core.c 25.8 KB
Newer Older
1 2 3
/*
 * This is the linux wireless configuration interface.
 *
J
Johannes Berg 已提交
4
 * Copyright 2006-2010		Johannes Berg <johannes@sipsolutions.net>
5 6
 */

7 8
#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt

9 10 11 12
#include <linux/if.h>
#include <linux/module.h>
#include <linux/err.h>
#include <linux/list.h>
13
#include <linux/slab.h>
14 15 16 17
#include <linux/nl80211.h>
#include <linux/debugfs.h>
#include <linux/notifier.h>
#include <linux/device.h>
18
#include <linux/etherdevice.h>
J
Johannes Berg 已提交
19
#include <linux/rtnetlink.h>
20
#include <linux/sched.h>
21 22
#include <net/genetlink.h>
#include <net/cfg80211.h>
23
#include "nl80211.h"
24 25
#include "core.h"
#include "sysfs.h"
26
#include "debugfs.h"
27
#include "wext-compat.h"
28
#include "ethtool.h"
29 30 31 32 33 34 35 36

/* name for sysfs, %d is appended */
#define PHY_NAME "phy"

MODULE_AUTHOR("Johannes Berg");
MODULE_LICENSE("GPL");
MODULE_DESCRIPTION("wireless configuration support");

J
Johannes Berg 已提交
37
/* RCU-protected (and cfg80211_mutex for writers) */
38
LIST_HEAD(cfg80211_rdev_list);
39
int cfg80211_rdev_list_generation;
40 41

DEFINE_MUTEX(cfg80211_mutex);
42 43 44 45

/* for debugfs */
static struct dentry *ieee80211_debugfs_dir;

46 47 48
/* for the cleanup, scan and event works */
struct workqueue_struct *cfg80211_wq;

49 50 51 52 53
static bool cfg80211_disable_40mhz_24ghz;
module_param(cfg80211_disable_40mhz_24ghz, bool, 0644);
MODULE_PARM_DESC(cfg80211_disable_40mhz_24ghz,
		 "Disable 40MHz support in the 2.4GHz band");

54
/* requires cfg80211_mutex to be held! */
55
struct cfg80211_registered_device *cfg80211_rdev_by_wiphy_idx(int wiphy_idx)
56
{
57
	struct cfg80211_registered_device *result = NULL, *rdev;
58

59 60 61
	if (!wiphy_idx_valid(wiphy_idx))
		return NULL;

62 63
	assert_cfg80211_lock();

64 65 66
	list_for_each_entry(rdev, &cfg80211_rdev_list, list) {
		if (rdev->wiphy_idx == wiphy_idx) {
			result = rdev;
67 68 69 70 71 72 73
			break;
		}
	}

	return result;
}

74 75
int get_wiphy_idx(struct wiphy *wiphy)
{
76
	struct cfg80211_registered_device *rdev;
77 78
	if (!wiphy)
		return WIPHY_IDX_STALE;
79 80
	rdev = wiphy_to_dev(wiphy);
	return rdev->wiphy_idx;
81 82
}

83
/* requires cfg80211_rdev_mutex to be held! */
84 85
struct wiphy *wiphy_idx_to_wiphy(int wiphy_idx)
{
86
	struct cfg80211_registered_device *rdev;
87 88 89 90 91 92

	if (!wiphy_idx_valid(wiphy_idx))
		return NULL;

	assert_cfg80211_lock();

93 94
	rdev = cfg80211_rdev_by_wiphy_idx(wiphy_idx);
	if (!rdev)
95
		return NULL;
96
	return &rdev->wiphy;
97 98
}

99
struct cfg80211_registered_device *
100
cfg80211_get_dev_from_ifindex(struct net *net, int ifindex)
101
{
102
	struct cfg80211_registered_device *rdev = ERR_PTR(-ENODEV);
103 104
	struct net_device *dev;

105
	mutex_lock(&cfg80211_mutex);
106
	dev = dev_get_by_index(net, ifindex);
107 108 109
	if (!dev)
		goto out;
	if (dev->ieee80211_ptr) {
110 111
		rdev = wiphy_to_dev(dev->ieee80211_ptr->wiphy);
		mutex_lock(&rdev->mtx);
112
	} else
113
		rdev = ERR_PTR(-ENODEV);
114 115
	dev_put(dev);
 out:
116
	mutex_unlock(&cfg80211_mutex);
117
	return rdev;
118 119
}

120
/* requires cfg80211_mutex to be held */
121 122 123
int cfg80211_dev_rename(struct cfg80211_registered_device *rdev,
			char *newname)
{
124
	struct cfg80211_registered_device *rdev2;
125
	int wiphy_idx, taken = -1, result, digits;
126

127
	assert_cfg80211_lock();
128

129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144
	/* prohibit calling the thing phy%d when %d is not its number */
	sscanf(newname, PHY_NAME "%d%n", &wiphy_idx, &taken);
	if (taken == strlen(newname) && wiphy_idx != rdev->wiphy_idx) {
		/* count number of places needed to print wiphy_idx */
		digits = 1;
		while (wiphy_idx /= 10)
			digits++;
		/*
		 * deny the name if it is phy<idx> where <idx> is printed
		 * without leading zeroes. taken == strlen(newname) here
		 */
		if (taken == strlen(PHY_NAME) + digits)
			return -EINVAL;
	}


