blob: 6ad09a87517490f1d8d0ca2d97f89e76d0dbceb4 [file] [log] [blame]
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001/*
2 * WPA Supplicant
Dmitry Shmidt807291d2015-01-27 13:40:23 -08003 * Copyright (c) 2003-2015, Jouni Malinen <j@w1.fi>
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004 *
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08005 * This software may be distributed under the terms of the BSD license.
6 * See README for more details.
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07007 *
8 * This file implements functions for registering and unregistering
9 * %wpa_supplicant interfaces. In addition, this file contains number of
10 * functions for managing network connections.
11 */
12
13#include "includes.h"
14
15#include "common.h"
16#include "crypto/random.h"
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -080017#include "crypto/sha1.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070018#include "eapol_supp/eapol_supp_sm.h"
19#include "eap_peer/eap.h"
Dmitry Shmidt34af3062013-07-11 10:46:32 -070020#include "eap_peer/eap_proxy.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070021#include "eap_server/eap_methods.h"
22#include "rsn_supp/wpa.h"
23#include "eloop.h"
24#include "config.h"
Dmitry Shmidt61d9df32012-08-29 16:22:06 -070025#include "utils/ext_password.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070026#include "l2_packet/l2_packet.h"
27#include "wpa_supplicant_i.h"
28#include "driver_i.h"
29#include "ctrl_iface.h"
30#include "pcsc_funcs.h"
31#include "common/version.h"
32#include "rsn_supp/preauth.h"
33#include "rsn_supp/pmksa_cache.h"
34#include "common/wpa_ctrl.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070035#include "common/ieee802_11_defs.h"
Dmitry Shmidtff787d52015-01-12 13:01:47 -080036#include "common/hw_features_common.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070037#include "p2p/p2p.h"
38#include "blacklist.h"
39#include "wpas_glue.h"
40#include "wps_supplicant.h"
41#include "ibss_rsn.h"
42#include "sme.h"
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -080043#include "gas_query.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070044#include "ap.h"
45#include "p2p_supplicant.h"
Dmitry Shmidt61d9df32012-08-29 16:22:06 -070046#include "wifi_display.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070047#include "notify.h"
48#include "bgscan.h"
Dmitry Shmidt04949592012-07-19 12:16:46 -070049#include "autoscan.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070050#include "bss.h"
51#include "scan.h"
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -080052#include "offchannel.h"
Dmitry Shmidt04949592012-07-19 12:16:46 -070053#include "hs20_supplicant.h"
Dmitry Shmidt44c95782013-05-17 09:51:35 -070054#include "wnm_sta.h"
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -070055#include "wpas_kay.h"
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -080056#include "mesh.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070057
58const char *wpa_supplicant_version =
59"wpa_supplicant v" VERSION_STR "\n"
Dmitry Shmidt807291d2015-01-27 13:40:23 -080060"Copyright (c) 2003-2015, Jouni Malinen <j@w1.fi> and contributors";
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070061
62const char *wpa_supplicant_license =
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -080063"This software may be distributed under the terms of the BSD license.\n"
64"See README for more details.\n"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070065#ifdef EAP_TLS_OPENSSL
66"\nThis product includes software developed by the OpenSSL Project\n"
67"for use in the OpenSSL Toolkit (http://www.openssl.org/)\n"
68#endif /* EAP_TLS_OPENSSL */
69;
70
71#ifndef CONFIG_NO_STDOUT_DEBUG
72/* Long text divided into parts in order to fit in C89 strings size limits. */
73const char *wpa_supplicant_full_license1 =
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -080074"";
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070075const char *wpa_supplicant_full_license2 =
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -080076"This software may be distributed under the terms of the BSD license.\n"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070077"\n"
78"Redistribution and use in source and binary forms, with or without\n"
79"modification, are permitted provided that the following conditions are\n"
80"met:\n"
81"\n";
82const char *wpa_supplicant_full_license3 =
83"1. Redistributions of source code must retain the above copyright\n"
84" notice, this list of conditions and the following disclaimer.\n"
85"\n"
86"2. Redistributions in binary form must reproduce the above copyright\n"
87" notice, this list of conditions and the following disclaimer in the\n"
88" documentation and/or other materials provided with the distribution.\n"
89"\n";
90const char *wpa_supplicant_full_license4 =
91"3. Neither the name(s) of the above-listed copyright holder(s) nor the\n"
92" names of its contributors may be used to endorse or promote products\n"
93" derived from this software without specific prior written permission.\n"
94"\n"
95"THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS\n"
96"\"AS IS\" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT\n"
97"LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR\n"
98"A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT\n";
99const char *wpa_supplicant_full_license5 =
100"OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,\n"
101"SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT\n"
102"LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,\n"
103"DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY\n"
104"THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT\n"
105"(INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE\n"
106"OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.\n"
107"\n";
108#endif /* CONFIG_NO_STDOUT_DEBUG */
109
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700110/* Configure default/group WEP keys for static WEP */
111int wpa_set_wep_keys(struct wpa_supplicant *wpa_s, struct wpa_ssid *ssid)
112{
113 int i, set = 0;
114
115 for (i = 0; i < NUM_WEP_KEYS; i++) {
116 if (ssid->wep_key_len[i] == 0)
117 continue;
118
119 set = 1;
120 wpa_drv_set_key(wpa_s, WPA_ALG_WEP, NULL,
121 i, i == ssid->wep_tx_keyidx, NULL, 0,
122 ssid->wep_key[i], ssid->wep_key_len[i]);
123 }
124
125 return set;
126}
127
128
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -0700129int wpa_supplicant_set_wpa_none_key(struct wpa_supplicant *wpa_s,
130 struct wpa_ssid *ssid)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700131{
132 u8 key[32];
133 size_t keylen;
134 enum wpa_alg alg;
135 u8 seq[6] = { 0 };
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800136 int ret;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700137
138 /* IBSS/WPA-None uses only one key (Group) for both receiving and
139 * sending unicast and multicast packets. */
140
141 if (ssid->mode != WPAS_MODE_IBSS) {
142 wpa_msg(wpa_s, MSG_INFO, "WPA: Invalid mode %d (not "
143 "IBSS/ad-hoc) for WPA-None", ssid->mode);
144 return -1;
145 }
146
147 if (!ssid->psk_set) {
148 wpa_msg(wpa_s, MSG_INFO, "WPA: No PSK configured for "
149 "WPA-None");
150 return -1;
151 }
152
153 switch (wpa_s->group_cipher) {
154 case WPA_CIPHER_CCMP:
155 os_memcpy(key, ssid->psk, 16);
156 keylen = 16;
157 alg = WPA_ALG_CCMP;
158 break;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700159 case WPA_CIPHER_GCMP:
160 os_memcpy(key, ssid->psk, 16);
161 keylen = 16;
162 alg = WPA_ALG_GCMP;
163 break;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700164 case WPA_CIPHER_TKIP:
165 /* WPA-None uses the same Michael MIC key for both TX and RX */
166 os_memcpy(key, ssid->psk, 16 + 8);
167 os_memcpy(key + 16 + 8, ssid->psk + 16, 8);
168 keylen = 32;
169 alg = WPA_ALG_TKIP;
170 break;
171 default:
172 wpa_msg(wpa_s, MSG_INFO, "WPA: Invalid group cipher %d for "
173 "WPA-None", wpa_s->group_cipher);
174 return -1;
175 }
176
177 /* TODO: should actually remember the previously used seq#, both for TX
178 * and RX from each STA.. */
179
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800180 ret = wpa_drv_set_key(wpa_s, alg, NULL, 0, 1, seq, 6, key, keylen);
181 os_memset(key, 0, sizeof(key));
182 return ret;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700183}
184
185
186static void wpa_supplicant_timeout(void *eloop_ctx, void *timeout_ctx)
187{
188 struct wpa_supplicant *wpa_s = eloop_ctx;
189 const u8 *bssid = wpa_s->bssid;
190 if (is_zero_ether_addr(bssid))
191 bssid = wpa_s->pending_bssid;
192 wpa_msg(wpa_s, MSG_INFO, "Authentication with " MACSTR " timed out.",
193 MAC2STR(bssid));
194 wpa_blacklist_add(wpa_s, bssid);
195 wpa_sm_notify_disassoc(wpa_s->wpa);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800196 wpa_supplicant_deauthenticate(wpa_s, WLAN_REASON_DEAUTH_LEAVING);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700197 wpa_s->reassociate = 1;
198
199 /*
200 * If we timed out, the AP or the local radio may be busy.
201 * So, wait a second until scanning again.
202 */
203 wpa_supplicant_req_scan(wpa_s, 1, 0);
204}
205
206
207/**
208 * wpa_supplicant_req_auth_timeout - Schedule a timeout for authentication
209 * @wpa_s: Pointer to wpa_supplicant data
210 * @sec: Number of seconds after which to time out authentication
211 * @usec: Number of microseconds after which to time out authentication
212 *
213 * This function is used to schedule a timeout for the current authentication
214 * attempt.
215 */
216void wpa_supplicant_req_auth_timeout(struct wpa_supplicant *wpa_s,
217 int sec, int usec)
218{
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -0700219 if (wpa_s->conf->ap_scan == 0 &&
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700220 (wpa_s->drv_flags & WPA_DRIVER_FLAGS_WIRED))
221 return;
222
223 wpa_dbg(wpa_s, MSG_DEBUG, "Setting authentication timeout: %d sec "
224 "%d usec", sec, usec);
225 eloop_cancel_timeout(wpa_supplicant_timeout, wpa_s, NULL);
226 eloop_register_timeout(sec, usec, wpa_supplicant_timeout, wpa_s, NULL);
227}
228
229
230/**
231 * wpa_supplicant_cancel_auth_timeout - Cancel authentication timeout
232 * @wpa_s: Pointer to wpa_supplicant data
233 *
234 * This function is used to cancel authentication timeout scheduled with
235 * wpa_supplicant_req_auth_timeout() and it is called when authentication has
236 * been completed.
237 */
238void wpa_supplicant_cancel_auth_timeout(struct wpa_supplicant *wpa_s)
239{
240 wpa_dbg(wpa_s, MSG_DEBUG, "Cancelling authentication timeout");
241 eloop_cancel_timeout(wpa_supplicant_timeout, wpa_s, NULL);
242 wpa_blacklist_del(wpa_s, wpa_s->bssid);
243}
244
245
246/**
247 * wpa_supplicant_initiate_eapol - Configure EAPOL state machine
248 * @wpa_s: Pointer to wpa_supplicant data
249 *
250 * This function is used to configure EAPOL state machine based on the selected
251 * authentication mode.
252 */
253void wpa_supplicant_initiate_eapol(struct wpa_supplicant *wpa_s)
254{
255#ifdef IEEE8021X_EAPOL
256 struct eapol_config eapol_conf;
257 struct wpa_ssid *ssid = wpa_s->current_ssid;
258
259#ifdef CONFIG_IBSS_RSN
260 if (ssid->mode == WPAS_MODE_IBSS &&
261 wpa_s->key_mgmt != WPA_KEY_MGMT_NONE &&
262 wpa_s->key_mgmt != WPA_KEY_MGMT_WPA_NONE) {
263 /*
264 * RSN IBSS authentication is per-STA and we can disable the
265 * per-BSSID EAPOL authentication.
266 */
267 eapol_sm_notify_portControl(wpa_s->eapol, ForceAuthorized);
268 eapol_sm_notify_eap_success(wpa_s->eapol, TRUE);
269 eapol_sm_notify_eap_fail(wpa_s->eapol, FALSE);
270 return;
271 }
272#endif /* CONFIG_IBSS_RSN */
273
274 eapol_sm_notify_eap_success(wpa_s->eapol, FALSE);
275 eapol_sm_notify_eap_fail(wpa_s->eapol, FALSE);
276
277 if (wpa_s->key_mgmt == WPA_KEY_MGMT_NONE ||
278 wpa_s->key_mgmt == WPA_KEY_MGMT_WPA_NONE)
279 eapol_sm_notify_portControl(wpa_s->eapol, ForceAuthorized);
280 else
281 eapol_sm_notify_portControl(wpa_s->eapol, Auto);
282
283 os_memset(&eapol_conf, 0, sizeof(eapol_conf));
284 if (wpa_s->key_mgmt == WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
285 eapol_conf.accept_802_1x_keys = 1;
286 eapol_conf.required_keys = 0;
287 if (ssid->eapol_flags & EAPOL_FLAG_REQUIRE_KEY_UNICAST) {
288 eapol_conf.required_keys |= EAPOL_REQUIRE_KEY_UNICAST;
289 }
290 if (ssid->eapol_flags & EAPOL_FLAG_REQUIRE_KEY_BROADCAST) {
291 eapol_conf.required_keys |=
292 EAPOL_REQUIRE_KEY_BROADCAST;
293 }
294
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -0700295 if (wpa_s->drv_flags & WPA_DRIVER_FLAGS_WIRED)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700296 eapol_conf.required_keys = 0;
297 }
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -0700298 eapol_conf.fast_reauth = wpa_s->conf->fast_reauth;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700299 eapol_conf.workaround = ssid->eap_workaround;
300 eapol_conf.eap_disabled =
301 !wpa_key_mgmt_wpa_ieee8021x(wpa_s->key_mgmt) &&
302 wpa_s->key_mgmt != WPA_KEY_MGMT_IEEE8021X_NO_WPA &&
303 wpa_s->key_mgmt != WPA_KEY_MGMT_WPS;
Dmitry Shmidt051af732013-10-22 13:52:46 -0700304 eapol_conf.external_sim = wpa_s->conf->external_sim;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800305
306#ifdef CONFIG_WPS
307 if (wpa_s->key_mgmt == WPA_KEY_MGMT_WPS) {
308 eapol_conf.wps |= EAPOL_LOCAL_WPS_IN_USE;
309 if (wpa_s->current_bss) {
310 struct wpabuf *ie;
311 ie = wpa_bss_get_vendor_ie_multi(wpa_s->current_bss,
312 WPS_IE_VENDOR_TYPE);
313 if (ie) {
314 if (wps_is_20(ie))
315 eapol_conf.wps |=
316 EAPOL_PEER_IS_WPS20_AP;
317 wpabuf_free(ie);
318 }
319 }
320 }
321#endif /* CONFIG_WPS */
322
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700323 eapol_sm_notify_config(wpa_s->eapol, &ssid->eap, &eapol_conf);
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -0700324
325 ieee802_1x_alloc_kay_sm(wpa_s, ssid);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800326#endif /* IEEE8021X_EAPOL */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700327}
328
329
330/**
331 * wpa_supplicant_set_non_wpa_policy - Set WPA parameters to non-WPA mode
332 * @wpa_s: Pointer to wpa_supplicant data
333 * @ssid: Configuration data for the network
334 *
335 * This function is used to configure WPA state machine and related parameters
336 * to a mode where WPA is not enabled. This is called as part of the
337 * authentication configuration when the selected network does not use WPA.
338 */
339void wpa_supplicant_set_non_wpa_policy(struct wpa_supplicant *wpa_s,
340 struct wpa_ssid *ssid)
341{
342 int i;
343
344 if (ssid->key_mgmt & WPA_KEY_MGMT_WPS)
345 wpa_s->key_mgmt = WPA_KEY_MGMT_WPS;
346 else if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_NO_WPA)
347 wpa_s->key_mgmt = WPA_KEY_MGMT_IEEE8021X_NO_WPA;
348 else
349 wpa_s->key_mgmt = WPA_KEY_MGMT_NONE;
350 wpa_sm_set_ap_wpa_ie(wpa_s->wpa, NULL, 0);
351 wpa_sm_set_ap_rsn_ie(wpa_s->wpa, NULL, 0);
352 wpa_sm_set_assoc_wpa_ie(wpa_s->wpa, NULL, 0);
353 wpa_s->pairwise_cipher = WPA_CIPHER_NONE;
354 wpa_s->group_cipher = WPA_CIPHER_NONE;
355 wpa_s->mgmt_group_cipher = 0;
356
357 for (i = 0; i < NUM_WEP_KEYS; i++) {
358 if (ssid->wep_key_len[i] > 5) {
359 wpa_s->pairwise_cipher = WPA_CIPHER_WEP104;
360 wpa_s->group_cipher = WPA_CIPHER_WEP104;
361 break;
362 } else if (ssid->wep_key_len[i] > 0) {
363 wpa_s->pairwise_cipher = WPA_CIPHER_WEP40;
364 wpa_s->group_cipher = WPA_CIPHER_WEP40;
365 break;
366 }
367 }
368
369 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_RSN_ENABLED, 0);
370 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_KEY_MGMT, wpa_s->key_mgmt);
371 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_PAIRWISE,
372 wpa_s->pairwise_cipher);
373 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_GROUP, wpa_s->group_cipher);
374#ifdef CONFIG_IEEE80211W
375 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_MGMT_GROUP,
376 wpa_s->mgmt_group_cipher);
377#endif /* CONFIG_IEEE80211W */
378
379 pmksa_cache_clear_current(wpa_s->wpa);
380}
381
382
Dmitry Shmidt04949592012-07-19 12:16:46 -0700383void free_hw_features(struct wpa_supplicant *wpa_s)
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800384{
385 int i;
386 if (wpa_s->hw.modes == NULL)
387 return;
388
389 for (i = 0; i < wpa_s->hw.num_modes; i++) {
390 os_free(wpa_s->hw.modes[i].channels);
391 os_free(wpa_s->hw.modes[i].rates);
392 }
393
394 os_free(wpa_s->hw.modes);
395 wpa_s->hw.modes = NULL;
396}
397
398
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700399static void wpa_supplicant_cleanup(struct wpa_supplicant *wpa_s)
400{
Dmitry Shmidt2e67f062014-07-16 09:55:28 -0700401 int i;
402
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700403 bgscan_deinit(wpa_s);
Dmitry Shmidt04949592012-07-19 12:16:46 -0700404 autoscan_deinit(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700405 scard_deinit(wpa_s->scard);
406 wpa_s->scard = NULL;
407 wpa_sm_set_scard_ctx(wpa_s->wpa, NULL);
408 eapol_sm_register_scard_ctx(wpa_s->eapol, NULL);
409 l2_packet_deinit(wpa_s->l2);
410 wpa_s->l2 = NULL;
411 if (wpa_s->l2_br) {
412 l2_packet_deinit(wpa_s->l2_br);
413 wpa_s->l2_br = NULL;
414 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800415#ifdef CONFIG_TESTING_OPTIONS
416 l2_packet_deinit(wpa_s->l2_test);
417 wpa_s->l2_test = NULL;
418#endif /* CONFIG_TESTING_OPTIONS */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700419
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700420 if (wpa_s->conf != NULL) {
421 struct wpa_ssid *ssid;
422 for (ssid = wpa_s->conf->ssid; ssid; ssid = ssid->next)
423 wpas_notify_network_removed(wpa_s, ssid);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700424 }
425
426 os_free(wpa_s->confname);
427 wpa_s->confname = NULL;
428
Jouni Malinen5d1c8ad2013-04-23 12:34:56 -0700429 os_free(wpa_s->confanother);
430 wpa_s->confanother = NULL;
431
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700432 wpa_sm_set_eapol(wpa_s->wpa, NULL);
433 eapol_sm_deinit(wpa_s->eapol);
434 wpa_s->eapol = NULL;
435
436 rsn_preauth_deinit(wpa_s->wpa);
437
438#ifdef CONFIG_TDLS
439 wpa_tdls_deinit(wpa_s->wpa);
440#endif /* CONFIG_TDLS */
441
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800442 wmm_ac_clear_saved_tspecs(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700443 pmksa_candidate_free(wpa_s->wpa);
444 wpa_sm_deinit(wpa_s->wpa);
445 wpa_s->wpa = NULL;
446 wpa_blacklist_clear(wpa_s);
447
448 wpa_bss_deinit(wpa_s);
449
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -0700450 wpa_supplicant_cancel_delayed_sched_scan(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700451 wpa_supplicant_cancel_scan(wpa_s);
452 wpa_supplicant_cancel_auth_timeout(wpa_s);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800453 eloop_cancel_timeout(wpa_supplicant_stop_countermeasures, wpa_s, NULL);
454#ifdef CONFIG_DELAYED_MIC_ERROR_REPORT
455 eloop_cancel_timeout(wpa_supplicant_delayed_mic_error_report,
456 wpa_s, NULL);
457#endif /* CONFIG_DELAYED_MIC_ERROR_REPORT */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700458
459 wpas_wps_deinit(wpa_s);
460
461 wpabuf_free(wpa_s->pending_eapol_rx);
462 wpa_s->pending_eapol_rx = NULL;
463
464#ifdef CONFIG_IBSS_RSN
465 ibss_rsn_deinit(wpa_s->ibss_rsn);
466 wpa_s->ibss_rsn = NULL;
467#endif /* CONFIG_IBSS_RSN */
468
469 sme_deinit(wpa_s);
470
471#ifdef CONFIG_AP
472 wpa_supplicant_ap_deinit(wpa_s);
473#endif /* CONFIG_AP */
474
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700475 wpas_p2p_deinit(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700476
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800477#ifdef CONFIG_OFFCHANNEL
478 offchannel_deinit(wpa_s);
479#endif /* CONFIG_OFFCHANNEL */
480
481 wpa_supplicant_cancel_sched_scan(wpa_s);
482
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700483 os_free(wpa_s->next_scan_freqs);
484 wpa_s->next_scan_freqs = NULL;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800485
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800486 os_free(wpa_s->manual_scan_freqs);
487 wpa_s->manual_scan_freqs = NULL;
488
Dmitry Shmidtd11f0192014-03-24 12:09:47 -0700489 os_free(wpa_s->manual_sched_scan_freqs);
490 wpa_s->manual_sched_scan_freqs = NULL;
491
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800492 wpas_mac_addr_rand_scan_clear(wpa_s, MAC_ADDR_RAND_ALL);
493
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800494 gas_query_deinit(wpa_s->gas);
495 wpa_s->gas = NULL;
496
497 free_hw_features(wpa_s);
Dmitry Shmidt04949592012-07-19 12:16:46 -0700498
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -0700499 ieee802_1x_dealloc_kay_sm(wpa_s);
500
Dmitry Shmidt04949592012-07-19 12:16:46 -0700501 os_free(wpa_s->bssid_filter);
502 wpa_s->bssid_filter = NULL;
503
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800504 os_free(wpa_s->disallow_aps_bssid);
505 wpa_s->disallow_aps_bssid = NULL;
506 os_free(wpa_s->disallow_aps_ssid);
507 wpa_s->disallow_aps_ssid = NULL;
508
Dmitry Shmidt04949592012-07-19 12:16:46 -0700509 wnm_bss_keep_alive_deinit(wpa_s);
Dmitry Shmidt44c95782013-05-17 09:51:35 -0700510#ifdef CONFIG_WNM
511 wnm_deallocate_memory(wpa_s);
512#endif /* CONFIG_WNM */
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700513
514 ext_password_deinit(wpa_s->ext_pw);
515 wpa_s->ext_pw = NULL;
516
517 wpabuf_free(wpa_s->last_gas_resp);
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800518 wpa_s->last_gas_resp = NULL;
519 wpabuf_free(wpa_s->prev_gas_resp);
520 wpa_s->prev_gas_resp = NULL;
Dmitry Shmidt9bce59c2012-09-11 15:06:38 -0700521
522 os_free(wpa_s->last_scan_res);
523 wpa_s->last_scan_res = NULL;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -0800524
525#ifdef CONFIG_HS20
Dmitry Shmidt684785c2014-05-12 13:34:29 -0700526 hs20_deinit(wpa_s);
Dmitry Shmidtf21452a2014-02-26 10:55:25 -0800527#endif /* CONFIG_HS20 */
Dmitry Shmidt2e67f062014-07-16 09:55:28 -0700528
529 for (i = 0; i < NUM_VENDOR_ELEM_FRAMES; i++) {
530 wpabuf_free(wpa_s->vendor_elem[i]);
531 wpa_s->vendor_elem[i] = NULL;
532 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800533
534 wmm_ac_notify_disassoc(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700535}
536
537
538/**
539 * wpa_clear_keys - Clear keys configured for the driver
540 * @wpa_s: Pointer to wpa_supplicant data
541 * @addr: Previously used BSSID or %NULL if not available
542 *
543 * This function clears the encryption keys that has been previously configured
544 * for the driver.
545 */
546void wpa_clear_keys(struct wpa_supplicant *wpa_s, const u8 *addr)
547{
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800548 int i, max;
549
550#ifdef CONFIG_IEEE80211W
551 max = 6;
552#else /* CONFIG_IEEE80211W */
553 max = 4;
554#endif /* CONFIG_IEEE80211W */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700555
556 /* MLME-DELETEKEYS.request */
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800557 for (i = 0; i < max; i++) {
558 if (wpa_s->keys_cleared & BIT(i))
559 continue;
560 wpa_drv_set_key(wpa_s, WPA_ALG_NONE, NULL, i, 0, NULL, 0,
561 NULL, 0);
562 }
563 if (!(wpa_s->keys_cleared & BIT(0)) && addr &&
564 !is_zero_ether_addr(addr)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700565 wpa_drv_set_key(wpa_s, WPA_ALG_NONE, addr, 0, 0, NULL, 0, NULL,
566 0);
567 /* MLME-SETPROTECTION.request(None) */
568 wpa_drv_mlme_setprotection(
569 wpa_s, addr,
570 MLME_SETPROTECTION_PROTECT_TYPE_NONE,
571 MLME_SETPROTECTION_KEY_TYPE_PAIRWISE);
572 }
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800573 wpa_s->keys_cleared = (u32) -1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700574}
575
576
577/**
578 * wpa_supplicant_state_txt - Get the connection state name as a text string
579 * @state: State (wpa_state; WPA_*)
580 * Returns: The state name as a printable text string
581 */
582const char * wpa_supplicant_state_txt(enum wpa_states state)
583{
584 switch (state) {
585 case WPA_DISCONNECTED:
586 return "DISCONNECTED";
587 case WPA_INACTIVE:
588 return "INACTIVE";
589 case WPA_INTERFACE_DISABLED:
590 return "INTERFACE_DISABLED";
591 case WPA_SCANNING:
592 return "SCANNING";
593 case WPA_AUTHENTICATING:
594 return "AUTHENTICATING";
595 case WPA_ASSOCIATING:
596 return "ASSOCIATING";
597 case WPA_ASSOCIATED:
598 return "ASSOCIATED";
599 case WPA_4WAY_HANDSHAKE:
600 return "4WAY_HANDSHAKE";
601 case WPA_GROUP_HANDSHAKE:
602 return "GROUP_HANDSHAKE";
603 case WPA_COMPLETED:
604 return "COMPLETED";
605 default:
606 return "UNKNOWN";
607 }
608}
609
610
611#ifdef CONFIG_BGSCAN
612
613static void wpa_supplicant_start_bgscan(struct wpa_supplicant *wpa_s)
614{
Dmitry Shmidtb96dad42013-11-05 10:07:29 -0800615 const char *name;
616
617 if (wpa_s->current_ssid && wpa_s->current_ssid->bgscan)
618 name = wpa_s->current_ssid->bgscan;
619 else
620 name = wpa_s->conf->bgscan;
Dmitry Shmidta38abf92014-03-06 13:38:44 -0800621 if (name == NULL || name[0] == '\0')
Dmitry Shmidtb96dad42013-11-05 10:07:29 -0800622 return;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800623 if (wpas_driver_bss_selection(wpa_s))
624 return;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700625 if (wpa_s->current_ssid == wpa_s->bgscan_ssid)
626 return;
Dmitry Shmidta38abf92014-03-06 13:38:44 -0800627#ifdef CONFIG_P2P
628 if (wpa_s->p2p_group_interface != NOT_P2P_GROUP_INTERFACE)
629 return;
630#endif /* CONFIG_P2P */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700631
632 bgscan_deinit(wpa_s);
Dmitry Shmidtb96dad42013-11-05 10:07:29 -0800633 if (wpa_s->current_ssid) {
634 if (bgscan_init(wpa_s, wpa_s->current_ssid, name)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700635 wpa_dbg(wpa_s, MSG_DEBUG, "Failed to initialize "
636 "bgscan");
637 /*
638 * Live without bgscan; it is only used as a roaming
639 * optimization, so the initial connection is not
640 * affected.
641 */
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700642 } else {
643 struct wpa_scan_results *scan_res;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700644 wpa_s->bgscan_ssid = wpa_s->current_ssid;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700645 scan_res = wpa_supplicant_get_scan_results(wpa_s, NULL,
646 0);
647 if (scan_res) {
648 bgscan_notify_scan(wpa_s, scan_res);
649 wpa_scan_results_free(scan_res);
650 }
651 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700652 } else
653 wpa_s->bgscan_ssid = NULL;
654}
655
656
657static void wpa_supplicant_stop_bgscan(struct wpa_supplicant *wpa_s)
658{
659 if (wpa_s->bgscan_ssid != NULL) {
660 bgscan_deinit(wpa_s);
661 wpa_s->bgscan_ssid = NULL;
662 }
663}
664
665#endif /* CONFIG_BGSCAN */
666
667
Dmitry Shmidt04949592012-07-19 12:16:46 -0700668static void wpa_supplicant_start_autoscan(struct wpa_supplicant *wpa_s)
669{
670 if (autoscan_init(wpa_s, 0))
671 wpa_dbg(wpa_s, MSG_DEBUG, "Failed to initialize autoscan");
672}
673
674
675static void wpa_supplicant_stop_autoscan(struct wpa_supplicant *wpa_s)
676{
677 autoscan_deinit(wpa_s);
678}
679
680
681void wpa_supplicant_reinit_autoscan(struct wpa_supplicant *wpa_s)
682{
683 if (wpa_s->wpa_state == WPA_DISCONNECTED ||
684 wpa_s->wpa_state == WPA_SCANNING) {
685 autoscan_deinit(wpa_s);
686 wpa_supplicant_start_autoscan(wpa_s);
687 }
688}
689
690
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700691/**
692 * wpa_supplicant_set_state - Set current connection state
693 * @wpa_s: Pointer to wpa_supplicant data
694 * @state: The new connection state
695 *
696 * This function is called whenever the connection state changes, e.g.,
697 * association is completed for WPA/WPA2 4-Way Handshake is started.
