ibss.c 27.0 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
/*
 * IBSS mode implementation
 * Copyright 2003-2008, Jouni Malinen <j@w1.fi>
 * Copyright 2004, Instant802 Networks, Inc.
 * Copyright 2005, Devicescape Software, Inc.
 * Copyright 2006-2007	Jiri Benc <jbenc@suse.cz>
 * Copyright 2007, Michael Wu <flamingice@sourmilk.net>
 * Copyright 2009, Johannes Berg <johannes@sipsolutions.net>
 *
 * This program is free software; you can redistribute it and/or modify
 * it under the terms of the GNU General Public License version 2 as
 * published by the Free Software Foundation.
 */

#include <linux/delay.h>
16
#include <linux/slab.h>
17 18 19 20 21 22 23 24 25
#include <linux/if_ether.h>
#include <linux/skbuff.h>
#include <linux/if_arp.h>
#include <linux/etherdevice.h>
#include <linux/rtnetlink.h>
#include <net/mac80211.h>
#include <asm/unaligned.h>

#include "ieee80211_i.h"
26
#include "driver-ops.h"
27 28 29 30 31 32 33
#include "rate.h"

#define IEEE80211_SCAN_INTERVAL (2 * HZ)
#define IEEE80211_SCAN_INTERVAL_SLOW (15 * HZ)
#define IEEE80211_IBSS_JOIN_TIMEOUT (7 * HZ)

#define IEEE80211_IBSS_MERGE_INTERVAL (30 * HZ)
34
#define IEEE80211_IBSS_MERGE_DELAY 0x400000
35 36 37 38 39 40 41 42 43 44 45
#define IEEE80211_IBSS_INACTIVITY_LIMIT (60 * HZ)

#define IEEE80211_IBSS_MAX_STA_ENTRIES 128


static void ieee80211_rx_mgmt_auth_ibss(struct ieee80211_sub_if_data *sdata,
					struct ieee80211_mgmt *mgmt,
					size_t len)
{
	u16 auth_alg, auth_transaction, status_code;

J
Johannes Berg 已提交
46 47
	lockdep_assert_held(&sdata->u.ibss.mtx);

48 49 50 51 52 53 54 55 56 57 58 59 60 61 62
	if (len < 24 + 6)
		return;

	auth_alg = le16_to_cpu(mgmt->u.auth.auth_alg);
	auth_transaction = le16_to_cpu(mgmt->u.auth.auth_transaction);
	status_code = le16_to_cpu(mgmt->u.auth.status_code);

	/*
	 * IEEE 802.11 standard does not require authentication in IBSS
	 * networks and most implementations do not seem to use it.
	 * However, try to reply to authentication attempts if someone
	 * has actually implemented this.
	 */
	if (auth_alg == WLAN_AUTH_OPEN && auth_transaction == 1)
		ieee80211_send_auth(sdata, 2, WLAN_AUTH_OPEN, NULL, 0,
J
Johannes Berg 已提交
63
				    sdata->u.ibss.bssid, NULL, 0, 0);
64 65
}

66 67 68
static void __ieee80211_sta_join_ibss(struct ieee80211_sub_if_data *sdata,
				      const u8 *bssid, const int beacon_int,
				      struct ieee80211_channel *chan,
69
				      const u32 basic_rates,
70
				      const u16 capability, u64 tsf)
71 72 73
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;
74
	int rates, i;
75 76 77 78
	struct sk_buff *skb;
	struct ieee80211_mgmt *mgmt;
	u8 *pos;
	struct ieee80211_supported_band *sband;
J
Johannes Berg 已提交
79
	struct cfg80211_bss *bss;
80
	u32 bss_change;
81
	u8 supp_rates[IEEE80211_MAX_SUPP_RATES];
82

J
Johannes Berg 已提交
83 84
	lockdep_assert_held(&ifibss->mtx);

85 86
	/* Reset own TSF to allow time synchronization work. */
	drv_reset_tsf(local);
87

88 89 90 91 92 93 94
	skb = ifibss->skb;
	rcu_assign_pointer(ifibss->presp, NULL);
	synchronize_rcu();
	skb->data = skb->head;
	skb->len = 0;
	skb_reset_tail_pointer(skb);
	skb_reserve(skb, sdata->local->hw.extra_tx_headroom);
95

96 97
	if (memcmp(ifibss->bssid, bssid, ETH_ALEN))
		sta_info_flush(sdata->local, sdata);
98

99 100 101 102 103 104
	/* if merging, indicate to driver that we leave the old IBSS */
	if (sdata->vif.bss_conf.ibss_joined) {
		sdata->vif.bss_conf.ibss_joined = false;
		ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_IBSS);
	}

105 106
	memcpy(ifibss->bssid, bssid, ETH_ALEN);

107
	sdata->drop_unencrypted = capability & WLAN_CAPABILITY_PRIVACY ? 1 : 0;
108

109
	local->oper_channel = chan;
110
	WARN_ON(!ieee80211_set_channel_type(local, sdata, NL80211_CHAN_NO_HT));
111
	ieee80211_hw_config(local, IEEE80211_CONF_CHANGE_CHANNEL);
112

113
	sband = local->hw.wiphy->bands[chan->band];
114

115 116 117 118 119 120 121 122 123 124
	/* build supported rates array */
	pos = supp_rates;
	for (i = 0; i < sband->n_bitrates; i++) {
		int rate = sband->bitrates[i].bitrate;
		u8 basic = 0;
		if (basic_rates & BIT(i))
			basic = 0x80;
		*pos++ = basic | (u8) (rate / 5);
	}

