blob: 2b1bdeb88f149a7e3f35f18aba0b68524bb50f54 [file] [log] [blame]
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001/*
2 * WPA Supplicant / Configuration parser and common functions
Hai Shalomc3565922019-10-28 11:58:20 -07003 * Copyright (c) 2003-2019, Jouni Malinen <j@w1.fi>
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004 *
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08005 * This software may be distributed under the terms of the BSD license.
6 * See README for more details.
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07007 */
8
9#include "includes.h"
10
11#include "common.h"
12#include "utils/uuid.h"
Dmitry Shmidtcf32e602014-01-28 10:57:39 -080013#include "utils/ip_addr.h"
Dmitry Shmidt29333592017-01-09 12:27:11 -080014#include "common/ieee802_1x_defs.h"
Hai Shalomc3565922019-10-28 11:58:20 -070015#include "common/sae.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070016#include "crypto/sha1.h"
17#include "rsn_supp/wpa.h"
18#include "eap_peer/eap.h"
Dmitry Shmidt04949592012-07-19 12:16:46 -070019#include "p2p/p2p.h"
Dmitry Shmidtd80a4012015-11-05 16:35:40 -080020#include "fst/fst.h"
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070021#include "config.h"
22
23
24#if !defined(CONFIG_CTRL_IFACE) && defined(CONFIG_NO_CONFIG_WRITE)
25#define NO_CONFIG_WRITE
26#endif
27
28/*
29 * Structure for network configuration parsing. This data is used to implement
30 * a generic parser for each network block variable. The table of configuration
31 * variables is defined below in this file (ssid_fields[]).
32 */
33struct parse_data {
34 /* Configuration variable name */
35 char *name;
36
Dmitry Shmidte4663042016-04-04 10:07:49 -070037 /* Parser function for this variable. The parser functions return 0 or 1
38 * to indicate success. Value 0 indicates that the parameter value may
39 * have changed while value 1 means that the value did not change.
40 * Error cases (failure to parse the string) are indicated by returning
41 * -1. */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070042 int (*parser)(const struct parse_data *data, struct wpa_ssid *ssid,
43 int line, const char *value);
44
45#ifndef NO_CONFIG_WRITE
46 /* Writer function (i.e., to get the variable in text format from
47 * internal presentation). */
48 char * (*writer)(const struct parse_data *data, struct wpa_ssid *ssid);
49#endif /* NO_CONFIG_WRITE */
50
51 /* Variable specific parameters for the parser. */
52 void *param1, *param2, *param3, *param4;
53
54 /* 0 = this variable can be included in debug output and ctrl_iface
55 * 1 = this variable contains key/private data and it must not be
56 * included in debug output unless explicitly requested. In
57 * addition, this variable will not be readable through the
58 * ctrl_iface.
59 */
60 int key_data;
61};
62
63
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070064static int wpa_config_parse_str(const struct parse_data *data,
65 struct wpa_ssid *ssid,
66 int line, const char *value)
67{
Dmitry Shmidte4663042016-04-04 10:07:49 -070068 size_t res_len, *dst_len, prev_len;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -070069 char **dst, *tmp;
70
71 if (os_strcmp(value, "NULL") == 0) {
72 wpa_printf(MSG_DEBUG, "Unset configuration string '%s'",
73 data->name);
74 tmp = NULL;
75 res_len = 0;
76 goto set;
77 }
78
79 tmp = wpa_config_parse_string(value, &res_len);
80 if (tmp == NULL) {
81 wpa_printf(MSG_ERROR, "Line %d: failed to parse %s '%s'.",
82 line, data->name,
83 data->key_data ? "[KEY DATA REMOVED]" : value);
84 return -1;
85 }
86
87 if (data->key_data) {
88 wpa_hexdump_ascii_key(MSG_MSGDUMP, data->name,
89 (u8 *) tmp, res_len);
90 } else {
91 wpa_hexdump_ascii(MSG_MSGDUMP, data->name,
92 (u8 *) tmp, res_len);
93 }
94
95 if (data->param3 && res_len < (size_t) data->param3) {
96 wpa_printf(MSG_ERROR, "Line %d: too short %s (len=%lu "
97 "min_len=%ld)", line, data->name,
98 (unsigned long) res_len, (long) data->param3);
99 os_free(tmp);
100 return -1;
101 }
102
103 if (data->param4 && res_len > (size_t) data->param4) {
104 wpa_printf(MSG_ERROR, "Line %d: too long %s (len=%lu "
105 "max_len=%ld)", line, data->name,
106 (unsigned long) res_len, (long) data->param4);
107 os_free(tmp);
108 return -1;
109 }
110
111set:
112 dst = (char **) (((u8 *) ssid) + (long) data->param1);
113 dst_len = (size_t *) (((u8 *) ssid) + (long) data->param2);
Dmitry Shmidte4663042016-04-04 10:07:49 -0700114
115 if (data->param2)
116 prev_len = *dst_len;
117 else if (*dst)
118 prev_len = os_strlen(*dst);
119 else
120 prev_len = 0;
121 if ((*dst == NULL && tmp == NULL) ||
122 (*dst && tmp && prev_len == res_len &&
123 os_memcmp(*dst, tmp, res_len) == 0)) {
124 /* No change to the previously configured value */
125 os_free(tmp);
126 return 1;
127 }
128
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700129 os_free(*dst);
130 *dst = tmp;
131 if (data->param2)
132 *dst_len = res_len;
133
134 return 0;
135}
136
137
138#ifndef NO_CONFIG_WRITE
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700139static char * wpa_config_write_string_ascii(const u8 *value, size_t len)
140{
141 char *buf;
142
143 buf = os_malloc(len + 3);
144 if (buf == NULL)
145 return NULL;
146 buf[0] = '"';
147 os_memcpy(buf + 1, value, len);
148 buf[len + 1] = '"';
149 buf[len + 2] = '\0';
150
151 return buf;
152}
153
154
155static char * wpa_config_write_string_hex(const u8 *value, size_t len)
156{
157 char *buf;
158
159 buf = os_zalloc(2 * len + 1);
160 if (buf == NULL)
161 return NULL;
162 wpa_snprintf_hex(buf, 2 * len + 1, value, len);
163
164 return buf;
165}
166
167
168static char * wpa_config_write_string(const u8 *value, size_t len)
169{
170 if (value == NULL)
171 return NULL;
172
173 if (is_hex(value, len))
174 return wpa_config_write_string_hex(value, len);
175 else
176 return wpa_config_write_string_ascii(value, len);
177}
178
179
180static char * wpa_config_write_str(const struct parse_data *data,
181 struct wpa_ssid *ssid)
182{
183 size_t len;
184 char **src;
185
186 src = (char **) (((u8 *) ssid) + (long) data->param1);
187 if (*src == NULL)
188 return NULL;
189
190 if (data->param2)
191 len = *((size_t *) (((u8 *) ssid) + (long) data->param2));
192 else
193 len = os_strlen(*src);
194
195 return wpa_config_write_string((const u8 *) *src, len);
196}
197#endif /* NO_CONFIG_WRITE */
198
199
200static int wpa_config_parse_int(const struct parse_data *data,
201 struct wpa_ssid *ssid,
202 int line, const char *value)
203{
Dmitry Shmidt2f023192013-03-12 12:44:17 -0700204 int val, *dst;
205 char *end;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700206
207 dst = (int *) (((u8 *) ssid) + (long) data->param1);
Dmitry Shmidt2f023192013-03-12 12:44:17 -0700208 val = strtol(value, &end, 0);
209 if (*end) {
210 wpa_printf(MSG_ERROR, "Line %d: invalid number \"%s\"",
211 line, value);
212 return -1;
213 }
Dmitry Shmidte4663042016-04-04 10:07:49 -0700214
215 if (*dst == val)
216 return 1;
Dmitry Shmidt2f023192013-03-12 12:44:17 -0700217 *dst = val;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700218 wpa_printf(MSG_MSGDUMP, "%s=%d (0x%x)", data->name, *dst, *dst);
219
220 if (data->param3 && *dst < (long) data->param3) {
221 wpa_printf(MSG_ERROR, "Line %d: too small %s (value=%d "
222 "min_value=%ld)", line, data->name, *dst,
223 (long) data->param3);
224 *dst = (long) data->param3;
225 return -1;
226 }
227
228 if (data->param4 && *dst > (long) data->param4) {
229 wpa_printf(MSG_ERROR, "Line %d: too large %s (value=%d "
230 "max_value=%ld)", line, data->name, *dst,
231 (long) data->param4);
232 *dst = (long) data->param4;
233 return -1;
234 }
235
236 return 0;
237}
238
239
240#ifndef NO_CONFIG_WRITE
241static char * wpa_config_write_int(const struct parse_data *data,
242 struct wpa_ssid *ssid)
243{
244 int *src, res;
245 char *value;
246
247 src = (int *) (((u8 *) ssid) + (long) data->param1);
248
249 value = os_malloc(20);
250 if (value == NULL)
251 return NULL;
252 res = os_snprintf(value, 20, "%d", *src);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800253 if (os_snprintf_error(20, res)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700254 os_free(value);
255 return NULL;
256 }
257 value[20 - 1] = '\0';
258 return value;
259}
260#endif /* NO_CONFIG_WRITE */
261
262
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800263static int wpa_config_parse_addr_list(const struct parse_data *data,
264 int line, const char *value,
265 u8 **list, size_t *num, char *name,
266 u8 abort_on_error, u8 masked)
267{
268 const char *pos;
269 u8 *buf, *n, addr[2 * ETH_ALEN];
270 size_t count;
271
272 buf = NULL;
273 count = 0;
274
275 pos = value;
276 while (pos && *pos) {
277 while (*pos == ' ')
278 pos++;
279
280 if (hwaddr_masked_aton(pos, addr, &addr[ETH_ALEN], masked)) {
281 if (abort_on_error || count == 0) {
282 wpa_printf(MSG_ERROR,
283 "Line %d: Invalid %s address '%s'",
284 line, name, value);
285 os_free(buf);
286 return -1;
287 }
288 /* continue anyway since this could have been from a
289 * truncated configuration file line */
290 wpa_printf(MSG_INFO,
291 "Line %d: Ignore likely truncated %s address '%s'",
292 line, name, pos);
293 } else {
294 n = os_realloc_array(buf, count + 1, 2 * ETH_ALEN);
295 if (n == NULL) {
296 os_free(buf);
297 return -1;
298 }
299 buf = n;
300 os_memmove(buf + 2 * ETH_ALEN, buf,
301 count * 2 * ETH_ALEN);
302 os_memcpy(buf, addr, 2 * ETH_ALEN);
303 count++;
304 wpa_printf(MSG_MSGDUMP,
305 "%s: addr=" MACSTR " mask=" MACSTR,
306 name, MAC2STR(addr),
307 MAC2STR(&addr[ETH_ALEN]));
308 }
309
310 pos = os_strchr(pos, ' ');
311 }
312
313 os_free(*list);
314 *list = buf;
315 *num = count;
316
317 return 0;
318}
319
320
321#ifndef NO_CONFIG_WRITE
322static char * wpa_config_write_addr_list(const struct parse_data *data,
323 const u8 *list, size_t num, char *name)
324{
325 char *value, *end, *pos;
326 int res;
327 size_t i;
328
329 if (list == NULL || num == 0)
330 return NULL;
331
332 value = os_malloc(2 * 20 * num);
333 if (value == NULL)
334 return NULL;
335 pos = value;
336 end = value + 2 * 20 * num;
337
338 for (i = num; i > 0; i--) {
339 const u8 *a = list + (i - 1) * 2 * ETH_ALEN;
340 const u8 *m = a + ETH_ALEN;
341
342 if (i < num)
343 *pos++ = ' ';
344 res = hwaddr_mask_txt(pos, end - pos, a, m);
345 if (res < 0) {
346 os_free(value);
347 return NULL;
348 }
349 pos += res;
350 }
351
352 return value;
353}
354#endif /* NO_CONFIG_WRITE */
355
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700356static int wpa_config_parse_bssid(const struct parse_data *data,
357 struct wpa_ssid *ssid, int line,
358 const char *value)
359{
360 if (value[0] == '\0' || os_strcmp(value, "\"\"") == 0 ||
361 os_strcmp(value, "any") == 0) {
362 ssid->bssid_set = 0;
363 wpa_printf(MSG_MSGDUMP, "BSSID any");
364 return 0;
365 }
366 if (hwaddr_aton(value, ssid->bssid)) {
367 wpa_printf(MSG_ERROR, "Line %d: Invalid BSSID '%s'.",
368 line, value);
369 return -1;
370 }
371 ssid->bssid_set = 1;
372 wpa_hexdump(MSG_MSGDUMP, "BSSID", ssid->bssid, ETH_ALEN);
373 return 0;
374}
375
376
377#ifndef NO_CONFIG_WRITE
378static char * wpa_config_write_bssid(const struct parse_data *data,
379 struct wpa_ssid *ssid)
380{
381 char *value;
382 int res;
383
384 if (!ssid->bssid_set)
385 return NULL;
386
387 value = os_malloc(20);
388 if (value == NULL)
389 return NULL;
390 res = os_snprintf(value, 20, MACSTR, MAC2STR(ssid->bssid));
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800391 if (os_snprintf_error(20, res)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700392 os_free(value);
393 return NULL;
394 }
395 value[20 - 1] = '\0';
396 return value;
397}
398#endif /* NO_CONFIG_WRITE */
399
400
Dmitry Shmidtd2986c22017-10-23 14:22:09 -0700401static int wpa_config_parse_bssid_hint(const struct parse_data *data,
402 struct wpa_ssid *ssid, int line,
403 const char *value)
404{
405 if (value[0] == '\0' || os_strcmp(value, "\"\"") == 0 ||
406 os_strcmp(value, "any") == 0) {
407 ssid->bssid_hint_set = 0;
408 wpa_printf(MSG_MSGDUMP, "BSSID hint any");
409 return 0;
410 }
411 if (hwaddr_aton(value, ssid->bssid_hint)) {
412 wpa_printf(MSG_ERROR, "Line %d: Invalid BSSID hint '%s'.",
413 line, value);
414 return -1;
415 }
416 ssid->bssid_hint_set = 1;
417 wpa_hexdump(MSG_MSGDUMP, "BSSID hint", ssid->bssid_hint, ETH_ALEN);
418 return 0;
419}
420
421
422#ifndef NO_CONFIG_WRITE
423static char * wpa_config_write_bssid_hint(const struct parse_data *data,
424 struct wpa_ssid *ssid)
425{
426 char *value;
427 int res;
428
429 if (!ssid->bssid_hint_set)
430 return NULL;
431
432 value = os_malloc(20);
433 if (!value)
434 return NULL;
435 res = os_snprintf(value, 20, MACSTR, MAC2STR(ssid->bssid_hint));
436 if (os_snprintf_error(20, res)) {
437 os_free(value);
438 return NULL;
439 }
440 return value;
441}
442#endif /* NO_CONFIG_WRITE */
443
444
Hai Shalom60840252021-02-19 19:02:11 -0800445static int wpa_config_parse_bssid_ignore(const struct parse_data *data,
446 struct wpa_ssid *ssid, int line,
447 const char *value)
448{
449 return wpa_config_parse_addr_list(data, line, value,
450 &ssid->bssid_ignore,
451 &ssid->num_bssid_ignore,
452 "bssid_ignore", 1, 1);
453}
454
455
456/* deprecated alias for bssid_ignore for backwards compatibility */
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800457static int wpa_config_parse_bssid_blacklist(const struct parse_data *data,
458 struct wpa_ssid *ssid, int line,
459 const char *value)
460{
461 return wpa_config_parse_addr_list(data, line, value,
Hai Shalom60840252021-02-19 19:02:11 -0800462 &ssid->bssid_ignore,
463 &ssid->num_bssid_ignore,
464 "bssid_ignore", 1, 1);
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800465}
466
467
468#ifndef NO_CONFIG_WRITE
Hai Shalom60840252021-02-19 19:02:11 -0800469
470static char * wpa_config_write_bssid_ignore(const struct parse_data *data,
471 struct wpa_ssid *ssid)
472{
473 return wpa_config_write_addr_list(data, ssid->bssid_ignore,
474 ssid->num_bssid_ignore,
475 "bssid_ignore");
476}
477
478
479/* deprecated alias for bssid_ignore for backwards compatibility */
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800480static char * wpa_config_write_bssid_blacklist(const struct parse_data *data,
481 struct wpa_ssid *ssid)
482{
Hai Shalom60840252021-02-19 19:02:11 -0800483 return wpa_config_write_addr_list(data, ssid->bssid_ignore,
484 ssid->num_bssid_ignore,
485 "bssid_ignore");
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800486}
Hai Shalom60840252021-02-19 19:02:11 -0800487
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800488#endif /* NO_CONFIG_WRITE */
489
490
Hai Shalom60840252021-02-19 19:02:11 -0800491static int wpa_config_parse_bssid_accept(const struct parse_data *data,
492 struct wpa_ssid *ssid, int line,
493 const char *value)
494{
495 return wpa_config_parse_addr_list(data, line, value,
496 &ssid->bssid_accept,
497 &ssid->num_bssid_accept,
498 "bssid_accept", 1, 1);
499}
500
501
502/* deprecated alias for bssid_accept for backwards compatibility */
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800503static int wpa_config_parse_bssid_whitelist(const struct parse_data *data,
504 struct wpa_ssid *ssid, int line,
505 const char *value)
506{
507 return wpa_config_parse_addr_list(data, line, value,
Hai Shalom60840252021-02-19 19:02:11 -0800508 &ssid->bssid_accept,
509 &ssid->num_bssid_accept,
510 "bssid_accept", 1, 1);
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800511}
512
513
514#ifndef NO_CONFIG_WRITE
Hai Shalom60840252021-02-19 19:02:11 -0800515
516static char * wpa_config_write_bssid_accept(const struct parse_data *data,
517 struct wpa_ssid *ssid)
518{
519 return wpa_config_write_addr_list(data, ssid->bssid_accept,
520 ssid->num_bssid_accept,
521 "bssid_accept");
522}
523
524
525/* deprecated alias for bssid_accept for backwards compatibility */
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800526static char * wpa_config_write_bssid_whitelist(const struct parse_data *data,
527 struct wpa_ssid *ssid)
528{
Hai Shalom60840252021-02-19 19:02:11 -0800529 return wpa_config_write_addr_list(data, ssid->bssid_accept,
530 ssid->num_bssid_accept,
531 "bssid_accept");
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800532}
Hai Shalom60840252021-02-19 19:02:11 -0800533
534#endif /* NO_CONFIG_WRITE */
535
536
537#ifndef NO_CONFIG_WRITE
Dmitry Shmidtff787d52015-01-12 13:01:47 -0800538#endif /* NO_CONFIG_WRITE */
539
540
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700541static int wpa_config_parse_psk(const struct parse_data *data,
542 struct wpa_ssid *ssid, int line,
543 const char *value)
544{
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700545#ifdef CONFIG_EXT_PASSWORD
546 if (os_strncmp(value, "ext:", 4) == 0) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700547 str_clear_free(ssid->passphrase);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700548 ssid->passphrase = NULL;
549 ssid->psk_set = 0;
550 os_free(ssid->ext_psk);
551 ssid->ext_psk = os_strdup(value + 4);
552 if (ssid->ext_psk == NULL)
553 return -1;
554 wpa_printf(MSG_DEBUG, "PSK: External password '%s'",
555 ssid->ext_psk);
556 return 0;
557 }
558#endif /* CONFIG_EXT_PASSWORD */
559
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700560 if (*value == '"') {
561#ifndef CONFIG_NO_PBKDF2
562 const char *pos;
563 size_t len;
564
565 value++;
566 pos = os_strrchr(value, '"');
567 if (pos)
568 len = pos - value;
569 else
570 len = os_strlen(value);
571 if (len < 8 || len > 63) {
572 wpa_printf(MSG_ERROR, "Line %d: Invalid passphrase "
573 "length %lu (expected: 8..63) '%s'.",
574 line, (unsigned long) len, value);
575 return -1;
576 }
577 wpa_hexdump_ascii_key(MSG_MSGDUMP, "PSK (ASCII passphrase)",
578 (u8 *) value, len);
Dmitry Shmidt849734c2016-05-27 09:59:01 -0700579 if (has_ctrl_char((u8 *) value, len)) {
580 wpa_printf(MSG_ERROR,
581 "Line %d: Invalid passphrase character",
582 line);
583 return -1;
584 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700585 if (ssid->passphrase && os_strlen(ssid->passphrase) == len &&
Dmitry Shmidte4663042016-04-04 10:07:49 -0700586 os_memcmp(ssid->passphrase, value, len) == 0) {
587 /* No change to the previously configured value */
588 return 1;
589 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700590 ssid->psk_set = 0;
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700591 str_clear_free(ssid->passphrase);
Dmitry Shmidt4b060592013-04-29 16:42:49 -0700592 ssid->passphrase = dup_binstr(value, len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700593 if (ssid->passphrase == NULL)
594 return -1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700595 return 0;
596#else /* CONFIG_NO_PBKDF2 */
597 wpa_printf(MSG_ERROR, "Line %d: ASCII passphrase not "
598 "supported.", line);
599 return -1;
600#endif /* CONFIG_NO_PBKDF2 */
601 }
602
603 if (hexstr2bin(value, ssid->psk, PMK_LEN) ||
604 value[PMK_LEN * 2] != '\0') {
605 wpa_printf(MSG_ERROR, "Line %d: Invalid PSK '%s'.",
606 line, value);
607 return -1;
608 }
609
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700610 str_clear_free(ssid->passphrase);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700611 ssid->passphrase = NULL;
612
613 ssid->psk_set = 1;
614 wpa_hexdump_key(MSG_MSGDUMP, "PSK", ssid->psk, PMK_LEN);
615 return 0;
616}
617
618
619#ifndef NO_CONFIG_WRITE
620static char * wpa_config_write_psk(const struct parse_data *data,
621 struct wpa_ssid *ssid)
622{
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700623#ifdef CONFIG_EXT_PASSWORD
624 if (ssid->ext_psk) {
625 size_t len = 4 + os_strlen(ssid->ext_psk) + 1;
626 char *buf = os_malloc(len);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800627 int res;
628
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700629 if (buf == NULL)
630 return NULL;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800631 res = os_snprintf(buf, len, "ext:%s", ssid->ext_psk);
632 if (os_snprintf_error(len, res)) {
633 os_free(buf);
634 buf = NULL;
635 }
Dmitry Shmidt61d9df32012-08-29 16:22:06 -0700636 return buf;
637 }
638#endif /* CONFIG_EXT_PASSWORD */
639
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700640 if (ssid->passphrase)
641 return wpa_config_write_string_ascii(
642 (const u8 *) ssid->passphrase,
643 os_strlen(ssid->passphrase));
644
645 if (ssid->psk_set)
646 return wpa_config_write_string_hex(ssid->psk, PMK_LEN);
647
648 return NULL;
649}
650#endif /* NO_CONFIG_WRITE */
651
652
653static int wpa_config_parse_proto(const struct parse_data *data,
654 struct wpa_ssid *ssid, int line,
655 const char *value)
656{
657 int val = 0, last, errors = 0;
658 char *start, *end, *buf;
659
660 buf = os_strdup(value);
661 if (buf == NULL)
662 return -1;
663 start = buf;
664
665 while (*start != '\0') {
666 while (*start == ' ' || *start == '\t')
667 start++;
668 if (*start == '\0')
669 break;
670 end = start;
671 while (*end != ' ' && *end != '\t' && *end != '\0')
672 end++;
673 last = *end == '\0';
674 *end = '\0';
675 if (os_strcmp(start, "WPA") == 0)
676 val |= WPA_PROTO_WPA;
677 else if (os_strcmp(start, "RSN") == 0 ||
678 os_strcmp(start, "WPA2") == 0)
679 val |= WPA_PROTO_RSN;
Dmitry Shmidtf21452a2014-02-26 10:55:25 -0800680 else if (os_strcmp(start, "OSEN") == 0)
681 val |= WPA_PROTO_OSEN;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700682 else {
683 wpa_printf(MSG_ERROR, "Line %d: invalid proto '%s'",
684 line, start);
685 errors++;
686 }
687
688 if (last)
689 break;
690 start = end + 1;
691 }
692 os_free(buf);
693
694 if (val == 0) {
695 wpa_printf(MSG_ERROR,
696 "Line %d: no proto values configured.", line);
697 errors++;
698 }
699
Dmitry Shmidte4663042016-04-04 10:07:49 -0700700 if (!errors && ssid->proto == val)
701 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700702 wpa_printf(MSG_MSGDUMP, "proto: 0x%x", val);
703 ssid->proto = val;
704 return errors ? -1 : 0;
705}
706
707
708#ifndef NO_CONFIG_WRITE
709static char * wpa_config_write_proto(const struct parse_data *data,
710 struct wpa_ssid *ssid)
711{
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700712 int ret;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700713 char *buf, *pos, *end;
714
Dmitry Shmidt7d5c8f22014-03-03 13:53:28 -0800715 pos = buf = os_zalloc(20);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700716 if (buf == NULL)
717 return NULL;
Dmitry Shmidt7d5c8f22014-03-03 13:53:28 -0800718 end = buf + 20;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700719
720 if (ssid->proto & WPA_PROTO_WPA) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700721 ret = os_snprintf(pos, end - pos, "%sWPA",
722 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800723 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700724 return buf;
725 pos += ret;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700726 }
727
728 if (ssid->proto & WPA_PROTO_RSN) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700729 ret = os_snprintf(pos, end - pos, "%sRSN",
730 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800731 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700732 return buf;
733 pos += ret;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700734 }
735
Dmitry Shmidt7d5c8f22014-03-03 13:53:28 -0800736 if (ssid->proto & WPA_PROTO_OSEN) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700737 ret = os_snprintf(pos, end - pos, "%sOSEN",
738 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800739 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt7d5c8f22014-03-03 13:53:28 -0800740 return buf;
741 pos += ret;
Dmitry Shmidtc2817022014-07-02 10:32:10 -0700742 }
743
744 if (pos == buf) {
745 os_free(buf);
746 buf = NULL;
Dmitry Shmidt7d5c8f22014-03-03 13:53:28 -0800747 }
748
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700749 return buf;
750}
751#endif /* NO_CONFIG_WRITE */
752
753
754static int wpa_config_parse_key_mgmt(const struct parse_data *data,
755 struct wpa_ssid *ssid, int line,
756 const char *value)
757{
758 int val = 0, last, errors = 0;
759 char *start, *end, *buf;
760
761 buf = os_strdup(value);
762 if (buf == NULL)
763 return -1;
764 start = buf;
765
766 while (*start != '\0') {
767 while (*start == ' ' || *start == '\t')
768 start++;
769 if (*start == '\0')
770 break;
771 end = start;
772 while (*end != ' ' && *end != '\t' && *end != '\0')
773 end++;
774 last = *end == '\0';
775 *end = '\0';
776 if (os_strcmp(start, "WPA-PSK") == 0)
777 val |= WPA_KEY_MGMT_PSK;
778 else if (os_strcmp(start, "WPA-EAP") == 0)
779 val |= WPA_KEY_MGMT_IEEE8021X;
780 else if (os_strcmp(start, "IEEE8021X") == 0)
781 val |= WPA_KEY_MGMT_IEEE8021X_NO_WPA;
782 else if (os_strcmp(start, "NONE") == 0)
783 val |= WPA_KEY_MGMT_NONE;
784 else if (os_strcmp(start, "WPA-NONE") == 0)
785 val |= WPA_KEY_MGMT_WPA_NONE;
786#ifdef CONFIG_IEEE80211R
787 else if (os_strcmp(start, "FT-PSK") == 0)
788 val |= WPA_KEY_MGMT_FT_PSK;
789 else if (os_strcmp(start, "FT-EAP") == 0)
790 val |= WPA_KEY_MGMT_FT_IEEE8021X;
Roshan Pius3a1667e2018-07-03 15:17:14 -0700791#ifdef CONFIG_SHA384
792 else if (os_strcmp(start, "FT-EAP-SHA384") == 0)
793 val |= WPA_KEY_MGMT_FT_IEEE8021X_SHA384;
794#endif /* CONFIG_SHA384 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700795#endif /* CONFIG_IEEE80211R */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700796 else if (os_strcmp(start, "WPA-PSK-SHA256") == 0)
797 val |= WPA_KEY_MGMT_PSK_SHA256;
798 else if (os_strcmp(start, "WPA-EAP-SHA256") == 0)
799 val |= WPA_KEY_MGMT_IEEE8021X_SHA256;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700800#ifdef CONFIG_WPS
801 else if (os_strcmp(start, "WPS") == 0)
802 val |= WPA_KEY_MGMT_WPS;
803#endif /* CONFIG_WPS */
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800804#ifdef CONFIG_SAE
805 else if (os_strcmp(start, "SAE") == 0)
806 val |= WPA_KEY_MGMT_SAE;
Sunil Ravi89eba102022-09-13 21:04:37 -0700807 else if (os_strcmp(start, "SAE-EXT-KEY") == 0)
808 val |= WPA_KEY_MGMT_SAE_EXT_KEY;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800809 else if (os_strcmp(start, "FT-SAE") == 0)
810 val |= WPA_KEY_MGMT_FT_SAE;
Sunil Ravi89eba102022-09-13 21:04:37 -0700811 else if (os_strcmp(start, "FT-SAE-EXT-KEY") == 0)
812 val |= WPA_KEY_MGMT_FT_SAE_EXT_KEY;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -0800813#endif /* CONFIG_SAE */
Dmitry Shmidtf21452a2014-02-26 10:55:25 -0800814#ifdef CONFIG_HS20
815 else if (os_strcmp(start, "OSEN") == 0)
816 val |= WPA_KEY_MGMT_OSEN;
817#endif /* CONFIG_HS20 */
Dmitry Shmidt807291d2015-01-27 13:40:23 -0800818#ifdef CONFIG_SUITEB
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800819 else if (os_strcmp(start, "WPA-EAP-SUITE-B") == 0)
