ieee80211_ioctl.c revision 1.35 1 1.35 christos /* $NetBSD: ieee80211_ioctl.c,v 1.35 2006/06/12 21:55:03 christos Exp $ */
2 1.1 dyoung /*-
3 1.1 dyoung * Copyright (c) 2001 Atsushi Onoe
4 1.19 dyoung * Copyright (c) 2002-2005 Sam Leffler, Errno Consulting
5 1.1 dyoung * All rights reserved.
6 1.1 dyoung *
7 1.1 dyoung * Redistribution and use in source and binary forms, with or without
8 1.1 dyoung * modification, are permitted provided that the following conditions
9 1.1 dyoung * are met:
10 1.1 dyoung * 1. Redistributions of source code must retain the above copyright
11 1.1 dyoung * notice, this list of conditions and the following disclaimer.
12 1.1 dyoung * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 dyoung * notice, this list of conditions and the following disclaimer in the
14 1.1 dyoung * documentation and/or other materials provided with the distribution.
15 1.1 dyoung * 3. The name of the author may not be used to endorse or promote products
16 1.1 dyoung * derived from this software without specific prior written permission.
17 1.1 dyoung *
18 1.1 dyoung * Alternatively, this software may be distributed under the terms of the
19 1.1 dyoung * GNU General Public License ("GPL") version 2 as published by the Free
20 1.1 dyoung * Software Foundation.
21 1.1 dyoung *
22 1.1 dyoung * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
23 1.1 dyoung * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
24 1.1 dyoung * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
25 1.1 dyoung * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
26 1.1 dyoung * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
27 1.1 dyoung * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
28 1.1 dyoung * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
29 1.1 dyoung * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
30 1.1 dyoung * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
31 1.1 dyoung * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
32 1.1 dyoung */
33 1.1 dyoung
34 1.1 dyoung #include <sys/cdefs.h>
35 1.3 dyoung #ifdef __FreeBSD__
36 1.26 skrll __FBSDID("$FreeBSD: src/sys/net80211/ieee80211_ioctl.c,v 1.35 2005/08/30 14:27:47 avatar Exp $");
37 1.19 dyoung #endif
38 1.19 dyoung #ifdef __NetBSD__
39 1.35 christos __KERNEL_RCSID(0, "$NetBSD: ieee80211_ioctl.c,v 1.35 2006/06/12 21:55:03 christos Exp $");
40 1.3 dyoung #endif
41 1.1 dyoung
42 1.1 dyoung /*
43 1.1 dyoung * IEEE 802.11 ioctl support (FreeBSD-specific)
44 1.1 dyoung */
45 1.1 dyoung
46 1.10 dyoung #include "opt_inet.h"
47 1.10 dyoung
48 1.1 dyoung #include <sys/endian.h>
49 1.1 dyoung #include <sys/param.h>
50 1.1 dyoung #include <sys/kernel.h>
51 1.1 dyoung #include <sys/socket.h>
52 1.1 dyoung #include <sys/sockio.h>
53 1.1 dyoung #include <sys/systm.h>
54 1.4 dyoung #include <sys/proc.h>
55 1.32 elad #include <sys/kauth.h>
56 1.19 dyoung
57 1.1 dyoung #include <net/if.h>
58 1.1 dyoung #include <net/if_arp.h>
59 1.1 dyoung #include <net/if_media.h>
60 1.4 dyoung #include <net/if_ether.h>
61 1.1 dyoung
62 1.10 dyoung #ifdef INET
63 1.10 dyoung #include <netinet/in.h>
64 1.10 dyoung #include <netinet/if_inarp.h>
65 1.10 dyoung #endif
66 1.10 dyoung
67 1.1 dyoung #include <net80211/ieee80211_var.h>
68 1.1 dyoung #include <net80211/ieee80211_ioctl.h>
69 1.1 dyoung
70 1.4 dyoung #include <dev/ic/wi_ieee.h>
71 1.19 dyoung
72 1.26 skrll #ifdef __FreeBSD__
73 1.26 skrll #define IS_UP(_ic) \
74 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
75 1.26 skrll ((_ic)->ic_ifp->if_drv_flags & IFF_DRV_RUNNING))
76 1.26 skrll #endif
77 1.26 skrll #ifdef __NetBSD__
78 1.19 dyoung #define IS_UP(_ic) \
79 1.26 skrll (((_ic)->ic_ifp->if_flags & IFF_UP) && \
80 1.26 skrll ((_ic)->ic_ifp->if_flags & IFF_RUNNING))
81 1.26 skrll #endif
82 1.19 dyoung #define IS_UP_AUTO(_ic) \
83 1.19 dyoung (IS_UP(_ic) && (_ic)->ic_roaming == IEEE80211_ROAMING_AUTO)
84 1.1 dyoung
85 1.1 dyoung /*
86 1.1 dyoung * XXX
87 1.1 dyoung * Wireless LAN specific configuration interface, which is compatible
88 1.1 dyoung * with wicontrol(8).
89 1.1 dyoung */
90 1.1 dyoung
91 1.19 dyoung struct wi_read_ap_args {
92 1.19 dyoung int i; /* result count */
93 1.19 dyoung struct wi_apinfo *ap; /* current entry in result buffer */
94 1.19 dyoung caddr_t max; /* result buffer bound */
95 1.19 dyoung };
96 1.19 dyoung
97 1.19 dyoung static void
98 1.19 dyoung wi_read_ap_result(void *arg, struct ieee80211_node *ni)
99 1.19 dyoung {
100 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
101 1.19 dyoung struct wi_read_ap_args *sa = arg;
102 1.19 dyoung struct wi_apinfo *ap = sa->ap;
103 1.19 dyoung struct ieee80211_rateset *rs;
104 1.19 dyoung int j;
105 1.19 dyoung
106 1.19 dyoung if ((caddr_t)(ap + 1) > sa->max)
107 1.19 dyoung return;
108 1.19 dyoung memset(ap, 0, sizeof(struct wi_apinfo));
109 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) {
110 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_macaddr);
111 1.19 dyoung ap->namelen = ic->ic_des_esslen;
112 1.19 dyoung if (ic->ic_des_esslen)
113 1.19 dyoung memcpy(ap->name, ic->ic_des_essid,
114 1.19 dyoung ic->ic_des_esslen);
115 1.19 dyoung } else {
116 1.19 dyoung IEEE80211_ADDR_COPY(ap->bssid, ni->ni_bssid);
117 1.19 dyoung ap->namelen = ni->ni_esslen;
118 1.19 dyoung if (ni->ni_esslen)
119 1.19 dyoung memcpy(ap->name, ni->ni_essid,
120 1.19 dyoung ni->ni_esslen);
121 1.19 dyoung }
122 1.19 dyoung ap->channel = ieee80211_chan2ieee(ic, ni->ni_chan);
123 1.19 dyoung ap->signal = ic->ic_node_getrssi(ni);
124 1.19 dyoung ap->capinfo = ni->ni_capinfo;
125 1.19 dyoung ap->interval = ni->ni_intval;
126 1.19 dyoung rs = &ni->ni_rates;
127 1.19 dyoung for (j = 0; j < rs->rs_nrates; j++) {
128 1.19 dyoung if (rs->rs_rates[j] & IEEE80211_RATE_BASIC) {
129 1.19 dyoung ap->rate = (rs->rs_rates[j] &
130 1.19 dyoung IEEE80211_RATE_VAL) * 5; /* XXX */
131 1.19 dyoung }
132 1.19 dyoung }
133 1.19 dyoung sa->i++;
134 1.19 dyoung sa->ap++;
135 1.19 dyoung }
136 1.19 dyoung
137 1.19 dyoung struct wi_read_prism2_args {
138 1.19 dyoung int i; /* result count */
139 1.19 dyoung struct wi_scan_res *res;/* current entry in result buffer */
140 1.19 dyoung caddr_t max; /* result buffer bound */
141 1.19 dyoung };
142 1.19 dyoung
143 1.19 dyoung #if 0
144 1.19 dyoung static void
145 1.19 dyoung wi_read_prism2_result(void *arg, struct ieee80211_node *ni)
146 1.19 dyoung {
147 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
148 1.19 dyoung struct wi_read_prism2_args *sa = arg;
149 1.19 dyoung struct wi_scan_res *res = sa->res;
150 1.19 dyoung
151 1.19 dyoung if ((caddr_t)(res + 1) > sa->max)
152 1.19 dyoung return;
153 1.19 dyoung res->wi_chan = ieee80211_chan2ieee(ic, ni->ni_chan);
154 1.19 dyoung res->wi_noise = 0;
155 1.19 dyoung res->wi_signal = ic->ic_node_getrssi(ni);
156 1.19 dyoung IEEE80211_ADDR_COPY(res->wi_bssid, ni->ni_bssid);
157 1.19 dyoung res->wi_interval = ni->ni_intval;
158 1.19 dyoung res->wi_capinfo = ni->ni_capinfo;
159 1.19 dyoung res->wi_ssid_len = ni->ni_esslen;
160 1.19 dyoung memcpy(res->wi_ssid, ni->ni_essid, IEEE80211_NWID_LEN);
161 1.19 dyoung /* NB: assumes wi_srates holds <= ni->ni_rates */
162 1.19 dyoung memcpy(res->wi_srates, ni->ni_rates.rs_rates,
163 1.19 dyoung sizeof(res->wi_srates));
164 1.19 dyoung if (ni->ni_rates.rs_nrates < 10)
165 1.19 dyoung res->wi_srates[ni->ni_rates.rs_nrates] = 0;
166 1.19 dyoung res->wi_rate = ni->ni_rates.rs_rates[ni->ni_txrate];
167 1.19 dyoung res->wi_rsvd = 0;
168 1.19 dyoung
169 1.19 dyoung sa->i++;
170 1.19 dyoung sa->res++;
171 1.19 dyoung }
172 1.19 dyoung
173 1.19 dyoung struct wi_read_sigcache_args {
174 1.19 dyoung int i; /* result count */
175 1.19 dyoung struct wi_sigcache *wsc;/* current entry in result buffer */
176 1.19 dyoung caddr_t max; /* result buffer bound */
177 1.19 dyoung };
178 1.19 dyoung
179 1.19 dyoung static void
180 1.19 dyoung wi_read_sigcache(void *arg, struct ieee80211_node *ni)
181 1.19 dyoung {
182 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
183 1.19 dyoung struct wi_read_sigcache_args *sa = arg;
184 1.19 dyoung struct wi_sigcache *wsc = sa->wsc;
185 1.19 dyoung
186 1.19 dyoung if ((caddr_t)(wsc + 1) > sa->max)
187 1.19 dyoung return;
188 1.19 dyoung memset(wsc, 0, sizeof(struct wi_sigcache));
189 1.19 dyoung IEEE80211_ADDR_COPY(wsc->macsrc, ni->ni_macaddr);
190 1.19 dyoung wsc->signal = ic->ic_node_getrssi(ni);
191 1.19 dyoung
192 1.19 dyoung sa->wsc++;
193 1.19 dyoung sa->i++;
194 1.19 dyoung }
195 1.19 dyoung #endif
196 1.19 dyoung
197 1.1 dyoung int
198 1.19 dyoung ieee80211_cfgget(struct ieee80211com *ic, u_long cmd, caddr_t data)
199 1.1 dyoung {
200 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
201 1.1 dyoung int i, j, error;
202 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
203 1.34 christos struct wi_req *wreq;
204 1.1 dyoung struct wi_ltv_keys *keys;
205 1.1 dyoung
206 1.34 christos wreq = malloc(sizeof(*wreq), M_TEMP, M_WAITOK);
207 1.34 christos error = copyin(ifr->ifr_data, wreq, sizeof(*wreq));
208 1.1 dyoung if (error)
209 1.34 christos goto out;
210 1.34 christos wreq->wi_len = 0;
211 1.34 christos switch (wreq->wi_type) {
212 1.1 dyoung case WI_RID_SERIALNO:
213 1.8 onoe case WI_RID_STA_IDENTITY:
214 1.1 dyoung /* nothing appropriate */
215 1.1 dyoung break;
216 1.1 dyoung case WI_RID_NODENAME:
217 1.34 christos strlcpy((char *)&wreq->wi_val[1], hostname,
218 1.34 christos sizeof(wreq->wi_val) - sizeof(wreq->wi_val[0]));
219 1.34 christos wreq->wi_val[0] = htole16(strlen(hostname));
220 1.34 christos wreq->wi_len = (1 + strlen(hostname) + 1) / 2;
221 1.1 dyoung break;
222 1.1 dyoung case WI_RID_CURRENT_SSID:
223 1.1 dyoung if (ic->ic_state != IEEE80211_S_RUN) {
224 1.34 christos wreq->wi_val[0] = 0;
225 1.34 christos wreq->wi_len = 1;
226 1.1 dyoung break;
227 1.1 dyoung }
228 1.34 christos wreq->wi_val[0] = htole16(ic->ic_bss->ni_esslen);
229 1.34 christos memcpy(&wreq->wi_val[1], ic->ic_bss->ni_essid,
230 1.1 dyoung ic->ic_bss->ni_esslen);
231 1.34 christos wreq->wi_len = (1 + ic->ic_bss->ni_esslen + 1) / 2;
232 1.1 dyoung break;
233 1.1 dyoung case WI_RID_OWN_SSID:
234 1.1 dyoung case WI_RID_DESIRED_SSID:
235 1.34 christos wreq->wi_val[0] = htole16(ic->ic_des_esslen);
236 1.34 christos memcpy(&wreq->wi_val[1], ic->ic_des_essid, ic->ic_des_esslen);
237 1.34 christos wreq->wi_len = (1 + ic->ic_des_esslen + 1) / 2;
238 1.1 dyoung break;
239 1.1 dyoung case WI_RID_CURRENT_BSSID:
240 1.1 dyoung if (ic->ic_state == IEEE80211_S_RUN)
241 1.34 christos IEEE80211_ADDR_COPY(wreq->wi_val, ic->ic_bss->ni_bssid);
242 1.1 dyoung else
243 1.34 christos memset(wreq->wi_val, 0, IEEE80211_ADDR_LEN);
244 1.34 christos wreq->wi_len = IEEE80211_ADDR_LEN / 2;
245 1.1 dyoung break;
246 1.1 dyoung case WI_RID_CHANNEL_LIST:
247 1.34 christos memset(wreq->wi_val, 0, sizeof(wreq->wi_val));
248 1.1 dyoung /*
249 1.1 dyoung * Since channel 0 is not available for DS, channel 1
250 1.1 dyoung * is assigned to LSB on WaveLAN.
251 1.1 dyoung */
252 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
253 1.1 dyoung i = 1;
254 1.1 dyoung else
255 1.1 dyoung i = 0;
256 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++)
257 1.1 dyoung if (isset(ic->ic_chan_active, i)) {
258 1.34 christos setbit((u_int8_t *)wreq->wi_val, j);
259 1.34 christos wreq->wi_len = j / 16 + 1;
260 1.1 dyoung }
261 1.1 dyoung break;
262 1.1 dyoung case WI_RID_OWN_CHNL:
263 1.34 christos wreq->wi_val[0] = htole16(
264 1.1 dyoung ieee80211_chan2ieee(ic, ic->ic_ibss_chan));
265 1.34 christos wreq->wi_len = 1;
266 1.1 dyoung break;
267 1.1 dyoung case WI_RID_CURRENT_CHAN:
268 1.34 christos wreq->wi_val[0] = htole16(
269 1.26 skrll ieee80211_chan2ieee(ic, ic->ic_curchan));
270 1.34 christos wreq->wi_len = 1;
271 1.1 dyoung break;
272 1.1 dyoung case WI_RID_COMMS_QUALITY:
273 1.34 christos wreq->wi_val[0] = 0; /* quality */
274 1.34 christos wreq->wi_val[1] = htole16(ic->ic_node_getrssi(ic->ic_bss));
275 1.34 christos wreq->wi_val[2] = 0; /* noise */
276 1.34 christos wreq->wi_len = 3;
277 1.1 dyoung break;
278 1.1 dyoung case WI_RID_PROMISC:
279 1.34 christos wreq->wi_val[0] = htole16((ifp->if_flags & IFF_PROMISC) ? 1 : 0);
280 1.34 christos wreq->wi_len = 1;
281 1.1 dyoung break;
282 1.1 dyoung case WI_RID_PORTTYPE:
283 1.34 christos wreq->wi_val[0] = htole16(ic->ic_opmode);
284 1.34 christos wreq->wi_len = 1;
285 1.1 dyoung break;
286 1.1 dyoung case WI_RID_MAC_NODE:
287 1.34 christos IEEE80211_ADDR_COPY(wreq->wi_val, ic->ic_myaddr);
288 1.34 christos wreq->wi_len = IEEE80211_ADDR_LEN / 2;
289 1.1 dyoung break;
290 1.1 dyoung case WI_RID_TX_RATE:
291 1.26 skrll if (ic->ic_fixed_rate == IEEE80211_FIXED_RATE_NONE)
292 1.34 christos wreq->wi_val[0] = 0; /* auto */
293 1.1 dyoung else
294 1.34 christos wreq->wi_val[0] = htole16(
295 1.1 dyoung (ic->ic_sup_rates[ic->ic_curmode].rs_rates[ic->ic_fixed_rate] &
296 1.1 dyoung IEEE80211_RATE_VAL) / 2);
297 1.34 christos wreq->wi_len = 1;
298 1.1 dyoung break;
299 1.1 dyoung case WI_RID_CUR_TX_RATE:
300 1.34 christos wreq->wi_val[0] = htole16(
301 1.1 dyoung (ic->ic_bss->ni_rates.rs_rates[ic->ic_bss->ni_txrate] &
302 1.1 dyoung IEEE80211_RATE_VAL) / 2);
303 1.34 christos wreq->wi_len = 1;
304 1.1 dyoung break;
305 1.6 dyoung case WI_RID_FRAG_THRESH:
306 1.34 christos wreq->wi_val[0] = htole16(ic->ic_fragthreshold);
307 1.34 christos wreq->wi_len = 1;
308 1.6 dyoung break;
309 1.1 dyoung case WI_RID_RTS_THRESH:
310 1.34 christos wreq->wi_val[0] = htole16(ic->ic_rtsthreshold);
311 1.34 christos wreq->wi_len = 1;
312 1.1 dyoung break;
313 1.1 dyoung case WI_RID_CREATE_IBSS:
314 1.34 christos wreq->wi_val[0] =
315 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_IBSSON) ? 1 : 0);
316 1.34 christos wreq->wi_len = 1;
317 1.1 dyoung break;
318 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
319 1.34 christos wreq->wi_val[0] = 0; /* no ... not supported */
320 1.34 christos wreq->wi_len = 1;
321 1.1 dyoung break;
322 1.1 dyoung case WI_RID_ROAMING_MODE:
323 1.34 christos wreq->wi_val[0] = htole16(ic->ic_roaming); /* XXX map */
324 1.34 christos wreq->wi_len = 1;
325 1.1 dyoung break;
326 1.1 dyoung case WI_RID_SYSTEM_SCALE:
327 1.34 christos wreq->wi_val[0] = htole16(1); /* low density ... not supp */
328 1.34 christos wreq->wi_len = 1;
329 1.1 dyoung break;
330 1.1 dyoung case WI_RID_PM_ENABLED:
331 1.34 christos wreq->wi_val[0] =
332 1.1 dyoung htole16((ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0);
333 1.34 christos wreq->wi_len = 1;
334 1.1 dyoung break;
335 1.1 dyoung case WI_RID_MAX_SLEEP:
336 1.34 christos wreq->wi_val[0] = htole16(ic->ic_lintval);
337 1.34 christos wreq->wi_len = 1;
338 1.1 dyoung break;
339 1.1 dyoung case WI_RID_CUR_BEACON_INT:
340 1.34 christos wreq->wi_val[0] = htole16(ic->ic_bss->ni_intval);
341 1.34 christos wreq->wi_len = 1;
342 1.1 dyoung break;
343 1.1 dyoung case WI_RID_WEP_AVAIL:
344 1.34 christos wreq->wi_val[0] = htole16(1); /* always available */
345 1.34 christos wreq->wi_len = 1;
346 1.1 dyoung break;
347 1.1 dyoung case WI_RID_CNFAUTHMODE:
348 1.34 christos wreq->wi_val[0] = htole16(1); /* TODO: open system only */
349 1.34 christos wreq->wi_len = 1;
350 1.1 dyoung break;
351 1.1 dyoung case WI_RID_ENCRYPTION:
352 1.34 christos wreq->wi_val[0] =
353 1.16 mycroft htole16((ic->ic_flags & IEEE80211_F_PRIVACY) ? 1 : 0);
354 1.34 christos wreq->wi_len = 1;
355 1.1 dyoung break;
356 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
357 1.34 christos wreq->wi_val[0] = htole16(ic->ic_def_txkey);
358 1.34 christos wreq->wi_len = 1;
359 1.1 dyoung break;
360 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
361 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
362 1.1 dyoung /* do not show keys to non-root user */
363 1.32 elad error = kauth_authorize_generic(curproc->p_cred,
364 1.32 elad KAUTH_GENERIC_ISSUSER,
365 1.32 elad &curproc->p_acflag);
366 1.1 dyoung if (error) {
367 1.1 dyoung memset(keys, 0, sizeof(*keys));
368 1.1 dyoung error = 0;
369 1.1 dyoung break;
370 1.1 dyoung }
371 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
372 1.1 dyoung keys->wi_keys[i].wi_keylen =
373 1.19 dyoung htole16(ic->ic_nw_keys[i].wk_keylen);
374 1.1 dyoung memcpy(keys->wi_keys[i].wi_keydat,
375 1.19 dyoung ic->ic_nw_keys[i].wk_key,
376 1.19 dyoung ic->ic_nw_keys[i].wk_keylen);
377 1.1 dyoung }
378 1.34 christos wreq->wi_len = sizeof(*keys) / 2;
379 1.1 dyoung break;
380 1.1 dyoung case WI_RID_MAX_DATALEN:
381 1.34 christos wreq->wi_val[0] = htole16(ic->ic_fragthreshold);
382 1.34 christos wreq->wi_len = 1;
383 1.1 dyoung break;
384 1.8 onoe case WI_RID_DBM_ADJUST:
385 1.8 onoe /* not supported, we just pass rssi value from driver. */
386 1.8 onoe break;
387 1.1 dyoung case WI_RID_IFACE_STATS:
388 1.1 dyoung /* XXX: should be implemented in lower drivers */
389 1.1 dyoung break;
390 1.1 dyoung case WI_RID_READ_APS:
391 1.19 dyoung /*
392 1.19 dyoung * Don't return results until active scan completes.