125
	/* Build IBSS probe response */
126
	mgmt = (void *) skb_put(skb, 24 + sizeof(mgmt->u.beacon));
127 128 129 130
	memset(mgmt, 0, 24 + sizeof(mgmt->u.beacon));
	mgmt->frame_control = cpu_to_le16(IEEE80211_FTYPE_MGMT |
					  IEEE80211_STYPE_PROBE_RESP);
	memset(mgmt->da, 0xff, ETH_ALEN);
131
	memcpy(mgmt->sa, sdata->vif.addr, ETH_ALEN);
132
	memcpy(mgmt->bssid, ifibss->bssid, ETH_ALEN);
133
	mgmt->u.beacon.beacon_int = cpu_to_le16(beacon_int);
134
	mgmt->u.beacon.timestamp = cpu_to_le64(tsf);
135 136 137 138 139 140 141
	mgmt->u.beacon.capab_info = cpu_to_le16(capability);

	pos = skb_put(skb, 2 + ifibss->ssid_len);
	*pos++ = WLAN_EID_SSID;
	*pos++ = ifibss->ssid_len;
	memcpy(pos, ifibss->ssid, ifibss->ssid_len);

142
	rates = sband->n_bitrates;
143 144 145 146 147 148 149 150 151 152 153
	if (rates > 8)
		rates = 8;
	pos = skb_put(skb, 2 + rates);
	*pos++ = WLAN_EID_SUPP_RATES;
	*pos++ = rates;
	memcpy(pos, supp_rates, rates);

	if (sband->band == IEEE80211_BAND_2GHZ) {
		pos = skb_put(skb, 2 + 1);
		*pos++ = WLAN_EID_DS_PARAMS;
		*pos++ = 1;
154
		*pos++ = ieee80211_frequency_to_channel(chan->center_freq);
155 156 157 158 159 160 161 162 163
	}

	pos = skb_put(skb, 2 + 2);
	*pos++ = WLAN_EID_IBSS_PARAMS;
	*pos++ = 2;
	/* FIX: set ATIM window based on scan results */
	*pos++ = 0;
	*pos++ = 0;

164 165
	if (sband->n_bitrates > 8) {
		rates = sband->n_bitrates - 8;
166 167 168 169 170 171
		pos = skb_put(skb, 2 + rates);
		*pos++ = WLAN_EID_EXT_SUPP_RATES;
		*pos++ = rates;
		memcpy(pos, &supp_rates[8], rates);
	}

172 173 174 175
	if (ifibss->ie_len)
		memcpy(skb_put(skb, ifibss->ie_len),
		       ifibss->ie, ifibss->ie_len);

176 177 178 179 180 181 182 183 184 185 186 187 188
	if (local->hw.queues >= 4) {
		pos = skb_put(skb, 9);
		*pos++ = WLAN_EID_VENDOR_SPECIFIC;
		*pos++ = 7; /* len */
		*pos++ = 0x00; /* Microsoft OUI 00:50:F2 */
		*pos++ = 0x50;
		*pos++ = 0xf2;
		*pos++ = 2; /* WME */
		*pos++ = 0; /* WME info */
		*pos++ = 1; /* WME ver */
		*pos++ = 0; /* U-APSD no in use */
	}

189
	rcu_assign_pointer(ifibss->presp, skb);
190

191
	sdata->vif.bss_conf.beacon_int = beacon_int;
192
	sdata->vif.bss_conf.basic_rates = basic_rates;
193 194 195 196 197
	bss_change = BSS_CHANGED_BEACON_INT;
	bss_change |= ieee80211_reset_erp_info(sdata);
	bss_change |= BSS_CHANGED_BSSID;
	bss_change |= BSS_CHANGED_BEACON;
	bss_change |= BSS_CHANGED_BEACON_ENABLED;
198
	bss_change |= BSS_CHANGED_BASIC_RATES;
199 200
	bss_change |= BSS_CHANGED_IBSS;
	sdata->vif.bss_conf.ibss_joined = true;
201
	ieee80211_bss_info_change_notify(sdata, bss_change);
202

203
	ieee80211_sta_def_wmm_params(sdata, sband->n_bitrates, supp_rates);
204 205

	ifibss->state = IEEE80211_IBSS_MLME_JOINED;
206 207
	mod_timer(&ifibss->timer,
		  round_jiffies(jiffies + IEEE80211_IBSS_MERGE_INTERVAL));
208

J
Johannes Berg 已提交
209 210 211
	bss = cfg80211_inform_bss_frame(local->hw.wiphy, local->hw.conf.channel,
					mgmt, skb->len, 0, GFP_KERNEL);
	cfg80211_put_bss(bss);
212
	cfg80211_ibss_joined(sdata->dev, ifibss->bssid, GFP_KERNEL);
213 214
}

215 216
static void ieee80211_sta_join_ibss(struct ieee80211_sub_if_data *sdata,
				    struct ieee80211_bss *bss)
217
{
218 219
	struct cfg80211_bss *cbss =
		container_of((void *)bss, struct cfg80211_bss, priv);
220 221 222
	struct ieee80211_supported_band *sband;
	u32 basic_rates;
	int i, j;
223
	u16 beacon_int = cbss->beacon_interval;
224

