ieee80211_ioctl.c revision 1.30.4.3 1 1.30.4.3 elad /* $NetBSD: ieee80211_ioctl.c,v 1.30.4.3 2006/04/19 04:46:11 elad Exp $ */
2 1.1 dyoung /*-
3 1.1 dyoung * Copyright (c) 2001 Atsushi Onoe
4 1.19 dyoung * Copyright (c) 2002-2005 Sam Leffler, Errno Consulting
5 1.1 dyoung * All rights reserved.
6 1.1 dyoung *
7 1.1 dyoung * Redistribution and use in source and binary forms, with or without
8 1.1 dyoung * modification, are permitted provided that the following conditions
9 1.1 dyoung * are met:
10 1.1 dyoung * 1. Redistributions of source code must retain the above copyright
11 1.1 dyoung * notice, this list of conditions and the following disclaimer.
12 1.1 dyoung * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 dyoung * notice, this list of conditions and the following disclaimer in the
14 1.1 dyoung * documentation and/or other materials provided with the distribution.
15 1.1 dyoung * 3. The name of the author may not be used to endorse or promote products
16 1.1 dyoung * derived from this software without specific prior written permission.
17 1.1 dyoung *
18 1.1 dyoung * Alternatively, this software may be distributed under the terms of the
19 1.1 dyoung * GNU General Public License ("GPL") version 2 as published by the Free
20 1.1 dyoung * Software Foundation.
21 1.1 dyoung *
22 1.1 dyoung * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
23 1.1 dyoung * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
24 1.1 dyoung * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
25 1.1 dyoung * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
26 1.1 dyoung * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
27 1.1 dyoung * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
28 1.1 dyoung * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
29 1.1 dyoung * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
30 1.1 dyoung * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
31 1.1 dyoung * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
32 1.1 dyoung */
33 1.1 dyoung
34 1.1 dyoung #include <sys/cdefs.h>
35 1.3 dyoung #ifdef __FreeBSD__
36 1.26 skrll __FBSDID("$FreeBSD: src/sys/net80211/ieee80211_ioctl.c,v 1.35 2005/08/30 14:27:47 avatar Exp $");
37 1.19 dyoung #endif
38 1.19 dyoung #ifdef __NetBSD__
39 1.30.4.3 elad __KERNEL_RCSID(0, "$NetBSD: ieee80211_ioctl.c,v 1.30.4.3 2006/04/19 04:46:11 elad Exp $");
40 1.3 dyoung #endif
41 1.1 dyoung
42 1.1 dyoung /*
43 1.1 dyoung * IEEE 802.11 ioctl support (FreeBSD-specific)
44 1.1 dyoung */
45 1.1 dyoung
46 1.10 dyoung #include "opt_inet.h"
47 1.10 dyoung
48 1.1 dyoung #include <sys/endian.h>
49 1.1 dyoung #include <sys/param.h>
50 1.1 dyoung #include <sys/kernel.h>
51 1.1 dyoung #include <sys/socket.h>
52 1.1 dyoung #include <sys/sockio.h>
53 1.1 dyoung #include <sys/systm.h>
54 1.4 dyoung #include <sys/proc.h>
55 1.19 dyoung
56 1.1 dyoung #include <net/if.h>
57 1.1 dyoung #include <net/if_arp.h>
58 1.1 dyoung #include <net/if_media.h>
59 1.4 dyoung #include <net/if_ether.h>
60 1.1 dyoung
61 1.10 dyoung #ifdef INET
62 1.10 dyoung #include <netinet/in.h>
63 1.10 dyoung #include <netinet/if_inarp.h>
64 1.10 dyoung #endif
65 1.10 dyoung
66 1.1 dyoung #include <net80211/ieee80211_var.h>
67 1.1 dyoung #include <net80211/ieee80211_ioctl.h>
68 1.1 dyoung
69 1.4 dyoung #include <dev/ic/wi_ieee.h>
70 1.19 dyoung
71 1.26 skrll #ifdef __FreeBSD__
72 1.26 skrll #define IS_UP(_ic) \
73 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
74 1.26 skrll ((_ic)->ic_ifp->if_drv_flags & IFF_DRV_RUNNING))
75 1.26 skrll #endif
76 1.26 skrll #ifdef __NetBSD__
77 1.19 dyoung #define IS_UP(_ic) \
78 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
79 1.26 skrll ((_ic)->ic_ifp->if_flags & IFF_RUNNING))
80 1.26 skrll #endif
81 1.19 dyoung #define IS_UP_AUTO(_ic) \
82 1.19 dyoung (IS_UP(_ic) && (_ic)->ic_roaming == IEEE80211_ROAMING_AUTO)
83 1.1 dyoung
84 1.1 dyoung /*
85 1.1 dyoung * XXX
86 1.1 dyoung * Wireless LAN specific configuration interface, which is compatible
87 1.1 dyoung * with wicontrol(8).
88 1.1 dyoung */
89 1.1 dyoung
90 1.19 dyoung struct wi_read_ap_args {
91 1.19 dyoung int i; /* result count */
92 1.19 dyoung struct wi_apinfo *ap; /* current entry in result buffer */
93 1.19 dyoung caddr_t max; /* result buffer bound */
94 1.19 dyoung };
95 1.19 dyoung
96 1.19 dyoung static void
97 1.19 dyoung wi_read_ap_result(void *arg, struct ieee80211_node *ni)
98 1.19 dyoung {
99 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
100 1.19 dyoung struct wi_read_ap_args *sa = arg;
101 1.19 dyoung struct wi_apinfo *ap = sa->ap;
102 1.19 dyoung struct ieee80211_rateset *rs;
103 1.19 dyoung int j;
104 1.19 dyoung
105 1.19 dyoung if ((caddr_t)(ap + 1) > sa->max)
106 1.19 dyoung return;
107 1.19 dyoung memset(ap, 0, sizeof(struct wi_apinfo));
108 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) {
109 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_macaddr);
110 1.19 dyoung ap->namelen = ic->ic_des_esslen;
111 1.19 dyoung if (ic->ic_des_esslen)
112 1.19 dyoung memcpy(ap->name, ic->ic_des_essid,
113 1.19 dyoung ic->ic_des_esslen);
114 1.19 dyoung } else {
115 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_bssid);
116 1.19 dyoung ap->namelen = ni->ni_esslen;
117 1.19 dyoung if (ni->ni_esslen)
118 1.19 dyoung memcpy(ap->name, ni->ni_essid,
119 1.19 dyoung ni->ni_esslen);
120 1.19 dyoung }
121 1.19 dyoung ap->channel = ieee80211_chan2ieee(ic, ni->ni_chan);
122 1.19 dyoung ap->signal = ic->ic_node_getrssi(ni);
123 1.19 dyoung ap->capinfo = ni->ni_capinfo;
124 1.19 dyoung ap->interval = ni->ni_intval;
125 1.19 dyoung rs = &ni->ni_rates;
126 1.19 dyoung for (j = 0; j < rs->rs_nrates; j++) {
127 1.19 dyoung if (rs->rs_rates[j] & IEEE80211_RATE_BASIC) {
128 1.19 dyoung ap->rate = (rs->rs_rates[j] &
129 1.19 dyoung IEEE80211_RATE_VAL) * 5; /* XXX */
130 1.19 dyoung }
131 1.19 dyoung }
132 1.19 dyoung sa->i++;
133 1.19 dyoung sa->ap++;
134 1.19 dyoung }
135 1.19 dyoung
136 1.19 dyoung struct wi_read_prism2_args {
137 1.19 dyoung int i; /* result count */
138 1.19 dyoung struct wi_scan_res *res;/* current entry in result buffer */
139 1.19 dyoung caddr_t max; /* result buffer bound */
140 1.19 dyoung };
141 1.19 dyoung
142 1.19 dyoung #if 0
143 1.19 dyoung static void
144 1.19 dyoung wi_read_prism2_result(void *arg, struct ieee80211_node *ni)
145 1.19 dyoung {
146 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
147 1.19 dyoung struct wi_read_prism2_args *sa = arg;
148 1.19 dyoung struct wi_scan_res *res = sa->res;
149 1.19 dyoung
150 1.19 dyoung if ((caddr_t)(res + 1) > sa->max)
151 1.19 dyoung return;
152 1.19 dyoung res->wi_chan = ieee80211_chan2ieee(ic, ni->ni_chan);
153 1.19 dyoung res->wi_noise = 0;
154 1.19 dyoung res->wi_signal = ic->ic_node_getrssi(ni);
155 1.19 dyoung IEEE80211_ADDR_COPY(res->wi_bssid, ni->ni_bssid);
156 1.19 dyoung res->wi_interval = ni->ni_intval;
157 1.19 dyoung res->wi_capinfo = ni->ni_capinfo;
158 1.19 dyoung res->wi_ssid_len = ni->ni_esslen;
159 1.19 dyoung memcpy(res->wi_ssid, ni->ni_essid, IEEE80211_NWID_LEN);
160 1.19 dyoung /* NB: assumes wi_srates holds <= ni->ni_rates */
161 1.19 dyoung memcpy(res->wi_srates, ni->ni_rates.rs_rates,
162 1.19 dyoung sizeof(res->wi_srates));
163 1.19 dyoung if (ni->ni_rates.rs_nrates < 10)
164 1.19 dyoung res->wi_srates[ni->ni_rates.rs_nrates] = 0;
165 1.19 dyoung res->wi_rate = ni->ni_rates.rs_rates[ni->ni_txrate];
166 1.19 dyoung res->wi_rsvd = 0;
167 1.19 dyoung
168 1.19 dyoung sa->i++;
169 1.19 dyoung sa->res++;
170 1.19 dyoung }
171 1.19 dyoung
172 1.19 dyoung struct wi_read_sigcache_args {
173 1.19 dyoung int i; /* result count */
174 1.19 dyoung struct wi_sigcache *wsc;/* current entry in result buffer */
175 1.19 dyoung caddr_t max; /* result buffer bound */
176 1.19 dyoung };
177 1.19 dyoung
178 1.19 dyoung static void
179 1.19 dyoung wi_read_sigcache(void *arg, struct ieee80211_node *ni)
180 1.19 dyoung {
181 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
182 1.19 dyoung struct wi_read_sigcache_args *sa = arg;
183 1.19 dyoung struct wi_sigcache *wsc = sa->wsc;
184 1.19 dyoung
185 1.19 dyoung if ((caddr_t)(wsc + 1) > sa->max)
186 1.19 dyoung return;
187 1.19 dyoung memset(wsc, 0, sizeof(struct wi_sigcache));
188 1.19 dyoung IEEE80211_ADDR_COPY(wsc->macsrc, ni->ni_macaddr);
189 1.19 dyoung wsc->signal = ic->ic_node_getrssi(ni);
190 1.19 dyoung
191 1.19 dyoung sa->wsc++;
192 1.19 dyoung sa->i++;
193 1.19 dyoung }
194 1.19 dyoung #endif
195 1.19 dyoung
196 1.1 dyoung int
197 1.19 dyoung ieee80211_cfgget(struct ieee80211com *ic, u_long cmd, caddr_t data)
198 1.1 dyoung {
199 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
200 1.1 dyoung int i, j, error;
201 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
202 1.1 dyoung struct wi_req wreq;
203 1.1 dyoung struct wi_ltv_keys *keys;
204 1.1 dyoung
205 1.1 dyoung error = copyin(ifr->ifr_data, &wreq, sizeof(wreq));
206 1.1 dyoung if (error)
207 1.1 dyoung return error;
208 1.1 dyoung wreq.wi_len = 0;
209 1.1 dyoung switch (wreq.wi_type) {
210 1.1 dyoung case WI_RID_SERIALNO:
211 1.8 onoe case WI_RID_STA_IDENTITY:
212 1.1 dyoung /* nothing appropriate */
213 1.1 dyoung break;
214 1.1 dyoung case WI_RID_NODENAME:
215 1.9 itojun strlcpy((char *)&wreq.wi_val[1], hostname,
216 1.9 itojun sizeof(wreq.wi_val) - sizeof(wreq.wi_val[0]));
217 1.1 dyoung wreq.wi_val[0] = htole16(strlen(hostname));
218 1.1 dyoung wreq.wi_len = (1 + strlen(hostname) + 1) / 2;
219 1.1 dyoung break;
220 1.1 dyoung case WI_RID_CURRENT_SSID:
221 1.1 dyoung if (ic->ic_state != IEEE80211_S_RUN) {
222 1.1 dyoung wreq.wi_val[0] = 0;
223 1.1 dyoung wreq.wi_len = 1;
224 1.1 dyoung break;
225 1.1 dyoung }
226 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_bss->ni_esslen);
227 1.1 dyoung memcpy(&wreq.wi_val[1], ic->ic_bss->ni_essid,
228 1.1 dyoung ic->ic_bss->ni_esslen);
229 1.1 dyoung wreq.wi_len = (1 + ic->ic_bss->ni_esslen + 1) / 2;
230 1.1 dyoung break;
231 1.1 dyoung case WI_RID_OWN_SSID:
232 1.1 dyoung case WI_RID_DESIRED_SSID:
233 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_des_esslen);
234 1.1 dyoung memcpy(&wreq.wi_val[1], ic->ic_des_essid, ic->ic_des_esslen);
235 1.1 dyoung wreq.wi_len = (1 + ic->ic_des_esslen + 1) / 2;
236 1.1 dyoung break;
237 1.1 dyoung case WI_RID_CURRENT_BSSID:
238 1.1 dyoung if (ic->ic_state == IEEE80211_S_RUN)
239 1.1 dyoung IEEE80211_ADDR_COPY(wreq.wi_val, ic->ic_bss->ni_bssid);
240 1.1 dyoung else
241 1.1 dyoung memset(wreq.wi_val, 0, IEEE80211_ADDR_LEN);
242 1.1 dyoung wreq.wi_len = IEEE80211_ADDR_LEN / 2;
243 1.1 dyoung break;
244 1.1 dyoung case WI_RID_CHANNEL_LIST:
245 1.1 dyoung memset(wreq.wi_val, 0, sizeof(wreq.wi_val));
246 1.1 dyoung /*
247 1.1 dyoung * Since channel 0 is not available for DS, channel 1
248 1.1 dyoung * is assigned to LSB on WaveLAN.
249 1.1 dyoung */
250 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
251 1.1 dyoung i = 1;
252 1.1 dyoung else
253 1.1 dyoung i = 0;
254 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++)
255 1.1 dyoung if (isset(ic->ic_chan_active, i)) {
256 1.1 dyoung setbit((u_int8_t *)wreq.wi_val, j);
257 1.1 dyoung wreq.wi_len = j / 16 + 1;
258 1.1 dyoung }
259 1.1 dyoung break;
260 1.1 dyoung case WI_RID_OWN_CHNL:
261 1.1 dyoung wreq.wi_val[0] = htole16(
262 1.1 dyoung ieee80211_chan2ieee(ic, ic->ic_ibss_chan));
263 1.1 dyoung wreq.wi_len = 1;
264 1.1 dyoung break;
265 1.1 dyoung case WI_RID_CURRENT_CHAN:
266 1.1 dyoung wreq.wi_val[0] = htole16(
267 1.26 skrll ieee80211_chan2ieee(ic, ic->ic_curchan));
268 1.1 dyoung wreq.wi_len = 1;
269 1.1 dyoung break;
270 1.1 dyoung case WI_RID_COMMS_QUALITY:
271 1.1 dyoung wreq.wi_val[0] = 0; /* quality */
272 1.19 dyoung wreq.wi_val[1] = htole16(ic->ic_node_getrssi(ic->ic_bss));
273 1.1 dyoung wreq.wi_val[2] = 0; /* noise */
274 1.1 dyoung wreq.wi_len = 3;
275 1.1 dyoung break;
276 1.1 dyoung case WI_RID_PROMISC:
277 1.1 dyoung wreq.wi_val[0] = htole16((ifp->if_flags & IFF_PROMISC) ? 1 : 0);
278 1.1 dyoung wreq.wi_len = 1;
279 1.1 dyoung break;
280 1.1 dyoung case WI_RID_PORTTYPE:
281 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_opmode);
282 1.1 dyoung wreq.wi_len = 1;
283 1.1 dyoung break;
284 1.1 dyoung case WI_RID_MAC_NODE:
285 1.1 dyoung IEEE80211_ADDR_COPY(wreq.wi_val, ic->ic_myaddr);
286 1.1 dyoung wreq.wi_len = IEEE80211_ADDR_LEN / 2;
287 1.1 dyoung break;
288 1.1 dyoung case WI_RID_TX_RATE:
289 1.26 skrll if (ic->ic_fixed_rate == IEEE80211_FIXED_RATE_NONE)
290 1.1 dyoung wreq.wi_val[0] = 0; /* auto */
291 1.1 dyoung else
292 1.1 dyoung wreq.wi_val[0] = htole16(
293 1.1 dyoung (ic->ic_sup_rates[ic->ic_curmode].rs_rates[ic->ic_fixed_rate] &
294 1.1 dyoung IEEE80211_RATE_VAL) / 2);
295 1.1 dyoung wreq.wi_len = 1;
296 1.1 dyoung break;
297 1.1 dyoung case WI_RID_CUR_TX_RATE:
298 1.1 dyoung wreq.wi_val[0] = htole16(
299 1.1 dyoung (ic->ic_bss->ni_rates.rs_rates[ic->ic_bss->ni_txrate] &
300 1.1 dyoung IEEE80211_RATE_VAL) / 2);
301 1.1 dyoung wreq.wi_len = 1;
302 1.1 dyoung break;
303 1.6 dyoung case WI_RID_FRAG_THRESH:
304 1.6 dyoung wreq.wi_val[0] = htole16(ic->ic_fragthreshold);
305 1.6 dyoung wreq.wi_len = 1;
306 1.6 dyoung break;
307 1.1 dyoung case WI_RID_RTS_THRESH:
308 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_rtsthreshold);
309 1.1 dyoung wreq.wi_len = 1;
310 1.1 dyoung break;
311 1.1 dyoung case WI_RID_CREATE_IBSS:
312 1.1 dyoung wreq.wi_val[0] =
313 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_IBSSON) ? 1 : 0);
314 1.1 dyoung wreq.wi_len = 1;
315 1.1 dyoung break;
316 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
317 1.1 dyoung wreq.wi_val[0] = 0; /* no ... not supported */
318 1.1 dyoung wreq.wi_len = 1;
319 1.1 dyoung break;
320 1.1 dyoung case WI_RID_ROAMING_MODE:
321 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_roaming); /* XXX map */
322 1.1 dyoung wreq.wi_len = 1;
323 1.1 dyoung break;
324 1.1 dyoung case WI_RID_SYSTEM_SCALE:
325 1.1 dyoung wreq.wi_val[0] = htole16(1); /* low density ... not supp */
326 1.1 dyoung wreq.wi_len = 1;
327 1.1 dyoung break;
328 1.1 dyoung case WI_RID_PM_ENABLED:
329 1.1 dyoung wreq.wi_val[0] =
330 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0);
331 1.1 dyoung wreq.wi_len = 1;
332 1.1 dyoung break;
333 1.1 dyoung case WI_RID_MAX_SLEEP:
334 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_lintval);
335 1.1 dyoung wreq.wi_len = 1;
336 1.1 dyoung break;
337 1.1 dyoung case WI_RID_CUR_BEACON_INT:
338 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_bss->ni_intval);
339 1.1 dyoung wreq.wi_len = 1;
340 1.1 dyoung break;
341 1.1 dyoung case WI_RID_WEP_AVAIL:
342 1.19 dyoung wreq.wi_val[0] = htole16(1); /* always available */
343 1.1 dyoung wreq.wi_len = 1;
344 1.1 dyoung break;
345 1.1 dyoung case WI_RID_CNFAUTHMODE:
346 1.1 dyoung wreq.wi_val[0] = htole16(1); /* TODO: open system only */
347 1.1 dyoung wreq.wi_len = 1;
348 1.1 dyoung break;
349 1.1 dyoung case WI_RID_ENCRYPTION:
350 1.1 dyoung wreq.wi_val[0] =
351 1.16 mycroft htole16((ic->ic_flags & IEEE80211_F_PRIVACY) ? 1 : 0);
352 1.1 dyoung wreq.wi_len = 1;
353 1.1 dyoung break;
354 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
355 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_def_txkey);
356 1.1 dyoung wreq.wi_len = 1;
357 1.1 dyoung break;
358 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
359 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
360 1.1 dyoung /* do not show keys to non-root user */
361 1.30.4.2 elad error = kauth_authorize_generic(curproc->p_cred,
362 1.30.4.1 elad KAUTH_GENERIC_ISSUSER,
363 1.30.4.1 elad &curproc->p_acflag);
364 1.1 dyoung if (error) {
365 1.1 dyoung memset(keys, 0, sizeof(*keys));
366 1.1 dyoung error = 0;
367 1.1 dyoung break;
368 1.1 dyoung }
369 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
370 1.1 dyoung keys->wi_keys[i].wi_keylen =
371 1.19 dyoung htole16(ic->ic_nw_keys[i].wk_keylen);
372 1.1 dyoung memcpy(keys->wi_keys[i].wi_keydat,
373 1.19 dyoung ic->ic_nw_keys[i].wk_key,
374 1.19 dyoung ic->ic_nw_keys[i].wk_keylen);
375 1.1 dyoung }
376 1.1 dyoung wreq.wi_len = sizeof(*keys) / 2;
377 1.1 dyoung break;
378 1.1 dyoung case WI_RID_MAX_DATALEN:
379 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_fragthreshold);
380 1.1 dyoung wreq.wi_len = 1;
381 1.1 dyoung break;
382 1.8 onoe case WI_RID_DBM_ADJUST:
383 1.8 onoe /* not supported, we just pass rssi value from driver. */
384 1.8 onoe break;
385 1.1 dyoung case WI_RID_IFACE_STATS:
386 1.1 dyoung /* XXX: should be implemented in lower drivers */
387 1.1 dyoung break;
388 1.1 dyoung case WI_RID_READ_APS:
389 1.19 dyoung /*
390 1.19 dyoung * Don't return results until active scan completes.
