driver_test: Merge drv->hapd into drv->ctx
[mech_eap.orig] / src / drivers / driver_test.c
1 /*
2  * Testing driver interface for a simulated network driver
3  * Copyright (c) 2004-2009, Jouni Malinen <j@w1.fi>
4  *
5  * This program is free software; you can redistribute it and/or modify
6  * it under the terms of the GNU General Public License version 2 as
7  * published by the Free Software Foundation.
8  *
9  * Alternatively, this software may be distributed under the terms of BSD
10  * license.
11  *
12  * See README and COPYING for more details.
13  */
14
15 /* Make sure we get winsock2.h for Windows build to get sockaddr_storage */
16 #include "build_config.h"
17 #ifdef CONFIG_NATIVE_WINDOWS
18 #include <winsock2.h>
19 #endif /* CONFIG_NATIVE_WINDOWS */
20
21 #include "includes.h"
22
23 #ifndef CONFIG_NATIVE_WINDOWS
24 #include <sys/un.h>
25 #include <dirent.h>
26 #include <sys/stat.h>
27 #define DRIVER_TEST_UNIX
28 #endif /* CONFIG_NATIVE_WINDOWS */
29
30 #include "common.h"
31 #include "driver.h"
32 #include "l2_packet/l2_packet.h"
33 #include "eloop.h"
34 #include "crypto/sha1.h"
35 #include "common/ieee802_11_defs.h"
36
37
38 struct test_client_socket {
39         struct test_client_socket *next;
40         u8 addr[ETH_ALEN];
41         struct sockaddr_un un;
42         socklen_t unlen;
43         struct test_driver_bss *bss;
44 };
45
46 struct test_driver_bss {
47         struct test_driver_bss *next;
48         void *bss_ctx;
49         char ifname[IFNAMSIZ + 1];
50         u8 bssid[ETH_ALEN];
51         u8 *ie;
52         size_t ielen;
53         u8 *wps_beacon_ie;
54         size_t wps_beacon_ie_len;
55         u8 *wps_probe_resp_ie;
56         size_t wps_probe_resp_ie_len;
57         u8 ssid[32];
58         size_t ssid_len;
59         int privacy;
60 };
61
62 struct wpa_driver_test_global {
63         int dummy;
64 };
65
66 struct wpa_driver_test_data {
67         struct wpa_driver_test_global *global;
68         void *ctx;
69         u8 own_addr[ETH_ALEN];
70         int test_socket;
71 #ifdef DRIVER_TEST_UNIX
72         struct sockaddr_un hostapd_addr;
73 #endif /* DRIVER_TEST_UNIX */
74         int hostapd_addr_set;
75         struct sockaddr_in hostapd_addr_udp;
76         int hostapd_addr_udp_set;
77         char *own_socket_path;
78         char *test_dir;
79         u8 bssid[ETH_ALEN];
80         u8 ssid[32];
81         size_t ssid_len;
82 #define MAX_SCAN_RESULTS 30
83         struct wpa_scan_res *scanres[MAX_SCAN_RESULTS];
84         size_t num_scanres;
85         int use_associnfo;
86         u8 assoc_wpa_ie[80];
87         size_t assoc_wpa_ie_len;
88         int use_mlme;
89         int associated;
90         u8 *probe_req_ie;
91         size_t probe_req_ie_len;
92         int ibss;
93         int privacy;
94         int ap;
95
96         struct test_client_socket *cli;
97         struct test_driver_bss *bss;
98         int udp_port;
99 };
100
101
102 static void wpa_driver_test_deinit(void *priv);
103 static int wpa_driver_test_attach(struct wpa_driver_test_data *drv,
104                                   const char *dir, int ap);
105 static void wpa_driver_test_close_test_socket(
106         struct wpa_driver_test_data *drv);
107
108 #ifdef CONFIG_AP
109 void ap_mgmt_rx(void *ctx, u8 *buf, size_t len, u16 stype,
110                 struct hostapd_frame_info *fi);
111 void ap_mgmt_tx_cb(void *ctx, u8 *buf, size_t len, u16 stype, int ok);
112
113 #else /* CONFIG_AP */
114 #ifndef HOSTAPD
115 static inline void ap_mgmt_rx(void *ctx, u8 *buf, size_t len, u16 stype,
116                               struct hostapd_frame_info *fi)
117 {
118 }
119
120 static inline void ap_mgmt_tx_cb(void *ctx, u8 *buf, size_t len, u16 stype,
121                                  int ok)
122 {
123 }
124 #endif /* HOSTAPD */
125 #endif /* CONFIG_AP */
126
127
128 static void test_driver_free_bss(struct test_driver_bss *bss)
129 {
130         free(bss->ie);
131         free(bss->wps_beacon_ie);
132         free(bss->wps_probe_resp_ie);
133         free(bss);
134 }
135
136
137 static void test_driver_free_bsses(struct wpa_driver_test_data *drv)
138 {
139         struct test_driver_bss *bss, *prev_bss;
140
141         bss = drv->bss;
142         while (bss) {
143                 prev_bss = bss;
144                 bss = bss->next;
145                 test_driver_free_bss(prev_bss);
146         }
147
148         drv->bss = NULL;
149 }
150
151
152 static struct test_client_socket *
153 test_driver_get_cli(struct wpa_driver_test_data *drv, struct sockaddr_un *from,
154                     socklen_t fromlen)
155 {
156         struct test_client_socket *cli = drv->cli;
157
158         while (cli) {
159                 if (cli->unlen == fromlen &&
160                     strncmp(cli->un.sun_path, from->sun_path,
161                             fromlen - sizeof(cli->un.sun_family)) == 0)
162                         return cli;
163                 cli = cli->next;
164         }
165
166         return NULL;
167 }
168
169
170 static int test_driver_send_eapol(void *priv, const u8 *addr, const u8 *data,
171                                   size_t data_len, int encrypt,
172                                   const u8 *own_addr)
173 {
174         struct wpa_driver_test_data *drv = priv;
175         struct test_client_socket *cli;
176         struct msghdr msg;
177         struct iovec io[3];
178         struct l2_ethhdr eth;
179
180         if (drv->test_socket < 0)
181                 return -1;
182
183         cli = drv->cli;
184         while (cli) {
185                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
186                         break;
187                 cli = cli->next;
188         }
189
190         if (!cli) {
191                 wpa_printf(MSG_DEBUG, "%s: no destination client entry",
192                            __func__);
193                 return -1;
194         }
195
196         memcpy(eth.h_dest, addr, ETH_ALEN);
197         memcpy(eth.h_source, own_addr, ETH_ALEN);
198         eth.h_proto = host_to_be16(ETH_P_EAPOL);
199
200         io[0].iov_base = "EAPOL ";
201         io[0].iov_len = 6;
202         io[1].iov_base = &eth;
203         io[1].iov_len = sizeof(eth);
204         io[2].iov_base = (u8 *) data;
205         io[2].iov_len = data_len;
206
207         memset(&msg, 0, sizeof(msg));
208         msg.msg_iov = io;
209         msg.msg_iovlen = 3;
210         msg.msg_name = &cli->un;
211         msg.msg_namelen = cli->unlen;
212         return sendmsg(drv->test_socket, &msg, 0);
213 }
214
215
216 static int test_driver_send_ether(void *priv, const u8 *dst, const u8 *src,
217                                   u16 proto, const u8 *data, size_t data_len)
218 {
219         struct wpa_driver_test_data *drv = priv;
220         struct msghdr msg;
221         struct iovec io[3];
222         struct l2_ethhdr eth;
223         char desttxt[30];
224         struct sockaddr_un addr;
225         struct dirent *dent;
226         DIR *dir;
227         int ret = 0, broadcast = 0, count = 0;
228
229         if (drv->test_socket < 0 || drv->test_dir == NULL) {
230                 wpa_printf(MSG_DEBUG, "%s: invalid parameters (sock=%d "
