2 * hostapd / VLAN initialization - full dynamic VLAN
3 * Copyright 2003, Instant802 Networks, Inc.
4 * Copyright 2005-2006, Devicescape Software, Inc.
5 * Copyright (c) 2009, Jouni Malinen <j@w1.fi>
7 * This software may be distributed under the terms of the BSD license.
8 * See README for more details.
11 #include "utils/includes.h"
13 /* Avoid conflicts due to NetBSD net/if.h if_type define with driver.h */
15 #include <sys/ioctl.h>
17 #include "utils/common.h"
18 #include "drivers/priv_netlink.h"
19 #include "common/linux_bridge.h"
20 #include "common/linux_vlan.h"
21 #include "utils/eloop.h"
23 #include "ap_config.h"
24 #include "ap_drv_ops.h"
26 #include "vlan_init.h"
27 #include "vlan_util.h"
30 struct full_dynamic_vlan {
31 int s; /* socket on which to listen for new/removed interfaces. */
34 #define DVLAN_CLEAN_BR 0x1
35 #define DVLAN_CLEAN_VLAN 0x2
36 #define DVLAN_CLEAN_VLAN_PORT 0x4
38 struct dynamic_iface {
39 char ifname[IFNAMSIZ + 1];
42 struct dynamic_iface *next;
46 /* Increment ref counter for ifname and add clean flag.
47 * If not in list, add it only if some flags are given.
49 static void dyn_iface_get(struct hostapd_data *hapd, const char *ifname,
52 struct dynamic_iface *next, **dynamic_ifaces;
53 struct hapd_interfaces *interfaces;
55 interfaces = hapd->iface->interfaces;
56 dynamic_ifaces = &interfaces->vlan_priv;
58 for (next = *dynamic_ifaces; next; next = next->next) {
59 if (os_strcmp(ifname, next->ifname) == 0)
72 next = os_zalloc(sizeof(*next));
75 os_strlcpy(next->ifname, ifname, sizeof(next->ifname));
78 next->next = *dynamic_ifaces;
79 *dynamic_ifaces = next;
83 /* Decrement reference counter for given ifname.
84 * Return clean flag iff reference counter was decreased to zero, else zero
86 static int dyn_iface_put(struct hostapd_data *hapd, const char *ifname)
88 struct dynamic_iface *next, *prev = NULL, **dynamic_ifaces;
89 struct hapd_interfaces *interfaces;
92 interfaces = hapd->iface->interfaces;
93 dynamic_ifaces = &interfaces->vlan_priv;
95 for (next = *dynamic_ifaces; next; next = next->next) {
96 if (os_strcmp(ifname, next->ifname) == 0)
109 prev->next = next->next;
111 *dynamic_ifaces = next->next;
119 static int ifconfig_down(const char *if_name)
121 wpa_printf(MSG_DEBUG, "VLAN: Set interface %s down", if_name);
122 return ifconfig_helper(if_name, 0);
126 /* This value should be 256 ONLY. If it is something else, then hostapd
127 * might crash!, as this value has been hard-coded in 2.4.x kernel
130 #define MAX_BR_PORTS 256
132 static int br_delif(const char *br_name, const char *if_name)
136 unsigned long args[2];
139 wpa_printf(MSG_DEBUG, "VLAN: br_delif(%s, %s)", br_name, if_name);
140 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
141 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
142 "failed: %s", __func__, strerror(errno));
146 if_index = if_nametoindex(if_name);
149 wpa_printf(MSG_ERROR, "VLAN: %s: Failure determining "
150 "interface index for '%s'",
