blob: 11f2ee6b2269f1ac22c34600e82b5277edf2bea8 [file] [log] [blame]
Jiri Bencf0706e82007-05-05 11:45:53 -07001/*
2 * BSS client mode implementation
3 * Copyright 2003, Jouni Malinen <jkmaline@cc.hut.fi>
4 * Copyright 2004, Instant802 Networks, Inc.
5 * Copyright 2005, Devicescape Software, Inc.
6 * Copyright 2006-2007 Jiri Benc <jbenc@suse.cz>
7 * Copyright 2007, Michael Wu <flamingice@sourmilk.net>
8 *
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License version 2 as
11 * published by the Free Software Foundation.
12 */
13
14/* TODO:
Jiri Bencf0706e82007-05-05 11:45:53 -070015 * order BSS list by RSSI(?) ("quality of AP")
16 * scan result table filtering (by capability (privacy, IBSS/BSS, WPA/RSN IE,
17 * SSID)
18 */
Geert Uytterhoeven5b323ed2007-05-08 18:40:27 -070019#include <linux/delay.h>
Jiri Bencf0706e82007-05-05 11:45:53 -070020#include <linux/if_ether.h>
21#include <linux/skbuff.h>
22#include <linux/netdevice.h>
23#include <linux/if_arp.h>
24#include <linux/wireless.h>
25#include <linux/random.h>
26#include <linux/etherdevice.h>
Jiri Bencf0706e82007-05-05 11:45:53 -070027#include <net/iw_handler.h>
28#include <asm/types.h>
Jiri Bencf0706e82007-05-05 11:45:53 -070029
30#include <net/mac80211.h>
31#include "ieee80211_i.h"
32#include "ieee80211_rate.h"
Michael Buesch47f0c502007-09-27 15:10:44 +020033#include "ieee80211_led.h"
Jiri Bencf0706e82007-05-05 11:45:53 -070034
35#define IEEE80211_AUTH_TIMEOUT (HZ / 5)
36#define IEEE80211_AUTH_MAX_TRIES 3
37#define IEEE80211_ASSOC_TIMEOUT (HZ / 5)
38#define IEEE80211_ASSOC_MAX_TRIES 3
39#define IEEE80211_MONITORING_INTERVAL (2 * HZ)
40#define IEEE80211_PROBE_INTERVAL (60 * HZ)
41#define IEEE80211_RETRY_AUTH_INTERVAL (1 * HZ)
42#define IEEE80211_SCAN_INTERVAL (2 * HZ)
43#define IEEE80211_SCAN_INTERVAL_SLOW (15 * HZ)
44#define IEEE80211_IBSS_JOIN_TIMEOUT (20 * HZ)
45
46#define IEEE80211_PROBE_DELAY (HZ / 33)
47#define IEEE80211_CHANNEL_TIME (HZ / 33)
48#define IEEE80211_PASSIVE_CHANNEL_TIME (HZ / 5)
49#define IEEE80211_SCAN_RESULT_EXPIRE (10 * HZ)
50#define IEEE80211_IBSS_MERGE_INTERVAL (30 * HZ)
51#define IEEE80211_IBSS_INACTIVITY_LIMIT (60 * HZ)
52
53#define IEEE80211_IBSS_MAX_STA_ENTRIES 128
54
55
56#define IEEE80211_FC(type, stype) cpu_to_le16(type | stype)
57
58#define ERP_INFO_USE_PROTECTION BIT(1)
59
Ron Rindjunsky9f985b02007-11-26 16:14:32 +020060/* mgmt header + 1 byte action code */
61#define IEEE80211_MIN_ACTION_SIZE (24 + 1)
62
63#define IEEE80211_ADDBA_PARAM_POLICY_MASK 0x0002
64#define IEEE80211_ADDBA_PARAM_TID_MASK 0x003C
65#define IEEE80211_ADDBA_PARAM_BUF_SIZE_MASK 0xFFA0
Ron Rindjunsky688b88a2007-12-25 17:00:37 +020066#define IEEE80211_DELBA_PARAM_TID_MASK 0xF000
67#define IEEE80211_DELBA_PARAM_INITIATOR_MASK 0x0800
Ron Rindjunsky9f985b02007-11-26 16:14:32 +020068
Ron Rindjunsky07db2182007-12-25 17:00:33 +020069/* next values represent the buffer size for A-MPDU frame.
70 * According to IEEE802.11n spec size varies from 8K to 64K (in powers of 2) */
71#define IEEE80211_MIN_AMPDU_BUF 0x8
72#define IEEE80211_MAX_AMPDU_BUF 0x40
73
Jiri Bencf0706e82007-05-05 11:45:53 -070074static void ieee80211_send_probe_req(struct net_device *dev, u8 *dst,
75 u8 *ssid, size_t ssid_len);
76static struct ieee80211_sta_bss *
Johannes Berg8318d782008-01-24 19:38:38 +010077ieee80211_rx_bss_get(struct net_device *dev, u8 *bssid, int freq,
John W. Linvillecffdd302007-10-05 14:23:27 -040078 u8 *ssid, u8 ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -070079static void ieee80211_rx_bss_put(struct net_device *dev,
80 struct ieee80211_sta_bss *bss);
81static int ieee80211_sta_find_ibss(struct net_device *dev,
82 struct ieee80211_if_sta *ifsta);
83static int ieee80211_sta_wep_configured(struct net_device *dev);
84static int ieee80211_sta_start_scan(struct net_device *dev,
85 u8 *ssid, size_t ssid_len);
86static int ieee80211_sta_config_auth(struct net_device *dev,
87 struct ieee80211_if_sta *ifsta);
88
89
90/* Parsed Information Elements */
91struct ieee802_11_elems {
Johannes Berg55582352007-07-10 19:32:09 +020092 /* pointers to IEs */
Jiri Bencf0706e82007-05-05 11:45:53 -070093 u8 *ssid;
Jiri Bencf0706e82007-05-05 11:45:53 -070094 u8 *supp_rates;
Jiri Bencf0706e82007-05-05 11:45:53 -070095 u8 *fh_params;
Jiri Bencf0706e82007-05-05 11:45:53 -070096 u8 *ds_params;
Jiri Bencf0706e82007-05-05 11:45:53 -070097 u8 *cf_params;
Jiri Bencf0706e82007-05-05 11:45:53 -070098 u8 *tim;
Jiri Bencf0706e82007-05-05 11:45:53 -070099 u8 *ibss_params;
Jiri Bencf0706e82007-05-05 11:45:53 -0700100 u8 *challenge;
Jiri Bencf0706e82007-05-05 11:45:53 -0700101 u8 *wpa;
Jiri Bencf0706e82007-05-05 11:45:53 -0700102 u8 *rsn;
Jiri Bencf0706e82007-05-05 11:45:53 -0700103 u8 *erp_info;
Jiri Bencf0706e82007-05-05 11:45:53 -0700104 u8 *ext_supp_rates;
Jiri Bencf0706e82007-05-05 11:45:53 -0700105 u8 *wmm_info;
Jiri Bencf0706e82007-05-05 11:45:53 -0700106 u8 *wmm_param;
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200107 u8 *ht_cap_elem;
108 u8 *ht_info_elem;
Johannes Berg55582352007-07-10 19:32:09 +0200109 /* length of them, respectively */
110 u8 ssid_len;
111 u8 supp_rates_len;
112 u8 fh_params_len;
113 u8 ds_params_len;
114 u8 cf_params_len;
115 u8 tim_len;
116 u8 ibss_params_len;
117 u8 challenge_len;
118 u8 wpa_len;
119 u8 rsn_len;
120 u8 erp_info_len;
121 u8 ext_supp_rates_len;
122 u8 wmm_info_len;
Jiri Bencf0706e82007-05-05 11:45:53 -0700123 u8 wmm_param_len;
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200124 u8 ht_cap_elem_len;
125 u8 ht_info_elem_len;
Jiri Bencf0706e82007-05-05 11:45:53 -0700126};
127
John W. Linville67a4cce2007-10-12 16:40:37 -0400128static void ieee802_11_parse_elems(u8 *start, size_t len,
129 struct ieee802_11_elems *elems)
Jiri Bencf0706e82007-05-05 11:45:53 -0700130{
131 size_t left = len;
132 u8 *pos = start;
Jiri Bencf0706e82007-05-05 11:45:53 -0700133
134 memset(elems, 0, sizeof(*elems));
135
136 while (left >= 2) {
137 u8 id, elen;
138
139 id = *pos++;
140 elen = *pos++;
141 left -= 2;
142
John W. Linville67a4cce2007-10-12 16:40:37 -0400143 if (elen > left)
144 return;
Jiri Bencf0706e82007-05-05 11:45:53 -0700145
146 switch (id) {
147 case WLAN_EID_SSID:
148 elems->ssid = pos;
149 elems->ssid_len = elen;
150 break;
151 case WLAN_EID_SUPP_RATES:
152 elems->supp_rates = pos;
153 elems->supp_rates_len = elen;
154 break;
155 case WLAN_EID_FH_PARAMS:
156 elems->fh_params = pos;
157 elems->fh_params_len = elen;
158 break;
159 case WLAN_EID_DS_PARAMS:
160 elems->ds_params = pos;
161 elems->ds_params_len = elen;
162 break;
163 case WLAN_EID_CF_PARAMS:
164 elems->cf_params = pos;
165 elems->cf_params_len = elen;
166 break;
167 case WLAN_EID_TIM:
168 elems->tim = pos;
169 elems->tim_len = elen;
170 break;
171 case WLAN_EID_IBSS_PARAMS:
172 elems->ibss_params = pos;
173 elems->ibss_params_len = elen;
174 break;
175 case WLAN_EID_CHALLENGE:
176 elems->challenge = pos;
177 elems->challenge_len = elen;
178 break;
179 case WLAN_EID_WPA:
180 if (elen >= 4 && pos[0] == 0x00 && pos[1] == 0x50 &&
181 pos[2] == 0xf2) {
182 /* Microsoft OUI (00:50:F2) */
183 if (pos[3] == 1) {
184 /* OUI Type 1 - WPA IE */
185 elems->wpa = pos;
186 elems->wpa_len = elen;
187 } else if (elen >= 5 && pos[3] == 2) {
188 if (pos[4] == 0) {
189 elems->wmm_info = pos;
190 elems->wmm_info_len = elen;
191 } else if (pos[4] == 1) {
192 elems->wmm_param = pos;
193 elems->wmm_param_len = elen;
194 }
195 }
196 }
197 break;
198 case WLAN_EID_RSN:
199 elems->rsn = pos;
200 elems->rsn_len = elen;
201 break;
202 case WLAN_EID_ERP_INFO:
203 elems->erp_info = pos;
204 elems->erp_info_len = elen;
205 break;
206 case WLAN_EID_EXT_SUPP_RATES:
207 elems->ext_supp_rates = pos;
208 elems->ext_supp_rates_len = elen;
209 break;
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200210 case WLAN_EID_HT_CAPABILITY:
211 elems->ht_cap_elem = pos;
212 elems->ht_cap_elem_len = elen;
213 break;
214 case WLAN_EID_HT_EXTRA_INFO:
215 elems->ht_info_elem = pos;
216 elems->ht_info_elem_len = elen;
217 break;
Jiri Bencf0706e82007-05-05 11:45:53 -0700218 default:
Jiri Bencf0706e82007-05-05 11:45:53 -0700219 break;
220 }
221
222 left -= elen;
223 pos += elen;
224 }
Jiri Bencf0706e82007-05-05 11:45:53 -0700225}
226
227
Jiri Bencf0706e82007-05-05 11:45:53 -0700228static int ecw2cw(int ecw)
229{
230 int cw = 1;
231 while (ecw > 0) {
232 cw <<= 1;
233 ecw--;
234 }
235 return cw - 1;
236}
237
Jiri Bencf0706e82007-05-05 11:45:53 -0700238static void ieee80211_sta_wmm_params(struct net_device *dev,
239 struct ieee80211_if_sta *ifsta,
240 u8 *wmm_param, size_t wmm_param_len)
241{
242 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
243 struct ieee80211_tx_queue_params params;
244 size_t left;
245 int count;
246 u8 *pos;
247
248 if (wmm_param_len < 8 || wmm_param[5] /* version */ != 1)
249 return;
250 count = wmm_param[6] & 0x0f;
251 if (count == ifsta->wmm_last_param_set)
252 return;
253 ifsta->wmm_last_param_set = count;
254
255 pos = wmm_param + 8;
256 left = wmm_param_len - 8;
257
258 memset(&params, 0, sizeof(params));
259
260 if (!local->ops->conf_tx)
261 return;
262
263 local->wmm_acm = 0;
264 for (; left >= 4; left -= 4, pos += 4) {
265 int aci = (pos[0] >> 5) & 0x03;
266 int acm = (pos[0] >> 4) & 0x01;
267 int queue;
268
269 switch (aci) {
270 case 1:
271 queue = IEEE80211_TX_QUEUE_DATA3;
272 if (acm) {
273 local->wmm_acm |= BIT(0) | BIT(3);
274 }
275 break;
276 case 2:
277 queue = IEEE80211_TX_QUEUE_DATA1;
278 if (acm) {
279 local->wmm_acm |= BIT(4) | BIT(5);
280 }
281 break;
282 case 3:
283 queue = IEEE80211_TX_QUEUE_DATA0;
284 if (acm) {
285 local->wmm_acm |= BIT(6) | BIT(7);
286 }
287 break;
288 case 0:
289 default:
290 queue = IEEE80211_TX_QUEUE_DATA2;
291 if (acm) {
292 local->wmm_acm |= BIT(1) | BIT(2);
293 }
294 break;
295 }
296
297 params.aifs = pos[0] & 0x0f;
298 params.cw_max = ecw2cw((pos[1] & 0xf0) >> 4);
299 params.cw_min = ecw2cw(pos[1] & 0x0f);
Johannes Berg3330d7b2008-02-10 16:49:38 +0100300 params.txop = pos[2] | (pos[3] << 8);
301#ifdef CONFIG_MAC80211_DEBUG
Jiri Bencf0706e82007-05-05 11:45:53 -0700302 printk(KERN_DEBUG "%s: WMM queue=%d aci=%d acm=%d aifs=%d "
Johannes Berg3330d7b2008-02-10 16:49:38 +0100303 "cWmin=%d cWmax=%d txop=%d\n",
Jiri Bencf0706e82007-05-05 11:45:53 -0700304 dev->name, queue, aci, acm, params.aifs, params.cw_min,
Johannes Berg3330d7b2008-02-10 16:49:38 +0100305 params.cw_max, params.txop);
306#endif
Jiri Bencf0706e82007-05-05 11:45:53 -0700307 /* TODO: handle ACM (block TX, fallback to next lowest allowed
308 * AC for now) */
309 if (local->ops->conf_tx(local_to_hw(local), queue, &params)) {
310 printk(KERN_DEBUG "%s: failed to set TX queue "
311 "parameters for queue %d\n", dev->name, queue);
312 }
313 }
314}
315
316
Johannes Berg471b3ef2007-12-28 14:32:58 +0100317static u32 ieee80211_handle_erp_ie(struct ieee80211_sub_if_data *sdata,
318 u8 erp_value)
Daniel Drake56282212007-07-10 19:32:10 +0200319{
Johannes Berg471b3ef2007-12-28 14:32:58 +0100320 struct ieee80211_bss_conf *bss_conf = &sdata->bss_conf;
Daniel Drake56282212007-07-10 19:32:10 +0200321 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
Johannes Berg471b3ef2007-12-28 14:32:58 +0100322 bool use_protection = (erp_value & WLAN_ERP_USE_PROTECTION) != 0;
323 bool preamble_mode = (erp_value & WLAN_ERP_BARKER_PREAMBLE) != 0;
Joe Perches0795af52007-10-03 17:59:30 -0700324 DECLARE_MAC_BUF(mac);
Johannes Berg471b3ef2007-12-28 14:32:58 +0100325 u32 changed = 0;
Daniel Drake56282212007-07-10 19:32:10 +0200326
Johannes Berg471b3ef2007-12-28 14:32:58 +0100327 if (use_protection != bss_conf->use_cts_prot) {
Daniel Drake56282212007-07-10 19:32:10 +0200328 if (net_ratelimit()) {
329 printk(KERN_DEBUG "%s: CTS protection %s (BSSID="
Joe Perches0795af52007-10-03 17:59:30 -0700330 "%s)\n",
Johannes Berg471b3ef2007-12-28 14:32:58 +0100331 sdata->dev->name,
Daniel Drake56282212007-07-10 19:32:10 +0200332 use_protection ? "enabled" : "disabled",
Joe Perches0795af52007-10-03 17:59:30 -0700333 print_mac(mac, ifsta->bssid));
Daniel Drake56282212007-07-10 19:32:10 +0200334 }
Johannes Berg471b3ef2007-12-28 14:32:58 +0100335 bss_conf->use_cts_prot = use_protection;
336 changed |= BSS_CHANGED_ERP_CTS_PROT;
Daniel Drake56282212007-07-10 19:32:10 +0200337 }
Daniel Drake7e9ed182007-07-27 15:43:24 +0200338
Johannes Berg471b3ef2007-12-28 14:32:58 +0100339 if (preamble_mode != bss_conf->use_short_preamble) {
Daniel Drake7e9ed182007-07-27 15:43:24 +0200340 if (net_ratelimit()) {
341 printk(KERN_DEBUG "%s: switched to %s barker preamble"
Joe Perches0795af52007-10-03 17:59:30 -0700342 " (BSSID=%s)\n",
Johannes Berg471b3ef2007-12-28 14:32:58 +0100343 sdata->dev->name,
Daniel Drake7e9ed182007-07-27 15:43:24 +0200344 (preamble_mode == WLAN_ERP_PREAMBLE_SHORT) ?