393 1.19 dyoung */
394 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
395 1.19 dyoung struct wi_read_ap_args args;
396 1.19 dyoung
397 1.19 dyoung args.i = 0;
398 1.34 christos args.ap = (void *)((char *)wreq->wi_val + sizeof(i));
399 1.19 dyoung args.max = (void *)(&wreq + 1);
400 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
401 1.19 dyoung wi_read_ap_result, &args);
402 1.34 christos memcpy(wreq->wi_val, &args.i, sizeof(args.i));
403 1.34 christos wreq->wi_len = (sizeof(int) +
404 1.19 dyoung sizeof(struct wi_apinfo) * args.i) / 2;
405 1.19 dyoung } else
406 1.19 dyoung error = EINPROGRESS;
407 1.1 dyoung break;
408 1.4 dyoung #if 0
409 1.1 dyoung case WI_RID_SCAN_RES: /* compatibility interface */
410 1.19 dyoung if ((ic->ic_flags & (IEEE80211_F_SCAN|IEEE80211_F_ASCAN)) == 0) {
411 1.19 dyoung struct wi_read_prism2_args args;
412 1.19 dyoung struct wi_scan_p2_hdr *p2;
413 1.19 dyoung
414 1.19 dyoung /* NB: use Prism2 format so we can include rate info */
415 1.34 christos p2 = (struct wi_scan_p2_hdr *)wreq->wi_val;
416 1.19 dyoung args.i = 0;
417 1.19 dyoung args.res = (void *)&p2[1];
418 1.19 dyoung args.max = (void *)(&wreq + 1);
419 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan,
420 1.19 dyoung wi_read_prism2_result, &args);
421 1.19 dyoung p2->wi_rsvd = 0;
422 1.19 dyoung p2->wi_reason = args.i;
423 1.34 christos wreq->wi_len = (sizeof(*p2) +
424 1.19 dyoung sizeof(struct wi_scan_res) * args.i) / 2;
425 1.19 dyoung } else
426 1.1 dyoung error = EINPROGRESS;
427 1.1 dyoung break;
428 1.19 dyoung case WI_RID_READ_CACHE: {
429 1.19 dyoung struct wi_read_sigcache_args args;
430 1.19 dyoung args.i = 0;
431 1.34 christos args.wsc = (struct wi_sigcache *) wreq->wi_val;
432 1.19 dyoung args.max = (void *)(&wreq + 1);
433 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_scan, wi_read_sigcache, &args);
434 1.34 christos wreq->wi_len = sizeof(struct wi_sigcache) * args.i / 2;
435 1.1 dyoung break;
436 1.19 dyoung }
437 1.19 dyoung #endif
438 1.1 dyoung default:
439 1.1 dyoung error = EINVAL;
440 1.1 dyoung break;
441 1.1 dyoung }
442 1.1 dyoung if (error == 0) {
443 1.34 christos wreq->wi_len++;
444 1.1 dyoung error = copyout(&wreq, ifr->ifr_data, sizeof(wreq));
445 1.1 dyoung }
446 1.34 christos out:
447 1.34 christos free(wreq, M_TEMP);
448 1.1 dyoung return error;
449 1.1 dyoung }
450 1.1 dyoung
451 1.1 dyoung static int
452 1.1 dyoung findrate(struct ieee80211com *ic, enum ieee80211_phymode mode, int rate)
453 1.1 dyoung {
454 1.1 dyoung #define IEEERATE(_ic,_m,_i) \
455 1.1 dyoung ((_ic)->ic_sup_rates[_m].rs_rates[_i] & IEEE80211_RATE_VAL)
456 1.1 dyoung int i, nrates = ic->ic_sup_rates[mode].rs_nrates;
457 1.1 dyoung for (i = 0; i < nrates; i++)
458 1.1 dyoung if (IEEERATE(ic, mode, i) == rate)
459 1.1 dyoung return i;
460 1.1 dyoung return -1;
461 1.1 dyoung #undef IEEERATE
462 1.1 dyoung }
463 1.1 dyoung
464 1.7 dyoung /*
465 1.7 dyoung * Prepare to do a user-initiated scan for AP's. If no
466 1.7 dyoung * current/default channel is setup or the current channel
467 1.7 dyoung * is invalid then pick the first available channel from
468 1.7 dyoung * the active list as the place to start the scan.
469 1.7 dyoung */
470 1.7 dyoung static int
471 1.19 dyoung ieee80211_setupscan(struct ieee80211com *ic, const u_int8_t chanlist[])
472 1.7 dyoung {
473 1.7 dyoung
474 1.19 dyoung /*
475 1.19 dyoung * XXX don't permit a scan to be started unless we
476 1.19 dyoung * know the device is ready. For the moment this means
477 1.19 dyoung * the device is marked up as this is the required to
478 1.19 dyoung * initialize the hardware. It would be better to permit
479 1.19 dyoung * scanning prior to being up but that'll require some
480 1.19 dyoung * changes to the infrastructure.
481 1.19 dyoung */
482 1.19 dyoung if (!IS_UP(ic))
483 1.19 dyoung return EINVAL;
484 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
485 1.7 dyoung /*
486 1.19 dyoung * We force the state to INIT before calling ieee80211_new_state
487 1.19 dyoung * to get ieee80211_begin_scan called. We really want to scan w/o
488 1.19 dyoung * altering the current state but that's not possible right now.
489 1.7 dyoung */
490 1.19 dyoung /* XXX handle proberequest case */
491 1.19 dyoung ic->ic_state = IEEE80211_S_INIT; /* XXX bypass state machine */
492 1.19 dyoung return 0;
493 1.7 dyoung }
494 1.7 dyoung
495 1.1 dyoung int
496 1.19 dyoung ieee80211_cfgset(struct ieee80211com *ic, u_long cmd, caddr_t data)
497 1.1 dyoung {
498 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
499 1.1 dyoung int i, j, len, error, rate;
500 1.1 dyoung struct ifreq *ifr = (struct ifreq *)data;
501 1.1 dyoung struct wi_ltv_keys *keys;
502 1.34 christos struct wi_req *wreq;
503 1.33 christos u_int8_t chanlist[IEEE80211_CHAN_BYTES];
504 1.1 dyoung
505 1.34 christos wreq = malloc(sizeof(*wreq), M_TEMP, M_WAITOK);
506 1.34 christos error = copyin(ifr->ifr_data, wreq, sizeof(*wreq));
507 1.1 dyoung if (error)
508 1.34 christos goto out;
509 1.34 christos len = wreq->wi_len ? (wreq->wi_len - 1) * 2 : 0;
510 1.34 christos switch (wreq->wi_type) {
511 1.1 dyoung case WI_RID_SERIALNO:
512 1.1 dyoung case WI_RID_NODENAME:
513 1.1 dyoung case WI_RID_CURRENT_SSID:
514 1.34 christos error = EPERM;
515 1.34 christos goto out;
516 1.1 dyoung case WI_RID_OWN_SSID:
517 1.1 dyoung case WI_RID_DESIRED_SSID:
518 1.34 christos if (le16toh(wreq->wi_val[0]) * 2 > len ||
519 1.34 christos le16toh(wreq->wi_val[0]) > IEEE80211_NWID_LEN) {
520 1.1 dyoung error = ENOSPC;
521 1.1 dyoung break;
522 1.1 dyoung }
523 1.1 dyoung memset(ic->ic_des_essid, 0, sizeof(ic->ic_des_essid));
524 1.34 christos ic->ic_des_esslen = le16toh(wreq->wi_val[0]) * 2;
525 1.34 christos memcpy(ic->ic_des_essid, &wreq->wi_val[1], ic->ic_des_esslen);
526 1.1 dyoung error = ENETRESET;
527 1.1 dyoung break;
528 1.1 dyoung case WI_RID_CURRENT_BSSID:
529 1.34 christos error = EPERM;
530 1.34 christos goto out;
531 1.1 dyoung case WI_RID_OWN_CHNL:
532 1.1 dyoung if (len != 2)
533 1.34 christos goto invalid;
534 1.34 christos i = le16toh(wreq->wi_val[0]);
535 1.1 dyoung if (i < 0 ||
536 1.1 dyoung i > IEEE80211_CHAN_MAX ||
537 1.1 dyoung isclr(ic->ic_chan_active, i))
538 1.34 christos goto invalid;
539 1.1 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
540 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_MONITOR)
541 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
542 1.19 dyoung else
543 1.1 dyoung error = ENETRESET;
544 1.1 dyoung break;
545 1.1 dyoung case WI_RID_CURRENT_CHAN:
546 1.1 dyoung case WI_RID_COMMS_QUALITY:
547 1.34 christos error = EPERM;
548 1.34 christos goto out;
549 1.1 dyoung case WI_RID_PROMISC:
550 1.1 dyoung if (len != 2)
551 1.34 christos goto invalid;
552 1.1 dyoung if (ifp->if_flags & IFF_PROMISC) {
553 1.34 christos if (wreq->wi_val[0] == 0) {
554 1.1 dyoung ifp->if_flags &= ~IFF_PROMISC;
555 1.1 dyoung error = ENETRESET;
556 1.1 dyoung }
557 1.1 dyoung } else {
558 1.34 christos if (wreq->wi_val[0] != 0) {
559 1.1 dyoung ifp->if_flags |= IFF_PROMISC;
560 1.1 dyoung error = ENETRESET;
561 1.1 dyoung }
562 1.1 dyoung }
563 1.1 dyoung break;
564 1.1 dyoung case WI_RID_PORTTYPE:
565 1.1 dyoung if (len != 2)
566 1.34 christos goto invalid;
567 1.34 christos switch (le16toh(wreq->wi_val[0])) {
568 1.1 dyoung case IEEE80211_M_STA:
569 1.1 dyoung break;
570 1.1 dyoung case IEEE80211_M_IBSS:
571 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_IBSS))
572 1.34 christos goto invalid;
573 1.1 dyoung break;
574 1.1 dyoung case IEEE80211_M_AHDEMO:
575 1.1 dyoung if (ic->ic_phytype != IEEE80211_T_DS ||
576 1.1 dyoung !(ic->ic_caps & IEEE80211_C_AHDEMO))
577 1.34 christos goto invalid;
578 1.1 dyoung break;
579 1.1 dyoung case IEEE80211_M_HOSTAP:
580 1.1 dyoung if (!(ic->ic_caps & IEEE80211_C_HOSTAP))
581 1.34 christos goto invalid;
582 1.1 dyoung break;
583 1.1 dyoung default:
584 1.34 christos goto invalid;
585 1.1 dyoung }
586 1.34 christos if (le16toh(wreq->wi_val[0]) != ic->ic_opmode) {
587 1.34 christos ic->ic_opmode = le16toh(wreq->wi_val[0]);
588 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
589 1.1 dyoung }
590 1.1 dyoung break;
591 1.1 dyoung #if 0
592 1.1 dyoung case WI_RID_MAC_NODE:
593 1.1 dyoung if (len != IEEE80211_ADDR_LEN)
594 1.34 christos goto invalid;
595 1.34 christos IEEE80211_ADDR_COPY(LLADDR(ifp->if_sadl), wreq->wi_val);
596 1.1 dyoung /* if_init will copy lladdr into ic_myaddr */
597 1.1 dyoung error = ENETRESET;
598 1.1 dyoung break;
599 1.1 dyoung #endif
600 1.1 dyoung case WI_RID_TX_RATE:
601 1.1 dyoung if (len != 2)
602 1.34 christos goto invalid;
603 1.34 christos if (wreq->wi_val[0] == 0) {
604 1.1 dyoung /* auto */
605 1.26 skrll ic->ic_fixed_rate = IEEE80211_FIXED_RATE_NONE;
606 1.1 dyoung break;
607 1.1 dyoung }
608 1.34 christos rate = 2 * le16toh(wreq->wi_val[0]);
609 1.1 dyoung if (ic->ic_curmode == IEEE80211_MODE_AUTO) {
610 1.1 dyoung /*
611 1.1 dyoung * In autoselect mode search for the rate. We take
612 1.1 dyoung * the first instance which may not be right, but we
613 1.1 dyoung * are limited by the interface. Note that we also
614 1.1 dyoung * lock the mode to insure the rate is meaningful
615 1.1 dyoung * when it is used.
616 1.1 dyoung */
617 1.1 dyoung for (j = IEEE80211_MODE_11A;
618 1.1 dyoung j < IEEE80211_MODE_MAX; j++) {
619 1.1 dyoung if ((ic->ic_modecaps & (1<<j)) == 0)
620 1.1 dyoung continue;
621 1.1 dyoung i = findrate(ic, j, rate);
622 1.1 dyoung if (i != -1) {
623 1.1 dyoung /* lock mode too */
624 1.1 dyoung ic->ic_curmode = j;
625 1.1 dyoung goto setrate;
626 1.1 dyoung }
627 1.1 dyoung }
628 1.1 dyoung } else {
629 1.1 dyoung i = findrate(ic, ic->ic_curmode, rate);
630 1.1 dyoung if (i != -1)
631 1.1 dyoung goto setrate;
632 1.1 dyoung }
633 1.34 christos goto invalid;
634 1.1 dyoung setrate:
635 1.1 dyoung ic->ic_fixed_rate = i;
636 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
637 1.1 dyoung break;
638 1.1 dyoung case WI_RID_CUR_TX_RATE:
639 1.34 christos error = EPERM;
640 1.34 christos goto out;
641 1.6 dyoung case WI_RID_FRAG_THRESH:
642 1.6 dyoung if (len != 2)
643 1.34 christos goto invalid;
644 1.34 christos ic->ic_fragthreshold = le16toh(wreq->wi_val[0]);
645 1.6 dyoung error = ENETRESET;
646 1.6 dyoung break;
647 1.1 dyoung case WI_RID_RTS_THRESH:
648 1.1 dyoung if (len != 2)
649 1.34 christos goto invalid;
650 1.34 christos ic->ic_rtsthreshold = le16toh(wreq->wi_val[0]);
651 1.6 dyoung error = ENETRESET;
652 1.1 dyoung break;
653 1.1 dyoung case WI_RID_CREATE_IBSS:
654 1.1 dyoung if (len != 2)
655 1.34 christos goto invalid;
656 1.34 christos if (wreq->wi_val[0] != 0) {
657 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_IBSS) == 0)
658 1.34 christos goto invalid;
659 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_IBSSON) == 0) {
660 1.1 dyoung ic->ic_flags |= IEEE80211_F_IBSSON;
661 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_IBSS &&
662 1.1 dyoung ic->ic_state == IEEE80211_S_SCAN)
663 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
664 1.1 dyoung }
665 1.1 dyoung } else {
666 1.1 dyoung if (ic->ic_flags & IEEE80211_F_IBSSON) {
667 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_IBSSON;
668 1.1 dyoung if (ic->ic_flags & IEEE80211_F_SIBSS) {
669 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_SIBSS;
670 1.19 dyoung error = IS_UP_AUTO(ic) ? ENETRESET : 0;
671 1.1 dyoung }
672 1.1 dyoung }
673 1.1 dyoung }
674 1.1 dyoung break;
675 1.1 dyoung case WI_RID_MICROWAVE_OVEN:
676 1.1 dyoung if (len != 2)
677 1.34 christos goto invalid;
678 1.34 christos if (wreq->wi_val[0] != 0)
679 1.34 christos goto invalid; /* not supported */
680 1.1 dyoung break;
681 1.1 dyoung case WI_RID_ROAMING_MODE:
682 1.1 dyoung if (len != 2)
683 1.34 christos goto invalid;
684 1.34 christos i = le16toh(wreq->wi_val[0]);
685 1.19 dyoung if (i > IEEE80211_ROAMING_MANUAL)
686 1.34 christos goto invalid; /* not supported */
687 1.19 dyoung ic->ic_roaming = i;
688 1.1 dyoung break;
689 1.1 dyoung case WI_RID_SYSTEM_SCALE:
690 1.1 dyoung if (len != 2)
691 1.34 christos goto invalid;
692 1.34 christos if (le16toh(wreq->wi_val[0]) != 1)
693 1.34 christos goto invalid; /* not supported */
694 1.1 dyoung break;
695 1.1 dyoung case WI_RID_PM_ENABLED:
696 1.1 dyoung if (len != 2)
697 1.34 christos goto invalid;
698 1.34 christos if (wreq->wi_val[0] != 0) {
699 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
700 1.34 christos goto invalid;
701 1.1 dyoung if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
702 1.1 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
703 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
704 1.1 dyoung }
705 1.1 dyoung } else {
706 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
707 1.1 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
708 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
709 1.1 dyoung }
710 1.1 dyoung }
711 1.1 dyoung break;
712 1.1 dyoung case WI_RID_MAX_SLEEP:
713 1.1 dyoung if (len != 2)
714 1.34 christos goto invalid;
715 1.34 christos ic->ic_lintval = le16toh(wreq->wi_val[0]);
716 1.1 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
717 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
718 1.1 dyoung break;
719 1.1 dyoung case WI_RID_CUR_BEACON_INT:
720 1.1 dyoung case WI_RID_WEP_AVAIL:
721 1.34 christos error = EPERM;
722 1.34 christos goto out;
723 1.1 dyoung case WI_RID_CNFAUTHMODE:
724 1.1 dyoung if (len != 2)
725 1.34 christos goto invalid;
726 1.34 christos i = le16toh(wreq->wi_val[0]);
727 1.19 dyoung if (i > IEEE80211_AUTH_WPA)
728 1.34 christos goto invalid;
729 1.19 dyoung ic->ic_bss->ni_authmode = i; /* XXX ENETRESET? */
730 1.19 dyoung error = ENETRESET;
731 1.1 dyoung break;
732 1.1 dyoung case WI_RID_ENCRYPTION:
733 1.1 dyoung if (len != 2)
734 1.34 christos goto invalid;
735 1.34 christos if (wreq->wi_val[0] != 0) {
736 1.1 dyoung if ((ic->ic_caps & IEEE80211_C_WEP) == 0)
737 1.34 christos goto invalid;
738 1.16 mycroft if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0) {
739 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
740 1.1 dyoung error = ENETRESET;
741 1.1 dyoung }
742 1.1 dyoung } else {
743 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY) {
744 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
745 1.1 dyoung error = ENETRESET;
746 1.1 dyoung }
747 1.1 dyoung }
748 1.1 dyoung break;
749 1.1 dyoung case WI_RID_TX_CRYPT_KEY:
750 1.1 dyoung if (len != 2)
751 1.34 christos goto invalid;
752 1.34 christos i = le16toh(wreq->wi_val[0]);
753 1.1 dyoung if (i >= IEEE80211_WEP_NKID)
754 1.34 christos goto invalid;
755 1.19 dyoung ic->ic_def_txkey = i;
756 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
757 1.1 dyoung break;
758 1.1 dyoung case WI_RID_DEFLT_CRYPT_KEYS:
759 1.1 dyoung if (len != sizeof(struct wi_ltv_keys))
760 1.34 christos goto invalid;
761 1.1 dyoung keys = (struct wi_ltv_keys *)&wreq;
762 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
763 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
764 1.1 dyoung if (len != 0 && len < IEEE80211_WEP_KEYLEN)
765 1.34 christos goto invalid;
766 1.19 dyoung if (len > IEEE80211_KEYBUF_SIZE)
767 1.34 christos goto invalid;
768 1.1 dyoung }
769 1.1 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
770 1.19 dyoung struct ieee80211_key *k = &ic->ic_nw_keys[i];
771 1.19 dyoung
772 1.1 dyoung len = le16toh(keys->wi_keys[i].wi_keylen);
773 1.19 dyoung k->wk_keylen = len;
774 1.19 dyoung k->wk_flags = IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV;
775 1.19 dyoung memset(k->wk_key, 0, sizeof(k->wk_key));
776 1.19 dyoung memcpy(k->wk_key, keys->wi_keys[i].wi_keydat, len);
777 1.19 dyoung #if 0
778 1.19 dyoung k->wk_type = IEEE80211_CIPHER_WEP;
779 1.19 dyoung #endif
780 1.1 dyoung }
781 1.1 dyoung error = ENETRESET;
782 1.1 dyoung break;
783 1.1 dyoung case WI_RID_MAX_DATALEN:
784 1.1 dyoung if (len != 2)
785 1.34 christos goto invalid;
786 1.34 christos len = le16toh(wreq->wi_val[0]);
787 1.1 dyoung if (len < 350 /* ? */ || len > IEEE80211_MAX_LEN)
788 1.34 christos goto invalid;
789 1.1 dyoung ic->ic_fragthreshold = len;
790 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
791 1.1 dyoung break;
792 1.1 dyoung case WI_RID_IFACE_STATS:
793 1.1 dyoung error = EPERM;
794 1.1 dyoung break;
795 1.1 dyoung case WI_RID_SCAN_REQ: /* XXX wicontrol */
796 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
797 1.1 dyoung break;
798 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
799 1.7 dyoung if (error == 0)
800 1.7 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
801 1.1 dyoung break;
802 1.1 dyoung case WI_RID_SCAN_APS:
803 1.1 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
804 1.1 dyoung break;
805 1.1 dyoung len--; /* XXX: tx rate? */
806 1.1 dyoung /* FALLTHRU */
807 1.1 dyoung case WI_RID_CHANNEL_LIST:
808 1.1 dyoung memset(chanlist, 0, sizeof(chanlist));
809 1.1 dyoung /*
810 1.1 dyoung * Since channel 0 is not available for DS, channel 1
811 1.1 dyoung * is assigned to LSB on WaveLAN.