156 args[0] = BRCTL_DEL_IF;
159 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
160 ifr.ifr_data = (void *) args;
162 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0 && errno != EINVAL) {
163 /* No error if interface already removed. */
164 wpa_printf(MSG_ERROR, "VLAN: %s: ioctl[SIOCDEVPRIVATE,"
165 "BRCTL_DEL_IF] failed for br_name=%s if_name=%s: "
166 "%s", __func__, br_name, if_name, strerror(errno));
177 Add interface 'if_name' to the bridge 'br_name'
180 returns 1 if the interface is already part of the bridge
183 static int br_addif(const char *br_name, const char *if_name)
187 unsigned long args[2];
190 wpa_printf(MSG_DEBUG, "VLAN: br_addif(%s, %s)", br_name, if_name);
191 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
192 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
193 "failed: %s", __func__, strerror(errno));
197 if_index = if_nametoindex(if_name);
200 wpa_printf(MSG_ERROR, "VLAN: %s: Failure determining "
201 "interface index for '%s'",
207 args[0] = BRCTL_ADD_IF;
210 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
211 ifr.ifr_data = (void *) args;
213 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
214 if (errno == EBUSY) {
215 /* The interface is already added. */
220 wpa_printf(MSG_ERROR, "VLAN: %s: ioctl[SIOCDEVPRIVATE,"
221 "BRCTL_ADD_IF] failed for br_name=%s if_name=%s: "
222 "%s", __func__, br_name, if_name, strerror(errno));
232 static int br_delbr(const char *br_name)
235 unsigned long arg[2];
237 wpa_printf(MSG_DEBUG, "VLAN: br_delbr(%s)", br_name);
238 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
239 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
240 "failed: %s", __func__, strerror(errno));
244 arg[0] = BRCTL_DEL_BRIDGE;
245 arg[1] = (unsigned long) br_name;
247 if (ioctl(fd, SIOCGIFBR, arg) < 0 && errno != ENXIO) {
248 /* No error if bridge already removed. */
249 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_DEL_BRIDGE failed for "
250 "%s: %s", __func__, br_name, strerror(errno));
261 Add a bridge with the name 'br_name'.
264 returns 1 if the bridge already exists
267 static int br_addbr(const char *br_name)
270 unsigned long arg[4];
273 wpa_printf(MSG_DEBUG, "VLAN: br_addbr(%s)", br_name);
274 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
275 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
276 "failed: %s", __func__, strerror(errno));
280 arg[0] = BRCTL_ADD_BRIDGE;
281 arg[1] = (unsigned long) br_name;
283 if (ioctl(fd, SIOCGIFBR, arg) < 0) {
284 if (errno == EEXIST) {
285 /* The bridge is already added. */
289 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_ADD_BRIDGE "
291 __func__, br_name, strerror(errno));
297 /* Decrease forwarding delay to avoid EAPOL timeouts. */
298 os_memset(&ifr, 0, sizeof(ifr));
299 os_strlcpy(ifr.ifr_name, br_name, IFNAMSIZ);
300 arg[0] = BRCTL_SET_BRIDGE_FORWARD_DELAY;
304 ifr.ifr_data = (char *) &arg;
305 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