345 "short" : "long",
Joe Perches0795af52007-10-03 17:59:30 -0700346 print_mac(mac, ifsta->bssid));
Daniel Drake7e9ed182007-07-27 15:43:24 +0200347 }
Johannes Berg471b3ef2007-12-28 14:32:58 +0100348 bss_conf->use_short_preamble = preamble_mode;
349 changed |= BSS_CHANGED_ERP_PREAMBLE;
Daniel Drake7e9ed182007-07-27 15:43:24 +0200350 }
Daniel Draked9430a32007-07-27 15:43:24 +0200351
Johannes Berg471b3ef2007-12-28 14:32:58 +0100352 return changed;
Daniel Drake56282212007-07-10 19:32:10 +0200353}
354
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200355int ieee80211_ht_cap_ie_to_ht_info(struct ieee80211_ht_cap *ht_cap_ie,
356 struct ieee80211_ht_info *ht_info)
357{
358
359 if (ht_info == NULL)
360 return -EINVAL;
361
362 memset(ht_info, 0, sizeof(*ht_info));
363
364 if (ht_cap_ie) {
365 u8 ampdu_info = ht_cap_ie->ampdu_params_info;
366
367 ht_info->ht_supported = 1;
368 ht_info->cap = le16_to_cpu(ht_cap_ie->cap_info);
369 ht_info->ampdu_factor =
370 ampdu_info & IEEE80211_HT_CAP_AMPDU_FACTOR;
371 ht_info->ampdu_density =
372 (ampdu_info & IEEE80211_HT_CAP_AMPDU_DENSITY) >> 2;
373 memcpy(ht_info->supp_mcs_set, ht_cap_ie->supp_mcs_set, 16);
374 } else
375 ht_info->ht_supported = 0;
376
377 return 0;
378}
379
380int ieee80211_ht_addt_info_ie_to_ht_bss_info(
381 struct ieee80211_ht_addt_info *ht_add_info_ie,
382 struct ieee80211_ht_bss_info *bss_info)
383{
384 if (bss_info == NULL)
385 return -EINVAL;
386
387 memset(bss_info, 0, sizeof(*bss_info));
388
389 if (ht_add_info_ie) {
390 u16 op_mode;
391 op_mode = le16_to_cpu(ht_add_info_ie->operation_mode);
392
393 bss_info->primary_channel = ht_add_info_ie->control_chan;
394 bss_info->bss_cap = ht_add_info_ie->ht_param;
395 bss_info->bss_op_mode = (u8)(op_mode & 0xff);
396 }
397
398 return 0;
399}
Daniel Drake56282212007-07-10 19:32:10 +0200400
Jiri Bencf0706e82007-05-05 11:45:53 -0700401static void ieee80211_sta_send_associnfo(struct net_device *dev,
402 struct ieee80211_if_sta *ifsta)
403{
404 char *buf;
405 size_t len;
406 int i;
407 union iwreq_data wrqu;
408
409 if (!ifsta->assocreq_ies && !ifsta->assocresp_ies)
410 return;
411
412 buf = kmalloc(50 + 2 * (ifsta->assocreq_ies_len +
Michael Wu0ec0b7a2007-07-27 15:43:24 +0200413 ifsta->assocresp_ies_len), GFP_KERNEL);
Jiri Bencf0706e82007-05-05 11:45:53 -0700414 if (!buf)
415 return;
416
417 len = sprintf(buf, "ASSOCINFO(");
418 if (ifsta->assocreq_ies) {
419 len += sprintf(buf + len, "ReqIEs=");
420 for (i = 0; i < ifsta->assocreq_ies_len; i++) {
421 len += sprintf(buf + len, "%02x",
422 ifsta->assocreq_ies[i]);
423 }
424 }
425 if (ifsta->assocresp_ies) {
426 if (ifsta->assocreq_ies)
427 len += sprintf(buf + len, " ");
428 len += sprintf(buf + len, "RespIEs=");
429 for (i = 0; i < ifsta->assocresp_ies_len; i++) {
430 len += sprintf(buf + len, "%02x",
431 ifsta->assocresp_ies[i]);
432 }
433 }
434 len += sprintf(buf + len, ")");
435
436 if (len > IW_CUSTOM_MAX) {
437 len = sprintf(buf, "ASSOCRESPIE=");
438 for (i = 0; i < ifsta->assocresp_ies_len; i++) {
439 len += sprintf(buf + len, "%02x",
440 ifsta->assocresp_ies[i]);
441 }
442 }
443
444 memset(&wrqu, 0, sizeof(wrqu));
445 wrqu.data.length = len;
446 wireless_send_event(dev, IWEVCUSTOM, &wrqu, buf);
447
448 kfree(buf);
449}
450
451
452static void ieee80211_set_associated(struct net_device *dev,
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400453 struct ieee80211_if_sta *ifsta,
Michael Buesch47f0c502007-09-27 15:10:44 +0200454 bool assoc)
Jiri Bencf0706e82007-05-05 11:45:53 -0700455{
Johannes Berg471b3ef2007-12-28 14:32:58 +0100456 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
457 struct ieee80211_local *local = sdata->local;
Jiri Bencf0706e82007-05-05 11:45:53 -0700458 union iwreq_data wrqu;
Johannes Berg471b3ef2007-12-28 14:32:58 +0100459 u32 changed = BSS_CHANGED_ASSOC;
Jiri Bencf0706e82007-05-05 11:45:53 -0700460
Jiri Bencf0706e82007-05-05 11:45:53 -0700461 if (assoc) {
Daniel Drake56282212007-07-10 19:32:10 +0200462 struct ieee80211_sta_bss *bss;
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400463
464 ifsta->flags |= IEEE80211_STA_ASSOCIATED;
465
Johannes Berg51fb61e2007-12-19 01:31:27 +0100466 if (sdata->vif.type != IEEE80211_IF_TYPE_STA)
Jiri Bencf0706e82007-05-05 11:45:53 -0700467 return;
Daniel Drake56282212007-07-10 19:32:10 +0200468
John W. Linville65c107a2007-10-05 14:23:27 -0400469 bss = ieee80211_rx_bss_get(dev, ifsta->bssid,
Johannes Berg8318d782008-01-24 19:38:38 +0100470 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -0400471 ifsta->ssid, ifsta->ssid_len);
Daniel Drake56282212007-07-10 19:32:10 +0200472 if (bss) {
473 if (bss->has_erp_value)
Johannes Berg471b3ef2007-12-28 14:32:58 +0100474 changed |= ieee80211_handle_erp_ie(
475 sdata, bss->erp_value);
Daniel Drake56282212007-07-10 19:32:10 +0200476 ieee80211_rx_bss_put(dev, bss);
477 }
478
Jiri Bencf0706e82007-05-05 11:45:53 -0700479 netif_carrier_on(dev);
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400480 ifsta->flags |= IEEE80211_STA_PREV_BSSID_SET;
Jiri Bencf0706e82007-05-05 11:45:53 -0700481 memcpy(ifsta->prev_bssid, sdata->u.sta.bssid, ETH_ALEN);
482 memcpy(wrqu.ap_addr.sa_data, sdata->u.sta.bssid, ETH_ALEN);
483 ieee80211_sta_send_associnfo(dev, ifsta);
484 } else {
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400485 ifsta->flags &= ~IEEE80211_STA_ASSOCIATED;
486
Jiri Bencf0706e82007-05-05 11:45:53 -0700487 netif_carrier_off(dev);
Daniel Draked9430a32007-07-27 15:43:24 +0200488 ieee80211_reset_erp_info(dev);
Jiri Bencf0706e82007-05-05 11:45:53 -0700489 memset(wrqu.ap_addr.sa_data, 0, ETH_ALEN);
490 }
491 wrqu.ap_addr.sa_family = ARPHRD_ETHER;
492 wireless_send_event(dev, SIOCGIWAP, &wrqu, NULL);
493 ifsta->last_probe = jiffies;
Michael Buesch47f0c502007-09-27 15:10:44 +0200494 ieee80211_led_assoc(local, assoc);
Johannes Berg471b3ef2007-12-28 14:32:58 +0100495
Tomas Winklerb2205252008-01-27 16:18:22 +0200496 sdata->bss_conf.assoc = assoc;
Johannes Berg471b3ef2007-12-28 14:32:58 +0100497 ieee80211_bss_info_change_notify(sdata, changed);
Jiri Bencf0706e82007-05-05 11:45:53 -0700498}
499
500static void ieee80211_set_disassoc(struct net_device *dev,
501 struct ieee80211_if_sta *ifsta, int deauth)
502{
503 if (deauth)
504 ifsta->auth_tries = 0;
505 ifsta->assoc_tries = 0;
506 ieee80211_set_associated(dev, ifsta, 0);
507}
508
509static void ieee80211_sta_tx(struct net_device *dev, struct sk_buff *skb,
510 int encrypt)
511{
512 struct ieee80211_sub_if_data *sdata;
513 struct ieee80211_tx_packet_data *pkt_data;
514
515 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
516 skb->dev = sdata->local->mdev;
517 skb_set_mac_header(skb, 0);
518 skb_set_network_header(skb, 0);
519 skb_set_transport_header(skb, 0);
520
521 pkt_data = (struct ieee80211_tx_packet_data *) skb->cb;
522 memset(pkt_data, 0, sizeof(struct ieee80211_tx_packet_data));
523 pkt_data->ifindex = sdata->dev->ifindex;
Jiri Slabye8bf9642007-08-28 17:01:54 -0400524 if (!encrypt)
525 pkt_data->flags |= IEEE80211_TXPD_DO_NOT_ENCRYPT;
Jiri Bencf0706e82007-05-05 11:45:53 -0700526
527 dev_queue_xmit(skb);
528}
529
530
531static void ieee80211_send_auth(struct net_device *dev,
532 struct ieee80211_if_sta *ifsta,
533 int transaction, u8 *extra, size_t extra_len,
534 int encrypt)
535{
536 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
537 struct sk_buff *skb;
538 struct ieee80211_mgmt *mgmt;
539
540 skb = dev_alloc_skb(local->hw.extra_tx_headroom +
541 sizeof(*mgmt) + 6 + extra_len);
542 if (!skb) {
543 printk(KERN_DEBUG "%s: failed to allocate buffer for auth "
544 "frame\n", dev->name);
545 return;
546 }
547 skb_reserve(skb, local->hw.extra_tx_headroom);
548
549 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24 + 6);
550 memset(mgmt, 0, 24 + 6);
551 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
552 IEEE80211_STYPE_AUTH);
553 if (encrypt)
554 mgmt->frame_control |= cpu_to_le16(IEEE80211_FCTL_PROTECTED);
555 memcpy(mgmt->da, ifsta->bssid, ETH_ALEN);
556 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
557 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
558 mgmt->u.auth.auth_alg = cpu_to_le16(ifsta->auth_alg);
559 mgmt->u.auth.auth_transaction = cpu_to_le16(transaction);
560 ifsta->auth_transaction = transaction + 1;
561 mgmt->u.auth.status_code = cpu_to_le16(0);
562 if (extra)
563 memcpy(skb_put(skb, extra_len), extra, extra_len);
564
565 ieee80211_sta_tx(dev, skb, encrypt);
566}
567
568
569static void ieee80211_authenticate(struct net_device *dev,
570 struct ieee80211_if_sta *ifsta)
571{
Joe Perches0795af52007-10-03 17:59:30 -0700572 DECLARE_MAC_BUF(mac);
573
Jiri Bencf0706e82007-05-05 11:45:53 -0700574 ifsta->auth_tries++;
575 if (ifsta->auth_tries > IEEE80211_AUTH_MAX_TRIES) {
Joe Perches0795af52007-10-03 17:59:30 -0700576 printk(KERN_DEBUG "%s: authentication with AP %s"
Jiri Bencf0706e82007-05-05 11:45:53 -0700577 " timed out\n",
Joe Perches0795af52007-10-03 17:59:30 -0700578 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700579 ifsta->state = IEEE80211_DISABLED;
580 return;
581 }
582
583 ifsta->state = IEEE80211_AUTHENTICATE;
Joe Perches0795af52007-10-03 17:59:30 -0700584 printk(KERN_DEBUG "%s: authenticate with AP %s\n",
585 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700586
587 ieee80211_send_auth(dev, ifsta, 1, NULL, 0, 0);
588
589 mod_timer(&ifsta->timer, jiffies + IEEE80211_AUTH_TIMEOUT);
590}
591
592
593static void ieee80211_send_assoc(struct net_device *dev,
594 struct ieee80211_if_sta *ifsta)
595{
596 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
Jiri Bencf0706e82007-05-05 11:45:53 -0700597 struct sk_buff *skb;
598 struct ieee80211_mgmt *mgmt;
599 u8 *pos, *ies;
600 int i, len;
601 u16 capab;
602 struct ieee80211_sta_bss *bss;
603 int wmm = 0;
Johannes Berg8318d782008-01-24 19:38:38 +0100604 struct ieee80211_supported_band *sband;
Jiri Bencf0706e82007-05-05 11:45:53 -0700605
606 skb = dev_alloc_skb(local->hw.extra_tx_headroom +
607 sizeof(*mgmt) + 200 + ifsta->extra_ie_len +
608 ifsta->ssid_len);
609 if (!skb) {
610 printk(KERN_DEBUG "%s: failed to allocate buffer for assoc "
611 "frame\n", dev->name);
612 return;
613 }
614 skb_reserve(skb, local->hw.extra_tx_headroom);
615
Johannes Berg8318d782008-01-24 19:38:38 +0100616 sband = local->hw.wiphy->bands[local->hw.conf.channel->band];
617
Jiri Bencf0706e82007-05-05 11:45:53 -0700618 capab = ifsta->capab;
Johannes Berg8318d782008-01-24 19:38:38 +0100619
620 if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ) {
621 if (!(local->hw.flags & IEEE80211_HW_2GHZ_SHORT_SLOT_INCAPABLE))
622 capab |= WLAN_CAPABILITY_SHORT_SLOT_TIME;
623 if (!(local->hw.flags & IEEE80211_HW_2GHZ_SHORT_PREAMBLE_INCAPABLE))
624 capab |= WLAN_CAPABILITY_SHORT_PREAMBLE;
Jiri Bencf0706e82007-05-05 11:45:53 -0700625 }
Johannes Berg8318d782008-01-24 19:38:38 +0100626
627 bss = ieee80211_rx_bss_get(dev, ifsta->bssid,
628 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -0400629 ifsta->ssid, ifsta->ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -0700630 if (bss) {
631 if (bss->capability & WLAN_CAPABILITY_PRIVACY)
632 capab |= WLAN_CAPABILITY_PRIVACY;
633 if (bss->wmm_ie) {
634 wmm = 1;
635 }
636 ieee80211_rx_bss_put(dev, bss);
637 }
638
639 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
640 memset(mgmt, 0, 24);
641 memcpy(mgmt->da, ifsta->bssid, ETH_ALEN);
642 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
643 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
644
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400645 if (ifsta->flags & IEEE80211_STA_PREV_BSSID_SET) {
Jiri Bencf0706e82007-05-05 11:45:53 -0700646 skb_put(skb, 10);
647 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
648 IEEE80211_STYPE_REASSOC_REQ);
649 mgmt->u.reassoc_req.capab_info = cpu_to_le16(capab);
650 mgmt->u.reassoc_req.listen_interval = cpu_to_le16(1);
651 memcpy(mgmt->u.reassoc_req.current_ap, ifsta->prev_bssid,
652 ETH_ALEN);
653 } else {
654 skb_put(skb, 4);
655 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
656 IEEE80211_STYPE_ASSOC_REQ);
657 mgmt->u.assoc_req.capab_info = cpu_to_le16(capab);
658 mgmt->u.assoc_req.listen_interval = cpu_to_le16(1);
659 }
660
661 /* SSID */
662 ies = pos = skb_put(skb, 2 + ifsta->ssid_len);
663 *pos++ = WLAN_EID_SSID;
664 *pos++ = ifsta->ssid_len;
665 memcpy(pos, ifsta->ssid, ifsta->ssid_len);
666
Johannes Berg8318d782008-01-24 19:38:38 +0100667 len = sband->n_bitrates;
Jiri Bencf0706e82007-05-05 11:45:53 -0700668 if (len > 8)
669 len = 8;
670 pos = skb_put(skb, len + 2);
671 *pos++ = WLAN_EID_SUPP_RATES;
672 *pos++ = len;
673 for (i = 0; i < len; i++) {
Johannes Berg8318d782008-01-24 19:38:38 +0100674 int rate = sband->bitrates[i].bitrate;
Jiri Bencf0706e82007-05-05 11:45:53 -0700675 *pos++ = (u8) (rate / 5);
676 }
677
Johannes Berg8318d782008-01-24 19:38:38 +0100678 if (sband->n_bitrates > len) {
679 pos = skb_put(skb, sband->n_bitrates - len + 2);
Jiri Bencf0706e82007-05-05 11:45:53 -0700680 *pos++ = WLAN_EID_EXT_SUPP_RATES;
Johannes Berg8318d782008-01-24 19:38:38 +0100681 *pos++ = sband->n_bitrates - len;
682 for (i = len; i < sband->n_bitrates; i++) {
683 int rate = sband->bitrates[i].bitrate;
Jiri Bencf0706e82007-05-05 11:45:53 -0700684 *pos++ = (u8) (rate / 5);
685 }
686 }
687
688 if (ifsta->extra_ie) {
689 pos = skb_put(skb, ifsta->extra_ie_len);
690 memcpy(pos, ifsta->extra_ie, ifsta->extra_ie_len);
691 }
692
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400693 if (wmm && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) {
Jiri Bencf0706e82007-05-05 11:45:53 -0700694 pos = skb_put(skb, 9);
695 *pos++ = WLAN_EID_VENDOR_SPECIFIC;
696 *pos++ = 7; /* len */
697 *pos++ = 0x00; /* Microsoft OUI 00:50:F2 */
698 *pos++ = 0x50;
699 *pos++ = 0xf2;
700 *pos++ = 2; /* WME */
701 *pos++ = 0; /* WME info */
702 *pos++ = 1; /* WME ver */
703 *pos++ = 0;
704 }
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200705 /* wmm support is a must to HT */
Johannes Berg8318d782008-01-24 19:38:38 +0100706 if (wmm && sband->ht_info.ht_supported) {
707 __le16 tmp = cpu_to_le16(sband->ht_info.cap);
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200708 pos = skb_put(skb, sizeof(struct ieee80211_ht_cap)+2);
709 *pos++ = WLAN_EID_HT_CAPABILITY;
710 *pos++ = sizeof(struct ieee80211_ht_cap);
711 memset(pos, 0, sizeof(struct ieee80211_ht_cap));
712 memcpy(pos, &tmp, sizeof(u16));
713 pos += sizeof(u16);
Johannes Berg8318d782008-01-24 19:38:38 +0100714 /* TODO: needs a define here for << 2 */
715 *pos++ = sband->ht_info.ampdu_factor |
716 (sband->ht_info.ampdu_density << 2);
717 memcpy(pos, sband->ht_info.supp_mcs_set, 16);
Ron Rindjunskyc7153502007-11-26 16:14:31 +0200718 }
Jiri Bencf0706e82007-05-05 11:45:53 -0700719
720 kfree(ifsta->assocreq_ies);
721 ifsta->assocreq_ies_len = (skb->data + skb->len) - ies;
Michael Wu0ec0b7a2007-07-27 15:43:24 +0200722 ifsta->assocreq_ies = kmalloc(ifsta->assocreq_ies_len, GFP_KERNEL);
Jiri Bencf0706e82007-05-05 11:45:53 -0700723 if (ifsta->assocreq_ies)
724 memcpy(ifsta->assocreq_ies, ies, ifsta->assocreq_ies_len);
725
726 ieee80211_sta_tx(dev, skb, 0);
727}
728
729
730static void ieee80211_send_deauth(struct net_device *dev,
731 struct ieee80211_if_sta *ifsta, u16 reason)
732{
733 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
734 struct sk_buff *skb;
735 struct ieee80211_mgmt *mgmt;
736
737 skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt));
738 if (!skb) {
739 printk(KERN_DEBUG "%s: failed to allocate buffer for deauth "
740 "frame\n", dev->name);
741 return;
742 }
743 skb_reserve(skb, local->hw.extra_tx_headroom);
744
745 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
746 memset(mgmt, 0, 24);
747 memcpy(mgmt->da, ifsta->bssid, ETH_ALEN);
748 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
749 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
750 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
751 IEEE80211_STYPE_DEAUTH);
752 skb_put(skb, 2);
753 mgmt->u.deauth.reason_code = cpu_to_le16(reason);
754
755 ieee80211_sta_tx(dev, skb, 0);
756}
757
758
759static void ieee80211_send_disassoc(struct net_device *dev,
760 struct ieee80211_if_sta *ifsta, u16 reason)
761{
762 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
763 struct sk_buff *skb;
764 struct ieee80211_mgmt *mgmt;
765
766 skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt));
767 if (!skb) {
768 printk(KERN_DEBUG "%s: failed to allocate buffer for disassoc "
769 "frame\n", dev->name);
770 return;
771 }
772 skb_reserve(skb, local->hw.extra_tx_headroom);
773
774 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
775 memset(mgmt, 0, 24);
776 memcpy(mgmt->da, ifsta->bssid, ETH_ALEN);
777 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
778 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
779 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
780 IEEE80211_STYPE_DISASSOC);
781 skb_put(skb, 2);
782 mgmt->u.disassoc.reason_code = cpu_to_le16(reason);
783
784 ieee80211_sta_tx(dev, skb, 0);
785}
786
787
788static int ieee80211_privacy_mismatch(struct net_device *dev,
789 struct ieee80211_if_sta *ifsta)
790{
John W. Linville65c107a2007-10-05 14:23:27 -0400791 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
Jiri Bencf0706e82007-05-05 11:45:53 -0700792 struct ieee80211_sta_bss *bss;
Johannes Berg5b98b1f2007-11-03 13:11:10 +0000793 int bss_privacy;
794 int wep_privacy;
795 int privacy_invoked;
Jiri Bencf0706e82007-05-05 11:45:53 -0700796
Johannes Berg5b98b1f2007-11-03 13:11:10 +0000797 if (!ifsta || (ifsta->flags & IEEE80211_STA_MIXED_CELL))
Jiri Bencf0706e82007-05-05 11:45:53 -0700798 return 0;
799
Johannes Berg8318d782008-01-24 19:38:38 +0100800 bss = ieee80211_rx_bss_get(dev, ifsta->bssid,
801 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -0400802 ifsta->ssid, ifsta->ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -0700803 if (!bss)
804 return 0;
805
Johannes Berg5b98b1f2007-11-03 13:11:10 +0000806 bss_privacy = !!(bss->capability & WLAN_CAPABILITY_PRIVACY);
807 wep_privacy = !!ieee80211_sta_wep_configured(dev);
808 privacy_invoked = !!(ifsta->flags & IEEE80211_STA_PRIVACY_INVOKED);
Jiri Bencf0706e82007-05-05 11:45:53 -0700809
810 ieee80211_rx_bss_put(dev, bss);
811
Johannes Berg5b98b1f2007-11-03 13:11:10 +0000812 if ((bss_privacy == wep_privacy) || (bss_privacy == privacy_invoked))
813 return 0;
814
815 return 1;
Jiri Bencf0706e82007-05-05 11:45:53 -0700816}
817
818
819static void ieee80211_associate(struct net_device *dev,
820 struct ieee80211_if_sta *ifsta)
821{
Joe Perches0795af52007-10-03 17:59:30 -0700822 DECLARE_MAC_BUF(mac);
823
Jiri Bencf0706e82007-05-05 11:45:53 -0700824 ifsta->assoc_tries++;
825 if (ifsta->assoc_tries > IEEE80211_ASSOC_MAX_TRIES) {
Joe Perches0795af52007-10-03 17:59:30 -0700826 printk(KERN_DEBUG "%s: association with AP %s"
Jiri Bencf0706e82007-05-05 11:45:53 -0700827 " timed out\n",
Joe Perches0795af52007-10-03 17:59:30 -0700828 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700829 ifsta->state = IEEE80211_DISABLED;
830 return;
831 }
832
833 ifsta->state = IEEE80211_ASSOCIATE;
Joe Perches0795af52007-10-03 17:59:30 -0700834 printk(KERN_DEBUG "%s: associate with AP %s\n",
835 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700836 if (ieee80211_privacy_mismatch(dev, ifsta)) {
837 printk(KERN_DEBUG "%s: mismatch in privacy configuration and "
838 "mixed-cell disabled - abort association\n", dev->name);
839 ifsta->state = IEEE80211_DISABLED;
840 return;
841 }
842
843 ieee80211_send_assoc(dev, ifsta);
844
845 mod_timer(&ifsta->timer, jiffies + IEEE80211_ASSOC_TIMEOUT);
846}
847
848
849static void ieee80211_associated(struct net_device *dev,
850 struct ieee80211_if_sta *ifsta)
851{
852 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
853 struct sta_info *sta;
854 int disassoc;
Joe Perches0795af52007-10-03 17:59:30 -0700855 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -0700856
857 /* TODO: start monitoring current AP signal quality and number of
858 * missed beacons. Scan other channels every now and then and search
859 * for better APs. */
860 /* TODO: remove expired BSSes */
861
862 ifsta->state = IEEE80211_ASSOCIATED;
863
864 sta = sta_info_get(local, ifsta->bssid);
865 if (!sta) {
Joe Perches0795af52007-10-03 17:59:30 -0700866 printk(KERN_DEBUG "%s: No STA entry for own AP %s\n",
867 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700868 disassoc = 1;
869 } else {
870 disassoc = 0;
871 if (time_after(jiffies,
872 sta->last_rx + IEEE80211_MONITORING_INTERVAL)) {
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400873 if (ifsta->flags & IEEE80211_STA_PROBEREQ_POLL) {
Jiri Bencf0706e82007-05-05 11:45:53 -0700874 printk(KERN_DEBUG "%s: No ProbeResp from "
Joe Perches0795af52007-10-03 17:59:30 -0700875 "current AP %s - assume out of "
Jiri Bencf0706e82007-05-05 11:45:53 -0700876 "range\n",
Joe Perches0795af52007-10-03 17:59:30 -0700877 dev->name, print_mac(mac, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -0700878 disassoc = 1;
Michael Wube8755e2007-07-27 15:43:23 +0200879 sta_info_free(sta);
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400880 } else
Jiri Bencf0706e82007-05-05 11:45:53 -0700881 ieee80211_send_probe_req(dev, ifsta->bssid,
882 local->scan_ssid,
883 local->scan_ssid_len);
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400884 ifsta->flags ^= IEEE80211_STA_PROBEREQ_POLL;
Jiri Bencf0706e82007-05-05 11:45:53 -0700885 } else {
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400886 ifsta->flags &= ~IEEE80211_STA_PROBEREQ_POLL;
Jiri Bencf0706e82007-05-05 11:45:53 -0700887 if (time_after(jiffies, ifsta->last_probe +
888 IEEE80211_PROBE_INTERVAL)) {
889 ifsta->last_probe = jiffies;
890 ieee80211_send_probe_req(dev, ifsta->bssid,
891 ifsta->ssid,
892 ifsta->ssid_len);
893 }
894 }
895 sta_info_put(sta);
896 }
897 if (disassoc) {
Michael Wu2d192d92007-11-10 00:15:25 -0500898 ifsta->state = IEEE80211_DISABLED;
899 ieee80211_set_associated(dev, ifsta, 0);
Jiri Bencf0706e82007-05-05 11:45:53 -0700900 } else {
901 mod_timer(&ifsta->timer, jiffies +
902 IEEE80211_MONITORING_INTERVAL);
903 }
904}
905
906
907static void ieee80211_send_probe_req(struct net_device *dev, u8 *dst,
908 u8 *ssid, size_t ssid_len)
909{
910 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
Johannes Berg8318d782008-01-24 19:38:38 +0100911 struct ieee80211_supported_band *sband;
Jiri Bencf0706e82007-05-05 11:45:53 -0700912 struct sk_buff *skb;
913 struct ieee80211_mgmt *mgmt;
914 u8 *pos, *supp_rates, *esupp_rates = NULL;