812 1.1 dyoung */
813 1.1 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
814 1.1 dyoung i = 1;
815 1.1 dyoung else
816 1.1 dyoung i = 0;
817 1.1 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
818 1.1 dyoung if ((j / 8) >= len)
819 1.1 dyoung break;
820 1.34 christos if (isclr((u_int8_t *)wreq->wi_val, j))
821 1.1 dyoung continue;
822 1.1 dyoung if (isclr(ic->ic_chan_active, i)) {
823 1.34 christos if (wreq->wi_type != WI_RID_CHANNEL_LIST)
824 1.1 dyoung continue;
825 1.34 christos if (isclr(ic->ic_chan_avail, i)) {
826 1.34 christos error = EPERM;
827 1.34 christos goto out;
828 1.34 christos }
829 1.1 dyoung }
830 1.1 dyoung setbit(chanlist, i);
831 1.1 dyoung }
832 1.19 dyoung error = ieee80211_setupscan(ic, chanlist);
833 1.34 christos if (wreq->wi_type == WI_RID_CHANNEL_LIST) {
834 1.7 dyoung /* NB: ignore error from ieee80211_setupscan */
835 1.1 dyoung error = ENETRESET;
836 1.7 dyoung } else if (error == 0)
837 1.1 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
838 1.1 dyoung break;
839 1.1 dyoung default:
840 1.34 christos goto invalid;
841 1.1 dyoung }
842 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
843 1.19 dyoung error = 0;
844 1.34 christos out:
845 1.34 christos free(wreq, M_TEMP);
846 1.19 dyoung return error;
847 1.34 christos invalid:
848 1.34 christos free(wreq, M_TEMP);
849 1.34 christos return EINVAL;
850 1.19 dyoung }
851 1.19 dyoung
852 1.19 dyoung static int
853 1.19 dyoung cap2cipher(int flag)
854 1.19 dyoung {
855 1.19 dyoung switch (flag) {
856 1.19 dyoung case IEEE80211_C_WEP: return IEEE80211_CIPHER_WEP;
857 1.19 dyoung case IEEE80211_C_AES: return IEEE80211_CIPHER_AES_OCB;
858 1.19 dyoung case IEEE80211_C_AES_CCM: return IEEE80211_CIPHER_AES_CCM;
859 1.19 dyoung case IEEE80211_C_CKIP: return IEEE80211_CIPHER_CKIP;
860 1.19 dyoung case IEEE80211_C_TKIP: return IEEE80211_CIPHER_TKIP;
861 1.19 dyoung }
862 1.19 dyoung return -1;
863 1.19 dyoung }
864 1.19 dyoung
865 1.19 dyoung static int
866 1.19 dyoung ieee80211_ioctl_getkey(struct ieee80211com *ic, struct ieee80211req *ireq)
867 1.19 dyoung {
868 1.19 dyoung struct ieee80211_node *ni;
869 1.19 dyoung struct ieee80211req_key ik;
870 1.19 dyoung struct ieee80211_key *wk;
871 1.19 dyoung const struct ieee80211_cipher *cip;
872 1.19 dyoung u_int kid;
873 1.19 dyoung int error;
874 1.19 dyoung
875 1.19 dyoung if (ireq->i_len != sizeof(ik))
876 1.19 dyoung return EINVAL;
877 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
878 1.19 dyoung if (error)
879 1.19 dyoung return error;
880 1.19 dyoung kid = ik.ik_keyix;
881 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
882 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
883 1.19 dyoung if (ni == NULL)
884 1.19 dyoung return EINVAL; /* XXX */
885 1.19 dyoung wk = &ni->ni_ucastkey;
886 1.19 dyoung } else {
887 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
888 1.19 dyoung return EINVAL;
889 1.19 dyoung wk = &ic->ic_nw_keys[kid];
890 1.19 dyoung IEEE80211_ADDR_COPY(&ik.ik_macaddr, ic->ic_bss->ni_macaddr);
891 1.19 dyoung ni = NULL;
892 1.19 dyoung }
893 1.19 dyoung cip = wk->wk_cipher;
894 1.19 dyoung ik.ik_type = cip->ic_cipher;
895 1.19 dyoung ik.ik_keylen = wk->wk_keylen;
896 1.19 dyoung ik.ik_flags = wk->wk_flags & (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV);
897 1.19 dyoung if (wk->wk_keyix == ic->ic_def_txkey)
898 1.19 dyoung ik.ik_flags |= IEEE80211_KEY_DEFAULT;
899 1.32 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
900 1.32 elad &curproc->p_acflag) == 0) {
901 1.19 dyoung /* NB: only root can read key data */
902 1.19 dyoung ik.ik_keyrsc = wk->wk_keyrsc;
903 1.19 dyoung ik.ik_keytsc = wk->wk_keytsc;
904 1.19 dyoung memcpy(ik.ik_keydata, wk->wk_key, wk->wk_keylen);
905 1.19 dyoung if (cip->ic_cipher == IEEE80211_CIPHER_TKIP) {
906 1.19 dyoung memcpy(ik.ik_keydata+wk->wk_keylen,
907 1.19 dyoung wk->wk_key + IEEE80211_KEYBUF_SIZE,
908 1.19 dyoung IEEE80211_MICBUF_SIZE);
909 1.19 dyoung ik.ik_keylen += IEEE80211_MICBUF_SIZE;
910 1.19 dyoung }
911 1.19 dyoung } else {
912 1.19 dyoung ik.ik_keyrsc = 0;
913 1.19 dyoung ik.ik_keytsc = 0;
914 1.19 dyoung memset(ik.ik_keydata, 0, sizeof(ik.ik_keydata));
915 1.19 dyoung }
916 1.19 dyoung if (ni != NULL)
917 1.19 dyoung ieee80211_free_node(ni);
918 1.19 dyoung return copyout(&ik, ireq->i_data, sizeof(ik));
919 1.19 dyoung }
920 1.19 dyoung
921 1.19 dyoung static int
922 1.19 dyoung ieee80211_ioctl_getchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
923 1.19 dyoung {
924 1.27 christos size_t len = ireq->i_len;
925 1.19 dyoung
926 1.27 christos if (sizeof(ic->ic_chan_active) < len) {
927 1.27 christos len = sizeof(ic->ic_chan_active);
928 1.27 christos }
929 1.27 christos return copyout(&ic->ic_chan_active, ireq->i_data, len);
930 1.19 dyoung }
931 1.19 dyoung
932 1.19 dyoung static int
933 1.19 dyoung ieee80211_ioctl_getchaninfo(struct ieee80211com *ic, struct ieee80211req *ireq)
934 1.19 dyoung {
935 1.35 christos struct ieee80211req_chaninfo *chans;
936 1.35 christos int i, space, error;
937 1.19 dyoung
938 1.19 dyoung /*
939 1.19 dyoung * Since channel 0 is not available for DS, channel 1
940 1.19 dyoung * is assigned to LSB on WaveLAN.
941 1.19 dyoung */
942 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
943 1.19 dyoung i = 1;
944 1.19 dyoung else
945 1.19 dyoung i = 0;
946 1.35 christos
947 1.35 christos chans = malloc(sizeof(*chans), M_TEMP, M_WAITOK|M_ZERO);
948 1.35 christos
949 1.19 dyoung for (; i <= IEEE80211_CHAN_MAX; i++)
950 1.19 dyoung if (isset(ic->ic_chan_avail, i)) {
951 1.19 dyoung struct ieee80211_channel *c = &ic->ic_channels[i];
952 1.35 christos chans->ic_chans[chans->ic_nchans].ic_freq = c->ic_freq;
953 1.35 christos chans->ic_chans[chans->ic_nchans].ic_flags = c->ic_flags;
954 1.35 christos chans->ic_nchans++;
955 1.19 dyoung }
956 1.19 dyoung space = __offsetof(struct ieee80211req_chaninfo,
957 1.35 christos ic_chans[chans->ic_nchans]);
958 1.19 dyoung if (space > ireq->i_len)
959 1.19 dyoung space = ireq->i_len;
960 1.35 christos error = copyout(chans, ireq->i_data, space);
961 1.35 christos free(chans, M_TEMP);
962 1.35 christos return error;
963 1.19 dyoung }
964 1.19 dyoung
965 1.19 dyoung static int
966 1.19 dyoung ieee80211_ioctl_getwpaie(struct ieee80211com *ic, struct ieee80211req *ireq)
967 1.19 dyoung {
968 1.19 dyoung struct ieee80211_node *ni;
969 1.19 dyoung struct ieee80211req_wpaie wpaie;
970 1.19 dyoung int error;
971 1.19 dyoung
972 1.19 dyoung if (ireq->i_len < IEEE80211_ADDR_LEN)
973 1.19 dyoung return EINVAL;
974 1.19 dyoung error = copyin(ireq->i_data, wpaie.wpa_macaddr, IEEE80211_ADDR_LEN);
975 1.19 dyoung if (error != 0)
976 1.19 dyoung return error;
977 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, wpaie.wpa_macaddr);
978 1.19 dyoung if (ni == NULL)
979 1.19 dyoung return EINVAL; /* XXX */
980 1.19 dyoung memset(wpaie.wpa_ie, 0, sizeof(wpaie.wpa_ie));
981 1.19 dyoung if (ni->ni_wpa_ie != NULL) {
982 1.19 dyoung int ielen = ni->ni_wpa_ie[1] + 2;
983 1.19 dyoung if (ielen > sizeof(wpaie.wpa_ie))
984 1.19 dyoung ielen = sizeof(wpaie.wpa_ie);
985 1.19 dyoung memcpy(wpaie.wpa_ie, ni->ni_wpa_ie, ielen);
986 1.19 dyoung }
987 1.19 dyoung ieee80211_free_node(ni);
988 1.19 dyoung if (ireq->i_len > sizeof(wpaie))
989 1.19 dyoung ireq->i_len = sizeof(wpaie);
990 1.19 dyoung return copyout(&wpaie, ireq->i_data, ireq->i_len);
991 1.19 dyoung }
992 1.19 dyoung
993 1.19 dyoung static int
994 1.19 dyoung ieee80211_ioctl_getstastats(struct ieee80211com *ic, struct ieee80211req *ireq)
995 1.19 dyoung {
996 1.19 dyoung struct ieee80211_node *ni;
997 1.19 dyoung u_int8_t macaddr[IEEE80211_ADDR_LEN];
998 1.19 dyoung const int off = __offsetof(struct ieee80211req_sta_stats, is_stats);
999 1.19 dyoung int error;
1000 1.19 dyoung
1001 1.19 dyoung if (ireq->i_len < off)
1002 1.19 dyoung return EINVAL;
1003 1.19 dyoung error = copyin(ireq->i_data, macaddr, IEEE80211_ADDR_LEN);
1004 1.19 dyoung if (error != 0)
1005 1.19 dyoung return error;
1006 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, macaddr);
1007 1.19 dyoung if (ni == NULL)
1008 1.19 dyoung return EINVAL; /* XXX */
1009 1.19 dyoung if (ireq->i_len > sizeof(struct ieee80211req_sta_stats))
1010 1.19 dyoung ireq->i_len = sizeof(struct ieee80211req_sta_stats);
1011 1.19 dyoung /* NB: copy out only the statistics */
1012 1.19 dyoung error = copyout(&ni->ni_stats, (u_int8_t *) ireq->i_data + off,
1013 1.19 dyoung ireq->i_len - off);
1014 1.19 dyoung ieee80211_free_node(ni);
1015 1.19 dyoung return error;
1016 1.19 dyoung }
1017 1.19 dyoung
1018 1.19 dyoung static void
1019 1.19 dyoung get_scan_result(struct ieee80211req_scan_result *sr,
1020 1.19 dyoung const struct ieee80211_node *ni)
1021 1.19 dyoung {
1022 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1023 1.28 christos u_int ielen = 0;
1024 1.19 dyoung
1025 1.19 dyoung memset(sr, 0, sizeof(*sr));
1026 1.19 dyoung sr->isr_ssid_len = ni->ni_esslen;
1027 1.19 dyoung if (ni->ni_wpa_ie != NULL)
1028 1.28 christos ielen += 2+ni->ni_wpa_ie[1];
1029 1.19 dyoung if (ni->ni_wme_ie != NULL)
1030 1.28 christos ielen += 2+ni->ni_wme_ie[1];
1031 1.28 christos
1032 1.28 christos /*
1033 1.28 christos * The value sr->isr_ie_len is defined as a uint8_t, so we
1034 1.28 christos * need to be careful to avoid an integer overflow. If the
1035 1.28 christos * value would overflow, we will set isr_ie_len to zero, and
1036 1.28 christos * ieee80211_ioctl_getscanresults (below) will avoid copying
1037 1.28 christos * the (overflowing) data.
