3894 err = -EINVAL;
3895 goto out_free;
3896 }
3897 err = ieee80211_get_ratemask(wiphy->bands[band],
3898 nla_data(attr),
3899 nla_len(attr),
3900 &request->rates[band]);
3901 if (err)
3902 goto out_free;
3903 }
3904 }
3905
e9f935e3
RM
3906 request->no_cck =
3907 nla_get_flag(info->attrs[NL80211_ATTR_TX_NO_CCK_RATE]);
3908
463d0183 3909 request->dev = dev;
79c97e97 3910 request->wiphy = &rdev->wiphy;
2a519311 3911
79c97e97
JB
3912 rdev->scan_req = request;
3913 err = rdev->ops->scan(&rdev->wiphy, dev, request);
2a519311 3914
463d0183 3915 if (!err) {
79c97e97 3916 nl80211_send_scan_start(rdev, dev);
463d0183 3917 dev_hold(dev);
4c476991 3918 } else {
2a519311 3919 out_free:
79c97e97 3920 rdev->scan_req = NULL;
2a519311
JB
3921 kfree(request);
3922 }
3b85875a 3923
2a519311
JB
3924 return err;
3925}
3926
807f8a8c
LC
3927static int nl80211_start_sched_scan(struct sk_buff *skb,
3928 struct genl_info *info)
3929{
3930 struct cfg80211_sched_scan_request *request;
3931 struct cfg80211_registered_device *rdev = info->user_ptr[0];
3932 struct net_device *dev = info->user_ptr[1];
807f8a8c
LC
3933 struct nlattr *attr;
3934 struct wiphy *wiphy;
a1f1c21c 3935 int err, tmp, n_ssids = 0, n_match_sets = 0, n_channels, i;
bbe6ad6d 3936 u32 interval;
807f8a8c
LC
3937 enum ieee80211_band band;
3938 size_t ie_len;
a1f1c21c 3939 struct nlattr *tb[NL80211_SCHED_SCAN_MATCH_ATTR_MAX + 1];
807f8a8c
LC
3940
3941 if (!(rdev->wiphy.flags & WIPHY_FLAG_SUPPORTS_SCHED_SCAN) ||
3942 !rdev->ops->sched_scan_start)
3943 return -EOPNOTSUPP;
3944
3945 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
3946 return -EINVAL;
3947
bbe6ad6d
LC
3948 if (!info->attrs[NL80211_ATTR_SCHED_SCAN_INTERVAL])
3949 return -EINVAL;
3950
3951 interval = nla_get_u32(info->attrs[NL80211_ATTR_SCHED_SCAN_INTERVAL]);
3952 if (interval == 0)
3953 return -EINVAL;
3954
807f8a8c
LC
3955 wiphy = &rdev->wiphy;
3956
3957 if (info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]) {
3958 n_channels = validate_scan_freqs(
3959 info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]);
3960 if (!n_channels)
3961 return -EINVAL;
3962 } else {
3963 n_channels = 0;
3964
3965 for (band = 0; band < IEEE80211_NUM_BANDS; band++)
3966 if (wiphy->bands[band])
3967 n_channels += wiphy->bands[band]->n_channels;
3968 }
3969
3970 if (info->attrs[NL80211_ATTR_SCAN_SSIDS])
3971 nla_for_each_nested(attr, info->attrs[NL80211_ATTR_SCAN_SSIDS],
3972 tmp)
3973 n_ssids++;
3974
93b6aa69 3975 if (n_ssids > wiphy->max_sched_scan_ssids)
807f8a8c
LC
3976 return -EINVAL;
3977
a1f1c21c
LC
3978 if (info->attrs[NL80211_ATTR_SCHED_SCAN_MATCH])
3979 nla_for_each_nested(attr,
3980 info->attrs[NL80211_ATTR_SCHED_SCAN_MATCH],
3981 tmp)
3982 n_match_sets++;
3983
3984 if (n_match_sets > wiphy->max_match_sets)
3985 return -EINVAL;
3986
807f8a8c
LC
3987 if (info->attrs[NL80211_ATTR_IE])
3988 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
3989 else
3990 ie_len = 0;
3991
5a865bad 3992 if (ie_len > wiphy->max_sched_scan_ie_len)
807f8a8c
LC
3993 return -EINVAL;
3994
c10841ca
LC
3995 mutex_lock(&rdev->sched_scan_mtx);
3996
3997 if (rdev->sched_scan_req) {
3998 err = -EINPROGRESS;
3999 goto out;
4000 }
4001
807f8a8c 4002 request = kzalloc(sizeof(*request)
a2cd43c5 4003 + sizeof(*request->ssids) * n_ssids
a1f1c21c 4004 + sizeof(*request->match_sets) * n_match_sets
a2cd43c5 4005 + sizeof(*request->channels) * n_channels
807f8a8c 4006 + ie_len, GFP_KERNEL);
c10841ca
LC
4007 if (!request) {
4008 err = -ENOMEM;
4009 goto out;
4010 }
807f8a8c
LC
4011
4012 if (n_ssids)
4013 request->ssids = (void *)&request->channels[n_channels];
4014 request->n_ssids = n_ssids;
4015 if (ie_len) {
4016 if (request->ssids)
4017 request->ie = (void *)(request->ssids + n_ssids);
4018 else
4019 request->ie = (void *)(request->channels + n_channels);
4020 }
4021
a1f1c21c
LC
4022 if (n_match_sets) {
4023 if (request->ie)
4024 request->match_sets = (void *)(request->ie + ie_len);
4025 else if (request->ssids)
4026 request->match_sets =
4027 (void *)(request->ssids + n_ssids);
4028 else
4029 request->match_sets =
4030 (void *)(request->channels + n_channels);
4031 }
4032 request->n_match_sets = n_match_sets;
4033
807f8a8c
LC
4034 i = 0;
4035 if (info->attrs[NL80211_ATTR_SCAN_FREQUENCIES]) {
4036 /* user specified, bail out if channel not found */
4037 nla_for_each_nested(attr,
4038 info->attrs[NL80211_ATTR_SCAN_FREQUENCIES],
4039 tmp) {
4040 struct ieee80211_channel *chan;
4041
4042 chan = ieee80211_get_channel(wiphy, nla_get_u32(attr));
4043
4044 if (!chan) {
4045 err = -EINVAL;
4046 goto out_free;
4047 }
4048
4049 /* ignore disabled channels */
4050 if (chan->flags & IEEE80211_CHAN_DISABLED)
4051 continue;
4052
4053 request->channels[i] = chan;
4054 i++;
4055 }
4056 } else {
4057 /* all channels */
4058 for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
4059 int j;
4060 if (!wiphy->bands[band])
4061 continue;
4062 for (j = 0; j < wiphy->bands[band]->n_channels; j++) {
4063 struct ieee80211_channel *chan;
4064
4065 chan = &wiphy->bands[band]->channels[j];
4066
4067 if (chan->flags & IEEE80211_CHAN_DISABLED)
4068 continue;
4069
4070 request->channels[i] = chan;
4071 i++;
4072 }
4073 }
4074 }
4075
4076 if (!i) {
4077 err = -EINVAL;
4078 goto out_free;
4079 }
4080
4081 request->n_channels = i;
4082
4083 i = 0;
4084 if (info->attrs[NL80211_ATTR_SCAN_SSIDS]) {
4085 nla_for_each_nested(attr, info->attrs[NL80211_ATTR_SCAN_SSIDS],
4086 tmp) {
57a27e1d 4087 if (nla_len(attr) > IEEE80211_MAX_SSID_LEN) {
807f8a8c
LC
4088 err = -EINVAL;
4089 goto out_free;
4090 }
57a27e1d 4091 request->ssids[i].ssid_len = nla_len(attr);
807f8a8c
LC
4092 memcpy(request->ssids[i].ssid, nla_data(attr),
4093 nla_len(attr));
807f8a8c
LC
4094 i++;
4095 }
4096 }
4097
a1f1c21c
LC
4098 i = 0;
4099 if (info->attrs[NL80211_ATTR_SCHED_SCAN_MATCH]) {
4100 nla_for_each_nested(attr,
4101 info->attrs[NL80211_ATTR_SCHED_SCAN_MATCH],
4102 tmp) {
4103 struct nlattr *ssid;
4104
4105 nla_parse(tb, NL80211_SCHED_SCAN_MATCH_ATTR_MAX,
4106 nla_data(attr), nla_len(attr),
4107 nl80211_match_policy);
4108 ssid = tb[NL80211_ATTR_SCHED_SCAN_MATCH_SSID];
4109 if (ssid) {
4110 if (nla_len(ssid) > IEEE80211_MAX_SSID_LEN) {
4111 err = -EINVAL;
4112 goto out_free;
4113 }
4114 memcpy(request->match_sets[i].ssid.ssid,
4115 nla_data(ssid), nla_len(ssid));
4116 request->match_sets[i].ssid.ssid_len =
4117 nla_len(ssid);
4118 }
4119 i++;
4120 }
4121 }
4122
807f8a8c
LC
4123 if (info->attrs[NL80211_ATTR_IE]) {
4124 request->ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
4125 memcpy((void *)request->ie,
4126 nla_data(info->attrs[NL80211_ATTR_IE]),
4127 request->ie_len);
4128 }
4129
4130 request->dev = dev;
4131 request->wiphy = &rdev->wiphy;
bbe6ad6d 4132 request->interval = interval;
807f8a8c
LC
4133
4134 err = rdev->ops->sched_scan_start(&rdev->wiphy, dev, request);
4135 if (!err) {
4136 rdev->sched_scan_req = request;
4137 nl80211_send_sched_scan(rdev, dev,
4138 NL80211_CMD_START_SCHED_SCAN);
4139 goto out;
4140 }
4141
4142out_free:
4143 kfree(request);
4144out:
c10841ca 4145 mutex_unlock(&rdev->sched_scan_mtx);
807f8a8c
LC
4146 return err;
4147}
4148
4149static int nl80211_stop_sched_scan(struct sk_buff *skb,
4150 struct genl_info *info)
4151{
4152 struct cfg80211_registered_device *rdev = info->user_ptr[0];
c10841ca 4153 int err;
807f8a8c
LC
4154
4155 if (!(rdev->wiphy.flags & WIPHY_FLAG_SUPPORTS_SCHED_SCAN) ||
4156 !rdev->ops->sched_scan_stop)
4157 return -EOPNOTSUPP;
4158
c10841ca
LC
4159 mutex_lock(&rdev->sched_scan_mtx);
4160 err = __cfg80211_stop_sched_scan(rdev, false);
4161 mutex_unlock(&rdev->sched_scan_mtx);
4162
4163 return err;
807f8a8c
LC
4164}
4165
9720bb3a
JB
4166static int nl80211_send_bss(struct sk_buff *msg, struct netlink_callback *cb,
4167 u32 seq, int flags,
2a519311 4168 struct cfg80211_registered_device *rdev,
48ab905d
JB
4169 struct wireless_dev *wdev,
4170 struct cfg80211_internal_bss *intbss)
2a519311 4171{
48ab905d 4172 struct cfg80211_bss *res = &intbss->pub;
2a519311
JB
4173 void *hdr;
4174 struct nlattr *bss;
48ab905d
JB
4175
4176 ASSERT_WDEV_LOCK(wdev);
2a519311 4177
9720bb3a 4178 hdr = nl80211hdr_put(msg, NETLINK_CB(cb->skb).pid, seq, flags,
2a519311
JB
4179 NL80211_CMD_NEW_SCAN_RESULTS);
4180 if (!hdr)
4181 return -1;
4182
9720bb3a
JB
4183 genl_dump_check_consistent(cb, hdr, &nl80211_fam);
4184
f5ea9120 4185 NLA_PUT_U32(msg, NL80211_ATTR_GENERATION, rdev->bss_generation);
48ab905d 4186 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, wdev->netdev->ifindex);
2a519311
JB
4187
4188 bss = nla_nest_start(msg, NL80211_ATTR_BSS);
4189 if (!bss)
4190 goto nla_put_failure;
4191 if (!is_zero_ether_addr(res->bssid))
4192 NLA_PUT(msg, NL80211_BSS_BSSID, ETH_ALEN, res->bssid);
4193 if (res->information_elements && res->len_information_elements)
4194 NLA_PUT(msg, NL80211_BSS_INFORMATION_ELEMENTS,
4195 res->len_information_elements,
4196 res->information_elements);
34a6eddb
JM
4197 if (res->beacon_ies && res->len_beacon_ies &&
4198 res->beacon_ies != res->information_elements)
4199 NLA_PUT(msg, NL80211_BSS_BEACON_IES,
4200 res->len_beacon_ies, res->beacon_ies);
2a519311
JB
4201 if (res->tsf)
4202 NLA_PUT_U64(msg, NL80211_BSS_TSF, res->tsf);
4203 if (res->beacon_interval)
4204 NLA_PUT_U16(msg, NL80211_BSS_BEACON_INTERVAL, res->beacon_interval);
4205 NLA_PUT_U16(msg, NL80211_BSS_CAPABILITY, res->capability);
4206 NLA_PUT_U32(msg, NL80211_BSS_FREQUENCY, res->channel->center_freq);
7c89606e
HS
4207 NLA_PUT_U32(msg, NL80211_BSS_SEEN_MS_AGO,
4208 jiffies_to_msecs(jiffies - intbss->ts));
2a519311 4209
77965c97 4210 switch (rdev->wiphy.signal_type) {
2a519311
JB
4211 case CFG80211_SIGNAL_TYPE_MBM:
4212 NLA_PUT_U32(msg, NL80211_BSS_SIGNAL_MBM, res->signal);
4213 break;
4214 case CFG80211_SIGNAL_TYPE_UNSPEC:
4215 NLA_PUT_U8(msg, NL80211_BSS_SIGNAL_UNSPEC, res->signal);
4216 break;
4217 default:
4218 break;
4219 }
4220
48ab905d 4221 switch (wdev->iftype) {
074ac8df 4222 case NL80211_IFTYPE_P2P_CLIENT:
48ab905d
JB
4223 case NL80211_IFTYPE_STATION:
4224 if (intbss == wdev->current_bss)
4225 NLA_PUT_U32(msg, NL80211_BSS_STATUS,
4226 NL80211_BSS_STATUS_ASSOCIATED);
48ab905d
JB
4227 break;
4228 case NL80211_IFTYPE_ADHOC:
4229 if (intbss == wdev->current_bss)
4230 NLA_PUT_U32(msg, NL80211_BSS_STATUS,
4231 NL80211_BSS_STATUS_IBSS_JOINED);
4232 break;
4233 default:
4234 break;
4235 }
4236
2a519311
JB
4237 nla_nest_end(msg, bss);
4238
4239 return genlmsg_end(msg, hdr);
4240
4241 nla_put_failure:
4242 genlmsg_cancel(msg, hdr);
4243 return -EMSGSIZE;
4244}
4245
4246static int nl80211_dump_scan(struct sk_buff *skb,
4247 struct netlink_callback *cb)
4248{
48ab905d
JB
4249 struct cfg80211_registered_device *rdev;
4250 struct net_device *dev;
2a519311 4251 struct cfg80211_internal_bss *scan;
48ab905d 4252 struct wireless_dev *wdev;
2a519311
JB
4253 int start = cb->args[1], idx = 0;
4254 int err;
4255
67748893
JB
4256 err = nl80211_prepare_netdev_dump(skb, cb, &rdev, &dev);
4257 if (err)
4258 return err;
2a519311 4259
48ab905d 4260 wdev = dev->ieee80211_ptr;
2a519311 4261
48ab905d
JB
4262 wdev_lock(wdev);
4263 spin_lock_bh(&rdev->bss_lock);
4264 cfg80211_bss_expire(rdev);
4265
9720bb3a
JB
4266 cb->seq = rdev->bss_generation;
4267
48ab905d 4268 list_for_each_entry(scan, &rdev->bss_list, list) {
2a519311
JB
4269 if (++idx <= start)
4270 continue;
9720bb3a 4271 if (nl80211_send_bss(skb, cb,
2a519311 4272 cb->nlh->nlmsg_seq, NLM_F_MULTI,
48ab905d 4273 rdev, wdev, scan) < 0) {
2a519311 4274 idx--;
67748893 4275 break;
2a519311
JB
4276 }
4277 }
4278
48ab905d
JB
4279 spin_unlock_bh(&rdev->bss_lock);
4280 wdev_unlock(wdev);
2a519311
JB
4281
4282 cb->args[1] = idx;
67748893 4283 nl80211_finish_netdev_dump(rdev);
2a519311 4284
67748893 4285 return skb->len;
2a519311
JB
4286}
4287
61fa713c
HS
4288static int nl80211_send_survey(struct sk_buff *msg, u32 pid, u32 seq,
4289 int flags, struct net_device *dev,
4290 struct survey_info *survey)
4291{
4292 void *hdr;
4293 struct nlattr *infoattr;
4294
61fa713c
HS
4295 hdr = nl80211hdr_put(msg, pid, seq, flags,
4296 NL80211_CMD_NEW_SURVEY_RESULTS);
4297 if (!hdr)
4298 return -ENOMEM;
4299
4300 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
4301
4302 infoattr = nla_nest_start(msg, NL80211_ATTR_SURVEY_INFO);
4303 if (!infoattr)
4304 goto nla_put_failure;
4305
4306 NLA_PUT_U32(msg, NL80211_SURVEY_INFO_FREQUENCY,
4307 survey->channel->center_freq);
4308 if (survey->filled & SURVEY_INFO_NOISE_DBM)
4309 NLA_PUT_U8(msg, NL80211_SURVEY_INFO_NOISE,
4310 survey->noise);
17e5a808
FF
4311 if (survey->filled & SURVEY_INFO_IN_USE)
4312 NLA_PUT_FLAG(msg, NL80211_SURVEY_INFO_IN_USE);
8610c29a
FF
4313 if (survey->filled & SURVEY_INFO_CHANNEL_TIME)
4314 NLA_PUT_U64(msg, NL80211_SURVEY_INFO_CHANNEL_TIME,
4315 survey->channel_time);
4316 if (survey->filled & SURVEY_INFO_CHANNEL_TIME_BUSY)
4317 NLA_PUT_U64(msg, NL80211_SURVEY_INFO_CHANNEL_TIME_BUSY,
4318 survey->channel_time_busy);
4319 if (survey->filled & SURVEY_INFO_CHANNEL_TIME_EXT_BUSY)
4320 NLA_PUT_U64(msg, NL80211_SURVEY_INFO_CHANNEL_TIME_EXT_BUSY,
4321 survey->channel_time_ext_busy);
4322 if (survey->filled & SURVEY_INFO_CHANNEL_TIME_RX)
4323 NLA_PUT_U64(msg, NL80211_SURVEY_INFO_CHANNEL_TIME_RX,
4324 survey->channel_time_rx);
4325 if (survey->filled & SURVEY_INFO_CHANNEL_TIME_TX)
4326 NLA_PUT_U64(msg, NL80211_SURVEY_INFO_CHANNEL_TIME_TX,
4327 survey->channel_time_tx);
61fa713c
HS
4328
4329 nla_nest_end(msg, infoattr);
4330
4331 return genlmsg_end(msg, hdr);
4332
4333 nla_put_failure:
4334 genlmsg_cancel(msg, hdr);
4335 return -EMSGSIZE;
4336}
4337
4338static int nl80211_dump_survey(struct sk_buff *skb,
4339 struct netlink_callback *cb)
4340{
4341 struct survey_info survey;
4342 struct cfg80211_registered_device *dev;
4343 struct net_device *netdev;
61fa713c
HS
4344 int survey_idx = cb->args[1];
4345 int res;
4346
67748893
JB
4347 res = nl80211_prepare_netdev_dump(skb, cb, &dev, &netdev);
4348 if (res)
4349 return res;
61fa713c
HS
4350
4351 if (!dev->ops->dump_survey) {
4352 res = -EOPNOTSUPP;
4353 goto out_err;
4354 }
4355
4356 while (1) {
180cdc79
LR
4357 struct ieee80211_channel *chan;
4358
61fa713c
HS
4359 res = dev->ops->dump_survey(&dev->wiphy, netdev, survey_idx,
4360 &survey);
4361 if (res == -ENOENT)
4362 break;
4363 if (res)
4364 goto out_err;
4365
180cdc79
LR
4366 /* Survey without a channel doesn't make sense */
4367 if (!survey.channel) {
4368 res = -EINVAL;
4369 goto out;
4370 }
4371
4372 chan = ieee80211_get_channel(&dev->wiphy,
4373 survey.channel->center_freq);
4374 if (!chan || chan->flags & IEEE80211_CHAN_DISABLED) {
4375 survey_idx++;
4376 continue;
4377 }
4378
61fa713c
HS
4379 if (nl80211_send_survey(skb,
4380 NETLINK_CB(cb->skb).pid,
4381 cb->nlh->nlmsg_seq, NLM_F_MULTI,
4382 netdev,
4383 &survey) < 0)
4384 goto out;
4385 survey_idx++;
4386 }
4387
4388 out:
4389 cb->args[1] = survey_idx;
4390 res = skb->len;
4391 out_err:
67748893 4392 nl80211_finish_netdev_dump(dev);
61fa713c
HS
4393 return res;
4394}
4395
255e737e
JM
4396static bool nl80211_valid_auth_type(enum nl80211_auth_type auth_type)
4397{
b23aa676
SO
4398 return auth_type <= NL80211_AUTHTYPE_MAX;
4399}
4400
4401static bool nl80211_valid_wpa_versions(u32 wpa_versions)
4402{
4403 return !(wpa_versions & ~(NL80211_WPA_VERSION_1 |
4404 NL80211_WPA_VERSION_2));
4405}
4406
636a5d36
JM
4407static int nl80211_authenticate(struct sk_buff *skb, struct genl_info *info)
4408{
4c476991
JB
4409 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4410 struct net_device *dev = info->user_ptr[1];
19957bb3
JB
4411 struct ieee80211_channel *chan;
4412 const u8 *bssid, *ssid, *ie = NULL;
4413 int err, ssid_len, ie_len = 0;
4414 enum nl80211_auth_type auth_type;
fffd0934 4415 struct key_parse key;
d5cdfacb 4416 bool local_state_change;
636a5d36 4417
f4a11bb0
JB
4418 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
4419 return -EINVAL;
4420
4421 if (!info->attrs[NL80211_ATTR_MAC])
4422 return -EINVAL;
4423
1778092e
JM
4424 if (!info->attrs[NL80211_ATTR_AUTH_TYPE])
4425 return -EINVAL;
4426
19957bb3
JB
4427 if (!info->attrs[NL80211_ATTR_SSID])
4428 return -EINVAL;
4429
4430 if (!info->attrs[NL80211_ATTR_WIPHY_FREQ])
4431 return -EINVAL;
4432
fffd0934
JB
4433 err = nl80211_parse_key(info, &key);
4434 if (err)
4435 return err;
4436
4437 if (key.idx >= 0) {
e31b8213
JB
4438 if (key.type != -1 && key.type != NL80211_KEYTYPE_GROUP)
4439 return -EINVAL;
fffd0934
JB
4440 if (!key.p.key || !key.p.key_len)
4441 return -EINVAL;
4442 if ((key.p.cipher != WLAN_CIPHER_SUITE_WEP40 ||
4443 key.p.key_len != WLAN_KEY_LEN_WEP40) &&
4444 (key.p.cipher != WLAN_CIPHER_SUITE_WEP104 ||
4445 key.p.key_len != WLAN_KEY_LEN_WEP104))
4446 return -EINVAL;
4447 if (key.idx > 4)
4448 return -EINVAL;
4449 } else {
4450 key.p.key_len = 0;
4451 key.p.key = NULL;
4452 }
4453
afea0b7a
JB
4454 if (key.idx >= 0) {
4455 int i;
4456 bool ok = false;
4457 for (i = 0; i < rdev->wiphy.n_cipher_suites; i++) {
4458 if (key.p.cipher == rdev->wiphy.cipher_suites[i]) {
4459 ok = true;
4460 break;
4461 }
4462 }
4c476991
JB
4463 if (!ok)
4464 return -EINVAL;
afea0b7a
JB
4465 }
4466
4c476991
JB
4467 if (!rdev->ops->auth)
4468 return -EOPNOTSUPP;
636a5d36 4469
074ac8df 4470 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
4471 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
4472 return -EOPNOTSUPP;
eec60b03 4473
19957bb3 4474 bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
79c97e97 4475 chan = ieee80211_get_channel(&rdev->wiphy,
19957bb3 4476 nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]));
4c476991
JB
4477 if (!chan || (chan->flags & IEEE80211_CHAN_DISABLED))
4478 return -EINVAL;
636a5d36 4479
19957bb3
JB
4480 ssid = nla_data(info->attrs[NL80211_ATTR_SSID]);
4481 ssid_len = nla_len(info->attrs[NL80211_ATTR_SSID]);
636a5d36
JM
4482
4483 if (info->attrs[NL80211_ATTR_IE]) {
19957bb3
JB
4484 ie = nla_data(info->attrs[NL80211_ATTR_IE]);
4485 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
636a5d36
JM
4486 }
4487
19957bb3 4488 auth_type = nla_get_u32(info->attrs[NL80211_ATTR_AUTH_TYPE]);
4c476991
JB
4489 if (!nl80211_valid_auth_type(auth_type))
4490 return -EINVAL;
636a5d36 4491
d5cdfacb
JM
4492 local_state_change = !!info->attrs[NL80211_ATTR_LOCAL_STATE_CHANGE];
4493
95de817b
JB
4494 /*
4495 * Since we no longer track auth state, ignore
4496 * requests to only change local state.