820 val |= WPA_KEY_MGMT_IEEE8021X_SUITE_B;
Dmitry Shmidt807291d2015-01-27 13:40:23 -0800821#endif /* CONFIG_SUITEB */
822#ifdef CONFIG_SUITEB192
823 else if (os_strcmp(start, "WPA-EAP-SUITE-B-192") == 0)
824 val |= WPA_KEY_MGMT_IEEE8021X_SUITE_B_192;
825#endif /* CONFIG_SUITEB192 */
Dmitry Shmidt9839ecd2016-11-07 11:05:47 -0800826#ifdef CONFIG_FILS
827 else if (os_strcmp(start, "FILS-SHA256") == 0)
828 val |= WPA_KEY_MGMT_FILS_SHA256;
829 else if (os_strcmp(start, "FILS-SHA384") == 0)
830 val |= WPA_KEY_MGMT_FILS_SHA384;
831#ifdef CONFIG_IEEE80211R
832 else if (os_strcmp(start, "FT-FILS-SHA256") == 0)
833 val |= WPA_KEY_MGMT_FT_FILS_SHA256;
834 else if (os_strcmp(start, "FT-FILS-SHA384") == 0)
835 val |= WPA_KEY_MGMT_FT_FILS_SHA384;
836#endif /* CONFIG_IEEE80211R */
837#endif /* CONFIG_FILS */
Dmitry Shmidtd2986c22017-10-23 14:22:09 -0700838#ifdef CONFIG_OWE
839 else if (os_strcmp(start, "OWE") == 0)
840 val |= WPA_KEY_MGMT_OWE;
841#endif /* CONFIG_OWE */
842#ifdef CONFIG_DPP
843 else if (os_strcmp(start, "DPP") == 0)
844 val |= WPA_KEY_MGMT_DPP;
845#endif /* CONFIG_DPP */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700846 else {
847 wpa_printf(MSG_ERROR, "Line %d: invalid key_mgmt '%s'",
848 line, start);
849 errors++;
850 }
851
852 if (last)
853 break;
854 start = end + 1;
855 }
856 os_free(buf);
857
858 if (val == 0) {
859 wpa_printf(MSG_ERROR,
860 "Line %d: no key_mgmt values configured.", line);
861 errors++;
862 }
863
Dmitry Shmidte4663042016-04-04 10:07:49 -0700864 if (!errors && ssid->key_mgmt == val)
865 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700866 wpa_printf(MSG_MSGDUMP, "key_mgmt: 0x%x", val);
867 ssid->key_mgmt = val;
868 return errors ? -1 : 0;
869}
870
871
872#ifndef NO_CONFIG_WRITE
873static char * wpa_config_write_key_mgmt(const struct parse_data *data,
874 struct wpa_ssid *ssid)
875{
876 char *buf, *pos, *end;
877 int ret;
878
Dmitry Shmidt96571392013-10-14 12:54:46 -0700879 pos = buf = os_zalloc(100);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700880 if (buf == NULL)
881 return NULL;
Dmitry Shmidt96571392013-10-14 12:54:46 -0700882 end = buf + 100;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700883
884 if (ssid->key_mgmt & WPA_KEY_MGMT_PSK) {
885 ret = os_snprintf(pos, end - pos, "%sWPA-PSK",
886 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800887 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700888 end[-1] = '\0';
889 return buf;
890 }
891 pos += ret;
892 }
893
894 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X) {
895 ret = os_snprintf(pos, end - pos, "%sWPA-EAP",
896 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800897 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700898 end[-1] = '\0';
899 return buf;
900 }
901 pos += ret;
902 }
903
904 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_NO_WPA) {
905 ret = os_snprintf(pos, end - pos, "%sIEEE8021X",
906 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800907 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700908 end[-1] = '\0';
909 return buf;
910 }
911 pos += ret;
912 }
913
914 if (ssid->key_mgmt & WPA_KEY_MGMT_NONE) {
915 ret = os_snprintf(pos, end - pos, "%sNONE",
916 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800917 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700918 end[-1] = '\0';
919 return buf;
920 }
921 pos += ret;
922 }
923
924 if (ssid->key_mgmt & WPA_KEY_MGMT_WPA_NONE) {
925 ret = os_snprintf(pos, end - pos, "%sWPA-NONE",
926 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800927 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700928 end[-1] = '\0';
929 return buf;
930 }
931 pos += ret;
932 }
933
934#ifdef CONFIG_IEEE80211R
Dmitry Shmidt96571392013-10-14 12:54:46 -0700935 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_PSK) {
936 ret = os_snprintf(pos, end - pos, "%sFT-PSK",
937 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800938 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt96571392013-10-14 12:54:46 -0700939 end[-1] = '\0';
940 return buf;
941 }
942 pos += ret;
943 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700944
Dmitry Shmidt96571392013-10-14 12:54:46 -0700945 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_IEEE8021X) {
946 ret = os_snprintf(pos, end - pos, "%sFT-EAP",
947 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800948 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt96571392013-10-14 12:54:46 -0700949 end[-1] = '\0';
950 return buf;
951 }
952 pos += ret;
953 }
Roshan Pius3a1667e2018-07-03 15:17:14 -0700954
955#ifdef CONFIG_SHA384
956 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_IEEE8021X_SHA384) {
957 ret = os_snprintf(pos, end - pos, "%sFT-EAP-SHA384",
958 pos == buf ? "" : " ");
959 if (os_snprintf_error(end - pos, ret)) {
960 end[-1] = '\0';
961 return buf;
962 }
963 pos += ret;
964 }
965#endif /* CONFIG_SHA384 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700966#endif /* CONFIG_IEEE80211R */
967
Dmitry Shmidt96571392013-10-14 12:54:46 -0700968 if (ssid->key_mgmt & WPA_KEY_MGMT_PSK_SHA256) {
969 ret = os_snprintf(pos, end - pos, "%sWPA-PSK-SHA256",
970 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800971 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt96571392013-10-14 12:54:46 -0700972 end[-1] = '\0';
973 return buf;
974 }
975 pos += ret;
976 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700977
Dmitry Shmidt96571392013-10-14 12:54:46 -0700978 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_SHA256) {
979 ret = os_snprintf(pos, end - pos, "%sWPA-EAP-SHA256",
980 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800981 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt96571392013-10-14 12:54:46 -0700982 end[-1] = '\0';
983 return buf;
984 }
985 pos += ret;
986 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700987
988#ifdef CONFIG_WPS
Dmitry Shmidt96571392013-10-14 12:54:46 -0700989 if (ssid->key_mgmt & WPA_KEY_MGMT_WPS) {
990 ret = os_snprintf(pos, end - pos, "%sWPS",
991 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -0800992 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt96571392013-10-14 12:54:46 -0700993 end[-1] = '\0';
994 return buf;
995 }
996 pos += ret;
997 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -0700998#endif /* CONFIG_WPS */
999
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001000#ifdef CONFIG_SAE
1001 if (ssid->key_mgmt & WPA_KEY_MGMT_SAE) {
1002 ret = os_snprintf(pos, end - pos, "%sSAE",
1003 pos == buf ? "" : " ");
1004 if (os_snprintf_error(end - pos, ret)) {
1005 end[-1] = '\0';
1006 return buf;
1007 }
1008 pos += ret;
1009 }
1010
Sunil Ravi89eba102022-09-13 21:04:37 -07001011 if (ssid->key_mgmt & WPA_KEY_MGMT_SAE_EXT_KEY) {
1012 ret = os_snprintf(pos, end - pos, "%sSAE-EXT-KEY",
1013 pos == buf ? "" : " ");
1014 if (os_snprintf_error(end - pos, ret)) {
1015 end[-1] = '\0';
1016 return buf;
1017 }
1018 pos += ret;
1019 }
1020
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001021 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_SAE) {
1022 ret = os_snprintf(pos, end - pos, "%sFT-SAE",
1023 pos == buf ? "" : " ");
1024 if (os_snprintf_error(end - pos, ret)) {
1025 end[-1] = '\0';
1026 return buf;
1027 }
1028 pos += ret;
1029 }
Sunil Ravi89eba102022-09-13 21:04:37 -07001030
1031 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_SAE_EXT_KEY) {
1032 ret = os_snprintf(pos, end - pos, "%sFT-SAE-EXT-KEY",
1033 pos == buf ? "" : " ");
1034 if (os_snprintf_error(end - pos, ret)) {
1035 end[-1] = '\0';
1036 return buf;
1037 }
1038 pos += ret;
1039 }
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001040#endif /* CONFIG_SAE */
1041
1042#ifdef CONFIG_HS20
1043 if (ssid->key_mgmt & WPA_KEY_MGMT_OSEN) {
1044 ret = os_snprintf(pos, end - pos, "%sOSEN",
1045 pos == buf ? "" : " ");
1046 if (os_snprintf_error(end - pos, ret)) {
1047 end[-1] = '\0';
1048 return buf;
1049 }
1050 pos += ret;
1051 }
1052#endif /* CONFIG_HS20 */
1053
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001054#ifdef CONFIG_SUITEB
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001055 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_SUITE_B) {
1056 ret = os_snprintf(pos, end - pos, "%sWPA-EAP-SUITE-B",
1057 pos == buf ? "" : " ");
1058 if (os_snprintf_error(end - pos, ret)) {
1059 end[-1] = '\0';
1060 return buf;
1061 }
1062 pos += ret;
1063 }
Dmitry Shmidt807291d2015-01-27 13:40:23 -08001064#endif /* CONFIG_SUITEB */
1065
1066#ifdef CONFIG_SUITEB192
1067 if (ssid->key_mgmt & WPA_KEY_MGMT_IEEE8021X_SUITE_B_192) {
1068 ret = os_snprintf(pos, end - pos, "%sWPA-EAP-SUITE-B-192",
1069 pos == buf ? "" : " ");
1070 if (os_snprintf_error(end - pos, ret)) {
1071 end[-1] = '\0';
1072 return buf;
1073 }
1074 pos += ret;
1075 }
1076#endif /* CONFIG_SUITEB192 */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001077
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07001078#ifdef CONFIG_FILS
1079 if (ssid->key_mgmt & WPA_KEY_MGMT_FILS_SHA256) {
1080 ret = os_snprintf(pos, end - pos, "%sFILS-SHA256",
1081 pos == buf ? "" : " ");
1082 if (os_snprintf_error(end - pos, ret)) {
1083 end[-1] = '\0';
1084 return buf;
1085 }
1086 pos += ret;
1087 }
1088 if (ssid->key_mgmt & WPA_KEY_MGMT_FILS_SHA384) {
1089 ret = os_snprintf(pos, end - pos, "%sFILS-SHA384",
1090 pos == buf ? "" : " ");
1091 if (os_snprintf_error(end - pos, ret)) {
1092 end[-1] = '\0';
1093 return buf;
1094 }
1095 pos += ret;
1096 }
1097#ifdef CONFIG_IEEE80211R
1098 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_FILS_SHA256) {
1099 ret = os_snprintf(pos, end - pos, "%sFT-FILS-SHA256",
1100 pos == buf ? "" : " ");
1101 if (os_snprintf_error(end - pos, ret)) {
1102 end[-1] = '\0';
1103 return buf;
1104 }
1105 pos += ret;
1106 }
1107 if (ssid->key_mgmt & WPA_KEY_MGMT_FT_FILS_SHA384) {
1108 ret = os_snprintf(pos, end - pos, "%sFT-FILS-SHA384",
1109 pos == buf ? "" : " ");
1110 if (os_snprintf_error(end - pos, ret)) {
1111 end[-1] = '\0';
1112 return buf;
1113 }
1114 pos += ret;
1115 }
1116#endif /* CONFIG_IEEE80211R */
1117#endif /* CONFIG_FILS */
1118
Hai Shalom74f70d42019-02-11 14:42:39 -08001119#ifdef CONFIG_DPP
1120 if (ssid->key_mgmt & WPA_KEY_MGMT_DPP) {
1121 ret = os_snprintf(pos, end - pos, "%sDPP",
1122 pos == buf ? "" : " ");
1123 if (os_snprintf_error(end - pos, ret)) {
1124 end[-1] = '\0';
1125 return buf;
1126 }
1127 pos += ret;
1128 }
1129#endif /* CONFIG_DPP */
1130
1131#ifdef CONFIG_OWE
1132 if (ssid->key_mgmt & WPA_KEY_MGMT_OWE) {
1133 ret = os_snprintf(pos, end - pos, "%sOWE",
1134 pos == buf ? "" : " ");
1135 if (os_snprintf_error(end - pos, ret)) {
1136 end[-1] = '\0';
1137 return buf;
1138 }
1139 pos += ret;
1140 }
1141#endif /* CONFIG_OWE */
1142
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001143 if (pos == buf) {
1144 os_free(buf);
1145 buf = NULL;
1146 }
1147
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001148 return buf;
1149}
1150#endif /* NO_CONFIG_WRITE */
1151
1152
1153static int wpa_config_parse_cipher(int line, const char *value)
1154{
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08001155#ifdef CONFIG_NO_WPA
1156 return -1;
1157#else /* CONFIG_NO_WPA */
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001158 int val = wpa_parse_cipher(value);
1159 if (val < 0) {
1160 wpa_printf(MSG_ERROR, "Line %d: invalid cipher '%s'.",
1161 line, value);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001162 return -1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001163 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001164 if (val == 0) {
1165 wpa_printf(MSG_ERROR, "Line %d: no cipher values configured.",
1166 line);
1167 return -1;
1168 }
1169 return val;
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08001170#endif /* CONFIG_NO_WPA */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001171}
1172
1173
1174#ifndef NO_CONFIG_WRITE
1175static char * wpa_config_write_cipher(int cipher)
1176{
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08001177#ifdef CONFIG_NO_WPA
1178 return NULL;
1179#else /* CONFIG_NO_WPA */
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001180 char *buf = os_zalloc(50);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001181 if (buf == NULL)
1182 return NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001183
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001184 if (wpa_write_ciphers(buf, buf + 50, cipher, " ") < 0) {
1185 os_free(buf);
1186 return NULL;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001187 }
1188
1189 return buf;
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08001190#endif /* CONFIG_NO_WPA */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001191}
1192#endif /* NO_CONFIG_WRITE */
1193
1194
1195static int wpa_config_parse_pairwise(const struct parse_data *data,
1196 struct wpa_ssid *ssid, int line,
1197 const char *value)
1198{
1199 int val;
1200 val = wpa_config_parse_cipher(line, value);
1201 if (val == -1)
1202 return -1;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001203 if (val & ~WPA_ALLOWED_PAIRWISE_CIPHERS) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001204 wpa_printf(MSG_ERROR, "Line %d: not allowed pairwise cipher "
1205 "(0x%x).", line, val);
1206 return -1;
1207 }
1208
Dmitry Shmidte4663042016-04-04 10:07:49 -07001209 if (ssid->pairwise_cipher == val)
1210 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001211 wpa_printf(MSG_MSGDUMP, "pairwise: 0x%x", val);
1212 ssid->pairwise_cipher = val;
1213 return 0;
1214}
1215
1216
1217#ifndef NO_CONFIG_WRITE
1218static char * wpa_config_write_pairwise(const struct parse_data *data,
1219 struct wpa_ssid *ssid)
1220{
1221 return wpa_config_write_cipher(ssid->pairwise_cipher);
1222}
1223#endif /* NO_CONFIG_WRITE */
1224
1225
1226static int wpa_config_parse_group(const struct parse_data *data,
1227 struct wpa_ssid *ssid, int line,
1228 const char *value)
1229{
1230 int val;
1231 val = wpa_config_parse_cipher(line, value);
1232 if (val == -1)
1233 return -1;
Dmitry Shmidt41712582015-06-29 11:02:15 -07001234
1235 /*
1236 * Backwards compatibility - filter out WEP ciphers that were previously
1237 * allowed.
1238 */
1239 val &= ~(WPA_CIPHER_WEP104 | WPA_CIPHER_WEP40);
1240
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001241 if (val & ~WPA_ALLOWED_GROUP_CIPHERS) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001242 wpa_printf(MSG_ERROR, "Line %d: not allowed group cipher "
1243 "(0x%x).", line, val);
1244 return -1;
1245 }
1246
Dmitry Shmidte4663042016-04-04 10:07:49 -07001247 if (ssid->group_cipher == val)
1248 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001249 wpa_printf(MSG_MSGDUMP, "group: 0x%x", val);
1250 ssid->group_cipher = val;
1251 return 0;
1252}
1253
1254
1255#ifndef NO_CONFIG_WRITE
1256static char * wpa_config_write_group(const struct parse_data *data,
1257 struct wpa_ssid *ssid)
1258{
1259 return wpa_config_write_cipher(ssid->group_cipher);
1260}
1261#endif /* NO_CONFIG_WRITE */
1262
1263
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07001264static int wpa_config_parse_group_mgmt(const struct parse_data *data,
1265 struct wpa_ssid *ssid, int line,
1266 const char *value)
1267{
1268 int val;
1269
1270 val = wpa_config_parse_cipher(line, value);
1271 if (val == -1)
1272 return -1;
1273
1274 if (val & ~WPA_ALLOWED_GROUP_MGMT_CIPHERS) {
1275 wpa_printf(MSG_ERROR,
1276 "Line %d: not allowed group management cipher (0x%x).",
1277 line, val);
1278 return -1;
1279 }
1280
1281 if (ssid->group_mgmt_cipher == val)
1282 return 1;
1283 wpa_printf(MSG_MSGDUMP, "group_mgmt: 0x%x", val);
1284 ssid->group_mgmt_cipher = val;
1285 return 0;
1286}
1287
1288
1289#ifndef NO_CONFIG_WRITE
1290static char * wpa_config_write_group_mgmt(const struct parse_data *data,
1291 struct wpa_ssid *ssid)
1292{
1293 return wpa_config_write_cipher(ssid->group_mgmt_cipher);
1294}
1295#endif /* NO_CONFIG_WRITE */
1296
1297
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001298static int wpa_config_parse_auth_alg(const struct parse_data *data,
1299 struct wpa_ssid *ssid, int line,
1300 const char *value)
1301{
1302 int val = 0, last, errors = 0;
1303 char *start, *end, *buf;
1304
1305 buf = os_strdup(value);
1306 if (buf == NULL)
1307 return -1;
1308 start = buf;
1309
1310 while (*start != '\0') {
1311 while (*start == ' ' || *start == '\t')
1312 start++;
1313 if (*start == '\0')
1314 break;
1315 end = start;
1316 while (*end != ' ' && *end != '\t' && *end != '\0')
1317 end++;
1318 last = *end == '\0';
1319 *end = '\0';
1320 if (os_strcmp(start, "OPEN") == 0)
1321 val |= WPA_AUTH_ALG_OPEN;
1322 else if (os_strcmp(start, "SHARED") == 0)
1323 val |= WPA_AUTH_ALG_SHARED;
1324 else if (os_strcmp(start, "LEAP") == 0)
1325 val |= WPA_AUTH_ALG_LEAP;
1326 else {
1327 wpa_printf(MSG_ERROR, "Line %d: invalid auth_alg '%s'",
1328 line, start);
1329 errors++;
1330 }
1331
1332 if (last)
1333 break;
1334 start = end + 1;
1335 }
1336 os_free(buf);
1337
1338 if (val == 0) {
1339 wpa_printf(MSG_ERROR,
1340 "Line %d: no auth_alg values configured.", line);
1341 errors++;
1342 }
1343
Dmitry Shmidte4663042016-04-04 10:07:49 -07001344 if (!errors && ssid->auth_alg == val)
1345 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001346 wpa_printf(MSG_MSGDUMP, "auth_alg: 0x%x", val);
1347 ssid->auth_alg = val;
1348 return errors ? -1 : 0;
1349}
1350
1351
1352#ifndef NO_CONFIG_WRITE
1353static char * wpa_config_write_auth_alg(const struct parse_data *data,
1354 struct wpa_ssid *ssid)
1355{
1356 char *buf, *pos, *end;
1357 int ret;
1358
1359 pos = buf = os_zalloc(30);
1360 if (buf == NULL)
1361 return NULL;
1362 end = buf + 30;
1363
1364 if (ssid->auth_alg & WPA_AUTH_ALG_OPEN) {
1365 ret = os_snprintf(pos, end - pos, "%sOPEN",
1366 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001367 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001368 end[-1] = '\0';
1369 return buf;
1370 }
1371 pos += ret;
1372 }
1373
1374 if (ssid->auth_alg & WPA_AUTH_ALG_SHARED) {
1375 ret = os_snprintf(pos, end - pos, "%sSHARED",
1376 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001377 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001378 end[-1] = '\0';
1379 return buf;
1380 }
1381 pos += ret;
1382 }
1383
1384 if (ssid->auth_alg & WPA_AUTH_ALG_LEAP) {
1385 ret = os_snprintf(pos, end - pos, "%sLEAP",
1386 pos == buf ? "" : " ");
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001387 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001388 end[-1] = '\0';
1389 return buf;
1390 }
1391 pos += ret;
1392 }
1393
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001394 if (pos == buf) {
1395 os_free(buf);
1396 buf = NULL;
1397 }
1398
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001399 return buf;
1400}
1401#endif /* NO_CONFIG_WRITE */
1402
1403
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001404static int * wpa_config_parse_int_array(const char *value)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001405{
1406 int *freqs;
1407 size_t used, len;
1408 const char *pos;
1409
1410 used = 0;
1411 len = 10;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001412 freqs = os_calloc(len + 1, sizeof(int));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001413 if (freqs == NULL)
1414 return NULL;
1415
1416 pos = value;
1417 while (pos) {
1418 while (*pos == ' ')
1419 pos++;
1420 if (used == len) {
1421 int *n;
1422 size_t i;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001423 n = os_realloc_array(freqs, len * 2 + 1, sizeof(int));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001424 if (n == NULL) {
1425 os_free(freqs);
1426 return NULL;
1427 }
1428 for (i = len; i <= len * 2; i++)
1429 n[i] = 0;
1430 freqs = n;
1431 len *= 2;
1432 }
1433
1434 freqs[used] = atoi(pos);
1435 if (freqs[used] == 0)
1436 break;
1437 used++;
1438 pos = os_strchr(pos + 1, ' ');
1439 }
1440
1441 return freqs;
1442}
1443
1444
1445static int wpa_config_parse_scan_freq(const struct parse_data *data,
1446 struct wpa_ssid *ssid, int line,
1447 const char *value)
1448{
1449 int *freqs;
1450
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001451 freqs = wpa_config_parse_int_array(value);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001452 if (freqs == NULL)
1453 return -1;
Dmitry Shmidt56052862013-10-04 10:23:25 -07001454 if (freqs[0] == 0) {
1455 os_free(freqs);
1456 freqs = NULL;
1457 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001458 os_free(ssid->scan_freq);
1459 ssid->scan_freq = freqs;
1460
1461 return 0;
1462}
1463
1464
1465static int wpa_config_parse_freq_list(const struct parse_data *data,
1466 struct wpa_ssid *ssid, int line,
1467 const char *value)
1468{
1469 int *freqs;
1470
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08001471 freqs = wpa_config_parse_int_array(value);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001472 if (freqs == NULL)
1473 return -1;
Dmitry Shmidt56052862013-10-04 10:23:25 -07001474 if (freqs[0] == 0) {
1475 os_free(freqs);
1476 freqs = NULL;
1477 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001478 os_free(ssid->freq_list);
1479 ssid->freq_list = freqs;
1480
1481 return 0;
1482}
1483
1484
1485#ifndef NO_CONFIG_WRITE
1486static char * wpa_config_write_freqs(const struct parse_data *data,
1487 const int *freqs)
1488{
1489 char *buf, *pos, *end;
1490 int i, ret;
1491 size_t count;
1492
1493 if (freqs == NULL)
1494 return NULL;
1495
1496 count = 0;
1497 for (i = 0; freqs[i]; i++)
1498 count++;
1499
1500 pos = buf = os_zalloc(10 * count + 1);
1501 if (buf == NULL)
1502 return NULL;
1503 end = buf + 10 * count + 1;
1504
1505 for (i = 0; freqs[i]; i++) {
1506 ret = os_snprintf(pos, end - pos, "%s%u",
1507 i == 0 ? "" : " ", freqs[i]);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001508 if (os_snprintf_error(end - pos, ret)) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001509 end[-1] = '\0';
1510 return buf;
1511 }
1512 pos += ret;
1513 }
1514
1515 return buf;
1516}
1517
1518
1519static char * wpa_config_write_scan_freq(const struct parse_data *data,
1520 struct wpa_ssid *ssid)
1521{
1522 return wpa_config_write_freqs(data, ssid->scan_freq);
1523}
1524
1525
1526static char * wpa_config_write_freq_list(const struct parse_data *data,
1527 struct wpa_ssid *ssid)
1528{
1529 return wpa_config_write_freqs(data, ssid->freq_list);
1530}
1531#endif /* NO_CONFIG_WRITE */
1532
1533
1534#ifdef IEEE8021X_EAPOL
1535static int wpa_config_parse_eap(const struct parse_data *data,
1536 struct wpa_ssid *ssid, int line,
1537 const char *value)
1538{
1539 int last, errors = 0;
1540 char *start, *end, *buf;
1541 struct eap_method_type *methods = NULL, *tmp;
1542 size_t num_methods = 0;
1543
1544 buf = os_strdup(value);
1545 if (buf == NULL)
1546 return -1;
1547 start = buf;
1548
1549 while (*start != '\0') {
1550 while (*start == ' ' || *start == '\t')
1551 start++;
1552 if (*start == '\0')
1553 break;
1554 end = start;
1555 while (*end != ' ' && *end != '\t' && *end != '\0')
1556 end++;
1557 last = *end == '\0';
1558 *end = '\0';
1559 tmp = methods;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001560 methods = os_realloc_array(methods, num_methods + 1,
1561 sizeof(*methods));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001562 if (methods == NULL) {
1563 os_free(tmp);
1564 os_free(buf);
1565 return -1;
1566 }
1567 methods[num_methods].method = eap_peer_get_type(
1568 start, &methods[num_methods].vendor);
1569 if (methods[num_methods].vendor == EAP_VENDOR_IETF &&
1570 methods[num_methods].method == EAP_TYPE_NONE) {
1571 wpa_printf(MSG_ERROR, "Line %d: unknown EAP method "
1572 "'%s'", line, start);
1573 wpa_printf(MSG_ERROR, "You may need to add support for"
1574 " this EAP method during wpa_supplicant\n"
1575 "build time configuration.\n"
1576 "See README for more information.");
1577 errors++;
1578 } else if (methods[num_methods].vendor == EAP_VENDOR_IETF &&
1579 methods[num_methods].method == EAP_TYPE_LEAP)
1580 ssid->leap++;
1581 else
1582 ssid->non_leap++;
1583 num_methods++;
1584 if (last)
1585 break;
1586 start = end + 1;
1587 }
1588 os_free(buf);
1589
1590 tmp = methods;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001591 methods = os_realloc_array(methods, num_methods + 1, sizeof(*methods));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001592 if (methods == NULL) {
1593 os_free(tmp);
1594 return -1;
1595 }
1596 methods[num_methods].vendor = EAP_VENDOR_IETF;
1597 methods[num_methods].method = EAP_TYPE_NONE;
1598 num_methods++;
1599
Dmitry Shmidte4663042016-04-04 10:07:49 -07001600 if (!errors && ssid->eap.eap_methods) {
1601 struct eap_method_type *prev_m;
1602 size_t i, j, prev_methods, match = 0;
1603
1604 prev_m = ssid->eap.eap_methods;
1605 for (i = 0; prev_m[i].vendor != EAP_VENDOR_IETF ||
1606 prev_m[i].method != EAP_TYPE_NONE; i++) {
1607 /* Count the methods */
1608 }
1609 prev_methods = i + 1;
1610
1611 for (i = 0; prev_methods == num_methods && i < prev_methods;
1612 i++) {
1613 for (j = 0; j < num_methods; j++) {
1614 if (prev_m[i].vendor == methods[j].vendor &&
1615 prev_m[i].method == methods[j].method) {
1616 match++;
1617 break;
1618 }
1619 }
1620 }
1621 if (match == num_methods) {
1622 os_free(methods);
1623 return 1;
1624 }
1625 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001626 wpa_hexdump(MSG_MSGDUMP, "eap methods",
1627 (u8 *) methods, num_methods * sizeof(*methods));
Dmitry Shmidt04949592012-07-19 12:16:46 -07001628 os_free(ssid->eap.eap_methods);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001629 ssid->eap.eap_methods = methods;
1630 return errors ? -1 : 0;
1631}
1632
1633
Dmitry Shmidt83474442015-04-15 13:47:09 -07001634#ifndef NO_CONFIG_WRITE
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001635static char * wpa_config_write_eap(const struct parse_data *data,
1636 struct wpa_ssid *ssid)
1637{
1638 int i, ret;
1639 char *buf, *pos, *end;
1640 const struct eap_method_type *eap_methods = ssid->eap.eap_methods;
1641 const char *name;
1642
1643 if (eap_methods == NULL)
1644 return NULL;
1645
1646 pos = buf = os_zalloc(100);
1647 if (buf == NULL)
1648 return NULL;
1649 end = buf + 100;
1650
1651 for (i = 0; eap_methods[i].vendor != EAP_VENDOR_IETF ||
1652 eap_methods[i].method != EAP_TYPE_NONE; i++) {
1653 name = eap_get_name(eap_methods[i].vendor,
1654 eap_methods[i].method);
1655 if (name) {
1656 ret = os_snprintf(pos, end - pos, "%s%s",
1657 pos == buf ? "" : " ", name);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001658 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001659 break;
1660 pos += ret;
1661 }
1662 }
1663
1664 end[-1] = '\0';
1665
1666 return buf;
1667}