391 1.19 dyoung */
392 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
393 1.19 dyoung struct wi_read_ap_args args;
394 1.19 dyoung
395 1.19 dyoung args.i = 0;
396 1.19 dyoung args.ap = (void *)((char *)wreq.wi_val + sizeof(i));
397 1.19 dyoung args.max = (void *)(&wreq + 1);
398 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
399 1.19 dyoung wi_read_ap_result, &args);
400 1.19 dyoung memcpy(wreq.wi_val, &args.i, sizeof(args.i));
401 1.19 dyoung wreq.wi_len = (sizeof(int) +
402 1.19 dyoung sizeof(struct wi_apinfo) * args.i) / 2;
403 1.19 dyoung } else
404 1.19 dyoung error = EINPROGRESS;
405 1.1 dyoung break;
406 1.4 dyoung #if 0
407 1.1 dyoung case WI_RID_SCAN_RES: /* compatibility interface */
408 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
409 1.19 dyoung struct wi_read_prism2_args args;
410 1.19 dyoung struct wi_scan_p2_hdr *p2;
411 1.19 dyoung
412 1.19 dyoung /* NB: use Prism2 format so we can include rate info */
413 1.19 dyoung p2 = (struct wi_scan_p2_hdr *)wreq.wi_val;
414 1.19 dyoung args.i = 0;
415 1.19 dyoung args.res = (void *)&p2[1];
416 1.19 dyoung args.max = (void *)(&wreq + 1);
417 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
418 1.19 dyoung wi_read_prism2_result, &args);
419 1.19 dyoung p2->wi_rsvd = 0;
420 1.19 dyoung p2->wi_reason = args.i;
421 1.19 dyoung wreq.wi_len = (sizeof(*p2) +
422 1.19 dyoung sizeof(struct wi_scan_res) * args.i) / 2;
423 1.19 dyoung } else
424 1.1 dyoung error = EINPROGRESS;
425 1.1 dyoung break;
426 1.19 dyoung case WI_RID_READ_CACHE: {
427 1.19 dyoung struct wi_read_sigcache_args args;
428 1.19 dyoung args.i = 0;
429 1.19 dyoung args.wsc = (struct wi_sigcache *) wreq.wi_val;
430 1.19 dyoung args.max = (void *)(&wreq + 1);
431 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan, wi_read_sigcache, &args);
432 1.19 dyoung wreq.wi_len = sizeof(struct wi_sigcache) * args.i / 2;
433 1.1 dyoung break;
434 1.19 dyoung }
435 1.19 dyoung #endif
436 1.1 dyoung default:
437 1.1 dyoung error = EINVAL;
438 1.1 dyoung break;
439 1.1 dyoung }
440 1.1 dyoung if (error == 0) {
441 1.1 dyoung wreq.wi_len++;
442 1.1 dyoung error = copyout(&wreq, ifr->ifr_data, sizeof(wreq));
443 1.1 dyoung }
444 1.1 dyoung return error;
445 1.1 dyoung }
446 1.1 dyoung
447 1.1 dyoung static int
448 1.1 dyoung findrate(struct ieee80211com *ic, enum ieee80211_phymode mode, int rate)
449 1.1 dyoung {
450 1.1 dyoung #define IEEERATE(_ic,_m,_i) \
451 1.1 dyoung ((_ic)->ic_sup_rates[_m].rs_rates[_i] & IEEE80211_RATE_VAL)
452 1.1 dyoung int i, nrates = ic->ic_sup_rates[mode].rs_nrates;
453 1.1 dyoung for (i = 0; i < nrates; i++)
454 1.1 dyoung if (IEEERATE(ic, mode, i) == rate)
455 1.1 dyoung return i;
456 1.1 dyoung return -1;
457 1.1 dyoung #undef IEEERATE
458 1.1 dyoung }
459 1.1 dyoung
460 1.7 dyoung /*
461 1.7 dyoung * Prepare to do a user-initiated scan for AP's. If no
462 1.7 dyoung * current/default channel is setup or the current channel
463 1.7 dyoung * is invalid then pick the first available channel from
464 1.7 dyoung * the active list as the place to start the scan.
465 1.7 dyoung */
466 1.7 dyoung static int
467 1.19 dyoung ieee80211_setupscan(struct ieee80211com *ic, const u_int8_t chanlist[])
468 1.7 dyoung {
469 1.7 dyoung
470 1.19 dyoung /*
471 1.19 dyoung * XXX don't permit a scan to be started unless we
472 1.19 dyoung * know the device is ready. For the moment this means
473 1.19 dyoung * the device is marked up as this is the required to
474 1.19 dyoung * initialize the hardware. It would be better to permit
475 1.19 dyoung * scanning prior to being up but that'll require some
476 1.19 dyoung * changes to the infrastructure.
477 1.19 dyoung */
478 1.19 dyoung if (!IS_UP(ic))
479 1.19 dyoung return EINVAL;
480 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
481 1.7 dyoung /*
482 1.19 dyoung * We force the state to INIT before calling ieee80211_new_state
483 1.19 dyoung * to get ieee80211_begin_scan called. We really want to scan w/o
484 1.19 dyoung * altering the current state but that's not possible right now.
485 1.7 dyoung */
486 1.19 dyoung /* XXX handle proberequest case */
487 1.19 dyoung ic->ic_state = IEEE80211_S_INIT; /* XXX bypass state machine */
488 1.19 dyoung return 0;
489 1.7 dyoung }
490 1.7 dyoung
491 1.1 dyoung int
492 1.19 dyoung ieee80211_cfgset(struct ieee80211com *ic, u_long cmd, caddr_t data)
493 1.1 dyoung {
494 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
495 1.1 dyoung int i, j, len, error, rate;
496 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
497 1.1 dyoung struct wi_ltv_keys *keys;
498 1.1 dyoung struct wi_req wreq;
499 1.1 dyoung u_char chanlist[roundup(IEEE80211_CHAN_MAX, NBBY)];
500 1.1 dyoung
501 1.1 dyoung error = copyin(ifr->ifr_data, &wreq, sizeof(wreq));
502 1.1 dyoung if (error)
503 1.1 dyoung return error;
504 1.1 dyoung len = wreq.wi_len ? (wreq.wi_len - 1) * 2 : 0;
505 1.1 dyoung switch (wreq.wi_type) {
506 1.1 dyoung case WI_RID_SERIALNO:
507 1.1 dyoung case WI_RID_NODENAME:
508 1.1 dyoung return EPERM;
509 1.1 dyoung case WI_RID_CURRENT_SSID:
510 1.1 dyoung return EPERM;
511 1.1 dyoung case WI_RID_OWN_SSID:
512 1.1 dyoung case WI_RID_DESIRED_SSID:
513 1.1 dyoung if (le16toh(wreq.wi_val[0]) * 2 > len ||
514 1.1 dyoung le16toh(wreq.wi_val[0]) > IEEE80211_NWID_LEN) {
515 1.1 dyoung error = ENOSPC;
516 1.1 dyoung break;
517 1.1 dyoung }
518 1.1 dyoung memset(ic->ic_des_essid, 0, sizeof(ic->ic_des_essid));
519 1.1 dyoung ic->ic_des_esslen = le16toh(wreq.wi_val[0]) * 2;
520 1.1 dyoung memcpy(ic->ic_des_essid, &wreq.wi_val[1], ic->ic_des_esslen);
521 1.1 dyoung error = ENETRESET;
522 1.1 dyoung break;
523 1.1 dyoung case WI_RID_CURRENT_BSSID:
524 1.1 dyoung return EPERM;
525 1.1 dyoung case WI_RID_OWN_CHNL:
526 1.1 dyoung if (len != 2)
527 1.1 dyoung return EINVAL;
528 1.1 dyoung i = le16toh(wreq.wi_val[0]);
529 1.1 dyoung if (i < 0 ||
530 1.1 dyoung i > IEEE80211_CHAN_MAX ||
531 1.1 dyoung isclr(ic->ic_chan_active, i))
532 1.1 dyoung return EINVAL;
533 1.1 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
534 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_MONITOR)
535 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
536 1.19 dyoung else
537 1.1 dyoung error = ENETRESET;
538 1.1 dyoung break;
539 1.1 dyoung case WI_RID_CURRENT_CHAN:
540 1.1 dyoung return EPERM;
541 1.1 dyoung case WI_RID_COMMS_QUALITY:
542 1.1 dyoung return EPERM;
543 1.1 dyoung case WI_RID_PROMISC:
544 1.1 dyoung if (len != 2)
545 1.1 dyoung return EINVAL;
546 1.1 dyoung if (ifp->if_flags & IFF_PROMISC) {
547 1.1 dyoung if (wreq.wi_val[0] == 0) {
548 1.1 dyoung ifp->if_flags &= ~IFF_PROMISC;
549 1.1 dyoung error = ENETRESET;
550 1.1 dyoung }
551 1.1 dyoung } else {
552 1.1 dyoung if (wreq.wi_val[0] != 0) {
553 1.1 dyoung ifp->if_flags |= IFF_PROMISC;
554 1.1 dyoung error = ENETRESET;
555 1.1 dyoung }
556 1.1 dyoung }
557 1.1 dyoung break;
558 1.1 dyoung case WI_RID_PORTTYPE:
559 1.1 dyoung if (len != 2)
560 1.1 dyoung return EINVAL;
561 1.1 dyoung switch (le16toh(wreq.wi_val[0])) {
562 1.1 dyoung case IEEE80211_M_STA:
563 1.1 dyoung break;
564 1.1 dyoung case IEEE80211_M_IBSS:
565 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_IBSS))
566 1.1 dyoung return EINVAL;
567 1.1 dyoung break;
568 1.1 dyoung case IEEE80211_M_AHDEMO:
569 1.1 dyoung if (ic->ic_phytype != IEEE80211_T_DS ||
570 1.1 dyoung !(ic->ic_caps & IEEE80211_C_AHDEMO))
571 1.1 dyoung return EINVAL;
572 1.1 dyoung break;
573 1.1 dyoung case IEEE80211_M_HOSTAP:
574 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_HOSTAP))
575 1.1 dyoung return EINVAL;
576 1.1 dyoung break;
577 1.1 dyoung default:
578 1.1 dyoung return EINVAL;
579 1.1 dyoung }
580 1.1 dyoung if (le16toh(wreq.wi_val[0]) != ic->ic_opmode) {
581 1.1 dyoung ic->ic_opmode = le16toh(wreq.wi_val[0]);
582 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
583 1.1 dyoung }
584 1.1 dyoung break;
585 1.1 dyoung #if 0
586 1.1 dyoung case WI_RID_MAC_NODE:
587 1.1 dyoung if (len != IEEE80211_ADDR_LEN)
588 1.1 dyoung return EINVAL;
589 1.1 dyoung IEEE80211_ADDR_COPY(LLADDR(ifp->if_sadl), wreq.wi_val);
590 1.1 dyoung /* if_init will copy lladdr into ic_myaddr */
591 1.1 dyoung error = ENETRESET;
592 1.1 dyoung break;
593 1.1 dyoung #endif
594 1.1 dyoung case WI_RID_TX_RATE:
595 1.1 dyoung if (len != 2)
596 1.1 dyoung return EINVAL;
597 1.1 dyoung if (wreq.wi_val[0] == 0) {
598 1.1 dyoung /* auto */
599 1.26 skrll ic->ic_fixed_rate = IEEE80211_FIXED_RATE_NONE;
600 1.1 dyoung break;
601 1.1 dyoung }
602 1.1 dyoung rate = 2 * le16toh(wreq.wi_val[0]);
603 1.1 dyoung if (ic->ic_curmode == IEEE80211_MODE_AUTO) {
604 1.1 dyoung /*
605 1.1 dyoung * In autoselect mode search for the rate. We take
606 1.1 dyoung * the first instance which may not be right, but we
607 1.1 dyoung * are limited by the interface. Note that we also
608 1.1 dyoung * lock the mode to insure the rate is meaningful
609 1.1 dyoung * when it is used.
