Home | History | Annotate | Line # | Download | only in net80211
ieee80211_proto.c revision 1.17.6.1
      1  1.17.6.1     yamt /*	$NetBSD: ieee80211_proto.c,v 1.17.6.1 2005/03/19 08:36:35 yamt Exp $	*/
      2       1.1   dyoung /*-
      3       1.1   dyoung  * Copyright (c) 2001 Atsushi Onoe
      4       1.1   dyoung  * Copyright (c) 2002, 2003 Sam Leffler, Errno Consulting
      5       1.1   dyoung  * All rights reserved.
      6       1.1   dyoung  *
      7       1.1   dyoung  * Redistribution and use in source and binary forms, with or without
      8       1.1   dyoung  * modification, are permitted provided that the following conditions
      9       1.1   dyoung  * are met:
     10       1.1   dyoung  * 1. Redistributions of source code must retain the above copyright
     11       1.1   dyoung  *    notice, this list of conditions and the following disclaimer.
     12       1.1   dyoung  * 2. Redistributions in binary form must reproduce the above copyright
     13       1.1   dyoung  *    notice, this list of conditions and the following disclaimer in the
     14       1.1   dyoung  *    documentation and/or other materials provided with the distribution.
     15       1.1   dyoung  * 3. The name of the author may not be used to endorse or promote products
     16       1.1   dyoung  *    derived from this software without specific prior written permission.
     17       1.1   dyoung  *
     18       1.1   dyoung  * Alternatively, this software may be distributed under the terms of the
     19       1.1   dyoung  * GNU General Public License ("GPL") version 2 as published by the Free
     20       1.1   dyoung  * Software Foundation.
     21       1.1   dyoung  *
     22       1.1   dyoung  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
     23       1.1   dyoung  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
     24       1.1   dyoung  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
     25       1.1   dyoung  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
     26       1.1   dyoung  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
     27       1.1   dyoung  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
     28       1.1   dyoung  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
     29       1.1   dyoung  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
     30       1.1   dyoung  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
     31       1.1   dyoung  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
     32       1.1   dyoung  */
     33       1.1   dyoung 
     34       1.1   dyoung #include <sys/cdefs.h>
     35       1.3   dyoung #ifdef __FreeBSD__
     36       1.8   dyoung __FBSDID("$FreeBSD: src/sys/net80211/ieee80211_proto.c,v 1.8 2004/04/02 20:22:25 sam Exp $");
     37       1.3   dyoung #else
     38  1.17.6.1     yamt __KERNEL_RCSID(0, "$NetBSD: ieee80211_proto.c,v 1.17.6.1 2005/03/19 08:36:35 yamt Exp $");
     39       1.3   dyoung #endif
     40       1.1   dyoung 
     41       1.1   dyoung /*
     42       1.1   dyoung  * IEEE 802.11 protocol support.
     43       1.1   dyoung  */
     44       1.1   dyoung 
     45       1.1   dyoung #include "opt_inet.h"
     46       1.1   dyoung 
     47       1.1   dyoung #include <sys/param.h>
     48  1.17.6.1     yamt #include <sys/systm.h>
     49  1.17.6.1     yamt #include <sys/mbuf.h>
     50       1.1   dyoung #include <sys/malloc.h>
     51       1.1   dyoung #include <sys/kernel.h>
     52       1.1   dyoung #include <sys/socket.h>
     53       1.1   dyoung #include <sys/sockio.h>
     54       1.1   dyoung #include <sys/endian.h>
     55       1.1   dyoung #include <sys/errno.h>
     56       1.4   dyoung #ifdef __FreeBSD__
     57       1.1   dyoung #include <sys/bus.h>
     58       1.4   dyoung #endif
     59       1.1   dyoung #include <sys/proc.h>