Dmitry Shmidt83474442015-04-15 13:47:09 -07001668#endif /* NO_CONFIG_WRITE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001669
1670
1671static int wpa_config_parse_password(const struct parse_data *data,
1672 struct wpa_ssid *ssid, int line,
1673 const char *value)
1674{
1675 u8 *hash;
1676
1677 if (os_strcmp(value, "NULL") == 0) {
Dmitry Shmidte4663042016-04-04 10:07:49 -07001678 if (!ssid->eap.password)
1679 return 1; /* Already unset */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001680 wpa_printf(MSG_DEBUG, "Unset configuration string 'password'");
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001681 bin_clear_free(ssid->eap.password, ssid->eap.password_len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001682 ssid->eap.password = NULL;
1683 ssid->eap.password_len = 0;
1684 return 0;
1685 }
1686
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001687#ifdef CONFIG_EXT_PASSWORD
1688 if (os_strncmp(value, "ext:", 4) == 0) {
1689 char *name = os_strdup(value + 4);
Hai Shalomc3565922019-10-28 11:58:20 -07001690 if (!name)
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001691 return -1;
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001692 bin_clear_free(ssid->eap.password, ssid->eap.password_len);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001693 ssid->eap.password = (u8 *) name;
1694 ssid->eap.password_len = os_strlen(name);
1695 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_PASSWORD_NTHASH;
1696 ssid->eap.flags |= EAP_CONFIG_FLAGS_EXT_PASSWORD;
1697 return 0;
1698 }
1699#endif /* CONFIG_EXT_PASSWORD */
1700
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001701 if (os_strncmp(value, "hash:", 5) != 0) {
1702 char *tmp;
1703 size_t res_len;
1704
1705 tmp = wpa_config_parse_string(value, &res_len);
Hai Shalomc3565922019-10-28 11:58:20 -07001706 if (!tmp) {
1707 wpa_printf(MSG_ERROR,
1708 "Line %d: failed to parse password.", line);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001709 return -1;
1710 }
1711 wpa_hexdump_ascii_key(MSG_MSGDUMP, data->name,
1712 (u8 *) tmp, res_len);
1713
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001714 bin_clear_free(ssid->eap.password, ssid->eap.password_len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001715 ssid->eap.password = (u8 *) tmp;
1716 ssid->eap.password_len = res_len;
1717 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_PASSWORD_NTHASH;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001718 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_EXT_PASSWORD;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001719
1720 return 0;
1721 }
1722
1723
1724 /* NtPasswordHash: hash:<32 hex digits> */
1725 if (os_strlen(value + 5) != 2 * 16) {
Hai Shalomc3565922019-10-28 11:58:20 -07001726 wpa_printf(MSG_ERROR,
1727 "Line %d: Invalid password hash length (expected 32 hex digits)",
1728 line);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001729 return -1;
1730 }
1731
1732 hash = os_malloc(16);
Hai Shalomc3565922019-10-28 11:58:20 -07001733 if (!hash)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001734 return -1;
1735
1736 if (hexstr2bin(value + 5, hash, 16)) {
1737 os_free(hash);
1738 wpa_printf(MSG_ERROR, "Line %d: Invalid password hash", line);
1739 return -1;
1740 }
1741
1742 wpa_hexdump_key(MSG_MSGDUMP, data->name, hash, 16);
1743
Dmitry Shmidte4663042016-04-04 10:07:49 -07001744 if (ssid->eap.password && ssid->eap.password_len == 16 &&
1745 os_memcmp(ssid->eap.password, hash, 16) == 0 &&
1746 (ssid->eap.flags & EAP_CONFIG_FLAGS_PASSWORD_NTHASH)) {
1747 bin_clear_free(hash, 16);
1748 return 1;
1749 }
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001750 bin_clear_free(ssid->eap.password, ssid->eap.password_len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001751 ssid->eap.password = hash;
1752 ssid->eap.password_len = 16;
1753 ssid->eap.flags |= EAP_CONFIG_FLAGS_PASSWORD_NTHASH;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001754 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_EXT_PASSWORD;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001755
1756 return 0;
1757}
1758
1759
Hai Shalomc3565922019-10-28 11:58:20 -07001760static int wpa_config_parse_machine_password(const struct parse_data *data,
1761 struct wpa_ssid *ssid, int line,
1762 const char *value)
1763{
1764 u8 *hash;
1765
1766 if (os_strcmp(value, "NULL") == 0) {
1767 if (!ssid->eap.machine_password)
1768 return 1; /* Already unset */
1769 wpa_printf(MSG_DEBUG,
1770 "Unset configuration string 'machine_password'");
1771 bin_clear_free(ssid->eap.machine_password,
1772 ssid->eap.machine_password_len);
1773 ssid->eap.machine_password = NULL;
1774 ssid->eap.machine_password_len = 0;
1775 return 0;
1776 }
1777
1778#ifdef CONFIG_EXT_PASSWORD
1779 if (os_strncmp(value, "ext:", 4) == 0) {
1780 char *name = os_strdup(value + 4);
1781
1782 if (!name)
1783 return -1;
1784 bin_clear_free(ssid->eap.machine_password,
1785 ssid->eap.machine_password_len);
1786 ssid->eap.machine_password = (u8 *) name;
1787 ssid->eap.machine_password_len = os_strlen(name);
1788 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_MACHINE_PASSWORD_NTHASH;
1789 ssid->eap.flags |= EAP_CONFIG_FLAGS_EXT_MACHINE_PASSWORD;
1790 return 0;
1791 }
1792#endif /* CONFIG_EXT_PASSWORD */
1793
1794 if (os_strncmp(value, "hash:", 5) != 0) {
1795 char *tmp;
1796 size_t res_len;
1797
1798 tmp = wpa_config_parse_string(value, &res_len);
1799 if (!tmp) {
1800 wpa_printf(MSG_ERROR,
1801 "Line %d: failed to parse machine_password.",
1802 line);
1803 return -1;
1804 }
1805 wpa_hexdump_ascii_key(MSG_MSGDUMP, data->name,
1806 (u8 *) tmp, res_len);
1807
1808 bin_clear_free(ssid->eap.machine_password,
1809 ssid->eap.machine_password_len);
1810 ssid->eap.machine_password = (u8 *) tmp;
1811 ssid->eap.machine_password_len = res_len;
1812 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_MACHINE_PASSWORD_NTHASH;
1813 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_EXT_MACHINE_PASSWORD;
1814
1815 return 0;
1816 }
1817
1818
1819 /* NtPasswordHash: hash:<32 hex digits> */
1820 if (os_strlen(value + 5) != 2 * 16) {
1821 wpa_printf(MSG_ERROR,
1822 "Line %d: Invalid machine_password hash length (expected 32 hex digits)",
1823 line);
1824 return -1;
1825 }
1826
1827 hash = os_malloc(16);
1828 if (!hash)
1829 return -1;
1830
1831 if (hexstr2bin(value + 5, hash, 16)) {
1832 os_free(hash);
1833 wpa_printf(MSG_ERROR, "Line %d: Invalid machine_password hash",
1834 line);
1835 return -1;
1836 }
1837
1838 wpa_hexdump_key(MSG_MSGDUMP, data->name, hash, 16);
1839
1840 if (ssid->eap.machine_password &&
1841 ssid->eap.machine_password_len == 16 &&
1842 os_memcmp(ssid->eap.machine_password, hash, 16) == 0 &&
1843 (ssid->eap.flags & EAP_CONFIG_FLAGS_MACHINE_PASSWORD_NTHASH)) {
1844 bin_clear_free(hash, 16);
1845 return 1;
1846 }
1847 bin_clear_free(ssid->eap.machine_password,
1848 ssid->eap.machine_password_len);
1849 ssid->eap.machine_password = hash;
1850 ssid->eap.machine_password_len = 16;
1851 ssid->eap.flags |= EAP_CONFIG_FLAGS_MACHINE_PASSWORD_NTHASH;
1852 ssid->eap.flags &= ~EAP_CONFIG_FLAGS_EXT_MACHINE_PASSWORD;
1853
1854 return 0;
1855}
1856
1857
Dmitry Shmidt83474442015-04-15 13:47:09 -07001858#ifndef NO_CONFIG_WRITE
Hai Shalomc3565922019-10-28 11:58:20 -07001859
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001860static char * wpa_config_write_password(const struct parse_data *data,
1861 struct wpa_ssid *ssid)
1862{
1863 char *buf;
1864
Hai Shalomc3565922019-10-28 11:58:20 -07001865 if (!ssid->eap.password)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001866 return NULL;
1867
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001868#ifdef CONFIG_EXT_PASSWORD
1869 if (ssid->eap.flags & EAP_CONFIG_FLAGS_EXT_PASSWORD) {
1870 buf = os_zalloc(4 + ssid->eap.password_len + 1);
Hai Shalomc3565922019-10-28 11:58:20 -07001871 if (!buf)
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07001872 return NULL;
1873 os_memcpy(buf, "ext:", 4);
1874 os_memcpy(buf + 4, ssid->eap.password, ssid->eap.password_len);
1875 return buf;
1876 }
1877#endif /* CONFIG_EXT_PASSWORD */
1878
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001879 if (!(ssid->eap.flags & EAP_CONFIG_FLAGS_PASSWORD_NTHASH)) {
1880 return wpa_config_write_string(
1881 ssid->eap.password, ssid->eap.password_len);
1882 }
1883
1884 buf = os_malloc(5 + 32 + 1);
Hai Shalomc3565922019-10-28 11:58:20 -07001885 if (!buf)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001886 return NULL;
1887
1888 os_memcpy(buf, "hash:", 5);
1889 wpa_snprintf_hex(buf + 5, 32 + 1, ssid->eap.password, 16);
1890
1891 return buf;
1892}
Hai Shalomc3565922019-10-28 11:58:20 -07001893
1894
1895static char * wpa_config_write_machine_password(const struct parse_data *data,
1896 struct wpa_ssid *ssid)
1897{
1898 char *buf;
1899
1900 if (!ssid->eap.machine_password)
1901 return NULL;
1902
1903#ifdef CONFIG_EXT_PASSWORD
1904 if (ssid->eap.flags & EAP_CONFIG_FLAGS_EXT_MACHINE_PASSWORD) {
1905 buf = os_zalloc(4 + ssid->eap.machine_password_len + 1);
1906 if (!buf)
1907 return NULL;
1908 os_memcpy(buf, "ext:", 4);
1909 os_memcpy(buf + 4, ssid->eap.machine_password,
1910 ssid->eap.machine_password_len);
1911 return buf;
1912 }
1913#endif /* CONFIG_EXT_PASSWORD */
1914
1915 if (!(ssid->eap.flags & EAP_CONFIG_FLAGS_MACHINE_PASSWORD_NTHASH)) {
1916 return wpa_config_write_string(
1917 ssid->eap.machine_password,
1918 ssid->eap.machine_password_len);
1919 }
1920
1921 buf = os_malloc(5 + 32 + 1);
1922 if (!buf)
1923 return NULL;
1924
1925 os_memcpy(buf, "hash:", 5);
1926 wpa_snprintf_hex(buf + 5, 32 + 1, ssid->eap.machine_password, 16);
1927
1928 return buf;
1929}
1930
Dmitry Shmidt83474442015-04-15 13:47:09 -07001931#endif /* NO_CONFIG_WRITE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001932#endif /* IEEE8021X_EAPOL */
1933
1934
Hai Shalomfdcde762020-04-02 11:19:20 -07001935#ifdef CONFIG_WEP
1936
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001937static int wpa_config_parse_wep_key(u8 *key, size_t *len, int line,
1938 const char *value, int idx)
1939{
1940 char *buf, title[20];
1941 int res;
1942
1943 buf = wpa_config_parse_string(value, len);
1944 if (buf == NULL) {
1945 wpa_printf(MSG_ERROR, "Line %d: Invalid WEP key %d '%s'.",
1946 line, idx, value);
1947 return -1;
1948 }
1949 if (*len > MAX_WEP_KEY_LEN) {
1950 wpa_printf(MSG_ERROR, "Line %d: Too long WEP key %d '%s'.",
1951 line, idx, value);
1952 os_free(buf);
1953 return -1;
1954 }
Dmitry Shmidt04949592012-07-19 12:16:46 -07001955 if (*len && *len != 5 && *len != 13 && *len != 16) {
1956 wpa_printf(MSG_ERROR, "Line %d: Invalid WEP key length %u - "
1957 "this network block will be ignored",
1958 line, (unsigned int) *len);
1959 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001960 os_memcpy(key, buf, *len);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07001961 str_clear_free(buf);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001962 res = os_snprintf(title, sizeof(title), "wep_key%d", idx);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08001963 if (!os_snprintf_error(sizeof(title), res))
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07001964 wpa_hexdump_key(MSG_MSGDUMP, title, key, *len);
1965 return 0;
1966}
1967
1968
1969static int wpa_config_parse_wep_key0(const struct parse_data *data,
1970 struct wpa_ssid *ssid, int line,
1971 const char *value)
1972{
1973 return wpa_config_parse_wep_key(ssid->wep_key[0],
1974 &ssid->wep_key_len[0], line,
1975 value, 0);
1976}
1977
1978
1979static int wpa_config_parse_wep_key1(const struct parse_data *data,
1980 struct wpa_ssid *ssid, int line,
1981 const char *value)
1982{
1983 return wpa_config_parse_wep_key(ssid->wep_key[1],
1984 &ssid->wep_key_len[1], line,
1985 value, 1);
1986}
1987
1988
1989static int wpa_config_parse_wep_key2(const struct parse_data *data,
1990 struct wpa_ssid *ssid, int line,
1991 const char *value)
1992{
1993 return wpa_config_parse_wep_key(ssid->wep_key[2],
1994 &ssid->wep_key_len[2], line,
1995 value, 2);
1996}
1997
1998
1999static int wpa_config_parse_wep_key3(const struct parse_data *data,
2000 struct wpa_ssid *ssid, int line,
2001 const char *value)
2002{
2003 return wpa_config_parse_wep_key(ssid->wep_key[3],
2004 &ssid->wep_key_len[3], line,
2005 value, 3);
2006}
2007
2008
2009#ifndef NO_CONFIG_WRITE
2010static char * wpa_config_write_wep_key(struct wpa_ssid *ssid, int idx)
2011{
2012 if (ssid->wep_key_len[idx] == 0)
2013 return NULL;
2014 return wpa_config_write_string(ssid->wep_key[idx],
2015 ssid->wep_key_len[idx]);
2016}
2017
2018
2019static char * wpa_config_write_wep_key0(const struct parse_data *data,
2020 struct wpa_ssid *ssid)
2021{
2022 return wpa_config_write_wep_key(ssid, 0);
2023}
2024
2025
2026static char * wpa_config_write_wep_key1(const struct parse_data *data,
2027 struct wpa_ssid *ssid)
2028{
2029 return wpa_config_write_wep_key(ssid, 1);
2030}
2031
2032
2033static char * wpa_config_write_wep_key2(const struct parse_data *data,
2034 struct wpa_ssid *ssid)
2035{
2036 return wpa_config_write_wep_key(ssid, 2);
2037}
2038
2039
2040static char * wpa_config_write_wep_key3(const struct parse_data *data,
2041 struct wpa_ssid *ssid)
2042{
2043 return wpa_config_write_wep_key(ssid, 3);
2044}
2045#endif /* NO_CONFIG_WRITE */
2046
Hai Shalomfdcde762020-04-02 11:19:20 -07002047#endif /* CONFIG_WEP */
2048
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002049
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002050#ifdef CONFIG_P2P
2051
Dmitry Shmidt54605472013-11-08 11:10:19 -08002052static int wpa_config_parse_go_p2p_dev_addr(const struct parse_data *data,
2053 struct wpa_ssid *ssid, int line,
2054 const char *value)
2055{
2056 if (value[0] == '\0' || os_strcmp(value, "\"\"") == 0 ||
2057 os_strcmp(value, "any") == 0) {
2058 os_memset(ssid->go_p2p_dev_addr, 0, ETH_ALEN);
2059 wpa_printf(MSG_MSGDUMP, "GO P2P Device Address any");
2060 return 0;
2061 }
2062 if (hwaddr_aton(value, ssid->go_p2p_dev_addr)) {
2063 wpa_printf(MSG_ERROR, "Line %d: Invalid GO P2P Device Address '%s'.",
2064 line, value);
2065 return -1;
2066 }
2067 ssid->bssid_set = 1;
2068 wpa_printf(MSG_MSGDUMP, "GO P2P Device Address " MACSTR,
2069 MAC2STR(ssid->go_p2p_dev_addr));
2070 return 0;
2071}
2072
2073
2074#ifndef NO_CONFIG_WRITE
2075static char * wpa_config_write_go_p2p_dev_addr(const struct parse_data *data,
2076 struct wpa_ssid *ssid)
2077{
2078 char *value;
2079 int res;
2080
2081 if (is_zero_ether_addr(ssid->go_p2p_dev_addr))
2082 return NULL;
2083
2084 value = os_malloc(20);
2085 if (value == NULL)
2086 return NULL;
2087 res = os_snprintf(value, 20, MACSTR, MAC2STR(ssid->go_p2p_dev_addr));
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002088 if (os_snprintf_error(20, res)) {
Dmitry Shmidt54605472013-11-08 11:10:19 -08002089 os_free(value);
2090 return NULL;
2091 }
2092 value[20 - 1] = '\0';
2093 return value;
2094}
2095#endif /* NO_CONFIG_WRITE */
2096
2097
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002098static int wpa_config_parse_p2p_client_list(const struct parse_data *data,
2099 struct wpa_ssid *ssid, int line,
2100 const char *value)
2101{
Dmitry Shmidtff787d52015-01-12 13:01:47 -08002102 return wpa_config_parse_addr_list(data, line, value,
2103 &ssid->p2p_client_list,
2104 &ssid->num_p2p_clients,
2105 "p2p_client_list", 0, 0);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002106}
2107
2108
2109#ifndef NO_CONFIG_WRITE
2110static char * wpa_config_write_p2p_client_list(const struct parse_data *data,
2111 struct wpa_ssid *ssid)
2112{
Dmitry Shmidtff787d52015-01-12 13:01:47 -08002113 return wpa_config_write_addr_list(data, ssid->p2p_client_list,
2114 ssid->num_p2p_clients,
2115 "p2p_client_list");
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002116}
2117#endif /* NO_CONFIG_WRITE */
2118
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07002119
2120static int wpa_config_parse_psk_list(const struct parse_data *data,
2121 struct wpa_ssid *ssid, int line,
2122 const char *value)
2123{
2124 struct psk_list_entry *p;
2125 const char *pos;
2126
2127 p = os_zalloc(sizeof(*p));
2128 if (p == NULL)
2129 return -1;
2130
2131 pos = value;
2132 if (os_strncmp(pos, "P2P-", 4) == 0) {
2133 p->p2p = 1;
2134 pos += 4;
2135 }
2136
2137 if (hwaddr_aton(pos, p->addr)) {
2138 wpa_printf(MSG_ERROR, "Line %d: Invalid psk_list address '%s'",
2139 line, pos);
2140 os_free(p);
2141 return -1;
2142 }
2143 pos += 17;
2144 if (*pos != '-') {
2145 wpa_printf(MSG_ERROR, "Line %d: Invalid psk_list '%s'",
2146 line, pos);
2147 os_free(p);
2148 return -1;
2149 }
2150 pos++;
2151
2152 if (hexstr2bin(pos, p->psk, PMK_LEN) || pos[PMK_LEN * 2] != '\0') {
2153 wpa_printf(MSG_ERROR, "Line %d: Invalid psk_list PSK '%s'",
2154 line, pos);
2155 os_free(p);
2156 return -1;
2157 }
2158
2159 dl_list_add(&ssid->psk_list, &p->list);
2160
2161 return 0;
2162}
2163
2164
2165#ifndef NO_CONFIG_WRITE
2166static char * wpa_config_write_psk_list(const struct parse_data *data,
2167 struct wpa_ssid *ssid)
2168{
2169 return NULL;
2170}
2171#endif /* NO_CONFIG_WRITE */
2172
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002173#endif /* CONFIG_P2P */
2174
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002175
2176#ifdef CONFIG_MESH
2177
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002178static int wpa_config_parse_mesh_basic_rates(const struct parse_data *data,
2179 struct wpa_ssid *ssid, int line,
2180 const char *value)
2181{
2182 int *rates = wpa_config_parse_int_array(value);
2183
2184 if (rates == NULL) {
2185 wpa_printf(MSG_ERROR, "Line %d: Invalid mesh_basic_rates '%s'",
2186 line, value);
2187 return -1;
2188 }
2189 if (rates[0] == 0) {
2190 os_free(rates);
2191 rates = NULL;
2192 }
2193
2194 os_free(ssid->mesh_basic_rates);
2195 ssid->mesh_basic_rates = rates;
2196
2197 return 0;
2198}
2199
2200
2201#ifndef NO_CONFIG_WRITE
2202
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002203static char * wpa_config_write_mesh_basic_rates(const struct parse_data *data,
2204 struct wpa_ssid *ssid)
2205{
2206 return wpa_config_write_freqs(data, ssid->mesh_basic_rates);
2207}
2208
2209#endif /* NO_CONFIG_WRITE */
2210
2211#endif /* CONFIG_MESH */
2212
2213
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002214#ifdef CONFIG_MACSEC
2215
2216static int wpa_config_parse_mka_cak(const struct parse_data *data,
2217 struct wpa_ssid *ssid, int line,
2218 const char *value)
2219{
Hai Shalom74f70d42019-02-11 14:42:39 -08002220 size_t len;
2221
2222 len = os_strlen(value);
2223 if (len > 2 * MACSEC_CAK_MAX_LEN ||
2224 (len != 2 * 16 && len != 2 * 32) ||
2225 hexstr2bin(value, ssid->mka_cak, len / 2)) {
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002226 wpa_printf(MSG_ERROR, "Line %d: Invalid MKA-CAK '%s'.",
2227 line, value);
2228 return -1;
2229 }
Hai Shalom74f70d42019-02-11 14:42:39 -08002230 ssid->mka_cak_len = len / 2;
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002231 ssid->mka_psk_set |= MKA_PSK_SET_CAK;
2232
Hai Shalom74f70d42019-02-11 14:42:39 -08002233 wpa_hexdump_key(MSG_MSGDUMP, "MKA-CAK", ssid->mka_cak,
2234 ssid->mka_cak_len);
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002235 return 0;
2236}
2237
2238
2239static int wpa_config_parse_mka_ckn(const struct parse_data *data,
2240 struct wpa_ssid *ssid, int line,
2241 const char *value)
2242{
Hai Shalom74f70d42019-02-11 14:42:39 -08002243 size_t len;
2244
2245 len = os_strlen(value);
2246 if (len > 2 * MACSEC_CKN_MAX_LEN || /* too long */
2247 len < 2 || /* too short */
2248 len % 2 != 0 /* not an integral number of bytes */) {
2249 wpa_printf(MSG_ERROR, "Line %d: Invalid MKA-CKN '%s'.",
2250 line, value);
2251 return -1;
2252 }
2253 ssid->mka_ckn_len = len / 2;
2254 if (hexstr2bin(value, ssid->mka_ckn, ssid->mka_ckn_len)) {
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002255 wpa_printf(MSG_ERROR, "Line %d: Invalid MKA-CKN '%s'.",
2256 line, value);
2257 return -1;
2258 }
2259
2260 ssid->mka_psk_set |= MKA_PSK_SET_CKN;
2261
Hai Shalom74f70d42019-02-11 14:42:39 -08002262 wpa_hexdump_key(MSG_MSGDUMP, "MKA-CKN", ssid->mka_ckn,
2263 ssid->mka_ckn_len);
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002264 return 0;
2265}
2266
2267
2268#ifndef NO_CONFIG_WRITE
2269
2270static char * wpa_config_write_mka_cak(const struct parse_data *data,
2271 struct wpa_ssid *ssid)
2272{
2273 if (!(ssid->mka_psk_set & MKA_PSK_SET_CAK))
2274 return NULL;
2275
Hai Shalom74f70d42019-02-11 14:42:39 -08002276 return wpa_config_write_string_hex(ssid->mka_cak, ssid->mka_cak_len);
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002277}
2278
2279
2280static char * wpa_config_write_mka_ckn(const struct parse_data *data,
2281 struct wpa_ssid *ssid)
2282{
2283 if (!(ssid->mka_psk_set & MKA_PSK_SET_CKN))
2284 return NULL;
Hai Shalom74f70d42019-02-11 14:42:39 -08002285 return wpa_config_write_string_hex(ssid->mka_ckn, ssid->mka_ckn_len);
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002286}
2287
2288#endif /* NO_CONFIG_WRITE */
2289
2290#endif /* CONFIG_MACSEC */
2291
2292
Hai Shalom74f70d42019-02-11 14:42:39 -08002293#ifdef CONFIG_OCV
2294
2295static int wpa_config_parse_ocv(const struct parse_data *data,
2296 struct wpa_ssid *ssid, int line,
2297 const char *value)
2298{
2299 char *end;
2300
2301 ssid->ocv = strtol(value, &end, 0);
2302 if (*end || ssid->ocv < 0 || ssid->ocv > 1) {
2303 wpa_printf(MSG_ERROR, "Line %d: Invalid ocv value '%s'.",
2304 line, value);
2305 return -1;
2306 }
2307 if (ssid->ocv && ssid->ieee80211w == NO_MGMT_FRAME_PROTECTION)
2308 ssid->ieee80211w = MGMT_FRAME_PROTECTION_OPTIONAL;
2309 return 0;
2310}
2311
2312
2313#ifndef NO_CONFIG_WRITE
2314static char * wpa_config_write_ocv(const struct parse_data *data,
2315 struct wpa_ssid *ssid)
2316{
2317 char *value = os_malloc(20);
2318
2319 if (!value)
2320 return NULL;
2321 os_snprintf(value, 20, "%d", ssid->ocv);
2322 value[20 - 1] = '\0';
2323 return value;
2324}
2325#endif /* NO_CONFIG_WRITE */
2326
2327#endif /* CONFIG_OCV */
2328
2329
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002330static int wpa_config_parse_peerkey(const struct parse_data *data,
2331 struct wpa_ssid *ssid, int line,
2332 const char *value)
2333{
2334 wpa_printf(MSG_INFO, "NOTE: Obsolete peerkey parameter ignored");
2335 return 0;
2336}
2337
2338
2339#ifndef NO_CONFIG_WRITE
2340static char * wpa_config_write_peerkey(const struct parse_data *data,
2341 struct wpa_ssid *ssid)
2342{
2343 return NULL;
2344}
2345#endif /* NO_CONFIG_WRITE */
2346
2347
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002348/* Helper macros for network block parser */
2349
2350#ifdef OFFSET
2351#undef OFFSET
2352#endif /* OFFSET */
2353/* OFFSET: Get offset of a variable within the wpa_ssid structure */
2354#define OFFSET(v) ((void *) &((struct wpa_ssid *) 0)->v)
2355
2356/* STR: Define a string variable for an ASCII string; f = field name */
2357#ifdef NO_CONFIG_WRITE
2358#define _STR(f) #f, wpa_config_parse_str, OFFSET(f)
Hai Shalomc3565922019-10-28 11:58:20 -07002359#define _STRe(f, m) #f, wpa_config_parse_str, OFFSET(eap.m)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002360#else /* NO_CONFIG_WRITE */
2361#define _STR(f) #f, wpa_config_parse_str, wpa_config_write_str, OFFSET(f)
Hai Shalomc3565922019-10-28 11:58:20 -07002362#define _STRe(f, m) #f, wpa_config_parse_str, wpa_config_write_str, \
2363 OFFSET(eap.m)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002364#endif /* NO_CONFIG_WRITE */
2365#define STR(f) _STR(f), NULL, NULL, NULL, 0
Hai Shalomc3565922019-10-28 11:58:20 -07002366#define STRe(f, m) _STRe(f, m), NULL, NULL, NULL, 0
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002367#define STR_KEY(f) _STR(f), NULL, NULL, NULL, 1
Hai Shalomc3565922019-10-28 11:58:20 -07002368#define STR_KEYe(f, m) _STRe(f, m), NULL, NULL, NULL, 1
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002369
2370/* STR_LEN: Define a string variable with a separate variable for storing the
2371 * data length. Unlike STR(), this can be used to store arbitrary binary data
2372 * (i.e., even nul termination character). */
2373#define _STR_LEN(f) _STR(f), OFFSET(f ## _len)
Hai Shalomc3565922019-10-28 11:58:20 -07002374#define _STR_LENe(f, m) _STRe(f, m), OFFSET(eap.m ## _len)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002375#define STR_LEN(f) _STR_LEN(f), NULL, NULL, 0
Hai Shalomc3565922019-10-28 11:58:20 -07002376#define STR_LENe(f, m) _STR_LENe(f, m), NULL, NULL, 0
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002377#define STR_LEN_KEY(f) _STR_LEN(f), NULL, NULL, 1
2378
2379/* STR_RANGE: Like STR_LEN(), but with minimum and maximum allowed length
2380 * explicitly specified. */
2381#define _STR_RANGE(f, min, max) _STR_LEN(f), (void *) (min), (void *) (max)
2382#define STR_RANGE(f, min, max) _STR_RANGE(f, min, max), 0
2383#define STR_RANGE_KEY(f, min, max) _STR_RANGE(f, min, max), 1
2384
2385#ifdef NO_CONFIG_WRITE
2386#define _INT(f) #f, wpa_config_parse_int, OFFSET(f), (void *) 0
Hai Shalomc3565922019-10-28 11:58:20 -07002387#define _INTe(f, m) #f, wpa_config_parse_int, OFFSET(eap.m), (void *) 0
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002388#else /* NO_CONFIG_WRITE */
2389#define _INT(f) #f, wpa_config_parse_int, wpa_config_write_int, \
2390 OFFSET(f), (void *) 0
Hai Shalomc3565922019-10-28 11:58:20 -07002391#define _INTe(f, m) #f, wpa_config_parse_int, wpa_config_write_int, \
2392 OFFSET(eap.m), (void *) 0
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002393#endif /* NO_CONFIG_WRITE */
2394
2395/* INT: Define an integer variable */
2396#define INT(f) _INT(f), NULL, NULL, 0
Hai Shalomc3565922019-10-28 11:58:20 -07002397#define INTe(f, m) _INTe(f, m), NULL, NULL, 0
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002398
2399/* INT_RANGE: Define an integer variable with allowed value range */
2400#define INT_RANGE(f, min, max) _INT(f), (void *) (min), (void *) (max), 0
2401
2402/* FUNC: Define a configuration variable that uses a custom function for
2403 * parsing and writing the value. */
2404#ifdef NO_CONFIG_WRITE
2405#define _FUNC(f) #f, wpa_config_parse_ ## f, NULL, NULL, NULL, NULL
2406#else /* NO_CONFIG_WRITE */
2407#define _FUNC(f) #f, wpa_config_parse_ ## f, wpa_config_write_ ## f, \
2408 NULL, NULL, NULL, NULL
2409#endif /* NO_CONFIG_WRITE */
2410#define FUNC(f) _FUNC(f), 0
2411#define FUNC_KEY(f) _FUNC(f), 1
2412
2413/*
2414 * Table of network configuration variables. This table is used to parse each
2415 * network configuration variable, e.g., each line in wpa_supplicant.conf file
2416 * that is inside a network block.