145 146
	/* Ignore nop renames */
	if (strcmp(newname, dev_name(&rdev->wiphy.dev)) == 0)
147
		return 0;
148 149

	/* Ensure another device does not already have this name. */
150 151
	list_for_each_entry(rdev2, &cfg80211_rdev_list, list)
		if (strcmp(newname, dev_name(&rdev2->wiphy.dev)) == 0)
152
			return -EINVAL;
153 154 155

	result = device_rename(&rdev->wiphy.dev, newname);
	if (result)
156
		return result;
157

158 159
	if (rdev->wiphy.debugfsdir &&
	    !debugfs_rename(rdev->wiphy.debugfsdir->d_parent,
160 161 162
			    rdev->wiphy.debugfsdir,
			    rdev->wiphy.debugfsdir->d_parent,
			    newname))
163
		pr_err("failed to rename debugfs dir to %s!\n", newname);
164

165
	nl80211_notify_dev_rename(rdev);
166

167
	return 0;
168 169
}

170 171 172 173 174 175
int cfg80211_switch_netns(struct cfg80211_registered_device *rdev,
			  struct net *net)
{
	struct wireless_dev *wdev;
	int err = 0;

J
Johannes Berg 已提交
176
	if (!(rdev->wiphy.flags & WIPHY_FLAG_NETNS_OK))
177 178
		return -EOPNOTSUPP;

179
	list_for_each_entry(wdev, &rdev->wdev_list, list) {
180 181
		if (!wdev->netdev)
			continue;
182 183 184 185 186 187 188 189 190 191 192
		wdev->netdev->features &= ~NETIF_F_NETNS_LOCAL;
		err = dev_change_net_namespace(wdev->netdev, net, "wlan%d");
		if (err)
			break;
		wdev->netdev->features |= NETIF_F_NETNS_LOCAL;
	}

	if (err) {
		/* failed -- clean up to old netns */
		net = wiphy_net(&rdev->wiphy);

193
		list_for_each_entry_continue_reverse(wdev, &rdev->wdev_list,
194
						     list) {
195 196
			if (!wdev->netdev)
				continue;
197 198 199 200 201 202
			wdev->netdev->features &= ~NETIF_F_NETNS_LOCAL;
			err = dev_change_net_namespace(wdev->netdev, net,
							"wlan%d");
			WARN_ON(err);
			wdev->netdev->features |= NETIF_F_NETNS_LOCAL;
		}
203 204

		return err;
205 206 207 208
	}

	wiphy_net_set(&rdev->wiphy, net);

209 210 211 212
	err = device_rename(&rdev->wiphy.dev, dev_name(&rdev->wiphy.dev));
	WARN_ON(err);

	return 0;
213 214
}

J
Johannes Berg 已提交
215 216
static void cfg80211_rfkill_poll(struct rfkill *rfkill, void *data)
{
217
	struct cfg80211_registered_device *rdev = data;
J
Johannes Berg 已提交
218

219
	rdev->ops->rfkill_poll(&rdev->wiphy);
J
Johannes Berg 已提交
220 221 222 223
}

static int cfg80211_rfkill_set_block(void *data, bool blocked)
{
224
	struct cfg80211_registered_device *rdev = data;
J
Johannes Berg 已提交
225 226 227 228 229 230
	struct wireless_dev *wdev;

	if (!blocked)
		return 0;

	rtnl_lock();
231
	mutex_lock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
232

233
	list_for_each_entry(wdev, &rdev->wdev_list, list)
234 235
		if (wdev->netdev)
			dev_close(wdev->netdev);
J
Johannes Berg 已提交
236

237
	mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
238 239 240 241 242 243 244
	rtnl_unlock();

	return 0;
}

static void cfg80211_rfkill_sync_work(struct work_struct *work)
{
245
	struct cfg80211_registered_device *rdev;
J
Johannes Berg 已提交
246

247 248
	rdev = container_of(work, struct cfg80211_registered_device, rfkill_sync);
	cfg80211_rfkill_set_block(rdev, rfkill_blocked(rdev->rfkill));
J
Johannes Berg 已提交
249 250
}

J
Johannes Berg 已提交
251 252 253 254 255 256 257 258 259 260
static void cfg80211_event_work(struct work_struct *work)
{
	struct cfg80211_registered_device *rdev;

	rdev = container_of(work, struct cfg80211_registered_device,
			    event_work);

	rtnl_lock();
	cfg80211_lock_rdev(rdev);

261
	cfg80211_process_rdev_events(rdev);
J
Johannes Berg 已提交
262 263 264 265
	cfg80211_unlock_rdev(rdev);
	rtnl_unlock();
}

266 267
/* exported functions */

268
struct wiphy *wiphy_new(const struct cfg80211_ops *ops, int sizeof_priv)
269
{
270
	static int wiphy_counter;
271 272

	struct cfg80211_registered_device *rdev;
273 274
	int alloc_size;

275 276 277 278 279 280 281
	WARN_ON(ops->add_key && (!ops->del_key || !ops->set_default_key));
	WARN_ON(ops->auth && (!ops->assoc || !ops->deauth || !ops->disassoc));
	WARN_ON(ops->connect && !ops->disconnect);
	WARN_ON(ops->join_ibss && !ops->leave_ibss);
	WARN_ON(ops->add_virtual_intf && !ops->del_virtual_intf);
	WARN_ON(ops->add_station && !ops->del_station);
	WARN_ON(ops->add_mpath && !ops->del_mpath);
282
	WARN_ON(ops->join_mesh && !ops->leave_mesh);
283