4497 */
4498 if (local_state_change)
4499 return 0;
4500
4c476991
JB
4501 return cfg80211_mlme_auth(rdev, dev, chan, auth_type, bssid,
4502 ssid, ssid_len, ie, ie_len,
95de817b 4503 key.p.key, key.p.key_len, key.idx);
636a5d36
JM
4504}
4505
c0692b8f
JB
4506static int nl80211_crypto_settings(struct cfg80211_registered_device *rdev,
4507 struct genl_info *info,
3dc27d25
JB
4508 struct cfg80211_crypto_settings *settings,
4509 int cipher_limit)
b23aa676 4510{
c0b2bbd8
JB
4511 memset(settings, 0, sizeof(*settings));
4512
b23aa676
SO
4513 settings->control_port = info->attrs[NL80211_ATTR_CONTROL_PORT];
4514
c0692b8f
JB
4515 if (info->attrs[NL80211_ATTR_CONTROL_PORT_ETHERTYPE]) {
4516 u16 proto;
4517 proto = nla_get_u16(
4518 info->attrs[NL80211_ATTR_CONTROL_PORT_ETHERTYPE]);
4519 settings->control_port_ethertype = cpu_to_be16(proto);
4520 if (!(rdev->wiphy.flags & WIPHY_FLAG_CONTROL_PORT_PROTOCOL) &&
4521 proto != ETH_P_PAE)
4522 return -EINVAL;
4523 if (info->attrs[NL80211_ATTR_CONTROL_PORT_NO_ENCRYPT])
4524 settings->control_port_no_encrypt = true;
4525 } else
4526 settings->control_port_ethertype = cpu_to_be16(ETH_P_PAE);
4527
b23aa676
SO
4528 if (info->attrs[NL80211_ATTR_CIPHER_SUITES_PAIRWISE]) {
4529 void *data;
4530 int len, i;
4531
4532 data = nla_data(info->attrs[NL80211_ATTR_CIPHER_SUITES_PAIRWISE]);
4533 len = nla_len(info->attrs[NL80211_ATTR_CIPHER_SUITES_PAIRWISE]);
4534 settings->n_ciphers_pairwise = len / sizeof(u32);
4535
4536 if (len % sizeof(u32))
4537 return -EINVAL;
4538
3dc27d25 4539 if (settings->n_ciphers_pairwise > cipher_limit)
b23aa676
SO
4540 return -EINVAL;
4541
4542 memcpy(settings->ciphers_pairwise, data, len);
4543
4544 for (i = 0; i < settings->n_ciphers_pairwise; i++)
38ba3c57
JM
4545 if (!cfg80211_supported_cipher_suite(
4546 &rdev->wiphy,
b23aa676
SO
4547 settings->ciphers_pairwise[i]))
4548 return -EINVAL;
4549 }
4550
4551 if (info->attrs[NL80211_ATTR_CIPHER_SUITE_GROUP]) {
4552 settings->cipher_group =
4553 nla_get_u32(info->attrs[NL80211_ATTR_CIPHER_SUITE_GROUP]);
38ba3c57
JM
4554 if (!cfg80211_supported_cipher_suite(&rdev->wiphy,
4555 settings->cipher_group))
b23aa676
SO
4556 return -EINVAL;
4557 }
4558
4559 if (info->attrs[NL80211_ATTR_WPA_VERSIONS]) {
4560 settings->wpa_versions =
4561 nla_get_u32(info->attrs[NL80211_ATTR_WPA_VERSIONS]);
4562 if (!nl80211_valid_wpa_versions(settings->wpa_versions))
4563 return -EINVAL;
4564 }
4565
4566 if (info->attrs[NL80211_ATTR_AKM_SUITES]) {
4567 void *data;
6d30240e 4568 int len;
b23aa676
SO
4569
4570 data = nla_data(info->attrs[NL80211_ATTR_AKM_SUITES]);
4571 len = nla_len(info->attrs[NL80211_ATTR_AKM_SUITES]);
4572 settings->n_akm_suites = len / sizeof(u32);
4573
4574 if (len % sizeof(u32))
4575 return -EINVAL;
4576
1b9ca027
JM
4577 if (settings->n_akm_suites > NL80211_MAX_NR_AKM_SUITES)
4578 return -EINVAL;
4579
b23aa676 4580 memcpy(settings->akm_suites, data, len);
b23aa676
SO
4581 }
4582
4583 return 0;
4584}
4585
636a5d36
JM
4586static int nl80211_associate(struct sk_buff *skb, struct genl_info *info)
4587{
4c476991
JB
4588 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4589 struct net_device *dev = info->user_ptr[1];
19957bb3 4590 struct cfg80211_crypto_settings crypto;
f444de05 4591 struct ieee80211_channel *chan;
3e5d7649 4592 const u8 *bssid, *ssid, *ie = NULL, *prev_bssid = NULL;
19957bb3
JB
4593 int err, ssid_len, ie_len = 0;
4594 bool use_mfp = false;
7e7c8926
BG
4595 u32 flags = 0;
4596 struct ieee80211_ht_cap *ht_capa = NULL;
4597 struct ieee80211_ht_cap *ht_capa_mask = NULL;
636a5d36 4598
f4a11bb0
JB
4599 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
4600 return -EINVAL;
4601
4602 if (!info->attrs[NL80211_ATTR_MAC] ||
19957bb3
JB
4603 !info->attrs[NL80211_ATTR_SSID] ||
4604 !info->attrs[NL80211_ATTR_WIPHY_FREQ])
f4a11bb0
JB
4605 return -EINVAL;
4606
4c476991
JB
4607 if (!rdev->ops->assoc)
4608 return -EOPNOTSUPP;
636a5d36 4609
074ac8df 4610 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
4611 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
4612 return -EOPNOTSUPP;
eec60b03 4613
19957bb3 4614 bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
636a5d36 4615
19957bb3
JB
4616 chan = ieee80211_get_channel(&rdev->wiphy,
4617 nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]));
4c476991
JB
4618 if (!chan || (chan->flags & IEEE80211_CHAN_DISABLED))
4619 return -EINVAL;
636a5d36 4620
19957bb3
JB
4621 ssid = nla_data(info->attrs[NL80211_ATTR_SSID]);
4622 ssid_len = nla_len(info->attrs[NL80211_ATTR_SSID]);
636a5d36
JM
4623
4624 if (info->attrs[NL80211_ATTR_IE]) {
19957bb3
JB
4625 ie = nla_data(info->attrs[NL80211_ATTR_IE]);
4626 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
636a5d36
JM
4627 }
4628
dc6382ce 4629 if (info->attrs[NL80211_ATTR_USE_MFP]) {
4f5dadce 4630 enum nl80211_mfp mfp =
dc6382ce 4631 nla_get_u32(info->attrs[NL80211_ATTR_USE_MFP]);
4f5dadce 4632 if (mfp == NL80211_MFP_REQUIRED)
19957bb3 4633 use_mfp = true;
4c476991
JB
4634 else if (mfp != NL80211_MFP_NO)
4635 return -EINVAL;
dc6382ce
JM
4636 }
4637
3e5d7649
JB
4638 if (info->attrs[NL80211_ATTR_PREV_BSSID])
4639 prev_bssid = nla_data(info->attrs[NL80211_ATTR_PREV_BSSID]);
4640
7e7c8926
BG
4641 if (nla_get_flag(info->attrs[NL80211_ATTR_DISABLE_HT]))
4642 flags |= ASSOC_REQ_DISABLE_HT;
4643
4644 if (info->attrs[NL80211_ATTR_HT_CAPABILITY_MASK])
4645 ht_capa_mask =
4646 nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY_MASK]);
4647
4648 if (info->attrs[NL80211_ATTR_HT_CAPABILITY]) {
4649 if (!ht_capa_mask)
4650 return -EINVAL;
4651 ht_capa = nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY]);
4652 }
4653
c0692b8f 4654 err = nl80211_crypto_settings(rdev, info, &crypto, 1);
b23aa676 4655 if (!err)
3e5d7649
JB
4656 err = cfg80211_mlme_assoc(rdev, dev, chan, bssid, prev_bssid,
4657 ssid, ssid_len, ie, ie_len, use_mfp,
7e7c8926
BG
4658 &crypto, flags, ht_capa,
4659 ht_capa_mask);
636a5d36 4660
636a5d36
JM
4661 return err;
4662}
4663
4664static int nl80211_deauthenticate(struct sk_buff *skb, struct genl_info *info)
4665{
4c476991
JB
4666 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4667 struct net_device *dev = info->user_ptr[1];
19957bb3 4668 const u8 *ie = NULL, *bssid;
4c476991 4669 int ie_len = 0;
19957bb3 4670 u16 reason_code;
d5cdfacb 4671 bool local_state_change;
636a5d36 4672
f4a11bb0
JB
4673 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
4674 return -EINVAL;
4675
4676 if (!info->attrs[NL80211_ATTR_MAC])
4677 return -EINVAL;
4678
4679 if (!info->attrs[NL80211_ATTR_REASON_CODE])
4680 return -EINVAL;
4681
4c476991
JB
4682 if (!rdev->ops->deauth)
4683 return -EOPNOTSUPP;
636a5d36 4684
074ac8df 4685 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
4686 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
4687 return -EOPNOTSUPP;
eec60b03 4688
19957bb3 4689 bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
636a5d36 4690
19957bb3
JB
4691 reason_code = nla_get_u16(info->attrs[NL80211_ATTR_REASON_CODE]);
4692 if (reason_code == 0) {
f4a11bb0 4693 /* Reason Code 0 is reserved */
4c476991 4694 return -EINVAL;
255e737e 4695 }
636a5d36
JM
4696
4697 if (info->attrs[NL80211_ATTR_IE]) {
19957bb3
JB
4698 ie = nla_data(info->attrs[NL80211_ATTR_IE]);
4699 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
636a5d36
JM
4700 }
4701
d5cdfacb
JM
4702 local_state_change = !!info->attrs[NL80211_ATTR_LOCAL_STATE_CHANGE];
4703
4c476991
JB
4704 return cfg80211_mlme_deauth(rdev, dev, bssid, ie, ie_len, reason_code,
4705 local_state_change);
636a5d36
JM
4706}
4707
4708static int nl80211_disassociate(struct sk_buff *skb, struct genl_info *info)
4709{
4c476991
JB
4710 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4711 struct net_device *dev = info->user_ptr[1];
19957bb3 4712 const u8 *ie = NULL, *bssid;
4c476991 4713 int ie_len = 0;
19957bb3 4714 u16 reason_code;
d5cdfacb 4715 bool local_state_change;
636a5d36 4716
f4a11bb0
JB
4717 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
4718 return -EINVAL;
4719
4720 if (!info->attrs[NL80211_ATTR_MAC])
4721 return -EINVAL;
4722
4723 if (!info->attrs[NL80211_ATTR_REASON_CODE])
4724 return -EINVAL;
4725
4c476991
JB
4726 if (!rdev->ops->disassoc)
4727 return -EOPNOTSUPP;
636a5d36 4728
074ac8df 4729 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
4730 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
4731 return -EOPNOTSUPP;
eec60b03 4732
19957bb3 4733 bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
636a5d36 4734
19957bb3
JB
4735 reason_code = nla_get_u16(info->attrs[NL80211_ATTR_REASON_CODE]);
4736 if (reason_code == 0) {
f4a11bb0 4737 /* Reason Code 0 is reserved */
4c476991 4738 return -EINVAL;
255e737e 4739 }
636a5d36
JM
4740
4741 if (info->attrs[NL80211_ATTR_IE]) {
19957bb3
JB
4742 ie = nla_data(info->attrs[NL80211_ATTR_IE]);
4743 ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
636a5d36
JM
4744 }
4745
d5cdfacb
JM
4746 local_state_change = !!info->attrs[NL80211_ATTR_LOCAL_STATE_CHANGE];
4747
4c476991
JB
4748 return cfg80211_mlme_disassoc(rdev, dev, bssid, ie, ie_len, reason_code,
4749 local_state_change);
636a5d36
JM
4750}
4751
dd5b4cc7
FF
4752static bool
4753nl80211_parse_mcast_rate(struct cfg80211_registered_device *rdev,
4754 int mcast_rate[IEEE80211_NUM_BANDS],
4755 int rateval)
4756{
4757 struct wiphy *wiphy = &rdev->wiphy;
4758 bool found = false;
4759 int band, i;
4760
4761 for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
4762 struct ieee80211_supported_band *sband;
4763
4764 sband = wiphy->bands[band];
4765 if (!sband)
4766 continue;
4767
4768 for (i = 0; i < sband->n_bitrates; i++) {
4769 if (sband->bitrates[i].bitrate == rateval) {
4770 mcast_rate[band] = i + 1;
4771 found = true;
4772 break;
4773 }
4774 }
4775 }
4776
4777 return found;
4778}
4779
04a773ad
JB
4780static int nl80211_join_ibss(struct sk_buff *skb, struct genl_info *info)
4781{
4c476991
JB
4782 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4783 struct net_device *dev = info->user_ptr[1];
04a773ad
JB
4784 struct cfg80211_ibss_params ibss;
4785 struct wiphy *wiphy;
fffd0934 4786 struct cfg80211_cached_keys *connkeys = NULL;
04a773ad
JB
4787 int err;
4788
8e30bc55
JB
4789 memset(&ibss, 0, sizeof(ibss));
4790
04a773ad
JB
4791 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
4792 return -EINVAL;
4793
4794 if (!info->attrs[NL80211_ATTR_WIPHY_FREQ] ||
4795 !info->attrs[NL80211_ATTR_SSID] ||
4796 !nla_len(info->attrs[NL80211_ATTR_SSID]))
4797 return -EINVAL;
4798
8e30bc55
JB
4799 ibss.beacon_interval = 100;
4800
4801 if (info->attrs[NL80211_ATTR_BEACON_INTERVAL]) {
4802 ibss.beacon_interval =
4803 nla_get_u32(info->attrs[NL80211_ATTR_BEACON_INTERVAL]);
4804 if (ibss.beacon_interval < 1 || ibss.beacon_interval > 10000)
4805 return -EINVAL;
4806 }
4807
4c476991
JB
4808 if (!rdev->ops->join_ibss)
4809 return -EOPNOTSUPP;
04a773ad 4810
4c476991
JB
4811 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_ADHOC)
4812 return -EOPNOTSUPP;
04a773ad 4813
79c97e97 4814 wiphy = &rdev->wiphy;
04a773ad 4815
39193498 4816 if (info->attrs[NL80211_ATTR_MAC]) {
04a773ad 4817 ibss.bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
39193498
JB
4818
4819 if (!is_valid_ether_addr(ibss.bssid))
4820 return -EINVAL;
4821 }
04a773ad
JB
4822 ibss.ssid = nla_data(info->attrs[NL80211_ATTR_SSID]);
4823 ibss.ssid_len = nla_len(info->attrs[NL80211_ATTR_SSID]);
4824
4825 if (info->attrs[NL80211_ATTR_IE]) {
4826 ibss.ie = nla_data(info->attrs[NL80211_ATTR_IE]);
4827 ibss.ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
4828 }
4829
54858ee5
AS
4830 if (info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]) {
4831 enum nl80211_channel_type channel_type;
4832
4833 channel_type = nla_get_u32(
4834 info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]);
4835 if (channel_type != NL80211_CHAN_NO_HT &&
4836 channel_type != NL80211_CHAN_HT20 &&
4837 channel_type != NL80211_CHAN_HT40MINUS &&
4838 channel_type != NL80211_CHAN_HT40PLUS)
4839 return -EINVAL;
4840
4841 if (channel_type != NL80211_CHAN_NO_HT &&
4842 !(wiphy->features & NL80211_FEATURE_HT_IBSS))
4843 return -EINVAL;
4844
4845 ibss.channel_type = channel_type;
4846 } else {
4847 ibss.channel_type = NL80211_CHAN_NO_HT;
4848 }
4849
4850 ibss.channel = rdev_freq_to_chan(rdev,
4851 nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]),
4852 ibss.channel_type);
04a773ad
JB
4853 if (!ibss.channel ||
4854 ibss.channel->flags & IEEE80211_CHAN_NO_IBSS ||
4c476991
JB
4855 ibss.channel->flags & IEEE80211_CHAN_DISABLED)
4856 return -EINVAL;
04a773ad 4857
54858ee5
AS
4858 /* Both channels should be able to initiate communication */
4859 if ((ibss.channel_type == NL80211_CHAN_HT40PLUS ||
4860 ibss.channel_type == NL80211_CHAN_HT40MINUS) &&
4861 !cfg80211_can_beacon_sec_chan(&rdev->wiphy, ibss.channel,
4862 ibss.channel_type))
4863 return -EINVAL;
4864
04a773ad 4865 ibss.channel_fixed = !!info->attrs[NL80211_ATTR_FREQ_FIXED];
fffd0934
JB
4866 ibss.privacy = !!info->attrs[NL80211_ATTR_PRIVACY];
4867
fbd2c8dc
TP
4868 if (info->attrs[NL80211_ATTR_BSS_BASIC_RATES]) {
4869 u8 *rates =
4870 nla_data(info->attrs[NL80211_ATTR_BSS_BASIC_RATES]);
4871 int n_rates =
4872 nla_len(info->attrs[NL80211_ATTR_BSS_BASIC_RATES]);
4873 struct ieee80211_supported_band *sband =
4874 wiphy->bands[ibss.channel->band];
fbd2c8dc 4875
34850ab2
JB
4876 err = ieee80211_get_ratemask(sband, rates, n_rates,
4877 &ibss.basic_rates);
4878 if (err)
4879 return err;
fbd2c8dc 4880 }
dd5b4cc7
FF
4881
4882 if (info->attrs[NL80211_ATTR_MCAST_RATE] &&
4883 !nl80211_parse_mcast_rate(rdev, ibss.mcast_rate,
4884 nla_get_u32(info->attrs[NL80211_ATTR_MCAST_RATE])))
4885 return -EINVAL;
fbd2c8dc 4886
4c476991
JB
4887 if (ibss.privacy && info->attrs[NL80211_ATTR_KEYS]) {
4888 connkeys = nl80211_parse_connkeys(rdev,
4889 info->attrs[NL80211_ATTR_KEYS]);
4890 if (IS_ERR(connkeys))
4891 return PTR_ERR(connkeys);
4892 }
04a773ad 4893
267335d6
AQ
4894 ibss.control_port =
4895 nla_get_flag(info->attrs[NL80211_ATTR_CONTROL_PORT]);
4896
4c476991 4897 err = cfg80211_join_ibss(rdev, dev, &ibss, connkeys);
fffd0934
JB
4898 if (err)
4899 kfree(connkeys);
04a773ad
JB
4900 return err;
4901}
4902
4903static int nl80211_leave_ibss(struct sk_buff *skb, struct genl_info *info)
4904{
4c476991
JB
4905 struct cfg80211_registered_device *rdev = info->user_ptr[0];
4906 struct net_device *dev = info->user_ptr[1];
04a773ad 4907
4c476991
JB
4908 if (!rdev->ops->leave_ibss)
4909 return -EOPNOTSUPP;
04a773ad 4910
4c476991
JB
4911 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_ADHOC)
4912 return -EOPNOTSUPP;
04a773ad 4913
4c476991 4914 return cfg80211_leave_ibss(rdev, dev, false);
04a773ad
JB
4915}
4916
aff89a9b
JB
4917#ifdef CONFIG_NL80211_TESTMODE
4918static struct genl_multicast_group nl80211_testmode_mcgrp = {
4919 .name = "testmode",
4920};
4921
4922static int nl80211_testmode_do(struct sk_buff *skb, struct genl_info *info)
4923{
4c476991 4924 struct cfg80211_registered_device *rdev = info->user_ptr[0];
aff89a9b
JB
4925 int err;
4926
4927 if (!info->attrs[NL80211_ATTR_TESTDATA])
4928 return -EINVAL;
4929
aff89a9b
JB
4930 err = -EOPNOTSUPP;
4931 if (rdev->ops->testmode_cmd) {
4932 rdev->testmode_info = info;
4933 err = rdev->ops->testmode_cmd(&rdev->wiphy,
4934 nla_data(info->attrs[NL80211_ATTR_TESTDATA]),
4935 nla_len(info->attrs[NL80211_ATTR_TESTDATA]));
4936 rdev->testmode_info = NULL;
4937 }
4938
aff89a9b
JB
4939 return err;
4940}
4941
71063f0e
WYG
4942static int nl80211_testmode_dump(struct sk_buff *skb,
4943 struct netlink_callback *cb)
4944{
00918d33 4945 struct cfg80211_registered_device *rdev;
71063f0e
WYG
4946 int err;
4947 long phy_idx;
4948 void *data = NULL;
4949 int data_len = 0;
4950
4951 if (cb->args[0]) {
4952 /*
4953 * 0 is a valid index, but not valid for args[0],
4954 * so we need to offset by 1.