610 1.1 dyoung */
611 1.1 dyoung for (j = IEEE80211_MODE_11A;
612 1.1 dyoung j < IEEE80211_MODE_MAX; j++) {
613 1.1 dyoung if ((ic->ic_modecaps & (1<<j)) == 0)
614 1.1 dyoung continue;
615 1.1 dyoung i = findrate(ic, j, rate);
616 1.1 dyoung if (i != -1) {
617 1.1 dyoung /* lock mode too */
618 1.1 dyoung ic->ic_curmode = j;
619 1.1 dyoung goto setrate;
620 1.1 dyoung }
621 1.1 dyoung }
622 1.1 dyoung } else {
623 1.1 dyoung i = findrate(ic, ic->ic_curmode, rate);
624 1.1 dyoung if (i != -1)
625 1.1 dyoung goto setrate;
626 1.1 dyoung }
627 1.1 dyoung return EINVAL;
628 1.1 dyoung setrate:
629 1.1 dyoung ic->ic_fixed_rate = i;
630 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
631 1.1 dyoung break;
632 1.1 dyoung case WI_RID_CUR_TX_RATE:
633 1.1 dyoung return EPERM;
634 1.6 dyoung case WI_RID_FRAG_THRESH:
635 1.6 dyoung if (len != 2)
636 1.6 dyoung return EINVAL;
637 1.6 dyoung ic->ic_fragthreshold = le16toh(wreq.wi_val[0]);
638 1.6 dyoung error = ENETRESET;
639 1.6 dyoung break;
640 1.1 dyoung case WI_RID_RTS_THRESH:
641 1.1 dyoung if (len != 2)
642 1.1 dyoung return EINVAL;
643 1.6 dyoung ic->ic_rtsthreshold = le16toh(wreq.wi_val[0]);
644 1.6 dyoung error = ENETRESET;
645 1.1 dyoung break;
646 1.1 dyoung case WI_RID_CREATE_IBSS:
647 1.1 dyoung if (len != 2)
648 1.1 dyoung return EINVAL;
649 1.1 dyoung if (wreq.wi_val[0] != 0) {
650 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_IBSS) == 0)
651 1.1 dyoung return EINVAL;
652 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_IBSSON) == 0) {
653 1.1 dyoung ic->ic_flags |= IEEE80211_F_IBSSON;
654 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_IBSS &&
655 1.1 dyoung ic->ic_state == IEEE80211_S_SCAN)
656 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
657 1.1 dyoung }
658 1.1 dyoung } else {
659 1.1 dyoung if (ic->ic_flags & IEEE80211_F_IBSSON) {
660 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_IBSSON;
661 1.1 dyoung if (ic->ic_flags & IEEE80211_F_SIBSS) {
662 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_SIBSS;
663 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
664 1.1 dyoung }
665 1.1 dyoung }
666 1.1 dyoung }
667 1.1 dyoung break;
668 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
669 1.1 dyoung if (len != 2)
670 1.1 dyoung return EINVAL;
671 1.1 dyoung if (wreq.wi_val[0] != 0)
672 1.1 dyoung return EINVAL; /* not supported */
673 1.1 dyoung break;
674 1.1 dyoung case WI_RID_ROAMING_MODE:
675 1.1 dyoung if (len != 2)
676 1.1 dyoung return EINVAL;
677 1.19 dyoung i = le16toh(wreq.wi_val[0]);
678 1.19 dyoung if (i > IEEE80211_ROAMING_MANUAL)
679 1.1 dyoung return EINVAL; /* not supported */
680 1.19 dyoung ic->ic_roaming = i;
681 1.1 dyoung break;
682 1.1 dyoung case WI_RID_SYSTEM_SCALE:
683 1.1 dyoung if (len != 2)
684 1.1 dyoung return EINVAL;
685 1.1 dyoung if (le16toh(wreq.wi_val[0]) != 1)
686 1.1 dyoung return EINVAL; /* not supported */
687 1.1 dyoung break;
688 1.1 dyoung case WI_RID_PM_ENABLED:
689 1.1 dyoung if (len != 2)
690 1.1 dyoung return EINVAL;
691 1.1 dyoung if (wreq.wi_val[0] != 0) {
692 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
693 1.1 dyoung return EINVAL;
694 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
695 1.1 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
696 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
697 1.1 dyoung }
698 1.1 dyoung } else {
699 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
700 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
701 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
702 1.1 dyoung }
703 1.1 dyoung }
704 1.1 dyoung break;
705 1.1 dyoung case WI_RID_MAX_SLEEP:
706 1.1 dyoung if (len != 2)
707 1.1 dyoung return EINVAL;
708 1.1 dyoung ic->ic_lintval = le16toh(wreq.wi_val[0]);
709 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
710 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
711 1.1 dyoung break;
712 1.1 dyoung case WI_RID_CUR_BEACON_INT:
713 1.1 dyoung return EPERM;
714 1.1 dyoung case WI_RID_WEP_AVAIL:
715 1.1 dyoung return EPERM;
716 1.1 dyoung case WI_RID_CNFAUTHMODE:
717 1.1 dyoung if (len != 2)
718 1.1 dyoung return EINVAL;
719 1.19 dyoung i = le16toh(wreq.wi_val[0]);
720 1.19 dyoung if (i > IEEE80211_AUTH_WPA)
721 1.19 dyoung return EINVAL;
722 1.19 dyoung ic->ic_bss->ni_authmode = i; /* XXX ENETRESET? */
723 1.19 dyoung error = ENETRESET;
724 1.1 dyoung break;
725 1.1 dyoung case WI_RID_ENCRYPTION:
726 1.1 dyoung if (len != 2)
727 1.1 dyoung return EINVAL;
728 1.1 dyoung if (wreq.wi_val[0] != 0) {
729 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_WEP) == 0)
730 1.1 dyoung return EINVAL;
731 1.16 mycroft if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0) {
732 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
733 1.1 dyoung error = ENETRESET;
734 1.1 dyoung }
735 1.1 dyoung } else {
736 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY) {
737 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
738 1.1 dyoung error = ENETRESET;
739 1.1 dyoung }
740 1.1 dyoung }
741 1.1 dyoung break;
742 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
743 1.1 dyoung if (len != 2)
744 1.1 dyoung return EINVAL;
745 1.1 dyoung i = le16toh(wreq.wi_val[0]);
746 1.1 dyoung if (i >= IEEE80211_WEP_NKID)
747 1.1 dyoung return EINVAL;
748 1.19 dyoung ic->ic_def_txkey = i;
749 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
750 1.1 dyoung break;
751 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
752 1.1 dyoung if (len != sizeof(struct wi_ltv_keys))
753 1.1 dyoung return EINVAL;
754 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
755 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
756 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
757 1.1 dyoung if (len != 0 && len < IEEE80211_WEP_KEYLEN)
758 1.1 dyoung return EINVAL;
759 1.19 dyoung if (len > IEEE80211_KEYBUF_SIZE)
760 1.1 dyoung return EINVAL;
761 1.1 dyoung }
762 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
763 1.19 dyoung struct ieee80211_key *k = &ic->ic_nw_keys[i];
764 1.19 dyoung
765 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
766 1.19 dyoung k->wk_keylen = len;
767 1.19 dyoung k->wk_flags = IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV;
768 1.19 dyoung memset(k->wk_key, 0, sizeof(k->wk_key));
769 1.19 dyoung memcpy(k->wk_key, keys->wi_keys[i].wi_keydat, len);
770 1.19 dyoung #if 0
771 1.19 dyoung k->wk_type = IEEE80211_CIPHER_WEP;
772 1.19 dyoung #endif
773 1.1 dyoung }
774 1.1 dyoung error = ENETRESET;
775 1.1 dyoung break;
776 1.1 dyoung case WI_RID_MAX_DATALEN:
777 1.1 dyoung if (len != 2)
778 1.1 dyoung return EINVAL;
779 1.1 dyoung len = le16toh(wreq.wi_val[0]);
780 1.1 dyoung if (len < 350 /* ? */ || len > IEEE80211_MAX_LEN)
781 1.1 dyoung return EINVAL;
782 1.1 dyoung ic->ic_fragthreshold = len;
783 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
784 1.1 dyoung break;
785 1.1 dyoung case WI_RID_IFACE_STATS:
786 1.1 dyoung error = EPERM;
787 1.1 dyoung break;
788 1.1 dyoung case WI_RID_SCAN_REQ: /* XXX wicontrol */
789 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
790 1.1 dyoung break;
791 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
792 1.7 dyoung if (error == 0)
793 1.7 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
794 1.1 dyoung break;
795 1.1 dyoung case WI_RID_SCAN_APS:
796 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
797 1.1 dyoung break;
798 1.1 dyoung len--; /* XXX: tx rate? */
799 1.1 dyoung /* FALLTHRU */
800 1.1 dyoung case WI_RID_CHANNEL_LIST:
801 1.1 dyoung memset(chanlist, 0, sizeof(chanlist));
802 1.1 dyoung /*
803 1.1 dyoung * Since channel 0 is not available for DS, channel 1
804 1.1 dyoung * is assigned to LSB on WaveLAN.
805 1.1 dyoung */
806 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
807 1.1 dyoung i = 1;
808 1.1 dyoung else
809 1.1 dyoung i = 0;
810 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
811 1.1 dyoung if ((j / 8) >= len)
812 1.1 dyoung break;
813 1.1 dyoung if (isclr((u_int8_t *)wreq.wi_val, j))
814 1.1 dyoung continue;
815 1.1 dyoung if (isclr(ic->ic_chan_active, i)) {
816 1.1 dyoung if (wreq.wi_type != WI_RID_CHANNEL_LIST)
817 1.1 dyoung continue;
818 1.1 dyoung if (isclr(ic->ic_chan_avail, i))
819 1.1 dyoung return EPERM;
820 1.1 dyoung }
821 1.1 dyoung setbit(chanlist, i);
822 1.1 dyoung }
823 1.19 dyoung error = ieee80211_setupscan(ic, chanlist);
824 1.7 dyoung if (wreq.wi_type == WI_RID_CHANNEL_LIST) {
825 1.7 dyoung /* NB: ignore error from ieee80211_setupscan */
826 1.1 dyoung error = ENETRESET;
827 1.7 dyoung } else if (error == 0)
828 1.1 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
829 1.1 dyoung break;
830 1.1 dyoung default:
831 1.1 dyoung error = EINVAL;
832 1.1 dyoung break;
833 1.1 dyoung }
834 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
835 1.19 dyoung error = 0;
836 1.19 dyoung return error;
837 1.19 dyoung }
838 1.19 dyoung
839 1.19 dyoung static int
840 1.19 dyoung cap2cipher(int flag)
841 1.19 dyoung {
842 1.19 dyoung switch (flag) {
843 1.19 dyoung case IEEE80211_C_WEP: return IEEE80211_CIPHER_WEP;
844 1.19 dyoung case IEEE80211_C_AES: return IEEE80211_CIPHER_AES_OCB;
845 1.19 dyoung case IEEE80211_C_AES_CCM: return IEEE80211_CIPHER_AES_CCM;
846 1.19 dyoung case IEEE80211_C_CKIP: return IEEE80211_CIPHER_CKIP;
847 1.19 dyoung case IEEE80211_C_TKIP: return IEEE80211_CIPHER_TKIP;
848 1.19 dyoung }
849 1.19 dyoung return -1;
850 1.19 dyoung }
851 1.19 dyoung
852 1.19 dyoung static int
853 1.19 dyoung ieee80211_ioctl_getkey(struct ieee80211com *ic, struct ieee80211req *ireq)
854 1.19 dyoung {
855 1.19 dyoung struct ieee80211_node *ni;
856 1.19 dyoung struct ieee80211req_key ik;
857 1.19 dyoung struct ieee80211_key *wk;
858 1.19 dyoung const struct ieee80211_cipher *cip;
859 1.19 dyoung u_int kid;
860 1.19 dyoung int error;
861 1.19 dyoung
862 1.19 dyoung if (ireq->i_len != sizeof(ik))
863 1.19 dyoung return EINVAL;
864 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
865 1.19 dyoung if (error)
866 1.19 dyoung return error;
867 1.19 dyoung kid = ik.ik_keyix;
868 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
869 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
870 1.19 dyoung if (ni == NULL)
871 1.19 dyoung return EINVAL; /* XXX */
872 1.19 dyoung wk = &ni->ni_ucastkey;
873 1.19 dyoung } else {
874 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
875 1.19 dyoung return EINVAL;
876 1.19 dyoung wk = &ic->ic_nw_keys[kid];
877 1.19 dyoung IEEE80211_ADDR_COPY(&ik.ik_macaddr, ic->ic_bss->ni_macaddr);
878 1.19 dyoung ni = NULL;
879 1.19 dyoung }
880 1.19 dyoung cip = wk->wk_cipher;
881 1.19 dyoung ik.ik_type = cip->ic_cipher;
882 1.19 dyoung ik.ik_keylen = wk->wk_keylen;
883 1.19 dyoung ik.ik_flags = wk->wk_flags & (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV);
884 1.19 dyoung if (wk->wk_keyix == ic->ic_def_txkey)
885 1.19 dyoung ik.ik_flags |= IEEE80211_KEY_DEFAULT;
886 1.30.4.2 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
887 1.30.4.1 elad &curproc->p_acflag) == 0) {
888 1.19 dyoung /* NB: only root can read key data */
889 1.19 dyoung ik.ik_keyrsc = wk->wk_keyrsc;
890 1.19 dyoung ik.ik_keytsc = wk->wk_keytsc;
891 1.19 dyoung memcpy(ik.ik_keydata, wk->wk_key, wk->wk_keylen);
892 1.19 dyoung if (cip->ic_cipher == IEEE80211_CIPHER_TKIP) {
893 1.19 dyoung memcpy(ik.ik_keydata+wk->wk_keylen,
894 1.19 dyoung wk->wk_key + IEEE80211_KEYBUF_SIZE,
895 1.19 dyoung IEEE80211_MICBUF_SIZE);
896 1.19 dyoung ik.ik_keylen += IEEE80211_MICBUF_SIZE;
897 1.19 dyoung }
898 1.19 dyoung } else {
899 1.19 dyoung ik.ik_keyrsc = 0;
900 1.19 dyoung ik.ik_keytsc = 0;
901 1.19 dyoung memset(ik.ik_keydata, 0, sizeof(ik.ik_keydata));
902 1.19 dyoung }
903 1.19 dyoung if (ni != NULL)
904 1.19 dyoung ieee80211_free_node(ni);
905 1.19 dyoung return copyout(&ik, ireq->i_data, sizeof(ik));
906 1.19 dyoung }
907 1.19 dyoung
908 1.19 dyoung static int
909 1.19 dyoung ieee80211_ioctl_getchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
910 1.19 dyoung {
911 1.27 christos size_t len = ireq->i_len;
912 1.19 dyoung
913 1.27 christos if (sizeof(ic->ic_chan_active) < len) {
914 1.27 christos len = sizeof(ic->ic_chan_active);
915 1.27 christos }
916 1.27 christos return copyout(&ic->ic_chan_active, ireq->i_data, len);
917 1.19 dyoung }
918 1.19 dyoung
919 1.19 dyoung static int
920 1.19 dyoung ieee80211_ioctl_getchaninfo(struct ieee80211com *ic, struct ieee80211req *ireq)
921 1.19 dyoung {
922 1.19 dyoung struct ieee80211req_chaninfo chans; /* XXX off stack? */
923 1.19 dyoung int i, space;
924 1.19 dyoung
925 1.19 dyoung /*
926 1.19 dyoung * Since channel 0 is not available for DS, channel 1
927 1.19 dyoung * is assigned to LSB on WaveLAN.
928 1.19 dyoung */
929 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
930 1.19 dyoung i = 1;
931 1.19 dyoung else
932 1.19 dyoung i = 0;
933 1.19 dyoung memset(&chans, 0, sizeof(chans));
934 1.19 dyoung for (; i <= IEEE80211_CHAN_MAX; i++)
935 1.19 dyoung if (isset(ic->ic_chan_avail, i)) {
936 1.19 dyoung struct ieee80211_channel *c = &ic->ic_channels[i];
937 1.19 dyoung chans.ic_chans[chans.ic_nchans].ic_freq = c->ic_freq;
938 1.19 dyoung chans.ic_chans[chans.ic_nchans].ic_flags = c->ic_flags;
939 1.19 dyoung chans.ic_nchans++;
940 1.19 dyoung }
941 1.19 dyoung space = __offsetof(struct ieee80211req_chaninfo,
942 1.19 dyoung ic_chans[chans.ic_nchans]);
943 1.19 dyoung if (space > ireq->i_len)
944 1.19 dyoung space = ireq->i_len;
945 1.19 dyoung return copyout(&chans, ireq->i_data, space);
946 1.19 dyoung }
947 1.19 dyoung
948 1.19 dyoung static int
949 1.19 dyoung ieee80211_ioctl_getwpaie(struct ieee80211com *ic, struct ieee80211req *ireq)
950 1.19 dyoung {
951 1.19 dyoung struct ieee80211_node *ni;
952 1.19 dyoung struct ieee80211req_wpaie wpaie;
953 1.19 dyoung int error;
954 1.19 dyoung
955 1.19 dyoung if (ireq->i_len < IEEE80211_ADDR_LEN)
956 1.19 dyoung return EINVAL;
957 1.19 dyoung error = copyin(ireq->i_data, wpaie.wpa_macaddr, IEEE80211_ADDR_LEN);
958 1.19 dyoung if (error != 0)
959 1.19 dyoung return error;
960 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, wpaie.wpa_macaddr);
961 1.19 dyoung if (ni == NULL)
962 1.19 dyoung return EINVAL; /* XXX */
963 1.19 dyoung memset(wpaie.wpa_ie, 0, sizeof(wpaie.wpa_ie));
964 1.19 dyoung if (ni->ni_wpa_ie != NULL) {
965 1.19 dyoung int ielen = ni->ni_wpa_ie[1] + 2;
966 1.19 dyoung if (ielen > sizeof(wpaie.wpa_ie))
967 1.19 dyoung ielen = sizeof(wpaie.wpa_ie);
968 1.19 dyoung memcpy(wpaie.wpa_ie, ni->ni_wpa_ie, ielen);
969 1.19 dyoung }
970 1.19 dyoung ieee80211_free_node(ni);
971 1.19 dyoung if (ireq->i_len > sizeof(wpaie))
972 1.19 dyoung ireq->i_len = sizeof(wpaie);
973 1.19 dyoung return copyout(&wpaie, ireq->i_data, ireq->i_len);
974 1.19 dyoung }
975 1.19 dyoung
976 1.19 dyoung static int
977 1.19 dyoung ieee80211_ioctl_getstastats(struct ieee80211com *ic, struct ieee80211req *ireq)
978 1.19 dyoung {
979 1.19 dyoung struct ieee80211_node *ni;
980 1.19 dyoung u_int8_t macaddr[IEEE80211_ADDR_LEN];
981 1.19 dyoung const int off = __offsetof(struct ieee80211req_sta_stats, is_stats);
982 1.19 dyoung int error;
983 1.19 dyoung
984 1.19 dyoung if (ireq->i_len < off)
985 1.19 dyoung return EINVAL;
986 1.19 dyoung error = copyin(ireq->i_data, macaddr, IEEE80211_ADDR_LEN);
987 1.19 dyoung if (error != 0)
988 1.19 dyoung return error;
989 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, macaddr);
990 1.19 dyoung if (ni == NULL)
991 1.19 dyoung return EINVAL; /* XXX */
992 1.19 dyoung if (ireq->i_len > sizeof(struct ieee80211req_sta_stats))
993 1.19 dyoung ireq->i_len = sizeof(struct ieee80211req_sta_stats);
994 1.19 dyoung /* NB: copy out only the statistics */
995 1.19 dyoung error = copyout(&ni->ni_stats, (u_int8_t *) ireq->i_data + off,
996 1.19 dyoung ireq->i_len - off);
997 1.19 dyoung ieee80211_free_node(ni);
998 1.19 dyoung return error;
999 1.19 dyoung }
1000 1.19 dyoung
1001 1.19 dyoung static void
1002 1.19 dyoung get_scan_result(struct ieee80211req_scan_result *sr,
1003 1.19 dyoung const struct ieee80211_node *ni)
1004 1.19 dyoung {
1005 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1006 1.28 christos u_int ielen = 0;
1007 1.19 dyoung
1008 1.19 dyoung memset(sr, 0, sizeof(*sr));
1009 1.19 dyoung sr->isr_ssid_len = ni->ni_esslen;
1010 1.19 dyoung if (ni->ni_wpa_ie != NULL)
1011 1.28 christos ielen += 2+ni->ni_wpa_ie[1];
1012 1.19 dyoung if (ni->ni_wme_ie != NULL)
1013 1.28 christos ielen += 2+ni->ni_wme_ie[1];
1014 1.28 christos
1015 1.28 christos /*
1016 1.28 christos * The value sr->isr_ie_len is defined as a uint8_t, so we
1017 1.28 christos * need to be careful to avoid an integer overflow. If the
1018 1.28 christos * value would overflow, we will set isr_ie_len to zero, and
1019 1.28 christos * ieee80211_ioctl_getscanresults (below) will avoid copying
1020 1.28 christos * the (overflowing) data.