     60       1.1   dyoung #include <sys/sysctl.h>
     61       1.1   dyoung 
     62       1.2   dyoung #ifdef __FreeBSD__
     63       1.1   dyoung #include <machine/atomic.h>
     64       1.2   dyoung #endif
     65  1.17.6.1     yamt 
     66       1.1   dyoung #include <net/if.h>
     67       1.1   dyoung #include <net/if_dl.h>
     68       1.1   dyoung #include <net/if_media.h>
     69       1.1   dyoung #include <net/if_arp.h>
     70       1.2   dyoung #ifdef __FreeBSD__
     71       1.1   dyoung #include <net/ethernet.h>
     72       1.4   dyoung #else
     73       1.4   dyoung #include <net/if_ether.h>
     74       1.2   dyoung #endif
     75       1.1   dyoung #include <net/if_llc.h>
     76       1.1   dyoung 
     77       1.1   dyoung #include <net80211/ieee80211_var.h>
     78       1.4   dyoung #include <net80211/ieee80211_compat.h>
     79       1.1   dyoung 
     80       1.1   dyoung #include <net/bpf.h>
     81       1.1   dyoung 
     82       1.1   dyoung #ifdef INET
     83  1.17.6.1     yamt #include <netinet/in.h>
     84       1.4   dyoung #ifdef __FreeBSD__
     85       1.1   dyoung #include <netinet/if_ether.h>
     86       1.4   dyoung #else
     87       1.4   dyoung #include <net/if_ether.h>
     88       1.4   dyoung #endif
     89       1.1   dyoung #endif
     90       1.1   dyoung 
     91       1.9   dyoung #include <net/route.h>
     92       1.9   dyoung 
     93       1.1   dyoung #define	IEEE80211_RATE2MBS(r)	(((r) & IEEE80211_RATE_VAL) / 2)
     94       1.1   dyoung 
     95       1.1   dyoung const char *ieee80211_mgt_subtype_name[] = {
     96       1.1   dyoung 	"assoc_req",	"assoc_resp",	"reassoc_req",	"reassoc_resp",
     97       1.1   dyoung 	"probe_req",	"probe_resp",	"reserved#6",	"reserved#7",
     98       1.1   dyoung 	"beacon",	"atim",		"disassoc",	"auth",
     99       1.1   dyoung 	"deauth",	"reserved#13",	"reserved#14",	"reserved#15"
    100       1.1   dyoung };
    101       1.1   dyoung const char *ieee80211_state_name[IEEE80211_S_MAX] = {
    102       1.1   dyoung 	"INIT",		/* IEEE80211_S_INIT */
    103       1.1   dyoung 	"SCAN",		/* IEEE80211_S_SCAN */
    104       1.1   dyoung 	"AUTH",		/* IEEE80211_S_AUTH */
    105       1.1   dyoung 	"ASSOC",	/* IEEE80211_S_ASSOC */
    106       1.1   dyoung 	"RUN"		/* IEEE80211_S_RUN */
    107       1.1   dyoung };
    108       1.1   dyoung 
    109       1.1   dyoung static int ieee80211_newstate(struct ieee80211com *, enum ieee80211_state, int);
    110       1.1   dyoung 
    111       1.1   dyoung void
    112       1.1   dyoung ieee80211_proto_attach(struct ifnet *ifp)
    113       1.1   dyoung {
    114       1.1   dyoung 	struct ieee80211com *ic = (void *)ifp;
    115       1.1   dyoung 
    116       1.1   dyoung 	ifp->if_hdrlen = sizeof(struct ieee80211_frame);
    117       1.1   dyoung 
    118       1.1   dyoung #ifdef notdef
    119       1.1   dyoung 	ic->ic_rtsthreshold = IEEE80211_RTS_DEFAULT;
    120       1.1   dyoung #else
    121       1.1   dyoung 	ic->ic_rtsthreshold = IEEE80211_RTS_MAX;
    122       1.1   dyoung #endif
    123       1.1   dyoung 	ic->ic_fragthreshold = 2346;		/* XXX not used yet */
    124       1.1   dyoung 	ic->ic_fixed_rate = -1;			/* no fixed rate */
    125       1.8   dyoung 	ic->ic_protmode = IEEE80211_PROT_CTSONLY;
    126       1.1   dyoung 
    127       1.2   dyoung #ifdef __FreeBSD__
    128       1.6   dyoung 	mtx_init(&ic->ic_mgtq.ifq_mtx, ifp->if_xname, "mgmt send q", MTX_DEF);
    129       1.2   dyoung #endif
    130       1.1   dyoung 
    131       1.1   dyoung 	/* protocol state change handler */
    132       1.1   dyoung 	ic->ic_newstate = ieee80211_newstate;
    133       1.1   dyoung 
    134       1.1   dyoung 	/* initialize management frame handlers */
    135       1.1   dyoung 	ic->ic_recv_mgmt = ieee80211_recv_mgmt;