2417 *
2418 * This table is generated using the helper macros defined above and with
2419 * generous help from the C pre-processor. The field name is stored as a string
2420 * into .name and for STR and INT types, the offset of the target buffer within
2421 * struct wpa_ssid is stored in .param1. .param2 (if not NULL) is similar
2422 * offset to the field containing the length of the configuration variable.
2423 * .param3 and .param4 can be used to mark the allowed range (length for STR
2424 * and value for INT).
2425 *
2426 * For each configuration line in wpa_supplicant.conf, the parser goes through
2427 * this table and select the entry that matches with the field name. The parser
2428 * function (.parser) is then called to parse the actual value of the field.
2429 *
2430 * This kind of mechanism makes it easy to add new configuration parameters,
2431 * since only one line needs to be added into this table and into the
2432 * struct wpa_ssid definition if the new variable is either a string or
2433 * integer. More complex types will need to use their own parser and writer
2434 * functions.
2435 */
2436static const struct parse_data ssid_fields[] = {
Dmitry Shmidt9d9e6022015-04-23 10:34:55 -07002437 { STR_RANGE(ssid, 0, SSID_MAX_LEN) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002438 { INT_RANGE(scan_ssid, 0, 1) },
2439 { FUNC(bssid) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002440 { FUNC(bssid_hint) },
Hai Shalom60840252021-02-19 19:02:11 -08002441 { FUNC(bssid_ignore) },
2442 { FUNC(bssid_accept) },
2443 { FUNC(bssid_blacklist) }, /* deprecated alias for bssid_ignore */
2444 { FUNC(bssid_whitelist) }, /* deprecated alias for bssid_accept */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002445 { FUNC_KEY(psk) },
Dmitry Shmidt912c6ec2015-03-30 13:16:51 -07002446 { INT(mem_only_psk) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002447 { STR_KEY(sae_password) },
Roshan Pius3a1667e2018-07-03 15:17:14 -07002448 { STR(sae_password_id) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002449 { FUNC(proto) },
2450 { FUNC(key_mgmt) },
Dmitry Shmidt04949592012-07-19 12:16:46 -07002451 { INT(bg_scan_period) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002452 { FUNC(pairwise) },
2453 { FUNC(group) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002454 { FUNC(group_mgmt) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002455 { FUNC(auth_alg) },
2456 { FUNC(scan_freq) },
2457 { FUNC(freq_list) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002458 { INT_RANGE(ht, 0, 1) },
2459 { INT_RANGE(vht, 0, 1) },
2460 { INT_RANGE(ht40, -1, 1) },
Sunil8cd6f4d2022-06-28 18:40:46 +00002461 { INT_RANGE(max_oper_chwidth, CONF_OPER_CHWIDTH_USE_HT,
2462 CONF_OPER_CHWIDTH_80P80MHZ) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002463 { INT(vht_center_freq1) },
2464 { INT(vht_center_freq2) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002465#ifdef IEEE8021X_EAPOL
2466 { FUNC(eap) },
Hai Shalomc3565922019-10-28 11:58:20 -07002467 { STR_LENe(identity, identity) },
2468 { STR_LENe(anonymous_identity, anonymous_identity) },
2469 { STR_LENe(imsi_identity, imsi_identity) },
2470 { STR_LENe(machine_identity, machine_identity) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002471 { FUNC_KEY(password) },
Hai Shalomc3565922019-10-28 11:58:20 -07002472 { FUNC_KEY(machine_password) },
2473 { STRe(ca_cert, cert.ca_cert) },
2474 { STRe(ca_path, cert.ca_path) },
2475 { STRe(client_cert, cert.client_cert) },
2476 { STRe(private_key, cert.private_key) },
2477 { STR_KEYe(private_key_passwd, cert.private_key_passwd) },
Hai Shalomc3565922019-10-28 11:58:20 -07002478 { STRe(subject_match, cert.subject_match) },
2479 { STRe(check_cert_subject, cert.check_cert_subject) },
2480 { STRe(altsubject_match, cert.altsubject_match) },
2481 { STRe(domain_suffix_match, cert.domain_suffix_match) },
2482 { STRe(domain_match, cert.domain_match) },
2483 { STRe(ca_cert2, phase2_cert.ca_cert) },
2484 { STRe(ca_path2, phase2_cert.ca_path) },
2485 { STRe(client_cert2, phase2_cert.client_cert) },
2486 { STRe(private_key2, phase2_cert.private_key) },
2487 { STR_KEYe(private_key2_passwd, phase2_cert.private_key_passwd) },
Hai Shalomc3565922019-10-28 11:58:20 -07002488 { STRe(subject_match2, phase2_cert.subject_match) },
2489 { STRe(check_cert_subject2, phase2_cert.check_cert_subject) },
2490 { STRe(altsubject_match2, phase2_cert.altsubject_match) },
2491 { STRe(domain_suffix_match2, phase2_cert.domain_suffix_match) },
2492 { STRe(domain_match2, phase2_cert.domain_match) },
2493 { STRe(phase1, phase1) },
2494 { STRe(phase2, phase2) },
2495 { STRe(machine_phase2, machine_phase2) },
2496 { STRe(pcsc, pcsc) },
2497 { STR_KEYe(pin, cert.pin) },
2498 { STRe(engine_id, cert.engine_id) },
2499 { STRe(key_id, cert.key_id) },
2500 { STRe(cert_id, cert.cert_id) },
2501 { STRe(ca_cert_id, cert.ca_cert_id) },
2502 { STR_KEYe(pin2, phase2_cert.pin) },
2503 { STRe(engine_id2, phase2_cert.engine_id) },
2504 { STRe(key_id2, phase2_cert.key_id) },
2505 { STRe(cert_id2, phase2_cert.cert_id) },
2506 { STRe(ca_cert_id2, phase2_cert.ca_cert_id) },
2507 { INTe(engine, cert.engine) },
2508 { INTe(engine2, phase2_cert.engine) },
2509 { STRe(machine_ca_cert, machine_cert.ca_cert) },
2510 { STRe(machine_ca_path, machine_cert.ca_path) },
2511 { STRe(machine_client_cert, machine_cert.client_cert) },
2512 { STRe(machine_private_key, machine_cert.private_key) },
2513 { STR_KEYe(machine_private_key_passwd,
2514 machine_cert.private_key_passwd) },
Hai Shalomc3565922019-10-28 11:58:20 -07002515 { STRe(machine_subject_match, machine_cert.subject_match) },
2516 { STRe(machine_check_cert_subject, machine_cert.check_cert_subject) },
2517 { STRe(machine_altsubject_match, machine_cert.altsubject_match) },
2518 { STRe(machine_domain_suffix_match,
2519 machine_cert.domain_suffix_match) },
2520 { STRe(machine_domain_match, machine_cert.domain_match) },
2521 { STR_KEYe(machine_pin, machine_cert.pin) },
2522 { STRe(machine_engine_id, machine_cert.engine_id) },
2523 { STRe(machine_key_id, machine_cert.key_id) },
2524 { STRe(machine_cert_id, machine_cert.cert_id) },
2525 { STRe(machine_ca_cert_id, machine_cert.ca_cert_id) },
2526 { INTe(machine_engine, machine_cert.engine) },
2527 { INTe(machine_ocsp, machine_cert.ocsp) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002528 { INT(eapol_flags) },
Hai Shalomc3565922019-10-28 11:58:20 -07002529 { INTe(sim_num, sim_num) },
Sunil8cd6f4d2022-06-28 18:40:46 +00002530 { STRe(imsi_privacy_cert, imsi_privacy_cert) },
2531 { STRe(imsi_privacy_attr, imsi_privacy_attr) },
Steven Liu9138d432022-11-23 22:29:05 +00002532 { INTe(strict_conservative_peer_mode, strict_conservative_peer_mode) },
Hai Shalomc3565922019-10-28 11:58:20 -07002533 { STRe(openssl_ciphers, openssl_ciphers) },
2534 { INTe(erp, erp) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002535#endif /* IEEE8021X_EAPOL */
Hai Shalomfdcde762020-04-02 11:19:20 -07002536#ifdef CONFIG_WEP
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002537 { FUNC_KEY(wep_key0) },
2538 { FUNC_KEY(wep_key1) },
2539 { FUNC_KEY(wep_key2) },
2540 { FUNC_KEY(wep_key3) },
2541 { INT(wep_tx_keyidx) },
Hai Shalomfdcde762020-04-02 11:19:20 -07002542#endif /* CONFIG_WEP */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002543 { INT(priority) },
2544#ifdef IEEE8021X_EAPOL
2545 { INT(eap_workaround) },
Hai Shalomc3565922019-10-28 11:58:20 -07002546 { STRe(pac_file, pac_file) },
2547 { INTe(fragment_size, fragment_size) },
2548 { INTe(ocsp, cert.ocsp) },
2549 { INTe(ocsp2, phase2_cert.ocsp) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002550#endif /* IEEE8021X_EAPOL */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002551#ifdef CONFIG_MESH
2552 { INT_RANGE(mode, 0, 5) },
2553 { INT_RANGE(no_auto_peer, 0, 1) },
Hai Shaloma20dcd72022-02-04 13:43:00 -08002554 { INT_RANGE(mesh_fwding, 0, 1) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002555 { INT_RANGE(mesh_rssi_threshold, -255, 1) },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002556#else /* CONFIG_MESH */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002557 { INT_RANGE(mode, 0, 4) },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002558#endif /* CONFIG_MESH */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002559 { INT_RANGE(proactive_key_caching, 0, 1) },
2560 { INT_RANGE(disabled, 0, 2) },
2561 { STR(id_str) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002562 { INT_RANGE(ieee80211w, 0, 2) },
Hai Shalom74f70d42019-02-11 14:42:39 -08002563#ifdef CONFIG_OCV
2564 { FUNC(ocv) },
2565#endif /* CONFIG_OCV */
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002566 { FUNC(peerkey) /* obsolete - removed */ },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002567 { INT_RANGE(mixed_cell, 0, 1) },
Hai Shalomc3565922019-10-28 11:58:20 -07002568 { INT_RANGE(frequency, 0, 70200) },
Dmitry Shmidt7f656022015-02-25 14:36:37 -08002569 { INT_RANGE(fixed_freq, 0, 1) },
Hai Shalomc3565922019-10-28 11:58:20 -07002570 { INT_RANGE(enable_edmg, 0, 1) },
2571 { INT_RANGE(edmg_channel, 9, 13) },
Dmitry Shmidt014a3ff2015-12-28 13:27:49 -08002572#ifdef CONFIG_ACS
2573 { INT_RANGE(acs, 0, 1) },
2574#endif /* CONFIG_ACS */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002575#ifdef CONFIG_MESH
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002576 { FUNC(mesh_basic_rates) },
2577 { INT(dot11MeshMaxRetries) },
2578 { INT(dot11MeshRetryTimeout) },
2579 { INT(dot11MeshConfirmTimeout) },
2580 { INT(dot11MeshHoldingTimeout) },
2581#endif /* CONFIG_MESH */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002582 { INT(wpa_ptk_rekey) },
Hai Shalomfdcde762020-04-02 11:19:20 -07002583 { INT_RANGE(wpa_deny_ptk0_rekey, 0, 2) },
Dmitry Shmidt7f2c7532016-08-15 09:48:12 -07002584 { INT(group_rekey) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002585 { STR(bgscan) },
Dmitry Shmidt04949592012-07-19 12:16:46 -07002586 { INT_RANGE(ignore_broadcast_ssid, 0, 2) },
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002587#ifdef CONFIG_P2P
Dmitry Shmidt54605472013-11-08 11:10:19 -08002588 { FUNC(go_p2p_dev_addr) },
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002589 { FUNC(p2p_client_list) },
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07002590 { FUNC(psk_list) },
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002591#endif /* CONFIG_P2P */
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002592#ifdef CONFIG_HT_OVERRIDES
2593 { INT_RANGE(disable_ht, 0, 1) },
2594 { INT_RANGE(disable_ht40, -1, 1) },
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08002595 { INT_RANGE(disable_sgi, 0, 1) },
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07002596 { INT_RANGE(disable_ldpc, 0, 1) },
Dmitry Shmidt61593f02014-04-21 16:27:35 -07002597 { INT_RANGE(ht40_intolerant, 0, 1) },
Hai Shalom74f70d42019-02-11 14:42:39 -08002598 { INT_RANGE(tx_stbc, -1, 1) },
2599 { INT_RANGE(rx_stbc, -1, 3) },
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002600 { INT_RANGE(disable_max_amsdu, -1, 1) },
2601 { INT_RANGE(ampdu_factor, -1, 3) },
2602 { INT_RANGE(ampdu_density, -1, 7) },
2603 { STR(ht_mcs) },
2604#endif /* CONFIG_HT_OVERRIDES */
Dmitry Shmidt2f023192013-03-12 12:44:17 -07002605#ifdef CONFIG_VHT_OVERRIDES
2606 { INT_RANGE(disable_vht, 0, 1) },
2607 { INT(vht_capa) },
2608 { INT(vht_capa_mask) },
2609 { INT_RANGE(vht_rx_mcs_nss_1, -1, 3) },
2610 { INT_RANGE(vht_rx_mcs_nss_2, -1, 3) },
2611 { INT_RANGE(vht_rx_mcs_nss_3, -1, 3) },
2612 { INT_RANGE(vht_rx_mcs_nss_4, -1, 3) },
2613 { INT_RANGE(vht_rx_mcs_nss_5, -1, 3) },
2614 { INT_RANGE(vht_rx_mcs_nss_6, -1, 3) },
2615 { INT_RANGE(vht_rx_mcs_nss_7, -1, 3) },
2616 { INT_RANGE(vht_rx_mcs_nss_8, -1, 3) },
2617 { INT_RANGE(vht_tx_mcs_nss_1, -1, 3) },
2618 { INT_RANGE(vht_tx_mcs_nss_2, -1, 3) },
2619 { INT_RANGE(vht_tx_mcs_nss_3, -1, 3) },
2620 { INT_RANGE(vht_tx_mcs_nss_4, -1, 3) },
2621 { INT_RANGE(vht_tx_mcs_nss_5, -1, 3) },
2622 { INT_RANGE(vht_tx_mcs_nss_6, -1, 3) },
2623 { INT_RANGE(vht_tx_mcs_nss_7, -1, 3) },
2624 { INT_RANGE(vht_tx_mcs_nss_8, -1, 3) },
2625#endif /* CONFIG_VHT_OVERRIDES */
Hai Shalomfdcde762020-04-02 11:19:20 -07002626#ifdef CONFIG_HE_OVERRIDES
2627 { INT_RANGE(disable_he, 0, 1)},
2628#endif /* CONFIG_HE_OVERRIDES */
Dmitry Shmidt04949592012-07-19 12:16:46 -07002629 { INT(ap_max_inactivity) },
2630 { INT(dtim_period) },
Dmitry Shmidt7a5e50a2013-03-05 12:37:16 -08002631 { INT(beacon_int) },
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -07002632#ifdef CONFIG_MACSEC
2633 { INT_RANGE(macsec_policy, 0, 1) },
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002634 { INT_RANGE(macsec_integ_only, 0, 1) },
Hai Shalom74f70d42019-02-11 14:42:39 -08002635 { INT_RANGE(macsec_replay_protect, 0, 1) },
2636 { INT(macsec_replay_window) },
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002637 { INT_RANGE(macsec_port, 1, 65534) },
Dmitry Shmidt29333592017-01-09 12:27:11 -08002638 { INT_RANGE(mka_priority, 0, 255) },
Sunil Ravia04bd252022-05-02 22:54:18 -07002639 { INT_RANGE(macsec_csindex, 0, 1) },
Dmitry Shmidtabb90a32016-12-05 15:34:39 -08002640 { FUNC_KEY(mka_cak) },
2641 { FUNC_KEY(mka_ckn) },
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -07002642#endif /* CONFIG_MACSEC */
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002643#ifdef CONFIG_HS20
2644 { INT(update_identifier) },
Roshan Pius3a1667e2018-07-03 15:17:14 -07002645 { STR_RANGE(roaming_consortium_selection, 0, MAX_ROAMING_CONS_OI_LEN) },
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002646#endif /* CONFIG_HS20 */
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07002647 { INT_RANGE(mac_addr, 0, 2) },
Dmitry Shmidt849734c2016-05-27 09:59:01 -07002648 { INT_RANGE(pbss, 0, 2) },
2649 { INT_RANGE(wps_disabled, 0, 1) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002650 { INT_RANGE(fils_dh_group, 0, 65535) },
2651#ifdef CONFIG_DPP
2652 { STR(dpp_connector) },
2653 { STR_LEN(dpp_netaccesskey) },
2654 { INT(dpp_netaccesskey_expiry) },
2655 { STR_LEN(dpp_csign) },
Hai Shalom899fcc72020-10-19 14:38:18 -07002656 { STR_LEN(dpp_pp_key) },
Hai Shalomfdcde762020-04-02 11:19:20 -07002657 { INT_RANGE(dpp_pfs, 0, 2) },
Sunil Ravi89eba102022-09-13 21:04:37 -07002658 { INT_RANGE(dpp_connector_privacy, 0, 1) },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002659#endif /* CONFIG_DPP */
2660 { INT_RANGE(owe_group, 0, 65535) },
Roshan Pius3a1667e2018-07-03 15:17:14 -07002661 { INT_RANGE(owe_only, 0, 1) },
Hai Shalomfdcde762020-04-02 11:19:20 -07002662 { INT_RANGE(owe_ptk_workaround, 0, 1) },
Hai Shalom74f70d42019-02-11 14:42:39 -08002663 { INT_RANGE(multi_ap_backhaul_sta, 0, 1) },
Hai Shalom81f62d82019-07-22 12:10:00 -07002664 { INT_RANGE(ft_eap_pmksa_caching, 0, 1) },
Hai Shalomfdcde762020-04-02 11:19:20 -07002665 { INT_RANGE(beacon_prot, 0, 1) },
2666 { INT_RANGE(transition_disable, 0, 255) },
Hai Shalom899fcc72020-10-19 14:38:18 -07002667 { INT_RANGE(sae_pk, 0, 2) },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002668};
2669
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002670#undef OFFSET
2671#undef _STR
2672#undef STR
2673#undef STR_KEY
2674#undef _STR_LEN
2675#undef STR_LEN
2676#undef STR_LEN_KEY
2677#undef _STR_RANGE
2678#undef STR_RANGE
2679#undef STR_RANGE_KEY
2680#undef _INT
2681#undef INT
2682#undef INT_RANGE
2683#undef _FUNC
2684#undef FUNC
2685#undef FUNC_KEY
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07002686#define NUM_SSID_FIELDS ARRAY_SIZE(ssid_fields)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002687
2688
2689/**
2690 * wpa_config_add_prio_network - Add a network to priority lists
2691 * @config: Configuration data from wpa_config_read()
2692 * @ssid: Pointer to the network configuration to be added to the list
2693 * Returns: 0 on success, -1 on failure
2694 *
2695 * This function is used to add a network block to the priority list of
2696 * networks. This must be called for each network when reading in the full
2697 * configuration. In addition, this can be used indirectly when updating
2698 * priorities by calling wpa_config_update_prio_list().
2699 */
2700int wpa_config_add_prio_network(struct wpa_config *config,
2701 struct wpa_ssid *ssid)
2702{
Hai Shalomfdcde762020-04-02 11:19:20 -07002703 size_t prio;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002704 struct wpa_ssid *prev, **nlist;
2705
2706 /*
2707 * Add to an existing priority list if one is available for the
2708 * configured priority level for this network.
2709 */
2710 for (prio = 0; prio < config->num_prio; prio++) {
2711 prev = config->pssid[prio];
2712 if (prev->priority == ssid->priority) {
2713 while (prev->pnext)
2714 prev = prev->pnext;
2715 prev->pnext = ssid;
2716 return 0;
2717 }
2718 }
2719
2720 /* First network for this priority - add a new priority list */
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002721 nlist = os_realloc_array(config->pssid, config->num_prio + 1,
2722 sizeof(struct wpa_ssid *));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002723 if (nlist == NULL)
2724 return -1;
2725
2726 for (prio = 0; prio < config->num_prio; prio++) {
Dmitry Shmidt04949592012-07-19 12:16:46 -07002727 if (nlist[prio]->priority < ssid->priority) {
2728 os_memmove(&nlist[prio + 1], &nlist[prio],
2729 (config->num_prio - prio) *
2730 sizeof(struct wpa_ssid *));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002731 break;
Dmitry Shmidt04949592012-07-19 12:16:46 -07002732 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002733 }
2734
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002735 nlist[prio] = ssid;
2736 config->num_prio++;
2737 config->pssid = nlist;
2738
2739 return 0;
2740}
2741
2742
2743/**
2744 * wpa_config_update_prio_list - Update network priority list
2745 * @config: Configuration data from wpa_config_read()
2746 * Returns: 0 on success, -1 on failure
2747 *
2748 * This function is called to update the priority list of networks in the
2749 * configuration when a network is being added or removed. This is also called
2750 * if a priority for a network is changed.
2751 */
2752int wpa_config_update_prio_list(struct wpa_config *config)
2753{
2754 struct wpa_ssid *ssid;
2755 int ret = 0;
2756
2757 os_free(config->pssid);
2758 config->pssid = NULL;
2759 config->num_prio = 0;
2760
2761 ssid = config->ssid;
2762 while (ssid) {
2763 ssid->pnext = NULL;
2764 if (wpa_config_add_prio_network(config, ssid) < 0)
2765 ret = -1;
2766 ssid = ssid->next;
2767 }
2768
2769 return ret;
2770}
2771
2772
2773#ifdef IEEE8021X_EAPOL
Hai Shalomc3565922019-10-28 11:58:20 -07002774
2775static void eap_peer_config_free_cert(struct eap_peer_cert_config *cert)
2776{
2777 os_free(cert->ca_cert);
2778 os_free(cert->ca_path);
2779 os_free(cert->client_cert);
2780 os_free(cert->private_key);
2781 str_clear_free(cert->private_key_passwd);
Hai Shalomc3565922019-10-28 11:58:20 -07002782 os_free(cert->subject_match);
2783 os_free(cert->check_cert_subject);
2784 os_free(cert->altsubject_match);
2785 os_free(cert->domain_suffix_match);
2786 os_free(cert->domain_match);
2787 str_clear_free(cert->pin);
2788 os_free(cert->engine_id);
2789 os_free(cert->key_id);
2790 os_free(cert->cert_id);
2791 os_free(cert->ca_cert_id);
2792}
2793
2794
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002795static void eap_peer_config_free(struct eap_peer_config *eap)
2796{
2797 os_free(eap->eap_methods);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002798 bin_clear_free(eap->identity, eap->identity_len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002799 os_free(eap->anonymous_identity);
Jouni Malinena3cb6f02017-12-08 17:05:40 +02002800 os_free(eap->imsi_identity);
Sunil8cd6f4d2022-06-28 18:40:46 +00002801 os_free(eap->imsi_privacy_cert);
2802 os_free(eap->imsi_privacy_attr);
Hai Shalomc3565922019-10-28 11:58:20 -07002803 os_free(eap->machine_identity);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002804 bin_clear_free(eap->password, eap->password_len);
Hai Shalomc3565922019-10-28 11:58:20 -07002805 bin_clear_free(eap->machine_password, eap->machine_password_len);
2806 eap_peer_config_free_cert(&eap->cert);
2807 eap_peer_config_free_cert(&eap->phase2_cert);
2808 eap_peer_config_free_cert(&eap->machine_cert);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002809 os_free(eap->phase1);
2810 os_free(eap->phase2);
Hai Shalomc3565922019-10-28 11:58:20 -07002811 os_free(eap->machine_phase2);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002812 os_free(eap->pcsc);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002813 os_free(eap->otp);
2814 os_free(eap->pending_req_otp);
2815 os_free(eap->pac_file);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002816 bin_clear_free(eap->new_password, eap->new_password_len);
2817 str_clear_free(eap->external_sim_resp);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002818 os_free(eap->openssl_ciphers);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002819}
Hai Shalomc3565922019-10-28 11:58:20 -07002820
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002821#endif /* IEEE8021X_EAPOL */
2822
2823
2824/**
2825 * wpa_config_free_ssid - Free network/ssid configuration data
2826 * @ssid: Configuration data for the network
2827 *
2828 * This function frees all resources allocated for the network configuration
2829 * data.