915 int i;
916
917 skb = dev_alloc_skb(local->hw.extra_tx_headroom + sizeof(*mgmt) + 200);
918 if (!skb) {
919 printk(KERN_DEBUG "%s: failed to allocate buffer for probe "
920 "request\n", dev->name);
921 return;
922 }
923 skb_reserve(skb, local->hw.extra_tx_headroom);
924
925 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
926 memset(mgmt, 0, 24);
927 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
928 IEEE80211_STYPE_PROBE_REQ);
929 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
930 if (dst) {
931 memcpy(mgmt->da, dst, ETH_ALEN);
932 memcpy(mgmt->bssid, dst, ETH_ALEN);
933 } else {
934 memset(mgmt->da, 0xff, ETH_ALEN);
935 memset(mgmt->bssid, 0xff, ETH_ALEN);
936 }
937 pos = skb_put(skb, 2 + ssid_len);
938 *pos++ = WLAN_EID_SSID;
939 *pos++ = ssid_len;
940 memcpy(pos, ssid, ssid_len);
941
942 supp_rates = skb_put(skb, 2);
943 supp_rates[0] = WLAN_EID_SUPP_RATES;
944 supp_rates[1] = 0;
Johannes Berg8318d782008-01-24 19:38:38 +0100945 sband = local->hw.wiphy->bands[local->hw.conf.channel->band];
946
947 for (i = 0; i < sband->n_bitrates; i++) {
948 struct ieee80211_rate *rate = &sband->bitrates[i];
Jiri Bencf0706e82007-05-05 11:45:53 -0700949 if (esupp_rates) {
950 pos = skb_put(skb, 1);
951 esupp_rates[1]++;
952 } else if (supp_rates[1] == 8) {
953 esupp_rates = skb_put(skb, 3);
954 esupp_rates[0] = WLAN_EID_EXT_SUPP_RATES;
955 esupp_rates[1] = 1;
956 pos = &esupp_rates[2];
957 } else {
958 pos = skb_put(skb, 1);
959 supp_rates[1]++;
960 }
Johannes Berg8318d782008-01-24 19:38:38 +0100961 *pos = rate->bitrate / 5;
Jiri Bencf0706e82007-05-05 11:45:53 -0700962 }
963
964 ieee80211_sta_tx(dev, skb, 0);
965}
966
967
968static int ieee80211_sta_wep_configured(struct net_device *dev)
969{
970 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
971 if (!sdata || !sdata->default_key ||
Johannes Berg8f20fc22007-08-28 17:01:54 -0400972 sdata->default_key->conf.alg != ALG_WEP)
Jiri Bencf0706e82007-05-05 11:45:53 -0700973 return 0;
974 return 1;
975}
976
977
978static void ieee80211_auth_completed(struct net_device *dev,
979 struct ieee80211_if_sta *ifsta)
980{
981 printk(KERN_DEBUG "%s: authenticated\n", dev->name);
Jiri Slabyd6f2da52007-08-28 17:01:54 -0400982 ifsta->flags |= IEEE80211_STA_AUTHENTICATED;
Jiri Bencf0706e82007-05-05 11:45:53 -0700983 ieee80211_associate(dev, ifsta);
984}
985
986
987static void ieee80211_auth_challenge(struct net_device *dev,
988 struct ieee80211_if_sta *ifsta,
989 struct ieee80211_mgmt *mgmt,
990 size_t len)
991{
992 u8 *pos;
993 struct ieee802_11_elems elems;
994
995 printk(KERN_DEBUG "%s: replying to auth challenge\n", dev->name);
996 pos = mgmt->u.auth.variable;
John W. Linville67a4cce2007-10-12 16:40:37 -0400997 ieee802_11_parse_elems(pos, len - (pos - (u8 *) mgmt), &elems);
Jiri Bencf0706e82007-05-05 11:45:53 -0700998 if (!elems.challenge) {
999 printk(KERN_DEBUG "%s: no challenge IE in shared key auth "
1000 "frame\n", dev->name);
1001 return;
1002 }
1003 ieee80211_send_auth(dev, ifsta, 3, elems.challenge - 2,
1004 elems.challenge_len + 2, 1);
1005}
1006
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001007static void ieee80211_send_addba_resp(struct net_device *dev, u8 *da, u16 tid,
1008 u8 dialog_token, u16 status, u16 policy,
1009 u16 buf_size, u16 timeout)
1010{
1011 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
1012 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
1013 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1014 struct sk_buff *skb;
1015 struct ieee80211_mgmt *mgmt;
1016 u16 capab;
1017
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001018 skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 +
1019 sizeof(mgmt->u.action.u.addba_resp));
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001020 if (!skb) {
1021 printk(KERN_DEBUG "%s: failed to allocate buffer "
1022 "for addba resp frame\n", dev->name);
1023 return;
1024 }
1025
1026 skb_reserve(skb, local->hw.extra_tx_headroom);
1027 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
1028 memset(mgmt, 0, 24);
1029 memcpy(mgmt->da, da, ETH_ALEN);
1030 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
Johannes Berg51fb61e2007-12-19 01:31:27 +01001031 if (sdata->vif.type == IEEE80211_IF_TYPE_AP)
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001032 memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN);
1033 else
1034 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
1035 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
1036 IEEE80211_STYPE_ACTION);
1037
1038 skb_put(skb, 1 + sizeof(mgmt->u.action.u.addba_resp));
1039 mgmt->u.action.category = WLAN_CATEGORY_BACK;
1040 mgmt->u.action.u.addba_resp.action_code = WLAN_ACTION_ADDBA_RESP;
1041 mgmt->u.action.u.addba_resp.dialog_token = dialog_token;
1042
1043 capab = (u16)(policy << 1); /* bit 1 aggregation policy */
1044 capab |= (u16)(tid << 2); /* bit 5:2 TID number */
1045 capab |= (u16)(buf_size << 6); /* bit 15:6 max size of aggregation */
1046
1047 mgmt->u.action.u.addba_resp.capab = cpu_to_le16(capab);
1048 mgmt->u.action.u.addba_resp.timeout = cpu_to_le16(timeout);
1049 mgmt->u.action.u.addba_resp.status = cpu_to_le16(status);
1050
1051 ieee80211_sta_tx(dev, skb, 0);
1052
1053 return;
1054}
1055
Ron Rindjunskyeadc8d9e2008-01-28 14:07:17 +02001056void ieee80211_send_addba_request(struct net_device *dev, const u8 *da,
1057 u16 tid, u8 dialog_token, u16 start_seq_num,
1058 u16 agg_size, u16 timeout)
1059{
1060 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1061 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
1062 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
1063 struct sk_buff *skb;
1064 struct ieee80211_mgmt *mgmt;
1065 u16 capab;
1066
1067 skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 +
1068 sizeof(mgmt->u.action.u.addba_req));
1069
1070
1071 if (!skb) {
1072 printk(KERN_ERR "%s: failed to allocate buffer "
1073 "for addba request frame\n", dev->name);
1074 return;
1075 }
1076 skb_reserve(skb, local->hw.extra_tx_headroom);
1077 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
1078 memset(mgmt, 0, 24);
1079 memcpy(mgmt->da, da, ETH_ALEN);
1080 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
1081 if (sdata->vif.type == IEEE80211_IF_TYPE_AP)
1082 memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN);
1083 else
1084 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
1085
1086 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
1087 IEEE80211_STYPE_ACTION);
1088
1089 skb_put(skb, 1 + sizeof(mgmt->u.action.u.addba_req));
1090
1091 mgmt->u.action.category = WLAN_CATEGORY_BACK;
1092 mgmt->u.action.u.addba_req.action_code = WLAN_ACTION_ADDBA_REQ;
1093
1094 mgmt->u.action.u.addba_req.dialog_token = dialog_token;
1095 capab = (u16)(1 << 1); /* bit 1 aggregation policy */
1096 capab |= (u16)(tid << 2); /* bit 5:2 TID number */
1097 capab |= (u16)(agg_size << 6); /* bit 15:6 max size of aggergation */
1098
1099 mgmt->u.action.u.addba_req.capab = cpu_to_le16(capab);
1100
1101 mgmt->u.action.u.addba_req.timeout = cpu_to_le16(timeout);
1102 mgmt->u.action.u.addba_req.start_seq_num =
1103 cpu_to_le16(start_seq_num << 4);
1104
1105 ieee80211_sta_tx(dev, skb, 0);
1106}
1107
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001108static void ieee80211_sta_process_addba_request(struct net_device *dev,
1109 struct ieee80211_mgmt *mgmt,
1110 size_t len)
1111{
1112 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001113 struct ieee80211_hw *hw = &local->hw;
1114 struct ieee80211_conf *conf = &hw->conf;
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001115 struct sta_info *sta;
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001116 struct tid_ampdu_rx *tid_agg_rx;
1117 u16 capab, tid, timeout, ba_policy, buf_size, start_seq_num, status;
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001118 u8 dialog_token;
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001119 int ret = -EOPNOTSUPP;
1120 DECLARE_MAC_BUF(mac);
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001121
1122 sta = sta_info_get(local, mgmt->sa);
1123 if (!sta)
1124 return;
1125
1126 /* extract session parameters from addba request frame */
1127 dialog_token = mgmt->u.action.u.addba_req.dialog_token;
1128 timeout = le16_to_cpu(mgmt->u.action.u.addba_req.timeout);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001129 start_seq_num =
1130 le16_to_cpu(mgmt->u.action.u.addba_req.start_seq_num) >> 4;
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001131
1132 capab = le16_to_cpu(mgmt->u.action.u.addba_req.capab);
1133 ba_policy = (capab & IEEE80211_ADDBA_PARAM_POLICY_MASK) >> 1;
1134 tid = (capab & IEEE80211_ADDBA_PARAM_TID_MASK) >> 2;
1135 buf_size = (capab & IEEE80211_ADDBA_PARAM_BUF_SIZE_MASK) >> 6;
1136
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001137 status = WLAN_STATUS_REQUEST_DECLINED;
1138
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001139 /* sanity check for incoming parameters:
1140 * check if configuration can support the BA policy
1141 * and if buffer size does not exceeds max value */
1142 if (((ba_policy != 1)
1143 && (!(conf->ht_conf.cap & IEEE80211_HT_CAP_DELAY_BA)))
1144 || (buf_size > IEEE80211_MAX_AMPDU_BUF)) {
1145 status = WLAN_STATUS_INVALID_QOS_PARAM;
1146#ifdef CONFIG_MAC80211_HT_DEBUG
1147 if (net_ratelimit())
1148 printk(KERN_DEBUG "Block Ack Req with bad params from "
1149 "%s on tid %u. policy %d, buffer size %d\n",
1150 print_mac(mac, mgmt->sa), tid, ba_policy,
1151 buf_size);
1152#endif /* CONFIG_MAC80211_HT_DEBUG */
1153 goto end_no_lock;
1154 }
1155 /* determine default buffer size */
1156 if (buf_size == 0) {
Johannes Berg8318d782008-01-24 19:38:38 +01001157 struct ieee80211_supported_band *sband;
1158
1159 sband = local->hw.wiphy->bands[conf->channel->band];
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001160 buf_size = IEEE80211_MIN_AMPDU_BUF;
Johannes Berg8318d782008-01-24 19:38:38 +01001161 buf_size = buf_size << sband->ht_info.ampdu_factor;
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001162 }
1163
1164 tid_agg_rx = &sta->ampdu_mlme.tid_rx[tid];
1165
1166 /* examine state machine */
1167 spin_lock_bh(&sta->ampdu_mlme.ampdu_rx);
1168
1169 if (tid_agg_rx->state != HT_AGG_STATE_IDLE) {
1170#ifdef CONFIG_MAC80211_HT_DEBUG
1171 if (net_ratelimit())
1172 printk(KERN_DEBUG "unexpected Block Ack Req from "
1173 "%s on tid %u\n",
1174 print_mac(mac, mgmt->sa), tid);
1175#endif /* CONFIG_MAC80211_HT_DEBUG */
1176 goto end;
1177 }
1178
1179 /* prepare reordering buffer */
1180 tid_agg_rx->reorder_buf =
1181 kmalloc(buf_size * sizeof(struct sk_buf *), GFP_ATOMIC);
Johannes Berg03147df2008-02-26 00:39:28 +01001182 if (!tid_agg_rx->reorder_buf) {
1183 if (net_ratelimit())
1184 printk(KERN_ERR "can not allocate reordering buffer "
1185 "to tid %d\n", tid);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001186 goto end;
1187 }
1188 memset(tid_agg_rx->reorder_buf, 0,
1189 buf_size * sizeof(struct sk_buf *));
1190
1191 if (local->ops->ampdu_action)
1192 ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_RX_START,
Ron Rindjunsky0df3ef42008-01-28 14:07:15 +02001193 sta->addr, tid, &start_seq_num);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001194#ifdef CONFIG_MAC80211_HT_DEBUG
1195 printk(KERN_DEBUG "Rx A-MPDU on tid %d result %d", tid, ret);
1196#endif /* CONFIG_MAC80211_HT_DEBUG */
1197
1198 if (ret) {
1199 kfree(tid_agg_rx->reorder_buf);
1200 goto end;
1201 }
1202
1203 /* change state and send addba resp */
1204 tid_agg_rx->state = HT_AGG_STATE_OPERATIONAL;
1205 tid_agg_rx->dialog_token = dialog_token;
1206 tid_agg_rx->ssn = start_seq_num;
1207 tid_agg_rx->head_seq_num = start_seq_num;
1208 tid_agg_rx->buf_size = buf_size;
1209 tid_agg_rx->timeout = timeout;
1210 tid_agg_rx->stored_mpdu_num = 0;
1211 status = WLAN_STATUS_SUCCESS;
1212end:
1213 spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx);
1214
1215end_no_lock:
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02001216 ieee80211_send_addba_resp(sta->dev, sta->addr, tid, dialog_token,
1217 status, 1, buf_size, timeout);
1218 sta_info_put(sta);
1219}
Jiri Bencf0706e82007-05-05 11:45:53 -07001220
Ron Rindjunskyeadc8d9e2008-01-28 14:07:17 +02001221static void ieee80211_sta_process_addba_resp(struct net_device *dev,
1222 struct ieee80211_mgmt *mgmt,
1223 size_t len)
1224{
1225 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1226 struct ieee80211_hw *hw = &local->hw;
1227 struct sta_info *sta;
1228 u16 capab;
1229 u16 tid;
1230 u8 *state;
1231
1232 sta = sta_info_get(local, mgmt->sa);
1233 if (!sta)
1234 return;
1235
1236 capab = le16_to_cpu(mgmt->u.action.u.addba_resp.capab);
1237 tid = (capab & IEEE80211_ADDBA_PARAM_TID_MASK) >> 2;
1238
1239 state = &sta->ampdu_mlme.tid_tx[tid].state;
1240
1241 spin_lock_bh(&sta->ampdu_mlme.ampdu_tx);
1242
1243 if (mgmt->u.action.u.addba_resp.dialog_token !=
1244 sta->ampdu_mlme.tid_tx[tid].dialog_token) {
1245 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1246#ifdef CONFIG_MAC80211_HT_DEBUG
1247 printk(KERN_DEBUG "wrong addBA response token, tid %d\n", tid);
1248#endif /* CONFIG_MAC80211_HT_DEBUG */
1249 sta_info_put(sta);
1250 return;
1251 }
1252
1253 del_timer_sync(&sta->ampdu_mlme.tid_tx[tid].addba_resp_timer);
1254#ifdef CONFIG_MAC80211_HT_DEBUG
1255 printk(KERN_DEBUG "switched off addBA timer for tid %d \n", tid);
1256#endif /* CONFIG_MAC80211_HT_DEBUG */
1257 if (le16_to_cpu(mgmt->u.action.u.addba_resp.status)
1258 == WLAN_STATUS_SUCCESS) {
1259 if (!(*state & HT_ADDBA_REQUESTED_MSK)) {
1260 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1261 printk(KERN_DEBUG "state not HT_ADDBA_REQUESTED_MSK:"
1262 "%d\n", *state);
1263 sta_info_put(sta);
1264 return;
1265 }
1266
1267 if (*state & HT_ADDBA_RECEIVED_MSK)
1268 printk(KERN_DEBUG "double addBA response\n");
1269
1270 *state |= HT_ADDBA_RECEIVED_MSK;
1271 sta->ampdu_mlme.tid_tx[tid].addba_req_num = 0;
1272
1273 if (*state == HT_AGG_STATE_OPERATIONAL) {
1274 printk(KERN_DEBUG "Aggregation on for tid %d \n", tid);
1275 ieee80211_wake_queue(hw, sta->tid_to_tx_q[tid]);
1276 }
1277
1278 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1279 printk(KERN_DEBUG "recipient accepted agg: tid %d \n", tid);
1280 } else {
1281 printk(KERN_DEBUG "recipient rejected agg: tid %d \n", tid);
1282
1283 sta->ampdu_mlme.tid_tx[tid].addba_req_num++;
1284 /* this will allow the state check in stop_BA_session */
1285 *state = HT_AGG_STATE_OPERATIONAL;
1286 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1287 ieee80211_stop_tx_ba_session(hw, sta->addr, tid,
1288 WLAN_BACK_INITIATOR);
1289 }
1290 sta_info_put(sta);
1291}
1292
1293void ieee80211_send_delba(struct net_device *dev, const u8 *da, u16 tid,
1294 u16 initiator, u16 reason_code)
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001295{
1296 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1297 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
1298 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
1299 struct sk_buff *skb;
1300 struct ieee80211_mgmt *mgmt;
1301 u16 params;
1302
1303 skb = dev_alloc_skb(sizeof(*mgmt) + local->hw.extra_tx_headroom + 1 +
1304 sizeof(mgmt->u.action.u.delba));
1305
1306 if (!skb) {
1307 printk(KERN_ERR "%s: failed to allocate buffer "
1308 "for delba frame\n", dev->name);
1309 return;
1310 }
1311
1312 skb_reserve(skb, local->hw.extra_tx_headroom);
1313 mgmt = (struct ieee80211_mgmt *) skb_put(skb, 24);
1314 memset(mgmt, 0, 24);
1315 memcpy(mgmt->da, da, ETH_ALEN);
1316 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
Johannes Berg51fb61e2007-12-19 01:31:27 +01001317 if (sdata->vif.type == IEEE80211_IF_TYPE_AP)
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001318 memcpy(mgmt->bssid, dev->dev_addr, ETH_ALEN);
1319 else
1320 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
1321 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
1322 IEEE80211_STYPE_ACTION);
1323
1324 skb_put(skb, 1 + sizeof(mgmt->u.action.u.delba));
1325
1326 mgmt->u.action.category = WLAN_CATEGORY_BACK;
1327 mgmt->u.action.u.delba.action_code = WLAN_ACTION_DELBA;
1328 params = (u16)(initiator << 11); /* bit 11 initiator */
1329 params |= (u16)(tid << 12); /* bit 15:12 TID number */
1330
1331 mgmt->u.action.u.delba.params = cpu_to_le16(params);
1332 mgmt->u.action.u.delba.reason_code = cpu_to_le16(reason_code);
1333
1334 ieee80211_sta_tx(dev, skb, 0);
1335}
1336
1337void ieee80211_sta_stop_rx_ba_session(struct net_device *dev, u8 *ra, u16 tid,
1338 u16 initiator, u16 reason)
1339{
1340 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1341 struct ieee80211_hw *hw = &local->hw;
1342 struct sta_info *sta;
Ron Rindjunskyb5807812007-12-25 17:00:35 +02001343 int ret, i;
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001344
1345 sta = sta_info_get(local, ra);
1346 if (!sta)
1347 return;
1348
1349 /* check if TID is in operational state */
1350 spin_lock_bh(&sta->ampdu_mlme.ampdu_rx);
1351 if (sta->ampdu_mlme.tid_rx[tid].state
1352 != HT_AGG_STATE_OPERATIONAL) {
1353 spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001354 sta_info_put(sta);
1355 return;
1356 }
1357 sta->ampdu_mlme.tid_rx[tid].state =
1358 HT_AGG_STATE_REQ_STOP_BA_MSK |
1359 (initiator << HT_AGG_STATE_INITIATOR_SHIFT);
1360 spin_unlock_bh(&sta->ampdu_mlme.ampdu_rx);
1361
1362 /* stop HW Rx aggregation. ampdu_action existence
1363 * already verified in session init so we add the BUG_ON */
1364 BUG_ON(!local->ops->ampdu_action);
1365
1366 ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_RX_STOP,
Ron Rindjunsky0df3ef42008-01-28 14:07:15 +02001367 ra, tid, NULL);
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001368 if (ret)
1369 printk(KERN_DEBUG "HW problem - can not stop rx "
1370 "aggergation for tid %d\n", tid);
1371
1372 /* shutdown timer has not expired */
1373 if (initiator != WLAN_BACK_TIMER)
1374 del_timer_sync(&sta->ampdu_mlme.tid_rx[tid].
1375 session_timer);
1376
1377 /* check if this is a self generated aggregation halt */
1378 if (initiator == WLAN_BACK_RECIPIENT || initiator == WLAN_BACK_TIMER)
1379 ieee80211_send_delba(dev, ra, tid, 0, reason);
1380
1381 /* free the reordering buffer */
Ron Rindjunskyb5807812007-12-25 17:00:35 +02001382 for (i = 0; i < sta->ampdu_mlme.tid_rx[tid].buf_size; i++) {
1383 if (sta->ampdu_mlme.tid_rx[tid].reorder_buf[i]) {
1384 /* release the reordered frames */
1385 dev_kfree_skb(sta->ampdu_mlme.tid_rx[tid].reorder_buf[i]);
1386 sta->ampdu_mlme.tid_rx[tid].stored_mpdu_num--;
1387 sta->ampdu_mlme.tid_rx[tid].reorder_buf[i] = NULL;
1388 }
1389 }
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001390 kfree(sta->ampdu_mlme.tid_rx[tid].reorder_buf);
1391
1392 sta->ampdu_mlme.tid_rx[tid].state = HT_AGG_STATE_IDLE;
1393 sta_info_put(sta);
1394}
1395
Ron Rindjunskyeadc8d9e2008-01-28 14:07:17 +02001396
Ron Rindjunsky688b88a2007-12-25 17:00:37 +02001397static void ieee80211_sta_process_delba(struct net_device *dev,
1398 struct ieee80211_mgmt *mgmt, size_t len)
1399{
1400 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1401 struct sta_info *sta;
1402 u16 tid, params;
1403 u16 initiator;
1404 DECLARE_MAC_BUF(mac);
1405
1406 sta = sta_info_get(local, mgmt->sa);
1407 if (!sta)
1408 return;
1409
1410 params = le16_to_cpu(mgmt->u.action.u.delba.params);
1411 tid = (params & IEEE80211_DELBA_PARAM_TID_MASK) >> 12;
1412 initiator = (params & IEEE80211_DELBA_PARAM_INITIATOR_MASK) >> 11;
1413
1414#ifdef CONFIG_MAC80211_HT_DEBUG
1415 if (net_ratelimit())
Ron Rindjunskyd92684e2008-01-28 14:07:22 +02001416 printk(KERN_DEBUG "delba from %s (%s) tid %d reason code %d\n",
1417 print_mac(mac, mgmt->sa),
1418 initiator ? "recipient" : "initiator", tid,
Ron Rindjunsky688b88a2007-12-25 17:00:37 +02001419 mgmt->u.action.u.delba.reason_code);
1420#endif /* CONFIG_MAC80211_HT_DEBUG */
1421
1422 if (initiator == WLAN_BACK_INITIATOR)
1423 ieee80211_sta_stop_rx_ba_session(dev, sta->addr, tid,
1424 WLAN_BACK_INITIATOR, 0);
Ron Rindjunskyd92684e2008-01-28 14:07:22 +02001425 else { /* WLAN_BACK_RECIPIENT */
1426 spin_lock_bh(&sta->ampdu_mlme.ampdu_tx);
1427 sta->ampdu_mlme.tid_tx[tid].state =
1428 HT_AGG_STATE_OPERATIONAL;
1429 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1430 ieee80211_stop_tx_ba_session(&local->hw, sta->addr, tid,
1431 WLAN_BACK_RECIPIENT);
1432 }
Ron Rindjunsky688b88a2007-12-25 17:00:37 +02001433 sta_info_put(sta);
1434}
1435
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001436/*
Ron Rindjunskyeadc8d9e2008-01-28 14:07:17 +02001437 * After sending add Block Ack request we activated a timer until
1438 * add Block Ack response will arrive from the recipient.
1439 * If this timer expires sta_addba_resp_timer_expired will be executed.
1440 */
1441void sta_addba_resp_timer_expired(unsigned long data)
1442{
1443 /* not an elegant detour, but there is no choice as the timer passes
1444 * only one argument, and both sta_info and TID are needed, so init
1445 * flow in sta_info_add gives the TID as data, while the timer_to_id
1446 * array gives the sta through container_of */
1447 u16 tid = *(int *)data;
1448 struct sta_info *temp_sta = container_of((void *)data,
1449 struct sta_info, timer_to_tid[tid]);
1450
1451 struct ieee80211_local *local = temp_sta->local;
1452 struct ieee80211_hw *hw = &local->hw;
1453 struct sta_info *sta;
1454 u8 *state;
1455
1456 sta = sta_info_get(local, temp_sta->addr);
1457 if (!sta)
1458 return;
1459
1460 state = &sta->ampdu_mlme.tid_tx[tid].state;
1461 /* check if the TID waits for addBA response */
1462 spin_lock_bh(&sta->ampdu_mlme.ampdu_tx);
1463 if (!(*state & HT_ADDBA_REQUESTED_MSK)) {
1464 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1465 *state = HT_AGG_STATE_IDLE;
1466 printk(KERN_DEBUG "timer expired on tid %d but we are not "
1467 "expecting addBA response there", tid);
1468 goto timer_expired_exit;
1469 }
1470
1471 printk(KERN_DEBUG "addBA response timer expired on tid %d\n", tid);
1472
1473 /* go through the state check in stop_BA_session */
1474 *state = HT_AGG_STATE_OPERATIONAL;
1475 spin_unlock_bh(&sta->ampdu_mlme.ampdu_tx);
1476 ieee80211_stop_tx_ba_session(hw, temp_sta->addr, tid,
1477 WLAN_BACK_INITIATOR);
1478
1479timer_expired_exit:
1480 sta_info_put(sta);
1481}
1482
1483/*
Ron Rindjunsky07db2182007-12-25 17:00:33 +02001484 * After receiving Block Ack Request (BAR) we activated a
1485 * timer after each frame arrives from the originator.
1486 * if this timer expires ieee80211_sta_stop_rx_ba_session will be executed.
