core.c 28.3 KB
Newer Older
1 2 3
/*
 * This is the linux wireless configuration interface.
 *
J
Johannes Berg 已提交
4
 * Copyright 2006-2010		Johannes Berg <johannes@sipsolutions.net>
5 6
 */

7 8
#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt

9 10 11 12
#include <linux/if.h>
#include <linux/module.h>
#include <linux/err.h>
#include <linux/list.h>
13
#include <linux/slab.h>
14 15 16 17
#include <linux/nl80211.h>
#include <linux/debugfs.h>
#include <linux/notifier.h>
#include <linux/device.h>
18
#include <linux/etherdevice.h>
J
Johannes Berg 已提交
19
#include <linux/rtnetlink.h>
20
#include <linux/sched.h>
21 22
#include <net/genetlink.h>
#include <net/cfg80211.h>
23
#include "nl80211.h"
24 25
#include "core.h"
#include "sysfs.h"
26
#include "debugfs.h"
27
#include "wext-compat.h"
28
#include "ethtool.h"
29
#include "rdev-ops.h"
30 31 32 33 34 35 36

/* name for sysfs, %d is appended */
#define PHY_NAME "phy"

MODULE_AUTHOR("Johannes Berg");
MODULE_LICENSE("GPL");
MODULE_DESCRIPTION("wireless configuration support");
37
MODULE_ALIAS_GENL_FAMILY(NL80211_GENL_NAME);
38

J
Johannes Berg 已提交
39
/* RCU-protected (and cfg80211_mutex for writers) */
40
LIST_HEAD(cfg80211_rdev_list);
41
int cfg80211_rdev_list_generation;
42 43

DEFINE_MUTEX(cfg80211_mutex);
44 45 46 47

/* for debugfs */
static struct dentry *ieee80211_debugfs_dir;

48 49 50
/* for the cleanup, scan and event works */
struct workqueue_struct *cfg80211_wq;

51 52 53 54 55
static bool cfg80211_disable_40mhz_24ghz;
module_param(cfg80211_disable_40mhz_24ghz, bool, 0644);
MODULE_PARM_DESC(cfg80211_disable_40mhz_24ghz,
		 "Disable 40MHz support in the 2.4GHz band");

56
/* requires cfg80211_mutex to be held! */
57
struct cfg80211_registered_device *cfg80211_rdev_by_wiphy_idx(int wiphy_idx)
58
{
59
	struct cfg80211_registered_device *result = NULL, *rdev;
60

61 62
	assert_cfg80211_lock();

63 64 65
	list_for_each_entry(rdev, &cfg80211_rdev_list, list) {
		if (rdev->wiphy_idx == wiphy_idx) {
			result = rdev;
66 67 68 69 70 71 72
			break;
		}
	}

	return result;
}

73 74
int get_wiphy_idx(struct wiphy *wiphy)
{
J
Johannes Berg 已提交
75 76
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);

77
	return rdev->wiphy_idx;
78 79
}

80
/* requires cfg80211_rdev_mutex to be held! */
81 82
struct wiphy *wiphy_idx_to_wiphy(int wiphy_idx)
{
83
	struct cfg80211_registered_device *rdev;
84 85 86

	assert_cfg80211_lock();

87 88
	rdev = cfg80211_rdev_by_wiphy_idx(wiphy_idx);
	if (!rdev)
89
		return NULL;
90
	return &rdev->wiphy;
91 92
}

93
/* requires cfg80211_mutex to be held */
94 95 96
int cfg80211_dev_rename(struct cfg80211_registered_device *rdev,
			char *newname)
{
97
	struct cfg80211_registered_device *rdev2;
98
	int wiphy_idx, taken = -1, result, digits;
99

100
	assert_cfg80211_lock();
101

102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117
	/* prohibit calling the thing phy%d when %d is not its number */
	sscanf(newname, PHY_NAME "%d%n", &wiphy_idx, &taken);
	if (taken == strlen(newname) && wiphy_idx != rdev->wiphy_idx) {
		/* count number of places needed to print wiphy_idx */
		digits = 1;
		while (wiphy_idx /= 10)
			digits++;
		/*
		 * deny the name if it is phy<idx> where <idx> is printed
		 * without leading zeroes. taken == strlen(newname) here
		 */
		if (taken == strlen(PHY_NAME) + digits)
			return -EINVAL;
	}


118 119
	/* Ignore nop renames */
	if (strcmp(newname, dev_name(&rdev->wiphy.dev)) == 0)
120
		return 0;
121 122

	/* Ensure another device does not already have this name. */
123 124
	list_for_each_entry(rdev2, &cfg80211_rdev_list, list)
		if (strcmp(newname, dev_name(&rdev2->wiphy.dev)) == 0)
125
			return -EINVAL;
126 127 128

	result = device_rename(&rdev->wiphy.dev, newname);
	if (result)
129
		return result;
130

131 132
	if (rdev->wiphy.debugfsdir &&
	    !debugfs_rename(rdev->wiphy.debugfsdir->d_parent,
133 134 135
			    rdev->wiphy.debugfsdir,
			    rdev->wiphy.debugfsdir->d_parent,
			    newname))
136
		pr_err("failed to rename debugfs dir to %s!\n", newname);
137

138
	nl80211_notify_dev_rename(rdev);
139

140
	return 0;
141 142
}

143 144 145 146 147 148
int cfg80211_switch_netns(struct cfg80211_registered_device *rdev,
			  struct net *net)
{
	struct wireless_dev *wdev;
	int err = 0;

J
Johannes Berg 已提交
149
	if (!(rdev->wiphy.flags & WIPHY_FLAG_NETNS_OK))
150 151
		return -EOPNOTSUPP;