1038 1.28 christos */
1039 1.28 christos if (ielen > 255)
1040 1.28 christos ielen = 0;
1041 1.28 christos sr->isr_ie_len = ielen;
1042 1.19 dyoung sr->isr_len = sizeof(*sr) + sr->isr_ssid_len + sr->isr_ie_len;
1043 1.19 dyoung sr->isr_len = roundup(sr->isr_len, sizeof(u_int32_t));
1044 1.19 dyoung if (ni->ni_chan != IEEE80211_CHAN_ANYC) {
1045 1.19 dyoung sr->isr_freq = ni->ni_chan->ic_freq;
1046 1.19 dyoung sr->isr_flags = ni->ni_chan->ic_flags;
1047 1.19 dyoung }
1048 1.19 dyoung sr->isr_rssi = ic->ic_node_getrssi(ni);
1049 1.19 dyoung sr->isr_intval = ni->ni_intval;
1050 1.19 dyoung sr->isr_capinfo = ni->ni_capinfo;
1051 1.19 dyoung sr->isr_erp = ni->ni_erp;
1052 1.19 dyoung IEEE80211_ADDR_COPY(sr->isr_bssid, ni->ni_bssid);
1053 1.19 dyoung sr->isr_nrates = ni->ni_rates.rs_nrates;
1054 1.19 dyoung if (sr->isr_nrates > 15)
1055 1.19 dyoung sr->isr_nrates = 15;
1056 1.19 dyoung memcpy(sr->isr_rates, ni->ni_rates.rs_rates, sr->isr_nrates);
1057 1.19 dyoung }
1058 1.19 dyoung
1059 1.19 dyoung static int
1060 1.19 dyoung ieee80211_ioctl_getscanresults(struct ieee80211com *ic, struct ieee80211req *ireq)
1061 1.19 dyoung {
1062 1.19 dyoung union {
1063 1.19 dyoung struct ieee80211req_scan_result res;
1064 1.27 christos char data[sizeof(struct ieee80211req_scan_result) + IEEE80211_NWID_LEN + 256 * 2];
1065 1.19 dyoung } u;
1066 1.19 dyoung struct ieee80211req_scan_result *sr = &u.res;
1067 1.19 dyoung struct ieee80211_node_table *nt;
1068 1.19 dyoung struct ieee80211_node *ni;
1069 1.19 dyoung int error, space;
1070 1.19 dyoung u_int8_t *p, *cp;
1071 1.19 dyoung
1072 1.19 dyoung p = ireq->i_data;
1073 1.19 dyoung space = ireq->i_len;
1074 1.19 dyoung error = 0;
1075 1.19 dyoung /* XXX locking */
1076 1.19 dyoung nt = &ic->ic_scan;
1077 1.19 dyoung TAILQ_FOREACH(ni, &nt->nt_node, ni_list) {
1078 1.19 dyoung /* NB: skip pre-scan node state */
1079 1.19 dyoung if (ni->ni_chan == IEEE80211_CHAN_ANYC)
1080 1.19 dyoung continue;
1081 1.19 dyoung get_scan_result(sr, ni);
1082 1.19 dyoung if (sr->isr_len > sizeof(u))
1083 1.19 dyoung continue; /* XXX */
1084 1.19 dyoung if (space < sr->isr_len)
1085 1.19 dyoung break;
1086 1.19 dyoung cp = (u_int8_t *)(sr+1);
1087 1.19 dyoung memcpy(cp, ni->ni_essid, ni->ni_esslen);
1088 1.19 dyoung cp += ni->ni_esslen;
1089 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wpa_ie != NULL) {
1090 1.19 dyoung memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1091 1.19 dyoung cp += 2+ni->ni_wpa_ie[1];
1092 1.19 dyoung }
1093 1.28 christos if (sr->isr_ie_len > 0 && ni->ni_wme_ie != NULL) {
1094 1.19 dyoung memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1095 1.19 dyoung cp += 2+ni->ni_wme_ie[1];
1096 1.19 dyoung }
1097 1.19 dyoung error = copyout(sr, p, sr->isr_len);
1098 1.19 dyoung if (error)
1099 1.19 dyoung break;
1100 1.19 dyoung p += sr->isr_len;
1101 1.19 dyoung space -= sr->isr_len;
1102 1.19 dyoung }
1103 1.19 dyoung ireq->i_len -= space;
1104 1.19 dyoung return error;
1105 1.19 dyoung }
1106 1.19 dyoung
1107 1.26 skrll struct stainforeq {
1108 1.26 skrll struct ieee80211com *ic;
1109 1.26 skrll struct ieee80211req_sta_info *si;
1110 1.26 skrll size_t space;
1111 1.26 skrll };
1112 1.26 skrll
1113 1.26 skrll static size_t
1114 1.26 skrll sta_space(const struct ieee80211_node *ni, size_t *ielen)
1115 1.26 skrll {
1116 1.26 skrll *ielen = 0;
1117 1.26 skrll if (ni->ni_wpa_ie != NULL)
1118 1.26 skrll *ielen += 2+ni->ni_wpa_ie[1];
1119 1.26 skrll if (ni->ni_wme_ie != NULL)
1120 1.26 skrll *ielen += 2+ni->ni_wme_ie[1];
1121 1.26 skrll return roundup(sizeof(struct ieee80211req_sta_info) + *ielen,
1122 1.26 skrll sizeof(u_int32_t));
1123 1.26 skrll }
1124 1.26 skrll
1125 1.19 dyoung static void
1126 1.26 skrll get_sta_space(void *arg, struct ieee80211_node *ni)
1127 1.19 dyoung {
1128 1.26 skrll struct stainforeq *req = arg;
1129 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1130 1.26 skrll size_t ielen;
1131 1.19 dyoung
1132 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1133 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1134 1.26 skrll return;
1135 1.26 skrll req->space += sta_space(ni, &ielen);
1136 1.26 skrll }
1137 1.26 skrll
1138 1.26 skrll static void
1139 1.26 skrll get_sta_info(void *arg, struct ieee80211_node *ni)
1140 1.26 skrll {
1141 1.26 skrll struct stainforeq *req = arg;
1142 1.26 skrll struct ieee80211com *ic = ni->ni_ic;
1143 1.26 skrll struct ieee80211req_sta_info *si;
1144 1.26 skrll size_t ielen, len;
1145 1.26 skrll u_int8_t *cp;
1146 1.26 skrll
1147 1.26 skrll if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
1148 1.26 skrll ni->ni_associd == 0) /* only associated stations */
1149 1.26 skrll return;
1150 1.26 skrll if (ni->ni_chan == IEEE80211_CHAN_ANYC) /* XXX bogus entry */
1151 1.26 skrll return;
1152 1.26 skrll len = sta_space(ni, &ielen);
1153 1.26 skrll if (len > req->space)
1154 1.26 skrll return;
1155 1.26 skrll si = req->si;
1156 1.26 skrll si->isi_len = len;
1157 1.26 skrll si->isi_ie_len = ielen;
1158 1.19 dyoung si->isi_freq = ni->ni_chan->ic_freq;
1159 1.19 dyoung si->isi_flags = ni->ni_chan->ic_flags;
1160 1.19 dyoung si->isi_state = ni->ni_flags;
1161 1.19 dyoung si->isi_authmode = ni->ni_authmode;
1162 1.19 dyoung si->isi_rssi = ic->ic_node_getrssi(ni);
1163 1.19 dyoung si->isi_capinfo = ni->ni_capinfo;
1164 1.19 dyoung si->isi_erp = ni->ni_erp;
1165 1.19 dyoung IEEE80211_ADDR_COPY(si->isi_macaddr, ni->ni_macaddr);
1166 1.19 dyoung si->isi_nrates = ni->ni_rates.rs_nrates;
1167 1.19 dyoung if (si->isi_nrates > 15)
1168 1.19 dyoung si->isi_nrates = 15;
1169 1.19 dyoung memcpy(si->isi_rates, ni->ni_rates.rs_rates, si->isi_nrates);
1170 1.19 dyoung si->isi_txrate = ni->ni_txrate;
1171 1.19 dyoung si->isi_associd = ni->ni_associd;
1172 1.19 dyoung si->isi_txpower = ni->ni_txpower;
1173 1.19 dyoung si->isi_vlan = ni->ni_vlan;
1174 1.19 dyoung if (ni->ni_flags & IEEE80211_NODE_QOS) {
1175 1.19 dyoung memcpy(si->isi_txseqs, ni->ni_txseqs, sizeof(ni->ni_txseqs));
1176 1.19 dyoung memcpy(si->isi_rxseqs, ni->ni_rxseqs, sizeof(ni->ni_rxseqs));
1177 1.19 dyoung } else {
1178 1.19 dyoung si->isi_txseqs[0] = ni->ni_txseqs[0];
1179 1.19 dyoung si->isi_rxseqs[0] = ni->ni_rxseqs[0];
1180 1.19 dyoung }
1181 1.26 skrll /* NB: leave all cases in case we relax ni_associd == 0 check */
1182 1.26 skrll if (ieee80211_node_is_authorized(ni))
1183 1.19 dyoung si->isi_inact = ic->ic_inact_run;
1184 1.26 skrll else if (ni->ni_associd != 0)
1185 1.19 dyoung si->isi_inact = ic->ic_inact_auth;
1186 1.19 dyoung else
1187 1.19 dyoung si->isi_inact = ic->ic_inact_init;
1188 1.19 dyoung si->isi_inact = (si->isi_inact - ni->ni_inact) * IEEE80211_INACT_WAIT;
1189 1.26 skrll
1190 1.26 skrll cp = (u_int8_t *)(si+1);
1191 1.26 skrll if (ni->ni_wpa_ie != NULL) {
1192 1.26 skrll memcpy(cp, ni->ni_wpa_ie, 2+ni->ni_wpa_ie[1]);
1193 1.26 skrll cp += 2+ni->ni_wpa_ie[1];
1194 1.26 skrll }
1195 1.26 skrll if (ni->ni_wme_ie != NULL) {
1196 1.26 skrll memcpy(cp, ni->ni_wme_ie, 2+ni->ni_wme_ie[1]);
1197 1.26 skrll cp += 2+ni->ni_wme_ie[1];
1198 1.26 skrll }
1199 1.26 skrll
1200 1.26 skrll req->si = (struct ieee80211req_sta_info *)(((u_int8_t *)si) + len);
1201 1.26 skrll req->space -= len;
1202 1.19 dyoung }
1203 1.19 dyoung
1204 1.19 dyoung static int
1205 1.19 dyoung ieee80211_ioctl_getstainfo(struct ieee80211com *ic, struct ieee80211req *ireq)
1206 1.19 dyoung {
1207 1.26 skrll struct stainforeq req;
1208 1.26 skrll int error;
1209 1.26 skrll
1210 1.26 skrll if (ireq->i_len < sizeof(struct stainforeq))
1211 1.26 skrll return EFAULT;
1212 1.19 dyoung
1213 1.19 dyoung error = 0;
1214 1.26 skrll req.space = 0;
1215 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_space, &req);
1216 1.26 skrll if (req.space > ireq->i_len)
1217 1.26 skrll req.space = ireq->i_len;
1218 1.26 skrll if (req.space > 0) {
1219 1.26 skrll size_t space;
1220 1.26 skrll void *p;
1221 1.26 skrll
1222 1.26 skrll space = req.space;
1223 1.26 skrll /* XXX M_WAITOK after driver lock released */
1224 1.31 christos p = malloc(space, M_TEMP, M_NOWAIT);
1225 1.26 skrll if (p == NULL)
1226 1.26 skrll return ENOMEM;
1227 1.26 skrll req.si = p;
1228 1.26 skrll ieee80211_iterate_nodes(&ic->ic_sta, get_sta_info, &req);
1229 1.26 skrll ireq->i_len = space - req.space;
1230 1.26 skrll error = copyout(p, ireq->i_data, ireq->i_len);
1231 1.26 skrll FREE(p, M_TEMP);
1232 1.26 skrll } else
1233 1.26 skrll ireq->i_len = 0;
1234 1.26 skrll
1235 1.19 dyoung return error;
1236 1.19 dyoung }
1237 1.19 dyoung
1238 1.19 dyoung static int
1239 1.19 dyoung ieee80211_ioctl_getstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1240 1.19 dyoung {
1241 1.19 dyoung struct ieee80211_node *ni;
1242 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1243 1.19 dyoung int error;
1244 1.19 dyoung
1245 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1246 1.19 dyoung return EINVAL;
1247 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1248 1.19 dyoung if (error != 0)
1249 1.19 dyoung return error;
1250 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1251 1.19 dyoung if (ni == NULL)
1252 1.19 dyoung return EINVAL; /* XXX */
1253 1.19 dyoung txpow.it_txpow = ni->ni_txpower;
1254 1.19 dyoung error = copyout(&txpow, ireq->i_data, sizeof(txpow));
1255 1.19 dyoung ieee80211_free_node(ni);
1256 1.1 dyoung return error;
1257 1.1 dyoung }
1258 1.1 dyoung
1259 1.19 dyoung static int
1260 1.19 dyoung ieee80211_ioctl_getwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1261 1.19 dyoung {
1262 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1263 1.19 dyoung struct wmeParams *wmep;
1264 1.19 dyoung int ac;
1265 1.19 dyoung
1266 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1267 1.19 dyoung return EINVAL;
1268 1.19 dyoung
1269 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1270 1.19 dyoung if (ac >= WME_NUM_AC)
1271 1.19 dyoung ac = WME_AC_BE;
1272 1.19 dyoung if (ireq->i_len & IEEE80211_WMEPARAM_BSS)
1273 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1274 1.19 dyoung else
1275 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1276 1.19 dyoung switch (ireq->i_type) {
1277 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1278 1.19 dyoung ireq->i_val = wmep->wmep_logcwmin;
1279 1.19 dyoung break;
1280 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1281 1.19 dyoung ireq->i_val = wmep->wmep_logcwmax;
1282 1.19 dyoung break;
1283 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1284 1.19 dyoung ireq->i_val = wmep->wmep_aifsn;
1285 1.19 dyoung break;
1286 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1287 1.19 dyoung ireq->i_val = wmep->wmep_txopLimit;
1288 1.19 dyoung break;
1289 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1290 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1291 1.19 dyoung ireq->i_val = wmep->wmep_acm;
1292 1.19 dyoung break;
1293 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1294 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1295 1.19 dyoung ireq->i_val = !wmep->wmep_noackPolicy;
1296 1.19 dyoung break;
1297 1.19 dyoung }
1298 1.19 dyoung return 0;
1299 1.19 dyoung }
1300 1.19 dyoung
1301 1.26 skrll static int
1302 1.26 skrll ieee80211_ioctl_getmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1303 1.26 skrll {
1304 1.26 skrll const struct ieee80211_aclator *acl = ic->ic_acl;
1305 1.26 skrll
1306 1.26 skrll return (acl == NULL ? EINVAL : acl->iac_getioctl(ic, ireq));
1307 1.26 skrll }
1308 1.26 skrll
1309 1.19 dyoung /*
1310 1.19 dyoung * When building the kernel with -O2 on the i386 architecture, gcc
1311 1.19 dyoung * seems to want to inline this function into ieee80211_ioctl()
1312 1.19 dyoung * (which is the only routine that calls it). When this happens,
1313 1.19 dyoung * ieee80211_ioctl() ends up consuming an additional 2K of stack
1314 1.19 dyoung * space. (Exactly why it needs so much is unclear.) The problem
1315 1.19 dyoung * is that it's possible for ieee80211_ioctl() to invoke other
1316 1.19 dyoung * routines (including driver init functions) which could then find
1317 1.19 dyoung * themselves perilously close to exhausting the stack.
1318 1.19 dyoung *
1319 1.19 dyoung * To avoid this, we deliberately prevent gcc from inlining this
1320 1.19 dyoung * routine. Another way to avoid this is to use less agressive
1321 1.19 dyoung * optimization when compiling this file (i.e. -O instead of -O2)
1322 1.19 dyoung * but special-casing the compilation of this one module in the
1323 1.19 dyoung * build system would be awkward.
1324 1.19 dyoung */
1325 1.19 dyoung #ifdef __GNUC__
1326 1.19 dyoung __attribute__ ((noinline))
1327 1.19 dyoung #endif
1328 1.19 dyoung static int
1329 1.19 dyoung ieee80211_ioctl_get80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
1330 1.1 dyoung {
1331 1.19 dyoung const struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
1332 1.1 dyoung int error = 0;
1333 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1334 1.23 dyoung u_int kid, len;
1335 1.1 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
1336 1.1 dyoung char tmpssid[IEEE80211_NWID_LEN];
1337 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1338 1.23 dyoung u_int m;
1339 1.1 dyoung
1340 1.19 dyoung switch (ireq->i_type) {
1341 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1342 1.19 dyoung case IEEE80211_IOC_SSID:
1343 1.19 dyoung switch (ic->ic_state) {
1344 1.19 dyoung case IEEE80211_S_INIT:
1345 1.19 dyoung case IEEE80211_S_SCAN:
1346 1.19 dyoung ireq->i_len = ic->ic_des_esslen;
1347 1.19 dyoung memcpy(tmpssid, ic->ic_des_essid, ireq->i_len);
1348 1.1 dyoung break;
1349 1.19 dyoung default:
1350 1.19 dyoung ireq->i_len = ic->ic_bss->ni_esslen;
1351 1.19 dyoung memcpy(tmpssid, ic->ic_bss->ni_essid,
1352 1.19 dyoung ireq->i_len);
1353 1.1 dyoung break;
1354 1.19 dyoung }
1355 1.19 dyoung error = copyout(tmpssid, ireq->i_data, ireq->i_len);
1356 1.19 dyoung break;
1357 1.19 dyoung case IEEE80211_IOC_NUMSSIDS:
1358 1.19 dyoung ireq->i_val = 1;
1359 1.19 dyoung break;
1360 1.19 dyoung case IEEE80211_IOC_WEP:
1361 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_PRIVACY) == 0)
1362 1.19 dyoung ireq->i_val = IEEE80211_WEP_OFF;
1363 1.19 dyoung else if (ic->ic_flags & IEEE80211_F_DROPUNENC)
1364 1.19 dyoung ireq->i_val = IEEE80211_WEP_ON;
1365 1.19 dyoung else
1366 1.19 dyoung ireq->i_val = IEEE80211_WEP_MIXED;
1367 1.19 dyoung break;
1368 1.19 dyoung case IEEE80211_IOC_WEPKEY:
1369 1.19 dyoung kid = (u_int) ireq->i_val;
1370 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1371 1.19 dyoung return EINVAL;
1372 1.19 dyoung len = (u_int) ic->ic_nw_keys[kid].wk_keylen;
1373 1.19 dyoung /* NB: only root can read WEP keys */
1374 1.32 elad if (kauth_authorize_generic(curproc->p_cred, KAUTH_GENERIC_ISSUSER,
1375 1.32 elad &curproc->p_acflag) == 0) {
1376 1.19 dyoung bcopy(ic->ic_nw_keys[kid].wk_key, tmpkey, len);
1377 1.19 dyoung } else {
1378 1.19 dyoung bzero(tmpkey, len);
1379 1.19 dyoung }
1380 1.19 dyoung ireq->i_len = len;
1381 1.19 dyoung error = copyout(tmpkey, ireq->i_data, len);
1382 1.19 dyoung break;
1383 1.19 dyoung case IEEE80211_IOC_NUMWEPKEYS:
1384 1.19 dyoung ireq->i_val = IEEE80211_WEP_NKID;
1385 1.19 dyoung break;
1386 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
1387 1.19 dyoung ireq->i_val = ic->ic_def_txkey;
1388 1.19 dyoung break;
1389 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1390 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
1391 1.19 dyoung if (ic->ic_flags & IEEE80211_F_WPA)
1392 1.19 dyoung ireq->i_val = IEEE80211_AUTH_WPA;
1393 1.19 dyoung else
1394 1.19 dyoung ireq->i_val = ic->ic_bss->ni_authmode;
1395 1.19 dyoung break;
1396 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1397 1.19 dyoung case IEEE80211_IOC_CHANNEL:
1398 1.26 skrll ireq->i_val = ieee80211_chan2ieee(ic, ic->ic_curchan);
1399 1.19 dyoung break;
1400 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
1401 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON)
1402 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_ON;
1403 1.19 dyoung else
1404 1.19 dyoung ireq->i_val = IEEE80211_POWERSAVE_OFF;
1405 1.19 dyoung break;
1406 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
1407 1.19 dyoung ireq->i_val = ic->ic_lintval;
1408 1.19 dyoung break;
1409 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1410 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
1411 1.19 dyoung ireq->i_val = ic->ic_rtsthreshold;
1412 1.19 dyoung break;
1413 1.19 dyoung case IEEE80211_IOC_PROTMODE:
1414 1.19 dyoung ireq->i_val = ic->ic_protmode;
1415 1.19 dyoung break;
1416 1.19 dyoung case IEEE80211_IOC_TXPOWER:
1417 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
1418 1.19 dyoung return EINVAL;
1419 1.19 dyoung ireq->i_val = ic->ic_txpowlimit;
1420 1.19 dyoung break;
1421 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
1422 1.19 dyoung ireq->i_val = rsn->rsn_mcastcipher;
1423 1.19 dyoung break;
1424 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
1425 1.19 dyoung ireq->i_val = rsn->rsn_mcastkeylen;
1426 1.19 dyoung break;
1427 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
1428 1.19 dyoung ireq->i_val = 0;
1429 1.19 dyoung for (m = 0x1; m != 0; m <<= 1)
1430 1.19 dyoung if (rsn->rsn_ucastcipherset & m)
1431 1.19 dyoung ireq->i_val |= 1<<cap2cipher(m);
1432 1.19 dyoung break;
1433 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
1434 1.19 dyoung ireq->i_val = rsn->rsn_ucastcipher;
1435 1.19 dyoung break;
1436 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
1437 1.19 dyoung ireq->i_val = rsn->rsn_ucastkeylen;
1438 1.19 dyoung break;
1439 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
1440 1.19 dyoung ireq->i_val = rsn->rsn_keymgmtset;
1441 1.19 dyoung break;
1442 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
1443 1.19 dyoung ireq->i_val = rsn->rsn_caps;
1444 1.19 dyoung break;
1445 1.19 dyoung case IEEE80211_IOC_WPA:
1446 1.19 dyoung switch (ic->ic_flags & IEEE80211_F_WPA) {
1447 1.19 dyoung case IEEE80211_F_WPA1:
1448 1.19 dyoung ireq->i_val = 1;
1449 1.19 dyoung break;
1450 1.19 dyoung case IEEE80211_F_WPA2:
1451 1.19 dyoung ireq->i_val = 2;
1452 1.19 dyoung break;
1453 1.19 dyoung case IEEE80211_F_WPA1 | IEEE80211_F_WPA2:
1454 1.19 dyoung ireq->i_val = 3;
1455 1.19 dyoung break;
1456 1.19 dyoung default:
1457 1.19 dyoung ireq->i_val = 0;
1458 1.19 dyoung break;
1459 1.19 dyoung }
1460 1.19 dyoung break;
1461 1.19 dyoung case IEEE80211_IOC_CHANLIST:
1462 1.19 dyoung error = ieee80211_ioctl_getchanlist(ic, ireq);
1463 1.19 dyoung break;
1464 1.19 dyoung case IEEE80211_IOC_ROAMING:
1465 1.19 dyoung ireq->i_val = ic->ic_roaming;
1466 1.19 dyoung break;
1467 1.19 dyoung case IEEE80211_IOC_PRIVACY:
1468 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PRIVACY) != 0;
1469 1.19 dyoung break;
1470 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
1471 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_DROPUNENC) != 0;
1472 1.19 dyoung break;
1473 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
1474 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_COUNTERM) != 0;
1475 1.19 dyoung break;
1476 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
1477 1.19 dyoung ireq->i_val = ic->ic_caps>>16;
1478 1.19 dyoung ireq->i_len = ic->ic_caps&0xffff;
1479 1.19 dyoung break;
1480 1.19 dyoung case IEEE80211_IOC_WME:
1481 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_WME) != 0;
1482 1.19 dyoung break;
1483 1.19 dyoung case IEEE80211_IOC_HIDESSID:
1484 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_HIDESSID) != 0;
1485 1.19 dyoung break;
1486 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
1487 1.19 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_NOBRIDGE) == 0;
1488 1.19 dyoung break;
1489 1.19 dyoung case IEEE80211_IOC_OPTIE:
1490 1.19 dyoung if (ic->ic_opt_ie == NULL)
1491 1.19 dyoung return EINVAL;
1492 1.19 dyoung /* NB: truncate, caller can check length */
1493 1.19 dyoung if (ireq->i_len > ic->ic_opt_ie_len)
1494 1.19 dyoung ireq->i_len = ic->ic_opt_ie_len;
1495 1.19 dyoung error = copyout(ic->ic_opt_ie, ireq->i_data, ireq->i_len);
1496 1.19 dyoung break;
1497 1.19 dyoung case IEEE80211_IOC_WPAKEY:
1498 1.19 dyoung error = ieee80211_ioctl_getkey(ic, ireq);
1499 1.19 dyoung break;
1500 1.19 dyoung case IEEE80211_IOC_CHANINFO:
1501 1.19 dyoung error = ieee80211_ioctl_getchaninfo(ic, ireq);
1502 1.19 dyoung break;
1503 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
1504 1.19 dyoung case IEEE80211_IOC_BSSID:
1505 1.19 dyoung if (ireq->i_len != IEEE80211_ADDR_LEN)
1506 1.19 dyoung return EINVAL;
1507 1.19 dyoung error = copyout(ic->ic_state == IEEE80211_S_RUN ?