284
	alloc_size = sizeof(*rdev) + sizeof_priv;
285

286 287
	rdev = kzalloc(alloc_size, GFP_KERNEL);
	if (!rdev)
288 289
		return NULL;

290
	rdev->ops = ops;
291

292
	mutex_lock(&cfg80211_mutex);
293

294
	rdev->wiphy_idx = wiphy_counter++;
295

296
	if (unlikely(!wiphy_idx_valid(rdev->wiphy_idx))) {
297
		wiphy_counter--;
298
		mutex_unlock(&cfg80211_mutex);
299
		/* ugh, wrapped! */
300
		kfree(rdev);
301 302 303
		return NULL;
	}

304
	mutex_unlock(&cfg80211_mutex);
305

306 307 308
	/* give it a proper name */
	dev_set_name(&rdev->wiphy.dev, PHY_NAME "%d", rdev->wiphy_idx);

309 310
	mutex_init(&rdev->mtx);
	mutex_init(&rdev->devlist_mtx);
311
	mutex_init(&rdev->sched_scan_mtx);
312
	INIT_LIST_HEAD(&rdev->wdev_list);
313 314 315
	spin_lock_init(&rdev->bss_lock);
	INIT_LIST_HEAD(&rdev->bss_list);
	INIT_WORK(&rdev->scan_done_wk, __cfg80211_scan_done);
316
	INIT_WORK(&rdev->sched_scan_results_wk, __cfg80211_sched_scan_results);
J
Johannes Berg 已提交
317 318 319 320
#ifdef CONFIG_CFG80211_WEXT
	rdev->wiphy.wext = &cfg80211_wext_handler;
#endif

321 322 323 324
	device_initialize(&rdev->wiphy.dev);
	rdev->wiphy.dev.class = &ieee80211_class;
	rdev->wiphy.dev.platform_data = rdev;

J
Johannes Berg 已提交
325 326 327
#ifdef CONFIG_CFG80211_DEFAULT_PS
	rdev->wiphy.flags |= WIPHY_FLAG_PS_ON_BY_DEFAULT;
#endif
328

329 330
	wiphy_net_set(&rdev->wiphy, &init_net);

331 332 333 334 335 336 337
	rdev->rfkill_ops.set_block = cfg80211_rfkill_set_block;
	rdev->rfkill = rfkill_alloc(dev_name(&rdev->wiphy.dev),
				   &rdev->wiphy.dev, RFKILL_TYPE_WLAN,
				   &rdev->rfkill_ops, rdev);

	if (!rdev->rfkill) {
		kfree(rdev);
J
Johannes Berg 已提交
338 339 340
		return NULL;
	}

341 342 343
	INIT_WORK(&rdev->rfkill_sync, cfg80211_rfkill_sync_work);
	INIT_WORK(&rdev->conn_work, cfg80211_conn_work);
	INIT_WORK(&rdev->event_work, cfg80211_event_work);
J
Johannes Berg 已提交
344

345 346
	init_waitqueue_head(&rdev->dev_wait);

347 348 349 350 351
	/*
	 * Initialize wiphy parameters to IEEE 802.11 MIB default values.
	 * Fragmentation and RTS threshold are disabled by default with the
	 * special -1 value.
	 */
352 353 354 355
	rdev->wiphy.retry_short = 7;
	rdev->wiphy.retry_long = 4;
	rdev->wiphy.frag_threshold = (u32) -1;
	rdev->wiphy.rts_threshold = (u32) -1;
356
	rdev->wiphy.coverage_class = 0;
357

358
	return &rdev->wiphy;
359 360 361
}
EXPORT_SYMBOL(wiphy_new);

362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380
static int wiphy_verify_combinations(struct wiphy *wiphy)
{
	const struct ieee80211_iface_combination *c;
	int i, j;

	for (i = 0; i < wiphy->n_iface_combinations; i++) {
		u32 cnt = 0;
		u16 all_iftypes = 0;

		c = &wiphy->iface_combinations[i];

		/* Combinations with just one interface aren't real */
		if (WARN_ON(c->max_interfaces < 2))
			return -EINVAL;

		/* Need at least one channel */
		if (WARN_ON(!c->num_different_channels))
			return -EINVAL;

381 382 383 384 385 386 387 388
		/*
		 * Put a sane limit on maximum number of different
		 * channels to simplify channel accounting code.
		 */
		if (WARN_ON(c->num_different_channels >
				CFG80211_MAX_NUM_DIFFERENT_CHANNELS))
			return -EINVAL;

389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426
		if (WARN_ON(!c->n_limits))
			return -EINVAL;

		for (j = 0; j < c->n_limits; j++) {
			u16 types = c->limits[j].types;

			/*
			 * interface types shouldn't overlap, this is
			 * used in cfg80211_can_change_interface()
			 */
			if (WARN_ON(types & all_iftypes))
				return -EINVAL;
			all_iftypes |= types;

			if (WARN_ON(!c->limits[j].max))
				return -EINVAL;

			/* Shouldn't list software iftypes in combinations! */
			if (WARN_ON(wiphy->software_iftypes & types))
				return -EINVAL;

			cnt += c->limits[j].max;
			/*
			 * Don't advertise an unsupported type
			 * in a combination.
			 */
			if (WARN_ON((wiphy->interface_modes & types) != types))
				return -EINVAL;
		}