152
	list_for_each_entry(wdev, &rdev->wdev_list, list) {
153 154
		if (!wdev->netdev)
			continue;
155 156 157 158 159 160 161 162 163 164 165
		wdev->netdev->features &= ~NETIF_F_NETNS_LOCAL;
		err = dev_change_net_namespace(wdev->netdev, net, "wlan%d");
		if (err)
			break;
		wdev->netdev->features |= NETIF_F_NETNS_LOCAL;
	}

	if (err) {
		/* failed -- clean up to old netns */
		net = wiphy_net(&rdev->wiphy);

166
		list_for_each_entry_continue_reverse(wdev, &rdev->wdev_list,
167
						     list) {
168 169
			if (!wdev->netdev)
				continue;
170 171 172 173 174 175
			wdev->netdev->features &= ~NETIF_F_NETNS_LOCAL;
			err = dev_change_net_namespace(wdev->netdev, net,
							"wlan%d");
			WARN_ON(err);
			wdev->netdev->features |= NETIF_F_NETNS_LOCAL;
		}
176 177

		return err;
178 179 180 181
	}

	wiphy_net_set(&rdev->wiphy, net);

182 183 184 185
	err = device_rename(&rdev->wiphy.dev, dev_name(&rdev->wiphy.dev));
	WARN_ON(err);

	return 0;
186 187
}

J
Johannes Berg 已提交
188 189
static void cfg80211_rfkill_poll(struct rfkill *rfkill, void *data)
{
190
	struct cfg80211_registered_device *rdev = data;
J
Johannes Berg 已提交
191

192
	rdev_rfkill_poll(rdev);
J
Johannes Berg 已提交
193 194
}

195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227
void cfg80211_stop_p2p_device(struct cfg80211_registered_device *rdev,
			      struct wireless_dev *wdev)
{
	lockdep_assert_held(&rdev->devlist_mtx);
	lockdep_assert_held(&rdev->sched_scan_mtx);

	if (WARN_ON(wdev->iftype != NL80211_IFTYPE_P2P_DEVICE))
		return;

	if (!wdev->p2p_started)
		return;

	rdev_stop_p2p_device(rdev, wdev);
	wdev->p2p_started = false;

	rdev->opencount--;

	if (rdev->scan_req && rdev->scan_req->wdev == wdev) {
		bool busy = work_busy(&rdev->scan_done_wk);

		/*
		 * If the work isn't pending or running (in which case it would
		 * be waiting for the lock we hold) the driver didn't properly
		 * cancel the scan when the interface was removed. In this case
		 * warn and leak the scan request object to not crash later.
		 */
		WARN_ON(!busy);

		rdev->scan_req->aborted = true;
		___cfg80211_scan_done(rdev, !busy);
	}
}

J
Johannes Berg 已提交
228 229
static int cfg80211_rfkill_set_block(void *data, bool blocked)
{
230
	struct cfg80211_registered_device *rdev = data;
J
Johannes Berg 已提交
231 232 233 234 235 236
	struct wireless_dev *wdev;

	if (!blocked)
		return 0;

	rtnl_lock();
237 238

	/* read-only iteration need not hold the devlist_mtx */
J
Johannes Berg 已提交
239

240 241
	list_for_each_entry(wdev, &rdev->wdev_list, list) {
		if (wdev->netdev) {
242
			dev_close(wdev->netdev);
243 244 245 246 247
			continue;
		}
		/* otherwise, check iftype */
		switch (wdev->iftype) {
		case NL80211_IFTYPE_P2P_DEVICE:
248 249 250 251 252 253
			/* but this requires it */
			mutex_lock(&rdev->devlist_mtx);
			mutex_lock(&rdev->sched_scan_mtx);
			cfg80211_stop_p2p_device(rdev, wdev);
			mutex_unlock(&rdev->sched_scan_mtx);
			mutex_unlock(&rdev->devlist_mtx);
254 255 256 257 258
			break;
		default:
			break;
		}
	}
J
Johannes Berg 已提交
259 260 261 262 263 264 265 266

	rtnl_unlock();

	return 0;
}

static void cfg80211_rfkill_sync_work(struct work_struct *work)
{
267
	struct cfg80211_registered_device *rdev;
J
Johannes Berg 已提交
268

269 270
	rdev = container_of(work, struct cfg80211_registered_device, rfkill_sync);
	cfg80211_rfkill_set_block(rdev, rfkill_blocked(rdev->rfkill));
J
Johannes Berg 已提交
271 272
}

J
Johannes Berg 已提交
273 274 275 276 277 278 279 280 281 282
static void cfg80211_event_work(struct work_struct *work)
{
	struct cfg80211_registered_device *rdev;

	rdev = container_of(work, struct cfg80211_registered_device,
			    event_work);

	rtnl_lock();
	cfg80211_lock_rdev(rdev);

283
	cfg80211_process_rdev_events(rdev);
J
Johannes Berg 已提交
284 285 286 287
	cfg80211_unlock_rdev(rdev);
	rtnl_unlock();
}

288 289
/* exported functions */

290
struct wiphy *wiphy_new(const struct cfg80211_ops *ops, int sizeof_priv)
291
{
292
	static int wiphy_counter;
293 294

	struct cfg80211_registered_device *rdev;
295 296
	int alloc_size;

297 298 299 300 301 302 303
	WARN_ON(ops->add_key && (!ops->del_key || !ops->set_default_key));
	WARN_ON(ops->auth && (!ops->assoc || !ops->deauth || !ops->disassoc));
	WARN_ON(ops->connect && !ops->disconnect);
	WARN_ON(ops->join_ibss && !ops->leave_ibss);
	WARN_ON(ops->add_virtual_intf && !ops->del_virtual_intf);
	WARN_ON(ops->add_station && !ops->del_station);
	WARN_ON(ops->add_mpath && !ops->del_mpath);
304
	WARN_ON(ops->join_mesh && !ops->leave_mesh);
305

306
	alloc_size = sizeof(*rdev) + sizeof_priv;
307

308 309
	rdev = kzalloc(alloc_size, GFP_KERNEL);
	if (!rdev)
310 311
		return NULL;