231                            "test_dir=%p)",
232                            __func__, drv->test_socket, drv->test_dir);
233                 return -1;
234         }
235
236         broadcast = memcmp(dst, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) == 0;
237         snprintf(desttxt, sizeof(desttxt), MACSTR, MAC2STR(dst));
238
239         memcpy(eth.h_dest, dst, ETH_ALEN);
240         memcpy(eth.h_source, src, ETH_ALEN);
241         eth.h_proto = host_to_be16(proto);
242
243         io[0].iov_base = "ETHER ";
244         io[0].iov_len = 6;
245         io[1].iov_base = &eth;
246         io[1].iov_len = sizeof(eth);
247         io[2].iov_base = (u8 *) data;
248         io[2].iov_len = data_len;
249
250         memset(&msg, 0, sizeof(msg));
251         msg.msg_iov = io;
252         msg.msg_iovlen = 3;
253
254         dir = opendir(drv->test_dir);
255         if (dir == NULL) {
256                 perror("test_driver: opendir");
257                 return -1;
258         }
259         while ((dent = readdir(dir))) {
260 #ifdef _DIRENT_HAVE_D_TYPE
261                 /* Skip the file if it is not a socket. Also accept
262                  * DT_UNKNOWN (0) in case the C library or underlying file
263                  * system does not support d_type. */
264                 if (dent->d_type != DT_SOCK && dent->d_type != DT_UNKNOWN)
265                         continue;
266 #endif /* _DIRENT_HAVE_D_TYPE */
267                 if (strcmp(dent->d_name, ".") == 0 ||
268                     strcmp(dent->d_name, "..") == 0)
269                         continue;
270
271                 memset(&addr, 0, sizeof(addr));
272                 addr.sun_family = AF_UNIX;
273                 snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
274                          drv->test_dir, dent->d_name);
275
276                 if (strcmp(addr.sun_path, drv->own_socket_path) == 0)
277                         continue;
278                 if (!broadcast && strstr(dent->d_name, desttxt) == NULL)
279                         continue;
280
281                 wpa_printf(MSG_DEBUG, "%s: Send ether frame to %s",
282                            __func__, dent->d_name);
283
284                 msg.msg_name = &addr;
285                 msg.msg_namelen = sizeof(addr);
286                 ret = sendmsg(drv->test_socket, &msg, 0);
287                 if (ret < 0)
288                         perror("driver_test: sendmsg");
289                 count++;
290         }
291         closedir(dir);
292
293         if (!broadcast && count == 0) {
294                 wpa_printf(MSG_DEBUG, "%s: Destination " MACSTR " not found",
295                            __func__, MAC2STR(dst));
296                 return -1;
297         }
298
299         return ret;
300 }
301
302
303 static int wpa_driver_test_send_mlme(void *priv, const u8 *data,
304                                      size_t data_len)
305 {
306         struct wpa_driver_test_data *drv = priv;
307         struct msghdr msg;
308         struct iovec io[2];
309         const u8 *dest;
310         struct sockaddr_un addr;
311         struct dirent *dent;
312         DIR *dir;
313         int broadcast;
314         int ret = 0;
315         struct ieee80211_hdr *hdr;
316         u16 fc;
317 #ifdef HOSTAPD
318         char desttxt[30];
319 #endif /* HOSTAPD */
320
321         wpa_hexdump(MSG_MSGDUMP, "test_send_mlme", data, data_len);
322         if (drv->test_socket < 0 || data_len < 10) {
323                 wpa_printf(MSG_DEBUG, "%s: invalid parameters (sock=%d len=%lu"
324                            " test_dir=%p)",
325                            __func__, drv->test_socket,
326                            (unsigned long) data_len,
327                            drv->test_dir);
328                 return -1;
329         }
330
331         dest = data + 4;
332         broadcast = os_memcmp(dest, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) == 0;
333
334 #ifdef HOSTAPD
335         snprintf(desttxt, sizeof(desttxt), MACSTR, MAC2STR(dest));
336 #endif /* HOSTAPD */
337
338         io[0].iov_base = "MLME ";
339         io[0].iov_len = 5;
340         io[1].iov_base = (void *) data;
341         io[1].iov_len = data_len;
342
343         os_memset(&msg, 0, sizeof(msg));
344         msg.msg_iov = io;
345         msg.msg_iovlen = 2;
346
347 #ifdef HOSTAPD
348         if (drv->test_dir == NULL) {
349                 wpa_printf(MSG_DEBUG, "%s: test_dir == NULL", __func__);
350                 return -1;
351         }
352
353         dir = opendir(drv->test_dir);
354         if (dir == NULL) {
355                 perror("test_driver: opendir");
356                 return -1;
357         }
358         while ((dent = readdir(dir))) {
359 #ifdef _DIRENT_HAVE_D_TYPE
360                 /* Skip the file if it is not a socket. Also accept
361                  * DT_UNKNOWN (0) in case the C library or underlying file
362                  * system does not support d_type. */
363                 if (dent->d_type != DT_SOCK && dent->d_type != DT_UNKNOWN)
364                         continue;
365 #endif /* _DIRENT_HAVE_D_TYPE */
366                 if (os_strcmp(dent->d_name, ".") == 0 ||
367                     os_strcmp(dent->d_name, "..") == 0)
368                         continue;
369
370                 os_memset(&addr, 0, sizeof(addr));
371                 addr.sun_family = AF_UNIX;
372                 os_snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
373                             drv->test_dir, dent->d_name);
374
375                 if (os_strcmp(addr.sun_path, drv->own_socket_path) == 0)
376                         continue;
377                 if (!broadcast && os_strstr(dent->d_name, desttxt) == NULL)
378                         continue;
379
380                 wpa_printf(MSG_DEBUG, "%s: Send management frame to %s",
381                            __func__, dent->d_name);
382
383                 msg.msg_name = &addr;
384                 msg.msg_namelen = sizeof(addr);
385                 ret = sendmsg(drv->test_socket, &msg, 0);
386                 if (ret < 0)
387                         perror("driver_test: sendmsg(test_socket)");
388         }
389         closedir(dir);
390 #else /* HOSTAPD */
391
392         if (os_memcmp(dest, drv->bssid, ETH_ALEN) == 0 ||
393             drv->test_dir == NULL) {
394                 if (drv->hostapd_addr_udp_set) {
395                         msg.msg_name = &drv->hostapd_addr_udp;
396                         msg.msg_namelen = sizeof(drv->hostapd_addr_udp);
397                 } else {
398 #ifdef DRIVER_TEST_UNIX
399                         msg.msg_name = &drv->hostapd_addr;
400                         msg.msg_namelen = sizeof(drv->hostapd_addr);
401 #endif /* DRIVER_TEST_UNIX */
402                 }
403         } else if (broadcast) {
404                 dir = opendir(drv->test_dir);
405                 if (dir == NULL)
406                         return -1;
407                 while ((dent = readdir(dir))) {
408 #ifdef _DIRENT_HAVE_D_TYPE
409                         /* Skip the file if it is not a socket.