    136       1.1   dyoung 	ic->ic_send_mgmt = ieee80211_send_mgmt;
    137       1.1   dyoung }
    138       1.1   dyoung 
    139       1.1   dyoung void
    140       1.1   dyoung ieee80211_proto_detach(struct ifnet *ifp)
    141       1.1   dyoung {
    142       1.1   dyoung 	struct ieee80211com *ic = (void *)ifp;
    143       1.1   dyoung 
    144       1.4   dyoung #ifdef __FreeBSD__
    145       1.1   dyoung 	IF_DRAIN(&ic->ic_mgtq);
    146       1.1   dyoung 	mtx_destroy(&ic->ic_mgtq.ifq_mtx);
    147       1.4   dyoung #else
    148       1.4   dyoung 	IF_PURGE(&ic->ic_mgtq);
    149       1.5   dyoung 	IF_PURGE(&ic->ic_pwrsaveq);
    150       1.4   dyoung #endif
    151       1.1   dyoung }
    152       1.1   dyoung 
    153       1.1   dyoung void
    154       1.1   dyoung ieee80211_print_essid(u_int8_t *essid, int len)
    155       1.1   dyoung {
    156       1.1   dyoung 	int i;
    157  1.17.6.1     yamt 	u_int8_t *p;
    158       1.1   dyoung 
    159       1.1   dyoung 	if (len > IEEE80211_NWID_LEN)
    160       1.1   dyoung 		len = IEEE80211_NWID_LEN;
    161       1.1   dyoung 	/* determine printable or not */
    162       1.1   dyoung 	for (i = 0, p = essid; i < len; i++, p++) {
    163       1.1   dyoung 		if (*p < ' ' || *p > 0x7e)
    164       1.1   dyoung 			break;
    165       1.1   dyoung 	}
    166       1.1   dyoung 	if (i == len) {
    167       1.1   dyoung 		printf("\"");
    168       1.1   dyoung 		for (i = 0, p = essid; i < len; i++, p++)
    169       1.1   dyoung 			printf("%c", *p);
    170       1.1   dyoung 		printf("\"");
    171       1.1   dyoung 	} else {
    172       1.1   dyoung 		printf("0x");
    173       1.1   dyoung 		for (i = 0, p = essid; i < len; i++, p++)
    174       1.1   dyoung 			printf("%02x", *p);
    175       1.1   dyoung 	}
    176       1.1   dyoung }
    177       1.1   dyoung 
    178       1.1   dyoung void
    179       1.1   dyoung ieee80211_dump_pkt(u_int8_t *buf, int len, int rate, int rssi)
    180       1.1   dyoung {
    181       1.1   dyoung 	struct ieee80211_frame *wh;
    182       1.1   dyoung 	int i;
    183       1.1   dyoung 
    184       1.1   dyoung 	wh = (struct ieee80211_frame *)buf;
    185       1.1   dyoung 	switch (wh->i_fc[1] & IEEE80211_FC1_DIR_MASK) {
    186       1.1   dyoung 	case IEEE80211_FC1_DIR_NODS:
    187       1.1   dyoung 		printf("NODS %s", ether_sprintf(wh->i_addr2));
    188       1.1   dyoung 		printf("->%s", ether_sprintf(wh->i_addr1));
    189       1.1   dyoung 		printf("(%s)", ether_sprintf(wh->i_addr3));
    190       1.1   dyoung 		break;
    191       1.1   dyoung 	case IEEE80211_FC1_DIR_TODS:
    192       1.1   dyoung 		printf("TODS %s", ether_sprintf(wh->i_addr2));
    193       1.1   dyoung 		printf("->%s", ether_sprintf(wh->i_addr3));
    194       1.1   dyoung 		printf("(%s)", ether_sprintf(wh->i_addr1));
    195       1.1   dyoung 		break;
    196       1.1   dyoung 	case IEEE80211_FC1_DIR_FROMDS:
    197       1.1   dyoung 		printf("FRDS %s", ether_sprintf(wh->i_addr3));
    198       1.1   dyoung 		printf("->%s", ether_sprintf(wh->i_addr1));
    199       1.1   dyoung 		printf("(%s)", ether_sprintf(wh->i_addr2));
    200       1.1   dyoung 		break;
    201       1.1   dyoung 	case IEEE80211_FC1_DIR_DSTODS:
    202       1.1   dyoung 		printf("DSDS %s", ether_sprintf((u_int8_t *)&wh[1]));
    203       1.1   dyoung 		printf("->%s", ether_sprintf(wh->i_addr3));
    204       1.1   dyoung 		printf("(%s", ether_sprintf(wh->i_addr2));
    205       1.1   dyoung 		printf("->%s)", ether_sprintf(wh->i_addr1));
    206       1.1   dyoung 		break;
    207       1.1   dyoung 	}
    208       1.1   dyoung 	switch (wh->i_fc[0] & IEEE80211_FC0_TYPE_MASK) {
    209       1.1   dyoung 	case IEEE80211_FC0_TYPE_DATA:
    210       1.1   dyoung 		printf(" data");