312
	rdev->ops = ops;
313

314
	mutex_lock(&cfg80211_mutex);
315

316
	rdev->wiphy_idx = wiphy_counter++;
317

J
Johannes Berg 已提交
318
	if (unlikely(rdev->wiphy_idx < 0)) {
319
		wiphy_counter--;
320
		mutex_unlock(&cfg80211_mutex);
321
		/* ugh, wrapped! */
322
		kfree(rdev);
323 324 325
		return NULL;
	}

326
	mutex_unlock(&cfg80211_mutex);
327

328 329 330
	/* give it a proper name */
	dev_set_name(&rdev->wiphy.dev, PHY_NAME "%d", rdev->wiphy_idx);

331 332
	mutex_init(&rdev->mtx);
	mutex_init(&rdev->devlist_mtx);
333
	mutex_init(&rdev->sched_scan_mtx);
334
	INIT_LIST_HEAD(&rdev->wdev_list);
335 336
	INIT_LIST_HEAD(&rdev->beacon_registrations);
	spin_lock_init(&rdev->beacon_registrations_lock);
337 338 339
	spin_lock_init(&rdev->bss_lock);
	INIT_LIST_HEAD(&rdev->bss_list);
	INIT_WORK(&rdev->scan_done_wk, __cfg80211_scan_done);
340
	INIT_WORK(&rdev->sched_scan_results_wk, __cfg80211_sched_scan_results);
341 342
	INIT_DELAYED_WORK(&rdev->dfs_update_channels_wk,
			  cfg80211_dfs_channels_update_work);
J
Johannes Berg 已提交
343 344 345 346
#ifdef CONFIG_CFG80211_WEXT
	rdev->wiphy.wext = &cfg80211_wext_handler;
#endif

347 348 349 350
	device_initialize(&rdev->wiphy.dev);
	rdev->wiphy.dev.class = &ieee80211_class;
	rdev->wiphy.dev.platform_data = rdev;

J
Johannes Berg 已提交
351 352 353
#ifdef CONFIG_CFG80211_DEFAULT_PS
	rdev->wiphy.flags |= WIPHY_FLAG_PS_ON_BY_DEFAULT;
#endif
354

355 356
	wiphy_net_set(&rdev->wiphy, &init_net);

357 358 359 360 361 362 363
	rdev->rfkill_ops.set_block = cfg80211_rfkill_set_block;
	rdev->rfkill = rfkill_alloc(dev_name(&rdev->wiphy.dev),
				   &rdev->wiphy.dev, RFKILL_TYPE_WLAN,
				   &rdev->rfkill_ops, rdev);

	if (!rdev->rfkill) {
		kfree(rdev);
J
Johannes Berg 已提交
364 365 366
		return NULL;
	}

367 368 369
	INIT_WORK(&rdev->rfkill_sync, cfg80211_rfkill_sync_work);
	INIT_WORK(&rdev->conn_work, cfg80211_conn_work);
	INIT_WORK(&rdev->event_work, cfg80211_event_work);
J
Johannes Berg 已提交
370

371 372
	init_waitqueue_head(&rdev->dev_wait);

373 374 375 376 377
	/*
	 * Initialize wiphy parameters to IEEE 802.11 MIB default values.
	 * Fragmentation and RTS threshold are disabled by default with the
	 * special -1 value.
	 */
378 379 380 381
	rdev->wiphy.retry_short = 7;
	rdev->wiphy.retry_long = 4;
	rdev->wiphy.frag_threshold = (u32) -1;
	rdev->wiphy.rts_threshold = (u32) -1;
382
	rdev->wiphy.coverage_class = 0;
383

384
	rdev->wiphy.features = NL80211_FEATURE_SCAN_FLUSH;
385

386
	return &rdev->wiphy;
387 388 389
}
EXPORT_SYMBOL(wiphy_new);

390 391 392 393 394 395 396 397 398 399 400
static int wiphy_verify_combinations(struct wiphy *wiphy)
{
	const struct ieee80211_iface_combination *c;
	int i, j;

	for (i = 0; i < wiphy->n_iface_combinations; i++) {
		u32 cnt = 0;
		u16 all_iftypes = 0;

		c = &wiphy->iface_combinations[i];

401 402 403 404 405
		/*
		 * Combinations with just one interface aren't real,
		 * however we make an exception for DFS.
		 */
		if (WARN_ON((c->max_interfaces < 2) && !c->radar_detect_widths))
406 407 408 409 410 411
			return -EINVAL;

		/* Need at least one channel */
		if (WARN_ON(!c->num_different_channels))
			return -EINVAL;

412 413 414 415 416 417 418 419
		/*
		 * Put a sane limit on maximum number of different
		 * channels to simplify channel accounting code.
		 */
		if (WARN_ON(c->num_different_channels >
				CFG80211_MAX_NUM_DIFFERENT_CHANNELS))
			return -EINVAL;

420 421 422 423 424
		/* DFS only works on one channel. */
		if (WARN_ON(c->radar_detect_widths &&
			    (c->num_different_channels > 1)))
			return -EINVAL;

425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
		if (WARN_ON(!c->n_limits))
			return -EINVAL;

		for (j = 0; j < c->n_limits; j++) {
			u16 types = c->limits[j].types;

			/*
			 * interface types shouldn't overlap, this is
			 * used in cfg80211_can_change_interface()
			 */
			if (WARN_ON(types & all_iftypes))
				return -EINVAL;
			all_iftypes |= types;

			if (WARN_ON(!c->limits[j].max))
				return -EINVAL;

			/* Shouldn't list software iftypes in combinations! */
			if (WARN_ON(wiphy->software_iftypes & types))
				return -EINVAL;