		/* You can't even choose that many! */
		if (WARN_ON(cnt < c->max_interfaces))
			return -EINVAL;
	}

	return 0;
}

427 428
int wiphy_register(struct wiphy *wiphy)
{
429
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
430
	int res;
431 432 433 434
	enum ieee80211_band band;
	struct ieee80211_supported_band *sband;
	bool have_band = false;
	int i;
435 436
	u16 ifmodes = wiphy->interface_modes;

437
#ifdef CONFIG_PM
438 439 440
	if (WARN_ON((wiphy->wowlan.flags & WIPHY_WOWLAN_GTK_REKEY_FAILURE) &&
		    !(wiphy->wowlan.flags & WIPHY_WOWLAN_SUPPORTS_GTK_REKEY)))
		return -EINVAL;
441
#endif
442

J
Johannes Berg 已提交
443 444 445 446
	if (WARN_ON(wiphy->ap_sme_capa &&
		    !(wiphy->flags & WIPHY_FLAG_HAVE_AP_SME)))
		return -EINVAL;

447 448 449 450 451 452 453 454 455 456 457 458
	if (WARN_ON(wiphy->addresses && !wiphy->n_addresses))
		return -EINVAL;

	if (WARN_ON(wiphy->addresses &&
		    !is_zero_ether_addr(wiphy->perm_addr) &&
		    memcmp(wiphy->perm_addr, wiphy->addresses[0].addr,
			   ETH_ALEN)))
		return -EINVAL;

	if (wiphy->addresses)
		memcpy(wiphy->perm_addr, wiphy->addresses[0].addr, ETH_ALEN);

459 460
	/* sanity check ifmodes */
	WARN_ON(!ifmodes);
461
	ifmodes &= ((1 << NUM_NL80211_IFTYPES) - 1) & ~1;
462 463
	if (WARN_ON(ifmodes != wiphy->interface_modes))
		wiphy->interface_modes = ifmodes;
464

465 466 467 468
	res = wiphy_verify_combinations(wiphy);
	if (res)
		return res;

469 470 471 472 473 474 475
	/* sanity check supported bands/channels */
	for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
		sband = wiphy->bands[band];
		if (!sband)
			continue;

		sband->band = band;
476 477 478 479 480 481 482 483
		if (WARN_ON(!sband->n_channels))
			return -EINVAL;
		/*
		 * on 60gHz band, there are no legacy rates, so
		 * n_bitrates is 0
		 */
		if (WARN_ON(band != IEEE80211_BAND_60GHZ &&
			    !sband->n_bitrates))
484 485
			return -EINVAL;

486 487 488 489 490 491 492 493 494 495 496 497
		/*
		 * Since cfg80211_disable_40mhz_24ghz is global, we can
		 * modify the sband's ht data even if the driver uses a
		 * global structure for that.
		 */
		if (cfg80211_disable_40mhz_24ghz &&
		    band == IEEE80211_BAND_2GHZ &&
		    sband->ht_cap.ht_supported) {
			sband->ht_cap.cap &= ~IEEE80211_HT_CAP_SUP_WIDTH_20_40;
			sband->ht_cap.cap &= ~IEEE80211_HT_CAP_SGI_40;
		}

498 499 500 501 502 503
		/*
		 * Since we use a u32 for rate bitmaps in
		 * ieee80211_get_response_rate, we cannot
		 * have more than 32 legacy rates.
		 */
		if (WARN_ON(sband->n_bitrates > 32))
504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523
			return -EINVAL;

		for (i = 0; i < sband->n_channels; i++) {
			sband->channels[i].orig_flags =
				sband->channels[i].flags;
			sband->channels[i].orig_mag =
				sband->channels[i].max_antenna_gain;
			sband->channels[i].orig_mpwr =
				sband->channels[i].max_power;
			sband->channels[i].band = band;
		}

		have_band = true;
	}

	if (!have_band) {
		WARN_ON(1);
		return -EINVAL;
	}

524
#ifdef CONFIG_PM
J
Johannes Berg 已提交
525 526 527 528 529 530
	if (rdev->wiphy.wowlan.n_patterns) {
		if (WARN_ON(!rdev->wiphy.wowlan.pattern_min_len ||
			    rdev->wiphy.wowlan.pattern_min_len >
			    rdev->wiphy.wowlan.pattern_max_len))
			return -EINVAL;
	}
531
#endif
J
Johannes Berg 已提交
532

533 534 535
	/* check and set up bitrates */
	ieee80211_set_bitrate_flags(wiphy);

536 537
	mutex_lock(&cfg80211_mutex);

538
	res = device_add(&rdev->wiphy.dev);
539 540 541 542
	if (res) {
		mutex_unlock(&cfg80211_mutex);
		return res;
	}
J
Johannes Berg 已提交
543

544
	/* set up regulatory info */
545
	wiphy_regulatory_register(wiphy);
546
	regulatory_update(wiphy, NL80211_REGDOM_SET_BY_CORE);
547

J
Johannes Berg 已提交
548
	list_add_rcu(&rdev->list, &cfg80211_rdev_list);
549
	cfg80211_rdev_list_generation++;
550 551

	/* add to debugfs */
552 553
	rdev->wiphy.debugfsdir =
		debugfs_create_dir(wiphy_name(&rdev->wiphy),
554
				   ieee80211_debugfs_dir);
555 556
	if (IS_ERR(rdev->wiphy.debugfsdir))
		rdev->wiphy.debugfsdir = NULL;
557