698 */
699void wpa_supplicant_set_state(struct wpa_supplicant *wpa_s,
700 enum wpa_states state)
701{
702 enum wpa_states old_state = wpa_s->wpa_state;
703
704 wpa_dbg(wpa_s, MSG_DEBUG, "State: %s -> %s",
705 wpa_supplicant_state_txt(wpa_s->wpa_state),
706 wpa_supplicant_state_txt(state));
707
Dmitry Shmidt9e3f8ee2014-01-17 10:52:01 -0800708 if (state == WPA_INTERFACE_DISABLED) {
709 /* Assure normal scan when interface is restored */
710 wpa_s->normal_scans = 0;
711 }
712
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -0700713 if (state == WPA_COMPLETED) {
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800714 wpas_connect_work_done(wpa_s);
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -0700715 /* Reinitialize normal_scan counter */
716 wpa_s->normal_scans = 0;
717 }
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800718
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700719 if (state != WPA_SCANNING)
720 wpa_supplicant_notify_scanning(wpa_s, 0);
721
722 if (state == WPA_COMPLETED && wpa_s->new_connection) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700723 struct wpa_ssid *ssid = wpa_s->current_ssid;
Dmitry Shmidt700a1372013-03-15 14:14:44 -0700724#if defined(CONFIG_CTRL_IFACE) || !defined(CONFIG_NO_STDOUT_DEBUG)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700725 wpa_msg(wpa_s, MSG_INFO, WPA_EVENT_CONNECTED "- Connection to "
Dmitry Shmidt8f0dbf42013-11-08 13:35:41 -0800726 MACSTR " completed [id=%d id_str=%s]",
Dmitry Shmidtf8623282013-02-20 14:34:59 -0800727 MAC2STR(wpa_s->bssid),
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700728 ssid ? ssid->id : -1,
729 ssid && ssid->id_str ? ssid->id_str : "");
730#endif /* CONFIG_CTRL_IFACE || !CONFIG_NO_STDOUT_DEBUG */
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700731 wpas_clear_temp_disabled(wpa_s, ssid, 1);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800732 wpa_s->extra_blacklist_count = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700733 wpa_s->new_connection = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700734 wpa_drv_set_operstate(wpa_s, 1);
735#ifndef IEEE8021X_EAPOL
736 wpa_drv_set_supp_port(wpa_s, 1);
737#endif /* IEEE8021X_EAPOL */
738 wpa_s->after_wps = 0;
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -0700739 wpa_s->known_wps_freq = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700740 wpas_p2p_completed(wpa_s);
Dmitry Shmidt04949592012-07-19 12:16:46 -0700741
742 sme_sched_obss_scan(wpa_s, 1);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700743 } else if (state == WPA_DISCONNECTED || state == WPA_ASSOCIATING ||
744 state == WPA_ASSOCIATED) {
745 wpa_s->new_connection = 1;
746 wpa_drv_set_operstate(wpa_s, 0);
747#ifndef IEEE8021X_EAPOL
748 wpa_drv_set_supp_port(wpa_s, 0);
749#endif /* IEEE8021X_EAPOL */
Dmitry Shmidt04949592012-07-19 12:16:46 -0700750 sme_sched_obss_scan(wpa_s, 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700751 }
752 wpa_s->wpa_state = state;
753
754#ifdef CONFIG_BGSCAN
755 if (state == WPA_COMPLETED)
756 wpa_supplicant_start_bgscan(wpa_s);
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800757 else if (state < WPA_ASSOCIATED)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700758 wpa_supplicant_stop_bgscan(wpa_s);
759#endif /* CONFIG_BGSCAN */
760
Dmitry Shmidt04949592012-07-19 12:16:46 -0700761 if (state == WPA_AUTHENTICATING)
762 wpa_supplicant_stop_autoscan(wpa_s);
763
764 if (state == WPA_DISCONNECTED || state == WPA_INACTIVE)
765 wpa_supplicant_start_autoscan(wpa_s);
766
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800767 if (old_state >= WPA_ASSOCIATED && wpa_s->wpa_state < WPA_ASSOCIATED)
768 wmm_ac_notify_disassoc(wpa_s);
769
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700770 if (wpa_s->wpa_state != old_state) {
771 wpas_notify_state_changed(wpa_s, wpa_s->wpa_state, old_state);
772
Dmitry Shmidt43cb5782014-06-16 16:23:22 -0700773 /*
774 * Notify the P2P Device interface about a state change in one
775 * of the interfaces.
776 */
777 wpas_p2p_indicate_state_change(wpa_s);
778
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700779 if (wpa_s->wpa_state == WPA_COMPLETED ||
780 old_state == WPA_COMPLETED)
781 wpas_notify_auth_changed(wpa_s);
782 }
783}
784
785
786void wpa_supplicant_terminate_proc(struct wpa_global *global)
787{
788 int pending = 0;
789#ifdef CONFIG_WPS
790 struct wpa_supplicant *wpa_s = global->ifaces;
791 while (wpa_s) {
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800792 struct wpa_supplicant *next = wpa_s->next;
Dmitry Shmidt6dc03bd2014-05-16 10:40:13 -0700793 if (wpas_wps_terminate_pending(wpa_s) == 1)
794 pending = 1;
Dmitry Shmidt56052862013-10-04 10:23:25 -0700795#ifdef CONFIG_P2P
796 if (wpa_s->p2p_group_interface != NOT_P2P_GROUP_INTERFACE ||
797 (wpa_s->current_ssid && wpa_s->current_ssid->p2p_group))
798 wpas_p2p_disconnect(wpa_s);
799#endif /* CONFIG_P2P */
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -0800800 wpa_s = next;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700801 }
802#endif /* CONFIG_WPS */
803 if (pending)
804 return;
805 eloop_terminate();
806}
807
808
809static void wpa_supplicant_terminate(int sig, void *signal_ctx)
810{
811 struct wpa_global *global = signal_ctx;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700812 wpa_supplicant_terminate_proc(global);
813}
814
815
816void wpa_supplicant_clear_status(struct wpa_supplicant *wpa_s)
817{
818 enum wpa_states old_state = wpa_s->wpa_state;
819
820 wpa_s->pairwise_cipher = 0;
821 wpa_s->group_cipher = 0;
822 wpa_s->mgmt_group_cipher = 0;
823 wpa_s->key_mgmt = 0;
824 if (wpa_s->wpa_state != WPA_INTERFACE_DISABLED)
Dmitry Shmidt04949592012-07-19 12:16:46 -0700825 wpa_supplicant_set_state(wpa_s, WPA_DISCONNECTED);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700826
827 if (wpa_s->wpa_state != old_state)
828 wpas_notify_state_changed(wpa_s, wpa_s->wpa_state, old_state);
829}
830
831
832/**
833 * wpa_supplicant_reload_configuration - Reload configuration data
834 * @wpa_s: Pointer to wpa_supplicant data
835 * Returns: 0 on success or -1 if configuration parsing failed
836 *
837 * This function can be used to request that the configuration data is reloaded
838 * (e.g., after configuration file change). This function is reloading
839 * configuration only for one interface, so this may need to be called multiple
840 * times if %wpa_supplicant is controlling multiple interfaces and all
841 * interfaces need reconfiguration.
842 */
843int wpa_supplicant_reload_configuration(struct wpa_supplicant *wpa_s)
844{
845 struct wpa_config *conf;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700846 int reconf_ctrl;
847 int old_ap_scan;
848
849 if (wpa_s->confname == NULL)
850 return -1;
Dmitry Shmidt64f47c52013-04-16 10:41:54 -0700851 conf = wpa_config_read(wpa_s->confname, NULL);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700852 if (conf == NULL) {
853 wpa_msg(wpa_s, MSG_ERROR, "Failed to parse the configuration "
854 "file '%s' - exiting", wpa_s->confname);
855 return -1;
856 }
Dmitry Shmidt64f47c52013-04-16 10:41:54 -0700857 wpa_config_read(wpa_s->confanother, conf);
858
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700859 conf->changed_parameters = (unsigned int) -1;
860
861 reconf_ctrl = !!conf->ctrl_interface != !!wpa_s->conf->ctrl_interface
862 || (conf->ctrl_interface && wpa_s->conf->ctrl_interface &&
863 os_strcmp(conf->ctrl_interface,
864 wpa_s->conf->ctrl_interface) != 0);
865
866 if (reconf_ctrl && wpa_s->ctrl_iface) {
867 wpa_supplicant_ctrl_iface_deinit(wpa_s->ctrl_iface);
868 wpa_s->ctrl_iface = NULL;
869 }
870
871 eapol_sm_invalidate_cached_session(wpa_s->eapol);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800872 if (wpa_s->current_ssid) {
873 wpa_supplicant_deauthenticate(wpa_s,
874 WLAN_REASON_DEAUTH_LEAVING);
875 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700876
877 /*
878 * TODO: should notify EAPOL SM about changes in opensc_engine_path,
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800879 * pkcs11_engine_path, pkcs11_module_path, openssl_ciphers.
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700880 */
881 if (wpa_key_mgmt_wpa_psk(wpa_s->key_mgmt)) {
882 /*
883 * Clear forced success to clear EAP state for next
884 * authentication.
885 */
886 eapol_sm_notify_eap_success(wpa_s->eapol, FALSE);
887 }
888 eapol_sm_notify_config(wpa_s->eapol, NULL, NULL);
889 wpa_sm_set_config(wpa_s->wpa, NULL);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -0800890 wpa_sm_pmksa_cache_flush(wpa_s->wpa, NULL);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700891 wpa_sm_set_fast_reauth(wpa_s->wpa, wpa_s->conf->fast_reauth);
892 rsn_preauth_deinit(wpa_s->wpa);
893
894 old_ap_scan = wpa_s->conf->ap_scan;
895 wpa_config_free(wpa_s->conf);
896 wpa_s->conf = conf;
897 if (old_ap_scan != wpa_s->conf->ap_scan)
898 wpas_notify_ap_scan_changed(wpa_s);
899
900 if (reconf_ctrl)
901 wpa_s->ctrl_iface = wpa_supplicant_ctrl_iface_init(wpa_s);
902
903 wpa_supplicant_update_config(wpa_s);
904
905 wpa_supplicant_clear_status(wpa_s);
Dmitry Shmidt04949592012-07-19 12:16:46 -0700906 if (wpa_supplicant_enabled_networks(wpa_s)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700907 wpa_s->reassociate = 1;
908 wpa_supplicant_req_scan(wpa_s, 0, 0);
909 }
910 wpa_dbg(wpa_s, MSG_DEBUG, "Reconfiguration completed");
911 return 0;
912}
913
914
915static void wpa_supplicant_reconfig(int sig, void *signal_ctx)
916{
917 struct wpa_global *global = signal_ctx;
918 struct wpa_supplicant *wpa_s;
919 for (wpa_s = global->ifaces; wpa_s; wpa_s = wpa_s->next) {
920 wpa_dbg(wpa_s, MSG_DEBUG, "Signal %d received - reconfiguring",
921 sig);
922 if (wpa_supplicant_reload_configuration(wpa_s) < 0) {
923 wpa_supplicant_terminate_proc(global);
924 }
925 }
926}
927
928
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700929static int wpa_supplicant_suites_from_ai(struct wpa_supplicant *wpa_s,
930 struct wpa_ssid *ssid,
931 struct wpa_ie_data *ie)
932{
933 int ret = wpa_sm_parse_own_wpa_ie(wpa_s->wpa, ie);
934 if (ret) {
935 if (ret == -2) {
936 wpa_msg(wpa_s, MSG_INFO, "WPA: Failed to parse WPA IE "
937 "from association info");
938 }
939 return -1;
940 }
941
942 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: Using WPA IE from AssocReq to set "
943 "cipher suites");
944 if (!(ie->group_cipher & ssid->group_cipher)) {
945 wpa_msg(wpa_s, MSG_INFO, "WPA: Driver used disabled group "
946 "cipher 0x%x (mask 0x%x) - reject",
947 ie->group_cipher, ssid->group_cipher);
948 return -1;
949 }
950 if (!(ie->pairwise_cipher & ssid->pairwise_cipher)) {
951 wpa_msg(wpa_s, MSG_INFO, "WPA: Driver used disabled pairwise "
952 "cipher 0x%x (mask 0x%x) - reject",
953 ie->pairwise_cipher, ssid->pairwise_cipher);
954 return -1;
955 }
956 if (!(ie->key_mgmt & ssid->key_mgmt)) {
957 wpa_msg(wpa_s, MSG_INFO, "WPA: Driver used disabled key "
958 "management 0x%x (mask 0x%x) - reject",
959 ie->key_mgmt, ssid->key_mgmt);
960 return -1;
961 }
962
963#ifdef CONFIG_IEEE80211W
964 if (!(ie->capabilities & WPA_CAPABILITY_MFPC) &&
Dmitry Shmidt807291d2015-01-27 13:40:23 -0800965 wpas_get_ssid_pmf(wpa_s, ssid) == MGMT_FRAME_PROTECTION_REQUIRED) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700966 wpa_msg(wpa_s, MSG_INFO, "WPA: Driver associated with an AP "
967 "that does not support management frame protection - "
968 "reject");
969 return -1;
970 }
971#endif /* CONFIG_IEEE80211W */
972
973 return 0;
974}
975
976
977/**
978 * wpa_supplicant_set_suites - Set authentication and encryption parameters
979 * @wpa_s: Pointer to wpa_supplicant data
980 * @bss: Scan results for the selected BSS, or %NULL if not available
981 * @ssid: Configuration data for the selected network
982 * @wpa_ie: Buffer for the WPA/RSN IE
983 * @wpa_ie_len: Maximum wpa_ie buffer size on input. This is changed to be the
984 * used buffer length in case the functions returns success.
985 * Returns: 0 on success or -1 on failure
986 *
987 * This function is used to configure authentication and encryption parameters
988 * based on the network configuration and scan result for the selected BSS (if
989 * available).
990 */
991int wpa_supplicant_set_suites(struct wpa_supplicant *wpa_s,
992 struct wpa_bss *bss, struct wpa_ssid *ssid,
993 u8 *wpa_ie, size_t *wpa_ie_len)
994{
995 struct wpa_ie_data ie;
996 int sel, proto;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -0800997 const u8 *bss_wpa, *bss_rsn, *bss_osen;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700998
999 if (bss) {
1000 bss_wpa = wpa_bss_get_vendor_ie(bss, WPA_IE_VENDOR_TYPE);
1001 bss_rsn = wpa_bss_get_ie(bss, WLAN_EID_RSN);
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001002 bss_osen = wpa_bss_get_vendor_ie(bss, OSEN_IE_VENDOR_TYPE);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001003 } else
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001004 bss_wpa = bss_rsn = bss_osen = NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001005
1006 if (bss_rsn && (ssid->proto & WPA_PROTO_RSN) &&
1007 wpa_parse_wpa_ie(bss_rsn, 2 + bss_rsn[1], &ie) == 0 &&
1008 (ie.group_cipher & ssid->group_cipher) &&
1009 (ie.pairwise_cipher & ssid->pairwise_cipher) &&
1010 (ie.key_mgmt & ssid->key_mgmt)) {
1011 wpa_dbg(wpa_s, MSG_DEBUG, "RSN: using IEEE 802.11i/D9.0");
1012 proto = WPA_PROTO_RSN;
1013 } else if (bss_wpa && (ssid->proto & WPA_PROTO_WPA) &&
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001014 wpa_parse_wpa_ie(bss_wpa, 2 + bss_wpa[1], &ie) == 0 &&
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001015 (ie.group_cipher & ssid->group_cipher) &&
1016 (ie.pairwise_cipher & ssid->pairwise_cipher) &&
1017 (ie.key_mgmt & ssid->key_mgmt)) {
1018 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using IEEE 802.11i/D3.0");
1019 proto = WPA_PROTO_WPA;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001020#ifdef CONFIG_HS20
1021 } else if (bss_osen && (ssid->proto & WPA_PROTO_OSEN)) {
1022 wpa_dbg(wpa_s, MSG_DEBUG, "HS 2.0: using OSEN");
1023 /* TODO: parse OSEN element */
Dmitry Shmidt623d63a2014-06-13 11:05:14 -07001024 os_memset(&ie, 0, sizeof(ie));
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001025 ie.group_cipher = WPA_CIPHER_CCMP;
1026 ie.pairwise_cipher = WPA_CIPHER_CCMP;
1027 ie.key_mgmt = WPA_KEY_MGMT_OSEN;
1028 proto = WPA_PROTO_OSEN;
1029#endif /* CONFIG_HS20 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001030 } else if (bss) {
1031 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to select WPA/RSN");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001032 wpa_dbg(wpa_s, MSG_DEBUG,
1033 "WPA: ssid proto=0x%x pairwise_cipher=0x%x group_cipher=0x%x key_mgmt=0x%x",
1034 ssid->proto, ssid->pairwise_cipher, ssid->group_cipher,
1035 ssid->key_mgmt);
1036 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: BSS " MACSTR " ssid='%s'%s%s%s",
1037 MAC2STR(bss->bssid),
1038 wpa_ssid_txt(bss->ssid, bss->ssid_len),
1039 bss_wpa ? " WPA" : "",
1040 bss_rsn ? " RSN" : "",
1041 bss_osen ? " OSEN" : "");
1042 if (bss_rsn) {
1043 wpa_hexdump(MSG_DEBUG, "RSN", bss_rsn, 2 + bss_rsn[1]);
1044 if (wpa_parse_wpa_ie(bss_rsn, 2 + bss_rsn[1], &ie)) {
1045 wpa_dbg(wpa_s, MSG_DEBUG,
1046 "Could not parse RSN element");
1047 } else {
1048 wpa_dbg(wpa_s, MSG_DEBUG,
1049 "RSN: pairwise_cipher=0x%x group_cipher=0x%x key_mgmt=0x%x",
1050 ie.pairwise_cipher, ie.group_cipher,
1051 ie.key_mgmt);
1052 }
1053 }
1054 if (bss_wpa) {
1055 wpa_hexdump(MSG_DEBUG, "WPA", bss_wpa, 2 + bss_wpa[1]);
1056 if (wpa_parse_wpa_ie(bss_wpa, 2 + bss_wpa[1], &ie)) {
1057 wpa_dbg(wpa_s, MSG_DEBUG,
1058 "Could not parse WPA element");
1059 } else {
1060 wpa_dbg(wpa_s, MSG_DEBUG,
1061 "WPA: pairwise_cipher=0x%x group_cipher=0x%x key_mgmt=0x%x",
1062 ie.pairwise_cipher, ie.group_cipher,
1063 ie.key_mgmt);
1064 }
1065 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001066 return -1;
1067 } else {
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001068 if (ssid->proto & WPA_PROTO_OSEN)
1069 proto = WPA_PROTO_OSEN;
1070 else if (ssid->proto & WPA_PROTO_RSN)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001071 proto = WPA_PROTO_RSN;
1072 else
1073 proto = WPA_PROTO_WPA;
1074 if (wpa_supplicant_suites_from_ai(wpa_s, ssid, &ie) < 0) {
1075 os_memset(&ie, 0, sizeof(ie));
1076 ie.group_cipher = ssid->group_cipher;
1077 ie.pairwise_cipher = ssid->pairwise_cipher;
1078 ie.key_mgmt = ssid->key_mgmt;
1079#ifdef CONFIG_IEEE80211W
1080 ie.mgmt_group_cipher =
1081 ssid->ieee80211w != NO_MGMT_FRAME_PROTECTION ?
1082 WPA_CIPHER_AES_128_CMAC : 0;
1083#endif /* CONFIG_IEEE80211W */
1084 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: Set cipher suites "
1085 "based on configuration");
1086 } else
1087 proto = ie.proto;
1088 }
1089
1090 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: Selected cipher suites: group %d "
1091 "pairwise %d key_mgmt %d proto %d",
1092 ie.group_cipher, ie.pairwise_cipher, ie.key_mgmt, proto);
1093#ifdef CONFIG_IEEE80211W
1094 if (ssid->ieee80211w) {
1095 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: Selected mgmt group cipher %d",
1096 ie.mgmt_group_cipher);
1097 }
1098#endif /* CONFIG_IEEE80211W */
1099
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001100 wpa_s->wpa_proto = proto;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001101 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_PROTO, proto);
1102 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_RSN_ENABLED,
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001103 !!(ssid->proto & (WPA_PROTO_RSN | WPA_PROTO_OSEN)));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001104
1105 if (bss || !wpa_s->ap_ies_from_associnfo) {
1106 if (wpa_sm_set_ap_wpa_ie(wpa_s->wpa, bss_wpa,
1107 bss_wpa ? 2 + bss_wpa[1] : 0) ||
1108 wpa_sm_set_ap_rsn_ie(wpa_s->wpa, bss_rsn,
1109 bss_rsn ? 2 + bss_rsn[1] : 0))
1110 return -1;
1111 }
1112
1113 sel = ie.group_cipher & ssid->group_cipher;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001114 wpa_s->group_cipher = wpa_pick_group_cipher(sel);
1115 if (wpa_s->group_cipher < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001116 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to select group "
1117 "cipher");
1118 return -1;
1119 }
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001120 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using GTK %s",
1121 wpa_cipher_txt(wpa_s->group_cipher));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001122
1123 sel = ie.pairwise_cipher & ssid->pairwise_cipher;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001124 wpa_s->pairwise_cipher = wpa_pick_pairwise_cipher(sel, 1);
1125 if (wpa_s->pairwise_cipher < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001126 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to select pairwise "
1127 "cipher");
1128 return -1;
1129 }
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001130 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using PTK %s",
1131 wpa_cipher_txt(wpa_s->pairwise_cipher));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001132
1133 sel = ie.key_mgmt & ssid->key_mgmt;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08001134#ifdef CONFIG_SAE
1135 if (!(wpa_s->drv_flags & WPA_DRIVER_FLAGS_SAE))
1136 sel &= ~(WPA_KEY_MGMT_SAE | WPA_KEY_MGMT_FT_SAE);
1137#endif /* CONFIG_SAE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001138 if (0) {
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001139#ifdef CONFIG_SUITEB192
1140 } else if (sel & WPA_KEY_MGMT_IEEE8021X_SUITE_B_192) {
1141 wpa_s->key_mgmt = WPA_KEY_MGMT_IEEE8021X_SUITE_B_192;
1142 wpa_dbg(wpa_s, MSG_DEBUG,
1143 "WPA: using KEY_MGMT 802.1X with Suite B (192-bit)");
1144#endif /* CONFIG_SUITEB192 */
1145#ifdef CONFIG_SUITEB
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001146 } else if (sel & WPA_KEY_MGMT_IEEE8021X_SUITE_B) {
1147 wpa_s->key_mgmt = WPA_KEY_MGMT_IEEE8021X_SUITE_B;
1148 wpa_dbg(wpa_s, MSG_DEBUG,
1149 "WPA: using KEY_MGMT 802.1X with Suite B");
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001150#endif /* CONFIG_SUITEB */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001151#ifdef CONFIG_IEEE80211R
1152 } else if (sel & WPA_KEY_MGMT_FT_IEEE8021X) {
1153 wpa_s->key_mgmt = WPA_KEY_MGMT_FT_IEEE8021X;
1154 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using KEY_MGMT FT/802.1X");
1155 } else if (sel & WPA_KEY_MGMT_FT_PSK) {
1156 wpa_s->key_mgmt = WPA_KEY_MGMT_FT_PSK;
1157 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using KEY_MGMT FT/PSK");
1158#endif /* CONFIG_IEEE80211R */
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08001159#ifdef CONFIG_SAE
1160 } else if (sel & WPA_KEY_MGMT_SAE) {
1161 wpa_s->key_mgmt = WPA_KEY_MGMT_SAE;
1162 wpa_dbg(wpa_s, MSG_DEBUG, "RSN: using KEY_MGMT SAE");
1163 } else if (sel & WPA_KEY_MGMT_FT_SAE) {
1164 wpa_s->key_mgmt = WPA_KEY_MGMT_FT_SAE;
1165 wpa_dbg(wpa_s, MSG_DEBUG, "RSN: using KEY_MGMT FT/SAE");
1166#endif /* CONFIG_SAE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001167#ifdef CONFIG_IEEE80211W
1168 } else if (sel & WPA_KEY_MGMT_IEEE8021X_SHA256) {
1169 wpa_s->key_mgmt = WPA_KEY_MGMT_IEEE8021X_SHA256;
1170 wpa_dbg(wpa_s, MSG_DEBUG,
1171 "WPA: using KEY_MGMT 802.1X with SHA256");
1172 } else if (sel & WPA_KEY_MGMT_PSK_SHA256) {
1173 wpa_s->key_mgmt = WPA_KEY_MGMT_PSK_SHA256;
1174 wpa_dbg(wpa_s, MSG_DEBUG,
1175 "WPA: using KEY_MGMT PSK with SHA256");
1176#endif /* CONFIG_IEEE80211W */
1177 } else if (sel & WPA_KEY_MGMT_IEEE8021X) {
1178 wpa_s->key_mgmt = WPA_KEY_MGMT_IEEE8021X;
1179 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using KEY_MGMT 802.1X");
1180 } else if (sel & WPA_KEY_MGMT_PSK) {
1181 wpa_s->key_mgmt = WPA_KEY_MGMT_PSK;
1182 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using KEY_MGMT WPA-PSK");
1183 } else if (sel & WPA_KEY_MGMT_WPA_NONE) {
1184 wpa_s->key_mgmt = WPA_KEY_MGMT_WPA_NONE;
1185 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using KEY_MGMT WPA-NONE");
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001186#ifdef CONFIG_HS20
1187 } else if (sel & WPA_KEY_MGMT_OSEN) {
1188 wpa_s->key_mgmt = WPA_KEY_MGMT_OSEN;
1189 wpa_dbg(wpa_s, MSG_DEBUG, "HS 2.0: using KEY_MGMT OSEN");
1190#endif /* CONFIG_HS20 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001191 } else {
1192 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to select "
1193 "authenticated key management type");
1194 return -1;
1195 }
1196
1197 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_KEY_MGMT, wpa_s->key_mgmt);
1198 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_PAIRWISE,
1199 wpa_s->pairwise_cipher);
1200 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_GROUP, wpa_s->group_cipher);
1201
1202#ifdef CONFIG_IEEE80211W
1203 sel = ie.mgmt_group_cipher;
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001204 if (wpas_get_ssid_pmf(wpa_s, ssid) == NO_MGMT_FRAME_PROTECTION ||
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001205 !(ie.capabilities & WPA_CAPABILITY_MFPC))
1206 sel = 0;
1207 if (sel & WPA_CIPHER_AES_128_CMAC) {
1208 wpa_s->mgmt_group_cipher = WPA_CIPHER_AES_128_CMAC;
1209 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using MGMT group cipher "
1210 "AES-128-CMAC");
Dmitry Shmidtb36ed7c2014-03-17 10:57:26 -07001211 } else if (sel & WPA_CIPHER_BIP_GMAC_128) {
1212 wpa_s->mgmt_group_cipher = WPA_CIPHER_BIP_GMAC_128;
1213 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using MGMT group cipher "
1214 "BIP-GMAC-128");
1215 } else if (sel & WPA_CIPHER_BIP_GMAC_256) {
1216 wpa_s->mgmt_group_cipher = WPA_CIPHER_BIP_GMAC_256;
1217 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using MGMT group cipher "
1218 "BIP-GMAC-256");
1219 } else if (sel & WPA_CIPHER_BIP_CMAC_256) {
1220 wpa_s->mgmt_group_cipher = WPA_CIPHER_BIP_CMAC_256;
1221 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: using MGMT group cipher "
1222 "BIP-CMAC-256");
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001223 } else {
1224 wpa_s->mgmt_group_cipher = 0;
1225 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: not using MGMT group cipher");
1226 }
1227 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_MGMT_GROUP,
1228 wpa_s->mgmt_group_cipher);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08001229 wpa_sm_set_param(wpa_s->wpa, WPA_PARAM_MFP,
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001230 wpas_get_ssid_pmf(wpa_s, ssid));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001231#endif /* CONFIG_IEEE80211W */
1232
1233 if (wpa_sm_set_assoc_wpa_ie_default(wpa_s->wpa, wpa_ie, wpa_ie_len)) {
1234 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to generate WPA IE");
1235 return -1;
1236 }
1237
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001238 if (wpa_key_mgmt_wpa_psk(ssid->key_mgmt)) {
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001239 wpa_sm_set_pmk(wpa_s->wpa, ssid->psk, PMK_LEN, NULL);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001240#ifndef CONFIG_NO_PBKDF2
1241 if (bss && ssid->bssid_set && ssid->ssid_len == 0 &&
1242 ssid->passphrase) {
1243 u8 psk[PMK_LEN];
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001244 pbkdf2_sha1(ssid->passphrase, bss->ssid, bss->ssid_len,
1245 4096, psk, PMK_LEN);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001246 wpa_hexdump_key(MSG_MSGDUMP, "PSK (from passphrase)",
1247 psk, PMK_LEN);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001248 wpa_sm_set_pmk(wpa_s->wpa, psk, PMK_LEN, NULL);
1249 os_memset(psk, 0, sizeof(psk));
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001250 }
1251#endif /* CONFIG_NO_PBKDF2 */
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001252#ifdef CONFIG_EXT_PASSWORD
1253 if (ssid->ext_psk) {
1254 struct wpabuf *pw = ext_password_get(wpa_s->ext_pw,
1255 ssid->ext_psk);
1256 char pw_str[64 + 1];
1257 u8 psk[PMK_LEN];
1258
1259 if (pw == NULL) {
1260 wpa_msg(wpa_s, MSG_INFO, "EXT PW: No PSK "
1261 "found from external storage");
1262 return -1;
1263 }
1264
1265 if (wpabuf_len(pw) < 8 || wpabuf_len(pw) > 64) {
1266 wpa_msg(wpa_s, MSG_INFO, "EXT PW: Unexpected "
1267 "PSK length %d in external storage",
1268 (int) wpabuf_len(pw));
1269 ext_password_free(pw);
1270 return -1;
1271 }
1272
1273 os_memcpy(pw_str, wpabuf_head(pw), wpabuf_len(pw));
1274 pw_str[wpabuf_len(pw)] = '\0';
1275
1276#ifndef CONFIG_NO_PBKDF2
1277 if (wpabuf_len(pw) >= 8 && wpabuf_len(pw) < 64 && bss)
1278 {
1279 pbkdf2_sha1(pw_str, bss->ssid, bss->ssid_len,
1280 4096, psk, PMK_LEN);
1281 os_memset(pw_str, 0, sizeof(pw_str));
1282 wpa_hexdump_key(MSG_MSGDUMP, "PSK (from "
1283 "external passphrase)",
1284 psk, PMK_LEN);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001285 wpa_sm_set_pmk(wpa_s->wpa, psk, PMK_LEN, NULL);
1286 os_memset(psk, 0, sizeof(psk));
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001287 } else
1288#endif /* CONFIG_NO_PBKDF2 */
1289 if (wpabuf_len(pw) == 2 * PMK_LEN) {
1290 if (hexstr2bin(pw_str, psk, PMK_LEN) < 0) {
1291 wpa_msg(wpa_s, MSG_INFO, "EXT PW: "
1292 "Invalid PSK hex string");
1293 os_memset(pw_str, 0, sizeof(pw_str));
1294 ext_password_free(pw);
1295 return -1;
1296 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001297 wpa_sm_set_pmk(wpa_s->wpa, psk, PMK_LEN, NULL);
1298 os_memset(psk, 0, sizeof(psk));
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001299 } else {
1300 wpa_msg(wpa_s, MSG_INFO, "EXT PW: No suitable "
1301 "PSK available");
1302 os_memset(pw_str, 0, sizeof(pw_str));
1303 ext_password_free(pw);
1304 return -1;
1305 }
1306
1307 os_memset(pw_str, 0, sizeof(pw_str));
1308 ext_password_free(pw);
1309 }
1310#endif /* CONFIG_EXT_PASSWORD */
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001311 } else
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001312 wpa_sm_set_pmk_from_pmksa(wpa_s->wpa);
1313
1314 return 0;
1315}
1316
1317
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001318static void wpas_ext_capab_byte(struct wpa_supplicant *wpa_s, u8 *pos, int idx)
1319{
1320 *pos = 0x00;
1321
1322 switch (idx) {
1323 case 0: /* Bits 0-7 */
1324 break;
1325 case 1: /* Bits 8-15 */
1326 break;
1327 case 2: /* Bits 16-23 */
1328#ifdef CONFIG_WNM
1329 *pos |= 0x02; /* Bit 17 - WNM-Sleep Mode */
1330 *pos |= 0x08; /* Bit 19 - BSS Transition */
1331#endif /* CONFIG_WNM */
1332 break;
1333 case 3: /* Bits 24-31 */
1334#ifdef CONFIG_WNM
1335 *pos |= 0x02; /* Bit 25 - SSID List */
1336#endif /* CONFIG_WNM */
1337#ifdef CONFIG_INTERWORKING
1338 if (wpa_s->conf->interworking)
1339 *pos |= 0x80; /* Bit 31 - Interworking */
1340#endif /* CONFIG_INTERWORKING */
1341 break;
1342 case 4: /* Bits 32-39 */
Dmitry Shmidt051af732013-10-22 13:52:46 -07001343#ifdef CONFIG_INTERWORKING
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001344 if (wpa_s->drv_flags / WPA_DRIVER_FLAGS_QOS_MAPPING)
1345 *pos |= 0x01; /* Bit 32 - QoS Map */
Dmitry Shmidt051af732013-10-22 13:52:46 -07001346#endif /* CONFIG_INTERWORKING */
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001347 break;
1348 case 5: /* Bits 40-47 */
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001349#ifdef CONFIG_HS20
1350 if (wpa_s->conf->hs20)
1351 *pos |= 0x40; /* Bit 46 - WNM-Notification */
1352#endif /* CONFIG_HS20 */
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001353 break;
1354 case 6: /* Bits 48-55 */
1355 break;
1356 }
1357}
1358
1359
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07001360int wpas_build_ext_capab(struct wpa_supplicant *wpa_s, u8 *buf, size_t buflen)
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001361{
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001362 u8 *pos = buf;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001363 u8 len = 6, i;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001364
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001365 if (len < wpa_s->extended_capa_len)
1366 len = wpa_s->extended_capa_len;
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07001367 if (buflen < (size_t) len + 2) {
1368 wpa_printf(MSG_INFO,
1369 "Not enough room for building extended capabilities element");
1370 return -1;
1371 }
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001372
1373 *pos++ = WLAN_EID_EXT_CAPAB;
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001374 *pos++ = len;
1375 for (i = 0; i < len; i++, pos++) {
1376 wpas_ext_capab_byte(wpa_s, pos, i);
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001377
Dmitry Shmidt444d5672013-04-01 13:08:44 -07001378 if (i < wpa_s->extended_capa_len) {
1379 *pos &= ~wpa_s->extended_capa_mask[i];
1380 *pos |= wpa_s->extended_capa[i];
1381 }
1382 }
1383
1384 while (len > 0 && buf[1 + len] == 0) {
1385 len--;
1386 buf[1] = len;
1387 }
1388 if (len == 0)
1389 return 0;
1390
1391 return 2 + len;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001392}
1393
1394
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001395static int wpas_valid_bss(struct wpa_supplicant *wpa_s,
1396 struct wpa_bss *test_bss)
1397{
1398 struct wpa_bss *bss;
1399
1400 dl_list_for_each(bss, &wpa_s->bss, struct wpa_bss, list) {
1401 if (bss == test_bss)
1402 return 1;
1403 }
1404
1405 return 0;
1406}
1407
1408
1409static int wpas_valid_ssid(struct wpa_supplicant *wpa_s,
1410 struct wpa_ssid *test_ssid)
1411{
1412 struct wpa_ssid *ssid;
1413
1414 for (ssid = wpa_s->conf->ssid; ssid; ssid = ssid->next) {
1415 if (ssid == test_ssid)
1416 return 1;
1417 }
1418
1419 return 0;
1420}
1421
1422
1423int wpas_valid_bss_ssid(struct wpa_supplicant *wpa_s, struct wpa_bss *test_bss,
1424 struct wpa_ssid *test_ssid)
1425{
1426 if (test_bss && !wpas_valid_bss(wpa_s, test_bss))
1427 return 0;
1428
1429 return test_ssid == NULL || wpas_valid_ssid(wpa_s, test_ssid);
1430}
1431
1432
1433void wpas_connect_work_free(struct wpa_connect_work *cwork)
1434{
1435 if (cwork == NULL)
1436 return;
1437 os_free(cwork);
1438}
1439
1440
1441void wpas_connect_work_done(struct wpa_supplicant *wpa_s)
1442{
1443 struct wpa_connect_work *cwork;
1444 struct wpa_radio_work *work = wpa_s->connect_work;
1445
1446 if (!work)
1447 return;
1448
1449 wpa_s->connect_work = NULL;
1450 cwork = work->ctx;
1451 work->ctx = NULL;
1452 wpas_connect_work_free(cwork);
1453 radio_work_done(work);
1454}
1455
1456
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07001457int wpas_update_random_addr(struct wpa_supplicant *wpa_s, int style)
1458{
1459 struct os_reltime now;
1460 u8 addr[ETH_ALEN];
1461
1462 os_get_reltime(&now);
1463 if (wpa_s->last_mac_addr_style == style &&
1464 wpa_s->last_mac_addr_change.sec != 0 &&
1465 !os_reltime_expired(&now, &wpa_s->last_mac_addr_change,
1466 wpa_s->conf->rand_addr_lifetime)) {
1467 wpa_msg(wpa_s, MSG_DEBUG,
1468 "Previously selected random MAC address has not yet expired");
1469 return 0;
1470 }
1471
1472 switch (style) {
1473 case 1:
1474 if (random_mac_addr(addr) < 0)
1475 return -1;
1476 break;
1477 case 2:
1478 os_memcpy(addr, wpa_s->perm_addr, ETH_ALEN);
1479 if (random_mac_addr_keep_oui(addr) < 0)
1480 return -1;
1481 break;
1482 default:
1483 return -1;
1484 }
1485
1486 if (wpa_drv_set_mac_addr(wpa_s, addr) < 0) {
1487 wpa_msg(wpa_s, MSG_INFO,
1488 "Failed to set random MAC address");
1489 return -1;
1490 }
1491
1492 os_get_reltime(&wpa_s->last_mac_addr_change);
1493 wpa_s->mac_addr_changed = 1;
1494 wpa_s->last_mac_addr_style = style;
1495
1496 if (wpa_supplicant_update_mac_addr(wpa_s) < 0) {
1497 wpa_msg(wpa_s, MSG_INFO,
1498 "Could not update MAC address information");
1499 return -1;
1500 }
1501
1502 wpa_msg(wpa_s, MSG_DEBUG, "Using random MAC address " MACSTR,
1503 MAC2STR(addr));
1504
1505 return 0;
1506}
1507
1508
1509int wpas_update_random_addr_disassoc(struct wpa_supplicant *wpa_s)
1510{
1511 if (wpa_s->wpa_state >= WPA_AUTHENTICATING ||
1512 !wpa_s->conf->preassoc_mac_addr)
1513 return 0;
1514
1515 return wpas_update_random_addr(wpa_s, wpa_s->conf->preassoc_mac_addr);
1516}
1517
1518
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001519static void wpas_start_assoc_cb(struct wpa_radio_work *work, int deinit);
1520
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001521/**
1522 * wpa_supplicant_associate - Request association
1523 * @wpa_s: Pointer to wpa_supplicant data
1524 * @bss: Scan results for the selected BSS, or %NULL if not available
1525 * @ssid: Configuration data for the selected network
1526 *
1527 * This function is used to request %wpa_supplicant to associate with a BSS.