446 447 448 449 450
			/* Only a single P2P_DEVICE can be allowed */
			if (WARN_ON(types & BIT(NL80211_IFTYPE_P2P_DEVICE) &&
				    c->limits[j].max > 1))
				return -EINVAL;

451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467
			cnt += c->limits[j].max;
			/*
			 * Don't advertise an unsupported type
			 * in a combination.
			 */
			if (WARN_ON((wiphy->interface_modes & types) != types))
				return -EINVAL;
		}

		/* You can't even choose that many! */
		if (WARN_ON(cnt < c->max_interfaces))
			return -EINVAL;
	}

	return 0;
}

468 469
int wiphy_register(struct wiphy *wiphy)
{
470
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
471
	int res;
472 473 474 475
	enum ieee80211_band band;
	struct ieee80211_supported_band *sband;
	bool have_band = false;
	int i;
476 477
	u16 ifmodes = wiphy->interface_modes;

478
#ifdef CONFIG_PM
479 480 481
	if (WARN_ON((wiphy->wowlan.flags & WIPHY_WOWLAN_GTK_REKEY_FAILURE) &&
		    !(wiphy->wowlan.flags & WIPHY_WOWLAN_SUPPORTS_GTK_REKEY)))
		return -EINVAL;
482
#endif
483

J
Johannes Berg 已提交
484 485 486 487
	if (WARN_ON(wiphy->ap_sme_capa &&
		    !(wiphy->flags & WIPHY_FLAG_HAVE_AP_SME)))
		return -EINVAL;

488 489 490 491 492 493 494 495 496
	if (WARN_ON(wiphy->addresses && !wiphy->n_addresses))
		return -EINVAL;

	if (WARN_ON(wiphy->addresses &&
		    !is_zero_ether_addr(wiphy->perm_addr) &&
		    memcmp(wiphy->perm_addr, wiphy->addresses[0].addr,
			   ETH_ALEN)))
		return -EINVAL;

497 498 499 500 501
	if (WARN_ON(wiphy->max_acl_mac_addrs &&
		    (!(wiphy->flags & WIPHY_FLAG_HAVE_AP_SME) ||
		     !rdev->ops->set_mac_acl)))
		return -EINVAL;

502 503 504
	if (wiphy->addresses)
		memcpy(wiphy->perm_addr, wiphy->addresses[0].addr, ETH_ALEN);

505 506
	/* sanity check ifmodes */
	WARN_ON(!ifmodes);
507
	ifmodes &= ((1 << NUM_NL80211_IFTYPES) - 1) & ~1;
508 509
	if (WARN_ON(ifmodes != wiphy->interface_modes))
		wiphy->interface_modes = ifmodes;
510

511 512 513 514
	res = wiphy_verify_combinations(wiphy);
	if (res)
		return res;

515 516 517 518 519 520 521
	/* sanity check supported bands/channels */
	for (band = 0; band < IEEE80211_NUM_BANDS; band++) {
		sband = wiphy->bands[band];
		if (!sband)
			continue;

		sband->band = band;
522 523 524 525 526 527 528 529
		if (WARN_ON(!sband->n_channels))
			return -EINVAL;
		/*
		 * on 60gHz band, there are no legacy rates, so
		 * n_bitrates is 0
		 */
		if (WARN_ON(band != IEEE80211_BAND_60GHZ &&
			    !sband->n_bitrates))
530 531
			return -EINVAL;

532 533 534 535 536 537 538 539 540 541 542 543
		/*
		 * Since cfg80211_disable_40mhz_24ghz is global, we can
		 * modify the sband's ht data even if the driver uses a
		 * global structure for that.
		 */
		if (cfg80211_disable_40mhz_24ghz &&
		    band == IEEE80211_BAND_2GHZ &&
		    sband->ht_cap.ht_supported) {
			sband->ht_cap.cap &= ~IEEE80211_HT_CAP_SUP_WIDTH_20_40;
			sband->ht_cap.cap &= ~IEEE80211_HT_CAP_SGI_40;
		}

544 545 546 547 548 549
		/*
		 * Since we use a u32 for rate bitmaps in
		 * ieee80211_get_response_rate, we cannot
		 * have more than 32 legacy rates.
		 */
		if (WARN_ON(sband->n_bitrates > 32))
550 551 552 553 554
			return -EINVAL;

		for (i = 0; i < sband->n_channels; i++) {
			sband->channels[i].orig_flags =
				sband->channels[i].flags;
555
			sband->channels[i].orig_mag = INT_MAX;
556 557 558 559 560 561 562 563 564 565 566 567 568
			sband->channels[i].orig_mpwr =
				sband->channels[i].max_power;
			sband->channels[i].band = band;
		}

		have_band = true;
	}

	if (!have_band) {
		WARN_ON(1);
		return -EINVAL;
	}

569
#ifdef CONFIG_PM
J
Johannes Berg 已提交
570 571 572 573 574 575
	if (rdev->wiphy.wowlan.n_patterns) {
		if (WARN_ON(!rdev->wiphy.wowlan.pattern_min_len ||
			    rdev->wiphy.wowlan.pattern_min_len >
			    rdev->wiphy.wowlan.pattern_max_len))
			return -EINVAL;
	}
576
#endif
J
Johannes Berg 已提交
577

578 579 580
	/* check and set up bitrates */
	ieee80211_set_bitrate_flags(wiphy);

581 582
	mutex_lock(&cfg80211_mutex);

583
	res = device_add(&rdev->wiphy.dev);
584 585 586 587
	if (res) {
		mutex_unlock(&cfg80211_mutex);
		return res;
	}
J
Johannes Berg 已提交
588

589
	/* set up regulatory info */
590
	wiphy_regulatory_register(wiphy);
591

J
Johannes Berg 已提交
592
	list_add_rcu(&rdev->list, &cfg80211_rdev_list);
593
	cfg80211_rdev_list_generation++;
594 595