J
Johannes Berg 已提交
558
	if (wiphy->flags & WIPHY_FLAG_CUSTOM_REGULATORY) {
559 560 561 562 563 564 565 566 567 568
		struct regulatory_request request;

		request.wiphy_idx = get_wiphy_idx(wiphy);
		request.initiator = NL80211_REGDOM_SET_BY_DRIVER;
		request.alpha2[0] = '9';
		request.alpha2[1] = '9';

		nl80211_send_reg_change_event(&request);
	}

569
	cfg80211_debugfs_rdev_add(rdev);
570
	mutex_unlock(&cfg80211_mutex);
571

572 573 574 575 576 577 578 579
	/*
	 * due to a locking dependency this has to be outside of the
	 * cfg80211_mutex lock
	 */
	res = rfkill_register(rdev->rfkill);
	if (res)
		goto out_rm_dev;

580 581 582
	rtnl_lock();
	rdev->wiphy.registered = true;
	rtnl_unlock();
583
	return 0;
J
Johannes Berg 已提交
584

585
out_rm_dev:
586
	device_del(&rdev->wiphy.dev);
587 588 589 590
	return res;
}
EXPORT_SYMBOL(wiphy_register);

J
Johannes Berg 已提交
591 592
void wiphy_rfkill_start_polling(struct wiphy *wiphy)
{
593
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
594

595
	if (!rdev->ops->rfkill_poll)
J
Johannes Berg 已提交
596
		return;
597 598
	rdev->rfkill_ops.poll = cfg80211_rfkill_poll;
	rfkill_resume_polling(rdev->rfkill);
J
Johannes Berg 已提交
599 600 601 602 603
}
EXPORT_SYMBOL(wiphy_rfkill_start_polling);

void wiphy_rfkill_stop_polling(struct wiphy *wiphy)
{
604
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
605

606
	rfkill_pause_polling(rdev->rfkill);
J
Johannes Berg 已提交
607 608 609
}
EXPORT_SYMBOL(wiphy_rfkill_stop_polling);

610 611
void wiphy_unregister(struct wiphy *wiphy)
{
612
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
613

614 615 616 617
	rtnl_lock();
	rdev->wiphy.registered = false;
	rtnl_unlock();

618
	rfkill_unregister(rdev->rfkill);
J
Johannes Berg 已提交
619

620
	/* protect the device list */
621
	mutex_lock(&cfg80211_mutex);
622

623 624 625 626 627
	wait_event(rdev->dev_wait, ({
		int __count;
		mutex_lock(&rdev->devlist_mtx);
		__count = rdev->opencount;
		mutex_unlock(&rdev->devlist_mtx);
628
		__count == 0; }));
629 630

	mutex_lock(&rdev->devlist_mtx);
631
	BUG_ON(!list_empty(&rdev->wdev_list));
632 633 634 635 636 637
	mutex_unlock(&rdev->devlist_mtx);

	/*
	 * First remove the hardware from everywhere, this makes
	 * it impossible to find from userspace.
	 */
638
	debugfs_remove_recursive(rdev->wiphy.debugfsdir);
J
Johannes Berg 已提交
639 640
	list_del_rcu(&rdev->list);
	synchronize_rcu();
641 642

	/*
643
	 * Try to grab rdev->mtx. If a command is still in progress,
644 645 646 647
	 * hopefully the driver will refuse it since it's tearing
	 * down the device already. We wait for this command to complete
	 * before unlinking the item from the list.
	 * Note: as codified by the BUG_ON above we cannot get here if
648 649 650
	 * a virtual interface is still present. Hence, we can only get
	 * to lock contention here if userspace issues a command that
	 * identified the hardware by wiphy index.
651
	 */
J
Johannes Berg 已提交
652
	cfg80211_lock_rdev(rdev);
653
	/* nothing */
J
Johannes Berg 已提交
654
	cfg80211_unlock_rdev(rdev);
655

656 657 658 659
	/* If this device got a regulatory hint tell core its
	 * free to listen now to a new shiny device regulatory hint */
	reg_device_remove(wiphy);

660
	cfg80211_rdev_list_generation++;
661
	device_del(&rdev->wiphy.dev);
662

663
	mutex_unlock(&cfg80211_mutex);
J
Johannes Berg 已提交
664

665
	flush_work(&rdev->scan_done_wk);
J
Johannes Berg 已提交
666 667
	cancel_work_sync(&rdev->conn_work);
	flush_work(&rdev->event_work);
668 669 670 671

	if (rdev->wowlan && rdev->ops->set_wakeup)
		rdev->ops->set_wakeup(&rdev->wiphy, false);
	cfg80211_rdev_free_wowlan(rdev);
672 673 674
}
EXPORT_SYMBOL(wiphy_unregister);

675
void cfg80211_dev_free(struct cfg80211_registered_device *rdev)
676
{
677
	struct cfg80211_internal_bss *scan, *tmp;
678 679 680
	rfkill_destroy(rdev->rfkill);
	mutex_destroy(&rdev->mtx);
	mutex_destroy(&rdev->devlist_mtx);
681
	mutex_destroy(&rdev->sched_scan_mtx);
682
	list_for_each_entry_safe(scan, tmp, &rdev->bss_list, list)
J
Johannes Berg 已提交
683
		cfg80211_put_bss(&scan->pub);
684
	kfree(rdev);
685 686 687 688 689 690 691 692
}

void wiphy_free(struct wiphy *wiphy)
{
	put_device(&wiphy->dev);
}
EXPORT_SYMBOL(wiphy_free);