306 wpa_printf(MSG_ERROR, "VLAN: %s: "
307 "BRCTL_SET_BRIDGE_FORWARD_DELAY (1 sec) failed for "
308 "%s: %s", __func__, br_name, strerror(errno));
309 /* Continue anyway */
317 static int br_getnumports(const char *br_name)
322 unsigned long arg[4];
323 int ifindices[MAX_BR_PORTS];
326 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
327 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
328 "failed: %s", __func__, strerror(errno));
332 arg[0] = BRCTL_GET_PORT_LIST;
333 arg[1] = (unsigned long) ifindices;
334 arg[2] = MAX_BR_PORTS;
337 os_memset(ifindices, 0, sizeof(ifindices));
338 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
339 ifr.ifr_data = (void *) arg;
341 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
342 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_GET_PORT_LIST "
344 __func__, br_name, strerror(errno));
349 for (i = 1; i < MAX_BR_PORTS; i++) {
350 if (ifindices[i] > 0) {
360 static void vlan_newlink_tagged(int vlan_naming, const char *tagged_interface,
361 const char *br_name, int vid,
362 struct hostapd_data *hapd)
364 char vlan_ifname[IFNAMSIZ];
367 if (vlan_naming == DYNAMIC_VLAN_NAMING_WITH_DEVICE)
368 os_snprintf(vlan_ifname, sizeof(vlan_ifname), "%s.%d",
369 tagged_interface, vid);
371 os_snprintf(vlan_ifname, sizeof(vlan_ifname), "vlan%d", vid);
374 ifconfig_up(tagged_interface);
375 if (!vlan_add(tagged_interface, vid, vlan_ifname))
376 clean |= DVLAN_CLEAN_VLAN;
378 if (!br_addif(br_name, vlan_ifname))
379 clean |= DVLAN_CLEAN_VLAN_PORT;
381 dyn_iface_get(hapd, vlan_ifname, clean);
383 ifconfig_up(vlan_ifname);
387 static void vlan_bridge_name(char *br_name, struct hostapd_data *hapd, int vid)
389 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
391 if (hapd->conf->vlan_bridge[0]) {
392 os_snprintf(br_name, IFNAMSIZ, "%s%d",
393 hapd->conf->vlan_bridge, vid);
394 } else if (tagged_interface) {
395 os_snprintf(br_name, IFNAMSIZ, "br%s.%d",
396 tagged_interface, vid);
398 os_snprintf(br_name, IFNAMSIZ, "brvlan%d", vid);
403 static void vlan_get_bridge(const char *br_name, struct hostapd_data *hapd,
406 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
407 int vlan_naming = hapd->conf->ssid.vlan_naming;
409 dyn_iface_get(hapd, br_name, br_addbr(br_name) ? 0 : DVLAN_CLEAN_BR);
411 ifconfig_up(br_name);
413 if (tagged_interface)
414 vlan_newlink_tagged(vlan_naming, tagged_interface, br_name,
419 void vlan_newlink(const char *ifname, struct hostapd_data *hapd)
421 char br_name[IFNAMSIZ];
422 struct hostapd_vlan *vlan;
423 int untagged, *tagged, i, notempty;
425 wpa_printf(MSG_DEBUG, "VLAN: vlan_newlink(%s)", ifname);
427 for (vlan = hapd->conf->vlan; vlan; vlan = vlan->next) {
428 if (vlan->configured ||
429 os_strcmp(ifname, vlan->ifname) != 0)
436 vlan->configured = 1;
438 notempty = vlan->vlan_desc.notempty;
439 untagged = vlan->vlan_desc.untagged;
440 tagged = vlan->vlan_desc.tagged;
444 if (hapd->conf->bridge[0] &&
445 !br_addif(hapd->conf->bridge, ifname))