1528 */
1529void wpa_supplicant_associate(struct wpa_supplicant *wpa_s,
1530 struct wpa_bss *bss, struct wpa_ssid *ssid)
1531{
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001532 struct wpa_connect_work *cwork;
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07001533 int rand_style;
1534
1535 if (ssid->mac_addr == -1)
1536 rand_style = wpa_s->conf->mac_addr;
1537 else
1538 rand_style = ssid->mac_addr;
1539
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001540 wmm_ac_clear_saved_tspecs(wpa_s);
1541 wpa_s->reassoc_same_bss = 0;
1542
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07001543 if (wpa_s->last_ssid == ssid) {
1544 wpa_dbg(wpa_s, MSG_DEBUG, "Re-association to the same ESS");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001545 if (wpa_s->current_bss && wpa_s->current_bss == bss) {
1546 wmm_ac_save_tspecs(wpa_s);
1547 wpa_s->reassoc_same_bss = 1;
1548 }
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07001549 } else if (rand_style > 0) {
1550 if (wpas_update_random_addr(wpa_s, rand_style) < 0)
1551 return;
1552 wpa_sm_pmksa_cache_flush(wpa_s->wpa, ssid);
1553 } else if (wpa_s->mac_addr_changed) {
1554 if (wpa_drv_set_mac_addr(wpa_s, NULL) < 0) {
1555 wpa_msg(wpa_s, MSG_INFO,
1556 "Could not restore permanent MAC address");
1557 return;
1558 }
1559 wpa_s->mac_addr_changed = 0;
1560 if (wpa_supplicant_update_mac_addr(wpa_s) < 0) {
1561 wpa_msg(wpa_s, MSG_INFO,
1562 "Could not update MAC address information");
1563 return;
1564 }
1565 wpa_msg(wpa_s, MSG_DEBUG, "Using permanent MAC address");
1566 }
1567 wpa_s->last_ssid = ssid;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001568
1569#ifdef CONFIG_IBSS_RSN
1570 ibss_rsn_deinit(wpa_s->ibss_rsn);
1571 wpa_s->ibss_rsn = NULL;
1572#endif /* CONFIG_IBSS_RSN */
1573
1574 if (ssid->mode == WPAS_MODE_AP || ssid->mode == WPAS_MODE_P2P_GO ||
1575 ssid->mode == WPAS_MODE_P2P_GROUP_FORMATION) {
1576#ifdef CONFIG_AP
1577 if (!(wpa_s->drv_flags & WPA_DRIVER_FLAGS_AP)) {
1578 wpa_msg(wpa_s, MSG_INFO, "Driver does not support AP "
1579 "mode");
1580 return;
1581 }
Dmitry Shmidtaa532512012-09-24 10:35:31 -07001582 if (wpa_supplicant_create_ap(wpa_s, ssid) < 0) {
1583 wpa_supplicant_set_state(wpa_s, WPA_DISCONNECTED);
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07001584 if (ssid->mode == WPAS_MODE_P2P_GROUP_FORMATION)
1585 wpas_p2p_ap_setup_failed(wpa_s);
Dmitry Shmidtaa532512012-09-24 10:35:31 -07001586 return;
1587 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001588 wpa_s->current_bss = bss;
1589#else /* CONFIG_AP */
1590 wpa_msg(wpa_s, MSG_ERROR, "AP mode support not included in "
1591 "the build");
1592#endif /* CONFIG_AP */
1593 return;
1594 }
1595
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001596 if (ssid->mode == WPAS_MODE_MESH) {
1597#ifdef CONFIG_MESH
1598 if (!(wpa_s->drv_flags & WPA_DRIVER_FLAGS_MESH)) {
1599 wpa_msg(wpa_s, MSG_INFO,
1600 "Driver does not support mesh mode");
1601 return;
1602 }
1603 if (bss)
1604 ssid->frequency = bss->freq;
1605 if (wpa_supplicant_join_mesh(wpa_s, ssid) < 0) {
1606 wpa_msg(wpa_s, MSG_ERROR, "Could not join mesh");
1607 return;
1608 }
1609 wpa_s->current_bss = bss;
1610 wpa_msg_ctrl(wpa_s, MSG_INFO, MESH_GROUP_STARTED
1611 "ssid=\"%s\" id=%d",
1612 wpa_ssid_txt(ssid->ssid, ssid->ssid_len),
1613 ssid->id);
1614#else /* CONFIG_MESH */
1615 wpa_msg(wpa_s, MSG_ERROR,
1616 "mesh mode support not included in the build");
1617#endif /* CONFIG_MESH */
1618 return;
1619 }
1620
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001621#ifdef CONFIG_TDLS
1622 if (bss)
1623 wpa_tdls_ap_ies(wpa_s->wpa, (const u8 *) (bss + 1),
1624 bss->ie_len);
1625#endif /* CONFIG_TDLS */
1626
1627 if ((wpa_s->drv_flags & WPA_DRIVER_FLAGS_SME) &&
1628 ssid->mode == IEEE80211_MODE_INFRA) {
1629 sme_authenticate(wpa_s, bss, ssid);
1630 return;
1631 }
1632
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001633 if (wpa_s->connect_work) {
1634 wpa_dbg(wpa_s, MSG_DEBUG, "Reject wpa_supplicant_associate() call since connect_work exist");
1635 return;
1636 }
1637
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001638 if (radio_work_pending(wpa_s, "connect")) {
1639 wpa_dbg(wpa_s, MSG_DEBUG, "Reject wpa_supplicant_associate() call since pending work exist");
1640 return;
1641 }
1642
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001643 cwork = os_zalloc(sizeof(*cwork));
1644 if (cwork == NULL)
1645 return;
1646
1647 cwork->bss = bss;
1648 cwork->ssid = ssid;
1649
1650 if (radio_add_work(wpa_s, bss ? bss->freq : 0, "connect", 1,
1651 wpas_start_assoc_cb, cwork) < 0) {
1652 os_free(cwork);
1653 }
1654}
1655
1656
Dmitry Shmidtff787d52015-01-12 13:01:47 -08001657void ibss_mesh_setup_freq(struct wpa_supplicant *wpa_s,
1658 const struct wpa_ssid *ssid,
1659 struct hostapd_freq_params *freq)
1660{
1661 enum hostapd_hw_mode hw_mode;
1662 struct hostapd_hw_modes *mode = NULL;
1663 int ht40plus[] = { 36, 44, 52, 60, 100, 108, 116, 124, 132, 149, 157,
1664 184, 192 };
1665 struct hostapd_channel_data *pri_chan = NULL, *sec_chan = NULL;
1666 u8 channel;
1667 int i, chan_idx, ht40 = -1, res;
1668 unsigned int j;
1669
1670 freq->freq = ssid->frequency;
1671
1672 /* For IBSS check HT_IBSS flag */
1673 if (ssid->mode == WPAS_MODE_IBSS &&
1674 !(wpa_s->drv_flags & WPA_DRIVER_FLAGS_HT_IBSS))
1675 return;
1676
1677 hw_mode = ieee80211_freq_to_chan(ssid->frequency, &channel);
1678 for (i = 0; wpa_s->hw.modes && i < wpa_s->hw.num_modes; i++) {
1679 if (wpa_s->hw.modes[i].mode == hw_mode) {
1680 mode = &wpa_s->hw.modes[i];
1681 break;
1682 }
1683 }
1684
1685 if (!mode)
1686 return;
1687
1688 freq->ht_enabled = ht_supported(mode);
1689 if (!freq->ht_enabled)
1690 return;
1691
1692 /* Setup higher BW only for 5 GHz */
1693 if (mode->mode != HOSTAPD_MODE_IEEE80211A)
1694 return;
1695
1696 for (chan_idx = 0; chan_idx < mode->num_channels; chan_idx++) {
1697 pri_chan = &mode->channels[chan_idx];
1698 if (pri_chan->chan == channel)
1699 break;
1700 pri_chan = NULL;
1701 }
1702 if (!pri_chan)
1703 return;
1704
1705 /* Check primary channel flags */
1706 if (pri_chan->flag & (HOSTAPD_CHAN_DISABLED | HOSTAPD_CHAN_NO_IR))
1707 return;
1708
1709 /* Check/setup HT40+/HT40- */
1710 for (j = 0; j < ARRAY_SIZE(ht40plus); j++) {
1711 if (ht40plus[j] == channel) {
1712 ht40 = 1;
1713 break;
1714 }
1715 }
1716
1717 /* Find secondary channel */
1718 for (i = 0; i < mode->num_channels; i++) {
1719 sec_chan = &mode->channels[i];
1720 if (sec_chan->chan == channel + ht40 * 4)
1721 break;
1722 sec_chan = NULL;
1723 }
1724 if (!sec_chan)
1725 return;
1726
1727 /* Check secondary channel flags */
1728 if (sec_chan->flag & (HOSTAPD_CHAN_DISABLED | HOSTAPD_CHAN_NO_IR))
1729 return;
1730
1731 freq->channel = pri_chan->chan;
1732
1733 switch (ht40) {
1734 case -1:
1735 if (!(pri_chan->flag & HOSTAPD_CHAN_HT40MINUS))
1736 return;
1737 freq->sec_channel_offset = -1;
1738 break;
1739 case 1:
1740 if (!(pri_chan->flag & HOSTAPD_CHAN_HT40PLUS))
1741 return;
1742 freq->sec_channel_offset = 1;
1743 break;
1744 default:
1745 break;
1746 }
1747
1748 if (freq->sec_channel_offset) {
1749 struct wpa_scan_results *scan_res;
1750
1751 scan_res = wpa_supplicant_get_scan_results(wpa_s, NULL, 0);
1752 if (scan_res == NULL) {
1753 /* Back to HT20 */
1754 freq->sec_channel_offset = 0;
1755 return;
1756 }
1757
1758 res = check_40mhz_5g(mode, scan_res, pri_chan->chan,
1759 sec_chan->chan);
1760 switch (res) {
1761 case 0:
1762 /* Back to HT20 */
1763 freq->sec_channel_offset = 0;
1764 break;
1765 case 1:
1766 /* Configuration allowed */
1767 break;
1768 case 2:
1769 /* Switch pri/sec channels */
1770 freq->freq = hw_get_freq(mode, sec_chan->chan);
1771 freq->sec_channel_offset = -freq->sec_channel_offset;
1772 freq->channel = sec_chan->chan;
1773 break;
1774 default:
1775 freq->sec_channel_offset = 0;
1776 break;
1777 }
1778
1779 wpa_scan_results_free(scan_res);
1780 }
1781
1782 wpa_printf(MSG_DEBUG,
1783 "IBSS/mesh: setup freq channel %d, sec_channel_offset %d",
1784 freq->channel, freq->sec_channel_offset);
1785}
1786
1787
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001788static void wpas_start_assoc_cb(struct wpa_radio_work *work, int deinit)
1789{
1790 struct wpa_connect_work *cwork = work->ctx;
1791 struct wpa_bss *bss = cwork->bss;
1792 struct wpa_ssid *ssid = cwork->ssid;
1793 struct wpa_supplicant *wpa_s = work->wpa_s;
1794 u8 wpa_ie[200];
1795 size_t wpa_ie_len;
1796 int use_crypt, ret, i, bssid_changed;
1797 int algs = WPA_AUTH_ALG_OPEN;
1798 unsigned int cipher_pairwise, cipher_group;
1799 struct wpa_driver_associate_params params;
1800 int wep_keys_set = 0;
1801 int assoc_failed = 0;
1802 struct wpa_ssid *old_ssid;
1803#ifdef CONFIG_HT_OVERRIDES
1804 struct ieee80211_ht_capabilities htcaps;
1805 struct ieee80211_ht_capabilities htcaps_mask;
1806#endif /* CONFIG_HT_OVERRIDES */
Dmitry Shmidtb36ed7c2014-03-17 10:57:26 -07001807#ifdef CONFIG_VHT_OVERRIDES
1808 struct ieee80211_vht_capabilities vhtcaps;
1809 struct ieee80211_vht_capabilities vhtcaps_mask;
1810#endif /* CONFIG_VHT_OVERRIDES */
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001811
1812 if (deinit) {
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08001813 if (work->started) {
1814 wpa_s->connect_work = NULL;
1815
1816 /* cancel possible auth. timeout */
1817 eloop_cancel_timeout(wpa_supplicant_timeout, wpa_s,
1818 NULL);
1819 }
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001820 wpas_connect_work_free(cwork);
1821 return;
1822 }
1823
1824 wpa_s->connect_work = work;
1825
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08001826 if (cwork->bss_removed || !wpas_valid_bss_ssid(wpa_s, bss, ssid)) {
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08001827 wpa_dbg(wpa_s, MSG_DEBUG, "BSS/SSID entry for association not valid anymore - drop connection attempt");
1828 wpas_connect_work_done(wpa_s);
1829 return;
1830 }
1831
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001832 os_memset(&params, 0, sizeof(params));
1833 wpa_s->reassociate = 0;
Dmitry Shmidt344abd32014-01-14 13:17:00 -08001834 wpa_s->eap_expected_failure = 0;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001835 if (bss &&
1836 (!wpas_driver_bss_selection(wpa_s) || wpas_wps_searching(wpa_s))) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001837#ifdef CONFIG_IEEE80211R
1838 const u8 *ie, *md = NULL;
1839#endif /* CONFIG_IEEE80211R */
1840 wpa_msg(wpa_s, MSG_INFO, "Trying to associate with " MACSTR
1841 " (SSID='%s' freq=%d MHz)", MAC2STR(bss->bssid),
1842 wpa_ssid_txt(bss->ssid, bss->ssid_len), bss->freq);
1843 bssid_changed = !is_zero_ether_addr(wpa_s->bssid);
1844 os_memset(wpa_s->bssid, 0, ETH_ALEN);
1845 os_memcpy(wpa_s->pending_bssid, bss->bssid, ETH_ALEN);
1846 if (bssid_changed)
1847 wpas_notify_bssid_changed(wpa_s);
1848#ifdef CONFIG_IEEE80211R
1849 ie = wpa_bss_get_ie(bss, WLAN_EID_MOBILITY_DOMAIN);
1850 if (ie && ie[1] >= MOBILITY_DOMAIN_ID_LEN)
1851 md = ie + 2;
1852 wpa_sm_set_ft_params(wpa_s->wpa, ie, ie ? 2 + ie[1] : 0);
1853 if (md) {
1854 /* Prepare for the next transition */
1855 wpa_ft_prepare_auth_request(wpa_s->wpa, ie);
1856 }
1857#endif /* CONFIG_IEEE80211R */
1858#ifdef CONFIG_WPS
1859 } else if ((ssid->ssid == NULL || ssid->ssid_len == 0) &&
1860 wpa_s->conf->ap_scan == 2 &&
1861 (ssid->key_mgmt & WPA_KEY_MGMT_WPS)) {
1862 /* Use ap_scan==1 style network selection to find the network
1863 */
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08001864 wpas_connect_work_done(wpa_s);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08001865 wpa_s->scan_req = MANUAL_SCAN_REQ;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001866 wpa_s->reassociate = 1;
1867 wpa_supplicant_req_scan(wpa_s, 0, 0);
1868 return;
1869#endif /* CONFIG_WPS */
1870 } else {
1871 wpa_msg(wpa_s, MSG_INFO, "Trying to associate with SSID '%s'",
1872 wpa_ssid_txt(ssid->ssid, ssid->ssid_len));
1873 os_memset(wpa_s->pending_bssid, 0, ETH_ALEN);
1874 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001875 wpa_supplicant_cancel_sched_scan(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001876 wpa_supplicant_cancel_scan(wpa_s);
1877
1878 /* Starting new association, so clear the possibly used WPA IE from the
1879 * previous association. */
1880 wpa_sm_set_assoc_wpa_ie(wpa_s->wpa, NULL, 0);
1881
1882#ifdef IEEE8021X_EAPOL
1883 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
1884 if (ssid->leap) {
1885 if (ssid->non_leap == 0)
1886 algs = WPA_AUTH_ALG_LEAP;
1887 else
1888 algs |= WPA_AUTH_ALG_LEAP;
1889 }
1890 }
1891#endif /* IEEE8021X_EAPOL */
1892 wpa_dbg(wpa_s, MSG_DEBUG, "Automatic auth_alg selection: 0x%x", algs);
1893 if (ssid->auth_alg) {
1894 algs = ssid->auth_alg;
1895 wpa_dbg(wpa_s, MSG_DEBUG, "Overriding auth_alg selection: "
1896 "0x%x", algs);
1897 }
1898
1899 if (bss && (wpa_bss_get_vendor_ie(bss, WPA_IE_VENDOR_TYPE) ||
1900 wpa_bss_get_ie(bss, WLAN_EID_RSN)) &&
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001901 wpa_key_mgmt_wpa(ssid->key_mgmt)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001902 int try_opportunistic;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08001903 try_opportunistic = (ssid->proactive_key_caching < 0 ?
1904 wpa_s->conf->okc :
1905 ssid->proactive_key_caching) &&
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001906 (ssid->proto & WPA_PROTO_RSN);
1907 if (pmksa_cache_set_current(wpa_s->wpa, NULL, bss->bssid,
Dmitry Shmidt700a1372013-03-15 14:14:44 -07001908 ssid, try_opportunistic) == 0)
Dmitry Shmidt216983b2015-02-06 10:50:36 -08001909 eapol_sm_notify_pmkid_attempt(wpa_s->eapol);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001910 wpa_ie_len = sizeof(wpa_ie);
1911 if (wpa_supplicant_set_suites(wpa_s, bss, ssid,
1912 wpa_ie, &wpa_ie_len)) {
1913 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to set WPA "
1914 "key management and encryption suites");
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08001915 wpas_connect_work_done(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001916 return;
1917 }
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001918 } else if ((ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_NO_WPA) && bss &&
1919 wpa_key_mgmt_wpa_ieee8021x(ssid->key_mgmt)) {
1920 /*
1921 * Both WPA and non-WPA IEEE 802.1X enabled in configuration -
1922 * use non-WPA since the scan results did not indicate that the
1923 * AP is using WPA or WPA2.
1924 */
1925 wpa_supplicant_set_non_wpa_policy(wpa_s, ssid);
1926 wpa_ie_len = 0;
1927 wpa_s->wpa_proto = 0;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001928 } else if (wpa_key_mgmt_wpa_any(ssid->key_mgmt)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001929 wpa_ie_len = sizeof(wpa_ie);
1930 if (wpa_supplicant_set_suites(wpa_s, NULL, ssid,
1931 wpa_ie, &wpa_ie_len)) {
1932 wpa_msg(wpa_s, MSG_WARNING, "WPA: Failed to set WPA "
1933 "key management and encryption suites (no "
1934 "scan results)");
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08001935 wpas_connect_work_done(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001936 return;
1937 }
1938#ifdef CONFIG_WPS
1939 } else if (ssid->key_mgmt & WPA_KEY_MGMT_WPS) {
1940 struct wpabuf *wps_ie;
1941 wps_ie = wps_build_assoc_req_ie(wpas_wps_get_req_type(ssid));
1942 if (wps_ie && wpabuf_len(wps_ie) <= sizeof(wpa_ie)) {
1943 wpa_ie_len = wpabuf_len(wps_ie);
1944 os_memcpy(wpa_ie, wpabuf_head(wps_ie), wpa_ie_len);
1945 } else
1946 wpa_ie_len = 0;
1947 wpabuf_free(wps_ie);
1948 wpa_supplicant_set_non_wpa_policy(wpa_s, ssid);
1949 if (!bss || (bss->caps & IEEE80211_CAP_PRIVACY))
1950 params.wps = WPS_MODE_PRIVACY;
1951 else
1952 params.wps = WPS_MODE_OPEN;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001953 wpa_s->wpa_proto = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001954#endif /* CONFIG_WPS */
1955 } else {
1956 wpa_supplicant_set_non_wpa_policy(wpa_s, ssid);
1957 wpa_ie_len = 0;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08001958 wpa_s->wpa_proto = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001959 }
1960
1961#ifdef CONFIG_P2P
1962 if (wpa_s->global->p2p) {
1963 u8 *pos;
1964 size_t len;
1965 int res;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001966 pos = wpa_ie + wpa_ie_len;
1967 len = sizeof(wpa_ie) - wpa_ie_len;
Dmitry Shmidt04949592012-07-19 12:16:46 -07001968 res = wpas_p2p_assoc_req_ie(wpa_s, bss, pos, len,
1969 ssid->p2p_group);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001970 if (res >= 0)
1971 wpa_ie_len += res;
1972 }
1973
1974 wpa_s->cross_connect_disallowed = 0;
1975 if (bss) {
1976 struct wpabuf *p2p;
1977 p2p = wpa_bss_get_vendor_ie_multi(bss, P2P_IE_VENDOR_TYPE);
1978 if (p2p) {
1979 wpa_s->cross_connect_disallowed =
1980 p2p_get_cross_connect_disallowed(p2p);
1981 wpabuf_free(p2p);
1982 wpa_dbg(wpa_s, MSG_DEBUG, "P2P: WLAN AP %s cross "
1983 "connection",
1984 wpa_s->cross_connect_disallowed ?