J
Johannes Berg 已提交
225 226
	lockdep_assert_held(&sdata->u.ibss.mtx);

227 228 229
	if (beacon_int < 10)
		beacon_int = 10;

230
	sband = sdata->local->hw.wiphy->bands[cbss->channel->band];
231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246

	basic_rates = 0;

	for (i = 0; i < bss->supp_rates_len; i++) {
		int rate = (bss->supp_rates[i] & 0x7f) * 5;
		bool is_basic = !!(bss->supp_rates[i] & 0x80);

		for (j = 0; j < sband->n_bitrates; j++) {
			if (sband->bitrates[j].bitrate == rate) {
				if (is_basic)
					basic_rates |= BIT(j);
				break;
			}
		}
	}

247
	__ieee80211_sta_join_ibss(sdata, cbss->bssid,
248
				  beacon_int,
249
				  cbss->channel,
250
				  basic_rates,
251 252
				  cbss->capability,
				  cbss->tsf);
253 254 255 256 257 258 259 260 261 262 263
}

static void ieee80211_rx_bss_info(struct ieee80211_sub_if_data *sdata,
				  struct ieee80211_mgmt *mgmt,
				  size_t len,
				  struct ieee80211_rx_status *rx_status,
				  struct ieee802_11_elems *elems,
				  bool beacon)
{
	struct ieee80211_local *local = sdata->local;
	int freq;
264
	struct cfg80211_bss *cbss;
265 266 267 268 269 270 271 272
	struct ieee80211_bss *bss;
	struct sta_info *sta;
	struct ieee80211_channel *channel;
	u64 beacon_timestamp, rx_timestamp;
	u32 supp_rates = 0;
	enum ieee80211_band band = rx_status->band;

	if (elems->ds_params && elems->ds_params_len == 1)
273 274
		freq = ieee80211_channel_to_frequency(elems->ds_params[0],
						      band);
275 276 277 278 279 280 281 282
	else
		freq = rx_status->freq;

	channel = ieee80211_get_channel(local->hw.wiphy, freq);

	if (!channel || channel->flags & IEEE80211_CHAN_DISABLED)
		return;

283
	if (sdata->vif.type == NL80211_IFTYPE_ADHOC &&
284 285 286
	    memcmp(mgmt->bssid, sdata->u.ibss.bssid, ETH_ALEN) == 0) {

		rcu_read_lock();
287
		sta = sta_info_get(sdata, mgmt->sa);
288

289 290 291 292 293 294 295 296 297 298
		if (elems->supp_rates) {
			supp_rates = ieee80211_sta_get_rates(local, elems,
							     band);
			if (sta) {
				u32 prev_rates;

				prev_rates = sta->sta.supp_rates[band];
				/* make sure mandatory rates are always added */
				sta->sta.supp_rates[band] = supp_rates |
					ieee80211_mandatory_rates(local, band);
299

300
				if (sta->sta.supp_rates[band] != prev_rates) {
301
#ifdef CONFIG_MAC80211_IBSS_DEBUG
302 303 304 305 306 307 308
					printk(KERN_DEBUG
						"%s: updated supp_rates set "
						"for %pM based on beacon"
						"/probe_resp (0x%x -> 0x%x)\n",
						sdata->name, sta->sta.addr,
						prev_rates,
						sta->sta.supp_rates[band]);
309
#endif
310 311 312 313 314 315
					rate_control_rate_init(sta);
				}
			} else
				sta = ieee80211_ibss_add_sta(sdata, mgmt->bssid,
						mgmt->sa, supp_rates,
						GFP_ATOMIC);
316
		}
317 318 319 320 321

		if (sta && elems->wmm_info)
			set_sta_flags(sta, WLAN_STA_WME);

		rcu_read_unlock();
322 323 324 325 326 327 328
	}

	bss = ieee80211_bss_info_update(local, rx_status, mgmt, len, elems,
					channel, beacon);
	if (!bss)
		return;

329 330
	cbss = container_of((void *)bss, struct cfg80211_bss, priv);

331
	/* was just updated in ieee80211_bss_info_update */
332
	beacon_timestamp = cbss->tsf;
333 334 335 336

	/* check if we need to merge IBSS */

	/* we use a fixed BSSID */
337
	if (sdata->u.ibss.fixed_bssid)
338 339 340
		goto put_bss;

	/* not an IBSS */
341
	if (!(cbss->capability & WLAN_CAPABILITY_IBSS))
342 343 344
		goto put_bss;

	/* different channel */
345
	if (cbss->channel != local->oper_channel)
346 347 348 349 350 351 352 353
		goto put_bss;

	/* different SSID */
	if (elems->ssid_len != sdata->u.ibss.ssid_len ||
	    memcmp(elems->ssid, sdata->u.ibss.ssid,
				sdata->u.ibss.ssid_len))
		goto put_bss;

354
	/* same BSSID */
355
	if (memcmp(cbss->bssid, sdata->u.ibss.bssid, ETH_ALEN) == 0)
356 357
		goto put_bss;