4955 */
4956 phy_idx = cb->args[0] - 1;
4957 } else {
4958 err = nlmsg_parse(cb->nlh, GENL_HDRLEN + nl80211_fam.hdrsize,
4959 nl80211_fam.attrbuf, nl80211_fam.maxattr,
4960 nl80211_policy);
4961 if (err)
4962 return err;
00918d33
JB
4963 if (nl80211_fam.attrbuf[NL80211_ATTR_WIPHY]) {
4964 phy_idx = nla_get_u32(
4965 nl80211_fam.attrbuf[NL80211_ATTR_WIPHY]);
4966 } else {
4967 struct net_device *netdev;
4968
4969 err = get_rdev_dev_by_ifindex(sock_net(skb->sk),
4970 nl80211_fam.attrbuf,
4971 &rdev, &netdev);
4972 if (err)
4973 return err;
4974 dev_put(netdev);
4975 phy_idx = rdev->wiphy_idx;
4976 cfg80211_unlock_rdev(rdev);
4977 }
71063f0e
WYG
4978 if (nl80211_fam.attrbuf[NL80211_ATTR_TESTDATA])
4979 cb->args[1] =
4980 (long)nl80211_fam.attrbuf[NL80211_ATTR_TESTDATA];
4981 }
4982
4983 if (cb->args[1]) {
4984 data = nla_data((void *)cb->args[1]);
4985 data_len = nla_len((void *)cb->args[1]);
4986 }
4987
4988 mutex_lock(&cfg80211_mutex);
00918d33
JB
4989 rdev = cfg80211_rdev_by_wiphy_idx(phy_idx);
4990 if (!rdev) {
71063f0e
WYG
4991 mutex_unlock(&cfg80211_mutex);
4992 return -ENOENT;
4993 }
00918d33 4994 cfg80211_lock_rdev(rdev);
71063f0e
WYG
4995 mutex_unlock(&cfg80211_mutex);
4996
00918d33 4997 if (!rdev->ops->testmode_dump) {
71063f0e
WYG
4998 err = -EOPNOTSUPP;
4999 goto out_err;
5000 }
5001
5002 while (1) {
5003 void *hdr = nl80211hdr_put(skb, NETLINK_CB(cb->skb).pid,
5004 cb->nlh->nlmsg_seq, NLM_F_MULTI,
5005 NL80211_CMD_TESTMODE);
5006 struct nlattr *tmdata;
5007
00918d33 5008 if (nla_put_u32(skb, NL80211_ATTR_WIPHY, phy_idx) < 0) {
71063f0e
WYG
5009 genlmsg_cancel(skb, hdr);
5010 break;
5011 }
5012
5013 tmdata = nla_nest_start(skb, NL80211_ATTR_TESTDATA);
5014 if (!tmdata) {
5015 genlmsg_cancel(skb, hdr);
5016 break;
5017 }
00918d33
JB
5018 err = rdev->ops->testmode_dump(&rdev->wiphy, skb, cb,
5019 data, data_len);
71063f0e
WYG
5020 nla_nest_end(skb, tmdata);
5021
5022 if (err == -ENOBUFS || err == -ENOENT) {
5023 genlmsg_cancel(skb, hdr);
5024 break;
5025 } else if (err) {
5026 genlmsg_cancel(skb, hdr);
5027 goto out_err;
5028 }
5029
5030 genlmsg_end(skb, hdr);
5031 }
5032
5033 err = skb->len;
5034 /* see above */
5035 cb->args[0] = phy_idx + 1;
5036 out_err:
00918d33 5037 cfg80211_unlock_rdev(rdev);
71063f0e
WYG
5038 return err;
5039}
5040
aff89a9b
JB
5041static struct sk_buff *
5042__cfg80211_testmode_alloc_skb(struct cfg80211_registered_device *rdev,
5043 int approxlen, u32 pid, u32 seq, gfp_t gfp)
5044{
5045 struct sk_buff *skb;
5046 void *hdr;
5047 struct nlattr *data;
5048
5049 skb = nlmsg_new(approxlen + 100, gfp);
5050 if (!skb)
5051 return NULL;
5052
5053 hdr = nl80211hdr_put(skb, pid, seq, 0, NL80211_CMD_TESTMODE);
5054 if (!hdr) {
5055 kfree_skb(skb);
5056 return NULL;
5057 }
5058
5059 NLA_PUT_U32(skb, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
5060 data = nla_nest_start(skb, NL80211_ATTR_TESTDATA);
5061
5062 ((void **)skb->cb)[0] = rdev;
5063 ((void **)skb->cb)[1] = hdr;
5064 ((void **)skb->cb)[2] = data;
5065
5066 return skb;
5067
5068 nla_put_failure:
5069 kfree_skb(skb);
5070 return NULL;
5071}
5072
5073struct sk_buff *cfg80211_testmode_alloc_reply_skb(struct wiphy *wiphy,
5074 int approxlen)
5075{
5076 struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
5077
5078 if (WARN_ON(!rdev->testmode_info))
5079 return NULL;
5080
5081 return __cfg80211_testmode_alloc_skb(rdev, approxlen,
5082 rdev->testmode_info->snd_pid,
5083 rdev->testmode_info->snd_seq,
5084 GFP_KERNEL);
5085}
5086EXPORT_SYMBOL(cfg80211_testmode_alloc_reply_skb);
5087
5088int cfg80211_testmode_reply(struct sk_buff *skb)
5089{
5090 struct cfg80211_registered_device *rdev = ((void **)skb->cb)[0];
5091 void *hdr = ((void **)skb->cb)[1];
5092 struct nlattr *data = ((void **)skb->cb)[2];
5093
5094 if (WARN_ON(!rdev->testmode_info)) {
5095 kfree_skb(skb);
5096 return -EINVAL;
5097 }
5098
5099 nla_nest_end(skb, data);
5100 genlmsg_end(skb, hdr);
5101 return genlmsg_reply(skb, rdev->testmode_info);
5102}
5103EXPORT_SYMBOL(cfg80211_testmode_reply);
5104
5105struct sk_buff *cfg80211_testmode_alloc_event_skb(struct wiphy *wiphy,
5106 int approxlen, gfp_t gfp)
5107{
5108 struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
5109
5110 return __cfg80211_testmode_alloc_skb(rdev, approxlen, 0, 0, gfp);
5111}
5112EXPORT_SYMBOL(cfg80211_testmode_alloc_event_skb);
5113
5114void cfg80211_testmode_event(struct sk_buff *skb, gfp_t gfp)
5115{
5116 void *hdr = ((void **)skb->cb)[1];
5117 struct nlattr *data = ((void **)skb->cb)[2];
5118
5119 nla_nest_end(skb, data);
5120 genlmsg_end(skb, hdr);
5121 genlmsg_multicast(skb, 0, nl80211_testmode_mcgrp.id, gfp);
5122}
5123EXPORT_SYMBOL(cfg80211_testmode_event);
5124#endif
5125
b23aa676
SO
5126static int nl80211_connect(struct sk_buff *skb, struct genl_info *info)
5127{
4c476991
JB
5128 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5129 struct net_device *dev = info->user_ptr[1];
b23aa676
SO
5130 struct cfg80211_connect_params connect;
5131 struct wiphy *wiphy;
fffd0934 5132 struct cfg80211_cached_keys *connkeys = NULL;
b23aa676
SO
5133 int err;
5134
5135 memset(&connect, 0, sizeof(connect));
5136
5137 if (!is_valid_ie_attr(info->attrs[NL80211_ATTR_IE]))
5138 return -EINVAL;
5139
5140 if (!info->attrs[NL80211_ATTR_SSID] ||
5141 !nla_len(info->attrs[NL80211_ATTR_SSID]))
5142 return -EINVAL;
5143
5144 if (info->attrs[NL80211_ATTR_AUTH_TYPE]) {
5145 connect.auth_type =
5146 nla_get_u32(info->attrs[NL80211_ATTR_AUTH_TYPE]);
5147 if (!nl80211_valid_auth_type(connect.auth_type))
5148 return -EINVAL;
5149 } else
5150 connect.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
5151
5152 connect.privacy = info->attrs[NL80211_ATTR_PRIVACY];
5153
c0692b8f 5154 err = nl80211_crypto_settings(rdev, info, &connect.crypto,
3dc27d25 5155 NL80211_MAX_NR_CIPHER_SUITES);
b23aa676
SO
5156 if (err)
5157 return err;
b23aa676 5158
074ac8df 5159 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
5160 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
5161 return -EOPNOTSUPP;
b23aa676 5162
79c97e97 5163 wiphy = &rdev->wiphy;
b23aa676 5164
4486ea98
BS
5165 connect.bg_scan_period = -1;
5166 if (info->attrs[NL80211_ATTR_BG_SCAN_PERIOD] &&
5167 (wiphy->flags & WIPHY_FLAG_SUPPORTS_FW_ROAM)) {
5168 connect.bg_scan_period =
5169 nla_get_u16(info->attrs[NL80211_ATTR_BG_SCAN_PERIOD]);
5170 }
5171
b23aa676
SO
5172 if (info->attrs[NL80211_ATTR_MAC])
5173 connect.bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
5174 connect.ssid = nla_data(info->attrs[NL80211_ATTR_SSID]);
5175 connect.ssid_len = nla_len(info->attrs[NL80211_ATTR_SSID]);
5176
5177 if (info->attrs[NL80211_ATTR_IE]) {
5178 connect.ie = nla_data(info->attrs[NL80211_ATTR_IE]);
5179 connect.ie_len = nla_len(info->attrs[NL80211_ATTR_IE]);
5180 }
5181
5182 if (info->attrs[NL80211_ATTR_WIPHY_FREQ]) {
5183 connect.channel =
5184 ieee80211_get_channel(wiphy,
5185 nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]));
5186 if (!connect.channel ||
4c476991
JB
5187 connect.channel->flags & IEEE80211_CHAN_DISABLED)
5188 return -EINVAL;
b23aa676
SO
5189 }
5190
fffd0934
JB
5191 if (connect.privacy && info->attrs[NL80211_ATTR_KEYS]) {
5192 connkeys = nl80211_parse_connkeys(rdev,
5193 info->attrs[NL80211_ATTR_KEYS]);
4c476991
JB
5194 if (IS_ERR(connkeys))
5195 return PTR_ERR(connkeys);
fffd0934
JB
5196 }
5197
7e7c8926
BG
5198 if (nla_get_flag(info->attrs[NL80211_ATTR_DISABLE_HT]))
5199 connect.flags |= ASSOC_REQ_DISABLE_HT;
5200
5201 if (info->attrs[NL80211_ATTR_HT_CAPABILITY_MASK])
5202 memcpy(&connect.ht_capa_mask,
5203 nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY_MASK]),
5204 sizeof(connect.ht_capa_mask));
5205
5206 if (info->attrs[NL80211_ATTR_HT_CAPABILITY]) {
5207 if (!info->attrs[NL80211_ATTR_HT_CAPABILITY_MASK])
5208 return -EINVAL;
5209 memcpy(&connect.ht_capa,
5210 nla_data(info->attrs[NL80211_ATTR_HT_CAPABILITY]),
5211 sizeof(connect.ht_capa));
5212 }
5213
fffd0934 5214 err = cfg80211_connect(rdev, dev, &connect, connkeys);
fffd0934
JB
5215 if (err)
5216 kfree(connkeys);
b23aa676
SO
5217 return err;
5218}
5219
5220static int nl80211_disconnect(struct sk_buff *skb, struct genl_info *info)
5221{
4c476991
JB
5222 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5223 struct net_device *dev = info->user_ptr[1];
b23aa676
SO
5224 u16 reason;
5225
5226 if (!info->attrs[NL80211_ATTR_REASON_CODE])
5227 reason = WLAN_REASON_DEAUTH_LEAVING;
5228 else
5229 reason = nla_get_u16(info->attrs[NL80211_ATTR_REASON_CODE]);
5230
5231 if (reason == 0)
5232 return -EINVAL;
5233
074ac8df 5234 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
5235 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
5236 return -EOPNOTSUPP;
b23aa676 5237
4c476991 5238 return cfg80211_disconnect(rdev, dev, reason, true);
b23aa676
SO
5239}
5240
463d0183
JB
5241static int nl80211_wiphy_netns(struct sk_buff *skb, struct genl_info *info)
5242{
4c476991 5243 struct cfg80211_registered_device *rdev = info->user_ptr[0];
463d0183
JB
5244 struct net *net;
5245 int err;
5246 u32 pid;
5247
5248 if (!info->attrs[NL80211_ATTR_PID])
5249 return -EINVAL;
5250
5251 pid = nla_get_u32(info->attrs[NL80211_ATTR_PID]);
5252
463d0183 5253 net = get_net_ns_by_pid(pid);
4c476991
JB
5254 if (IS_ERR(net))
5255 return PTR_ERR(net);
463d0183
JB
5256
5257 err = 0;
5258
5259 /* check if anything to do */
4c476991
JB
5260 if (!net_eq(wiphy_net(&rdev->wiphy), net))
5261 err = cfg80211_switch_netns(rdev, net);
463d0183 5262
463d0183 5263 put_net(net);
463d0183
JB
5264 return err;
5265}
5266
67fbb16b
SO
5267static int nl80211_setdel_pmksa(struct sk_buff *skb, struct genl_info *info)
5268{
4c476991 5269 struct cfg80211_registered_device *rdev = info->user_ptr[0];
67fbb16b
SO
5270 int (*rdev_ops)(struct wiphy *wiphy, struct net_device *dev,
5271 struct cfg80211_pmksa *pmksa) = NULL;
4c476991 5272 struct net_device *dev = info->user_ptr[1];
67fbb16b
SO
5273 struct cfg80211_pmksa pmksa;
5274
5275 memset(&pmksa, 0, sizeof(struct cfg80211_pmksa));
5276
5277 if (!info->attrs[NL80211_ATTR_MAC])
5278 return -EINVAL;
5279
5280 if (!info->attrs[NL80211_ATTR_PMKID])
5281 return -EINVAL;
5282
67fbb16b
SO
5283 pmksa.pmkid = nla_data(info->attrs[NL80211_ATTR_PMKID]);
5284 pmksa.bssid = nla_data(info->attrs[NL80211_ATTR_MAC]);
5285
074ac8df 5286 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
5287 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
5288 return -EOPNOTSUPP;
67fbb16b
SO
5289
5290 switch (info->genlhdr->cmd) {
5291 case NL80211_CMD_SET_PMKSA:
5292 rdev_ops = rdev->ops->set_pmksa;
5293 break;
5294 case NL80211_CMD_DEL_PMKSA:
5295 rdev_ops = rdev->ops->del_pmksa;
5296 break;
5297 default:
5298 WARN_ON(1);
5299 break;
5300 }
5301
4c476991
JB
5302 if (!rdev_ops)
5303 return -EOPNOTSUPP;
67fbb16b 5304
4c476991 5305 return rdev_ops(&rdev->wiphy, dev, &pmksa);
67fbb16b
SO
5306}
5307
5308static int nl80211_flush_pmksa(struct sk_buff *skb, struct genl_info *info)
5309{
4c476991
JB
5310 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5311 struct net_device *dev = info->user_ptr[1];
67fbb16b 5312
074ac8df 5313 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
5314 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT)
5315 return -EOPNOTSUPP;
67fbb16b 5316
4c476991
JB
5317 if (!rdev->ops->flush_pmksa)
5318 return -EOPNOTSUPP;
67fbb16b 5319
4c476991 5320 return rdev->ops->flush_pmksa(&rdev->wiphy, dev);
67fbb16b
SO
5321}
5322
109086ce
AN
5323static int nl80211_tdls_mgmt(struct sk_buff *skb, struct genl_info *info)
5324{
5325 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5326 struct net_device *dev = info->user_ptr[1];
5327 u8 action_code, dialog_token;
5328 u16 status_code;
5329 u8 *peer;
5330
5331 if (!(rdev->wiphy.flags & WIPHY_FLAG_SUPPORTS_TDLS) ||
5332 !rdev->ops->tdls_mgmt)
5333 return -EOPNOTSUPP;
5334
5335 if (!info->attrs[NL80211_ATTR_TDLS_ACTION] ||
5336 !info->attrs[NL80211_ATTR_STATUS_CODE] ||
5337 !info->attrs[NL80211_ATTR_TDLS_DIALOG_TOKEN] ||
5338 !info->attrs[NL80211_ATTR_IE] ||
5339 !info->attrs[NL80211_ATTR_MAC])
5340 return -EINVAL;
5341
5342 peer = nla_data(info->attrs[NL80211_ATTR_MAC]);
5343 action_code = nla_get_u8(info->attrs[NL80211_ATTR_TDLS_ACTION]);
5344 status_code = nla_get_u16(info->attrs[NL80211_ATTR_STATUS_CODE]);
5345 dialog_token = nla_get_u8(info->attrs[NL80211_ATTR_TDLS_DIALOG_TOKEN]);
5346
5347 return rdev->ops->tdls_mgmt(&rdev->wiphy, dev, peer, action_code,
5348 dialog_token, status_code,
5349 nla_data(info->attrs[NL80211_ATTR_IE]),
5350 nla_len(info->attrs[NL80211_ATTR_IE]));
5351}
5352
5353static int nl80211_tdls_oper(struct sk_buff *skb, struct genl_info *info)
5354{
5355 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5356 struct net_device *dev = info->user_ptr[1];
5357 enum nl80211_tdls_operation operation;
5358 u8 *peer;
5359
5360 if (!(rdev->wiphy.flags & WIPHY_FLAG_SUPPORTS_TDLS) ||
5361 !rdev->ops->tdls_oper)
5362 return -EOPNOTSUPP;
5363
5364 if (!info->attrs[NL80211_ATTR_TDLS_OPERATION] ||
5365 !info->attrs[NL80211_ATTR_MAC])
5366 return -EINVAL;
5367
5368 operation = nla_get_u8(info->attrs[NL80211_ATTR_TDLS_OPERATION]);
5369 peer = nla_data(info->attrs[NL80211_ATTR_MAC]);
5370
5371 return rdev->ops->tdls_oper(&rdev->wiphy, dev, peer, operation);
5372}
5373
9588bbd5
JM
5374static int nl80211_remain_on_channel(struct sk_buff *skb,
5375 struct genl_info *info)
5376{
4c476991
JB
5377 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5378 struct net_device *dev = info->user_ptr[1];
9588bbd5
JM
5379 struct ieee80211_channel *chan;
5380 struct sk_buff *msg;
5381 void *hdr;
5382 u64 cookie;
5383 enum nl80211_channel_type channel_type = NL80211_CHAN_NO_HT;
5384 u32 freq, duration;
5385 int err;
5386
5387 if (!info->attrs[NL80211_ATTR_WIPHY_FREQ] ||
5388 !info->attrs[NL80211_ATTR_DURATION])
5389 return -EINVAL;
5390
5391 duration = nla_get_u32(info->attrs[NL80211_ATTR_DURATION]);
5392
5393 /*
5394 * We should be on that channel for at least one jiffie,
5395 * and more than 5 seconds seems excessive.