J
Johannes Berg 已提交
693 694
void wiphy_rfkill_set_hw_state(struct wiphy *wiphy, bool blocked)
{
695
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
696

697 698
	if (rfkill_set_hw_state(rdev->rfkill, blocked))
		schedule_work(&rdev->rfkill_sync);
J
Johannes Berg 已提交
699 700 701
}
EXPORT_SYMBOL(wiphy_rfkill_set_hw_state);

702 703 704 705 706 707 708 709 710 711
static void wdev_cleanup_work(struct work_struct *work)
{
	struct wireless_dev *wdev;
	struct cfg80211_registered_device *rdev;

	wdev = container_of(work, struct wireless_dev, cleanup_work);
	rdev = wiphy_to_dev(wdev->wiphy);

	cfg80211_lock_rdev(rdev);

J
Johannes Berg 已提交
712
	if (WARN_ON(rdev->scan_req && rdev->scan_req->wdev == wdev)) {
713
		rdev->scan_req->aborted = true;
714
		___cfg80211_scan_done(rdev, true);
715 716
	}

717 718 719 720
	cfg80211_unlock_rdev(rdev);

	mutex_lock(&rdev->sched_scan_mtx);

721 722 723 724 725
	if (WARN_ON(rdev->sched_scan_req &&
		    rdev->sched_scan_req->dev == wdev->netdev)) {
		__cfg80211_stop_sched_scan(rdev, false);
	}

726
	mutex_unlock(&rdev->sched_scan_mtx);
727 728 729 730 731 732 733 734 735

	mutex_lock(&rdev->devlist_mtx);
	rdev->opencount--;
	mutex_unlock(&rdev->devlist_mtx);
	wake_up(&rdev->dev_wait);

	dev_put(wdev->netdev);
}

736 737 738 739
static struct device_type wiphy_type = {
	.name	= "wlan",
};

740 741 742
void cfg80211_update_iface_num(struct cfg80211_registered_device *rdev,
			       enum nl80211_iftype iftype, int num)
{
743
	ASSERT_RTNL();
744 745 746 747 748 749

	rdev->num_running_ifaces += num;
	if (iftype == NL80211_IFTYPE_MONITOR)
		rdev->num_running_monitor_ifaces += num;
}

750
static int cfg80211_netdev_notifier_call(struct notifier_block *nb,
751 752 753 754
					 unsigned long state,
					 void *ndev)
{
	struct net_device *dev = ndev;
755
	struct wireless_dev *wdev = dev->ieee80211_ptr;
756
	struct cfg80211_registered_device *rdev;
757
	int ret;
758

759
	if (!wdev)
J
Johannes Berg 已提交
760
		return NOTIFY_DONE;
761

762
	rdev = wiphy_to_dev(wdev->wiphy);
763

764
	WARN_ON(wdev->iftype == NL80211_IFTYPE_UNSPECIFIED);
J
Johannes Berg 已提交
765

766
	switch (state) {
767 768 769
	case NETDEV_POST_INIT:
		SET_NETDEV_DEVTYPE(dev, &wiphy_type);
		break;
770
	case NETDEV_REGISTER:
J
Johannes Berg 已提交
771 772 773 774 775
		/*
		 * NB: cannot take rdev->mtx here because this may be
		 * called within code protected by it when interfaces
		 * are added with nl80211.
		 */
J
Johannes Berg 已提交
776
		mutex_init(&wdev->mtx);
777
		INIT_WORK(&wdev->cleanup_work, wdev_cleanup_work);
J
Johannes Berg 已提交
778 779
		INIT_LIST_HEAD(&wdev->event_list);
		spin_lock_init(&wdev->event_lock);
780 781
		INIT_LIST_HEAD(&wdev->mgmt_registrations);
		spin_lock_init(&wdev->mgmt_registrations_lock);
782

783
		mutex_lock(&rdev->devlist_mtx);
784 785
		wdev->identifier = ++rdev->wdev_id;
		list_add_rcu(&wdev->list, &rdev->wdev_list);
786
		rdev->devlist_generation++;
787 788 789
		/* can only change netns with wiphy */
		dev->features |= NETIF_F_NETNS_LOCAL;

790 791
		if (sysfs_create_link(&dev->dev.kobj, &rdev->wiphy.dev.kobj,
				      "phy80211")) {
792
			pr_err("failed to add phy80211 symlink to netdev!\n");
793
		}
794
		wdev->netdev = dev;
S
Samuel Ortiz 已提交
795
		wdev->sme_state = CFG80211_SME_IDLE;
J
Johannes Berg 已提交
796
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
797
#ifdef CONFIG_CFG80211_WEXT
798 799
		wdev->wext.default_key = -1;
		wdev->wext.default_mgmt_key = -1;
800
		wdev->wext.connect.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
K
Kalle Valo 已提交
801 802
#endif

J
Johannes Berg 已提交
803
		if (wdev->wiphy->flags & WIPHY_FLAG_PS_ON_BY_DEFAULT)
K
Kalle Valo 已提交
804
			wdev->ps = true;
J
Johannes Berg 已提交
805
		else
K
Kalle Valo 已提交
806
			wdev->ps = false;
807 808
		/* allow mac80211 to determine the timeout */
		wdev->ps_timeout = -1;
K
Kalle Valo 已提交
809