358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381
	if (rx_status->flag & RX_FLAG_TSFT) {
		/*
		 * For correct IBSS merging we need mactime; since mactime is
		 * defined as the time the first data symbol of the frame hits
		 * the PHY, and the timestamp of the beacon is defined as "the
		 * time that the data symbol containing the first bit of the
		 * timestamp is transmitted to the PHY plus the transmitting
		 * STA's delays through its local PHY from the MAC-PHY
		 * interface to its interface with the WM" (802.11 11.1.2)
		 * - equals the time this bit arrives at the receiver - we have
		 * to take into account the offset between the two.
		 *
		 * E.g. at 1 MBit that means mactime is 192 usec earlier
		 * (=24 bytes * 8 usecs/byte) than the beacon timestamp.
		 */
		int rate;

		if (rx_status->flag & RX_FLAG_HT)
			rate = 65; /* TODO: HT rates */
		else
			rate = local->hw.wiphy->bands[band]->
				bitrates[rx_status->rate_idx].bitrate;

		rx_timestamp = rx_status->mactime + (24 * 8 * 10 / rate);
382 383 384 385 386 387 388
	} else {
		/*
		 * second best option: get current TSF
		 * (will return -1 if not supported)
		 */
		rx_timestamp = drv_get_tsf(local);
	}
389 390 391 392 393 394 395 396 397 398 399

#ifdef CONFIG_MAC80211_IBSS_DEBUG
	printk(KERN_DEBUG "RX beacon SA=%pM BSSID="
	       "%pM TSF=0x%llx BCN=0x%llx diff=%lld @%lu\n",
	       mgmt->sa, mgmt->bssid,
	       (unsigned long long)rx_timestamp,
	       (unsigned long long)beacon_timestamp,
	       (unsigned long long)(rx_timestamp - beacon_timestamp),
	       jiffies);
#endif

400 401 402 403
	/* give slow hardware some time to do the TSF sync */
	if (rx_timestamp < IEEE80211_IBSS_MERGE_DELAY)
		goto put_bss;

404 405 406 407
	if (beacon_timestamp > rx_timestamp) {
#ifdef CONFIG_MAC80211_IBSS_DEBUG
		printk(KERN_DEBUG "%s: beacon TSF higher than "
		       "local TSF - IBSS merge with BSSID %pM\n",
408
		       sdata->name, mgmt->bssid);
409 410
#endif
		ieee80211_sta_join_ibss(sdata, bss);
411
		supp_rates = ieee80211_sta_get_rates(local, elems, band);
412 413
		ieee80211_ibss_add_sta(sdata, mgmt->bssid, mgmt->sa,
				       supp_rates, GFP_KERNEL);
414 415 416 417 418 419 420 421 422 423 424 425
	}

 put_bss:
	ieee80211_rx_bss_put(local, bss);
}

/*
 * Add a new IBSS station, will also be called by the RX code when,
 * in IBSS mode, receiving a frame from a yet-unknown station, hence
 * must be callable in atomic context.
 */
struct sta_info *ieee80211_ibss_add_sta(struct ieee80211_sub_if_data *sdata,
426 427
					u8 *bssid,u8 *addr, u32 supp_rates,
					gfp_t gfp)
428
{
429
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
430 431 432 433
	struct ieee80211_local *local = sdata->local;
	struct sta_info *sta;
	int band = local->hw.conf.channel->band;

434 435 436 437
	/*
	 * XXX: Consider removing the least recently used entry and
	 * 	allow new one to be added.
	 */
438
	if (local->num_sta >= IEEE80211_IBSS_MAX_STA_ENTRIES) {
439 440
		if (net_ratelimit())
			printk(KERN_DEBUG "%s: No room for a new IBSS STA entry %pM\n",
441
			       sdata->name, addr);
442 443 444
		return NULL;
	}

445 446 447
	if (ifibss->state == IEEE80211_IBSS_MLME_SEARCH)
		return NULL;

448 449 450 451
	if (compare_ether_addr(bssid, sdata->u.ibss.bssid))
		return NULL;

#ifdef CONFIG_MAC80211_VERBOSE_DEBUG
J
Joe Perches 已提交
452 453
	wiphy_debug(local->hw.wiphy, "Adding new IBSS station %pM (dev=%s)\n",
		    addr, sdata->name);
454 455
#endif

456
	sta = sta_info_alloc(sdata, addr, gfp);
457 458 459
	if (!sta)
		return NULL;

460
	sta->last_rx = jiffies;
461 462 463 464 465 466 467 468
	set_sta_flags(sta, WLAN_STA_AUTHORIZED);

	/* make sure mandatory rates are always added */
	sta->sta.supp_rates[band] = supp_rates |
			ieee80211_mandatory_rates(local, band);

	rate_control_rate_init(sta);

469
	/* If it fails, maybe we raced another insertion? */
470
	if (sta_info_insert(sta))
471
		return sta_info_get(sdata, addr);
472 473 474 475 476 477 478 479 480
	return sta;
}

static int ieee80211_sta_active_ibss(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_local *local = sdata->local;
	int active = 0;
	struct sta_info *sta;

J
Johannes Berg 已提交
481 482
	lockdep_assert_held(&sdata->u.ibss.mtx);

483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498
	rcu_read_lock();

	list_for_each_entry_rcu(sta, &local->sta_list, list) {
		if (sta->sdata == sdata &&
		    time_after(sta->last_rx + IEEE80211_IBSS_MERGE_INTERVAL,
			       jiffies)) {
			active++;
			break;
		}
	}

	rcu_read_unlock();

	return active;
}

499 500 501
/*
 * This function is called with state == IEEE80211_IBSS_MLME_JOINED
 */
502 503 504 505 506

static void ieee80211_sta_merge_ibss(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;

