ieee80211_ioctl.c revision 1.32 1 1.32 elad /* $NetBSD: ieee80211_ioctl.c,v 1.32 2006/05/14 21:19:33 elad Exp $ */
2 1.1 dyoung /*-
3 1.1 dyoung * Copyright (c) 2001 Atsushi Onoe
4 1.19 dyoung * Copyright (c) 2002-2005 Sam Leffler, Errno Consulting
5 1.1 dyoung * All rights reserved.
6 1.1 dyoung *
7 1.1 dyoung * Redistribution and use in source and binary forms, with or without
8 1.1 dyoung * modification, are permitted provided that the following conditions
9 1.1 dyoung * are met:
10 1.1 dyoung * 1. Redistributions of source code must retain the above copyright
11 1.1 dyoung * notice, this list of conditions and the following disclaimer.
12 1.1 dyoung * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 dyoung * notice, this list of conditions and the following disclaimer in the
14 1.1 dyoung * documentation and/or other materials provided with the distribution.
15 1.1 dyoung * 3. The name of the author may not be used to endorse or promote products
16 1.1 dyoung * derived from this software without specific prior written permission.
17 1.1 dyoung *
18 1.1 dyoung * Alternatively, this software may be distributed under the terms of the
19 1.1 dyoung * GNU General Public License ("GPL") version 2 as published by the Free
20 1.1 dyoung * Software Foundation.
21 1.1 dyoung *
22 1.1 dyoung * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
23 1.1 dyoung * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
24 1.1 dyoung * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
25 1.1 dyoung * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
26 1.1 dyoung * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
27 1.1 dyoung * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
28 1.1 dyoung * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
29 1.1 dyoung * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
30 1.1 dyoung * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
31 1.1 dyoung * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
32 1.1 dyoung */
33 1.1 dyoung
34 1.1 dyoung #include <sys/cdefs.h>
35 1.3 dyoung #ifdef __FreeBSD__
36 1.26 skrll __FBSDID("$FreeBSD: src/sys/net80211/ieee80211_ioctl.c,v 1.35 2005/08/30 14:27:47 avatar Exp $");
37 1.19 dyoung #endif
38 1.19 dyoung #ifdef __NetBSD__
39 1.32 elad __KERNEL_RCSID(0, "$NetBSD: ieee80211_ioctl.c,v 1.32 2006/05/14 21:19:33 elad Exp $");
40 1.3 dyoung #endif
41 1.1 dyoung
42 1.1 dyoung /*
43 1.1 dyoung * IEEE 802.11 ioctl support (FreeBSD-specific)
44 1.1 dyoung */
45 1.1 dyoung
46 1.10 dyoung #include "opt_inet.h"
47 1.10 dyoung
48 1.1 dyoung #include <sys/endian.h>
49 1.1 dyoung #include <sys/param.h>
50 1.1 dyoung #include <sys/kernel.h>
51 1.1 dyoung #include <sys/socket.h>
52 1.1 dyoung #include <sys/sockio.h>
53 1.1 dyoung #include <sys/systm.h>
54 1.4 dyoung #include <sys/proc.h>
55 1.32 elad #include <sys/kauth.h>
56 1.19 dyoung
57 1.1 dyoung #include <net/if.h>
58 1.1 dyoung #include <net/if_arp.h>
59 1.1 dyoung #include <net/if_media.h>
60 1.4 dyoung #include <net/if_ether.h>
61 1.1 dyoung
62 1.10 dyoung #ifdef INET
63 1.10 dyoung #include <netinet/in.h>
64 1.10 dyoung #include <netinet/if_inarp.h>
65 1.10 dyoung #endif
66 1.10 dyoung
67 1.1 dyoung #include <net80211/ieee80211_var.h>
68 1.1 dyoung #include <net80211/ieee80211_ioctl.h>
69 1.1 dyoung
70 1.4 dyoung #include <dev/ic/wi_ieee.h>
71 1.19 dyoung
72 1.26 skrll #ifdef __FreeBSD__
73 1.26 skrll #define IS_UP(_ic) \
74 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
75 1.26 skrll ((_ic)->ic_ifp->if_drv_flags & IFF_DRV_RUNNING))
76 1.26 skrll #endif
77 1.26 skrll #ifdef __NetBSD__
78 1.19 dyoung #define IS_UP(_ic) \
79 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
80 1.26 skrll ((_ic)->ic_ifp->if_flags & IFF_RUNNING))
81 1.26 skrll #endif
82 1.19 dyoung #define IS_UP_AUTO(_ic) \
83 1.19 dyoung (IS_UP(_ic) && (_ic)->ic_roaming == IEEE80211_ROAMING_AUTO)
84 1.1 dyoung
85 1.1 dyoung /*
86 1.1 dyoung * XXX
87 1.1 dyoung * Wireless LAN specific configuration interface, which is compatible
88 1.1 dyoung * with wicontrol(8).
89 1.1 dyoung */
90 1.1 dyoung
91 1.19 dyoung struct wi_read_ap_args {
92 1.19 dyoung int i; /* result count */
93 1.19 dyoung struct wi_apinfo *ap; /* current entry in result buffer */
94 1.19 dyoung caddr_t max; /* result buffer bound */
95 1.19 dyoung };
96 1.19 dyoung
97 1.19 dyoung static void
98 1.19 dyoung wi_read_ap_result(void *arg, struct ieee80211_node *ni)
99 1.19 dyoung {
100 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
101 1.19 dyoung struct wi_read_ap_args *sa = arg;
102 1.19 dyoung struct wi_apinfo *ap = sa->ap;
103 1.19 dyoung struct ieee80211_rateset *rs;
104 1.19 dyoung int j;
105 1.19 dyoung
106 1.19 dyoung if ((caddr_t)(ap + 1) > sa->max)
107 1.19 dyoung return;
108 1.19 dyoung memset(ap, 0, sizeof(struct wi_apinfo));
109 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) {
110 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_macaddr);
111 1.19 dyoung ap->namelen = ic->ic_des_esslen;
112 1.19 dyoung if (ic->ic_des_esslen)
113 1.19 dyoung memcpy(ap->name, ic->ic_des_essid,
114 1.19 dyoung ic->ic_des_esslen);
115 1.19 dyoung } else {
116 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_bssid);
117 1.19 dyoung ap->namelen = ni->ni_esslen;
118 1.19 dyoung if (ni->ni_esslen)
119 1.19 dyoung memcpy(ap->name, ni->ni_essid,
120 1.19 dyoung ni->ni_esslen);
121 1.19 dyoung }
122 1.19 dyoung ap->channel = ieee80211_chan2ieee(ic, ni->ni_chan);
123 1.19 dyoung ap->signal = ic->ic_node_getrssi(ni);
124 1.19 dyoung ap->capinfo = ni->ni_capinfo;
125 1.19 dyoung ap->interval = ni->ni_intval;
126 1.19 dyoung rs = &ni->ni_rates;
127 1.19 dyoung for (j = 0; j < rs->rs_nrates; j++) {
128 1.19 dyoung if (rs->rs_rates[j] & IEEE80211_RATE_BASIC) {
129 1.19 dyoung ap->rate = (rs->rs_rates[j] &
130 1.19 dyoung IEEE80211_RATE_VAL) * 5; /* XXX */
131 1.19 dyoung }
132 1.19 dyoung }
133 1.19 dyoung sa->i++;
134 1.19 dyoung sa->ap++;
135 1.19 dyoung }
136 1.19 dyoung
137 1.19 dyoung struct wi_read_prism2_args {
138 1.19 dyoung int i; /* result count */
139 1.19 dyoung struct wi_scan_res *res;/* current entry in result buffer */
140 1.19 dyoung caddr_t max; /* result buffer bound */
141 1.19 dyoung };
142 1.19 dyoung
143 1.19 dyoung #if 0
144 1.19 dyoung static void
145 1.19 dyoung wi_read_prism2_result(void *arg, struct ieee80211_node *ni)
146 1.19 dyoung {
147 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
148 1.19 dyoung struct wi_read_prism2_args *sa = arg;
149 1.19 dyoung struct wi_scan_res *res = sa->res;
150 1.19 dyoung
151 1.19 dyoung if ((caddr_t)(res + 1) > sa->max)
152 1.19 dyoung return;
153 1.19 dyoung res->wi_chan = ieee80211_chan2ieee(ic, ni->ni_chan);
154 1.19 dyoung res->wi_noise = 0;
155 1.19 dyoung res->wi_signal = ic->ic_node_getrssi(ni);
156 1.19 dyoung IEEE80211_ADDR_COPY(res->wi_bssid, ni->ni_bssid);
157 1.19 dyoung res->wi_interval = ni->ni_intval;
158 1.19 dyoung res->wi_capinfo = ni->ni_capinfo;
159 1.19 dyoung res->wi_ssid_len = ni->ni_esslen;
160 1.19 dyoung memcpy(res->wi_ssid, ni->ni_essid, IEEE80211_NWID_LEN);
161 1.19 dyoung /* NB: assumes wi_srates holds <= ni->ni_rates */
162 1.19 dyoung memcpy(res->wi_srates, ni->ni_rates.rs_rates,
163 1.19 dyoung sizeof(res->wi_srates));
164 1.19 dyoung if (ni->ni_rates.rs_nrates < 10)
165 1.19 dyoung res->wi_srates[ni->ni_rates.rs_nrates] = 0;
166 1.19 dyoung res->wi_rate = ni->ni_rates.rs_rates[ni->ni_txrate];
167 1.19 dyoung res->wi_rsvd = 0;
168 1.19 dyoung
169 1.19 dyoung sa->i++;
170 1.19 dyoung sa->res++;
171 1.19 dyoung }
172 1.19 dyoung
173 1.19 dyoung struct wi_read_sigcache_args {
174 1.19 dyoung int i; /* result count */
175 1.19 dyoung struct wi_sigcache *wsc;/* current entry in result buffer */
176 1.19 dyoung caddr_t max; /* result buffer bound */
177 1.19 dyoung };
178 1.19 dyoung
179 1.19 dyoung static void
180 1.19 dyoung wi_read_sigcache(void *arg, struct ieee80211_node *ni)
181 1.19 dyoung {
182 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
183 1.19 dyoung struct wi_read_sigcache_args *sa = arg;
184 1.19 dyoung struct wi_sigcache *wsc = sa->wsc;
185 1.19 dyoung
186 1.19 dyoung if ((caddr_t)(wsc + 1) > sa->max)
187 1.19 dyoung return;
188 1.19 dyoung memset(wsc, 0, sizeof(struct wi_sigcache));
189 1.19 dyoung IEEE80211_ADDR_COPY(wsc->macsrc, ni->ni_macaddr);
190 1.19 dyoung wsc->signal = ic->ic_node_getrssi(ni);
191 1.19 dyoung
192 1.19 dyoung sa->wsc++;
193 1.19 dyoung sa->i++;
194 1.19 dyoung }
195 1.19 dyoung #endif
196 1.19 dyoung
197 1.1 dyoung int
198 1.19 dyoung ieee80211_cfgget(struct ieee80211com *ic, u_long cmd, caddr_t data)
199 1.1 dyoung {
200 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
201 1.1 dyoung int i, j, error;
202 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
203 1.1 dyoung struct wi_req wreq;
204 1.1 dyoung struct wi_ltv_keys *keys;
205 1.1 dyoung
206 1.1 dyoung error = copyin(ifr->ifr_data, &wreq, sizeof(wreq));
207 1.1 dyoung if (error)
208 1.1 dyoung return error;
209 1.1 dyoung wreq.wi_len = 0;
210 1.1 dyoung switch (wreq.wi_type) {
211 1.1 dyoung case WI_RID_SERIALNO:
212 1.8 onoe case WI_RID_STA_IDENTITY:
213 1.1 dyoung /* nothing appropriate */
214 1.1 dyoung break;
215 1.1 dyoung case WI_RID_NODENAME:
216 1.9 itojun strlcpy((char *)&wreq.wi_val[1], hostname,
217 1.9 itojun sizeof(wreq.wi_val) - sizeof(wreq.wi_val[0]));
218 1.1 dyoung wreq.wi_val[0] = htole16(strlen(hostname));
219 1.1 dyoung wreq.wi_len = (1 + strlen(hostname) + 1) / 2;
220 1.1 dyoung break;
221 1.1 dyoung case WI_RID_CURRENT_SSID:
222 1.1 dyoung if (ic->ic_state != IEEE80211_S_RUN) {
223 1.1 dyoung wreq.wi_val[0] = 0;
224 1.1 dyoung wreq.wi_len = 1;
225 1.1 dyoung break;
226 1.1 dyoung }
227 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_bss->ni_esslen);
228 1.1 dyoung memcpy(&wreq.wi_val[1], ic->ic_bss->ni_essid,
229 1.1 dyoung ic->ic_bss->ni_esslen);
230 1.1 dyoung wreq.wi_len = (1 + ic->ic_bss->ni_esslen + 1) / 2;
231 1.1 dyoung break;
232 1.1 dyoung case WI_RID_OWN_SSID:
233 1.1 dyoung case WI_RID_DESIRED_SSID:
234 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_des_esslen);
235 1.1 dyoung memcpy(&wreq.wi_val[1], ic->ic_des_essid, ic->ic_des_esslen);
236 1.1 dyoung wreq.wi_len = (1 + ic->ic_des_esslen + 1) / 2;
237 1.1 dyoung break;
238 1.1 dyoung case WI_RID_CURRENT_BSSID:
239 1.1 dyoung if (ic->ic_state == IEEE80211_S_RUN)
240 1.1 dyoung IEEE80211_ADDR_COPY(wreq.wi_val, ic->ic_bss->ni_bssid);
241 1.1 dyoung else
242 1.1 dyoung memset(wreq.wi_val, 0, IEEE80211_ADDR_LEN);
243 1.1 dyoung wreq.wi_len = IEEE80211_ADDR_LEN / 2;
244 1.1 dyoung break;
245 1.1 dyoung case WI_RID_CHANNEL_LIST:
246 1.1 dyoung memset(wreq.wi_val, 0, sizeof(wreq.wi_val));
247 1.1 dyoung /*
248 1.1 dyoung * Since channel 0 is not available for DS, channel 1
249 1.1 dyoung * is assigned to LSB on WaveLAN.
250 1.1 dyoung */
251 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
252 1.1 dyoung i = 1;
253 1.1 dyoung else
254 1.1 dyoung i = 0;
255 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++)
256 1.1 dyoung if (isset(ic->ic_chan_active, i)) {
257 1.1 dyoung setbit((u_int8_t *)wreq.wi_val, j);
258 1.1 dyoung wreq.wi_len = j / 16 + 1;
259 1.1 dyoung }
260 1.1 dyoung break;
261 1.1 dyoung case WI_RID_OWN_CHNL:
262 1.1 dyoung wreq.wi_val[0] = htole16(
263 1.1 dyoung ieee80211_chan2ieee(ic, ic->ic_ibss_chan));
264 1.1 dyoung wreq.wi_len = 1;
265 1.1 dyoung break;
266 1.1 dyoung case WI_RID_CURRENT_CHAN:
267 1.1 dyoung wreq.wi_val[0] = htole16(
268 1.26 skrll ieee80211_chan2ieee(ic, ic->ic_curchan));
269 1.1 dyoung wreq.wi_len = 1;
270 1.1 dyoung break;
271 1.1 dyoung case WI_RID_COMMS_QUALITY:
272 1.1 dyoung wreq.wi_val[0] = 0; /* quality */
273 1.19 dyoung wreq.wi_val[1] = htole16(ic->ic_node_getrssi(ic->ic_bss));
274 1.1 dyoung wreq.wi_val[2] = 0; /* noise */
275 1.1 dyoung wreq.wi_len = 3;
276 1.1 dyoung break;
277 1.1 dyoung case WI_RID_PROMISC:
278 1.1 dyoung wreq.wi_val[0] = htole16((ifp->if_flags & IFF_PROMISC) ? 1 : 0);
279 1.1 dyoung wreq.wi_len = 1;
280 1.1 dyoung break;
281 1.1 dyoung case WI_RID_PORTTYPE:
282 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_opmode);
283 1.1 dyoung wreq.wi_len = 1;
284 1.1 dyoung break;
285 1.1 dyoung case WI_RID_MAC_NODE:
286 1.1 dyoung IEEE80211_ADDR_COPY(wreq.wi_val, ic->ic_myaddr);
287 1.1 dyoung wreq.wi_len = IEEE80211_ADDR_LEN / 2;
288 1.1 dyoung break;
289 1.1 dyoung case WI_RID_TX_RATE:
290 1.26 skrll if (ic->ic_fixed_rate == IEEE80211_FIXED_RATE_NONE)
291 1.1 dyoung wreq.wi_val[0] = 0; /* auto */
292 1.1 dyoung else
293 1.1 dyoung wreq.wi_val[0] = htole16(
294 1.1 dyoung (ic->ic_sup_rates[ic->ic_curmode].rs_rates[ic->ic_fixed_rate] &
295 1.1 dyoung IEEE80211_RATE_VAL) / 2);
296 1.1 dyoung wreq.wi_len = 1;
297 1.1 dyoung break;
298 1.1 dyoung case WI_RID_CUR_TX_RATE:
299 1.1 dyoung wreq.wi_val[0] = htole16(
300 1.1 dyoung (ic->ic_bss->ni_rates.rs_rates[ic->ic_bss->ni_txrate] &
301 1.1 dyoung IEEE80211_RATE_VAL) / 2);
302 1.1 dyoung wreq.wi_len = 1;
303 1.1 dyoung break;
304 1.6 dyoung case WI_RID_FRAG_THRESH:
305 1.6 dyoung wreq.wi_val[0] = htole16(ic->ic_fragthreshold);
306 1.6 dyoung wreq.wi_len = 1;
307 1.6 dyoung break;
308 1.1 dyoung case WI_RID_RTS_THRESH:
309 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_rtsthreshold);
310 1.1 dyoung wreq.wi_len = 1;
311 1.1 dyoung break;
312 1.1 dyoung case WI_RID_CREATE_IBSS:
313 1.1 dyoung wreq.wi_val[0] =
314 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_IBSSON) ? 1 : 0);
315 1.1 dyoung wreq.wi_len = 1;
316 1.1 dyoung break;
317 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
318 1.1 dyoung wreq.wi_val[0] = 0; /* no ... not supported */
319 1.1 dyoung wreq.wi_len = 1;
320 1.1 dyoung break;
321 1.1 dyoung case WI_RID_ROAMING_MODE:
322 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_roaming); /* XXX map */
323 1.1 dyoung wreq.wi_len = 1;
324 1.1 dyoung break;
325 1.1 dyoung case WI_RID_SYSTEM_SCALE:
326 1.1 dyoung wreq.wi_val[0] = htole16(1); /* low density ... not supp */
327 1.1 dyoung wreq.wi_len = 1;
328 1.1 dyoung break;
329 1.1 dyoung case WI_RID_PM_ENABLED:
330 1.1 dyoung wreq.wi_val[0] =
331 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0);
332 1.1 dyoung wreq.wi_len = 1;
333 1.1 dyoung break;
334 1.1 dyoung case WI_RID_MAX_SLEEP:
335 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_lintval);
336 1.1 dyoung wreq.wi_len = 1;
337 1.1 dyoung break;
338 1.1 dyoung case WI_RID_CUR_BEACON_INT:
339 1.1 dyoung wreq.wi_val[0] = htole16(ic->ic_bss->ni_intval);
340 1.1 dyoung wreq.wi_len = 1;
341 1.1 dyoung break;
342 1.1 dyoung case WI_RID_WEP_AVAIL:
343 1.19 dyoung wreq.wi_val[0] = htole16(1); /* always available */
344 1.1 dyoung wreq.wi_len = 1;
345 1.1 dyoung break;
346 1.1 dyoung case WI_RID_CNFAUTHMODE:
347 1.1 dyoung wreq.wi_val[0] = htole16(1); /* TODO: open system only */
348 1.1 dyoung wreq.wi_len = 1;
349 1.1 dyoung break;
350 1.1 dyoung case WI_RID_ENCRYPTION:
351 1.1 dyoung wreq.wi_val[0] =
352 1.16 mycroft htole16((ic->ic_flags & IEEE80211_F_PRIVACY) ? 1 : 0);
353 1.1 dyoung wreq.wi_len = 1;
354 1.1 dyoung break;
355 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
356 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_def_txkey);
357 1.1 dyoung wreq.wi_len = 1;
358 1.1 dyoung break;
359 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
360 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
361 1.1 dyoung /* do not show keys to non-root user */
362 1.32 elad error = kauth_authorize_generic(curproc->p_cred,
363 1.32 elad KAUTH_GENERIC_ISSUSER,
364 1.32 elad &curproc->p_acflag);
365 1.1 dyoung if (error) {
366 1.1 dyoung memset(keys, 0, sizeof(*keys));
367 1.1 dyoung error = 0;
368 1.1 dyoung break;
369 1.1 dyoung }
370 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
371 1.1 dyoung keys->wi_keys[i].wi_keylen =
372 1.19 dyoung htole16(ic->ic_nw_keys[i].wk_keylen);
373 1.1 dyoung memcpy(keys->wi_keys[i].wi_keydat,
374 1.19 dyoung ic->ic_nw_keys[i].wk_key,
375 1.19 dyoung ic->ic_nw_keys[i].wk_keylen);
376 1.1 dyoung }
377 1.1 dyoung wreq.wi_len = sizeof(*keys) / 2;
378 1.1 dyoung break;
379 1.1 dyoung case WI_RID_MAX_DATALEN:
380 1.19 dyoung wreq.wi_val[0] = htole16(ic->ic_fragthreshold);
381 1.1 dyoung wreq.wi_len = 1;
382 1.1 dyoung break;
383 1.8 onoe case WI_RID_DBM_ADJUST:
384 1.8 onoe /* not supported, we just pass rssi value from driver. */
385 1.8 onoe break;
386 1.1 dyoung case WI_RID_IFACE_STATS:
387 1.1 dyoung /* XXX: should be implemented in lower drivers */
388 1.1 dyoung break;
389 1.1 dyoung case WI_RID_READ_APS:
390 1.19 dyoung /*
391 1.19 dyoung * Don't return results until active scan completes.