5396 */
a293911d
JB
5397 if (!duration || !msecs_to_jiffies(duration) ||
5398 duration > rdev->wiphy.max_remain_on_channel_duration)
9588bbd5
JM
5399 return -EINVAL;
5400
7c4ef712
JB
5401 if (!rdev->ops->remain_on_channel ||
5402 !(rdev->wiphy.flags & WIPHY_FLAG_HAS_REMAIN_ON_CHANNEL))
4c476991 5403 return -EOPNOTSUPP;
9588bbd5 5404
9588bbd5
JM
5405 if (info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]) {
5406 channel_type = nla_get_u32(
5407 info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]);
5408 if (channel_type != NL80211_CHAN_NO_HT &&
5409 channel_type != NL80211_CHAN_HT20 &&
5410 channel_type != NL80211_CHAN_HT40PLUS &&
4c476991
JB
5411 channel_type != NL80211_CHAN_HT40MINUS)
5412 return -EINVAL;
9588bbd5
JM
5413 }
5414
5415 freq = nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]);
5416 chan = rdev_freq_to_chan(rdev, freq, channel_type);
4c476991
JB
5417 if (chan == NULL)
5418 return -EINVAL;
9588bbd5
JM
5419
5420 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
4c476991
JB
5421 if (!msg)
5422 return -ENOMEM;
9588bbd5
JM
5423
5424 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
5425 NL80211_CMD_REMAIN_ON_CHANNEL);
5426
5427 if (IS_ERR(hdr)) {
5428 err = PTR_ERR(hdr);
5429 goto free_msg;
5430 }
5431
5432 err = rdev->ops->remain_on_channel(&rdev->wiphy, dev, chan,
5433 channel_type, duration, &cookie);
5434
5435 if (err)
5436 goto free_msg;
5437
5438 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
5439
5440 genlmsg_end(msg, hdr);
4c476991
JB
5441
5442 return genlmsg_reply(msg, info);
9588bbd5
JM
5443
5444 nla_put_failure:
5445 err = -ENOBUFS;
5446 free_msg:
5447 nlmsg_free(msg);
9588bbd5
JM
5448 return err;
5449}
5450
5451static int nl80211_cancel_remain_on_channel(struct sk_buff *skb,
5452 struct genl_info *info)
5453{
4c476991
JB
5454 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5455 struct net_device *dev = info->user_ptr[1];
9588bbd5 5456 u64 cookie;
9588bbd5
JM
5457
5458 if (!info->attrs[NL80211_ATTR_COOKIE])
5459 return -EINVAL;
5460
4c476991
JB
5461 if (!rdev->ops->cancel_remain_on_channel)
5462 return -EOPNOTSUPP;
9588bbd5 5463
9588bbd5
JM
5464 cookie = nla_get_u64(info->attrs[NL80211_ATTR_COOKIE]);
5465
4c476991 5466 return rdev->ops->cancel_remain_on_channel(&rdev->wiphy, dev, cookie);
9588bbd5
JM
5467}
5468
13ae75b1
JM
5469static u32 rateset_to_mask(struct ieee80211_supported_band *sband,
5470 u8 *rates, u8 rates_len)
5471{
5472 u8 i;
5473 u32 mask = 0;
5474
5475 for (i = 0; i < rates_len; i++) {
5476 int rate = (rates[i] & 0x7f) * 5;
5477 int ridx;
5478 for (ridx = 0; ridx < sband->n_bitrates; ridx++) {
5479 struct ieee80211_rate *srate =
5480 &sband->bitrates[ridx];
5481 if (rate == srate->bitrate) {
5482 mask |= 1 << ridx;
5483 break;
5484 }
5485 }
5486 if (ridx == sband->n_bitrates)
5487 return 0; /* rate not found */
5488 }
5489
5490 return mask;
5491}
5492
24db78c0
SW
5493static bool ht_rateset_to_mask(struct ieee80211_supported_band *sband,
5494 u8 *rates, u8 rates_len,
5495 u8 mcs[IEEE80211_HT_MCS_MASK_LEN])
5496{
5497 u8 i;
5498
5499 memset(mcs, 0, IEEE80211_HT_MCS_MASK_LEN);
5500
5501 for (i = 0; i < rates_len; i++) {
5502 int ridx, rbit;
5503
5504 ridx = rates[i] / 8;
5505 rbit = BIT(rates[i] % 8);
5506
5507 /* check validity */
910570b5 5508 if ((ridx < 0) || (ridx >= IEEE80211_HT_MCS_MASK_LEN))
24db78c0
SW
5509 return false;
5510
5511 /* check availability */
5512 if (sband->ht_cap.mcs.rx_mask[ridx] & rbit)
5513 mcs[ridx] |= rbit;
5514 else
5515 return false;
5516 }
5517
5518 return true;
5519}
5520
b54452b0 5521static const struct nla_policy nl80211_txattr_policy[NL80211_TXRATE_MAX + 1] = {
13ae75b1
JM
5522 [NL80211_TXRATE_LEGACY] = { .type = NLA_BINARY,
5523 .len = NL80211_MAX_SUPP_RATES },
24db78c0
SW
5524 [NL80211_TXRATE_MCS] = { .type = NLA_BINARY,
5525 .len = NL80211_MAX_SUPP_HT_RATES },
13ae75b1
JM
5526};
5527
5528static int nl80211_set_tx_bitrate_mask(struct sk_buff *skb,
5529 struct genl_info *info)
5530{
5531 struct nlattr *tb[NL80211_TXRATE_MAX + 1];
4c476991 5532 struct cfg80211_registered_device *rdev = info->user_ptr[0];
13ae75b1 5533 struct cfg80211_bitrate_mask mask;
4c476991
JB
5534 int rem, i;
5535 struct net_device *dev = info->user_ptr[1];
13ae75b1
JM
5536 struct nlattr *tx_rates;
5537 struct ieee80211_supported_band *sband;
5538
5539 if (info->attrs[NL80211_ATTR_TX_RATES] == NULL)
5540 return -EINVAL;
5541
4c476991
JB
5542 if (!rdev->ops->set_bitrate_mask)
5543 return -EOPNOTSUPP;
13ae75b1
JM
5544
5545 memset(&mask, 0, sizeof(mask));
5546 /* Default to all rates enabled */
5547 for (i = 0; i < IEEE80211_NUM_BANDS; i++) {
5548 sband = rdev->wiphy.bands[i];
5549 mask.control[i].legacy =
5550 sband ? (1 << sband->n_bitrates) - 1 : 0;
24db78c0
SW
5551 if (sband)
5552 memcpy(mask.control[i].mcs,
5553 sband->ht_cap.mcs.rx_mask,
5554 sizeof(mask.control[i].mcs));
5555 else
5556 memset(mask.control[i].mcs, 0,
5557 sizeof(mask.control[i].mcs));
13ae75b1
JM
5558 }
5559
5560 /*
5561 * The nested attribute uses enum nl80211_band as the index. This maps
5562 * directly to the enum ieee80211_band values used in cfg80211.
5563 */
24db78c0 5564 BUILD_BUG_ON(NL80211_MAX_SUPP_HT_RATES > IEEE80211_HT_MCS_MASK_LEN * 8);
13ae75b1
JM
5565 nla_for_each_nested(tx_rates, info->attrs[NL80211_ATTR_TX_RATES], rem)
5566 {
5567 enum ieee80211_band band = nla_type(tx_rates);
4c476991
JB
5568 if (band < 0 || band >= IEEE80211_NUM_BANDS)
5569 return -EINVAL;
13ae75b1 5570 sband = rdev->wiphy.bands[band];
4c476991
JB
5571 if (sband == NULL)
5572 return -EINVAL;
13ae75b1
JM
5573 nla_parse(tb, NL80211_TXRATE_MAX, nla_data(tx_rates),
5574 nla_len(tx_rates), nl80211_txattr_policy);
5575 if (tb[NL80211_TXRATE_LEGACY]) {
5576 mask.control[band].legacy = rateset_to_mask(
5577 sband,
5578 nla_data(tb[NL80211_TXRATE_LEGACY]),
5579 nla_len(tb[NL80211_TXRATE_LEGACY]));
24db78c0
SW
5580 }
5581 if (tb[NL80211_TXRATE_MCS]) {
5582 if (!ht_rateset_to_mask(
5583 sband,
5584 nla_data(tb[NL80211_TXRATE_MCS]),
5585 nla_len(tb[NL80211_TXRATE_MCS]),
5586 mask.control[band].mcs))
5587 return -EINVAL;
5588 }
5589
5590 if (mask.control[band].legacy == 0) {
5591 /* don't allow empty legacy rates if HT
5592 * is not even supported. */
5593 if (!rdev->wiphy.bands[band]->ht_cap.ht_supported)
5594 return -EINVAL;
5595
5596 for (i = 0; i < IEEE80211_HT_MCS_MASK_LEN; i++)
5597 if (mask.control[band].mcs[i])
5598 break;
5599
5600 /* legacy and mcs rates may not be both empty */
5601 if (i == IEEE80211_HT_MCS_MASK_LEN)
4c476991 5602 return -EINVAL;
13ae75b1
JM
5603 }
5604 }
5605
4c476991 5606 return rdev->ops->set_bitrate_mask(&rdev->wiphy, dev, NULL, &mask);
13ae75b1
JM
5607}
5608
2e161f78 5609static int nl80211_register_mgmt(struct sk_buff *skb, struct genl_info *info)
026331c4 5610{
4c476991
JB
5611 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5612 struct net_device *dev = info->user_ptr[1];
2e161f78 5613 u16 frame_type = IEEE80211_FTYPE_MGMT | IEEE80211_STYPE_ACTION;
026331c4
JM
5614
5615 if (!info->attrs[NL80211_ATTR_FRAME_MATCH])
5616 return -EINVAL;
5617
2e161f78
JB
5618 if (info->attrs[NL80211_ATTR_FRAME_TYPE])
5619 frame_type = nla_get_u16(info->attrs[NL80211_ATTR_FRAME_TYPE]);
026331c4 5620
9d38d85d 5621 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
074ac8df 5622 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_ADHOC &&
663fcafd
JB
5623 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT &&
5624 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
5625 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP_VLAN &&
c7108a71 5626 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT &&
4c476991
JB
5627 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
5628 return -EOPNOTSUPP;
026331c4
JM
5629
5630 /* not much point in registering if we can't reply */
4c476991
JB
5631 if (!rdev->ops->mgmt_tx)
5632 return -EOPNOTSUPP;
026331c4 5633
4c476991 5634 return cfg80211_mlme_register_mgmt(dev->ieee80211_ptr, info->snd_pid,
2e161f78 5635 frame_type,
026331c4
JM
5636 nla_data(info->attrs[NL80211_ATTR_FRAME_MATCH]),
5637 nla_len(info->attrs[NL80211_ATTR_FRAME_MATCH]));
026331c4
JM
5638}
5639
2e161f78 5640static int nl80211_tx_mgmt(struct sk_buff *skb, struct genl_info *info)
026331c4 5641{
4c476991
JB
5642 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5643 struct net_device *dev = info->user_ptr[1];
026331c4
JM
5644 struct ieee80211_channel *chan;
5645 enum nl80211_channel_type channel_type = NL80211_CHAN_NO_HT;
252aa631 5646 bool channel_type_valid = false;
026331c4
JM
5647 u32 freq;
5648 int err;
d64d373f 5649 void *hdr = NULL;
026331c4 5650 u64 cookie;
e247bd90 5651 struct sk_buff *msg = NULL;
f7ca38df 5652 unsigned int wait = 0;
e247bd90
JB
5653 bool offchan, no_cck, dont_wait_for_ack;
5654
5655 dont_wait_for_ack = info->attrs[NL80211_ATTR_DONT_WAIT_FOR_ACK];
026331c4
JM
5656
5657 if (!info->attrs[NL80211_ATTR_FRAME] ||
5658 !info->attrs[NL80211_ATTR_WIPHY_FREQ])
5659 return -EINVAL;
5660
4c476991
JB
5661 if (!rdev->ops->mgmt_tx)
5662 return -EOPNOTSUPP;
026331c4 5663
9d38d85d 5664 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
074ac8df 5665 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_ADHOC &&
663fcafd
JB
5666 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT &&
5667 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
5668 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP_VLAN &&
c7108a71 5669 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_MESH_POINT &&
4c476991
JB
5670 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
5671 return -EOPNOTSUPP;
026331c4 5672
f7ca38df 5673 if (info->attrs[NL80211_ATTR_DURATION]) {
7c4ef712 5674 if (!(rdev->wiphy.flags & WIPHY_FLAG_OFFCHAN_TX))
f7ca38df
JB
5675 return -EINVAL;
5676 wait = nla_get_u32(info->attrs[NL80211_ATTR_DURATION]);
5677 }
5678
026331c4
JM
5679 if (info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]) {
5680 channel_type = nla_get_u32(
5681 info->attrs[NL80211_ATTR_WIPHY_CHANNEL_TYPE]);
5682 if (channel_type != NL80211_CHAN_NO_HT &&
5683 channel_type != NL80211_CHAN_HT20 &&
5684 channel_type != NL80211_CHAN_HT40PLUS &&
4c476991
JB
5685 channel_type != NL80211_CHAN_HT40MINUS)
5686 return -EINVAL;
252aa631 5687 channel_type_valid = true;
026331c4
JM
5688 }
5689
f7ca38df
JB
5690 offchan = info->attrs[NL80211_ATTR_OFFCHANNEL_TX_OK];
5691
7c4ef712
JB
5692 if (offchan && !(rdev->wiphy.flags & WIPHY_FLAG_OFFCHAN_TX))
5693 return -EINVAL;
5694
e9f935e3
RM
5695 no_cck = nla_get_flag(info->attrs[NL80211_ATTR_TX_NO_CCK_RATE]);
5696
026331c4
JM
5697 freq = nla_get_u32(info->attrs[NL80211_ATTR_WIPHY_FREQ]);
5698 chan = rdev_freq_to_chan(rdev, freq, channel_type);
4c476991
JB
5699 if (chan == NULL)
5700 return -EINVAL;
026331c4 5701
e247bd90
JB
5702 if (!dont_wait_for_ack) {
5703 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
5704 if (!msg)
5705 return -ENOMEM;
026331c4 5706
e247bd90
JB
5707 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
5708 NL80211_CMD_FRAME);
026331c4 5709
e247bd90
JB
5710 if (IS_ERR(hdr)) {
5711 err = PTR_ERR(hdr);
5712 goto free_msg;
5713 }
026331c4 5714 }
e247bd90 5715
f7ca38df
JB
5716 err = cfg80211_mlme_mgmt_tx(rdev, dev, chan, offchan, channel_type,
5717 channel_type_valid, wait,
2e161f78
JB
5718 nla_data(info->attrs[NL80211_ATTR_FRAME]),
5719 nla_len(info->attrs[NL80211_ATTR_FRAME]),
e247bd90 5720 no_cck, dont_wait_for_ack, &cookie);
026331c4
JM
5721 if (err)
5722 goto free_msg;
5723
e247bd90
JB
5724 if (msg) {
5725 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
026331c4 5726
e247bd90
JB
5727 genlmsg_end(msg, hdr);
5728 return genlmsg_reply(msg, info);
5729 }
5730
5731 return 0;
026331c4
JM
5732
5733 nla_put_failure:
5734 err = -ENOBUFS;
5735 free_msg:
5736 nlmsg_free(msg);
026331c4
JM
5737 return err;
5738}
5739
f7ca38df
JB
5740static int nl80211_tx_mgmt_cancel_wait(struct sk_buff *skb, struct genl_info *info)
5741{
5742 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5743 struct net_device *dev = info->user_ptr[1];
5744 u64 cookie;
5745
5746 if (!info->attrs[NL80211_ATTR_COOKIE])
5747 return -EINVAL;
5748
5749 if (!rdev->ops->mgmt_tx_cancel_wait)
5750 return -EOPNOTSUPP;
5751
5752 if (dev->ieee80211_ptr->iftype != NL80211_IFTYPE_STATION &&
5753 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_ADHOC &&
5754 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_CLIENT &&
5755 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP &&
5756 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_AP_VLAN &&
5757 dev->ieee80211_ptr->iftype != NL80211_IFTYPE_P2P_GO)
5758 return -EOPNOTSUPP;
5759
5760 cookie = nla_get_u64(info->attrs[NL80211_ATTR_COOKIE]);
5761
5762 return rdev->ops->mgmt_tx_cancel_wait(&rdev->wiphy, dev, cookie);
5763}
5764
ffb9eb3d
KV
5765static int nl80211_set_power_save(struct sk_buff *skb, struct genl_info *info)
5766{
4c476991 5767 struct cfg80211_registered_device *rdev = info->user_ptr[0];
ffb9eb3d 5768 struct wireless_dev *wdev;
4c476991 5769 struct net_device *dev = info->user_ptr[1];
ffb9eb3d
KV
5770 u8 ps_state;
5771 bool state;
5772 int err;
5773
4c476991
JB
5774 if (!info->attrs[NL80211_ATTR_PS_STATE])
5775 return -EINVAL;
ffb9eb3d
KV
5776
5777 ps_state = nla_get_u32(info->attrs[NL80211_ATTR_PS_STATE]);
5778
4c476991
JB
5779 if (ps_state != NL80211_PS_DISABLED && ps_state != NL80211_PS_ENABLED)
5780 return -EINVAL;
ffb9eb3d
KV
5781
5782 wdev = dev->ieee80211_ptr;
5783
4c476991
JB
5784 if (!rdev->ops->set_power_mgmt)
5785 return -EOPNOTSUPP;
ffb9eb3d
KV
5786
5787 state = (ps_state == NL80211_PS_ENABLED) ? true : false;
5788
5789 if (state == wdev->ps)
4c476991 5790 return 0;
ffb9eb3d 5791
4c476991
JB
5792 err = rdev->ops->set_power_mgmt(wdev->wiphy, dev, state,
5793 wdev->ps_timeout);
5794 if (!err)
5795 wdev->ps = state;
ffb9eb3d
KV
5796 return err;
5797}
5798
5799static int nl80211_get_power_save(struct sk_buff *skb, struct genl_info *info)
5800{
4c476991 5801 struct cfg80211_registered_device *rdev = info->user_ptr[0];
ffb9eb3d
KV
5802 enum nl80211_ps_state ps_state;
5803 struct wireless_dev *wdev;
4c476991 5804 struct net_device *dev = info->user_ptr[1];
ffb9eb3d
KV
5805 struct sk_buff *msg;
5806 void *hdr;
5807 int err;
5808
ffb9eb3d
KV
5809 wdev = dev->ieee80211_ptr;
5810
4c476991
JB
5811 if (!rdev->ops->set_power_mgmt)
5812 return -EOPNOTSUPP;
ffb9eb3d
KV
5813
5814 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
4c476991
JB
5815 if (!msg)
5816 return -ENOMEM;
ffb9eb3d
KV
5817
5818 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
5819 NL80211_CMD_GET_POWER_SAVE);
5820 if (!hdr) {
4c476991 5821 err = -ENOBUFS;
ffb9eb3d
KV
5822 goto free_msg;
5823 }
5824
5825 if (wdev->ps)
5826 ps_state = NL80211_PS_ENABLED;
5827 else
5828 ps_state = NL80211_PS_DISABLED;
5829
5830 NLA_PUT_U32(msg, NL80211_ATTR_PS_STATE, ps_state);
5831
5832 genlmsg_end(msg, hdr);
4c476991 5833 return genlmsg_reply(msg, info);
ffb9eb3d 5834
4c476991 5835 nla_put_failure:
ffb9eb3d 5836 err = -ENOBUFS;
4c476991 5837 free_msg:
ffb9eb3d 5838 nlmsg_free(msg);
ffb9eb3d
KV
5839 return err;
5840}
5841
d6dc1a38
JO
5842static struct nla_policy
5843nl80211_attr_cqm_policy[NL80211_ATTR_CQM_MAX + 1] __read_mostly = {
5844 [NL80211_ATTR_CQM_RSSI_THOLD] = { .type = NLA_U32 },
5845 [NL80211_ATTR_CQM_RSSI_HYST] = { .type = NLA_U32 },
5846 [NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT] = { .type = NLA_U32 },
5847};
5848
5849static int nl80211_set_cqm_rssi(struct genl_info *info,
5850 s32 threshold, u32 hysteresis)
5851{
4c476991 5852 struct cfg80211_registered_device *rdev = info->user_ptr[0];
d6dc1a38 5853 struct wireless_dev *wdev;
4c476991 5854 struct net_device *dev = info->user_ptr[1];
d6dc1a38
JO
5855
5856 if (threshold > 0)
5857 return -EINVAL;
5858
d6dc1a38
JO
5859 wdev = dev->ieee80211_ptr;
5860
4c476991
JB
5861 if (!rdev->ops->set_cqm_rssi_config)
5862 return -EOPNOTSUPP;
d6dc1a38 5863
074ac8df 5864 if (wdev->iftype != NL80211_IFTYPE_STATION &&
4c476991
JB
5865 wdev->iftype != NL80211_IFTYPE_P2P_CLIENT)
5866 return -EOPNOTSUPP;
d6dc1a38 5867
4c476991
JB
5868 return rdev->ops->set_cqm_rssi_config(wdev->wiphy, dev,
5869 threshold, hysteresis);
d6dc1a38
JO
5870}
5871
5872static int nl80211_set_cqm(struct sk_buff *skb, struct genl_info *info)
5873{
5874 struct nlattr *attrs[NL80211_ATTR_CQM_MAX + 1];
5875 struct nlattr *cqm;
5876 int err;
5877
5878 cqm = info->attrs[NL80211_ATTR_CQM];
5879 if (!cqm) {
5880 err = -EINVAL;
5881 goto out;
5882 }
5883
5884 err = nla_parse_nested(attrs, NL80211_ATTR_CQM_MAX, cqm,
5885 nl80211_attr_cqm_policy);
5886 if (err)
5887 goto out;
5888
5889 if (attrs[NL80211_ATTR_CQM_RSSI_THOLD] &&
5890 attrs[NL80211_ATTR_CQM_RSSI_HYST]) {
5891 s32 threshold;
5892 u32 hysteresis;
5893 threshold = nla_get_u32(attrs[NL80211_ATTR_CQM_RSSI_THOLD]);
5894 hysteresis = nla_get_u32(attrs[NL80211_ATTR_CQM_RSSI_HYST]);
5895 err = nl80211_set_cqm_rssi(info, threshold, hysteresis);
5896 } else
5897 err = -EINVAL;
5898
5899out:
5900 return err;
5901}
5902
29cbe68c
JB
5903static int nl80211_join_mesh(struct sk_buff *skb, struct genl_info *info)
5904{
5905 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5906 struct net_device *dev = info->user_ptr[1];
5907 struct mesh_config cfg;
c80d545d 5908 struct mesh_setup setup;
29cbe68c
JB
5909 int err;
5910
5911 /* start with default */
5912 memcpy(&cfg, &default_mesh_config, sizeof(cfg));
c80d545d 5913 memcpy(&setup, &default_mesh_setup, sizeof(setup));
29cbe68c 5914
24bdd9f4 5915 if (info->attrs[NL80211_ATTR_MESH_CONFIG]) {
29cbe68c 5916 /* and parse parameters if given */
24bdd9f4 5917 err = nl80211_parse_mesh_config(info, &cfg, NULL);
29cbe68c
JB
5918 if (err)
5919 return err;
5920 }
5921
5922 if (!info->attrs[NL80211_ATTR_MESH_ID] ||
5923 !nla_len(info->attrs[NL80211_ATTR_MESH_ID]))
5924 return -EINVAL;
5925
c80d545d
JC
5926 setup.mesh_id = nla_data(info->attrs[NL80211_ATTR_MESH_ID]);
5927 setup.mesh_id_len = nla_len(info->attrs[NL80211_ATTR_MESH_ID]);
5928
4bb62344
CYY
5929 if (info->attrs[NL80211_ATTR_MCAST_RATE] &&
5930 !nl80211_parse_mcast_rate(rdev, setup.mcast_rate,
5931 nla_get_u32(info->attrs[NL80211_ATTR_MCAST_RATE])))
5932 return -EINVAL;
5933
c80d545d
JC
5934 if (info->attrs[NL80211_ATTR_MESH_SETUP]) {
5935 /* parse additional setup parameters if given */
5936 err = nl80211_parse_mesh_setup(info, &setup);