2830 */
2831void wpa_config_free_ssid(struct wpa_ssid *ssid)
2832{
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07002833 struct psk_list_entry *psk;
2834
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002835 os_free(ssid->ssid);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002836 str_clear_free(ssid->passphrase);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002837 os_free(ssid->ext_psk);
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002838 str_clear_free(ssid->sae_password);
Roshan Pius3a1667e2018-07-03 15:17:14 -07002839 os_free(ssid->sae_password_id);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002840#ifdef IEEE8021X_EAPOL
2841 eap_peer_config_free(&ssid->eap);
2842#endif /* IEEE8021X_EAPOL */
2843 os_free(ssid->id_str);
2844 os_free(ssid->scan_freq);
2845 os_free(ssid->freq_list);
2846 os_free(ssid->bgscan);
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08002847 os_free(ssid->p2p_client_list);
Hai Shalom60840252021-02-19 19:02:11 -08002848 os_free(ssid->bssid_ignore);
2849 os_free(ssid->bssid_accept);
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08002850#ifdef CONFIG_HT_OVERRIDES
2851 os_free(ssid->ht_mcs);
2852#endif /* CONFIG_HT_OVERRIDES */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002853#ifdef CONFIG_MESH
2854 os_free(ssid->mesh_basic_rates);
2855#endif /* CONFIG_MESH */
Roshan Pius3a1667e2018-07-03 15:17:14 -07002856#ifdef CONFIG_HS20
2857 os_free(ssid->roaming_consortium_selection);
2858#endif /* CONFIG_HS20 */
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07002859 os_free(ssid->dpp_connector);
2860 bin_clear_free(ssid->dpp_netaccesskey, ssid->dpp_netaccesskey_len);
2861 os_free(ssid->dpp_csign);
Hai Shalom899fcc72020-10-19 14:38:18 -07002862 os_free(ssid->dpp_pp_key);
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07002863 while ((psk = dl_list_first(&ssid->psk_list, struct psk_list_entry,
2864 list))) {
2865 dl_list_del(&psk->list);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002866 bin_clear_free(psk, sizeof(*psk));
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07002867 }
Hai Shalomc3565922019-10-28 11:58:20 -07002868#ifdef CONFIG_SAE
2869 sae_deinit_pt(ssid->pt);
2870#endif /* CONFIG_SAE */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002871 bin_clear_free(ssid, sizeof(*ssid));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002872}
2873
2874
Dmitry Shmidt04949592012-07-19 12:16:46 -07002875void wpa_config_free_cred(struct wpa_cred *cred)
2876{
Dmitry Shmidt051af732013-10-22 13:52:46 -07002877 size_t i;
2878
Dmitry Shmidt04949592012-07-19 12:16:46 -07002879 os_free(cred->realm);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002880 str_clear_free(cred->username);
2881 str_clear_free(cred->password);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002882 os_free(cred->ca_cert);
2883 os_free(cred->client_cert);
2884 os_free(cred->private_key);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002885 str_clear_free(cred->private_key_passwd);
Hai Shaloma20dcd72022-02-04 13:43:00 -08002886 os_free(cred->engine_id);
2887 os_free(cred->ca_cert_id);
2888 os_free(cred->cert_id);
2889 os_free(cred->key_id);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002890 os_free(cred->imsi);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002891 str_clear_free(cred->milenage);
Dmitry Shmidt051af732013-10-22 13:52:46 -07002892 for (i = 0; i < cred->num_domain; i++)
2893 os_free(cred->domain[i]);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002894 os_free(cred->domain);
Dmitry Shmidt051af732013-10-22 13:52:46 -07002895 os_free(cred->domain_suffix_match);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002896 os_free(cred->eap_method);
2897 os_free(cred->phase1);
2898 os_free(cred->phase2);
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08002899 os_free(cred->excluded_ssid);
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08002900 os_free(cred->roaming_partner);
2901 os_free(cred->provisioning_sp);
2902 for (i = 0; i < cred->num_req_conn_capab; i++)
2903 os_free(cred->req_conn_capab_port[i]);
2904 os_free(cred->req_conn_capab_port);
2905 os_free(cred->req_conn_capab_proto);
Sunil8cd6f4d2022-06-28 18:40:46 +00002906 os_free(cred->imsi_privacy_cert);
2907 os_free(cred->imsi_privacy_attr);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002908 os_free(cred);
2909}
2910
2911
Dmitry Shmidt344abd32014-01-14 13:17:00 -08002912void wpa_config_flush_blobs(struct wpa_config *config)
2913{
2914#ifndef CONFIG_NO_CONFIG_BLOBS
2915 struct wpa_config_blob *blob, *prev;
2916
2917 blob = config->blobs;
2918 config->blobs = NULL;
2919 while (blob) {
2920 prev = blob;
2921 blob = blob->next;
2922 wpa_config_free_blob(prev);
2923 }
2924#endif /* CONFIG_NO_CONFIG_BLOBS */
2925}
2926
2927
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002928/**
2929 * wpa_config_free - Free configuration data
2930 * @config: Configuration data from wpa_config_read()
2931 *
2932 * This function frees all resources allocated for the configuration data by
2933 * wpa_config_read().
2934 */
2935void wpa_config_free(struct wpa_config *config)
2936{
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002937 struct wpa_ssid *ssid, *prev = NULL;
Dmitry Shmidt04949592012-07-19 12:16:46 -07002938 struct wpa_cred *cred, *cprev;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002939 int i;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002940
2941 ssid = config->ssid;
2942 while (ssid) {
2943 prev = ssid;
2944 ssid = ssid->next;
2945 wpa_config_free_ssid(prev);
2946 }
2947
Dmitry Shmidt04949592012-07-19 12:16:46 -07002948 cred = config->cred;
2949 while (cred) {
2950 cprev = cred;
2951 cred = cred->next;
2952 wpa_config_free_cred(cprev);
2953 }
2954
Dmitry Shmidt344abd32014-01-14 13:17:00 -08002955 wpa_config_flush_blobs(config);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002956
Dmitry Shmidt04949592012-07-19 12:16:46 -07002957 wpabuf_free(config->wps_vendor_ext_m1);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002958 for (i = 0; i < MAX_WPS_VENDOR_EXT; i++)
2959 wpabuf_free(config->wps_vendor_ext[i]);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002960 os_free(config->ctrl_interface);
2961 os_free(config->ctrl_interface_group);
2962 os_free(config->opensc_engine_path);
2963 os_free(config->pkcs11_engine_path);
2964 os_free(config->pkcs11_module_path);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08002965 os_free(config->openssl_ciphers);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002966 os_free(config->pcsc_reader);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07002967 str_clear_free(config->pcsc_pin);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07002968 os_free(config->driver_param);
2969 os_free(config->device_name);
2970 os_free(config->manufacturer);
2971 os_free(config->model_name);
2972 os_free(config->model_number);
2973 os_free(config->serial_number);
2974 os_free(config->config_methods);
2975 os_free(config->p2p_ssid_postfix);
2976 os_free(config->pssid);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002977 os_free(config->p2p_pref_chan);
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07002978 os_free(config->p2p_no_go_freq.range);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002979 os_free(config->autoscan);
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07002980 os_free(config->freq_list);
Hai Shalom60840252021-02-19 19:02:11 -08002981 os_free(config->initial_freq_list);
Dmitry Shmidt04949592012-07-19 12:16:46 -07002982 wpabuf_free(config->wps_nfc_dh_pubkey);
2983 wpabuf_free(config->wps_nfc_dh_privkey);
2984 wpabuf_free(config->wps_nfc_dev_pw);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07002985 os_free(config->ext_password_backend);
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08002986 os_free(config->sae_groups);
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07002987 wpabuf_free(config->ap_vendor_elements);
Hai Shaloma20dcd72022-02-04 13:43:00 -08002988 wpabuf_free(config->ap_assocresp_elements);
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08002989 os_free(config->osu_dir);
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08002990 os_free(config->bgscan);
Dmitry Shmidtb58836e2014-04-29 14:35:56 -07002991 os_free(config->wowlan_triggers);
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08002992 os_free(config->fst_group_id);
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08002993 os_free(config->sched_scan_plans);
Dmitry Shmidt57c2d392016-02-23 13:40:19 -08002994#ifdef CONFIG_MBO
2995 os_free(config->non_pref_chan);
2996#endif /* CONFIG_MBO */
Hai Shalomc3565922019-10-28 11:58:20 -07002997 os_free(config->dpp_name);
2998 os_free(config->dpp_mud_url);
Sunil Ravi89eba102022-09-13 21:04:37 -07002999 os_free(config->dpp_extra_conf_req_name);
3000 os_free(config->dpp_extra_conf_req_value);
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08003001
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003002 os_free(config);
3003}
3004
3005
3006/**
3007 * wpa_config_foreach_network - Iterate over each configured network
3008 * @config: Configuration data from wpa_config_read()
3009 * @func: Callback function to process each network
3010 * @arg: Opaque argument to pass to callback function
3011 *
3012 * Iterate over the set of configured networks calling the specified
3013 * function for each item. We guard against callbacks removing the
3014 * supplied network.
3015 */
3016void wpa_config_foreach_network(struct wpa_config *config,
3017 void (*func)(void *, struct wpa_ssid *),
3018 void *arg)
3019{
3020 struct wpa_ssid *ssid, *next;
3021
3022 ssid = config->ssid;
3023 while (ssid) {
3024 next = ssid->next;
3025 func(arg, ssid);
3026 ssid = next;
3027 }
3028}
3029
3030
3031/**
3032 * wpa_config_get_network - Get configured network based on id
3033 * @config: Configuration data from wpa_config_read()
3034 * @id: Unique network id to search for
3035 * Returns: Network configuration or %NULL if not found
3036 */
3037struct wpa_ssid * wpa_config_get_network(struct wpa_config *config, int id)
3038{
3039 struct wpa_ssid *ssid;
3040
3041 ssid = config->ssid;
3042 while (ssid) {
3043 if (id == ssid->id)
3044 break;
3045 ssid = ssid->next;
3046 }
3047
3048 return ssid;
3049}
3050
3051
3052/**
3053 * wpa_config_add_network - Add a new network with empty configuration
3054 * @config: Configuration data from wpa_config_read()
3055 * Returns: The new network configuration or %NULL if operation failed
3056 */
3057struct wpa_ssid * wpa_config_add_network(struct wpa_config *config)
3058{
3059 int id;
3060 struct wpa_ssid *ssid, *last = NULL;
3061
3062 id = -1;
3063 ssid = config->ssid;
3064 while (ssid) {
3065 if (ssid->id > id)
3066 id = ssid->id;
3067 last = ssid;
3068 ssid = ssid->next;
3069 }
3070 id++;
3071
3072 ssid = os_zalloc(sizeof(*ssid));
3073 if (ssid == NULL)
3074 return NULL;
3075 ssid->id = id;
Dmitry Shmidt391c59f2013-09-03 12:16:28 -07003076 dl_list_init(&ssid->psk_list);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003077 if (last)
3078 last->next = ssid;
3079 else
3080 config->ssid = ssid;
3081
3082 wpa_config_update_prio_list(config);
3083
3084 return ssid;
3085}
3086
3087
3088/**
3089 * wpa_config_remove_network - Remove a configured network based on id
3090 * @config: Configuration data from wpa_config_read()
3091 * @id: Unique network id to search for
3092 * Returns: 0 on success, or -1 if the network was not found
3093 */
3094int wpa_config_remove_network(struct wpa_config *config, int id)
3095{
3096 struct wpa_ssid *ssid, *prev = NULL;
3097
3098 ssid = config->ssid;
3099 while (ssid) {
3100 if (id == ssid->id)
3101 break;
3102 prev = ssid;
3103 ssid = ssid->next;
3104 }
3105
3106 if (ssid == NULL)
3107 return -1;
3108
3109 if (prev)
3110 prev->next = ssid->next;
3111 else
3112 config->ssid = ssid->next;
3113
3114 wpa_config_update_prio_list(config);
3115 wpa_config_free_ssid(ssid);
3116 return 0;
3117}
3118
3119
3120/**
3121 * wpa_config_set_network_defaults - Set network default values
3122 * @ssid: Pointer to network configuration data
3123 */
3124void wpa_config_set_network_defaults(struct wpa_ssid *ssid)
3125{
3126 ssid->proto = DEFAULT_PROTO;
3127 ssid->pairwise_cipher = DEFAULT_PAIRWISE;
3128 ssid->group_cipher = DEFAULT_GROUP;
3129 ssid->key_mgmt = DEFAULT_KEY_MGMT;
Hai Shalomfdcde762020-04-02 11:19:20 -07003130 ssid->wpa_deny_ptk0_rekey = PTK0_REKEY_ALLOW_ALWAYS;
Dmitry Shmidt04949592012-07-19 12:16:46 -07003131 ssid->bg_scan_period = DEFAULT_BG_SCAN_PERIOD;
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07003132 ssid->ht = 1;
Hai Shalom899fcc72020-10-19 14:38:18 -07003133 ssid->vht = 1;
3134 ssid->he = 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003135#ifdef IEEE8021X_EAPOL
3136 ssid->eapol_flags = DEFAULT_EAPOL_FLAGS;
3137 ssid->eap_workaround = DEFAULT_EAP_WORKAROUND;
3138 ssid->eap.fragment_size = DEFAULT_FRAGMENT_SIZE;
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -07003139 ssid->eap.sim_num = DEFAULT_USER_SELECTED_SIM;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003140#endif /* IEEE8021X_EAPOL */
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003141#ifdef CONFIG_MESH
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003142 ssid->dot11MeshMaxRetries = DEFAULT_MESH_MAX_RETRIES;
3143 ssid->dot11MeshRetryTimeout = DEFAULT_MESH_RETRY_TIMEOUT;
3144 ssid->dot11MeshConfirmTimeout = DEFAULT_MESH_CONFIRM_TIMEOUT;
3145 ssid->dot11MeshHoldingTimeout = DEFAULT_MESH_HOLDING_TIMEOUT;
Hai Shaloma20dcd72022-02-04 13:43:00 -08003146 ssid->mesh_fwding = DEFAULT_MESH_FWDING;
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07003147 ssid->mesh_rssi_threshold = DEFAULT_MESH_RSSI_THRESHOLD;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003148#endif /* CONFIG_MESH */
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003149#ifdef CONFIG_HT_OVERRIDES
3150 ssid->disable_ht = DEFAULT_DISABLE_HT;
3151 ssid->disable_ht40 = DEFAULT_DISABLE_HT40;
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003152 ssid->disable_sgi = DEFAULT_DISABLE_SGI;
Dmitry Shmidtdf5a7e42014-04-02 12:59:59 -07003153 ssid->disable_ldpc = DEFAULT_DISABLE_LDPC;
Hai Shalom74f70d42019-02-11 14:42:39 -08003154 ssid->tx_stbc = DEFAULT_TX_STBC;
3155 ssid->rx_stbc = DEFAULT_RX_STBC;
Dmitry Shmidtc5ec7f52012-03-06 16:33:24 -08003156 ssid->disable_max_amsdu = DEFAULT_DISABLE_MAX_AMSDU;
3157 ssid->ampdu_factor = DEFAULT_AMPDU_FACTOR;
3158 ssid->ampdu_density = DEFAULT_AMPDU_DENSITY;
3159#endif /* CONFIG_HT_OVERRIDES */
Dmitry Shmidt2f023192013-03-12 12:44:17 -07003160#ifdef CONFIG_VHT_OVERRIDES
3161 ssid->vht_rx_mcs_nss_1 = -1;
3162 ssid->vht_rx_mcs_nss_2 = -1;
3163 ssid->vht_rx_mcs_nss_3 = -1;
3164 ssid->vht_rx_mcs_nss_4 = -1;
3165 ssid->vht_rx_mcs_nss_5 = -1;
3166 ssid->vht_rx_mcs_nss_6 = -1;
3167 ssid->vht_rx_mcs_nss_7 = -1;
3168 ssid->vht_rx_mcs_nss_8 = -1;
3169 ssid->vht_tx_mcs_nss_1 = -1;
3170 ssid->vht_tx_mcs_nss_2 = -1;
3171 ssid->vht_tx_mcs_nss_3 = -1;
3172 ssid->vht_tx_mcs_nss_4 = -1;
3173 ssid->vht_tx_mcs_nss_5 = -1;
3174 ssid->vht_tx_mcs_nss_6 = -1;
3175 ssid->vht_tx_mcs_nss_7 = -1;
3176 ssid->vht_tx_mcs_nss_8 = -1;
3177#endif /* CONFIG_VHT_OVERRIDES */
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08003178 ssid->proactive_key_caching = -1;
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08003179 ssid->ieee80211w = MGMT_FRAME_PROTECTION_DEFAULT;
Hai Shaloma20dcd72022-02-04 13:43:00 -08003180 ssid->sae_pwe = DEFAULT_SAE_PWE;
Dmitry Shmidt29333592017-01-09 12:27:11 -08003181#ifdef CONFIG_MACSEC
3182 ssid->mka_priority = DEFAULT_PRIO_NOT_KEY_SERVER;
3183#endif /* CONFIG_MACSEC */
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07003184 ssid->mac_addr = -1;
Hai Shalom74f70d42019-02-11 14:42:39 -08003185 ssid->max_oper_chwidth = DEFAULT_MAX_OPER_CHWIDTH;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003186}
3187
3188
Sunil Ravia04bd252022-05-02 22:54:18 -07003189static const char *removed_fields[] = {
3190 "dh_file",
3191 "dh_file2",
3192 "machine_dh_file",
3193 NULL
3194};
3195
3196static bool removed_field(const char *field)
3197{
3198 int i;
3199
3200 for (i = 0; removed_fields[i]; i++) {
3201 if (os_strcmp(field, removed_fields[i]) == 0)
3202 return true;
3203 }
3204
3205 return false;
3206}
3207
3208
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003209/**
3210 * wpa_config_set - Set a variable in network configuration
3211 * @ssid: Pointer to network configuration data
3212 * @var: Variable name, e.g., "ssid"
3213 * @value: Variable value
3214 * @line: Line number in configuration file or 0 if not used
Dmitry Shmidte4663042016-04-04 10:07:49 -07003215 * Returns: 0 on success with possible change in the value, 1 on success with
3216 * no change to previously configured value, or -1 on failure
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003217 *
3218 * This function can be used to set network configuration variables based on
3219 * both the configuration file and management interface input. The value
3220 * parameter must be in the same format as the text-based configuration file is
3221 * using. For example, strings are using double quotation marks.
3222 */
3223int wpa_config_set(struct wpa_ssid *ssid, const char *var, const char *value,
3224 int line)
3225{
3226 size_t i;
3227 int ret = 0;
3228
3229 if (ssid == NULL || var == NULL || value == NULL)
3230 return -1;
3231
3232 for (i = 0; i < NUM_SSID_FIELDS; i++) {
3233 const struct parse_data *field = &ssid_fields[i];
3234 if (os_strcmp(var, field->name) != 0)
3235 continue;
3236
Dmitry Shmidte4663042016-04-04 10:07:49 -07003237 ret = field->parser(field, ssid, line, value);
3238 if (ret < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003239 if (line) {
3240 wpa_printf(MSG_ERROR, "Line %d: failed to "
3241 "parse %s '%s'.", line, var, value);
3242 }
3243 ret = -1;
3244 }
Hai Shalomc3565922019-10-28 11:58:20 -07003245#ifdef CONFIG_SAE
3246 if (os_strcmp(var, "ssid") == 0 ||
3247 os_strcmp(var, "psk") == 0 ||
3248 os_strcmp(var, "sae_password") == 0 ||
3249 os_strcmp(var, "sae_password_id") == 0) {
3250 sae_deinit_pt(ssid->pt);
3251 ssid->pt = NULL;
3252 }
3253#endif /* CONFIG_SAE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003254 break;
3255 }
3256 if (i == NUM_SSID_FIELDS) {
Sunil Ravia04bd252022-05-02 22:54:18 -07003257 if (removed_field(var)) {
3258 wpa_printf(MSG_INFO,
3259 "Line %d: Ignore removed configuration field '%s'",
3260 line, var);
3261 return ret;
3262 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003263 if (line) {
3264 wpa_printf(MSG_ERROR, "Line %d: unknown network field "
3265 "'%s'.", line, var);
3266 }
3267 ret = -1;
3268 }
Hai Shalom899fcc72020-10-19 14:38:18 -07003269 ssid->was_recently_reconfigured = true;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003270
3271 return ret;
3272}
3273
3274
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08003275int wpa_config_set_quoted(struct wpa_ssid *ssid, const char *var,
3276 const char *value)
3277{
3278 size_t len;
3279 char *buf;
3280 int ret;
3281
3282 len = os_strlen(value);
3283 buf = os_malloc(len + 3);
3284 if (buf == NULL)
3285 return -1;
3286 buf[0] = '"';
3287 os_memcpy(buf + 1, value, len);
3288 buf[len + 1] = '"';
3289 buf[len + 2] = '\0';
3290 ret = wpa_config_set(ssid, var, buf, 0);
3291 os_free(buf);
3292 return ret;
3293}
3294
3295
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003296/**
3297 * wpa_config_get_all - Get all options from network configuration
3298 * @ssid: Pointer to network configuration data
3299 * @get_keys: Determines if keys/passwords will be included in returned list
3300 * (if they may be exported)
3301 * Returns: %NULL terminated list of all set keys and their values in the form
3302 * of [key1, val1, key2, val2, ... , NULL]
3303 *
3304 * This function can be used to get list of all configured network properties.
3305 * The caller is responsible for freeing the returned list and all its
3306 * elements.
3307 */
3308char ** wpa_config_get_all(struct wpa_ssid *ssid, int get_keys)
3309{
Dmitry Shmidt83474442015-04-15 13:47:09 -07003310#ifdef NO_CONFIG_WRITE
3311 return NULL;
3312#else /* NO_CONFIG_WRITE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003313 const struct parse_data *field;
3314 char *key, *value;
3315 size_t i;
3316 char **props;
3317 int fields_num;
3318
3319 get_keys = get_keys && ssid->export_keys;
3320
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003321 props = os_calloc(2 * NUM_SSID_FIELDS + 1, sizeof(char *));
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003322 if (!props)
3323 return NULL;
3324
3325 fields_num = 0;
3326 for (i = 0; i < NUM_SSID_FIELDS; i++) {
3327 field = &ssid_fields[i];
3328 if (field->key_data && !get_keys)
3329 continue;
3330 value = field->writer(field, ssid);
3331 if (value == NULL)
3332 continue;
3333 if (os_strlen(value) == 0) {
3334 os_free(value);
3335 continue;
3336 }
3337
3338 key = os_strdup(field->name);
3339 if (key == NULL) {
3340 os_free(value);
3341 goto err;
3342 }
3343
3344 props[fields_num * 2] = key;
3345 props[fields_num * 2 + 1] = value;
3346
3347 fields_num++;
3348 }
3349
3350 return props;
3351
3352err:
Dmitry Shmidt58d12ad2016-07-28 10:07:03 -07003353 for (i = 0; props[i]; i++)
3354 os_free(props[i]);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003355 os_free(props);
3356 return NULL;
Dmitry Shmidt83474442015-04-15 13:47:09 -07003357#endif /* NO_CONFIG_WRITE */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003358}
3359
3360
3361#ifndef NO_CONFIG_WRITE
3362/**
3363 * wpa_config_get - Get a variable in network configuration
3364 * @ssid: Pointer to network configuration data
3365 * @var: Variable name, e.g., "ssid"
3366 * Returns: Value of the variable or %NULL on failure
3367 *
3368 * This function can be used to get network configuration variables. The
3369 * returned value is a copy of the configuration variable in text format, i.e,.
3370 * the same format that the text-based configuration file and wpa_config_set()
3371 * are using for the value. The caller is responsible for freeing the returned
3372 * value.
3373 */
3374char * wpa_config_get(struct wpa_ssid *ssid, const char *var)
3375{
3376 size_t i;
3377
3378 if (ssid == NULL || var == NULL)
3379 return NULL;
3380
3381 for (i = 0; i < NUM_SSID_FIELDS; i++) {
3382 const struct parse_data *field = &ssid_fields[i];
Paul Stewart85c72c62016-03-03 15:33:47 -08003383 if (os_strcmp(var, field->name) == 0) {
3384 char *ret = field->writer(field, ssid);
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003385
3386 if (ret && has_newline(ret)) {
Paul Stewart35800752016-03-18 18:14:26 -07003387 wpa_printf(MSG_ERROR,
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003388 "Found newline in value for %s; not returning it",
3389 var);
Paul Stewart85c72c62016-03-03 15:33:47 -08003390 os_free(ret);
3391 ret = NULL;
3392 }
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003393
Paul Stewart85c72c62016-03-03 15:33:47 -08003394 return ret;
3395 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003396 }
3397
3398 return NULL;
3399}
3400
3401
3402/**
3403 * wpa_config_get_no_key - Get a variable in network configuration (no keys)
3404 * @ssid: Pointer to network configuration data
3405 * @var: Variable name, e.g., "ssid"
3406 * Returns: Value of the variable or %NULL on failure
3407 *
3408 * This function can be used to get network configuration variable like
3409 * wpa_config_get(). The only difference is that this functions does not expose
3410 * key/password material from the configuration. In case a key/password field
3411 * is requested, the returned value is an empty string or %NULL if the variable
3412 * is not set or "*" if the variable is set (regardless of its value). The
3413 * returned value is a copy of the configuration variable in text format, i.e,.
3414 * the same format that the text-based configuration file and wpa_config_set()
3415 * are using for the value. The caller is responsible for freeing the returned
3416 * value.
3417 */
3418char * wpa_config_get_no_key(struct wpa_ssid *ssid, const char *var)
3419{
3420 size_t i;
3421
3422 if (ssid == NULL || var == NULL)
3423 return NULL;
3424
3425 for (i = 0; i < NUM_SSID_FIELDS; i++) {
3426 const struct parse_data *field = &ssid_fields[i];
3427 if (os_strcmp(var, field->name) == 0) {
3428 char *res = field->writer(field, ssid);
3429 if (field->key_data) {
3430 if (res && res[0]) {
3431 wpa_printf(MSG_DEBUG, "Do not allow "
3432 "key_data field to be "
3433 "exposed");
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003434 str_clear_free(res);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003435 return os_strdup("*");
3436 }
3437
3438 os_free(res);
3439 return NULL;
3440 }
3441 return res;
3442 }
3443 }
3444
3445 return NULL;
3446}
3447#endif /* NO_CONFIG_WRITE */
3448
3449
3450/**
3451 * wpa_config_update_psk - Update WPA PSK based on passphrase and SSID
3452 * @ssid: Pointer to network configuration data
3453 *
3454 * This function must be called to update WPA PSK when either SSID or the
3455 * passphrase has changed for the network configuration.