446 vlan->clean |= DVLAN_CLEAN_WLAN_PORT;
447 } else if (untagged > 0 && untagged <= MAX_VLAN_ID) {
448 vlan_bridge_name(br_name, hapd, untagged);
450 vlan_get_bridge(br_name, hapd, untagged);
452 if (!br_addif(br_name, ifname))
453 vlan->clean |= DVLAN_CLEAN_WLAN_PORT;
456 for (i = 0; i < MAX_NUM_TAGGED_VLAN && tagged[i]; i++) {
457 if (tagged[i] == untagged ||
458 tagged[i] <= 0 || tagged[i] > MAX_VLAN_ID ||
459 (i > 0 && tagged[i] == tagged[i - 1]))
461 vlan_bridge_name(br_name, hapd, tagged[i]);
462 vlan_get_bridge(br_name, hapd, tagged[i]);
463 vlan_newlink_tagged(DYNAMIC_VLAN_NAMING_WITH_DEVICE,
464 ifname, br_name, tagged[i], hapd);
471 static void vlan_dellink_tagged(int vlan_naming, const char *tagged_interface,
472 const char *br_name, int vid,
473 struct hostapd_data *hapd)
475 char vlan_ifname[IFNAMSIZ];
478 if (vlan_naming == DYNAMIC_VLAN_NAMING_WITH_DEVICE)
479 os_snprintf(vlan_ifname, sizeof(vlan_ifname), "%s.%d",
480 tagged_interface, vid);
482 os_snprintf(vlan_ifname, sizeof(vlan_ifname), "vlan%d", vid);
484 clean = dyn_iface_put(hapd, vlan_ifname);
486 if (clean & DVLAN_CLEAN_VLAN_PORT)
487 br_delif(br_name, vlan_ifname);
489 if (clean & DVLAN_CLEAN_VLAN) {
490 ifconfig_down(vlan_ifname);
491 vlan_rem(vlan_ifname);
496 static void vlan_put_bridge(const char *br_name, struct hostapd_data *hapd,
500 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
501 int vlan_naming = hapd->conf->ssid.vlan_naming;
503 if (tagged_interface)
504 vlan_dellink_tagged(vlan_naming, tagged_interface, br_name,
507 clean = dyn_iface_put(hapd, br_name);
508 if ((clean & DVLAN_CLEAN_BR) && br_getnumports(br_name) == 0) {
509 ifconfig_down(br_name);
515 void vlan_dellink(const char *ifname, struct hostapd_data *hapd)
517 struct hostapd_vlan *first, *prev, *vlan = hapd->conf->vlan;
519 wpa_printf(MSG_DEBUG, "VLAN: vlan_dellink(%s)", ifname);
524 if (os_strcmp(ifname, vlan->ifname) != 0) {
534 if (vlan->configured) {
535 int notempty = vlan->vlan_desc.notempty;
536 int untagged = vlan->vlan_desc.untagged;
537 int *tagged = vlan->vlan_desc.tagged;
538 char br_name[IFNAMSIZ];
541 for (i = 0; i < MAX_NUM_TAGGED_VLAN && tagged[i]; i++) {
542 if (tagged[i] == untagged ||
543 tagged[i] <= 0 || tagged[i] > MAX_VLAN_ID ||
544 (i > 0 && tagged[i] == tagged[i - 1]))
546 vlan_bridge_name(br_name, hapd, tagged[i]);
547 vlan_dellink_tagged(DYNAMIC_VLAN_NAMING_WITH_DEVICE,
548 ifname, br_name, tagged[i], hapd);
549 vlan_put_bridge(br_name, hapd, tagged[i]);
554 if (hapd->conf->bridge[0] &&
555 (vlan->clean & DVLAN_CLEAN_WLAN_PORT))
556 br_delif(hapd->conf->bridge, ifname);
557 } else if (untagged > 0 && untagged <= MAX_VLAN_ID) {
558 vlan_bridge_name(br_name, hapd, untagged);
560 if (vlan->clean & DVLAN_CLEAN_WLAN_PORT)
561 br_delif(br_name, vlan->ifname);
563 vlan_put_bridge(br_name, hapd, untagged);
568 * Ensure this VLAN interface is actually removed even if
569 * NEWLINK message is only received later.