1021 1.28 christos */
1022 1.28 christos if (ielen > 255)
1023 1.28 christos ielen = 0;
1024 1.28 christos sr->isr_ie_len = ielen;
1025 1.19 dyoung sr->isr_len = sizeof(*sr) + sr->isr_ssid_len + sr->isr_ie_len;
1026 1.19 dyoung sr->isr_len = roundup(sr->isr_len, sizeof(u_int32_t));
1027 1.19 dyoung if (ni->ni_chan != IEEE80211_CHAN_ANYC) {
1028 1.19 dyoung sr->isr_freq = ni->ni_chan->ic_freq;
1029 1.19 dyoung sr->isr_flags = ni->ni_chan->ic_flags;
1030 1.19 dyoung }
1031 1.19 dyoung sr->isr_rssi = ic->ic_node_getrssi(ni);
1032 1.19 dyoung sr->isr_intval = ni->ni_intval;
1033 1.19 dyoung sr->isr_capinfo = ni->ni_capinfo;
1034 1.19 dyoung sr->isr_erp = ni->ni_erp;
1035 1.19 dyoung IEEE80211_ADDR_COPY(sr->isr_bssid, ni->ni_bssid);
1036 1.19 dyoung sr->isr_nrates = ni->ni_rates.rs_nrates;
1037 1.19 dyoung if (sr->isr_nrates > 15)
1038 1.19 dyoung sr->isr_nrates = 15;
1039 1.19 dyoung memcpy(sr->isr_rates, ni->ni_rates.rs_rates, sr->isr_nrates);
1040 1.19 dyoung }
1041 1.19 dyoung
1042 1.19 dyoung static int
1043 1.19 dyoung ieee80211_ioctl_getscanresults(struct ieee80211com *ic, struct ieee80211req *ireq)
1044 1.19 dyoung {
1045 1.19 dyoung union {
1046 1.19 dyoung struct ieee80211req_scan_result res;
1047 1.27 christos char data[sizeof(struct ieee80211req_scan_result) + IEEE80211_NWID_LEN + 256 * 2];
1048 1.19 dyoung } u;
1049 1.19 dyoung struct ieee80211req_scan_result *sr = &u.res;
1050 1.19 dyoung struct ieee80211_node_table *nt;
1051 1.19 dyoung struct ieee80211_node *ni;
1052 1.19 dyoung int error, space;
1053 1.19 dyoung u_int8_t *p, *cp;
1054 1.19 dyoung
1055 1.19 dyoung p = ireq->i_data;
1056 1.19 dyoung space = ireq->i_len;
1057 1.19 dyoung error = 0;
1058 1.19 dyoung /* XXX locking */
1059 1.19 dyoung nt = &ic->ic_scan;
1060 1.19 dyoung TAILQ_FOREACH(ni, &nt->nt_node, ni_list) {
1061 1.19 dyoung /* NB: skip pre-scan node state */
1062 1.19 dyoung if (ni->ni_chan == IEEE80211_CHAN_ANYC)
1063 1.19 dyoung continue;
1064 1.19 dyoung get_scan_result(sr, ni);
1065 1.19 dyoung if (sr->isr_len > sizeof(u))
1066 1.19 dyoung continue; /* XXX */
1067 1.19 dyoung if (space < sr->isr_len)
1068 1.19 dyoung break;
1069 1.19 dyoung cp = (u_int8_t *)(sr+1);
1070 1.19 dyoung memcpy(cp, ni->ni_essid, ni->ni_esslen);
1071 1.19 dyoung cp += ni->ni_esslen;
1072 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wpa_ie != NULL) {
1073 1.19 dyoung memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1074 1.19 dyoung cp += 2+ni->ni_wpa_ie[1];
1075 1.19 dyoung }
1076 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wme_ie != NULL) {
1077 1.19 dyoung memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1078 1.19 dyoung cp += 2+ni->ni_wme_ie[1];
1079 1.19 dyoung }
1080 1.19 dyoung error = copyout(sr, p, sr->isr_len);
1081 1.19 dyoung if (error)
1082 1.19 dyoung break;
1083 1.19 dyoung p += sr->isr_len;
1084 1.19 dyoung space -= sr->isr_len;
1085 1.19 dyoung }
1086 1.19 dyoung ireq->i_len -= space;
1087 1.19 dyoung return error;
1088 1.19 dyoung }
1089 1.19 dyoung
1090 1.26 skrll struct stainforeq {
1091 1.26 skrll struct ieee80211com *ic;
1092 1.26 skrll struct ieee80211req_sta_info *si;
1093 1.26 skrll size_t space;
1094 1.26 skrll };
1095 1.26 skrll
1096 1.26 skrll static size_t
1097 1.26 skrll sta_space(const struct ieee80211_node *ni, size_t *ielen)
1098 1.26 skrll {
1099 1.26 skrll *ielen = 0;
1100 1.26 skrll if (ni->ni_wpa_ie != NULL)
1101 1.26 skrll *ielen += 2+ni->ni_wpa_ie[1];
1102 1.26 skrll if (ni->ni_wme_ie != NULL)
1103 1.26 skrll *ielen += 2+ni->ni_wme_ie[1];
1104 1.26 skrll return roundup(sizeof(struct ieee80211req_sta_info) + *ielen,
1105 1.26 skrll sizeof(u_int32_t));
1106 1.26 skrll }
1107 1.26 skrll
1108 1.19 dyoung static void
1109 1.26 skrll get_sta_space(void *arg, struct ieee80211_node *ni)
1110 1.19 dyoung {
1111 1.26 skrll struct stainforeq *req = arg;
1112 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1113 1.26 skrll size_t ielen;
1114 1.19 dyoung
1115 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1116 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1117 1.26 skrll return;
1118 1.26 skrll req->space += sta_space(ni, &ielen);
1119 1.26 skrll }
1120 1.26 skrll
1121 1.26 skrll static void
1122 1.26 skrll get_sta_info(void *arg, struct ieee80211_node *ni)
1123 1.26 skrll {
1124 1.26 skrll struct stainforeq *req = arg;
1125 1.26 skrll struct ieee80211com *ic = ni->ni_ic;
1126 1.26 skrll struct ieee80211req_sta_info *si;
1127 1.26 skrll size_t ielen, len;
1128 1.26 skrll u_int8_t *cp;
1129 1.26 skrll
1130 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1131 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1132 1.26 skrll return;
1133 1.26 skrll if (ni->ni_chan == IEEE80211_CHAN_ANYC) /* XXX bogus entry */
1134 1.26 skrll return;
1135 1.26 skrll len = sta_space(ni, &ielen);
1136 1.26 skrll if (len > req->space)
1137 1.26 skrll return;
1138 1.26 skrll si = req->si;
1139 1.26 skrll si->isi_len = len;
1140 1.26 skrll si->isi_ie_len = ielen;
1141 1.19 dyoung si->isi_freq = ni->ni_chan->ic_freq;
1142 1.19 dyoung si->isi_flags = ni->ni_chan->ic_flags;
1143 1.19 dyoung si->isi_state = ni->ni_flags;
1144 1.19 dyoung si->isi_authmode = ni->ni_authmode;
1145 1.19 dyoung si->isi_rssi = ic->ic_node_getrssi(ni);
1146 1.19 dyoung si->isi_capinfo = ni->ni_capinfo;
1147 1.19 dyoung si->isi_erp = ni->ni_erp;
1148 1.19 dyoung IEEE80211_ADDR_COPY(si->isi_macaddr, ni->ni_macaddr);
1149 1.19 dyoung si->isi_nrates = ni->ni_rates.rs_nrates;
1150 1.19 dyoung if (si->isi_nrates > 15)
1151 1.19 dyoung si->isi_nrates = 15;
1152 1.19 dyoung memcpy(si->isi_rates, ni->ni_rates.rs_rates, si->isi_nrates);
1153 1.19 dyoung si->isi_txrate = ni->ni_txrate;
1154 1.19 dyoung si->isi_associd = ni->ni_associd;
1155 1.19 dyoung si->isi_txpower = ni->ni_txpower;
1156 1.19 dyoung si->isi_vlan = ni->ni_vlan;
1157 1.19 dyoung if (ni->ni_flags & IEEE80211_NODE_QOS) {
1158 1.19 dyoung memcpy(si->isi_txseqs, ni->ni_txseqs, sizeof(ni->ni_txseqs));
1159 1.19 dyoung memcpy(si->isi_rxseqs, ni->ni_rxseqs, sizeof(ni->ni_rxseqs));
1160 1.19 dyoung } else {
1161 1.19 dyoung si->isi_txseqs[0] = ni->ni_txseqs[0];
1162 1.19 dyoung si->isi_rxseqs[0] = ni->ni_rxseqs[0];
1163 1.19 dyoung }
1164 1.26 skrll /* NB: leave all cases in case we relax ni_associd == 0 check */
1165 1.26 skrll if (ieee80211_node_is_authorized(ni))
1166 1.19 dyoung si->isi_inact = ic->ic_inact_run;
1167 1.26 skrll else if (ni->ni_associd != 0)
1168 1.19 dyoung si->isi_inact = ic->ic_inact_auth;
1169 1.19 dyoung else
1170 1.19 dyoung si->isi_inact = ic->ic_inact_init;
1171 1.19 dyoung si->isi_inact = (si->isi_inact - ni->ni_inact) * IEEE80211_INACT_WAIT;
1172 1.26 skrll
1173 1.26 skrll cp = (u_int8_t *)(si+1);
1174 1.26 skrll if (ni->ni_wpa_ie != NULL) {
1175 1.26 skrll memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1176 1.26 skrll cp += 2+ni->ni_wpa_ie[1];
1177 1.26 skrll }
1178 1.26 skrll if (ni->ni_wme_ie != NULL) {
1179 1.26 skrll memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1180 1.26 skrll cp += 2+ni->ni_wme_ie[1];
1181 1.26 skrll }
1182 1.26 skrll
1183 1.26 skrll req->si = (struct ieee80211req_sta_info *)(((u_int8_t *)si) + len);
1184 1.26 skrll req->space -= len;
1185 1.19 dyoung }
1186 1.19 dyoung
1187 1.19 dyoung static int
1188 1.19 dyoung ieee80211_ioctl_getstainfo(struct ieee80211com *ic, struct ieee80211req *ireq)
1189 1.19 dyoung {
1190 1.26 skrll struct stainforeq req;
1191 1.26 skrll int error;
1192 1.26 skrll
1193 1.26 skrll if (ireq->i_len < sizeof(struct stainforeq))
1194 1.26 skrll return EFAULT;
1195 1.19 dyoung
1196 1.19 dyoung error = 0;
1197 1.26 skrll req.space = 0;
1198 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_space, &req);
1199 1.26 skrll if (req.space > ireq->i_len)
1200 1.26 skrll req.space = ireq->i_len;
1201 1.26 skrll if (req.space > 0) {
1202 1.26 skrll size_t space;
1203 1.26 skrll void *p;
1204 1.26 skrll
1205 1.26 skrll space = req.space;
1206 1.26 skrll /* XXX M_WAITOK after driver lock released */
1207 1.30.4.3 elad p = malloc(space, M_TEMP, M_NOWAIT);
1208 1.26 skrll if (p == NULL)
1209 1.26 skrll return ENOMEM;
1210 1.26 skrll req.si = p;
1211 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_info, &req);
1212 1.26 skrll ireq->i_len = space - req.space;
1213 1.26 skrll error = copyout(p, ireq->i_data, ireq->i_len);
1214 1.26 skrll FREE(p, M_TEMP);
1215 1.26 skrll } else
1216 1.26 skrll ireq->i_len = 0;
1217 1.26 skrll
1218 1.19 dyoung return error;
1219 1.19 dyoung }
1220 1.19 dyoung
1221 1.19 dyoung static int
1222 1.19 dyoung ieee80211_ioctl_getstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1223 1.19 dyoung {
1224 1.19 dyoung struct ieee80211_node *ni;
1225 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1226 1.19 dyoung int error;
1227 1.19 dyoung
1228 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1229 1.19 dyoung return EINVAL;
1230 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1231 1.19 dyoung if (error != 0)
1232 1.19 dyoung return error;
1233 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1234 1.19 dyoung if (ni == NULL)
1235 1.19 dyoung return EINVAL; /* XXX */
1236 1.19 dyoung txpow.it_txpow = ni->ni_txpower;
1237 1.19 dyoung error = copyout(&txpow, ireq->i_data, sizeof(txpow));
1238 1.19 dyoung ieee80211_free_node(ni);
1239 1.1 dyoung return error;
1240 1.1 dyoung }
1241 1.1 dyoung
1242 1.19 dyoung static int
1243 1.19 dyoung ieee80211_ioctl_getwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1244 1.19 dyoung {
1245 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1246 1.19 dyoung struct wmeParams *wmep;
1247 1.19 dyoung int ac;
1248 1.19 dyoung
1249 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1250 1.19 dyoung return EINVAL;
1251 1.19 dyoung
1252 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1253 1.19 dyoung if (ac >= WME_NUM_AC)
1254 1.19 dyoung ac = WME_AC_BE;
1255 1.19 dyoung if (ireq->i_len & IEEE80211_WMEPARAM_BSS)
1256 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1257 1.19 dyoung else
1258 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1259 1.19 dyoung switch (ireq->i_type) {
1260 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1261 1.19 dyoung ireq->i_val = wmep->wmep_logcwmin;
1262 1.19 dyoung break;
1263 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1264 1.19 dyoung ireq->i_val = wmep->wmep_logcwmax;
1265 1.19 dyoung break;
1266 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1267 1.19 dyoung ireq->i_val = wmep->wmep_aifsn;
1268 1.19 dyoung break;
1269 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1270 1.19 dyoung ireq->i_val = wmep->wmep_txopLimit;
1271 1.19 dyoung break;
1272 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1273 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1274 1.19 dyoung ireq->i_val = wmep->wmep_acm;
1275 1.19 dyoung break;
1276 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1277 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1278 1.19 dyoung ireq->i_val = !wmep->wmep_noackPolicy;
1279 1.19 dyoung break;
1280 1.19 dyoung }
1281 1.19 dyoung return 0;
1282 1.19 dyoung }
1283 1.19 dyoung
1284 1.26 skrll static int
1285 1.26 skrll ieee80211_ioctl_getmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1286 1.26 skrll {
1287 1.26 skrll const struct ieee80211_aclator *acl = ic->ic_acl;
1288 1.26 skrll
1289 1.26 skrll return (acl == NULL ? EINVAL : acl->iac_getioctl(ic, ireq));
1290 1.26 skrll }
1291 1.26 skrll
1292 1.19 dyoung /*
1293 1.19 dyoung * When building the kernel with -O2 on the i386 architecture, gcc
1294 1.19 dyoung * seems to want to inline this function into ieee80211_ioctl()
1295 1.19 dyoung * (which is the only routine that calls it). When this happens,
1296 1.19 dyoung * ieee80211_ioctl() ends up consuming an additional 2K of stack
1297 1.19 dyoung * space. (Exactly why it needs so much is unclear.) The problem
1298 1.19 dyoung * is that it's possible for ieee80211_ioctl() to invoke other
1299 1.19 dyoung * routines (including driver init functions) which could then find
1300 1.19 dyoung * themselves perilously close to exhausting the stack.
1301 1.19 dyoung *
1302 1.19 dyoung * To avoid this, we deliberately prevent gcc from inlining this
1303 1.19 dyoung * routine. Another way to avoid this is to use less agressive
1304 1.19 dyoung * optimization when compiling this file (i.e. -O instead of -O2)
1305 1.19 dyoung * but special-casing the compilation of this one module in the
1306 1.19 dyoung * build system would be awkward.
1307 1.19 dyoung */
1308 1.19 dyoung #ifdef __GNUC__
1309 1.19 dyoung __attribute__ ((noinline))
1310 1.19 dyoung #endif
1311 1.19 dyoung static int
1312 1.19 dyoung ieee80211_ioctl_get80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
1313 1.1 dyoung {
1314 1.19 dyoung const struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
1315 1.1 dyoung int error = 0;
1316 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1317 1.23 dyoung u_int kid, len;
1318 1.1 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
1319 1.1 dyoung char tmpssid[IEEE80211_NWID_LEN];
1320 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1321 1.23 dyoung u_int m;
1322 1.1 dyoung
1323 1.19 dyoung switch (ireq->i_type) {
1324 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1325 1.19 dyoung case IEEE80211_IOC_SSID:
1326 1.19 dyoung switch (ic->ic_state) {
1327 1.19 dyoung case IEEE80211_S_INIT:
1328 1.19 dyoung case IEEE80211_S_SCAN:
1329 1.19 dyoung ireq->i_len = ic->ic_des_esslen;
1330 1.19 dyoung memcpy(tmpssid, ic->ic_des_essid, ireq->i_len);
1331 1.1 dyoung break;
1332 1.19 dyoung default:
1333 1.19 dyoung ireq->i_len = ic->ic_bss->ni_esslen;
1334 1.19 dyoung memcpy(tmpssid, ic->ic_bss->ni_essid,
1335 1.19 dyoung ireq->i_len);
1336 1.1 dyoung break;
1337 1.19 dyoung }
1338 1.19 dyoung error = copyout(tmpssid, ireq->i_data, ireq->i_len);
1339 1.19 dyoung break;
1340 1.19 dyoung case IEEE80211_IOC_NUMSSIDS:
1341 1.19 dyoung ireq->i_val = 1;
1342 1.19 dyoung break;
1343 1.19 dyoung case IEEE80211_IOC_WEP:
1344 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0)
1345 1.19 dyoung ireq->i_val = IEEE80211_WEP_OFF;
1346 1.19 dyoung else if (ic->ic_flags & IEEE80211_F_DROPUNENC)
1347 1.19 dyoung ireq->i_val = IEEE80211_WEP_ON;
1348 1.19 dyoung else
1349 1.19 dyoung ireq->i_val = IEEE80211_WEP_MIXED;
1350 1.19 dyoung break;
1351 1.19 dyoung case IEEE80211_IOC_WEPKEY:
1352 1.19 dyoung kid = (u_int) ireq->i_val;
1353 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1354 1.19 dyoung return EINVAL;
1355 1.19 dyoung len = (u_int) ic->ic_nw_keys[kid].wk_keylen;
1356 1.19 dyoung /* NB: only root can read WEP keys */
1357 1.30.4.2 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
1358 1.30.4.1 elad &curproc->p_acflag) == 0) {
1359 1.19 dyoung bcopy(ic->ic_nw_keys[kid].wk_key, tmpkey, len);
1360 1.19 dyoung } else {
1361 1.19 dyoung bzero(tmpkey, len);
1362 1.19 dyoung }
1363 1.19 dyoung ireq->i_len = len;
1364 1.19 dyoung error = copyout(tmpkey, ireq->i_data, len);
1365 1.19 dyoung break;
1366 1.19 dyoung case IEEE80211_IOC_NUMWEPKEYS:
1367 1.19 dyoung ireq->i_val = IEEE80211_WEP_NKID;
1368 1.19 dyoung break;
1369 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
1370 1.19 dyoung ireq->i_val = ic->ic_def_txkey;
1371 1.19 dyoung break;
1372 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1373 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
1374 1.19 dyoung if (ic->ic_flags & IEEE80211_F_WPA)
1375 1.19 dyoung ireq->i_val = IEEE80211_AUTH_WPA;
1376 1.19 dyoung else
1377 1.19 dyoung ireq->i_val = ic->ic_bss->ni_authmode;
1378 1.19 dyoung break;
1379 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1380 1.19 dyoung case IEEE80211_IOC_CHANNEL:
1381 1.26 skrll ireq->i_val = ieee80211_chan2ieee(ic, ic->ic_curchan);
1382 1.19 dyoung break;
1383 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
1384 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
1385 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_ON;
1386 1.19 dyoung else
1387 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_OFF;
1388 1.19 dyoung break;
1389 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
1390 1.19 dyoung ireq->i_val = ic->ic_lintval;
1391 1.19 dyoung break;
1392 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1393 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
1394 1.19 dyoung ireq->i_val = ic->ic_rtsthreshold;
1395 1.19 dyoung break;
1396 1.19 dyoung case IEEE80211_IOC_PROTMODE:
1397 1.19 dyoung ireq->i_val = ic->ic_protmode;
1398 1.19 dyoung break;
1399 1.19 dyoung case IEEE80211_IOC_TXPOWER:
1400 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
1401 1.19 dyoung return EINVAL;
1402 1.19 dyoung ireq->i_val = ic->ic_txpowlimit;
1403 1.19 dyoung break;
1404 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
1405 1.19 dyoung ireq->i_val = rsn->rsn_mcastcipher;
1406 1.19 dyoung break;
1407 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
1408 1.19 dyoung ireq->i_val = rsn->rsn_mcastkeylen;
1409 1.19 dyoung break;
1410 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
1411 1.19 dyoung ireq->i_val = 0;
1412 1.19 dyoung for (m = 0x1; m != 0; m <<= 1)
1413 1.19 dyoung if (rsn->rsn_ucastcipherset & m)
1414 1.19 dyoung ireq->i_val |= 1<<cap2cipher(m);
1415 1.19 dyoung break;
1416 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
1417 1.19 dyoung ireq->i_val = rsn->rsn_ucastcipher;
1418 1.19 dyoung break;
1419 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
1420 1.19 dyoung ireq->i_val = rsn->rsn_ucastkeylen;
1421 1.19 dyoung break;
1422 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
1423 1.19 dyoung ireq->i_val = rsn->rsn_keymgmtset;
1424 1.19 dyoung break;
1425 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
1426 1.19 dyoung ireq->i_val = rsn->rsn_caps;
1427 1.19 dyoung break;
1428 1.19 dyoung case IEEE80211_IOC_WPA:
1429 1.19 dyoung switch (ic->ic_flags & IEEE80211_F_WPA) {
1430 1.19 dyoung case IEEE80211_F_WPA1:
1431 1.19 dyoung ireq->i_val = 1;
1432 1.19 dyoung break;
1433 1.19 dyoung case IEEE80211_F_WPA2:
1434 1.19 dyoung ireq->i_val = 2;
1435 1.19 dyoung break;
1436 1.19 dyoung case IEEE80211_F_WPA1 | IEEE80211_F_WPA2:
1437 1.19 dyoung ireq->i_val = 3;
1438 1.19 dyoung break;
1439 1.19 dyoung default:
1440 1.19 dyoung ireq->i_val = 0;
1441 1.19 dyoung break;
1442 1.19 dyoung }
1443 1.19 dyoung break;
1444 1.19 dyoung case IEEE80211_IOC_CHANLIST:
1445 1.19 dyoung error = ieee80211_ioctl_getchanlist(ic, ireq);
1446 1.19 dyoung break;
1447 1.19 dyoung case IEEE80211_IOC_ROAMING:
1448 1.19 dyoung ireq->i_val = ic->ic_roaming;
1449 1.19 dyoung break;
1450 1.19 dyoung case IEEE80211_IOC_PRIVACY:
1451 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PRIVACY) != 0;
1452 1.19 dyoung break;
1453 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
1454 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_DROPUNENC) != 0;
1455 1.19 dyoung break;
1456 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
1457 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_COUNTERM) != 0;
1458 1.19 dyoung break;
1459 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
1460 1.19 dyoung ireq->i_val = ic->ic_caps>>16;
1461 1.19 dyoung ireq->i_len = ic->ic_caps&0xffff;
1462 1.19 dyoung break;
1463 1.19 dyoung case IEEE80211_IOC_WME:
1464 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_WME) != 0;
1465 1.19 dyoung break;
1466 1.19 dyoung case IEEE80211_IOC_HIDESSID:
1467 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_HIDESSID) != 0;
1468 1.19 dyoung break;
1469 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
1470 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_NOBRIDGE) == 0;
1471 1.19 dyoung break;
1472 1.19 dyoung case IEEE80211_IOC_OPTIE:
1473 1.19 dyoung if (ic->ic_opt_ie == NULL)
1474 1.19 dyoung return EINVAL;
1475 1.19 dyoung /* NB: truncate, caller can check length */
1476 1.19 dyoung if (ireq->i_len > ic->ic_opt_ie_len)
1477 1.19 dyoung ireq->i_len = ic->ic_opt_ie_len;
1478 1.19 dyoung error = copyout(ic->ic_opt_ie, ireq->i_data, ireq->i_len);
1479 1.19 dyoung break;
1480 1.19 dyoung case IEEE80211_IOC_WPAKEY:
1481 1.19 dyoung error = ieee80211_ioctl_getkey(ic, ireq);
1482 1.19 dyoung break;
1483 1.19 dyoung case IEEE80211_IOC_CHANINFO:
1484 1.19 dyoung error = ieee80211_ioctl_getchaninfo(ic, ireq);
1485 1.19 dyoung break;
1486 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1487 1.19 dyoung case IEEE80211_IOC_BSSID:
1488 1.19 dyoung if (ireq->i_len != IEEE80211_ADDR_LEN)
1489 1.19 dyoung return EINVAL;
1490 1.19 dyoung error = copyout(ic->ic_state == IEEE80211_S_RUN ?