J
Johannes Berg 已提交
507 508
	lockdep_assert_held(&ifibss->mtx);

509 510
	mod_timer(&ifibss->timer,
		  round_jiffies(jiffies + IEEE80211_IBSS_MERGE_INTERVAL));
511 512

	ieee80211_sta_expire(sdata, IEEE80211_IBSS_INACTIVITY_LIMIT);
513

S
Sujith 已提交
514 515 516 517
	if (time_before(jiffies, ifibss->last_scan_completed +
		       IEEE80211_IBSS_MERGE_INTERVAL))
		return;

518 519 520
	if (ieee80211_sta_active_ibss(sdata))
		return;

521
	if (ifibss->fixed_channel)
522 523 524
		return;

	printk(KERN_DEBUG "%s: No active IBSS STAs - trying to scan for other "
525
	       "IBSS networks with same SSID (merge)\n", sdata->name);
526

J
Johannes Berg 已提交
527 528 529
	ieee80211_request_internal_scan(sdata,
			ifibss->ssid, ifibss->ssid_len,
			ifibss->fixed_channel ? ifibss->channel : NULL);
530 531
}

532
static void ieee80211_sta_create_ibss(struct ieee80211_sub_if_data *sdata)
533 534 535 536 537 538 539 540
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;
	struct ieee80211_supported_band *sband;
	u8 bssid[ETH_ALEN];
	u16 capability;
	int i;

J
Johannes Berg 已提交
541 542
	lockdep_assert_held(&ifibss->mtx);

543
	if (ifibss->fixed_bssid) {
544 545 546 547 548 549 550
		memcpy(bssid, ifibss->bssid, ETH_ALEN);
	} else {
		/* Generate random, not broadcast, locally administered BSSID. Mix in
		 * own MAC address to make sure that devices that do not have proper
		 * random number generator get different BSSID. */
		get_random_bytes(bssid, ETH_ALEN);
		for (i = 0; i < ETH_ALEN; i++)
551
			bssid[i] ^= sdata->vif.addr[i];
552 553 554 555 556
		bssid[0] &= ~0x01;
		bssid[0] |= 0x02;
	}

	printk(KERN_DEBUG "%s: Creating new IBSS network, BSSID %pM\n",
557
	       sdata->name, bssid);
558

559
	sband = local->hw.wiphy->bands[ifibss->channel->band];
560 561 562

	capability = WLAN_CAPABILITY_IBSS;

J
Johannes Berg 已提交
563
	if (ifibss->privacy)
564 565 566 567
		capability |= WLAN_CAPABILITY_PRIVACY;
	else
		sdata->drop_unencrypted = 0;

568
	__ieee80211_sta_join_ibss(sdata, bssid, sdata->vif.bss_conf.beacon_int,
569
				  ifibss->channel, ifibss->basic_rates,
570
				  capability, 0);
571 572
}

573 574 575 576
/*
 * This function is called with state == IEEE80211_IBSS_MLME_SEARCH
 */

577
static void ieee80211_sta_find_ibss(struct ieee80211_sub_if_data *sdata)
578 579 580
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;
581
	struct cfg80211_bss *cbss;
582
	struct ieee80211_channel *chan = NULL;
583 584
	const u8 *bssid = NULL;
	int active_ibss;
585
	u16 capability;
586

J
Johannes Berg 已提交
587 588
	lockdep_assert_held(&ifibss->mtx);

589 590 591
	active_ibss = ieee80211_sta_active_ibss(sdata);
#ifdef CONFIG_MAC80211_IBSS_DEBUG
	printk(KERN_DEBUG "%s: sta_find_ibss (active_ibss=%d)\n",
592
	       sdata->name, active_ibss);
593 594 595
#endif /* CONFIG_MAC80211_IBSS_DEBUG */

	if (active_ibss)
596
		return;
597

598
	capability = WLAN_CAPABILITY_IBSS;
J
Johannes Berg 已提交
599
	if (ifibss->privacy)
600
		capability |= WLAN_CAPABILITY_PRIVACY;
601 602 603 604 605
	if (ifibss->fixed_bssid)
		bssid = ifibss->bssid;
	if (ifibss->fixed_channel)
		chan = ifibss->channel;
	if (!is_zero_ether_addr(ifibss->bssid))
606
		bssid = ifibss->bssid;
607 608 609 610 611 612 613
	cbss = cfg80211_get_bss(local->hw.wiphy, chan, bssid,
				ifibss->ssid, ifibss->ssid_len,
				WLAN_CAPABILITY_IBSS | WLAN_CAPABILITY_PRIVACY,
				capability);

	if (cbss) {
		struct ieee80211_bss *bss;
614

615
		bss = (void *)cbss->priv;
616 617
#ifdef CONFIG_MAC80211_IBSS_DEBUG
		printk(KERN_DEBUG "   sta_find_ibss: selected %pM current "
618
		       "%pM\n", cbss->bssid, ifibss->bssid);
619 620 621 622
#endif /* CONFIG_MAC80211_IBSS_DEBUG */

		printk(KERN_DEBUG "%s: Selected IBSS BSSID %pM"
		       " based on configured SSID\n",
623
		       sdata->name, cbss->bssid);
624

625
		ieee80211_sta_join_ibss(sdata, bss);
626
		ieee80211_rx_bss_put(local, bss);
627
		return;
R
Reinette Chatre 已提交
628
	}
629 630 631 632 633 634