1985 "disallows" : "allows");
1986 }
1987 }
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08001988
1989 os_memset(wpa_s->p2p_ip_addr_info, 0, sizeof(wpa_s->p2p_ip_addr_info));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001990#endif /* CONFIG_P2P */
1991
Dmitry Shmidt04949592012-07-19 12:16:46 -07001992#ifdef CONFIG_HS20
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07001993 if (is_hs20_network(wpa_s, ssid, bss)) {
Dmitry Shmidt04949592012-07-19 12:16:46 -07001994 struct wpabuf *hs20;
1995 hs20 = wpabuf_alloc(20);
1996 if (hs20) {
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08001997 int pps_mo_id = hs20_get_pps_mo_id(wpa_s, ssid);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001998 size_t len;
1999
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08002000 wpas_hs20_add_indication(hs20, pps_mo_id);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002001 len = sizeof(wpa_ie) - wpa_ie_len;
2002 if (wpabuf_len(hs20) <= len) {
2003 os_memcpy(wpa_ie + wpa_ie_len,
2004 wpabuf_head(hs20), wpabuf_len(hs20));
2005 wpa_ie_len += wpabuf_len(hs20);
2006 }
Dmitry Shmidt04949592012-07-19 12:16:46 -07002007 wpabuf_free(hs20);
2008 }
2009 }
2010#endif /* CONFIG_HS20 */
2011
Dmitry Shmidt56052862013-10-04 10:23:25 -07002012 /*
2013 * Workaround: Add Extended Capabilities element only if the AP
2014 * included this element in Beacon/Probe Response frames. Some older
2015 * APs seem to have interoperability issues if this element is
2016 * included, so while the standard may require us to include the
2017 * element in all cases, it is justifiable to skip it to avoid
2018 * interoperability issues.
2019 */
2020 if (!bss || wpa_bss_get_ie(bss, WLAN_EID_EXT_CAPAB)) {
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07002021 u8 ext_capab[18];
Dmitry Shmidt56052862013-10-04 10:23:25 -07002022 int ext_capab_len;
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07002023 ext_capab_len = wpas_build_ext_capab(wpa_s, ext_capab,
2024 sizeof(ext_capab));
Dmitry Shmidt56052862013-10-04 10:23:25 -07002025 if (ext_capab_len > 0) {
2026 u8 *pos = wpa_ie;
2027 if (wpa_ie_len > 0 && pos[0] == WLAN_EID_RSN)
2028 pos += 2 + pos[1];
2029 os_memmove(pos + ext_capab_len, pos,
2030 wpa_ie_len - (pos - wpa_ie));
2031 wpa_ie_len += ext_capab_len;
2032 os_memcpy(pos, ext_capab, ext_capab_len);
2033 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002034 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002035
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08002036 if (wpa_s->vendor_elem[VENDOR_ELEM_ASSOC_REQ]) {
2037 struct wpabuf *buf = wpa_s->vendor_elem[VENDOR_ELEM_ASSOC_REQ];
2038 size_t len;
2039
2040 len = sizeof(wpa_ie) - wpa_ie_len;
2041 if (wpabuf_len(buf) <= len) {
2042 os_memcpy(wpa_ie + wpa_ie_len,
2043 wpabuf_head(buf), wpabuf_len(buf));
2044 wpa_ie_len += wpabuf_len(buf);
2045 }
2046 }
2047
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002048 wpa_clear_keys(wpa_s, bss ? bss->bssid : NULL);
2049 use_crypt = 1;
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002050 cipher_pairwise = wpa_s->pairwise_cipher;
2051 cipher_group = wpa_s->group_cipher;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002052 if (wpa_s->key_mgmt == WPA_KEY_MGMT_NONE ||
2053 wpa_s->key_mgmt == WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
2054 if (wpa_s->key_mgmt == WPA_KEY_MGMT_NONE)
2055 use_crypt = 0;
2056 if (wpa_set_wep_keys(wpa_s, ssid)) {
2057 use_crypt = 1;
2058 wep_keys_set = 1;
2059 }
2060 }
2061 if (wpa_s->key_mgmt == WPA_KEY_MGMT_WPS)
2062 use_crypt = 0;
2063
2064#ifdef IEEE8021X_EAPOL
2065 if (wpa_s->key_mgmt == WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
2066 if ((ssid->eapol_flags &
2067 (EAPOL_FLAG_REQUIRE_KEY_UNICAST |
2068 EAPOL_FLAG_REQUIRE_KEY_BROADCAST)) == 0 &&
2069 !wep_keys_set) {
2070 use_crypt = 0;
2071 } else {
2072 /* Assume that dynamic WEP-104 keys will be used and
2073 * set cipher suites in order for drivers to expect
2074 * encryption. */
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002075 cipher_pairwise = cipher_group = WPA_CIPHER_WEP104;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002076 }
2077 }
2078#endif /* IEEE8021X_EAPOL */
2079
2080 if (wpa_s->key_mgmt == WPA_KEY_MGMT_WPA_NONE) {
2081 /* Set the key before (and later after) association */
2082 wpa_supplicant_set_wpa_none_key(wpa_s, ssid);
2083 }
2084
2085 wpa_supplicant_set_state(wpa_s, WPA_ASSOCIATING);
2086 if (bss) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002087 params.ssid = bss->ssid;
2088 params.ssid_len = bss->ssid_len;
Dmitry Shmidt04949592012-07-19 12:16:46 -07002089 if (!wpas_driver_bss_selection(wpa_s) || ssid->bssid_set) {
2090 wpa_printf(MSG_DEBUG, "Limit connection to BSSID "
2091 MACSTR " freq=%u MHz based on scan results "
2092 "(bssid_set=%d)",
2093 MAC2STR(bss->bssid), bss->freq,
2094 ssid->bssid_set);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002095 params.bssid = bss->bssid;
Dmitry Shmidt9ead16e2014-10-07 13:15:23 -07002096 params.freq.freq = bss->freq;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002097 }
Dmitry Shmidt96be6222014-02-13 10:16:51 -08002098 params.bssid_hint = bss->bssid;
2099 params.freq_hint = bss->freq;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002100 } else {
2101 params.ssid = ssid->ssid;
2102 params.ssid_len = ssid->ssid_len;
2103 }
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002104
2105 if (ssid->mode == WPAS_MODE_IBSS && ssid->bssid_set &&
2106 wpa_s->conf->ap_scan == 2) {
2107 params.bssid = ssid->bssid;
2108 params.fixed_bssid = 1;
2109 }
2110
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002111 /* Initial frequency for IBSS/mesh */
2112 if ((ssid->mode == WPAS_MODE_IBSS || ssid->mode == WPAS_MODE_MESH) &&
Dmitry Shmidtff787d52015-01-12 13:01:47 -08002113 ssid->frequency > 0 && params.freq.freq == 0)
2114 ibss_mesh_setup_freq(wpa_s, ssid, &params.freq);
Dmitry Shmidt2ac5f602014-03-07 10:08:21 -08002115
2116 if (ssid->mode == WPAS_MODE_IBSS) {
2117 if (ssid->beacon_int)
2118 params.beacon_int = ssid->beacon_int;
2119 else
2120 params.beacon_int = wpa_s->conf->beacon_int;
2121 }
2122
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002123 params.wpa_ie = wpa_ie;
2124 params.wpa_ie_len = wpa_ie_len;
2125 params.pairwise_suite = cipher_pairwise;
2126 params.group_suite = cipher_group;
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002127 params.key_mgmt_suite = wpa_s->key_mgmt;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002128 params.wpa_proto = wpa_s->wpa_proto;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002129 params.auth_alg = algs;
2130 params.mode = ssid->mode;
Dmitry Shmidt04949592012-07-19 12:16:46 -07002131 params.bg_scan_period = ssid->bg_scan_period;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002132 for (i = 0; i < NUM_WEP_KEYS; i++) {
2133 if (ssid->wep_key_len[i])
2134 params.wep_key[i] = ssid->wep_key[i];
2135 params.wep_key_len[i] = ssid->wep_key_len[i];
2136 }
2137 params.wep_tx_keyidx = ssid->wep_tx_keyidx;
2138
2139 if ((wpa_s->drv_flags & WPA_DRIVER_FLAGS_4WAY_HANDSHAKE) &&
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002140 (params.key_mgmt_suite == WPA_KEY_MGMT_PSK ||
2141 params.key_mgmt_suite == WPA_KEY_MGMT_FT_PSK)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002142 params.passphrase = ssid->passphrase;
2143 if (ssid->psk_set)
2144 params.psk = ssid->psk;
2145 }
2146
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002147 if (wpa_s->conf->key_mgmt_offload) {
2148 if (params.key_mgmt_suite == WPA_KEY_MGMT_IEEE8021X ||
2149 params.key_mgmt_suite == WPA_KEY_MGMT_IEEE8021X_SHA256 ||
Dmitry Shmidt807291d2015-01-27 13:40:23 -08002150 params.key_mgmt_suite == WPA_KEY_MGMT_IEEE8021X_SUITE_B ||
2151 params.key_mgmt_suite == WPA_KEY_MGMT_IEEE8021X_SUITE_B_192)
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002152 params.req_key_mgmt_offload =
2153 ssid->proactive_key_caching < 0 ?
2154 wpa_s->conf->okc : ssid->proactive_key_caching;
2155 else
2156 params.req_key_mgmt_offload = 1;
2157
2158 if ((params.key_mgmt_suite == WPA_KEY_MGMT_PSK ||
2159 params.key_mgmt_suite == WPA_KEY_MGMT_PSK_SHA256 ||
2160 params.key_mgmt_suite == WPA_KEY_MGMT_FT_PSK) &&
2161 ssid->psk_set)
2162 params.psk = ssid->psk;
2163 }
2164
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002165 params.drop_unencrypted = use_crypt;
2166
2167#ifdef CONFIG_IEEE80211W
Dmitry Shmidt807291d2015-01-27 13:40:23 -08002168 params.mgmt_frame_protection = wpas_get_ssid_pmf(wpa_s, ssid);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002169 if (params.mgmt_frame_protection != NO_MGMT_FRAME_PROTECTION && bss) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002170 const u8 *rsn = wpa_bss_get_ie(bss, WLAN_EID_RSN);
2171 struct wpa_ie_data ie;
2172 if (rsn && wpa_parse_wpa_ie(rsn, 2 + rsn[1], &ie) == 0 &&
2173 ie.capabilities &
2174 (WPA_CAPABILITY_MFPC | WPA_CAPABILITY_MFPR)) {
2175 wpa_dbg(wpa_s, MSG_DEBUG, "WPA: Selected AP supports "
2176 "MFP: require MFP");
2177 params.mgmt_frame_protection =
2178 MGMT_FRAME_PROTECTION_REQUIRED;
2179 }
2180 }
2181#endif /* CONFIG_IEEE80211W */
2182
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002183 params.p2p = ssid->p2p_group;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002184
2185 if (wpa_s->parent->set_sta_uapsd)
2186 params.uapsd = wpa_s->parent->sta_uapsd;
2187 else
2188 params.uapsd = -1;
2189
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002190#ifdef CONFIG_HT_OVERRIDES
2191 os_memset(&htcaps, 0, sizeof(htcaps));
2192 os_memset(&htcaps_mask, 0, sizeof(htcaps_mask));
2193 params.htcaps = (u8 *) &htcaps;
2194 params.htcaps_mask = (u8 *) &htcaps_mask;
2195 wpa_supplicant_apply_ht_overrides(wpa_s, ssid, &params);
2196#endif /* CONFIG_HT_OVERRIDES */
Dmitry Shmidtb36ed7c2014-03-17 10:57:26 -07002197#ifdef CONFIG_VHT_OVERRIDES
2198 os_memset(&vhtcaps, 0, sizeof(vhtcaps));
2199 os_memset(&vhtcaps_mask, 0, sizeof(vhtcaps_mask));
2200 params.vhtcaps = &vhtcaps;
2201 params.vhtcaps_mask = &vhtcaps_mask;
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08002202 wpa_supplicant_apply_vht_overrides(wpa_s, ssid, &params);
Dmitry Shmidtb36ed7c2014-03-17 10:57:26 -07002203#endif /* CONFIG_VHT_OVERRIDES */
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002204
Dmitry Shmidt04f534e2013-12-09 15:50:16 -08002205#ifdef CONFIG_P2P
2206 /*
2207 * If multi-channel concurrency is not supported, check for any
2208 * frequency conflict. In case of any frequency conflict, remove the
2209 * least prioritized connection.
2210 */
2211 if (wpa_s->num_multichan_concurrent < 2) {
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -07002212 int freq, num;
2213 num = get_shared_radio_freqs(wpa_s, &freq, 1);
Dmitry Shmidt9ead16e2014-10-07 13:15:23 -07002214 if (num > 0 && freq > 0 && freq != params.freq.freq) {
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -07002215 wpa_printf(MSG_DEBUG,
2216 "Assoc conflicting freq found (%d != %d)",
Dmitry Shmidt9ead16e2014-10-07 13:15:23 -07002217 freq, params.freq.freq);
2218 if (wpas_p2p_handle_frequency_conflicts(
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08002219 wpa_s, params.freq.freq, ssid) < 0) {
2220 wpas_connect_work_done(wpa_s);
Dmitry Shmidt04f534e2013-12-09 15:50:16 -08002221 return;
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08002222 }
Dmitry Shmidt04f534e2013-12-09 15:50:16 -08002223 }
2224 }
2225#endif /* CONFIG_P2P */
2226
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002227 ret = wpa_drv_associate(wpa_s, &params);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002228 if (ret < 0) {
2229 wpa_msg(wpa_s, MSG_INFO, "Association request to the driver "
2230 "failed");
2231 if (wpa_s->drv_flags & WPA_DRIVER_FLAGS_SANE_ERROR_CODES) {
2232 /*
2233 * The driver is known to mean what is saying, so we
2234 * can stop right here; the association will not
2235 * succeed.
2236 */
2237 wpas_connection_failed(wpa_s, wpa_s->pending_bssid);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002238 wpa_supplicant_set_state(wpa_s, WPA_DISCONNECTED);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002239 os_memset(wpa_s->pending_bssid, 0, ETH_ALEN);
2240 return;
2241 }
2242 /* try to continue anyway; new association will be tried again
2243 * after timeout */
2244 assoc_failed = 1;
2245 }
2246
2247 if (wpa_s->key_mgmt == WPA_KEY_MGMT_WPA_NONE) {
2248 /* Set the key after the association just in case association
2249 * cleared the previously configured key. */
2250 wpa_supplicant_set_wpa_none_key(wpa_s, ssid);
2251 /* No need to timeout authentication since there is no key
2252 * management. */
2253 wpa_supplicant_cancel_auth_timeout(wpa_s);
2254 wpa_supplicant_set_state(wpa_s, WPA_COMPLETED);
2255#ifdef CONFIG_IBSS_RSN
2256 } else if (ssid->mode == WPAS_MODE_IBSS &&
2257 wpa_s->key_mgmt != WPA_KEY_MGMT_NONE &&
2258 wpa_s->key_mgmt != WPA_KEY_MGMT_WPA_NONE) {
2259 /*
2260 * RSN IBSS authentication is per-STA and we can disable the
2261 * per-BSSID authentication.
2262 */
2263 wpa_supplicant_cancel_auth_timeout(wpa_s);
2264#endif /* CONFIG_IBSS_RSN */
2265 } else {
2266 /* Timeout for IEEE 802.11 authentication and association */
2267 int timeout = 60;
2268
2269 if (assoc_failed) {
2270 /* give IBSS a bit more time */
2271 timeout = ssid->mode == WPAS_MODE_IBSS ? 10 : 5;
2272 } else if (wpa_s->conf->ap_scan == 1) {
2273 /* give IBSS a bit more time */
2274 timeout = ssid->mode == WPAS_MODE_IBSS ? 20 : 10;
2275 }
2276 wpa_supplicant_req_auth_timeout(wpa_s, timeout, 0);
2277 }
2278
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07002279 if (wep_keys_set &&
2280 (wpa_s->drv_flags & WPA_DRIVER_FLAGS_SET_KEYS_AFTER_ASSOC)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002281 /* Set static WEP keys again */
2282 wpa_set_wep_keys(wpa_s, ssid);
2283 }
2284
2285 if (wpa_s->current_ssid && wpa_s->current_ssid != ssid) {
2286 /*
2287 * Do not allow EAP session resumption between different
2288 * network configurations.
2289 */
2290 eapol_sm_invalidate_cached_session(wpa_s->eapol);
2291 }
2292 old_ssid = wpa_s->current_ssid;
2293 wpa_s->current_ssid = ssid;
2294 wpa_s->current_bss = bss;
2295 wpa_supplicant_rsn_supp_set_config(wpa_s, wpa_s->current_ssid);
2296 wpa_supplicant_initiate_eapol(wpa_s);
2297 if (old_ssid != wpa_s->current_ssid)
2298 wpas_notify_network_changed(wpa_s);
2299}
2300
2301
2302static void wpa_supplicant_clear_connection(struct wpa_supplicant *wpa_s,
2303 const u8 *addr)
2304{
2305 struct wpa_ssid *old_ssid;
2306
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002307 wpas_connect_work_done(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002308 wpa_clear_keys(wpa_s, addr);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002309 old_ssid = wpa_s->current_ssid;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002310 wpa_supplicant_mark_disassoc(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002311 wpa_sm_set_config(wpa_s->wpa, NULL);
2312 eapol_sm_notify_config(wpa_s->eapol, NULL, NULL);
2313 if (old_ssid != wpa_s->current_ssid)
2314 wpas_notify_network_changed(wpa_s);
2315 eloop_cancel_timeout(wpa_supplicant_timeout, wpa_s, NULL);
2316}
2317
2318
2319/**
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002320 * wpa_supplicant_deauthenticate - Deauthenticate the current connection
2321 * @wpa_s: Pointer to wpa_supplicant data
2322 * @reason_code: IEEE 802.11 reason code for the deauthenticate frame
2323 *
2324 * This function is used to request %wpa_supplicant to deauthenticate from the
2325 * current AP.
2326 */
2327void wpa_supplicant_deauthenticate(struct wpa_supplicant *wpa_s,
2328 int reason_code)
2329{
2330 u8 *addr = NULL;
Dmitry Shmidt04949592012-07-19 12:16:46 -07002331 union wpa_event_data event;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002332 int zero_addr = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002333
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002334 wpa_dbg(wpa_s, MSG_DEBUG, "Request to deauthenticate - bssid=" MACSTR
2335 " pending_bssid=" MACSTR " reason=%d state=%s",
2336 MAC2STR(wpa_s->bssid), MAC2STR(wpa_s->pending_bssid),
2337 reason_code, wpa_supplicant_state_txt(wpa_s->wpa_state));
2338
2339 if (!is_zero_ether_addr(wpa_s->bssid))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002340 addr = wpa_s->bssid;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002341 else if (!is_zero_ether_addr(wpa_s->pending_bssid) &&
2342 (wpa_s->wpa_state == WPA_AUTHENTICATING ||
2343 wpa_s->wpa_state == WPA_ASSOCIATING))
2344 addr = wpa_s->pending_bssid;
2345 else if (wpa_s->wpa_state == WPA_ASSOCIATING) {
2346 /*
2347 * When using driver-based BSS selection, we may not know the
2348 * BSSID with which we are currently trying to associate. We
2349 * need to notify the driver of this disconnection even in such
2350 * a case, so use the all zeros address here.
2351 */
2352 addr = wpa_s->bssid;
2353 zero_addr = 1;
2354 }
2355
Dmitry Shmidtf8623282013-02-20 14:34:59 -08002356#ifdef CONFIG_TDLS
2357 wpa_tdls_teardown_peers(wpa_s->wpa);
2358#endif /* CONFIG_TDLS */
2359
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002360#ifdef CONFIG_MESH
2361 if (wpa_s->ifmsh) {
2362 wpa_msg_ctrl(wpa_s, MSG_INFO, MESH_GROUP_REMOVED "%s",
2363 wpa_s->ifname);
2364 wpa_supplicant_leave_mesh(wpa_s);
2365 }
2366#endif /* CONFIG_MESH */
2367
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002368 if (addr) {
2369 wpa_drv_deauthenticate(wpa_s, addr, reason_code);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002370 os_memset(&event, 0, sizeof(event));
2371 event.deauth_info.reason_code = (u16) reason_code;
2372 event.deauth_info.locally_generated = 1;
2373 wpa_supplicant_event(wpa_s, EVENT_DEAUTH, &event);
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002374 if (zero_addr)
2375 addr = NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002376 }
2377
2378 wpa_supplicant_clear_connection(wpa_s, addr);
2379}
2380
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002381static void wpa_supplicant_enable_one_network(struct wpa_supplicant *wpa_s,
2382 struct wpa_ssid *ssid)
2383{
2384 if (!ssid || !ssid->disabled || ssid->disabled == 2)
2385 return;
2386
2387 ssid->disabled = 0;
2388 wpas_clear_temp_disabled(wpa_s, ssid, 1);
2389 wpas_notify_network_enabled_changed(wpa_s, ssid);
2390
2391 /*
2392 * Try to reassociate since there is no current configuration and a new
2393 * network was made available.
2394 */
Dmitry Shmidt4ce9c872013-10-24 11:08:13 -07002395 if (!wpa_s->current_ssid && !wpa_s->disconnected)
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002396 wpa_s->reassociate = 1;
2397}
2398
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002399
2400/**
2401 * wpa_supplicant_enable_network - Mark a configured network as enabled
2402 * @wpa_s: wpa_supplicant structure for a network interface
2403 * @ssid: wpa_ssid structure for a configured network or %NULL
2404 *
2405 * Enables the specified network or all networks if no network specified.
2406 */
2407void wpa_supplicant_enable_network(struct wpa_supplicant *wpa_s,
2408 struct wpa_ssid *ssid)
2409{
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002410 if (ssid == NULL) {
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002411 for (ssid = wpa_s->conf->ssid; ssid; ssid = ssid->next)
2412 wpa_supplicant_enable_one_network(wpa_s, ssid);
2413 } else
2414 wpa_supplicant_enable_one_network(wpa_s, ssid);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002415
Dmitry Shmidt4ce9c872013-10-24 11:08:13 -07002416 if (wpa_s->reassociate && !wpa_s->disconnected) {
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002417 if (wpa_s->sched_scanning) {
2418 wpa_printf(MSG_DEBUG, "Stop ongoing sched_scan to add "
2419 "new network to scan filters");
2420 wpa_supplicant_cancel_sched_scan(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002421 }
2422
Dmitry Shmidtf7e0a992013-05-23 11:03:10 -07002423 if (wpa_supplicant_fast_associate(wpa_s) != 1)
2424 wpa_supplicant_req_scan(wpa_s, 0, 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002425 }
2426}
2427
2428
2429/**
2430 * wpa_supplicant_disable_network - Mark a configured network as disabled
2431 * @wpa_s: wpa_supplicant structure for a network interface
2432 * @ssid: wpa_ssid structure for a configured network or %NULL
2433 *
2434 * Disables the specified network or all networks if no network specified.
2435 */
2436void wpa_supplicant_disable_network(struct wpa_supplicant *wpa_s,
2437 struct wpa_ssid *ssid)
2438{
2439 struct wpa_ssid *other_ssid;
2440 int was_disabled;
2441
2442 if (ssid == NULL) {
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002443 if (wpa_s->sched_scanning)
2444 wpa_supplicant_cancel_sched_scan(wpa_s);
2445
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002446 for (other_ssid = wpa_s->conf->ssid; other_ssid;
2447 other_ssid = other_ssid->next) {
2448 was_disabled = other_ssid->disabled;
2449 if (was_disabled == 2)
2450 continue; /* do not change persistent P2P group
2451 * data */
2452
2453 other_ssid->disabled = 1;
2454
2455 if (was_disabled != other_ssid->disabled)
2456 wpas_notify_network_enabled_changed(
2457 wpa_s, other_ssid);
2458 }
2459 if (wpa_s->current_ssid)
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002460 wpa_supplicant_deauthenticate(
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002461 wpa_s, WLAN_REASON_DEAUTH_LEAVING);
2462 } else if (ssid->disabled != 2) {
2463 if (ssid == wpa_s->current_ssid)
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002464 wpa_supplicant_deauthenticate(
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002465 wpa_s, WLAN_REASON_DEAUTH_LEAVING);
2466
2467 was_disabled = ssid->disabled;
2468
2469 ssid->disabled = 1;
2470
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002471 if (was_disabled != ssid->disabled) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002472 wpas_notify_network_enabled_changed(wpa_s, ssid);
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002473 if (wpa_s->sched_scanning) {
2474 wpa_printf(MSG_DEBUG, "Stop ongoing sched_scan "
2475 "to remove network from filters");
2476 wpa_supplicant_cancel_sched_scan(wpa_s);
2477 wpa_supplicant_req_scan(wpa_s, 0, 0);
2478 }
2479 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002480 }
2481}
2482
2483
2484/**
2485 * wpa_supplicant_select_network - Attempt association with a network
2486 * @wpa_s: wpa_supplicant structure for a network interface
2487 * @ssid: wpa_ssid structure for a configured network or %NULL for any network
2488 */
2489void wpa_supplicant_select_network(struct wpa_supplicant *wpa_s,
2490 struct wpa_ssid *ssid)
2491{
2492
2493 struct wpa_ssid *other_ssid;
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002494 int disconnected = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002495
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002496 if (ssid && ssid != wpa_s->current_ssid && wpa_s->current_ssid) {
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08002497 wpa_supplicant_deauthenticate(
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002498 wpa_s, WLAN_REASON_DEAUTH_LEAVING);
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002499 disconnected = 1;
2500 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002501
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002502 if (ssid)
2503 wpas_clear_temp_disabled(wpa_s, ssid, 1);
2504
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002505 /*
2506 * Mark all other networks disabled or mark all networks enabled if no
2507 * network specified.
2508 */
2509 for (other_ssid = wpa_s->conf->ssid; other_ssid;
2510 other_ssid = other_ssid->next) {
2511 int was_disabled = other_ssid->disabled;
2512 if (was_disabled == 2)
2513 continue; /* do not change persistent P2P group data */
2514
2515 other_ssid->disabled = ssid ? (ssid->id != other_ssid->id) : 0;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002516 if (was_disabled && !other_ssid->disabled)
2517 wpas_clear_temp_disabled(wpa_s, other_ssid, 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002518
2519 if (was_disabled != other_ssid->disabled)
2520 wpas_notify_network_enabled_changed(wpa_s, other_ssid);
2521 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002522
2523 if (ssid && ssid == wpa_s->current_ssid && wpa_s->current_ssid) {
2524 /* We are already associated with the selected network */
2525 wpa_printf(MSG_DEBUG, "Already associated with the "
2526 "selected network - do nothing");
2527 return;
2528 }
2529
Dmitry Shmidtb7b4d0e2013-08-26 12:09:05 -07002530 if (ssid) {
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002531 wpa_s->current_ssid = ssid;
Dmitry Shmidtb7b4d0e2013-08-26 12:09:05 -07002532 eapol_sm_notify_config(wpa_s->eapol, NULL, NULL);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002533 wpa_s->connect_without_scan =
2534 (ssid->mode == WPAS_MODE_MESH) ? ssid : NULL;
2535 } else {
2536 wpa_s->connect_without_scan = NULL;
Dmitry Shmidtb7b4d0e2013-08-26 12:09:05 -07002537 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002538
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002539 wpa_s->disconnected = 0;
2540 wpa_s->reassociate = 1;
Dmitry Shmidt4b9d52f2013-02-05 17:44:43 -08002541
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002542 if (wpa_s->connect_without_scan ||
2543 wpa_supplicant_fast_associate(wpa_s) != 1)
Dmitry Shmidt4b9d52f2013-02-05 17:44:43 -08002544 wpa_supplicant_req_scan(wpa_s, 0, disconnected ? 100000 : 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002545
2546 if (ssid)
2547 wpas_notify_network_selected(wpa_s, ssid);
2548}
2549
2550
2551/**
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08002552 * wpas_set_pkcs11_engine_and_module_path - Set PKCS #11 engine and module path
2553 * @wpa_s: wpa_supplicant structure for a network interface
2554 * @pkcs11_engine_path: PKCS #11 engine path or NULL
2555 * @pkcs11_module_path: PKCS #11 module path or NULL
2556 * Returns: 0 on success; -1 on failure
2557 *
2558 * Sets the PKCS #11 engine and module path. Both have to be NULL or a valid
2559 * path. If resetting the EAPOL state machine with the new PKCS #11 engine and
2560 * module path fails the paths will be reset to the default value (NULL).