1487 */
1488void sta_rx_agg_session_timer_expired(unsigned long data)
1489{
1490 /* not an elegant detour, but there is no choice as the timer passes
1491 * only one argument, and verious sta_info are needed here, so init
1492 * flow in sta_info_add gives the TID as data, while the timer_to_id
1493 * array gives the sta through container_of */
1494 u8 *ptid = (u8 *)data;
1495 u8 *timer_to_id = ptid - *ptid;
1496 struct sta_info *sta = container_of(timer_to_id, struct sta_info,
1497 timer_to_tid[0]);
1498
1499 printk(KERN_DEBUG "rx session timer expired on tid %d\n", (u16)*ptid);
1500 ieee80211_sta_stop_rx_ba_session(sta->dev, sta->addr, (u16)*ptid,
1501 WLAN_BACK_TIMER,
1502 WLAN_REASON_QSTA_TIMEOUT);
1503}
1504
1505
Jiri Bencf0706e82007-05-05 11:45:53 -07001506static void ieee80211_rx_mgmt_auth(struct net_device *dev,
1507 struct ieee80211_if_sta *ifsta,
1508 struct ieee80211_mgmt *mgmt,
1509 size_t len)
1510{
1511 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
1512 u16 auth_alg, auth_transaction, status_code;
Joe Perches0795af52007-10-03 17:59:30 -07001513 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07001514
1515 if (ifsta->state != IEEE80211_AUTHENTICATE &&
Johannes Berg51fb61e2007-12-19 01:31:27 +01001516 sdata->vif.type != IEEE80211_IF_TYPE_IBSS) {
Jiri Bencf0706e82007-05-05 11:45:53 -07001517 printk(KERN_DEBUG "%s: authentication frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001518 "%s, but not in authenticate state - ignored\n",
1519 dev->name, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001520 return;
1521 }
1522
1523 if (len < 24 + 6) {
1524 printk(KERN_DEBUG "%s: too short (%zd) authentication frame "
Joe Perches0795af52007-10-03 17:59:30 -07001525 "received from %s - ignored\n",
1526 dev->name, len, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001527 return;
1528 }
1529
Johannes Berg51fb61e2007-12-19 01:31:27 +01001530 if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS &&
Jiri Bencf0706e82007-05-05 11:45:53 -07001531 memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) {
1532 printk(KERN_DEBUG "%s: authentication frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001533 "unknown AP (SA=%s BSSID=%s) - "
1534 "ignored\n", dev->name, print_mac(mac, mgmt->sa),
1535 print_mac(mac, mgmt->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07001536 return;
1537 }
1538
Johannes Berg51fb61e2007-12-19 01:31:27 +01001539 if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS &&
Jiri Bencf0706e82007-05-05 11:45:53 -07001540 memcmp(ifsta->bssid, mgmt->bssid, ETH_ALEN) != 0) {
1541 printk(KERN_DEBUG "%s: authentication frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001542 "unknown BSSID (SA=%s BSSID=%s) - "
1543 "ignored\n", dev->name, print_mac(mac, mgmt->sa),
1544 print_mac(mac, mgmt->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07001545 return;
1546 }
1547
1548 auth_alg = le16_to_cpu(mgmt->u.auth.auth_alg);
1549 auth_transaction = le16_to_cpu(mgmt->u.auth.auth_transaction);
1550 status_code = le16_to_cpu(mgmt->u.auth.status_code);
1551
Joe Perches0795af52007-10-03 17:59:30 -07001552 printk(KERN_DEBUG "%s: RX authentication from %s (alg=%d "
Jiri Bencf0706e82007-05-05 11:45:53 -07001553 "transaction=%d status=%d)\n",
Joe Perches0795af52007-10-03 17:59:30 -07001554 dev->name, print_mac(mac, mgmt->sa), auth_alg,
Jiri Bencf0706e82007-05-05 11:45:53 -07001555 auth_transaction, status_code);
1556
Johannes Berg51fb61e2007-12-19 01:31:27 +01001557 if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS) {
Jiri Bencf0706e82007-05-05 11:45:53 -07001558 /* IEEE 802.11 standard does not require authentication in IBSS
1559 * networks and most implementations do not seem to use it.
1560 * However, try to reply to authentication attempts if someone
1561 * has actually implemented this.
1562 * TODO: Could implement shared key authentication. */
1563 if (auth_alg != WLAN_AUTH_OPEN || auth_transaction != 1) {
1564 printk(KERN_DEBUG "%s: unexpected IBSS authentication "
1565 "frame (alg=%d transaction=%d)\n",
1566 dev->name, auth_alg, auth_transaction);
1567 return;
1568 }
1569 ieee80211_send_auth(dev, ifsta, 2, NULL, 0, 0);
1570 }
1571
1572 if (auth_alg != ifsta->auth_alg ||
1573 auth_transaction != ifsta->auth_transaction) {
1574 printk(KERN_DEBUG "%s: unexpected authentication frame "
1575 "(alg=%d transaction=%d)\n",
1576 dev->name, auth_alg, auth_transaction);
1577 return;
1578 }
1579
1580 if (status_code != WLAN_STATUS_SUCCESS) {
1581 printk(KERN_DEBUG "%s: AP denied authentication (auth_alg=%d "
1582 "code=%d)\n", dev->name, ifsta->auth_alg, status_code);
1583 if (status_code == WLAN_STATUS_NOT_SUPPORTED_AUTH_ALG) {
1584 u8 algs[3];
1585 const int num_algs = ARRAY_SIZE(algs);
1586 int i, pos;
1587 algs[0] = algs[1] = algs[2] = 0xff;
1588 if (ifsta->auth_algs & IEEE80211_AUTH_ALG_OPEN)
1589 algs[0] = WLAN_AUTH_OPEN;
1590 if (ifsta->auth_algs & IEEE80211_AUTH_ALG_SHARED_KEY)
1591 algs[1] = WLAN_AUTH_SHARED_KEY;
1592 if (ifsta->auth_algs & IEEE80211_AUTH_ALG_LEAP)
1593 algs[2] = WLAN_AUTH_LEAP;
1594 if (ifsta->auth_alg == WLAN_AUTH_OPEN)
1595 pos = 0;
1596 else if (ifsta->auth_alg == WLAN_AUTH_SHARED_KEY)
1597 pos = 1;
1598 else
1599 pos = 2;
1600 for (i = 0; i < num_algs; i++) {
1601 pos++;
1602 if (pos >= num_algs)
1603 pos = 0;
1604 if (algs[pos] == ifsta->auth_alg ||
1605 algs[pos] == 0xff)
1606 continue;
1607 if (algs[pos] == WLAN_AUTH_SHARED_KEY &&
1608 !ieee80211_sta_wep_configured(dev))
1609 continue;
1610 ifsta->auth_alg = algs[pos];
1611 printk(KERN_DEBUG "%s: set auth_alg=%d for "
1612 "next try\n",
1613 dev->name, ifsta->auth_alg);
1614 break;
1615 }
1616 }
1617 return;
1618 }
1619
1620 switch (ifsta->auth_alg) {
1621 case WLAN_AUTH_OPEN:
1622 case WLAN_AUTH_LEAP:
1623 ieee80211_auth_completed(dev, ifsta);
1624 break;
1625 case WLAN_AUTH_SHARED_KEY:
1626 if (ifsta->auth_transaction == 4)
1627 ieee80211_auth_completed(dev, ifsta);
1628 else
1629 ieee80211_auth_challenge(dev, ifsta, mgmt, len);
1630 break;
1631 }
1632}
1633
1634
1635static void ieee80211_rx_mgmt_deauth(struct net_device *dev,
1636 struct ieee80211_if_sta *ifsta,
1637 struct ieee80211_mgmt *mgmt,
1638 size_t len)
1639{
1640 u16 reason_code;
Joe Perches0795af52007-10-03 17:59:30 -07001641 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07001642
1643 if (len < 24 + 2) {
1644 printk(KERN_DEBUG "%s: too short (%zd) deauthentication frame "
Joe Perches0795af52007-10-03 17:59:30 -07001645 "received from %s - ignored\n",
1646 dev->name, len, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001647 return;
1648 }
1649
1650 if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) {
1651 printk(KERN_DEBUG "%s: deauthentication frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001652 "unknown AP (SA=%s BSSID=%s) - "
1653 "ignored\n", dev->name, print_mac(mac, mgmt->sa),
1654 print_mac(mac, mgmt->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07001655 return;
1656 }
1657
1658 reason_code = le16_to_cpu(mgmt->u.deauth.reason_code);
1659
Joe Perches0795af52007-10-03 17:59:30 -07001660 printk(KERN_DEBUG "%s: RX deauthentication from %s"
Jiri Bencf0706e82007-05-05 11:45:53 -07001661 " (reason=%d)\n",
Joe Perches0795af52007-10-03 17:59:30 -07001662 dev->name, print_mac(mac, mgmt->sa), reason_code);
Jiri Bencf0706e82007-05-05 11:45:53 -07001663
Jiri Slabyd6f2da52007-08-28 17:01:54 -04001664 if (ifsta->flags & IEEE80211_STA_AUTHENTICATED) {
Jiri Bencf0706e82007-05-05 11:45:53 -07001665 printk(KERN_DEBUG "%s: deauthenticated\n", dev->name);
1666 }
1667
1668 if (ifsta->state == IEEE80211_AUTHENTICATE ||
1669 ifsta->state == IEEE80211_ASSOCIATE ||
1670 ifsta->state == IEEE80211_ASSOCIATED) {
1671 ifsta->state = IEEE80211_AUTHENTICATE;
1672 mod_timer(&ifsta->timer, jiffies +
1673 IEEE80211_RETRY_AUTH_INTERVAL);
1674 }
1675
1676 ieee80211_set_disassoc(dev, ifsta, 1);
Jiri Slabyd6f2da52007-08-28 17:01:54 -04001677 ifsta->flags &= ~IEEE80211_STA_AUTHENTICATED;
Jiri Bencf0706e82007-05-05 11:45:53 -07001678}
1679
1680
1681static void ieee80211_rx_mgmt_disassoc(struct net_device *dev,
1682 struct ieee80211_if_sta *ifsta,
1683 struct ieee80211_mgmt *mgmt,
1684 size_t len)
1685{
1686 u16 reason_code;
Joe Perches0795af52007-10-03 17:59:30 -07001687 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07001688
1689 if (len < 24 + 2) {
1690 printk(KERN_DEBUG "%s: too short (%zd) disassociation frame "
Joe Perches0795af52007-10-03 17:59:30 -07001691 "received from %s - ignored\n",
1692 dev->name, len, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001693 return;
1694 }
1695
1696 if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) {
1697 printk(KERN_DEBUG "%s: disassociation frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001698 "unknown AP (SA=%s BSSID=%s) - "
1699 "ignored\n", dev->name, print_mac(mac, mgmt->sa),
1700 print_mac(mac, mgmt->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07001701 return;
1702 }
1703
1704 reason_code = le16_to_cpu(mgmt->u.disassoc.reason_code);
1705
Joe Perches0795af52007-10-03 17:59:30 -07001706 printk(KERN_DEBUG "%s: RX disassociation from %s"
Jiri Bencf0706e82007-05-05 11:45:53 -07001707 " (reason=%d)\n",
Joe Perches0795af52007-10-03 17:59:30 -07001708 dev->name, print_mac(mac, mgmt->sa), reason_code);
Jiri Bencf0706e82007-05-05 11:45:53 -07001709
Jiri Slabyd6f2da52007-08-28 17:01:54 -04001710 if (ifsta->flags & IEEE80211_STA_ASSOCIATED)
Jiri Bencf0706e82007-05-05 11:45:53 -07001711 printk(KERN_DEBUG "%s: disassociated\n", dev->name);
1712
1713 if (ifsta->state == IEEE80211_ASSOCIATED) {
1714 ifsta->state = IEEE80211_ASSOCIATE;
1715 mod_timer(&ifsta->timer, jiffies +
1716 IEEE80211_RETRY_AUTH_INTERVAL);
1717 }
1718
1719 ieee80211_set_disassoc(dev, ifsta, 0);
1720}
1721
1722
Johannes Berg471b3ef2007-12-28 14:32:58 +01001723static void ieee80211_rx_mgmt_assoc_resp(struct ieee80211_sub_if_data *sdata,
Jiri Bencf0706e82007-05-05 11:45:53 -07001724 struct ieee80211_if_sta *ifsta,
1725 struct ieee80211_mgmt *mgmt,
1726 size_t len,
1727 int reassoc)
1728{
Johannes Berg471b3ef2007-12-28 14:32:58 +01001729 struct ieee80211_local *local = sdata->local;
1730 struct net_device *dev = sdata->dev;
Johannes Berg8318d782008-01-24 19:38:38 +01001731 struct ieee80211_supported_band *sband;
Jiri Bencf0706e82007-05-05 11:45:53 -07001732 struct sta_info *sta;
Johannes Berg8318d782008-01-24 19:38:38 +01001733 u64 rates, basic_rates;
Jiri Bencf0706e82007-05-05 11:45:53 -07001734 u16 capab_info, status_code, aid;
1735 struct ieee802_11_elems elems;
Johannes Berg471b3ef2007-12-28 14:32:58 +01001736 struct ieee80211_bss_conf *bss_conf = &sdata->bss_conf;
Jiri Bencf0706e82007-05-05 11:45:53 -07001737 u8 *pos;
1738 int i, j;
Joe Perches0795af52007-10-03 17:59:30 -07001739 DECLARE_MAC_BUF(mac);
Johannes Berg8318d782008-01-24 19:38:38 +01001740 bool have_higher_than_11mbit = false;
Jiri Bencf0706e82007-05-05 11:45:53 -07001741
1742 /* AssocResp and ReassocResp have identical structure, so process both
1743 * of them in this function. */
1744
1745 if (ifsta->state != IEEE80211_ASSOCIATE) {
1746 printk(KERN_DEBUG "%s: association frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001747 "%s, but not in associate state - ignored\n",
1748 dev->name, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001749 return;
1750 }
1751
1752 if (len < 24 + 6) {
1753 printk(KERN_DEBUG "%s: too short (%zd) association frame "
Joe Perches0795af52007-10-03 17:59:30 -07001754 "received from %s - ignored\n",
1755 dev->name, len, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07001756 return;
1757 }
1758
1759 if (memcmp(ifsta->bssid, mgmt->sa, ETH_ALEN) != 0) {
1760 printk(KERN_DEBUG "%s: association frame received from "
Joe Perches0795af52007-10-03 17:59:30 -07001761 "unknown AP (SA=%s BSSID=%s) - "
1762 "ignored\n", dev->name, print_mac(mac, mgmt->sa),
1763 print_mac(mac, mgmt->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07001764 return;
1765 }
1766
1767 capab_info = le16_to_cpu(mgmt->u.assoc_resp.capab_info);
1768 status_code = le16_to_cpu(mgmt->u.assoc_resp.status_code);
1769 aid = le16_to_cpu(mgmt->u.assoc_resp.aid);
Jiri Bencf0706e82007-05-05 11:45:53 -07001770
Joe Perches0795af52007-10-03 17:59:30 -07001771 printk(KERN_DEBUG "%s: RX %sssocResp from %s (capab=0x%x "
Jiri Bencf0706e82007-05-05 11:45:53 -07001772 "status=%d aid=%d)\n",
Joe Perches0795af52007-10-03 17:59:30 -07001773 dev->name, reassoc ? "Rea" : "A", print_mac(mac, mgmt->sa),
Johannes Bergddd68582007-10-22 14:51:37 +02001774 capab_info, status_code, (u16)(aid & ~(BIT(15) | BIT(14))));
Jiri Bencf0706e82007-05-05 11:45:53 -07001775
1776 if (status_code != WLAN_STATUS_SUCCESS) {
1777 printk(KERN_DEBUG "%s: AP denied association (code=%d)\n",
1778 dev->name, status_code);
Daniel Drake8a69aa92007-07-27 15:43:23 +02001779 /* if this was a reassociation, ensure we try a "full"
1780 * association next time. This works around some broken APs
1781 * which do not correctly reject reassociation requests. */
Jiri Slabyd6f2da52007-08-28 17:01:54 -04001782 ifsta->flags &= ~IEEE80211_STA_PREV_BSSID_SET;
Jiri Bencf0706e82007-05-05 11:45:53 -07001783 return;
1784 }
1785
Johannes Berg1dd84aa2007-10-10 12:03:41 +02001786 if ((aid & (BIT(15) | BIT(14))) != (BIT(15) | BIT(14)))
1787 printk(KERN_DEBUG "%s: invalid aid value %d; bits 15:14 not "
1788 "set\n", dev->name, aid);
1789 aid &= ~(BIT(15) | BIT(14));
1790
Jiri Bencf0706e82007-05-05 11:45:53 -07001791 pos = mgmt->u.assoc_resp.variable;
John W. Linville67a4cce2007-10-12 16:40:37 -04001792 ieee802_11_parse_elems(pos, len - (pos - (u8 *) mgmt), &elems);
Jiri Bencf0706e82007-05-05 11:45:53 -07001793
1794 if (!elems.supp_rates) {
1795 printk(KERN_DEBUG "%s: no SuppRates element in AssocResp\n",
1796 dev->name);
1797 return;
1798 }
1799
1800 printk(KERN_DEBUG "%s: associated\n", dev->name);
1801 ifsta->aid = aid;
1802 ifsta->ap_capab = capab_info;
1803
1804 kfree(ifsta->assocresp_ies);
1805 ifsta->assocresp_ies_len = len - (pos - (u8 *) mgmt);
Michael Wu0ec0b7a2007-07-27 15:43:24 +02001806 ifsta->assocresp_ies = kmalloc(ifsta->assocresp_ies_len, GFP_KERNEL);
Jiri Bencf0706e82007-05-05 11:45:53 -07001807 if (ifsta->assocresp_ies)
1808 memcpy(ifsta->assocresp_ies, pos, ifsta->assocresp_ies_len);
1809
Jiri Bencf0706e82007-05-05 11:45:53 -07001810 /* Add STA entry for the AP */
1811 sta = sta_info_get(local, ifsta->bssid);
1812 if (!sta) {
1813 struct ieee80211_sta_bss *bss;
Michael Wu0ec0b7a2007-07-27 15:43:24 +02001814 sta = sta_info_add(local, dev, ifsta->bssid, GFP_KERNEL);
Jiri Bencf0706e82007-05-05 11:45:53 -07001815 if (!sta) {
1816 printk(KERN_DEBUG "%s: failed to add STA entry for the"
1817 " AP\n", dev->name);
1818 return;
1819 }
John W. Linville65c107a2007-10-05 14:23:27 -04001820 bss = ieee80211_rx_bss_get(dev, ifsta->bssid,
Johannes Berg8318d782008-01-24 19:38:38 +01001821 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04001822 ifsta->ssid, ifsta->ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07001823 if (bss) {
1824 sta->last_rssi = bss->rssi;
1825 sta->last_signal = bss->signal;
1826 sta->last_noise = bss->noise;
1827 ieee80211_rx_bss_put(dev, bss);
1828 }
1829 }
1830
1831 sta->dev = dev;
Johannes Berg238814f2008-01-28 17:19:37 +01001832 sta->flags |= WLAN_STA_AUTH | WLAN_STA_ASSOC | WLAN_STA_ASSOC_AP |
1833 WLAN_STA_AUTHORIZED;
Jiri Bencf0706e82007-05-05 11:45:53 -07001834
1835 rates = 0;
Johannes Berg8318d782008-01-24 19:38:38 +01001836 basic_rates = 0;
1837 sband = local->hw.wiphy->bands[local->hw.conf.channel->band];
1838
Jiri Bencf0706e82007-05-05 11:45:53 -07001839 for (i = 0; i < elems.supp_rates_len; i++) {
1840 int rate = (elems.supp_rates[i] & 0x7f) * 5;
Johannes Berg8318d782008-01-24 19:38:38 +01001841
1842 if (rate > 110)
1843 have_higher_than_11mbit = true;
1844
1845 for (j = 0; j < sband->n_bitrates; j++) {
1846 if (sband->bitrates[j].bitrate == rate)
Jiri Bencf0706e82007-05-05 11:45:53 -07001847 rates |= BIT(j);
Johannes Berg8318d782008-01-24 19:38:38 +01001848 if (elems.supp_rates[i] & 0x80)
1849 basic_rates |= BIT(j);
1850 }
Jiri Bencf0706e82007-05-05 11:45:53 -07001851 }
Johannes Berg8318d782008-01-24 19:38:38 +01001852
Jiri Bencf0706e82007-05-05 11:45:53 -07001853 for (i = 0; i < elems.ext_supp_rates_len; i++) {
1854 int rate = (elems.ext_supp_rates[i] & 0x7f) * 5;
Johannes Berg8318d782008-01-24 19:38:38 +01001855
1856 if (rate > 110)
1857 have_higher_than_11mbit = true;
1858
1859 for (j = 0; j < sband->n_bitrates; j++) {
1860 if (sband->bitrates[j].bitrate == rate)
Jiri Bencf0706e82007-05-05 11:45:53 -07001861 rates |= BIT(j);
Johannes Berg8318d782008-01-24 19:38:38 +01001862 if (elems.ext_supp_rates[i] & 0x80)
1863 basic_rates |= BIT(j);
1864 }
Jiri Bencf0706e82007-05-05 11:45:53 -07001865 }
Johannes Berg8318d782008-01-24 19:38:38 +01001866
1867 sta->supp_rates[local->hw.conf.channel->band] = rates;
1868 sdata->basic_rates = basic_rates;
1869
1870 /* cf. IEEE 802.11 9.2.12 */
1871 if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ &&
1872 have_higher_than_11mbit)
1873 sdata->flags |= IEEE80211_SDATA_OPERATING_GMODE;
1874 else
1875 sdata->flags &= ~IEEE80211_SDATA_OPERATING_GMODE;
Jiri Bencf0706e82007-05-05 11:45:53 -07001876
Ron Rindjunskyd3c990f2007-11-26 16:14:34 +02001877 if (elems.ht_cap_elem && elems.ht_info_elem && elems.wmm_param &&
1878 local->ops->conf_ht) {
1879 struct ieee80211_ht_bss_info bss_info;
1880
1881 ieee80211_ht_cap_ie_to_ht_info(
1882 (struct ieee80211_ht_cap *)
1883 elems.ht_cap_elem, &sta->ht_info);
1884 ieee80211_ht_addt_info_ie_to_ht_bss_info(
1885 (struct ieee80211_ht_addt_info *)
1886 elems.ht_info_elem, &bss_info);
1887 ieee80211_hw_config_ht(local, 1, &sta->ht_info, &bss_info);
1888 }
1889
Jiri Bencf0706e82007-05-05 11:45:53 -07001890 rate_control_rate_init(sta, local);
1891
Jiri Slabyd6f2da52007-08-28 17:01:54 -04001892 if (elems.wmm_param && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) {
Jiri Bencf0706e82007-05-05 11:45:53 -07001893 sta->flags |= WLAN_STA_WME;
1894 ieee80211_sta_wmm_params(dev, ifsta, elems.wmm_param,
1895 elems.wmm_param_len);
1896 }
1897
Johannes Berg8318d782008-01-24 19:38:38 +01001898 /* set AID, ieee80211_set_associated() will tell the driver */
1899 bss_conf->aid = aid;
1900 ieee80211_set_associated(dev, ifsta, 1);
Jiri Bencf0706e82007-05-05 11:45:53 -07001901
1902 sta_info_put(sta);
1903
1904 ieee80211_associated(dev, ifsta);
1905}
1906
1907
1908/* Caller must hold local->sta_bss_lock */
1909static void __ieee80211_rx_bss_hash_add(struct net_device *dev,
1910 struct ieee80211_sta_bss *bss)
1911{
1912 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1913 bss->hnext = local->sta_bss_hash[STA_HASH(bss->bssid)];
1914 local->sta_bss_hash[STA_HASH(bss->bssid)] = bss;
1915}
1916
1917
1918/* Caller must hold local->sta_bss_lock */
1919static void __ieee80211_rx_bss_hash_del(struct net_device *dev,
1920 struct ieee80211_sta_bss *bss)
1921{
1922 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1923 struct ieee80211_sta_bss *b, *prev = NULL;
1924 b = local->sta_bss_hash[STA_HASH(bss->bssid)];
1925 while (b) {
1926 if (b == bss) {
1927 if (!prev)
1928 local->sta_bss_hash[STA_HASH(bss->bssid)] =
1929 bss->hnext;
1930 else
1931 prev->hnext = bss->hnext;
1932 break;
1933 }
1934 prev = b;
1935 b = b->hnext;
1936 }
1937}
1938
1939
1940static struct ieee80211_sta_bss *
Johannes Berg8318d782008-01-24 19:38:38 +01001941ieee80211_rx_bss_add(struct net_device *dev, u8 *bssid, int freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04001942 u8 *ssid, u8 ssid_len)
Jiri Bencf0706e82007-05-05 11:45:53 -07001943{
1944 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1945 struct ieee80211_sta_bss *bss;
1946
Yoann Padioleaudd00cc42007-07-19 01:49:03 -07001947 bss = kzalloc(sizeof(*bss), GFP_ATOMIC);
Jiri Bencf0706e82007-05-05 11:45:53 -07001948 if (!bss)