5937 if (err)
5938 return err;
5939 }
5940
5941 return cfg80211_join_mesh(rdev, dev, &setup, &cfg);
29cbe68c
JB
5942}
5943
5944static int nl80211_leave_mesh(struct sk_buff *skb, struct genl_info *info)
5945{
5946 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5947 struct net_device *dev = info->user_ptr[1];
5948
5949 return cfg80211_leave_mesh(rdev, dev);
5950}
5951
ff1b6e69
JB
5952static int nl80211_get_wowlan(struct sk_buff *skb, struct genl_info *info)
5953{
5954 struct cfg80211_registered_device *rdev = info->user_ptr[0];
5955 struct sk_buff *msg;
5956 void *hdr;
5957
5958 if (!rdev->wiphy.wowlan.flags && !rdev->wiphy.wowlan.n_patterns)
5959 return -EOPNOTSUPP;
5960
5961 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
5962 if (!msg)
5963 return -ENOMEM;
5964
5965 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
5966 NL80211_CMD_GET_WOWLAN);
5967 if (!hdr)
5968 goto nla_put_failure;
5969
5970 if (rdev->wowlan) {
5971 struct nlattr *nl_wowlan;
5972
5973 nl_wowlan = nla_nest_start(msg, NL80211_ATTR_WOWLAN_TRIGGERS);
5974 if (!nl_wowlan)
5975 goto nla_put_failure;
5976
5977 if (rdev->wowlan->any)
5978 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_ANY);
5979 if (rdev->wowlan->disconnect)
5980 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_DISCONNECT);
5981 if (rdev->wowlan->magic_pkt)
5982 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_MAGIC_PKT);
77dbbb13
JB
5983 if (rdev->wowlan->gtk_rekey_failure)
5984 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_GTK_REKEY_FAILURE);
5985 if (rdev->wowlan->eap_identity_req)
5986 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_EAP_IDENT_REQUEST);
5987 if (rdev->wowlan->four_way_handshake)
5988 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_4WAY_HANDSHAKE);
5989 if (rdev->wowlan->rfkill_release)
5990 NLA_PUT_FLAG(msg, NL80211_WOWLAN_TRIG_RFKILL_RELEASE);
ff1b6e69
JB
5991 if (rdev->wowlan->n_patterns) {
5992 struct nlattr *nl_pats, *nl_pat;
5993 int i, pat_len;
5994
5995 nl_pats = nla_nest_start(msg,
5996 NL80211_WOWLAN_TRIG_PKT_PATTERN);
5997 if (!nl_pats)
5998 goto nla_put_failure;
5999
6000 for (i = 0; i < rdev->wowlan->n_patterns; i++) {
6001 nl_pat = nla_nest_start(msg, i + 1);
6002 if (!nl_pat)
6003 goto nla_put_failure;
6004 pat_len = rdev->wowlan->patterns[i].pattern_len;
6005 NLA_PUT(msg, NL80211_WOWLAN_PKTPAT_MASK,
6006 DIV_ROUND_UP(pat_len, 8),
6007 rdev->wowlan->patterns[i].mask);
6008 NLA_PUT(msg, NL80211_WOWLAN_PKTPAT_PATTERN,
6009 pat_len,
6010 rdev->wowlan->patterns[i].pattern);
6011 nla_nest_end(msg, nl_pat);
6012 }
6013 nla_nest_end(msg, nl_pats);
6014 }
6015
6016 nla_nest_end(msg, nl_wowlan);
6017 }
6018
6019 genlmsg_end(msg, hdr);
6020 return genlmsg_reply(msg, info);
6021
6022nla_put_failure:
6023 nlmsg_free(msg);
6024 return -ENOBUFS;
6025}
6026
6027static int nl80211_set_wowlan(struct sk_buff *skb, struct genl_info *info)
6028{
6029 struct cfg80211_registered_device *rdev = info->user_ptr[0];
6030 struct nlattr *tb[NUM_NL80211_WOWLAN_TRIG];
6031 struct cfg80211_wowlan no_triggers = {};
6032 struct cfg80211_wowlan new_triggers = {};
6033 struct wiphy_wowlan_support *wowlan = &rdev->wiphy.wowlan;
6034 int err, i;
6d52563f 6035 bool prev_enabled = rdev->wowlan;
ff1b6e69
JB
6036
6037 if (!rdev->wiphy.wowlan.flags && !rdev->wiphy.wowlan.n_patterns)
6038 return -EOPNOTSUPP;
6039
6040 if (!info->attrs[NL80211_ATTR_WOWLAN_TRIGGERS])
6041 goto no_triggers;
6042
6043 err = nla_parse(tb, MAX_NL80211_WOWLAN_TRIG,
6044 nla_data(info->attrs[NL80211_ATTR_WOWLAN_TRIGGERS]),
6045 nla_len(info->attrs[NL80211_ATTR_WOWLAN_TRIGGERS]),
6046 nl80211_wowlan_policy);
6047 if (err)
6048 return err;
6049
6050 if (tb[NL80211_WOWLAN_TRIG_ANY]) {
6051 if (!(wowlan->flags & WIPHY_WOWLAN_ANY))
6052 return -EINVAL;
6053 new_triggers.any = true;
6054 }
6055
6056 if (tb[NL80211_WOWLAN_TRIG_DISCONNECT]) {
6057 if (!(wowlan->flags & WIPHY_WOWLAN_DISCONNECT))
6058 return -EINVAL;
6059 new_triggers.disconnect = true;
6060 }
6061
6062 if (tb[NL80211_WOWLAN_TRIG_MAGIC_PKT]) {
6063 if (!(wowlan->flags & WIPHY_WOWLAN_MAGIC_PKT))
6064 return -EINVAL;
6065 new_triggers.magic_pkt = true;
6066 }
6067
77dbbb13
JB
6068 if (tb[NL80211_WOWLAN_TRIG_GTK_REKEY_SUPPORTED])
6069 return -EINVAL;
6070
6071 if (tb[NL80211_WOWLAN_TRIG_GTK_REKEY_FAILURE]) {
6072 if (!(wowlan->flags & WIPHY_WOWLAN_GTK_REKEY_FAILURE))
6073 return -EINVAL;
6074 new_triggers.gtk_rekey_failure = true;
6075 }
6076
6077 if (tb[NL80211_WOWLAN_TRIG_EAP_IDENT_REQUEST]) {
6078 if (!(wowlan->flags & WIPHY_WOWLAN_EAP_IDENTITY_REQ))
6079 return -EINVAL;
6080 new_triggers.eap_identity_req = true;
6081 }
6082
6083 if (tb[NL80211_WOWLAN_TRIG_4WAY_HANDSHAKE]) {
6084 if (!(wowlan->flags & WIPHY_WOWLAN_4WAY_HANDSHAKE))
6085 return -EINVAL;
6086 new_triggers.four_way_handshake = true;
6087 }
6088
6089 if (tb[NL80211_WOWLAN_TRIG_RFKILL_RELEASE]) {
6090 if (!(wowlan->flags & WIPHY_WOWLAN_RFKILL_RELEASE))
6091 return -EINVAL;
6092 new_triggers.rfkill_release = true;
6093 }
6094
ff1b6e69
JB
6095 if (tb[NL80211_WOWLAN_TRIG_PKT_PATTERN]) {
6096 struct nlattr *pat;
6097 int n_patterns = 0;
6098 int rem, pat_len, mask_len;
6099 struct nlattr *pat_tb[NUM_NL80211_WOWLAN_PKTPAT];
6100
6101 nla_for_each_nested(pat, tb[NL80211_WOWLAN_TRIG_PKT_PATTERN],
6102 rem)
6103 n_patterns++;
6104 if (n_patterns > wowlan->n_patterns)
6105 return -EINVAL;
6106
6107 new_triggers.patterns = kcalloc(n_patterns,
6108 sizeof(new_triggers.patterns[0]),
6109 GFP_KERNEL);
6110 if (!new_triggers.patterns)
6111 return -ENOMEM;
6112
6113 new_triggers.n_patterns = n_patterns;
6114 i = 0;
6115
6116 nla_for_each_nested(pat, tb[NL80211_WOWLAN_TRIG_PKT_PATTERN],
6117 rem) {
6118 nla_parse(pat_tb, MAX_NL80211_WOWLAN_PKTPAT,
6119 nla_data(pat), nla_len(pat), NULL);
6120 err = -EINVAL;
6121 if (!pat_tb[NL80211_WOWLAN_PKTPAT_MASK] ||
6122 !pat_tb[NL80211_WOWLAN_PKTPAT_PATTERN])
6123 goto error;
6124 pat_len = nla_len(pat_tb[NL80211_WOWLAN_PKTPAT_PATTERN]);
6125 mask_len = DIV_ROUND_UP(pat_len, 8);
6126 if (nla_len(pat_tb[NL80211_WOWLAN_PKTPAT_MASK]) !=
6127 mask_len)
6128 goto error;
6129 if (pat_len > wowlan->pattern_max_len ||
6130 pat_len < wowlan->pattern_min_len)
6131 goto error;
6132
6133 new_triggers.patterns[i].mask =
6134 kmalloc(mask_len + pat_len, GFP_KERNEL);
6135 if (!new_triggers.patterns[i].mask) {
6136 err = -ENOMEM;
6137 goto error;
6138 }
6139 new_triggers.patterns[i].pattern =
6140 new_triggers.patterns[i].mask + mask_len;
6141 memcpy(new_triggers.patterns[i].mask,
6142 nla_data(pat_tb[NL80211_WOWLAN_PKTPAT_MASK]),
6143 mask_len);
6144 new_triggers.patterns[i].pattern_len = pat_len;
6145 memcpy(new_triggers.patterns[i].pattern,
6146 nla_data(pat_tb[NL80211_WOWLAN_PKTPAT_PATTERN]),
6147 pat_len);
6148 i++;
6149 }
6150 }
6151
6152 if (memcmp(&new_triggers, &no_triggers, sizeof(new_triggers))) {
6153 struct cfg80211_wowlan *ntrig;
6154 ntrig = kmemdup(&new_triggers, sizeof(new_triggers),
6155 GFP_KERNEL);
6156 if (!ntrig) {
6157 err = -ENOMEM;
6158 goto error;
6159 }
6160 cfg80211_rdev_free_wowlan(rdev);
6161 rdev->wowlan = ntrig;
6162 } else {
6163 no_triggers:
6164 cfg80211_rdev_free_wowlan(rdev);
6165 rdev->wowlan = NULL;
6166 }
6167
6d52563f
JB
6168 if (rdev->ops->set_wakeup && prev_enabled != !!rdev->wowlan)
6169 rdev->ops->set_wakeup(&rdev->wiphy, rdev->wowlan);
6170
ff1b6e69
JB
6171 return 0;
6172 error:
6173 for (i = 0; i < new_triggers.n_patterns; i++)
6174 kfree(new_triggers.patterns[i].mask);
6175 kfree(new_triggers.patterns);
6176 return err;
6177}
6178
e5497d76
JB
6179static int nl80211_set_rekey_data(struct sk_buff *skb, struct genl_info *info)
6180{
6181 struct cfg80211_registered_device *rdev = info->user_ptr[0];
6182 struct net_device *dev = info->user_ptr[1];
6183 struct wireless_dev *wdev = dev->ieee80211_ptr;
6184 struct nlattr *tb[NUM_NL80211_REKEY_DATA];
6185 struct cfg80211_gtk_rekey_data rekey_data;
6186 int err;
6187
6188 if (!info->attrs[NL80211_ATTR_REKEY_DATA])
6189 return -EINVAL;
6190
6191 err = nla_parse(tb, MAX_NL80211_REKEY_DATA,
6192 nla_data(info->attrs[NL80211_ATTR_REKEY_DATA]),
6193 nla_len(info->attrs[NL80211_ATTR_REKEY_DATA]),
6194 nl80211_rekey_policy);
6195 if (err)
6196 return err;
6197
6198 if (nla_len(tb[NL80211_REKEY_DATA_REPLAY_CTR]) != NL80211_REPLAY_CTR_LEN)
6199 return -ERANGE;
6200 if (nla_len(tb[NL80211_REKEY_DATA_KEK]) != NL80211_KEK_LEN)
6201 return -ERANGE;
6202 if (nla_len(tb[NL80211_REKEY_DATA_KCK]) != NL80211_KCK_LEN)
6203 return -ERANGE;
6204
6205 memcpy(rekey_data.kek, nla_data(tb[NL80211_REKEY_DATA_KEK]),
6206 NL80211_KEK_LEN);
6207 memcpy(rekey_data.kck, nla_data(tb[NL80211_REKEY_DATA_KCK]),
6208 NL80211_KCK_LEN);
6209 memcpy(rekey_data.replay_ctr,
6210 nla_data(tb[NL80211_REKEY_DATA_REPLAY_CTR]),
6211 NL80211_REPLAY_CTR_LEN);
6212
6213 wdev_lock(wdev);
6214 if (!wdev->current_bss) {
6215 err = -ENOTCONN;
6216 goto out;
6217 }
6218
6219 if (!rdev->ops->set_rekey_data) {
6220 err = -EOPNOTSUPP;
6221 goto out;
6222 }
6223
6224 err = rdev->ops->set_rekey_data(&rdev->wiphy, dev, &rekey_data);
6225 out:
6226 wdev_unlock(wdev);
6227 return err;
6228}
6229
28946da7
JB
6230static int nl80211_register_unexpected_frame(struct sk_buff *skb,
6231 struct genl_info *info)
6232{
6233 struct net_device *dev = info->user_ptr[1];
6234 struct wireless_dev *wdev = dev->ieee80211_ptr;
6235
6236 if (wdev->iftype != NL80211_IFTYPE_AP &&
6237 wdev->iftype != NL80211_IFTYPE_P2P_GO)
6238 return -EINVAL;
6239
6240 if (wdev->ap_unexpected_nlpid)
6241 return -EBUSY;
6242
6243 wdev->ap_unexpected_nlpid = info->snd_pid;
6244 return 0;
6245}
6246
7f6cf311
JB
6247static int nl80211_probe_client(struct sk_buff *skb,
6248 struct genl_info *info)
6249{
6250 struct cfg80211_registered_device *rdev = info->user_ptr[0];
6251 struct net_device *dev = info->user_ptr[1];
6252 struct wireless_dev *wdev = dev->ieee80211_ptr;
6253 struct sk_buff *msg;
6254 void *hdr;
6255 const u8 *addr;
6256 u64 cookie;
6257 int err;
6258
6259 if (wdev->iftype != NL80211_IFTYPE_AP &&
6260 wdev->iftype != NL80211_IFTYPE_P2P_GO)
6261 return -EOPNOTSUPP;
6262
6263 if (!info->attrs[NL80211_ATTR_MAC])
6264 return -EINVAL;
6265
6266 if (!rdev->ops->probe_client)
6267 return -EOPNOTSUPP;
6268
6269 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
6270 if (!msg)
6271 return -ENOMEM;
6272
6273 hdr = nl80211hdr_put(msg, info->snd_pid, info->snd_seq, 0,
6274 NL80211_CMD_PROBE_CLIENT);
6275
6276 if (IS_ERR(hdr)) {
6277 err = PTR_ERR(hdr);
6278 goto free_msg;
6279 }
6280
6281 addr = nla_data(info->attrs[NL80211_ATTR_MAC]);
6282
6283 err = rdev->ops->probe_client(&rdev->wiphy, dev, addr, &cookie);
6284 if (err)
6285 goto free_msg;
6286
6287 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
6288
6289 genlmsg_end(msg, hdr);
6290
6291 return genlmsg_reply(msg, info);
6292
6293 nla_put_failure:
6294 err = -ENOBUFS;
6295 free_msg:
6296 nlmsg_free(msg);
6297 return err;
6298}
6299
5e760230
JB
6300static int nl80211_register_beacons(struct sk_buff *skb, struct genl_info *info)
6301{
6302 struct cfg80211_registered_device *rdev = info->user_ptr[0];
6303
6304 if (!(rdev->wiphy.flags & WIPHY_FLAG_REPORTS_OBSS))
6305 return -EOPNOTSUPP;
6306
6307 if (rdev->ap_beacons_nlpid)
6308 return -EBUSY;
6309
6310 rdev->ap_beacons_nlpid = info->snd_pid;
6311
6312 return 0;
6313}
6314
4c476991
JB
6315#define NL80211_FLAG_NEED_WIPHY 0x01
6316#define NL80211_FLAG_NEED_NETDEV 0x02
6317#define NL80211_FLAG_NEED_RTNL 0x04
41265714
JB
6318#define NL80211_FLAG_CHECK_NETDEV_UP 0x08
6319#define NL80211_FLAG_NEED_NETDEV_UP (NL80211_FLAG_NEED_NETDEV |\
6320 NL80211_FLAG_CHECK_NETDEV_UP)
4c476991
JB
6321
6322static int nl80211_pre_doit(struct genl_ops *ops, struct sk_buff *skb,
6323 struct genl_info *info)
6324{
6325 struct cfg80211_registered_device *rdev;
6326 struct net_device *dev;
6327 int err;
6328 bool rtnl = ops->internal_flags & NL80211_FLAG_NEED_RTNL;
6329
6330 if (rtnl)
6331 rtnl_lock();
6332
6333 if (ops->internal_flags & NL80211_FLAG_NEED_WIPHY) {
6334 rdev = cfg80211_get_dev_from_info(info);
6335 if (IS_ERR(rdev)) {
6336 if (rtnl)
6337 rtnl_unlock();
6338 return PTR_ERR(rdev);
6339 }
6340 info->user_ptr[0] = rdev;
6341 } else if (ops->internal_flags & NL80211_FLAG_NEED_NETDEV) {
00918d33
JB
6342 err = get_rdev_dev_by_ifindex(genl_info_net(info), info->attrs,
6343 &rdev, &dev);
4c476991
JB
6344 if (err) {
6345 if (rtnl)
6346 rtnl_unlock();
6347 return err;
6348 }
41265714
JB
6349 if (ops->internal_flags & NL80211_FLAG_CHECK_NETDEV_UP &&
6350 !netif_running(dev)) {
d537f5fd
JB
6351 cfg80211_unlock_rdev(rdev);
6352 dev_put(dev);
41265714
JB
6353 if (rtnl)
6354 rtnl_unlock();
6355 return -ENETDOWN;
6356 }
4c476991
JB
6357 info->user_ptr[0] = rdev;
6358 info->user_ptr[1] = dev;
6359 }
6360
6361 return 0;
6362}
6363
6364static void nl80211_post_doit(struct genl_ops *ops, struct sk_buff *skb,
6365 struct genl_info *info)
6366{
6367 if (info->user_ptr[0])
6368 cfg80211_unlock_rdev(info->user_ptr[0]);
6369 if (info->user_ptr[1])
6370 dev_put(info->user_ptr[1]);
6371 if (ops->internal_flags & NL80211_FLAG_NEED_RTNL)
6372 rtnl_unlock();
6373}
6374
55682965
JB
6375static struct genl_ops nl80211_ops[] = {
6376 {
6377 .cmd = NL80211_CMD_GET_WIPHY,
6378 .doit = nl80211_get_wiphy,
6379 .dumpit = nl80211_dump_wiphy,
6380 .policy = nl80211_policy,
6381 /* can be retrieved by unprivileged users */
4c476991 6382 .internal_flags = NL80211_FLAG_NEED_WIPHY,
55682965
JB
6383 },
6384 {
6385 .cmd = NL80211_CMD_SET_WIPHY,
6386 .doit = nl80211_set_wiphy,
6387 .policy = nl80211_policy,
6388 .flags = GENL_ADMIN_PERM,
4c476991 6389 .internal_flags = NL80211_FLAG_NEED_RTNL,
55682965
JB
6390 },
6391 {
6392 .cmd = NL80211_CMD_GET_INTERFACE,
6393 .doit = nl80211_get_interface,
6394 .dumpit = nl80211_dump_interface,
6395 .policy = nl80211_policy,
6396 /* can be retrieved by unprivileged users */
4c476991 6397 .internal_flags = NL80211_FLAG_NEED_NETDEV,
55682965
JB
6398 },
6399 {
6400 .cmd = NL80211_CMD_SET_INTERFACE,
6401 .doit = nl80211_set_interface,
6402 .policy = nl80211_policy,
6403 .flags = GENL_ADMIN_PERM,
4c476991
JB
6404 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6405 NL80211_FLAG_NEED_RTNL,
55682965
JB
6406 },
6407 {
6408 .cmd = NL80211_CMD_NEW_INTERFACE,
6409 .doit = nl80211_new_interface,
6410 .policy = nl80211_policy,
6411 .flags = GENL_ADMIN_PERM,
4c476991
JB
6412 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6413 NL80211_FLAG_NEED_RTNL,
55682965
JB
6414 },
6415 {
6416 .cmd = NL80211_CMD_DEL_INTERFACE,
6417 .doit = nl80211_del_interface,
6418 .policy = nl80211_policy,
41ade00f 6419 .flags = GENL_ADMIN_PERM,
4c476991
JB
6420 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6421 NL80211_FLAG_NEED_RTNL,
41ade00f
JB
6422 },
6423 {
6424 .cmd = NL80211_CMD_GET_KEY,
6425 .doit = nl80211_get_key,
6426 .policy = nl80211_policy,
6427 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6428 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6429 NL80211_FLAG_NEED_RTNL,
41ade00f
JB
6430 },
6431 {
6432 .cmd = NL80211_CMD_SET_KEY,
6433 .doit = nl80211_set_key,
6434 .policy = nl80211_policy,
6435 .flags = GENL_ADMIN_PERM,
41265714 6436 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6437 NL80211_FLAG_NEED_RTNL,
41ade00f
JB
6438 },
6439 {
6440 .cmd = NL80211_CMD_NEW_KEY,
6441 .doit = nl80211_new_key,
6442 .policy = nl80211_policy,
6443 .flags = GENL_ADMIN_PERM,
41265714 6444 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6445 NL80211_FLAG_NEED_RTNL,
41ade00f
JB
6446 },
6447 {
6448 .cmd = NL80211_CMD_DEL_KEY,
6449 .doit = nl80211_del_key,
6450 .policy = nl80211_policy,
55682965 6451 .flags = GENL_ADMIN_PERM,
41265714 6452 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6453 NL80211_FLAG_NEED_RTNL,
55682965 6454 },
ed1b6cc7
JB
6455 {
6456 .cmd = NL80211_CMD_SET_BEACON,
6457 .policy = nl80211_policy,
6458 .flags = GENL_ADMIN_PERM,
8860020e 6459 .doit = nl80211_set_beacon,
2b5f8b0b 6460 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6461 NL80211_FLAG_NEED_RTNL,
ed1b6cc7
JB
6462 },
6463 {
8860020e 6464 .cmd = NL80211_CMD_START_AP,
ed1b6cc7
JB
6465 .policy = nl80211_policy,
6466 .flags = GENL_ADMIN_PERM,
8860020e 6467 .doit = nl80211_start_ap,
2b5f8b0b 6468 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6469 NL80211_FLAG_NEED_RTNL,
ed1b6cc7
JB
6470 },
6471 {
8860020e 6472 .cmd = NL80211_CMD_STOP_AP,
ed1b6cc7
JB
6473 .policy = nl80211_policy,
6474 .flags = GENL_ADMIN_PERM,
8860020e 6475 .doit = nl80211_stop_ap,
2b5f8b0b 6476 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6477 NL80211_FLAG_NEED_RTNL,
ed1b6cc7 6478 },
5727ef1b
JB
6479 {
6480 .cmd = NL80211_CMD_GET_STATION,
6481 .doit = nl80211_get_station,
2ec600d6 6482 .dumpit = nl80211_dump_station,
5727ef1b 6483 .policy = nl80211_policy,
4c476991
JB
6484 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6485 NL80211_FLAG_NEED_RTNL,
5727ef1b
JB
6486 },
6487 {
6488 .cmd = NL80211_CMD_SET_STATION,
6489 .doit = nl80211_set_station,
6490 .policy = nl80211_policy,
6491 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6492 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6493 NL80211_FLAG_NEED_RTNL,
5727ef1b
JB
6494 },
6495 {
6496 .cmd = NL80211_CMD_NEW_STATION,
6497 .doit = nl80211_new_station,
6498 .policy = nl80211_policy,
6499 .flags = GENL_ADMIN_PERM,
41265714 6500 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6501 NL80211_FLAG_NEED_RTNL,
5727ef1b
JB
6502 },
6503 {
6504 .cmd = NL80211_CMD_DEL_STATION,
6505 .doit = nl80211_del_station,
6506 .policy = nl80211_policy,
2ec600d6 6507 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6508 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6509 NL80211_FLAG_NEED_RTNL,
2ec600d6
LCC
6510 },
6511 {
6512 .cmd = NL80211_CMD_GET_MPATH,
6513 .doit = nl80211_get_mpath,
6514 .dumpit = nl80211_dump_mpath,
6515 .policy = nl80211_policy,
6516 .flags = GENL_ADMIN_PERM,
41265714 6517 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6518 NL80211_FLAG_NEED_RTNL,
2ec600d6
LCC
6519 },
6520 {
6521 .cmd = NL80211_CMD_SET_MPATH,
6522 .doit = nl80211_set_mpath,
6523 .policy = nl80211_policy,
6524 .flags = GENL_ADMIN_PERM,
41265714 6525 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6526 NL80211_FLAG_NEED_RTNL,
2ec600d6
LCC
6527 },
6528 {
6529 .cmd = NL80211_CMD_NEW_MPATH,