2561 */
2562int wpas_set_pkcs11_engine_and_module_path(struct wpa_supplicant *wpa_s,
2563 const char *pkcs11_engine_path,
2564 const char *pkcs11_module_path)
2565{
2566 char *pkcs11_engine_path_copy = NULL;
2567 char *pkcs11_module_path_copy = NULL;
2568
2569 if (pkcs11_engine_path != NULL) {
2570 pkcs11_engine_path_copy = os_strdup(pkcs11_engine_path);
2571 if (pkcs11_engine_path_copy == NULL)
2572 return -1;
2573 }
2574 if (pkcs11_module_path != NULL) {
2575 pkcs11_module_path_copy = os_strdup(pkcs11_module_path);
Dmitry Shmidt97672262014-02-03 13:02:54 -08002576 if (pkcs11_module_path_copy == NULL) {
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08002577 os_free(pkcs11_engine_path_copy);
2578 return -1;
2579 }
2580 }
2581
2582 os_free(wpa_s->conf->pkcs11_engine_path);
2583 os_free(wpa_s->conf->pkcs11_module_path);
2584 wpa_s->conf->pkcs11_engine_path = pkcs11_engine_path_copy;
2585 wpa_s->conf->pkcs11_module_path = pkcs11_module_path_copy;
2586
2587 wpa_sm_set_eapol(wpa_s->wpa, NULL);
2588 eapol_sm_deinit(wpa_s->eapol);
2589 wpa_s->eapol = NULL;
2590 if (wpa_supplicant_init_eapol(wpa_s)) {
2591 /* Error -> Reset paths to the default value (NULL) once. */
2592 if (pkcs11_engine_path != NULL && pkcs11_module_path != NULL)
2593 wpas_set_pkcs11_engine_and_module_path(wpa_s, NULL,
2594 NULL);
2595
2596 return -1;
2597 }
2598 wpa_sm_set_eapol(wpa_s->wpa, wpa_s->eapol);
2599
2600 return 0;
2601}
2602
2603
2604/**
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002605 * wpa_supplicant_set_ap_scan - Set AP scan mode for interface
2606 * @wpa_s: wpa_supplicant structure for a network interface
2607 * @ap_scan: AP scan mode
2608 * Returns: 0 if succeed or -1 if ap_scan has an invalid value
2609 *
2610 */
2611int wpa_supplicant_set_ap_scan(struct wpa_supplicant *wpa_s, int ap_scan)
2612{
2613
2614 int old_ap_scan;
2615
2616 if (ap_scan < 0 || ap_scan > 2)
2617 return -1;
2618
Dmitry Shmidt114c3862011-08-16 11:52:06 -07002619#ifdef ANDROID
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002620 if (ap_scan == 2 && ap_scan != wpa_s->conf->ap_scan &&
2621 wpa_s->wpa_state >= WPA_ASSOCIATING &&
2622 wpa_s->wpa_state < WPA_COMPLETED) {
2623 wpa_printf(MSG_ERROR, "ap_scan = %d (%d) rejected while "
2624 "associating", wpa_s->conf->ap_scan, ap_scan);
Dmitry Shmidt114c3862011-08-16 11:52:06 -07002625 return 0;
2626 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002627#endif /* ANDROID */
Dmitry Shmidt114c3862011-08-16 11:52:06 -07002628
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002629 old_ap_scan = wpa_s->conf->ap_scan;
2630 wpa_s->conf->ap_scan = ap_scan;
2631
2632 if (old_ap_scan != wpa_s->conf->ap_scan)
2633 wpas_notify_ap_scan_changed(wpa_s);
2634
2635 return 0;
2636}
2637
2638
2639/**
2640 * wpa_supplicant_set_bss_expiration_age - Set BSS entry expiration age
2641 * @wpa_s: wpa_supplicant structure for a network interface
2642 * @expire_age: Expiration age in seconds
2643 * Returns: 0 if succeed or -1 if expire_age has an invalid value
2644 *
2645 */
2646int wpa_supplicant_set_bss_expiration_age(struct wpa_supplicant *wpa_s,
2647 unsigned int bss_expire_age)
2648{
2649 if (bss_expire_age < 10) {
2650 wpa_msg(wpa_s, MSG_ERROR, "Invalid bss expiration age %u",
2651 bss_expire_age);
2652 return -1;
2653 }
2654 wpa_msg(wpa_s, MSG_DEBUG, "Setting bss expiration age: %d sec",
2655 bss_expire_age);
2656 wpa_s->conf->bss_expiration_age = bss_expire_age;
2657
2658 return 0;
2659}
2660
2661
2662/**
2663 * wpa_supplicant_set_bss_expiration_count - Set BSS entry expiration scan count
2664 * @wpa_s: wpa_supplicant structure for a network interface
2665 * @expire_count: number of scans after which an unseen BSS is reclaimed
2666 * Returns: 0 if succeed or -1 if expire_count has an invalid value
2667 *
2668 */
2669int wpa_supplicant_set_bss_expiration_count(struct wpa_supplicant *wpa_s,
2670 unsigned int bss_expire_count)
2671{
2672 if (bss_expire_count < 1) {
2673 wpa_msg(wpa_s, MSG_ERROR, "Invalid bss expiration count %u",
2674 bss_expire_count);
2675 return -1;
2676 }
2677 wpa_msg(wpa_s, MSG_DEBUG, "Setting bss expiration scan count: %u",
2678 bss_expire_count);
2679 wpa_s->conf->bss_expiration_scan_count = bss_expire_count;
2680
2681 return 0;
2682}
2683
2684
2685/**
Dmitry Shmidt04949592012-07-19 12:16:46 -07002686 * wpa_supplicant_set_scan_interval - Set scan interval
2687 * @wpa_s: wpa_supplicant structure for a network interface
2688 * @scan_interval: scan interval in seconds
2689 * Returns: 0 if succeed or -1 if scan_interval has an invalid value
2690 *
2691 */
2692int wpa_supplicant_set_scan_interval(struct wpa_supplicant *wpa_s,
2693 int scan_interval)
2694{
2695 if (scan_interval < 0) {
2696 wpa_msg(wpa_s, MSG_ERROR, "Invalid scan interval %d",
2697 scan_interval);
2698 return -1;
2699 }
2700 wpa_msg(wpa_s, MSG_DEBUG, "Setting scan interval: %d sec",
2701 scan_interval);
Dmitry Shmidt4b9d52f2013-02-05 17:44:43 -08002702 wpa_supplicant_update_scan_int(wpa_s, scan_interval);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002703
2704 return 0;
2705}
2706
2707
2708/**
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002709 * wpa_supplicant_set_debug_params - Set global debug params
2710 * @global: wpa_global structure
2711 * @debug_level: debug level
2712 * @debug_timestamp: determines if show timestamp in debug data
2713 * @debug_show_keys: determines if show keys in debug data
2714 * Returns: 0 if succeed or -1 if debug_level has wrong value
2715 */
2716int wpa_supplicant_set_debug_params(struct wpa_global *global, int debug_level,
2717 int debug_timestamp, int debug_show_keys)
2718{
2719
2720 int old_level, old_timestamp, old_show_keys;
2721
2722 /* check for allowed debuglevels */
2723 if (debug_level != MSG_EXCESSIVE &&
2724 debug_level != MSG_MSGDUMP &&
2725 debug_level != MSG_DEBUG &&
2726 debug_level != MSG_INFO &&
2727 debug_level != MSG_WARNING &&
2728 debug_level != MSG_ERROR)
2729 return -1;
2730
2731 old_level = wpa_debug_level;
2732 old_timestamp = wpa_debug_timestamp;
2733 old_show_keys = wpa_debug_show_keys;
2734
2735 wpa_debug_level = debug_level;
2736 wpa_debug_timestamp = debug_timestamp ? 1 : 0;
2737 wpa_debug_show_keys = debug_show_keys ? 1 : 0;
2738
2739 if (wpa_debug_level != old_level)
2740 wpas_notify_debug_level_changed(global);
2741 if (wpa_debug_timestamp != old_timestamp)
2742 wpas_notify_debug_timestamp_changed(global);
2743 if (wpa_debug_show_keys != old_show_keys)
2744 wpas_notify_debug_show_keys_changed(global);
2745
2746 return 0;
2747}
2748
2749
2750/**
2751 * wpa_supplicant_get_ssid - Get a pointer to the current network structure
2752 * @wpa_s: Pointer to wpa_supplicant data
2753 * Returns: A pointer to the current network structure or %NULL on failure
2754 */
2755struct wpa_ssid * wpa_supplicant_get_ssid(struct wpa_supplicant *wpa_s)
2756{
2757 struct wpa_ssid *entry;
2758 u8 ssid[MAX_SSID_LEN];
2759 int res;
2760 size_t ssid_len;
2761 u8 bssid[ETH_ALEN];
2762 int wired;
2763
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002764 res = wpa_drv_get_ssid(wpa_s, ssid);
2765 if (res < 0) {
2766 wpa_msg(wpa_s, MSG_WARNING, "Could not read SSID from "
2767 "driver");
2768 return NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002769 }
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002770 ssid_len = res;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002771
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002772 if (wpa_drv_get_bssid(wpa_s, bssid) < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002773 wpa_msg(wpa_s, MSG_WARNING, "Could not read BSSID from "
2774 "driver");
2775 return NULL;
2776 }
2777
2778 wired = wpa_s->conf->ap_scan == 0 &&
2779 (wpa_s->drv_flags & WPA_DRIVER_FLAGS_WIRED);
2780
2781 entry = wpa_s->conf->ssid;
2782 while (entry) {
Dmitry Shmidt04949592012-07-19 12:16:46 -07002783 if (!wpas_network_disabled(wpa_s, entry) &&
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002784 ((ssid_len == entry->ssid_len &&
2785 os_memcmp(ssid, entry->ssid, ssid_len) == 0) || wired) &&
2786 (!entry->bssid_set ||
2787 os_memcmp(bssid, entry->bssid, ETH_ALEN) == 0))
2788 return entry;
2789#ifdef CONFIG_WPS
Dmitry Shmidt04949592012-07-19 12:16:46 -07002790 if (!wpas_network_disabled(wpa_s, entry) &&
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002791 (entry->key_mgmt & WPA_KEY_MGMT_WPS) &&
2792 (entry->ssid == NULL || entry->ssid_len == 0) &&
2793 (!entry->bssid_set ||
2794 os_memcmp(bssid, entry->bssid, ETH_ALEN) == 0))
2795 return entry;
2796#endif /* CONFIG_WPS */
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002797
Dmitry Shmidt04949592012-07-19 12:16:46 -07002798 if (!wpas_network_disabled(wpa_s, entry) && entry->bssid_set &&
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002799 entry->ssid_len == 0 &&
2800 os_memcmp(bssid, entry->bssid, ETH_ALEN) == 0)
2801 return entry;
2802
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002803 entry = entry->next;
2804 }
2805
2806 return NULL;
2807}
2808
2809
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002810static int select_driver(struct wpa_supplicant *wpa_s, int i)
2811{
2812 struct wpa_global *global = wpa_s->global;
2813
2814 if (wpa_drivers[i]->global_init && global->drv_priv[i] == NULL) {
2815 global->drv_priv[i] = wpa_drivers[i]->global_init();
2816 if (global->drv_priv[i] == NULL) {
2817 wpa_printf(MSG_ERROR, "Failed to initialize driver "
2818 "'%s'", wpa_drivers[i]->name);
2819 return -1;
2820 }
2821 }
2822
2823 wpa_s->driver = wpa_drivers[i];
2824 wpa_s->global_drv_priv = global->drv_priv[i];
2825
2826 return 0;
2827}
2828
2829
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002830static int wpa_supplicant_set_driver(struct wpa_supplicant *wpa_s,
2831 const char *name)
2832{
2833 int i;
2834 size_t len;
2835 const char *pos, *driver = name;
2836
2837 if (wpa_s == NULL)
2838 return -1;
2839
2840 if (wpa_drivers[0] == NULL) {
2841 wpa_msg(wpa_s, MSG_ERROR, "No driver interfaces build into "
2842 "wpa_supplicant");
2843 return -1;
2844 }
2845
2846 if (name == NULL) {
2847 /* default to first driver in the list */
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002848 return select_driver(wpa_s, 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002849 }
2850
2851 do {
2852 pos = os_strchr(driver, ',');
2853 if (pos)
2854 len = pos - driver;
2855 else
2856 len = os_strlen(driver);
2857
2858 for (i = 0; wpa_drivers[i]; i++) {
2859 if (os_strlen(wpa_drivers[i]->name) == len &&
2860 os_strncmp(driver, wpa_drivers[i]->name, len) ==
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002861 0) {
2862 /* First driver that succeeds wins */
2863 if (select_driver(wpa_s, i) == 0)
2864 return 0;
2865 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002866 }
2867
2868 driver = pos + 1;
2869 } while (pos);
2870
2871 wpa_msg(wpa_s, MSG_ERROR, "Unsupported driver '%s'", name);
2872 return -1;
2873}
2874
2875
2876/**
2877 * wpa_supplicant_rx_eapol - Deliver a received EAPOL frame to wpa_supplicant
2878 * @ctx: Context pointer (wpa_s); this is the ctx variable registered
2879 * with struct wpa_driver_ops::init()
2880 * @src_addr: Source address of the EAPOL frame
2881 * @buf: EAPOL data starting from the EAPOL header (i.e., no Ethernet header)
2882 * @len: Length of the EAPOL data
2883 *
2884 * This function is called for each received EAPOL frame. Most driver
2885 * interfaces rely on more generic OS mechanism for receiving frames through
2886 * l2_packet, but if such a mechanism is not available, the driver wrapper may
2887 * take care of received EAPOL frames and deliver them to the core supplicant
2888 * code by calling this function.
2889 */
2890void wpa_supplicant_rx_eapol(void *ctx, const u8 *src_addr,
2891 const u8 *buf, size_t len)
2892{
2893 struct wpa_supplicant *wpa_s = ctx;
2894
2895 wpa_dbg(wpa_s, MSG_DEBUG, "RX EAPOL from " MACSTR, MAC2STR(src_addr));
2896 wpa_hexdump(MSG_MSGDUMP, "RX EAPOL", buf, len);
2897
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002898#ifdef CONFIG_PEERKEY
2899 if (wpa_s->wpa_state > WPA_ASSOCIATED && wpa_s->current_ssid &&
2900 wpa_s->current_ssid->peerkey &&
2901 !(wpa_s->drv_flags & WPA_DRIVER_FLAGS_4WAY_HANDSHAKE) &&
2902 wpa_sm_rx_eapol_peerkey(wpa_s->wpa, src_addr, buf, len) == 1) {
2903 wpa_dbg(wpa_s, MSG_DEBUG, "RSN: Processed PeerKey EAPOL-Key");
2904 return;
2905 }
2906#endif /* CONFIG_PEERKEY */
2907
Jouni Malinena05074c2012-12-21 21:35:35 +02002908 if (wpa_s->wpa_state < WPA_ASSOCIATED ||
2909 (wpa_s->last_eapol_matches_bssid &&
2910#ifdef CONFIG_AP
2911 !wpa_s->ap_iface &&
2912#endif /* CONFIG_AP */
2913 os_memcmp(src_addr, wpa_s->bssid, ETH_ALEN) != 0)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002914 /*
2915 * There is possible race condition between receiving the
2916 * association event and the EAPOL frame since they are coming
2917 * through different paths from the driver. In order to avoid
2918 * issues in trying to process the EAPOL frame before receiving
2919 * association information, lets queue it for processing until
Jouni Malinena05074c2012-12-21 21:35:35 +02002920 * the association event is received. This may also be needed in
2921 * driver-based roaming case, so also use src_addr != BSSID as a
2922 * trigger if we have previously confirmed that the
2923 * Authenticator uses BSSID as the src_addr (which is not the
2924 * case with wired IEEE 802.1X).
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002925 */
2926 wpa_dbg(wpa_s, MSG_DEBUG, "Not associated - Delay processing "
Jouni Malinena05074c2012-12-21 21:35:35 +02002927 "of received EAPOL frame (state=%s bssid=" MACSTR ")",
2928 wpa_supplicant_state_txt(wpa_s->wpa_state),
2929 MAC2STR(wpa_s->bssid));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002930 wpabuf_free(wpa_s->pending_eapol_rx);
2931 wpa_s->pending_eapol_rx = wpabuf_alloc_copy(buf, len);
2932 if (wpa_s->pending_eapol_rx) {
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08002933 os_get_reltime(&wpa_s->pending_eapol_rx_time);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002934 os_memcpy(wpa_s->pending_eapol_rx_src, src_addr,
2935 ETH_ALEN);
2936 }
2937 return;
2938 }
2939
Jouni Malinena05074c2012-12-21 21:35:35 +02002940 wpa_s->last_eapol_matches_bssid =
2941 os_memcmp(src_addr, wpa_s->bssid, ETH_ALEN) == 0;
2942
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002943#ifdef CONFIG_AP
2944 if (wpa_s->ap_iface) {
2945 wpa_supplicant_ap_rx_eapol(wpa_s, src_addr, buf, len);
2946 return;
2947 }
2948#endif /* CONFIG_AP */
2949
2950 if (wpa_s->key_mgmt == WPA_KEY_MGMT_NONE) {
2951 wpa_dbg(wpa_s, MSG_DEBUG, "Ignored received EAPOL frame since "
2952 "no key management is configured");
2953 return;
2954 }
2955
2956 if (wpa_s->eapol_received == 0 &&
2957 (!(wpa_s->drv_flags & WPA_DRIVER_FLAGS_4WAY_HANDSHAKE) ||
2958 !wpa_key_mgmt_wpa_psk(wpa_s->key_mgmt) ||
2959 wpa_s->wpa_state != WPA_COMPLETED) &&
2960 (wpa_s->current_ssid == NULL ||
2961 wpa_s->current_ssid->mode != IEEE80211_MODE_IBSS)) {
2962 /* Timeout for completing IEEE 802.1X and WPA authentication */
2963 wpa_supplicant_req_auth_timeout(
2964 wpa_s,
2965 (wpa_key_mgmt_wpa_ieee8021x(wpa_s->key_mgmt) ||
2966 wpa_s->key_mgmt == WPA_KEY_MGMT_IEEE8021X_NO_WPA ||
2967 wpa_s->key_mgmt == WPA_KEY_MGMT_WPS) ?
2968 70 : 10, 0);
2969 }
2970 wpa_s->eapol_received++;
2971
2972 if (wpa_s->countermeasures) {
2973 wpa_msg(wpa_s, MSG_INFO, "WPA: Countermeasures - dropped "
2974 "EAPOL packet");
2975 return;
2976 }
2977
2978#ifdef CONFIG_IBSS_RSN
2979 if (wpa_s->current_ssid &&
2980 wpa_s->current_ssid->mode == WPAS_MODE_IBSS) {
2981 ibss_rsn_rx_eapol(wpa_s->ibss_rsn, src_addr, buf, len);
2982 return;
2983 }
2984#endif /* CONFIG_IBSS_RSN */
2985
2986 /* Source address of the incoming EAPOL frame could be compared to the
2987 * current BSSID. However, it is possible that a centralized
2988 * Authenticator could be using another MAC address than the BSSID of
2989 * an AP, so just allow any address to be used for now. The replies are
2990 * still sent to the current BSSID (if available), though. */
2991
2992 os_memcpy(wpa_s->last_eapol_src, src_addr, ETH_ALEN);
2993 if (!wpa_key_mgmt_wpa_psk(wpa_s->key_mgmt) &&
2994 eapol_sm_rx_eapol(wpa_s->eapol, src_addr, buf, len) > 0)
2995 return;
2996 wpa_drv_poll(wpa_s);
2997 if (!(wpa_s->drv_flags & WPA_DRIVER_FLAGS_4WAY_HANDSHAKE))
2998 wpa_sm_rx_eapol(wpa_s->wpa, src_addr, buf, len);
2999 else if (wpa_key_mgmt_wpa_ieee8021x(wpa_s->key_mgmt)) {
3000 /*
3001 * Set portValid = TRUE here since we are going to skip 4-way
3002 * handshake processing which would normally set portValid. We
3003 * need this to allow the EAPOL state machines to be completed
3004 * without going through EAPOL-Key handshake.
3005 */
3006 eapol_sm_notify_portValid(wpa_s->eapol, TRUE);
3007 }
3008}
3009
3010
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003011int wpa_supplicant_update_mac_addr(struct wpa_supplicant *wpa_s)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003012{
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003013 if ((!wpa_s->p2p_mgmt ||
3014 !(wpa_s->drv_flags & WPA_DRIVER_FLAGS_DEDICATED_P2P_DEVICE)) &&
3015 !(wpa_s->drv_flags & WPA_DRIVER_FLAGS_P2P_DEDICATED_INTERFACE)) {
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003016 l2_packet_deinit(wpa_s->l2);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003017 wpa_s->l2 = l2_packet_init(wpa_s->ifname,
3018 wpa_drv_get_mac_addr(wpa_s),
3019 ETH_P_EAPOL,
3020 wpa_supplicant_rx_eapol, wpa_s, 0);
3021 if (wpa_s->l2 == NULL)
3022 return -1;
3023 } else {
3024 const u8 *addr = wpa_drv_get_mac_addr(wpa_s);
3025 if (addr)
3026 os_memcpy(wpa_s->own_addr, addr, ETH_ALEN);
3027 }
3028
3029 if (wpa_s->l2 && l2_packet_get_own_addr(wpa_s->l2, wpa_s->own_addr)) {
3030 wpa_msg(wpa_s, MSG_ERROR, "Failed to get own L2 address");
3031 return -1;
3032 }
3033
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07003034 wpa_sm_set_own_addr(wpa_s->wpa, wpa_s->own_addr);
3035
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003036 return 0;
3037}
3038
3039
Dmitry Shmidt04949592012-07-19 12:16:46 -07003040static void wpa_supplicant_rx_eapol_bridge(void *ctx, const u8 *src_addr,
3041 const u8 *buf, size_t len)
3042{
3043 struct wpa_supplicant *wpa_s = ctx;
3044 const struct l2_ethhdr *eth;
3045
3046 if (len < sizeof(*eth))
3047 return;
3048 eth = (const struct l2_ethhdr *) buf;
3049
3050 if (os_memcmp(eth->h_dest, wpa_s->own_addr, ETH_ALEN) != 0 &&
3051 !(eth->h_dest[0] & 0x01)) {
3052 wpa_dbg(wpa_s, MSG_DEBUG, "RX EAPOL from " MACSTR " to " MACSTR
3053 " (bridge - not for this interface - ignore)",
3054 MAC2STR(src_addr), MAC2STR(eth->h_dest));
3055 return;
3056 }
3057
3058 wpa_dbg(wpa_s, MSG_DEBUG, "RX EAPOL from " MACSTR " to " MACSTR
3059 " (bridge)", MAC2STR(src_addr), MAC2STR(eth->h_dest));
3060 wpa_supplicant_rx_eapol(wpa_s, src_addr, buf + sizeof(*eth),
3061 len - sizeof(*eth));
3062}
3063
3064
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003065/**
3066 * wpa_supplicant_driver_init - Initialize driver interface parameters
3067 * @wpa_s: Pointer to wpa_supplicant data
3068 * Returns: 0 on success, -1 on failure
3069 *
3070 * This function is called to initialize driver interface parameters.
3071 * wpa_drv_init() must have been called before this function to initialize the
3072 * driver interface.
3073 */
3074int wpa_supplicant_driver_init(struct wpa_supplicant *wpa_s)
3075{
3076 static int interface_count = 0;
3077
3078 if (wpa_supplicant_update_mac_addr(wpa_s) < 0)
3079 return -1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003080
Dmitry Shmidt34af3062013-07-11 10:46:32 -07003081 wpa_dbg(wpa_s, MSG_DEBUG, "Own MAC address: " MACSTR,
3082 MAC2STR(wpa_s->own_addr));
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07003083 os_memcpy(wpa_s->perm_addr, wpa_s->own_addr, ETH_ALEN);
Dmitry Shmidt34af3062013-07-11 10:46:32 -07003084 wpa_sm_set_own_addr(wpa_s->wpa, wpa_s->own_addr);
3085
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003086 if (wpa_s->bridge_ifname[0]) {
3087 wpa_dbg(wpa_s, MSG_DEBUG, "Receiving packets from bridge "
3088 "interface '%s'", wpa_s->bridge_ifname);
Dmitry Shmidt216983b2015-02-06 10:50:36 -08003089 wpa_s->l2_br = l2_packet_init_bridge(
3090 wpa_s->bridge_ifname, wpa_s->ifname, wpa_s->own_addr,
3091 ETH_P_EAPOL, wpa_supplicant_rx_eapol_bridge, wpa_s, 1);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003092 if (wpa_s->l2_br == NULL) {
3093 wpa_msg(wpa_s, MSG_ERROR, "Failed to open l2_packet "
3094 "connection for the bridge interface '%s'",
3095 wpa_s->bridge_ifname);
3096 return -1;
3097 }
3098 }
3099
3100 wpa_clear_keys(wpa_s, NULL);
3101
3102 /* Make sure that TKIP countermeasures are not left enabled (could
3103 * happen if wpa_supplicant is killed during countermeasures. */
3104 wpa_drv_set_countermeasures(wpa_s, 0);
3105
3106 wpa_dbg(wpa_s, MSG_DEBUG, "RSN: flushing PMKID list in the driver");
3107 wpa_drv_flush_pmkid(wpa_s);
3108
3109 wpa_s->prev_scan_ssid = WILDCARD_SSID_SCAN;
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003110 wpa_s->prev_scan_wildcard = 0;
3111
Dmitry Shmidt04949592012-07-19 12:16:46 -07003112 if (wpa_supplicant_enabled_networks(wpa_s)) {
Dmitry Shmidt9e3f8ee2014-01-17 10:52:01 -08003113 if (wpa_s->wpa_state == WPA_INTERFACE_DISABLED) {
3114 wpa_supplicant_set_state(wpa_s, WPA_DISCONNECTED);
3115 interface_count = 0;
3116 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003117#ifndef ANDROID
Dmitry Shmidta38abf92014-03-06 13:38:44 -08003118 if (!wpa_s->p2p_mgmt &&
Dmitry Shmidt98660862014-03-11 17:26:21 -07003119 wpa_supplicant_delayed_sched_scan(wpa_s,
3120 interface_count % 3,
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003121 100000))
Dmitry Shmidt98660862014-03-11 17:26:21 -07003122 wpa_supplicant_req_scan(wpa_s, interface_count % 3,
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003123 100000);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003124#endif /* ANDROID */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003125 interface_count++;
3126 } else
3127 wpa_supplicant_set_state(wpa_s, WPA_INACTIVE);
3128
3129 return 0;
3130}
3131
3132
3133static int wpa_supplicant_daemon(const char *pid_file)
3134{
3135 wpa_printf(MSG_DEBUG, "Daemonize..");
3136 return os_daemonize(pid_file);
3137}
3138
3139
3140static struct wpa_supplicant * wpa_supplicant_alloc(void)
3141{
3142 struct wpa_supplicant *wpa_s;
3143
3144 wpa_s = os_zalloc(sizeof(*wpa_s));
3145 if (wpa_s == NULL)
3146 return NULL;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08003147 wpa_s->scan_req = INITIAL_SCAN_REQ;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003148 wpa_s->scan_interval = 5;
3149 wpa_s->new_connection = 1;
3150 wpa_s->parent = wpa_s;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003151 wpa_s->sched_scanning = 0;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003152
3153 return wpa_s;
3154}
3155
3156
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003157#ifdef CONFIG_HT_OVERRIDES
3158
3159static int wpa_set_htcap_mcs(struct wpa_supplicant *wpa_s,
3160 struct ieee80211_ht_capabilities *htcaps,
3161 struct ieee80211_ht_capabilities *htcaps_mask,
3162 const char *ht_mcs)
3163{
3164 /* parse ht_mcs into hex array */
3165 int i;
3166 const char *tmp = ht_mcs;
3167 char *end = NULL;
3168
3169 /* If ht_mcs is null, do not set anything */
3170 if (!ht_mcs)
3171 return 0;
3172
3173 /* This is what we are setting in the kernel */
3174 os_memset(&htcaps->supported_mcs_set, 0, IEEE80211_HT_MCS_MASK_LEN);
3175
3176 wpa_msg(wpa_s, MSG_DEBUG, "set_htcap, ht_mcs -:%s:-", ht_mcs);
3177
3178 for (i = 0; i < IEEE80211_HT_MCS_MASK_LEN; i++) {
3179 errno = 0;
3180 long v = strtol(tmp, &end, 16);
3181 if (errno == 0) {
3182 wpa_msg(wpa_s, MSG_DEBUG,
3183 "htcap value[%i]: %ld end: %p tmp: %p",
3184 i, v, end, tmp);
3185 if (end == tmp)
3186 break;
3187
3188 htcaps->supported_mcs_set[i] = v;
3189 tmp = end;
3190 } else {
3191 wpa_msg(wpa_s, MSG_ERROR,
3192 "Failed to parse ht-mcs: %s, error: %s\n",
3193 ht_mcs, strerror(errno));
3194 return -1;
3195 }
3196 }
3197
3198 /*
3199 * If we were able to parse any values, then set mask for the MCS set.