1949 return NULL;
Jiri Bencf0706e82007-05-05 11:45:53 -07001950 atomic_inc(&bss->users);
1951 atomic_inc(&bss->users);
1952 memcpy(bss->bssid, bssid, ETH_ALEN);
Johannes Berg8318d782008-01-24 19:38:38 +01001953 bss->freq = freq;
John W. Linvillecffdd302007-10-05 14:23:27 -04001954 if (ssid && ssid_len <= IEEE80211_MAX_SSID_LEN) {
1955 memcpy(bss->ssid, ssid, ssid_len);
1956 bss->ssid_len = ssid_len;
1957 }
Jiri Bencf0706e82007-05-05 11:45:53 -07001958
1959 spin_lock_bh(&local->sta_bss_lock);
1960 /* TODO: order by RSSI? */
1961 list_add_tail(&bss->list, &local->sta_bss_list);
1962 __ieee80211_rx_bss_hash_add(dev, bss);
1963 spin_unlock_bh(&local->sta_bss_lock);
1964 return bss;
1965}
1966
1967
1968static struct ieee80211_sta_bss *
Johannes Berg8318d782008-01-24 19:38:38 +01001969ieee80211_rx_bss_get(struct net_device *dev, u8 *bssid, int freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04001970 u8 *ssid, u8 ssid_len)
Jiri Bencf0706e82007-05-05 11:45:53 -07001971{
1972 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1973 struct ieee80211_sta_bss *bss;
1974
1975 spin_lock_bh(&local->sta_bss_lock);
1976 bss = local->sta_bss_hash[STA_HASH(bssid)];
1977 while (bss) {
John W. Linvillecffdd302007-10-05 14:23:27 -04001978 if (!memcmp(bss->bssid, bssid, ETH_ALEN) &&
Johannes Berg8318d782008-01-24 19:38:38 +01001979 bss->freq == freq &&
John W. Linvillecffdd302007-10-05 14:23:27 -04001980 bss->ssid_len == ssid_len &&
1981 (ssid_len == 0 || !memcmp(bss->ssid, ssid, ssid_len))) {
Jiri Bencf0706e82007-05-05 11:45:53 -07001982 atomic_inc(&bss->users);
1983 break;
1984 }
1985 bss = bss->hnext;
1986 }
1987 spin_unlock_bh(&local->sta_bss_lock);
1988 return bss;
1989}
1990
1991
1992static void ieee80211_rx_bss_free(struct ieee80211_sta_bss *bss)
1993{
1994 kfree(bss->wpa_ie);
1995 kfree(bss->rsn_ie);
1996 kfree(bss->wmm_ie);
Ron Rindjunskyc7153502007-11-26 16:14:31 +02001997 kfree(bss->ht_ie);
Jiri Bencf0706e82007-05-05 11:45:53 -07001998 kfree(bss);
1999}
2000
2001
2002static void ieee80211_rx_bss_put(struct net_device *dev,
2003 struct ieee80211_sta_bss *bss)
2004{
2005 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2006 if (!atomic_dec_and_test(&bss->users))
2007 return;
2008
2009 spin_lock_bh(&local->sta_bss_lock);
2010 __ieee80211_rx_bss_hash_del(dev, bss);
2011 list_del(&bss->list);
2012 spin_unlock_bh(&local->sta_bss_lock);
2013 ieee80211_rx_bss_free(bss);
2014}
2015
2016
2017void ieee80211_rx_bss_list_init(struct net_device *dev)
2018{
2019 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2020 spin_lock_init(&local->sta_bss_lock);
2021 INIT_LIST_HEAD(&local->sta_bss_list);
2022}
2023
2024
2025void ieee80211_rx_bss_list_deinit(struct net_device *dev)
2026{
2027 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2028 struct ieee80211_sta_bss *bss, *tmp;
2029
2030 list_for_each_entry_safe(bss, tmp, &local->sta_bss_list, list)
2031 ieee80211_rx_bss_put(dev, bss);
2032}
2033
2034
2035static void ieee80211_rx_bss_info(struct net_device *dev,
2036 struct ieee80211_mgmt *mgmt,
2037 size_t len,
2038 struct ieee80211_rx_status *rx_status,
2039 int beacon)
2040{
2041 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2042 struct ieee802_11_elems elems;
2043 size_t baselen;
Johannes Berg8318d782008-01-24 19:38:38 +01002044 int freq, clen;
Jiri Bencf0706e82007-05-05 11:45:53 -07002045 struct ieee80211_sta_bss *bss;
2046 struct sta_info *sta;
2047 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2048 u64 timestamp;
Joe Perches0795af52007-10-03 17:59:30 -07002049 DECLARE_MAC_BUF(mac);
2050 DECLARE_MAC_BUF(mac2);
Jiri Bencf0706e82007-05-05 11:45:53 -07002051
2052 if (!beacon && memcmp(mgmt->da, dev->dev_addr, ETH_ALEN))
2053 return; /* ignore ProbeResp to foreign address */
2054
2055#if 0
Joe Perches0795af52007-10-03 17:59:30 -07002056 printk(KERN_DEBUG "%s: RX %s from %s to %s\n",
Jiri Bencf0706e82007-05-05 11:45:53 -07002057 dev->name, beacon ? "Beacon" : "Probe Response",
Joe Perches0795af52007-10-03 17:59:30 -07002058 print_mac(mac, mgmt->sa), print_mac(mac2, mgmt->da));
Jiri Bencf0706e82007-05-05 11:45:53 -07002059#endif
2060
2061 baselen = (u8 *) mgmt->u.beacon.variable - (u8 *) mgmt;
2062 if (baselen > len)
2063 return;
2064
2065 timestamp = le64_to_cpu(mgmt->u.beacon.timestamp);
2066
Johannes Berg51fb61e2007-12-19 01:31:27 +01002067 if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && beacon &&
Jiri Bencf0706e82007-05-05 11:45:53 -07002068 memcmp(mgmt->bssid, sdata->u.sta.bssid, ETH_ALEN) == 0) {
2069#ifdef CONFIG_MAC80211_IBSS_DEBUG
2070 static unsigned long last_tsf_debug = 0;
2071 u64 tsf;
2072 if (local->ops->get_tsf)
2073 tsf = local->ops->get_tsf(local_to_hw(local));
2074 else
2075 tsf = -1LLU;
2076 if (time_after(jiffies, last_tsf_debug + 5 * HZ)) {
Joe Perches0795af52007-10-03 17:59:30 -07002077 printk(KERN_DEBUG "RX beacon SA=%s BSSID="
2078 "%s TSF=0x%llx BCN=0x%llx diff=%lld "
Jiri Bencf0706e82007-05-05 11:45:53 -07002079 "@%lu\n",
Joe Perches0795af52007-10-03 17:59:30 -07002080 print_mac(mac, mgmt->sa), print_mac(mac2, mgmt->bssid),
Jiri Bencf0706e82007-05-05 11:45:53 -07002081 (unsigned long long)tsf,
2082 (unsigned long long)timestamp,
2083 (unsigned long long)(tsf - timestamp),
2084 jiffies);
2085 last_tsf_debug = jiffies;
2086 }
2087#endif /* CONFIG_MAC80211_IBSS_DEBUG */
2088 }
2089
John W. Linville67a4cce2007-10-12 16:40:37 -04002090 ieee802_11_parse_elems(mgmt->u.beacon.variable, len - baselen, &elems);
Jiri Bencf0706e82007-05-05 11:45:53 -07002091
Johannes Berg51fb61e2007-12-19 01:31:27 +01002092 if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS && elems.supp_rates &&
Jiri Bencf0706e82007-05-05 11:45:53 -07002093 memcmp(mgmt->bssid, sdata->u.sta.bssid, ETH_ALEN) == 0 &&
2094 (sta = sta_info_get(local, mgmt->sa))) {
Johannes Berg8318d782008-01-24 19:38:38 +01002095 struct ieee80211_supported_band *sband;
2096 struct ieee80211_rate *bitrates;
Jiri Bencf0706e82007-05-05 11:45:53 -07002097 size_t num_rates;
Johannes Berg8318d782008-01-24 19:38:38 +01002098 u64 supp_rates, prev_rates;
Jiri Bencf0706e82007-05-05 11:45:53 -07002099 int i, j;
2100
Johannes Berg8318d782008-01-24 19:38:38 +01002101 sband = local->hw.wiphy->bands[rx_status->band];
Zhu Yiece8edd2007-11-22 10:53:21 +08002102
Johannes Berg8318d782008-01-24 19:38:38 +01002103 if (!sband) {
2104 WARN_ON(1);
2105 sband = local->hw.wiphy->bands[
2106 local->hw.conf.channel->band];
Zhu Yiece8edd2007-11-22 10:53:21 +08002107 }
Johannes Berg8318d782008-01-24 19:38:38 +01002108
2109 bitrates = sband->bitrates;
2110 num_rates = sband->n_bitrates;
Jiri Bencf0706e82007-05-05 11:45:53 -07002111
2112 supp_rates = 0;
2113 for (i = 0; i < elems.supp_rates_len +
2114 elems.ext_supp_rates_len; i++) {
2115 u8 rate = 0;
2116 int own_rate;
2117 if (i < elems.supp_rates_len)
2118 rate = elems.supp_rates[i];
2119 else if (elems.ext_supp_rates)
2120 rate = elems.ext_supp_rates
2121 [i - elems.supp_rates_len];
2122 own_rate = 5 * (rate & 0x7f);
Jiri Bencf0706e82007-05-05 11:45:53 -07002123 for (j = 0; j < num_rates; j++)
Johannes Berg8318d782008-01-24 19:38:38 +01002124 if (bitrates[j].bitrate == own_rate)
Jiri Bencf0706e82007-05-05 11:45:53 -07002125 supp_rates |= BIT(j);
2126 }
2127
Johannes Berg8318d782008-01-24 19:38:38 +01002128 prev_rates = sta->supp_rates[rx_status->band];
2129 sta->supp_rates[rx_status->band] &= supp_rates;
2130 if (sta->supp_rates[rx_status->band] == 0) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002131 /* No matching rates - this should not really happen.
2132 * Make sure that at least one rate is marked
2133 * supported to avoid issues with TX rate ctrl. */
Johannes Berg8318d782008-01-24 19:38:38 +01002134 sta->supp_rates[rx_status->band] =
2135 sdata->u.sta.supp_rates_bits[rx_status->band];
Jiri Bencf0706e82007-05-05 11:45:53 -07002136 }
Johannes Berg8318d782008-01-24 19:38:38 +01002137 if (sta->supp_rates[rx_status->band] != prev_rates) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002138 printk(KERN_DEBUG "%s: updated supp_rates set for "
Johannes Berg8318d782008-01-24 19:38:38 +01002139 "%s based on beacon info (0x%llx & 0x%llx -> "
2140 "0x%llx)\n",
2141 dev->name, print_mac(mac, sta->addr),
2142 (unsigned long long) prev_rates,
2143 (unsigned long long) supp_rates,
2144 (unsigned long long) sta->supp_rates[rx_status->band]);
Jiri Bencf0706e82007-05-05 11:45:53 -07002145 }
2146 sta_info_put(sta);
2147 }
2148
2149 if (!elems.ssid)
2150 return;
2151
2152 if (elems.ds_params && elems.ds_params_len == 1)
Johannes Berg8318d782008-01-24 19:38:38 +01002153 freq = ieee80211_channel_to_frequency(elems.ds_params[0]);
Jiri Bencf0706e82007-05-05 11:45:53 -07002154 else
Johannes Berg8318d782008-01-24 19:38:38 +01002155 freq = rx_status->freq;
Jiri Bencf0706e82007-05-05 11:45:53 -07002156
Johannes Berg8318d782008-01-24 19:38:38 +01002157 bss = ieee80211_rx_bss_get(dev, mgmt->bssid, freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04002158 elems.ssid, elems.ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07002159 if (!bss) {
Johannes Berg8318d782008-01-24 19:38:38 +01002160 bss = ieee80211_rx_bss_add(dev, mgmt->bssid, freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04002161 elems.ssid, elems.ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07002162 if (!bss)
2163 return;
2164 } else {
2165#if 0
2166 /* TODO: order by RSSI? */
2167 spin_lock_bh(&local->sta_bss_lock);
2168 list_move_tail(&bss->list, &local->sta_bss_list);
2169 spin_unlock_bh(&local->sta_bss_lock);
2170#endif
2171 }
2172
Johannes Berg8318d782008-01-24 19:38:38 +01002173 bss->band = rx_status->band;
2174
Jiri Bencf0706e82007-05-05 11:45:53 -07002175 if (bss->probe_resp && beacon) {
2176 /* Do not allow beacon to override data from Probe Response. */
2177 ieee80211_rx_bss_put(dev, bss);
2178 return;
2179 }
2180
Daniel Drake56282212007-07-10 19:32:10 +02002181 /* save the ERP value so that it is available at association time */
2182 if (elems.erp_info && elems.erp_info_len >= 1) {
2183 bss->erp_value = elems.erp_info[0];
2184 bss->has_erp_value = 1;
2185 }
2186
Jiri Bencf0706e82007-05-05 11:45:53 -07002187 bss->beacon_int = le16_to_cpu(mgmt->u.beacon.beacon_int);
2188 bss->capability = le16_to_cpu(mgmt->u.beacon.capab_info);
Jiri Bencf0706e82007-05-05 11:45:53 -07002189
2190 bss->supp_rates_len = 0;
2191 if (elems.supp_rates) {
2192 clen = IEEE80211_MAX_SUPP_RATES - bss->supp_rates_len;
2193 if (clen > elems.supp_rates_len)
2194 clen = elems.supp_rates_len;
2195 memcpy(&bss->supp_rates[bss->supp_rates_len], elems.supp_rates,
2196 clen);
2197 bss->supp_rates_len += clen;
2198 }
2199 if (elems.ext_supp_rates) {
2200 clen = IEEE80211_MAX_SUPP_RATES - bss->supp_rates_len;
2201 if (clen > elems.ext_supp_rates_len)
2202 clen = elems.ext_supp_rates_len;
2203 memcpy(&bss->supp_rates[bss->supp_rates_len],
2204 elems.ext_supp_rates, clen);
2205 bss->supp_rates_len += clen;
2206 }
2207
2208 if (elems.wpa &&
2209 (!bss->wpa_ie || bss->wpa_ie_len != elems.wpa_len ||
2210 memcmp(bss->wpa_ie, elems.wpa, elems.wpa_len))) {
2211 kfree(bss->wpa_ie);
2212 bss->wpa_ie = kmalloc(elems.wpa_len + 2, GFP_ATOMIC);
2213 if (bss->wpa_ie) {
2214 memcpy(bss->wpa_ie, elems.wpa - 2, elems.wpa_len + 2);
2215 bss->wpa_ie_len = elems.wpa_len + 2;
2216 } else
2217 bss->wpa_ie_len = 0;
2218 } else if (!elems.wpa && bss->wpa_ie) {
2219 kfree(bss->wpa_ie);
2220 bss->wpa_ie = NULL;
2221 bss->wpa_ie_len = 0;
2222 }
2223
2224 if (elems.rsn &&
2225 (!bss->rsn_ie || bss->rsn_ie_len != elems.rsn_len ||
2226 memcmp(bss->rsn_ie, elems.rsn, elems.rsn_len))) {
2227 kfree(bss->rsn_ie);
2228 bss->rsn_ie = kmalloc(elems.rsn_len + 2, GFP_ATOMIC);
2229 if (bss->rsn_ie) {
2230 memcpy(bss->rsn_ie, elems.rsn - 2, elems.rsn_len + 2);
2231 bss->rsn_ie_len = elems.rsn_len + 2;
2232 } else
2233 bss->rsn_ie_len = 0;
2234 } else if (!elems.rsn && bss->rsn_ie) {
2235 kfree(bss->rsn_ie);
2236 bss->rsn_ie = NULL;
2237 bss->rsn_ie_len = 0;
2238 }
2239
2240 if (elems.wmm_param &&
2241 (!bss->wmm_ie || bss->wmm_ie_len != elems.wmm_param_len ||
2242 memcmp(bss->wmm_ie, elems.wmm_param, elems.wmm_param_len))) {
2243 kfree(bss->wmm_ie);
2244 bss->wmm_ie = kmalloc(elems.wmm_param_len + 2, GFP_ATOMIC);
2245 if (bss->wmm_ie) {
2246 memcpy(bss->wmm_ie, elems.wmm_param - 2,
2247 elems.wmm_param_len + 2);
2248 bss->wmm_ie_len = elems.wmm_param_len + 2;
2249 } else
2250 bss->wmm_ie_len = 0;
2251 } else if (!elems.wmm_param && bss->wmm_ie) {
2252 kfree(bss->wmm_ie);
2253 bss->wmm_ie = NULL;
2254 bss->wmm_ie_len = 0;
2255 }
Ron Rindjunskyc7153502007-11-26 16:14:31 +02002256 if (elems.ht_cap_elem &&
2257 (!bss->ht_ie || bss->ht_ie_len != elems.ht_cap_elem_len ||
2258 memcmp(bss->ht_ie, elems.ht_cap_elem, elems.ht_cap_elem_len))) {
2259 kfree(bss->ht_ie);
2260 bss->ht_ie = kmalloc(elems.ht_cap_elem_len + 2, GFP_ATOMIC);
2261 if (bss->ht_ie) {
2262 memcpy(bss->ht_ie, elems.ht_cap_elem - 2,
2263 elems.ht_cap_elem_len + 2);
2264 bss->ht_ie_len = elems.ht_cap_elem_len + 2;
2265 } else
2266 bss->ht_ie_len = 0;
2267 } else if (!elems.ht_cap_elem && bss->ht_ie) {
2268 kfree(bss->ht_ie);
2269 bss->ht_ie = NULL;
2270 bss->ht_ie_len = 0;
2271 }
Jiri Bencf0706e82007-05-05 11:45:53 -07002272
Jiri Bencf0706e82007-05-05 11:45:53 -07002273 bss->timestamp = timestamp;
2274 bss->last_update = jiffies;
2275 bss->rssi = rx_status->ssi;
2276 bss->signal = rx_status->signal;
2277 bss->noise = rx_status->noise;
2278 if (!beacon)
2279 bss->probe_resp++;
2280 ieee80211_rx_bss_put(dev, bss);
2281}
2282
2283
2284static void ieee80211_rx_mgmt_probe_resp(struct net_device *dev,
2285 struct ieee80211_mgmt *mgmt,
2286 size_t len,
2287 struct ieee80211_rx_status *rx_status)
2288{
2289 ieee80211_rx_bss_info(dev, mgmt, len, rx_status, 0);
2290}
2291
2292
2293static void ieee80211_rx_mgmt_beacon(struct net_device *dev,
2294 struct ieee80211_mgmt *mgmt,
2295 size_t len,
2296 struct ieee80211_rx_status *rx_status)
2297{
Jiri Bencf0706e82007-05-05 11:45:53 -07002298 struct ieee80211_sub_if_data *sdata;
2299 struct ieee80211_if_sta *ifsta;
Jiri Bencf0706e82007-05-05 11:45:53 -07002300 size_t baselen;
2301 struct ieee802_11_elems elems;
Ron Rindjunskyd3c990f2007-11-26 16:14:34 +02002302 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2303 struct ieee80211_conf *conf = &local->hw.conf;
Johannes Berg471b3ef2007-12-28 14:32:58 +01002304 u32 changed = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -07002305
2306 ieee80211_rx_bss_info(dev, mgmt, len, rx_status, 1);
2307
2308 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Johannes Berg51fb61e2007-12-19 01:31:27 +01002309 if (sdata->vif.type != IEEE80211_IF_TYPE_STA)
Jiri Bencf0706e82007-05-05 11:45:53 -07002310 return;
2311 ifsta = &sdata->u.sta;
2312
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002313 if (!(ifsta->flags & IEEE80211_STA_ASSOCIATED) ||
Jiri Bencf0706e82007-05-05 11:45:53 -07002314 memcmp(ifsta->bssid, mgmt->bssid, ETH_ALEN) != 0)
2315 return;
2316
2317 /* Process beacon from the current BSS */
2318 baselen = (u8 *) mgmt->u.beacon.variable - (u8 *) mgmt;
2319 if (baselen > len)
2320 return;
2321
John W. Linville67a4cce2007-10-12 16:40:37 -04002322 ieee802_11_parse_elems(mgmt->u.beacon.variable, len - baselen, &elems);
Jiri Bencf0706e82007-05-05 11:45:53 -07002323
Daniel Drake56282212007-07-10 19:32:10 +02002324 if (elems.erp_info && elems.erp_info_len >= 1)
Johannes Berg471b3ef2007-12-28 14:32:58 +01002325 changed |= ieee80211_handle_erp_ie(sdata, elems.erp_info[0]);
Jiri Bencf0706e82007-05-05 11:45:53 -07002326
Ron Rindjunskyd3c990f2007-11-26 16:14:34 +02002327 if (elems.ht_cap_elem && elems.ht_info_elem &&
2328 elems.wmm_param && local->ops->conf_ht &&
2329 conf->flags & IEEE80211_CONF_SUPPORT_HT_MODE) {
2330 struct ieee80211_ht_bss_info bss_info;
2331
2332 ieee80211_ht_addt_info_ie_to_ht_bss_info(
2333 (struct ieee80211_ht_addt_info *)
2334 elems.ht_info_elem, &bss_info);
2335 /* check if AP changed bss inforamation */
2336 if ((conf->ht_bss_conf.primary_channel !=
2337 bss_info.primary_channel) ||
2338 (conf->ht_bss_conf.bss_cap != bss_info.bss_cap) ||
2339 (conf->ht_bss_conf.bss_op_mode != bss_info.bss_op_mode))
2340 ieee80211_hw_config_ht(local, 1, &conf->ht_conf,
2341 &bss_info);
2342 }
2343
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002344 if (elems.wmm_param && (ifsta->flags & IEEE80211_STA_WMM_ENABLED)) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002345 ieee80211_sta_wmm_params(dev, ifsta, elems.wmm_param,
2346 elems.wmm_param_len);
2347 }
Johannes Berg471b3ef2007-12-28 14:32:58 +01002348
2349 ieee80211_bss_info_change_notify(sdata, changed);
Jiri Bencf0706e82007-05-05 11:45:53 -07002350}
2351
2352
2353static void ieee80211_rx_mgmt_probe_req(struct net_device *dev,
2354 struct ieee80211_if_sta *ifsta,
2355 struct ieee80211_mgmt *mgmt,
2356 size_t len,
2357 struct ieee80211_rx_status *rx_status)
2358{
2359 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2360 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2361 int tx_last_beacon;
2362 struct sk_buff *skb;
2363 struct ieee80211_mgmt *resp;
2364 u8 *pos, *end;
Joe Perches0795af52007-10-03 17:59:30 -07002365 DECLARE_MAC_BUF(mac);
2366#ifdef CONFIG_MAC80211_IBSS_DEBUG
2367 DECLARE_MAC_BUF(mac2);
2368 DECLARE_MAC_BUF(mac3);
2369#endif
Jiri Bencf0706e82007-05-05 11:45:53 -07002370
Johannes Berg51fb61e2007-12-19 01:31:27 +01002371 if (sdata->vif.type != IEEE80211_IF_TYPE_IBSS ||
Jiri Bencf0706e82007-05-05 11:45:53 -07002372 ifsta->state != IEEE80211_IBSS_JOINED ||
2373 len < 24 + 2 || !ifsta->probe_resp)
2374 return;
2375
2376 if (local->ops->tx_last_beacon)
2377 tx_last_beacon = local->ops->tx_last_beacon(local_to_hw(local));
2378 else
2379 tx_last_beacon = 1;
2380
2381#ifdef CONFIG_MAC80211_IBSS_DEBUG
Joe Perches0795af52007-10-03 17:59:30 -07002382 printk(KERN_DEBUG "%s: RX ProbeReq SA=%s DA=%s BSSID="
2383 "%s (tx_last_beacon=%d)\n",
2384 dev->name, print_mac(mac, mgmt->sa), print_mac(mac2, mgmt->da),
2385 print_mac(mac3, mgmt->bssid), tx_last_beacon);
Jiri Bencf0706e82007-05-05 11:45:53 -07002386#endif /* CONFIG_MAC80211_IBSS_DEBUG */
2387
2388 if (!tx_last_beacon)
2389 return;
2390
2391 if (memcmp(mgmt->bssid, ifsta->bssid, ETH_ALEN) != 0 &&
2392 memcmp(mgmt->bssid, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) != 0)
2393 return;
2394
2395 end = ((u8 *) mgmt) + len;
2396 pos = mgmt->u.probe_req.variable;
2397 if (pos[0] != WLAN_EID_SSID ||
2398 pos + 2 + pos[1] > end) {
2399 if (net_ratelimit()) {
2400 printk(KERN_DEBUG "%s: Invalid SSID IE in ProbeReq "
Joe Perches0795af52007-10-03 17:59:30 -07002401 "from %s\n",
2402 dev->name, print_mac(mac, mgmt->sa));
Jiri Bencf0706e82007-05-05 11:45:53 -07002403 }
2404 return;
2405 }
2406 if (pos[1] != 0 &&
2407 (pos[1] != ifsta->ssid_len ||
2408 memcmp(pos + 2, ifsta->ssid, ifsta->ssid_len) != 0)) {
2409 /* Ignore ProbeReq for foreign SSID */
2410 return;
2411 }
2412
2413 /* Reply with ProbeResp */
Michael Wu0ec0b7a2007-07-27 15:43:24 +02002414 skb = skb_copy(ifsta->probe_resp, GFP_KERNEL);
Jiri Bencf0706e82007-05-05 11:45:53 -07002415 if (!skb)
2416 return;
2417
2418 resp = (struct ieee80211_mgmt *) skb->data;
2419 memcpy(resp->da, mgmt->sa, ETH_ALEN);
2420#ifdef CONFIG_MAC80211_IBSS_DEBUG
Joe Perches0795af52007-10-03 17:59:30 -07002421 printk(KERN_DEBUG "%s: Sending ProbeResp to %s\n",
2422 dev->name, print_mac(mac, resp->da));
Jiri Bencf0706e82007-05-05 11:45:53 -07002423#endif /* CONFIG_MAC80211_IBSS_DEBUG */
2424 ieee80211_sta_tx(dev, skb, 0);
2425}
2426
Johannes Berg4e20cb22007-12-19 01:31:24 +01002427static void ieee80211_rx_mgmt_action(struct net_device *dev,
2428 struct ieee80211_if_sta *ifsta,
2429 struct ieee80211_mgmt *mgmt,
2430 size_t len)
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02002431{
2432 if (len < IEEE80211_MIN_ACTION_SIZE)
2433 return;
2434
2435 switch (mgmt->u.action.category) {