1508 1.19 dyoung ic->ic_bss->ni_bssid :
1509 1.19 dyoung ic->ic_des_bssid,
1510 1.19 dyoung ireq->i_data, ireq->i_len);
1511 1.19 dyoung break;
1512 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
1513 1.19 dyoung case IEEE80211_IOC_WPAIE:
1514 1.19 dyoung error = ieee80211_ioctl_getwpaie(ic, ireq);
1515 1.19 dyoung break;
1516 1.19 dyoung case IEEE80211_IOC_SCAN_RESULTS:
1517 1.19 dyoung error = ieee80211_ioctl_getscanresults(ic, ireq);
1518 1.19 dyoung break;
1519 1.19 dyoung case IEEE80211_IOC_STA_STATS:
1520 1.19 dyoung error = ieee80211_ioctl_getstastats(ic, ireq);
1521 1.19 dyoung break;
1522 1.19 dyoung case IEEE80211_IOC_TXPOWMAX:
1523 1.19 dyoung ireq->i_val = ic->ic_bss->ni_txpower;
1524 1.19 dyoung break;
1525 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
1526 1.19 dyoung error = ieee80211_ioctl_getstatxpow(ic, ireq);
1527 1.19 dyoung break;
1528 1.19 dyoung case IEEE80211_IOC_STA_INFO:
1529 1.19 dyoung error = ieee80211_ioctl_getstainfo(ic, ireq);
1530 1.19 dyoung break;
1531 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1532 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1533 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1534 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1535 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1536 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
1537 1.19 dyoung error = ieee80211_ioctl_getwmeparam(ic, ireq);
1538 1.19 dyoung break;
1539 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
1540 1.19 dyoung ireq->i_val = ic->ic_dtim_period;
1541 1.19 dyoung break;
1542 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
1543 1.19 dyoung /* NB: get from ic_bss for station mode */
1544 1.19 dyoung ireq->i_val = ic->ic_bss->ni_intval;
1545 1.19 dyoung break;
1546 1.21 dyoung case IEEE80211_IOC_PUREG:
1547 1.21 dyoung ireq->i_val = (ic->ic_flags & IEEE80211_F_PUREG) != 0;
1548 1.21 dyoung break;
1549 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
1550 1.30 dyoung ireq->i_val = ic->ic_mcast_rate;
1551 1.30 dyoung break;
1552 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
1553 1.26 skrll ireq->i_val = ic->ic_fragthreshold;
1554 1.26 skrll break;
1555 1.26 skrll case IEEE80211_IOC_MACCMD:
1556 1.26 skrll error = ieee80211_ioctl_getmaccmd(ic, ireq);
1557 1.26 skrll break;
1558 1.19 dyoung default:
1559 1.19 dyoung error = EINVAL;
1560 1.19 dyoung break;
1561 1.19 dyoung }
1562 1.19 dyoung return error;
1563 1.19 dyoung }
1564 1.19 dyoung
1565 1.19 dyoung static int
1566 1.19 dyoung ieee80211_ioctl_setoptie(struct ieee80211com *ic, struct ieee80211req *ireq)
1567 1.19 dyoung {
1568 1.19 dyoung int error;
1569 1.19 dyoung void *ie;
1570 1.19 dyoung
1571 1.19 dyoung /*
1572 1.19 dyoung * NB: Doing this for ap operation could be useful (e.g. for
1573 1.19 dyoung * WPA and/or WME) except that it typically is worthless
1574 1.19 dyoung * without being able to intervene when processing
1575 1.19 dyoung * association response frames--so disallow it for now.
1576 1.19 dyoung */
1577 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1578 1.19 dyoung return EINVAL;
1579 1.19 dyoung if (ireq->i_len > IEEE80211_MAX_OPT_IE)
1580 1.19 dyoung return EINVAL;
1581 1.19 dyoung /* NB: data.length is validated by the wireless extensions code */
1582 1.31 christos ie = malloc(ireq->i_len, M_DEVBUF, M_WAITOK);
1583 1.19 dyoung if (ie == NULL)
1584 1.19 dyoung return ENOMEM;
1585 1.19 dyoung error = copyin(ireq->i_data, ie, ireq->i_len);
1586 1.19 dyoung /* XXX sanity check data? */
1587 1.19 dyoung if (ic->ic_opt_ie != NULL)
1588 1.19 dyoung FREE(ic->ic_opt_ie, M_DEVBUF);
1589 1.19 dyoung ic->ic_opt_ie = ie;
1590 1.19 dyoung ic->ic_opt_ie_len = ireq->i_len;
1591 1.19 dyoung return 0;
1592 1.19 dyoung }
1593 1.19 dyoung
1594 1.19 dyoung static int
1595 1.19 dyoung ieee80211_ioctl_setkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1596 1.19 dyoung {
1597 1.19 dyoung struct ieee80211req_key ik;
1598 1.19 dyoung struct ieee80211_node *ni;
1599 1.19 dyoung struct ieee80211_key *wk;
1600 1.19 dyoung u_int16_t kid;
1601 1.19 dyoung int error;
1602 1.19 dyoung
1603 1.19 dyoung if (ireq->i_len != sizeof(ik))
1604 1.19 dyoung return EINVAL;
1605 1.19 dyoung error = copyin(ireq->i_data, &ik, sizeof(ik));
1606 1.19 dyoung if (error)
1607 1.19 dyoung return error;
1608 1.19 dyoung /* NB: cipher support is verified by ieee80211_crypt_newkey */
1609 1.19 dyoung /* NB: this also checks ik->ik_keylen > sizeof(wk->wk_key) */
1610 1.19 dyoung if (ik.ik_keylen > sizeof(ik.ik_keydata))
1611 1.19 dyoung return E2BIG;
1612 1.19 dyoung kid = ik.ik_keyix;
1613 1.19 dyoung if (kid == IEEE80211_KEYIX_NONE) {
1614 1.19 dyoung /* XXX unicast keys currently must be tx/rx */
1615 1.19 dyoung if (ik.ik_flags != (IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV))
1616 1.19 dyoung return EINVAL;
1617 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1618 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1619 1.21 dyoung if (!IEEE80211_ADDR_EQ(ik.ik_macaddr, ni->ni_bssid)) {
1620 1.21 dyoung ieee80211_free_node(ni);
1621 1.19 dyoung return EADDRNOTAVAIL;
1622 1.21 dyoung }
1623 1.19 dyoung } else {
1624 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, ik.ik_macaddr);
1625 1.19 dyoung if (ni == NULL)
1626 1.19 dyoung return ENOENT;
1627 1.19 dyoung }
1628 1.19 dyoung wk = &ni->ni_ucastkey;
1629 1.19 dyoung } else {
1630 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1631 1.19 dyoung return EINVAL;
1632 1.19 dyoung wk = &ic->ic_nw_keys[kid];
1633 1.19 dyoung ni = NULL;
1634 1.19 dyoung }
1635 1.19 dyoung error = 0;
1636 1.19 dyoung ieee80211_key_update_begin(ic);
1637 1.19 dyoung if (ieee80211_crypto_newkey(ic, ik.ik_type, ik.ik_flags, wk)) {
1638 1.19 dyoung wk->wk_keylen = ik.ik_keylen;
1639 1.19 dyoung /* NB: MIC presence is implied by cipher type */
1640 1.19 dyoung if (wk->wk_keylen > IEEE80211_KEYBUF_SIZE)
1641 1.19 dyoung wk->wk_keylen = IEEE80211_KEYBUF_SIZE;
1642 1.19 dyoung wk->wk_keyrsc = ik.ik_keyrsc;
1643 1.19 dyoung wk->wk_keytsc = 0; /* new key, reset */
1644 1.19 dyoung memset(wk->wk_key, 0, sizeof(wk->wk_key));
1645 1.19 dyoung memcpy(wk->wk_key, ik.ik_keydata, ik.ik_keylen);
1646 1.19 dyoung if (!ieee80211_crypto_setkey(ic, wk,
1647 1.19 dyoung ni != NULL ? ni->ni_macaddr : ik.ik_macaddr))
1648 1.19 dyoung error = EIO;
1649 1.19 dyoung else if ((ik.ik_flags & IEEE80211_KEY_DEFAULT))
1650 1.19 dyoung ic->ic_def_txkey = kid;
1651 1.19 dyoung } else
1652 1.19 dyoung error = ENXIO;
1653 1.19 dyoung ieee80211_key_update_end(ic);
1654 1.19 dyoung if (ni != NULL)
1655 1.19 dyoung ieee80211_free_node(ni);
1656 1.19 dyoung return error;
1657 1.19 dyoung }
1658 1.19 dyoung
1659 1.19 dyoung static int
1660 1.19 dyoung ieee80211_ioctl_delkey(struct ieee80211com *ic, struct ieee80211req *ireq)
1661 1.19 dyoung {
1662 1.19 dyoung struct ieee80211req_del_key dk;
1663 1.19 dyoung int kid, error;
1664 1.19 dyoung
1665 1.19 dyoung if (ireq->i_len != sizeof(dk))
1666 1.19 dyoung return EINVAL;
1667 1.19 dyoung error = copyin(ireq->i_data, &dk, sizeof(dk));
1668 1.19 dyoung if (error)
1669 1.19 dyoung return error;
1670 1.19 dyoung kid = dk.idk_keyix;
1671 1.19 dyoung /* XXX u_int8_t -> u_int16_t */
1672 1.19 dyoung if (dk.idk_keyix == (u_int8_t) IEEE80211_KEYIX_NONE) {
1673 1.19 dyoung struct ieee80211_node *ni;
1674 1.19 dyoung
1675 1.21 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
1676 1.21 dyoung ni = ieee80211_ref_node(ic->ic_bss);
1677 1.21 dyoung if (!IEEE80211_ADDR_EQ(dk.idk_macaddr, ni->ni_bssid)) {
1678 1.21 dyoung ieee80211_free_node(ni);
1679 1.21 dyoung return EADDRNOTAVAIL;
1680 1.21 dyoung }
1681 1.21 dyoung } else {
1682 1.21 dyoung ni = ieee80211_find_node(&ic->ic_sta, dk.idk_macaddr);
1683 1.21 dyoung if (ni == NULL)
1684 1.21 dyoung return ENOENT;
1685 1.21 dyoung }
1686 1.19 dyoung /* XXX error return */
1687 1.26 skrll ieee80211_node_delucastkey(ni);
1688 1.19 dyoung ieee80211_free_node(ni);
1689 1.19 dyoung } else {
1690 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
1691 1.19 dyoung return EINVAL;
1692 1.19 dyoung /* XXX error return */
1693 1.19 dyoung ieee80211_crypto_delkey(ic, &ic->ic_nw_keys[kid]);
1694 1.19 dyoung }
1695 1.19 dyoung return 0;
1696 1.19 dyoung }
1697 1.19 dyoung
1698 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1699 1.19 dyoung static void
1700 1.19 dyoung domlme(void *arg, struct ieee80211_node *ni)
1701 1.19 dyoung {
1702 1.19 dyoung struct ieee80211com *ic = ni->ni_ic;
1703 1.19 dyoung struct ieee80211req_mlme *mlme = arg;
1704 1.19 dyoung
1705 1.19 dyoung if (ni->ni_associd != 0) {
1706 1.19 dyoung IEEE80211_SEND_MGMT(ic, ni,
1707 1.19 dyoung mlme->im_op == IEEE80211_MLME_DEAUTH ?
1708 1.19 dyoung IEEE80211_FC0_SUBTYPE_DEAUTH :
1709 1.19 dyoung IEEE80211_FC0_SUBTYPE_DISASSOC,
1710 1.19 dyoung mlme->im_reason);
1711 1.19 dyoung }
1712 1.19 dyoung ieee80211_node_leave(ic, ni);
1713 1.19 dyoung }
1714 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1715 1.19 dyoung
1716 1.19 dyoung static int
1717 1.19 dyoung ieee80211_ioctl_setmlme(struct ieee80211com *ic, struct ieee80211req *ireq)
1718 1.19 dyoung {
1719 1.19 dyoung struct ieee80211req_mlme mlme;
1720 1.19 dyoung struct ieee80211_node *ni;
1721 1.19 dyoung int error;
1722 1.19 dyoung
1723 1.19 dyoung if (ireq->i_len != sizeof(mlme))
1724 1.19 dyoung return EINVAL;
1725 1.19 dyoung error = copyin(ireq->i_data, &mlme, sizeof(mlme));
1726 1.19 dyoung if (error)
1727 1.19 dyoung return error;
1728 1.19 dyoung switch (mlme.im_op) {
1729 1.19 dyoung case IEEE80211_MLME_ASSOC:
1730 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
1731 1.19 dyoung return EINVAL;
1732 1.19 dyoung /* XXX must be in S_SCAN state? */
1733 1.19 dyoung
1734 1.21 dyoung if (mlme.im_ssid_len != 0) {
1735 1.19 dyoung /*
1736 1.19 dyoung * Desired ssid specified; must match both bssid and
1737 1.19 dyoung * ssid to distinguish ap advertising multiple ssid's.
1738 1.19 dyoung */
1739 1.19 dyoung ni = ieee80211_find_node_with_ssid(&ic->ic_scan,
1740 1.19 dyoung mlme.im_macaddr,
1741 1.21 dyoung mlme.im_ssid_len, mlme.im_ssid);
1742 1.19 dyoung } else {
1743 1.19 dyoung /*
1744 1.19 dyoung * Normal case; just match bssid.
1745 1.19 dyoung */
1746 1.19 dyoung ni = ieee80211_find_node(&ic->ic_scan, mlme.im_macaddr);
1747 1.19 dyoung }
1748 1.19 dyoung if (ni == NULL)
1749 1.19 dyoung return EINVAL;
1750 1.19 dyoung if (!ieee80211_sta_join(ic, ni)) {
1751 1.19 dyoung ieee80211_free_node(ni);
1752 1.19 dyoung return EINVAL;
1753 1.19 dyoung }
1754 1.19 dyoung break;
1755 1.19 dyoung case IEEE80211_MLME_DISASSOC:
1756 1.19 dyoung case IEEE80211_MLME_DEAUTH:
1757 1.19 dyoung switch (ic->ic_opmode) {
1758 1.19 dyoung case IEEE80211_M_STA:
1759 1.19 dyoung /* XXX not quite right */
1760 1.19 dyoung ieee80211_new_state(ic, IEEE80211_S_INIT,
1761 1.19 dyoung mlme.im_reason);
1762 1.19 dyoung break;
1763 1.19 dyoung case IEEE80211_M_HOSTAP:
1764 1.20 dyoung #ifndef IEEE80211_NO_HOSTAP
1765 1.19 dyoung /* NB: the broadcast address means do 'em all */
1766 1.19 dyoung if (!IEEE80211_ADDR_EQ(mlme.im_macaddr, ic->ic_ifp->if_broadcastaddr)) {
1767 1.19 dyoung if ((ni = ieee80211_find_node(&ic->ic_sta,
1768 1.19 dyoung mlme.im_macaddr)) == NULL)
1769 1.19 dyoung return EINVAL;
1770 1.19 dyoung domlme(&mlme, ni);
1771 1.19 dyoung ieee80211_free_node(ni);
1772 1.1 dyoung } else {
1773 1.19 dyoung ieee80211_iterate_nodes(&ic->ic_sta,
1774 1.19 dyoung domlme, &mlme);
1775 1.1 dyoung }
1776 1.20 dyoung #endif /* !IEEE80211_NO_HOSTAP */
1777 1.1 dyoung break;
1778 1.19 dyoung default:
1779 1.19 dyoung return EINVAL;
1780 1.19 dyoung }
1781 1.19 dyoung break;
1782 1.19 dyoung case IEEE80211_MLME_AUTHORIZE:
1783 1.19 dyoung case IEEE80211_MLME_UNAUTHORIZE:
1784 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP)
1785 1.19 dyoung return EINVAL;
1786 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, mlme.im_macaddr);
1787 1.19 dyoung if (ni == NULL)
1788 1.19 dyoung return EINVAL;
1789 1.19 dyoung if (mlme.im_op == IEEE80211_MLME_AUTHORIZE)
1790 1.26 skrll ieee80211_node_authorize(ni);
1791 1.19 dyoung else
1792 1.26 skrll ieee80211_node_unauthorize(ni);
1793 1.19 dyoung ieee80211_free_node(ni);
1794 1.19 dyoung break;
1795 1.19 dyoung default:
1796 1.19 dyoung return EINVAL;
1797 1.19 dyoung }
1798 1.19 dyoung return 0;
1799 1.19 dyoung }
1800 1.19 dyoung
1801 1.19 dyoung static int
1802 1.19 dyoung ieee80211_ioctl_macmac(struct ieee80211com *ic, struct ieee80211req *ireq)
1803 1.19 dyoung {
1804 1.19 dyoung u_int8_t mac[IEEE80211_ADDR_LEN];
1805 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1806 1.19 dyoung int error;
1807 1.19 dyoung
1808 1.19 dyoung if (ireq->i_len != sizeof(mac))
1809 1.19 dyoung return EINVAL;
1810 1.19 dyoung error = copyin(ireq->i_data, mac, ireq->i_len);
1811 1.19 dyoung if (error)
1812 1.19 dyoung return error;
1813 1.19 dyoung if (acl == NULL) {
1814 1.19 dyoung acl = ieee80211_aclator_get("mac");
1815 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1816 1.19 dyoung return EINVAL;
1817 1.19 dyoung ic->ic_acl = acl;
1818 1.19 dyoung }
1819 1.19 dyoung if (ireq->i_type == IEEE80211_IOC_ADDMAC)
1820 1.19 dyoung acl->iac_add(ic, mac);
1821 1.19 dyoung else
1822 1.19 dyoung acl->iac_remove(ic, mac);
1823 1.19 dyoung return 0;
1824 1.19 dyoung }
1825 1.19 dyoung
1826 1.19 dyoung static int
1827 1.26 skrll ieee80211_ioctl_setmaccmd(struct ieee80211com *ic, struct ieee80211req *ireq)
1828 1.19 dyoung {
1829 1.19 dyoung const struct ieee80211_aclator *acl = ic->ic_acl;
1830 1.19 dyoung
1831 1.19 dyoung switch (ireq->i_val) {
1832 1.19 dyoung case IEEE80211_MACCMD_POLICY_OPEN:
1833 1.19 dyoung case IEEE80211_MACCMD_POLICY_ALLOW:
1834 1.19 dyoung case IEEE80211_MACCMD_POLICY_DENY:
1835 1.19 dyoung if (acl == NULL) {
1836 1.19 dyoung acl = ieee80211_aclator_get("mac");
1837 1.19 dyoung if (acl == NULL || !acl->iac_attach(ic))
1838 1.19 dyoung return EINVAL;
1839 1.19 dyoung ic->ic_acl = acl;
1840 1.19 dyoung }
1841 1.19 dyoung acl->iac_setpolicy(ic, ireq->i_val);
1842 1.19 dyoung break;
1843 1.19 dyoung case IEEE80211_MACCMD_FLUSH:
1844 1.19 dyoung if (acl != NULL)
1845 1.19 dyoung acl->iac_flush(ic);
1846 1.19 dyoung /* NB: silently ignore when not in use */
1847 1.19 dyoung break;
1848 1.19 dyoung case IEEE80211_MACCMD_DETACH:
1849 1.19 dyoung if (acl != NULL) {
1850 1.19 dyoung ic->ic_acl = NULL;
1851 1.19 dyoung acl->iac_detach(ic);
1852 1.19 dyoung }
1853 1.19 dyoung break;
1854 1.19 dyoung default:
1855 1.26 skrll if (acl == NULL)
1856 1.26 skrll return EINVAL;
1857 1.26 skrll else
1858 1.26 skrll return acl->iac_setioctl(ic, ireq);
1859 1.19 dyoung }
1860 1.19 dyoung return 0;
1861 1.19 dyoung }
1862 1.19 dyoung
1863 1.19 dyoung static int
1864 1.19 dyoung ieee80211_ioctl_setchanlist(struct ieee80211com *ic, struct ieee80211req *ireq)
1865 1.19 dyoung {
1866 1.19 dyoung struct ieee80211req_chanlist list;
1867 1.33 christos u_int8_t chanlist[IEEE80211_CHAN_BYTES];
1868 1.19 dyoung int i, j, error;
1869 1.19 dyoung
1870 1.19 dyoung if (ireq->i_len != sizeof(list))
1871 1.19 dyoung return EINVAL;
1872 1.19 dyoung error = copyin(ireq->i_data, &list, sizeof(list));
1873 1.19 dyoung if (error)
1874 1.19 dyoung return error;
1875 1.19 dyoung memset(chanlist, 0, sizeof(chanlist));
1876 1.19 dyoung /*
1877 1.19 dyoung * Since channel 0 is not available for DS, channel 1
1878 1.19 dyoung * is assigned to LSB on WaveLAN.