392 1.19 dyoung */
393 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
394 1.19 dyoung struct wi_read_ap_args args;
395 1.19 dyoung
396 1.19 dyoung args.i = 0;
397 1.19 dyoung args.ap = (void *)((char *)wreq.wi_val + sizeof(i));
398 1.19 dyoung args.max = (void *)(&wreq + 1);
399 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
400 1.19 dyoung wi_read_ap_result, &args);
401 1.19 dyoung memcpy(wreq.wi_val, &args.i, sizeof(args.i));
402 1.19 dyoung wreq.wi_len = (sizeof(int) +
403 1.19 dyoung sizeof(struct wi_apinfo) * args.i) / 2;
404 1.19 dyoung } else
405 1.19 dyoung error = EINPROGRESS;
406 1.1 dyoung break;
407 1.4 dyoung #if 0
408 1.1 dyoung case WI_RID_SCAN_RES: /* compatibility interface */
409 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
410 1.19 dyoung struct wi_read_prism2_args args;
411 1.19 dyoung struct wi_scan_p2_hdr *p2;
412 1.19 dyoung
413 1.19 dyoung /* NB: use Prism2 format so we can include rate info */
414 1.19 dyoung p2 = (struct wi_scan_p2_hdr *)wreq.wi_val;
415 1.19 dyoung args.i = 0;
416 1.19 dyoung args.res = (void *)&p2[1];
417 1.19 dyoung args.max = (void *)(&wreq + 1);
418 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
419 1.19 dyoung wi_read_prism2_result, &args);
420 1.19 dyoung p2->wi_rsvd = 0;
421 1.19 dyoung p2->wi_reason = args.i;
422 1.19 dyoung wreq.wi_len = (sizeof(*p2) +
423 1.19 dyoung sizeof(struct wi_scan_res) * args.i) / 2;
424 1.19 dyoung } else
425 1.1 dyoung error = EINPROGRESS;
426 1.1 dyoung break;
427 1.19 dyoung case WI_RID_READ_CACHE: {
428 1.19 dyoung struct wi_read_sigcache_args args;
429 1.19 dyoung args.i = 0;
430 1.19 dyoung args.wsc = (struct wi_sigcache *) wreq.wi_val;
431 1.19 dyoung args.max = (void *)(&wreq + 1);
432 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan, wi_read_sigcache, &args);
433 1.19 dyoung wreq.wi_len = sizeof(struct wi_sigcache) * args.i / 2;
434 1.1 dyoung break;
435 1.19 dyoung }
436 1.19 dyoung #endif
437 1.1 dyoung default:
438 1.1 dyoung error = EINVAL;
439 1.1 dyoung break;
440 1.1 dyoung }
441 1.1 dyoung if (error == 0) {
442 1.1 dyoung wreq.wi_len++;
443 1.1 dyoung error = copyout(&wreq, ifr->ifr_data, sizeof(wreq));
444 1.1 dyoung }
445 1.1 dyoung return error;
446 1.1 dyoung }
447 1.1 dyoung
448 1.1 dyoung static int
449 1.1 dyoung findrate(struct ieee80211com *ic, enum ieee80211_phymode mode, int rate)
450 1.1 dyoung {
451 1.1 dyoung #define IEEERATE(_ic,_m,_i) \
452 1.1 dyoung ((_ic)->ic_sup_rates[_m].rs_rates[_i] & IEEE80211_RATE_VAL)
453 1.1 dyoung int i, nrates = ic->ic_sup_rates[mode].rs_nrates;
454 1.1 dyoung for (i = 0; i < nrates; i++)
455 1.1 dyoung if (IEEERATE(ic, mode, i) == rate)
456 1.1 dyoung return i;
457 1.1 dyoung return -1;
458 1.1 dyoung #undef IEEERATE
459 1.1 dyoung }
460 1.1 dyoung
461 1.7 dyoung /*
462 1.7 dyoung * Prepare to do a user-initiated scan for AP's. If no
463 1.7 dyoung * current/default channel is setup or the current channel
464 1.7 dyoung * is invalid then pick the first available channel from
465 1.7 dyoung * the active list as the place to start the scan.
466 1.7 dyoung */
467 1.7 dyoung static int
468 1.19 dyoung ieee80211_setupscan(struct ieee80211com *ic, const u_int8_t chanlist[])
469 1.7 dyoung {
470 1.7 dyoung
471 1.19 dyoung /*
472 1.19 dyoung * XXX don't permit a scan to be started unless we
473 1.19 dyoung * know the device is ready. For the moment this means
474 1.19 dyoung * the device is marked up as this is the required to
475 1.19 dyoung * initialize the hardware. It would be better to permit
476 1.19 dyoung * scanning prior to being up but that'll require some
477 1.19 dyoung * changes to the infrastructure.
478 1.19 dyoung */
479 1.19 dyoung if (!IS_UP(ic))
480 1.19 dyoung return EINVAL;
481 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
482 1.7 dyoung /*
483 1.19 dyoung * We force the state to INIT before calling ieee80211_new_state
484 1.19 dyoung * to get ieee80211_begin_scan called. We really want to scan w/o
485 1.19 dyoung * altering the current state but that's not possible right now.
486 1.7 dyoung */
487 1.19 dyoung /* XXX handle proberequest case */
488 1.19 dyoung ic->ic_state = IEEE80211_S_INIT; /* XXX bypass state machine */
489 1.19 dyoung return 0;
490 1.7 dyoung }
491 1.7 dyoung
492 1.1 dyoung int
493 1.19 dyoung ieee80211_cfgset(struct ieee80211com *ic, u_long cmd, caddr_t data)
494 1.1 dyoung {
495 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
496 1.1 dyoung int i, j, len, error, rate;
497 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
498 1.1 dyoung struct wi_ltv_keys *keys;
499 1.1 dyoung struct wi_req wreq;
500 1.1 dyoung u_char chanlist[roundup(IEEE80211_CHAN_MAX, NBBY)];
501 1.1 dyoung
502 1.1 dyoung error = copyin(ifr->ifr_data, &wreq, sizeof(wreq));
503 1.1 dyoung if (error)
504 1.1 dyoung return error;
505 1.1 dyoung len = wreq.wi_len ? (wreq.wi_len - 1) * 2 : 0;
506 1.1 dyoung switch (wreq.wi_type) {
507 1.1 dyoung case WI_RID_SERIALNO:
508 1.1 dyoung case WI_RID_NODENAME:
509 1.1 dyoung return EPERM;
510 1.1 dyoung case WI_RID_CURRENT_SSID:
511 1.1 dyoung return EPERM;
512 1.1 dyoung case WI_RID_OWN_SSID:
513 1.1 dyoung case WI_RID_DESIRED_SSID:
514 1.1 dyoung if (le16toh(wreq.wi_val[0]) * 2 > len ||
515 1.1 dyoung le16toh(wreq.wi_val[0]) > IEEE80211_NWID_LEN) {
516 1.1 dyoung error = ENOSPC;
517 1.1 dyoung break;
518 1.1 dyoung }
519 1.1 dyoung memset(ic->ic_des_essid, 0, sizeof(ic->ic_des_essid));
520 1.1 dyoung ic->ic_des_esslen = le16toh(wreq.wi_val[0]) * 2;
521 1.1 dyoung memcpy(ic->ic_des_essid, &wreq.wi_val[1], ic->ic_des_esslen);
522 1.1 dyoung error = ENETRESET;
523 1.1 dyoung break;
524 1.1 dyoung case WI_RID_CURRENT_BSSID:
525 1.1 dyoung return EPERM;
526 1.1 dyoung case WI_RID_OWN_CHNL:
527 1.1 dyoung if (len != 2)
528 1.1 dyoung return EINVAL;
529 1.1 dyoung i = le16toh(wreq.wi_val[0]);
530 1.1 dyoung if (i < 0 ||
531 1.1 dyoung i > IEEE80211_CHAN_MAX ||
532 1.1 dyoung isclr(ic->ic_chan_active, i))
533 1.1 dyoung return EINVAL;
534 1.1 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
535 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_MONITOR)
536 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
537 1.19 dyoung else
538 1.1 dyoung error = ENETRESET;
539 1.1 dyoung break;
540 1.1 dyoung case WI_RID_CURRENT_CHAN:
541 1.1 dyoung return EPERM;
542 1.1 dyoung case WI_RID_COMMS_QUALITY:
543 1.1 dyoung return EPERM;
544 1.1 dyoung case WI_RID_PROMISC:
545 1.1 dyoung if (len != 2)
546 1.1 dyoung return EINVAL;
547 1.1 dyoung if (ifp->if_flags & IFF_PROMISC) {
548 1.1 dyoung if (wreq.wi_val[0] == 0) {
549 1.1 dyoung ifp->if_flags &= ~IFF_PROMISC;
550 1.1 dyoung error = ENETRESET;
551 1.1 dyoung }
552 1.1 dyoung } else {
553 1.1 dyoung if (wreq.wi_val[0] != 0) {
554 1.1 dyoung ifp->if_flags |= IFF_PROMISC;
555 1.1 dyoung error = ENETRESET;
556 1.1 dyoung }
557 1.1 dyoung }
558 1.1 dyoung break;
559 1.1 dyoung case WI_RID_PORTTYPE:
560 1.1 dyoung if (len != 2)
561 1.1 dyoung return EINVAL;
562 1.1 dyoung switch (le16toh(wreq.wi_val[0])) {
563 1.1 dyoung case IEEE80211_M_STA:
564 1.1 dyoung break;
565 1.1 dyoung case IEEE80211_M_IBSS:
566 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_IBSS))
567 1.1 dyoung return EINVAL;
568 1.1 dyoung break;
569 1.1 dyoung case IEEE80211_M_AHDEMO:
570 1.1 dyoung if (ic->ic_phytype != IEEE80211_T_DS ||
571 1.1 dyoung !(ic->ic_caps & IEEE80211_C_AHDEMO))
572 1.1 dyoung return EINVAL;
573 1.1 dyoung break;
574 1.1 dyoung case IEEE80211_M_HOSTAP:
575 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_HOSTAP))
576 1.1 dyoung return EINVAL;
577 1.1 dyoung break;
578 1.1 dyoung default:
579 1.1 dyoung return EINVAL;
580 1.1 dyoung }
581 1.1 dyoung if (le16toh(wreq.wi_val[0]) != ic->ic_opmode) {
582 1.1 dyoung ic->ic_opmode = le16toh(wreq.wi_val[0]);
583 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
584 1.1 dyoung }
585 1.1 dyoung break;
586 1.1 dyoung #if 0
587 1.1 dyoung case WI_RID_MAC_NODE:
588 1.1 dyoung if (len != IEEE80211_ADDR_LEN)
589 1.1 dyoung return EINVAL;
590 1.1 dyoung IEEE80211_ADDR_COPY(LLADDR(ifp->if_sadl), wreq.wi_val);
591 1.1 dyoung /* if_init will copy lladdr into ic_myaddr */
592 1.1 dyoung error = ENETRESET;
593 1.1 dyoung break;
594 1.1 dyoung #endif
595 1.1 dyoung case WI_RID_TX_RATE:
596 1.1 dyoung if (len != 2)
597 1.1 dyoung return EINVAL;
598 1.1 dyoung if (wreq.wi_val[0] == 0) {
599 1.1 dyoung /* auto */
600 1.26 skrll ic->ic_fixed_rate = IEEE80211_FIXED_RATE_NONE;
601 1.1 dyoung break;
602 1.1 dyoung }
603 1.1 dyoung rate = 2 * le16toh(wreq.wi_val[0]);
604 1.1 dyoung if (ic->ic_curmode == IEEE80211_MODE_AUTO) {
605 1.1 dyoung /*
606 1.1 dyoung * In autoselect mode search for the rate. We take
607 1.1 dyoung * the first instance which may not be right, but we
608 1.1 dyoung * are limited by the interface. Note that we also
609 1.1 dyoung * lock the mode to insure the rate is meaningful
610 1.1 dyoung * when it is used.