1491 1.19 dyoung ic->ic_bss->ni_bssid :
1492 1.19 dyoung ic->ic_des_bssid,
1493 1.19 dyoung ireq->i_data, ireq->i_len);
1494 1.19 dyoung break;
1495 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1496 1.19 dyoung case IEEE80211_IOC_WPAIE:
1497 1.19 dyoung error = ieee80211_ioctl_getwpaie(ic, ireq);
1498 1.19 dyoung break;
1499 1.19 dyoung case IEEE80211_IOC_SCAN_RESULTS:
1500 1.19 dyoung error = ieee80211_ioctl_getscanresults(ic, ireq);
1501 1.19 dyoung break;
1502 1.19 dyoung case IEEE80211_IOC_STA_STATS:
1503 1.19 dyoung error = ieee80211_ioctl_getstastats(ic, ireq);
1504 1.19 dyoung break;
1505 1.19 dyoung case IEEE80211_IOC_TXPOWMAX:
1506 1.19 dyoung ireq->i_val = ic->ic_bss->ni_txpower;
1507 1.19 dyoung break;
1508 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
1509 1.19 dyoung error = ieee80211_ioctl_getstatxpow(ic, ireq);
1510 1.19 dyoung break;
1511 1.19 dyoung case IEEE80211_IOC_STA_INFO:
1512 1.19 dyoung error = ieee80211_ioctl_getstainfo(ic, ireq);
1513 1.19 dyoung break;
1514 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1515 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1516 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1517 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1518 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1519 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
1520 1.19 dyoung error = ieee80211_ioctl_getwmeparam(ic, ireq);
1521 1.19 dyoung break;
1522 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
1523 1.19 dyoung ireq->i_val = ic->ic_dtim_period;
1524 1.19 dyoung break;
1525 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
1526 1.19 dyoung /* NB: get from ic_bss for station mode */
1527 1.19 dyoung ireq->i_val = ic->ic_bss->ni_intval;
1528 1.19 dyoung break;
1529 1.21 dyoung case IEEE80211_IOC_PUREG:
1530 1.21 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PUREG) != 0;
1531 1.21 dyoung break;
1532 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
1533 1.30 dyoung ireq->i_val = ic->ic_mcast_rate;
1534 1.30 dyoung break;
1535 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
1536 1.26 skrll ireq->i_val = ic->ic_fragthreshold;
1537 1.26 skrll break;
1538 1.26 skrll case IEEE80211_IOC_MACCMD:
1539 1.26 skrll error = ieee80211_ioctl_getmaccmd(ic, ireq);
1540 1.26 skrll break;
1541 1.19 dyoung default:
1542 1.19 dyoung error = EINVAL;
1543 1.19 dyoung break;
1544 1.19 dyoung }
1545 1.19 dyoung return error;
1546 1.19 dyoung }
1547 1.19 dyoung
1548 1.19 dyoung static int
1549 1.19 dyoung ieee80211_ioctl_setoptie(struct ieee80211com *ic, struct ieee80211req *ireq)
1550 1.19 dyoung {
1551 1.19 dyoung int error;
1552 1.19 dyoung void *ie;
1553 1.19 dyoung
1554 1.19 dyoung /*
1555 1.19 dyoung * NB: Doing this for ap operation could be useful (e.g. for
1556 1.19 dyoung * WPA and/or WME) except that it typically is worthless
1557 1.19 dyoung * without being able to intervene when processing
1558 1.19 dyoung * association response frames--so disallow it for now.
1559 1.19 dyoung */
1560 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1561 1.19 dyoung return EINVAL;
1562 1.19 dyoung if (ireq->i_len > IEEE80211_MAX_OPT_IE)
1563 1.19 dyoung return EINVAL;
1564 1.19 dyoung /* NB: data.length is validated by the wireless extensions code */
1565 1.30.4.3 elad ie = malloc(ireq->i_len, M_DEVBUF, M_WAITOK);
1566 1.19 dyoung if (ie == NULL)
1567 1.19 dyoung return ENOMEM;
1568 1.19 dyoung error = copyin(ireq->i_data, ie, ireq->i_len);
1569 1.19 dyoung /* XXX sanity check data? */
1570 1.19 dyoung if (ic->ic_opt_ie != NULL)
1571 1.19 dyoung FREE(ic->ic_opt_ie, M_DEVBUF);
1572 1.19 dyoung ic->ic_opt_ie = ie;
1573 1.19 dyoung ic->ic_opt_ie_len = ireq->i_len;
1574 1.19 dyoung return 0;
1575 1.19 dyoung }
1576 1.19 dyoung
1577 1.19 dyoung static int
1578 1.19 dyoung ieee80211_ioctl_setkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1579 1.19 dyoung {
1580 1.19 dyoung struct ieee80211req_key ik;
1581 1.19 dyoung struct ieee80211_node *ni;
1582 1.19 dyoung struct ieee80211_key *wk;
1583 1.19 dyoung u_int16_t kid;
1584 1.19 dyoung int error;
1585 1.19 dyoung
1586 1.19 dyoung if (ireq->i_len != sizeof(ik))
1587 1.19 dyoung return EINVAL;
1588 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
1589 1.19 dyoung if (error)
1590 1.19 dyoung return error;
1591 1.19 dyoung /* NB: cipher support is verified by ieee80211_crypt_newkey */
1592 1.19 dyoung /* NB: this also checks ik->ik_keylen > sizeof(wk->wk_key) */
1593 1.19 dyoung if (ik.ik_keylen > sizeof(ik.ik_keydata))
1594 1.19 dyoung return E2BIG;
1595 1.19 dyoung kid = ik.ik_keyix;
1596 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
1597 1.19 dyoung /* XXX unicast keys currently must be tx/rx */
1598 1.19 dyoung if (ik.ik_flags != (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV))
1599 1.19 dyoung return EINVAL;
1600 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1601 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1602 1.21 dyoung if (!IEEE80211_ADDR_EQ(ik.ik_macaddr, ni->ni_bssid)) {
1603 1.21 dyoung ieee80211_free_node(ni);
1604 1.19 dyoung return EADDRNOTAVAIL;
1605 1.21 dyoung }
1606 1.19 dyoung } else {
1607 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
1608 1.19 dyoung if (ni == NULL)
1609 1.19 dyoung return ENOENT;
1610 1.19 dyoung }
1611 1.19 dyoung wk = &ni->ni_ucastkey;
1612 1.19 dyoung } else {
1613 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1614 1.19 dyoung return EINVAL;
1615 1.19 dyoung wk = &ic->ic_nw_keys[kid];
1616 1.19 dyoung ni = NULL;
1617 1.19 dyoung }
1618 1.19 dyoung error = 0;
1619 1.19 dyoung ieee80211_key_update_begin(ic);
1620 1.19 dyoung if (ieee80211_crypto_newkey(ic, ik.ik_type, ik.ik_flags, wk)) {
1621 1.19 dyoung wk->wk_keylen = ik.ik_keylen;
1622 1.19 dyoung /* NB: MIC presence is implied by cipher type */
1623 1.19 dyoung if (wk->wk_keylen > IEEE80211_KEYBUF_SIZE)
1624 1.19 dyoung wk->wk_keylen = IEEE80211_KEYBUF_SIZE;
1625 1.19 dyoung wk->wk_keyrsc = ik.ik_keyrsc;
1626 1.19 dyoung wk->wk_keytsc = 0; /* new key, reset */
1627 1.19 dyoung memset(wk->wk_key, 0, sizeof(wk->wk_key));
1628 1.19 dyoung memcpy(wk->wk_key, ik.ik_keydata, ik.ik_keylen);
1629 1.19 dyoung if (!ieee80211_crypto_setkey(ic, wk,
1630 1.19 dyoung ni != NULL ? ni->ni_macaddr : ik.ik_macaddr))
1631 1.19 dyoung error = EIO;
1632 1.19 dyoung else if ((ik.ik_flags & IEEE80211_KEY_DEFAULT))
1633 1.19 dyoung ic->ic_def_txkey = kid;
1634 1.19 dyoung } else
1635 1.19 dyoung error = ENXIO;
1636 1.19 dyoung ieee80211_key_update_end(ic);
1637 1.19 dyoung if (ni != NULL)
1638 1.19 dyoung ieee80211_free_node(ni);
1639 1.19 dyoung return error;
1640 1.19 dyoung }
1641 1.19 dyoung
1642 1.19 dyoung static int
1643 1.19 dyoung ieee80211_ioctl_delkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1644 1.19 dyoung {
1645 1.19 dyoung struct ieee80211req_del_key dk;
1646 1.19 dyoung int kid, error;
1647 1.19 dyoung
1648 1.19 dyoung if (ireq->i_len != sizeof(dk))
1649 1.19 dyoung return EINVAL;
1650 1.19 dyoung error = copyin(ireq->i_data, &dk, sizeof(dk));
1651 1.19 dyoung if (error)
1652 1.19 dyoung return error;
1653 1.19 dyoung kid = dk.idk_keyix;
1654 1.19 dyoung /* XXX u_int8_t -> u_int16_t */
1655 1.19 dyoung if (dk.idk_keyix == (u_int8_t) IEEE80211_KEYIX_NONE) {
1656 1.19 dyoung struct ieee80211_node *ni;
1657 1.19 dyoung
1658 1.21 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1659 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1660 1.21 dyoung if (!IEEE80211_ADDR_EQ(dk.idk_macaddr, ni->ni_bssid)) {
1661 1.21 dyoung ieee80211_free_node(ni);
1662 1.21 dyoung return EADDRNOTAVAIL;
1663 1.21 dyoung }
1664 1.21 dyoung } else {
1665 1.21 dyoung ni = ieee80211_find_node(&ic->ic_sta, dk.idk_macaddr);
1666 1.21 dyoung if (ni == NULL)
1667 1.21 dyoung return ENOENT;
1668 1.21 dyoung }
1669 1.19 dyoung /* XXX error return */
1670 1.26 skrll ieee80211_node_delucastkey(ni);
1671 1.19 dyoung ieee80211_free_node(ni);
1672 1.19 dyoung } else {
1673 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1674 1.19 dyoung return EINVAL;
1675 1.19 dyoung /* XXX error return */
1676 1.19 dyoung ieee80211_crypto_delkey(ic, &ic->ic_nw_keys[kid]);
1677 1.19 dyoung }
1678 1.19 dyoung return 0;
1679 1.19 dyoung }
1680 1.19 dyoung
1681 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1682 1.19 dyoung static void
1683 1.19 dyoung domlme(void *arg, struct ieee80211_node *ni)
1684 1.19 dyoung {
1685 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1686 1.19 dyoung struct ieee80211req_mlme *mlme = arg;
1687 1.19 dyoung
1688 1.19 dyoung if (ni->ni_associd != 0) {
1689 1.19 dyoung IEEE80211_SEND_MGMT(ic, ni,
1690 1.19 dyoung mlme->im_op == IEEE80211_MLME_DEAUTH ?
1691 1.19 dyoung IEEE80211_FC0_SUBTYPE_DEAUTH :
1692 1.19 dyoung IEEE80211_FC0_SUBTYPE_DISASSOC,
1693 1.19 dyoung mlme->im_reason);
1694 1.19 dyoung }
1695 1.19 dyoung ieee80211_node_leave(ic, ni);
1696 1.19 dyoung }
1697 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1698 1.19 dyoung
1699 1.19 dyoung static int
1700 1.19 dyoung ieee80211_ioctl_setmlme(struct ieee80211com *ic, struct ieee80211req *ireq)
1701 1.19 dyoung {
1702 1.19 dyoung struct ieee80211req_mlme mlme;
1703 1.19 dyoung struct ieee80211_node *ni;
1704 1.19 dyoung int error;
1705 1.19 dyoung
1706 1.19 dyoung if (ireq->i_len != sizeof(mlme))
1707 1.19 dyoung return EINVAL;
1708 1.19 dyoung error = copyin(ireq->i_data, &mlme, sizeof(mlme));
1709 1.19 dyoung if (error)
1710 1.19 dyoung return error;
1711 1.19 dyoung switch (mlme.im_op) {
1712 1.19 dyoung case IEEE80211_MLME_ASSOC:
1713 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1714 1.19 dyoung return EINVAL;
1715 1.19 dyoung /* XXX must be in S_SCAN state? */
1716 1.19 dyoung
1717 1.21 dyoung if (mlme.im_ssid_len != 0) {
1718 1.19 dyoung /*
1719 1.19 dyoung * Desired ssid specified; must match both bssid and
1720 1.19 dyoung * ssid to distinguish ap advertising multiple ssid's.
1721 1.19 dyoung */
1722 1.19 dyoung ni = ieee80211_find_node_with_ssid(&ic->ic_scan,
1723 1.19 dyoung mlme.im_macaddr,
1724 1.21 dyoung mlme.im_ssid_len, mlme.im_ssid);
1725 1.19 dyoung } else {
1726 1.19 dyoung /*
1727 1.19 dyoung * Normal case; just match bssid.