	/* add to debugfs */
596 597
	rdev->wiphy.debugfsdir =
		debugfs_create_dir(wiphy_name(&rdev->wiphy),
598
				   ieee80211_debugfs_dir);
599 600
	if (IS_ERR(rdev->wiphy.debugfsdir))
		rdev->wiphy.debugfsdir = NULL;
601

J
Johannes Berg 已提交
602
	if (wiphy->flags & WIPHY_FLAG_CUSTOM_REGULATORY) {
603 604 605 606 607 608 609 610 611 612
		struct regulatory_request request;

		request.wiphy_idx = get_wiphy_idx(wiphy);
		request.initiator = NL80211_REGDOM_SET_BY_DRIVER;
		request.alpha2[0] = '9';
		request.alpha2[1] = '9';

		nl80211_send_reg_change_event(&request);
	}

613
	cfg80211_debugfs_rdev_add(rdev);
614
	mutex_unlock(&cfg80211_mutex);
615

616 617 618 619 620
	/*
	 * due to a locking dependency this has to be outside of the
	 * cfg80211_mutex lock
	 */
	res = rfkill_register(rdev->rfkill);
621 622 623 624 625 626 627 628 629 630
	if (res) {
		device_del(&rdev->wiphy.dev);

		mutex_lock(&cfg80211_mutex);
		debugfs_remove_recursive(rdev->wiphy.debugfsdir);
		list_del_rcu(&rdev->list);
		wiphy_regulatory_deregister(wiphy);
		mutex_unlock(&cfg80211_mutex);
		return res;
	}
631

632 633 634
	rtnl_lock();
	rdev->wiphy.registered = true;
	rtnl_unlock();
635
	return 0;
636 637 638
}
EXPORT_SYMBOL(wiphy_register);

J
Johannes Berg 已提交
639 640
void wiphy_rfkill_start_polling(struct wiphy *wiphy)
{
641
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
642

643
	if (!rdev->ops->rfkill_poll)
J
Johannes Berg 已提交
644
		return;
645 646
	rdev->rfkill_ops.poll = cfg80211_rfkill_poll;
	rfkill_resume_polling(rdev->rfkill);
J
Johannes Berg 已提交
647 648 649 650 651
}
EXPORT_SYMBOL(wiphy_rfkill_start_polling);

void wiphy_rfkill_stop_polling(struct wiphy *wiphy)
{
652
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
653

654
	rfkill_pause_polling(rdev->rfkill);
J
Johannes Berg 已提交
655 656 657
}
EXPORT_SYMBOL(wiphy_rfkill_stop_polling);

658 659
void wiphy_unregister(struct wiphy *wiphy)
{
660
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
661

662 663 664 665
	rtnl_lock();
	rdev->wiphy.registered = false;
	rtnl_unlock();

666
	rfkill_unregister(rdev->rfkill);
J
Johannes Berg 已提交
667

668
	/* protect the device list */
669
	mutex_lock(&cfg80211_mutex);
670

671 672 673 674 675
	wait_event(rdev->dev_wait, ({
		int __count;
		mutex_lock(&rdev->devlist_mtx);
		__count = rdev->opencount;
		mutex_unlock(&rdev->devlist_mtx);
676
		__count == 0; }));
677 678

	mutex_lock(&rdev->devlist_mtx);
679
	BUG_ON(!list_empty(&rdev->wdev_list));
680 681 682 683 684 685
	mutex_unlock(&rdev->devlist_mtx);

	/*
	 * First remove the hardware from everywhere, this makes
	 * it impossible to find from userspace.
	 */
686
	debugfs_remove_recursive(rdev->wiphy.debugfsdir);
J
Johannes Berg 已提交
687 688
	list_del_rcu(&rdev->list);
	synchronize_rcu();
689 690

	/*
691
	 * Try to grab rdev->mtx. If a command is still in progress,
692 693 694 695
	 * hopefully the driver will refuse it since it's tearing
	 * down the device already. We wait for this command to complete
	 * before unlinking the item from the list.
	 * Note: as codified by the BUG_ON above we cannot get here if
696 697 698
	 * a virtual interface is still present. Hence, we can only get
	 * to lock contention here if userspace issues a command that
	 * identified the hardware by wiphy index.
699
	 */
J
Johannes Berg 已提交
700
	cfg80211_lock_rdev(rdev);
701
	/* nothing */
J
Johannes Berg 已提交
702
	cfg80211_unlock_rdev(rdev);
703

704 705 706 707 708
	/*
	 * If this device got a regulatory hint tell core its
	 * free to listen now to a new shiny device regulatory hint
	 */
	wiphy_regulatory_deregister(wiphy);
709

710
	cfg80211_rdev_list_generation++;
711
	device_del(&rdev->wiphy.dev);
712

713
	mutex_unlock(&cfg80211_mutex);
J
Johannes Berg 已提交
714

715
	flush_work(&rdev->scan_done_wk);
J
Johannes Berg 已提交
716 717
	cancel_work_sync(&rdev->conn_work);
	flush_work(&rdev->event_work);
718
	cancel_delayed_work_sync(&rdev->dfs_update_channels_wk);
719 720

	if (rdev->wowlan && rdev->ops->set_wakeup)
721
		rdev_set_wakeup(rdev, false);
722
	cfg80211_rdev_free_wowlan(rdev);
723 724 725
}
EXPORT_SYMBOL(wiphy_unregister);

726
void cfg80211_dev_free(struct cfg80211_registered_device *rdev)
727
{
728
	struct cfg80211_internal_bss *scan, *tmp;
729
	struct cfg80211_beacon_registration *reg, *treg;
730 731 732
	rfkill_destroy(rdev->rfkill);
	mutex_destroy(&rdev->mtx);
	mutex_destroy(&rdev->devlist_mtx);
733
	mutex_destroy(&rdev->sched_scan_mtx);
734 735 736 737
	list_for_each_entry_safe(reg, treg, &rdev->beacon_registrations, list) {
		list_del(&reg->list);
		kfree(reg);
	}
738
	list_for_each_entry_safe(scan, tmp, &rdev->bss_list, list)
739
		cfg80211_put_bss(&rdev->wiphy, &scan->pub);
740
	kfree(rdev);
741 742 743 744 745 746 747 748
}

void wiphy_free(struct wiphy *wiphy)
{
	put_device(&wiphy->dev);
}
EXPORT_SYMBOL(wiphy_free);