3456 */
3457void wpa_config_update_psk(struct wpa_ssid *ssid)
3458{
3459#ifndef CONFIG_NO_PBKDF2
Sunil Ravia04bd252022-05-02 22:54:18 -07003460 if (pbkdf2_sha1(ssid->passphrase, ssid->ssid, ssid->ssid_len, 4096,
3461 ssid->psk, PMK_LEN) != 0) {
3462 wpa_printf(MSG_ERROR, "Error in pbkdf2_sha1()");
3463 return;
3464 }
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07003465 wpa_hexdump_key(MSG_MSGDUMP, "PSK (from passphrase)",
3466 ssid->psk, PMK_LEN);
3467 ssid->psk_set = 1;
3468#endif /* CONFIG_NO_PBKDF2 */
3469}
3470
3471
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003472static int wpa_config_set_cred_req_conn_capab(struct wpa_cred *cred,
3473 const char *value)
3474{
3475 u8 *proto;
3476 int **port;
3477 int *ports, *nports;
3478 const char *pos;
3479 unsigned int num_ports;
3480
3481 proto = os_realloc_array(cred->req_conn_capab_proto,
3482 cred->num_req_conn_capab + 1, sizeof(u8));
3483 if (proto == NULL)
3484 return -1;
3485 cred->req_conn_capab_proto = proto;
3486
3487 port = os_realloc_array(cred->req_conn_capab_port,
3488 cred->num_req_conn_capab + 1, sizeof(int *));
3489 if (port == NULL)
3490 return -1;
3491 cred->req_conn_capab_port = port;
3492
3493 proto[cred->num_req_conn_capab] = atoi(value);
3494
3495 pos = os_strchr(value, ':');
3496 if (pos == NULL) {
3497 port[cred->num_req_conn_capab] = NULL;
3498 cred->num_req_conn_capab++;
3499 return 0;
3500 }
3501 pos++;
3502
3503 ports = NULL;
3504 num_ports = 0;
3505
3506 while (*pos) {
3507 nports = os_realloc_array(ports, num_ports + 1, sizeof(int));
3508 if (nports == NULL) {
3509 os_free(ports);
3510 return -1;
3511 }
3512 ports = nports;
3513 ports[num_ports++] = atoi(pos);
3514
3515 pos = os_strchr(pos, ',');
3516 if (pos == NULL)
3517 break;
3518 pos++;
3519 }
3520
3521 nports = os_realloc_array(ports, num_ports + 1, sizeof(int));
3522 if (nports == NULL) {
3523 os_free(ports);
3524 return -1;
3525 }
3526 ports = nports;
3527 ports[num_ports] = -1;
3528
3529 port[cred->num_req_conn_capab] = ports;
3530 cred->num_req_conn_capab++;
3531 return 0;
3532}
3533
3534
Roshan Pius3a1667e2018-07-03 15:17:14 -07003535static int wpa_config_set_cred_roaming_consortiums(struct wpa_cred *cred,
3536 const char *value)
3537{
3538 u8 roaming_consortiums[MAX_ROAMING_CONS][MAX_ROAMING_CONS_OI_LEN];
3539 size_t roaming_consortiums_len[MAX_ROAMING_CONS];
3540 unsigned int num_roaming_consortiums = 0;
3541 const char *pos, *end;
3542 size_t len;
3543
3544 os_memset(roaming_consortiums, 0, sizeof(roaming_consortiums));
3545 os_memset(roaming_consortiums_len, 0, sizeof(roaming_consortiums_len));
3546
3547 for (pos = value;;) {
3548 end = os_strchr(pos, ',');
3549 len = end ? (size_t) (end - pos) : os_strlen(pos);
3550 if (!end && len == 0)
3551 break;
3552 if (len == 0 || (len & 1) != 0 ||
3553 len / 2 > MAX_ROAMING_CONS_OI_LEN ||
3554 hexstr2bin(pos,
3555 roaming_consortiums[num_roaming_consortiums],
3556 len / 2) < 0) {
3557 wpa_printf(MSG_INFO,
3558 "Invalid roaming_consortiums entry: %s",
3559 pos);
3560 return -1;
3561 }
3562 roaming_consortiums_len[num_roaming_consortiums] = len / 2;
3563 num_roaming_consortiums++;
Hai Shalom39ba6fc2019-01-22 12:40:38 -08003564
3565 if (!end)
3566 break;
3567
3568 if (num_roaming_consortiums >= MAX_ROAMING_CONS) {
Roshan Pius3a1667e2018-07-03 15:17:14 -07003569 wpa_printf(MSG_INFO,
3570 "Too many roaming_consortiums OIs");
3571 return -1;
3572 }
3573
Roshan Pius3a1667e2018-07-03 15:17:14 -07003574 pos = end + 1;
3575 }
3576
3577 os_memcpy(cred->roaming_consortiums, roaming_consortiums,
3578 sizeof(roaming_consortiums));
3579 os_memcpy(cred->roaming_consortiums_len, roaming_consortiums_len,
3580 sizeof(roaming_consortiums_len));
3581 cred->num_roaming_consortiums = num_roaming_consortiums;
3582
3583 return 0;
3584}
3585
3586
Dmitry Shmidt04949592012-07-19 12:16:46 -07003587int wpa_config_set_cred(struct wpa_cred *cred, const char *var,
3588 const char *value, int line)
3589{
3590 char *val;
3591 size_t len;
Roshan Pius3a1667e2018-07-03 15:17:14 -07003592 int res;
Dmitry Shmidt04949592012-07-19 12:16:46 -07003593
Dmitry Shmidtfb79edc2014-01-10 10:45:54 -08003594 if (os_strcmp(var, "temporary") == 0) {
3595 cred->temporary = atoi(value);
3596 return 0;
3597 }
3598
Dmitry Shmidt04949592012-07-19 12:16:46 -07003599 if (os_strcmp(var, "priority") == 0) {
3600 cred->priority = atoi(value);
3601 return 0;
3602 }
3603
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003604 if (os_strcmp(var, "sp_priority") == 0) {
3605 int prio = atoi(value);
3606 if (prio < 0 || prio > 255)
3607 return -1;
3608 cred->sp_priority = prio;
3609 return 0;
3610 }
3611
Dmitry Shmidt04949592012-07-19 12:16:46 -07003612 if (os_strcmp(var, "pcsc") == 0) {
3613 cred->pcsc = atoi(value);
3614 return 0;
3615 }
3616
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003617 if (os_strcmp(var, "eap") == 0) {
3618 struct eap_method_type method;
3619 method.method = eap_peer_get_type(value, &method.vendor);
3620 if (method.vendor == EAP_VENDOR_IETF &&
3621 method.method == EAP_TYPE_NONE) {
3622 wpa_printf(MSG_ERROR, "Line %d: unknown EAP type '%s' "
3623 "for a credential", line, value);
3624 return -1;
3625 }
3626 os_free(cred->eap_method);
3627 cred->eap_method = os_malloc(sizeof(*cred->eap_method));
3628 if (cred->eap_method == NULL)
3629 return -1;
3630 os_memcpy(cred->eap_method, &method, sizeof(method));
3631 return 0;
3632 }
3633
3634 if (os_strcmp(var, "password") == 0 &&
3635 os_strncmp(value, "ext:", 4) == 0) {
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003636 if (has_newline(value))
3637 return -1;
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003638 str_clear_free(cred->password);
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003639 cred->password = os_strdup(value);
3640 cred->ext_password = 1;
3641 return 0;
3642 }
3643
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003644 if (os_strcmp(var, "update_identifier") == 0) {
3645 cred->update_identifier = atoi(value);
3646 return 0;
3647 }
3648
3649 if (os_strcmp(var, "min_dl_bandwidth_home") == 0) {
3650 cred->min_dl_bandwidth_home = atoi(value);
3651 return 0;
3652 }
3653
3654 if (os_strcmp(var, "min_ul_bandwidth_home") == 0) {
3655 cred->min_ul_bandwidth_home = atoi(value);
3656 return 0;
3657 }
3658
3659 if (os_strcmp(var, "min_dl_bandwidth_roaming") == 0) {
3660 cred->min_dl_bandwidth_roaming = atoi(value);
3661 return 0;
3662 }
3663
3664 if (os_strcmp(var, "min_ul_bandwidth_roaming") == 0) {
3665 cred->min_ul_bandwidth_roaming = atoi(value);
3666 return 0;
3667 }
3668
3669 if (os_strcmp(var, "max_bss_load") == 0) {
3670 cred->max_bss_load = atoi(value);
3671 return 0;
3672 }
3673
3674 if (os_strcmp(var, "req_conn_capab") == 0)
3675 return wpa_config_set_cred_req_conn_capab(cred, value);
3676
3677 if (os_strcmp(var, "ocsp") == 0) {
3678 cred->ocsp = atoi(value);
3679 return 0;
3680 }
3681
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -07003682 if (os_strcmp(var, "sim_num") == 0) {
3683 cred->sim_num = atoi(value);
3684 return 0;
3685 }
3686
Hai Shaloma20dcd72022-02-04 13:43:00 -08003687 if (os_strcmp(var, "engine") == 0) {
3688 cred->engine = atoi(value);
3689 return 0;
3690 }
3691
Dmitry Shmidt04949592012-07-19 12:16:46 -07003692 val = wpa_config_parse_string(value, &len);
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003693 if (val == NULL ||
3694 (os_strcmp(var, "excluded_ssid") != 0 &&
3695 os_strcmp(var, "roaming_consortium") != 0 &&
3696 os_strcmp(var, "required_roaming_consortium") != 0 &&
3697 has_newline(val))) {
Dmitry Shmidt04949592012-07-19 12:16:46 -07003698 wpa_printf(MSG_ERROR, "Line %d: invalid field '%s' string "
3699 "value '%s'.", line, var, value);
Dmitry Shmidt849734c2016-05-27 09:59:01 -07003700 os_free(val);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003701 return -1;
3702 }
3703
3704 if (os_strcmp(var, "realm") == 0) {
3705 os_free(cred->realm);
3706 cred->realm = val;
3707 return 0;
3708 }
3709
3710 if (os_strcmp(var, "username") == 0) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003711 str_clear_free(cred->username);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003712 cred->username = val;
3713 return 0;
3714 }
3715
3716 if (os_strcmp(var, "password") == 0) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003717 str_clear_free(cred->password);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003718 cred->password = val;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003719 cred->ext_password = 0;
Dmitry Shmidt04949592012-07-19 12:16:46 -07003720 return 0;
3721 }
3722
3723 if (os_strcmp(var, "ca_cert") == 0) {
3724 os_free(cred->ca_cert);
3725 cred->ca_cert = val;
3726 return 0;
3727 }
3728
3729 if (os_strcmp(var, "client_cert") == 0) {
3730 os_free(cred->client_cert);
3731 cred->client_cert = val;
3732 return 0;
3733 }
3734
3735 if (os_strcmp(var, "private_key") == 0) {
3736 os_free(cred->private_key);
3737 cred->private_key = val;
3738 return 0;
3739 }
3740
3741 if (os_strcmp(var, "private_key_passwd") == 0) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003742 str_clear_free(cred->private_key_passwd);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003743 cred->private_key_passwd = val;
3744 return 0;
3745 }
3746
Hai Shaloma20dcd72022-02-04 13:43:00 -08003747 if (os_strcmp(var, "engine_id") == 0) {
3748 os_free(cred->engine_id);
3749 cred->engine_id = val;
3750 return 0;
3751 }
3752
3753 if (os_strcmp(var, "ca_cert_id") == 0) {
3754 os_free(cred->ca_cert_id);
3755 cred->ca_cert_id = val;
3756 return 0;
3757 }
3758
3759 if (os_strcmp(var, "cert_id") == 0) {
3760 os_free(cred->cert_id);
3761 cred->cert_id = val;
3762 return 0;
3763 }
3764
3765 if (os_strcmp(var, "key_id") == 0) {
3766 os_free(cred->key_id);
3767 cred->key_id = val;
3768 return 0;
3769 }
3770
Dmitry Shmidt04949592012-07-19 12:16:46 -07003771 if (os_strcmp(var, "imsi") == 0) {
3772 os_free(cred->imsi);
3773 cred->imsi = val;
3774 return 0;
3775 }
3776
3777 if (os_strcmp(var, "milenage") == 0) {
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003778 str_clear_free(cred->milenage);
Dmitry Shmidt04949592012-07-19 12:16:46 -07003779 cred->milenage = val;
3780 return 0;
3781 }
3782
Dmitry Shmidt051af732013-10-22 13:52:46 -07003783 if (os_strcmp(var, "domain_suffix_match") == 0) {
3784 os_free(cred->domain_suffix_match);
3785 cred->domain_suffix_match = val;
3786 return 0;
3787 }
3788
Dmitry Shmidt04949592012-07-19 12:16:46 -07003789 if (os_strcmp(var, "domain") == 0) {
Dmitry Shmidt051af732013-10-22 13:52:46 -07003790 char **new_domain;
3791 new_domain = os_realloc_array(cred->domain,
3792 cred->num_domain + 1,
3793 sizeof(char *));
3794 if (new_domain == NULL) {
3795 os_free(val);
3796 return -1;
3797 }
3798 new_domain[cred->num_domain++] = val;
3799 cred->domain = new_domain;
Dmitry Shmidt04949592012-07-19 12:16:46 -07003800 return 0;
3801 }
3802
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07003803 if (os_strcmp(var, "phase1") == 0) {
3804 os_free(cred->phase1);
3805 cred->phase1 = val;
3806 return 0;
3807 }
3808
3809 if (os_strcmp(var, "phase2") == 0) {
3810 os_free(cred->phase2);
3811 cred->phase2 = val;
3812 return 0;
3813 }
3814
3815 if (os_strcmp(var, "roaming_consortium") == 0) {
3816 if (len < 3 || len > sizeof(cred->roaming_consortium)) {
3817 wpa_printf(MSG_ERROR, "Line %d: invalid "
3818 "roaming_consortium length %d (3..15 "
3819 "expected)", line, (int) len);
3820 os_free(val);
3821 return -1;
3822 }
3823 os_memcpy(cred->roaming_consortium, val, len);
3824 cred->roaming_consortium_len = len;
3825 os_free(val);
3826 return 0;
3827 }
3828
Dmitry Shmidt051af732013-10-22 13:52:46 -07003829 if (os_strcmp(var, "required_roaming_consortium") == 0) {
3830 if (len < 3 || len > sizeof(cred->required_roaming_consortium))
3831 {
3832 wpa_printf(MSG_ERROR, "Line %d: invalid "
3833 "required_roaming_consortium length %d "
3834 "(3..15 expected)", line, (int) len);
3835 os_free(val);
3836 return -1;
3837 }
3838 os_memcpy(cred->required_roaming_consortium, val, len);
3839 cred->required_roaming_consortium_len = len;
3840 os_free(val);
3841 return 0;
3842 }
3843
Roshan Pius3a1667e2018-07-03 15:17:14 -07003844 if (os_strcmp(var, "roaming_consortiums") == 0) {
3845 res = wpa_config_set_cred_roaming_consortiums(cred, val);
3846 if (res < 0)
3847 wpa_printf(MSG_ERROR,
3848 "Line %d: invalid roaming_consortiums",
3849 line);
3850 os_free(val);
3851 return res;
3852 }
3853
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003854 if (os_strcmp(var, "excluded_ssid") == 0) {
3855 struct excluded_ssid *e;
3856
Dmitry Shmidt9d9e6022015-04-23 10:34:55 -07003857 if (len > SSID_MAX_LEN) {
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08003858 wpa_printf(MSG_ERROR, "Line %d: invalid "
3859 "excluded_ssid length %d", line, (int) len);
3860 os_free(val);
3861 return -1;
3862 }
3863
3864 e = os_realloc_array(cred->excluded_ssid,
3865 cred->num_excluded_ssid + 1,
3866 sizeof(struct excluded_ssid));
3867 if (e == NULL) {
3868 os_free(val);
3869 return -1;
3870 }
3871 cred->excluded_ssid = e;
3872
3873 e = &cred->excluded_ssid[cred->num_excluded_ssid++];
3874 os_memcpy(e->ssid, val, len);
3875 e->ssid_len = len;
3876
3877 os_free(val);
3878
3879 return 0;
3880 }
3881
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08003882 if (os_strcmp(var, "roaming_partner") == 0) {
3883 struct roaming_partner *p;
3884 char *pos;
3885
3886 p = os_realloc_array(cred->roaming_partner,
3887 cred->num_roaming_partner + 1,
3888 sizeof(struct roaming_partner));
3889 if (p == NULL) {
3890 os_free(val);
3891 return -1;
3892 }
3893 cred->roaming_partner = p;
3894
3895 p = &cred->roaming_partner[cred->num_roaming_partner];
3896
3897 pos = os_strchr(val, ',');
3898 if (pos == NULL) {
3899 os_free(val);
3900 return -1;
3901 }
3902 *pos++ = '\0';
3903 if (pos - val - 1 >= (int) sizeof(p->fqdn)) {
3904 os_free(val);
3905 return -1;
3906 }
3907 os_memcpy(p->fqdn, val, pos - val);
3908
3909 p->exact_match = atoi(pos);
3910
3911 pos = os_strchr(pos, ',');
3912 if (pos == NULL) {
3913 os_free(val);
3914 return -1;
3915 }
3916 *pos++ = '\0';
3917
3918 p->priority = atoi(pos);
3919
3920 pos = os_strchr(pos, ',');
3921 if (pos == NULL) {
3922 os_free(val);
3923 return -1;
3924 }
3925 *pos++ = '\0';
3926
3927 if (os_strlen(pos) >= sizeof(p->country)) {
3928 os_free(val);
3929 return -1;
3930 }
3931 os_memcpy(p->country, pos, os_strlen(pos) + 1);
3932
3933 cred->num_roaming_partner++;
3934 os_free(val);
3935
3936 return 0;
3937 }
3938
3939 if (os_strcmp(var, "provisioning_sp") == 0) {
3940 os_free(cred->provisioning_sp);
3941 cred->provisioning_sp = val;
3942 return 0;
3943 }
3944
Sunil8cd6f4d2022-06-28 18:40:46 +00003945 if (os_strcmp(var, "imsi_privacy_cert") == 0) {
3946 os_free(cred->imsi_privacy_cert);
3947 cred->imsi_privacy_cert = val;
3948 return 0;
3949 }
3950
3951 if (os_strcmp(var, "imsi_privacy_attr") == 0) {
3952 os_free(cred->imsi_privacy_attr);
3953 cred->imsi_privacy_attr = val;
Sunil Ravia04bd252022-05-02 22:54:18 -07003954 return 0;
3955 }
3956
Steven Liu9138d432022-11-23 22:29:05 +00003957 if (os_strcmp(var, "strict_conservative_peer_mode") == 0) {
3958 cred->strict_conservative_peer_mode = atoi(val);
3959 return 0;
3960 }
3961
Dmitry Shmidt04949592012-07-19 12:16:46 -07003962 if (line) {
3963 wpa_printf(MSG_ERROR, "Line %d: unknown cred field '%s'.",
3964 line, var);
3965 }
3966
3967 os_free(val);
3968
3969 return -1;
3970}
3971
3972
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003973static char * alloc_int_str(int val)
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003974{
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003975 const unsigned int bufsize = 20;
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003976 char *buf;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003977 int res;
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003978
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003979 buf = os_malloc(bufsize);
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003980 if (buf == NULL)
3981 return NULL;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08003982 res = os_snprintf(buf, bufsize, "%d", val);
3983 if (os_snprintf_error(bufsize, res)) {
3984 os_free(buf);
3985 buf = NULL;
3986 }
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003987 return buf;
3988}
3989
3990
Dmitry Shmidtc2817022014-07-02 10:32:10 -07003991static char * alloc_strdup(const char *str)
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07003992{
3993 if (str == NULL)
3994 return NULL;
3995 return os_strdup(str);
3996}
3997
3998
3999char * wpa_config_get_cred_no_key(struct wpa_cred *cred, const char *var)
4000{
4001 if (os_strcmp(var, "temporary") == 0)
4002 return alloc_int_str(cred->temporary);
4003
4004 if (os_strcmp(var, "priority") == 0)
4005 return alloc_int_str(cred->priority);
4006
4007 if (os_strcmp(var, "sp_priority") == 0)
4008 return alloc_int_str(cred->sp_priority);
4009
4010 if (os_strcmp(var, "pcsc") == 0)
4011 return alloc_int_str(cred->pcsc);
4012
4013 if (os_strcmp(var, "eap") == 0) {
4014 if (!cred->eap_method)
4015 return NULL;
4016 return alloc_strdup(eap_get_name(cred->eap_method[0].vendor,
4017 cred->eap_method[0].method));
4018 }
4019
4020 if (os_strcmp(var, "update_identifier") == 0)
4021 return alloc_int_str(cred->update_identifier);
4022
4023 if (os_strcmp(var, "min_dl_bandwidth_home") == 0)
4024 return alloc_int_str(cred->min_dl_bandwidth_home);
4025
4026 if (os_strcmp(var, "min_ul_bandwidth_home") == 0)
4027 return alloc_int_str(cred->min_ul_bandwidth_home);
4028
4029 if (os_strcmp(var, "min_dl_bandwidth_roaming") == 0)
4030 return alloc_int_str(cred->min_dl_bandwidth_roaming);
4031
4032 if (os_strcmp(var, "min_ul_bandwidth_roaming") == 0)
4033 return alloc_int_str(cred->min_ul_bandwidth_roaming);
4034
4035 if (os_strcmp(var, "max_bss_load") == 0)
4036 return alloc_int_str(cred->max_bss_load);
4037
4038 if (os_strcmp(var, "req_conn_capab") == 0) {
4039 unsigned int i;
4040 char *buf, *end, *pos;
4041 int ret;
4042
4043 if (!cred->num_req_conn_capab)
4044 return NULL;
4045
4046 buf = os_malloc(4000);
4047 if (buf == NULL)
4048 return NULL;
4049 pos = buf;
4050 end = pos + 4000;
4051 for (i = 0; i < cred->num_req_conn_capab; i++) {
4052 int *ports;
4053
4054 ret = os_snprintf(pos, end - pos, "%s%u",
4055 i > 0 ? "\n" : "",
4056 cred->req_conn_capab_proto[i]);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004057 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004058 return buf;
4059 pos += ret;
4060
4061 ports = cred->req_conn_capab_port[i];
4062 if (ports) {
4063 int j;
4064 for (j = 0; ports[j] != -1; j++) {
4065 ret = os_snprintf(pos, end - pos,
4066 "%s%d",
4067 j > 0 ? "," : ":",
4068 ports[j]);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004069 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004070 return buf;
4071 pos += ret;
4072 }
4073 }
4074 }
4075
4076 return buf;
4077 }
4078
4079 if (os_strcmp(var, "ocsp") == 0)
4080 return alloc_int_str(cred->ocsp);
4081
4082 if (os_strcmp(var, "realm") == 0)
4083 return alloc_strdup(cred->realm);
4084
4085 if (os_strcmp(var, "username") == 0)
4086 return alloc_strdup(cred->username);
4087
4088 if (os_strcmp(var, "password") == 0) {
4089 if (!cred->password)
4090 return NULL;
4091 return alloc_strdup("*");
4092 }
4093
4094 if (os_strcmp(var, "ca_cert") == 0)
4095 return alloc_strdup(cred->ca_cert);
4096
4097 if (os_strcmp(var, "client_cert") == 0)
4098 return alloc_strdup(cred->client_cert);
4099
4100 if (os_strcmp(var, "private_key") == 0)
4101 return alloc_strdup(cred->private_key);
4102
4103 if (os_strcmp(var, "private_key_passwd") == 0) {
4104 if (!cred->private_key_passwd)
4105 return NULL;
4106 return alloc_strdup("*");
4107 }
4108
4109 if (os_strcmp(var, "imsi") == 0)
4110 return alloc_strdup(cred->imsi);
4111
Sunil8cd6f4d2022-06-28 18:40:46 +00004112 if (os_strcmp(var, "imsi_privacy_cert") == 0)
4113 return alloc_strdup(cred->imsi_privacy_cert);
4114
4115 if (os_strcmp(var, "imsi_privacy_attr") == 0)
4116 return alloc_strdup(cred->imsi_privacy_attr);
Sunil Ravia04bd252022-05-02 22:54:18 -07004117
Steven Liu9138d432022-11-23 22:29:05 +00004118 if (os_strcmp(var, "strict_conservative_peer_mode") == 0)
4119 return alloc_int_str(cred->strict_conservative_peer_mode);
4120
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004121 if (os_strcmp(var, "milenage") == 0) {
4122 if (!(cred->milenage))
4123 return NULL;
4124 return alloc_strdup("*");
4125 }
4126
4127 if (os_strcmp(var, "domain_suffix_match") == 0)
4128 return alloc_strdup(cred->domain_suffix_match);
4129
4130 if (os_strcmp(var, "domain") == 0) {
4131 unsigned int i;
4132 char *buf, *end, *pos;
4133 int ret;
4134
4135 if (!cred->num_domain)
4136 return NULL;
4137
4138 buf = os_malloc(4000);
4139 if (buf == NULL)
4140 return NULL;
4141 pos = buf;
4142 end = pos + 4000;
4143
4144 for (i = 0; i < cred->num_domain; i++) {
4145 ret = os_snprintf(pos, end - pos, "%s%s",
4146 i > 0 ? "\n" : "", cred->domain[i]);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004147 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004148 return buf;
4149 pos += ret;
4150 }
4151
4152 return buf;
4153 }
4154
4155 if (os_strcmp(var, "phase1") == 0)
4156 return alloc_strdup(cred->phase1);
4157
4158 if (os_strcmp(var, "phase2") == 0)
4159 return alloc_strdup(cred->phase2);
4160
4161 if (os_strcmp(var, "roaming_consortium") == 0) {
4162 size_t buflen;
4163 char *buf;
4164
4165 if (!cred->roaming_consortium_len)
4166 return NULL;
4167 buflen = cred->roaming_consortium_len * 2 + 1;
4168 buf = os_malloc(buflen);
4169 if (buf == NULL)
4170 return NULL;
4171 wpa_snprintf_hex(buf, buflen, cred->roaming_consortium,
4172 cred->roaming_consortium_len);
4173 return buf;
4174 }
4175
4176 if (os_strcmp(var, "required_roaming_consortium") == 0) {
4177 size_t buflen;
4178 char *buf;
4179
4180 if (!cred->required_roaming_consortium_len)
4181 return NULL;
4182 buflen = cred->required_roaming_consortium_len * 2 + 1;
4183 buf = os_malloc(buflen);
4184 if (buf == NULL)
4185 return NULL;
4186 wpa_snprintf_hex(buf, buflen, cred->required_roaming_consortium,
4187 cred->required_roaming_consortium_len);
4188 return buf;
4189 }
4190
Roshan Pius3a1667e2018-07-03 15:17:14 -07004191 if (os_strcmp(var, "roaming_consortiums") == 0) {
4192 size_t buflen;
4193 char *buf, *pos;
4194 size_t i;
4195
4196 if (!cred->num_roaming_consortiums)
4197 return NULL;
4198 buflen = cred->num_roaming_consortiums *
4199 MAX_ROAMING_CONS_OI_LEN * 2 + 1;
4200 buf = os_malloc(buflen);
4201 if (!buf)
4202 return NULL;
4203 pos = buf;
4204 for (i = 0; i < cred->num_roaming_consortiums; i++) {
4205 if (i > 0)
4206 *pos++ = ',';
4207 pos += wpa_snprintf_hex(
4208 pos, buf + buflen - pos,
4209 cred->roaming_consortiums[i],
4210 cred->roaming_consortiums_len[i]);
4211 }
4212 *pos = '\0';
4213 return buf;
4214 }
4215
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004216 if (os_strcmp(var, "excluded_ssid") == 0) {
4217 unsigned int i;
4218 char *buf, *end, *pos;
4219
4220 if (!cred->num_excluded_ssid)
4221 return NULL;
4222
4223 buf = os_malloc(4000);
4224 if (buf == NULL)
4225 return NULL;
4226 pos = buf;
4227 end = pos + 4000;
4228
4229 for (i = 0; i < cred->num_excluded_ssid; i++) {
4230 struct excluded_ssid *e;
4231 int ret;
4232
4233 e = &cred->excluded_ssid[i];
4234 ret = os_snprintf(pos, end - pos, "%s%s",
4235 i > 0 ? "\n" : "",
4236 wpa_ssid_txt(e->ssid, e->ssid_len));
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004237 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004238 return buf;
4239 pos += ret;
4240 }
4241
4242 return buf;
4243 }
4244
4245 if (os_strcmp(var, "roaming_partner") == 0) {
4246 unsigned int i;
4247 char *buf, *end, *pos;
4248
4249 if (!cred->num_roaming_partner)
4250 return NULL;
4251
4252 buf = os_malloc(4000);
4253 if (buf == NULL)
4254 return NULL;
4255 pos = buf;
4256 end = pos + 4000;
4257
4258 for (i = 0; i < cred->num_roaming_partner; i++) {
4259 struct roaming_partner *p;
4260 int ret;
4261
4262 p = &cred->roaming_partner[i];
4263 ret = os_snprintf(pos, end - pos, "%s%s,%d,%u,%s",
4264 i > 0 ? "\n" : "",
4265 p->fqdn, p->exact_match, p->priority,
4266 p->country);
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004267 if (os_snprintf_error(end - pos, ret))
Dmitry Shmidt0cfd5f72014-04-04 14:48:05 -07004268 return buf;
4269 pos += ret;
4270 }
4271
4272 return buf;
4273 }
4274
4275 if (os_strcmp(var, "provisioning_sp") == 0)
4276 return alloc_strdup(cred->provisioning_sp);
4277
4278 return NULL;
4279}
4280
4281
Dmitry Shmidt04949592012-07-19 12:16:46 -07004282struct wpa_cred * wpa_config_get_cred(struct wpa_config *config, int id)
4283{
4284 struct wpa_cred *cred;
4285
4286 cred = config->cred;
4287 while (cred) {
4288 if (id == cred->id)
4289 break;
4290 cred = cred->next;
4291 }
4292
4293 return cred;
4294}
4295
4296
4297struct wpa_cred * wpa_config_add_cred(struct wpa_config *config)
4298{
4299 int id;
4300 struct wpa_cred *cred, *last = NULL;
4301
4302 id = -1;
4303 cred = config->cred;
4304 while (cred) {
4305 if (cred->id > id)
4306 id = cred->id;
4307 last = cred;
4308 cred = cred->next;
4309 }
4310 id++;
4311
4312 cred = os_zalloc(sizeof(*cred));
4313 if (cred == NULL)
4314 return NULL;
4315 cred->id = id;
Dmitry Shmidtf9bdef92014-04-25 10:46:36 -07004316 cred->sim_num = DEFAULT_USER_SELECTED_SIM;
Dmitry Shmidt04949592012-07-19 12:16:46 -07004317 if (last)
4318 last->next = cred;
4319 else
4320 config->cred = cred;
4321
4322 return cred;
4323}
4324
4325
4326int wpa_config_remove_cred(struct wpa_config *config, int id)
4327{
4328 struct wpa_cred *cred, *prev = NULL;
4329
4330 cred = config->cred;
4331 while (cred) {
4332 if (id == cred->id)
4333 break;
4334 prev = cred;
4335 cred = cred->next;
4336 }
4337
4338 if (cred == NULL)
4339 return -1;
4340
4341 if (prev)
4342 prev->next = cred->next;
4343 else
4344 config->cred = cred->next;
4345
4346 wpa_config_free_cred(cred);
4347 return 0;
4348}
4349
4350
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004351#ifndef CONFIG_NO_CONFIG_BLOBS
4352/**
4353 * wpa_config_get_blob - Get a named configuration blob
4354 * @config: Configuration data from wpa_config_read()
4355 * @name: Name of the blob
4356 * Returns: Pointer to blob data or %NULL if not found
4357 */
4358const struct wpa_config_blob * wpa_config_get_blob(struct wpa_config *config,
4359 const char *name)
4360{
4361 struct wpa_config_blob *blob = config->blobs;
4362
4363 while (blob) {
4364 if (os_strcmp(blob->name, name) == 0)
4365 return blob;
4366 blob = blob->next;
4367 }
4368 return NULL;
4369}
4370
4371
4372/**
4373 * wpa_config_set_blob - Set or add a named configuration blob
4374 * @config: Configuration data from wpa_config_read()
4375 * @blob: New value for the blob
4376 *
4377 * Adds a new configuration blob or replaces the current value of an existing
4378 * blob.