6530 .doit = nl80211_new_mpath,
6531 .policy = nl80211_policy,
6532 .flags = GENL_ADMIN_PERM,
41265714 6533 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6534 NL80211_FLAG_NEED_RTNL,
2ec600d6
LCC
6535 },
6536 {
6537 .cmd = NL80211_CMD_DEL_MPATH,
6538 .doit = nl80211_del_mpath,
6539 .policy = nl80211_policy,
9f1ba906 6540 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6541 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6542 NL80211_FLAG_NEED_RTNL,
9f1ba906
JM
6543 },
6544 {
6545 .cmd = NL80211_CMD_SET_BSS,
6546 .doit = nl80211_set_bss,
6547 .policy = nl80211_policy,
b2e1b302 6548 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6549 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6550 NL80211_FLAG_NEED_RTNL,
b2e1b302 6551 },
f130347c
LR
6552 {
6553 .cmd = NL80211_CMD_GET_REG,
6554 .doit = nl80211_get_reg,
6555 .policy = nl80211_policy,
6556 /* can be retrieved by unprivileged users */
6557 },
b2e1b302
LR
6558 {
6559 .cmd = NL80211_CMD_SET_REG,
6560 .doit = nl80211_set_reg,
6561 .policy = nl80211_policy,
6562 .flags = GENL_ADMIN_PERM,
6563 },
6564 {
6565 .cmd = NL80211_CMD_REQ_SET_REG,
6566 .doit = nl80211_req_set_reg,
6567 .policy = nl80211_policy,
93da9cc1 6568 .flags = GENL_ADMIN_PERM,
6569 },
6570 {
24bdd9f4
JC
6571 .cmd = NL80211_CMD_GET_MESH_CONFIG,
6572 .doit = nl80211_get_mesh_config,
93da9cc1 6573 .policy = nl80211_policy,
6574 /* can be retrieved by unprivileged users */
2b5f8b0b 6575 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6576 NL80211_FLAG_NEED_RTNL,
93da9cc1 6577 },
6578 {
24bdd9f4
JC
6579 .cmd = NL80211_CMD_SET_MESH_CONFIG,
6580 .doit = nl80211_update_mesh_config,
93da9cc1 6581 .policy = nl80211_policy,
9aed3cc1 6582 .flags = GENL_ADMIN_PERM,
29cbe68c 6583 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6584 NL80211_FLAG_NEED_RTNL,
9aed3cc1 6585 },
2a519311
JB
6586 {
6587 .cmd = NL80211_CMD_TRIGGER_SCAN,
6588 .doit = nl80211_trigger_scan,
6589 .policy = nl80211_policy,
6590 .flags = GENL_ADMIN_PERM,
41265714 6591 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6592 NL80211_FLAG_NEED_RTNL,
2a519311
JB
6593 },
6594 {
6595 .cmd = NL80211_CMD_GET_SCAN,
6596 .policy = nl80211_policy,
6597 .dumpit = nl80211_dump_scan,
6598 },
807f8a8c
LC
6599 {
6600 .cmd = NL80211_CMD_START_SCHED_SCAN,
6601 .doit = nl80211_start_sched_scan,
6602 .policy = nl80211_policy,
6603 .flags = GENL_ADMIN_PERM,
6604 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6605 NL80211_FLAG_NEED_RTNL,
6606 },
6607 {
6608 .cmd = NL80211_CMD_STOP_SCHED_SCAN,
6609 .doit = nl80211_stop_sched_scan,
6610 .policy = nl80211_policy,
6611 .flags = GENL_ADMIN_PERM,
6612 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6613 NL80211_FLAG_NEED_RTNL,
6614 },
636a5d36
JM
6615 {
6616 .cmd = NL80211_CMD_AUTHENTICATE,
6617 .doit = nl80211_authenticate,
6618 .policy = nl80211_policy,
6619 .flags = GENL_ADMIN_PERM,
41265714 6620 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6621 NL80211_FLAG_NEED_RTNL,
636a5d36
JM
6622 },
6623 {
6624 .cmd = NL80211_CMD_ASSOCIATE,
6625 .doit = nl80211_associate,
6626 .policy = nl80211_policy,
6627 .flags = GENL_ADMIN_PERM,
41265714 6628 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6629 NL80211_FLAG_NEED_RTNL,
636a5d36
JM
6630 },
6631 {
6632 .cmd = NL80211_CMD_DEAUTHENTICATE,
6633 .doit = nl80211_deauthenticate,
6634 .policy = nl80211_policy,
6635 .flags = GENL_ADMIN_PERM,
41265714 6636 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6637 NL80211_FLAG_NEED_RTNL,
636a5d36
JM
6638 },
6639 {
6640 .cmd = NL80211_CMD_DISASSOCIATE,
6641 .doit = nl80211_disassociate,
6642 .policy = nl80211_policy,
6643 .flags = GENL_ADMIN_PERM,
41265714 6644 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6645 NL80211_FLAG_NEED_RTNL,
636a5d36 6646 },
04a773ad
JB
6647 {
6648 .cmd = NL80211_CMD_JOIN_IBSS,
6649 .doit = nl80211_join_ibss,
6650 .policy = nl80211_policy,
6651 .flags = GENL_ADMIN_PERM,
41265714 6652 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6653 NL80211_FLAG_NEED_RTNL,
04a773ad
JB
6654 },
6655 {
6656 .cmd = NL80211_CMD_LEAVE_IBSS,
6657 .doit = nl80211_leave_ibss,
6658 .policy = nl80211_policy,
6659 .flags = GENL_ADMIN_PERM,
41265714 6660 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6661 NL80211_FLAG_NEED_RTNL,
04a773ad 6662 },
aff89a9b
JB
6663#ifdef CONFIG_NL80211_TESTMODE
6664 {
6665 .cmd = NL80211_CMD_TESTMODE,
6666 .doit = nl80211_testmode_do,
71063f0e 6667 .dumpit = nl80211_testmode_dump,
aff89a9b
JB
6668 .policy = nl80211_policy,
6669 .flags = GENL_ADMIN_PERM,
4c476991
JB
6670 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6671 NL80211_FLAG_NEED_RTNL,
aff89a9b
JB
6672 },
6673#endif
b23aa676
SO
6674 {
6675 .cmd = NL80211_CMD_CONNECT,
6676 .doit = nl80211_connect,
6677 .policy = nl80211_policy,
6678 .flags = GENL_ADMIN_PERM,
41265714 6679 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6680 NL80211_FLAG_NEED_RTNL,
b23aa676
SO
6681 },
6682 {
6683 .cmd = NL80211_CMD_DISCONNECT,
6684 .doit = nl80211_disconnect,
6685 .policy = nl80211_policy,
6686 .flags = GENL_ADMIN_PERM,
41265714 6687 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6688 NL80211_FLAG_NEED_RTNL,
b23aa676 6689 },
463d0183
JB
6690 {
6691 .cmd = NL80211_CMD_SET_WIPHY_NETNS,
6692 .doit = nl80211_wiphy_netns,
6693 .policy = nl80211_policy,
6694 .flags = GENL_ADMIN_PERM,
4c476991
JB
6695 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6696 NL80211_FLAG_NEED_RTNL,
463d0183 6697 },
61fa713c
HS
6698 {
6699 .cmd = NL80211_CMD_GET_SURVEY,
6700 .policy = nl80211_policy,
6701 .dumpit = nl80211_dump_survey,
6702 },
67fbb16b
SO
6703 {
6704 .cmd = NL80211_CMD_SET_PMKSA,
6705 .doit = nl80211_setdel_pmksa,
6706 .policy = nl80211_policy,
6707 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6708 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6709 NL80211_FLAG_NEED_RTNL,
67fbb16b
SO
6710 },
6711 {
6712 .cmd = NL80211_CMD_DEL_PMKSA,
6713 .doit = nl80211_setdel_pmksa,
6714 .policy = nl80211_policy,
6715 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6716 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6717 NL80211_FLAG_NEED_RTNL,
67fbb16b
SO
6718 },
6719 {
6720 .cmd = NL80211_CMD_FLUSH_PMKSA,
6721 .doit = nl80211_flush_pmksa,
6722 .policy = nl80211_policy,
6723 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6724 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6725 NL80211_FLAG_NEED_RTNL,
67fbb16b 6726 },
9588bbd5
JM
6727 {
6728 .cmd = NL80211_CMD_REMAIN_ON_CHANNEL,
6729 .doit = nl80211_remain_on_channel,
6730 .policy = nl80211_policy,
6731 .flags = GENL_ADMIN_PERM,
41265714 6732 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6733 NL80211_FLAG_NEED_RTNL,
9588bbd5
JM
6734 },
6735 {
6736 .cmd = NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL,
6737 .doit = nl80211_cancel_remain_on_channel,
6738 .policy = nl80211_policy,
6739 .flags = GENL_ADMIN_PERM,
41265714 6740 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6741 NL80211_FLAG_NEED_RTNL,
9588bbd5 6742 },
13ae75b1
JM
6743 {
6744 .cmd = NL80211_CMD_SET_TX_BITRATE_MASK,
6745 .doit = nl80211_set_tx_bitrate_mask,
6746 .policy = nl80211_policy,
6747 .flags = GENL_ADMIN_PERM,
4c476991
JB
6748 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6749 NL80211_FLAG_NEED_RTNL,
13ae75b1 6750 },
026331c4 6751 {
2e161f78
JB
6752 .cmd = NL80211_CMD_REGISTER_FRAME,
6753 .doit = nl80211_register_mgmt,
026331c4
JM
6754 .policy = nl80211_policy,
6755 .flags = GENL_ADMIN_PERM,
4c476991
JB
6756 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6757 NL80211_FLAG_NEED_RTNL,
026331c4
JM
6758 },
6759 {
2e161f78
JB
6760 .cmd = NL80211_CMD_FRAME,
6761 .doit = nl80211_tx_mgmt,
026331c4 6762 .policy = nl80211_policy,
f7ca38df
JB
6763 .flags = GENL_ADMIN_PERM,
6764 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6765 NL80211_FLAG_NEED_RTNL,
6766 },
6767 {
6768 .cmd = NL80211_CMD_FRAME_WAIT_CANCEL,
6769 .doit = nl80211_tx_mgmt_cancel_wait,
6770 .policy = nl80211_policy,
026331c4 6771 .flags = GENL_ADMIN_PERM,
41265714 6772 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
4c476991 6773 NL80211_FLAG_NEED_RTNL,
026331c4 6774 },
ffb9eb3d
KV
6775 {
6776 .cmd = NL80211_CMD_SET_POWER_SAVE,
6777 .doit = nl80211_set_power_save,
6778 .policy = nl80211_policy,
6779 .flags = GENL_ADMIN_PERM,
4c476991
JB
6780 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6781 NL80211_FLAG_NEED_RTNL,
ffb9eb3d
KV
6782 },
6783 {
6784 .cmd = NL80211_CMD_GET_POWER_SAVE,
6785 .doit = nl80211_get_power_save,
6786 .policy = nl80211_policy,
6787 /* can be retrieved by unprivileged users */
4c476991
JB
6788 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6789 NL80211_FLAG_NEED_RTNL,
ffb9eb3d 6790 },
d6dc1a38
JO
6791 {
6792 .cmd = NL80211_CMD_SET_CQM,
6793 .doit = nl80211_set_cqm,
6794 .policy = nl80211_policy,
6795 .flags = GENL_ADMIN_PERM,
4c476991
JB
6796 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6797 NL80211_FLAG_NEED_RTNL,
d6dc1a38 6798 },
f444de05
JB
6799 {
6800 .cmd = NL80211_CMD_SET_CHANNEL,
6801 .doit = nl80211_set_channel,
6802 .policy = nl80211_policy,
6803 .flags = GENL_ADMIN_PERM,
4c476991
JB
6804 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6805 NL80211_FLAG_NEED_RTNL,
f444de05 6806 },
e8347eba
BJ
6807 {
6808 .cmd = NL80211_CMD_SET_WDS_PEER,
6809 .doit = nl80211_set_wds_peer,
6810 .policy = nl80211_policy,
6811 .flags = GENL_ADMIN_PERM,
43b19952
JB
6812 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6813 NL80211_FLAG_NEED_RTNL,
e8347eba 6814 },
29cbe68c
JB
6815 {
6816 .cmd = NL80211_CMD_JOIN_MESH,
6817 .doit = nl80211_join_mesh,
6818 .policy = nl80211_policy,
6819 .flags = GENL_ADMIN_PERM,
6820 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6821 NL80211_FLAG_NEED_RTNL,
6822 },
6823 {
6824 .cmd = NL80211_CMD_LEAVE_MESH,
6825 .doit = nl80211_leave_mesh,
6826 .policy = nl80211_policy,
6827 .flags = GENL_ADMIN_PERM,
6828 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6829 NL80211_FLAG_NEED_RTNL,
6830 },
ff1b6e69
JB
6831 {
6832 .cmd = NL80211_CMD_GET_WOWLAN,
6833 .doit = nl80211_get_wowlan,
6834 .policy = nl80211_policy,
6835 /* can be retrieved by unprivileged users */
6836 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6837 NL80211_FLAG_NEED_RTNL,
6838 },
6839 {
6840 .cmd = NL80211_CMD_SET_WOWLAN,
6841 .doit = nl80211_set_wowlan,
6842 .policy = nl80211_policy,
6843 .flags = GENL_ADMIN_PERM,
6844 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6845 NL80211_FLAG_NEED_RTNL,
6846 },
e5497d76
JB
6847 {
6848 .cmd = NL80211_CMD_SET_REKEY_OFFLOAD,
6849 .doit = nl80211_set_rekey_data,
6850 .policy = nl80211_policy,
6851 .flags = GENL_ADMIN_PERM,
6852 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6853 NL80211_FLAG_NEED_RTNL,
6854 },
109086ce
AN
6855 {
6856 .cmd = NL80211_CMD_TDLS_MGMT,
6857 .doit = nl80211_tdls_mgmt,
6858 .policy = nl80211_policy,
6859 .flags = GENL_ADMIN_PERM,
6860 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6861 NL80211_FLAG_NEED_RTNL,
6862 },
6863 {
6864 .cmd = NL80211_CMD_TDLS_OPER,
6865 .doit = nl80211_tdls_oper,
6866 .policy = nl80211_policy,
6867 .flags = GENL_ADMIN_PERM,
6868 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
6869 NL80211_FLAG_NEED_RTNL,
6870 },
28946da7
JB
6871 {
6872 .cmd = NL80211_CMD_UNEXPECTED_FRAME,
6873 .doit = nl80211_register_unexpected_frame,
6874 .policy = nl80211_policy,
6875 .flags = GENL_ADMIN_PERM,
6876 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6877 NL80211_FLAG_NEED_RTNL,
6878 },
7f6cf311
JB
6879 {
6880 .cmd = NL80211_CMD_PROBE_CLIENT,
6881 .doit = nl80211_probe_client,
6882 .policy = nl80211_policy,
6883 .flags = GENL_ADMIN_PERM,
2b5f8b0b 6884 .internal_flags = NL80211_FLAG_NEED_NETDEV_UP |
7f6cf311
JB
6885 NL80211_FLAG_NEED_RTNL,
6886 },
5e760230
JB
6887 {
6888 .cmd = NL80211_CMD_REGISTER_BEACONS,
6889 .doit = nl80211_register_beacons,
6890 .policy = nl80211_policy,
6891 .flags = GENL_ADMIN_PERM,
6892 .internal_flags = NL80211_FLAG_NEED_WIPHY |
6893 NL80211_FLAG_NEED_RTNL,
6894 },
1d9d9213
SW
6895 {
6896 .cmd = NL80211_CMD_SET_NOACK_MAP,
6897 .doit = nl80211_set_noack_map,
6898 .policy = nl80211_policy,
6899 .flags = GENL_ADMIN_PERM,
6900 .internal_flags = NL80211_FLAG_NEED_NETDEV |
6901 NL80211_FLAG_NEED_RTNL,
6902 },
6903
55682965 6904};
9588bbd5 6905
6039f6d2
JM
6906static struct genl_multicast_group nl80211_mlme_mcgrp = {
6907 .name = "mlme",
6908};
55682965
JB
6909
6910/* multicast groups */
6911static struct genl_multicast_group nl80211_config_mcgrp = {
6912 .name = "config",
6913};
2a519311
JB
6914static struct genl_multicast_group nl80211_scan_mcgrp = {
6915 .name = "scan",
6916};
73d54c9e
LR
6917static struct genl_multicast_group nl80211_regulatory_mcgrp = {
6918 .name = "regulatory",
6919};
55682965
JB
6920
6921/* notification functions */
6922
6923void nl80211_notify_dev_rename(struct cfg80211_registered_device *rdev)
6924{
6925 struct sk_buff *msg;
6926
fd2120ca 6927 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
55682965
JB
6928 if (!msg)
6929 return;
6930
6931 if (nl80211_send_wiphy(msg, 0, 0, 0, rdev) < 0) {
6932 nlmsg_free(msg);
6933 return;
6934 }
6935
463d0183
JB
6936 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
6937 nl80211_config_mcgrp.id, GFP_KERNEL);
55682965
JB
6938}
6939
362a415d
JB
6940static int nl80211_add_scan_req(struct sk_buff *msg,
6941 struct cfg80211_registered_device *rdev)
6942{
6943 struct cfg80211_scan_request *req = rdev->scan_req;
6944 struct nlattr *nest;
6945 int i;
6946
667503dd
JB
6947 ASSERT_RDEV_LOCK(rdev);
6948
362a415d
JB
6949 if (WARN_ON(!req))
6950 return 0;
6951
6952 nest = nla_nest_start(msg, NL80211_ATTR_SCAN_SSIDS);
6953 if (!nest)
6954 goto nla_put_failure;
6955 for (i = 0; i < req->n_ssids; i++)
6956 NLA_PUT(msg, i, req->ssids[i].ssid_len, req->ssids[i].ssid);
6957 nla_nest_end(msg, nest);
6958
6959 nest = nla_nest_start(msg, NL80211_ATTR_SCAN_FREQUENCIES);
6960 if (!nest)
6961 goto nla_put_failure;
6962 for (i = 0; i < req->n_channels; i++)
6963 NLA_PUT_U32(msg, i, req->channels[i]->center_freq);
6964 nla_nest_end(msg, nest);
6965
6966 if (req->ie)
6967 NLA_PUT(msg, NL80211_ATTR_IE, req->ie_len, req->ie);
6968
6969 return 0;
6970 nla_put_failure:
6971 return -ENOBUFS;
6972}
6973
a538e2d5
JB
6974static int nl80211_send_scan_msg(struct sk_buff *msg,
6975 struct cfg80211_registered_device *rdev,
6976 struct net_device *netdev,
6977 u32 pid, u32 seq, int flags,
6978 u32 cmd)
2a519311
JB
6979{
6980 void *hdr;
6981
6982 hdr = nl80211hdr_put(msg, pid, seq, flags, cmd);
6983 if (!hdr)
6984 return -1;
6985
b5850a7a 6986 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
2a519311
JB
6987 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
6988
362a415d
JB
6989 /* ignore errors and send incomplete event anyway */
6990 nl80211_add_scan_req(msg, rdev);
2a519311
JB
6991
6992 return genlmsg_end(msg, hdr);
6993
6994 nla_put_failure:
6995 genlmsg_cancel(msg, hdr);
6996 return -EMSGSIZE;
6997}
6998
807f8a8c
LC
6999static int
7000nl80211_send_sched_scan_msg(struct sk_buff *msg,
7001 struct cfg80211_registered_device *rdev,
7002 struct net_device *netdev,
7003 u32 pid, u32 seq, int flags, u32 cmd)
7004{
7005 void *hdr;
7006
7007 hdr = nl80211hdr_put(msg, pid, seq, flags, cmd);
7008 if (!hdr)
7009 return -1;
7010
7011 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7012 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7013
7014 return genlmsg_end(msg, hdr);
7015
7016 nla_put_failure:
7017 genlmsg_cancel(msg, hdr);
7018 return -EMSGSIZE;
7019}
7020
a538e2d5
JB
7021void nl80211_send_scan_start(struct cfg80211_registered_device *rdev,
7022 struct net_device *netdev)
7023{
7024 struct sk_buff *msg;
7025
7026 msg = nlmsg_new(NLMSG_GOODSIZE, GFP_KERNEL);
7027 if (!msg)
7028 return;
7029
7030 if (nl80211_send_scan_msg(msg, rdev, netdev, 0, 0, 0,
7031 NL80211_CMD_TRIGGER_SCAN) < 0) {
7032 nlmsg_free(msg);
7033 return;
7034 }
7035
463d0183
JB
7036 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7037 nl80211_scan_mcgrp.id, GFP_KERNEL);
a538e2d5
JB
7038}
7039
2a519311
JB
7040void nl80211_send_scan_done(struct cfg80211_registered_device *rdev,
7041 struct net_device *netdev)
7042{
7043 struct sk_buff *msg;
7044
fd2120ca 7045 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
2a519311
JB
7046 if (!msg)
7047 return;
7048
a538e2d5
JB
7049 if (nl80211_send_scan_msg(msg, rdev, netdev, 0, 0, 0,
7050 NL80211_CMD_NEW_SCAN_RESULTS) < 0) {
2a519311
JB
7051 nlmsg_free(msg);
7052 return;
7053 }
7054
463d0183
JB
7055 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7056 nl80211_scan_mcgrp.id, GFP_KERNEL);
2a519311
JB
7057}
7058
7059void nl80211_send_scan_aborted(struct cfg80211_registered_device *rdev,
7060 struct net_device *netdev)
7061{
7062 struct sk_buff *msg;
7063
fd2120ca 7064 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
2a519311
JB
7065 if (!msg)
7066 return;
7067
a538e2d5
JB
7068 if (nl80211_send_scan_msg(msg, rdev, netdev, 0, 0, 0,
7069 NL80211_CMD_SCAN_ABORTED) < 0) {
2a519311
JB
7070 nlmsg_free(msg);
7071 return;
7072 }
7073
463d0183
JB
7074 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7075 nl80211_scan_mcgrp.id, GFP_KERNEL);
2a519311
JB
7076}
7077
807f8a8c
LC
7078void nl80211_send_sched_scan_results(struct cfg80211_registered_device *rdev,
7079 struct net_device *netdev)
7080{
7081 struct sk_buff *msg;
7082
7083 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
7084 if (!msg)
7085 return;
7086
7087 if (nl80211_send_sched_scan_msg(msg, rdev, netdev, 0, 0, 0,
7088 NL80211_CMD_SCHED_SCAN_RESULTS) < 0) {
7089 nlmsg_free(msg);
7090 return;
7091 }
7092
7093 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7094 nl80211_scan_mcgrp.id, GFP_KERNEL);
7095}
7096
7097void nl80211_send_sched_scan(struct cfg80211_registered_device *rdev,
7098 struct net_device *netdev, u32 cmd)
7099{
7100 struct sk_buff *msg;
7101
7102 msg = nlmsg_new(NLMSG_GOODSIZE, GFP_KERNEL);
7103 if (!msg)
7104 return;
7105
7106 if (nl80211_send_sched_scan_msg(msg, rdev, netdev, 0, 0, 0, cmd) < 0) {
7107 nlmsg_free(msg);
7108 return;
7109 }
7110
7111 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7112 nl80211_scan_mcgrp.id, GFP_KERNEL);
7113}
7114
73d54c9e
LR
7115/*
7116 * This can happen on global regulatory changes or device specific settings
7117 * based on custom world regulatory domains.