J
Johannes Berg 已提交
749 750
void wiphy_rfkill_set_hw_state(struct wiphy *wiphy, bool blocked)
{
751
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wiphy);
J
Johannes Berg 已提交
752

753 754
	if (rfkill_set_hw_state(rdev->rfkill, blocked))
		schedule_work(&rdev->rfkill_sync);
J
Johannes Berg 已提交
755 756 757
}
EXPORT_SYMBOL(wiphy_rfkill_set_hw_state);

758 759 760 761 762 763 764 765
static void wdev_cleanup_work(struct work_struct *work)
{
	struct wireless_dev *wdev;
	struct cfg80211_registered_device *rdev;

	wdev = container_of(work, struct wireless_dev, cleanup_work);
	rdev = wiphy_to_dev(wdev->wiphy);

766
	mutex_lock(&rdev->sched_scan_mtx);
767

J
Johannes Berg 已提交
768
	if (WARN_ON(rdev->scan_req && rdev->scan_req->wdev == wdev)) {
769
		rdev->scan_req->aborted = true;
770
		___cfg80211_scan_done(rdev, true);
771 772
	}

773 774 775 776 777
	if (WARN_ON(rdev->sched_scan_req &&
		    rdev->sched_scan_req->dev == wdev->netdev)) {
		__cfg80211_stop_sched_scan(rdev, false);
	}

778
	mutex_unlock(&rdev->sched_scan_mtx);
779 780 781 782 783 784 785 786 787

	mutex_lock(&rdev->devlist_mtx);
	rdev->opencount--;
	mutex_unlock(&rdev->devlist_mtx);
	wake_up(&rdev->dev_wait);

	dev_put(wdev->netdev);
}

788 789 790 791 792 793 794 795 796 797
void cfg80211_unregister_wdev(struct wireless_dev *wdev)
{
	struct cfg80211_registered_device *rdev = wiphy_to_dev(wdev->wiphy);

	ASSERT_RTNL();

	if (WARN_ON(wdev->netdev))
		return;

	mutex_lock(&rdev->devlist_mtx);
798
	mutex_lock(&rdev->sched_scan_mtx);
799 800 801 802 803
	list_del_rcu(&wdev->list);
	rdev->devlist_generation++;

	switch (wdev->iftype) {
	case NL80211_IFTYPE_P2P_DEVICE:
804
		cfg80211_stop_p2p_device(rdev, wdev);
805 806 807 808 809
		break;
	default:
		WARN_ON_ONCE(1);
		break;
	}
810
	mutex_unlock(&rdev->sched_scan_mtx);
811 812 813 814
	mutex_unlock(&rdev->devlist_mtx);
}
EXPORT_SYMBOL(cfg80211_unregister_wdev);

815 816 817 818
static struct device_type wiphy_type = {
	.name	= "wlan",
};

819 820 821
void cfg80211_update_iface_num(struct cfg80211_registered_device *rdev,
			       enum nl80211_iftype iftype, int num)
{
822
	ASSERT_RTNL();
823 824 825 826 827 828

	rdev->num_running_ifaces += num;
	if (iftype == NL80211_IFTYPE_MONITOR)
		rdev->num_running_monitor_ifaces += num;
}

829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860 861 862 863 864 865 866 867
void cfg80211_leave(struct cfg80211_registered_device *rdev,
		   struct wireless_dev *wdev)
{
	struct net_device *dev = wdev->netdev;

	switch (wdev->iftype) {
	case NL80211_IFTYPE_ADHOC:
		cfg80211_leave_ibss(rdev, dev, true);
		break;
	case NL80211_IFTYPE_P2P_CLIENT:
	case NL80211_IFTYPE_STATION:
		mutex_lock(&rdev->sched_scan_mtx);
		__cfg80211_stop_sched_scan(rdev, false);
		mutex_unlock(&rdev->sched_scan_mtx);

		wdev_lock(wdev);
#ifdef CONFIG_CFG80211_WEXT
		kfree(wdev->wext.ie);
		wdev->wext.ie = NULL;
		wdev->wext.ie_len = 0;
		wdev->wext.connect.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
#endif
		__cfg80211_disconnect(rdev, dev,
				      WLAN_REASON_DEAUTH_LEAVING, true);
		wdev_unlock(wdev);
		break;
	case NL80211_IFTYPE_MESH_POINT:
		cfg80211_leave_mesh(rdev, dev);
		break;
	case NL80211_IFTYPE_AP:
		cfg80211_stop_ap(rdev, dev);
		break;
	default:
		break;
	}

	wdev->beacon_interval = 0;
}

868
static int cfg80211_netdev_notifier_call(struct notifier_block *nb,
869 870 871 872
					 unsigned long state,
					 void *ndev)
{
	struct net_device *dev = ndev;
873
	struct wireless_dev *wdev = dev->ieee80211_ptr;
874
	struct cfg80211_registered_device *rdev;
875
	int ret;
876