1728 1.19 dyoung */
1729 1.19 dyoung ni = ieee80211_find_node(&ic->ic_scan, mlme.im_macaddr);
1730 1.19 dyoung }
1731 1.19 dyoung if (ni == NULL)
1732 1.19 dyoung return EINVAL;
1733 1.19 dyoung if (!ieee80211_sta_join(ic, ni)) {
1734 1.19 dyoung ieee80211_free_node(ni);
1735 1.19 dyoung return EINVAL;
1736 1.19 dyoung }
1737 1.19 dyoung break;
1738 1.19 dyoung case IEEE80211_MLME_DISASSOC:
1739 1.19 dyoung case IEEE80211_MLME_DEAUTH:
1740 1.19 dyoung switch (ic->ic_opmode) {
1741 1.19 dyoung case IEEE80211_M_STA:
1742 1.19 dyoung /* XXX not quite right */
1743 1.19 dyoung ieee80211_new_state(ic, IEEE80211_S_INIT,
1744 1.19 dyoung mlme.im_reason);
1745 1.19 dyoung break;
1746 1.19 dyoung case IEEE80211_M_HOSTAP:
1747 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1748 1.19 dyoung /* NB: the broadcast address means do 'em all */
1749 1.19 dyoung if (!IEEE80211_ADDR_EQ(mlme.im_macaddr, ic->ic_ifp->if_broadcastaddr)) {
1750 1.19 dyoung if ((ni = ieee80211_find_node(&ic->ic_sta,
1751 1.19 dyoung mlme.im_macaddr)) == NULL)
1752 1.19 dyoung return EINVAL;
1753 1.19 dyoung domlme(&mlme, ni);
1754 1.19 dyoung ieee80211_free_node(ni);
1755 1.1 dyoung } else {
1756 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_sta,
1757 1.19 dyoung domlme, &mlme);
1758 1.1 dyoung }
1759 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1760 1.1 dyoung break;
1761 1.19 dyoung default:
1762 1.19 dyoung return EINVAL;
1763 1.19 dyoung }
1764 1.19 dyoung break;
1765 1.19 dyoung case IEEE80211_MLME_AUTHORIZE:
1766 1.19 dyoung case IEEE80211_MLME_UNAUTHORIZE:
1767 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP)
1768 1.19 dyoung return EINVAL;
1769 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, mlme.im_macaddr);
1770 1.19 dyoung if (ni == NULL)
1771 1.19 dyoung return EINVAL;
1772 1.19 dyoung if (mlme.im_op == IEEE80211_MLME_AUTHORIZE)
1773 1.26 skrll ieee80211_node_authorize(ni);
1774 1.19 dyoung else
1775 1.26 skrll ieee80211_node_unauthorize(ni);
1776 1.19 dyoung ieee80211_free_node(ni);
1777 1.19 dyoung break;
1778 1.19 dyoung default:
1779 1.19 dyoung return EINVAL;
1780 1.19 dyoung }
1781 1.19 dyoung return 0;
1782 1.19 dyoung }
1783 1.19 dyoung
1784 1.19 dyoung static int
1785 1.19 dyoung ieee80211_ioctl_macmac(struct ieee80211com *ic, struct ieee80211req *ireq)
1786 1.19 dyoung {
1787 1.19 dyoung u_int8_t mac[IEEE80211_ADDR_LEN];
1788 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1789 1.19 dyoung int error;
1790 1.19 dyoung
1791 1.19 dyoung if (ireq->i_len != sizeof(mac))
1792 1.19 dyoung return EINVAL;
1793 1.19 dyoung error = copyin(ireq->i_data, mac, ireq->i_len);
1794 1.19 dyoung if (error)
1795 1.19 dyoung return error;
1796 1.19 dyoung if (acl == NULL) {
1797 1.19 dyoung acl = ieee80211_aclator_get("mac");
1798 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1799 1.19 dyoung return EINVAL;
1800 1.19 dyoung ic->ic_acl = acl;
1801 1.19 dyoung }
1802 1.19 dyoung if (ireq->i_type == IEEE80211_IOC_ADDMAC)
1803 1.19 dyoung acl->iac_add(ic, mac);
1804 1.19 dyoung else
1805 1.19 dyoung acl->iac_remove(ic, mac);
1806 1.19 dyoung return 0;
1807 1.19 dyoung }
1808 1.19 dyoung
1809 1.19 dyoung static int
1810 1.26 skrll ieee80211_ioctl_setmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1811 1.19 dyoung {
1812 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1813 1.19 dyoung
1814 1.19 dyoung switch (ireq->i_val) {
1815 1.19 dyoung case IEEE80211_MACCMD_POLICY_OPEN:
1816 1.19 dyoung case IEEE80211_MACCMD_POLICY_ALLOW:
1817 1.19 dyoung case IEEE80211_MACCMD_POLICY_DENY:
1818 1.19 dyoung if (acl == NULL) {
1819 1.19 dyoung acl = ieee80211_aclator_get("mac");
1820 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1821 1.19 dyoung return EINVAL;
1822 1.19 dyoung ic->ic_acl = acl;
1823 1.19 dyoung }
1824 1.19 dyoung acl->iac_setpolicy(ic, ireq->i_val);
1825 1.19 dyoung break;
1826 1.19 dyoung case IEEE80211_MACCMD_FLUSH:
1827 1.19 dyoung if (acl != NULL)
1828 1.19 dyoung acl->iac_flush(ic);
1829 1.19 dyoung /* NB: silently ignore when not in use */
1830 1.19 dyoung break;
1831 1.19 dyoung case IEEE80211_MACCMD_DETACH:
1832 1.19 dyoung if (acl != NULL) {
1833 1.19 dyoung ic->ic_acl = NULL;
1834 1.19 dyoung acl->iac_detach(ic);
1835 1.19 dyoung }
1836 1.19 dyoung break;
1837 1.19 dyoung default:
1838 1.26 skrll if (acl == NULL)
1839 1.26 skrll return EINVAL;
1840 1.26 skrll else
1841 1.26 skrll return acl->iac_setioctl(ic, ireq);
1842 1.19 dyoung }
1843 1.19 dyoung return 0;
1844 1.19 dyoung }
1845 1.19 dyoung
1846 1.19 dyoung static int
1847 1.19 dyoung ieee80211_ioctl_setchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
1848 1.19 dyoung {
1849 1.19 dyoung struct ieee80211req_chanlist list;
1850 1.19 dyoung u_char chanlist[IEEE80211_CHAN_BYTES];
1851 1.19 dyoung int i, j, error;
1852 1.19 dyoung
1853 1.19 dyoung if (ireq->i_len != sizeof(list))
1854 1.19 dyoung return EINVAL;
1855 1.19 dyoung error = copyin(ireq->i_data, &list, sizeof(list));
1856 1.19 dyoung if (error)
1857 1.19 dyoung return error;
1858 1.19 dyoung memset(chanlist, 0, sizeof(chanlist));
1859 1.19 dyoung /*
1860 1.19 dyoung * Since channel 0 is not available for DS, channel 1
1861 1.19 dyoung * is assigned to LSB on WaveLAN.
1862 1.19 dyoung */
1863 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
1864 1.19 dyoung i = 1;
1865 1.19 dyoung else
1866 1.19 dyoung i = 0;
1867 1.19 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
1868 1.19 dyoung /*
1869 1.19 dyoung * NB: silently discard unavailable channels so users
1870 1.19 dyoung * can specify 1-255 to get all available channels.
1871 1.19 dyoung */
1872 1.19 dyoung if (isset(list.ic_channels, j) && isset(ic->ic_chan_avail, i))
1873 1.19 dyoung setbit(chanlist, i);
1874 1.19 dyoung }
1875 1.19 dyoung if (ic->ic_ibss_chan == NULL ||
1876 1.19 dyoung isclr(chanlist, ieee80211_chan2ieee(ic, ic->ic_ibss_chan))) {
1877 1.19 dyoung for (i = 0; i <= IEEE80211_CHAN_MAX; i++)
1878 1.19 dyoung if (isset(chanlist, i)) {
1879 1.19 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
1880 1.19 dyoung goto found;
1881 1.1 dyoung }
1882 1.19 dyoung return EINVAL; /* no active channels */
1883 1.19 dyoung found:
1884 1.19 dyoung ;
1885 1.19 dyoung }
1886 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
1887 1.19 dyoung return IS_UP_AUTO(ic) ? ENETRESET : 0;
1888 1.19 dyoung }
1889 1.19 dyoung
1890 1.19 dyoung static int
1891 1.19 dyoung ieee80211_ioctl_setstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1892 1.19 dyoung {
1893 1.19 dyoung struct ieee80211_node *ni;
1894 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1895 1.19 dyoung int error;
1896 1.19 dyoung
1897 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1898 1.19 dyoung return EINVAL;
1899 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1900 1.19 dyoung if (error != 0)
1901 1.19 dyoung return error;
1902 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1903 1.19 dyoung if (ni == NULL)
1904 1.19 dyoung return EINVAL; /* XXX */
1905 1.19 dyoung ni->ni_txpower = txpow.it_txpow;
1906 1.19 dyoung ieee80211_free_node(ni);
1907 1.19 dyoung return error;
1908 1.19 dyoung }
1909 1.19 dyoung
1910 1.19 dyoung static int
1911 1.19 dyoung ieee80211_ioctl_setwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1912 1.19 dyoung {
1913 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1914 1.19 dyoung struct wmeParams *wmep, *chanp;
1915 1.19 dyoung int isbss, ac;
1916 1.19 dyoung
1917 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1918 1.19 dyoung return EINVAL;
1919 1.19 dyoung
1920 1.19 dyoung isbss = (ireq->i_len & IEEE80211_WMEPARAM_BSS);
1921 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1922 1.19 dyoung if (ac >= WME_NUM_AC)
1923 1.19 dyoung ac = WME_AC_BE;
1924 1.19 dyoung if (isbss) {
1925 1.19 dyoung chanp = &wme->wme_bssChanParams.cap_wmeParams[ac];
1926 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1927 1.19 dyoung } else {
1928 1.19 dyoung chanp = &wme->wme_chanParams.cap_wmeParams[ac];
1929 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1930 1.19 dyoung }
1931 1.19 dyoung switch (ireq->i_type) {
1932 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1933 1.19 dyoung if (isbss) {
1934 1.19 dyoung wmep->wmep_logcwmin = ireq->i_val;
1935 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1936 1.19 dyoung chanp->wmep_logcwmin = ireq->i_val;
1937 1.19 dyoung } else {
1938 1.19 dyoung wmep->wmep_logcwmin = chanp->wmep_logcwmin =
1939 1.19 dyoung ireq->i_val;
1940 1.19 dyoung }
1941 1.19 dyoung break;
1942 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1943 1.19 dyoung if (isbss) {
1944 1.19 dyoung wmep->wmep_logcwmax = ireq->i_val;
1945 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1946 1.19 dyoung chanp->wmep_logcwmax = ireq->i_val;
1947 1.19 dyoung } else {
1948 1.19 dyoung wmep->wmep_logcwmax = chanp->wmep_logcwmax =
1949 1.19 dyoung ireq->i_val;
1950 1.19 dyoung }
1951 1.19 dyoung break;
1952 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1953 1.19 dyoung if (isbss) {
1954 1.19 dyoung wmep->wmep_aifsn = ireq->i_val;
1955 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1956 1.19 dyoung chanp->wmep_aifsn = ireq->i_val;
1957 1.19 dyoung } else {
1958 1.19 dyoung wmep->wmep_aifsn = chanp->wmep_aifsn = ireq->i_val;
1959 1.19 dyoung }
1960 1.19 dyoung break;
1961 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1962 1.19 dyoung if (isbss) {
1963 1.19 dyoung wmep->wmep_txopLimit = ireq->i_val;
1964 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1965 1.19 dyoung chanp->wmep_txopLimit = ireq->i_val;
1966 1.19 dyoung } else {
1967 1.19 dyoung wmep->wmep_txopLimit = chanp->wmep_txopLimit =
1968 1.19 dyoung ireq->i_val;
1969 1.19 dyoung }
1970 1.19 dyoung break;
1971 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1972 1.19 dyoung wmep->wmep_acm = ireq->i_val;
1973 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1974 1.19 dyoung chanp->wmep_acm = ireq->i_val;
1975 1.19 dyoung break;
1976 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1977 1.19 dyoung wmep->wmep_noackPolicy = chanp->wmep_noackPolicy =
1978 1.19 dyoung (ireq->i_val) == 0;
1979 1.19 dyoung break;
1980 1.19 dyoung }
1981 1.19 dyoung ieee80211_wme_updateparams(ic);
1982 1.19 dyoung return 0;
1983 1.19 dyoung }
1984 1.19 dyoung
1985 1.19 dyoung static int
1986 1.19 dyoung cipher2cap(int cipher)
1987 1.19 dyoung {
1988 1.19 dyoung switch (cipher) {
1989 1.19 dyoung case IEEE80211_CIPHER_WEP: return IEEE80211_C_WEP;
1990 1.19 dyoung case IEEE80211_CIPHER_AES_OCB: return IEEE80211_C_AES;
1991 1.19 dyoung case IEEE80211_CIPHER_AES_CCM: return IEEE80211_C_AES_CCM;
1992 1.19 dyoung case IEEE80211_CIPHER_CKIP: return IEEE80211_C_CKIP;
1993 1.19 dyoung case IEEE80211_CIPHER_TKIP: return IEEE80211_C_TKIP;
1994 1.19 dyoung }
1995 1.19 dyoung return 0;
1996 1.19 dyoung }
1997 1.19 dyoung
1998 1.19 dyoung static int
1999 1.19 dyoung ieee80211_ioctl_set80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
2000 1.19 dyoung {
2001 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2002 1.19 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2003 1.19 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
2004 1.19 dyoung char tmpssid[IEEE80211_NWID_LEN];
2005 1.19 dyoung u_int8_t tmpbssid[IEEE80211_ADDR_LEN];
2006 1.19 dyoung struct ieee80211_key *k;
2007 1.23 dyoung u_int kid;
2008 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2009 1.23 dyoung struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
2010 1.23 dyoung int error;
2011 1.23 dyoung const struct ieee80211_authenticator *auth;
2012 1.19 dyoung int j, caps;
2013 1.19 dyoung
2014 1.19 dyoung error = 0;
2015 1.19 dyoung switch (ireq->i_type) {
2016 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2017 1.19 dyoung case IEEE80211_IOC_SSID:
2018 1.19 dyoung if (ireq->i_val != 0 ||
2019 1.19 dyoung ireq->i_len > IEEE80211_NWID_LEN)
2020 1.19 dyoung return EINVAL;
2021 1.19 dyoung error = copyin(ireq->i_data, tmpssid, ireq->i_len);
2022 1.19 dyoung if (error)
2023 1.1 dyoung break;
2024 1.19 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2025 1.19 dyoung ic->ic_des_esslen = ireq->i_len;
2026 1.19 dyoung memcpy(ic->ic_des_essid, tmpssid, ireq->i_len);
2027 1.19 dyoung error = ENETRESET;
2028 1.19 dyoung break;
2029 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2030 1.19 dyoung case IEEE80211_IOC_WEP:
2031 1.19 dyoung switch (ireq->i_val) {
2032 1.19 dyoung case IEEE80211_WEP_OFF:
2033 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2034 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2035 1.1 dyoung break;
2036 1.19 dyoung case IEEE80211_WEP_ON:
2037 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2038 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2039 1.1 dyoung break;
2040 1.19 dyoung case IEEE80211_WEP_MIXED:
2041 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2042 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2043 1.1 dyoung break;
2044 1.19 dyoung }
2045 1.19 dyoung error = ENETRESET;
2046 1.19 dyoung break;
2047 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2048 1.19 dyoung case IEEE80211_IOC_WEPKEY:
2049 1.19 dyoung kid = (u_int) ireq->i_val;
2050 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
2051 1.19 dyoung return EINVAL;
2052 1.19 dyoung k = &ic->ic_nw_keys[kid];
2053 1.19 dyoung if (ireq->i_len == 0) {
2054 1.19 dyoung /* zero-len =>'s delete any existing key */
2055 1.19 dyoung (void) ieee80211_crypto_delkey(ic, k);
2056 1.1 dyoung break;
2057 1.19 dyoung }
2058 1.19 dyoung if (ireq->i_len > sizeof(tmpkey))
2059 1.19 dyoung return EINVAL;
2060 1.19 dyoung memset(tmpkey, 0, sizeof(tmpkey));
2061 1.19 dyoung error = copyin(ireq->i_data, tmpkey, ireq->i_len);
2062 1.19 dyoung if (error)
2063 1.1 dyoung break;
2064 1.19 dyoung ieee80211_key_update_begin(ic);
2065 1.19 dyoung k->wk_keyix = kid; /* NB: force fixed key id */
2066 1.19 dyoung if (ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2067 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2068 1.19 dyoung k->wk_keylen = ireq->i_len;
2069 1.19 dyoung memcpy(k->wk_key, tmpkey, sizeof(tmpkey));
2070 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2071 1.19 dyoung error = EINVAL;
2072 1.19 dyoung } else
2073 1.19 dyoung error = EINVAL;
2074 1.19 dyoung ieee80211_key_update_end(ic);
2075 1.21 dyoung if (!error) /* NB: for compatibility */
2076 1.21 dyoung error = ENETRESET;
2077 1.19 dyoung break;
2078 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
2079 1.19 dyoung kid = (u_int) ireq->i_val;
2080 1.19 dyoung if (kid >= IEEE80211_WEP_NKID &&
2081 1.19 dyoung (u_int16_t) kid != IEEE80211_KEYIX_NONE)
2082 1.19 dyoung return EINVAL;
2083 1.19 dyoung ic->ic_def_txkey = kid;
2084 1.19 dyoung error = ENETRESET; /* push to hardware */
2085 1.19 dyoung break;
2086 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2087 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
2088 1.19 dyoung switch (ireq->i_val) {
2089 1.19 dyoung case IEEE80211_AUTH_WPA:
2090 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2091 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2092 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2093 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2094 1.19 dyoung auth = ieee80211_authenticator_get(ireq->i_val);
2095 1.19 dyoung if (auth == NULL)
2096 1.19 dyoung return EINVAL;
2097 1.1 dyoung break;
2098 1.19 dyoung default:
2099 1.19 dyoung return EINVAL;
2100 1.19 dyoung }
2101 1.19 dyoung switch (ireq->i_val) {
2102 1.19 dyoung case IEEE80211_AUTH_WPA: /* WPA w/ 802.1x */
2103 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2104 1.19 dyoung ireq->i_val = IEEE80211_AUTH_8021X;
2105 1.1 dyoung break;
2106 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2107 1.19 dyoung ic->ic_flags &= ~(IEEE80211_F_WPA|IEEE80211_F_PRIVACY);
2108 1.10 dyoung break;
2109 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2110 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2111 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2112 1.19 dyoung /* both require a key so mark the PRIVACY capability */
2113 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2114 1.10 dyoung break;
2115 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2116 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2117 1.19 dyoung /* XXX PRIVACY handling? */
2118 1.19 dyoung /* XXX what's the right way to do this? */
2119 1.10 dyoung break;
2120 1.1 dyoung }
2121 1.19 dyoung /* NB: authenticator attach/detach happens on state change */
2122 1.19 dyoung ic->ic_bss->ni_authmode = ireq->i_val;
2123 1.19 dyoung /* XXX mixed/mode/usage? */
2124 1.19 dyoung ic->ic_auth = auth;
2125 1.19 dyoung error = ENETRESET;
2126 1.1 dyoung break;
2127 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2128 1.19 dyoung case IEEE80211_IOC_CHANNEL:
2129 1.19 dyoung /* XXX 0xffff overflows 16-bit signed */
2130 1.19 dyoung if (ireq->i_val == 0 ||
2131 1.19 dyoung ireq->i_val == (int16_t) IEEE80211_CHAN_ANY)
2132 1.19 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2133 1.19 dyoung else if ((u_int) ireq->i_val > IEEE80211_CHAN_MAX ||
2134 1.19 dyoung isclr(ic->ic_chan_active, ireq->i_val)) {
2135 1.19 dyoung return EINVAL;
2136 1.19 dyoung } else
2137 1.19 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2138 1.19 dyoung &ic->ic_channels[ireq->i_val];
2139 1.19 dyoung switch (ic->ic_state) {
2140 1.19 dyoung case IEEE80211_S_INIT:
2141 1.19 dyoung case IEEE80211_S_SCAN:
2142 1.1 dyoung error = ENETRESET;
2143 1.1 dyoung break;
2144 1.19 dyoung default:
2145 1.1 dyoung /*
2146 1.19 dyoung * If the desired channel has changed (to something
2147 1.19 dyoung * other than any) and we're not already scanning,
2148 1.19 dyoung * then kick the state machine.