611 1.1 dyoung */
612 1.1 dyoung for (j = IEEE80211_MODE_11A;
613 1.1 dyoung j < IEEE80211_MODE_MAX; j++) {
614 1.1 dyoung if ((ic->ic_modecaps & (1<<j)) == 0)
615 1.1 dyoung continue;
616 1.1 dyoung i = findrate(ic, j, rate);
617 1.1 dyoung if (i != -1) {
618 1.1 dyoung /* lock mode too */
619 1.1 dyoung ic->ic_curmode = j;
620 1.1 dyoung goto setrate;
621 1.1 dyoung }
622 1.1 dyoung }
623 1.1 dyoung } else {
624 1.1 dyoung i = findrate(ic, ic->ic_curmode, rate);
625 1.1 dyoung if (i != -1)
626 1.1 dyoung goto setrate;
627 1.1 dyoung }
628 1.1 dyoung return EINVAL;
629 1.1 dyoung setrate:
630 1.1 dyoung ic->ic_fixed_rate = i;
631 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
632 1.1 dyoung break;
633 1.1 dyoung case WI_RID_CUR_TX_RATE:
634 1.1 dyoung return EPERM;
635 1.6 dyoung case WI_RID_FRAG_THRESH:
636 1.6 dyoung if (len != 2)
637 1.6 dyoung return EINVAL;
638 1.6 dyoung ic->ic_fragthreshold = le16toh(wreq.wi_val[0]);
639 1.6 dyoung error = ENETRESET;
640 1.6 dyoung break;
641 1.1 dyoung case WI_RID_RTS_THRESH:
642 1.1 dyoung if (len != 2)
643 1.1 dyoung return EINVAL;
644 1.6 dyoung ic->ic_rtsthreshold = le16toh(wreq.wi_val[0]);
645 1.6 dyoung error = ENETRESET;
646 1.1 dyoung break;
647 1.1 dyoung case WI_RID_CREATE_IBSS:
648 1.1 dyoung if (len != 2)
649 1.1 dyoung return EINVAL;
650 1.1 dyoung if (wreq.wi_val[0] != 0) {
651 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_IBSS) == 0)
652 1.1 dyoung return EINVAL;
653 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_IBSSON) == 0) {
654 1.1 dyoung ic->ic_flags |= IEEE80211_F_IBSSON;
655 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_IBSS &&
656 1.1 dyoung ic->ic_state == IEEE80211_S_SCAN)
657 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
658 1.1 dyoung }
659 1.1 dyoung } else {
660 1.1 dyoung if (ic->ic_flags & IEEE80211_F_IBSSON) {
661 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_IBSSON;
662 1.1 dyoung if (ic->ic_flags & IEEE80211_F_SIBSS) {
663 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_SIBSS;
664 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
665 1.1 dyoung }
666 1.1 dyoung }
667 1.1 dyoung }
668 1.1 dyoung break;
669 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
670 1.1 dyoung if (len != 2)
671 1.1 dyoung return EINVAL;
672 1.1 dyoung if (wreq.wi_val[0] != 0)
673 1.1 dyoung return EINVAL; /* not supported */
674 1.1 dyoung break;
675 1.1 dyoung case WI_RID_ROAMING_MODE:
676 1.1 dyoung if (len != 2)
677 1.1 dyoung return EINVAL;
678 1.19 dyoung i = le16toh(wreq.wi_val[0]);
679 1.19 dyoung if (i > IEEE80211_ROAMING_MANUAL)
680 1.1 dyoung return EINVAL; /* not supported */
681 1.19 dyoung ic->ic_roaming = i;
682 1.1 dyoung break;
683 1.1 dyoung case WI_RID_SYSTEM_SCALE:
684 1.1 dyoung if (len != 2)
685 1.1 dyoung return EINVAL;
686 1.1 dyoung if (le16toh(wreq.wi_val[0]) != 1)
687 1.1 dyoung return EINVAL; /* not supported */
688 1.1 dyoung break;
689 1.1 dyoung case WI_RID_PM_ENABLED:
690 1.1 dyoung if (len != 2)
691 1.1 dyoung return EINVAL;
692 1.1 dyoung if (wreq.wi_val[0] != 0) {
693 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
694 1.1 dyoung return EINVAL;
695 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
696 1.1 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
697 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
698 1.1 dyoung }
699 1.1 dyoung } else {
700 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
701 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
702 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
703 1.1 dyoung }
704 1.1 dyoung }
705 1.1 dyoung break;
706 1.1 dyoung case WI_RID_MAX_SLEEP:
707 1.1 dyoung if (len != 2)
708 1.1 dyoung return EINVAL;
709 1.1 dyoung ic->ic_lintval = le16toh(wreq.wi_val[0]);
710 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
711 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
712 1.1 dyoung break;
713 1.1 dyoung case WI_RID_CUR_BEACON_INT:
714 1.1 dyoung return EPERM;
715 1.1 dyoung case WI_RID_WEP_AVAIL:
716 1.1 dyoung return EPERM;
717 1.1 dyoung case WI_RID_CNFAUTHMODE:
718 1.1 dyoung if (len != 2)
719 1.1 dyoung return EINVAL;
720 1.19 dyoung i = le16toh(wreq.wi_val[0]);
721 1.19 dyoung if (i > IEEE80211_AUTH_WPA)
722 1.19 dyoung return EINVAL;
723 1.19 dyoung ic->ic_bss->ni_authmode = i; /* XXX ENETRESET? */
724 1.19 dyoung error = ENETRESET;
725 1.1 dyoung break;
726 1.1 dyoung case WI_RID_ENCRYPTION:
727 1.1 dyoung if (len != 2)
728 1.1 dyoung return EINVAL;
729 1.1 dyoung if (wreq.wi_val[0] != 0) {
730 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_WEP) == 0)
731 1.1 dyoung return EINVAL;
732 1.16 mycroft if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0) {
733 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
734 1.1 dyoung error = ENETRESET;
735 1.1 dyoung }
736 1.1 dyoung } else {
737 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY) {
738 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
739 1.1 dyoung error = ENETRESET;
740 1.1 dyoung }
741 1.1 dyoung }
742 1.1 dyoung break;
743 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
744 1.1 dyoung if (len != 2)
745 1.1 dyoung return EINVAL;
746 1.1 dyoung i = le16toh(wreq.wi_val[0]);
747 1.1 dyoung if (i >= IEEE80211_WEP_NKID)
748 1.1 dyoung return EINVAL;
749 1.19 dyoung ic->ic_def_txkey = i;
750 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
751 1.1 dyoung break;
752 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
753 1.1 dyoung if (len != sizeof(struct wi_ltv_keys))
754 1.1 dyoung return EINVAL;
755 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
756 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
757 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
758 1.1 dyoung if (len != 0 && len < IEEE80211_WEP_KEYLEN)
759 1.1 dyoung return EINVAL;
760 1.19 dyoung if (len > IEEE80211_KEYBUF_SIZE)
761 1.1 dyoung return EINVAL;
762 1.1 dyoung }
763 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
764 1.19 dyoung struct ieee80211_key *k = &ic->ic_nw_keys[i];
765 1.19 dyoung
766 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
767 1.19 dyoung k->wk_keylen = len;
768 1.19 dyoung k->wk_flags = IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV;
769 1.19 dyoung memset(k->wk_key, 0, sizeof(k->wk_key));
770 1.19 dyoung memcpy(k->wk_key, keys->wi_keys[i].wi_keydat, len);
771 1.19 dyoung #if 0
772 1.19 dyoung k->wk_type = IEEE80211_CIPHER_WEP;
773 1.19 dyoung #endif
774 1.1 dyoung }
775 1.1 dyoung error = ENETRESET;
776 1.1 dyoung break;
777 1.1 dyoung case WI_RID_MAX_DATALEN:
778 1.1 dyoung if (len != 2)
779 1.1 dyoung return EINVAL;
780 1.1 dyoung len = le16toh(wreq.wi_val[0]);
781 1.1 dyoung if (len < 350 /* ? */ || len > IEEE80211_MAX_LEN)
782 1.1 dyoung return EINVAL;
783 1.1 dyoung ic->ic_fragthreshold = len;
784 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
785 1.1 dyoung break;
786 1.1 dyoung case WI_RID_IFACE_STATS:
787 1.1 dyoung error = EPERM;
788 1.1 dyoung break;
789 1.1 dyoung case WI_RID_SCAN_REQ: /* XXX wicontrol */
790 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
791 1.1 dyoung break;
792 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
793 1.7 dyoung if (error == 0)
794 1.7 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
795 1.1 dyoung break;
796 1.1 dyoung case WI_RID_SCAN_APS:
797 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
798 1.1 dyoung break;
799 1.1 dyoung len--; /* XXX: tx rate? */
800 1.1 dyoung /* FALLTHRU */
801 1.1 dyoung case WI_RID_CHANNEL_LIST:
802 1.1 dyoung memset(chanlist, 0, sizeof(chanlist));
803 1.1 dyoung /*
804 1.1 dyoung * Since channel 0 is not available for DS, channel 1
805 1.1 dyoung * is assigned to LSB on WaveLAN.
806 1.1 dyoung */
807 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
808 1.1 dyoung i = 1;
809 1.1 dyoung else
810 1.1 dyoung i = 0;
811 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
812 1.1 dyoung if ((j / 8) >= len)
813 1.1 dyoung break;
814 1.1 dyoung if (isclr((u_int8_t *)wreq.wi_val, j))
815 1.1 dyoung continue;
816 1.1 dyoung if (isclr(ic->ic_chan_active, i)) {
817 1.1 dyoung if (wreq.wi_type != WI_RID_CHANNEL_LIST)
818 1.1 dyoung continue;
819 1.1 dyoung if (isclr(ic->ic_chan_avail, i))
820 1.1 dyoung return EPERM;
821 1.1 dyoung }
822 1.1 dyoung setbit(chanlist, i);
823 1.1 dyoung }
824 1.19 dyoung error = ieee80211_setupscan(ic, chanlist);
825 1.7 dyoung if (wreq.wi_type == WI_RID_CHANNEL_LIST) {
826 1.7 dyoung /* NB: ignore error from ieee80211_setupscan */
827 1.1 dyoung error = ENETRESET;
828 1.7 dyoung } else if (error == 0)
829 1.1 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
830 1.1 dyoung break;
831 1.1 dyoung default:
832 1.1 dyoung error = EINVAL;
833 1.1 dyoung break;
834 1.1 dyoung }
835 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
836 1.19 dyoung error = 0;
837 1.19 dyoung return error;
838 1.19 dyoung }
839 1.19 dyoung
840 1.19 dyoung static int
841 1.19 dyoung cap2cipher(int flag)
842 1.19 dyoung {
843 1.19 dyoung switch (flag) {
844 1.19 dyoung case IEEE80211_C_WEP: return IEEE80211_CIPHER_WEP;
845 1.19 dyoung case IEEE80211_C_AES: return IEEE80211_CIPHER_AES_OCB;
846 1.19 dyoung case IEEE80211_C_AES_CCM: return IEEE80211_CIPHER_AES_CCM;
847 1.19 dyoung case IEEE80211_C_CKIP: return IEEE80211_CIPHER_CKIP;
848 1.19 dyoung case IEEE80211_C_TKIP: return IEEE80211_CIPHER_TKIP;
849 1.19 dyoung }
850 1.19 dyoung return -1;
851 1.19 dyoung }
852 1.19 dyoung
853 1.19 dyoung static int
854 1.19 dyoung ieee80211_ioctl_getkey(struct ieee80211com *ic, struct ieee80211req *ireq)
855 1.19 dyoung {
856 1.19 dyoung struct ieee80211_node *ni;
857 1.19 dyoung struct ieee80211req_key ik;
858 1.19 dyoung struct ieee80211_key *wk;
859 1.19 dyoung const struct ieee80211_cipher *cip;
860 1.19 dyoung u_int kid;
861 1.19 dyoung int error;
862 1.19 dyoung
863 1.19 dyoung if (ireq->i_len != sizeof(ik))
864 1.19 dyoung return EINVAL;
865 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
866 1.19 dyoung if (error)
867 1.19 dyoung return error;
868 1.19 dyoung kid = ik.ik_keyix;
869 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
870 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
871 1.19 dyoung if (ni == NULL)
872 1.19 dyoung return EINVAL; /* XXX */
873 1.19 dyoung wk = &ni->ni_ucastkey;
874 1.19 dyoung } else {
875 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
876 1.19 dyoung return EINVAL;
877 1.19 dyoung wk = &ic->ic_nw_keys[kid];
878 1.19 dyoung IEEE80211_ADDR_COPY(&ik.ik_macaddr, ic->ic_bss->ni_macaddr);
879 1.19 dyoung ni = NULL;
880 1.19 dyoung }
881 1.19 dyoung cip = wk->wk_cipher;
882 1.19 dyoung ik.ik_type = cip->ic_cipher;
883 1.19 dyoung ik.ik_keylen = wk->wk_keylen;
884 1.19 dyoung ik.ik_flags = wk->wk_flags & (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV);
885 1.19 dyoung if (wk->wk_keyix == ic->ic_def_txkey)
886 1.19 dyoung ik.ik_flags |= IEEE80211_KEY_DEFAULT;
887 1.32 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
888 1.32 elad &curproc->p_acflag) == 0) {
889 1.19 dyoung /* NB: only root can read key data */
890 1.19 dyoung ik.ik_keyrsc = wk->wk_keyrsc;
891 1.19 dyoung ik.ik_keytsc = wk->wk_keytsc;
892 1.19 dyoung memcpy(ik.ik_keydata, wk->wk_key, wk->wk_keylen);
893 1.19 dyoung if (cip->ic_cipher == IEEE80211_CIPHER_TKIP) {
894 1.19 dyoung memcpy(ik.ik_keydata+wk->wk_keylen,
895 1.19 dyoung wk->wk_key + IEEE80211_KEYBUF_SIZE,
896 1.19 dyoung IEEE80211_MICBUF_SIZE);
897 1.19 dyoung ik.ik_keylen += IEEE80211_MICBUF_SIZE;
898 1.19 dyoung }
899 1.19 dyoung } else {
900 1.19 dyoung ik.ik_keyrsc = 0;
901 1.19 dyoung ik.ik_keytsc = 0;
902 1.19 dyoung memset(ik.ik_keydata, 0, sizeof(ik.ik_keydata));
903 1.19 dyoung }
904 1.19 dyoung if (ni != NULL)
905 1.19 dyoung ieee80211_free_node(ni);
906 1.19 dyoung return copyout(&ik, ireq->i_data, sizeof(ik));
907 1.19 dyoung }
908 1.19 dyoung
909 1.19 dyoung static int
910 1.19 dyoung ieee80211_ioctl_getchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
911 1.19 dyoung {
912 1.27 christos size_t len = ireq->i_len;
913 1.19 dyoung
914 1.27 christos if (sizeof(ic->ic_chan_active) < len) {
915 1.27 christos len = sizeof(ic->ic_chan_active);
916 1.27 christos }
917 1.27 christos return copyout(&ic->ic_chan_active, ireq->i_data, len);
918 1.19 dyoung }
919 1.19 dyoung
920 1.19 dyoung static int
921 1.19 dyoung ieee80211_ioctl_getchaninfo(struct ieee80211com *ic, struct ieee80211req *ireq)
922 1.19 dyoung {
923 1.19 dyoung struct ieee80211req_chaninfo chans; /* XXX off stack? */
924 1.19 dyoung int i, space;
925 1.19 dyoung
926 1.19 dyoung /*
927 1.19 dyoung * Since channel 0 is not available for DS, channel 1
928 1.19 dyoung * is assigned to LSB on WaveLAN.
929 1.19 dyoung */
930 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
931 1.19 dyoung i = 1;
932 1.19 dyoung else
933 1.19 dyoung i = 0;
934 1.19 dyoung memset(&chans, 0, sizeof(chans));
935 1.19 dyoung for (; i <= IEEE80211_CHAN_MAX; i++)
936 1.19 dyoung if (isset(ic->ic_chan_avail, i)) {
937 1.19 dyoung struct ieee80211_channel *c = &ic->ic_channels[i];
938 1.19 dyoung chans.ic_chans[chans.ic_nchans].ic_freq = c->ic_freq;
939 1.19 dyoung chans.ic_chans[chans.ic_nchans].ic_flags = c->ic_flags;
940 1.19 dyoung chans.ic_nchans++;
941 1.19 dyoung }
942 1.19 dyoung space = __offsetof(struct ieee80211req_chaninfo,
943 1.19 dyoung ic_chans[chans.ic_nchans]);
944 1.19 dyoung if (space > ireq->i_len)
945 1.19 dyoung space = ireq->i_len;
946 1.19 dyoung return copyout(&chans, ireq->i_data, space);
947 1.19 dyoung }
948 1.19 dyoung
949 1.19 dyoung static int
950 1.19 dyoung ieee80211_ioctl_getwpaie(struct ieee80211com *ic, struct ieee80211req *ireq)
951 1.19 dyoung {
952 1.19 dyoung struct ieee80211_node *ni;
953 1.19 dyoung struct ieee80211req_wpaie wpaie;
954 1.19 dyoung int error;
955 1.19 dyoung
956 1.19 dyoung if (ireq->i_len < IEEE80211_ADDR_LEN)
957 1.19 dyoung return EINVAL;
958 1.19 dyoung error = copyin(ireq->i_data, wpaie.wpa_macaddr, IEEE80211_ADDR_LEN);
959 1.19 dyoung if (error != 0)
960 1.19 dyoung return error;
961 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, wpaie.wpa_macaddr);
962 1.19 dyoung if (ni == NULL)
963 1.19 dyoung return EINVAL; /* XXX */
964 1.19 dyoung memset(wpaie.wpa_ie, 0, sizeof(wpaie.wpa_ie));
965 1.19 dyoung if (ni->ni_wpa_ie != NULL) {
966 1.19 dyoung int ielen = ni->ni_wpa_ie[1] + 2;
967 1.19 dyoung if (ielen > sizeof(wpaie.wpa_ie))
968 1.19 dyoung ielen = sizeof(wpaie.wpa_ie);
969 1.19 dyoung memcpy(wpaie.wpa_ie, ni->ni_wpa_ie, ielen);
970 1.19 dyoung }
971 1.19 dyoung ieee80211_free_node(ni);
972 1.19 dyoung if (ireq->i_len > sizeof(wpaie))
973 1.19 dyoung ireq->i_len = sizeof(wpaie);
974 1.19 dyoung return copyout(&wpaie, ireq->i_data, ireq->i_len);
975 1.19 dyoung }
976 1.19 dyoung
977 1.19 dyoung static int
978 1.19 dyoung ieee80211_ioctl_getstastats(struct ieee80211com *ic, struct ieee80211req *ireq)
979 1.19 dyoung {
980 1.19 dyoung struct ieee80211_node *ni;
981 1.19 dyoung u_int8_t macaddr[IEEE80211_ADDR_LEN];
982 1.19 dyoung const int off = __offsetof(struct ieee80211req_sta_stats, is_stats);
983 1.19 dyoung int error;
984 1.19 dyoung
985 1.19 dyoung if (ireq->i_len < off)
986 1.19 dyoung return EINVAL;
987 1.19 dyoung error = copyin(ireq->i_data, macaddr, IEEE80211_ADDR_LEN);
988 1.19 dyoung if (error != 0)
989 1.19 dyoung return error;
990 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, macaddr);
991 1.19 dyoung if (ni == NULL)
992 1.19 dyoung return EINVAL; /* XXX */
993 1.19 dyoung if (ireq->i_len > sizeof(struct ieee80211req_sta_stats))
994 1.19 dyoung ireq->i_len = sizeof(struct ieee80211req_sta_stats);
995 1.19 dyoung /* NB: copy out only the statistics */
996 1.19 dyoung error = copyout(&ni->ni_stats, (u_int8_t *) ireq->i_data + off,
997 1.19 dyoung ireq->i_len - off);
998 1.19 dyoung ieee80211_free_node(ni);
999 1.19 dyoung return error;
1000 1.19 dyoung }
1001 1.19 dyoung
1002 1.19 dyoung static void
1003 1.19 dyoung get_scan_result(struct ieee80211req_scan_result *sr,
1004 1.19 dyoung const struct ieee80211_node *ni)
1005 1.19 dyoung {
1006 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1007 1.28 christos u_int ielen = 0;
1008 1.19 dyoung
1009 1.19 dyoung memset(sr, 0, sizeof(*sr));
1010 1.19 dyoung sr->isr_ssid_len = ni->ni_esslen;
1011 1.19 dyoung if (ni->ni_wpa_ie != NULL)
1012 1.28 christos ielen += 2+ni->ni_wpa_ie[1];
1013 1.19 dyoung if (ni->ni_wme_ie != NULL)
1014 1.28 christos ielen += 2+ni->ni_wme_ie[1];
1015 1.28 christos
1016 1.28 christos /*
1017 1.28 christos * The value sr->isr_ie_len is defined as a uint8_t, so we
1018 1.28 christos * need to be careful to avoid an integer overflow. If the
1019 1.28 christos * value would overflow, we will set isr_ie_len to zero, and
1020 1.28 christos * ieee80211_ioctl_getscanresults (below) will avoid copying
1021 1.28 christos * the (overflowing) data.