410                          * Also accept DT_UNKNOWN (0) in case
411                          * the C library or underlying file
412                          * system does not support d_type. */
413                         if (dent->d_type != DT_SOCK &&
414                             dent->d_type != DT_UNKNOWN)
415                                 continue;
416 #endif /* _DIRENT_HAVE_D_TYPE */
417                         if (os_strcmp(dent->d_name, ".") == 0 ||
418                             os_strcmp(dent->d_name, "..") == 0)
419                                 continue;
420                         wpa_printf(MSG_DEBUG, "%s: Send broadcast MLME to %s",
421                                    __func__, dent->d_name);
422                         os_memset(&addr, 0, sizeof(addr));
423                         addr.sun_family = AF_UNIX;
424                         os_snprintf(addr.sun_path, sizeof(addr.sun_path),
425                                     "%s/%s", drv->test_dir, dent->d_name);
426
427                         msg.msg_name = &addr;
428                         msg.msg_namelen = sizeof(addr);
429
430                         ret = sendmsg(drv->test_socket, &msg, 0);
431                         if (ret < 0)
432                                 perror("driver_test: sendmsg(test_socket)");
433                 }
434                 closedir(dir);
435                 return ret;
436         } else {
437                 struct stat st;
438                 os_memset(&addr, 0, sizeof(addr));
439                 addr.sun_family = AF_UNIX;
440                 os_snprintf(addr.sun_path, sizeof(addr.sun_path),
441                             "%s/AP-" MACSTR, drv->test_dir, MAC2STR(dest));
442                 if (stat(addr.sun_path, &st) < 0) {
443                         os_snprintf(addr.sun_path, sizeof(addr.sun_path),
444                                     "%s/STA-" MACSTR,
445                                     drv->test_dir, MAC2STR(dest));
446                 }
447                 msg.msg_name = &addr;
448                 msg.msg_namelen = sizeof(addr);
449         }
450
451         if (sendmsg(drv->test_socket, &msg, 0) < 0) {
452                 perror("sendmsg(test_socket)");
453                 return -1;
454         }
455 #endif /* HOSTAPD */
456
457         hdr = (struct ieee80211_hdr *) data;
458         fc = le_to_host16(hdr->frame_control);
459 #ifdef HOSTAPD
460         hostapd_mgmt_tx_cb(drv->ctx, (u8 *) data, data_len,
461                            WLAN_FC_GET_STYPE(fc), ret >= 0);
462 #else /* HOSTAPD */
463         if (drv->ap) {
464                 ap_mgmt_tx_cb(drv->ctx, (u8 *) data, data_len,
465                               WLAN_FC_GET_STYPE(fc), ret >= 0);
466         }
467 #endif /* HOSTAPD */
468
469         return ret;
470 }
471
472
473 static void test_driver_scan(struct wpa_driver_test_data *drv,
474                              struct sockaddr_un *from, socklen_t fromlen,
475                              char *data)
476 {
477         char buf[512], *pos, *end;
478         int ret;
479         struct test_driver_bss *bss;
480         u8 sa[ETH_ALEN];
481         u8 ie[512];
482         size_t ielen;
483
484         /* data: optional [ ' ' | STA-addr | ' ' | IEs(hex) ] */
485
486         wpa_printf(MSG_DEBUG, "test_driver: SCAN");
487
488         if (*data) {
489                 if (*data != ' ' ||
490                     hwaddr_aton(data + 1, sa)) {
491                         wpa_printf(MSG_DEBUG, "test_driver: Unexpected SCAN "
492                                    "command format");
493                         return;
494                 }
495
496                 data += 18;
497                 while (*data == ' ')
498                         data++;
499                 ielen = os_strlen(data) / 2;
500                 if (ielen > sizeof(ie))
501                         ielen = sizeof(ie);
502                 if (hexstr2bin(data, ie, ielen) < 0)
503                         ielen = 0;
504
505                 wpa_printf(MSG_DEBUG, "test_driver: Scan from " MACSTR,
506                            MAC2STR(sa));
507                 wpa_hexdump(MSG_MSGDUMP, "test_driver: scan IEs", ie, ielen);
508
509 #ifdef HOSTAPD
510                 hostapd_probe_req_rx(drv->ctx, sa, ie, ielen);
511 #endif /* HOSTAPD */
512         }
513
514         for (bss = drv->bss; bss; bss = bss->next) {
515                 pos = buf;
516                 end = buf + sizeof(buf);
517
518                 /* reply: SCANRESP BSSID SSID IEs */
519                 ret = snprintf(pos, end - pos, "SCANRESP " MACSTR " ",
520                                MAC2STR(bss->bssid));
521                 if (ret < 0 || ret >= end - pos)
522                         return;
523                 pos += ret;
524                 pos += wpa_snprintf_hex(pos, end - pos,
525                                         bss->ssid, bss->ssid_len);
526                 ret = snprintf(pos, end - pos, " ");
527                 if (ret < 0 || ret >= end - pos)
528                         return;
529                 pos += ret;
530                 pos += wpa_snprintf_hex(pos, end - pos, bss->ie, bss->ielen);
531                 pos += wpa_snprintf_hex(pos, end - pos, bss->wps_probe_resp_ie,
532                                         bss->wps_probe_resp_ie_len);
533
534                 if (bss->privacy) {
535                         ret = snprintf(pos, end - pos, " PRIVACY");
536                         if (ret < 0 || ret >= end - pos)
537                                 return;
538                         pos += ret;
539                 }
540
541                 sendto(drv->test_socket, buf, pos - buf, 0,
542                        (struct sockaddr *) from, fromlen);
543         }
544 }
545
546
547 static void test_driver_assoc(struct wpa_driver_test_data *drv,
548                               struct sockaddr_un *from, socklen_t fromlen,
549                               char *data)
550 {
551         struct test_client_socket *cli;
552         u8 ie[256], ssid[32];
553         size_t ielen, ssid_len = 0;
554         char *pos, *pos2, cmd[50];
555         struct test_driver_bss *bss;
556
557         /* data: STA-addr SSID(hex) IEs(hex) */
558
559         cli = os_zalloc(sizeof(*cli));
560         if (cli == NULL)
561                 return;
562
563         if (hwaddr_aton(data, cli->addr)) {
564                 printf("test_socket: Invalid MAC address '%s' in ASSOC\n",
565                        data);
566                 free(cli);
567                 return;
568         }
569         pos = data + 17;
570         while (*pos == ' ')
571                 pos++;
572         pos2 = strchr(pos, ' ');