1879 1.19 dyoung */
1880 1.19 dyoung if (ic->ic_phytype == IEEE80211_T_DS)
1881 1.19 dyoung i = 1;
1882 1.19 dyoung else
1883 1.19 dyoung i = 0;
1884 1.19 dyoung for (j = 0; i <= IEEE80211_CHAN_MAX; i++, j++) {
1885 1.19 dyoung /*
1886 1.19 dyoung * NB: silently discard unavailable channels so users
1887 1.19 dyoung * can specify 1-255 to get all available channels.
1888 1.19 dyoung */
1889 1.19 dyoung if (isset(list.ic_channels, j) && isset(ic->ic_chan_avail, i))
1890 1.19 dyoung setbit(chanlist, i);
1891 1.19 dyoung }
1892 1.19 dyoung if (ic->ic_ibss_chan == NULL ||
1893 1.19 dyoung isclr(chanlist, ieee80211_chan2ieee(ic, ic->ic_ibss_chan))) {
1894 1.19 dyoung for (i = 0; i <= IEEE80211_CHAN_MAX; i++)
1895 1.19 dyoung if (isset(chanlist, i)) {
1896 1.19 dyoung ic->ic_ibss_chan = &ic->ic_channels[i];
1897 1.19 dyoung goto found;
1898 1.1 dyoung }
1899 1.19 dyoung return EINVAL; /* no active channels */
1900 1.19 dyoung found:
1901 1.19 dyoung ;
1902 1.19 dyoung }
1903 1.19 dyoung memcpy(ic->ic_chan_active, chanlist, sizeof(ic->ic_chan_active));
1904 1.19 dyoung return IS_UP_AUTO(ic) ? ENETRESET : 0;
1905 1.19 dyoung }
1906 1.19 dyoung
1907 1.19 dyoung static int
1908 1.19 dyoung ieee80211_ioctl_setstatxpow(struct ieee80211com *ic, struct ieee80211req *ireq)
1909 1.19 dyoung {
1910 1.19 dyoung struct ieee80211_node *ni;
1911 1.19 dyoung struct ieee80211req_sta_txpow txpow;
1912 1.19 dyoung int error;
1913 1.19 dyoung
1914 1.19 dyoung if (ireq->i_len != sizeof(txpow))
1915 1.19 dyoung return EINVAL;
1916 1.19 dyoung error = copyin(ireq->i_data, &txpow, sizeof(txpow));
1917 1.19 dyoung if (error != 0)
1918 1.19 dyoung return error;
1919 1.19 dyoung ni = ieee80211_find_node(&ic->ic_sta, txpow.it_macaddr);
1920 1.19 dyoung if (ni == NULL)
1921 1.19 dyoung return EINVAL; /* XXX */
1922 1.19 dyoung ni->ni_txpower = txpow.it_txpow;
1923 1.19 dyoung ieee80211_free_node(ni);
1924 1.19 dyoung return error;
1925 1.19 dyoung }
1926 1.19 dyoung
1927 1.19 dyoung static int
1928 1.19 dyoung ieee80211_ioctl_setwmeparam(struct ieee80211com *ic, struct ieee80211req *ireq)
1929 1.19 dyoung {
1930 1.19 dyoung struct ieee80211_wme_state *wme = &ic->ic_wme;
1931 1.19 dyoung struct wmeParams *wmep, *chanp;
1932 1.19 dyoung int isbss, ac;
1933 1.19 dyoung
1934 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
1935 1.19 dyoung return EINVAL;
1936 1.19 dyoung
1937 1.19 dyoung isbss = (ireq->i_len & IEEE80211_WMEPARAM_BSS);
1938 1.19 dyoung ac = (ireq->i_len & IEEE80211_WMEPARAM_VAL);
1939 1.19 dyoung if (ac >= WME_NUM_AC)
1940 1.19 dyoung ac = WME_AC_BE;
1941 1.19 dyoung if (isbss) {
1942 1.19 dyoung chanp = &wme->wme_bssChanParams.cap_wmeParams[ac];
1943 1.19 dyoung wmep = &wme->wme_wmeBssChanParams.cap_wmeParams[ac];
1944 1.19 dyoung } else {
1945 1.19 dyoung chanp = &wme->wme_chanParams.cap_wmeParams[ac];
1946 1.19 dyoung wmep = &wme->wme_wmeChanParams.cap_wmeParams[ac];
1947 1.19 dyoung }
1948 1.19 dyoung switch (ireq->i_type) {
1949 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
1950 1.19 dyoung if (isbss) {
1951 1.19 dyoung wmep->wmep_logcwmin = ireq->i_val;
1952 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1953 1.19 dyoung chanp->wmep_logcwmin = ireq->i_val;
1954 1.19 dyoung } else {
1955 1.19 dyoung wmep->wmep_logcwmin = chanp->wmep_logcwmin =
1956 1.19 dyoung ireq->i_val;
1957 1.19 dyoung }
1958 1.19 dyoung break;
1959 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
1960 1.19 dyoung if (isbss) {
1961 1.19 dyoung wmep->wmep_logcwmax = ireq->i_val;
1962 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1963 1.19 dyoung chanp->wmep_logcwmax = ireq->i_val;
1964 1.19 dyoung } else {
1965 1.19 dyoung wmep->wmep_logcwmax = chanp->wmep_logcwmax =
1966 1.19 dyoung ireq->i_val;
1967 1.19 dyoung }
1968 1.19 dyoung break;
1969 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
1970 1.19 dyoung if (isbss) {
1971 1.19 dyoung wmep->wmep_aifsn = ireq->i_val;
1972 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1973 1.19 dyoung chanp->wmep_aifsn = ireq->i_val;
1974 1.19 dyoung } else {
1975 1.19 dyoung wmep->wmep_aifsn = chanp->wmep_aifsn = ireq->i_val;
1976 1.19 dyoung }
1977 1.19 dyoung break;
1978 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
1979 1.19 dyoung if (isbss) {
1980 1.19 dyoung wmep->wmep_txopLimit = ireq->i_val;
1981 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1982 1.19 dyoung chanp->wmep_txopLimit = ireq->i_val;
1983 1.19 dyoung } else {
1984 1.19 dyoung wmep->wmep_txopLimit = chanp->wmep_txopLimit =
1985 1.19 dyoung ireq->i_val;
1986 1.19 dyoung }
1987 1.19 dyoung break;
1988 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
1989 1.19 dyoung wmep->wmep_acm = ireq->i_val;
1990 1.19 dyoung if ((wme->wme_flags & WME_F_AGGRMODE) == 0)
1991 1.19 dyoung chanp->wmep_acm = ireq->i_val;
1992 1.19 dyoung break;
1993 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (!bss only)*/
1994 1.19 dyoung wmep->wmep_noackPolicy = chanp->wmep_noackPolicy =
1995 1.19 dyoung (ireq->i_val) == 0;
1996 1.19 dyoung break;
1997 1.19 dyoung }
1998 1.19 dyoung ieee80211_wme_updateparams(ic);
1999 1.19 dyoung return 0;
2000 1.19 dyoung }
2001 1.19 dyoung
2002 1.19 dyoung static int
2003 1.19 dyoung cipher2cap(int cipher)
2004 1.19 dyoung {
2005 1.19 dyoung switch (cipher) {
2006 1.19 dyoung case IEEE80211_CIPHER_WEP: return IEEE80211_C_WEP;
2007 1.19 dyoung case IEEE80211_CIPHER_AES_OCB: return IEEE80211_C_AES;
2008 1.19 dyoung case IEEE80211_CIPHER_AES_CCM: return IEEE80211_C_AES_CCM;
2009 1.19 dyoung case IEEE80211_CIPHER_CKIP: return IEEE80211_C_CKIP;
2010 1.19 dyoung case IEEE80211_CIPHER_TKIP: return IEEE80211_C_TKIP;
2011 1.19 dyoung }
2012 1.19 dyoung return 0;
2013 1.19 dyoung }
2014 1.19 dyoung
2015 1.19 dyoung static int
2016 1.19 dyoung ieee80211_ioctl_set80211(struct ieee80211com *ic, u_long cmd, struct ieee80211req *ireq)
2017 1.19 dyoung {
2018 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2019 1.19 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2020 1.19 dyoung u_int8_t tmpkey[IEEE80211_KEYBUF_SIZE];
2021 1.19 dyoung char tmpssid[IEEE80211_NWID_LEN];
2022 1.19 dyoung u_int8_t tmpbssid[IEEE80211_ADDR_LEN];
2023 1.19 dyoung struct ieee80211_key *k;
2024 1.23 dyoung u_int kid;
2025 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2026 1.23 dyoung struct ieee80211_rsnparms *rsn = &ic->ic_bss->ni_rsn;
2027 1.23 dyoung int error;
2028 1.23 dyoung const struct ieee80211_authenticator *auth;
2029 1.19 dyoung int j, caps;
2030 1.19 dyoung
2031 1.19 dyoung error = 0;
2032 1.19 dyoung switch (ireq->i_type) {
2033 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2034 1.19 dyoung case IEEE80211_IOC_SSID:
2035 1.19 dyoung if (ireq->i_val != 0 ||
2036 1.19 dyoung ireq->i_len > IEEE80211_NWID_LEN)
2037 1.19 dyoung return EINVAL;
2038 1.19 dyoung error = copyin(ireq->i_data, tmpssid, ireq->i_len);
2039 1.19 dyoung if (error)
2040 1.1 dyoung break;
2041 1.19 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2042 1.19 dyoung ic->ic_des_esslen = ireq->i_len;
2043 1.19 dyoung memcpy(ic->ic_des_essid, tmpssid, ireq->i_len);
2044 1.19 dyoung error = ENETRESET;
2045 1.19 dyoung break;
2046 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2047 1.19 dyoung case IEEE80211_IOC_WEP:
2048 1.19 dyoung switch (ireq->i_val) {
2049 1.19 dyoung case IEEE80211_WEP_OFF:
2050 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2051 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2052 1.1 dyoung break;
2053 1.19 dyoung case IEEE80211_WEP_ON:
2054 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2055 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2056 1.1 dyoung break;
2057 1.19 dyoung case IEEE80211_WEP_MIXED:
2058 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2059 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2060 1.1 dyoung break;
2061 1.19 dyoung }
2062 1.19 dyoung error = ENETRESET;
2063 1.19 dyoung break;
2064 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2065 1.19 dyoung case IEEE80211_IOC_WEPKEY:
2066 1.19 dyoung kid = (u_int) ireq->i_val;
2067 1.19 dyoung if (kid >= IEEE80211_WEP_NKID)
2068 1.19 dyoung return EINVAL;
2069 1.19 dyoung k = &ic->ic_nw_keys[kid];
2070 1.19 dyoung if (ireq->i_len == 0) {
2071 1.19 dyoung /* zero-len =>'s delete any existing key */
2072 1.19 dyoung (void) ieee80211_crypto_delkey(ic, k);
2073 1.1 dyoung break;
2074 1.19 dyoung }
2075 1.19 dyoung if (ireq->i_len > sizeof(tmpkey))
2076 1.19 dyoung return EINVAL;
2077 1.19 dyoung memset(tmpkey, 0, sizeof(tmpkey));
2078 1.19 dyoung error = copyin(ireq->i_data, tmpkey, ireq->i_len);
2079 1.19 dyoung if (error)
2080 1.1 dyoung break;
2081 1.19 dyoung ieee80211_key_update_begin(ic);
2082 1.19 dyoung k->wk_keyix = kid; /* NB: force fixed key id */
2083 1.19 dyoung if (ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2084 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2085 1.19 dyoung k->wk_keylen = ireq->i_len;
2086 1.19 dyoung memcpy(k->wk_key, tmpkey, sizeof(tmpkey));
2087 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2088 1.19 dyoung error = EINVAL;
2089 1.19 dyoung } else
2090 1.19 dyoung error = EINVAL;
2091 1.19 dyoung ieee80211_key_update_end(ic);
2092 1.21 dyoung if (!error) /* NB: for compatibility */
2093 1.21 dyoung error = ENETRESET;
2094 1.19 dyoung break;
2095 1.19 dyoung case IEEE80211_IOC_WEPTXKEY:
2096 1.19 dyoung kid = (u_int) ireq->i_val;
2097 1.19 dyoung if (kid >= IEEE80211_WEP_NKID &&
2098 1.19 dyoung (u_int16_t) kid != IEEE80211_KEYIX_NONE)
2099 1.19 dyoung return EINVAL;
2100 1.19 dyoung ic->ic_def_txkey = kid;
2101 1.19 dyoung error = ENETRESET; /* push to hardware */
2102 1.19 dyoung break;
2103 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2104 1.19 dyoung case IEEE80211_IOC_AUTHMODE:
2105 1.19 dyoung switch (ireq->i_val) {
2106 1.19 dyoung case IEEE80211_AUTH_WPA:
2107 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2108 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2109 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2110 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2111 1.19 dyoung auth = ieee80211_authenticator_get(ireq->i_val);
2112 1.19 dyoung if (auth == NULL)
2113 1.19 dyoung return EINVAL;
2114 1.1 dyoung break;
2115 1.19 dyoung default:
2116 1.19 dyoung return EINVAL;
2117 1.19 dyoung }
2118 1.19 dyoung switch (ireq->i_val) {
2119 1.19 dyoung case IEEE80211_AUTH_WPA: /* WPA w/ 802.1x */
2120 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2121 1.19 dyoung ireq->i_val = IEEE80211_AUTH_8021X;
2122 1.1 dyoung break;
2123 1.19 dyoung case IEEE80211_AUTH_OPEN: /* open */
2124 1.19 dyoung ic->ic_flags &= ~(IEEE80211_F_WPA|IEEE80211_F_PRIVACY);
2125 1.10 dyoung break;
2126 1.19 dyoung case IEEE80211_AUTH_SHARED: /* shared-key */
2127 1.19 dyoung case IEEE80211_AUTH_8021X: /* 802.1x */
2128 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2129 1.19 dyoung /* both require a key so mark the PRIVACY capability */
2130 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2131 1.10 dyoung break;
2132 1.19 dyoung case IEEE80211_AUTH_AUTO: /* auto */
2133 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2134 1.19 dyoung /* XXX PRIVACY handling? */
2135 1.19 dyoung /* XXX what's the right way to do this? */
2136 1.10 dyoung break;
2137 1.1 dyoung }
2138 1.19 dyoung /* NB: authenticator attach/detach happens on state change */
2139 1.19 dyoung ic->ic_bss->ni_authmode = ireq->i_val;
2140 1.19 dyoung /* XXX mixed/mode/usage? */
2141 1.19 dyoung ic->ic_auth = auth;
2142 1.19 dyoung error = ENETRESET;
2143 1.1 dyoung break;
2144 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2145 1.19 dyoung case IEEE80211_IOC_CHANNEL:
2146 1.19 dyoung /* XXX 0xffff overflows 16-bit signed */
2147 1.19 dyoung if (ireq->i_val == 0 ||
2148 1.19 dyoung ireq->i_val == (int16_t) IEEE80211_CHAN_ANY)
2149 1.19 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2150 1.19 dyoung else if ((u_int) ireq->i_val > IEEE80211_CHAN_MAX ||
2151 1.19 dyoung isclr(ic->ic_chan_active, ireq->i_val)) {
2152 1.19 dyoung return EINVAL;
2153 1.19 dyoung } else
2154 1.19 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2155 1.19 dyoung &ic->ic_channels[ireq->i_val];
2156 1.19 dyoung switch (ic->ic_state) {
2157 1.19 dyoung case IEEE80211_S_INIT:
2158 1.19 dyoung case IEEE80211_S_SCAN:
2159 1.1 dyoung error = ENETRESET;
2160 1.1 dyoung break;
2161 1.19 dyoung default:
2162 1.1 dyoung /*
2163 1.19 dyoung * If the desired channel has changed (to something
2164 1.19 dyoung * other than any) and we're not already scanning,
2165 1.19 dyoung * then kick the state machine.
2166 1.1 dyoung */
2167 1.19 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2168 1.19 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan &&
2169 1.19 dyoung (ic->ic_flags & IEEE80211_F_SCAN) == 0)
2170 1.19 dyoung error = ENETRESET;
2171 1.1 dyoung break;
2172 1.19 dyoung }
2173 1.26 skrll if (error == ENETRESET &&
2174 1.26 skrll ic->ic_opmode == IEEE80211_M_MONITOR) {
2175 1.26 skrll if (IS_UP(ic)) {
2176 1.26 skrll /*
2177 1.26 skrll * Monitor mode can switch directly.