    211       1.1   dyoung 		break;
    212       1.1   dyoung 	case IEEE80211_FC0_TYPE_MGT:
    213       1.1   dyoung 		printf(" %s", ieee80211_mgt_subtype_name[
    214       1.1   dyoung 		    (wh->i_fc[0] & IEEE80211_FC0_SUBTYPE_MASK)
    215       1.1   dyoung 		    >> IEEE80211_FC0_SUBTYPE_SHIFT]);
    216       1.1   dyoung 		break;
    217       1.1   dyoung 	default:
    218       1.1   dyoung 		printf(" type#%d", wh->i_fc[0] & IEEE80211_FC0_TYPE_MASK);
    219       1.1   dyoung 		break;
    220       1.1   dyoung 	}
    221       1.1   dyoung 	if (wh->i_fc[1] & IEEE80211_FC1_WEP)
    222       1.1   dyoung 		printf(" WEP");
    223       1.1   dyoung 	if (rate >= 0)
    224       1.1   dyoung 		printf(" %dM", rate / 2);
    225       1.1   dyoung 	if (rssi >= 0)
    226       1.1   dyoung 		printf(" +%d", rssi);
    227       1.1   dyoung 	printf("\n");
    228       1.1   dyoung 	if (len > 0) {
    229       1.1   dyoung 		for (i = 0; i < len; i++) {
    230       1.1   dyoung 			if ((i & 1) == 0)
    231       1.1   dyoung 				printf(" ");
    232       1.1   dyoung 			printf("%02x", buf[i]);
    233       1.1   dyoung 		}
    234       1.1   dyoung 		printf("\n");
    235       1.1   dyoung 	}
    236       1.1   dyoung }
    237       1.1   dyoung 
    238       1.1   dyoung int
    239       1.1   dyoung ieee80211_fix_rate(struct ieee80211com *ic, struct ieee80211_node *ni, int flags)
    240       1.1   dyoung {
    241       1.1   dyoung #define	RV(v)	((v) & IEEE80211_RATE_VAL)
    242       1.1   dyoung 	int i, j, ignore, error;
    243       1.1   dyoung 	int okrate, badrate;
    244       1.1   dyoung 	struct ieee80211_rateset *srs, *nrs;
    245       1.1   dyoung 	u_int8_t r;
    246       1.1   dyoung 
    247       1.1   dyoung 	error = 0;
    248       1.1   dyoung 	okrate = badrate = 0;
    249       1.1   dyoung 	srs = &ic->ic_sup_rates[ieee80211_chan2mode(ic, ni->ni_chan)];
    250       1.1   dyoung 	nrs = &ni->ni_rates;
    251       1.6   dyoung 	for (i = 0; i < nrs->rs_nrates; ) {
    252       1.1   dyoung 		ignore = 0;
    253       1.1   dyoung 		if (flags & IEEE80211_F_DOSORT) {
    254       1.1   dyoung 			/*
    255       1.1   dyoung 			 * Sort rates.
    256       1.1   dyoung 			 */
    257       1.1   dyoung 			for (j = i + 1; j < nrs->rs_nrates; j++) {
    258       1.1   dyoung 				if (RV(nrs->rs_rates[i]) > RV(nrs->rs_rates[j])) {
    259       1.1   dyoung 					r = nrs->rs_rates[i];
    260       1.1   dyoung 					nrs->rs_rates[i] = nrs->rs_rates[j];
    261       1.1   dyoung 					nrs->rs_rates[j] = r;
    262       1.1   dyoung 				}
    263       1.1   dyoung 			}
    264       1.1   dyoung 		}
    265       1.1   dyoung 		r = nrs->rs_rates[i] & IEEE80211_RATE_VAL;
    266       1.1   dyoung 		badrate = r;
    267       1.1   dyoung 		if (flags & IEEE80211_F_DOFRATE) {
    268       1.1   dyoung 			/*
    269       1.1   dyoung 			 * Apply fixed rate constraint.  Note that we do
    270       1.1   dyoung 			 * not apply the constraint to basic rates as
    271       1.1   dyoung 			 * otherwise we may not be able to associate if
    272       1.1   dyoung 			 * the rate set we submit to the AP is invalid
    273       1.1   dyoung 			 * (e.g. fix rate at 36Mb/s which is not a basic
    274       1.1   dyoung 			 * rate for 11a operation).
    275       1.1   dyoung 			 */
    276       1.1   dyoung 			if ((nrs->rs_rates[i] & IEEE80211_RATE_BASIC) == 0 &&
    277       1.1   dyoung 			    ic->ic_fixed_rate >= 0 &&
    278       1.1   dyoung 			    r != RV(srs->rs_rates[ic->ic_fixed_rate]))
    279       1.1   dyoung 				ignore++;
    280       1.1   dyoung 		}
    281       1.1   dyoung 		if (flags & IEEE80211_F_DONEGO) {
    282       1.1   dyoung 			/*
    283       1.1   dyoung 			 * Check against supported rates.