7118 */
7119void nl80211_send_reg_change_event(struct regulatory_request *request)
7120{
7121 struct sk_buff *msg;
7122 void *hdr;
7123
fd2120ca 7124 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
73d54c9e
LR
7125 if (!msg)
7126 return;
7127
7128 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_REG_CHANGE);
7129 if (!hdr) {
7130 nlmsg_free(msg);
7131 return;
7132 }
7133
7134 /* Userspace can always count this one always being set */
7135 NLA_PUT_U8(msg, NL80211_ATTR_REG_INITIATOR, request->initiator);
7136
7137 if (request->alpha2[0] == '0' && request->alpha2[1] == '0')
7138 NLA_PUT_U8(msg, NL80211_ATTR_REG_TYPE,
7139 NL80211_REGDOM_TYPE_WORLD);
7140 else if (request->alpha2[0] == '9' && request->alpha2[1] == '9')
7141 NLA_PUT_U8(msg, NL80211_ATTR_REG_TYPE,
7142 NL80211_REGDOM_TYPE_CUSTOM_WORLD);
7143 else if ((request->alpha2[0] == '9' && request->alpha2[1] == '8') ||
7144 request->intersect)
7145 NLA_PUT_U8(msg, NL80211_ATTR_REG_TYPE,
7146 NL80211_REGDOM_TYPE_INTERSECTION);
7147 else {
7148 NLA_PUT_U8(msg, NL80211_ATTR_REG_TYPE,
7149 NL80211_REGDOM_TYPE_COUNTRY);
7150 NLA_PUT_STRING(msg, NL80211_ATTR_REG_ALPHA2, request->alpha2);
7151 }
7152
7153 if (wiphy_idx_valid(request->wiphy_idx))
7154 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, request->wiphy_idx);
7155
3b7b72ee 7156 genlmsg_end(msg, hdr);
73d54c9e 7157
bc43b28c 7158 rcu_read_lock();
463d0183 7159 genlmsg_multicast_allns(msg, 0, nl80211_regulatory_mcgrp.id,
bc43b28c
JB
7160 GFP_ATOMIC);
7161 rcu_read_unlock();
73d54c9e
LR
7162
7163 return;
7164
7165nla_put_failure:
7166 genlmsg_cancel(msg, hdr);
7167 nlmsg_free(msg);
7168}
7169
6039f6d2
JM
7170static void nl80211_send_mlme_event(struct cfg80211_registered_device *rdev,
7171 struct net_device *netdev,
7172 const u8 *buf, size_t len,
e6d6e342 7173 enum nl80211_commands cmd, gfp_t gfp)
6039f6d2
JM
7174{
7175 struct sk_buff *msg;
7176 void *hdr;
7177
e6d6e342 7178 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
6039f6d2
JM
7179 if (!msg)
7180 return;
7181
7182 hdr = nl80211hdr_put(msg, 0, 0, 0, cmd);
7183 if (!hdr) {
7184 nlmsg_free(msg);
7185 return;
7186 }
7187
7188 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7189 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7190 NLA_PUT(msg, NL80211_ATTR_FRAME, len, buf);
7191
3b7b72ee 7192 genlmsg_end(msg, hdr);
6039f6d2 7193
463d0183
JB
7194 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7195 nl80211_mlme_mcgrp.id, gfp);
6039f6d2
JM
7196 return;
7197
7198 nla_put_failure:
7199 genlmsg_cancel(msg, hdr);
7200 nlmsg_free(msg);
7201}
7202
7203void nl80211_send_rx_auth(struct cfg80211_registered_device *rdev,
e6d6e342
JB
7204 struct net_device *netdev, const u8 *buf,
7205 size_t len, gfp_t gfp)
6039f6d2
JM
7206{
7207 nl80211_send_mlme_event(rdev, netdev, buf, len,
e6d6e342 7208 NL80211_CMD_AUTHENTICATE, gfp);
6039f6d2
JM
7209}
7210
7211void nl80211_send_rx_assoc(struct cfg80211_registered_device *rdev,
7212 struct net_device *netdev, const u8 *buf,
e6d6e342 7213 size_t len, gfp_t gfp)
6039f6d2 7214{
e6d6e342
JB
7215 nl80211_send_mlme_event(rdev, netdev, buf, len,
7216 NL80211_CMD_ASSOCIATE, gfp);
6039f6d2
JM
7217}
7218
53b46b84 7219void nl80211_send_deauth(struct cfg80211_registered_device *rdev,
e6d6e342
JB
7220 struct net_device *netdev, const u8 *buf,
7221 size_t len, gfp_t gfp)
6039f6d2
JM
7222{
7223 nl80211_send_mlme_event(rdev, netdev, buf, len,
e6d6e342 7224 NL80211_CMD_DEAUTHENTICATE, gfp);
6039f6d2
JM
7225}
7226
53b46b84
JM
7227void nl80211_send_disassoc(struct cfg80211_registered_device *rdev,
7228 struct net_device *netdev, const u8 *buf,
e6d6e342 7229 size_t len, gfp_t gfp)
6039f6d2
JM
7230{
7231 nl80211_send_mlme_event(rdev, netdev, buf, len,
e6d6e342 7232 NL80211_CMD_DISASSOCIATE, gfp);
6039f6d2
JM
7233}
7234
cf4e594e
JM
7235void nl80211_send_unprot_deauth(struct cfg80211_registered_device *rdev,
7236 struct net_device *netdev, const u8 *buf,
7237 size_t len, gfp_t gfp)
7238{
7239 nl80211_send_mlme_event(rdev, netdev, buf, len,
7240 NL80211_CMD_UNPROT_DEAUTHENTICATE, gfp);
7241}
7242
7243void nl80211_send_unprot_disassoc(struct cfg80211_registered_device *rdev,
7244 struct net_device *netdev, const u8 *buf,
7245 size_t len, gfp_t gfp)
7246{
7247 nl80211_send_mlme_event(rdev, netdev, buf, len,
7248 NL80211_CMD_UNPROT_DISASSOCIATE, gfp);
7249}
7250
1b06bb40
LR
7251static void nl80211_send_mlme_timeout(struct cfg80211_registered_device *rdev,
7252 struct net_device *netdev, int cmd,
e6d6e342 7253 const u8 *addr, gfp_t gfp)
1965c853
JM
7254{
7255 struct sk_buff *msg;
7256 void *hdr;
7257
e6d6e342 7258 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
1965c853
JM
7259 if (!msg)
7260 return;
7261
7262 hdr = nl80211hdr_put(msg, 0, 0, 0, cmd);
7263 if (!hdr) {
7264 nlmsg_free(msg);
7265 return;
7266 }
7267
7268 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7269 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7270 NLA_PUT_FLAG(msg, NL80211_ATTR_TIMED_OUT);
7271 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, addr);
7272
3b7b72ee 7273 genlmsg_end(msg, hdr);
1965c853 7274
463d0183
JB
7275 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7276 nl80211_mlme_mcgrp.id, gfp);
1965c853
JM
7277 return;
7278
7279 nla_put_failure:
7280 genlmsg_cancel(msg, hdr);
7281 nlmsg_free(msg);
7282}
7283
7284void nl80211_send_auth_timeout(struct cfg80211_registered_device *rdev,
e6d6e342
JB
7285 struct net_device *netdev, const u8 *addr,
7286 gfp_t gfp)
1965c853
JM
7287{
7288 nl80211_send_mlme_timeout(rdev, netdev, NL80211_CMD_AUTHENTICATE,
e6d6e342 7289 addr, gfp);
1965c853
JM
7290}
7291
7292void nl80211_send_assoc_timeout(struct cfg80211_registered_device *rdev,
e6d6e342
JB
7293 struct net_device *netdev, const u8 *addr,
7294 gfp_t gfp)
1965c853 7295{
e6d6e342
JB
7296 nl80211_send_mlme_timeout(rdev, netdev, NL80211_CMD_ASSOCIATE,
7297 addr, gfp);
1965c853
JM
7298}
7299
b23aa676
SO
7300void nl80211_send_connect_result(struct cfg80211_registered_device *rdev,
7301 struct net_device *netdev, const u8 *bssid,
7302 const u8 *req_ie, size_t req_ie_len,
7303 const u8 *resp_ie, size_t resp_ie_len,
7304 u16 status, gfp_t gfp)
7305{
7306 struct sk_buff *msg;
7307 void *hdr;
7308
7309 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7310 if (!msg)
7311 return;
7312
7313 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_CONNECT);
7314 if (!hdr) {
7315 nlmsg_free(msg);
7316 return;
7317 }
7318
7319 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7320 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7321 if (bssid)
7322 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, bssid);
7323 NLA_PUT_U16(msg, NL80211_ATTR_STATUS_CODE, status);
7324 if (req_ie)
7325 NLA_PUT(msg, NL80211_ATTR_REQ_IE, req_ie_len, req_ie);
7326 if (resp_ie)
7327 NLA_PUT(msg, NL80211_ATTR_RESP_IE, resp_ie_len, resp_ie);
7328
3b7b72ee 7329 genlmsg_end(msg, hdr);
b23aa676 7330
463d0183
JB
7331 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7332 nl80211_mlme_mcgrp.id, gfp);
b23aa676
SO
7333 return;
7334
7335 nla_put_failure:
7336 genlmsg_cancel(msg, hdr);
7337 nlmsg_free(msg);
7338
7339}
7340
7341void nl80211_send_roamed(struct cfg80211_registered_device *rdev,
7342 struct net_device *netdev, const u8 *bssid,
7343 const u8 *req_ie, size_t req_ie_len,
7344 const u8 *resp_ie, size_t resp_ie_len, gfp_t gfp)
7345{
7346 struct sk_buff *msg;
7347 void *hdr;
7348
7349 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7350 if (!msg)
7351 return;
7352
7353 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_ROAM);
7354 if (!hdr) {
7355 nlmsg_free(msg);
7356 return;
7357 }
7358
7359 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7360 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7361 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, bssid);
7362 if (req_ie)
7363 NLA_PUT(msg, NL80211_ATTR_REQ_IE, req_ie_len, req_ie);
7364 if (resp_ie)
7365 NLA_PUT(msg, NL80211_ATTR_RESP_IE, resp_ie_len, resp_ie);
7366
3b7b72ee 7367 genlmsg_end(msg, hdr);
b23aa676 7368
463d0183
JB
7369 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7370 nl80211_mlme_mcgrp.id, gfp);
b23aa676
SO
7371 return;
7372
7373 nla_put_failure:
7374 genlmsg_cancel(msg, hdr);
7375 nlmsg_free(msg);
7376
7377}
7378
7379void nl80211_send_disconnected(struct cfg80211_registered_device *rdev,
7380 struct net_device *netdev, u16 reason,
667503dd 7381 const u8 *ie, size_t ie_len, bool from_ap)
b23aa676
SO
7382{
7383 struct sk_buff *msg;
7384 void *hdr;
7385
667503dd 7386 msg = nlmsg_new(NLMSG_GOODSIZE, GFP_KERNEL);
b23aa676
SO
7387 if (!msg)
7388 return;
7389
7390 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_DISCONNECT);
7391 if (!hdr) {
7392 nlmsg_free(msg);
7393 return;
7394 }
7395
7396 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7397 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7398 if (from_ap && reason)
7399 NLA_PUT_U16(msg, NL80211_ATTR_REASON_CODE, reason);
7400 if (from_ap)
7401 NLA_PUT_FLAG(msg, NL80211_ATTR_DISCONNECTED_BY_AP);
7402 if (ie)
7403 NLA_PUT(msg, NL80211_ATTR_IE, ie_len, ie);
7404
3b7b72ee 7405 genlmsg_end(msg, hdr);
b23aa676 7406
463d0183
JB
7407 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7408 nl80211_mlme_mcgrp.id, GFP_KERNEL);
b23aa676
SO
7409 return;
7410
7411 nla_put_failure:
7412 genlmsg_cancel(msg, hdr);
7413 nlmsg_free(msg);
7414
7415}
7416
04a773ad
JB
7417void nl80211_send_ibss_bssid(struct cfg80211_registered_device *rdev,
7418 struct net_device *netdev, const u8 *bssid,
7419 gfp_t gfp)
7420{
7421 struct sk_buff *msg;
7422 void *hdr;
7423
fd2120ca 7424 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
04a773ad
JB
7425 if (!msg)
7426 return;
7427
7428 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_JOIN_IBSS);
7429 if (!hdr) {
7430 nlmsg_free(msg);
7431 return;
7432 }
7433
7434 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7435 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7436 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, bssid);
7437
3b7b72ee 7438 genlmsg_end(msg, hdr);
04a773ad 7439
463d0183
JB
7440 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7441 nl80211_mlme_mcgrp.id, gfp);
04a773ad
JB
7442 return;
7443
7444 nla_put_failure:
7445 genlmsg_cancel(msg, hdr);
7446 nlmsg_free(msg);
7447}
7448
c93b5e71
JC
7449void nl80211_send_new_peer_candidate(struct cfg80211_registered_device *rdev,
7450 struct net_device *netdev,
7451 const u8 *macaddr, const u8* ie, u8 ie_len,
7452 gfp_t gfp)
7453{
7454 struct sk_buff *msg;
7455 void *hdr;
7456
7457 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
7458 if (!msg)
7459 return;
7460
7461 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_NEW_PEER_CANDIDATE);
7462 if (!hdr) {
7463 nlmsg_free(msg);
7464 return;
7465 }
7466
7467 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7468 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7469 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, macaddr);
7470 if (ie_len && ie)
7471 NLA_PUT(msg, NL80211_ATTR_IE, ie_len , ie);
7472
3b7b72ee 7473 genlmsg_end(msg, hdr);
c93b5e71
JC
7474
7475 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7476 nl80211_mlme_mcgrp.id, gfp);
7477 return;
7478
7479 nla_put_failure:
7480 genlmsg_cancel(msg, hdr);
7481 nlmsg_free(msg);
7482}
7483
a3b8b056
JM
7484void nl80211_michael_mic_failure(struct cfg80211_registered_device *rdev,
7485 struct net_device *netdev, const u8 *addr,
7486 enum nl80211_key_type key_type, int key_id,
e6d6e342 7487 const u8 *tsc, gfp_t gfp)
a3b8b056
JM
7488{
7489 struct sk_buff *msg;
7490 void *hdr;
7491
e6d6e342 7492 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
a3b8b056
JM
7493 if (!msg)
7494 return;
7495
7496 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_MICHAEL_MIC_FAILURE);
7497 if (!hdr) {
7498 nlmsg_free(msg);
7499 return;
7500 }
7501
7502 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7503 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7504 if (addr)
7505 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, addr);
7506 NLA_PUT_U32(msg, NL80211_ATTR_KEY_TYPE, key_type);
a66b98db
AN
7507 if (key_id != -1)
7508 NLA_PUT_U8(msg, NL80211_ATTR_KEY_IDX, key_id);
a3b8b056
JM
7509 if (tsc)
7510 NLA_PUT(msg, NL80211_ATTR_KEY_SEQ, 6, tsc);
7511
3b7b72ee 7512 genlmsg_end(msg, hdr);
a3b8b056 7513
463d0183
JB
7514 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7515 nl80211_mlme_mcgrp.id, gfp);
a3b8b056
JM
7516 return;
7517
7518 nla_put_failure:
7519 genlmsg_cancel(msg, hdr);
7520 nlmsg_free(msg);
7521}
7522
6bad8766
LR
7523void nl80211_send_beacon_hint_event(struct wiphy *wiphy,
7524 struct ieee80211_channel *channel_before,
7525 struct ieee80211_channel *channel_after)
7526{
7527 struct sk_buff *msg;
7528 void *hdr;
7529 struct nlattr *nl_freq;
7530
fd2120ca 7531 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_ATOMIC);
6bad8766
LR
7532 if (!msg)
7533 return;
7534
7535 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_REG_BEACON_HINT);
7536 if (!hdr) {
7537 nlmsg_free(msg);
7538 return;
7539 }
7540
7541 /*
7542 * Since we are applying the beacon hint to a wiphy we know its
7543 * wiphy_idx is valid
7544 */
7545 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, get_wiphy_idx(wiphy));
7546
7547 /* Before */
7548 nl_freq = nla_nest_start(msg, NL80211_ATTR_FREQ_BEFORE);
7549 if (!nl_freq)
7550 goto nla_put_failure;
7551 if (nl80211_msg_put_channel(msg, channel_before))
7552 goto nla_put_failure;
7553 nla_nest_end(msg, nl_freq);
7554
7555 /* After */
7556 nl_freq = nla_nest_start(msg, NL80211_ATTR_FREQ_AFTER);
7557 if (!nl_freq)
7558 goto nla_put_failure;
7559 if (nl80211_msg_put_channel(msg, channel_after))
7560 goto nla_put_failure;
7561 nla_nest_end(msg, nl_freq);
7562
3b7b72ee 7563 genlmsg_end(msg, hdr);
6bad8766 7564
463d0183
JB
7565 rcu_read_lock();
7566 genlmsg_multicast_allns(msg, 0, nl80211_regulatory_mcgrp.id,
7567 GFP_ATOMIC);
7568 rcu_read_unlock();
6bad8766
LR
7569
7570 return;
7571
7572nla_put_failure:
7573 genlmsg_cancel(msg, hdr);
7574 nlmsg_free(msg);
7575}
7576
9588bbd5
JM
7577static void nl80211_send_remain_on_chan_event(
7578 int cmd, struct cfg80211_registered_device *rdev,
7579 struct net_device *netdev, u64 cookie,
7580 struct ieee80211_channel *chan,
7581 enum nl80211_channel_type channel_type,
7582 unsigned int duration, gfp_t gfp)
7583{
7584 struct sk_buff *msg;
7585 void *hdr;
7586
7587 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
7588 if (!msg)
7589 return;
7590
7591 hdr = nl80211hdr_put(msg, 0, 0, 0, cmd);
7592 if (!hdr) {
7593 nlmsg_free(msg);
7594 return;
7595 }
7596
7597 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7598 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7599 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FREQ, chan->center_freq);
7600 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_CHANNEL_TYPE, channel_type);
7601 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
7602
7603 if (cmd == NL80211_CMD_REMAIN_ON_CHANNEL)
7604 NLA_PUT_U32(msg, NL80211_ATTR_DURATION, duration);
7605
3b7b72ee 7606 genlmsg_end(msg, hdr);
9588bbd5
JM
7607
7608 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7609 nl80211_mlme_mcgrp.id, gfp);
7610 return;
7611
7612 nla_put_failure:
7613 genlmsg_cancel(msg, hdr);
7614 nlmsg_free(msg);
7615}
7616
7617void nl80211_send_remain_on_channel(struct cfg80211_registered_device *rdev,
7618 struct net_device *netdev, u64 cookie,
7619 struct ieee80211_channel *chan,
7620 enum nl80211_channel_type channel_type,
7621 unsigned int duration, gfp_t gfp)
7622{
7623 nl80211_send_remain_on_chan_event(NL80211_CMD_REMAIN_ON_CHANNEL,
7624 rdev, netdev, cookie, chan,