573         ielen = 0;
574         if (pos2) {
575                 ssid_len = (pos2 - pos) / 2;
576                 if (hexstr2bin(pos, ssid, ssid_len) < 0) {
577                         wpa_printf(MSG_DEBUG, "%s: Invalid SSID", __func__);
578                         free(cli);
579                         return;
580                 }
581                 wpa_hexdump_ascii(MSG_DEBUG, "test_driver_assoc: SSID",
582                                   ssid, ssid_len);
583
584                 pos = pos2 + 1;
585                 ielen = strlen(pos) / 2;
586                 if (ielen > sizeof(ie))
587                         ielen = sizeof(ie);
588                 if (hexstr2bin(pos, ie, ielen) < 0)
589                         ielen = 0;
590         }
591
592         for (bss = drv->bss; bss; bss = bss->next) {
593                 if (bss->ssid_len == ssid_len &&
594                     memcmp(bss->ssid, ssid, ssid_len) == 0)
595                         break;
596         }
597         if (bss == NULL) {
598                 wpa_printf(MSG_DEBUG, "%s: No matching SSID found from "
599                            "configured BSSes", __func__);
600                 free(cli);
601                 return;
602         }
603
604         cli->bss = bss;
605         memcpy(&cli->un, from, sizeof(cli->un));
606         cli->unlen = fromlen;
607         cli->next = drv->cli;
608         drv->cli = cli;
609         wpa_hexdump_ascii(MSG_DEBUG, "test_socket: ASSOC sun_path",
610                           (const u8 *) cli->un.sun_path,
611                           cli->unlen - sizeof(cli->un.sun_family));
612
613         snprintf(cmd, sizeof(cmd), "ASSOCRESP " MACSTR " 0",
614                  MAC2STR(bss->bssid));
615         sendto(drv->test_socket, cmd, strlen(cmd), 0,
616                (struct sockaddr *) from, fromlen);
617
618 #ifdef HOSTAPD
619         if (hostapd_notif_assoc(bss->bss_ctx, cli->addr, ie, ielen) < 0)
620                 wpa_printf(MSG_DEBUG, "test_driver: failed to add new STA");
621 #endif /* HOSTAPD */
622 }
623
624
625 static void test_driver_disassoc(struct wpa_driver_test_data *drv,
626                                  struct sockaddr_un *from, socklen_t fromlen)
627 {
628         struct test_client_socket *cli;
629
630         cli = test_driver_get_cli(drv, from, fromlen);
631         if (!cli)
632                 return;
633
634 #ifdef HOSTAPD
635         hostapd_notif_disassoc(drv->ctx, cli->addr);
636 #endif /* HOSTAPD */
637 }
638
639
640 static void test_driver_eapol(struct wpa_driver_test_data *drv,
641                               struct sockaddr_un *from, socklen_t fromlen,
642                               u8 *data, size_t datalen)
643 {
644 #ifdef HOSTAPD
645         struct test_client_socket *cli;
646 #endif /* HOSTAPD */
647         const u8 *src = NULL;
648
649         if (datalen > 14) {
650                 /* Skip Ethernet header */
651                 src = data + ETH_ALEN;
652                 wpa_printf(MSG_DEBUG, "test_driver: dst=" MACSTR " src="
653                            MACSTR " proto=%04x",
654                            MAC2STR(data), MAC2STR(src),
655                            WPA_GET_BE16(data + 2 * ETH_ALEN));
656                 data += 14;
657                 datalen -= 14;
658         }
659 #ifdef HOSTAPD
660         cli = test_driver_get_cli(drv, from, fromlen);
661         if (cli) {
662                 hostapd_eapol_receive(cli->bss->bss_ctx, cli->addr, data,
663                                       datalen);
664         } else {
665                 wpa_printf(MSG_DEBUG, "test_socket: EAPOL from unknown "
666                            "client");
667         }
668 #else /* HOSTAPD */
669         if (src)
670                 wpa_supplicant_rx_eapol(drv->ctx, src, data, datalen);
671 #endif /* HOSTAPD */
672 }
673
674
675 static void test_driver_ether(struct wpa_driver_test_data *drv,
676                               struct sockaddr_un *from, socklen_t fromlen,
677                               u8 *data, size_t datalen)
678 {
679         struct l2_ethhdr *eth;
680
681         if (datalen < sizeof(*eth))
682                 return;
683
684         eth = (struct l2_ethhdr *) data;
685         wpa_printf(MSG_DEBUG, "test_driver: RX ETHER dst=" MACSTR " src="
686                    MACSTR " proto=%04x",
687                    MAC2STR(eth->h_dest), MAC2STR(eth->h_source),
688                    be_to_host16(eth->h_proto));
689
690 #ifdef CONFIG_IEEE80211R
691         if (be_to_host16(eth->h_proto) == ETH_P_RRB) {
692                 union wpa_event_data ev;
693                 os_memset(&ev, 0, sizeof(ev));
694                 ev.ft_rrb_rx.src = eth->h_source;
695                 ev.ft_rrb_rx.data = data + sizeof(*eth);
696                 ev.ft_rrb_rx.data_len = datalen - sizeof(*eth);
697         }
698 #endif /* CONFIG_IEEE80211R */
699 }
700
701
702 static void test_driver_mlme(struct wpa_driver_test_data *drv,
703                              struct sockaddr_un *from, socklen_t fromlen,
704                              u8 *data, size_t datalen)
705 {
706         struct ieee80211_hdr *hdr;
707         u16 fc;
708
709         hdr = (struct ieee80211_hdr *) data;
710
711         if (test_driver_get_cli(drv, from, fromlen) == NULL && datalen >= 16) {
712                 struct test_client_socket *cli;
713                 cli = os_zalloc(sizeof(*cli));
714                 if (cli == NULL)
715                         return;
716                 wpa_printf(MSG_DEBUG, "Adding client entry for " MACSTR,
717                            MAC2STR(hdr->addr2));
718                 memcpy(cli->addr, hdr->addr2, ETH_ALEN);
719                 memcpy(&cli->un, from, sizeof(cli->un));
720                 cli->unlen = fromlen;
721                 cli->next = drv->cli;
722                 drv->cli = cli;
723         }
724
725         wpa_hexdump(MSG_MSGDUMP, "test_driver_mlme: received frame",
726                     data, datalen);
727         fc = le_to_host16(hdr->frame_control);
728         if (WLAN_FC_GET_TYPE(fc) != WLAN_FC_TYPE_MGMT) {
729                 wpa_printf(MSG_ERROR, "%s: received non-mgmt frame",
730                            __func__);
731                 return;
732         }
733 #ifdef HOSTAPD
734         hostapd_mgmt_rx(drv->ctx, data, datalen, WLAN_FC_GET_STYPE(fc), NULL);
735 #else /* HOSTAPD */
736         ap_mgmt_rx(drv->ctx, data, datalen, WLAN_FC_GET_STYPE(fc), NULL);
737 #endif /* HOSTAPD */
738 }
739
740
741 static void test_driver_receive_unix(int sock, void *eloop_ctx, void *sock_ctx)
742 {
743         struct wpa_driver_test_data *drv = eloop_ctx;
744         char buf[2000];
745         int res;
746         struct sockaddr_un from;