2149 1.1 dyoung */
2150 1.19 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2151 1.19 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan &&
2152 1.19 dyoung (ic->ic_flags & IEEE80211_F_SCAN) == 0)
2153 1.19 dyoung error = ENETRESET;
2154 1.1 dyoung break;
2155 1.19 dyoung }
2156 1.26 skrll if (error == ENETRESET &&
2157 1.26 skrll ic->ic_opmode == IEEE80211_M_MONITOR) {
2158 1.26 skrll if (IS_UP(ic)) {
2159 1.26 skrll /*
2160 1.26 skrll * Monitor mode can switch directly.
2161 1.26 skrll */
2162 1.26 skrll if (ic->ic_des_chan != IEEE80211_CHAN_ANYC)
2163 1.26 skrll ic->ic_curchan = ic->ic_des_chan;
2164 1.26 skrll error = ic->ic_reset(ic->ic_ifp);
2165 1.26 skrll } else
2166 1.26 skrll error = 0;
2167 1.26 skrll }
2168 1.19 dyoung break;
2169 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
2170 1.19 dyoung switch (ireq->i_val) {
2171 1.19 dyoung case IEEE80211_POWERSAVE_OFF:
2172 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2173 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2174 1.19 dyoung error = ENETRESET;
2175 1.18 perry }
2176 1.1 dyoung break;
2177 1.19 dyoung case IEEE80211_POWERSAVE_ON:
2178 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2179 1.1 dyoung error = EINVAL;
2180 1.19 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2181 1.19 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2182 1.19 dyoung error = ENETRESET;
2183 1.1 dyoung }
2184 1.1 dyoung break;
2185 1.19 dyoung default:
2186 1.19 dyoung error = EINVAL;
2187 1.1 dyoung break;
2188 1.19 dyoung }
2189 1.19 dyoung break;
2190 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
2191 1.19 dyoung if (ireq->i_val < 0)
2192 1.19 dyoung return EINVAL;
2193 1.19 dyoung ic->ic_lintval = ireq->i_val;
2194 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2195 1.19 dyoung break;
2196 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2197 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
2198 1.26 skrll if (!(IEEE80211_RTS_MIN <= ireq->i_val &&
2199 1.26 skrll ireq->i_val <= IEEE80211_RTS_MAX))
2200 1.19 dyoung return EINVAL;
2201 1.19 dyoung ic->ic_rtsthreshold = ireq->i_val;
2202 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2203 1.19 dyoung break;
2204 1.19 dyoung case IEEE80211_IOC_PROTMODE:
2205 1.19 dyoung if (ireq->i_val > IEEE80211_PROT_RTSCTS)
2206 1.19 dyoung return EINVAL;
2207 1.19 dyoung ic->ic_protmode = ireq->i_val;
2208 1.19 dyoung /* NB: if not operating in 11g this can wait */
2209 1.19 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2210 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2211 1.19 dyoung break;
2212 1.19 dyoung case IEEE80211_IOC_TXPOWER:
2213 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
2214 1.19 dyoung return EINVAL;
2215 1.19 dyoung if (!(IEEE80211_TXPOWER_MIN < ireq->i_val &&
2216 1.19 dyoung ireq->i_val < IEEE80211_TXPOWER_MAX))
2217 1.19 dyoung return EINVAL;
2218 1.19 dyoung ic->ic_txpowlimit = ireq->i_val;
2219 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2220 1.19 dyoung break;
2221 1.19 dyoung case IEEE80211_IOC_ROAMING:
2222 1.19 dyoung if (!(IEEE80211_ROAMING_DEVICE <= ireq->i_val &&
2223 1.19 dyoung ireq->i_val <= IEEE80211_ROAMING_MANUAL))
2224 1.19 dyoung return EINVAL;
2225 1.19 dyoung ic->ic_roaming = ireq->i_val;
2226 1.19 dyoung /* XXXX reset? */
2227 1.19 dyoung break;
2228 1.19 dyoung case IEEE80211_IOC_PRIVACY:
2229 1.19 dyoung if (ireq->i_val) {
2230 1.19 dyoung /* XXX check for key state? */
2231 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2232 1.19 dyoung } else
2233 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2234 1.19 dyoung break;
2235 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
2236 1.19 dyoung if (ireq->i_val)
2237 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2238 1.19 dyoung else
2239 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2240 1.19 dyoung break;
2241 1.19 dyoung case IEEE80211_IOC_WPAKEY:
2242 1.19 dyoung error = ieee80211_ioctl_setkey(ic, ireq);
2243 1.19 dyoung break;
2244 1.19 dyoung case IEEE80211_IOC_DELKEY:
2245 1.19 dyoung error = ieee80211_ioctl_delkey(ic, ireq);
2246 1.19 dyoung break;
2247 1.19 dyoung case IEEE80211_IOC_MLME:
2248 1.19 dyoung error = ieee80211_ioctl_setmlme(ic, ireq);
2249 1.19 dyoung break;
2250 1.19 dyoung case IEEE80211_IOC_OPTIE:
2251 1.19 dyoung error = ieee80211_ioctl_setoptie(ic, ireq);
2252 1.19 dyoung break;
2253 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
2254 1.19 dyoung if (ireq->i_val) {
2255 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_WPA) == 0)
2256 1.19 dyoung return EINVAL;
2257 1.19 dyoung ic->ic_flags |= IEEE80211_F_COUNTERM;
2258 1.19 dyoung } else
2259 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_COUNTERM;
2260 1.19 dyoung break;
2261 1.19 dyoung case IEEE80211_IOC_WPA:
2262 1.19 dyoung if (ireq->i_val > 3)
2263 1.19 dyoung return EINVAL;
2264 1.19 dyoung /* XXX verify ciphers available */
2265 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2266 1.19 dyoung switch (ireq->i_val) {
2267 1.19 dyoung case 1:
2268 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1;
2269 1.1 dyoung break;
2270 1.19 dyoung case 2:
2271 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA2;
2272 1.1 dyoung break;
2273 1.19 dyoung case 3:
2274 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1 | IEEE80211_F_WPA2;
2275 1.1 dyoung break;
2276 1.19 dyoung }
2277 1.19 dyoung error = ENETRESET; /* XXX? */
2278 1.19 dyoung break;
2279 1.19 dyoung case IEEE80211_IOC_WME:
2280 1.19 dyoung if (ireq->i_val) {
2281 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
2282 1.19 dyoung return EINVAL;
2283 1.19 dyoung ic->ic_flags |= IEEE80211_F_WME;
2284 1.19 dyoung } else
2285 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WME;
2286 1.19 dyoung error = ENETRESET; /* XXX maybe not for station? */
2287 1.19 dyoung break;
2288 1.19 dyoung case IEEE80211_IOC_HIDESSID:
2289 1.19 dyoung if (ireq->i_val)
2290 1.19 dyoung ic->ic_flags |= IEEE80211_F_HIDESSID;
2291 1.19 dyoung else
2292 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_HIDESSID;
2293 1.19 dyoung error = ENETRESET;
2294 1.19 dyoung break;
2295 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
2296 1.19 dyoung if (ireq->i_val == 0)
2297 1.19 dyoung ic->ic_flags |= IEEE80211_F_NOBRIDGE;
2298 1.19 dyoung else
2299 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_NOBRIDGE;
2300 1.19 dyoung break;
2301 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
2302 1.19 dyoung if ((ic->ic_caps & cipher2cap(ireq->i_val)) == 0 &&
2303 1.19 dyoung !ieee80211_crypto_available(ireq->i_val))
2304 1.19 dyoung return EINVAL;
2305 1.19 dyoung rsn->rsn_mcastcipher = ireq->i_val;
2306 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2307 1.19 dyoung break;
2308 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
2309 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2310 1.19 dyoung return EINVAL;
2311 1.19 dyoung /* XXX no way to verify driver capability */
2312 1.19 dyoung rsn->rsn_mcastkeylen = ireq->i_val;
2313 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2314 1.19 dyoung break;
2315 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
2316 1.19 dyoung /*
2317 1.19 dyoung * Convert user-specified cipher set to the set
2318 1.19 dyoung * we can support (via hardware or software).
2319 1.19 dyoung * NB: this logic intentionally ignores unknown and
2320 1.19 dyoung * unsupported ciphers so folks can specify 0xff or
2321 1.19 dyoung * similar and get all available ciphers.
2322 1.19 dyoung */
2323 1.19 dyoung caps = 0;
2324 1.19 dyoung for (j = 1; j < 32; j++) /* NB: skip WEP */
2325 1.19 dyoung if ((ireq->i_val & (1<<j)) &&
2326 1.19 dyoung ((ic->ic_caps & cipher2cap(j)) ||
2327 1.19 dyoung ieee80211_crypto_available(j)))
2328 1.19 dyoung caps |= 1<<j;
2329 1.19 dyoung if (caps == 0) /* nothing available */
2330 1.19 dyoung return EINVAL;
2331 1.19 dyoung /* XXX verify ciphers ok for unicast use? */
2332 1.19 dyoung /* XXX disallow if running as it'll have no effect */
2333 1.19 dyoung rsn->rsn_ucastcipherset = caps;
2334 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2335 1.19 dyoung break;
2336 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
2337 1.19 dyoung if ((rsn->rsn_ucastcipherset & cipher2cap(ireq->i_val)) == 0)
2338 1.19 dyoung return EINVAL;
2339 1.19 dyoung rsn->rsn_ucastcipher = ireq->i_val;
2340 1.19 dyoung break;
2341 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
2342 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2343 1.19 dyoung return EINVAL;
2344 1.19 dyoung /* XXX no way to verify driver capability */
2345 1.19 dyoung rsn->rsn_ucastkeylen = ireq->i_val;
2346 1.19 dyoung break;
2347 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
2348 1.19 dyoung /* NB: for testing */
2349 1.19 dyoung ic->ic_caps = (((u_int16_t) ireq->i_val) << 16) |
2350 1.19 dyoung ((u_int16_t) ireq->i_len);
2351 1.19 dyoung break;
2352 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
2353 1.19 dyoung /* XXX check */
2354 1.19 dyoung rsn->rsn_keymgmtset = ireq->i_val;
2355 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2356 1.19 dyoung break;
2357 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
2358 1.19 dyoung /* XXX check */
2359 1.19 dyoung rsn->rsn_caps = ireq->i_val;
2360 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2361 1.19 dyoung break;
2362 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2363 1.19 dyoung case IEEE80211_IOC_BSSID:
2364 1.19 dyoung /* NB: should only be set when in STA mode */
2365 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
2366 1.19 dyoung return EINVAL;
2367 1.19 dyoung if (ireq->i_len != sizeof(tmpbssid))
2368 1.19 dyoung return EINVAL;
2369 1.19 dyoung error = copyin(ireq->i_data, tmpbssid, ireq->i_len);
2370 1.19 dyoung if (error)
2371 1.1 dyoung break;
2372 1.19 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, tmpbssid);
2373 1.19 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2374 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2375 1.19 dyoung else
2376 1.19 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2377 1.19 dyoung error = ENETRESET;
2378 1.19 dyoung break;
2379 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2380 1.19 dyoung case IEEE80211_IOC_CHANLIST:
2381 1.19 dyoung error = ieee80211_ioctl_setchanlist(ic, ireq);
2382 1.19 dyoung break;
2383 1.19 dyoung case IEEE80211_IOC_SCAN_REQ:
2384 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) /* XXX ignore */
2385 1.10 dyoung break;
2386 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
2387 1.19 dyoung if (error == 0) /* XXX background scan */
2388 1.19 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
2389 1.19 dyoung break;
2390 1.19 dyoung case IEEE80211_IOC_ADDMAC:
2391 1.19 dyoung case IEEE80211_IOC_DELMAC:
2392 1.19 dyoung error = ieee80211_ioctl_macmac(ic, ireq);
2393 1.19 dyoung break;
2394 1.19 dyoung case IEEE80211_IOC_MACCMD:
2395 1.26 skrll error = ieee80211_ioctl_setmaccmd(ic, ireq);
2396 1.19 dyoung break;
2397 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
2398 1.19 dyoung error = ieee80211_ioctl_setstatxpow(ic, ireq);
2399 1.19 dyoung break;
2400 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
2401 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
2402 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
2403 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
2404 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
2405 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
2406 1.19 dyoung error = ieee80211_ioctl_setwmeparam(ic, ireq);
2407 1.19 dyoung break;
2408 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
2409 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2410 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2411 1.19 dyoung return EINVAL;
2412 1.19 dyoung if (IEEE80211_DTIM_MIN <= ireq->i_val &&
2413 1.19 dyoung ireq->i_val <= IEEE80211_DTIM_MAX) {
2414 1.19 dyoung ic->ic_dtim_period = ireq->i_val;
2415 1.19 dyoung error = ENETRESET; /* requires restart */
2416 1.19 dyoung } else
2417 1.19 dyoung error = EINVAL;
2418 1.19 dyoung break;
2419 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
2420 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2421 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2422 1.19 dyoung return EINVAL;
2423 1.19 dyoung if (IEEE80211_BINTVAL_MIN <= ireq->i_val &&
2424 1.19 dyoung ireq->i_val <= IEEE80211_BINTVAL_MAX) {
2425 1.26 skrll ic->ic_bintval = ireq->i_val;
2426 1.19 dyoung error = ENETRESET; /* requires restart */
2427 1.19 dyoung } else
2428 1.1 dyoung error = EINVAL;
2429 1.19 dyoung break;
2430 1.21 dyoung case IEEE80211_IOC_PUREG:
2431 1.21 dyoung if (ireq->i_val)
2432 1.21 dyoung ic->ic_flags |= IEEE80211_F_PUREG;
2433 1.21 dyoung else
2434 1.21 dyoung ic->ic_flags &= ~IEEE80211_F_PUREG;
2435 1.21 dyoung /* NB: reset only if we're operating on an 11g channel */
2436 1.21 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2437 1.21 dyoung error = ENETRESET;
2438 1.21 dyoung break;
2439 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
2440 1.30 dyoung ic->ic_mcast_rate = ireq->i_val & IEEE80211_RATE_VAL;
2441 1.30 dyoung break;
2442 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
2443 1.26 skrll if ((ic->ic_caps & IEEE80211_C_TXFRAG) == 0 &&
2444 1.26 skrll ireq->i_val != IEEE80211_FRAG_MAX)
2445 1.26 skrll return EINVAL;
2446 1.26 skrll if (!(IEEE80211_FRAG_MIN <= ireq->i_val &&
2447 1.26 skrll ireq->i_val <= IEEE80211_FRAG_MAX))
2448 1.26 skrll return EINVAL;
2449 1.26 skrll ic->ic_fragthreshold = ireq->i_val;
2450 1.26 skrll error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2451 1.26 skrll break;
2452 1.19 dyoung default:
2453 1.19 dyoung error = EINVAL;
2454 1.19 dyoung break;
2455 1.19 dyoung }
2456 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
2457 1.19 dyoung error = 0;
2458 1.19 dyoung return error;
2459 1.19 dyoung }
2460 1.19 dyoung
2461 1.19 dyoung #ifdef __FreeBSD__
2462 1.19 dyoung int
2463 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2464 1.19 dyoung {
2465 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2466 1.19 dyoung int error = 0;
2467 1.19 dyoung struct ifreq *ifr;
2468 1.19 dyoung struct ifaddr *ifa; /* XXX */
2469 1.19 dyoung
2470 1.19 dyoung switch (cmd) {
2471 1.19 dyoung case SIOCSIFMEDIA:
2472 1.19 dyoung case SIOCGIFMEDIA:
2473 1.19 dyoung error = ifmedia_ioctl(ifp, (struct ifreq *) data,
2474 1.19 dyoung &ic->ic_media, cmd);
2475 1.19 dyoung break;
2476 1.19 dyoung case SIOCG80211:
2477 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2478 1.19 dyoung (struct ieee80211req *) data);
2479 1.19 dyoung break;
2480 1.19 dyoung case SIOCS80211:
2481 1.19 dyoung error = suser(curthread);
2482 1.19 dyoung if (error == 0)
2483 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2484 1.19 dyoung (struct ieee80211req *) data);
2485 1.1 dyoung break;
2486 1.1 dyoung case SIOCGIFGENERIC:
2487 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2488 1.1 dyoung break;
2489 1.1 dyoung case SIOCSIFGENERIC:
2490 1.19 dyoung error = suser(curthread);
2491 1.1 dyoung if (error)
2492 1.1 dyoung break;
2493 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2494 1.19 dyoung break;
2495 1.19 dyoung case SIOCG80211STATS:
2496 1.19 dyoung ifr = (struct ifreq *)data;
2497 1.19 dyoung copyout(&ic->ic_stats, ifr->ifr_data, sizeof (ic->ic_stats));
2498 1.19 dyoung break;
2499 1.19 dyoung case SIOCSIFMTU:
2500 1.19 dyoung ifr = (struct ifreq *)data;
2501 1.19 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2502 1.19 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2503 1.19 dyoung error = EINVAL;
2504 1.19 dyoung else
2505 1.19 dyoung ifp->if_mtu = ifr->ifr_mtu;
2506 1.19 dyoung break;
2507 1.19 dyoung case SIOCSIFADDR:
2508 1.19 dyoung /*
2509 1.19 dyoung * XXX Handle this directly so we can supress if_init calls.
2510 1.19 dyoung * XXX This should be done in ether_ioctl but for the moment
2511 1.19 dyoung * XXX there are too many other parts of the system that
2512 1.19 dyoung * XXX set IFF_UP and so supress if_init being called when
2513 1.19 dyoung * XXX it should be.
2514 1.19 dyoung */
2515 1.19 dyoung ifa = (struct ifaddr *) data;
2516 1.19 dyoung switch (ifa->ifa_addr->sa_family) {
2517 1.19 dyoung #ifdef INET
2518 1.19 dyoung case AF_INET:
2519 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2520 1.19 dyoung ifp->if_flags |= IFF_UP;
2521 1.19 dyoung ifp->if_init(ifp->if_softc);
2522 1.19 dyoung }
2523 1.19 dyoung arp_ifinit(ifp, ifa);
2524 1.19 dyoung break;
2525 1.19 dyoung #endif
2526 1.19 dyoung #ifdef IPX
2527 1.19 dyoung /*
2528 1.19 dyoung * XXX - This code is probably wrong,
2529 1.19 dyoung * but has been copied many times.