    284       1.1   dyoung 			 */
    285       1.1   dyoung 			for (j = 0; j < srs->rs_nrates; j++) {
    286       1.8   dyoung 				if (r == RV(srs->rs_rates[j])) {
    287       1.8   dyoung 					/*
    288       1.8   dyoung 					 * Overwrite with the supported rate
    289       1.8   dyoung 					 * value so any basic rate bit is set.
    290       1.8   dyoung 					 * This insures that response we send
    291       1.8   dyoung 					 * to stations have the necessary basic
    292       1.8   dyoung 					 * rate bit set.
    293       1.8   dyoung 					 */
    294       1.8   dyoung 					nrs->rs_rates[i] = srs->rs_rates[j];
    295       1.1   dyoung 					break;
    296       1.8   dyoung 				}
    297       1.1   dyoung 			}
    298       1.1   dyoung 			if (j == srs->rs_nrates) {
    299       1.6   dyoung 				/*
    300       1.6   dyoung 				 * A rate in the node's rate set is not
    301       1.6   dyoung 				 * supported.  If this is a basic rate and we
    302       1.6   dyoung 				 * are operating as an AP then this is an error.
    303       1.6   dyoung 				 * Otherwise we just discard/ignore the rate.
    304       1.6   dyoung 				 * Note that this is important for 11b stations
    305       1.6   dyoung 				 * when they want to associate with an 11g AP.
    306       1.6   dyoung 				 */
    307       1.6   dyoung 				if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
    308       1.6   dyoung 				    (nrs->rs_rates[i] & IEEE80211_RATE_BASIC))
    309       1.1   dyoung 					error++;
    310       1.1   dyoung 				ignore++;
    311       1.1   dyoung 			}
    312       1.1   dyoung 		}
    313       1.1   dyoung 		if (flags & IEEE80211_F_DODEL) {
    314       1.1   dyoung 			/*
    315       1.1   dyoung 			 * Delete unacceptable rates.
    316       1.1   dyoung 			 */
    317       1.1   dyoung 			if (ignore) {
    318       1.1   dyoung 				nrs->rs_nrates--;
    319       1.1   dyoung 				for (j = i; j < nrs->rs_nrates; j++)
    320       1.1   dyoung 					nrs->rs_rates[j] = nrs->rs_rates[j + 1];
    321       1.1   dyoung 				nrs->rs_rates[j] = 0;
    322       1.1   dyoung 				continue;
    323       1.1   dyoung 			}
    324       1.1   dyoung 		}
    325      1.10  mycroft 		if (!ignore) {
    326       1.1   dyoung 			okrate = nrs->rs_rates[i];
    327      1.10  mycroft 			ni->ni_txrate = i;
    328      1.10  mycroft 		}
    329       1.1   dyoung 		i++;
    330       1.1   dyoung 	}
    331       1.1   dyoung 	if (okrate == 0 || error != 0)
    332       1.1   dyoung 		return badrate | IEEE80211_RATE_BASIC;
    333       1.1   dyoung 	else
    334       1.1   dyoung 		return RV(okrate);
    335       1.1   dyoung #undef RV
    336       1.1   dyoung }
    337       1.1   dyoung 
    338       1.1   dyoung static int
    339       1.1   dyoung ieee80211_newstate(struct ieee80211com *ic, enum ieee80211_state nstate, int mgt)
    340       1.1   dyoung {
    341       1.1   dyoung 	struct ifnet *ifp = &ic->ic_if;
    342       1.1   dyoung 	struct ieee80211_node *ni;
    343       1.1   dyoung 	enum ieee80211_state ostate;
    344       1.2   dyoung 	ieee80211_node_critsec_decl(s);
    345       1.9   dyoung 	int linkstate = LINK_STATE_DOWN;
    346       1.1   dyoung 
    347       1.1   dyoung 	ostate = ic->ic_state;
    348      1.11  mycroft 	IEEE80211_DPRINTF(ic, IEEE80211_MSG_STATE, ("%s: %s -> %s\n", __func__,
    349       1.1   dyoung 		ieee80211_state_name[ostate], ieee80211_state_name[nstate]));
    350       1.1   dyoung 	ic->ic_state = nstate;			/* state transition */
    351       1.1   dyoung 	ni = ic->ic_bss;			/* NB: no reference held */
    352       1.1   dyoung 	switch (nstate) {
    353       1.1   dyoung 	case IEEE80211_S_INIT:
    354       1.1   dyoung 		switch (ostate) {
    355       1.1   dyoung 		case IEEE80211_S_INIT:
    356       1.1   dyoung 			break;
    357       1.1   dyoung 		case IEEE80211_S_RUN:
    358       1.1   dyoung 			switch (ic->ic_opmode) {