747         socklen_t fromlen = sizeof(from);
748
749         res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
750                        (struct sockaddr *) &from, &fromlen);
751         if (res < 0) {
752                 perror("recvfrom(test_socket)");
753                 return;
754         }
755         buf[res] = '\0';
756
757         wpa_printf(MSG_DEBUG, "test_driver: received %u bytes", res);
758
759         if (strncmp(buf, "SCAN", 4) == 0) {
760                 test_driver_scan(drv, &from, fromlen, buf + 4);
761         } else if (strncmp(buf, "ASSOC ", 6) == 0) {
762                 test_driver_assoc(drv, &from, fromlen, buf + 6);
763         } else if (strcmp(buf, "DISASSOC") == 0) {
764                 test_driver_disassoc(drv, &from, fromlen);
765         } else if (strncmp(buf, "EAPOL ", 6) == 0) {
766                 test_driver_eapol(drv, &from, fromlen, (u8 *) buf + 6,
767                                   res - 6);
768         } else if (strncmp(buf, "ETHER ", 6) == 0) {
769                 test_driver_ether(drv, &from, fromlen, (u8 *) buf + 6,
770                                   res - 6);
771         } else if (strncmp(buf, "MLME ", 5) == 0) {
772                 test_driver_mlme(drv, &from, fromlen, (u8 *) buf + 5, res - 5);
773         } else {
774                 wpa_hexdump_ascii(MSG_DEBUG, "Unknown test_socket command",
775                                   (u8 *) buf, res);
776         }
777 }
778
779
780 static struct test_driver_bss *
781 test_driver_get_bss(struct wpa_driver_test_data *drv, const char *ifname)
782 {
783         struct test_driver_bss *bss;
784
785         for (bss = drv->bss; bss; bss = bss->next) {
786                 if (strcmp(bss->ifname, ifname) == 0)
787                         return bss;
788         }
789         return NULL;
790 }
791
792
793 static int test_driver_set_generic_elem(const char *ifname, void *priv,
794                                         const u8 *elem, size_t elem_len)
795 {
796         struct wpa_driver_test_data *drv = priv;
797         struct test_driver_bss *bss;
798
799         bss = test_driver_get_bss(drv, ifname);
800         if (bss == NULL)
801                 return -1;
802
803         free(bss->ie);
804
805         if (elem == NULL) {
806                 bss->ie = NULL;
807                 bss->ielen = 0;
808                 return 0;
809         }
810
811         bss->ie = malloc(elem_len);
812         if (bss->ie == NULL) {
813                 bss->ielen = 0;
814                 return -1;
815         }
816
817         memcpy(bss->ie, elem, elem_len);
818         bss->ielen = elem_len;
819         return 0;
820 }
821
822
823 static int test_driver_set_wps_beacon_ie(const char *ifname, void *priv,
824                                          const u8 *ie, size_t len)
825 {
826         struct wpa_driver_test_data *drv = priv;
827         struct test_driver_bss *bss;
828
829         wpa_hexdump(MSG_DEBUG, "test_driver: Beacon WPS IE", ie, len);
830         bss = test_driver_get_bss(drv, ifname);
831         if (bss == NULL)
832                 return -1;
833
834         free(bss->wps_beacon_ie);
835
836         if (ie == NULL) {
837                 bss->wps_beacon_ie = NULL;
838                 bss->wps_beacon_ie_len = 0;
839                 return 0;
840         }
841
842         bss->wps_beacon_ie = malloc(len);
843         if (bss->wps_beacon_ie == NULL) {
844                 bss->wps_beacon_ie_len = 0;
845                 return -1;
846         }
847
848         memcpy(bss->wps_beacon_ie, ie, len);
849         bss->wps_beacon_ie_len = len;
850         return 0;
851 }
852
853
854 static int test_driver_set_wps_probe_resp_ie(const char *ifname, void *priv,
855                                              const u8 *ie, size_t len)
856 {
857         struct wpa_driver_test_data *drv = priv;
858         struct test_driver_bss *bss;
859
860         wpa_hexdump(MSG_DEBUG, "test_driver: ProbeResp WPS IE", ie, len);
861         bss = test_driver_get_bss(drv, ifname);
862         if (bss == NULL)
863                 return -1;
864
865         free(bss->wps_probe_resp_ie);
866
867         if (ie == NULL) {
868                 bss->wps_probe_resp_ie = NULL;
869                 bss->wps_probe_resp_ie_len = 0;
870                 return 0;
871         }
872
873         bss->wps_probe_resp_ie = malloc(len);
874         if (bss->wps_probe_resp_ie == NULL) {
875                 bss->wps_probe_resp_ie_len = 0;
876                 return -1;
877         }
878
879         memcpy(bss->wps_probe_resp_ie, ie, len);
880         bss->wps_probe_resp_ie_len = len;
881         return 0;
882 }
883
884
885 static int test_driver_sta_deauth(void *priv, const u8 *own_addr,
886                                   const u8 *addr, int reason)
887 {
888         struct wpa_driver_test_data *drv = priv;
889         struct test_client_socket *cli;
890
891         if (drv->test_socket < 0)
892                 return -1;
893
894         cli = drv->cli;
895         while (cli) {
896                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
897                         break;
898                 cli = cli->next;
899         }
900
901         if (!cli)
902                 return -1;
903
904         return sendto(drv->test_socket, "DEAUTH", 6, 0,
905                       (struct sockaddr *) &cli->un, cli->unlen);
906 }
907
908
909 static int test_driver_sta_disassoc(void *priv, const u8 *own_addr,
910                                     const u8 *addr, int reason)
911 {
912         struct wpa_driver_test_data *drv = priv;
913         struct test_client_socket *cli;
914
915         if (drv->test_socket < 0)
916                 return -1;
917
918         cli = drv->cli;
919         while (cli) {
920                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
921                         break;
922                 cli = cli->next;
923         }
924
925         if (!cli)
926                 return -1;
927
928         return sendto(drv->test_socket, "DISASSOC", 8, 0,
929                       (struct sockaddr *) &cli->un, cli->unlen);
930 }
931
932
933 static int test_driver_bss_add(void *priv, const char *ifname, const u8 *bssid,
934                                void *bss_ctx)
935 {
936         struct wpa_driver_test_data *drv = priv;
937         struct test_driver_bss *bss;
938
939         wpa_printf(MSG_DEBUG, "%s(ifname=%s bssid=" MACSTR ")",
940                    __func__, ifname, MAC2STR(bssid));
941
942         bss = os_zalloc(sizeof(*bss));
943         if (bss == NULL)
944                 return -1;
945
946         bss->bss_ctx = bss_ctx;
947         os_strlcpy(bss->ifname, ifname, IFNAMSIZ);