1022 1.28 christos */
1023 1.28 christos if (ielen > 255)
1024 1.28 christos ielen = 0;
1025 1.28 christos sr->isr_ie_len = ielen;
1026 1.19 dyoung sr->isr_len = sizeof(*sr) + sr->isr_ssid_len + sr->isr_ie_len;
1027 1.19 dyoung sr->isr_len = roundup(sr->isr_len, sizeof(u_int32_t));
1028 1.19 dyoung if (ni->ni_chan != IEEE80211_CHAN_ANYC) {
1029 1.19 dyoung sr->isr_freq = ni->ni_chan->ic_freq;
1030 1.19 dyoung sr->isr_flags = ni->ni_chan->ic_flags;
1031 1.19 dyoung }
1032 1.19 dyoung sr->isr_rssi = ic->ic_node_getrssi(ni);
1033 1.19 dyoung sr->isr_intval = ni->ni_intval;
1034 1.19 dyoung sr->isr_capinfo = ni->ni_capinfo;
1035 1.19 dyoung sr->isr_erp = ni->ni_erp;
1036 1.19 dyoung IEEE80211_ADDR_COPY(sr->isr_bssid, ni->ni_bssid);
1037 1.19 dyoung sr->isr_nrates = ni->ni_rates.rs_nrates;
1038 1.19 dyoung if (sr->isr_nrates > 15)
1039 1.19 dyoung sr->isr_nrates = 15;
1040 1.19 dyoung memcpy(sr->isr_rates, ni->ni_rates.rs_rates, sr->isr_nrates);
1041 1.19 dyoung }
1042 1.19 dyoung
1043 1.19 dyoung static int
1044 1.19 dyoung ieee80211_ioctl_getscanresults(struct ieee80211com *ic, struct ieee80211req *ireq)
1045 1.19 dyoung {
1046 1.19 dyoung union {
1047 1.19 dyoung struct ieee80211req_scan_result res;
1048 1.27 christos char data[sizeof(struct ieee80211req_scan_result) + IEEE80211_NWID_LEN + 256 * 2];
1049 1.19 dyoung } u;
1050 1.19 dyoung struct ieee80211req_scan_result *sr = &u.res;
1051 1.19 dyoung struct ieee80211_node_table *nt;
1052 1.19 dyoung struct ieee80211_node *ni;
1053 1.19 dyoung int error, space;
1054 1.19 dyoung u_int8_t *p, *cp;
1055 1.19 dyoung
1056 1.19 dyoung p = ireq->i_data;
1057 1.19 dyoung space = ireq->i_len;
1058 1.19 dyoung error = 0;
1059 1.19 dyoung /* XXX locking */
1060 1.19 dyoung nt = &ic->ic_scan;
1061 1.19 dyoung TAILQ_FOREACH(ni, &nt->nt_node, ni_list) {
1062 1.19 dyoung /* NB: skip pre-scan node state */
1063 1.19 dyoung if (ni->ni_chan == IEEE80211_CHAN_ANYC)
1064 1.19 dyoung continue;
1065 1.19 dyoung get_scan_result(sr, ni);
1066 1.19 dyoung if (sr->isr_len > sizeof(u))
1067 1.19 dyoung continue; /* XXX */
1068 1.19 dyoung if (space < sr->isr_len)
1069 1.19 dyoung break;
1070 1.19 dyoung cp = (u_int8_t *)(sr+1);
1071 1.19 dyoung memcpy(cp, ni->ni_essid, ni->ni_esslen);
1072 1.19 dyoung cp += ni->ni_esslen;
1073 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wpa_ie != NULL) {
1074 1.19 dyoung memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1075 1.19 dyoung cp += 2+ni->ni_wpa_ie[1];
1076 1.19 dyoung }
1077 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wme_ie != NULL) {
1078 1.19 dyoung memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1079 1.19 dyoung cp += 2+ni->ni_wme_ie[1];
1080 1.19 dyoung }
1081 1.19 dyoung error = copyout(sr, p, sr->isr_len);
1082 1.19 dyoung if (error)
1083 1.19 dyoung break;
1084 1.19 dyoung p += sr->isr_len;
1085 1.19 dyoung space -= sr->isr_len;
1086 1.19 dyoung }
1087 1.19 dyoung ireq->i_len -= space;
1088 1.19 dyoung return error;
1089 1.19 dyoung }
1090 1.19 dyoung
1091 1.26 skrll struct stainforeq {
1092 1.26 skrll struct ieee80211com *ic;
1093 1.26 skrll struct ieee80211req_sta_info *si;
1094 1.26 skrll size_t space;
1095 1.26 skrll };
1096 1.26 skrll
1097 1.26 skrll static size_t
1098 1.26 skrll sta_space(const struct ieee80211_node *ni, size_t *ielen)
1099 1.26 skrll {
1100 1.26 skrll *ielen = 0;
1101 1.26 skrll if (ni->ni_wpa_ie != NULL)
1102 1.26 skrll *ielen += 2+ni->ni_wpa_ie[1];
1103 1.26 skrll if (ni->ni_wme_ie != NULL)
1104 1.26 skrll *ielen += 2+ni->ni_wme_ie[1];
1105 1.26 skrll return roundup(sizeof(struct ieee80211req_sta_info) + *ielen,
1106 1.26 skrll sizeof(u_int32_t));
1107 1.26 skrll }
1108 1.26 skrll
1109 1.19 dyoung static void
1110 1.26 skrll get_sta_space(void *arg, struct ieee80211_node *ni)
1111 1.19 dyoung {
1112 1.26 skrll struct stainforeq *req = arg;
1113 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1114 1.26 skrll size_t ielen;
1115 1.19 dyoung
1116 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1117 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1118 1.26 skrll return;
1119 1.26 skrll req->space += sta_space(ni, &ielen);
1120 1.26 skrll }
1121 1.26 skrll
1122 1.26 skrll static void
1123 1.26 skrll get_sta_info(void *arg, struct ieee80211_node *ni)
1124 1.26 skrll {
1125 1.26 skrll struct stainforeq *req = arg;
1126 1.26 skrll struct ieee80211com *ic = ni->ni_ic;
1127 1.26 skrll struct ieee80211req_sta_info *si;
1128 1.26 skrll size_t ielen, len;
1129 1.26 skrll u_int8_t *cp;
1130 1.26 skrll
1131 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1132 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1133 1.26 skrll return;
1134 1.26 skrll if (ni->ni_chan == IEEE80211_CHAN_ANYC) /* XXX bogus entry */
1135 1.26 skrll return;
1136 1.26 skrll len = sta_space(ni, &ielen);
1137 1.26 skrll if (len > req->space)
1138 1.26 skrll return;
1139 1.26 skrll si = req->si;
1140 1.26 skrll si->isi_len = len;
1141 1.26 skrll si->isi_ie_len = ielen;
1142 1.19 dyoung si->isi_freq = ni->ni_chan->ic_freq;
1143 1.19 dyoung si->isi_flags = ni->ni_chan->ic_flags;
1144 1.19 dyoung si->isi_state = ni->ni_flags;
1145 1.19 dyoung si->isi_authmode = ni->ni_authmode;
1146 1.19 dyoung si->isi_rssi = ic->ic_node_getrssi(ni);
1147 1.19 dyoung si->isi_capinfo = ni->ni_capinfo;
1148 1.19 dyoung si->isi_erp = ni->ni_erp;
1149 1.19 dyoung IEEE80211_ADDR_COPY(si->isi_macaddr, ni->ni_macaddr);
1150 1.19 dyoung si->isi_nrates = ni->ni_rates.rs_nrates;
1151 1.19 dyoung if (si->isi_nrates > 15)
1152 1.19 dyoung si->isi_nrates = 15;
1153 1.19 dyoung memcpy(si->isi_rates, ni->ni_rates.rs_rates, si->isi_nrates);
1154 1.19 dyoung si->isi_txrate = ni->ni_txrate;
1155 1.19 dyoung si->isi_associd = ni->ni_associd;
1156 1.19 dyoung si->isi_txpower = ni->ni_txpower;
1157 1.19 dyoung si->isi_vlan = ni->ni_vlan;
1158 1.19 dyoung if (ni->ni_flags & IEEE80211_NODE_QOS) {
1159 1.19 dyoung memcpy(si->isi_txseqs, ni->ni_txseqs, sizeof(ni->ni_txseqs));
1160 1.19 dyoung memcpy(si->isi_rxseqs, ni->ni_rxseqs, sizeof(ni->ni_rxseqs));
1161 1.19 dyoung } else {
1162 1.19 dyoung si->isi_txseqs[0] = ni->ni_txseqs[0];
1163 1.19 dyoung si->isi_rxseqs[0] = ni->ni_rxseqs[0];
1164 1.19 dyoung }
1165 1.26 skrll /* NB: leave all cases in case we relax ni_associd == 0 check */
1166 1.26 skrll if (ieee80211_node_is_authorized(ni))
1167 1.19 dyoung si->isi_inact = ic->ic_inact_run;
1168 1.26 skrll else if (ni->ni_associd != 0)
1169 1.19 dyoung si->isi_inact = ic->ic_inact_auth;
1170 1.19 dyoung else
1171 1.19 dyoung si->isi_inact = ic->ic_inact_init;
1172 1.19 dyoung si->isi_inact = (si->isi_inact - ni->ni_inact) * IEEE80211_INACT_WAIT;
1173 1.26 skrll
1174 1.26 skrll cp = (u_int8_t *)(si+1);
1175 1.26 skrll if (ni->ni_wpa_ie != NULL) {
1176 1.26 skrll memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1177 1.26 skrll cp += 2+ni->ni_wpa_ie[1];
1178 1.26 skrll }
1179 1.26 skrll if (ni->ni_wme_ie != NULL) {
1180 1.26 skrll memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1181 1.26 skrll cp += 2+ni->ni_wme_ie[1];
1182 1.26 skrll }
1183 1.26 skrll
1184 1.26 skrll req->si = (struct ieee80211req_sta_info *)(((u_int8_t *)si) + len);
1185 1.26 skrll req->space -= len;
1186 1.19 dyoung }
1187 1.19 dyoung
1188 1.19 dyoung static int
1189 1.19 dyoung ieee80211_ioctl_getstainfo(struct ieee80211com *ic, struct ieee80211req *ireq)
1190 1.19 dyoung {
1191 1.26 skrll struct stainforeq req;
1192 1.26 skrll int error;
1193 1.26 skrll
1194 1.26 skrll if (ireq->i_len < sizeof(struct stainforeq))
1195 1.26 skrll return EFAULT;
1196 1.19 dyoung
1197 1.19 dyoung error = 0;
1198 1.26 skrll req.space = 0;
1199 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_space, &req);
1200 1.26 skrll if (req.space > ireq->i_len)
1201 1.26 skrll req.space = ireq->i_len;
1202 1.26 skrll if (req.space > 0) {
1203 1.26 skrll size_t space;
1204 1.26 skrll void *p;
1205 1.26 skrll
1206 1.26 skrll space = req.space;
1207 1.26 skrll /* XXX M_WAITOK after driver lock released */
1208 1.31 christos p = malloc(space, M_TEMP, M_NOWAIT);
1209 1.26 skrll if (p == NULL)
1210 1.26 skrll return ENOMEM;
1211 1.26 skrll req.si = p;
1212 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_info, &req);
1213 1.26 skrll ireq->i_len = space - req.space;
1214 1.26 skrll error = copyout(p, ireq->i_data, ireq->i_len);
1215 1.26 skrll FREE(p, M_TEMP);
1216 1.26 skrll } else
1217 1.26 skrll ireq->i_len = 0;
1218 1.26 skrll
1219 1.19 dyoung return error;
1220 1.19 dyoung }
1221 1.19 dyoung
1222 1.19 dyoung static int
1223 1.19 dyoung ieee80211_ioctl_getstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1224 1.19 dyoung {
1225 1.19 dyoung struct ieee80211_node *ni;
1226 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1227 1.19 dyoung int error;
1228 1.19 dyoung
1229 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1230 1.19 dyoung return EINVAL;
1231 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1232 1.19 dyoung if (error != 0)
1233 1.19 dyoung return error;
1234 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1235 1.19 dyoung if (ni == NULL)
1236 1.19 dyoung return EINVAL; /* XXX */
1237 1.19 dyoung txpow.it_txpow = ni->ni_txpower;
1238 1.19 dyoung error = copyout(&txpow, ireq->i_data, sizeof(txpow));
1239 1.19 dyoung ieee80211_free_node(ni);
1240 1.1 dyoung return error;
1241 1.1 dyoung }
1242 1.1 dyoung
1243 1.19 dyoung static int
1244 1.19 dyoung ieee80211_ioctl_getwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1245 1.19 dyoung {
1246 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1247 1.19 dyoung struct wmeParams *wmep;
1248 1.19 dyoung int ac;
1249 1.19 dyoung
1250 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1251 1.19 dyoung return EINVAL;
1252 1.19 dyoung
1253 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1254 1.19 dyoung if (ac >= WME_NUM_AC)
1255 1.19 dyoung ac = WME_AC_BE;
1256 1.19 dyoung if (ireq->i_len & IEEE80211_WMEPARAM_BSS)
1257 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1258 1.19 dyoung else
1259 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1260 1.19 dyoung switch (ireq->i_type) {
1261 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1262 1.19 dyoung ireq->i_val = wmep->wmep_logcwmin;
1263 1.19 dyoung break;
1264 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1265 1.19 dyoung ireq->i_val = wmep->wmep_logcwmax;
1266 1.19 dyoung break;
1267 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1268 1.19 dyoung ireq->i_val = wmep->wmep_aifsn;
1269 1.19 dyoung break;
1270 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1271 1.19 dyoung ireq->i_val = wmep->wmep_txopLimit;
1272 1.19 dyoung break;
1273 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1274 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1275 1.19 dyoung ireq->i_val = wmep->wmep_acm;
1276 1.19 dyoung break;
1277 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1278 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1279 1.19 dyoung ireq->i_val = !wmep->wmep_noackPolicy;
1280 1.19 dyoung break;
1281 1.19 dyoung }
1282 1.19 dyoung return 0;
1283 1.19 dyoung }
1284 1.19 dyoung
1285 1.26 skrll static int
1286 1.26 skrll ieee80211_ioctl_getmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1287 1.26 skrll {
1288 1.26 skrll const struct ieee80211_aclator *acl = ic->ic_acl;
1289 1.26 skrll
1290 1.26 skrll return (acl == NULL ? EINVAL : acl->iac_getioctl(ic, ireq));
1291 1.26 skrll }
1292 1.26 skrll
1293 1.19 dyoung /*
1294 1.19 dyoung * When building the kernel with -O2 on the i386 architecture, gcc
1295 1.19 dyoung * seems to want to inline this function into ieee80211_ioctl()
1296 1.19 dyoung * (which is the only routine that calls it). When this happens,
1297 1.19 dyoung * ieee80211_ioctl() ends up consuming an additional 2K of stack
1298 1.19 dyoung * space. (Exactly why it needs so much is unclear.) The problem
1299 1.19 dyoung * is that it's possible for ieee80211_ioctl() to invoke other
1300 1.19 dyoung * routines (including driver init functions) which could then find
1301 1.19 dyoung * themselves perilously close to exhausting the stack.
1302 1.19 dyoung *
1303 1.19 dyoung * To avoid this, we deliberately prevent gcc from inlining this
1304 1.19 dyoung * routine. Another way to avoid this is to use less agressive
1305 1.19 dyoung * optimization when compiling this file (i.e. -O instead of -O2)
1306 1.19 dyoung * but special-casing the compilation of this one module in the
1307 1.19 dyoung * build system would be awkward.
1308 1.19 dyoung */
1309 1.19 dyoung #ifdef __GNUC__
1310 1.19 dyoung __attribute__ ((noinline))
1311 1.19 dyoung #endif
1312 1.19 dyoung static int
1313 1.19 dyoung ieee80211_ioctl_get80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
1314 1.1 dyoung {
1315 1.19 dyoung const struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
1316 1.1 dyoung int error = 0;
1317 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1318 1.23 dyoung u_int kid, len;
1319 1.1 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
1320 1.1 dyoung char tmpssid[IEEE80211_NWID_LEN];
1321 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1322 1.23 dyoung u_int m;
1323 1.1 dyoung
1324 1.19 dyoung switch (ireq->i_type) {
1325 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1326 1.19 dyoung case IEEE80211_IOC_SSID:
1327 1.19 dyoung switch (ic->ic_state) {
1328 1.19 dyoung case IEEE80211_S_INIT:
1329 1.19 dyoung case IEEE80211_S_SCAN:
1330 1.19 dyoung ireq->i_len = ic->ic_des_esslen;
1331 1.19 dyoung memcpy(tmpssid, ic->ic_des_essid, ireq->i_len);
1332 1.1 dyoung break;
1333 1.19 dyoung default:
1334 1.19 dyoung ireq->i_len = ic->ic_bss->ni_esslen;
1335 1.19 dyoung memcpy(tmpssid, ic->ic_bss->ni_essid,
1336 1.19 dyoung ireq->i_len);
1337 1.1 dyoung break;
1338 1.19 dyoung }
1339 1.19 dyoung error = copyout(tmpssid, ireq->i_data, ireq->i_len);
1340 1.19 dyoung break;
1341 1.19 dyoung case IEEE80211_IOC_NUMSSIDS:
1342 1.19 dyoung ireq->i_val = 1;
1343 1.19 dyoung break;
1344 1.19 dyoung case IEEE80211_IOC_WEP:
1345 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0)
1346 1.19 dyoung ireq->i_val = IEEE80211_WEP_OFF;
1347 1.19 dyoung else if (ic->ic_flags & IEEE80211_F_DROPUNENC)
1348 1.19 dyoung ireq->i_val = IEEE80211_WEP_ON;
1349 1.19 dyoung else
1350 1.19 dyoung ireq->i_val = IEEE80211_WEP_MIXED;
1351 1.19 dyoung break;
1352 1.19 dyoung case IEEE80211_IOC_WEPKEY:
1353 1.19 dyoung kid = (u_int) ireq->i_val;
1354 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1355 1.19 dyoung return EINVAL;
1356 1.19 dyoung len = (u_int) ic->ic_nw_keys[kid].wk_keylen;
1357 1.19 dyoung /* NB: only root can read WEP keys */
1358 1.32 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
1359 1.32 elad &curproc->p_acflag) == 0) {
1360 1.19 dyoung bcopy(ic->ic_nw_keys[kid].wk_key, tmpkey, len);
1361 1.19 dyoung } else {
1362 1.19 dyoung bzero(tmpkey, len);
1363 1.19 dyoung }
1364 1.19 dyoung ireq->i_len = len;
1365 1.19 dyoung error = copyout(tmpkey, ireq->i_data, len);
1366 1.19 dyoung break;
1367 1.19 dyoung case IEEE80211_IOC_NUMWEPKEYS:
1368 1.19 dyoung ireq->i_val = IEEE80211_WEP_NKID;
1369 1.19 dyoung break;
1370 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
1371 1.19 dyoung ireq->i_val = ic->ic_def_txkey;
1372 1.19 dyoung break;
1373 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1374 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
1375 1.19 dyoung if (ic->ic_flags & IEEE80211_F_WPA)
1376 1.19 dyoung ireq->i_val = IEEE80211_AUTH_WPA;
1377 1.19 dyoung else
1378 1.19 dyoung ireq->i_val = ic->ic_bss->ni_authmode;
1379 1.19 dyoung break;
1380 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1381 1.19 dyoung case IEEE80211_IOC_CHANNEL:
1382 1.26 skrll ireq->i_val = ieee80211_chan2ieee(ic, ic->ic_curchan);
1383 1.19 dyoung break;
1384 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
1385 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
1386 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_ON;
1387 1.19 dyoung else
1388 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_OFF;
1389 1.19 dyoung break;
1390 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
1391 1.19 dyoung ireq->i_val = ic->ic_lintval;
1392 1.19 dyoung break;
1393 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1394 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
1395 1.19 dyoung ireq->i_val = ic->ic_rtsthreshold;
1396 1.19 dyoung break;
1397 1.19 dyoung case IEEE80211_IOC_PROTMODE:
1398 1.19 dyoung ireq->i_val = ic->ic_protmode;
1399 1.19 dyoung break;
1400 1.19 dyoung case IEEE80211_IOC_TXPOWER:
1401 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
1402 1.19 dyoung return EINVAL;
1403 1.19 dyoung ireq->i_val = ic->ic_txpowlimit;
1404 1.19 dyoung break;
1405 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
1406 1.19 dyoung ireq->i_val = rsn->rsn_mcastcipher;
1407 1.19 dyoung break;
1408 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
1409 1.19 dyoung ireq->i_val = rsn->rsn_mcastkeylen;
1410 1.19 dyoung break;
1411 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
1412 1.19 dyoung ireq->i_val = 0;
1413 1.19 dyoung for (m = 0x1; m != 0; m <<= 1)
1414 1.19 dyoung if (rsn->rsn_ucastcipherset & m)
1415 1.19 dyoung ireq->i_val |= 1<<cap2cipher(m);
1416 1.19 dyoung break;
1417 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
1418 1.19 dyoung ireq->i_val = rsn->rsn_ucastcipher;
1419 1.19 dyoung break;
1420 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
1421 1.19 dyoung ireq->i_val = rsn->rsn_ucastkeylen;
1422 1.19 dyoung break;
1423 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
1424 1.19 dyoung ireq->i_val = rsn->rsn_keymgmtset;
1425 1.19 dyoung break;
1426 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
1427 1.19 dyoung ireq->i_val = rsn->rsn_caps;
1428 1.19 dyoung break;
1429 1.19 dyoung case IEEE80211_IOC_WPA:
1430 1.19 dyoung switch (ic->ic_flags & IEEE80211_F_WPA) {
1431 1.19 dyoung case IEEE80211_F_WPA1:
1432 1.19 dyoung ireq->i_val = 1;
1433 1.19 dyoung break;
1434 1.19 dyoung case IEEE80211_F_WPA2:
1435 1.19 dyoung ireq->i_val = 2;
1436 1.19 dyoung break;
1437 1.19 dyoung case IEEE80211_F_WPA1 | IEEE80211_F_WPA2:
1438 1.19 dyoung ireq->i_val = 3;
1439 1.19 dyoung break;
1440 1.19 dyoung default:
1441 1.19 dyoung ireq->i_val = 0;
1442 1.19 dyoung break;
1443 1.19 dyoung }
1444 1.19 dyoung break;
1445 1.19 dyoung case IEEE80211_IOC_CHANLIST:
1446 1.19 dyoung error = ieee80211_ioctl_getchanlist(ic, ireq);
1447 1.19 dyoung break;
1448 1.19 dyoung case IEEE80211_IOC_ROAMING:
1449 1.19 dyoung ireq->i_val = ic->ic_roaming;
1450 1.19 dyoung break;
1451 1.19 dyoung case IEEE80211_IOC_PRIVACY:
1452 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PRIVACY) != 0;
1453 1.19 dyoung break;
1454 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
1455 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_DROPUNENC) != 0;
1456 1.19 dyoung break;
1457 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
1458 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_COUNTERM) != 0;
1459 1.19 dyoung break;
1460 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
1461 1.19 dyoung ireq->i_val = ic->ic_caps>>16;
1462 1.19 dyoung ireq->i_len = ic->ic_caps&0xffff;
1463 1.19 dyoung break;
1464 1.19 dyoung case IEEE80211_IOC_WME:
1465 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_WME) != 0;
1466 1.19 dyoung break;
1467 1.19 dyoung case IEEE80211_IOC_HIDESSID:
1468 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_HIDESSID) != 0;
1469 1.19 dyoung break;
1470 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
1471 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_NOBRIDGE) == 0;
1472 1.19 dyoung break;
1473 1.19 dyoung case IEEE80211_IOC_OPTIE:
1474 1.19 dyoung if (ic->ic_opt_ie == NULL)
1475 1.19 dyoung return EINVAL;
1476 1.19 dyoung /* NB: truncate, caller can check length */
1477 1.19 dyoung if (ireq->i_len > ic->ic_opt_ie_len)
1478 1.19 dyoung ireq->i_len = ic->ic_opt_ie_len;
1479 1.19 dyoung error = copyout(ic->ic_opt_ie, ireq->i_data, ireq->i_len);
1480 1.19 dyoung break;
1481 1.19 dyoung case IEEE80211_IOC_WPAKEY:
1482 1.19 dyoung error = ieee80211_ioctl_getkey(ic, ireq);
1483 1.19 dyoung break;
1484 1.19 dyoung case IEEE80211_IOC_CHANINFO:
1485 1.19 dyoung error = ieee80211_ioctl_getchaninfo(ic, ireq);
1486 1.19 dyoung break;
1487 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1488 1.19 dyoung case IEEE80211_IOC_BSSID:
1489 1.19 dyoung if (ireq->i_len != IEEE80211_ADDR_LEN)
1490 1.19 dyoung return EINVAL;
1491 1.19 dyoung error = copyout(ic->ic_state == IEEE80211_S_RUN ?