2436 case WLAN_CATEGORY_BACK:
2437 switch (mgmt->u.action.u.addba_req.action_code) {
2438 case WLAN_ACTION_ADDBA_REQ:
2439 if (len < (IEEE80211_MIN_ACTION_SIZE +
2440 sizeof(mgmt->u.action.u.addba_req)))
2441 break;
2442 ieee80211_sta_process_addba_request(dev, mgmt, len);
2443 break;
Ron Rindjunskyeadc8d9e2008-01-28 14:07:17 +02002444 case WLAN_ACTION_ADDBA_RESP:
2445 if (len < (IEEE80211_MIN_ACTION_SIZE +
2446 sizeof(mgmt->u.action.u.addba_resp)))
2447 break;
2448 ieee80211_sta_process_addba_resp(dev, mgmt, len);
2449 break;
Ron Rindjunsky688b88a2007-12-25 17:00:37 +02002450 case WLAN_ACTION_DELBA:
2451 if (len < (IEEE80211_MIN_ACTION_SIZE +
2452 sizeof(mgmt->u.action.u.delba)))
2453 break;
2454 ieee80211_sta_process_delba(dev, mgmt, len);
2455 break;
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02002456 default:
2457 if (net_ratelimit())
Ron Rindjunsky688b88a2007-12-25 17:00:37 +02002458 printk(KERN_DEBUG "%s: Rx unknown A-MPDU action\n",
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02002459 dev->name);
2460 break;
2461 }
2462 break;
2463 default:
2464 break;
2465 }
2466}
Jiri Bencf0706e82007-05-05 11:45:53 -07002467
2468void ieee80211_sta_rx_mgmt(struct net_device *dev, struct sk_buff *skb,
2469 struct ieee80211_rx_status *rx_status)
2470{
2471 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2472 struct ieee80211_sub_if_data *sdata;
2473 struct ieee80211_if_sta *ifsta;
2474 struct ieee80211_mgmt *mgmt;
2475 u16 fc;
2476
2477 if (skb->len < 24)
2478 goto fail;
2479
2480 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2481 ifsta = &sdata->u.sta;
2482
2483 mgmt = (struct ieee80211_mgmt *) skb->data;
2484 fc = le16_to_cpu(mgmt->frame_control);
2485
2486 switch (fc & IEEE80211_FCTL_STYPE) {
2487 case IEEE80211_STYPE_PROBE_REQ:
2488 case IEEE80211_STYPE_PROBE_RESP:
2489 case IEEE80211_STYPE_BEACON:
2490 memcpy(skb->cb, rx_status, sizeof(*rx_status));
2491 case IEEE80211_STYPE_AUTH:
2492 case IEEE80211_STYPE_ASSOC_RESP:
2493 case IEEE80211_STYPE_REASSOC_RESP:
2494 case IEEE80211_STYPE_DEAUTH:
2495 case IEEE80211_STYPE_DISASSOC:
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02002496 case IEEE80211_STYPE_ACTION:
Jiri Bencf0706e82007-05-05 11:45:53 -07002497 skb_queue_tail(&ifsta->skb_queue, skb);
2498 queue_work(local->hw.workqueue, &ifsta->work);
2499 return;
2500 default:
2501 printk(KERN_DEBUG "%s: received unknown management frame - "
2502 "stype=%d\n", dev->name,
2503 (fc & IEEE80211_FCTL_STYPE) >> 4);
2504 break;
2505 }
2506
2507 fail:
2508 kfree_skb(skb);
2509}
2510
2511
2512static void ieee80211_sta_rx_queued_mgmt(struct net_device *dev,
2513 struct sk_buff *skb)
2514{
2515 struct ieee80211_rx_status *rx_status;
2516 struct ieee80211_sub_if_data *sdata;
2517 struct ieee80211_if_sta *ifsta;
2518 struct ieee80211_mgmt *mgmt;
2519 u16 fc;
2520
2521 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2522 ifsta = &sdata->u.sta;
2523
2524 rx_status = (struct ieee80211_rx_status *) skb->cb;
2525 mgmt = (struct ieee80211_mgmt *) skb->data;
2526 fc = le16_to_cpu(mgmt->frame_control);
2527
2528 switch (fc & IEEE80211_FCTL_STYPE) {
2529 case IEEE80211_STYPE_PROBE_REQ:
2530 ieee80211_rx_mgmt_probe_req(dev, ifsta, mgmt, skb->len,
2531 rx_status);
2532 break;
2533 case IEEE80211_STYPE_PROBE_RESP:
2534 ieee80211_rx_mgmt_probe_resp(dev, mgmt, skb->len, rx_status);
2535 break;
2536 case IEEE80211_STYPE_BEACON:
2537 ieee80211_rx_mgmt_beacon(dev, mgmt, skb->len, rx_status);
2538 break;
2539 case IEEE80211_STYPE_AUTH:
2540 ieee80211_rx_mgmt_auth(dev, ifsta, mgmt, skb->len);
2541 break;
2542 case IEEE80211_STYPE_ASSOC_RESP:
Johannes Berg471b3ef2007-12-28 14:32:58 +01002543 ieee80211_rx_mgmt_assoc_resp(sdata, ifsta, mgmt, skb->len, 0);
Jiri Bencf0706e82007-05-05 11:45:53 -07002544 break;
2545 case IEEE80211_STYPE_REASSOC_RESP:
Johannes Berg471b3ef2007-12-28 14:32:58 +01002546 ieee80211_rx_mgmt_assoc_resp(sdata, ifsta, mgmt, skb->len, 1);
Jiri Bencf0706e82007-05-05 11:45:53 -07002547 break;
2548 case IEEE80211_STYPE_DEAUTH:
2549 ieee80211_rx_mgmt_deauth(dev, ifsta, mgmt, skb->len);
2550 break;
2551 case IEEE80211_STYPE_DISASSOC:
2552 ieee80211_rx_mgmt_disassoc(dev, ifsta, mgmt, skb->len);
2553 break;
Ron Rindjunsky9f985b02007-11-26 16:14:32 +02002554 case IEEE80211_STYPE_ACTION:
2555 ieee80211_rx_mgmt_action(dev, ifsta, mgmt, skb->len);
2556 break;
Jiri Bencf0706e82007-05-05 11:45:53 -07002557 }
2558
2559 kfree_skb(skb);
2560}
2561
2562
Johannes Berg9ae54c82008-01-31 19:48:20 +01002563ieee80211_rx_result
Zhu Yiece8edd2007-11-22 10:53:21 +08002564ieee80211_sta_rx_scan(struct net_device *dev, struct sk_buff *skb,
2565 struct ieee80211_rx_status *rx_status)
Jiri Bencf0706e82007-05-05 11:45:53 -07002566{
2567 struct ieee80211_mgmt *mgmt;
2568 u16 fc;
2569
Zhu Yiece8edd2007-11-22 10:53:21 +08002570 if (skb->len < 2)
Johannes Berge4c26ad2008-01-31 19:48:21 +01002571 return RX_DROP_UNUSABLE;
Jiri Bencf0706e82007-05-05 11:45:53 -07002572
2573 mgmt = (struct ieee80211_mgmt *) skb->data;
2574 fc = le16_to_cpu(mgmt->frame_control);
2575
Zhu Yiece8edd2007-11-22 10:53:21 +08002576 if ((fc & IEEE80211_FCTL_FTYPE) == IEEE80211_FTYPE_CTL)
Johannes Berg9ae54c82008-01-31 19:48:20 +01002577 return RX_CONTINUE;
Zhu Yiece8edd2007-11-22 10:53:21 +08002578
2579 if (skb->len < 24)
Johannes Berge4c26ad2008-01-31 19:48:21 +01002580 return RX_DROP_MONITOR;
Zhu Yiece8edd2007-11-22 10:53:21 +08002581
Jiri Bencf0706e82007-05-05 11:45:53 -07002582 if ((fc & IEEE80211_FCTL_FTYPE) == IEEE80211_FTYPE_MGMT) {
2583 if ((fc & IEEE80211_FCTL_STYPE) == IEEE80211_STYPE_PROBE_RESP) {
2584 ieee80211_rx_mgmt_probe_resp(dev, mgmt,
2585 skb->len, rx_status);
Zhu Yiece8edd2007-11-22 10:53:21 +08002586 dev_kfree_skb(skb);
Johannes Berg9ae54c82008-01-31 19:48:20 +01002587 return RX_QUEUED;
Jiri Bencf0706e82007-05-05 11:45:53 -07002588 } else if ((fc & IEEE80211_FCTL_STYPE) == IEEE80211_STYPE_BEACON) {
2589 ieee80211_rx_mgmt_beacon(dev, mgmt, skb->len,
2590 rx_status);
Zhu Yiece8edd2007-11-22 10:53:21 +08002591 dev_kfree_skb(skb);
Johannes Berg9ae54c82008-01-31 19:48:20 +01002592 return RX_QUEUED;
Jiri Bencf0706e82007-05-05 11:45:53 -07002593 }
2594 }
Johannes Berg9ae54c82008-01-31 19:48:20 +01002595 return RX_CONTINUE;
Jiri Bencf0706e82007-05-05 11:45:53 -07002596}
2597
2598
2599static int ieee80211_sta_active_ibss(struct net_device *dev)
2600{
2601 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2602 int active = 0;
2603 struct sta_info *sta;
2604
Michael Wube8755e2007-07-27 15:43:23 +02002605 read_lock_bh(&local->sta_lock);
Jiri Bencf0706e82007-05-05 11:45:53 -07002606 list_for_each_entry(sta, &local->sta_list, list) {
2607 if (sta->dev == dev &&
2608 time_after(sta->last_rx + IEEE80211_IBSS_MERGE_INTERVAL,
2609 jiffies)) {
2610 active++;
2611 break;
2612 }
2613 }
Michael Wube8755e2007-07-27 15:43:23 +02002614 read_unlock_bh(&local->sta_lock);
Jiri Bencf0706e82007-05-05 11:45:53 -07002615
2616 return active;
2617}
2618
2619
2620static void ieee80211_sta_expire(struct net_device *dev)
2621{
2622 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2623 struct sta_info *sta, *tmp;
Michael Wube8755e2007-07-27 15:43:23 +02002624 LIST_HEAD(tmp_list);
Joe Perches0795af52007-10-03 17:59:30 -07002625 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07002626
Michael Wube8755e2007-07-27 15:43:23 +02002627 write_lock_bh(&local->sta_lock);
Jiri Bencf0706e82007-05-05 11:45:53 -07002628 list_for_each_entry_safe(sta, tmp, &local->sta_list, list)
2629 if (time_after(jiffies, sta->last_rx +
2630 IEEE80211_IBSS_INACTIVITY_LIMIT)) {
Joe Perches0795af52007-10-03 17:59:30 -07002631 printk(KERN_DEBUG "%s: expiring inactive STA %s\n",
2632 dev->name, print_mac(mac, sta->addr));
Michael Wube8755e2007-07-27 15:43:23 +02002633 __sta_info_get(sta);
2634 sta_info_remove(sta);
2635 list_add(&sta->list, &tmp_list);
Jiri Bencf0706e82007-05-05 11:45:53 -07002636 }
Michael Wube8755e2007-07-27 15:43:23 +02002637 write_unlock_bh(&local->sta_lock);
2638
2639 list_for_each_entry_safe(sta, tmp, &tmp_list, list) {
2640 sta_info_free(sta);
2641 sta_info_put(sta);
2642 }
Jiri Bencf0706e82007-05-05 11:45:53 -07002643}
2644
2645
2646static void ieee80211_sta_merge_ibss(struct net_device *dev,
2647 struct ieee80211_if_sta *ifsta)
2648{
2649 mod_timer(&ifsta->timer, jiffies + IEEE80211_IBSS_MERGE_INTERVAL);
2650
2651 ieee80211_sta_expire(dev);
2652 if (ieee80211_sta_active_ibss(dev))
2653 return;
2654
2655 printk(KERN_DEBUG "%s: No active IBSS STAs - trying to scan for other "
2656 "IBSS networks with same SSID (merge)\n", dev->name);
2657 ieee80211_sta_req_scan(dev, ifsta->ssid, ifsta->ssid_len);
2658}
2659
2660
2661void ieee80211_sta_timer(unsigned long data)
2662{
2663 struct ieee80211_sub_if_data *sdata =
2664 (struct ieee80211_sub_if_data *) data;
2665 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
2666 struct ieee80211_local *local = wdev_priv(&sdata->wdev);
2667
2668 set_bit(IEEE80211_STA_REQ_RUN, &ifsta->request);
2669 queue_work(local->hw.workqueue, &ifsta->work);
2670}
2671
2672
2673void ieee80211_sta_work(struct work_struct *work)
2674{
2675 struct ieee80211_sub_if_data *sdata =
2676 container_of(work, struct ieee80211_sub_if_data, u.sta.work);
2677 struct net_device *dev = sdata->dev;
2678 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2679 struct ieee80211_if_sta *ifsta;
2680 struct sk_buff *skb;
2681
2682 if (!netif_running(dev))
2683 return;
2684
Zhu Yiece8edd2007-11-22 10:53:21 +08002685 if (local->sta_sw_scanning || local->sta_hw_scanning)
Jiri Bencf0706e82007-05-05 11:45:53 -07002686 return;
2687
Johannes Berg51fb61e2007-12-19 01:31:27 +01002688 if (sdata->vif.type != IEEE80211_IF_TYPE_STA &&
2689 sdata->vif.type != IEEE80211_IF_TYPE_IBSS) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002690 printk(KERN_DEBUG "%s: ieee80211_sta_work: non-STA interface "
Johannes Berg51fb61e2007-12-19 01:31:27 +01002691 "(type=%d)\n", dev->name, sdata->vif.type);
Jiri Bencf0706e82007-05-05 11:45:53 -07002692 return;
2693 }
2694 ifsta = &sdata->u.sta;
2695
2696 while ((skb = skb_dequeue(&ifsta->skb_queue)))
2697 ieee80211_sta_rx_queued_mgmt(dev, skb);
2698
2699 if (ifsta->state != IEEE80211_AUTHENTICATE &&
2700 ifsta->state != IEEE80211_ASSOCIATE &&
2701 test_and_clear_bit(IEEE80211_STA_REQ_SCAN, &ifsta->request)) {
Helmut Schaaa0af5f12007-11-09 16:25:08 +01002702 if (ifsta->scan_ssid_len)
2703 ieee80211_sta_start_scan(dev, ifsta->scan_ssid, ifsta->scan_ssid_len);
2704 else
2705 ieee80211_sta_start_scan(dev, NULL, 0);
Jiri Bencf0706e82007-05-05 11:45:53 -07002706 return;
2707 }
2708
2709 if (test_and_clear_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request)) {
2710 if (ieee80211_sta_config_auth(dev, ifsta))
2711 return;
2712 clear_bit(IEEE80211_STA_REQ_RUN, &ifsta->request);
2713 } else if (!test_and_clear_bit(IEEE80211_STA_REQ_RUN, &ifsta->request))
2714 return;
2715
2716 switch (ifsta->state) {
2717 case IEEE80211_DISABLED:
2718 break;
2719 case IEEE80211_AUTHENTICATE:
2720 ieee80211_authenticate(dev, ifsta);
2721 break;
2722 case IEEE80211_ASSOCIATE:
2723 ieee80211_associate(dev, ifsta);
2724 break;
2725 case IEEE80211_ASSOCIATED:
2726 ieee80211_associated(dev, ifsta);
2727 break;
2728 case IEEE80211_IBSS_SEARCH:
2729 ieee80211_sta_find_ibss(dev, ifsta);
2730 break;
2731 case IEEE80211_IBSS_JOINED:
2732 ieee80211_sta_merge_ibss(dev, ifsta);
2733 break;
2734 default:
2735 printk(KERN_DEBUG "ieee80211_sta_work: Unknown state %d\n",
2736 ifsta->state);
2737 break;
2738 }
2739
2740 if (ieee80211_privacy_mismatch(dev, ifsta)) {
2741 printk(KERN_DEBUG "%s: privacy configuration mismatch and "
2742 "mixed-cell disabled - disassociate\n", dev->name);
2743
2744 ieee80211_send_disassoc(dev, ifsta, WLAN_REASON_UNSPECIFIED);
2745 ieee80211_set_disassoc(dev, ifsta, 0);
2746 }
2747}
2748
2749
2750static void ieee80211_sta_reset_auth(struct net_device *dev,
2751 struct ieee80211_if_sta *ifsta)
2752{
2753 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2754
2755 if (local->ops->reset_tsf) {
2756 /* Reset own TSF to allow time synchronization work. */
2757 local->ops->reset_tsf(local_to_hw(local));
2758 }
2759
2760 ifsta->wmm_last_param_set = -1; /* allow any WMM update */
2761
2762
2763 if (ifsta->auth_algs & IEEE80211_AUTH_ALG_OPEN)
2764 ifsta->auth_alg = WLAN_AUTH_OPEN;
2765 else if (ifsta->auth_algs & IEEE80211_AUTH_ALG_SHARED_KEY)
2766 ifsta->auth_alg = WLAN_AUTH_SHARED_KEY;
2767 else if (ifsta->auth_algs & IEEE80211_AUTH_ALG_LEAP)
2768 ifsta->auth_alg = WLAN_AUTH_LEAP;
2769 else
2770 ifsta->auth_alg = WLAN_AUTH_OPEN;
2771 printk(KERN_DEBUG "%s: Initial auth_alg=%d\n", dev->name,
2772 ifsta->auth_alg);
2773 ifsta->auth_transaction = -1;
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002774 ifsta->flags &= ~IEEE80211_STA_ASSOCIATED;
2775 ifsta->auth_tries = ifsta->assoc_tries = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -07002776 netif_carrier_off(dev);
2777}
2778
2779
2780void ieee80211_sta_req_auth(struct net_device *dev,
2781 struct ieee80211_if_sta *ifsta)
2782{
2783 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2784 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2785
Johannes Berg51fb61e2007-12-19 01:31:27 +01002786 if (sdata->vif.type != IEEE80211_IF_TYPE_STA)
Jiri Bencf0706e82007-05-05 11:45:53 -07002787 return;
2788
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002789 if ((ifsta->flags & (IEEE80211_STA_BSSID_SET |
2790 IEEE80211_STA_AUTO_BSSID_SEL)) &&
2791 (ifsta->flags & (IEEE80211_STA_SSID_SET |
2792 IEEE80211_STA_AUTO_SSID_SEL))) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002793 set_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request);
2794 queue_work(local->hw.workqueue, &ifsta->work);
2795 }
2796}
2797
2798static int ieee80211_sta_match_ssid(struct ieee80211_if_sta *ifsta,
2799 const char *ssid, int ssid_len)
2800{
2801 int tmp, hidden_ssid;
2802
Michael Wu48225702007-10-19 17:14:36 -04002803 if (ssid_len == ifsta->ssid_len &&
2804 !memcmp(ifsta->ssid, ssid, ssid_len))
Jiri Bencf0706e82007-05-05 11:45:53 -07002805 return 1;
2806
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002807 if (ifsta->flags & IEEE80211_STA_AUTO_BSSID_SEL)
Jiri Bencf0706e82007-05-05 11:45:53 -07002808 return 0;
2809
2810 hidden_ssid = 1;
2811 tmp = ssid_len;
2812 while (tmp--) {
2813 if (ssid[tmp] != '\0') {
2814 hidden_ssid = 0;
2815 break;
2816 }
2817 }
2818
2819 if (hidden_ssid && ifsta->ssid_len == ssid_len)
2820 return 1;
2821
2822 if (ssid_len == 1 && ssid[0] == ' ')
2823 return 1;
2824
2825 return 0;
2826}
2827
2828static int ieee80211_sta_config_auth(struct net_device *dev,
2829 struct ieee80211_if_sta *ifsta)
2830{
2831 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2832 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2833 struct ieee80211_sta_bss *bss, *selected = NULL;
2834 int top_rssi = 0, freq;
2835
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002836 if (!(ifsta->flags & (IEEE80211_STA_AUTO_SSID_SEL |
2837 IEEE80211_STA_AUTO_BSSID_SEL | IEEE80211_STA_AUTO_CHANNEL_SEL))) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002838 ifsta->state = IEEE80211_AUTHENTICATE;
Jiri Bencf0706e82007-05-05 11:45:53 -07002839 ieee80211_sta_reset_auth(dev, ifsta);
2840 return 0;
2841 }
2842
2843 spin_lock_bh(&local->sta_bss_lock);
Johannes Berg8318d782008-01-24 19:38:38 +01002844 freq = local->oper_channel->center_freq;
Jiri Bencf0706e82007-05-05 11:45:53 -07002845 list_for_each_entry(bss, &local->sta_bss_list, list) {
2846 if (!(bss->capability & WLAN_CAPABILITY_ESS))
2847 continue;
2848
2849 if (!!(bss->capability & WLAN_CAPABILITY_PRIVACY) ^
2850 !!sdata->default_key)
2851 continue;
2852
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002853 if (!(ifsta->flags & IEEE80211_STA_AUTO_CHANNEL_SEL) &&
2854 bss->freq != freq)
Jiri Bencf0706e82007-05-05 11:45:53 -07002855 continue;
2856
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002857 if (!(ifsta->flags & IEEE80211_STA_AUTO_BSSID_SEL) &&
Jiri Bencf0706e82007-05-05 11:45:53 -07002858 memcmp(bss->bssid, ifsta->bssid, ETH_ALEN))
2859 continue;
2860
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002861 if (!(ifsta->flags & IEEE80211_STA_AUTO_SSID_SEL) &&
Jiri Bencf0706e82007-05-05 11:45:53 -07002862 !ieee80211_sta_match_ssid(ifsta, bss->ssid, bss->ssid_len))
2863 continue;
2864
2865 if (!selected || top_rssi < bss->rssi) {
2866 selected = bss;
2867 top_rssi = bss->rssi;
2868 }
2869 }
2870 if (selected)
2871 atomic_inc(&selected->users);
2872 spin_unlock_bh(&local->sta_bss_lock);
2873
2874 if (selected) {
Johannes Berg8318d782008-01-24 19:38:38 +01002875 ieee80211_set_freq(local, selected->freq);
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002876 if (!(ifsta->flags & IEEE80211_STA_SSID_SET))
Jiri Bencf0706e82007-05-05 11:45:53 -07002877 ieee80211_sta_set_ssid(dev, selected->ssid,
2878 selected->ssid_len);
2879 ieee80211_sta_set_bssid(dev, selected->bssid);
2880 ieee80211_rx_bss_put(dev, selected);
2881 ifsta->state = IEEE80211_AUTHENTICATE;
Jiri Bencf0706e82007-05-05 11:45:53 -07002882 ieee80211_sta_reset_auth(dev, ifsta);
2883 return 0;
2884 } else {
2885 if (ifsta->state != IEEE80211_AUTHENTICATE) {
Jiri Slabyd6f2da52007-08-28 17:01:54 -04002886 if (ifsta->flags & IEEE80211_STA_AUTO_SSID_SEL)
John W. Linvilleb9bf1e62007-08-07 16:33:15 -04002887 ieee80211_sta_start_scan(dev, NULL, 0);
2888 else
2889 ieee80211_sta_start_scan(dev, ifsta->ssid,
2890 ifsta->ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07002891 ifsta->state = IEEE80211_AUTHENTICATE;
2892 set_bit(IEEE80211_STA_REQ_AUTH, &ifsta->request);
2893 } else
2894 ifsta->state = IEEE80211_DISABLED;
2895 }
Jiri Bencf0706e82007-05-05 11:45:53 -07002896 return -1;
2897}
2898
2899static int ieee80211_sta_join_ibss(struct net_device *dev,
2900 struct ieee80211_if_sta *ifsta,
2901 struct ieee80211_sta_bss *bss)
2902{
2903 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
2904 int res, rates, i, j;
2905 struct sk_buff *skb;
2906 struct ieee80211_mgmt *mgmt;
2907 struct ieee80211_tx_control control;
Mattias Nissler1abbe492007-12-20 13:50:07 +01002908 struct rate_selection ratesel;
Jiri Bencf0706e82007-05-05 11:45:53 -07002909 u8 *pos;
2910 struct ieee80211_sub_if_data *sdata;
Johannes Berg8318d782008-01-24 19:38:38 +01002911 struct ieee80211_supported_band *sband;
2912
2913 sband = local->hw.wiphy->bands[local->hw.conf.channel->band];
Jiri Bencf0706e82007-05-05 11:45:53 -07002914
2915 /* Remove possible STA entries from other IBSS networks. */
2916 sta_info_flush(local, NULL);
2917
2918 if (local->ops->reset_tsf) {
2919 /* Reset own TSF to allow time synchronization work. */
2920 local->ops->reset_tsf(local_to_hw(local));
2921 }
2922 memcpy(ifsta->bssid, bss->bssid, ETH_ALEN);
2923 res = ieee80211_if_config(dev);
2924 if (res)
2925 return res;
2926
2927 local->hw.conf.beacon_int = bss->beacon_int >= 10 ? bss->beacon_int : 10;
2928
2929 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
2930 sdata->drop_unencrypted = bss->capability &
2931 WLAN_CAPABILITY_PRIVACY ? 1 : 0;
2932
Johannes Berg8318d782008-01-24 19:38:38 +01002933 res = ieee80211_set_freq(local, bss->freq);
Jiri Bencf0706e82007-05-05 11:45:53 -07002934
Johannes Berg8318d782008-01-24 19:38:38 +01002935 if (local->oper_channel->flags & IEEE80211_CHAN_NO_IBSS) {
2936 printk(KERN_DEBUG "%s: IBSS not allowed on frequency "
2937 "%d MHz\n", dev->name, local->oper_channel->center_freq);
Jiri Bencf0706e82007-05-05 11:45:53 -07002938 return -1;
2939 }
2940
2941 /* Set beacon template based on scan results */
2942 skb = dev_alloc_skb(local->hw.extra_tx_headroom + 400);
2943 do {
2944 if (!skb)
2945 break;
2946
2947 skb_reserve(skb, local->hw.extra_tx_headroom);
2948
2949 mgmt = (struct ieee80211_mgmt *)
2950 skb_put(skb, 24 + sizeof(mgmt->u.beacon));