948         memcpy(bss->bssid, bssid, ETH_ALEN);
949
950         bss->next = drv->bss;
951         drv->bss = bss;
952
953         return 0;
954 }
955
956
957 static int test_driver_bss_remove(void *priv, const char *ifname)
958 {
959         struct wpa_driver_test_data *drv = priv;
960         struct test_driver_bss *bss, *prev;
961         struct test_client_socket *cli, *prev_c;
962
963         wpa_printf(MSG_DEBUG, "%s(ifname=%s)", __func__, ifname);
964
965         for (prev = NULL, bss = drv->bss; bss; prev = bss, bss = bss->next) {
966                 if (strcmp(bss->ifname, ifname) != 0)
967                         continue;
968
969                 if (prev)
970                         prev->next = bss->next;
971                 else
972                         drv->bss = bss->next;
973
974                 for (prev_c = NULL, cli = drv->cli; cli;
975                      prev_c = cli, cli = cli->next) {
976                         if (cli->bss != bss)
977                                 continue;
978                         if (prev_c)
979                                 prev_c->next = cli->next;
980                         else
981                                 drv->cli = cli->next;
982                         free(cli);
983                         break;
984                 }
985
986                 test_driver_free_bss(bss);
987                 return 0;
988         }
989
990         return -1;
991 }
992
993
994 static int test_driver_if_add(const char *iface, void *priv,
995                               enum wpa_driver_if_type type, const char *ifname,
996                               const u8 *addr, void *bss_ctx)
997 {
998         wpa_printf(MSG_DEBUG, "%s(iface=%s type=%d ifname=%s bss_ctx=%p)",
999                    __func__, iface, type, ifname, bss_ctx);
1000         if (type == WPA_IF_AP_BSS)
1001                 return test_driver_bss_add(priv, ifname, addr, bss_ctx);
1002         return 0;
1003 }
1004
1005
1006 static int test_driver_if_remove(void *priv, enum wpa_driver_if_type type,
1007                                  const char *ifname)
1008 {
1009         wpa_printf(MSG_DEBUG, "%s(type=%d ifname=%s)", __func__, type, ifname);
1010         if (type == WPA_IF_AP_BSS)
1011                 return test_driver_bss_remove(priv, ifname);
1012         return 0;
1013 }
1014
1015
1016 static int test_driver_valid_bss_mask(void *priv, const u8 *addr,
1017                                       const u8 *mask)
1018 {
1019         return 0;
1020 }
1021
1022
1023 static int test_driver_set_ssid(const char *ifname, void *priv, const u8 *buf,
1024                                 int len)
1025 {
1026         struct wpa_driver_test_data *drv = priv;
1027         struct test_driver_bss *bss;
1028
1029         wpa_printf(MSG_DEBUG, "%s(ifname=%s)", __func__, ifname);
1030         wpa_hexdump_ascii(MSG_DEBUG, "test_driver_set_ssid: SSID", buf, len);
1031
1032         for (bss = drv->bss; bss; bss = bss->next) {
1033                 if (strcmp(bss->ifname, ifname) != 0)
1034                         continue;
1035
1036                 if (len < 0 || (size_t) len > sizeof(bss->ssid))
1037                         return -1;
1038
1039                 memcpy(bss->ssid, buf, len);
1040                 bss->ssid_len = len;
1041
1042                 return 0;
1043         }
1044
1045         return -1;
1046 }
1047
1048
1049 static int test_driver_set_privacy(const char *ifname, void *priv, int enabled)
1050 {
1051         struct wpa_driver_test_data *drv = priv;
1052         struct test_driver_bss *bss;
1053
1054         wpa_printf(MSG_DEBUG, "%s(ifname=%s enabled=%d)",
1055                    __func__, ifname, enabled);
1056
1057         for (bss = drv->bss; bss; bss = bss->next) {
1058                 if (strcmp(bss->ifname, ifname) != 0)
1059                         continue;
1060
1061                 bss->privacy = enabled;
1062
1063                 return 0;
1064         }
1065
1066         return -1;
1067 }
1068
1069
1070 static int test_driver_set_sta_vlan(void *priv, const u8 *addr,
1071                                     const char *ifname, int vlan_id)
1072 {
1073         wpa_printf(MSG_DEBUG, "%s(addr=" MACSTR " ifname=%s vlan_id=%d)",
1074                    __func__, MAC2STR(addr), ifname, vlan_id);
1075         return 0;
1076 }
1077
1078
1079 static int test_driver_sta_add(const char *ifname, void *priv,
1080                                struct hostapd_sta_add_params *params)
1081 {
1082         struct wpa_driver_test_data *drv = priv;
1083         struct test_client_socket *cli;
1084         struct test_driver_bss *bss;
1085
1086         wpa_printf(MSG_DEBUG, "%s(ifname=%s addr=" MACSTR " aid=%d "
1087                    "capability=0x%x listen_interval=%d)",
1088                    __func__, ifname, MAC2STR(params->addr), params->aid,
1089                    params->capability, params->listen_interval);
1090         wpa_hexdump(MSG_DEBUG, "test_driver_sta_add - supp_rates",
1091                     params->supp_rates, params->supp_rates_len);
1092
1093         cli = drv->cli;
1094         while (cli) {
1095                 if (os_memcmp(cli->addr, params->addr, ETH_ALEN) == 0)
1096                         break;
1097                 cli = cli->next;
1098         }
1099         if (!cli) {
1100                 wpa_printf(MSG_DEBUG, "%s: no matching client entry",
1101                            __func__);
1102                 return -1;
1103         }
1104
1105         for (bss = drv->bss; bss; bss = bss->next) {
1106                 if (strcmp(ifname, bss->ifname) == 0)
1107                         break;
1108         }
1109         if (bss == NULL) {
1110                 wpa_printf(MSG_DEBUG, "%s: No matching interface found from "
1111                            "configured BSSes", __func__);
1112                 return -1;
1113         }
1114
1115         cli->bss = bss;
1116
1117         return 0;
1118 }
1119
1120
1121 static void * test_driver_init(struct hostapd_data *hapd,
1122                                struct wpa_init_params *params)
1123 {
1124         struct wpa_driver_test_data *drv;
1125         struct sockaddr_un addr_un;
1126         struct sockaddr_in addr_in;
1127         struct sockaddr *addr;
1128         socklen_t alen;
1129
1130         drv = os_zalloc(sizeof(struct wpa_driver_test_data));
1131         if (drv == NULL) {
1132                 printf("Could not allocate memory for test driver data\n");
1133                 return NULL;
1134         }
1135         drv->ap = 1;
1136         drv->bss = os_zalloc(sizeof(*drv->bss));
1137         if (drv->bss == NULL) {
1138                 printf("Could not allocate memory for test driver BSS data\n");