1492 1.19 dyoung ic->ic_bss->ni_bssid :
1493 1.19 dyoung ic->ic_des_bssid,
1494 1.19 dyoung ireq->i_data, ireq->i_len);
1495 1.19 dyoung break;
1496 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1497 1.19 dyoung case IEEE80211_IOC_WPAIE:
1498 1.19 dyoung error = ieee80211_ioctl_getwpaie(ic, ireq);
1499 1.19 dyoung break;
1500 1.19 dyoung case IEEE80211_IOC_SCAN_RESULTS:
1501 1.19 dyoung error = ieee80211_ioctl_getscanresults(ic, ireq);
1502 1.19 dyoung break;
1503 1.19 dyoung case IEEE80211_IOC_STA_STATS:
1504 1.19 dyoung error = ieee80211_ioctl_getstastats(ic, ireq);
1505 1.19 dyoung break;
1506 1.19 dyoung case IEEE80211_IOC_TXPOWMAX:
1507 1.19 dyoung ireq->i_val = ic->ic_bss->ni_txpower;
1508 1.19 dyoung break;
1509 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
1510 1.19 dyoung error = ieee80211_ioctl_getstatxpow(ic, ireq);
1511 1.19 dyoung break;
1512 1.19 dyoung case IEEE80211_IOC_STA_INFO:
1513 1.19 dyoung error = ieee80211_ioctl_getstainfo(ic, ireq);
1514 1.19 dyoung break;
1515 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1516 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1517 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1518 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1519 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1520 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
1521 1.19 dyoung error = ieee80211_ioctl_getwmeparam(ic, ireq);
1522 1.19 dyoung break;
1523 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
1524 1.19 dyoung ireq->i_val = ic->ic_dtim_period;
1525 1.19 dyoung break;
1526 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
1527 1.19 dyoung /* NB: get from ic_bss for station mode */
1528 1.19 dyoung ireq->i_val = ic->ic_bss->ni_intval;
1529 1.19 dyoung break;
1530 1.21 dyoung case IEEE80211_IOC_PUREG:
1531 1.21 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PUREG) != 0;
1532 1.21 dyoung break;
1533 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
1534 1.30 dyoung ireq->i_val = ic->ic_mcast_rate;
1535 1.30 dyoung break;
1536 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
1537 1.26 skrll ireq->i_val = ic->ic_fragthreshold;
1538 1.26 skrll break;
1539 1.26 skrll case IEEE80211_IOC_MACCMD:
1540 1.26 skrll error = ieee80211_ioctl_getmaccmd(ic, ireq);
1541 1.26 skrll break;
1542 1.19 dyoung default:
1543 1.19 dyoung error = EINVAL;
1544 1.19 dyoung break;
1545 1.19 dyoung }
1546 1.19 dyoung return error;
1547 1.19 dyoung }
1548 1.19 dyoung
1549 1.19 dyoung static int
1550 1.19 dyoung ieee80211_ioctl_setoptie(struct ieee80211com *ic, struct ieee80211req *ireq)
1551 1.19 dyoung {
1552 1.19 dyoung int error;
1553 1.19 dyoung void *ie;
1554 1.19 dyoung
1555 1.19 dyoung /*
1556 1.19 dyoung * NB: Doing this for ap operation could be useful (e.g. for
1557 1.19 dyoung * WPA and/or WME) except that it typically is worthless
1558 1.19 dyoung * without being able to intervene when processing
1559 1.19 dyoung * association response frames--so disallow it for now.
1560 1.19 dyoung */
1561 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1562 1.19 dyoung return EINVAL;
1563 1.19 dyoung if (ireq->i_len > IEEE80211_MAX_OPT_IE)
1564 1.19 dyoung return EINVAL;
1565 1.19 dyoung /* NB: data.length is validated by the wireless extensions code */
1566 1.31 christos ie = malloc(ireq->i_len, M_DEVBUF, M_WAITOK);
1567 1.19 dyoung if (ie == NULL)
1568 1.19 dyoung return ENOMEM;
1569 1.19 dyoung error = copyin(ireq->i_data, ie, ireq->i_len);
1570 1.19 dyoung /* XXX sanity check data? */
1571 1.19 dyoung if (ic->ic_opt_ie != NULL)
1572 1.19 dyoung FREE(ic->ic_opt_ie, M_DEVBUF);
1573 1.19 dyoung ic->ic_opt_ie = ie;
1574 1.19 dyoung ic->ic_opt_ie_len = ireq->i_len;
1575 1.19 dyoung return 0;
1576 1.19 dyoung }
1577 1.19 dyoung
1578 1.19 dyoung static int
1579 1.19 dyoung ieee80211_ioctl_setkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1580 1.19 dyoung {
1581 1.19 dyoung struct ieee80211req_key ik;
1582 1.19 dyoung struct ieee80211_node *ni;
1583 1.19 dyoung struct ieee80211_key *wk;
1584 1.19 dyoung u_int16_t kid;
1585 1.19 dyoung int error;
1586 1.19 dyoung
1587 1.19 dyoung if (ireq->i_len != sizeof(ik))
1588 1.19 dyoung return EINVAL;
1589 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
1590 1.19 dyoung if (error)
1591 1.19 dyoung return error;
1592 1.19 dyoung /* NB: cipher support is verified by ieee80211_crypt_newkey */
1593 1.19 dyoung /* NB: this also checks ik->ik_keylen > sizeof(wk->wk_key) */
1594 1.19 dyoung if (ik.ik_keylen > sizeof(ik.ik_keydata))
1595 1.19 dyoung return E2BIG;
1596 1.19 dyoung kid = ik.ik_keyix;
1597 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
1598 1.19 dyoung /* XXX unicast keys currently must be tx/rx */
1599 1.19 dyoung if (ik.ik_flags != (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV))
1600 1.19 dyoung return EINVAL;
1601 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1602 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1603 1.21 dyoung if (!IEEE80211_ADDR_EQ(ik.ik_macaddr, ni->ni_bssid)) {
1604 1.21 dyoung ieee80211_free_node(ni);
1605 1.19 dyoung return EADDRNOTAVAIL;
1606 1.21 dyoung }
1607 1.19 dyoung } else {
1608 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
1609 1.19 dyoung if (ni == NULL)
1610 1.19 dyoung return ENOENT;
1611 1.19 dyoung }
1612 1.19 dyoung wk = &ni->ni_ucastkey;
1613 1.19 dyoung } else {
1614 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1615 1.19 dyoung return EINVAL;
1616 1.19 dyoung wk = &ic->ic_nw_keys[kid];
1617 1.19 dyoung ni = NULL;
1618 1.19 dyoung }
1619 1.19 dyoung error = 0;
1620 1.19 dyoung ieee80211_key_update_begin(ic);
1621 1.19 dyoung if (ieee80211_crypto_newkey(ic, ik.ik_type, ik.ik_flags, wk)) {
1622 1.19 dyoung wk->wk_keylen = ik.ik_keylen;
1623 1.19 dyoung /* NB: MIC presence is implied by cipher type */
1624 1.19 dyoung if (wk->wk_keylen > IEEE80211_KEYBUF_SIZE)
1625 1.19 dyoung wk->wk_keylen = IEEE80211_KEYBUF_SIZE;
1626 1.19 dyoung wk->wk_keyrsc = ik.ik_keyrsc;
1627 1.19 dyoung wk->wk_keytsc = 0; /* new key, reset */
1628 1.19 dyoung memset(wk->wk_key, 0, sizeof(wk->wk_key));
1629 1.19 dyoung memcpy(wk->wk_key, ik.ik_keydata, ik.ik_keylen);
1630 1.19 dyoung if (!ieee80211_crypto_setkey(ic, wk,
1631 1.19 dyoung ni != NULL ? ni->ni_macaddr : ik.ik_macaddr))
1632 1.19 dyoung error = EIO;
1633 1.19 dyoung else if ((ik.ik_flags & IEEE80211_KEY_DEFAULT))
1634 1.19 dyoung ic->ic_def_txkey = kid;
1635 1.19 dyoung } else
1636 1.19 dyoung error = ENXIO;
1637 1.19 dyoung ieee80211_key_update_end(ic);
1638 1.19 dyoung if (ni != NULL)
1639 1.19 dyoung ieee80211_free_node(ni);
1640 1.19 dyoung return error;
1641 1.19 dyoung }
1642 1.19 dyoung
1643 1.19 dyoung static int
1644 1.19 dyoung ieee80211_ioctl_delkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1645 1.19 dyoung {
1646 1.19 dyoung struct ieee80211req_del_key dk;
1647 1.19 dyoung int kid, error;
1648 1.19 dyoung
1649 1.19 dyoung if (ireq->i_len != sizeof(dk))
1650 1.19 dyoung return EINVAL;
1651 1.19 dyoung error = copyin(ireq->i_data, &dk, sizeof(dk));
1652 1.19 dyoung if (error)
1653 1.19 dyoung return error;
1654 1.19 dyoung kid = dk.idk_keyix;
1655 1.19 dyoung /* XXX u_int8_t -> u_int16_t */
1656 1.19 dyoung if (dk.idk_keyix == (u_int8_t) IEEE80211_KEYIX_NONE) {
1657 1.19 dyoung struct ieee80211_node *ni;
1658 1.19 dyoung
1659 1.21 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1660 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1661 1.21 dyoung if (!IEEE80211_ADDR_EQ(dk.idk_macaddr, ni->ni_bssid)) {
1662 1.21 dyoung ieee80211_free_node(ni);
1663 1.21 dyoung return EADDRNOTAVAIL;
1664 1.21 dyoung }
1665 1.21 dyoung } else {
1666 1.21 dyoung ni = ieee80211_find_node(&ic->ic_sta, dk.idk_macaddr);
1667 1.21 dyoung if (ni == NULL)
1668 1.21 dyoung return ENOENT;
1669 1.21 dyoung }
1670 1.19 dyoung /* XXX error return */
1671 1.26 skrll ieee80211_node_delucastkey(ni);
1672 1.19 dyoung ieee80211_free_node(ni);
1673 1.19 dyoung } else {
1674 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1675 1.19 dyoung return EINVAL;
1676 1.19 dyoung /* XXX error return */
1677 1.19 dyoung ieee80211_crypto_delkey(ic, &ic->ic_nw_keys[kid]);
1678 1.19 dyoung }
1679 1.19 dyoung return 0;
1680 1.19 dyoung }
1681 1.19 dyoung
1682 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1683 1.19 dyoung static void
1684 1.19 dyoung domlme(void *arg, struct ieee80211_node *ni)
1685 1.19 dyoung {
1686 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1687 1.19 dyoung struct ieee80211req_mlme *mlme = arg;
1688 1.19 dyoung
1689 1.19 dyoung if (ni->ni_associd != 0) {
1690 1.19 dyoung IEEE80211_SEND_MGMT(ic, ni,
1691 1.19 dyoung mlme->im_op == IEEE80211_MLME_DEAUTH ?
1692 1.19 dyoung IEEE80211_FC0_SUBTYPE_DEAUTH :
1693 1.19 dyoung IEEE80211_FC0_SUBTYPE_DISASSOC,
1694 1.19 dyoung mlme->im_reason);
1695 1.19 dyoung }
1696 1.19 dyoung ieee80211_node_leave(ic, ni);
1697 1.19 dyoung }
1698 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1699 1.19 dyoung
1700 1.19 dyoung static int
1701 1.19 dyoung ieee80211_ioctl_setmlme(struct ieee80211com *ic, struct ieee80211req *ireq)
1702 1.19 dyoung {
1703 1.19 dyoung struct ieee80211req_mlme mlme;
1704 1.19 dyoung struct ieee80211_node *ni;
1705 1.19 dyoung int error;
1706 1.19 dyoung
1707 1.19 dyoung if (ireq->i_len != sizeof(mlme))
1708 1.19 dyoung return EINVAL;
1709 1.19 dyoung error = copyin(ireq->i_data, &mlme, sizeof(mlme));
1710 1.19 dyoung if (error)
1711 1.19 dyoung return error;
1712 1.19 dyoung switch (mlme.im_op) {
1713 1.19 dyoung case IEEE80211_MLME_ASSOC:
1714 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1715 1.19 dyoung return EINVAL;
1716 1.19 dyoung /* XXX must be in S_SCAN state? */
1717 1.19 dyoung
1718 1.21 dyoung if (mlme.im_ssid_len != 0) {
1719 1.19 dyoung /*
1720 1.19 dyoung * Desired ssid specified; must match both bssid and
1721 1.19 dyoung * ssid to distinguish ap advertising multiple ssid's.
1722 1.19 dyoung */
1723 1.19 dyoung ni = ieee80211_find_node_with_ssid(&ic->ic_scan,
1724 1.19 dyoung mlme.im_macaddr,
1725 1.21 dyoung mlme.im_ssid_len, mlme.im_ssid);
1726 1.19 dyoung } else {
1727 1.19 dyoung /*
1728 1.19 dyoung * Normal case; just match bssid.