4379 */
4380void wpa_config_set_blob(struct wpa_config *config,
4381 struct wpa_config_blob *blob)
4382{
4383 wpa_config_remove_blob(config, blob->name);
4384 blob->next = config->blobs;
4385 config->blobs = blob;
4386}
4387
4388
4389/**
4390 * wpa_config_free_blob - Free blob data
4391 * @blob: Pointer to blob to be freed
4392 */
4393void wpa_config_free_blob(struct wpa_config_blob *blob)
4394{
4395 if (blob) {
4396 os_free(blob->name);
Dmitry Shmidtc2817022014-07-02 10:32:10 -07004397 bin_clear_free(blob->data, blob->len);
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004398 os_free(blob);
4399 }
4400}
4401
4402
4403/**
4404 * wpa_config_remove_blob - Remove a named configuration blob
4405 * @config: Configuration data from wpa_config_read()
4406 * @name: Name of the blob to remove
4407 * Returns: 0 if blob was removed or -1 if blob was not found
4408 */
4409int wpa_config_remove_blob(struct wpa_config *config, const char *name)
4410{
4411 struct wpa_config_blob *pos = config->blobs, *prev = NULL;
4412
4413 while (pos) {
4414 if (os_strcmp(pos->name, name) == 0) {
4415 if (prev)
4416 prev->next = pos->next;
4417 else
4418 config->blobs = pos->next;
4419 wpa_config_free_blob(pos);
4420 return 0;
4421 }
4422 prev = pos;
4423 pos = pos->next;
4424 }
4425
4426 return -1;
4427}
4428#endif /* CONFIG_NO_CONFIG_BLOBS */
4429
4430
4431/**
4432 * wpa_config_alloc_empty - Allocate an empty configuration
4433 * @ctrl_interface: Control interface parameters, e.g., path to UNIX domain
4434 * socket
4435 * @driver_param: Driver parameters
4436 * Returns: Pointer to allocated configuration data or %NULL on failure
4437 */
4438struct wpa_config * wpa_config_alloc_empty(const char *ctrl_interface,
4439 const char *driver_param)
4440{
Hai Shalom899fcc72020-10-19 14:38:18 -07004441#define ecw2cw(ecw) ((1 << (ecw)) - 1)
4442
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004443 struct wpa_config *config;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004444 const int aCWmin = 4, aCWmax = 10;
4445 const struct hostapd_wmm_ac_params ac_bk =
4446 { aCWmin, aCWmax, 7, 0, 0 }; /* background traffic */
4447 const struct hostapd_wmm_ac_params ac_be =
4448 { aCWmin, aCWmax, 3, 0, 0 }; /* best effort traffic */
4449 const struct hostapd_wmm_ac_params ac_vi = /* video traffic */
Hai Shalom899fcc72020-10-19 14:38:18 -07004450 { aCWmin - 1, aCWmin, 2, 3008 / 32, 0 };
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004451 const struct hostapd_wmm_ac_params ac_vo = /* voice traffic */
Hai Shalom899fcc72020-10-19 14:38:18 -07004452 { aCWmin - 2, aCWmin - 1, 2, 1504 / 32, 0 };
4453 const struct hostapd_tx_queue_params txq_bk =
4454 { 7, ecw2cw(aCWmin), ecw2cw(aCWmax), 0 };
4455 const struct hostapd_tx_queue_params txq_be =
4456 { 3, ecw2cw(aCWmin), 4 * (ecw2cw(aCWmin) + 1) - 1, 0 };
4457 const struct hostapd_tx_queue_params txq_vi =
4458 { 1, (ecw2cw(aCWmin) + 1) / 2 - 1, ecw2cw(aCWmin), 30 };
4459 const struct hostapd_tx_queue_params txq_vo =
4460 { 1, (ecw2cw(aCWmin) + 1) / 4 - 1,
4461 (ecw2cw(aCWmin) + 1) / 2 - 1, 15 };
4462
4463#undef ecw2cw
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004464
4465 config = os_zalloc(sizeof(*config));
4466 if (config == NULL)
4467 return NULL;
4468 config->eapol_version = DEFAULT_EAPOL_VERSION;
4469 config->ap_scan = DEFAULT_AP_SCAN;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004470 config->user_mpm = DEFAULT_USER_MPM;
4471 config->max_peer_links = DEFAULT_MAX_PEER_LINKS;
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08004472 config->mesh_max_inactivity = DEFAULT_MESH_MAX_INACTIVITY;
Hai Shaloma20dcd72022-02-04 13:43:00 -08004473 config->mesh_fwding = DEFAULT_MESH_FWDING;
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08004474 config->dot11RSNASAERetransPeriod =
4475 DEFAULT_DOT11_RSNA_SAE_RETRANS_PERIOD;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004476 config->fast_reauth = DEFAULT_FAST_REAUTH;
4477 config->p2p_go_intent = DEFAULT_P2P_GO_INTENT;
4478 config->p2p_intra_bss = DEFAULT_P2P_INTRA_BSS;
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08004479 config->p2p_go_freq_change_policy = DEFAULT_P2P_GO_FREQ_MOVE;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004480 config->p2p_go_max_inactivity = DEFAULT_P2P_GO_MAX_INACTIVITY;
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07004481 config->p2p_optimize_listen_chan = DEFAULT_P2P_OPTIMIZE_LISTEN_CHAN;
Dmitry Shmidt7f656022015-02-25 14:36:37 -08004482 config->p2p_go_ctwindow = DEFAULT_P2P_GO_CTWINDOW;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004483 config->bss_max_count = DEFAULT_BSS_MAX_COUNT;
4484 config->bss_expiration_age = DEFAULT_BSS_EXPIRATION_AGE;
4485 config->bss_expiration_scan_count = DEFAULT_BSS_EXPIRATION_SCAN_COUNT;
4486 config->max_num_sta = DEFAULT_MAX_NUM_STA;
Roshan Pius3a1667e2018-07-03 15:17:14 -07004487 config->ap_isolate = DEFAULT_AP_ISOLATE;
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004488 config->access_network_type = DEFAULT_ACCESS_NETWORK_TYPE;
Dmitry Shmidtea69e842013-05-13 14:52:28 -07004489 config->scan_cur_freq = DEFAULT_SCAN_CUR_FREQ;
Hai Shalom60840252021-02-19 19:02:11 -08004490 config->scan_res_valid_for_connect = DEFAULT_SCAN_RES_VALID_FOR_CONNECT;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004491 config->wmm_ac_params[0] = ac_be;
4492 config->wmm_ac_params[1] = ac_bk;
4493 config->wmm_ac_params[2] = ac_vi;
4494 config->wmm_ac_params[3] = ac_vo;
Hai Shalom899fcc72020-10-19 14:38:18 -07004495 config->tx_queue[0] = txq_vo;
4496 config->tx_queue[1] = txq_vi;
4497 config->tx_queue[2] = txq_be;
4498 config->tx_queue[3] = txq_bk;
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07004499 config->p2p_search_delay = DEFAULT_P2P_SEARCH_DELAY;
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07004500 config->rand_addr_lifetime = DEFAULT_RAND_ADDR_LIFETIME;
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08004501 config->key_mgmt_offload = DEFAULT_KEY_MGMT_OFFLOAD;
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08004502 config->cert_in_cb = DEFAULT_CERT_IN_CB;
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08004503 config->wpa_rsc_relaxation = DEFAULT_WPA_RSC_RELAXATION;
Hai Shalomfdcde762020-04-02 11:19:20 -07004504 config->extended_key_id = DEFAULT_EXTENDED_KEY_ID;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004505
Dmitry Shmidt57c2d392016-02-23 13:40:19 -08004506#ifdef CONFIG_MBO
4507 config->mbo_cell_capa = DEFAULT_MBO_CELL_CAPA;
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07004508 config->disassoc_imminent_rssi_threshold =
4509 DEFAULT_DISASSOC_IMMINENT_RSSI_THRESHOLD;
4510 config->oce = DEFAULT_OCE_SUPPORT;
Dmitry Shmidt57c2d392016-02-23 13:40:19 -08004511#endif /* CONFIG_MBO */
Sunil Ravi84bb3e12021-06-10 09:52:05 -07004512 config->btm_offload = DEFAULT_BTM_OFFLOAD;
Dmitry Shmidt57c2d392016-02-23 13:40:19 -08004513
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004514 if (ctrl_interface)
4515 config->ctrl_interface = os_strdup(ctrl_interface);
4516 if (driver_param)
4517 config->driver_param = os_strdup(driver_param);
Dmitry Shmidtebd93af2017-02-21 13:40:44 -08004518 config->gas_rand_addr_lifetime = DEFAULT_RAND_ADDR_LIFETIME;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004519
4520 return config;
4521}
4522
4523
4524#ifndef CONFIG_NO_STDOUT_DEBUG
4525/**
4526 * wpa_config_debug_dump_networks - Debug dump of configured networks
4527 * @config: Configuration data from wpa_config_read()
4528 */
4529void wpa_config_debug_dump_networks(struct wpa_config *config)
4530{
Hai Shalomfdcde762020-04-02 11:19:20 -07004531 size_t prio;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004532 struct wpa_ssid *ssid;
4533
4534 for (prio = 0; prio < config->num_prio; prio++) {
4535 ssid = config->pssid[prio];
4536 wpa_printf(MSG_DEBUG, "Priority group %d",
4537 ssid->priority);
4538 while (ssid) {
4539 wpa_printf(MSG_DEBUG, " id=%d ssid='%s'",
4540 ssid->id,
4541 wpa_ssid_txt(ssid->ssid, ssid->ssid_len));
4542 ssid = ssid->pnext;
4543 }
4544 }
4545}
4546#endif /* CONFIG_NO_STDOUT_DEBUG */
4547
4548
Hai Shalom899fcc72020-10-19 14:38:18 -07004549/**
4550 * Structure for global configuration parsing. This data is used to implement a
4551 * generic parser for the global interface configuration. The table of variables
4552 * is defined below in this file (global_fields[]).
4553 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004554struct global_parse_data {
Hai Shalom899fcc72020-10-19 14:38:18 -07004555 /* Configuration variable name */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004556 char *name;
Hai Shalom899fcc72020-10-19 14:38:18 -07004557
4558 /* Parser function for this variable. The parser functions return 0 or 1
4559 * to indicate success. Value 0 indicates that the parameter value may
4560 * have changed while value 1 means that the value did not change.
4561 * Error cases (failure to parse the string) are indicated by returning
4562 * -1. */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004563 int (*parser)(const struct global_parse_data *data,
4564 struct wpa_config *config, int line, const char *value);
Hai Shalom899fcc72020-10-19 14:38:18 -07004565
4566 /* Getter function to print the variable in text format to buf. */
Dmitry Shmidt7f656022015-02-25 14:36:37 -08004567 int (*get)(const char *name, struct wpa_config *config, long offset,
4568 char *buf, size_t buflen, int pretty_print);
Hai Shalom899fcc72020-10-19 14:38:18 -07004569
4570 /* Variable specific parameters for the parser. */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004571 void *param1, *param2, *param3;
Hai Shalom899fcc72020-10-19 14:38:18 -07004572
4573 /* Indicates which configuration variable has changed. */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004574 unsigned int changed_flag;
4575};
4576
4577
4578static int wpa_global_config_parse_int(const struct global_parse_data *data,
4579 struct wpa_config *config, int line,
4580 const char *pos)
4581{
Dmitry Shmidt2f023192013-03-12 12:44:17 -07004582 int val, *dst;
4583 char *end;
Hai Shalom899fcc72020-10-19 14:38:18 -07004584 bool same;
Dmitry Shmidt2f023192013-03-12 12:44:17 -07004585
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004586 dst = (int *) (((u8 *) config) + (long) data->param1);
Dmitry Shmidt2f023192013-03-12 12:44:17 -07004587 val = strtol(pos, &end, 0);
4588 if (*end) {
4589 wpa_printf(MSG_ERROR, "Line %d: invalid number \"%s\"",
4590 line, pos);
4591 return -1;
4592 }
Hai Shalom899fcc72020-10-19 14:38:18 -07004593 same = *dst == val;
Dmitry Shmidt2f023192013-03-12 12:44:17 -07004594 *dst = val;
4595
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004596 wpa_printf(MSG_DEBUG, "%s=%d", data->name, *dst);
4597
4598 if (data->param2 && *dst < (long) data->param2) {
4599 wpa_printf(MSG_ERROR, "Line %d: too small %s (value=%d "
4600 "min_value=%ld)", line, data->name, *dst,
4601 (long) data->param2);
4602 *dst = (long) data->param2;
4603 return -1;
4604 }
4605
4606 if (data->param3 && *dst > (long) data->param3) {
4607 wpa_printf(MSG_ERROR, "Line %d: too large %s (value=%d "
4608 "max_value=%ld)", line, data->name, *dst,
4609 (long) data->param3);
4610 *dst = (long) data->param3;
4611 return -1;
4612 }
4613
Hai Shalom899fcc72020-10-19 14:38:18 -07004614 return same;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004615}
4616
4617
4618static int wpa_global_config_parse_str(const struct global_parse_data *data,
4619 struct wpa_config *config, int line,
4620 const char *pos)
4621{
Hai Shalom899fcc72020-10-19 14:38:18 -07004622 size_t len, prev_len;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004623 char **dst, *tmp;
4624
4625 len = os_strlen(pos);
4626 if (data->param2 && len < (size_t) data->param2) {
4627 wpa_printf(MSG_ERROR, "Line %d: too short %s (len=%lu "
4628 "min_len=%ld)", line, data->name,
4629 (unsigned long) len, (long) data->param2);
4630 return -1;
4631 }
4632
4633 if (data->param3 && len > (size_t) data->param3) {
4634 wpa_printf(MSG_ERROR, "Line %d: too long %s (len=%lu "
4635 "max_len=%ld)", line, data->name,
4636 (unsigned long) len, (long) data->param3);
4637 return -1;
4638 }
4639
Dmitry Shmidt849734c2016-05-27 09:59:01 -07004640 if (has_newline(pos)) {
4641 wpa_printf(MSG_ERROR, "Line %d: invalid %s value with newline",
4642 line, data->name);
4643 return -1;
4644 }
4645
Hai Shalom899fcc72020-10-19 14:38:18 -07004646 dst = (char **) (((u8 *) config) + (long) data->param1);
4647 if (*dst)
4648 prev_len = os_strlen(*dst);
4649 else
4650 prev_len = 0;
4651
4652 /* No change to the previously configured value */
Hai Shalom60840252021-02-19 19:02:11 -08004653 if (*dst && prev_len == len && os_memcmp(*dst, pos, len) == 0)
Hai Shalom899fcc72020-10-19 14:38:18 -07004654 return 1;
4655
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004656 tmp = os_strdup(pos);
4657 if (tmp == NULL)
4658 return -1;
4659
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004660 os_free(*dst);
4661 *dst = tmp;
4662 wpa_printf(MSG_DEBUG, "%s='%s'", data->name, *dst);
4663
4664 return 0;
4665}
4666
4667
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08004668static int wpa_config_process_bgscan(const struct global_parse_data *data,
4669 struct wpa_config *config, int line,
4670 const char *pos)
4671{
4672 size_t len;
4673 char *tmp;
Dmitry Shmidt97672262014-02-03 13:02:54 -08004674 int res;
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08004675
4676 tmp = wpa_config_parse_string(pos, &len);
4677 if (tmp == NULL) {
4678 wpa_printf(MSG_ERROR, "Line %d: failed to parse %s",
4679 line, data->name);
4680 return -1;
4681 }
4682
Dmitry Shmidt97672262014-02-03 13:02:54 -08004683 res = wpa_global_config_parse_str(data, config, line, tmp);
4684 os_free(tmp);
4685 return res;
Dmitry Shmidtb96dad42013-11-05 10:07:29 -08004686}
4687
4688
Dmitry Shmidt04949592012-07-19 12:16:46 -07004689static int wpa_global_config_parse_bin(const struct global_parse_data *data,
4690 struct wpa_config *config, int line,
4691 const char *pos)
4692{
Dmitry Shmidt04949592012-07-19 12:16:46 -07004693 struct wpabuf **dst, *tmp;
4694
Dmitry Shmidt849734c2016-05-27 09:59:01 -07004695 tmp = wpabuf_parse_bin(pos);
4696 if (!tmp)
Dmitry Shmidt04949592012-07-19 12:16:46 -07004697 return -1;
4698
Dmitry Shmidt04949592012-07-19 12:16:46 -07004699 dst = (struct wpabuf **) (((u8 *) config) + (long) data->param1);
Hai Shalom899fcc72020-10-19 14:38:18 -07004700 if (wpabuf_cmp(*dst, tmp) == 0) {
4701 wpabuf_free(tmp);
4702 return 1;
4703 }
Dmitry Shmidt04949592012-07-19 12:16:46 -07004704 wpabuf_free(*dst);
4705 *dst = tmp;
4706 wpa_printf(MSG_DEBUG, "%s", data->name);
4707
4708 return 0;
4709}
4710
4711
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07004712static int wpa_config_process_freq_list(const struct global_parse_data *data,
4713 struct wpa_config *config, int line,
4714 const char *value)
4715{
4716 int *freqs;
4717
4718 freqs = wpa_config_parse_int_array(value);
4719 if (freqs == NULL)
4720 return -1;
Dmitry Shmidt56052862013-10-04 10:23:25 -07004721 if (freqs[0] == 0) {
4722 os_free(freqs);
4723 freqs = NULL;
4724 }
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07004725 os_free(config->freq_list);
4726 config->freq_list = freqs;
4727 return 0;
4728}
4729
4730
Hai Shalom60840252021-02-19 19:02:11 -08004731static int
4732wpa_config_process_initial_freq_list(const struct global_parse_data *data,
4733 struct wpa_config *config, int line,
4734 const char *value)
4735{
4736 int *freqs;
4737
4738 freqs = wpa_config_parse_int_array(value);
4739 if (!freqs)
4740 return -1;
4741 if (freqs[0] == 0) {
4742 os_free(freqs);
4743 freqs = NULL;
4744 }
4745 os_free(config->initial_freq_list);
4746 config->initial_freq_list = freqs;
4747 return 0;
4748}
4749
4750
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08004751#ifdef CONFIG_P2P
4752static int wpa_global_config_parse_ipv4(const struct global_parse_data *data,
4753 struct wpa_config *config, int line,
4754 const char *pos)
4755{
4756 u32 *dst;
4757 struct hostapd_ip_addr addr;
4758
4759 if (hostapd_parse_ip_addr(pos, &addr) < 0)
4760 return -1;
4761 if (addr.af != AF_INET)
4762 return -1;
4763
4764 dst = (u32 *) (((u8 *) config) + (long) data->param1);
Hai Shalom899fcc72020-10-19 14:38:18 -07004765 if (os_memcmp(dst, &addr.u.v4.s_addr, 4) == 0)
4766 return 1;
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08004767 os_memcpy(dst, &addr.u.v4.s_addr, 4);
4768 wpa_printf(MSG_DEBUG, "%s = 0x%x", data->name,
4769 WPA_GET_BE32((u8 *) dst));
4770
4771 return 0;
4772}
4773#endif /* CONFIG_P2P */
4774
4775
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004776static int wpa_config_process_country(const struct global_parse_data *data,
4777 struct wpa_config *config, int line,
4778 const char *pos)
4779{
4780 if (!pos[0] || !pos[1]) {
4781 wpa_printf(MSG_DEBUG, "Invalid country set");
4782 return -1;
4783 }
Hai Shalom899fcc72020-10-19 14:38:18 -07004784 if (pos[0] == config->country[0] && pos[1] == config->country[1])
4785 return 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004786 config->country[0] = pos[0];
4787 config->country[1] = pos[1];
4788 wpa_printf(MSG_DEBUG, "country='%c%c'",
4789 config->country[0], config->country[1]);
4790 return 0;
4791}
4792
4793
4794static int wpa_config_process_load_dynamic_eap(
4795 const struct global_parse_data *data, struct wpa_config *config,
4796 int line, const char *so)
4797{
4798 int ret;
4799 wpa_printf(MSG_DEBUG, "load_dynamic_eap=%s", so);
4800 ret = eap_peer_method_load(so);
4801 if (ret == -2) {
4802 wpa_printf(MSG_DEBUG, "This EAP type was already loaded - not "
4803 "reloading.");
4804 } else if (ret) {
4805 wpa_printf(MSG_ERROR, "Line %d: Failed to load dynamic EAP "
4806 "method '%s'.", line, so);
4807 return -1;
4808 }
4809
4810 return 0;
4811}
4812
4813
4814#ifdef CONFIG_WPS
4815
4816static int wpa_config_process_uuid(const struct global_parse_data *data,
4817 struct wpa_config *config, int line,
4818 const char *pos)
4819{
4820 char buf[40];
4821 if (uuid_str2bin(pos, config->uuid)) {
4822 wpa_printf(MSG_ERROR, "Line %d: invalid UUID", line);
4823 return -1;
4824 }
4825 uuid_bin2str(config->uuid, buf, sizeof(buf));
4826 wpa_printf(MSG_DEBUG, "uuid=%s", buf);
4827 return 0;
4828}
4829
4830
4831static int wpa_config_process_device_type(
4832 const struct global_parse_data *data,
4833 struct wpa_config *config, int line, const char *pos)
4834{
4835 return wps_dev_type_str2bin(pos, config->device_type);
4836}
4837
4838
4839static int wpa_config_process_os_version(const struct global_parse_data *data,
4840 struct wpa_config *config, int line,
4841 const char *pos)
4842{
4843 if (hexstr2bin(pos, config->os_version, 4)) {
4844 wpa_printf(MSG_ERROR, "Line %d: invalid os_version", line);
4845 return -1;
4846 }
4847 wpa_printf(MSG_DEBUG, "os_version=%08x",
4848 WPA_GET_BE32(config->os_version));
4849 return 0;
4850}
4851
Dmitry Shmidt04949592012-07-19 12:16:46 -07004852
4853static int wpa_config_process_wps_vendor_ext_m1(
4854 const struct global_parse_data *data,
4855 struct wpa_config *config, int line, const char *pos)
4856{
4857 struct wpabuf *tmp;
4858 int len = os_strlen(pos) / 2;
4859 u8 *p;
4860
4861 if (!len) {
4862 wpa_printf(MSG_ERROR, "Line %d: "
4863 "invalid wps_vendor_ext_m1", line);
4864 return -1;
4865 }
4866
4867 tmp = wpabuf_alloc(len);
4868 if (tmp) {
4869 p = wpabuf_put(tmp, len);
4870
4871 if (hexstr2bin(pos, p, len)) {
4872 wpa_printf(MSG_ERROR, "Line %d: "
4873 "invalid wps_vendor_ext_m1", line);
4874 wpabuf_free(tmp);
4875 return -1;
4876 }
4877
4878 wpabuf_free(config->wps_vendor_ext_m1);
4879 config->wps_vendor_ext_m1 = tmp;
4880 } else {
4881 wpa_printf(MSG_ERROR, "Can not allocate "
4882 "memory for wps_vendor_ext_m1");
4883 return -1;
4884 }
4885
4886 return 0;
4887}
4888
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004889#endif /* CONFIG_WPS */
4890
4891#ifdef CONFIG_P2P
4892static int wpa_config_process_sec_device_type(
4893 const struct global_parse_data *data,
4894 struct wpa_config *config, int line, const char *pos)
4895{
4896 int idx;
4897
4898 if (config->num_sec_device_types >= MAX_SEC_DEVICE_TYPES) {
4899 wpa_printf(MSG_ERROR, "Line %d: too many sec_device_type "
4900 "items", line);
4901 return -1;
4902 }
4903
4904 idx = config->num_sec_device_types;
4905
4906 if (wps_dev_type_str2bin(pos, config->sec_device_type[idx]))
4907 return -1;
4908
4909 config->num_sec_device_types++;
4910 return 0;
4911}
Dmitry Shmidt04949592012-07-19 12:16:46 -07004912
4913
4914static int wpa_config_process_p2p_pref_chan(
4915 const struct global_parse_data *data,
4916 struct wpa_config *config, int line, const char *pos)
4917{
4918 struct p2p_channel *pref = NULL, *n;
Hai Shalomfdcde762020-04-02 11:19:20 -07004919 size_t num = 0;
Dmitry Shmidt04949592012-07-19 12:16:46 -07004920 const char *pos2;
4921 u8 op_class, chan;
4922
4923 /* format: class:chan,class:chan,... */
4924
4925 while (*pos) {
4926 op_class = atoi(pos);
4927 pos2 = os_strchr(pos, ':');
4928 if (pos2 == NULL)
4929 goto fail;
4930 pos2++;
4931 chan = atoi(pos2);
4932
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07004933 n = os_realloc_array(pref, num + 1,
4934 sizeof(struct p2p_channel));
Dmitry Shmidt04949592012-07-19 12:16:46 -07004935 if (n == NULL)
4936 goto fail;
4937 pref = n;
4938 pref[num].op_class = op_class;
4939 pref[num].chan = chan;
4940 num++;
4941
4942 pos = os_strchr(pos2, ',');
4943 if (pos == NULL)
4944 break;
4945 pos++;
4946 }
4947
4948 os_free(config->p2p_pref_chan);
4949 config->p2p_pref_chan = pref;
4950 config->num_p2p_pref_chan = num;
4951 wpa_hexdump(MSG_DEBUG, "P2P: Preferred class/channel pairs",
4952 (u8 *) config->p2p_pref_chan,
4953 config->num_p2p_pref_chan * sizeof(struct p2p_channel));
4954
4955 return 0;
4956
4957fail:
4958 os_free(pref);
4959 wpa_printf(MSG_ERROR, "Line %d: Invalid p2p_pref_chan list", line);
4960 return -1;
4961}
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07004962
4963
4964static int wpa_config_process_p2p_no_go_freq(
4965 const struct global_parse_data *data,
4966 struct wpa_config *config, int line, const char *pos)
4967{
4968 int ret;
4969
4970 ret = freq_range_list_parse(&config->p2p_no_go_freq, pos);
4971 if (ret < 0) {
4972 wpa_printf(MSG_ERROR, "Line %d: Invalid p2p_no_go_freq", line);
4973 return -1;
4974 }
4975
4976 wpa_printf(MSG_DEBUG, "P2P: p2p_no_go_freq with %u items",
4977 config->p2p_no_go_freq.num);
4978
4979 return 0;
4980}
4981
Hai Shalom39ba6fc2019-01-22 12:40:38 -08004982static int wpa_config_process_p2p_device_persistent_mac_addr(
4983 const struct global_parse_data *data,
4984 struct wpa_config *config, int line, const char *pos)
4985{
4986 if (hwaddr_aton2(pos, config->p2p_device_persistent_mac_addr) < 0) {
4987 wpa_printf(MSG_ERROR,
4988 "Line %d: Invalid p2p_device_persistent_mac_addr '%s'",
4989 line, pos);
4990 return -1;
4991 }
4992
4993 return 0;
4994}
4995
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07004996#endif /* CONFIG_P2P */
4997
4998
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08004999static int wpa_config_process_hessid(
5000 const struct global_parse_data *data,
5001 struct wpa_config *config, int line, const char *pos)
5002{
5003 if (hwaddr_aton2(pos, config->hessid) < 0) {
5004 wpa_printf(MSG_ERROR, "Line %d: Invalid hessid '%s'",
5005 line, pos);
5006 return -1;
5007 }
5008
5009 return 0;
5010}
5011
5012
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08005013static int wpa_config_process_sae_groups(
5014 const struct global_parse_data *data,
5015 struct wpa_config *config, int line, const char *pos)