877
	if (!wdev)
J
Johannes Berg 已提交
878
		return NOTIFY_DONE;
879

880
	rdev = wiphy_to_dev(wdev->wiphy);
881

882
	WARN_ON(wdev->iftype == NL80211_IFTYPE_UNSPECIFIED);
J
Johannes Berg 已提交
883

884
	switch (state) {
885 886 887
	case NETDEV_POST_INIT:
		SET_NETDEV_DEVTYPE(dev, &wiphy_type);
		break;
888
	case NETDEV_REGISTER:
J
Johannes Berg 已提交
889 890 891 892 893
		/*
		 * NB: cannot take rdev->mtx here because this may be
		 * called within code protected by it when interfaces
		 * are added with nl80211.
		 */
J
Johannes Berg 已提交
894
		mutex_init(&wdev->mtx);
895
		INIT_WORK(&wdev->cleanup_work, wdev_cleanup_work);
J
Johannes Berg 已提交
896 897
		INIT_LIST_HEAD(&wdev->event_list);
		spin_lock_init(&wdev->event_lock);
898 899
		INIT_LIST_HEAD(&wdev->mgmt_registrations);
		spin_lock_init(&wdev->mgmt_registrations_lock);
900

901
		mutex_lock(&rdev->devlist_mtx);
902 903
		wdev->identifier = ++rdev->wdev_id;
		list_add_rcu(&wdev->list, &rdev->wdev_list);
904
		rdev->devlist_generation++;
905 906 907
		/* can only change netns with wiphy */
		dev->features |= NETIF_F_NETNS_LOCAL;

908 909
		if (sysfs_create_link(&dev->dev.kobj, &rdev->wiphy.dev.kobj,
				      "phy80211")) {
910
			pr_err("failed to add phy80211 symlink to netdev!\n");
911
		}
912
		wdev->netdev = dev;
S
Samuel Ortiz 已提交
913
		wdev->sme_state = CFG80211_SME_IDLE;
J
Johannes Berg 已提交
914
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
915
#ifdef CONFIG_CFG80211_WEXT
916 917
		wdev->wext.default_key = -1;
		wdev->wext.default_mgmt_key = -1;
918
		wdev->wext.connect.auth_type = NL80211_AUTHTYPE_AUTOMATIC;
K
Kalle Valo 已提交
919 920
#endif

J
Johannes Berg 已提交
921
		if (wdev->wiphy->flags & WIPHY_FLAG_PS_ON_BY_DEFAULT)
K
Kalle Valo 已提交
922
			wdev->ps = true;
J
Johannes Berg 已提交
923
		else
K
Kalle Valo 已提交
924
			wdev->ps = false;
925 926
		/* allow mac80211 to determine the timeout */
		wdev->ps_timeout = -1;
K
Kalle Valo 已提交
927

928
		netdev_set_default_ethtool_ops(dev, &cfg80211_ethtool_ops);
929 930

		if ((wdev->iftype == NL80211_IFTYPE_STATION ||
931
		     wdev->iftype == NL80211_IFTYPE_P2P_CLIENT ||
932 933
		     wdev->iftype == NL80211_IFTYPE_ADHOC) && !wdev->use_4addr)
			dev->priv_flags |= IFF_DONT_BRIDGE;
934
		break;
J
Johannes Berg 已提交
935
	case NETDEV_GOING_DOWN:
936
		cfg80211_leave(rdev, wdev);
937 938
		break;
	case NETDEV_DOWN:
939
		cfg80211_update_iface_num(rdev, wdev->iftype, -1);
940
		dev_hold(dev);
941
		queue_work(cfg80211_wq, &wdev->cleanup_work);
J
Johannes Berg 已提交
942 943
		break;
	case NETDEV_UP:
944 945 946 947 948 949 950 951 952 953 954 955
		/*
		 * If we have a really quick DOWN/UP succession we may
		 * have this work still pending ... cancel it and see
		 * if it was pending, in which case we need to account
		 * for some of the work it would have done.
		 */
		if (cancel_work_sync(&wdev->cleanup_work)) {
			mutex_lock(&rdev->devlist_mtx);
			rdev->opencount--;
			mutex_unlock(&rdev->devlist_mtx);
			dev_put(dev);
		}
956
		cfg80211_update_iface_num(rdev, wdev->iftype, 1);
J
Johannes Berg 已提交
957
		cfg80211_lock_rdev(rdev);
958
		mutex_lock(&rdev->devlist_mtx);
959
		mutex_lock(&rdev->sched_scan_mtx);
J
Johannes Berg 已提交
960
		wdev_lock(wdev);
961
		switch (wdev->iftype) {
962
#ifdef CONFIG_CFG80211_WEXT
963
		case NL80211_IFTYPE_ADHOC:
J
Johannes Berg 已提交
964
			cfg80211_ibss_wext_join(rdev, wdev);
J
Johannes Berg 已提交
965
			break;
966
		case NL80211_IFTYPE_STATION:
J
Johannes Berg 已提交
967
			cfg80211_mgd_wext_connect(rdev, wdev);
968
			break;
969
#endif
970
#ifdef CONFIG_MAC80211_MESH
971
		case NL80211_IFTYPE_MESH_POINT:
972 973 974 975 976 977 978 979 980 981 982 983 984 985 986
			{
				/* backward compat code... */
				struct mesh_setup setup;
				memcpy(&setup, &default_mesh_setup,
						sizeof(setup));
				 /* back compat only needed for mesh_id */
				setup.mesh_id = wdev->ssid;
				setup.mesh_id_len = wdev->mesh_id_up_len;
				if (wdev->mesh_id_up_len)
					__cfg80211_join_mesh(rdev, dev,
							&setup,
							&default_mesh_config);
				break;
			}
#endif
987
		default:
J
Johannes Berg 已提交
988
			break;
989
		}
J
Johannes Berg 已提交
990
		wdev_unlock(wdev);
991
		mutex_unlock(&rdev->sched_scan_mtx);
992
		rdev->opencount++;
993
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
994
		cfg80211_unlock_rdev(rdev);
995 996 997 998 999