#ifdef CONFIG_MAC80211_IBSS_DEBUG
	printk(KERN_DEBUG "   did not try to join ibss\n");
#endif /* CONFIG_MAC80211_IBSS_DEBUG */

	/* Selected IBSS not found in current scan results - try to scan */
635
	if (time_after(jiffies, ifibss->last_scan_completed +
636 637
					IEEE80211_SCAN_INTERVAL)) {
		printk(KERN_DEBUG "%s: Trigger new scan to find an IBSS to "
638
		       "join\n", sdata->name);
639

J
Johannes Berg 已提交
640 641 642
		ieee80211_request_internal_scan(sdata,
				ifibss->ssid, ifibss->ssid_len,
				ifibss->fixed_channel ? ifibss->channel : NULL);
643
	} else {
644 645 646 647
		int interval = IEEE80211_SCAN_INTERVAL;

		if (time_after(jiffies, ifibss->ibss_join_req +
			       IEEE80211_IBSS_JOIN_TIMEOUT)) {
648 649 650 651
			if (!(local->oper_channel->flags & IEEE80211_CHAN_NO_IBSS)) {
				ieee80211_sta_create_ibss(sdata);
				return;
			}
652
			printk(KERN_DEBUG "%s: IBSS not allowed on"
653
			       " %d MHz\n", sdata->name,
654 655 656 657 658 659 660
			       local->hw.conf.channel->center_freq);

			/* No IBSS found - decrease scan interval and continue
			 * scanning. */
			interval = IEEE80211_SCAN_INTERVAL_SLOW;
		}

661 662
		mod_timer(&ifibss->timer,
			  round_jiffies(jiffies + interval));
663 664 665 666 667 668 669 670 671 672 673 674 675 676
	}
}

static void ieee80211_rx_mgmt_probe_req(struct ieee80211_sub_if_data *sdata,
					struct ieee80211_mgmt *mgmt,
					size_t len)
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;
	int tx_last_beacon;
	struct sk_buff *skb;
	struct ieee80211_mgmt *resp;
	u8 *pos, *end;

J
Johannes Berg 已提交
677 678
	lockdep_assert_held(&ifibss->mtx);

679
	if (ifibss->state != IEEE80211_IBSS_MLME_JOINED ||
680
	    len < 24 + 2 || !ifibss->presp)
681 682
		return;

683
	tx_last_beacon = drv_tx_last_beacon(local);
684 685 686 687

#ifdef CONFIG_MAC80211_IBSS_DEBUG
	printk(KERN_DEBUG "%s: RX ProbeReq SA=%pM DA=%pM BSSID=%pM"
	       " (tx_last_beacon=%d)\n",
688
	       sdata->name, mgmt->sa, mgmt->da,
689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705
	       mgmt->bssid, tx_last_beacon);
#endif /* CONFIG_MAC80211_IBSS_DEBUG */

	if (!tx_last_beacon)
		return;

	if (memcmp(mgmt->bssid, ifibss->bssid, ETH_ALEN) != 0 &&
	    memcmp(mgmt->bssid, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) != 0)
		return;

	end = ((u8 *) mgmt) + len;
	pos = mgmt->u.probe_req.variable;
	if (pos[0] != WLAN_EID_SSID ||
	    pos + 2 + pos[1] > end) {
#ifdef CONFIG_MAC80211_IBSS_DEBUG
		printk(KERN_DEBUG "%s: Invalid SSID IE in ProbeReq "
		       "from %pM\n",
706
		       sdata->name, mgmt->sa);
707 708 709 710 711
#endif
		return;
	}
	if (pos[1] != 0 &&
	    (pos[1] != ifibss->ssid_len ||
712
	     memcmp(pos + 2, ifibss->ssid, ifibss->ssid_len))) {
713 714 715 716 717
		/* Ignore ProbeReq for foreign SSID */
		return;
	}

	/* Reply with ProbeResp */
718
	skb = skb_copy(ifibss->presp, GFP_KERNEL);
719 720 721 722 723 724 725
	if (!skb)
		return;

	resp = (struct ieee80211_mgmt *) skb->data;
	memcpy(resp->da, mgmt->sa, ETH_ALEN);
#ifdef CONFIG_MAC80211_IBSS_DEBUG
	printk(KERN_DEBUG "%s: Sending ProbeResp to %pM\n",
726
	       sdata->name, resp->da);
727
#endif /* CONFIG_MAC80211_IBSS_DEBUG */
728 729
	IEEE80211_SKB_CB(skb)->flags |= IEEE80211_TX_INTFL_DONT_ENCRYPT;
	ieee80211_tx_skb(sdata, skb);
730 731 732 733 734 735 736 737 738 739
}

static void ieee80211_rx_mgmt_probe_resp(struct ieee80211_sub_if_data *sdata,
					 struct ieee80211_mgmt *mgmt,
					 size_t len,
					 struct ieee80211_rx_status *rx_status)
{
	size_t baselen;
	struct ieee802_11_elems elems;