2178 1.26 skrll */
2179 1.26 skrll if (ic->ic_des_chan != IEEE80211_CHAN_ANYC)
2180 1.26 skrll ic->ic_curchan = ic->ic_des_chan;
2181 1.26 skrll error = ic->ic_reset(ic->ic_ifp);
2182 1.26 skrll } else
2183 1.26 skrll error = 0;
2184 1.26 skrll }
2185 1.19 dyoung break;
2186 1.19 dyoung case IEEE80211_IOC_POWERSAVE:
2187 1.19 dyoung switch (ireq->i_val) {
2188 1.19 dyoung case IEEE80211_POWERSAVE_OFF:
2189 1.19 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2190 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2191 1.19 dyoung error = ENETRESET;
2192 1.18 perry }
2193 1.1 dyoung break;
2194 1.19 dyoung case IEEE80211_POWERSAVE_ON:
2195 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2196 1.1 dyoung error = EINVAL;
2197 1.19 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2198 1.19 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2199 1.19 dyoung error = ENETRESET;
2200 1.1 dyoung }
2201 1.1 dyoung break;
2202 1.19 dyoung default:
2203 1.19 dyoung error = EINVAL;
2204 1.1 dyoung break;
2205 1.19 dyoung }
2206 1.19 dyoung break;
2207 1.19 dyoung case IEEE80211_IOC_POWERSAVESLEEP:
2208 1.19 dyoung if (ireq->i_val < 0)
2209 1.19 dyoung return EINVAL;
2210 1.19 dyoung ic->ic_lintval = ireq->i_val;
2211 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2212 1.19 dyoung break;
2213 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2214 1.19 dyoung case IEEE80211_IOC_RTSTHRESHOLD:
2215 1.26 skrll if (!(IEEE80211_RTS_MIN <= ireq->i_val &&
2216 1.26 skrll ireq->i_val <= IEEE80211_RTS_MAX))
2217 1.19 dyoung return EINVAL;
2218 1.19 dyoung ic->ic_rtsthreshold = ireq->i_val;
2219 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2220 1.19 dyoung break;
2221 1.19 dyoung case IEEE80211_IOC_PROTMODE:
2222 1.19 dyoung if (ireq->i_val > IEEE80211_PROT_RTSCTS)
2223 1.19 dyoung return EINVAL;
2224 1.19 dyoung ic->ic_protmode = ireq->i_val;
2225 1.19 dyoung /* NB: if not operating in 11g this can wait */
2226 1.19 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2227 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2228 1.19 dyoung break;
2229 1.19 dyoung case IEEE80211_IOC_TXPOWER:
2230 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_TXPMGT) == 0)
2231 1.19 dyoung return EINVAL;
2232 1.19 dyoung if (!(IEEE80211_TXPOWER_MIN < ireq->i_val &&
2233 1.19 dyoung ireq->i_val < IEEE80211_TXPOWER_MAX))
2234 1.19 dyoung return EINVAL;
2235 1.19 dyoung ic->ic_txpowlimit = ireq->i_val;
2236 1.19 dyoung error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2237 1.19 dyoung break;
2238 1.19 dyoung case IEEE80211_IOC_ROAMING:
2239 1.19 dyoung if (!(IEEE80211_ROAMING_DEVICE <= ireq->i_val &&
2240 1.19 dyoung ireq->i_val <= IEEE80211_ROAMING_MANUAL))
2241 1.19 dyoung return EINVAL;
2242 1.19 dyoung ic->ic_roaming = ireq->i_val;
2243 1.19 dyoung /* XXXX reset? */
2244 1.19 dyoung break;
2245 1.19 dyoung case IEEE80211_IOC_PRIVACY:
2246 1.19 dyoung if (ireq->i_val) {
2247 1.19 dyoung /* XXX check for key state? */
2248 1.19 dyoung ic->ic_flags |= IEEE80211_F_PRIVACY;
2249 1.19 dyoung } else
2250 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2251 1.19 dyoung break;
2252 1.19 dyoung case IEEE80211_IOC_DROPUNENCRYPTED:
2253 1.19 dyoung if (ireq->i_val)
2254 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2255 1.19 dyoung else
2256 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2257 1.19 dyoung break;
2258 1.19 dyoung case IEEE80211_IOC_WPAKEY:
2259 1.19 dyoung error = ieee80211_ioctl_setkey(ic, ireq);
2260 1.19 dyoung break;
2261 1.19 dyoung case IEEE80211_IOC_DELKEY:
2262 1.19 dyoung error = ieee80211_ioctl_delkey(ic, ireq);
2263 1.19 dyoung break;
2264 1.19 dyoung case IEEE80211_IOC_MLME:
2265 1.19 dyoung error = ieee80211_ioctl_setmlme(ic, ireq);
2266 1.19 dyoung break;
2267 1.19 dyoung case IEEE80211_IOC_OPTIE:
2268 1.19 dyoung error = ieee80211_ioctl_setoptie(ic, ireq);
2269 1.19 dyoung break;
2270 1.19 dyoung case IEEE80211_IOC_COUNTERMEASURES:
2271 1.19 dyoung if (ireq->i_val) {
2272 1.19 dyoung if ((ic->ic_flags & IEEE80211_F_WPA) == 0)
2273 1.19 dyoung return EINVAL;
2274 1.19 dyoung ic->ic_flags |= IEEE80211_F_COUNTERM;
2275 1.19 dyoung } else
2276 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_COUNTERM;
2277 1.19 dyoung break;
2278 1.19 dyoung case IEEE80211_IOC_WPA:
2279 1.19 dyoung if (ireq->i_val > 3)
2280 1.19 dyoung return EINVAL;
2281 1.19 dyoung /* XXX verify ciphers available */
2282 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WPA;
2283 1.19 dyoung switch (ireq->i_val) {
2284 1.19 dyoung case 1:
2285 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1;
2286 1.1 dyoung break;
2287 1.19 dyoung case 2:
2288 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA2;
2289 1.1 dyoung break;
2290 1.19 dyoung case 3:
2291 1.19 dyoung ic->ic_flags |= IEEE80211_F_WPA1 | IEEE80211_F_WPA2;
2292 1.1 dyoung break;
2293 1.19 dyoung }
2294 1.19 dyoung error = ENETRESET; /* XXX? */
2295 1.19 dyoung break;
2296 1.19 dyoung case IEEE80211_IOC_WME:
2297 1.19 dyoung if (ireq->i_val) {
2298 1.19 dyoung if ((ic->ic_caps & IEEE80211_C_WME) == 0)
2299 1.19 dyoung return EINVAL;
2300 1.19 dyoung ic->ic_flags |= IEEE80211_F_WME;
2301 1.19 dyoung } else
2302 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_WME;
2303 1.19 dyoung error = ENETRESET; /* XXX maybe not for station? */
2304 1.19 dyoung break;
2305 1.19 dyoung case IEEE80211_IOC_HIDESSID:
2306 1.19 dyoung if (ireq->i_val)
2307 1.19 dyoung ic->ic_flags |= IEEE80211_F_HIDESSID;
2308 1.19 dyoung else
2309 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_HIDESSID;
2310 1.19 dyoung error = ENETRESET;
2311 1.19 dyoung break;
2312 1.19 dyoung case IEEE80211_IOC_APBRIDGE:
2313 1.19 dyoung if (ireq->i_val == 0)
2314 1.19 dyoung ic->ic_flags |= IEEE80211_F_NOBRIDGE;
2315 1.19 dyoung else
2316 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_NOBRIDGE;
2317 1.19 dyoung break;
2318 1.19 dyoung case IEEE80211_IOC_MCASTCIPHER:
2319 1.19 dyoung if ((ic->ic_caps & cipher2cap(ireq->i_val)) == 0 &&
2320 1.19 dyoung !ieee80211_crypto_available(ireq->i_val))
2321 1.19 dyoung return EINVAL;
2322 1.19 dyoung rsn->rsn_mcastcipher = ireq->i_val;
2323 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2324 1.19 dyoung break;
2325 1.19 dyoung case IEEE80211_IOC_MCASTKEYLEN:
2326 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2327 1.19 dyoung return EINVAL;
2328 1.19 dyoung /* XXX no way to verify driver capability */
2329 1.19 dyoung rsn->rsn_mcastkeylen = ireq->i_val;
2330 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2331 1.19 dyoung break;
2332 1.19 dyoung case IEEE80211_IOC_UCASTCIPHERS:
2333 1.19 dyoung /*
2334 1.19 dyoung * Convert user-specified cipher set to the set
2335 1.19 dyoung * we can support (via hardware or software).
2336 1.19 dyoung * NB: this logic intentionally ignores unknown and
2337 1.19 dyoung * unsupported ciphers so folks can specify 0xff or
2338 1.19 dyoung * similar and get all available ciphers.
2339 1.19 dyoung */
2340 1.19 dyoung caps = 0;
2341 1.19 dyoung for (j = 1; j < 32; j++) /* NB: skip WEP */
2342 1.19 dyoung if ((ireq->i_val & (1<<j)) &&
2343 1.19 dyoung ((ic->ic_caps & cipher2cap(j)) ||
2344 1.19 dyoung ieee80211_crypto_available(j)))
2345 1.19 dyoung caps |= 1<<j;
2346 1.19 dyoung if (caps == 0) /* nothing available */
2347 1.19 dyoung return EINVAL;
2348 1.19 dyoung /* XXX verify ciphers ok for unicast use? */
2349 1.19 dyoung /* XXX disallow if running as it'll have no effect */
2350 1.19 dyoung rsn->rsn_ucastcipherset = caps;
2351 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2352 1.19 dyoung break;
2353 1.19 dyoung case IEEE80211_IOC_UCASTCIPHER:
2354 1.19 dyoung if ((rsn->rsn_ucastcipherset & cipher2cap(ireq->i_val)) == 0)
2355 1.19 dyoung return EINVAL;
2356 1.19 dyoung rsn->rsn_ucastcipher = ireq->i_val;
2357 1.19 dyoung break;
2358 1.19 dyoung case IEEE80211_IOC_UCASTKEYLEN:
2359 1.19 dyoung if (!(0 < ireq->i_val && ireq->i_val < IEEE80211_KEYBUF_SIZE))
2360 1.19 dyoung return EINVAL;
2361 1.19 dyoung /* XXX no way to verify driver capability */
2362 1.19 dyoung rsn->rsn_ucastkeylen = ireq->i_val;
2363 1.19 dyoung break;
2364 1.19 dyoung case IEEE80211_IOC_DRIVER_CAPS:
2365 1.19 dyoung /* NB: for testing */
2366 1.19 dyoung ic->ic_caps = (((u_int16_t) ireq->i_val) << 16) |
2367 1.19 dyoung ((u_int16_t) ireq->i_len);
2368 1.19 dyoung break;
2369 1.19 dyoung case IEEE80211_IOC_KEYMGTALGS:
2370 1.19 dyoung /* XXX check */
2371 1.19 dyoung rsn->rsn_keymgmtset = ireq->i_val;
2372 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2373 1.19 dyoung break;
2374 1.19 dyoung case IEEE80211_IOC_RSNCAPS:
2375 1.19 dyoung /* XXX check */
2376 1.19 dyoung rsn->rsn_caps = ireq->i_val;
2377 1.19 dyoung error = (ic->ic_flags & IEEE80211_F_WPA) ? ENETRESET : 0;
2378 1.19 dyoung break;
2379 1.30 dyoung #if defined(__FreeBSD__) || defined(COMPAT_FREEBSD_NET80211)
2380 1.19 dyoung case IEEE80211_IOC_BSSID:
2381 1.19 dyoung /* NB: should only be set when in STA mode */
2382 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_STA)
2383 1.19 dyoung return EINVAL;
2384 1.19 dyoung if (ireq->i_len != sizeof(tmpbssid))
2385 1.19 dyoung return EINVAL;
2386 1.19 dyoung error = copyin(ireq->i_data, tmpbssid, ireq->i_len);
2387 1.19 dyoung if (error)
2388 1.1 dyoung break;
2389 1.19 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, tmpbssid);
2390 1.19 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2391 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2392 1.19 dyoung else
2393 1.19 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2394 1.19 dyoung error = ENETRESET;
2395 1.19 dyoung break;
2396 1.30 dyoung #endif /* __FreeBSD__ || COMPAT_FREEBSD_NET80211 */
2397 1.19 dyoung case IEEE80211_IOC_CHANLIST:
2398 1.19 dyoung error = ieee80211_ioctl_setchanlist(ic, ireq);
2399 1.19 dyoung break;
2400 1.19 dyoung case IEEE80211_IOC_SCAN_REQ:
2401 1.19 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP) /* XXX ignore */
2402 1.10 dyoung break;
2403 1.19 dyoung error = ieee80211_setupscan(ic, ic->ic_chan_avail);
2404 1.19 dyoung if (error == 0) /* XXX background scan */
2405 1.19 dyoung error = ieee80211_new_state(ic, IEEE80211_S_SCAN, -1);
2406 1.19 dyoung break;
2407 1.19 dyoung case IEEE80211_IOC_ADDMAC:
2408 1.19 dyoung case IEEE80211_IOC_DELMAC:
2409 1.19 dyoung error = ieee80211_ioctl_macmac(ic, ireq);
2410 1.19 dyoung break;
2411 1.19 dyoung case IEEE80211_IOC_MACCMD:
2412 1.26 skrll error = ieee80211_ioctl_setmaccmd(ic, ireq);
2413 1.19 dyoung break;
2414 1.19 dyoung case IEEE80211_IOC_STA_TXPOW:
2415 1.19 dyoung error = ieee80211_ioctl_setstatxpow(ic, ireq);
2416 1.19 dyoung break;
2417 1.19 dyoung case IEEE80211_IOC_WME_CWMIN: /* WME: CWmin */
2418 1.19 dyoung case IEEE80211_IOC_WME_CWMAX: /* WME: CWmax */
2419 1.19 dyoung case IEEE80211_IOC_WME_AIFS: /* WME: AIFS */
2420 1.19 dyoung case IEEE80211_IOC_WME_TXOPLIMIT: /* WME: txops limit */
2421 1.19 dyoung case IEEE80211_IOC_WME_ACM: /* WME: ACM (bss only) */
2422 1.19 dyoung case IEEE80211_IOC_WME_ACKPOLICY: /* WME: ACK policy (bss only) */
2423 1.19 dyoung error = ieee80211_ioctl_setwmeparam(ic, ireq);
2424 1.19 dyoung break;
2425 1.19 dyoung case IEEE80211_IOC_DTIM_PERIOD:
2426 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2427 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2428 1.19 dyoung return EINVAL;
2429 1.19 dyoung if (IEEE80211_DTIM_MIN <= ireq->i_val &&
2430 1.19 dyoung ireq->i_val <= IEEE80211_DTIM_MAX) {
2431 1.19 dyoung ic->ic_dtim_period = ireq->i_val;
2432 1.19 dyoung error = ENETRESET; /* requires restart */
2433 1.19 dyoung } else
2434 1.19 dyoung error = EINVAL;
2435 1.19 dyoung break;
2436 1.19 dyoung case IEEE80211_IOC_BEACON_INTERVAL:
2437 1.19 dyoung if (ic->ic_opmode != IEEE80211_M_HOSTAP &&
2438 1.19 dyoung ic->ic_opmode != IEEE80211_M_IBSS)
2439 1.19 dyoung return EINVAL;
2440 1.19 dyoung if (IEEE80211_BINTVAL_MIN <= ireq->i_val &&
2441 1.19 dyoung ireq->i_val <= IEEE80211_BINTVAL_MAX) {
2442 1.26 skrll ic->ic_bintval = ireq->i_val;
2443 1.19 dyoung error = ENETRESET; /* requires restart */
2444 1.19 dyoung } else
2445 1.1 dyoung error = EINVAL;
2446 1.19 dyoung break;
2447 1.21 dyoung case IEEE80211_IOC_PUREG:
2448 1.21 dyoung if (ireq->i_val)
2449 1.21 dyoung ic->ic_flags |= IEEE80211_F_PUREG;
2450 1.21 dyoung else
2451 1.21 dyoung ic->ic_flags &= ~IEEE80211_F_PUREG;
2452 1.21 dyoung /* NB: reset only if we're operating on an 11g channel */
2453 1.21 dyoung if (ic->ic_curmode == IEEE80211_MODE_11G)
2454 1.21 dyoung error = ENETRESET;
2455 1.21 dyoung break;
2456 1.30 dyoung case IEEE80211_IOC_MCAST_RATE:
2457 1.30 dyoung ic->ic_mcast_rate = ireq->i_val & IEEE80211_RATE_VAL;
2458 1.30 dyoung break;
2459 1.26 skrll case IEEE80211_IOC_FRAGTHRESHOLD:
2460 1.26 skrll if ((ic->ic_caps & IEEE80211_C_TXFRAG) == 0 &&
2461 1.26 skrll ireq->i_val != IEEE80211_FRAG_MAX)
2462 1.26 skrll return EINVAL;
2463 1.26 skrll if (!(IEEE80211_FRAG_MIN <= ireq->i_val &&
2464 1.26 skrll ireq->i_val <= IEEE80211_FRAG_MAX))
2465 1.26 skrll return EINVAL;
2466 1.26 skrll ic->ic_fragthreshold = ireq->i_val;
2467 1.26 skrll error = IS_UP(ic) ? ic->ic_reset(ic->ic_ifp) : 0;
2468 1.26 skrll break;
2469 1.19 dyoung default:
2470 1.19 dyoung error = EINVAL;
2471 1.19 dyoung break;
2472 1.19 dyoung }
2473 1.19 dyoung if (error == ENETRESET && !IS_UP_AUTO(ic))
2474 1.19 dyoung error = 0;
2475 1.19 dyoung return error;
2476 1.19 dyoung }
2477 1.19 dyoung
2478 1.19 dyoung #ifdef __FreeBSD__
2479 1.19 dyoung int
2480 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2481 1.19 dyoung {
2482 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2483 1.19 dyoung int error = 0;
2484 1.19 dyoung struct ifreq *ifr;
2485 1.19 dyoung struct ifaddr *ifa; /* XXX */
2486 1.19 dyoung
2487 1.19 dyoung switch (cmd) {
2488 1.19 dyoung case SIOCSIFMEDIA:
2489 1.19 dyoung case SIOCGIFMEDIA:
2490 1.19 dyoung error = ifmedia_ioctl(ifp, (struct ifreq *) data,
2491 1.19 dyoung &ic->ic_media, cmd);
2492 1.19 dyoung break;
2493 1.19 dyoung case SIOCG80211:
2494 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2495 1.19 dyoung (struct ieee80211req *) data);
2496 1.19 dyoung break;
2497 1.19 dyoung case SIOCS80211:
2498 1.19 dyoung error = suser(curthread);
2499 1.19 dyoung if (error == 0)
2500 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2501 1.19 dyoung (struct ieee80211req *) data);
2502 1.1 dyoung break;
2503 1.1 dyoung case SIOCGIFGENERIC:
2504 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2505 1.1 dyoung break;
2506 1.1 dyoung case SIOCSIFGENERIC:
2507 1.19 dyoung error = suser(curthread);
2508 1.1 dyoung if (error)
2509 1.1 dyoung break;
2510 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2511 1.19 dyoung break;
2512 1.19 dyoung case SIOCG80211STATS:
2513 1.19 dyoung ifr = (struct ifreq *)data;
2514 1.19 dyoung copyout(&ic->ic_stats, ifr->ifr_data, sizeof (ic->ic_stats));
2515 1.19 dyoung break;
2516 1.19 dyoung case SIOCSIFMTU:
2517 1.19 dyoung ifr = (struct ifreq *)data;
2518 1.19 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2519 1.19 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2520 1.19 dyoung error = EINVAL;
2521 1.19 dyoung else
2522 1.19 dyoung ifp->if_mtu = ifr->ifr_mtu;
2523 1.19 dyoung break;
2524 1.19 dyoung case SIOCSIFADDR:
2525 1.19 dyoung /*
2526 1.19 dyoung * XXX Handle this directly so we can supress if_init calls.
2527 1.19 dyoung * XXX This should be done in ether_ioctl but for the moment
2528 1.19 dyoung * XXX there are too many other parts of the system that
2529 1.19 dyoung * XXX set IFF_UP and so supress if_init being called when
2530 1.19 dyoung * XXX it should be.
2531 1.19 dyoung */
2532 1.19 dyoung ifa = (struct ifaddr *) data;
2533 1.19 dyoung switch (ifa->ifa_addr->sa_family) {
2534 1.19 dyoung #ifdef INET
2535 1.19 dyoung case AF_INET:
2536 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2537 1.19 dyoung ifp->if_flags |= IFF_UP;
2538 1.19 dyoung ifp->if_init(ifp->if_softc);
2539 1.19 dyoung }
2540 1.19 dyoung arp_ifinit(ifp, ifa);
2541 1.19 dyoung break;
2542 1.19 dyoung #endif
2543 1.19 dyoung #ifdef IPX
2544 1.19 dyoung /*
2545 1.19 dyoung * XXX - This code is probably wrong,
2546 1.19 dyoung * but has been copied many times.