		/*
		 * Configure power management to the driver here so that its
		 * correctly set also after interface type changes etc.
		 */
1000 1001
		if ((wdev->iftype == NL80211_IFTYPE_STATION ||
		     wdev->iftype == NL80211_IFTYPE_P2P_CLIENT) &&
1002
		    rdev->ops->set_power_mgmt)
1003 1004
			if (rdev_set_power_mgmt(rdev, dev, wdev->ps,
						wdev->ps_timeout)) {
1005 1006 1007
				/* assume this means it's off */
				wdev->ps = false;
			}
1008
		break;
1009
	case NETDEV_UNREGISTER:
J
Johannes Berg 已提交
1010 1011 1012 1013 1014
		/*
		 * NB: cannot take rdev->mtx here because this may be
		 * called within code protected by it when interfaces
		 * are removed with nl80211.
		 */
1015
		mutex_lock(&rdev->devlist_mtx);
1016 1017 1018 1019 1020 1021 1022
		/*
		 * It is possible to get NETDEV_UNREGISTER
		 * multiple times. To detect that, check
		 * that the interface is still on the list
		 * of registered interfaces, and only then
		 * remove and clean it up.
		 */
1023
		if (!list_empty(&wdev->list)) {
1024
			sysfs_remove_link(&dev->dev.kobj, "phy80211");
J
Johannes Berg 已提交
1025
			list_del_rcu(&wdev->list);
1026
			rdev->devlist_generation++;
1027
			cfg80211_mlme_purge_registrations(wdev);
J
Johannes Berg 已提交
1028
#ifdef CONFIG_CFG80211_WEXT
1029
			kfree(wdev->wext.keys);
J
Johannes Berg 已提交
1030
#endif
1031 1032
		}
		mutex_unlock(&rdev->devlist_mtx);
J
Johannes Berg 已提交
1033 1034 1035 1036 1037 1038 1039 1040
		/*
		 * synchronise (so that we won't find this netdev
		 * from other code any more) and then clear the list
		 * head so that the above code can safely check for
		 * !list_empty() to avoid double-cleanup.
		 */
		synchronize_rcu();
		INIT_LIST_HEAD(&wdev->list);
1041 1042 1043 1044 1045
		/*
		 * Ensure that all events have been processed and
		 * freed.
		 */
		cfg80211_process_wdev_events(wdev);
1046
		break;
J
Johannes Berg 已提交
1047
	case NETDEV_PRE_UP:
1048 1049
		if (!(wdev->wiphy->interface_modes & BIT(wdev->iftype)))
			return notifier_from_errno(-EOPNOTSUPP);
J
Johannes Berg 已提交
1050 1051
		if (rfkill_blocked(rdev->rfkill))
			return notifier_from_errno(-ERFKILL);
1052
		mutex_lock(&rdev->devlist_mtx);
1053
		ret = cfg80211_can_add_interface(rdev, wdev->iftype);
1054
		mutex_unlock(&rdev->devlist_mtx);
1055 1056
		if (ret)
			return notifier_from_errno(ret);
J
Johannes Berg 已提交
1057
		break;
1058 1059
	}

J
Johannes Berg 已提交
1060
	return NOTIFY_DONE;
1061 1062 1063 1064 1065 1066
}

static struct notifier_block cfg80211_netdev_notifier = {
	.notifier_call = cfg80211_netdev_notifier_call,
};

1067 1068 1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085
static void __net_exit cfg80211_pernet_exit(struct net *net)
{
	struct cfg80211_registered_device *rdev;

	rtnl_lock();
	mutex_lock(&cfg80211_mutex);
	list_for_each_entry(rdev, &cfg80211_rdev_list, list) {
		if (net_eq(wiphy_net(&rdev->wiphy), net))
			WARN_ON(cfg80211_switch_netns(rdev, &init_net));
	}
	mutex_unlock(&cfg80211_mutex);
	rtnl_unlock();
}

static struct pernet_operations cfg80211_pernet_ops = {
	.exit = cfg80211_pernet_exit,
};

static int __init cfg80211_init(void)
1086
{
1087 1088
	int err;

1089 1090 1091 1092
	err = register_pernet_device(&cfg80211_pernet_ops);
	if (err)
		goto out_fail_pernet;

1093
	err = wiphy_sysfs_init();
1094 1095 1096 1097 1098 1099 1100
	if (err)
		goto out_fail_sysfs;

	err = register_netdevice_notifier(&cfg80211_netdev_notifier);
	if (err)
		goto out_fail_notifier;

1101 1102 1103 1104
	err = nl80211_init();
	if (err)
		goto out_fail_nl80211;

1105 1106
	ieee80211_debugfs_dir = debugfs_create_dir("ieee80211", NULL);

1107 1108 1109 1110
	err = regulatory_init();
	if (err)
		goto out_fail_reg;

1111
	cfg80211_wq = create_singlethread_workqueue("cfg80211");
1112 1113
	if (!cfg80211_wq) {
		err = -ENOMEM;
1114
		goto out_fail_wq;
1115
	}
1116

1117 1118
	return 0;

1119 1120
out_fail_wq:
	regulatory_exit();
1121 1122
out_fail_reg:
	debugfs_remove(ieee80211_debugfs_dir);
1123 1124
out_fail_nl80211:
	unregister_netdevice_notifier(&cfg80211_netdev_notifier);
1125 1126 1127
out_fail_notifier:
	wiphy_sysfs_exit();
out_fail_sysfs:
1128 1129
	unregister_pernet_device(&cfg80211_pernet_ops);
out_fail_pernet:
1130 1131
	return err;
}
1132
subsys_initcall(cfg80211_init);
1133

1134
static void __exit cfg80211_exit(void)
1135 1136
{
	debugfs_remove(ieee80211_debugfs_dir);
1137
	nl80211_exit();
1138 1139
	unregister_netdevice_notifier(&cfg80211_netdev_notifier);
	wiphy_sysfs_exit();
1140
	regulatory_exit();
1141
	unregister_pernet_device(&cfg80211_pernet_ops);
1142
	destroy_workqueue(cfg80211_wq);
1143 1144
}
module_exit(cfg80211_exit);