571 if (if_nametoindex(vlan->ifname) && vlan_if_remove(hapd, vlan))
572 wpa_printf(MSG_ERROR,
573 "VLAN: Could not remove VLAN iface: %s: %s",
574 vlan->ifname, strerror(errno));
577 hapd->conf->vlan = vlan->next;
579 prev->next = vlan->next;
586 vlan_read_ifnames(struct nlmsghdr *h, size_t len, int del,
587 struct hostapd_data *hapd)
589 struct ifinfomsg *ifi;
590 int attrlen, nlmsg_len, rta_len;
592 char ifname[IFNAMSIZ + 1];
594 if (len < sizeof(*ifi))
599 nlmsg_len = NLMSG_ALIGN(sizeof(struct ifinfomsg));
601 attrlen = h->nlmsg_len - nlmsg_len;
605 attr = (struct rtattr *) (((char *) ifi) + nlmsg_len);
607 os_memset(ifname, 0, sizeof(ifname));
608 rta_len = RTA_ALIGN(sizeof(struct rtattr));
609 while (RTA_OK(attr, attrlen)) {
610 if (attr->rta_type == IFLA_IFNAME) {
611 int n = attr->rta_len - rta_len;
615 if ((size_t) n >= sizeof(ifname))
616 n = sizeof(ifname) - 1;
617 os_memcpy(ifname, ((char *) attr) + rta_len, n);
621 attr = RTA_NEXT(attr, attrlen);
626 if (del && if_nametoindex(ifname)) {
627 /* interface still exists, race condition ->
628 * iface has just been recreated */
632 wpa_printf(MSG_DEBUG,
633 "VLAN: RTM_%sLINK: ifi_index=%d ifname=%s ifi_family=%d ifi_flags=0x%x (%s%s%s%s)",
635 ifi->ifi_index, ifname, ifi->ifi_family, ifi->ifi_flags,
636 (ifi->ifi_flags & IFF_UP) ? "[UP]" : "",
637 (ifi->ifi_flags & IFF_RUNNING) ? "[RUNNING]" : "",
638 (ifi->ifi_flags & IFF_LOWER_UP) ? "[LOWER_UP]" : "",
639 (ifi->ifi_flags & IFF_DORMANT) ? "[DORMANT]" : "");
642 vlan_dellink(ifname, hapd);
644 vlan_newlink(ifname, hapd);
648 static void vlan_event_receive(int sock, void *eloop_ctx, void *sock_ctx)
652 struct sockaddr_nl from;
655 struct hostapd_data *hapd = eloop_ctx;
657 fromlen = sizeof(from);
658 left = recvfrom(sock, buf, sizeof(buf), MSG_DONTWAIT,
659 (struct sockaddr *) &from, &fromlen);
661 if (errno != EINTR && errno != EAGAIN)
662 wpa_printf(MSG_ERROR, "VLAN: %s: recvfrom failed: %s",
663 __func__, strerror(errno));
667 h = (struct nlmsghdr *) buf;
668 while (NLMSG_OK(h, left)) {
672 plen = len - sizeof(*h);
673 if (len > left || plen < 0) {
674 wpa_printf(MSG_DEBUG, "VLAN: Malformed netlink "
675 "message: len=%d left=%d plen=%d",
680 switch (h->nlmsg_type) {
682 vlan_read_ifnames(h, plen, 0, hapd);
685 vlan_read_ifnames(h, plen, 1, hapd);
689 h = NLMSG_NEXT(h, left);
693 wpa_printf(MSG_DEBUG, "VLAN: %s: %d extra bytes in the end of "
694 "netlink message", __func__, left);
699 struct full_dynamic_vlan *
700 full_dynamic_vlan_init(struct hostapd_data *hapd)
702 struct sockaddr_nl local;
703 struct full_dynamic_vlan *priv;
705 priv = os_zalloc(sizeof(*priv));
709 vlan_set_name_type(hapd->conf->ssid.vlan_naming ==
710 DYNAMIC_VLAN_NAMING_WITH_DEVICE ?
711 VLAN_NAME_TYPE_RAW_PLUS_VID_NO_PAD :
712 VLAN_NAME_TYPE_PLUS_VID_NO_PAD);
714 priv->s = socket(PF_NETLINK, SOCK_RAW, NETLINK_ROUTE);
716 wpa_printf(MSG_ERROR, "VLAN: %s: socket(PF_NETLINK,SOCK_RAW,"
717 "NETLINK_ROUTE) failed: %s",
718 __func__, strerror(errno));
723 os_memset(&local, 0, sizeof(local));
724 local.nl_family = AF_NETLINK;
725 local.nl_groups = RTMGRP_LINK;
726 if (bind(priv->s, (struct sockaddr *) &local, sizeof(local)) < 0) {
727 wpa_printf(MSG_ERROR, "VLAN: %s: bind(netlink) failed: %s",
728 __func__, strerror(errno));
734 if (eloop_register_read_sock(priv->s, vlan_event_receive, hapd, NULL))
745 void full_dynamic_vlan_deinit(struct full_dynamic_vlan *priv)
749 eloop_unregister_read_sock(priv->s);