1729 1.19 dyoung */
1730 1.19 dyoung ni = ieee80211_find_node(&ic->ic_scan, mlme.im_macaddr);
1731 1.19 dyoung }
1732 1.19 dyoung if (ni == NULL)
1733 1.19 dyoung return EINVAL;
1734 1.19 dyoung if (!ieee80211_sta_join(ic, ni)) {
1735 1.19 dyoung ieee80211_free_node(ni);
1736 1.19 dyoung return EINVAL;
1737 1.19 dyoung }
1738 1.19 dyoung break;
1739 1.19 dyoung case IEEE80211_MLME_DISASSOC:
1740 1.19 dyoung case IEEE80211_MLME_DEAUTH:
1741 1.19 dyoung switch (ic->ic_opmode) {
1742 1.19 dyoung case IEEE80211_M_STA:
1743 1.19 dyoung /* XXX not quite right */
1744 1.19 dyoung ieee80211_new_state(ic, IEEE80211_S_INIT,
1745 1.19 dyoung mlme.im_reason);
1746 1.19 dyoung break;
1747 1.19 dyoung case IEEE80211_M_HOSTAP:
1748 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1749 1.19 dyoung /* NB: the broadcast address means do 'em all */
1750 1.19 dyoung if (!IEEE80211_ADDR_EQ(mlme.im_macaddr, ic->ic_ifp->if_broadcastaddr)) {
1751 1.19 dyoung if ((ni = ieee80211_find_node(&ic->ic_sta,
1752 1.19 dyoung mlme.im_macaddr)) == NULL)
1753 1.19 dyoung return EINVAL;
1754 1.19 dyoung domlme(&mlme, ni);
1755 1.19 dyoung ieee80211_free_node(ni);
1756 1.1 dyoung } else {
1757 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_sta,
1758 1.19 dyoung domlme, &mlme);
1759 1.1 dyoung }
1760 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1761 1.1 dyoung break;
1762 1.19 dyoung default:
1763 1.19 dyoung return EINVAL;
1764 1.19 dyoung }
1765 1.19 dyoung break;
1766 1.19 dyoung case IEEE80211_MLME_AUTHORIZE:
1767 1.19 dyoung case IEEE80211_MLME_UNAUTHORIZE:
1768 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP)
1769 1.19 dyoung return EINVAL;
1770 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, mlme.im_macaddr);
1771 1.19 dyoung if (ni == NULL)
1772 1.19 dyoung return EINVAL;
1773 1.19 dyoung if (mlme.im_op == IEEE80211_MLME_AUTHORIZE)
1774 1.26 skrll ieee80211_node_authorize(ni);
1775 1.19 dyoung else
1776 1.26 skrll ieee80211_node_unauthorize(ni);
1777 1.19 dyoung ieee80211_free_node(ni);
1778 1.19 dyoung break;
1779 1.19 dyoung default:
1780 1.19 dyoung return EINVAL;
1781 1.19 dyoung }
1782 1.19 dyoung return 0;
1783 1.19 dyoung }
1784 1.19 dyoung
1785 1.19 dyoung static int
1786 1.19 dyoung ieee80211_ioctl_macmac(struct ieee80211com *ic, struct ieee80211req *ireq)
1787 1.19 dyoung {
1788 1.19 dyoung u_int8_t mac[IEEE80211_ADDR_LEN];
1789 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1790 1.19 dyoung int error;
1791 1.19 dyoung
1792 1.19 dyoung if (ireq->i_len != sizeof(mac))
1793 1.19 dyoung return EINVAL;
1794 1.19 dyoung error = copyin(ireq->i_data, mac, ireq->i_len);
1795 1.19 dyoung if (error)
1796 1.19 dyoung return error;
1797 1.19 dyoung if (acl == NULL) {
1798 1.19 dyoung acl = ieee80211_aclator_get("mac");
1799 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1800 1.19 dyoung return EINVAL;
1801 1.19 dyoung ic->ic_acl = acl;
1802 1.19 dyoung }
1803 1.19 dyoung if (ireq->i_type == IEEE80211_IOC_ADDMAC)
1804 1.19 dyoung acl->iac_add(ic, mac);
1805 1.19 dyoung else
1806 1.19 dyoung acl->iac_remove(ic, mac);
1807 1.19 dyoung return 0;
1808 1.19 dyoung }
1809 1.19 dyoung
1810 1.19 dyoung static int
1811 1.26 skrll ieee80211_ioctl_setmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1812 1.19 dyoung {
1813 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1814 1.19 dyoung
1815 1.19 dyoung switch (ireq->i_val) {
1816 1.19 dyoung case IEEE80211_MACCMD_POLICY_OPEN:
1817 1.19 dyoung case IEEE80211_MACCMD_POLICY_ALLOW:
1818 1.19 dyoung case IEEE80211_MACCMD_POLICY_DENY:
1819 1.19 dyoung if (acl == NULL) {
1820 1.19 dyoung acl = ieee80211_aclator_get("mac");
1821 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1822 1.19 dyoung return EINVAL;
1823 1.19 dyoung ic->ic_acl = acl;
1824 1.19 dyoung }
1825 1.19 dyoung acl->iac_setpolicy(ic, ireq->i_val);
1826 1.19 dyoung break;
1827 1.19 dyoung case IEEE80211_MACCMD_FLUSH:
1828 1.19 dyoung if (acl != NULL)
1829 1.19 dyoung acl->iac_flush(ic);
1830 1.19 dyoung /* NB: silently ignore when not in use */
1831 1.19 dyoung break;
1832 1.19 dyoung case IEEE80211_MACCMD_DETACH:
1833 1.19 dyoung if (acl != NULL) {
1834 1.19 dyoung ic->ic_acl = NULL;
1835 1.19 dyoung acl->iac_detach(ic);
1836 1.19 dyoung }
1837 1.19 dyoung break;
1838 1.19 dyoung default:
1839 1.26 skrll if (acl == NULL)
1840 1.26 skrll return EINVAL;
1841 1.26 skrll else
1842 1.26 skrll return acl->iac_setioctl(ic, ireq);
1843 1.19 dyoung }
1844 1.19 dyoung return 0;
1845 1.19 dyoung }
1846 1.19 dyoung
1847 1.19 dyoung static int
1848 1.19 dyoung ieee80211_ioctl_setchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
1849 1.19 dyoung {
1850 1.19 dyoung struct ieee80211req_chanlist list;
1851 1.19 dyoung u_char chanlist[IEEE80211_CHAN_BYTES];
1852 1.19 dyoung int i, j, error;
1853 1.19 dyoung
1854 1.19 dyoung if (ireq->i_len != sizeof(list))
1855 1.19 dyoung return EINVAL;
1856 1.19 dyoung error = copyin(ireq->i_data, &list, sizeof(list));
1857 1.19 dyoung if (error)
1858 1.19 dyoung return error;
1859 1.19 dyoung memset(chanlist, 0, sizeof(chanlist));
1860 1.19 dyoung /*
1861 1.19 dyoung * Since channel 0 is not available for DS, channel 1
1862 1.19 dyoung * is assigned to LSB on WaveLAN.
1863 1.19 dyoung */
1864 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
1865 1.19 dyoung i = 1;
1866 1.19 dyoung else
1867 1.19 dyoung i = 0;
1868 1.19 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
1869 1.19 dyoung /*
1870 1.19 dyoung * NB: silently discard unavailable channels so users
1871 1.19 dyoung * can specify 1-255 to get all available channels.
1872 1.19 dyoung */
1873 1.19 dyoung if (isset(list.ic_channels, j) && isset(ic->ic_chan_avail, i))
1874 1.19 dyoung setbit(chanlist, i);
1875 1.19 dyoung }
1876 1.19 dyoung if (ic->ic_ibss_chan == NULL ||
1877 1.19 dyoung isclr(chanlist, ieee80211_chan2ieee(ic, ic->ic_ibss_chan))) {
1878 1.19 dyoung for (i = 0; i <= IEEE80211_CHAN_MAX; i++)
1879 1.19 dyoung if (isset(chanlist, i)) {
1880 1.19 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
1881 1.19 dyoung goto found;
1882 1.1 dyoung }
1883 1.19 dyoung return EINVAL; /* no active channels */
1884 1.19 dyoung found:
1885 1.19 dyoung ;
1886 1.19 dyoung }
1887 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
1888 1.19 dyoung return IS_UP_AUTO(ic) ? ENETRESET : 0;
1889 1.19 dyoung }
1890 1.19 dyoung
1891 1.19 dyoung static int
1892 1.19 dyoung ieee80211_ioctl_setstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1893 1.19 dyoung {
1894 1.19 dyoung struct ieee80211_node *ni;
1895 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1896 1.19 dyoung int error;
1897 1.19 dyoung
1898 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1899 1.19 dyoung return EINVAL;
1900 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1901 1.19 dyoung if (error != 0)
1902 1.19 dyoung return error;
1903 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1904 1.19 dyoung if (ni == NULL)
1905 1.19 dyoung return EINVAL; /* XXX */
1906 1.19 dyoung ni->ni_txpower = txpow.it_txpow;
1907 1.19 dyoung ieee80211_free_node(ni);
1908 1.19 dyoung return error;
1909 1.19 dyoung }
1910 1.19 dyoung
1911 1.19 dyoung static int
1912 1.19 dyoung ieee80211_ioctl_setwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1913 1.19 dyoung {
1914 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1915 1.19 dyoung struct wmeParams *wmep, *chanp;
1916 1.19 dyoung int isbss, ac;
1917 1.19 dyoung
1918 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1919 1.19 dyoung return EINVAL;
1920 1.19 dyoung
1921 1.19 dyoung isbss = (ireq->i_len & IEEE80211_WMEPARAM_BSS);
1922 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1923 1.19 dyoung if (ac >= WME_NUM_AC)
1924 1.19 dyoung ac = WME_AC_BE;
1925 1.19 dyoung if (isbss) {
1926 1.19 dyoung chanp = &wme->wme_bssChanParams.cap_wmeParams[ac];
1927 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1928 1.19 dyoung } else {
1929 1.19 dyoung chanp = &wme->wme_chanParams.cap_wmeParams[ac];
1930 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1931 1.19 dyoung }
1932 1.19 dyoung switch (ireq->i_type) {
1933 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1934 1.19 dyoung if (isbss) {
1935 1.19 dyoung wmep->wmep_logcwmin = ireq->i_val;
1936 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1937 1.19 dyoung chanp->wmep_logcwmin = ireq->i_val;
1938 1.19 dyoung } else {
1939 1.19 dyoung wmep->wmep_logcwmin = chanp->wmep_logcwmin =
1940 1.19 dyoung ireq->i_val;
1941 1.19 dyoung }
1942 1.19 dyoung break;
1943 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1944 1.19 dyoung if (isbss) {
1945 1.19 dyoung wmep->wmep_logcwmax = ireq->i_val;
1946 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1947 1.19 dyoung chanp->wmep_logcwmax = ireq->i_val;
1948 1.19 dyoung } else {
1949 1.19 dyoung wmep->wmep_logcwmax = chanp->wmep_logcwmax =
1950 1.19 dyoung ireq->i_val;
1951 1.19 dyoung }
1952 1.19 dyoung break;
1953 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1954 1.19 dyoung if (isbss) {
1955 1.19 dyoung wmep->wmep_aifsn = ireq->i_val;
1956 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1957 1.19 dyoung chanp->wmep_aifsn = ireq->i_val;
1958 1.19 dyoung } else {
1959 1.19 dyoung wmep->wmep_aifsn = chanp->wmep_aifsn = ireq->i_val;
1960 1.19 dyoung }
1961 1.19 dyoung break;
1962 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1963 1.19 dyoung if (isbss) {
1964 1.19 dyoung wmep->wmep_txopLimit = ireq->i_val;
1965 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1966 1.19 dyoung chanp->wmep_txopLimit = ireq->i_val;
1967 1.19 dyoung } else {
1968 1.19 dyoung wmep->wmep_txopLimit = chanp->wmep_txopLimit =
1969 1.19 dyoung ireq->i_val;
1970 1.19 dyoung }
1971 1.19 dyoung break;
1972 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1973 1.19 dyoung wmep->wmep_acm = ireq->i_val;
1974 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1975 1.19 dyoung chanp->wmep_acm = ireq->i_val;
1976 1.19 dyoung break;
1977 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1978 1.19 dyoung wmep->wmep_noackPolicy = chanp->wmep_noackPolicy =
1979 1.19 dyoung (ireq->i_val) == 0;
1980 1.19 dyoung break;
1981 1.19 dyoung }
1982 1.19 dyoung ieee80211_wme_updateparams(ic);
1983 1.19 dyoung return 0;
1984 1.19 dyoung }
1985 1.19 dyoung
1986 1.19 dyoung static int
1987 1.19 dyoung cipher2cap(int cipher)
1988 1.19 dyoung {
1989 1.19 dyoung switch (cipher) {
1990 1.19 dyoung case IEEE80211_CIPHER_WEP: return IEEE80211_C_WEP;
1991 1.19 dyoung case IEEE80211_CIPHER_AES_OCB: return IEEE80211_C_AES;
1992 1.19 dyoung case IEEE80211_CIPHER_AES_CCM: return IEEE80211_C_AES_CCM;
1993 1.19 dyoung case IEEE80211_CIPHER_CKIP: return IEEE80211_C_CKIP;
1994 1.19 dyoung case IEEE80211_CIPHER_TKIP: return IEEE80211_C_TKIP;
1995 1.19 dyoung }
1996 1.19 dyoung return 0;
1997 1.19 dyoung }
1998 1.19 dyoung
1999 1.19 dyoung static int
2000 1.19 dyoung ieee80211_ioctl_set80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
2001 1.19 dyoung {
2002 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2003 1.19 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2004 1.19 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
2005 1.19 dyoung char tmpssid[IEEE80211_NWID_LEN];
2006 1.19 dyoung u_int8_t tmpbssid[IEEE80211_ADDR_LEN];
2007 1.19 dyoung struct ieee80211_key *k;
2008 1.23 dyoung u_int kid;
2009 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2010 1.23 dyoung struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
2011 1.23 dyoung int error;
2012 1.23 dyoung const struct ieee80211_authenticator *auth;
2013 1.19 dyoung int j, caps;
2014 1.19 dyoung
2015 1.19 dyoung error = 0;
2016 1.19 dyoung switch (ireq->i_type) {
2017 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2018 1.19 dyoung case IEEE80211_IOC_SSID:
2019 1.19 dyoung if (ireq->i_val != 0 ||
2020 1.19 dyoung ireq->i_len > IEEE80211_NWID_LEN)
2021 1.19 dyoung return EINVAL;
2022 1.19 dyoung error = copyin(ireq->i_data, tmpssid, ireq->i_len);
2023 1.19 dyoung if (error)
2024 1.1 dyoung break;
2025 1.19 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2026 1.19 dyoung ic->ic_des_esslen = ireq->i_len;
2027 1.19 dyoung memcpy(ic->ic_des_essid, tmpssid, ireq->i_len);
2028 1.19 dyoung error = ENETRESET;
2029 1.19 dyoung break;
2030 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2031 1.19 dyoung case IEEE80211_IOC_WEP:
2032 1.19 dyoung switch (ireq->i_val) {
2033 1.19 dyoung case IEEE80211_WEP_OFF:
2034 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2035 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2036 1.1 dyoung break;
2037 1.19 dyoung case IEEE80211_WEP_ON:
2038 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2039 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2040 1.1 dyoung break;
2041 1.19 dyoung case IEEE80211_WEP_MIXED:
2042 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2043 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2044 1.1 dyoung break;
2045 1.19 dyoung }
2046 1.19 dyoung error = ENETRESET;
2047 1.19 dyoung break;
2048 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2049 1.19 dyoung case IEEE80211_IOC_WEPKEY:
2050 1.19 dyoung kid = (u_int) ireq->i_val;
2051 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
2052 1.19 dyoung return EINVAL;
2053 1.19 dyoung k = &ic->ic_nw_keys[kid];
2054 1.19 dyoung if (ireq->i_len == 0) {
2055 1.19 dyoung /* zero-len =>'s delete any existing key */
2056 1.19 dyoung (void) ieee80211_crypto_delkey(ic, k);
2057 1.1 dyoung break;
2058 1.19 dyoung }
2059 1.19 dyoung if (ireq->i_len > sizeof(tmpkey))
2060 1.19 dyoung return EINVAL;
2061 1.19 dyoung memset(tmpkey, 0, sizeof(tmpkey));
2062 1.19 dyoung error = copyin(ireq->i_data, tmpkey, ireq->i_len);
2063 1.19 dyoung if (error)
2064 1.1 dyoung break;
2065 1.19 dyoung ieee80211_key_update_begin(ic);
2066 1.19 dyoung k->wk_keyix = kid; /* NB: force fixed key id */
2067 1.19 dyoung if (ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2068 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2069 1.19 dyoung k->wk_keylen = ireq->i_len;
2070 1.19 dyoung memcpy(k->wk_key, tmpkey, sizeof(tmpkey));
2071 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2072 1.19 dyoung error = EINVAL;
2073 1.19 dyoung } else
2074 1.19 dyoung error = EINVAL;
2075 1.19 dyoung ieee80211_key_update_end(ic);
2076 1.21 dyoung if (!error) /* NB: for compatibility */
2077 1.21 dyoung error = ENETRESET;
2078 1.19 dyoung break;
2079 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
2080 1.19 dyoung kid = (u_int) ireq->i_val;
2081 1.19 dyoung if (kid >= IEEE80211_WEP_NKID &&
2082 1.19 dyoung (u_int16_t) kid != IEEE80211_KEYIX_NONE)
2083 1.19 dyoung return EINVAL;
2084 1.19 dyoung ic->ic_def_txkey = kid;
2085 1.19 dyoung error = ENETRESET; /* push to hardware */
2086 1.19 dyoung break;
2087 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2088 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
2089 1.19 dyoung switch (ireq->i_val) {
2090 1.19 dyoung case IEEE80211_AUTH_WPA:
2091 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2092 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2093 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2094 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2095 1.19 dyoung auth = ieee80211_authenticator_get(ireq->i_val);
2096 1.19 dyoung if (auth == NULL)
2097 1.19 dyoung return EINVAL;
2098 1.1 dyoung break;
2099 1.19 dyoung default:
2100 1.19 dyoung return EINVAL;
2101 1.19 dyoung }
2102 1.19 dyoung switch (ireq->i_val) {
2103 1.19 dyoung case IEEE80211_AUTH_WPA: /* WPA w/ 802.1x */
2104 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2105 1.19 dyoung ireq->i_val = IEEE80211_AUTH_8021X;
2106 1.1 dyoung break;
2107 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2108 1.19 dyoung ic->ic_flags &= ~(IEEE80211_F_WPA|IEEE80211_F_PRIVACY);
2109 1.10 dyoung break;
2110 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2111 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2112 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2113 1.19 dyoung /* both require a key so mark the PRIVACY capability */
2114 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2115 1.10 dyoung break;
2116 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2117 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2118 1.19 dyoung /* XXX PRIVACY handling? */
2119 1.19 dyoung /* XXX what's the right way to do this? */
2120 1.10 dyoung break;
2121 1.1 dyoung }
2122 1.19 dyoung /* NB: authenticator attach/detach happens on state change */
2123 1.19 dyoung ic->ic_bss->ni_authmode = ireq->i_val;
2124 1.19 dyoung /* XXX mixed/mode/usage? */
2125 1.19 dyoung ic->ic_auth = auth;
2126 1.19 dyoung error = ENETRESET;
2127 1.1 dyoung break;
2128 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2129 1.19 dyoung case IEEE80211_IOC_CHANNEL:
2130 1.19 dyoung /* XXX 0xffff overflows 16-bit signed */
2131 1.19 dyoung if (ireq->i_val == 0 ||
2132 1.19 dyoung ireq->i_val == (int16_t) IEEE80211_CHAN_ANY)
2133 1.19 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2134 1.19 dyoung else if ((u_int) ireq->i_val > IEEE80211_CHAN_MAX ||
2135 1.19 dyoung isclr(ic->ic_chan_active, ireq->i_val)) {
2136 1.19 dyoung return EINVAL;
2137 1.19 dyoung } else
2138 1.19 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2139 1.19 dyoung &ic->ic_channels[ireq->i_val];
2140 1.19 dyoung switch (ic->ic_state) {
2141 1.19 dyoung case IEEE80211_S_INIT:
2142 1.19 dyoung case IEEE80211_S_SCAN:
2143 1.1 dyoung error = ENETRESET;
2144 1.1 dyoung break;
2145 1.19 dyoung default:
2146 1.1 dyoung /*
2147 1.19 dyoung * If the desired channel has changed (to something
2148 1.19 dyoung * other than any) and we're not already scanning,
2149 1.19 dyoung * then kick the state machine.