740
	if (memcmp(mgmt->da, sdata->vif.addr, ETH_ALEN))
741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770
		return; /* ignore ProbeResp to foreign address */

	baselen = (u8 *) mgmt->u.probe_resp.variable - (u8 *) mgmt;
	if (baselen > len)
		return;

	ieee802_11_parse_elems(mgmt->u.probe_resp.variable, len - baselen,
				&elems);

	ieee80211_rx_bss_info(sdata, mgmt, len, rx_status, &elems, false);
}

static void ieee80211_rx_mgmt_beacon(struct ieee80211_sub_if_data *sdata,
				     struct ieee80211_mgmt *mgmt,
				     size_t len,
				     struct ieee80211_rx_status *rx_status)
{
	size_t baselen;
	struct ieee802_11_elems elems;

	/* Process beacon from the current BSS */
	baselen = (u8 *) mgmt->u.beacon.variable - (u8 *) mgmt;
	if (baselen > len)
		return;

	ieee802_11_parse_elems(mgmt->u.beacon.variable, len - baselen, &elems);

	ieee80211_rx_bss_info(sdata, mgmt, len, rx_status, &elems, true);
}

771 772
void ieee80211_ibss_rx_queued_mgmt(struct ieee80211_sub_if_data *sdata,
				   struct sk_buff *skb)
773 774 775 776 777
{
	struct ieee80211_rx_status *rx_status;
	struct ieee80211_mgmt *mgmt;
	u16 fc;

778
	rx_status = IEEE80211_SKB_RXCB(skb);
779 780 781
	mgmt = (struct ieee80211_mgmt *) skb->data;
	fc = le16_to_cpu(mgmt->frame_control);

J
Johannes Berg 已提交
782 783
	mutex_lock(&sdata->u.ibss.mtx);

784 785 786
	if (!sdata->u.ibss.ssid_len)
		goto mgmt_out; /* not ready to merge yet */

787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802
	switch (fc & IEEE80211_FCTL_STYPE) {
	case IEEE80211_STYPE_PROBE_REQ:
		ieee80211_rx_mgmt_probe_req(sdata, mgmt, skb->len);
		break;
	case IEEE80211_STYPE_PROBE_RESP:
		ieee80211_rx_mgmt_probe_resp(sdata, mgmt, skb->len,
					     rx_status);
		break;
	case IEEE80211_STYPE_BEACON:
		ieee80211_rx_mgmt_beacon(sdata, mgmt, skb->len,
					 rx_status);
		break;
	case IEEE80211_STYPE_AUTH:
		ieee80211_rx_mgmt_auth_ibss(sdata, mgmt, skb->len);
		break;
	}
J
Johannes Berg 已提交
803

804
 mgmt_out:
J
Johannes Berg 已提交
805
	mutex_unlock(&sdata->u.ibss.mtx);
806 807
}

808
void ieee80211_ibss_work(struct ieee80211_sub_if_data *sdata)
809
{
810
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
811

J
Johannes Berg 已提交
812 813 814 815 816 817 818 819 820
	mutex_lock(&ifibss->mtx);

	/*
	 * Work could be scheduled after scan or similar
	 * when we aren't even joined (or trying) with a
	 * network.
	 */
	if (!ifibss->ssid_len)
		goto out;
821 822 823 824 825 826 827 828 829 830 831 832 833

	switch (ifibss->state) {
	case IEEE80211_IBSS_MLME_SEARCH:
		ieee80211_sta_find_ibss(sdata);
		break;
	case IEEE80211_IBSS_MLME_JOINED:
		ieee80211_sta_merge_ibss(sdata);
		break;
	default:
		WARN_ON(1);
		break;
	}

J
Johannes Berg 已提交
834 835
 out:
	mutex_unlock(&ifibss->mtx);
836 837
}

838 839 840 841 842 843 844
static void ieee80211_ibss_timer(unsigned long data)
{
	struct ieee80211_sub_if_data *sdata =
		(struct ieee80211_sub_if_data *) data;
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;

845 846 847 848 849
	if (local->quiescing) {
		ifibss->timer_running = true;
		return;
	}

J
Johannes Berg 已提交
850
	ieee80211_queue_work(&local->hw, &sdata->work);
851 852
}

853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872
#ifdef CONFIG_PM
void ieee80211_ibss_quiesce(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;

	if (del_timer_sync(&ifibss->timer))
		ifibss->timer_running = true;
}

void ieee80211_ibss_restart(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;

	if (ifibss->timer_running) {
		add_timer(&ifibss->timer);
		ifibss->timer_running = false;
	}
}
#endif

873 874 875 876 877 878
void ieee80211_ibss_setup_sdata(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;

	setup_timer(&ifibss->timer, ieee80211_ibss_timer,
		    (unsigned long) sdata);
J
Johannes Berg 已提交
879
	mutex_init(&ifibss->mtx);
880 881 882 883 884
}

/* scan finished notification */
void ieee80211_ibss_notify_scan_completed(struct ieee80211_local *local)
{
885
	struct ieee80211_sub_if_data *sdata;
886

887 888
	mutex_lock(&local->iflist_mtx);
	list_for_each_entry(sdata, &local->interfaces, list) {
889
		if (!ieee80211_sdata_running(sdata))
890
			continue;
891 892 893
		if (sdata->vif.type != NL80211_IFTYPE_ADHOC)
			continue;
		sdata->u.ibss.last_scan_completed = jiffies;
J
Johannes Berg 已提交
894
		ieee80211_queue_work(&local->hw, &sdata->work);
895
	}
896
	mutex_unlock(&local->iflist_mtx);
897 898
}

899 900 901 902 903
int ieee80211_ibss_join(struct ieee80211_sub_if_data *sdata,
			struct cfg80211_ibss_params *params)
{
	struct sk_buff *skb;