2530 1.19 dyoung */
2531 1.19 dyoung case AF_IPX: {
2532 1.19 dyoung struct ipx_addr *ina = &(IA_SIPX(ifa)->sipx_addr);
2533 1.19 dyoung
2534 1.19 dyoung if (ipx_nullhost(*ina))
2535 1.21 dyoung ina->x_host = *(union ipx_host *)
2536 1.21 dyoung IFP2ENADDR(ifp);
2537 1.19 dyoung else
2538 1.19 dyoung bcopy((caddr_t) ina->x_host.c_host,
2539 1.21 dyoung (caddr_t) IFP2ENADDR(ifp),
2540 1.21 dyoung ETHER_ADDR_LEN);
2541 1.19 dyoung /* fall thru... */
2542 1.19 dyoung }
2543 1.19 dyoung #endif
2544 1.19 dyoung default:
2545 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2546 1.19 dyoung ifp->if_flags |= IFF_UP;
2547 1.19 dyoung ifp->if_init(ifp->if_softc);
2548 1.19 dyoung }
2549 1.19 dyoung break;
2550 1.19 dyoung }
2551 1.1 dyoung break;
2552 1.1 dyoung default:
2553 1.1 dyoung error = ether_ioctl(ifp, cmd, data);
2554 1.1 dyoung break;
2555 1.1 dyoung }
2556 1.1 dyoung return error;
2557 1.1 dyoung }
2558 1.2 dyoung #endif /* __FreeBSD__ */
2559 1.2 dyoung
2560 1.22 dyoung #ifdef COMPAT_20
2561 1.22 dyoung static void
2562 1.22 dyoung ieee80211_get_ostats(struct ieee80211_ostats *ostats,
2563 1.22 dyoung struct ieee80211_stats *stats)
2564 1.22 dyoung {
2565 1.22 dyoung #define COPYSTATS1(__ostats, __nstats, __dstmemb, __srcmemb, __lastmemb)\
2566 1.22 dyoung (void)memcpy(&(__ostats)->__dstmemb, &(__nstats)->__srcmemb, \
2567 1.22 dyoung offsetof(struct ieee80211_stats, __lastmemb) - \
2568 1.22 dyoung offsetof(struct ieee80211_stats, __srcmemb))
2569 1.22 dyoung #define COPYSTATS(__ostats, __nstats, __dstmemb, __lastmemb) \
2570 1.22 dyoung COPYSTATS1(__ostats, __nstats, __dstmemb, __dstmemb, __lastmemb)
2571 1.22 dyoung
2572 1.22 dyoung COPYSTATS(ostats, stats, is_rx_badversion, is_rx_unencrypted);
2573 1.22 dyoung COPYSTATS(ostats, stats, is_rx_wepfail, is_rx_beacon);
2574 1.22 dyoung COPYSTATS(ostats, stats, is_rx_rstoobig, is_rx_auth_countermeasures);
2575 1.22 dyoung COPYSTATS(ostats, stats, is_rx_assoc_bss, is_rx_assoc_badwpaie);
2576 1.22 dyoung COPYSTATS(ostats, stats, is_rx_deauth, is_rx_unauth);
2577 1.22 dyoung COPYSTATS1(ostats, stats, is_tx_nombuf, is_tx_nobuf, is_tx_badcipher);
2578 1.22 dyoung COPYSTATS(ostats, stats, is_scan_active, is_crypto_tkip);
2579 1.22 dyoung }
2580 1.22 dyoung #endif /* COMPAT_20 */
2581 1.22 dyoung
2582 1.2 dyoung #ifdef __NetBSD__
2583 1.2 dyoung int
2584 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2585 1.2 dyoung {
2586 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2587 1.2 dyoung struct ifreq *ifr = (struct ifreq *)data;
2588 1.19 dyoung int i, error = 0, kid, klen, s;
2589 1.19 dyoung struct ieee80211_key *k;
2590 1.2 dyoung struct ieee80211_nwid nwid;
2591 1.2 dyoung struct ieee80211_nwkey *nwkey;
2592 1.2 dyoung struct ieee80211_power *power;
2593 1.2 dyoung struct ieee80211_bssid *bssid;
2594 1.2 dyoung struct ieee80211chanreq *chanreq;
2595 1.2 dyoung struct ieee80211_channel *chan;
2596 1.19 dyoung uint32_t oflags;
2597 1.22 dyoung #ifdef COMPAT_20
2598 1.22 dyoung struct ieee80211_ostats ostats;
2599 1.22 dyoung #endif /* COMPAT_20 */
2600 1.29 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2601 1.19 dyoung u_int8_t tmpkey[IEEE80211_WEP_NKID][IEEE80211_KEYBUF_SIZE];
2602 1.2 dyoung
2603 1.2 dyoung switch (cmd) {
2604 1.2 dyoung case SIOCSIFMEDIA:
2605 1.2 dyoung case SIOCGIFMEDIA:
2606 1.2 dyoung error = ifmedia_ioctl(ifp, ifr, &ic->ic_media, cmd);
2607 1.2 dyoung break;
2608 1.19 dyoung case SIOCG80211:
2609 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2610 1.19 dyoung (struct ieee80211req *) data);
2611 1.19 dyoung break;
2612 1.19 dyoung case SIOCS80211:
2613 1.30.4.2 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2614 1.30.4.1 elad KAUTH_GENERIC_ISSUSER,
2615 1.30.4.1 elad &curproc->p_acflag)) != 0)
2616 1.19 dyoung break;
2617 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2618 1.19 dyoung (struct ieee80211req *) data);
2619 1.19 dyoung break;
2620 1.2 dyoung case SIOCS80211NWID:
2621 1.2 dyoung if ((error = copyin(ifr->ifr_data, &nwid, sizeof(nwid))) != 0)
2622 1.2 dyoung break;
2623 1.2 dyoung if (nwid.i_len > IEEE80211_NWID_LEN) {
2624 1.2 dyoung error = EINVAL;
2625 1.2 dyoung break;
2626 1.2 dyoung }
2627 1.2 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2628 1.2 dyoung ic->ic_des_esslen = nwid.i_len;
2629 1.2 dyoung memcpy(ic->ic_des_essid, nwid.i_nwid, nwid.i_len);
2630 1.2 dyoung error = ENETRESET;
2631 1.2 dyoung break;
2632 1.2 dyoung case SIOCG80211NWID:
2633 1.2 dyoung memset(&nwid, 0, sizeof(nwid));
2634 1.2 dyoung switch (ic->ic_state) {
2635 1.2 dyoung case IEEE80211_S_INIT:
2636 1.2 dyoung case IEEE80211_S_SCAN:
2637 1.2 dyoung nwid.i_len = ic->ic_des_esslen;
2638 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_des_essid, nwid.i_len);
2639 1.2 dyoung break;
2640 1.2 dyoung default:
2641 1.2 dyoung nwid.i_len = ic->ic_bss->ni_esslen;
2642 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_bss->ni_essid, nwid.i_len);
2643 1.2 dyoung break;
2644 1.2 dyoung }
2645 1.2 dyoung error = copyout(&nwid, ifr->ifr_data, sizeof(nwid));
2646 1.2 dyoung break;
2647 1.2 dyoung case SIOCS80211NWKEY:
2648 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2649 1.19 dyoung /* transmit key index out of range? */
2650 1.19 dyoung kid = nwkey->i_defkid - 1;
2651 1.19 dyoung if (kid < 0 || kid >= IEEE80211_WEP_NKID) {
2652 1.2 dyoung error = EINVAL;
2653 1.2 dyoung break;
2654 1.2 dyoung }
2655 1.19 dyoung /* no such transmit key is set? */
2656 1.19 dyoung if (nwkey->i_key[kid].i_keylen == 0 ||
2657 1.19 dyoung (nwkey->i_key[kid].i_keylen == -1 &&
2658 1.19 dyoung ic->ic_nw_keys[kid].wk_keylen == 0)) {
2659 1.19 dyoung if (nwkey->i_wepon != IEEE80211_NWKEY_OPEN) {
2660 1.19 dyoung error = EINVAL;
2661 1.19 dyoung break;
2662 1.19 dyoung }
2663 1.19 dyoung }
2664 1.19 dyoung /* check key lengths */
2665 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2666 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2667 1.19 dyoung if ((klen > 0 &&
2668 1.19 dyoung klen < IEEE80211_WEP_KEYLEN) ||
2669 1.19 dyoung klen > sizeof(ic->ic_nw_keys[kid].wk_key)) {
2670 1.2 dyoung error = EINVAL;
2671 1.2 dyoung break;
2672 1.2 dyoung }
2673 1.19 dyoung }
2674 1.19 dyoung
2675 1.19 dyoung if (error)
2676 1.19 dyoung break;
2677 1.19 dyoung
2678 1.19 dyoung /* copy in keys */
2679 1.19 dyoung (void)memset(tmpkey, 0, sizeof(tmpkey));
2680 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2681 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2682 1.19 dyoung if (klen <= 0)
2683 1.2 dyoung continue;
2684 1.19 dyoung if ((error = copyin(nwkey->i_key[kid].i_keydat,
2685 1.19 dyoung tmpkey[kid], klen)) != 0)
2686 1.2 dyoung break;
2687 1.2 dyoung }
2688 1.19 dyoung
2689 1.2 dyoung if (error)
2690 1.2 dyoung break;
2691 1.19 dyoung
2692 1.19 dyoung /* set keys */
2693 1.19 dyoung ieee80211_key_update_begin(ic);
2694 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2695 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2696 1.19 dyoung if (klen <= 0)
2697 1.19 dyoung continue;
2698 1.19 dyoung k = &ic->ic_nw_keys[kid];
2699 1.19 dyoung k->wk_keyix = kid;
2700 1.19 dyoung if (!ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2701 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2702 1.2 dyoung error = EINVAL;
2703 1.19 dyoung continue;
2704 1.2 dyoung }
2705 1.19 dyoung k->wk_keylen = nwkey->i_key[kid].i_keylen;
2706 1.19 dyoung (void)memcpy(k->wk_key, tmpkey[kid],
2707 1.19 dyoung sizeof(tmpkey[kid]));
2708 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2709 1.19 dyoung error = EINVAL;
2710 1.19 dyoung }
2711 1.19 dyoung ieee80211_key_update_end(ic);
2712 1.19 dyoung
2713 1.19 dyoung if (error)
2714 1.19 dyoung break;
2715 1.19 dyoung
2716 1.19 dyoung /* delete keys */
2717 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2718 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2719 1.19 dyoung k = &ic->ic_nw_keys[kid];
2720 1.19 dyoung if (klen <= 0)
2721 1.19 dyoung (void)ieee80211_crypto_delkey(ic, k);
2722 1.19 dyoung }
2723 1.19 dyoung
2724 1.19 dyoung /* set transmit key */
2725 1.19 dyoung kid = nwkey->i_defkid - 1;
2726 1.19 dyoung if (ic->ic_def_txkey != kid) {
2727 1.19 dyoung ic->ic_def_txkey = kid;
2728 1.19 dyoung error = ENETRESET;
2729 1.19 dyoung }
2730 1.19 dyoung oflags = ic->ic_flags;
2731 1.19 dyoung if (nwkey->i_wepon == IEEE80211_NWKEY_OPEN) {
2732 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2733 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2734 1.19 dyoung } else {
2735 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
2736 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2737 1.2 dyoung }
2738 1.19 dyoung if (oflags != ic->ic_flags)
2739 1.19 dyoung error = ENETRESET;
2740 1.2 dyoung break;
2741 1.2 dyoung case SIOCG80211NWKEY:
2742 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2743 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY)
2744 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_WEP;
2745 1.2 dyoung else
2746 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_OPEN;
2747 1.19 dyoung nwkey->i_defkid = ic->ic_def_txkey + 1;
2748 1.2 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
2749 1.2 dyoung if (nwkey->i_key[i].i_keydat == NULL)
2750 1.2 dyoung continue;
2751 1.2 dyoung /* do not show any keys to non-root user */
2752 1.30.4.2 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2753 1.30.4.1 elad KAUTH_GENERIC_ISSUSER, &curproc->p_acflag)) != 0)
2754 1.2 dyoung break;
2755 1.19 dyoung nwkey->i_key[i].i_keylen = ic->ic_nw_keys[i].wk_keylen;
2756 1.2 dyoung if ((error = copyout(ic->ic_nw_keys[i].wk_key,
2757 1.2 dyoung nwkey->i_key[i].i_keydat,
2758 1.19 dyoung ic->ic_nw_keys[i].wk_keylen)) != 0)
2759 1.2 dyoung break;
2760 1.2 dyoung }
2761 1.2 dyoung break;
2762 1.2 dyoung case SIOCS80211POWER:
2763 1.2 dyoung power = (struct ieee80211_power *)data;
2764 1.2 dyoung ic->ic_lintval = power->i_maxsleep;
2765 1.2 dyoung if (power->i_enabled != 0) {
2766 1.5 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2767 1.2 dyoung error = EINVAL;
2768 1.2 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2769 1.2 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2770 1.2 dyoung error = ENETRESET;
2771 1.2 dyoung }
2772 1.2 dyoung } else {
2773 1.2 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2774 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2775 1.2 dyoung error = ENETRESET;
2776 1.2 dyoung }
2777 1.2 dyoung }
2778 1.2 dyoung break;
2779 1.2 dyoung case SIOCG80211POWER:
2780 1.2 dyoung power = (struct ieee80211_power *)data;
2781 1.2 dyoung power->i_enabled = (ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0;
2782 1.2 dyoung power->i_maxsleep = ic->ic_lintval;
2783 1.2 dyoung break;
2784 1.2 dyoung case SIOCS80211BSSID:
2785 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2786 1.29 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, bssid->i_bssid);
2787 1.29 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2788 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2789 1.29 dyoung else
2790 1.2 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2791 1.29 dyoung error = ENETRESET;
2792 1.2 dyoung break;
2793 1.2 dyoung case SIOCG80211BSSID:
2794 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2795 1.2 dyoung switch (ic->ic_state) {
2796 1.2 dyoung case IEEE80211_S_INIT:
2797 1.2 dyoung case IEEE80211_S_SCAN:
2798 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
2799 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2800 1.2 dyoung ic->ic_myaddr);
2801 1.2 dyoung else if (ic->ic_flags & IEEE80211_F_DESBSSID)
2802 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2803 1.2 dyoung ic->ic_des_bssid);
2804 1.2 dyoung else
2805 1.2 dyoung memset(bssid->i_bssid, 0, IEEE80211_ADDR_LEN);
2806 1.2 dyoung break;
2807 1.2 dyoung default:
2808 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2809 1.2 dyoung ic->ic_bss->ni_bssid);
2810 1.2 dyoung break;
2811 1.2 dyoung }
2812 1.2 dyoung break;
2813 1.2 dyoung case SIOCS80211CHANNEL:
2814 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2815 1.2 dyoung if (chanreq->i_channel == IEEE80211_CHAN_ANY)
2816 1.2 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2817 1.2 dyoung else if (chanreq->i_channel > IEEE80211_CHAN_MAX ||
2818 1.2 dyoung isclr(ic->ic_chan_active, chanreq->i_channel)) {
2819 1.2 dyoung error = EINVAL;
2820 1.2 dyoung break;
2821 1.2 dyoung } else
2822 1.4 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2823 1.4 dyoung &ic->ic_channels[chanreq->i_channel];
2824 1.2 dyoung switch (ic->ic_state) {
2825 1.2 dyoung case IEEE80211_S_INIT:
2826 1.2 dyoung case IEEE80211_S_SCAN:
2827 1.2 dyoung error = ENETRESET;
2828 1.2 dyoung break;
2829 1.2 dyoung default:
2830 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
2831 1.2 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2832 1.2 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan)
2833 1.2 dyoung error = ENETRESET;
2834 1.2 dyoung } else {
2835 1.2 dyoung if (ic->ic_bss->ni_chan != ic->ic_ibss_chan)
2836 1.2 dyoung error = ENETRESET;
2837 1.2 dyoung }
2838 1.2 dyoung break;
2839 1.2 dyoung }
2840 1.2 dyoung break;
2841 1.2 dyoung case SIOCG80211CHANNEL:
2842 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2843 1.2 dyoung switch (ic->ic_state) {
2844 1.2 dyoung case IEEE80211_S_INIT:
2845 1.2 dyoung case IEEE80211_S_SCAN:
2846 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA)
2847 1.2 dyoung chan = ic->ic_des_chan;
2848 1.2 dyoung else
2849 1.2 dyoung chan = ic->ic_ibss_chan;
2850 1.2 dyoung break;
2851 1.2 dyoung default:
2852 1.2 dyoung chan = ic->ic_bss->ni_chan;
2853 1.2 dyoung break;
2854 1.2 dyoung }
2855 1.2 dyoung chanreq->i_channel = ieee80211_chan2ieee(ic, chan);
2856 1.2 dyoung break;
2857 1.2 dyoung case SIOCGIFGENERIC:
2858 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2859 1.2 dyoung break;
2860 1.2 dyoung case SIOCSIFGENERIC:
2861 1.30.4.2 elad error = kauth_authorize_generic(curproc->p_cred,
2862 1.30.4.1 elad KAUTH_GENERIC_ISSUSER,
2863 1.30.4.1 elad &curproc->p_acflag);
2864 1.2 dyoung if (error)
2865 1.2 dyoung break;
2866 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2867 1.7 dyoung break;
2868 1.22 dyoung #ifdef COMPAT_20
2869 1.22 dyoung case OSIOCG80211STATS:
2870 1.22 dyoung case OSIOCG80211ZSTATS:
2871 1.22 dyoung ifr = (struct ifreq *)data;
2872 1.22 dyoung s = splnet();
2873 1.22 dyoung ieee80211_get_ostats(&ostats, &ic->ic_stats);
2874 1.22 dyoung error = copyout(&ostats, ifr->ifr_data, sizeof(ostats));
2875 1.22 dyoung if (error == 0 && cmd == OSIOCG80211ZSTATS)
2876 1.22 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2877 1.22 dyoung splx(s);
2878 1.22 dyoung break;
2879 1.22 dyoung #endif /* COMPAT_20 */
2880 1.17 dyoung case SIOCG80211ZSTATS:
2881 1.7 dyoung case SIOCG80211STATS:
2882 1.7 dyoung ifr = (struct ifreq *)data;
2883 1.17 dyoung s = splnet();
2884 1.22 dyoung error = copyout(&ic->ic_stats, ifr->ifr_buf,
2885 1.22 dyoung MIN(sizeof(ic->ic_stats), ifr->ifr_buflen));
2886 1.22 dyoung if (error == 0 && cmd == SIOCG80211ZSTATS)
2887 1.17 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2888 1.17 dyoung splx(s);
2889 1.2 dyoung break;
2890 1.10 dyoung case SIOCSIFMTU:
2891 1.10 dyoung ifr = (struct ifreq *)data;
2892 1.10 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2893 1.10 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2894 1.10 dyoung error = EINVAL;
2895 1.10 dyoung else
2896 1.10 dyoung ifp->if_mtu = ifr->ifr_mtu;
2897 1.10 dyoung break;
2898 1.2 dyoung default:
2899 1.2 dyoung error = ether_ioctl(ifp, cmd, data);
2900 1.2 dyoung break;
2901 1.2 dyoung }
2902 1.2 dyoung return error;
2903 1.2 dyoung }
2904 1.2 dyoung #endif /* __NetBSD__ */
2905