7625 channel_type, duration, gfp);
7626}
7627
7628void nl80211_send_remain_on_channel_cancel(
7629 struct cfg80211_registered_device *rdev, struct net_device *netdev,
7630 u64 cookie, struct ieee80211_channel *chan,
7631 enum nl80211_channel_type channel_type, gfp_t gfp)
7632{
7633 nl80211_send_remain_on_chan_event(NL80211_CMD_CANCEL_REMAIN_ON_CHANNEL,
7634 rdev, netdev, cookie, chan,
7635 channel_type, 0, gfp);
7636}
7637
98b62183
JB
7638void nl80211_send_sta_event(struct cfg80211_registered_device *rdev,
7639 struct net_device *dev, const u8 *mac_addr,
7640 struct station_info *sinfo, gfp_t gfp)
7641{
7642 struct sk_buff *msg;
7643
7644 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7645 if (!msg)
7646 return;
7647
66266b3a
JL
7648 if (nl80211_send_station(msg, 0, 0, 0,
7649 rdev, dev, mac_addr, sinfo) < 0) {
98b62183
JB
7650 nlmsg_free(msg);
7651 return;
7652 }
7653
7654 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7655 nl80211_mlme_mcgrp.id, gfp);
7656}
7657
ec15e68b
JM
7658void nl80211_send_sta_del_event(struct cfg80211_registered_device *rdev,
7659 struct net_device *dev, const u8 *mac_addr,
7660 gfp_t gfp)
7661{
7662 struct sk_buff *msg;
7663 void *hdr;
7664
7665 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7666 if (!msg)
7667 return;
7668
7669 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_DEL_STATION);
7670 if (!hdr) {
7671 nlmsg_free(msg);
7672 return;
7673 }
7674
7675 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
7676 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, mac_addr);
7677
3b7b72ee 7678 genlmsg_end(msg, hdr);
ec15e68b
JM
7679
7680 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7681 nl80211_mlme_mcgrp.id, gfp);
7682 return;
7683
7684 nla_put_failure:
7685 genlmsg_cancel(msg, hdr);
7686 nlmsg_free(msg);
7687}
7688
b92ab5d8
JB
7689static bool __nl80211_unexpected_frame(struct net_device *dev, u8 cmd,
7690 const u8 *addr, gfp_t gfp)
28946da7
JB
7691{
7692 struct wireless_dev *wdev = dev->ieee80211_ptr;
7693 struct cfg80211_registered_device *rdev = wiphy_to_dev(wdev->wiphy);
7694 struct sk_buff *msg;
7695 void *hdr;
7696 int err;
7697 u32 nlpid = ACCESS_ONCE(wdev->ap_unexpected_nlpid);
7698
7699 if (!nlpid)
7700 return false;
7701
7702 msg = nlmsg_new(100, gfp);
7703 if (!msg)
7704 return true;
7705
b92ab5d8 7706 hdr = nl80211hdr_put(msg, 0, 0, 0, cmd);
28946da7
JB
7707 if (!hdr) {
7708 nlmsg_free(msg);
7709 return true;
7710 }
7711
7712 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7713 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
7714 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, addr);
7715
7716 err = genlmsg_end(msg, hdr);
7717 if (err < 0) {
7718 nlmsg_free(msg);
7719 return true;
7720 }
7721
7722 genlmsg_unicast(wiphy_net(&rdev->wiphy), msg, nlpid);
7723 return true;
7724
7725 nla_put_failure:
7726 genlmsg_cancel(msg, hdr);
7727 nlmsg_free(msg);
7728 return true;
7729}
7730
b92ab5d8
JB
7731bool nl80211_unexpected_frame(struct net_device *dev, const u8 *addr, gfp_t gfp)
7732{
7733 return __nl80211_unexpected_frame(dev, NL80211_CMD_UNEXPECTED_FRAME,
7734 addr, gfp);
7735}
7736
7737bool nl80211_unexpected_4addr_frame(struct net_device *dev,
7738 const u8 *addr, gfp_t gfp)
7739{
7740 return __nl80211_unexpected_frame(dev,
7741 NL80211_CMD_UNEXPECTED_4ADDR_FRAME,
7742 addr, gfp);
7743}
7744
2e161f78
JB
7745int nl80211_send_mgmt(struct cfg80211_registered_device *rdev,
7746 struct net_device *netdev, u32 nlpid,
804483e9
JB
7747 int freq, int sig_dbm,
7748 const u8 *buf, size_t len, gfp_t gfp)
026331c4
JM
7749{
7750 struct sk_buff *msg;
7751 void *hdr;
026331c4
JM
7752
7753 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
7754 if (!msg)
7755 return -ENOMEM;
7756
2e161f78 7757 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_FRAME);
026331c4
JM
7758 if (!hdr) {
7759 nlmsg_free(msg);
7760 return -ENOMEM;
7761 }
7762
7763 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7764 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7765 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FREQ, freq);
804483e9
JB
7766 if (sig_dbm)
7767 NLA_PUT_U32(msg, NL80211_ATTR_RX_SIGNAL_DBM, sig_dbm);
026331c4
JM
7768 NLA_PUT(msg, NL80211_ATTR_FRAME, len, buf);
7769
3b7b72ee 7770 genlmsg_end(msg, hdr);
026331c4 7771
3b7b72ee 7772 return genlmsg_unicast(wiphy_net(&rdev->wiphy), msg, nlpid);
026331c4
JM
7773
7774 nla_put_failure:
7775 genlmsg_cancel(msg, hdr);
7776 nlmsg_free(msg);
7777 return -ENOBUFS;
7778}
7779
2e161f78
JB
7780void nl80211_send_mgmt_tx_status(struct cfg80211_registered_device *rdev,
7781 struct net_device *netdev, u64 cookie,
7782 const u8 *buf, size_t len, bool ack,
7783 gfp_t gfp)
026331c4
JM
7784{
7785 struct sk_buff *msg;
7786 void *hdr;
7787
7788 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, gfp);
7789 if (!msg)
7790 return;
7791
2e161f78 7792 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_FRAME_TX_STATUS);
026331c4
JM
7793 if (!hdr) {
7794 nlmsg_free(msg);
7795 return;
7796 }
7797
7798 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7799 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7800 NLA_PUT(msg, NL80211_ATTR_FRAME, len, buf);
7801 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
7802 if (ack)
7803 NLA_PUT_FLAG(msg, NL80211_ATTR_ACK);
7804
3b7b72ee 7805 genlmsg_end(msg, hdr);
026331c4
JM
7806
7807 genlmsg_multicast(msg, 0, nl80211_mlme_mcgrp.id, gfp);
7808 return;
7809
7810 nla_put_failure:
7811 genlmsg_cancel(msg, hdr);
7812 nlmsg_free(msg);
7813}
7814
d6dc1a38
JO
7815void
7816nl80211_send_cqm_rssi_notify(struct cfg80211_registered_device *rdev,
7817 struct net_device *netdev,
7818 enum nl80211_cqm_rssi_threshold_event rssi_event,
7819 gfp_t gfp)
7820{
7821 struct sk_buff *msg;
7822 struct nlattr *pinfoattr;
7823 void *hdr;
7824
7825 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7826 if (!msg)
7827 return;
7828
7829 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_NOTIFY_CQM);
7830 if (!hdr) {
7831 nlmsg_free(msg);
7832 return;
7833 }
7834
7835 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7836 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7837
7838 pinfoattr = nla_nest_start(msg, NL80211_ATTR_CQM);
7839 if (!pinfoattr)
7840 goto nla_put_failure;
7841
7842 NLA_PUT_U32(msg, NL80211_ATTR_CQM_RSSI_THRESHOLD_EVENT,
7843 rssi_event);
7844
7845 nla_nest_end(msg, pinfoattr);
7846
3b7b72ee 7847 genlmsg_end(msg, hdr);
d6dc1a38
JO
7848
7849 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7850 nl80211_mlme_mcgrp.id, gfp);
7851 return;
7852
7853 nla_put_failure:
7854 genlmsg_cancel(msg, hdr);
7855 nlmsg_free(msg);
7856}
7857
e5497d76
JB
7858void nl80211_gtk_rekey_notify(struct cfg80211_registered_device *rdev,
7859 struct net_device *netdev, const u8 *bssid,
7860 const u8 *replay_ctr, gfp_t gfp)
7861{
7862 struct sk_buff *msg;
7863 struct nlattr *rekey_attr;
7864 void *hdr;
7865
7866 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7867 if (!msg)
7868 return;
7869
7870 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_SET_REKEY_OFFLOAD);
7871 if (!hdr) {
7872 nlmsg_free(msg);
7873 return;
7874 }
7875
7876 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7877 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7878 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, bssid);
7879
7880 rekey_attr = nla_nest_start(msg, NL80211_ATTR_REKEY_DATA);
7881 if (!rekey_attr)
7882 goto nla_put_failure;
7883
7884 NLA_PUT(msg, NL80211_REKEY_DATA_REPLAY_CTR,
7885 NL80211_REPLAY_CTR_LEN, replay_ctr);
7886
7887 nla_nest_end(msg, rekey_attr);
7888
3b7b72ee 7889 genlmsg_end(msg, hdr);
e5497d76
JB
7890
7891 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7892 nl80211_mlme_mcgrp.id, gfp);
7893 return;
7894
7895 nla_put_failure:
7896 genlmsg_cancel(msg, hdr);
7897 nlmsg_free(msg);
7898}
7899
c9df56b4
JM
7900void nl80211_pmksa_candidate_notify(struct cfg80211_registered_device *rdev,
7901 struct net_device *netdev, int index,
7902 const u8 *bssid, bool preauth, gfp_t gfp)
7903{
7904 struct sk_buff *msg;
7905 struct nlattr *attr;
7906 void *hdr;
7907
7908 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7909 if (!msg)
7910 return;
7911
7912 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_PMKSA_CANDIDATE);
7913 if (!hdr) {
7914 nlmsg_free(msg);
7915 return;
7916 }
7917
7918 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7919 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7920
7921 attr = nla_nest_start(msg, NL80211_ATTR_PMKSA_CANDIDATE);
7922 if (!attr)
7923 goto nla_put_failure;
7924
7925 NLA_PUT_U32(msg, NL80211_PMKSA_CANDIDATE_INDEX, index);
7926 NLA_PUT(msg, NL80211_PMKSA_CANDIDATE_BSSID, ETH_ALEN, bssid);
7927 if (preauth)
7928 NLA_PUT_FLAG(msg, NL80211_PMKSA_CANDIDATE_PREAUTH);
7929
7930 nla_nest_end(msg, attr);
7931
3b7b72ee 7932 genlmsg_end(msg, hdr);
c9df56b4
JM
7933
7934 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7935 nl80211_mlme_mcgrp.id, gfp);
7936 return;
7937
7938 nla_put_failure:
7939 genlmsg_cancel(msg, hdr);
7940 nlmsg_free(msg);
7941}
7942
5314526b
TP
7943void nl80211_ch_switch_notify(struct cfg80211_registered_device *rdev,
7944 struct net_device *netdev, int freq,
7945 enum nl80211_channel_type type, gfp_t gfp)
7946{
7947 struct sk_buff *msg;
7948 void *hdr;
7949
7950 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7951 if (!msg)
7952 return;
7953
7954 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_CH_SWITCH_NOTIFY);
7955 if (!hdr) {
7956 nlmsg_free(msg);
7957 return;
7958 }
7959
7960 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7961 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FREQ, freq);
7962 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_CHANNEL_TYPE, type);
7963
7964 genlmsg_end(msg, hdr);
7965
7966 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
7967 nl80211_mlme_mcgrp.id, gfp);
7968 return;
7969
7970 nla_put_failure:
7971 genlmsg_cancel(msg, hdr);
7972 nlmsg_free(msg);
7973}
7974
c063dbf5
JB
7975void
7976nl80211_send_cqm_pktloss_notify(struct cfg80211_registered_device *rdev,
7977 struct net_device *netdev, const u8 *peer,
7978 u32 num_packets, gfp_t gfp)
7979{
7980 struct sk_buff *msg;
7981 struct nlattr *pinfoattr;
7982 void *hdr;
7983
7984 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
7985 if (!msg)
7986 return;
7987
7988 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_NOTIFY_CQM);
7989 if (!hdr) {
7990 nlmsg_free(msg);
7991 return;
7992 }
7993
7994 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
7995 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, netdev->ifindex);
7996 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, peer);
7997
7998 pinfoattr = nla_nest_start(msg, NL80211_ATTR_CQM);
7999 if (!pinfoattr)
8000 goto nla_put_failure;
8001
8002 NLA_PUT_U32(msg, NL80211_ATTR_CQM_PKT_LOSS_EVENT, num_packets);
8003
8004 nla_nest_end(msg, pinfoattr);
8005
3b7b72ee 8006 genlmsg_end(msg, hdr);
c063dbf5
JB
8007
8008 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
8009 nl80211_mlme_mcgrp.id, gfp);
8010 return;
8011
8012 nla_put_failure:
8013 genlmsg_cancel(msg, hdr);
8014 nlmsg_free(msg);
8015}
8016
7f6cf311
JB
8017void cfg80211_probe_status(struct net_device *dev, const u8 *addr,
8018 u64 cookie, bool acked, gfp_t gfp)
8019{
8020 struct wireless_dev *wdev = dev->ieee80211_ptr;
8021 struct cfg80211_registered_device *rdev = wiphy_to_dev(wdev->wiphy);
8022 struct sk_buff *msg;
8023 void *hdr;
8024 int err;
8025
8026 msg = nlmsg_new(NLMSG_GOODSIZE, gfp);
8027 if (!msg)
8028 return;
8029
8030 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_PROBE_CLIENT);
8031 if (!hdr) {
8032 nlmsg_free(msg);
8033 return;
8034 }
8035
8036 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
8037 NLA_PUT_U32(msg, NL80211_ATTR_IFINDEX, dev->ifindex);
8038 NLA_PUT(msg, NL80211_ATTR_MAC, ETH_ALEN, addr);
8039 NLA_PUT_U64(msg, NL80211_ATTR_COOKIE, cookie);
8040 if (acked)
8041 NLA_PUT_FLAG(msg, NL80211_ATTR_ACK);
8042
8043 err = genlmsg_end(msg, hdr);
8044 if (err < 0) {
8045 nlmsg_free(msg);
8046 return;
8047 }
8048
8049 genlmsg_multicast_netns(wiphy_net(&rdev->wiphy), msg, 0,
8050 nl80211_mlme_mcgrp.id, gfp);
8051 return;
8052
8053 nla_put_failure:
8054 genlmsg_cancel(msg, hdr);
8055 nlmsg_free(msg);
8056}
8057EXPORT_SYMBOL(cfg80211_probe_status);
8058
5e760230
JB
8059void cfg80211_report_obss_beacon(struct wiphy *wiphy,
8060 const u8 *frame, size_t len,
804483e9 8061 int freq, int sig_dbm, gfp_t gfp)
5e760230
JB
8062{
8063 struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
8064 struct sk_buff *msg;
8065 void *hdr;
8066 u32 nlpid = ACCESS_ONCE(rdev->ap_beacons_nlpid);
8067
8068 if (!nlpid)
8069 return;
8070
8071 msg = nlmsg_new(len + 100, gfp);
8072 if (!msg)
8073 return;
8074
8075 hdr = nl80211hdr_put(msg, 0, 0, 0, NL80211_CMD_FRAME);
8076 if (!hdr) {
8077 nlmsg_free(msg);
8078 return;
8079 }
8080
8081 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY, rdev->wiphy_idx);
8082 if (freq)
8083 NLA_PUT_U32(msg, NL80211_ATTR_WIPHY_FREQ, freq);
804483e9
JB
8084 if (sig_dbm)
8085 NLA_PUT_U32(msg, NL80211_ATTR_RX_SIGNAL_DBM, sig_dbm);
5e760230
JB
8086 NLA_PUT(msg, NL80211_ATTR_FRAME, len, frame);
8087
8088 genlmsg_end(msg, hdr);
8089
8090 genlmsg_unicast(wiphy_net(&rdev->wiphy), msg, nlpid);
8091 return;
8092
8093 nla_put_failure:
8094 genlmsg_cancel(msg, hdr);
8095 nlmsg_free(msg);
8096}
8097EXPORT_SYMBOL(cfg80211_report_obss_beacon);
8098
026331c4
JM
8099static int nl80211_netlink_notify(struct notifier_block * nb,
8100 unsigned long state,
8101 void *_notify)
8102{
8103 struct netlink_notify *notify = _notify;
8104 struct cfg80211_registered_device *rdev;
8105 struct wireless_dev *wdev;
8106
8107 if (state != NETLINK_URELEASE)
8108 return NOTIFY_DONE;
8109
8110 rcu_read_lock();
8111
5e760230 8112 list_for_each_entry_rcu(rdev, &cfg80211_rdev_list, list) {
026331c4 8113 list_for_each_entry_rcu(wdev, &rdev->netdev_list, list)
2e161f78 8114 cfg80211_mlme_unregister_socket(wdev, notify->pid);
5e760230
JB
8115 if (rdev->ap_beacons_nlpid == notify->pid)
8116 rdev->ap_beacons_nlpid = 0;
8117 }
026331c4
JM
8118
8119 rcu_read_unlock();
8120
8121 return NOTIFY_DONE;
8122}
8123
8124static struct notifier_block nl80211_netlink_notifier = {
8125 .notifier_call = nl80211_netlink_notify,
8126};
8127
55682965
JB
8128/* initialisation/exit functions */
8129
8130int nl80211_init(void)
8131{
0d63cbb5 8132 int err;
55682965 8133
0d63cbb5
MM
8134 err = genl_register_family_with_ops(&nl80211_fam,
8135 nl80211_ops, ARRAY_SIZE(nl80211_ops));
55682965
JB
8136 if (err)
8137 return err;
8138
55682965
JB
8139 err = genl_register_mc_group(&nl80211_fam, &nl80211_config_mcgrp);
8140 if (err)
8141 goto err_out;
8142
2a519311
JB
8143 err = genl_register_mc_group(&nl80211_fam, &nl80211_scan_mcgrp);
8144 if (err)
8145 goto err_out;
8146
73d54c9e
LR
8147 err = genl_register_mc_group(&nl80211_fam, &nl80211_regulatory_mcgrp);
8148 if (err)
8149 goto err_out;
8150
6039f6d2
JM
8151 err = genl_register_mc_group(&nl80211_fam, &nl80211_mlme_mcgrp);
8152 if (err)
8153 goto err_out;
8154
aff89a9b
JB
8155#ifdef CONFIG_NL80211_TESTMODE
8156 err = genl_register_mc_group(&nl80211_fam, &nl80211_testmode_mcgrp);
8157 if (err)
8158 goto err_out;
8159#endif
8160
026331c4
JM
8161 err = netlink_register_notifier(&nl80211_netlink_notifier);
8162 if (err)
8163 goto err_out;
8164
55682965
JB
8165 return 0;
8166 err_out:
8167 genl_unregister_family(&nl80211_fam);
8168 return err;
8169}
8170
8171void nl80211_exit(void)
8172{
026331c4 8173 netlink_unregister_notifier(&nl80211_netlink_notifier);
55682965
JB
8174 genl_unregister_family(&nl80211_fam);
8175}