    359       1.1   dyoung 			case IEEE80211_M_STA:
    360       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    361       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_DISASSOC,
    362       1.1   dyoung 				    IEEE80211_REASON_ASSOC_LEAVE);
    363       1.1   dyoung 				break;
    364       1.1   dyoung 			case IEEE80211_M_HOSTAP:
    365       1.2   dyoung 				ieee80211_node_critsec_begin(ic, s);
    366       1.1   dyoung 				TAILQ_FOREACH(ni, &ic->ic_node, ni_list) {
    367       1.1   dyoung 					if (ni->ni_associd == 0)
    368       1.1   dyoung 						continue;
    369       1.1   dyoung 					IEEE80211_SEND_MGMT(ic, ni,
    370       1.1   dyoung 					    IEEE80211_FC0_SUBTYPE_DISASSOC,
    371       1.1   dyoung 					    IEEE80211_REASON_ASSOC_LEAVE);
    372       1.1   dyoung 				}
    373       1.2   dyoung 				ieee80211_node_critsec_end(ic, s);
    374       1.1   dyoung 				break;
    375       1.1   dyoung 			default:
    376       1.1   dyoung 				break;
    377       1.1   dyoung 			}
    378       1.1   dyoung 			/* FALLTHRU */
    379       1.1   dyoung 		case IEEE80211_S_ASSOC:
    380       1.1   dyoung 			switch (ic->ic_opmode) {
    381       1.1   dyoung 			case IEEE80211_M_STA:
    382       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    383       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_DEAUTH,
    384       1.1   dyoung 				    IEEE80211_REASON_AUTH_LEAVE);
    385       1.1   dyoung 				break;
    386       1.1   dyoung 			case IEEE80211_M_HOSTAP:
    387       1.2   dyoung 				ieee80211_node_critsec_begin(ic, s);
    388       1.1   dyoung 				TAILQ_FOREACH(ni, &ic->ic_node, ni_list) {
    389       1.1   dyoung 					IEEE80211_SEND_MGMT(ic, ni,
    390       1.1   dyoung 					    IEEE80211_FC0_SUBTYPE_DEAUTH,
    391       1.1   dyoung 					    IEEE80211_REASON_AUTH_LEAVE);
    392       1.1   dyoung 				}
    393       1.2   dyoung 				ieee80211_node_critsec_end(ic, s);
    394       1.1   dyoung 				break;
    395       1.1   dyoung 			default:
    396       1.1   dyoung 				break;
    397       1.1   dyoung 			}
    398       1.1   dyoung 			/* FALLTHRU */
    399       1.1   dyoung 		case IEEE80211_S_AUTH:
    400       1.1   dyoung 		case IEEE80211_S_SCAN:
    401       1.1   dyoung 			ic->ic_mgt_timer = 0;
    402       1.4   dyoung #ifdef __FreeBSD__
    403       1.1   dyoung 			IF_DRAIN(&ic->ic_mgtq);
    404       1.4   dyoung #else
    405       1.4   dyoung 			IF_PURGE(&ic->ic_mgtq);
    406       1.5   dyoung 			IF_PURGE(&ic->ic_pwrsaveq);
    407       1.4   dyoung #endif
    408       1.1   dyoung 			if (ic->ic_wep_ctx != NULL) {
    409       1.1   dyoung 				free(ic->ic_wep_ctx, M_DEVBUF);
    410       1.1   dyoung 				ic->ic_wep_ctx = NULL;
    411       1.1   dyoung 			}
    412       1.1   dyoung 			ieee80211_free_allnodes(ic);
    413       1.1   dyoung 			break;
    414       1.1   dyoung 		}
    415       1.1   dyoung 		break;
    416       1.1   dyoung 	case IEEE80211_S_SCAN:
    417       1.1   dyoung 		ic->ic_flags &= ~IEEE80211_F_SIBSS;
    418       1.1   dyoung 		/* initialize bss for probe request */
    419       1.1   dyoung 		IEEE80211_ADDR_COPY(ni->ni_macaddr, ifp->if_broadcastaddr);
    420       1.1   dyoung 		IEEE80211_ADDR_COPY(ni->ni_bssid, ifp->if_broadcastaddr);
    421       1.1   dyoung 		ni->ni_rates = ic->ic_sup_rates[
    422       1.1   dyoung 			ieee80211_chan2mode(ic, ni->ni_chan)];
    423       1.1   dyoung 		ni->ni_associd = 0;
    424       1.1   dyoung 		ni->ni_rstamp = 0;
    425       1.1   dyoung 		switch (ostate) {
    426       1.1   dyoung 		case IEEE80211_S_INIT:
    427       1.1   dyoung 			if (ic->ic_opmode == IEEE80211_M_HOSTAP &&
    428       1.1   dyoung 			    ic->ic_des_chan != IEEE80211_CHAN_ANYC) {
    429       1.1   dyoung 				/*
    430       1.1   dyoung 				 * AP operation and we already have a channel;
    431       1.1   dyoung 				 * bypass the scan and startup immediately.