2547 1.19 dyoung */
2548 1.19 dyoung case AF_IPX: {
2549 1.19 dyoung struct ipx_addr *ina = &(IA_SIPX(ifa)->sipx_addr);
2550 1.19 dyoung
2551 1.19 dyoung if (ipx_nullhost(*ina))
2552 1.21 dyoung ina->x_host = *(union ipx_host *)
2553 1.21 dyoung IFP2ENADDR(ifp);
2554 1.19 dyoung else
2555 1.19 dyoung bcopy((caddr_t) ina->x_host.c_host,
2556 1.21 dyoung (caddr_t) IFP2ENADDR(ifp),
2557 1.21 dyoung ETHER_ADDR_LEN);
2558 1.19 dyoung /* fall thru... */
2559 1.19 dyoung }
2560 1.19 dyoung #endif
2561 1.19 dyoung default:
2562 1.19 dyoung if ((ifp->if_flags & IFF_UP) == 0) {
2563 1.19 dyoung ifp->if_flags |= IFF_UP;
2564 1.19 dyoung ifp->if_init(ifp->if_softc);
2565 1.19 dyoung }
2566 1.19 dyoung break;
2567 1.19 dyoung }
2568 1.1 dyoung break;
2569 1.1 dyoung default:
2570 1.1 dyoung error = ether_ioctl(ifp, cmd, data);
2571 1.1 dyoung break;
2572 1.1 dyoung }
2573 1.1 dyoung return error;
2574 1.1 dyoung }
2575 1.2 dyoung #endif /* __FreeBSD__ */
2576 1.2 dyoung
2577 1.22 dyoung #ifdef COMPAT_20
2578 1.22 dyoung static void
2579 1.22 dyoung ieee80211_get_ostats(struct ieee80211_ostats *ostats,
2580 1.22 dyoung struct ieee80211_stats *stats)
2581 1.22 dyoung {
2582 1.22 dyoung #define COPYSTATS1(__ostats, __nstats, __dstmemb, __srcmemb, __lastmemb)\
2583 1.22 dyoung (void)memcpy(&(__ostats)->__dstmemb, &(__nstats)->__srcmemb, \
2584 1.22 dyoung offsetof(struct ieee80211_stats, __lastmemb) - \
2585 1.22 dyoung offsetof(struct ieee80211_stats, __srcmemb))
2586 1.22 dyoung #define COPYSTATS(__ostats, __nstats, __dstmemb, __lastmemb) \
2587 1.22 dyoung COPYSTATS1(__ostats, __nstats, __dstmemb, __dstmemb, __lastmemb)
2588 1.22 dyoung
2589 1.22 dyoung COPYSTATS(ostats, stats, is_rx_badversion, is_rx_unencrypted);
2590 1.22 dyoung COPYSTATS(ostats, stats, is_rx_wepfail, is_rx_beacon);
2591 1.22 dyoung COPYSTATS(ostats, stats, is_rx_rstoobig, is_rx_auth_countermeasures);
2592 1.22 dyoung COPYSTATS(ostats, stats, is_rx_assoc_bss, is_rx_assoc_badwpaie);
2593 1.22 dyoung COPYSTATS(ostats, stats, is_rx_deauth, is_rx_unauth);
2594 1.22 dyoung COPYSTATS1(ostats, stats, is_tx_nombuf, is_tx_nobuf, is_tx_badcipher);
2595 1.22 dyoung COPYSTATS(ostats, stats, is_scan_active, is_crypto_tkip);
2596 1.22 dyoung }
2597 1.22 dyoung #endif /* COMPAT_20 */
2598 1.22 dyoung
2599 1.2 dyoung #ifdef __NetBSD__
2600 1.2 dyoung int
2601 1.19 dyoung ieee80211_ioctl(struct ieee80211com *ic, u_long cmd, caddr_t data)
2602 1.2 dyoung {
2603 1.19 dyoung struct ifnet *ifp = ic->ic_ifp;
2604 1.2 dyoung struct ifreq *ifr = (struct ifreq *)data;
2605 1.19 dyoung int i, error = 0, kid, klen, s;
2606 1.19 dyoung struct ieee80211_key *k;
2607 1.2 dyoung struct ieee80211_nwid nwid;
2608 1.2 dyoung struct ieee80211_nwkey *nwkey;
2609 1.2 dyoung struct ieee80211_power *power;
2610 1.2 dyoung struct ieee80211_bssid *bssid;
2611 1.2 dyoung struct ieee80211chanreq *chanreq;
2612 1.2 dyoung struct ieee80211_channel *chan;
2613 1.19 dyoung uint32_t oflags;
2614 1.22 dyoung #ifdef COMPAT_20
2615 1.22 dyoung struct ieee80211_ostats ostats;
2616 1.22 dyoung #endif /* COMPAT_20 */
2617 1.29 dyoung static const u_int8_t zerobssid[IEEE80211_ADDR_LEN];
2618 1.19 dyoung u_int8_t tmpkey[IEEE80211_WEP_NKID][IEEE80211_KEYBUF_SIZE];
2619 1.2 dyoung
2620 1.2 dyoung switch (cmd) {
2621 1.2 dyoung case SIOCSIFMEDIA:
2622 1.2 dyoung case SIOCGIFMEDIA:
2623 1.2 dyoung error = ifmedia_ioctl(ifp, ifr, &ic->ic_media, cmd);
2624 1.2 dyoung break;
2625 1.19 dyoung case SIOCG80211:
2626 1.19 dyoung error = ieee80211_ioctl_get80211(ic, cmd,
2627 1.19 dyoung (struct ieee80211req *) data);
2628 1.19 dyoung break;
2629 1.19 dyoung case SIOCS80211:
2630 1.32 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2631 1.32 elad KAUTH_GENERIC_ISSUSER,
2632 1.32 elad &curproc->p_acflag)) != 0)
2633 1.19 dyoung break;
2634 1.19 dyoung error = ieee80211_ioctl_set80211(ic, cmd,
2635 1.19 dyoung (struct ieee80211req *) data);
2636 1.19 dyoung break;
2637 1.2 dyoung case SIOCS80211NWID:
2638 1.2 dyoung if ((error = copyin(ifr->ifr_data, &nwid, sizeof(nwid))) != 0)
2639 1.2 dyoung break;
2640 1.2 dyoung if (nwid.i_len > IEEE80211_NWID_LEN) {
2641 1.2 dyoung error = EINVAL;
2642 1.2 dyoung break;
2643 1.2 dyoung }
2644 1.2 dyoung memset(ic->ic_des_essid, 0, IEEE80211_NWID_LEN);
2645 1.2 dyoung ic->ic_des_esslen = nwid.i_len;
2646 1.2 dyoung memcpy(ic->ic_des_essid, nwid.i_nwid, nwid.i_len);
2647 1.2 dyoung error = ENETRESET;
2648 1.2 dyoung break;
2649 1.2 dyoung case SIOCG80211NWID:
2650 1.2 dyoung memset(&nwid, 0, sizeof(nwid));
2651 1.2 dyoung switch (ic->ic_state) {
2652 1.2 dyoung case IEEE80211_S_INIT:
2653 1.2 dyoung case IEEE80211_S_SCAN:
2654 1.2 dyoung nwid.i_len = ic->ic_des_esslen;
2655 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_des_essid, nwid.i_len);
2656 1.2 dyoung break;
2657 1.2 dyoung default:
2658 1.2 dyoung nwid.i_len = ic->ic_bss->ni_esslen;
2659 1.2 dyoung memcpy(nwid.i_nwid, ic->ic_bss->ni_essid, nwid.i_len);
2660 1.2 dyoung break;
2661 1.2 dyoung }
2662 1.2 dyoung error = copyout(&nwid, ifr->ifr_data, sizeof(nwid));
2663 1.2 dyoung break;
2664 1.2 dyoung case SIOCS80211NWKEY:
2665 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2666 1.19 dyoung /* transmit key index out of range? */
2667 1.19 dyoung kid = nwkey->i_defkid - 1;
2668 1.19 dyoung if (kid < 0 || kid >= IEEE80211_WEP_NKID) {
2669 1.2 dyoung error = EINVAL;
2670 1.2 dyoung break;
2671 1.2 dyoung }
2672 1.19 dyoung /* no such transmit key is set? */
2673 1.19 dyoung if (nwkey->i_key[kid].i_keylen == 0 ||
2674 1.19 dyoung (nwkey->i_key[kid].i_keylen == -1 &&
2675 1.19 dyoung ic->ic_nw_keys[kid].wk_keylen == 0)) {
2676 1.19 dyoung if (nwkey->i_wepon != IEEE80211_NWKEY_OPEN) {
2677 1.19 dyoung error = EINVAL;
2678 1.19 dyoung break;
2679 1.19 dyoung }
2680 1.19 dyoung }
2681 1.19 dyoung /* check key lengths */
2682 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2683 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2684 1.19 dyoung if ((klen > 0 &&
2685 1.19 dyoung klen < IEEE80211_WEP_KEYLEN) ||
2686 1.19 dyoung klen > sizeof(ic->ic_nw_keys[kid].wk_key)) {
2687 1.2 dyoung error = EINVAL;
2688 1.2 dyoung break;
2689 1.2 dyoung }
2690 1.19 dyoung }
2691 1.19 dyoung
2692 1.19 dyoung if (error)
2693 1.19 dyoung break;
2694 1.19 dyoung
2695 1.19 dyoung /* copy in keys */
2696 1.19 dyoung (void)memset(tmpkey, 0, sizeof(tmpkey));
2697 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2698 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2699 1.19 dyoung if (klen <= 0)
2700 1.2 dyoung continue;
2701 1.19 dyoung if ((error = copyin(nwkey->i_key[kid].i_keydat,
2702 1.19 dyoung tmpkey[kid], klen)) != 0)
2703 1.2 dyoung break;
2704 1.2 dyoung }
2705 1.19 dyoung
2706 1.2 dyoung if (error)
2707 1.2 dyoung break;
2708 1.19 dyoung
2709 1.19 dyoung /* set keys */
2710 1.19 dyoung ieee80211_key_update_begin(ic);
2711 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2712 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2713 1.19 dyoung if (klen <= 0)
2714 1.19 dyoung continue;
2715 1.19 dyoung k = &ic->ic_nw_keys[kid];
2716 1.19 dyoung k->wk_keyix = kid;
2717 1.19 dyoung if (!ieee80211_crypto_newkey(ic, IEEE80211_CIPHER_WEP,
2718 1.19 dyoung IEEE80211_KEY_XMIT | IEEE80211_KEY_RECV, k)) {
2719 1.2 dyoung error = EINVAL;
2720 1.19 dyoung continue;
2721 1.2 dyoung }
2722 1.19 dyoung k->wk_keylen = nwkey->i_key[kid].i_keylen;
2723 1.19 dyoung (void)memcpy(k->wk_key, tmpkey[kid],
2724 1.19 dyoung sizeof(tmpkey[kid]));
2725 1.19 dyoung if (!ieee80211_crypto_setkey(ic, k, ic->ic_myaddr))
2726 1.19 dyoung error = EINVAL;
2727 1.19 dyoung }
2728 1.19 dyoung ieee80211_key_update_end(ic);
2729 1.19 dyoung
2730 1.19 dyoung if (error)
2731 1.19 dyoung break;
2732 1.19 dyoung
2733 1.19 dyoung /* delete keys */
2734 1.19 dyoung for (kid = 0; kid < IEEE80211_WEP_NKID; kid++) {
2735 1.19 dyoung klen = nwkey->i_key[kid].i_keylen;
2736 1.19 dyoung k = &ic->ic_nw_keys[kid];
2737 1.19 dyoung if (klen <= 0)
2738 1.19 dyoung (void)ieee80211_crypto_delkey(ic, k);
2739 1.19 dyoung }
2740 1.19 dyoung
2741 1.19 dyoung /* set transmit key */
2742 1.19 dyoung kid = nwkey->i_defkid - 1;
2743 1.19 dyoung if (ic->ic_def_txkey != kid) {
2744 1.19 dyoung ic->ic_def_txkey = kid;
2745 1.19 dyoung error = ENETRESET;
2746 1.19 dyoung }
2747 1.19 dyoung oflags = ic->ic_flags;
2748 1.19 dyoung if (nwkey->i_wepon == IEEE80211_NWKEY_OPEN) {
2749 1.16 mycroft ic->ic_flags &= ~IEEE80211_F_PRIVACY;
2750 1.19 dyoung ic->ic_flags &= ~IEEE80211_F_DROPUNENC;
2751 1.19 dyoung } else {
2752 1.16 mycroft ic->ic_flags |= IEEE80211_F_PRIVACY;
2753 1.19 dyoung ic->ic_flags |= IEEE80211_F_DROPUNENC;
2754 1.2 dyoung }
2755 1.19 dyoung if (oflags != ic->ic_flags)
2756 1.19 dyoung error = ENETRESET;
2757 1.2 dyoung break;
2758 1.2 dyoung case SIOCG80211NWKEY:
2759 1.2 dyoung nwkey = (struct ieee80211_nwkey *)data;
2760 1.16 mycroft if (ic->ic_flags & IEEE80211_F_PRIVACY)
2761 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_WEP;
2762 1.2 dyoung else
2763 1.2 dyoung nwkey->i_wepon = IEEE80211_NWKEY_OPEN;
2764 1.19 dyoung nwkey->i_defkid = ic->ic_def_txkey + 1;
2765 1.2 dyoung for (i = 0; i < IEEE80211_WEP_NKID; i++) {
2766 1.2 dyoung if (nwkey->i_key[i].i_keydat == NULL)
2767 1.2 dyoung continue;
2768 1.2 dyoung /* do not show any keys to non-root user */
2769 1.32 elad if ((error = kauth_authorize_generic(curproc->p_cred,
2770 1.32 elad KAUTH_GENERIC_ISSUSER, &curproc->p_acflag)) != 0)
2771 1.2 dyoung break;
2772 1.19 dyoung nwkey->i_key[i].i_keylen = ic->ic_nw_keys[i].wk_keylen;
2773 1.2 dyoung if ((error = copyout(ic->ic_nw_keys[i].wk_key,
2774 1.2 dyoung nwkey->i_key[i].i_keydat,
2775 1.19 dyoung ic->ic_nw_keys[i].wk_keylen)) != 0)
2776 1.2 dyoung break;
2777 1.2 dyoung }
2778 1.2 dyoung break;
2779 1.2 dyoung case SIOCS80211POWER:
2780 1.2 dyoung power = (struct ieee80211_power *)data;
2781 1.2 dyoung ic->ic_lintval = power->i_maxsleep;
2782 1.2 dyoung if (power->i_enabled != 0) {
2783 1.5 dyoung if ((ic->ic_caps & IEEE80211_C_PMGT) == 0)
2784 1.2 dyoung error = EINVAL;
2785 1.2 dyoung else if ((ic->ic_flags & IEEE80211_F_PMGTON) == 0) {
2786 1.2 dyoung ic->ic_flags |= IEEE80211_F_PMGTON;
2787 1.2 dyoung error = ENETRESET;
2788 1.2 dyoung }
2789 1.2 dyoung } else {
2790 1.2 dyoung if (ic->ic_flags & IEEE80211_F_PMGTON) {
2791 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_PMGTON;
2792 1.2 dyoung error = ENETRESET;
2793 1.2 dyoung }
2794 1.2 dyoung }
2795 1.2 dyoung break;
2796 1.2 dyoung case SIOCG80211POWER:
2797 1.2 dyoung power = (struct ieee80211_power *)data;
2798 1.2 dyoung power->i_enabled = (ic->ic_flags & IEEE80211_F_PMGTON) ? 1 : 0;
2799 1.2 dyoung power->i_maxsleep = ic->ic_lintval;
2800 1.2 dyoung break;
2801 1.2 dyoung case SIOCS80211BSSID:
2802 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2803 1.29 dyoung IEEE80211_ADDR_COPY(ic->ic_des_bssid, bssid->i_bssid);
2804 1.29 dyoung if (IEEE80211_ADDR_EQ(ic->ic_des_bssid, zerobssid))
2805 1.2 dyoung ic->ic_flags &= ~IEEE80211_F_DESBSSID;
2806 1.29 dyoung else
2807 1.2 dyoung ic->ic_flags |= IEEE80211_F_DESBSSID;
2808 1.29 dyoung error = ENETRESET;
2809 1.2 dyoung break;
2810 1.2 dyoung case SIOCG80211BSSID:
2811 1.2 dyoung bssid = (struct ieee80211_bssid *)data;
2812 1.2 dyoung switch (ic->ic_state) {
2813 1.2 dyoung case IEEE80211_S_INIT:
2814 1.2 dyoung case IEEE80211_S_SCAN:
2815 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_HOSTAP)
2816 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2817 1.2 dyoung ic->ic_myaddr);
2818 1.2 dyoung else if (ic->ic_flags & IEEE80211_F_DESBSSID)
2819 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2820 1.2 dyoung ic->ic_des_bssid);
2821 1.2 dyoung else
2822 1.2 dyoung memset(bssid->i_bssid, 0, IEEE80211_ADDR_LEN);
2823 1.2 dyoung break;
2824 1.2 dyoung default:
2825 1.2 dyoung IEEE80211_ADDR_COPY(bssid->i_bssid,
2826 1.2 dyoung ic->ic_bss->ni_bssid);
2827 1.2 dyoung break;
2828 1.2 dyoung }
2829 1.2 dyoung break;
2830 1.2 dyoung case SIOCS80211CHANNEL:
2831 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2832 1.2 dyoung if (chanreq->i_channel == IEEE80211_CHAN_ANY)
2833 1.2 dyoung ic->ic_des_chan = IEEE80211_CHAN_ANYC;
2834 1.2 dyoung else if (chanreq->i_channel > IEEE80211_CHAN_MAX ||
2835 1.2 dyoung isclr(ic->ic_chan_active, chanreq->i_channel)) {
2836 1.2 dyoung error = EINVAL;
2837 1.2 dyoung break;
2838 1.2 dyoung } else
2839 1.4 dyoung ic->ic_ibss_chan = ic->ic_des_chan =
2840 1.4 dyoung &ic->ic_channels[chanreq->i_channel];
2841 1.2 dyoung switch (ic->ic_state) {
2842 1.2 dyoung case IEEE80211_S_INIT:
2843 1.2 dyoung case IEEE80211_S_SCAN:
2844 1.2 dyoung error = ENETRESET;
2845 1.2 dyoung break;
2846 1.2 dyoung default:
2847 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA) {
2848 1.2 dyoung if (ic->ic_des_chan != IEEE80211_CHAN_ANYC &&
2849 1.2 dyoung ic->ic_bss->ni_chan != ic->ic_des_chan)
2850 1.2 dyoung error = ENETRESET;
2851 1.2 dyoung } else {
2852 1.2 dyoung if (ic->ic_bss->ni_chan != ic->ic_ibss_chan)
2853 1.2 dyoung error = ENETRESET;
2854 1.2 dyoung }
2855 1.2 dyoung break;
2856 1.2 dyoung }
2857 1.2 dyoung break;
2858 1.2 dyoung case SIOCG80211CHANNEL:
2859 1.2 dyoung chanreq = (struct ieee80211chanreq *)data;
2860 1.2 dyoung switch (ic->ic_state) {
2861 1.2 dyoung case IEEE80211_S_INIT:
2862 1.2 dyoung case IEEE80211_S_SCAN:
2863 1.2 dyoung if (ic->ic_opmode == IEEE80211_M_STA)
2864 1.2 dyoung chan = ic->ic_des_chan;
2865 1.2 dyoung else
2866 1.2 dyoung chan = ic->ic_ibss_chan;
2867 1.2 dyoung break;
2868 1.2 dyoung default:
2869 1.2 dyoung chan = ic->ic_bss->ni_chan;
2870 1.2 dyoung break;
2871 1.2 dyoung }
2872 1.2 dyoung chanreq->i_channel = ieee80211_chan2ieee(ic, chan);
2873 1.2 dyoung break;
2874 1.2 dyoung case SIOCGIFGENERIC:
2875 1.19 dyoung error = ieee80211_cfgget(ic, cmd, data);
2876 1.2 dyoung break;
2877 1.2 dyoung case SIOCSIFGENERIC:
2878 1.32 elad error = kauth_authorize_generic(curproc->p_cred,
2879 1.32 elad KAUTH_GENERIC_ISSUSER,
2880 1.32 elad &curproc->p_acflag);
2881 1.2 dyoung if (error)
2882 1.2 dyoung break;
2883 1.19 dyoung error = ieee80211_cfgset(ic, cmd, data);
2884 1.7 dyoung break;
2885 1.22 dyoung #ifdef COMPAT_20
2886 1.22 dyoung case OSIOCG80211STATS:
2887 1.22 dyoung case OSIOCG80211ZSTATS:
2888 1.22 dyoung ifr = (struct ifreq *)data;
2889 1.22 dyoung s = splnet();
2890 1.22 dyoung ieee80211_get_ostats(&ostats, &ic->ic_stats);
2891 1.22 dyoung error = copyout(&ostats, ifr->ifr_data, sizeof(ostats));
2892 1.22 dyoung if (error == 0 && cmd == OSIOCG80211ZSTATS)
2893 1.22 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2894 1.22 dyoung splx(s);
2895 1.22 dyoung break;
2896 1.22 dyoung #endif /* COMPAT_20 */
2897 1.17 dyoung case SIOCG80211ZSTATS:
2898 1.7 dyoung case SIOCG80211STATS:
2899 1.7 dyoung ifr = (struct ifreq *)data;
2900 1.17 dyoung s = splnet();
2901 1.22 dyoung error = copyout(&ic->ic_stats, ifr->ifr_buf,
2902 1.22 dyoung MIN(sizeof(ic->ic_stats), ifr->ifr_buflen));
2903 1.22 dyoung if (error == 0 && cmd == SIOCG80211ZSTATS)
2904 1.17 dyoung (void)memset(&ic->ic_stats, 0, sizeof(ic->ic_stats));
2905 1.17 dyoung splx(s);
2906 1.2 dyoung break;
2907 1.10 dyoung case SIOCSIFMTU:
2908 1.10 dyoung ifr = (struct ifreq *)data;
2909 1.10 dyoung if (!(IEEE80211_MTU_MIN <= ifr->ifr_mtu &&
2910 1.10 dyoung ifr->ifr_mtu <= IEEE80211_MTU_MAX))
2911 1.10 dyoung error = EINVAL;
2912 1.10 dyoung else
2913 1.10 dyoung ifp->if_mtu = ifr->ifr_mtu;
2914 1.10 dyoung break;
2915 1.2 dyoung default:
2916 1.2 dyoung error = ether_ioctl(ifp, cmd, data);
2917 1.2 dyoung break;
2918 1.2 dyoung }
2919 1.2 dyoung return error;
2920 1.2 dyoung }
2921 1.2 dyoung #endif /* __NetBSD__ */
2922