2150 1.1 dyoung */
2151 1.19 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2152 1.19 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan &&
2153 1.19 dyoung (ic->ic_flags & IEEE80211_F_SCAN) == 0)
2154 1.19 dyoung error = ENETRESET;
2155 1.1 dyoung break;
2156 1.19 dyoung }
2157 1.26 skrll if (error == ENETRESET &&
2158 1.26 skrll ic->ic_opmode == IEEE80211_M_MONITOR) {
2159 1.26 skrll if (IS_UP(ic)) {
2160 1.26 skrll /*
2161 1.26 skrll * Monitor mode can switch directly.
2162 1.26 skrll */
2163 1.26 skrll if (ic->ic_des_chan != IEEE80211_CHAN_ANYC)
2164 1.26 skrll ic->ic_curchan = ic->ic_des_chan;
2165 1.26 skrll error = ic->ic_reset(ic->ic_ifp);
2166 1.26 skrll } else
2167 1.26 skrll error = 0;
2168 1.26 skrll }
2169 1.19 dyoung break;
2170 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
2171 1.19 dyoung switch (ireq->i_val) {
2172 1.19 dyoung case IEEE80211_POWERSAVE_OFF:
2173 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2174 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2175 1.19 dyoung error = ENETRESET;
2176 1.18 perry }
2177 1.1 dyoung break;
2178 1.19 dyoung case IEEE80211_POWERSAVE_ON:
2179 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2180 1.1 dyoung error = EINVAL;
2181 1.19 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2182 1.19 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2183 1.19 dyoung error = ENETRESET;
2184 1.1 dyoung }
2185 1.1 dyoung break;
2186 1.19 dyoung default:
2187 1.19 dyoung error = EINVAL;
2188 1.1 dyoung break;
2189 1.19 dyoung }
2190 1.19 dyoung break;
2191 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
2192 1.19 dyoung if (ireq->i_val < 0)
2193 1.19 dyoung return EINVAL;
2194 1.19 dyoung ic->ic_lintval = ireq->i_val;
2195 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2196 1.19 dyoung break;
2197 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2198 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
2199 1.26 skrll if (!(IEEE80211_RTS_MIN <= ireq->i_val &&
2200 1.26 skrll ireq->i_val <= IEEE80211_RTS_MAX))
2201 1.19 dyoung return EINVAL;
2202 1.19 dyoung ic->ic_rtsthreshold = ireq->i_val;
2203 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2204 1.19 dyoung break;
2205 1.19 dyoung case IEEE80211_IOC_PROTMODE:
2206 1.19 dyoung if (ireq->i_val > IEEE80211_PROT_RTSCTS)
2207 1.19 dyoung return EINVAL;
2208 1.19 dyoung ic->ic_protmode = ireq->i_val;
2209 1.19 dyoung /* NB: if not operating in 11g this can wait */
2210 1.19 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2211 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2212 1.19 dyoung break;
2213 1.19 dyoung case IEEE80211_IOC_TXPOWER:
2214 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
2215 1.19 dyoung return EINVAL;
2216 1.19 dyoung if (!(IEEE80211_TXPOWER_MIN < ireq->i_val &&
2217 1.19 dyoung ireq->i_val < IEEE80211_TXPOWER_MAX))
2218 1.19 dyoung return EINVAL;
2219 1.19 dyoung ic->ic_txpowlimit = ireq->i_val;
2220 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2221 1.19 dyoung break;
2222 1.19 dyoung case IEEE80211_IOC_ROAMING:
2223 1.19 dyoung if (!(IEEE80211_ROAMING_DEVICE <= ireq->i_val &&
2224 1.19 dyoung ireq->i_val <= IEEE80211_ROAMING_MANUAL))
2225 1.19 dyoung return EINVAL;
2226 1.19 dyoung ic->ic_roaming = ireq->i_val;
2227 1.19 dyoung /* XXXX reset? */
2228 1.19 dyoung break;
2229 1.19 dyoung case IEEE80211_IOC_PRIVACY:
2230 1.19 dyoung if (ireq->i_val) {
2231 1.19 dyoung /* XXX check for key state? */
2232 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2233 1.19 dyoung } else
2234 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2235 1.19 dyoung break;
2236 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
2237 1.19 dyoung if (ireq->i_val)
2238 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2239 1.19 dyoung else
2240 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2241 1.19 dyoung break;
2242 1.19 dyoung case IEEE80211_IOC_WPAKEY:
2243 1.19 dyoung error = ieee80211_ioctl_setkey(ic, ireq);
2244 1.19 dyoung break;
2245 1.19 dyoung case IEEE80211_IOC_DELKEY:
2246 1.19 dyoung error = ieee80211_ioctl_delkey(ic, ireq);
2247 1.19 dyoung break;
2248 1.19 dyoung case IEEE80211_IOC_MLME:
2249 1.19 dyoung error = ieee80211_ioctl_setmlme(ic, ireq);
2250 1.19 dyoung break;
2251 1.19 dyoung case IEEE80211_IOC_OPTIE:
2252 1.19 dyoung error = ieee80211_ioctl_setoptie(ic, ireq);
2253 1.19 dyoung break;
2254 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
2255 1.19 dyoung if (ireq->i_val) {
2256 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_WPA) == 0)
2257 1.19 dyoung return EINVAL;
2258 1.19 dyoung ic->ic_flags |= IEEE80211_F_COUNTERM;
2259 1.19 dyoung } else
2260 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_COUNTERM;
2261 1.19 dyoung break;
2262 1.19 dyoung case IEEE80211_IOC_WPA:
2263 1.19 dyoung if (ireq->i_val > 3)
2264 1.19 dyoung return EINVAL;
2265 1.19 dyoung /* XXX verify ciphers available */
2266 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2267 1.19 dyoung switch (ireq->i_val) {
2268 1.19 dyoung case 1:
2269 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1;
2270 1.1 dyoung break;
2271 1.19 dyoung case 2:
2272 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA2;
2273 1.1 dyoung break;
2274 1.19 dyoung case 3:
2275 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1 | IEEE80211_F_WPA2;
2276 1.1 dyoung break;
2277 1.19 dyoung }
2278 1.19 dyoung error = ENETRESET; /* XXX? */
2279 1.19 dyoung break;
2280 1.19 dyoung case IEEE80211_IOC_WME:
2281 1.19 dyoung if (ireq->i_val) {
2282 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
2283 1.19 dyoung return EINVAL;
2284 1.19 dyoung ic->ic_flags |= IEEE80211_F_WME;
2285 1.19 dyoung } else
2286 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WME;
2287 1.19 dyoung error = ENETRESET; /* XXX maybe not for station? */
2288 1.19 dyoung break;
2289 1.19 dyoung case IEEE80211_IOC_HIDESSID:
2290 1.19 dyoung if (ireq->i_val)
2291 1.19 dyoung ic->ic_flags |= IEEE80211_F_HIDESSID;
2292 1.19 dyoung else
2293 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_HIDESSID;
2294 1.19 dyoung error = ENETRESET;
2295 1.19 dyoung break;
2296 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
2297 1.19 dyoung if (ireq->i_val == 0)
2298 1.19 dyoung ic->ic_flags |= IEEE80211_F_NOBRIDGE;
2299 1.19 dyoung else
2300 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_NOBRIDGE;
2301 1.19 dyoung break;
2302 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
2303 1.19 dyoung if ((ic->ic_caps & cipher2cap(ireq->i_val)) == 0 &&
2304 1.19 dyoung !ieee80211_crypto_available(ireq->i_val))
2305 1.19 dyoung return EINVAL;
2306 1.19 dyoung rsn->rsn_mcastcipher = ireq->i_val;
2307 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2308 1.19 dyoung break;
2309 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
2310 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2311 1.19 dyoung return EINVAL;
2312 1.19 dyoung /* XXX no way to verify driver capability */
2313 1.19 dyoung rsn->rsn_mcastkeylen = ireq->i_val;
2314 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2315 1.19 dyoung break;
2316 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
2317 1.19 dyoung /*
2318 1.19 dyoung * Convert user-specified cipher set to the set
2319 1.19 dyoung * we can support (via hardware or software).
2320 1.19 dyoung * NB: this logic intentionally ignores unknown and
2321 1.19 dyoung * unsupported ciphers so folks can specify 0xff or
2322 1.19 dyoung * similar and get all available ciphers.
2323 1.19 dyoung */
2324 1.19 dyoung caps = 0;
2325 1.19 dyoung for (j = 1; j < 32; j++) /* NB: skip WEP */
2326 1.19 dyoung if ((ireq->i_val & (1<<j)) &&
2327 1.19 dyoung ((ic->ic_caps & cipher2cap(j)) ||
2328 1.19 dyoung ieee80211_crypto_available(j)))
2329 1.19 dyoung caps |= 1<<j;
2330 1.19 dyoung if (caps == 0) /* nothing available */
2331 1.19 dyoung return EINVAL;
2332 1.19 dyoung /* XXX verify ciphers ok for unicast use? */
2333 1.19 dyoung /* XXX disallow if running as it'll have no effect */
2334 1.19 dyoung rsn->rsn_ucastcipherset = caps;
2335 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2336 1.19 dyoung break;
2337 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
2338 1.19 dyoung if ((rsn->rsn_ucastcipherset & cipher2cap(ireq->i_val)) == 0)
2339 1.19 dyoung return EINVAL;
2340 1.19 dyoung rsn->rsn_ucastcipher = ireq->i_val;
2341 1.19 dyoung break;
2342 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
2343 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2344 1.19 dyoung return EINVAL;
2345 1.19 dyoung /* XXX no way to verify driver capability */
2346 1.19 dyoung rsn->rsn_ucastkeylen = ireq->i_val;
2347 1.19 dyoung break;
2348 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
2349 1.19 dyoung /* NB: for testing */
2350 1.19 dyoung ic->ic_caps = (((u_int16_t) ireq->i_val) << 16) |
2351 1.19 dyoung ((u_int16_t) ireq->i_len);
2352 1.19 dyoung break;
2353 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
2354 1.19 dyoung /* XXX check */
2355 1.19 dyoung rsn->rsn_keymgmtset = ireq->i_val;
2356 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2357 1.19 dyoung break;
2358 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
2359 1.19 dyoung /* XXX check */
2360 1.19 dyoung rsn->rsn_caps = ireq->i_val;
2361 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2362 1.19 dyoung break;
2363 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2364 1.19 dyoung case IEEE80211_IOC_BSSID:
2365 1.19 dyoung /* NB: should only be set when in STA mode */
2366 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
2367 1.19 dyoung return EINVAL;
2368 1.19 dyoung if (ireq->i_len != sizeof(tmpbssid))
2369 1.19 dyoung return EINVAL;
2370 1.19 dyoung error = copyin(ireq->i_data, tmpbssid, ireq->i_len);
2371 1.19 dyoung if (error)
2372 1.1 dyoung break;
2373 1.19 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, tmpbssid);
2374 1.19 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2375 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2376 1.19 dyoung else
2377 1.19 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2378 1.19 dyoung error = ENETRESET;
2379 1.19 dyoung break;
2380 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2381 1.19 dyoung case IEEE80211_IOC_CHANLIST:
2382 1.19 dyoung error = ieee80211_ioctl_setchanlist(ic, ireq);
2383 1.19 dyoung break;
2384 1.19 dyoung case IEEE80211_IOC_SCAN_REQ:
2385 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) /* XXX ignore */
2386 1.10 dyoung break;
2387 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
2388 1.19 dyoung if (error == 0) /* XXX background scan */
2389 1.19 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
2390 1.19 dyoung break;
2391 1.19 dyoung case IEEE80211_IOC_ADDMAC:
2392 1.19 dyoung case IEEE80211_IOC_DELMAC:
2393 1.19 dyoung error = ieee80211_ioctl_macmac(ic, ireq);
2394 1.19 dyoung break;
2395 1.19 dyoung case IEEE80211_IOC_MACCMD:
2396 1.26 skrll error = ieee80211_ioctl_setmaccmd(ic, ireq);
2397 1.19 dyoung break;
2398 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
2399 1.19 dyoung error = ieee80211_ioctl_setstatxpow(ic, ireq);
2400 1.19 dyoung break;
2401 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
2402 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
2403 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
2404 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
2405 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
2406 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
2407 1.19 dyoung error = ieee80211_ioctl_setwmeparam(ic, ireq);
2408 1.19 dyoung break;
2409 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
2410 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2411 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2412 1.19 dyoung return EINVAL;
2413 1.19 dyoung if (IEEE80211_DTIM_MIN <= ireq->i_val &&
2414 1.19 dyoung ireq->i_val <= IEEE80211_DTIM_MAX) {
2415 1.19 dyoung ic->ic_dtim_period = ireq->i_val;
2416 1.19 dyoung error = ENETRESET; /* requires restart */
2417 1.19 dyoung } else
2418 1.19 dyoung error = EINVAL;
2419 1.19 dyoung break;
2420 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
2421 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2422 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2423 1.19 dyoung return EINVAL;
2424 1.19 dyoung if (IEEE80211_BINTVAL_MIN <= ireq->i_val &&
2425 1.19 dyoung ireq->i_val <= IEEE80211_BINTVAL_MAX) {
2426 1.26 skrll ic->ic_bintval = ireq->i_val;
2427 1.19 dyoung error = ENETRESET; /* requires restart */
2428 1.19 dyoung } else
2429 1.1 dyoung error = EINVAL;
2430 1.19 dyoung break;
2431 1.21 dyoung case IEEE80211_IOC_PUREG:
2432 1.21 dyoung if (ireq->i_val)
2433 1.21 dyoung ic->ic_flags |= IEEE80211_F_PUREG;
2434 1.21 dyoung else
2435 1.21 dyoung ic->ic_flags &= ~IEEE80211_F_PUREG;
2436 1.21 dyoung /* NB: reset only if we're operating on an 11g channel */
2437 1.21 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2438 1.21 dyoung error = ENETRESET;
2439 1.21 dyoung break;
2440 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
2441 1.30 dyoung ic->ic_mcast_rate = ireq->i_val & IEEE80211_RATE_VAL;
2442 1.30 dyoung break;
2443 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
2444 1.26 skrll if ((ic->ic_caps & IEEE80211_C_TXFRAG) == 0 &&
2445 1.26 skrll ireq->i_val != IEEE80211_FRAG_MAX)
2446 1.26 skrll return EINVAL;
2447 1.26 skrll if (!(IEEE80211_FRAG_MIN <= ireq->i_val &&
2448 1.26 skrll ireq->i_val <= IEEE80211_FRAG_MAX))
2449 1.26 skrll return EINVAL;
2450 1.26 skrll ic->ic_fragthreshold = ireq->i_val;
2451 1.26 skrll error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2452 1.26 skrll break;
2453 1.19 dyoung default:
2454 1.19 dyoung error = EINVAL;
2455 1.19 dyoung break;
2456 1.19 dyoung }
2457 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
2458 1.19 dyoung error = 0;
2459 1.19 dyoung return error;
2460 1.19 dyoung }
2461 1.19 dyoung
2462 1.19 dyoung #ifdef __FreeBSD__
2463 1.19 dyoung int
2464 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2465 1.19 dyoung {
2466 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2467 1.19 dyoung int error = 0;
2468 1.19 dyoung struct ifreq *ifr;
2469 1.19 dyoung struct ifaddr *ifa; /* XXX */
2470 1.19 dyoung
2471 1.19 dyoung switch (cmd) {
2472 1.19 dyoung case SIOCSIFMEDIA:
2473 1.19 dyoung case SIOCGIFMEDIA:
2474 1.19 dyoung error = ifmedia_ioctl(ifp, (struct ifreq *) data,
2475 1.19 dyoung &ic->ic_media, cmd);
2476 1.19 dyoung break;
2477 1.19 dyoung case SIOCG80211:
2478 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2479 1.19 dyoung (struct ieee80211req *) data);
2480 1.19 dyoung break;
2481 1.19 dyoung case SIOCS80211:
2482 1.19 dyoung error = suser(curthread);
2483 1.19 dyoung if (error == 0)
2484 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2485 1.19 dyoung (struct ieee80211req *) data);
2486 1.1 dyoung break;
2487 1.1 dyoung case SIOCGIFGENERIC:
2488 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2489 1.1 dyoung break;
2490 1.1 dyoung case SIOCSIFGENERIC:
2491 1.19 dyoung error = suser(curthread);
2492 1.1 dyoung if (error)
2493 1.1 dyoung break;
2494 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2495 1.19 dyoung break;
2496 1.19 dyoung case SIOCG80211STATS:
2497 1.19 dyoung ifr = (struct ifreq *)data;
2498 1.19 dyoung copyout(&ic->ic_stats, ifr->ifr_data, sizeof (ic->ic_stats));
2499 1.19 dyoung break;
2500 1.19 dyoung case SIOCSIFMTU:
2501 1.19 dyoung ifr = (struct ifreq *)data;
2502 1.19 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2503 1.19 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2504 1.19 dyoung error = EINVAL;
2505 1.19 dyoung else
2506 1.19 dyoung ifp->if_mtu = ifr->ifr_mtu;
2507 1.19 dyoung break;
2508 1.19 dyoung case SIOCSIFADDR:
2509 1.19 dyoung /*
2510 1.19 dyoung * XXX Handle this directly so we can supress if_init calls.
2511 1.19 dyoung * XXX This should be done in ether_ioctl but for the moment
2512 1.19 dyoung * XXX there are too many other parts of the system that
2513 1.19 dyoung * XXX set IFF_UP and so supress if_init being called when
2514 1.19 dyoung * XXX it should be.
2515 1.19 dyoung */
2516 1.19 dyoung ifa = (struct ifaddr *) data;
2517 1.19 dyoung switch (ifa->ifa_addr->sa_family) {
2518 1.19 dyoung #ifdef INET
2519 1.19 dyoung case AF_INET:
2520 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2521 1.19 dyoung ifp->if_flags |= IFF_UP;
2522 1.19 dyoung ifp->if_init(ifp->if_softc);
2523 1.19 dyoung }
2524 1.19 dyoung arp_ifinit(ifp, ifa);
2525 1.19 dyoung break;
2526 1.19 dyoung #endif
2527 1.19 dyoung #ifdef IPX
2528 1.19 dyoung /*
2529 1.19 dyoung * XXX - This code is probably wrong,
2530 1.19 dyoung * but has been copied many times.
