blob: 01fecee026a11b90bba17c29b431766f6ec28760 [file] [log] [blame]
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001/*
2 * hostapd / VLAN initialization
3 * Copyright 2003, Instant802 Networks, Inc.
4 * Copyright 2005-2006, Devicescape Software, Inc.
5 * Copyright (c) 2009, Jouni Malinen <j@w1.fi>
6 *
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08007 * This software may be distributed under the terms of the BSD license.
8 * See README for more details.
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07009 */
10
11#include "utils/includes.h"
12
13#include "utils/common.h"
14#include "hostapd.h"
15#include "ap_config.h"
16#include "ap_drv_ops.h"
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080017#include "wpa_auth.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070018#include "vlan_init.h"
Dmitry Shmidt61d9df32012-08-29 16:22:06 -070019#include "vlan_util.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070020
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070021
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080022static int vlan_if_add(struct hostapd_data *hapd, struct hostapd_vlan *vlan,
23 int existsok)
24{
25 int ret, i;
26
27 for (i = 0; i < NUM_WEP_KEYS; i++) {
28 if (!hapd->conf->ssid.wep.key[i])
29 continue;
30 wpa_printf(MSG_ERROR,
31 "VLAN: Refusing to set up VLAN iface %s with WEP",
32 vlan->ifname);
33 return -1;
34 }
35
Dmitry Shmidte4663042016-04-04 10:07:49 -070036 if (!iface_exists(vlan->ifname))
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080037 ret = hostapd_vlan_if_add(hapd, vlan->ifname);
38 else if (!existsok)
39 return -1;
40 else
41 ret = 0;
42
43 if (ret)
44 return ret;
45
46 ifconfig_up(vlan->ifname); /* else wpa group will fail fatal */
47
48 if (hapd->wpa_auth)
49 ret = wpa_auth_ensure_group(hapd->wpa_auth, vlan->vlan_id);
50
51 if (ret == 0)
52 return ret;
53
54 wpa_printf(MSG_ERROR, "WPA initialization for VLAN %d failed (%d)",
55 vlan->vlan_id, ret);
56 if (wpa_auth_release_group(hapd->wpa_auth, vlan->vlan_id))
57 wpa_printf(MSG_ERROR, "WPA deinit of %s failed", vlan->ifname);
58
59 /* group state machine setup failed */
60 if (hostapd_vlan_if_remove(hapd, vlan->ifname))
61 wpa_printf(MSG_ERROR, "Removal of %s failed", vlan->ifname);
62
63 return ret;
64}
65
66
Dmitry Shmidte4663042016-04-04 10:07:49 -070067int vlan_if_remove(struct hostapd_data *hapd, struct hostapd_vlan *vlan)
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080068{
69 int ret;
70
71 ret = wpa_auth_release_group(hapd->wpa_auth, vlan->vlan_id);
72 if (ret)
73 wpa_printf(MSG_ERROR,
74 "WPA deinitialization for VLAN %d failed (%d)",
75 vlan->vlan_id, ret);
76
77 return hostapd_vlan_if_remove(hapd, vlan->ifname);
78}
79
80
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070081static int vlan_dynamic_add(struct hostapd_data *hapd,
82 struct hostapd_vlan *vlan)
83{
84 while (vlan) {
85 if (vlan->vlan_id != VLAN_ID_WILDCARD) {
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080086 if (vlan_if_add(hapd, vlan, 1)) {
87 wpa_printf(MSG_ERROR,
88 "VLAN: Could not add VLAN %s: %s",
89 vlan->ifname, strerror(errno));
90 return -1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070091 }
92#ifdef CONFIG_FULL_DYNAMIC_VLAN
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080093 vlan_newlink(vlan->ifname, hapd);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070094#endif /* CONFIG_FULL_DYNAMIC_VLAN */
95 }
96
97 vlan = vlan->next;
98 }
99
100 return 0;
101}
102
103
104static void vlan_dynamic_remove(struct hostapd_data *hapd,
105 struct hostapd_vlan *vlan)
106{
107 struct hostapd_vlan *next;
108
109 while (vlan) {
110 next = vlan->next;
111
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800112#ifdef CONFIG_FULL_DYNAMIC_VLAN
113 /* vlan_dellink() takes care of cleanup and interface removal */
114 if (vlan->vlan_id != VLAN_ID_WILDCARD)
115 vlan_dellink(vlan->ifname, hapd);
116#else /* CONFIG_FULL_DYNAMIC_VLAN */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700117 if (vlan->vlan_id != VLAN_ID_WILDCARD &&
Dmitry Shmidtd80a4012015-11-05 16:35:40 -0800118 vlan_if_remove(hapd, vlan)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700119 wpa_printf(MSG_ERROR, "VLAN: Could not remove VLAN "
120 "iface: %s: %s",
121 vlan->ifname, strerror(errno));
122 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700123#endif /* CONFIG_FULL_DYNAMIC_VLAN */
124
125 vlan = next;
126 }
127}
128
129
130int vlan_init(struct hostapd_data *hapd)
131{
132#ifdef CONFIG_FULL_DYNAMIC_VLAN
133 hapd->full_dynamic_vlan = full_dynamic_vlan_init(hapd);
134#endif /* CONFIG_FULL_DYNAMIC_VLAN */
135
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800136 if ((hapd->conf->ssid.dynamic_vlan != DYNAMIC_VLAN_DISABLED ||
137 hapd->conf->ssid.per_sta_vif) &&