J
Johannes Berg 已提交
904 905 906 907 908 909 910 911 912 913 914
	skb = dev_alloc_skb(sdata->local->hw.extra_tx_headroom +
			    36 /* bitrates */ +
			    34 /* SSID */ +
			    3  /* DS params */ +
			    4  /* IBSS params */ +
			    params->ie_len);
	if (!skb)
		return -ENOMEM;

	mutex_lock(&sdata->u.ibss.mtx);

915 916 917 918 919 920
	if (params->bssid) {
		memcpy(sdata->u.ibss.bssid, params->bssid, ETH_ALEN);
		sdata->u.ibss.fixed_bssid = true;
	} else
		sdata->u.ibss.fixed_bssid = false;

J
Johannes Berg 已提交
921
	sdata->u.ibss.privacy = params->privacy;
922
	sdata->u.ibss.basic_rates = params->basic_rates;
923 924
	memcpy(sdata->vif.bss_conf.mcast_rate, params->mcast_rate,
	       sizeof(params->mcast_rate));
J
Johannes Berg 已提交
925

926 927
	sdata->vif.bss_conf.beacon_int = params->beacon_interval;

928 929 930
	sdata->u.ibss.channel = params->channel;
	sdata->u.ibss.fixed_channel = params->channel_fixed;

931 932 933
	/* fix ourselves to that channel now already */
	if (params->channel_fixed) {
		sdata->local->oper_channel = params->channel;
934 935
		WARN_ON(!ieee80211_set_channel_type(sdata->local, sdata,
						    NL80211_CHAN_NO_HT));
936 937
	}

938 939 940 941 942 943 944 945 946 947 948
	if (params->ie) {
		sdata->u.ibss.ie = kmemdup(params->ie, params->ie_len,
					   GFP_KERNEL);
		if (sdata->u.ibss.ie)
			sdata->u.ibss.ie_len = params->ie_len;
	}

	sdata->u.ibss.skb = skb;
	sdata->u.ibss.state = IEEE80211_IBSS_MLME_SEARCH;
	sdata->u.ibss.ibss_join_req = jiffies;

949 950 951
	memcpy(sdata->u.ibss.ssid, params->ssid, IEEE80211_MAX_SSID_LEN);
	sdata->u.ibss.ssid_len = params->ssid_len;

952 953 954
	mutex_unlock(&sdata->u.ibss.mtx);

	mutex_lock(&sdata->local->mtx);
J
Johannes Berg 已提交
955
	ieee80211_recalc_idle(sdata->local);
956
	mutex_unlock(&sdata->local->mtx);
J
Johannes Berg 已提交
957

J
Johannes Berg 已提交
958
	ieee80211_queue_work(&sdata->local->hw, &sdata->work);
959 960 961 962 963 964 965

	return 0;
}

int ieee80211_ibss_leave(struct ieee80211_sub_if_data *sdata)
{
	struct sk_buff *skb;
966 967 968 969
	struct ieee80211_if_ibss *ifibss = &sdata->u.ibss;
	struct ieee80211_local *local = sdata->local;
	struct cfg80211_bss *cbss;
	u16 capability;
J
Johannes Berg 已提交
970 971 972
	int active_ibss;

	mutex_lock(&sdata->u.ibss.mtx);
973 974 975 976 977 978 979 980 981 982 983 984 985 986 987 988 989 990 991 992

	active_ibss = ieee80211_sta_active_ibss(sdata);

	if (!active_ibss && !is_zero_ether_addr(ifibss->bssid)) {
		capability = WLAN_CAPABILITY_IBSS;

		if (ifibss->privacy)
			capability |= WLAN_CAPABILITY_PRIVACY;

		cbss = cfg80211_get_bss(local->hw.wiphy, ifibss->channel,
					ifibss->bssid, ifibss->ssid,
					ifibss->ssid_len, WLAN_CAPABILITY_IBSS |
					WLAN_CAPABILITY_PRIVACY,
					capability);

		if (cbss) {
			cfg80211_unlink_bss(local->hw.wiphy, cbss);
			cfg80211_put_bss(cbss);
		}
	}
993 994 995 996 997 998 999

	sta_info_flush(sdata->local, sdata);

	/* remove beacon */
	kfree(sdata->u.ibss.ie);
	skb = sdata->u.ibss.presp;
	rcu_assign_pointer(sdata->u.ibss.presp, NULL);
1000 1001 1002
	sdata->vif.bss_conf.ibss_joined = false;
	ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_BEACON_ENABLED |
						BSS_CHANGED_IBSS);
1003 1004 1005
	synchronize_rcu();
	kfree_skb(skb);

J
Johannes Berg 已提交
1006
	skb_queue_purge(&sdata->skb_queue);
1007
	memset(sdata->u.ibss.bssid, 0, ETH_ALEN);
J
Johannes Berg 已提交
1008 1009
	sdata->u.ibss.ssid_len = 0;

1010
	del_timer_sync(&sdata->u.ibss.timer);
J
Johannes Berg 已提交
1011 1012

	mutex_unlock(&sdata->u.ibss.mtx);
1013

1014
	mutex_lock(&local->mtx);
J
Johannes Berg 已提交
1015
	ieee80211_recalc_idle(sdata->local);
1016
	mutex_unlock(&local->mtx);
1017 1018 1019

	return 0;
}