810 811
		if (!dev->ethtool_ops)
			dev->ethtool_ops = &cfg80211_ethtool_ops;
812 813

		if ((wdev->iftype == NL80211_IFTYPE_STATION ||
814
		     wdev->iftype == NL80211_IFTYPE_P2P_CLIENT ||
815 816
		     wdev->iftype == NL80211_IFTYPE_ADHOC) && !wdev->use_4addr)
			dev->priv_flags |= IFF_DONT_BRIDGE;
817
		break;
J
Johannes Berg 已提交
818
	case NETDEV_GOING_DOWN:
S
Samuel Ortiz 已提交
819 820 821 822
		switch (wdev->iftype) {
		case NL80211_IFTYPE_ADHOC:
			cfg80211_leave_ibss(rdev, dev, true);
			break;
823
		case NL80211_IFTYPE_P2P_CLIENT:
S
Samuel Ortiz 已提交
824
		case NL80211_IFTYPE_STATION:
825
			mutex_lock(&rdev->sched_scan_mtx);
826
			__cfg80211_stop_sched_scan(rdev, false);
827
			mutex_unlock(&rdev->sched_scan_mtx);
828

J
Johannes Berg 已提交
829
			wdev_lock(wdev);
J
Johannes Berg 已提交
830
#ifdef CONFIG_CFG80211_WEXT
831 832 833
			kfree(wdev->wext.ie);
			wdev->wext.ie = NULL;
			wdev->wext.ie_len = 0;
J
Johannes Berg 已提交
834
			wdev->wext.connect.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
835
#endif
J
Johannes Berg 已提交
836 837
			__cfg80211_disconnect(rdev, dev,
					      WLAN_REASON_DEAUTH_LEAVING, true);
J
Johannes Berg 已提交
838
			cfg80211_mlme_down(rdev, dev);
J
Johannes Berg 已提交
839
			wdev_unlock(wdev);
S
Samuel Ortiz 已提交
840
			break;
841 842 843
		case NL80211_IFTYPE_MESH_POINT:
			cfg80211_leave_mesh(rdev, dev);
			break;
844 845 846
		case NL80211_IFTYPE_AP:
			cfg80211_stop_ap(rdev, dev);
			break;
S
Samuel Ortiz 已提交
847 848 849
		default:
			break;
		}
850
		wdev->beacon_interval = 0;
851 852
		break;
	case NETDEV_DOWN:
853
		cfg80211_update_iface_num(rdev, wdev->iftype, -1);
854
		dev_hold(dev);
855
		queue_work(cfg80211_wq, &wdev->cleanup_work);
J
Johannes Berg 已提交
856 857
		break;
	case NETDEV_UP:
858 859 860 861 862 863 864 865 866 867 868 869
		/*
		 * If we have a really quick DOWN/UP succession we may
		 * have this work still pending ... cancel it and see
		 * if it was pending, in which case we need to account
		 * for some of the work it would have done.
		 */
		if (cancel_work_sync(&wdev->cleanup_work)) {
			mutex_lock(&rdev->devlist_mtx);
			rdev->opencount--;
			mutex_unlock(&rdev->devlist_mtx);
			dev_put(dev);
		}
870
		cfg80211_update_iface_num(rdev, wdev->iftype, 1);
J
Johannes Berg 已提交
871
		cfg80211_lock_rdev(rdev);
872
		mutex_lock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
873
		wdev_lock(wdev);
874
		switch (wdev->iftype) {
875
#ifdef CONFIG_CFG80211_WEXT
876
		case NL80211_IFTYPE_ADHOC:
J
Johannes Berg 已提交
877
			cfg80211_ibss_wext_join(rdev, wdev);
J
Johannes Berg 已提交
878
			break;
879
		case NL80211_IFTYPE_STATION:
J
Johannes Berg 已提交
880
			cfg80211_mgd_wext_connect(rdev, wdev);
881
			break;
882
#endif
883
#ifdef CONFIG_MAC80211_MESH
884
		case NL80211_IFTYPE_MESH_POINT:
885 886 887 888 889 890 891 892 893 894 895 896 897 898 899
			{
				/* backward compat code... */
				struct mesh_setup setup;
				memcpy(&setup, &default_mesh_setup,
						sizeof(setup));
				 /* back compat only needed for mesh_id */
				setup.mesh_id = wdev->ssid;
				setup.mesh_id_len = wdev->mesh_id_up_len;
				if (wdev->mesh_id_up_len)
					__cfg80211_join_mesh(rdev, dev,
							&setup,
							&default_mesh_config);
				break;
			}
#endif
900
		default:
J
Johannes Berg 已提交
901
			break;
902
		}
J
Johannes Berg 已提交
903
		wdev_unlock(wdev);
904
		rdev->opencount++;
905
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
906
		cfg80211_unlock_rdev(rdev);
907 908 909 910 911