3200 */
3201 if (i) {
3202 os_memset(&htcaps_mask->supported_mcs_set, 0xff,
3203 IEEE80211_HT_MCS_MASK_LEN - 1);
3204 /* skip the 3 reserved bits */
3205 htcaps_mask->supported_mcs_set[IEEE80211_HT_MCS_MASK_LEN - 1] =
3206 0x1f;
3207 }
3208
3209 return 0;
3210}
3211
3212
3213static int wpa_disable_max_amsdu(struct wpa_supplicant *wpa_s,
3214 struct ieee80211_ht_capabilities *htcaps,
3215 struct ieee80211_ht_capabilities *htcaps_mask,
3216 int disabled)
3217{
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003218 le16 msk;
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003219
3220 wpa_msg(wpa_s, MSG_DEBUG, "set_disable_max_amsdu: %d", disabled);
3221
3222 if (disabled == -1)
3223 return 0;
3224
3225 msk = host_to_le16(HT_CAP_INFO_MAX_AMSDU_SIZE);
3226 htcaps_mask->ht_capabilities_info |= msk;
3227 if (disabled)
3228 htcaps->ht_capabilities_info &= msk;
3229 else
3230 htcaps->ht_capabilities_info |= msk;
3231
3232 return 0;
3233}
3234
3235
3236static int wpa_set_ampdu_factor(struct wpa_supplicant *wpa_s,
3237 struct ieee80211_ht_capabilities *htcaps,
3238 struct ieee80211_ht_capabilities *htcaps_mask,
3239 int factor)
3240{
3241 wpa_msg(wpa_s, MSG_DEBUG, "set_ampdu_factor: %d", factor);
3242
3243 if (factor == -1)
3244 return 0;
3245
3246 if (factor < 0 || factor > 3) {
3247 wpa_msg(wpa_s, MSG_ERROR, "ampdu_factor: %d out of range. "
3248 "Must be 0-3 or -1", factor);
3249 return -EINVAL;
3250 }
3251
3252 htcaps_mask->a_mpdu_params |= 0x3; /* 2 bits for factor */
3253 htcaps->a_mpdu_params &= ~0x3;
3254 htcaps->a_mpdu_params |= factor & 0x3;
3255
3256 return 0;
3257}
3258
3259
3260static int wpa_set_ampdu_density(struct wpa_supplicant *wpa_s,
3261 struct ieee80211_ht_capabilities *htcaps,
3262 struct ieee80211_ht_capabilities *htcaps_mask,
3263 int density)
3264{
3265 wpa_msg(wpa_s, MSG_DEBUG, "set_ampdu_density: %d", density);
3266
3267 if (density == -1)
3268 return 0;
3269
3270 if (density < 0 || density > 7) {
3271 wpa_msg(wpa_s, MSG_ERROR,
3272 "ampdu_density: %d out of range. Must be 0-7 or -1.",
3273 density);
3274 return -EINVAL;
3275 }
3276
3277 htcaps_mask->a_mpdu_params |= 0x1C;
3278 htcaps->a_mpdu_params &= ~(0x1C);
3279 htcaps->a_mpdu_params |= (density << 2) & 0x1C;
3280
3281 return 0;
3282}
3283
3284
3285static int wpa_set_disable_ht40(struct wpa_supplicant *wpa_s,
3286 struct ieee80211_ht_capabilities *htcaps,
3287 struct ieee80211_ht_capabilities *htcaps_mask,
3288 int disabled)
3289{
3290 /* Masking these out disables HT40 */
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003291 le16 msk = host_to_le16(HT_CAP_INFO_SUPP_CHANNEL_WIDTH_SET |
3292 HT_CAP_INFO_SHORT_GI40MHZ);
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003293
3294 wpa_msg(wpa_s, MSG_DEBUG, "set_disable_ht40: %d", disabled);
3295
3296 if (disabled)
3297 htcaps->ht_capabilities_info &= ~msk;
3298 else
3299 htcaps->ht_capabilities_info |= msk;
3300
3301 htcaps_mask->ht_capabilities_info |= msk;
3302
3303 return 0;
3304}
3305
3306
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003307static int wpa_set_disable_sgi(struct wpa_supplicant *wpa_s,
3308 struct ieee80211_ht_capabilities *htcaps,
3309 struct ieee80211_ht_capabilities *htcaps_mask,
3310 int disabled)
3311{
3312 /* Masking these out disables SGI */
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003313 le16 msk = host_to_le16(HT_CAP_INFO_SHORT_GI20MHZ |
3314 HT_CAP_INFO_SHORT_GI40MHZ);
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003315
3316 wpa_msg(wpa_s, MSG_DEBUG, "set_disable_sgi: %d", disabled);
3317
3318 if (disabled)
3319 htcaps->ht_capabilities_info &= ~msk;
3320 else
3321 htcaps->ht_capabilities_info |= msk;
3322
3323 htcaps_mask->ht_capabilities_info |= msk;
3324
3325 return 0;
3326}
3327
3328
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003329static int wpa_set_disable_ldpc(struct wpa_supplicant *wpa_s,
3330 struct ieee80211_ht_capabilities *htcaps,
3331 struct ieee80211_ht_capabilities *htcaps_mask,
3332 int disabled)
3333{
3334 /* Masking these out disables LDPC */
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003335 le16 msk = host_to_le16(HT_CAP_INFO_LDPC_CODING_CAP);
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003336
3337 wpa_msg(wpa_s, MSG_DEBUG, "set_disable_ldpc: %d", disabled);
3338
3339 if (disabled)
3340 htcaps->ht_capabilities_info &= ~msk;
3341 else
3342 htcaps->ht_capabilities_info |= msk;
3343
3344 htcaps_mask->ht_capabilities_info |= msk;
3345
3346 return 0;
3347}
3348
3349
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003350void wpa_supplicant_apply_ht_overrides(
3351 struct wpa_supplicant *wpa_s, struct wpa_ssid *ssid,
3352 struct wpa_driver_associate_params *params)
3353{
3354 struct ieee80211_ht_capabilities *htcaps;
3355 struct ieee80211_ht_capabilities *htcaps_mask;
3356
3357 if (!ssid)
3358 return;
3359
3360 params->disable_ht = ssid->disable_ht;
3361 if (!params->htcaps || !params->htcaps_mask)
3362 return;
3363
3364 htcaps = (struct ieee80211_ht_capabilities *) params->htcaps;
3365 htcaps_mask = (struct ieee80211_ht_capabilities *) params->htcaps_mask;
3366 wpa_set_htcap_mcs(wpa_s, htcaps, htcaps_mask, ssid->ht_mcs);
3367 wpa_disable_max_amsdu(wpa_s, htcaps, htcaps_mask,
3368 ssid->disable_max_amsdu);
3369 wpa_set_ampdu_factor(wpa_s, htcaps, htcaps_mask, ssid->ampdu_factor);
3370 wpa_set_ampdu_density(wpa_s, htcaps, htcaps_mask, ssid->ampdu_density);
3371 wpa_set_disable_ht40(wpa_s, htcaps, htcaps_mask, ssid->disable_ht40);
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003372 wpa_set_disable_sgi(wpa_s, htcaps, htcaps_mask, ssid->disable_sgi);
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003373 wpa_set_disable_ldpc(wpa_s, htcaps, htcaps_mask, ssid->disable_ldpc);
Dmitry Shmidt61593f02014-04-21 16:27:35 -07003374
3375 if (ssid->ht40_intolerant) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003376 le16 bit = host_to_le16(HT_CAP_INFO_40MHZ_INTOLERANT);
Dmitry Shmidt61593f02014-04-21 16:27:35 -07003377 htcaps->ht_capabilities_info |= bit;
3378 htcaps_mask->ht_capabilities_info |= bit;
3379 }
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003380}
3381
3382#endif /* CONFIG_HT_OVERRIDES */
3383
3384
Dmitry Shmidt2f023192013-03-12 12:44:17 -07003385#ifdef CONFIG_VHT_OVERRIDES
3386void wpa_supplicant_apply_vht_overrides(
3387 struct wpa_supplicant *wpa_s, struct wpa_ssid *ssid,
3388 struct wpa_driver_associate_params *params)
3389{
3390 struct ieee80211_vht_capabilities *vhtcaps;
3391 struct ieee80211_vht_capabilities *vhtcaps_mask;
3392
3393 if (!ssid)
3394 return;
3395
3396 params->disable_vht = ssid->disable_vht;
3397
3398 vhtcaps = (void *) params->vhtcaps;
3399 vhtcaps_mask = (void *) params->vhtcaps_mask;
3400
3401 if (!vhtcaps || !vhtcaps_mask)
3402 return;
3403
3404 vhtcaps->vht_capabilities_info = ssid->vht_capa;
3405 vhtcaps_mask->vht_capabilities_info = ssid->vht_capa_mask;
3406
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003407#ifdef CONFIG_HT_OVERRIDES
3408 /* if max ampdu is <= 3, we have to make the HT cap the same */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003409 if (ssid->vht_capa_mask & VHT_CAP_MAX_A_MPDU_LENGTH_EXPONENT_MAX) {
3410 int max_ampdu;
3411
3412 max_ampdu = (ssid->vht_capa &
3413 VHT_CAP_MAX_A_MPDU_LENGTH_EXPONENT_MAX) >>
3414 VHT_CAP_MAX_A_MPDU_LENGTH_EXPONENT_MAX_SHIFT;
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003415
3416 max_ampdu = max_ampdu < 3 ? max_ampdu : 3;
3417 wpa_set_ampdu_factor(wpa_s,
3418 (void *) params->htcaps,
3419 (void *) params->htcaps_mask,
3420 max_ampdu);
3421 }
3422#endif /* CONFIG_HT_OVERRIDES */
3423
Dmitry Shmidt2f023192013-03-12 12:44:17 -07003424#define OVERRIDE_MCS(i) \
3425 if (ssid->vht_tx_mcs_nss_ ##i >= 0) { \
3426 vhtcaps_mask->vht_supported_mcs_set.tx_map |= \
3427 3 << 2 * (i - 1); \
3428 vhtcaps->vht_supported_mcs_set.tx_map |= \
3429 ssid->vht_tx_mcs_nss_ ##i << 2 * (i - 1); \
3430 } \
3431 if (ssid->vht_rx_mcs_nss_ ##i >= 0) { \
3432 vhtcaps_mask->vht_supported_mcs_set.rx_map |= \
3433 3 << 2 * (i - 1); \
3434 vhtcaps->vht_supported_mcs_set.rx_map |= \
3435 ssid->vht_rx_mcs_nss_ ##i << 2 * (i - 1); \
3436 }
3437
3438 OVERRIDE_MCS(1);
3439 OVERRIDE_MCS(2);
3440 OVERRIDE_MCS(3);
3441 OVERRIDE_MCS(4);
3442 OVERRIDE_MCS(5);
3443 OVERRIDE_MCS(6);
3444 OVERRIDE_MCS(7);
3445 OVERRIDE_MCS(8);
3446}
3447#endif /* CONFIG_VHT_OVERRIDES */
3448
3449
Dmitry Shmidt04949592012-07-19 12:16:46 -07003450static int pcsc_reader_init(struct wpa_supplicant *wpa_s)
3451{
3452#ifdef PCSC_FUNCS
3453 size_t len;
3454
3455 if (!wpa_s->conf->pcsc_reader)
3456 return 0;
3457
Dmitry Shmidte0e48dc2013-11-18 12:00:06 -08003458 wpa_s->scard = scard_init(wpa_s->conf->pcsc_reader);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003459 if (!wpa_s->scard)
3460 return 1;
3461
3462 if (wpa_s->conf->pcsc_pin &&
3463 scard_set_pin(wpa_s->scard, wpa_s->conf->pcsc_pin) < 0) {
3464 scard_deinit(wpa_s->scard);
3465 wpa_s->scard = NULL;
3466 wpa_msg(wpa_s, MSG_ERROR, "PC/SC PIN validation failed");
3467 return -1;
3468 }
3469
3470 len = sizeof(wpa_s->imsi) - 1;
3471 if (scard_get_imsi(wpa_s->scard, wpa_s->imsi, &len)) {
3472 scard_deinit(wpa_s->scard);
3473 wpa_s->scard = NULL;
3474 wpa_msg(wpa_s, MSG_ERROR, "Could not read IMSI");
3475 return -1;
3476 }
3477 wpa_s->imsi[len] = '\0';
3478
3479 wpa_s->mnc_len = scard_get_mnc_len(wpa_s->scard);
3480
3481 wpa_printf(MSG_DEBUG, "SCARD: IMSI %s (MNC length %d)",
3482 wpa_s->imsi, wpa_s->mnc_len);
3483
3484 wpa_sm_set_scard_ctx(wpa_s->wpa, wpa_s->scard);
3485 eapol_sm_register_scard_ctx(wpa_s->eapol, wpa_s->scard);
3486#endif /* PCSC_FUNCS */
3487
3488 return 0;
3489}
3490
3491
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003492int wpas_init_ext_pw(struct wpa_supplicant *wpa_s)
3493{
3494 char *val, *pos;
3495
3496 ext_password_deinit(wpa_s->ext_pw);
3497 wpa_s->ext_pw = NULL;
3498 eapol_sm_set_ext_pw_ctx(wpa_s->eapol, NULL);
3499
3500 if (!wpa_s->conf->ext_password_backend)
3501 return 0;
3502
3503 val = os_strdup(wpa_s->conf->ext_password_backend);
3504 if (val == NULL)
3505 return -1;
3506 pos = os_strchr(val, ':');
3507 if (pos)
3508 *pos++ = '\0';
3509
3510 wpa_printf(MSG_DEBUG, "EXT PW: Initialize backend '%s'", val);
3511
3512 wpa_s->ext_pw = ext_password_init(val, pos);
3513 os_free(val);
3514 if (wpa_s->ext_pw == NULL) {
3515 wpa_printf(MSG_DEBUG, "EXT PW: Failed to initialize backend");
3516 return -1;
3517 }
3518 eapol_sm_set_ext_pw_ctx(wpa_s->eapol, wpa_s->ext_pw);
3519
3520 return 0;
3521}
3522
3523
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003524static int wpas_set_wowlan_triggers(struct wpa_supplicant *wpa_s,
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003525 const struct wpa_driver_capa *capa)
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07003526{
Dmitry Shmidt0207e232014-09-03 14:58:37 -07003527 struct wowlan_triggers *triggers;
3528 int ret = 0;
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07003529
3530 if (!wpa_s->conf->wowlan_triggers)
3531 return 0;
3532
Dmitry Shmidt0207e232014-09-03 14:58:37 -07003533 triggers = wpa_get_wowlan_triggers(wpa_s->conf->wowlan_triggers, capa);
3534 if (triggers) {
3535 ret = wpa_drv_wowlan(wpa_s, triggers);
3536 os_free(triggers);
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07003537 }
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07003538 return ret;
3539}
3540
3541
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003542static struct wpa_radio * radio_add_interface(struct wpa_supplicant *wpa_s,
3543 const char *rn)
3544{
3545 struct wpa_supplicant *iface = wpa_s->global->ifaces;
3546 struct wpa_radio *radio;
3547
3548 while (rn && iface) {
3549 radio = iface->radio;
3550 if (radio && os_strcmp(rn, radio->name) == 0) {
3551 wpa_printf(MSG_DEBUG, "Add interface %s to existing radio %s",
3552 wpa_s->ifname, rn);
3553 dl_list_add(&radio->ifaces, &wpa_s->radio_list);
3554 return radio;
3555 }
Dmitry Shmidt3cf6f792013-12-18 13:12:19 -08003556
3557 iface = iface->next;
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003558 }
3559
3560 wpa_printf(MSG_DEBUG, "Add interface %s to a new radio %s",
3561 wpa_s->ifname, rn ? rn : "N/A");
3562 radio = os_zalloc(sizeof(*radio));
3563 if (radio == NULL)
3564 return NULL;
3565
3566 if (rn)
3567 os_strlcpy(radio->name, rn, sizeof(radio->name));
3568 dl_list_init(&radio->ifaces);
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003569 dl_list_init(&radio->work);
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003570 dl_list_add(&radio->ifaces, &wpa_s->radio_list);
3571
3572 return radio;
3573}
3574
3575
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003576static void radio_work_free(struct wpa_radio_work *work)
3577{
3578 if (work->wpa_s->scan_work == work) {
3579 /* This should not really happen. */
3580 wpa_dbg(work->wpa_s, MSG_INFO, "Freeing radio work '%s'@%p (started=%d) that is marked as scan_work",
3581 work->type, work, work->started);
3582 work->wpa_s->scan_work = NULL;
3583 }
3584
3585#ifdef CONFIG_P2P
3586 if (work->wpa_s->p2p_scan_work == work) {
3587 /* This should not really happen. */
3588 wpa_dbg(work->wpa_s, MSG_INFO, "Freeing radio work '%s'@%p (started=%d) that is marked as p2p_scan_work",
3589 work->type, work, work->started);
3590 work->wpa_s->p2p_scan_work = NULL;
3591 }
3592#endif /* CONFIG_P2P */
3593
3594 dl_list_del(&work->list);
3595 os_free(work);
3596}
3597
3598
3599static void radio_start_next_work(void *eloop_ctx, void *timeout_ctx)
3600{
3601 struct wpa_radio *radio = eloop_ctx;
3602 struct wpa_radio_work *work;
3603 struct os_reltime now, diff;
3604 struct wpa_supplicant *wpa_s;
3605
3606 work = dl_list_first(&radio->work, struct wpa_radio_work, list);
3607 if (work == NULL)
3608 return;
3609
3610 if (work->started)
3611 return; /* already started and still in progress */
3612
3613 wpa_s = dl_list_first(&radio->ifaces, struct wpa_supplicant,
3614 radio_list);
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08003615 if (wpa_s && wpa_s->radio->external_scan_running) {
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003616 wpa_printf(MSG_DEBUG, "Delay radio work start until externally triggered scan completes");
3617 return;
3618 }
3619
3620 os_get_reltime(&now);
3621 os_reltime_sub(&now, &work->time, &diff);
3622 wpa_dbg(work->wpa_s, MSG_DEBUG, "Starting radio work '%s'@%p after %ld.%06ld second wait",
3623 work->type, work, diff.sec, diff.usec);
3624 work->started = 1;
3625 work->time = now;
3626 work->cb(work, 0);
3627}
3628
3629
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08003630/*
3631 * This function removes both started and pending radio works running on
3632 * the provided interface's radio.
3633 * Prior to the removal of the radio work, its callback (cb) is called with
3634 * deinit set to be 1. Each work's callback is responsible for clearing its
3635 * internal data and restoring to a correct state.
3636 * @wpa_s: wpa_supplicant data
3637 * @type: type of works to be removed
3638 * @remove_all: 1 to remove all the works on this radio, 0 to remove only
3639 * this interface's works.
3640 */
3641void radio_remove_works(struct wpa_supplicant *wpa_s,
3642 const char *type, int remove_all)
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003643{
3644 struct wpa_radio_work *work, *tmp;
3645 struct wpa_radio *radio = wpa_s->radio;
3646
3647 dl_list_for_each_safe(work, tmp, &radio->work, struct wpa_radio_work,
3648 list) {
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08003649 if (type && os_strcmp(type, work->type) != 0)
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003650 continue;
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08003651
3652 /* skip other ifaces' works */
3653 if (!remove_all && work->wpa_s != wpa_s)
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003654 continue;
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08003655
3656 wpa_dbg(wpa_s, MSG_DEBUG, "Remove radio work '%s'@%p%s",
3657 work->type, work, work->started ? " (started)" : "");
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003658 work->cb(work, 1);
3659 radio_work_free(work);
3660 }
Dmitry Shmidtbd14a572014-02-18 10:33:49 -08003661
3662 /* in case we removed the started work */
3663 radio_work_check_next(wpa_s);
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003664}
3665
3666
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003667static void radio_remove_interface(struct wpa_supplicant *wpa_s)
3668{
3669 struct wpa_radio *radio = wpa_s->radio;
3670
3671 if (!radio)
3672 return;
3673
3674 wpa_printf(MSG_DEBUG, "Remove interface %s from radio %s",
3675 wpa_s->ifname, radio->name);
3676 dl_list_del(&wpa_s->radio_list);
Dmitry Shmidtd11f0192014-03-24 12:09:47 -07003677 radio_remove_works(wpa_s, NULL, 0);
3678 wpa_s->radio = NULL;
3679 if (!dl_list_empty(&radio->ifaces))
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003680 return; /* Interfaces remain for this radio */
3681
3682 wpa_printf(MSG_DEBUG, "Remove radio %s", radio->name);
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003683 eloop_cancel_timeout(radio_start_next_work, radio, NULL);
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003684 os_free(radio);
3685}
3686
3687
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003688void radio_work_check_next(struct wpa_supplicant *wpa_s)
3689{
3690 struct wpa_radio *radio = wpa_s->radio;
3691
3692 if (dl_list_empty(&radio->work))
3693 return;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003694 if (wpa_s->ext_work_in_progress) {
3695 wpa_printf(MSG_DEBUG,
3696 "External radio work in progress - delay start of pending item");
3697 return;
3698 }
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003699 eloop_cancel_timeout(radio_start_next_work, radio, NULL);
3700 eloop_register_timeout(0, 0, radio_start_next_work, radio, NULL);
3701}
3702
3703
3704/**
3705 * radio_add_work - Add a radio work item
3706 * @wpa_s: Pointer to wpa_supplicant data
3707 * @freq: Frequency of the offchannel operation in MHz or 0
3708 * @type: Unique identifier for each type of work
3709 * @next: Force as the next work to be executed
3710 * @cb: Callback function for indicating when radio is available
3711 * @ctx: Context pointer for the work (work->ctx in cb())
3712 * Returns: 0 on success, -1 on failure
3713 *
3714 * This function is used to request time for an operation that requires
3715 * exclusive radio control. Once the radio is available, the registered callback
3716 * function will be called. radio_work_done() must be called once the exclusive
3717 * radio operation has been completed, so that the radio is freed for other
3718 * operations. The special case of deinit=1 is used to free the context data
3719 * during interface removal. That does not allow the callback function to start
3720 * the radio operation, i.e., it must free any resources allocated for the radio
3721 * work and return.
3722 *
3723 * The @freq parameter can be used to indicate a single channel on which the
3724 * offchannel operation will occur. This may allow multiple radio work
3725 * operations to be performed in parallel if they apply for the same channel.
3726 * Setting this to 0 indicates that the work item may use multiple channels or
3727 * requires exclusive control of the radio.
3728 */
3729int radio_add_work(struct wpa_supplicant *wpa_s, unsigned int freq,
3730 const char *type, int next,
3731 void (*cb)(struct wpa_radio_work *work, int deinit),
3732 void *ctx)
3733{
3734 struct wpa_radio_work *work;
3735 int was_empty;
3736
3737 work = os_zalloc(sizeof(*work));
3738 if (work == NULL)
3739 return -1;
3740 wpa_dbg(wpa_s, MSG_DEBUG, "Add radio work '%s'@%p", type, work);
3741 os_get_reltime(&work->time);
3742 work->freq = freq;
3743 work->type = type;
3744 work->wpa_s = wpa_s;
3745 work->cb = cb;
3746 work->ctx = ctx;
3747
3748 was_empty = dl_list_empty(&wpa_s->radio->work);
3749 if (next)
3750 dl_list_add(&wpa_s->radio->work, &work->list);
3751 else
3752 dl_list_add_tail(&wpa_s->radio->work, &work->list);
3753 if (was_empty) {
3754 wpa_dbg(wpa_s, MSG_DEBUG, "First radio work item in the queue - schedule start immediately");
3755 radio_work_check_next(wpa_s);
3756 }
3757
3758 return 0;
3759}
3760
3761
3762/**
3763 * radio_work_done - Indicate that a radio work item has been completed
3764 * @work: Completed work
3765 *
3766 * This function is called once the callback function registered with
3767 * radio_add_work() has completed its work.
3768 */
3769void radio_work_done(struct wpa_radio_work *work)
3770{
3771 struct wpa_supplicant *wpa_s = work->wpa_s;
3772 struct os_reltime now, diff;
3773 unsigned int started = work->started;
3774
3775 os_get_reltime(&now);
3776 os_reltime_sub(&now, &work->time, &diff);
3777 wpa_dbg(wpa_s, MSG_DEBUG, "Radio work '%s'@%p %s in %ld.%06ld seconds",
3778 work->type, work, started ? "done" : "canceled",
3779 diff.sec, diff.usec);
3780 radio_work_free(work);
3781 if (started)
3782 radio_work_check_next(wpa_s);
3783}
3784
3785
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08003786struct wpa_radio_work *
3787radio_work_pending(struct wpa_supplicant *wpa_s, const char *type)
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003788{
3789 struct wpa_radio_work *work;
3790 struct wpa_radio *radio = wpa_s->radio;
3791
3792 dl_list_for_each(work, &radio->work, struct wpa_radio_work, list) {
3793 if (work->wpa_s == wpa_s && os_strcmp(work->type, type) == 0)
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08003794 return work;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003795 }
3796
Dmitry Shmidt2e425d62014-11-10 11:18:27 -08003797 return NULL;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003798}
3799
3800
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003801static int wpas_init_driver(struct wpa_supplicant *wpa_s,
3802 struct wpa_interface *iface)
3803{
3804 const char *ifname, *driver, *rn;
3805
3806 driver = iface->driver;
3807next_driver:
3808 if (wpa_supplicant_set_driver(wpa_s, driver) < 0)
3809 return -1;
3810
3811 wpa_s->drv_priv = wpa_drv_init(wpa_s, wpa_s->ifname);
3812 if (wpa_s->drv_priv == NULL) {
3813 const char *pos;
3814 pos = driver ? os_strchr(driver, ',') : NULL;
3815 if (pos) {
3816 wpa_dbg(wpa_s, MSG_DEBUG, "Failed to initialize "
3817 "driver interface - try next driver wrapper");
3818 driver = pos + 1;
3819 goto next_driver;
3820 }
3821 wpa_msg(wpa_s, MSG_ERROR, "Failed to initialize driver "
3822 "interface");
3823 return -1;
3824 }
3825 if (wpa_drv_set_param(wpa_s, wpa_s->conf->driver_param) < 0) {
3826 wpa_msg(wpa_s, MSG_ERROR, "Driver interface rejected "
3827 "driver_param '%s'", wpa_s->conf->driver_param);
3828 return -1;
3829 }
3830
3831 ifname = wpa_drv_get_ifname(wpa_s);
3832 if (ifname && os_strcmp(ifname, wpa_s->ifname) != 0) {
3833 wpa_dbg(wpa_s, MSG_DEBUG, "Driver interface replaced "
3834 "interface name with '%s'", ifname);
3835 os_strlcpy(wpa_s->ifname, ifname, sizeof(wpa_s->ifname));
3836 }
3837
Dmitry Shmidtd11f0192014-03-24 12:09:47 -07003838 rn = wpa_driver_get_radio_name(wpa_s);
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003839 if (rn && rn[0] == '\0')
3840 rn = NULL;
3841
3842 wpa_s->radio = radio_add_interface(wpa_s, rn);
3843 if (wpa_s->radio == NULL)
3844 return -1;
3845
3846 return 0;
3847}
3848
3849
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003850static int wpa_supplicant_init_iface(struct wpa_supplicant *wpa_s,
3851 struct wpa_interface *iface)
3852{
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003853 struct wpa_driver_capa capa;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003854 int capa_res;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003855
3856 wpa_printf(MSG_DEBUG, "Initializing interface '%s' conf '%s' driver "
3857 "'%s' ctrl_interface '%s' bridge '%s'", iface->ifname,
3858 iface->confname ? iface->confname : "N/A",
3859 iface->driver ? iface->driver : "default",
3860 iface->ctrl_interface ? iface->ctrl_interface : "N/A",
3861 iface->bridge_ifname ? iface->bridge_ifname : "N/A");
3862
3863 if (iface->confname) {
3864#ifdef CONFIG_BACKEND_FILE
3865 wpa_s->confname = os_rel2abs_path(iface->confname);
3866 if (wpa_s->confname == NULL) {
3867 wpa_printf(MSG_ERROR, "Failed to get absolute path "
3868 "for configuration file '%s'.",
3869 iface->confname);
3870 return -1;
3871 }
3872 wpa_printf(MSG_DEBUG, "Configuration file '%s' -> '%s'",
3873 iface->confname, wpa_s->confname);
3874#else /* CONFIG_BACKEND_FILE */
3875 wpa_s->confname = os_strdup(iface->confname);
3876#endif /* CONFIG_BACKEND_FILE */
Dmitry Shmidt64f47c52013-04-16 10:41:54 -07003877 wpa_s->conf = wpa_config_read(wpa_s->confname, NULL);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003878 if (wpa_s->conf == NULL) {
3879 wpa_printf(MSG_ERROR, "Failed to read or parse "
3880 "configuration '%s'.", wpa_s->confname);
3881 return -1;
3882 }
Dmitry Shmidt64f47c52013-04-16 10:41:54 -07003883 wpa_s->confanother = os_rel2abs_path(iface->confanother);
3884 wpa_config_read(wpa_s->confanother, wpa_s->conf);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003885
3886 /*
3887 * Override ctrl_interface and driver_param if set on command
3888 * line.
3889 */
3890 if (iface->ctrl_interface) {
3891 os_free(wpa_s->conf->ctrl_interface);
3892 wpa_s->conf->ctrl_interface =
3893 os_strdup(iface->ctrl_interface);
3894 }
3895
3896 if (iface->driver_param) {
3897 os_free(wpa_s->conf->driver_param);
3898 wpa_s->conf->driver_param =
3899 os_strdup(iface->driver_param);
3900 }
Dmitry Shmidt34af3062013-07-11 10:46:32 -07003901
3902 if (iface->p2p_mgmt && !iface->ctrl_interface) {
3903 os_free(wpa_s->conf->ctrl_interface);
3904 wpa_s->conf->ctrl_interface = NULL;
3905 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003906 } else
3907 wpa_s->conf = wpa_config_alloc_empty(iface->ctrl_interface,
3908 iface->driver_param);
3909
3910 if (wpa_s->conf == NULL) {
3911 wpa_printf(MSG_ERROR, "\nNo configuration found.");
3912 return -1;
3913 }
3914
3915 if (iface->ifname == NULL) {
3916 wpa_printf(MSG_ERROR, "\nInterface name is required.");
3917 return -1;
3918 }
3919 if (os_strlen(iface->ifname) >= sizeof(wpa_s->ifname)) {
3920 wpa_printf(MSG_ERROR, "\nToo long interface name '%s'.",
3921 iface->ifname);
3922 return -1;
3923 }
3924 os_strlcpy(wpa_s->ifname, iface->ifname, sizeof(wpa_s->ifname));
3925
3926 if (iface->bridge_ifname) {
3927 if (os_strlen(iface->bridge_ifname) >=
3928 sizeof(wpa_s->bridge_ifname)) {
3929 wpa_printf(MSG_ERROR, "\nToo long bridge interface "
3930 "name '%s'.", iface->bridge_ifname);
3931 return -1;
3932 }
3933 os_strlcpy(wpa_s->bridge_ifname, iface->bridge_ifname,
3934 sizeof(wpa_s->bridge_ifname));
3935 }
3936
3937 /* RSNA Supplicant Key Management - INITIALIZE */
3938 eapol_sm_notify_portEnabled(wpa_s->eapol, FALSE);
3939 eapol_sm_notify_portValid(wpa_s->eapol, FALSE);
3940
3941 /* Initialize driver interface and register driver event handler before
3942 * L2 receive handler so that association events are processed before
3943 * EAPOL-Key packets if both become available for the same select()
3944 * call. */
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08003945 if (wpas_init_driver(wpa_s, iface) < 0)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003946 return -1;
3947
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003948 if (wpa_supplicant_init_wpa(wpa_s) < 0)
3949 return -1;
3950
3951 wpa_sm_set_ifname(wpa_s->wpa, wpa_s->ifname,
3952 wpa_s->bridge_ifname[0] ? wpa_s->bridge_ifname :
3953 NULL);
3954 wpa_sm_set_fast_reauth(wpa_s->wpa, wpa_s->conf->fast_reauth);
3955
3956 if (wpa_s->conf->dot11RSNAConfigPMKLifetime &&
3957 wpa_sm_set_param(wpa_s->wpa, RSNA_PMK_LIFETIME,
3958 wpa_s->conf->dot11RSNAConfigPMKLifetime)) {
3959 wpa_msg(wpa_s, MSG_ERROR, "Invalid WPA parameter value for "
3960 "dot11RSNAConfigPMKLifetime");
3961 return -1;
3962 }
3963
3964 if (wpa_s->conf->dot11RSNAConfigPMKReauthThreshold &&
3965 wpa_sm_set_param(wpa_s->wpa, RSNA_PMK_REAUTH_THRESHOLD,
3966 wpa_s->conf->dot11RSNAConfigPMKReauthThreshold)) {
3967 wpa_msg(wpa_s, MSG_ERROR, "Invalid WPA parameter value for "
3968 "dot11RSNAConfigPMKReauthThreshold");
3969 return -1;
3970 }
3971
3972 if (wpa_s->conf->dot11RSNAConfigSATimeout &&
3973 wpa_sm_set_param(wpa_s->wpa, RSNA_SA_TIMEOUT,
3974 wpa_s->conf->dot11RSNAConfigSATimeout)) {
3975 wpa_msg(wpa_s, MSG_ERROR, "Invalid WPA parameter value for "
3976 "dot11RSNAConfigSATimeout");
3977 return -1;
3978 }
3979
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003980 wpa_s->hw.modes = wpa_drv_get_hw_feature_data(wpa_s,
3981 &wpa_s->hw.num_modes,
3982 &wpa_s->hw.flags);
3983
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003984 capa_res = wpa_drv_get_capa(wpa_s, &capa);
3985 if (capa_res == 0) {
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003986 wpa_s->drv_capa_known = 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003987 wpa_s->drv_flags = capa.flags;
Dmitry Shmidt04949592012-07-19 12:16:46 -07003988 wpa_s->drv_enc = capa.enc;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003989 wpa_s->drv_smps_modes = capa.smps_modes;
3990 wpa_s->drv_rrm_flags = capa.rrm_flags;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003991 wpa_s->probe_resp_offloads = capa.probe_resp_offloads;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003992 wpa_s->max_scan_ssids = capa.max_scan_ssids;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003993 wpa_s->max_sched_scan_ssids = capa.max_sched_scan_ssids;
3994 wpa_s->sched_scan_supported = capa.sched_scan_supported;
3995 wpa_s->max_match_sets = capa.max_match_sets;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003996 wpa_s->max_remain_on_chan = capa.max_remain_on_chan;
3997 wpa_s->max_stations = capa.max_stations;
Dmitry Shmidt444d5672013-04-01 13:08:44 -07003998 wpa_s->extended_capa = capa.extended_capa;
3999 wpa_s->extended_capa_mask = capa.extended_capa_mask;
4000 wpa_s->extended_capa_len = capa.extended_capa_len;
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07004001 wpa_s->num_multichan_concurrent =
4002 capa.num_multichan_concurrent;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004003 wpa_s->wmm_ac_supported = capa.wmm_ac_supported;
4004
4005 if (capa.mac_addr_rand_scan_supported)
4006 wpa_s->mac_addr_rand_supported |= MAC_ADDR_RAND_SCAN;
4007 if (wpa_s->sched_scan_supported &&
4008 capa.mac_addr_rand_sched_scan_supported)
4009 wpa_s->mac_addr_rand_supported |=
4010 (MAC_ADDR_RAND_SCHED_SCAN | MAC_ADDR_RAND_PNO);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004011 }
4012 if (wpa_s->max_remain_on_chan == 0)
4013 wpa_s->max_remain_on_chan = 1000;
4014
Dmitry Shmidt34af3062013-07-11 10:46:32 -07004015 /*
4016 * Only take p2p_mgmt parameters when P2P Device is supported.