5016{
5017 int *groups = wpa_config_parse_int_array(pos);
5018 if (groups == NULL) {
5019 wpa_printf(MSG_ERROR, "Line %d: Invalid sae_groups '%s'",
5020 line, pos);
5021 return -1;
5022 }
5023
5024 os_free(config->sae_groups);
5025 config->sae_groups = groups;
5026
5027 return 0;
5028}
5029
5030
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005031static int wpa_config_process_ap_vendor_elements(
5032 const struct global_parse_data *data,
5033 struct wpa_config *config, int line, const char *pos)
5034{
5035 struct wpabuf *tmp;
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005036
Hai Shaloma20dcd72022-02-04 13:43:00 -08005037 if (!*pos) {
5038 wpabuf_free(config->ap_vendor_elements);
5039 config->ap_vendor_elements = NULL;
5040 return 0;
5041 }
5042
5043 tmp = wpabuf_parse_bin(pos);
5044 if (!tmp) {
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005045 wpa_printf(MSG_ERROR, "Line %d: invalid ap_vendor_elements",
5046 line);
5047 return -1;
5048 }
Hai Shaloma20dcd72022-02-04 13:43:00 -08005049 wpabuf_free(config->ap_vendor_elements);
5050 config->ap_vendor_elements = tmp;
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005051
Hai Shaloma20dcd72022-02-04 13:43:00 -08005052 return 0;
5053}
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005054
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005055
Hai Shaloma20dcd72022-02-04 13:43:00 -08005056static int wpa_config_process_ap_assocresp_elements(
5057 const struct global_parse_data *data,
5058 struct wpa_config *config, int line, const char *pos)
5059{
5060 struct wpabuf *tmp;
5061
5062 if (!*pos) {
5063 wpabuf_free(config->ap_assocresp_elements);
5064 config->ap_assocresp_elements = NULL;
5065 return 0;
5066 }
5067
5068 tmp = wpabuf_parse_bin(pos);
5069 if (!tmp) {
5070 wpa_printf(MSG_ERROR, "Line %d: invalid ap_assocresp_elements",
5071 line);
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005072 return -1;
5073 }
Hai Shaloma20dcd72022-02-04 13:43:00 -08005074 wpabuf_free(config->ap_assocresp_elements);
5075 config->ap_assocresp_elements = tmp;
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005076
5077 return 0;
5078}
5079
5080
Dmitry Shmidt56052862013-10-04 10:23:25 -07005081#ifdef CONFIG_CTRL_IFACE
5082static int wpa_config_process_no_ctrl_interface(
5083 const struct global_parse_data *data,
5084 struct wpa_config *config, int line, const char *pos)
5085{
5086 wpa_printf(MSG_DEBUG, "no_ctrl_interface -> ctrl_interface=NULL");
5087 os_free(config->ctrl_interface);
5088 config->ctrl_interface = NULL;
5089 return 0;
5090}
5091#endif /* CONFIG_CTRL_IFACE */
5092
5093
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005094static int wpa_config_get_int(const char *name, struct wpa_config *config,
5095 long offset, char *buf, size_t buflen,
5096 int pretty_print)
5097{
5098 int *val = (int *) (((u8 *) config) + (long) offset);
5099
5100 if (pretty_print)
5101 return os_snprintf(buf, buflen, "%s=%d\n", name, *val);
5102 return os_snprintf(buf, buflen, "%d", *val);
5103}
5104
5105
5106static int wpa_config_get_str(const char *name, struct wpa_config *config,
5107 long offset, char *buf, size_t buflen,
5108 int pretty_print)
5109{
5110 char **val = (char **) (((u8 *) config) + (long) offset);
5111 int res;
5112
5113 if (pretty_print)
5114 res = os_snprintf(buf, buflen, "%s=%s\n", name,
5115 *val ? *val : "null");
5116 else if (!*val)
5117 return -1;
5118 else
5119 res = os_snprintf(buf, buflen, "%s", *val);
5120 if (os_snprintf_error(buflen, res))
5121 res = -1;
5122
5123 return res;
5124}
5125
5126
Dmitry Shmidtf73259c2015-03-17 11:00:54 -07005127#ifdef CONFIG_P2P
5128static int wpa_config_get_ipv4(const char *name, struct wpa_config *config,
5129 long offset, char *buf, size_t buflen,
5130 int pretty_print)
5131{
5132 void *val = ((u8 *) config) + (long) offset;
5133 int res;
5134 char addr[INET_ADDRSTRLEN];
5135
5136 if (!val || !inet_ntop(AF_INET, val, addr, sizeof(addr)))
5137 return -1;
5138
5139 if (pretty_print)
5140 res = os_snprintf(buf, buflen, "%s=%s\n", name, addr);
5141 else
5142 res = os_snprintf(buf, buflen, "%s", addr);
5143
5144 if (os_snprintf_error(buflen, res))
5145 res = -1;
5146
5147 return res;
5148}
5149#endif /* CONFIG_P2P */
5150
5151
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005152#ifdef OFFSET
5153#undef OFFSET
5154#endif /* OFFSET */
5155/* OFFSET: Get offset of a variable within the wpa_config structure */
5156#define OFFSET(v) ((void *) &((struct wpa_config *) 0)->v)
5157
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005158#define FUNC(f) #f, wpa_config_process_ ## f, NULL, OFFSET(f), NULL, NULL
5159#define FUNC_NO_VAR(f) #f, wpa_config_process_ ## f, NULL, NULL, NULL, NULL
5160#define _INT(f) #f, wpa_global_config_parse_int, wpa_config_get_int, OFFSET(f)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005161#define INT(f) _INT(f), NULL, NULL
5162#define INT_RANGE(f, min, max) _INT(f), (void *) min, (void *) max
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005163#define _STR(f) #f, wpa_global_config_parse_str, wpa_config_get_str, OFFSET(f)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005164#define STR(f) _STR(f), NULL, NULL
5165#define STR_RANGE(f, min, max) _STR(f), (void *) min, (void *) max
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005166#define BIN(f) #f, wpa_global_config_parse_bin, NULL, OFFSET(f), NULL, NULL
Dmitry Shmidtf73259c2015-03-17 11:00:54 -07005167#define IPV4(f) #f, wpa_global_config_parse_ipv4, wpa_config_get_ipv4, \
5168 OFFSET(f), NULL, NULL
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005169
5170static const struct global_parse_data global_fields[] = {
5171#ifdef CONFIG_CTRL_IFACE
5172 { STR(ctrl_interface), 0 },
Dmitry Shmidt56052862013-10-04 10:23:25 -07005173 { FUNC_NO_VAR(no_ctrl_interface), 0 },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005174 { STR(ctrl_interface_group), 0 } /* deprecated */,
5175#endif /* CONFIG_CTRL_IFACE */
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -07005176#ifdef CONFIG_MACSEC
5177 { INT_RANGE(eapol_version, 1, 3), 0 },
5178#else /* CONFIG_MACSEC */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005179 { INT_RANGE(eapol_version, 1, 2), 0 },
Dmitry Shmidt5a1480c2014-05-12 09:46:02 -07005180#endif /* CONFIG_MACSEC */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005181 { INT(ap_scan), 0 },
Hai Shalom899fcc72020-10-19 14:38:18 -07005182 { FUNC(bgscan), CFG_CHANGED_BGSCAN },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005183#ifdef CONFIG_MESH
5184 { INT(user_mpm), 0 },
5185 { INT_RANGE(max_peer_links, 0, 255), 0 },
Dmitry Shmidt2f74e362015-01-21 13:19:05 -08005186 { INT(mesh_max_inactivity), 0 },
Hai Shaloma20dcd72022-02-04 13:43:00 -08005187 { INT_RANGE(mesh_fwding, 0, 1), 0 },
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005188 { INT(dot11RSNASAERetransPeriod), 0 },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005189#endif /* CONFIG_MESH */
Dmitry Shmidt04949592012-07-19 12:16:46 -07005190 { INT(disable_scan_offload), 0 },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005191 { INT(fast_reauth), 0 },
5192 { STR(opensc_engine_path), 0 },
5193 { STR(pkcs11_engine_path), 0 },
5194 { STR(pkcs11_module_path), 0 },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005195 { STR(openssl_ciphers), 0 },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005196 { STR(pcsc_reader), 0 },
5197 { STR(pcsc_pin), 0 },
Dmitry Shmidt051af732013-10-22 13:52:46 -07005198 { INT(external_sim), 0 },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005199 { STR(driver_param), 0 },
5200 { INT(dot11RSNAConfigPMKLifetime), 0 },
5201 { INT(dot11RSNAConfigPMKReauthThreshold), 0 },
5202 { INT(dot11RSNAConfigSATimeout), 0 },
5203#ifndef CONFIG_NO_CONFIG_WRITE
5204 { INT(update_config), 0 },
5205#endif /* CONFIG_NO_CONFIG_WRITE */
5206 { FUNC_NO_VAR(load_dynamic_eap), 0 },
5207#ifdef CONFIG_WPS
5208 { FUNC(uuid), CFG_CHANGED_UUID },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005209 { INT_RANGE(auto_uuid, 0, 1), 0 },
Dmitry Shmidt9d9e6022015-04-23 10:34:55 -07005210 { STR_RANGE(device_name, 0, WPS_DEV_NAME_MAX_LEN),
5211 CFG_CHANGED_DEVICE_NAME },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005212 { STR_RANGE(manufacturer, 0, 64), CFG_CHANGED_WPS_STRING },
5213 { STR_RANGE(model_name, 0, 32), CFG_CHANGED_WPS_STRING },
5214 { STR_RANGE(model_number, 0, 32), CFG_CHANGED_WPS_STRING },
5215 { STR_RANGE(serial_number, 0, 32), CFG_CHANGED_WPS_STRING },
5216 { FUNC(device_type), CFG_CHANGED_DEVICE_TYPE },
5217 { FUNC(os_version), CFG_CHANGED_OS_VERSION },
5218 { STR(config_methods), CFG_CHANGED_CONFIG_METHODS },
5219 { INT_RANGE(wps_cred_processing, 0, 2), 0 },
Hai Shalom021b0b52019-04-10 11:17:58 -07005220 { INT_RANGE(wps_cred_add_sae, 0, 1), 0 },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005221 { FUNC(wps_vendor_ext_m1), CFG_CHANGED_VENDOR_EXTENSION },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005222#endif /* CONFIG_WPS */
5223#ifdef CONFIG_P2P
5224 { FUNC(sec_device_type), CFG_CHANGED_SEC_DEVICE_TYPE },
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005225 { INT(p2p_listen_reg_class), CFG_CHANGED_P2P_LISTEN_CHANNEL },
5226 { INT(p2p_listen_channel), CFG_CHANGED_P2P_LISTEN_CHANNEL },
Dmitry Shmidt56052862013-10-04 10:23:25 -07005227 { INT(p2p_oper_reg_class), CFG_CHANGED_P2P_OPER_CHANNEL },
5228 { INT(p2p_oper_channel), CFG_CHANGED_P2P_OPER_CHANNEL },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005229 { INT_RANGE(p2p_go_intent, 0, 15), 0 },
5230 { STR(p2p_ssid_postfix), CFG_CHANGED_P2P_SSID_POSTFIX },
5231 { INT_RANGE(persistent_reconnect, 0, 1), 0 },
5232 { INT_RANGE(p2p_intra_bss, 0, 1), CFG_CHANGED_P2P_INTRA_BSS },
5233 { INT(p2p_group_idle), 0 },
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005234 { INT_RANGE(p2p_go_freq_change_policy, 0, P2P_GO_FREQ_MOVE_MAX), 0 },
Dmitry Shmidt2271d3f2014-06-23 12:16:31 -07005235 { INT_RANGE(p2p_passphrase_len, 8, 63),
5236 CFG_CHANGED_P2P_PASSPHRASE_LEN },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005237 { FUNC(p2p_pref_chan), CFG_CHANGED_P2P_PREF_CHAN },
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07005238 { FUNC(p2p_no_go_freq), CFG_CHANGED_P2P_PREF_CHAN },
5239 { INT_RANGE(p2p_add_cli_chan, 0, 1), 0 },
Dmitry Shmidt43cb5782014-06-16 16:23:22 -07005240 { INT_RANGE(p2p_optimize_listen_chan, 0, 1), 0 },
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005241 { INT(p2p_go_ht40), 0 },
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07005242 { INT(p2p_go_vht), 0 },
Hai Shalom74f70d42019-02-11 14:42:39 -08005243 { INT(p2p_go_he), 0 },
Ahmed ElArabawy0ff61c52019-12-26 12:38:39 -08005244 { INT(p2p_go_edmg), 0 },
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005245 { INT(p2p_disabled), 0 },
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005246 { INT_RANGE(p2p_go_ctwindow, 0, 127), 0 },
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005247 { INT(p2p_no_group_iface), 0 },
Dmitry Shmidt700a1372013-03-15 14:14:44 -07005248 { INT_RANGE(p2p_ignore_shared_freq, 0, 1), 0 },
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08005249 { IPV4(ip_addr_go), 0 },
5250 { IPV4(ip_addr_mask), 0 },
5251 { IPV4(ip_addr_start), 0 },
5252 { IPV4(ip_addr_end), 0 },
Dmitry Shmidta3dc3092015-06-23 11:21:28 -07005253 { INT_RANGE(p2p_cli_probe, 0, 1), 0 },
Hai Shalom39ba6fc2019-01-22 12:40:38 -08005254 { INT(p2p_device_random_mac_addr), 0 },
5255 { FUNC(p2p_device_persistent_mac_addr), 0 },
5256 { INT(p2p_interface_random_mac_addr), 0 },
Hai Shalom899fcc72020-10-19 14:38:18 -07005257 { INT(p2p_6ghz_disable), 0 },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005258#endif /* CONFIG_P2P */
5259 { FUNC(country), CFG_CHANGED_COUNTRY },
5260 { INT(bss_max_count), 0 },
5261 { INT(bss_expiration_age), 0 },
5262 { INT(bss_expiration_scan_count), 0 },
5263 { INT_RANGE(filter_ssids, 0, 1), 0 },
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07005264 { INT_RANGE(filter_rssi, -100, 0), 0 },
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005265 { INT(max_num_sta), 0 },
Roshan Pius3a1667e2018-07-03 15:17:14 -07005266 { INT_RANGE(ap_isolate, 0, 1), 0 },
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08005267 { INT_RANGE(disassoc_low_ack, 0, 1), 0 },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005268#ifdef CONFIG_HS20
5269 { INT_RANGE(hs20, 0, 1), 0 },
5270#endif /* CONFIG_HS20 */
Dmitry Shmidt1f69aa52012-01-24 16:10:04 -08005271 { INT_RANGE(interworking, 0, 1), 0 },
5272 { FUNC(hessid), 0 },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005273 { INT_RANGE(access_network_type, 0, 15), 0 },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005274 { INT_RANGE(go_interworking, 0, 1), 0 },
5275 { INT_RANGE(go_access_network_type, 0, 15), 0 },
5276 { INT_RANGE(go_internet, 0, 1), 0 },
5277 { INT_RANGE(go_venue_group, 0, 255), 0 },
5278 { INT_RANGE(go_venue_type, 0, 255), 0 },
Dmitry Shmidt04949592012-07-19 12:16:46 -07005279 { INT_RANGE(pbc_in_m1, 0, 1), 0 },
5280 { STR(autoscan), 0 },
Dmitry Shmidtf8623282013-02-20 14:34:59 -08005281 { INT_RANGE(wps_nfc_dev_pw_id, 0x10, 0xffff),
5282 CFG_CHANGED_NFC_PASSWORD_TOKEN },
5283 { BIN(wps_nfc_dh_pubkey), CFG_CHANGED_NFC_PASSWORD_TOKEN },
5284 { BIN(wps_nfc_dh_privkey), CFG_CHANGED_NFC_PASSWORD_TOKEN },
5285 { BIN(wps_nfc_dev_pw), CFG_CHANGED_NFC_PASSWORD_TOKEN },
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07005286 { STR(ext_password_backend), CFG_CHANGED_EXT_PW_BACKEND },
5287 { INT(p2p_go_max_inactivity), 0 },
5288 { INT_RANGE(auto_interworking, 0, 1), 0 },
Dmitry Shmidtd5e49232012-12-03 15:08:10 -08005289 { INT(okc), 0 },
5290 { INT(pmf), 0 },
Dmitry Shmidta54fa5f2013-01-15 13:53:35 -08005291 { FUNC(sae_groups), 0 },
Hai Shalomfdcde762020-04-02 11:19:20 -07005292 { INT_RANGE(sae_pwe, 0, 3), 0 },
Hai Shalomc3565922019-10-28 11:58:20 -07005293 { INT_RANGE(sae_pmkid_in_assoc, 0, 1), 0 },
Dmitry Shmidt7a5e50a2013-03-05 12:37:16 -08005294 { INT(dtim_period), 0 },
5295 { INT(beacon_int), 0 },
Hai Shaloma20dcd72022-02-04 13:43:00 -08005296 { FUNC(ap_assocresp_elements), 0 },
Dmitry Shmidt0ccb66e2013-03-29 16:41:28 -07005297 { FUNC(ap_vendor_elements), 0 },
Dmitry Shmidt444d5672013-04-01 13:08:44 -07005298 { INT_RANGE(ignore_old_scan_res, 0, 1), 0 },
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07005299 { FUNC(freq_list), 0 },
Hai Shalom60840252021-02-19 19:02:11 -08005300 { FUNC(initial_freq_list), 0},
Dmitry Shmidtea69e842013-05-13 14:52:28 -07005301 { INT(scan_cur_freq), 0 },
Hai Shalom60840252021-02-19 19:02:11 -08005302 { INT(scan_res_valid_for_connect), 0},
Dmitry Shmidt51b6ea82013-05-08 10:42:09 -07005303 { INT(sched_scan_interval), 0 },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005304 { INT(sched_scan_start_delay), 0 },
Dmitry Shmidte0e48dc2013-11-18 12:00:06 -08005305 { INT(tdls_external_control), 0},
Dmitry Shmidtf21452a2014-02-26 10:55:25 -08005306 { STR(osu_dir), 0 },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005307 { STR(wowlan_triggers), CFG_CHANGED_WOWLAN_TRIGGERS },
Dmitry Shmidt09f57ba2014-06-10 16:07:13 -07005308 { INT(p2p_search_delay), 0},
Dmitry Shmidt661b4f72014-09-29 14:58:27 -07005309 { INT(mac_addr), 0 },
5310 { INT(rand_addr_lifetime), 0 },
5311 { INT(preassoc_mac_addr), 0 },
Dmitry Shmidt6c0da2b2015-01-05 13:08:17 -08005312 { INT(key_mgmt_offload), 0},
Dmitry Shmidt807291d2015-01-27 13:40:23 -08005313 { INT(passive_scan), 0 },
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005314 { INT(reassoc_same_bss_optim), 0 },
Dmitry Shmidt7a53dbb2015-06-11 13:13:53 -07005315 { INT(wps_priority), 0},
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005316#ifdef CONFIG_FST
5317 { STR_RANGE(fst_group_id, 1, FST_MAX_GROUP_ID_LEN), 0 },
5318 { INT_RANGE(fst_priority, 1, FST_MAX_PRIO_VALUE), 0 },
5319 { INT_RANGE(fst_llt, 1, FST_MAX_LLT_MS), 0 },
5320#endif /* CONFIG_FST */
Paul Stewart092955c2017-02-06 09:13:09 -08005321 { INT_RANGE(cert_in_cb, 0, 1), 0 },
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005322 { INT_RANGE(wpa_rsc_relaxation, 0, 1), 0 },
Dmitry Shmidtd7ff03d2015-12-04 14:49:35 -08005323 { STR(sched_scan_plans), CFG_CHANGED_SCHED_SCAN_PLANS },
Dmitry Shmidt57c2d392016-02-23 13:40:19 -08005324#ifdef CONFIG_MBO
5325 { STR(non_pref_chan), 0 },
5326 { INT_RANGE(mbo_cell_capa, MBO_CELL_CAPA_AVAILABLE,
5327 MBO_CELL_CAPA_NOT_SUPPORTED), 0 },
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005328 { INT_RANGE(disassoc_imminent_rssi_threshold, -120, 0), 0 },
5329 { INT_RANGE(oce, 0, 3), 0 },
5330#endif /* CONFIG_MBO */
Sunil Ravi84bb3e12021-06-10 09:52:05 -07005331 { INT_RANGE(btm_offload, 0, 1), CFG_CHANGED_DISABLE_BTM_NOTIFY },
Dmitry Shmidtd5ab1b52016-06-21 12:38:41 -07005332 { INT(gas_address3), 0 },
Dmitry Shmidt7d175302016-09-06 13:11:34 -07005333 { INT_RANGE(ftm_responder, 0, 1), 0 },
5334 { INT_RANGE(ftm_initiator, 0, 1), 0 },
Dmitry Shmidtebd93af2017-02-21 13:40:44 -08005335 { INT(gas_rand_addr_lifetime), 0 },
5336 { INT_RANGE(gas_rand_mac_addr, 0, 2), 0 },
Hai Shalomc3565922019-10-28 11:58:20 -07005337#ifdef CONFIG_DPP
Dmitry Shmidtd2986c22017-10-23 14:22:09 -07005338 { INT_RANGE(dpp_config_processing, 0, 2), 0 },
Hai Shalomc3565922019-10-28 11:58:20 -07005339 { STR(dpp_name), 0 },
5340 { STR(dpp_mud_url), 0 },
Sunil Ravi89eba102022-09-13 21:04:37 -07005341 { STR(dpp_extra_conf_req_name), 0 },
5342 { STR(dpp_extra_conf_req_value), 0 },
5343 { INT_RANGE(dpp_connector_privacy_default, 0, 1), 0 },
Hai Shalomc3565922019-10-28 11:58:20 -07005344#endif /* CONFIG_DPP */
Hai Shalom39ba6fc2019-01-22 12:40:38 -08005345 { INT_RANGE(coloc_intf_reporting, 0, 1), 0 },
Jimmy Chen0bb4f862019-03-21 18:41:47 +08005346 { INT_RANGE(bss_no_flush_when_down, 0, 1), 0 },
Hai Shalom81f62d82019-07-22 12:10:00 -07005347#ifdef CONFIG_WNM
5348 { INT_RANGE(disable_btm, 0, 1), CFG_CHANGED_DISABLE_BTM },
Hai Shalomfdcde762020-04-02 11:19:20 -07005349 { INT_RANGE(extended_key_id, 0, 1), 0 },
Hai Shalom81f62d82019-07-22 12:10:00 -07005350#endif /* CONFIG_WNM */
Hai Shalom60840252021-02-19 19:02:11 -08005351 { INT_RANGE(wowlan_disconnect_on_deinit, 0, 1), 0},
5352#ifdef CONFIG_PASN
5353#ifdef CONFIG_TESTING_OPTIONS
5354 { INT_RANGE(force_kdk_derivation, 0, 1), 0 },
Hai Shaloma20dcd72022-02-04 13:43:00 -08005355 { INT_RANGE(pasn_corrupt_mic, 0, 1), 0 },
Hai Shalom60840252021-02-19 19:02:11 -08005356#endif /* CONFIG_TESTING_OPTIONS */
5357#endif /* CONFIG_PASN */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005358};
5359
5360#undef FUNC
5361#undef _INT
5362#undef INT
5363#undef INT_RANGE
5364#undef _STR
5365#undef STR
5366#undef STR_RANGE
Dmitry Shmidt04949592012-07-19 12:16:46 -07005367#undef BIN
Dmitry Shmidtcf32e602014-01-28 10:57:39 -08005368#undef IPV4
Dmitry Shmidt68d0e3e2013-10-28 17:59:21 -07005369#define NUM_GLOBAL_FIELDS ARRAY_SIZE(global_fields)
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005370
5371
Dmitry Shmidt7f656022015-02-25 14:36:37 -08005372int wpa_config_dump_values(struct wpa_config *config, char *buf, size_t buflen)
5373{
5374 int result = 0;
5375 size_t i;
5376
5377 for (i = 0; i < NUM_GLOBAL_FIELDS; i++) {
5378 const struct global_parse_data *field = &global_fields[i];
5379 int tmp;
5380
5381 if (!field->get)
5382 continue;
5383
5384 tmp = field->get(field->name, config, (long) field->param1,
5385 buf, buflen, 1);
5386 if (tmp < 0)
5387 return -1;
5388 buf += tmp;
5389 buflen -= tmp;
5390 result += tmp;
5391 }
5392 return result;
5393}
5394
5395
5396int wpa_config_get_value(const char *name, struct wpa_config *config,
5397 char *buf, size_t buflen)
5398{
5399 size_t i;
5400
5401 for (i = 0; i < NUM_GLOBAL_FIELDS; i++) {
5402 const struct global_parse_data *field = &global_fields[i];
5403
5404 if (os_strcmp(name, field->name) != 0)
5405 continue;
5406 if (!field->get)
5407 break;
5408 return field->get(name, config, (long) field->param1,
5409 buf, buflen, 0);
5410 }
5411
5412 return -1;
5413}
5414
5415
Dmitry Shmidtd80a4012015-11-05 16:35:40 -08005416int wpa_config_get_num_global_field_names(void)
5417{
5418 return NUM_GLOBAL_FIELDS;
5419}
5420
5421
5422const char * wpa_config_get_global_field_name(unsigned int i, int *no_var)
5423{
5424 if (i >= NUM_GLOBAL_FIELDS)
5425 return NULL;
5426
5427 if (no_var)
5428 *no_var = !global_fields[i].param1;
5429 return global_fields[i].name;
5430}
5431
5432
Hai Shalom899fcc72020-10-19 14:38:18 -07005433/**
5434 * wpa_config_process_global - Set a variable in global configuration
5435 * @config: Pointer to global configuration data
5436 * @pos: Name and value in the format "{name}={value}"
5437 * @line: Line number in configuration file or 0 if not used
5438 * Returns: 0 on success with a possible change in value, 1 on success with no
5439 * change to previously configured value, or -1 on failure
5440 *
5441 * This function can be used to set global configuration variables based on
5442 * both the configuration file and management interface input. The value
5443 * parameter must be in the same format as the text-based configuration file is
5444 * using. For example, strings are using double quotation marks.
5445 */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005446int wpa_config_process_global(struct wpa_config *config, char *pos, int line)
5447{
5448 size_t i;
5449 int ret = 0;
5450
5451 for (i = 0; i < NUM_GLOBAL_FIELDS; i++) {
5452 const struct global_parse_data *field = &global_fields[i];
5453 size_t flen = os_strlen(field->name);
5454 if (os_strncmp(pos, field->name, flen) != 0 ||
5455 pos[flen] != '=')
5456 continue;
5457
Hai Shalom899fcc72020-10-19 14:38:18 -07005458 ret = field->parser(field, config, line, pos + flen + 1);
5459 if (ret < 0) {
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005460 wpa_printf(MSG_ERROR, "Line %d: failed to "
5461 "parse '%s'.", line, pos);
5462 ret = -1;
5463 }
Hai Shalom899fcc72020-10-19 14:38:18 -07005464 if (ret == 1)
5465 break;
Dmitry Shmidtf8623282013-02-20 14:34:59 -08005466 if (field->changed_flag == CFG_CHANGED_NFC_PASSWORD_TOKEN)
5467 config->wps_nfc_pw_from_config = 1;
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005468 config->changed_parameters |= field->changed_flag;
5469 break;
5470 }
5471 if (i == NUM_GLOBAL_FIELDS) {
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07005472#ifdef CONFIG_AP
Hai Shalom899fcc72020-10-19 14:38:18 -07005473 if (os_strncmp(pos, "tx_queue_", 9) == 0) {
5474 char *tmp = os_strchr(pos, '=');
5475
5476 if (!tmp) {
5477 if (line < 0)
5478 wpa_printf(MSG_ERROR,
5479 "Line %d: invalid line %s",
5480 line, pos);
5481 return -1;
5482 }
5483 *tmp++ = '\0';
5484 if (hostapd_config_tx_queue(config->tx_queue, pos,
5485 tmp)) {
5486 wpa_printf(MSG_ERROR,
5487 "Line %d: invalid TX queue item",
5488 line);
5489 return -1;
5490 }
5491 }
5492
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07005493 if (os_strncmp(pos, "wmm_ac_", 7) == 0) {
5494 char *tmp = os_strchr(pos, '=');
5495 if (tmp == NULL) {
5496 if (line < 0)
5497 return -1;
5498 wpa_printf(MSG_ERROR, "Line %d: invalid line "
5499 "'%s'", line, pos);
5500 return -1;
5501 }
5502 *tmp++ = '\0';
5503 if (hostapd_config_wmm_ac(config->wmm_ac_params, pos,
5504 tmp)) {
5505 wpa_printf(MSG_ERROR, "Line %d: invalid WMM "
5506 "AC item", line);
5507 return -1;
5508 }
Hai Shalomc3565922019-10-28 11:58:20 -07005509 return ret;
Dmitry Shmidt61d9df32012-08-29 16:22:06 -07005510 }
5511#endif /* CONFIG_AP */
Dmitry Shmidt8d520ff2011-05-09 14:06:53 -07005512 if (line < 0)
5513 return -1;
5514 wpa_printf(MSG_ERROR, "Line %d: unknown global field '%s'.",
5515 line, pos);
5516 ret = -1;
5517 }
5518
5519 return ret;
5520}