2951 memset(mgmt, 0, 24 + sizeof(mgmt->u.beacon));
2952 mgmt->frame_control = IEEE80211_FC(IEEE80211_FTYPE_MGMT,
2953 IEEE80211_STYPE_BEACON);
2954 memset(mgmt->da, 0xff, ETH_ALEN);
2955 memcpy(mgmt->sa, dev->dev_addr, ETH_ALEN);
2956 memcpy(mgmt->bssid, ifsta->bssid, ETH_ALEN);
2957 mgmt->u.beacon.beacon_int =
2958 cpu_to_le16(local->hw.conf.beacon_int);
2959 mgmt->u.beacon.capab_info = cpu_to_le16(bss->capability);
2960
2961 pos = skb_put(skb, 2 + ifsta->ssid_len);
2962 *pos++ = WLAN_EID_SSID;
2963 *pos++ = ifsta->ssid_len;
2964 memcpy(pos, ifsta->ssid, ifsta->ssid_len);
2965
2966 rates = bss->supp_rates_len;
2967 if (rates > 8)
2968 rates = 8;
2969 pos = skb_put(skb, 2 + rates);
2970 *pos++ = WLAN_EID_SUPP_RATES;
2971 *pos++ = rates;
2972 memcpy(pos, bss->supp_rates, rates);
2973
Johannes Berg8318d782008-01-24 19:38:38 +01002974 if (bss->band == IEEE80211_BAND_2GHZ) {
2975 pos = skb_put(skb, 2 + 1);
2976 *pos++ = WLAN_EID_DS_PARAMS;
2977 *pos++ = 1;
2978 *pos++ = ieee80211_frequency_to_channel(bss->freq);
2979 }
Jiri Bencf0706e82007-05-05 11:45:53 -07002980
2981 pos = skb_put(skb, 2 + 2);
2982 *pos++ = WLAN_EID_IBSS_PARAMS;
2983 *pos++ = 2;
2984 /* FIX: set ATIM window based on scan results */
2985 *pos++ = 0;
2986 *pos++ = 0;
2987
2988 if (bss->supp_rates_len > 8) {
2989 rates = bss->supp_rates_len - 8;
2990 pos = skb_put(skb, 2 + rates);
2991 *pos++ = WLAN_EID_EXT_SUPP_RATES;
2992 *pos++ = rates;
2993 memcpy(pos, &bss->supp_rates[8], rates);
2994 }
2995
2996 memset(&control, 0, sizeof(control));
Johannes Berg8318d782008-01-24 19:38:38 +01002997 rate_control_get_rate(dev, sband, skb, &ratesel);
Mattias Nissler1abbe492007-12-20 13:50:07 +01002998 if (!ratesel.rate) {
Jiri Bencf0706e82007-05-05 11:45:53 -07002999 printk(KERN_DEBUG "%s: Failed to determine TX rate "
3000 "for IBSS beacon\n", dev->name);
3001 break;
3002 }
Ivo van Doorn0f7054e2008-01-13 14:16:47 +01003003 control.vif = &sdata->vif;
Johannes Berg8318d782008-01-24 19:38:38 +01003004 control.tx_rate = ratesel.rate;
3005 if (sdata->bss_conf.use_short_preamble &&
3006 ratesel.rate->flags & IEEE80211_RATE_SHORT_PREAMBLE)
3007 control.flags |= IEEE80211_TXCTL_SHORT_PREAMBLE;
Jiri Bencf0706e82007-05-05 11:45:53 -07003008 control.antenna_sel_tx = local->hw.conf.antenna_sel_tx;
Jiri Bencf0706e82007-05-05 11:45:53 -07003009 control.flags |= IEEE80211_TXCTL_NO_ACK;
3010 control.retry_limit = 1;
3011
3012 ifsta->probe_resp = skb_copy(skb, GFP_ATOMIC);
3013 if (ifsta->probe_resp) {
3014 mgmt = (struct ieee80211_mgmt *)
3015 ifsta->probe_resp->data;
3016 mgmt->frame_control =
3017 IEEE80211_FC(IEEE80211_FTYPE_MGMT,
3018 IEEE80211_STYPE_PROBE_RESP);
3019 } else {
3020 printk(KERN_DEBUG "%s: Could not allocate ProbeResp "
3021 "template for IBSS\n", dev->name);
3022 }
3023
3024 if (local->ops->beacon_update &&
3025 local->ops->beacon_update(local_to_hw(local),
3026 skb, &control) == 0) {
3027 printk(KERN_DEBUG "%s: Configured IBSS beacon "
3028 "template based on scan results\n", dev->name);
3029 skb = NULL;
3030 }
3031
3032 rates = 0;
Johannes Berg8318d782008-01-24 19:38:38 +01003033 sband = local->hw.wiphy->bands[local->hw.conf.channel->band];
Jiri Bencf0706e82007-05-05 11:45:53 -07003034 for (i = 0; i < bss->supp_rates_len; i++) {
3035 int bitrate = (bss->supp_rates[i] & 0x7f) * 5;
Johannes Berg8318d782008-01-24 19:38:38 +01003036 for (j = 0; j < sband->n_bitrates; j++)
3037 if (sband->bitrates[j].bitrate == bitrate)
Jiri Bencf0706e82007-05-05 11:45:53 -07003038 rates |= BIT(j);
3039 }
Johannes Berg8318d782008-01-24 19:38:38 +01003040 ifsta->supp_rates_bits[local->hw.conf.channel->band] = rates;
Jiri Bencf0706e82007-05-05 11:45:53 -07003041 } while (0);
3042
3043 if (skb) {
3044 printk(KERN_DEBUG "%s: Failed to configure IBSS beacon "
3045 "template\n", dev->name);
3046 dev_kfree_skb(skb);
3047 }
3048
3049 ifsta->state = IEEE80211_IBSS_JOINED;
3050 mod_timer(&ifsta->timer, jiffies + IEEE80211_IBSS_MERGE_INTERVAL);
3051
3052 ieee80211_rx_bss_put(dev, bss);
3053
3054 return res;
3055}
3056
3057
3058static int ieee80211_sta_create_ibss(struct net_device *dev,
3059 struct ieee80211_if_sta *ifsta)
3060{
3061 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3062 struct ieee80211_sta_bss *bss;
John W. Linvillecffdd302007-10-05 14:23:27 -04003063 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Johannes Berg8318d782008-01-24 19:38:38 +01003064 struct ieee80211_supported_band *sband;
Jiri Bencf0706e82007-05-05 11:45:53 -07003065 u8 bssid[ETH_ALEN], *pos;
3066 int i;
Joe Perches0795af52007-10-03 17:59:30 -07003067 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07003068
3069#if 0
3070 /* Easier testing, use fixed BSSID. */
3071 memset(bssid, 0xfe, ETH_ALEN);
3072#else
3073 /* Generate random, not broadcast, locally administered BSSID. Mix in
3074 * own MAC address to make sure that devices that do not have proper
3075 * random number generator get different BSSID. */
3076 get_random_bytes(bssid, ETH_ALEN);
3077 for (i = 0; i < ETH_ALEN; i++)
3078 bssid[i] ^= dev->dev_addr[i];
3079 bssid[0] &= ~0x01;
3080 bssid[0] |= 0x02;
3081#endif
3082
Joe Perches0795af52007-10-03 17:59:30 -07003083 printk(KERN_DEBUG "%s: Creating new IBSS network, BSSID %s\n",
3084 dev->name, print_mac(mac, bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07003085
Johannes Berg8318d782008-01-24 19:38:38 +01003086 bss = ieee80211_rx_bss_add(dev, bssid,
3087 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04003088 sdata->u.sta.ssid, sdata->u.sta.ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07003089 if (!bss)
3090 return -ENOMEM;
3091
Johannes Berg8318d782008-01-24 19:38:38 +01003092 bss->band = local->hw.conf.channel->band;
3093 sband = local->hw.wiphy->bands[bss->band];
Jiri Bencf0706e82007-05-05 11:45:53 -07003094
3095 if (local->hw.conf.beacon_int == 0)
3096 local->hw.conf.beacon_int = 100;
3097 bss->beacon_int = local->hw.conf.beacon_int;
Jiri Bencf0706e82007-05-05 11:45:53 -07003098 bss->last_update = jiffies;
3099 bss->capability = WLAN_CAPABILITY_IBSS;
3100 if (sdata->default_key) {
3101 bss->capability |= WLAN_CAPABILITY_PRIVACY;
3102 } else
3103 sdata->drop_unencrypted = 0;
Johannes Berg8318d782008-01-24 19:38:38 +01003104 bss->supp_rates_len = sband->n_bitrates;
Jiri Bencf0706e82007-05-05 11:45:53 -07003105 pos = bss->supp_rates;
Johannes Berg8318d782008-01-24 19:38:38 +01003106 for (i = 0; i < sband->n_bitrates; i++) {
3107 int rate = sband->bitrates[i].bitrate;
Jiri Bencf0706e82007-05-05 11:45:53 -07003108 *pos++ = (u8) (rate / 5);
3109 }
3110
3111 return ieee80211_sta_join_ibss(dev, ifsta, bss);
3112}
3113
3114
3115static int ieee80211_sta_find_ibss(struct net_device *dev,
3116 struct ieee80211_if_sta *ifsta)
3117{
3118 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3119 struct ieee80211_sta_bss *bss;
3120 int found = 0;
3121 u8 bssid[ETH_ALEN];
3122 int active_ibss;
Joe Perches0795af52007-10-03 17:59:30 -07003123 DECLARE_MAC_BUF(mac);
3124 DECLARE_MAC_BUF(mac2);
Jiri Bencf0706e82007-05-05 11:45:53 -07003125
3126 if (ifsta->ssid_len == 0)
3127 return -EINVAL;
3128
3129 active_ibss = ieee80211_sta_active_ibss(dev);
3130#ifdef CONFIG_MAC80211_IBSS_DEBUG
3131 printk(KERN_DEBUG "%s: sta_find_ibss (active_ibss=%d)\n",
3132 dev->name, active_ibss);
3133#endif /* CONFIG_MAC80211_IBSS_DEBUG */
3134 spin_lock_bh(&local->sta_bss_lock);
3135 list_for_each_entry(bss, &local->sta_bss_list, list) {
3136 if (ifsta->ssid_len != bss->ssid_len ||
3137 memcmp(ifsta->ssid, bss->ssid, bss->ssid_len) != 0
3138 || !(bss->capability & WLAN_CAPABILITY_IBSS))
3139 continue;
3140#ifdef CONFIG_MAC80211_IBSS_DEBUG
Joe Perches0795af52007-10-03 17:59:30 -07003141 printk(KERN_DEBUG " bssid=%s found\n",
3142 print_mac(mac, bss->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07003143#endif /* CONFIG_MAC80211_IBSS_DEBUG */
3144 memcpy(bssid, bss->bssid, ETH_ALEN);
3145 found = 1;
3146 if (active_ibss || memcmp(bssid, ifsta->bssid, ETH_ALEN) != 0)
3147 break;
3148 }
3149 spin_unlock_bh(&local->sta_bss_lock);
3150
3151#ifdef CONFIG_MAC80211_IBSS_DEBUG
Joe Perches0795af52007-10-03 17:59:30 -07003152 printk(KERN_DEBUG " sta_find_ibss: selected %s current "
3153 "%s\n", print_mac(mac, bssid), print_mac(mac2, ifsta->bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07003154#endif /* CONFIG_MAC80211_IBSS_DEBUG */
3155 if (found && memcmp(ifsta->bssid, bssid, ETH_ALEN) != 0 &&
Johannes Berg8318d782008-01-24 19:38:38 +01003156 (bss = ieee80211_rx_bss_get(dev, bssid,
3157 local->hw.conf.channel->center_freq,
John W. Linvillecffdd302007-10-05 14:23:27 -04003158 ifsta->ssid, ifsta->ssid_len))) {
Joe Perches0795af52007-10-03 17:59:30 -07003159 printk(KERN_DEBUG "%s: Selected IBSS BSSID %s"
Jiri Bencf0706e82007-05-05 11:45:53 -07003160 " based on configured SSID\n",
Joe Perches0795af52007-10-03 17:59:30 -07003161 dev->name, print_mac(mac, bssid));
Jiri Bencf0706e82007-05-05 11:45:53 -07003162 return ieee80211_sta_join_ibss(dev, ifsta, bss);
3163 }
3164#ifdef CONFIG_MAC80211_IBSS_DEBUG
3165 printk(KERN_DEBUG " did not try to join ibss\n");
3166#endif /* CONFIG_MAC80211_IBSS_DEBUG */
3167
3168 /* Selected IBSS not found in current scan results - try to scan */
3169 if (ifsta->state == IEEE80211_IBSS_JOINED &&
3170 !ieee80211_sta_active_ibss(dev)) {
3171 mod_timer(&ifsta->timer, jiffies +
3172 IEEE80211_IBSS_MERGE_INTERVAL);
3173 } else if (time_after(jiffies, local->last_scan_completed +
3174 IEEE80211_SCAN_INTERVAL)) {
3175 printk(KERN_DEBUG "%s: Trigger new scan to find an IBSS to "
3176 "join\n", dev->name);
3177 return ieee80211_sta_req_scan(dev, ifsta->ssid,
3178 ifsta->ssid_len);
3179 } else if (ifsta->state != IEEE80211_IBSS_JOINED) {
3180 int interval = IEEE80211_SCAN_INTERVAL;
3181
3182 if (time_after(jiffies, ifsta->ibss_join_req +
3183 IEEE80211_IBSS_JOIN_TIMEOUT)) {
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003184 if ((ifsta->flags & IEEE80211_STA_CREATE_IBSS) &&
Johannes Berg8318d782008-01-24 19:38:38 +01003185 (!(local->oper_channel->flags &
3186 IEEE80211_CHAN_NO_IBSS)))
Jiri Bencf0706e82007-05-05 11:45:53 -07003187 return ieee80211_sta_create_ibss(dev, ifsta);
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003188 if (ifsta->flags & IEEE80211_STA_CREATE_IBSS) {
Johannes Berg8318d782008-01-24 19:38:38 +01003189 printk(KERN_DEBUG "%s: IBSS not allowed on"
3190 " %d MHz\n", dev->name,
3191 local->hw.conf.channel->center_freq);
Jiri Bencf0706e82007-05-05 11:45:53 -07003192 }
3193
3194 /* No IBSS found - decrease scan interval and continue
3195 * scanning. */
3196 interval = IEEE80211_SCAN_INTERVAL_SLOW;
3197 }
3198
3199 ifsta->state = IEEE80211_IBSS_SEARCH;
3200 mod_timer(&ifsta->timer, jiffies + interval);
3201 return 0;
3202 }
3203
3204 return 0;
3205}
3206
3207
3208int ieee80211_sta_set_ssid(struct net_device *dev, char *ssid, size_t len)
3209{
Johannes Berg8318d782008-01-24 19:38:38 +01003210 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Jiri Bencf0706e82007-05-05 11:45:53 -07003211 struct ieee80211_if_sta *ifsta;
3212 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3213
3214 if (len > IEEE80211_MAX_SSID_LEN)
3215 return -EINVAL;
3216
3217 /* TODO: This should always be done for IBSS, even if IEEE80211_QOS is
3218 * not defined. */
3219 if (local->ops->conf_tx) {
3220 struct ieee80211_tx_queue_params qparam;
3221 int i;
3222
3223 memset(&qparam, 0, sizeof(qparam));
Johannes Berg8318d782008-01-24 19:38:38 +01003224
Jiri Bencf0706e82007-05-05 11:45:53 -07003225 qparam.aifs = 2;
Johannes Berg8318d782008-01-24 19:38:38 +01003226
3227 if (local->hw.conf.channel->band == IEEE80211_BAND_2GHZ &&
3228 !(sdata->flags & IEEE80211_SDATA_OPERATING_GMODE))
3229 qparam.cw_min = 31;
3230 else
3231 qparam.cw_min = 15;
3232
Jiri Bencf0706e82007-05-05 11:45:53 -07003233 qparam.cw_max = 1023;
Johannes Berg3330d7b2008-02-10 16:49:38 +01003234 qparam.txop = 0;
Johannes Berg8318d782008-01-24 19:38:38 +01003235
Jiri Bencf0706e82007-05-05 11:45:53 -07003236 for (i = IEEE80211_TX_QUEUE_DATA0; i < NUM_TX_DATA_QUEUES; i++)
Jiri Bencf0706e82007-05-05 11:45:53 -07003237 local->ops->conf_tx(local_to_hw(local),
3238 i + IEEE80211_TX_QUEUE_DATA0,
3239 &qparam);
Johannes Berg8318d782008-01-24 19:38:38 +01003240
Jiri Bencf0706e82007-05-05 11:45:53 -07003241 /* IBSS uses different parameters for Beacon sending */
3242 qparam.cw_min++;
3243 qparam.cw_min *= 2;
3244 qparam.cw_min--;
3245 local->ops->conf_tx(local_to_hw(local),
3246 IEEE80211_TX_QUEUE_BEACON, &qparam);
3247 }
3248
Jiri Bencf0706e82007-05-05 11:45:53 -07003249 ifsta = &sdata->u.sta;
3250
3251 if (ifsta->ssid_len != len || memcmp(ifsta->ssid, ssid, len) != 0)
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003252 ifsta->flags &= ~IEEE80211_STA_PREV_BSSID_SET;
Jiri Bencf0706e82007-05-05 11:45:53 -07003253 memcpy(ifsta->ssid, ssid, len);
3254 memset(ifsta->ssid + len, 0, IEEE80211_MAX_SSID_LEN - len);
3255 ifsta->ssid_len = len;
3256
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003257 if (len)
3258 ifsta->flags |= IEEE80211_STA_SSID_SET;
3259 else
3260 ifsta->flags &= ~IEEE80211_STA_SSID_SET;
Johannes Berg51fb61e2007-12-19 01:31:27 +01003261 if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS &&
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003262 !(ifsta->flags & IEEE80211_STA_BSSID_SET)) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003263 ifsta->ibss_join_req = jiffies;
3264 ifsta->state = IEEE80211_IBSS_SEARCH;
3265 return ieee80211_sta_find_ibss(dev, ifsta);
3266 }
3267 return 0;
3268}
3269
3270
3271int ieee80211_sta_get_ssid(struct net_device *dev, char *ssid, size_t *len)
3272{
3273 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3274 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
3275 memcpy(ssid, ifsta->ssid, ifsta->ssid_len);
3276 *len = ifsta->ssid_len;
3277 return 0;
3278}
3279
3280
3281int ieee80211_sta_set_bssid(struct net_device *dev, u8 *bssid)
3282{
3283 struct ieee80211_sub_if_data *sdata;
3284 struct ieee80211_if_sta *ifsta;
3285 int res;
3286
3287 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3288 ifsta = &sdata->u.sta;
3289
3290 if (memcmp(ifsta->bssid, bssid, ETH_ALEN) != 0) {
3291 memcpy(ifsta->bssid, bssid, ETH_ALEN);
3292 res = ieee80211_if_config(dev);
3293 if (res) {
3294 printk(KERN_DEBUG "%s: Failed to config new BSSID to "
3295 "the low-level driver\n", dev->name);
3296 return res;
3297 }
3298 }
3299
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003300 if (is_valid_ether_addr(bssid))
3301 ifsta->flags |= IEEE80211_STA_BSSID_SET;
Jiri Bencf0706e82007-05-05 11:45:53 -07003302 else
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003303 ifsta->flags &= ~IEEE80211_STA_BSSID_SET;
3304
Jiri Bencf0706e82007-05-05 11:45:53 -07003305 return 0;
3306}
3307
3308
3309static void ieee80211_send_nullfunc(struct ieee80211_local *local,
3310 struct ieee80211_sub_if_data *sdata,
3311 int powersave)
3312{
3313 struct sk_buff *skb;
3314 struct ieee80211_hdr *nullfunc;
3315 u16 fc;
3316
3317 skb = dev_alloc_skb(local->hw.extra_tx_headroom + 24);
3318 if (!skb) {
3319 printk(KERN_DEBUG "%s: failed to allocate buffer for nullfunc "
3320 "frame\n", sdata->dev->name);
3321 return;
3322 }
3323 skb_reserve(skb, local->hw.extra_tx_headroom);
3324
3325 nullfunc = (struct ieee80211_hdr *) skb_put(skb, 24);
3326 memset(nullfunc, 0, 24);
3327 fc = IEEE80211_FTYPE_DATA | IEEE80211_STYPE_NULLFUNC |
3328 IEEE80211_FCTL_TODS;
3329 if (powersave)
3330 fc |= IEEE80211_FCTL_PM;
3331 nullfunc->frame_control = cpu_to_le16(fc);
3332 memcpy(nullfunc->addr1, sdata->u.sta.bssid, ETH_ALEN);
3333 memcpy(nullfunc->addr2, sdata->dev->dev_addr, ETH_ALEN);
3334 memcpy(nullfunc->addr3, sdata->u.sta.bssid, ETH_ALEN);
3335
3336 ieee80211_sta_tx(sdata->dev, skb, 0);
3337}
3338
3339
3340void ieee80211_scan_completed(struct ieee80211_hw *hw)
3341{
3342 struct ieee80211_local *local = hw_to_local(hw);
3343 struct net_device *dev = local->scan_dev;
3344 struct ieee80211_sub_if_data *sdata;
3345 union iwreq_data wrqu;
3346
3347 local->last_scan_completed = jiffies;
Zhu Yiece8edd2007-11-22 10:53:21 +08003348 memset(&wrqu, 0, sizeof(wrqu));
3349 wireless_send_event(dev, SIOCGIWSCAN, &wrqu, NULL);
Jiri Bencf0706e82007-05-05 11:45:53 -07003350
Zhu Yiece8edd2007-11-22 10:53:21 +08003351 if (local->sta_hw_scanning) {
3352 local->sta_hw_scanning = 0;
3353 goto done;
3354 }
3355
3356 local->sta_sw_scanning = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -07003357 if (ieee80211_hw_config(local))
Bruno Randolf4b50e382007-11-16 17:04:01 +09003358 printk(KERN_DEBUG "%s: failed to restore operational "
Jiri Bencf0706e82007-05-05 11:45:53 -07003359 "channel after scan\n", dev->name);
3360
Johannes Berg4150c572007-09-17 01:29:23 -04003361
3362 netif_tx_lock_bh(local->mdev);
3363 local->filter_flags &= ~FIF_BCN_PRBRESP_PROMISC;
3364 local->ops->configure_filter(local_to_hw(local),
3365 FIF_BCN_PRBRESP_PROMISC,
3366 &local->filter_flags,
3367 local->mdev->mc_count,
3368 local->mdev->mc_list);
3369
3370 netif_tx_unlock_bh(local->mdev);
Jiri Bencf0706e82007-05-05 11:45:53 -07003371
Johannes Berg79010422007-09-18 17:29:21 -04003372 rcu_read_lock();
3373 list_for_each_entry_rcu(sdata, &local->interfaces, list) {
Mattias Nissler14042cbe2007-06-08 15:31:13 +02003374
3375 /* No need to wake the master device. */
3376 if (sdata->dev == local->mdev)
3377 continue;
3378
Johannes Berg51fb61e2007-12-19 01:31:27 +01003379 if (sdata->vif.type == IEEE80211_IF_TYPE_STA) {
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003380 if (sdata->u.sta.flags & IEEE80211_STA_ASSOCIATED)
Jiri Bencf0706e82007-05-05 11:45:53 -07003381 ieee80211_send_nullfunc(local, sdata, 0);
3382 ieee80211_sta_timer((unsigned long)sdata);
3383 }
Mattias Nissler14042cbe2007-06-08 15:31:13 +02003384
Jiri Bencf0706e82007-05-05 11:45:53 -07003385 netif_wake_queue(sdata->dev);
3386 }
Johannes Berg79010422007-09-18 17:29:21 -04003387 rcu_read_unlock();
Jiri Bencf0706e82007-05-05 11:45:53 -07003388
Zhu Yiece8edd2007-11-22 10:53:21 +08003389done:
Jiri Bencf0706e82007-05-05 11:45:53 -07003390 sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Johannes Berg51fb61e2007-12-19 01:31:27 +01003391 if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003392 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003393 if (!(ifsta->flags & IEEE80211_STA_BSSID_SET) ||
Jiri Bencf0706e82007-05-05 11:45:53 -07003394 (!ifsta->state == IEEE80211_IBSS_JOINED &&
3395 !ieee80211_sta_active_ibss(dev)))
3396 ieee80211_sta_find_ibss(dev, ifsta);
3397 }
3398}
3399EXPORT_SYMBOL(ieee80211_scan_completed);
3400
3401void ieee80211_sta_scan_work(struct work_struct *work)
3402{
3403 struct ieee80211_local *local =
3404 container_of(work, struct ieee80211_local, scan_work.work);
3405 struct net_device *dev = local->scan_dev;
3406 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Johannes Berg8318d782008-01-24 19:38:38 +01003407 struct ieee80211_supported_band *sband;
Jiri Bencf0706e82007-05-05 11:45:53 -07003408 struct ieee80211_channel *chan;
3409 int skip;
3410 unsigned long next_delay = 0;
3411
Zhu Yiece8edd2007-11-22 10:53:21 +08003412 if (!local->sta_sw_scanning)
Jiri Bencf0706e82007-05-05 11:45:53 -07003413 return;
3414
3415 switch (local->scan_state) {
3416 case SCAN_SET_CHANNEL:
Johannes Berg69d464d2008-01-28 17:08:56 +01003417 /*
3418 * Get current scan band. scan_band may be IEEE80211_NUM_BANDS
3419 * after we successfully scanned the last channel of the last
3420 * band (and the last band is supported by the hw)
3421 */
Johannes Berg8318d782008-01-24 19:38:38 +01003422 if (local->scan_band < IEEE80211_NUM_BANDS)
3423 sband = local->hw.wiphy->bands[local->scan_band];
3424 else
3425 sband = NULL;
3426
Johannes Berg69d464d2008-01-28 17:08:56 +01003427 /*
3428 * If we are at an unsupported band and have more bands
3429 * left to scan, advance to the next supported one.