1139                 free(drv);
1140                 return NULL;
1141         }
1142
1143         drv->ctx = hapd;
1144
1145         /* Generate a MAC address to help testing with multiple APs */
1146         params->own_addr[0] = 0x02; /* locally administered */
1147         sha1_prf((const u8 *) params->ifname, strlen(params->ifname),
1148                  "hostapd test bssid generation",
1149                  params->ssid, params->ssid_len,
1150                  params->own_addr + 1, ETH_ALEN - 1);
1151
1152         os_strlcpy(drv->bss->ifname, params->ifname, IFNAMSIZ);
1153         memcpy(drv->bss->bssid, params->own_addr, ETH_ALEN);
1154
1155         if (params->test_socket) {
1156                 if (os_strlen(params->test_socket) >=
1157                     sizeof(addr_un.sun_path)) {
1158                         printf("Too long test_socket path\n");
1159                         wpa_driver_test_deinit(drv);
1160                         return NULL;
1161                 }
1162                 if (strncmp(params->test_socket, "DIR:", 4) == 0) {
1163                         size_t len = strlen(params->test_socket) + 30;
1164                         drv->test_dir = strdup(params->test_socket + 4);
1165                         drv->own_socket_path = malloc(len);
1166                         if (drv->own_socket_path) {
1167                                 snprintf(drv->own_socket_path, len,
1168                                          "%s/AP-" MACSTR,
1169                                          params->test_socket + 4,
1170                                          MAC2STR(params->own_addr));
1171                         }
1172                 } else if (strncmp(params->test_socket, "UDP:", 4) == 0) {
1173                         drv->udp_port = atoi(params->test_socket + 4);
1174                 } else {
1175                         drv->own_socket_path = strdup(params->test_socket);
1176                 }
1177                 if (drv->own_socket_path == NULL && drv->udp_port == 0) {
1178                         wpa_driver_test_deinit(drv);
1179                         return NULL;
1180                 }
1181
1182                 drv->test_socket = socket(drv->udp_port ? PF_INET : PF_UNIX,
1183                                           SOCK_DGRAM, 0);
1184                 if (drv->test_socket < 0) {
1185                         perror("socket");
1186                         wpa_driver_test_deinit(drv);
1187                         return NULL;
1188                 }
1189
1190                 if (drv->udp_port) {
1191                         os_memset(&addr_in, 0, sizeof(addr_in));
1192                         addr_in.sin_family = AF_INET;
1193                         addr_in.sin_port = htons(drv->udp_port);
1194                         addr = (struct sockaddr *) &addr_in;
1195                         alen = sizeof(addr_in);
1196                 } else {
1197                         os_memset(&addr_un, 0, sizeof(addr_un));
1198                         addr_un.sun_family = AF_UNIX;
1199                         os_strlcpy(addr_un.sun_path, drv->own_socket_path,
1200                                    sizeof(addr_un.sun_path));
1201                         addr = (struct sockaddr *) &addr_un;
1202                         alen = sizeof(addr_un);
1203                 }
1204                 if (bind(drv->test_socket, addr, alen) < 0) {
1205                         perror("bind(PF_UNIX)");
1206                         close(drv->test_socket);
1207                         if (drv->own_socket_path)
1208                                 unlink(drv->own_socket_path);
1209                         wpa_driver_test_deinit(drv);
1210                         return NULL;
1211                 }
1212                 eloop_register_read_sock(drv->test_socket,
1213                                          test_driver_receive_unix, drv, NULL);
1214         } else
1215                 drv->test_socket = -1;
1216
1217         return drv;
1218 }
1219
1220
1221 static void wpa_driver_test_poll(void *eloop_ctx, void *timeout_ctx)
1222 {
1223         struct wpa_driver_test_data *drv = eloop_ctx;
1224
1225 #ifdef DRIVER_TEST_UNIX
1226         if (drv->associated && drv->hostapd_addr_set) {
1227                 struct stat st;
1228                 if (stat(drv->hostapd_addr.sun_path, &st) < 0) {
1229                         wpa_printf(MSG_DEBUG, "%s: lost connection to AP: %s",
1230                                    __func__, strerror(errno));
1231                         drv->associated = 0;
1232                         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1233                 }
1234         }
1235 #endif /* DRIVER_TEST_UNIX */
1236
1237         eloop_register_timeout(1, 0, wpa_driver_test_poll, drv, NULL);
1238 }
1239
1240
1241 static void wpa_driver_test_scan_timeout(void *eloop_ctx, void *timeout_ctx)
1242 {
1243         wpa_printf(MSG_DEBUG, "Scan timeout - try to get results");
1244         wpa_supplicant_event(timeout_ctx, EVENT_SCAN_RESULTS, NULL);
1245 }
1246
1247
1248 #ifdef DRIVER_TEST_UNIX
1249 static void wpa_driver_scan_dir(struct wpa_driver_test_data *drv,
1250                                 const char *path)
1251 {
1252         struct dirent *dent;
1253         DIR *dir;
1254         struct sockaddr_un addr;
1255         char cmd[512], *pos, *end;
1256         int ret;
1257
1258         dir = opendir(path);
1259         if (dir == NULL)
1260                 return;
1261
1262         end = cmd + sizeof(cmd);
1263         pos = cmd;
1264         ret = os_snprintf(pos, end - pos, "SCAN " MACSTR,
1265                           MAC2STR(drv->own_addr));
1266         if (ret >= 0 && ret < end - pos)
1267                 pos += ret;
1268         if (drv->probe_req_ie) {
1269                 ret = os_snprintf(pos, end - pos, " ");
1270                 if (ret >= 0 && ret < end - pos)
1271                         pos += ret;
1272                 pos += wpa_snprintf_hex(pos, end - pos, drv->probe_req_ie,
1273                                         drv->probe_req_ie_len);
1274         }
1275         end[-1] = '\0';
1276
1277         while ((dent = readdir(dir))) {
1278                 if (os_strncmp(dent->d_name, "AP-", 3) != 0 &&
1279                     os_strncmp(dent->d_name, "STA-", 4) != 0)
1280                         continue;
1281                 if (drv->own_socket_path) {
1282                         size_t olen, dlen;
1283                         olen = os_strlen(drv->own_socket_path);
1284                         dlen = os_strlen(dent->d_name);
1285                         if (olen >= dlen &&