		/*
		 * Configure power management to the driver here so that its
		 * correctly set also after interface type changes etc.
		 */
912 913
		if ((wdev->iftype == NL80211_IFTYPE_STATION ||
		     wdev->iftype == NL80211_IFTYPE_P2P_CLIENT) &&
914 915 916 917 918 919 920
		    rdev->ops->set_power_mgmt)
			if (rdev->ops->set_power_mgmt(wdev->wiphy, dev,
						      wdev->ps,
						      wdev->ps_timeout)) {
				/* assume this means it's off */
				wdev->ps = false;
			}
921
		break;
922
	case NETDEV_UNREGISTER:
J
Johannes Berg 已提交
923 924 925 926 927
		/*
		 * NB: cannot take rdev->mtx here because this may be
		 * called within code protected by it when interfaces
		 * are removed with nl80211.
		 */
928
		mutex_lock(&rdev->devlist_mtx);
929 930 931 932 933 934 935
		/*
		 * It is possible to get NETDEV_UNREGISTER
		 * multiple times. To detect that, check
		 * that the interface is still on the list
		 * of registered interfaces, and only then
		 * remove and clean it up.
		 */
936
		if (!list_empty(&wdev->list)) {
937
			sysfs_remove_link(&dev->dev.kobj, "phy80211");
J
Johannes Berg 已提交
938
			list_del_rcu(&wdev->list);
939
			rdev->devlist_generation++;
940
			cfg80211_mlme_purge_registrations(wdev);
J
Johannes Berg 已提交
941
#ifdef CONFIG_CFG80211_WEXT
942
			kfree(wdev->wext.keys);
J
Johannes Berg 已提交
943
#endif
944 945
		}
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
946 947 948 949 950 951 952 953
		/*
		 * synchronise (so that we won't find this netdev
		 * from other code any more) and then clear the list
		 * head so that the above code can safely check for
		 * !list_empty() to avoid double-cleanup.
		 */
		synchronize_rcu();
		INIT_LIST_HEAD(&wdev->list);
954
		break;
J
Johannes Berg 已提交
955
	case NETDEV_PRE_UP:
956 957
		if (!(wdev->wiphy->interface_modes & BIT(wdev->iftype)))
			return notifier_from_errno(-EOPNOTSUPP);
J
Johannes Berg 已提交
958 959
		if (rfkill_blocked(rdev->rfkill))
			return notifier_from_errno(-ERFKILL);
960
		mutex_lock(&rdev->devlist_mtx);
961
		ret = cfg80211_can_add_interface(rdev, wdev->iftype);
962
		mutex_unlock(&rdev->devlist_mtx);
963 964
		if (ret)
			return notifier_from_errno(ret);
J
Johannes Berg 已提交
965
		break;
966 967
	}

J
Johannes Berg 已提交
968
	return NOTIFY_DONE;
969 970 971 972 973 974
}

static struct notifier_block cfg80211_netdev_notifier = {
	.notifier_call = cfg80211_netdev_notifier_call,
};

975 976 977 978 979 980 981 982 983 984 985 986 987 988 989 990 991 992 993
static void __net_exit cfg80211_pernet_exit(struct net *net)
{
	struct cfg80211_registered_device *rdev;

	rtnl_lock();
	mutex_lock(&cfg80211_mutex);
	list_for_each_entry(rdev, &cfg80211_rdev_list, list) {
		if (net_eq(wiphy_net(&rdev->wiphy), net))
			WARN_ON(cfg80211_switch_netns(rdev, &init_net));
	}
	mutex_unlock(&cfg80211_mutex);
	rtnl_unlock();
}

static struct pernet_operations cfg80211_pernet_ops = {
	.exit = cfg80211_pernet_exit,
};

static int __init cfg80211_init(void)
994
{
995 996
	int err;

997 998 999 1000
	err = register_pernet_device(&cfg80211_pernet_ops);
	if (err)
		goto out_fail_pernet;

1001
	err = wiphy_sysfs_init();
1002 1003 1004 1005 1006 1007 1008
	if (err)
		goto out_fail_sysfs;

	err = register_netdevice_notifier(&cfg80211_netdev_notifier);
	if (err)
		goto out_fail_notifier;

1009 1010 1011 1012
	err = nl80211_init();
	if (err)
		goto out_fail_nl80211;

1013 1014
	ieee80211_debugfs_dir = debugfs_create_dir("ieee80211", NULL);

1015 1016 1017 1018
	err = regulatory_init();
	if (err)
		goto out_fail_reg;

1019 1020 1021 1022
	cfg80211_wq = create_singlethread_workqueue("cfg80211");
	if (!cfg80211_wq)
		goto out_fail_wq;

1023 1024
	return 0;

1025 1026
out_fail_wq:
	regulatory_exit();
1027 1028
out_fail_reg:
	debugfs_remove(ieee80211_debugfs_dir);
1029 1030
out_fail_nl80211:
	unregister_netdevice_notifier(&cfg80211_netdev_notifier);
1031 1032 1033
out_fail_notifier:
	wiphy_sysfs_exit();
out_fail_sysfs:
1034 1035
	unregister_pernet_device(&cfg80211_pernet_ops);
out_fail_pernet:
1036 1037
	return err;
}
1038
subsys_initcall(cfg80211_init);
1039

1040
static void __exit cfg80211_exit(void)
1041 1042
{
	debugfs_remove(ieee80211_debugfs_dir);
1043
	nl80211_exit();
1044 1045
	unregister_netdevice_notifier(&cfg80211_netdev_notifier);
	wiphy_sysfs_exit();
1046
	regulatory_exit();
1047
	unregister_pernet_device(&cfg80211_pernet_ops);
1048
	destroy_workqueue(cfg80211_wq);
1049 1050
}
module_exit(cfg80211_exit);