2531 1.19 dyoung */
2532 1.19 dyoung case AF_IPX: {
2533 1.19 dyoung struct ipx_addr *ina = &(IA_SIPX(ifa)->sipx_addr);
2534 1.19 dyoung
2535 1.19 dyoung if (ipx_nullhost(*ina))
2536 1.21 dyoung ina->x_host = *(union ipx_host *)
2537 1.21 dyoung IFP2ENADDR(ifp);
2538 1.19 dyoung else
2539 1.19 dyoung bcopy((caddr_t) ina->x_host.c_host,
2540 1.21 dyoung (caddr_t) IFP2ENADDR(ifp),
2541 1.21 dyoung ETHER_ADDR_LEN);
2542 1.19 dyoung /* fall thru... */
2543 1.19 dyoung }
2544 1.19 dyoung #endif
2545 1.19 dyoung default:
2546 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2547 1.19 dyoung ifp->if_flags |= IFF_UP;
2548 1.19 dyoung ifp->if_init(ifp->if_softc);
2549 1.19 dyoung }
2550 1.19 dyoung break;
2551 1.19 dyoung }
2552 1.1 dyoung break;
2553 1.1 dyoung default:
2554 1.1 dyoung error = ether_ioctl(ifp, cmd, data);
2555 1.1 dyoung break;
2556 1.1 dyoung }
2557 1.1 dyoung return error;
2558 1.1 dyoung }
2559 1.2 dyoung #endif /* __FreeBSD__ */
2560 1.2 dyoung
2561 1.22 dyoung #ifdef COMPAT_20
2562 1.22 dyoung static void
2563 1.22 dyoung ieee80211_get_ostats(struct ieee80211_ostats *ostats,
2564 1.22 dyoung struct ieee80211_stats *stats)
2565 1.22 dyoung {
2566 1.22 dyoung #define COPYSTATS1(__ostats, __nstats, __dstmemb, __srcmemb, __lastmemb)\
2567 1.22 dyoung (void)memcpy(&(__ostats)->__dstmemb, &(__nstats)->__srcmemb, \
2568 1.22 dyoung offsetof(struct ieee80211_stats, __lastmemb) - \
2569 1.22 dyoung offsetof(struct ieee80211_stats, __srcmemb))
2570 1.22 dyoung #define COPYSTATS(__ostats, __nstats, __dstmemb, __lastmemb) \
2571 1.22 dyoung COPYSTATS1(__ostats, __nstats, __dstmemb, __dstmemb, __lastmemb)
2572 1.22 dyoung
2573 1.22 dyoung COPYSTATS(ostats, stats, is_rx_badversion, is_rx_unencrypted);
2574 1.22 dyoung COPYSTATS(ostats, stats, is_rx_wepfail, is_rx_beacon);
2575 1.22 dyoung COPYSTATS(ostats, stats, is_rx_rstoobig, is_rx_auth_countermeasures);
2576 1.22 dyoung COPYSTATS(ostats, stats, is_rx_assoc_bss, is_rx_assoc_badwpaie);
2577 1.22 dyoung COPYSTATS(ostats, stats, is_rx_deauth, is_rx_unauth);
2578 1.22 dyoung COPYSTATS1(ostats, stats, is_tx_nombuf, is_tx_nobuf, is_tx_badcipher);
2579 1.22 dyoung COPYSTATS(ostats, stats, is_scan_active, is_crypto_tkip);
2580 1.22 dyoung }
2581 1.22 dyoung #endif /* COMPAT_20 */
2582 1.22 dyoung
2583 1.2 dyoung #ifdef __NetBSD__
2584 1.2 dyoung int
2585 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2586 1.2 dyoung {
2587 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2588 1.2 dyoung struct ifreq *ifr = (struct ifreq *)data;
2589 1.19 dyoung int i, error = 0, kid, klen, s;
2590 1.19 dyoung struct ieee80211_key *k;
2591 1.2 dyoung struct ieee80211_nwid nwid;
2592 1.2 dyoung struct ieee80211_nwkey *nwkey;
2593 1.2 dyoung struct ieee80211_power *power;
2594 1.2 dyoung struct ieee80211_bssid *bssid;
2595 1.2 dyoung struct ieee80211chanreq *chanreq;
2596 1.2 dyoung struct ieee80211_channel *chan;
2597 1.19 dyoung uint32_t oflags;
2598 1.22 dyoung #ifdef COMPAT_20
2599 1.22 dyoung struct ieee80211_ostats ostats;
2600 1.22 dyoung #endif /* COMPAT_20 */
2601 1.29 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2602 1.19 dyoung u_int8_t tmpkey[IEEE80211_WEP_NKID][IEEE80211_KEYBUF_SIZE];
2603 1.2 dyoung
2604 1.2 dyoung switch (cmd) {
2605 1.2 dyoung case SIOCSIFMEDIA:
2606 1.2 dyoung case SIOCGIFMEDIA:
2607 1.2 dyoung error = ifmedia_ioctl(ifp, ifr, &ic->ic_media, cmd);
2608 1.2 dyoung break;
2609 1.19 dyoung case SIOCG80211:
2610 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2611 1.19 dyoung (struct ieee80211req *) data);
2612 1.19 dyoung break;
2613 1.19 dyoung case SIOCS80211:
2614 1.32 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2615 1.32 elad KAUTH_GENERIC_ISSUSER,
2616 1.32 elad &curproc->p_acflag)) != 0)
2617 1.19 dyoung break;
2618 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2619 1.19 dyoung (struct ieee80211req *) data);
2620 1.19 dyoung break;
2621 1.2 dyoung case SIOCS80211NWID:
2622 1.2 dyoung if ((error = copyin(ifr->ifr_data, &nwid, sizeof(nwid))) != 0)
2623 1.2 dyoung break;
2624 1.2 dyoung if (nwid.i_len > IEEE80211_NWID_LEN) {
2625 1.2 dyoung error = EINVAL;
2626 1.2 dyoung break;
2627 1.2 dyoung }
2628 1.2 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2629 1.2 dyoung ic->ic_des_esslen = nwid.i_len;
2630 1.2 dyoung memcpy(ic->ic_des_essid, nwid.i_nwid, nwid.i_len);
2631 1.2 dyoung error = ENETRESET;
2632 1.2 dyoung break;
2633 1.2 dyoung case SIOCG80211NWID:
2634 1.2 dyoung memset(&nwid, 0, sizeof(nwid));
2635 1.2 dyoung switch (ic->ic_state) {
2636 1.2 dyoung case IEEE80211_S_INIT:
2637 1.2 dyoung case IEEE80211_S_SCAN:
2638 1.2 dyoung nwid.i_len = ic->ic_des_esslen;
2639 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_des_essid, nwid.i_len);
2640 1.2 dyoung break;
2641 1.2 dyoung default:
2642 1.2 dyoung nwid.i_len = ic->ic_bss->ni_esslen;
2643 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_bss->ni_essid, nwid.i_len);
2644 1.2 dyoung break;
2645 1.2 dyoung }
2646 1.2 dyoung error = copyout(&nwid, ifr->ifr_data, sizeof(nwid));
2647 1.2 dyoung break;
2648 1.2 dyoung case SIOCS80211NWKEY:
2649 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2650 1.19 dyoung /* transmit key index out of range? */
2651 1.19 dyoung kid = nwkey->i_defkid - 1;
2652 1.19 dyoung if (kid < 0 || kid >= IEEE80211_WEP_NKID) {
2653 1.2 dyoung error = EINVAL;
2654 1.2 dyoung break;
2655 1.2 dyoung }
2656 1.19 dyoung /* no such transmit key is set? */
2657 1.19 dyoung if (nwkey->i_key[kid].i_keylen == 0 ||
2658 1.19 dyoung (nwkey->i_key[kid].i_keylen == -1 &&
2659 1.19 dyoung ic->ic_nw_keys[kid].wk_keylen == 0)) {
2660 1.19 dyoung if (nwkey->i_wepon != IEEE80211_NWKEY_OPEN) {
2661 1.19 dyoung error = EINVAL;
2662 1.19 dyoung break;
2663 1.19 dyoung }
2664 1.19 dyoung }
2665 1.19 dyoung /* check key lengths */
2666 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2667 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2668 1.19 dyoung if ((klen > 0 &&
2669 1.19 dyoung klen < IEEE80211_WEP_KEYLEN) ||
2670 1.19 dyoung klen > sizeof(ic->ic_nw_keys[kid].wk_key)) {
2671 1.2 dyoung error = EINVAL;
2672 1.2 dyoung break;
2673 1.2 dyoung }
2674 1.19 dyoung }
2675 1.19 dyoung
2676 1.19 dyoung if (error)
2677 1.19 dyoung break;
2678 1.19 dyoung
2679 1.19 dyoung /* copy in keys */
2680 1.19 dyoung (void)memset(tmpkey, 0, sizeof(tmpkey));
2681 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2682 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2683 1.19 dyoung if (klen <= 0)
2684 1.2 dyoung continue;
2685 1.19 dyoung if ((error = copyin(nwkey->i_key[kid].i_keydat,
2686 1.19 dyoung tmpkey[kid], klen)) != 0)
2687 1.2 dyoung break;
2688 1.2 dyoung }
2689 1.19 dyoung
2690 1.2 dyoung if (error)
2691 1.2 dyoung break;
2692 1.19 dyoung
2693 1.19 dyoung /* set keys */
2694 1.19 dyoung ieee80211_key_update_begin(ic);
2695 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2696 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2697 1.19 dyoung if (klen <= 0)
2698 1.19 dyoung continue;
2699 1.19 dyoung k = &ic->ic_nw_keys[kid];
2700 1.19 dyoung k->wk_keyix = kid;
2701 1.19 dyoung if (!ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2702 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2703 1.2 dyoung error = EINVAL;
2704 1.19 dyoung continue;
2705 1.2 dyoung }
2706 1.19 dyoung k->wk_keylen = nwkey->i_key[kid].i_keylen;
2707 1.19 dyoung (void)memcpy(k->wk_key, tmpkey[kid],
2708 1.19 dyoung sizeof(tmpkey[kid]));
2709 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2710 1.19 dyoung error = EINVAL;
2711 1.19 dyoung }
2712 1.19 dyoung ieee80211_key_update_end(ic);
2713 1.19 dyoung
2714 1.19 dyoung if (error)
2715 1.19 dyoung break;
2716 1.19 dyoung
2717 1.19 dyoung /* delete keys */
2718 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2719 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2720 1.19 dyoung k = &ic->ic_nw_keys[kid];
2721 1.19 dyoung if (klen <= 0)
2722 1.19 dyoung (void)ieee80211_crypto_delkey(ic, k);
2723 1.19 dyoung }
2724 1.19 dyoung
2725 1.19 dyoung /* set transmit key */
2726 1.19 dyoung kid = nwkey->i_defkid - 1;
2727 1.19 dyoung if (ic->ic_def_txkey != kid) {
2728 1.19 dyoung ic->ic_def_txkey = kid;
2729 1.19 dyoung error = ENETRESET;
2730 1.19 dyoung }
2731 1.19 dyoung oflags = ic->ic_flags;
2732 1.19 dyoung if (nwkey->i_wepon == IEEE80211_NWKEY_OPEN) {
2733 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2734 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2735 1.19 dyoung } else {
2736 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
2737 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2738 1.2 dyoung }
2739 1.19 dyoung if (oflags != ic->ic_flags)
2740 1.19 dyoung error = ENETRESET;
2741 1.2 dyoung break;
2742 1.2 dyoung case SIOCG80211NWKEY:
2743 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2744 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY)
2745 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_WEP;
2746 1.2 dyoung else
2747 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_OPEN;
2748 1.19 dyoung nwkey->i_defkid = ic->ic_def_txkey + 1;
2749 1.2 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
2750 1.2 dyoung if (nwkey->i_key[i].i_keydat == NULL)
2751 1.2 dyoung continue;
2752 1.2 dyoung /* do not show any keys to non-root user */
2753 1.32 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2754 1.32 elad KAUTH_GENERIC_ISSUSER, &curproc->p_acflag)) != 0)
2755 1.2 dyoung break;
2756 1.19 dyoung nwkey->i_key[i].i_keylen = ic->ic_nw_keys[i].wk_keylen;
2757 1.2 dyoung if ((error = copyout(ic->ic_nw_keys[i].wk_key,
2758 1.2 dyoung nwkey->i_key[i].i_keydat,
2759 1.19 dyoung ic->ic_nw_keys[i].wk_keylen)) != 0)
2760 1.2 dyoung break;
2761 1.2 dyoung }
2762 1.2 dyoung break;
2763 1.2 dyoung case SIOCS80211POWER:
2764 1.2 dyoung power = (struct ieee80211_power *)data;
2765 1.2 dyoung ic->ic_lintval = power->i_maxsleep;
2766 1.2 dyoung if (power->i_enabled != 0) {
2767 1.5 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2768 1.2 dyoung error = EINVAL;
2769 1.2 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2770 1.2 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2771 1.2 dyoung error = ENETRESET;
2772 1.2 dyoung }
2773 1.2 dyoung } else {
2774 1.2 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2775 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2776 1.2 dyoung error = ENETRESET;
2777 1.2 dyoung }
2778 1.2 dyoung }
2779 1.2 dyoung break;
2780 1.2 dyoung case SIOCG80211POWER:
2781 1.2 dyoung power = (struct ieee80211_power *)data;
2782 1.2 dyoung power->i_enabled = (ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0;
2783 1.2 dyoung power->i_maxsleep = ic->ic_lintval;
2784 1.2 dyoung break;
2785 1.2 dyoung case SIOCS80211BSSID:
2786 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2787 1.29 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, bssid->i_bssid);
2788 1.29 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2789 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2790 1.29 dyoung else
2791 1.2 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2792 1.29 dyoung error = ENETRESET;
2793 1.2 dyoung break;
2794 1.2 dyoung case SIOCG80211BSSID:
2795 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2796 1.2 dyoung switch (ic->ic_state) {
2797 1.2 dyoung case IEEE80211_S_INIT:
2798 1.2 dyoung case IEEE80211_S_SCAN:
2799 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
2800 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2801 1.2 dyoung ic->ic_myaddr);
2802 1.2 dyoung else if (ic->ic_flags & IEEE80211_F_DESBSSID)
2803 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2804 1.2 dyoung ic->ic_des_bssid);
2805 1.2 dyoung else
2806 1.2 dyoung memset(bssid->i_bssid, 0, IEEE80211_ADDR_LEN);
2807 1.2 dyoung break;
2808 1.2 dyoung default:
2809 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2810 1.2 dyoung ic->ic_bss->ni_bssid);
2811 1.2 dyoung break;
2812 1.2 dyoung }
2813 1.2 dyoung break;
2814 1.2 dyoung case SIOCS80211CHANNEL:
2815 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2816 1.2 dyoung if (chanreq->i_channel == IEEE80211_CHAN_ANY)
2817 1.2 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2818 1.2 dyoung else if (chanreq->i_channel > IEEE80211_CHAN_MAX ||
2819 1.2 dyoung isclr(ic->ic_chan_active, chanreq->i_channel)) {
2820 1.2 dyoung error = EINVAL;
2821 1.2 dyoung break;
2822 1.2 dyoung } else
2823 1.4 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2824 1.4 dyoung &ic->ic_channels[chanreq->i_channel];
2825 1.2 dyoung switch (ic->ic_state) {
2826 1.2 dyoung case IEEE80211_S_INIT:
2827 1.2 dyoung case IEEE80211_S_SCAN:
2828 1.2 dyoung error = ENETRESET;
2829 1.2 dyoung break;
2830 1.2 dyoung default:
2831 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
2832 1.2 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2833 1.2 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan)
2834 1.2 dyoung error = ENETRESET;
2835 1.2 dyoung } else {
2836 1.2 dyoung if (ic->ic_bss->ni_chan != ic->ic_ibss_chan)
2837 1.2 dyoung error = ENETRESET;
2838 1.2 dyoung }
2839 1.2 dyoung break;
2840 1.2 dyoung }
2841 1.2 dyoung break;
2842 1.2 dyoung case SIOCG80211CHANNEL:
2843 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2844 1.2 dyoung switch (ic->ic_state) {
2845 1.2 dyoung case IEEE80211_S_INIT:
2846 1.2 dyoung case IEEE80211_S_SCAN:
2847 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA)
2848 1.2 dyoung chan = ic->ic_des_chan;
2849 1.2 dyoung else
2850 1.2 dyoung chan = ic->ic_ibss_chan;
2851 1.2 dyoung break;
2852 1.2 dyoung default:
2853 1.2 dyoung chan = ic->ic_bss->ni_chan;
2854 1.2 dyoung break;
2855 1.2 dyoung }
2856 1.2 dyoung chanreq->i_channel = ieee80211_chan2ieee(ic, chan);
2857 1.2 dyoung break;
2858 1.2 dyoung case SIOCGIFGENERIC:
2859 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2860 1.2 dyoung break;
2861 1.2 dyoung case SIOCSIFGENERIC:
2862 1.32 elad error = kauth_authorize_generic(curproc->p_cred,
2863 1.32 elad KAUTH_GENERIC_ISSUSER,
2864 1.32 elad &curproc->p_acflag);
2865 1.2 dyoung if (error)
2866 1.2 dyoung break;
2867 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2868 1.7 dyoung break;
2869 1.22 dyoung #ifdef COMPAT_20
2870 1.22 dyoung case OSIOCG80211STATS:
2871 1.22 dyoung case OSIOCG80211ZSTATS:
2872 1.22 dyoung ifr = (struct ifreq *)data;
2873 1.22 dyoung s = splnet();
2874 1.22 dyoung ieee80211_get_ostats(&ostats, &ic->ic_stats);
2875 1.22 dyoung error = copyout(&ostats, ifr->ifr_data, sizeof(ostats));
2876 1.22 dyoung if (error == 0 && cmd == OSIOCG80211ZSTATS)
2877 1.22 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2878 1.22 dyoung splx(s);
2879 1.22 dyoung break;
2880 1.22 dyoung #endif /* COMPAT_20 */
2881 1.17 dyoung case SIOCG80211ZSTATS:
2882 1.7 dyoung case SIOCG80211STATS:
2883 1.7 dyoung ifr = (struct ifreq *)data;
2884 1.17 dyoung s = splnet();
2885 1.22 dyoung error = copyout(&ic->ic_stats, ifr->ifr_buf,
2886 1.22 dyoung MIN(sizeof(ic->ic_stats), ifr->ifr_buflen));
2887 1.22 dyoung if (error == 0 && cmd == SIOCG80211ZSTATS)
2888 1.17 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2889 1.17 dyoung splx(s);
2890 1.2 dyoung break;
2891 1.10 dyoung case SIOCSIFMTU:
2892 1.10 dyoung ifr = (struct ifreq *)data;
2893 1.10 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2894 1.10 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2895 1.10 dyoung error = EINVAL;
2896 1.10 dyoung else
2897 1.10 dyoung ifp->if_mtu = ifr->ifr_mtu;
2898 1.10 dyoung break;
2899 1.2 dyoung default:
2900 1.2 dyoung error = ether_ioctl(ifp, cmd, data);
2901 1.2 dyoung break;
2902 1.2 dyoung }
2903 1.2 dyoung return error;
2904 1.2 dyoung }
2905 1.2 dyoung #endif /* __NetBSD__ */
2906