    432       1.1   dyoung 				 */
    433       1.1   dyoung 				ieee80211_create_ibss(ic, ic->ic_des_chan);
    434       1.1   dyoung 			} else {
    435      1.15  mycroft 				ieee80211_begin_scan(ic);
    436       1.1   dyoung 			}
    437       1.1   dyoung 			break;
    438       1.1   dyoung 		case IEEE80211_S_SCAN:
    439       1.1   dyoung 			/* scan next */
    440       1.1   dyoung 			if (ic->ic_flags & IEEE80211_F_ASCAN) {
    441       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    442       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_PROBE_REQ, 0);
    443       1.1   dyoung 			}
    444       1.1   dyoung 			break;
    445       1.1   dyoung 		case IEEE80211_S_RUN:
    446       1.1   dyoung 			/* beacon miss */
    447      1.13  mycroft 			IEEE80211_DPRINTF(ic, IEEE80211_MSG_STATE,
    448      1.13  mycroft 				("no recent beacons from %s; rescanning\n",
    449      1.13  mycroft 				ether_sprintf(ic->ic_bss->ni_bssid)));
    450      1.13  mycroft 			/* XXX this clears the scan set */
    451       1.1   dyoung 			ieee80211_free_allnodes(ic);
    452       1.1   dyoung 			/* FALLTHRU */
    453       1.1   dyoung 		case IEEE80211_S_AUTH:
    454       1.1   dyoung 		case IEEE80211_S_ASSOC:
    455       1.1   dyoung 			/* timeout restart scan */
    456       1.1   dyoung 			ni = ieee80211_find_node(ic, ic->ic_bss->ni_macaddr);
    457       1.1   dyoung 			if (ni != NULL) {
    458       1.1   dyoung 				ni->ni_fails++;
    459       1.1   dyoung 			}
    460      1.15  mycroft 			ieee80211_begin_scan(ic);
    461       1.1   dyoung 			break;
    462       1.1   dyoung 		}
    463       1.1   dyoung 		break;
    464       1.1   dyoung 	case IEEE80211_S_AUTH:
    465       1.1   dyoung 		switch (ostate) {
    466       1.1   dyoung 		case IEEE80211_S_INIT:
    467      1.11  mycroft 			IEEE80211_DPRINTF(ic, IEEE80211_MSG_ANY,
    468      1.11  mycroft 				("%s: invalid transition\n", __func__));
    469       1.1   dyoung 			break;
    470       1.1   dyoung 		case IEEE80211_S_SCAN:
    471       1.1   dyoung 			IEEE80211_SEND_MGMT(ic, ni,
    472       1.1   dyoung 			    IEEE80211_FC0_SUBTYPE_AUTH, 1);
    473       1.1   dyoung 			break;
    474       1.1   dyoung 		case IEEE80211_S_AUTH:
    475       1.1   dyoung 		case IEEE80211_S_ASSOC:
    476       1.1   dyoung 			switch (mgt) {
    477       1.1   dyoung 			case IEEE80211_FC0_SUBTYPE_AUTH:
    478       1.1   dyoung 				/* ??? */
    479       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    480       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_AUTH, 2);
    481       1.1   dyoung 				break;
    482       1.1   dyoung 			case IEEE80211_FC0_SUBTYPE_DEAUTH:
    483       1.1   dyoung 				/* ignore and retry scan on timeout */
    484       1.1   dyoung 				break;
    485       1.1   dyoung 			}
    486       1.1   dyoung 			break;
    487       1.1   dyoung 		case IEEE80211_S_RUN:
    488       1.1   dyoung 			switch (mgt) {
    489       1.1   dyoung 			case IEEE80211_FC0_SUBTYPE_AUTH:
    490       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    491       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_AUTH, 2);
    492       1.1   dyoung 				ic->ic_state = ostate;	/* stay RUN */
    493       1.1   dyoung 				break;
    494       1.1   dyoung 			case IEEE80211_FC0_SUBTYPE_DEAUTH:
    495       1.1   dyoung 				/* try to reauth */
    496       1.1   dyoung 				IEEE80211_SEND_MGMT(ic, ni,