4017 * Doing it here as it determines whether l2_packet_init() will be done
4018 * during wpa_supplicant_driver_init().
4019 */
4020 if (wpa_s->drv_flags & WPA_DRIVER_FLAGS_DEDICATED_P2P_DEVICE)
4021 wpa_s->p2p_mgmt = iface->p2p_mgmt;
4022 else
4023 iface->p2p_mgmt = 1;
4024
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07004025 if (wpa_s->num_multichan_concurrent == 0)
4026 wpa_s->num_multichan_concurrent = 1;
4027
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004028 if (wpa_supplicant_driver_init(wpa_s) < 0)
4029 return -1;
4030
4031#ifdef CONFIG_TDLS
Dmitry Shmidt34af3062013-07-11 10:46:32 -07004032 if ((!iface->p2p_mgmt ||
4033 !(wpa_s->drv_flags &
4034 WPA_DRIVER_FLAGS_DEDICATED_P2P_DEVICE)) &&
4035 wpa_tdls_init(wpa_s->wpa))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004036 return -1;
4037#endif /* CONFIG_TDLS */
4038
4039 if (wpa_s->conf->country[0] && wpa_s->conf->country[1] &&
4040 wpa_drv_set_country(wpa_s, wpa_s->conf->country)) {
4041 wpa_dbg(wpa_s, MSG_DEBUG, "Failed to set country");
4042 return -1;
4043 }
4044
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004045 if (wpas_wps_init(wpa_s))
4046 return -1;
4047
4048 if (wpa_supplicant_init_eapol(wpa_s) < 0)
4049 return -1;
4050 wpa_sm_set_eapol(wpa_s->wpa, wpa_s->eapol);
4051
4052 wpa_s->ctrl_iface = wpa_supplicant_ctrl_iface_init(wpa_s);
4053 if (wpa_s->ctrl_iface == NULL) {
4054 wpa_printf(MSG_ERROR,
4055 "Failed to initialize control interface '%s'.\n"
4056 "You may have another wpa_supplicant process "
4057 "already running or the file was\n"
4058 "left by an unclean termination of wpa_supplicant "
4059 "in which case you will need\n"
4060 "to manually remove this file before starting "
4061 "wpa_supplicant again.\n",
4062 wpa_s->conf->ctrl_interface);
4063 return -1;
4064 }
4065
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004066 wpa_s->gas = gas_query_init(wpa_s);
4067 if (wpa_s->gas == NULL) {
4068 wpa_printf(MSG_ERROR, "Failed to initialize GAS query");
4069 return -1;
4070 }
4071
Dmitry Shmidt34af3062013-07-11 10:46:32 -07004072 if (iface->p2p_mgmt && wpas_p2p_init(wpa_s->global, wpa_s) < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004073 wpa_msg(wpa_s, MSG_ERROR, "Failed to init P2P");
4074 return -1;
4075 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004076
4077 if (wpa_bss_init(wpa_s) < 0)
4078 return -1;
4079
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07004080 /*
4081 * Set Wake-on-WLAN triggers, if configured.
4082 * Note: We don't restore/remove the triggers on shutdown (it doesn't
4083 * have effect anyway when the interface is down).
4084 */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004085 if (capa_res == 0 && wpas_set_wowlan_triggers(wpa_s, &capa) < 0)
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07004086 return -1;
4087
Dmitry Shmidt34af3062013-07-11 10:46:32 -07004088#ifdef CONFIG_EAP_PROXY
4089{
4090 size_t len;
Dmitry Shmidt4ce9c872013-10-24 11:08:13 -07004091 wpa_s->mnc_len = eapol_sm_get_eap_proxy_imsi(wpa_s->eapol, wpa_s->imsi,
4092 &len);
Dmitry Shmidt34af3062013-07-11 10:46:32 -07004093 if (wpa_s->mnc_len > 0) {
4094 wpa_s->imsi[len] = '\0';
4095 wpa_printf(MSG_DEBUG, "eap_proxy: IMSI %s (MNC length %d)",
4096 wpa_s->imsi, wpa_s->mnc_len);
4097 } else {
4098 wpa_printf(MSG_DEBUG, "eap_proxy: IMSI not available");
4099 }
4100}
4101#endif /* CONFIG_EAP_PROXY */
4102
Dmitry Shmidt04949592012-07-19 12:16:46 -07004103 if (pcsc_reader_init(wpa_s) < 0)
4104 return -1;
4105
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004106 if (wpas_init_ext_pw(wpa_s) < 0)
4107 return -1;
4108
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004109 wpas_rrm_reset(wpa_s);
4110
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004111 return 0;
4112}
4113
4114
4115static void wpa_supplicant_deinit_iface(struct wpa_supplicant *wpa_s,
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004116 int notify, int terminate)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004117{
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004118 struct wpa_global *global = wpa_s->global;
4119 struct wpa_supplicant *iface, *prev;
4120
4121 if (wpa_s == wpa_s->parent)
4122 wpas_p2p_group_remove(wpa_s, "*");
4123
4124 iface = global->ifaces;
4125 while (iface) {
4126 if (iface == wpa_s || iface->parent != wpa_s) {
4127 iface = iface->next;
4128 continue;
4129 }
4130 wpa_printf(MSG_DEBUG,
4131 "Remove remaining child interface %s from parent %s",
4132 iface->ifname, wpa_s->ifname);
4133 prev = iface;
4134 iface = iface->next;
4135 wpa_supplicant_remove_iface(global, prev, terminate);
4136 }
4137
Dmitry Shmidtea69e842013-05-13 14:52:28 -07004138 wpa_s->disconnected = 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004139 if (wpa_s->drv_priv) {
4140 wpa_supplicant_deauthenticate(wpa_s,
4141 WLAN_REASON_DEAUTH_LEAVING);
4142
4143 wpa_drv_set_countermeasures(wpa_s, 0);
4144 wpa_clear_keys(wpa_s, NULL);
4145 }
4146
4147 wpa_supplicant_cleanup(wpa_s);
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07004148 wpas_p2p_deinit_iface(wpa_s);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004149
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08004150 wpas_ctrl_radio_work_flush(wpa_s);
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08004151 radio_remove_interface(wpa_s);
4152
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004153 if (wpa_s->drv_priv)
4154 wpa_drv_deinit(wpa_s);
Irfan Sheriff622b66d2011-08-03 09:11:49 -07004155
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004156 if (notify)
4157 wpas_notify_iface_removed(wpa_s);
4158
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004159 if (terminate)
4160 wpa_msg(wpa_s, MSG_INFO, WPA_EVENT_TERMINATING);
Irfan Sheriff622b66d2011-08-03 09:11:49 -07004161
4162 if (wpa_s->ctrl_iface) {
4163 wpa_supplicant_ctrl_iface_deinit(wpa_s->ctrl_iface);
4164 wpa_s->ctrl_iface = NULL;
4165 }
4166
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004167#ifdef CONFIG_MESH
4168 if (wpa_s->ifmsh) {
4169 wpa_supplicant_mesh_iface_deinit(wpa_s, wpa_s->ifmsh);
4170 wpa_s->ifmsh = NULL;
4171 }
4172#endif /* CONFIG_MESH */
4173
Irfan Sheriff622b66d2011-08-03 09:11:49 -07004174 if (wpa_s->conf != NULL) {
Irfan Sheriff622b66d2011-08-03 09:11:49 -07004175 wpa_config_free(wpa_s->conf);
4176 wpa_s->conf = NULL;
4177 }
Dmitry Shmidt8da800a2013-04-24 12:57:01 -07004178
4179 os_free(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004180}
4181
4182
4183/**
4184 * wpa_supplicant_add_iface - Add a new network interface
4185 * @global: Pointer to global data from wpa_supplicant_init()
4186 * @iface: Interface configuration options
4187 * Returns: Pointer to the created interface or %NULL on failure
4188 *
4189 * This function is used to add new network interfaces for %wpa_supplicant.
4190 * This can be called before wpa_supplicant_run() to add interfaces before the
4191 * main event loop has been started. In addition, new interfaces can be added
4192 * dynamically while %wpa_supplicant is already running. This could happen,
4193 * e.g., when a hotplug network adapter is inserted.
4194 */
4195struct wpa_supplicant * wpa_supplicant_add_iface(struct wpa_global *global,
4196 struct wpa_interface *iface)
4197{
4198 struct wpa_supplicant *wpa_s;
4199 struct wpa_interface t_iface;
4200 struct wpa_ssid *ssid;
4201
4202 if (global == NULL || iface == NULL)
4203 return NULL;
4204
4205 wpa_s = wpa_supplicant_alloc();
4206 if (wpa_s == NULL)
4207 return NULL;
4208
4209 wpa_s->global = global;
4210
4211 t_iface = *iface;
4212 if (global->params.override_driver) {
4213 wpa_printf(MSG_DEBUG, "Override interface parameter: driver "
4214 "('%s' -> '%s')",
4215 iface->driver, global->params.override_driver);
4216 t_iface.driver = global->params.override_driver;
4217 }
4218 if (global->params.override_ctrl_interface) {
4219 wpa_printf(MSG_DEBUG, "Override interface parameter: "
4220 "ctrl_interface ('%s' -> '%s')",
4221 iface->ctrl_interface,
4222 global->params.override_ctrl_interface);
4223 t_iface.ctrl_interface =
4224 global->params.override_ctrl_interface;
4225 }
4226 if (wpa_supplicant_init_iface(wpa_s, &t_iface)) {
4227 wpa_printf(MSG_DEBUG, "Failed to add interface %s",
4228 iface->ifname);
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004229 wpa_supplicant_deinit_iface(wpa_s, 0, 0);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004230 return NULL;
4231 }
4232
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004233 if (iface->p2p_mgmt == 0) {
4234 /* Notify the control interfaces about new iface */
4235 if (wpas_notify_iface_added(wpa_s)) {
4236 wpa_supplicant_deinit_iface(wpa_s, 1, 0);
4237 return NULL;
4238 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004239
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004240 for (ssid = wpa_s->conf->ssid; ssid; ssid = ssid->next)
4241 wpas_notify_network_added(wpa_s, ssid);
4242 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004243
4244 wpa_s->next = global->ifaces;
4245 global->ifaces = wpa_s;
4246
4247 wpa_dbg(wpa_s, MSG_DEBUG, "Added interface %s", wpa_s->ifname);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004248 wpa_supplicant_set_state(wpa_s, WPA_DISCONNECTED);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004249
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004250#ifdef CONFIG_P2P
4251 if (wpa_s->global->p2p == NULL &&
4252 (wpa_s->drv_flags & WPA_DRIVER_FLAGS_DEDICATED_P2P_DEVICE) &&
4253 wpas_p2p_add_p2pdev_interface(wpa_s, iface->conf_p2p_dev) < 0) {
4254 wpa_printf(MSG_INFO,
4255 "P2P: Failed to enable P2P Device interface");
4256 /* Try to continue without. P2P will be disabled. */
4257 }
4258#endif /* CONFIG_P2P */
4259
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004260 return wpa_s;
4261}
4262
4263
4264/**
4265 * wpa_supplicant_remove_iface - Remove a network interface
4266 * @global: Pointer to global data from wpa_supplicant_init()
4267 * @wpa_s: Pointer to the network interface to be removed
4268 * Returns: 0 if interface was removed, -1 if interface was not found
4269 *
4270 * This function can be used to dynamically remove network interfaces from
4271 * %wpa_supplicant, e.g., when a hotplug network adapter is ejected. In
4272 * addition, this function is used to remove all remaining interfaces when
4273 * %wpa_supplicant is terminated.
4274 */
4275int wpa_supplicant_remove_iface(struct wpa_global *global,
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004276 struct wpa_supplicant *wpa_s,
4277 int terminate)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004278{
4279 struct wpa_supplicant *prev;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004280#ifdef CONFIG_MESH
4281 unsigned int mesh_if_created = wpa_s->mesh_if_created;
4282 char *ifname = NULL;
4283#endif /* CONFIG_MESH */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004284
4285 /* Remove interface from the global list of interfaces */
4286 prev = global->ifaces;
4287 if (prev == wpa_s) {
4288 global->ifaces = wpa_s->next;
4289 } else {
4290 while (prev && prev->next != wpa_s)
4291 prev = prev->next;
4292 if (prev == NULL)
4293 return -1;
4294 prev->next = wpa_s->next;
4295 }
4296
4297 wpa_dbg(wpa_s, MSG_DEBUG, "Removing interface %s", wpa_s->ifname);
4298
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004299#ifdef CONFIG_MESH
4300 if (mesh_if_created) {
4301 ifname = os_strdup(wpa_s->ifname);
4302 if (ifname == NULL) {
4303 wpa_dbg(wpa_s, MSG_ERROR,
4304 "mesh: Failed to malloc ifname");
4305 return -1;
4306 }
4307 }
4308#endif /* CONFIG_MESH */
4309
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004310 if (global->p2p_group_formation == wpa_s)
4311 global->p2p_group_formation = NULL;
Dmitry Shmidt700a1372013-03-15 14:14:44 -07004312 if (global->p2p_invite_group == wpa_s)
4313 global->p2p_invite_group = NULL;
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004314 wpa_supplicant_deinit_iface(wpa_s, 1, terminate);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004315
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004316#ifdef CONFIG_MESH
4317 if (mesh_if_created) {
4318 wpa_drv_if_remove(global->ifaces, WPA_IF_MESH, ifname);
4319 os_free(ifname);
4320 }
4321#endif /* CONFIG_MESH */
4322
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004323 return 0;
4324}
4325
4326
4327/**
4328 * wpa_supplicant_get_eap_mode - Get the current EAP mode
4329 * @wpa_s: Pointer to the network interface
4330 * Returns: Pointer to the eap mode or the string "UNKNOWN" if not found
4331 */
4332const char * wpa_supplicant_get_eap_mode(struct wpa_supplicant *wpa_s)
4333{
4334 const char *eapol_method;
4335
4336 if (wpa_key_mgmt_wpa_ieee8021x(wpa_s->key_mgmt) == 0 &&
4337 wpa_s->key_mgmt != WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
4338 return "NO-EAP";
4339 }
4340
4341 eapol_method = eapol_sm_get_method_name(wpa_s->eapol);
4342 if (eapol_method == NULL)
4343 return "UNKNOWN-EAP";
4344
4345 return eapol_method;
4346}
4347
4348
4349/**
4350 * wpa_supplicant_get_iface - Get a new network interface
4351 * @global: Pointer to global data from wpa_supplicant_init()
4352 * @ifname: Interface name
4353 * Returns: Pointer to the interface or %NULL if not found
4354 */
4355struct wpa_supplicant * wpa_supplicant_get_iface(struct wpa_global *global,
4356 const char *ifname)
4357{
4358 struct wpa_supplicant *wpa_s;
4359
4360 for (wpa_s = global->ifaces; wpa_s; wpa_s = wpa_s->next) {
4361 if (os_strcmp(wpa_s->ifname, ifname) == 0)
4362 return wpa_s;
4363 }
4364 return NULL;
4365}
4366
4367
4368#ifndef CONFIG_NO_WPA_MSG
4369static const char * wpa_supplicant_msg_ifname_cb(void *ctx)
4370{
4371 struct wpa_supplicant *wpa_s = ctx;
4372 if (wpa_s == NULL)
4373 return NULL;
4374 return wpa_s->ifname;
4375}
4376#endif /* CONFIG_NO_WPA_MSG */
4377
4378
4379/**
4380 * wpa_supplicant_init - Initialize %wpa_supplicant
4381 * @params: Parameters for %wpa_supplicant
4382 * Returns: Pointer to global %wpa_supplicant data, or %NULL on failure
4383 *
4384 * This function is used to initialize %wpa_supplicant. After successful
4385 * initialization, the returned data pointer can be used to add and remove
4386 * network interfaces, and eventually, to deinitialize %wpa_supplicant.
4387 */
4388struct wpa_global * wpa_supplicant_init(struct wpa_params *params)
4389{
4390 struct wpa_global *global;
4391 int ret, i;
4392
4393 if (params == NULL)
4394 return NULL;
4395
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004396#ifdef CONFIG_DRIVER_NDIS
4397 {
4398 void driver_ndis_init_ops(void);
4399 driver_ndis_init_ops();
4400 }
4401#endif /* CONFIG_DRIVER_NDIS */
4402
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004403#ifndef CONFIG_NO_WPA_MSG
4404 wpa_msg_register_ifname_cb(wpa_supplicant_msg_ifname_cb);
4405#endif /* CONFIG_NO_WPA_MSG */
4406
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004407 if (params->wpa_debug_file_path)
4408 wpa_debug_open_file(params->wpa_debug_file_path);
4409 else
4410 wpa_debug_setup_stdout();
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004411 if (params->wpa_debug_syslog)
4412 wpa_debug_open_syslog();
Dmitry Shmidt04949592012-07-19 12:16:46 -07004413 if (params->wpa_debug_tracing) {
4414 ret = wpa_debug_open_linux_tracing();
4415 if (ret) {
4416 wpa_printf(MSG_ERROR,
4417 "Failed to enable trace logging");
4418 return NULL;
4419 }
4420 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004421
4422 ret = eap_register_methods();
4423 if (ret) {
4424 wpa_printf(MSG_ERROR, "Failed to register EAP methods");
4425 if (ret == -2)
4426 wpa_printf(MSG_ERROR, "Two or more EAP methods used "
4427 "the same EAP type.");
4428 return NULL;
4429 }
4430
4431 global = os_zalloc(sizeof(*global));
4432 if (global == NULL)
4433 return NULL;
4434 dl_list_init(&global->p2p_srv_bonjour);
4435 dl_list_init(&global->p2p_srv_upnp);
4436 global->params.daemonize = params->daemonize;
4437 global->params.wait_for_monitor = params->wait_for_monitor;
4438 global->params.dbus_ctrl_interface = params->dbus_ctrl_interface;
4439 if (params->pid_file)
4440 global->params.pid_file = os_strdup(params->pid_file);
4441 if (params->ctrl_interface)
4442 global->params.ctrl_interface =
4443 os_strdup(params->ctrl_interface);
Dmitry Shmidtb6e9aaf2013-05-20 14:49:44 -07004444 if (params->ctrl_interface_group)
4445 global->params.ctrl_interface_group =
4446 os_strdup(params->ctrl_interface_group);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004447 if (params->override_driver)
4448 global->params.override_driver =
4449 os_strdup(params->override_driver);
4450 if (params->override_ctrl_interface)
4451 global->params.override_ctrl_interface =
4452 os_strdup(params->override_ctrl_interface);
4453 wpa_debug_level = global->params.wpa_debug_level =
4454 params->wpa_debug_level;
4455 wpa_debug_show_keys = global->params.wpa_debug_show_keys =
4456 params->wpa_debug_show_keys;
4457 wpa_debug_timestamp = global->params.wpa_debug_timestamp =
4458 params->wpa_debug_timestamp;
4459
4460 wpa_printf(MSG_DEBUG, "wpa_supplicant v" VERSION_STR);
4461
4462 if (eloop_init()) {
4463 wpa_printf(MSG_ERROR, "Failed to initialize event loop");
4464 wpa_supplicant_deinit(global);
4465 return NULL;
4466 }
4467
Jouni Malinen75ecf522011-06-27 15:19:46 -07004468 random_init(params->entropy_file);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004469
4470 global->ctrl_iface = wpa_supplicant_global_ctrl_iface_init(global);
4471 if (global->ctrl_iface == NULL) {
4472 wpa_supplicant_deinit(global);
4473 return NULL;
4474 }
4475
4476 if (wpas_notify_supplicant_initialized(global)) {
4477 wpa_supplicant_deinit(global);
4478 return NULL;
4479 }
4480
4481 for (i = 0; wpa_drivers[i]; i++)
4482 global->drv_count++;
4483 if (global->drv_count == 0) {
4484 wpa_printf(MSG_ERROR, "No drivers enabled");
4485 wpa_supplicant_deinit(global);
4486 return NULL;
4487 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004488 global->drv_priv = os_calloc(global->drv_count, sizeof(void *));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004489 if (global->drv_priv == NULL) {
4490 wpa_supplicant_deinit(global);
4491 return NULL;
4492 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004493
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004494#ifdef CONFIG_WIFI_DISPLAY
4495 if (wifi_display_init(global) < 0) {
4496 wpa_printf(MSG_ERROR, "Failed to initialize Wi-Fi Display");
4497 wpa_supplicant_deinit(global);
4498 return NULL;
4499 }
4500#endif /* CONFIG_WIFI_DISPLAY */
4501
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004502 return global;
4503}
4504
4505
4506/**
4507 * wpa_supplicant_run - Run the %wpa_supplicant main event loop
4508 * @global: Pointer to global data from wpa_supplicant_init()
4509 * Returns: 0 after successful event loop run, -1 on failure
4510 *
4511 * This function starts the main event loop and continues running as long as
4512 * there are any remaining events. In most cases, this function is running as
4513 * long as the %wpa_supplicant process in still in use.
4514 */
4515int wpa_supplicant_run(struct wpa_global *global)
4516{
4517 struct wpa_supplicant *wpa_s;
4518
4519 if (global->params.daemonize &&
4520 wpa_supplicant_daemon(global->params.pid_file))
4521 return -1;
4522
4523 if (global->params.wait_for_monitor) {
4524 for (wpa_s = global->ifaces; wpa_s; wpa_s = wpa_s->next)
4525 if (wpa_s->ctrl_iface)
4526 wpa_supplicant_ctrl_iface_wait(
4527 wpa_s->ctrl_iface);
4528 }
4529
4530 eloop_register_signal_terminate(wpa_supplicant_terminate, global);
4531 eloop_register_signal_reconfig(wpa_supplicant_reconfig, global);
4532
4533 eloop_run();
4534
4535 return 0;
4536}
4537
4538
4539/**
4540 * wpa_supplicant_deinit - Deinitialize %wpa_supplicant
4541 * @global: Pointer to global data from wpa_supplicant_init()
4542 *
4543 * This function is called to deinitialize %wpa_supplicant and to free all
4544 * allocated resources. Remaining network interfaces will also be removed.
4545 */
4546void wpa_supplicant_deinit(struct wpa_global *global)
4547{
4548 int i;
4549
4550 if (global == NULL)
4551 return;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004552
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004553#ifdef CONFIG_WIFI_DISPLAY
4554 wifi_display_deinit(global);
4555#endif /* CONFIG_WIFI_DISPLAY */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004556
4557 while (global->ifaces)
Dmitry Shmidte15c7b52011-08-03 15:04:35 -07004558 wpa_supplicant_remove_iface(global, global->ifaces, 1);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004559
4560 if (global->ctrl_iface)
4561 wpa_supplicant_global_ctrl_iface_deinit(global->ctrl_iface);
4562
4563 wpas_notify_supplicant_deinitialized(global);
4564
4565 eap_peer_unregister_methods();
4566#ifdef CONFIG_AP
4567 eap_server_unregister_methods();
4568#endif /* CONFIG_AP */
4569
4570 for (i = 0; wpa_drivers[i] && global->drv_priv; i++) {
4571 if (!global->drv_priv[i])
4572 continue;
4573 wpa_drivers[i]->global_deinit(global->drv_priv[i]);
4574 }
4575 os_free(global->drv_priv);
4576
4577 random_deinit();
4578
4579 eloop_destroy();
4580
4581 if (global->params.pid_file) {
4582 os_daemonize_terminate(global->params.pid_file);
4583 os_free(global->params.pid_file);
4584 }
4585 os_free(global->params.ctrl_interface);
Dmitry Shmidtb6e9aaf2013-05-20 14:49:44 -07004586 os_free(global->params.ctrl_interface_group);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004587 os_free(global->params.override_driver);
4588 os_free(global->params.override_ctrl_interface);
4589
Dmitry Shmidt4ce9c872013-10-24 11:08:13 -07004590 os_free(global->p2p_disallow_freq.range);
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08004591 os_free(global->p2p_go_avoid_freq.range);
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07004592 os_free(global->add_psk);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004593
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004594 os_free(global);
4595 wpa_debug_close_syslog();
4596 wpa_debug_close_file();
Dmitry Shmidt04949592012-07-19 12:16:46 -07004597 wpa_debug_close_linux_tracing();
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004598}
4599
4600
4601void wpa_supplicant_update_config(struct wpa_supplicant *wpa_s)
4602{
4603 if ((wpa_s->conf->changed_parameters & CFG_CHANGED_COUNTRY) &&
4604 wpa_s->conf->country[0] && wpa_s->conf->country[1]) {
4605 char country[3];
4606 country[0] = wpa_s->conf->country[0];
4607 country[1] = wpa_s->conf->country[1];
4608 country[2] = '\0';
4609 if (wpa_drv_set_country(wpa_s, country) < 0) {
4610 wpa_printf(MSG_ERROR, "Failed to set country code "
4611 "'%s'", country);
4612 }
4613 }
4614
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004615 if (wpa_s->conf->changed_parameters & CFG_CHANGED_EXT_PW_BACKEND)
4616 wpas_init_ext_pw(wpa_s);
4617
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004618#ifdef CONFIG_WPS
4619 wpas_wps_update_config(wpa_s);
4620#endif /* CONFIG_WPS */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004621 wpas_p2p_update_config(wpa_s);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004622 wpa_s->conf->changed_parameters = 0;
4623}
4624
4625
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004626void add_freq(int *freqs, int *num_freqs, int freq)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004627{
4628 int i;
4629
4630 for (i = 0; i < *num_freqs; i++) {
4631 if (freqs[i] == freq)
4632 return;
4633 }
4634
4635 freqs[*num_freqs] = freq;
4636 (*num_freqs)++;
4637}
4638
4639
4640static int * get_bss_freqs_in_ess(struct wpa_supplicant *wpa_s)
4641{
4642 struct wpa_bss *bss, *cbss;
4643 const int max_freqs = 10;
4644 int *freqs;
4645 int num_freqs = 0;
4646
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004647 freqs = os_calloc(max_freqs + 1, sizeof(int));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004648 if (freqs == NULL)
4649 return NULL;
4650
4651 cbss = wpa_s->current_bss;
4652
4653 dl_list_for_each(bss, &wpa_s->bss, struct wpa_bss, list) {
4654 if (bss == cbss)
4655 continue;
4656 if (bss->ssid_len == cbss->ssid_len &&
4657 os_memcmp(bss->ssid, cbss->ssid, bss->ssid_len) == 0 &&
4658 wpa_blacklist_get(wpa_s, bss->bssid) == NULL) {
4659 add_freq(freqs, &num_freqs, bss->freq);
4660 if (num_freqs == max_freqs)
4661 break;
4662 }
4663 }
4664
4665 if (num_freqs == 0) {
4666 os_free(freqs);
4667 freqs = NULL;
4668 }
4669
4670 return freqs;
4671}
4672
4673
4674void wpas_connection_failed(struct wpa_supplicant *wpa_s, const u8 *bssid)
4675{
4676 int timeout;
4677 int count;
4678 int *freqs = NULL;
4679
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08004680 wpas_connect_work_done(wpa_s);
4681
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004682 /*
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004683 * Remove possible authentication timeout since the connection failed.
4684 */
4685 eloop_cancel_timeout(wpa_supplicant_timeout, wpa_s, NULL);
4686
Dmitry Shmidtea69e842013-05-13 14:52:28 -07004687 if (wpa_s->disconnected) {
4688 /*
4689 * There is no point in blacklisting the AP if this event is
4690 * generated based on local request to disconnect.
4691 */
4692 wpa_dbg(wpa_s, MSG_DEBUG, "Ignore connection failure "
4693 "indication since interface has been put into "
4694 "disconnected state");
4695 return;
4696 }
4697
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004698 /*
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004699 * Add the failed BSSID into the blacklist and speed up next scan
4700 * attempt if there could be other APs that could accept association.
4701 * The current blacklist count indicates how many times we have tried
4702 * connecting to this AP and multiple attempts mean that other APs are
4703 * either not available or has already been tried, so that we can start
4704 * increasing the delay here to avoid constant scanning.
4705 */
4706 count = wpa_blacklist_add(wpa_s, bssid);
4707 if (count == 1 && wpa_s->current_bss) {
4708 /*
4709 * This BSS was not in the blacklist before. If there is
4710 * another BSS available for the same ESS, we should try that
4711 * next. Otherwise, we may as well try this one once more
4712 * before allowing other, likely worse, ESSes to be considered.
4713 */
4714 freqs = get_bss_freqs_in_ess(wpa_s);
4715 if (freqs) {
4716 wpa_dbg(wpa_s, MSG_DEBUG, "Another BSS in this ESS "
4717 "has been seen; try it next");
4718 wpa_blacklist_add(wpa_s, bssid);
4719 /*
4720 * On the next scan, go through only the known channels
4721 * used in this ESS based on previous scans to speed up
4722 * common load balancing use case.
4723 */
4724 os_free(wpa_s->next_scan_freqs);
4725 wpa_s->next_scan_freqs = freqs;
4726 }
4727 }
4728
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08004729 /*
4730 * Add previous failure count in case the temporary blacklist was
4731 * cleared due to no other BSSes being available.