3430 */
3431 while (!sband && local->scan_band < IEEE80211_NUM_BANDS - 1) {
Johannes Berg8318d782008-01-24 19:38:38 +01003432 local->scan_band++;
3433 sband = local->hw.wiphy->bands[local->scan_band];
3434 local->scan_channel_idx = 0;
3435 }
3436
Johannes Berg69d464d2008-01-28 17:08:56 +01003437 /* if no more bands/channels left, complete scan */
3438 if (!sband || local->scan_channel_idx >= sband->n_channels) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003439 ieee80211_scan_completed(local_to_hw(local));
3440 return;
3441 }
Johannes Berg8318d782008-01-24 19:38:38 +01003442 skip = 0;
3443 chan = &sband->channels[local->scan_channel_idx];
3444
3445 if (chan->flags & IEEE80211_CHAN_DISABLED ||
Johannes Berg51fb61e2007-12-19 01:31:27 +01003446 (sdata->vif.type == IEEE80211_IF_TYPE_IBSS &&
Johannes Berg8318d782008-01-24 19:38:38 +01003447 chan->flags & IEEE80211_CHAN_NO_IBSS))
Jiri Bencf0706e82007-05-05 11:45:53 -07003448 skip = 1;
3449
3450 if (!skip) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003451 local->scan_channel = chan;
3452 if (ieee80211_hw_config(local)) {
Johannes Berg8318d782008-01-24 19:38:38 +01003453 printk(KERN_DEBUG "%s: failed to set freq to "
3454 "%d MHz for scan\n", dev->name,
3455 chan->center_freq);
Jiri Bencf0706e82007-05-05 11:45:53 -07003456 skip = 1;
3457 }
3458 }
3459
Johannes Berg69d464d2008-01-28 17:08:56 +01003460 /* advance state machine to next channel/band */
Jiri Bencf0706e82007-05-05 11:45:53 -07003461 local->scan_channel_idx++;
Johannes Berg8318d782008-01-24 19:38:38 +01003462 if (local->scan_channel_idx >= sband->n_channels) {
Johannes Berg69d464d2008-01-28 17:08:56 +01003463 /*
3464 * scan_band may end up == IEEE80211_NUM_BANDS, but
3465 * we'll catch that case above and complete the scan
3466 * if that is the case.
3467 */
Johannes Berg8318d782008-01-24 19:38:38 +01003468 local->scan_band++;
3469 local->scan_channel_idx = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -07003470 }
3471
3472 if (skip)
3473 break;
3474
3475 next_delay = IEEE80211_PROBE_DELAY +
3476 usecs_to_jiffies(local->hw.channel_change_time);
3477 local->scan_state = SCAN_SEND_PROBE;
3478 break;
3479 case SCAN_SEND_PROBE:
Johannes Berg8318d782008-01-24 19:38:38 +01003480 next_delay = IEEE80211_PASSIVE_CHANNEL_TIME;
Jiri Bencf0706e82007-05-05 11:45:53 -07003481 local->scan_state = SCAN_SET_CHANNEL;
Johannes Berg8318d782008-01-24 19:38:38 +01003482
3483 if (local->scan_channel->flags & IEEE80211_CHAN_PASSIVE_SCAN)
3484 break;
3485 ieee80211_send_probe_req(dev, NULL, local->scan_ssid,
3486 local->scan_ssid_len);
3487 next_delay = IEEE80211_CHANNEL_TIME;
Jiri Bencf0706e82007-05-05 11:45:53 -07003488 break;
3489 }
3490
Zhu Yiece8edd2007-11-22 10:53:21 +08003491 if (local->sta_sw_scanning)
Jiri Bencf0706e82007-05-05 11:45:53 -07003492 queue_delayed_work(local->hw.workqueue, &local->scan_work,
3493 next_delay);
3494}
3495
3496
3497static int ieee80211_sta_start_scan(struct net_device *dev,
3498 u8 *ssid, size_t ssid_len)
3499{
3500 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3501 struct ieee80211_sub_if_data *sdata;
3502
3503 if (ssid_len > IEEE80211_MAX_SSID_LEN)
3504 return -EINVAL;
3505
3506 /* MLME-SCAN.request (page 118) page 144 (11.1.3.1)
3507 * BSSType: INFRASTRUCTURE, INDEPENDENT, ANY_BSS
3508 * BSSID: MACAddress
3509 * SSID
3510 * ScanType: ACTIVE, PASSIVE
3511 * ProbeDelay: delay (in microseconds) to be used prior to transmitting
3512 * a Probe frame during active scanning
3513 * ChannelList
3514 * MinChannelTime (>= ProbeDelay), in TU
3515 * MaxChannelTime: (>= MinChannelTime), in TU
3516 */
3517
3518 /* MLME-SCAN.confirm
3519 * BSSDescriptionSet
3520 * ResultCode: SUCCESS, INVALID_PARAMETERS
3521 */
3522
Zhu Yiece8edd2007-11-22 10:53:21 +08003523 if (local->sta_sw_scanning || local->sta_hw_scanning) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003524 if (local->scan_dev == dev)
3525 return 0;
3526 return -EBUSY;
3527 }
3528
3529 if (local->ops->hw_scan) {
3530 int rc = local->ops->hw_scan(local_to_hw(local),
Zhu Yiece8edd2007-11-22 10:53:21 +08003531 ssid, ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07003532 if (!rc) {
Zhu Yiece8edd2007-11-22 10:53:21 +08003533 local->sta_hw_scanning = 1;
Jiri Bencf0706e82007-05-05 11:45:53 -07003534 local->scan_dev = dev;
3535 }
3536 return rc;
3537 }
3538
Zhu Yiece8edd2007-11-22 10:53:21 +08003539 local->sta_sw_scanning = 1;
Jiri Bencf0706e82007-05-05 11:45:53 -07003540
Johannes Berg79010422007-09-18 17:29:21 -04003541 rcu_read_lock();
3542 list_for_each_entry_rcu(sdata, &local->interfaces, list) {
Mattias Nissler14042cbe2007-06-08 15:31:13 +02003543
3544 /* Don't stop the master interface, otherwise we can't transmit
3545 * probes! */
3546 if (sdata->dev == local->mdev)
3547 continue;
3548
Jiri Bencf0706e82007-05-05 11:45:53 -07003549 netif_stop_queue(sdata->dev);
Johannes Berg51fb61e2007-12-19 01:31:27 +01003550 if (sdata->vif.type == IEEE80211_IF_TYPE_STA &&
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003551 (sdata->u.sta.flags & IEEE80211_STA_ASSOCIATED))
Jiri Bencf0706e82007-05-05 11:45:53 -07003552 ieee80211_send_nullfunc(local, sdata, 1);
3553 }
Johannes Berg79010422007-09-18 17:29:21 -04003554 rcu_read_unlock();
Jiri Bencf0706e82007-05-05 11:45:53 -07003555
3556 if (ssid) {
3557 local->scan_ssid_len = ssid_len;
3558 memcpy(local->scan_ssid, ssid, ssid_len);
3559 } else
3560 local->scan_ssid_len = 0;
3561 local->scan_state = SCAN_SET_CHANNEL;
Jiri Bencf0706e82007-05-05 11:45:53 -07003562 local->scan_channel_idx = 0;
Johannes Berg8318d782008-01-24 19:38:38 +01003563 local->scan_band = IEEE80211_BAND_2GHZ;
Jiri Bencf0706e82007-05-05 11:45:53 -07003564 local->scan_dev = dev;
3565
Johannes Berg4150c572007-09-17 01:29:23 -04003566 netif_tx_lock_bh(local->mdev);
3567 local->filter_flags |= FIF_BCN_PRBRESP_PROMISC;
3568 local->ops->configure_filter(local_to_hw(local),
3569 FIF_BCN_PRBRESP_PROMISC,
3570 &local->filter_flags,
3571 local->mdev->mc_count,
3572 local->mdev->mc_list);
3573 netif_tx_unlock_bh(local->mdev);
Jiri Bencf0706e82007-05-05 11:45:53 -07003574
3575 /* TODO: start scan as soon as all nullfunc frames are ACKed */
3576 queue_delayed_work(local->hw.workqueue, &local->scan_work,
3577 IEEE80211_CHANNEL_TIME);
3578
3579 return 0;
3580}
3581
3582
3583int ieee80211_sta_req_scan(struct net_device *dev, u8 *ssid, size_t ssid_len)
3584{
3585 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3586 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
3587 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3588
Johannes Berg51fb61e2007-12-19 01:31:27 +01003589 if (sdata->vif.type != IEEE80211_IF_TYPE_STA)
Jiri Bencf0706e82007-05-05 11:45:53 -07003590 return ieee80211_sta_start_scan(dev, ssid, ssid_len);
3591
Zhu Yiece8edd2007-11-22 10:53:21 +08003592 if (local->sta_sw_scanning || local->sta_hw_scanning) {
Jiri Bencf0706e82007-05-05 11:45:53 -07003593 if (local->scan_dev == dev)
3594 return 0;
3595 return -EBUSY;
3596 }
3597
Helmut Schaaa0af5f12007-11-09 16:25:08 +01003598 ifsta->scan_ssid_len = ssid_len;
3599 if (ssid_len)
3600 memcpy(ifsta->scan_ssid, ssid, ssid_len);
Jiri Bencf0706e82007-05-05 11:45:53 -07003601 set_bit(IEEE80211_STA_REQ_SCAN, &ifsta->request);
3602 queue_work(local->hw.workqueue, &ifsta->work);
3603 return 0;
3604}
3605
3606static char *
3607ieee80211_sta_scan_result(struct net_device *dev,
3608 struct ieee80211_sta_bss *bss,
3609 char *current_ev, char *end_buf)
3610{
3611 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3612 struct iw_event iwe;
3613
3614 if (time_after(jiffies,
3615 bss->last_update + IEEE80211_SCAN_RESULT_EXPIRE))
3616 return current_ev;
3617
Jiri Bencf0706e82007-05-05 11:45:53 -07003618 memset(&iwe, 0, sizeof(iwe));
3619 iwe.cmd = SIOCGIWAP;
3620 iwe.u.ap_addr.sa_family = ARPHRD_ETHER;
3621 memcpy(iwe.u.ap_addr.sa_data, bss->bssid, ETH_ALEN);
3622 current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe,
3623 IW_EV_ADDR_LEN);
3624
3625 memset(&iwe, 0, sizeof(iwe));
3626 iwe.cmd = SIOCGIWESSID;
3627 iwe.u.data.length = bss->ssid_len;
3628 iwe.u.data.flags = 1;
3629 current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe,
3630 bss->ssid);
3631
3632 if (bss->capability & (WLAN_CAPABILITY_ESS | WLAN_CAPABILITY_IBSS)) {
3633 memset(&iwe, 0, sizeof(iwe));
3634 iwe.cmd = SIOCGIWMODE;
3635 if (bss->capability & WLAN_CAPABILITY_ESS)
3636 iwe.u.mode = IW_MODE_MASTER;
3637 else
3638 iwe.u.mode = IW_MODE_ADHOC;
3639 current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe,
3640 IW_EV_UINT_LEN);
3641 }
3642
3643 memset(&iwe, 0, sizeof(iwe));
3644 iwe.cmd = SIOCGIWFREQ;
Johannes Berg8318d782008-01-24 19:38:38 +01003645 iwe.u.freq.m = bss->freq;
3646 iwe.u.freq.e = 6;
Jiri Bencf0706e82007-05-05 11:45:53 -07003647 current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe,
3648 IW_EV_FREQ_LEN);
Johannes Berg8318d782008-01-24 19:38:38 +01003649
3650 memset(&iwe, 0, sizeof(iwe));
3651 iwe.cmd = SIOCGIWFREQ;
3652 iwe.u.freq.m = ieee80211_frequency_to_channel(bss->freq);
3653 iwe.u.freq.e = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -07003654 current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe,
3655 IW_EV_FREQ_LEN);
3656
3657 memset(&iwe, 0, sizeof(iwe));
3658 iwe.cmd = IWEVQUAL;
3659 iwe.u.qual.qual = bss->signal;
3660 iwe.u.qual.level = bss->rssi;
3661 iwe.u.qual.noise = bss->noise;
3662 iwe.u.qual.updated = local->wstats_flags;
3663 current_ev = iwe_stream_add_event(current_ev, end_buf, &iwe,
3664 IW_EV_QUAL_LEN);
3665
3666 memset(&iwe, 0, sizeof(iwe));
3667 iwe.cmd = SIOCGIWENCODE;
3668 if (bss->capability & WLAN_CAPABILITY_PRIVACY)
3669 iwe.u.data.flags = IW_ENCODE_ENABLED | IW_ENCODE_NOKEY;
3670 else
3671 iwe.u.data.flags = IW_ENCODE_DISABLED;
3672 iwe.u.data.length = 0;
3673 current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe, "");
3674
3675 if (bss && bss->wpa_ie) {
3676 memset(&iwe, 0, sizeof(iwe));
3677 iwe.cmd = IWEVGENIE;
3678 iwe.u.data.length = bss->wpa_ie_len;
3679 current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe,
3680 bss->wpa_ie);
3681 }
3682
3683 if (bss && bss->rsn_ie) {
3684 memset(&iwe, 0, sizeof(iwe));
3685 iwe.cmd = IWEVGENIE;
3686 iwe.u.data.length = bss->rsn_ie_len;
3687 current_ev = iwe_stream_add_point(current_ev, end_buf, &iwe,
3688 bss->rsn_ie);
3689 }
3690
3691 if (bss && bss->supp_rates_len > 0) {
3692 /* display all supported rates in readable format */
3693 char *p = current_ev + IW_EV_LCP_LEN;
3694 int i;
3695
3696 memset(&iwe, 0, sizeof(iwe));
3697 iwe.cmd = SIOCGIWRATE;
3698 /* Those two flags are ignored... */
3699 iwe.u.bitrate.fixed = iwe.u.bitrate.disabled = 0;
3700
3701 for (i = 0; i < bss->supp_rates_len; i++) {
3702 iwe.u.bitrate.value = ((bss->supp_rates[i] &
3703 0x7f) * 500000);
3704 p = iwe_stream_add_value(current_ev, p,
3705 end_buf, &iwe, IW_EV_PARAM_LEN);
3706 }
3707 current_ev = p;
3708 }
3709
3710 if (bss) {
3711 char *buf;
3712 buf = kmalloc(30, GFP_ATOMIC);
3713 if (buf) {
3714 memset(&iwe, 0, sizeof(iwe));
3715 iwe.cmd = IWEVCUSTOM;
3716 sprintf(buf, "tsf=%016llx", (unsigned long long)(bss->timestamp));
3717 iwe.u.data.length = strlen(buf);
3718 current_ev = iwe_stream_add_point(current_ev, end_buf,
3719 &iwe, buf);
3720 kfree(buf);
3721 }
3722 }
3723
Jiri Bencf0706e82007-05-05 11:45:53 -07003724 return current_ev;
3725}
3726
3727
3728int ieee80211_sta_scan_results(struct net_device *dev, char *buf, size_t len)
3729{
3730 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3731 char *current_ev = buf;
3732 char *end_buf = buf + len;
3733 struct ieee80211_sta_bss *bss;
3734
3735 spin_lock_bh(&local->sta_bss_lock);
3736 list_for_each_entry(bss, &local->sta_bss_list, list) {
3737 if (buf + len - current_ev <= IW_EV_ADDR_LEN) {
3738 spin_unlock_bh(&local->sta_bss_lock);
3739 return -E2BIG;
3740 }
3741 current_ev = ieee80211_sta_scan_result(dev, bss, current_ev,
3742 end_buf);
3743 }
3744 spin_unlock_bh(&local->sta_bss_lock);
3745 return current_ev - buf;
3746}
3747
3748
3749int ieee80211_sta_set_extra_ie(struct net_device *dev, char *ie, size_t len)
3750{
3751 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3752 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
3753 kfree(ifsta->extra_ie);
3754 if (len == 0) {
3755 ifsta->extra_ie = NULL;
3756 ifsta->extra_ie_len = 0;
3757 return 0;
3758 }
3759 ifsta->extra_ie = kmalloc(len, GFP_KERNEL);
3760 if (!ifsta->extra_ie) {
3761 ifsta->extra_ie_len = 0;
3762 return -ENOMEM;
3763 }
3764 memcpy(ifsta->extra_ie, ie, len);
3765 ifsta->extra_ie_len = len;
3766 return 0;
3767}
3768
3769
3770struct sta_info * ieee80211_ibss_add_sta(struct net_device *dev,
3771 struct sk_buff *skb, u8 *bssid,
3772 u8 *addr)
3773{
3774 struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
3775 struct sta_info *sta;
John W. Linville91fa5582007-05-15 16:14:40 -04003776 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
Joe Perches0795af52007-10-03 17:59:30 -07003777 DECLARE_MAC_BUF(mac);
Jiri Bencf0706e82007-05-05 11:45:53 -07003778
3779 /* TODO: Could consider removing the least recently used entry and
3780 * allow new one to be added. */
3781 if (local->num_sta >= IEEE80211_IBSS_MAX_STA_ENTRIES) {
3782 if (net_ratelimit()) {
3783 printk(KERN_DEBUG "%s: No room for a new IBSS STA "
Joe Perches0795af52007-10-03 17:59:30 -07003784 "entry %s\n", dev->name, print_mac(mac, addr));
Jiri Bencf0706e82007-05-05 11:45:53 -07003785 }
3786 return NULL;
3787 }
3788
Joe Perches0795af52007-10-03 17:59:30 -07003789 printk(KERN_DEBUG "%s: Adding new IBSS station %s (dev=%s)\n",
Johannes Bergdd1cd4c2007-09-18 17:29:20 -04003790 wiphy_name(local->hw.wiphy), print_mac(mac, addr), dev->name);
Jiri Bencf0706e82007-05-05 11:45:53 -07003791
3792 sta = sta_info_add(local, dev, addr, GFP_ATOMIC);
3793 if (!sta)
3794 return NULL;
3795
Johannes Berg238814f2008-01-28 17:19:37 +01003796 sta->flags |= WLAN_STA_AUTHORIZED;
3797
Johannes Berg8318d782008-01-24 19:38:38 +01003798 sta->supp_rates[local->hw.conf.channel->band] =
3799 sdata->u.sta.supp_rates_bits[local->hw.conf.channel->band];
Jiri Bencf0706e82007-05-05 11:45:53 -07003800
3801 rate_control_rate_init(sta, local);
3802
3803 return sta; /* caller will call sta_info_put() */
3804}
3805
3806
3807int ieee80211_sta_deauthenticate(struct net_device *dev, u16 reason)
3808{
3809 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3810 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
3811
3812 printk(KERN_DEBUG "%s: deauthenticate(reason=%d)\n",
3813 dev->name, reason);
3814
Johannes Berg51fb61e2007-12-19 01:31:27 +01003815 if (sdata->vif.type != IEEE80211_IF_TYPE_STA &&
3816 sdata->vif.type != IEEE80211_IF_TYPE_IBSS)
Jiri Bencf0706e82007-05-05 11:45:53 -07003817 return -EINVAL;
3818
3819 ieee80211_send_deauth(dev, ifsta, reason);
3820 ieee80211_set_disassoc(dev, ifsta, 1);
3821 return 0;
3822}
3823
3824
3825int ieee80211_sta_disassociate(struct net_device *dev, u16 reason)
3826{
3827 struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
3828 struct ieee80211_if_sta *ifsta = &sdata->u.sta;
3829
3830 printk(KERN_DEBUG "%s: disassociate(reason=%d)\n",
3831 dev->name, reason);
3832
Johannes Berg51fb61e2007-12-19 01:31:27 +01003833 if (sdata->vif.type != IEEE80211_IF_TYPE_STA)
Jiri Bencf0706e82007-05-05 11:45:53 -07003834 return -EINVAL;
3835
Jiri Slabyd6f2da52007-08-28 17:01:54 -04003836 if (!(ifsta->flags & IEEE80211_STA_ASSOCIATED))
Jiri Bencf0706e82007-05-05 11:45:53 -07003837 return -1;
3838
3839 ieee80211_send_disassoc(dev, ifsta, reason);
3840 ieee80211_set_disassoc(dev, ifsta, 0);
3841 return 0;
3842}