    497       1.1   dyoung 				    IEEE80211_FC0_SUBTYPE_AUTH, 1);
    498       1.1   dyoung 				break;
    499       1.1   dyoung 			}
    500       1.1   dyoung 			break;
    501       1.1   dyoung 		}
    502       1.1   dyoung 		break;
    503       1.1   dyoung 	case IEEE80211_S_ASSOC:
    504       1.1   dyoung 		switch (ostate) {
    505       1.1   dyoung 		case IEEE80211_S_INIT:
    506       1.1   dyoung 		case IEEE80211_S_SCAN:
    507       1.1   dyoung 		case IEEE80211_S_ASSOC:
    508      1.11  mycroft 			IEEE80211_DPRINTF(ic, IEEE80211_MSG_ANY,
    509      1.11  mycroft 				("%s: invalid transition\n", __func__));
    510       1.1   dyoung 			break;
    511       1.1   dyoung 		case IEEE80211_S_AUTH:
    512       1.1   dyoung 			IEEE80211_SEND_MGMT(ic, ni,
    513       1.1   dyoung 			    IEEE80211_FC0_SUBTYPE_ASSOC_REQ, 0);
    514       1.1   dyoung 			break;
    515       1.1   dyoung 		case IEEE80211_S_RUN:
    516       1.1   dyoung 			IEEE80211_SEND_MGMT(ic, ni,
    517      1.17    enami 			    IEEE80211_FC0_SUBTYPE_REASSOC_REQ, 0);
    518       1.1   dyoung 			break;
    519       1.1   dyoung 		}
    520       1.1   dyoung 		break;
    521       1.1   dyoung 	case IEEE80211_S_RUN:
    522       1.9   dyoung 		linkstate = LINK_STATE_UP;
    523       1.1   dyoung 		switch (ostate) {
    524       1.1   dyoung 		case IEEE80211_S_INIT:
    525       1.1   dyoung 		case IEEE80211_S_AUTH:
    526       1.1   dyoung 		case IEEE80211_S_RUN:
    527      1.11  mycroft 			IEEE80211_DPRINTF(ic, IEEE80211_MSG_ANY,
    528      1.11  mycroft 				("%s: invalid transition\n", __func__));
    529       1.1   dyoung 			break;
    530       1.1   dyoung 		case IEEE80211_S_SCAN:		/* adhoc/hostap mode */
    531       1.1   dyoung 		case IEEE80211_S_ASSOC:		/* infra mode */
    532       1.7   dyoung 			IASSERT(ni->ni_txrate < ni->ni_rates.rs_nrates,
    533      1.12  mycroft 				("%s: bogus xmit rate %u setup", __func__,
    534       1.1   dyoung 					ni->ni_txrate));
    535      1.14  mycroft #ifdef IEEE80211_DEBUG
    536      1.13  mycroft 			if (ieee80211_msg_debug(ic)) {
    537       1.1   dyoung 				if_printf(ifp, " ");
    538       1.1   dyoung 				if (ic->ic_opmode == IEEE80211_M_STA)
    539       1.1   dyoung 					printf("associated ");
    540       1.1   dyoung 				else
    541       1.1   dyoung 					printf("synchronized ");
    542       1.1   dyoung 				printf("with %s ssid ",
    543       1.1   dyoung 				    ether_sprintf(ni->ni_bssid));
    544       1.1   dyoung 				ieee80211_print_essid(ic->ic_bss->ni_essid,
    545       1.1   dyoung 				    ni->ni_esslen);
    546       1.1   dyoung 				printf(" channel %d start %uMb\n",
    547       1.1   dyoung 					ieee80211_chan2ieee(ic, ni->ni_chan),
    548       1.1   dyoung 					IEEE80211_RATE2MBS(ni->ni_rates.rs_rates[ni->ni_txrate]));
    549       1.1   dyoung 			}
    550      1.14  mycroft #endif
    551       1.1   dyoung 			ic->ic_mgt_timer = 0;
    552       1.1   dyoung 			(*ifp->if_start)(ifp);
    553       1.1   dyoung 			break;
    554       1.1   dyoung 		}
    555       1.1   dyoung 		break;
    556       1.1   dyoung 	}
    557       1.9   dyoung 	if (ifp->if_link_state != linkstate) {
    558       1.9   dyoung 		ifp->if_link_state = linkstate;
    559       1.9   dyoung 		s = splnet();
    560       1.9   dyoung 		rt_ifmsg(ifp);
    561       1.9   dyoung 		splx(s);
    562       1.9   dyoung 	}
    563       1.1   dyoung 	return 0;
    564       1.1   dyoung }
    565