4732 */
4733 count += wpa_s->extra_blacklist_count;
4734
Dmitry Shmidt4b060592013-04-29 16:42:49 -07004735 if (count > 3 && wpa_s->current_ssid) {
4736 wpa_printf(MSG_DEBUG, "Continuous association failures - "
4737 "consider temporary network disabling");
Dmitry Shmidt6dc03bd2014-05-16 10:40:13 -07004738 wpas_auth_failed(wpa_s, "CONN_FAILED");
Dmitry Shmidt4b060592013-04-29 16:42:49 -07004739 }
4740
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004741 switch (count) {
4742 case 1:
4743 timeout = 100;
4744 break;
4745 case 2:
4746 timeout = 500;
4747 break;
4748 case 3:
4749 timeout = 1000;
4750 break;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08004751 case 4:
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004752 timeout = 5000;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08004753 break;
4754 default:
4755 timeout = 10000;
4756 break;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004757 }
4758
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08004759 wpa_dbg(wpa_s, MSG_DEBUG, "Blacklist count %d --> request scan in %d "
4760 "ms", count, timeout);
4761
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004762 /*
4763 * TODO: if more than one possible AP is available in scan results,
4764 * could try the other ones before requesting a new scan.
4765 */
4766 wpa_supplicant_req_scan(wpa_s, timeout / 1000,
4767 1000 * (timeout % 1000));
4768}
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004769
4770
4771int wpas_driver_bss_selection(struct wpa_supplicant *wpa_s)
4772{
4773 return wpa_s->conf->ap_scan == 2 ||
4774 (wpa_s->drv_flags & WPA_DRIVER_FLAGS_BSS_SELECTION);
4775}
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004776
Dmitry Shmidt04949592012-07-19 12:16:46 -07004777
4778#if defined(CONFIG_CTRL_IFACE) || defined(CONFIG_CTRL_IFACE_DBUS_NEW)
4779int wpa_supplicant_ctrl_iface_ctrl_rsp_handle(struct wpa_supplicant *wpa_s,
4780 struct wpa_ssid *ssid,
4781 const char *field,
4782 const char *value)
4783{
4784#ifdef IEEE8021X_EAPOL
4785 struct eap_peer_config *eap = &ssid->eap;
4786
4787 wpa_printf(MSG_DEBUG, "CTRL_IFACE: response handle field=%s", field);
4788 wpa_hexdump_ascii_key(MSG_DEBUG, "CTRL_IFACE: response value",
4789 (const u8 *) value, os_strlen(value));
4790
4791 switch (wpa_supplicant_ctrl_req_from_string(field)) {
4792 case WPA_CTRL_REQ_EAP_IDENTITY:
4793 os_free(eap->identity);
4794 eap->identity = (u8 *) os_strdup(value);
4795 eap->identity_len = os_strlen(value);
4796 eap->pending_req_identity = 0;
4797 if (ssid == wpa_s->current_ssid)
4798 wpa_s->reassociate = 1;
4799 break;
4800 case WPA_CTRL_REQ_EAP_PASSWORD:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004801 bin_clear_free(eap->password, eap->password_len);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004802 eap->password = (u8 *) os_strdup(value);
4803 eap->password_len = os_strlen(value);
4804 eap->pending_req_password = 0;
4805 if (ssid == wpa_s->current_ssid)
4806 wpa_s->reassociate = 1;
4807 break;
4808 case WPA_CTRL_REQ_EAP_NEW_PASSWORD:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004809 bin_clear_free(eap->new_password, eap->new_password_len);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004810 eap->new_password = (u8 *) os_strdup(value);
4811 eap->new_password_len = os_strlen(value);
4812 eap->pending_req_new_password = 0;
4813 if (ssid == wpa_s->current_ssid)
4814 wpa_s->reassociate = 1;
4815 break;
4816 case WPA_CTRL_REQ_EAP_PIN:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004817 str_clear_free(eap->pin);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004818 eap->pin = os_strdup(value);
4819 eap->pending_req_pin = 0;
4820 if (ssid == wpa_s->current_ssid)
4821 wpa_s->reassociate = 1;
4822 break;
4823 case WPA_CTRL_REQ_EAP_OTP:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004824 bin_clear_free(eap->otp, eap->otp_len);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004825 eap->otp = (u8 *) os_strdup(value);
4826 eap->otp_len = os_strlen(value);
4827 os_free(eap->pending_req_otp);
4828 eap->pending_req_otp = NULL;
4829 eap->pending_req_otp_len = 0;
4830 break;
4831 case WPA_CTRL_REQ_EAP_PASSPHRASE:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004832 str_clear_free(eap->private_key_passwd);
4833 eap->private_key_passwd = os_strdup(value);
Dmitry Shmidt04949592012-07-19 12:16:46 -07004834 eap->pending_req_passphrase = 0;
4835 if (ssid == wpa_s->current_ssid)
4836 wpa_s->reassociate = 1;
4837 break;
Dmitry Shmidt051af732013-10-22 13:52:46 -07004838 case WPA_CTRL_REQ_SIM:
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004839 str_clear_free(eap->external_sim_resp);
Dmitry Shmidt051af732013-10-22 13:52:46 -07004840 eap->external_sim_resp = os_strdup(value);
4841 break;
Dmitry Shmidt04949592012-07-19 12:16:46 -07004842 default:
4843 wpa_printf(MSG_DEBUG, "CTRL_IFACE: Unknown field '%s'", field);
4844 return -1;
4845 }
4846
4847 return 0;
4848#else /* IEEE8021X_EAPOL */
4849 wpa_printf(MSG_DEBUG, "CTRL_IFACE: IEEE 802.1X not included");
4850 return -1;
4851#endif /* IEEE8021X_EAPOL */
4852}
4853#endif /* CONFIG_CTRL_IFACE || CONFIG_CTRL_IFACE_DBUS_NEW */
4854
4855
4856int wpas_network_disabled(struct wpa_supplicant *wpa_s, struct wpa_ssid *ssid)
4857{
4858 int i;
4859 unsigned int drv_enc;
4860
4861 if (ssid == NULL)
4862 return 1;
4863
4864 if (ssid->disabled)
4865 return 1;
4866
4867 if (wpa_s && wpa_s->drv_capa_known)
4868 drv_enc = wpa_s->drv_enc;
4869 else
4870 drv_enc = (unsigned int) -1;
4871
4872 for (i = 0; i < NUM_WEP_KEYS; i++) {
4873 size_t len = ssid->wep_key_len[i];
4874 if (len == 0)
4875 continue;
4876 if (len == 5 && (drv_enc & WPA_DRIVER_CAPA_ENC_WEP40))
4877 continue;
4878 if (len == 13 && (drv_enc & WPA_DRIVER_CAPA_ENC_WEP104))
4879 continue;
4880 if (len == 16 && (drv_enc & WPA_DRIVER_CAPA_ENC_WEP128))
4881 continue;
4882 return 1; /* invalid WEP key */
4883 }
4884
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004885 if (wpa_key_mgmt_wpa_psk(ssid->key_mgmt) && !ssid->psk_set &&
Dmitry Shmidt7dba0e52014-04-14 10:49:15 -07004886 (!ssid->passphrase || ssid->ssid_len != 0) && !ssid->ext_psk)
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004887 return 1;
4888
Dmitry Shmidt04949592012-07-19 12:16:46 -07004889 return 0;
4890}
4891
4892
Dmitry Shmidt807291d2015-01-27 13:40:23 -08004893int wpas_get_ssid_pmf(struct wpa_supplicant *wpa_s, struct wpa_ssid *ssid)
4894{
4895#ifdef CONFIG_IEEE80211W
4896 if (ssid == NULL || ssid->ieee80211w == MGMT_FRAME_PROTECTION_DEFAULT) {
4897 if (wpa_s->conf->pmf == MGMT_FRAME_PROTECTION_OPTIONAL &&
4898 !(wpa_s->drv_enc & WPA_DRIVER_CAPA_ENC_BIP)) {
4899 /*
4900 * Driver does not support BIP -- ignore pmf=1 default
4901 * since the connection with PMF would fail and the
4902 * configuration does not require PMF to be enabled.
4903 */
4904 return NO_MGMT_FRAME_PROTECTION;
4905 }
4906
4907 return wpa_s->conf->pmf;
4908 }
4909
4910 return ssid->ieee80211w;
4911#else /* CONFIG_IEEE80211W */
4912 return NO_MGMT_FRAME_PROTECTION;
4913#endif /* CONFIG_IEEE80211W */
4914}
4915
4916
Dmitry Shmidt687922c2012-03-26 14:02:32 -07004917int wpas_is_p2p_prioritized(struct wpa_supplicant *wpa_s)
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004918{
Dmitry Shmidt2fb777c2012-05-02 12:29:53 -07004919 if (wpa_s->global->conc_pref == WPA_CONC_PREF_P2P)
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004920 return 1;
Dmitry Shmidt2fb777c2012-05-02 12:29:53 -07004921 if (wpa_s->global->conc_pref == WPA_CONC_PREF_STA)
Dmitry Shmidt687922c2012-03-26 14:02:32 -07004922 return 0;
Dmitry Shmidt687922c2012-03-26 14:02:32 -07004923 return -1;
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08004924}
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004925
4926
Dmitry Shmidt6dc03bd2014-05-16 10:40:13 -07004927void wpas_auth_failed(struct wpa_supplicant *wpa_s, char *reason)
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004928{
4929 struct wpa_ssid *ssid = wpa_s->current_ssid;
4930 int dur;
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08004931 struct os_reltime now;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004932
4933 if (ssid == NULL) {
4934 wpa_printf(MSG_DEBUG, "Authentication failure but no known "
4935 "SSID block");
4936 return;
4937 }
4938
4939 if (ssid->key_mgmt == WPA_KEY_MGMT_WPS)
4940 return;
4941
4942 ssid->auth_failures++;
Dmitry Shmidtd5c075b2013-08-05 14:36:10 -07004943
4944#ifdef CONFIG_P2P
4945 if (ssid->p2p_group &&
4946 (wpa_s->p2p_in_provisioning || wpa_s->show_group_started)) {
4947 /*
4948 * Skip the wait time since there is a short timeout on the
4949 * connection to a P2P group.
4950 */
4951 return;
4952 }
4953#endif /* CONFIG_P2P */
4954
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004955 if (ssid->auth_failures > 50)
4956 dur = 300;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004957 else if (ssid->auth_failures > 10)
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08004958 dur = 120;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004959 else if (ssid->auth_failures > 5)
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08004960 dur = 90;
4961 else if (ssid->auth_failures > 3)
4962 dur = 60;
4963 else if (ssid->auth_failures > 2)
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004964 dur = 30;
4965 else if (ssid->auth_failures > 1)
4966 dur = 20;
4967 else
4968 dur = 10;
4969
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08004970 if (ssid->auth_failures > 1 &&
4971 wpa_key_mgmt_wpa_ieee8021x(ssid->key_mgmt))
4972 dur += os_random() % (ssid->auth_failures * 10);
4973
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08004974 os_get_reltime(&now);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004975 if (now.sec + dur <= ssid->disabled_until.sec)
4976 return;
4977
4978 ssid->disabled_until.sec = now.sec + dur;
4979
4980 wpa_msg(wpa_s, MSG_INFO, WPA_EVENT_TEMP_DISABLED
Dmitry Shmidt6dc03bd2014-05-16 10:40:13 -07004981 "id=%d ssid=\"%s\" auth_failures=%u duration=%d reason=%s",
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004982 ssid->id, wpa_ssid_txt(ssid->ssid, ssid->ssid_len),
Dmitry Shmidt6dc03bd2014-05-16 10:40:13 -07004983 ssid->auth_failures, dur, reason);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004984}
4985
4986
4987void wpas_clear_temp_disabled(struct wpa_supplicant *wpa_s,
4988 struct wpa_ssid *ssid, int clear_failures)
4989{
4990 if (ssid == NULL)
4991 return;
4992
4993 if (ssid->disabled_until.sec) {
4994 wpa_msg(wpa_s, MSG_INFO, WPA_EVENT_REENABLED
4995 "id=%d ssid=\"%s\"",
4996 ssid->id, wpa_ssid_txt(ssid->ssid, ssid->ssid_len));
4997 }
4998 ssid->disabled_until.sec = 0;
4999 ssid->disabled_until.usec = 0;
5000 if (clear_failures)
5001 ssid->auth_failures = 0;
5002}
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005003
5004
5005int disallowed_bssid(struct wpa_supplicant *wpa_s, const u8 *bssid)
5006{
5007 size_t i;
5008
5009 if (wpa_s->disallow_aps_bssid == NULL)
5010 return 0;
5011
5012 for (i = 0; i < wpa_s->disallow_aps_bssid_count; i++) {
5013 if (os_memcmp(wpa_s->disallow_aps_bssid + i * ETH_ALEN,
5014 bssid, ETH_ALEN) == 0)
5015 return 1;
5016 }
5017
5018 return 0;
5019}
5020
5021
5022int disallowed_ssid(struct wpa_supplicant *wpa_s, const u8 *ssid,
5023 size_t ssid_len)
5024{
5025 size_t i;
5026
5027 if (wpa_s->disallow_aps_ssid == NULL || ssid == NULL)
5028 return 0;
5029
5030 for (i = 0; i < wpa_s->disallow_aps_ssid_count; i++) {
5031 struct wpa_ssid_value *s = &wpa_s->disallow_aps_ssid[i];
5032 if (ssid_len == s->ssid_len &&
5033 os_memcmp(ssid, s->ssid, ssid_len) == 0)
5034 return 1;
5035 }
5036
5037 return 0;
5038}
5039
5040
5041/**
5042 * wpas_request_connection - Request a new connection
5043 * @wpa_s: Pointer to the network interface
5044 *
5045 * This function is used to request a new connection to be found. It will mark
5046 * the interface to allow reassociation and request a new scan to find a
5047 * suitable network to connect to.
5048 */
5049void wpas_request_connection(struct wpa_supplicant *wpa_s)
5050{
5051 wpa_s->normal_scans = 0;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005052 wpa_s->scan_req = NORMAL_SCAN_REQ;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005053 wpa_supplicant_reinit_autoscan(wpa_s);
5054 wpa_s->extra_blacklist_count = 0;
5055 wpa_s->disconnected = 0;
5056 wpa_s->reassociate = 1;
Dmitry Shmidt2f3b8de2013-03-01 09:32:50 -08005057
5058 if (wpa_supplicant_fast_associate(wpa_s) != 1)
5059 wpa_supplicant_req_scan(wpa_s, 0, 0);
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08005060 else
5061 wpa_s->reattach = 0;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005062}
Dmitry Shmidtea69e842013-05-13 14:52:28 -07005063
5064
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005065void dump_freq_data(struct wpa_supplicant *wpa_s, const char *title,
5066 struct wpa_used_freq_data *freqs_data,
5067 unsigned int len)
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08005068{
5069 unsigned int i;
5070
5071 wpa_dbg(wpa_s, MSG_DEBUG, "Shared frequencies (len=%u): %s",
5072 len, title);
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005073 for (i = 0; i < len; i++) {
5074 struct wpa_used_freq_data *cur = &freqs_data[i];
5075 wpa_dbg(wpa_s, MSG_DEBUG, "freq[%u]: %d, flags=0x%X",
5076 i, cur->freq, cur->flags);
5077 }
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08005078}
5079
5080
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005081/*
5082 * Find the operating frequencies of any of the virtual interfaces that
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005083 * are using the same radio as the current interface, and in addition, get
5084 * information about the interface types that are using the frequency.
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005085 */
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005086int get_shared_radio_freqs_data(struct wpa_supplicant *wpa_s,
5087 struct wpa_used_freq_data *freqs_data,
5088 unsigned int len)
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005089{
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005090 struct wpa_supplicant *ifs;
5091 u8 bssid[ETH_ALEN];
5092 int freq;
5093 unsigned int idx = 0, i;
5094
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08005095 wpa_dbg(wpa_s, MSG_DEBUG,
5096 "Determining shared radio frequencies (max len %u)", len);
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005097 os_memset(freqs_data, 0, sizeof(struct wpa_used_freq_data) * len);
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005098
Dmitry Shmidt01904cf2013-12-05 11:08:35 -08005099 dl_list_for_each(ifs, &wpa_s->radio->ifaces, struct wpa_supplicant,
5100 radio_list) {
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005101 if (idx == len)
5102 break;
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005103
5104 if (ifs->current_ssid == NULL || ifs->assoc_freq == 0)
5105 continue;
5106
5107 if (ifs->current_ssid->mode == WPAS_MODE_AP ||
5108 ifs->current_ssid->mode == WPAS_MODE_P2P_GO)
5109 freq = ifs->current_ssid->frequency;
5110 else if (wpa_drv_get_bssid(ifs, bssid) == 0)
5111 freq = ifs->assoc_freq;
5112 else
5113 continue;
5114
5115 /* Hold only distinct freqs */
5116 for (i = 0; i < idx; i++)
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005117 if (freqs_data[i].freq == freq)
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005118 break;
5119
5120 if (i == idx)
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005121 freqs_data[idx++].freq = freq;
5122
5123 if (ifs->current_ssid->mode == WPAS_MODE_INFRA) {
5124 freqs_data[i].flags = ifs->current_ssid->p2p_group ?
5125 WPA_FREQ_USED_BY_P2P_CLIENT :
5126 WPA_FREQ_USED_BY_INFRA_STATION;
5127 }
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005128 }
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08005129
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005130 dump_freq_data(wpa_s, "completed iteration", freqs_data, idx);
Dmitry Shmidtc2ebb4b2013-07-24 12:57:51 -07005131 return idx;
5132}
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005133
5134
5135/*
5136 * Find the operating frequencies of any of the virtual interfaces that
5137 * are using the same radio as the current interface.
5138 */
5139int get_shared_radio_freqs(struct wpa_supplicant *wpa_s,
5140 int *freq_array, unsigned int len)
5141{
5142 struct wpa_used_freq_data *freqs_data;
5143 int num, i;
5144
5145 os_memset(freq_array, 0, sizeof(int) * len);
5146
5147 freqs_data = os_calloc(len, sizeof(struct wpa_used_freq_data));
5148 if (!freqs_data)
5149 return -1;
5150
5151 num = get_shared_radio_freqs_data(wpa_s, freqs_data, len);
5152 for (i = 0; i < num; i++)
5153 freq_array[i] = freqs_data[i].freq;
5154
5155 os_free(freqs_data);
5156
5157 return num;
5158}
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005159
5160
5161static void wpas_rrm_neighbor_rep_timeout_handler(void *data, void *user_ctx)
5162{
5163 struct rrm_data *rrm = data;
5164
5165 if (!rrm->notify_neighbor_rep) {
5166 wpa_printf(MSG_ERROR,
5167 "RRM: Unexpected neighbor report timeout");
5168 return;
5169 }
5170
5171 wpa_printf(MSG_DEBUG, "RRM: Notifying neighbor report - NONE");
5172 rrm->notify_neighbor_rep(rrm->neighbor_rep_cb_ctx, NULL);
5173
5174 rrm->notify_neighbor_rep = NULL;
5175 rrm->neighbor_rep_cb_ctx = NULL;
5176}
5177
5178
5179/*
5180 * wpas_rrm_reset - Clear and reset all RRM data in wpa_supplicant
5181 * @wpa_s: Pointer to wpa_supplicant
5182 */
5183void wpas_rrm_reset(struct wpa_supplicant *wpa_s)
5184{
5185 wpa_s->rrm.rrm_used = 0;
5186
5187 eloop_cancel_timeout(wpas_rrm_neighbor_rep_timeout_handler, &wpa_s->rrm,
5188 NULL);
5189 if (wpa_s->rrm.notify_neighbor_rep)
5190 wpas_rrm_neighbor_rep_timeout_handler(&wpa_s->rrm, NULL);
5191 wpa_s->rrm.next_neighbor_rep_token = 1;
5192}
5193
5194
5195/*
5196 * wpas_rrm_process_neighbor_rep - Handle incoming neighbor report
5197 * @wpa_s: Pointer to wpa_supplicant
5198 * @report: Neighbor report buffer, prefixed by a 1-byte dialog token
5199 * @report_len: Length of neighbor report buffer
5200 */
5201void wpas_rrm_process_neighbor_rep(struct wpa_supplicant *wpa_s,
5202 const u8 *report, size_t report_len)
5203{
5204 struct wpabuf *neighbor_rep;
5205
5206 wpa_hexdump(MSG_DEBUG, "RRM: New Neighbor Report", report, report_len);
5207 if (report_len < 1)
5208 return;
5209
5210 if (report[0] != wpa_s->rrm.next_neighbor_rep_token - 1) {
5211 wpa_printf(MSG_DEBUG,
5212 "RRM: Discarding neighbor report with token %d (expected %d)",
5213 report[0], wpa_s->rrm.next_neighbor_rep_token - 1);
5214 return;
5215 }
5216
5217 eloop_cancel_timeout(wpas_rrm_neighbor_rep_timeout_handler, &wpa_s->rrm,
5218 NULL);
5219
5220 if (!wpa_s->rrm.notify_neighbor_rep) {
5221 wpa_printf(MSG_ERROR, "RRM: Unexpected neighbor report");
5222 return;
5223 }
5224
5225 /* skipping the first byte, which is only an id (dialog token) */
5226 neighbor_rep = wpabuf_alloc(report_len - 1);
5227 if (neighbor_rep == NULL)
5228 return;
5229 wpabuf_put_data(neighbor_rep, report + 1, report_len - 1);
5230 wpa_printf(MSG_DEBUG, "RRM: Notifying neighbor report (token = %d)",
5231 report[0]);
5232 wpa_s->rrm.notify_neighbor_rep(wpa_s->rrm.neighbor_rep_cb_ctx,
5233 neighbor_rep);
5234 wpa_s->rrm.notify_neighbor_rep = NULL;
5235 wpa_s->rrm.neighbor_rep_cb_ctx = NULL;
5236}
5237
5238
Dmitry Shmidtff787d52015-01-12 13:01:47 -08005239#if defined(__CYGWIN__) || defined(CONFIG_NATIVE_WINDOWS)
5240/* Workaround different, undefined for Windows, error codes used here */
5241#define ENOTCONN -1
5242#define EOPNOTSUPP -1
5243#define ECANCELED -1
5244#endif
5245
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005246/**
5247 * wpas_rrm_send_neighbor_rep_request - Request a neighbor report from our AP
5248 * @wpa_s: Pointer to wpa_supplicant
5249 * @ssid: if not null, this is sent in the request. Otherwise, no SSID IE
5250 * is sent in the request.
5251 * @cb: Callback function to be called once the requested report arrives, or
5252 * timed out after RRM_NEIGHBOR_REPORT_TIMEOUT seconds.
5253 * In the former case, 'neighbor_rep' is a newly allocated wpabuf, and it's
5254 * the requester's responsibility to free it.
5255 * In the latter case NULL will be sent in 'neighbor_rep'.
5256 * @cb_ctx: Context value to send the callback function
5257 * Returns: 0 in case of success, negative error code otherwise
5258 *
5259 * In case there is a previous request which has not been answered yet, the
5260 * new request fails. The caller may retry after RRM_NEIGHBOR_REPORT_TIMEOUT.
5261 * Request must contain a callback function.
5262 */
5263int wpas_rrm_send_neighbor_rep_request(struct wpa_supplicant *wpa_s,
5264 const struct wpa_ssid *ssid,
5265 void (*cb)(void *ctx,
5266 struct wpabuf *neighbor_rep),
5267 void *cb_ctx)
5268{
5269 struct wpabuf *buf;
5270 const u8 *rrm_ie;
5271
5272 if (wpa_s->wpa_state != WPA_COMPLETED || wpa_s->current_ssid == NULL) {
5273 wpa_printf(MSG_DEBUG, "RRM: No connection, no RRM.");
5274 return -ENOTCONN;
5275 }
5276
5277 if (!wpa_s->rrm.rrm_used) {
5278 wpa_printf(MSG_DEBUG, "RRM: No RRM in current connection.");
5279 return -EOPNOTSUPP;
5280 }
5281
5282 rrm_ie = wpa_bss_get_ie(wpa_s->current_bss,
5283 WLAN_EID_RRM_ENABLED_CAPABILITIES);
5284 if (!rrm_ie || !(wpa_s->current_bss->caps & IEEE80211_CAP_RRM) ||
5285 !(rrm_ie[2] & WLAN_RRM_CAPS_NEIGHBOR_REPORT)) {
5286 wpa_printf(MSG_DEBUG,
5287 "RRM: No network support for Neighbor Report.");
5288 return -EOPNOTSUPP;
5289 }
5290
5291 if (!cb) {
5292 wpa_printf(MSG_DEBUG,
5293 "RRM: Neighbor Report request must provide a callback.");
5294 return -EINVAL;
5295 }
5296
5297 /* Refuse if there's a live request */
5298 if (wpa_s->rrm.notify_neighbor_rep) {
5299 wpa_printf(MSG_DEBUG,
5300 "RRM: Currently handling previous Neighbor Report.");
5301 return -EBUSY;
5302 }
5303
5304 /* 3 = action category + action code + dialog token */
5305 buf = wpabuf_alloc(3 + (ssid ? 2 + ssid->ssid_len : 0));
5306 if (buf == NULL) {
5307 wpa_printf(MSG_DEBUG,
5308 "RRM: Failed to allocate Neighbor Report Request");
5309 return -ENOMEM;
5310 }
5311
5312 wpa_printf(MSG_DEBUG, "RRM: Neighbor report request (for %s), token=%d",
5313 (ssid ? wpa_ssid_txt(ssid->ssid, ssid->ssid_len) : ""),
5314 wpa_s->rrm.next_neighbor_rep_token);
5315
5316 wpabuf_put_u8(buf, WLAN_ACTION_RADIO_MEASUREMENT);
5317 wpabuf_put_u8(buf, WLAN_RRM_NEIGHBOR_REPORT_REQUEST);
5318 wpabuf_put_u8(buf, wpa_s->rrm.next_neighbor_rep_token);
5319 if (ssid) {
5320 wpabuf_put_u8(buf, WLAN_EID_SSID);
5321 wpabuf_put_u8(buf, ssid->ssid_len);
5322 wpabuf_put_data(buf, ssid->ssid, ssid->ssid_len);
5323 }
5324
5325 wpa_s->rrm.next_neighbor_rep_token++;
5326
5327 if (wpa_drv_send_action(wpa_s, wpa_s->assoc_freq, 0, wpa_s->bssid,
5328 wpa_s->own_addr, wpa_s->bssid,
5329 wpabuf_head(buf), wpabuf_len(buf), 0) < 0) {
5330 wpa_printf(MSG_DEBUG,
5331 "RRM: Failed to send Neighbor Report Request");
5332 wpabuf_free(buf);
5333 return -ECANCELED;
5334 }
5335
5336 wpa_s->rrm.neighbor_rep_cb_ctx = cb_ctx;
5337 wpa_s->rrm.notify_neighbor_rep = cb;
5338 eloop_register_timeout(RRM_NEIGHBOR_REPORT_TIMEOUT, 0,
5339 wpas_rrm_neighbor_rep_timeout_handler,
5340 &wpa_s->rrm, NULL);
5341
5342 wpabuf_free(buf);
5343 return 0;
5344}
5345
5346
5347void wpas_rrm_handle_link_measurement_request(struct wpa_supplicant *wpa_s,
5348 const u8 *src,
5349 const u8 *frame, size_t len,
5350 int rssi)
5351{
5352 struct wpabuf *buf;
5353 const struct rrm_link_measurement_request *req;
5354 struct rrm_link_measurement_report report;
5355
5356 if (wpa_s->wpa_state != WPA_COMPLETED) {
5357 wpa_printf(MSG_INFO,
5358 "RRM: Ignoring link measurement request. Not associated");
5359 return;
5360 }
5361
5362 if (!wpa_s->rrm.rrm_used) {
5363 wpa_printf(MSG_INFO,
5364 "RRM: Ignoring link measurement request. Not RRM network");
5365 return;
5366 }
5367
5368 if (!(wpa_s->drv_rrm_flags & WPA_DRIVER_FLAGS_TX_POWER_INSERTION)) {
5369 wpa_printf(MSG_INFO,
5370 "RRM: Measurement report failed. TX power insertion not supported");
5371 return;
5372 }
5373
5374 req = (const struct rrm_link_measurement_request *) frame;
5375 if (len < sizeof(*req)) {
5376 wpa_printf(MSG_INFO,
5377 "RRM: Link measurement report failed. Request too short");
5378 return;
5379 }
5380
5381 os_memset(&report, 0, sizeof(report));
5382 report.tpc.eid = WLAN_EID_TPC_REPORT;
5383 report.tpc.len = 2;
5384 report.rsni = 255; /* 255 indicates that RSNI is not available */
5385 report.dialog_token = req->dialog_token;
5386
5387 /*
5388 * It's possible to estimate RCPI based on RSSI in dBm. This
5389 * calculation will not reflect the correct value for high rates,
5390 * but it's good enough for Action frames which are transmitted
5391 * with up to 24 Mbps rates.
5392 */
5393 if (!rssi)
5394 report.rcpi = 255; /* not available */
5395 else if (rssi < -110)
5396 report.rcpi = 0;
5397 else if (rssi > 0)
5398 report.rcpi = 220;
5399 else
5400 report.rcpi = (rssi + 110) * 2;
5401
5402 /* action_category + action_code */
5403 buf = wpabuf_alloc(2 + sizeof(report));
5404 if (buf == NULL) {
5405 wpa_printf(MSG_ERROR,
5406 "RRM: Link measurement report failed. Buffer allocation failed");
5407 return;
5408 }
5409
5410 wpabuf_put_u8(buf, WLAN_ACTION_RADIO_MEASUREMENT);
5411 wpabuf_put_u8(buf, WLAN_RRM_LINK_MEASUREMENT_REPORT);
5412 wpabuf_put_data(buf, &report, sizeof(report));
5413 wpa_hexdump(MSG_DEBUG, "RRM: Link measurement report:",
5414 wpabuf_head(buf), wpabuf_len(buf));
5415
5416 if (wpa_drv_send_action(wpa_s, wpa_s->assoc_freq, 0, src,
5417 wpa_s->own_addr, wpa_s->bssid,
5418 wpabuf_head(buf), wpabuf_len(buf), 0)) {
5419 wpa_printf(MSG_ERROR,
5420 "RRM: Link measurement report failed. Send action failed");
5421 }
5422 wpabuf_free(buf);
5423}