Dmitry Shmidt4b060592013-04-29 16:42:49 -0700138 !hapd->conf->vlan) {
139 /* dynamic vlans enabled but no (or empty) vlan_file given */
140 struct hostapd_vlan *vlan;
Hai Shalom39ba6fc2019-01-22 12:40:38 -0800141 int ret;
142
Dmitry Shmidt4b060592013-04-29 16:42:49 -0700143 vlan = os_zalloc(sizeof(*vlan));
144 if (vlan == NULL) {
145 wpa_printf(MSG_ERROR, "Out of memory while assigning "
146 "VLAN interfaces");
147 return -1;
148 }
149
150 vlan->vlan_id = VLAN_ID_WILDCARD;
Hai Shalom39ba6fc2019-01-22 12:40:38 -0800151 ret = os_snprintf(vlan->ifname, sizeof(vlan->ifname), "%s.#",
152 hapd->conf->iface);
153 if (ret >= (int) sizeof(vlan->ifname)) {
154 wpa_printf(MSG_WARNING,
155 "VLAN: Interface name was truncated to %s",
156 vlan->ifname);
157 } else if (ret < 0) {
158 os_free(vlan);
159 return ret;
160 }
Dmitry Shmidtd5c075b2013-08-05 14:36:10 -0700161 vlan->next = hapd->conf->vlan;
162 hapd->conf->vlan = vlan;
Dmitry Shmidt4b060592013-04-29 16:42:49 -0700163 }
164
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700165 if (vlan_dynamic_add(hapd, hapd->conf->vlan))
166 return -1;
167
168 return 0;
169}
170
171
172void vlan_deinit(struct hostapd_data *hapd)
173{
174 vlan_dynamic_remove(hapd, hapd->conf->vlan);
175
176#ifdef CONFIG_FULL_DYNAMIC_VLAN
177 full_dynamic_vlan_deinit(hapd->full_dynamic_vlan);
Dmitry Shmidt56052862013-10-04 10:23:25 -0700178 hapd->full_dynamic_vlan = NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700179#endif /* CONFIG_FULL_DYNAMIC_VLAN */
180}
181
182
183struct hostapd_vlan * vlan_add_dynamic(struct hostapd_data *hapd,
184 struct hostapd_vlan *vlan,
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800185 int vlan_id,
186 struct vlan_description *vlan_desc)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700187{
Dmitry Shmidt9c175262016-03-03 10:20:07 -0800188 struct hostapd_vlan *n;
189 char ifname[IFNAMSIZ + 1], *pos;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700190
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800191 if (vlan == NULL || vlan->vlan_id != VLAN_ID_WILDCARD)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700192 return NULL;
193
194 wpa_printf(MSG_DEBUG, "VLAN: %s(vlan_id=%d ifname=%s)",
195 __func__, vlan_id, vlan->ifname);
Dmitry Shmidt9c175262016-03-03 10:20:07 -0800196 os_strlcpy(ifname, vlan->ifname, sizeof(ifname));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700197 pos = os_strchr(ifname, '#');
Dmitry Shmidt216983b2015-02-06 10:50:36 -0800198 if (pos == NULL)
Dmitry Shmidt9c175262016-03-03 10:20:07 -0800199 return NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700200 *pos++ = '\0';
201
202 n = os_zalloc(sizeof(*n));
Dmitry Shmidt216983b2015-02-06 10:50:36 -0800203 if (n == NULL)
Dmitry Shmidt9c175262016-03-03 10:20:07 -0800204 return NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700205
206 n->vlan_id = vlan_id;
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800207 if (vlan_desc)
208 n->vlan_desc = *vlan_desc;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700209 n->dynamic_vlan = 1;
210
211 os_snprintf(n->ifname, sizeof(n->ifname), "%s%d%s", ifname, vlan_id,
212 pos);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700213
Dmitry Shmidtd80a4012015-11-05 16:35:40 -0800214 n->next = hapd->conf->vlan;
215 hapd->conf->vlan = n;
216
217 /* hapd->conf->vlan needs this new VLAN here for WPA setup */
218 if (vlan_if_add(hapd, n, 0)) {
219 hapd->conf->vlan = n->next;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700220 os_free(n);
Dmitry Shmidt216983b2015-02-06 10:50:36 -0800221 n = NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700222 }
223
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700224 return n;
225}
226
227
228int vlan_remove_dynamic(struct hostapd_data *hapd, int vlan_id)
229{
230 struct hostapd_vlan *vlan;
231
Dmitry Shmidt57c2d392016-02-23 13:40:19 -0800232 if (vlan_id <= 0)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700233 return 1;
234
Dmitry Shmidt83474442015-04-15 13:47:09 -0700235 wpa_printf(MSG_DEBUG, "VLAN: %s(ifname=%s vlan_id=%d)",
236 __func__, hapd->conf->iface, vlan_id);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700237
238 vlan = hapd->conf->vlan;
239 while (vlan) {
240 if (vlan->vlan_id == vlan_id && vlan->dynamic_vlan > 0) {
241 vlan->dynamic_vlan--;
242 break;
243 }
244 vlan = vlan->next;
245 }
246
247 if (vlan == NULL)
248 return 1;
249
Dmitry Shmidta3dc3092015-06-23 11:21:28 -0700250 if (vlan->dynamic_vlan == 0) {
Dmitry Shmidtd80a4012015-11-05 16:35:40 -0800251 vlan_if_remove(hapd, vlan);
Dmitry Shmidta3dc3092015-06-23 11:21:28 -0700252#ifdef CONFIG_FULL_DYNAMIC_VLAN
253 vlan_dellink(vlan->ifname, hapd);
254#endif /* CONFIG_FULL_DYNAMIC_VLAN */
255 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700256
257 return 0;
258}