1286                             os_strcmp(dent->d_name,
1287                                       drv->own_socket_path + olen - dlen) == 0)
1288                                 continue;
1289                 }
1290                 wpa_printf(MSG_DEBUG, "%s: SCAN %s", __func__, dent->d_name);
1291
1292                 os_memset(&addr, 0, sizeof(addr));
1293                 addr.sun_family = AF_UNIX;
1294                 os_snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
1295                             path, dent->d_name);
1296
1297                 if (sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1298                            (struct sockaddr *) &addr, sizeof(addr)) < 0) {
1299                         perror("sendto(test_socket)");
1300                 }
1301         }
1302         closedir(dir);
1303 }
1304 #endif /* DRIVER_TEST_UNIX */
1305
1306
1307 static int wpa_driver_test_scan(void *priv,
1308                                 struct wpa_driver_scan_params *params)
1309 {
1310         struct wpa_driver_test_data *drv = priv;
1311         size_t i;
1312
1313         wpa_printf(MSG_DEBUG, "%s: priv=%p", __func__, priv);
1314
1315         os_free(drv->probe_req_ie);
1316         if (params->extra_ies) {
1317                 drv->probe_req_ie = os_malloc(params->extra_ies_len);
1318                 if (drv->probe_req_ie == NULL) {
1319                         drv->probe_req_ie_len = 0;
1320                         return -1;
1321                 }
1322                 os_memcpy(drv->probe_req_ie, params->extra_ies,
1323                           params->extra_ies_len);
1324                 drv->probe_req_ie_len = params->extra_ies_len;
1325         } else {
1326                 drv->probe_req_ie = NULL;
1327                 drv->probe_req_ie_len = 0;
1328         }
1329
1330         for (i = 0; i < params->num_ssids; i++)
1331                 wpa_hexdump(MSG_DEBUG, "Scan SSID",
1332                             params->ssids[i].ssid, params->ssids[i].ssid_len);
1333         wpa_hexdump(MSG_DEBUG, "Scan extra IE(s)",
1334                     params->extra_ies, params->extra_ies_len);
1335
1336         drv->num_scanres = 0;
1337
1338 #ifdef DRIVER_TEST_UNIX
1339         if (drv->test_socket >= 0 && drv->test_dir)
1340                 wpa_driver_scan_dir(drv, drv->test_dir);
1341
1342         if (drv->test_socket >= 0 && drv->hostapd_addr_set &&
1343             sendto(drv->test_socket, "SCAN", 4, 0,
1344                    (struct sockaddr *) &drv->hostapd_addr,
1345                    sizeof(drv->hostapd_addr)) < 0) {
1346                 perror("sendto(test_socket)");
1347         }
1348 #endif /* DRIVER_TEST_UNIX */
1349
1350         if (drv->test_socket >= 0 && drv->hostapd_addr_udp_set &&
1351             sendto(drv->test_socket, "SCAN", 4, 0,
1352                    (struct sockaddr *) &drv->hostapd_addr_udp,
1353                    sizeof(drv->hostapd_addr_udp)) < 0) {
1354                 perror("sendto(test_socket)");
1355         }
1356
1357         eloop_cancel_timeout(wpa_driver_test_scan_timeout, drv, drv->ctx);
1358         eloop_register_timeout(1, 0, wpa_driver_test_scan_timeout, drv,
1359                                drv->ctx);
1360         return 0;
1361 }
1362
1363
1364 static struct wpa_scan_results * wpa_driver_test_get_scan_results2(void *priv)
1365 {
1366         struct wpa_driver_test_data *drv = priv;
1367         struct wpa_scan_results *res;
1368         size_t i;
1369
1370         res = os_zalloc(sizeof(*res));
1371         if (res == NULL)
1372                 return NULL;
1373
1374         res->res = os_zalloc(drv->num_scanres * sizeof(struct wpa_scan_res *));
1375         if (res->res == NULL) {
1376                 os_free(res);
1377                 return NULL;
1378         }
1379
1380         for (i = 0; i < drv->num_scanres; i++) {
1381                 struct wpa_scan_res *r;
1382                 if (drv->scanres[i] == NULL)
1383                         continue;
1384                 r = os_malloc(sizeof(*r) + drv->scanres[i]->ie_len);
1385                 if (r == NULL)
1386                         break;
1387                 os_memcpy(r, drv->scanres[i],
1388                           sizeof(*r) + drv->scanres[i]->ie_len);
1389                 res->res[res->num++] = r;
1390         }
1391
1392         return res;
1393 }
1394
1395
1396 static int wpa_driver_test_set_key(const char *ifname, void *priv, wpa_alg alg,
1397                                    const u8 *addr, int key_idx, int set_tx,
1398                                    const u8 *seq, size_t seq_len,
1399                                    const u8 *key, size_t key_len)
1400 {
1401         wpa_printf(MSG_DEBUG, "%s: ifname=%s priv=%p alg=%d key_idx=%d "
1402                    "set_tx=%d",
1403                    __func__, ifname, priv, alg, key_idx, set_tx);
1404         if (addr)
1405                 wpa_printf(MSG_DEBUG, "   addr=" MACSTR, MAC2STR(addr));
1406         if (seq)
1407                 wpa_hexdump(MSG_DEBUG, "   seq", seq, seq_len);
1408         if (key)
1409                 wpa_hexdump_key(MSG_DEBUG, "   key", key, key_len);
1410         return 0;
1411 }
1412
1413
1414 static int wpa_driver_update_mode(struct wpa_driver_test_data *drv, int ap)
1415 {
1416         if (ap && !drv->ap) {
1417                 wpa_driver_test_close_test_socket(drv);
1418                 wpa_driver_test_attach(drv, drv->test_dir, 1);
1419                 drv->ap = 1;
1420         } else if (!ap && drv->ap) {
1421                 wpa_driver_test_close_test_socket(drv);
1422                 wpa_driver_test_attach(drv, drv->test_dir, 0);
1423                 drv->ap = 0;
1424         }
1425
1426         return 0;
1427 }
1428
1429
1430 static int wpa_driver_test_associate(
1431         void *priv, struct wpa_driver_associate_params *params)
1432 {
1433         struct wpa_driver_test_data *drv = priv;
1434         wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d pairwise_suite=%d "
1435                    "group_suite=%d key_mgmt_suite=%d auth_alg=%d mode=%d",
1436                    __func__, priv, params->freq, params->pairwise_suite,
1437                    params->group_suite, params->key_mgmt_suite,
1438                    params->auth_alg, params->mode);
1439         if (params->bssid) {
1440                 wpa_printf(MSG_DEBUG, "   bssid=" MACSTR,
1441                            MAC2STR(params->bssid));
1442         }
1443         if (params->ssid) {
1444                 wpa_hexdump_ascii(MSG_DEBUG, "   ssid",
1445                                   params->ssid, params->ssid_len);
1446         }
1447         if (params->wpa_ie) {
1448                 wpa_hexdump(MSG_DEBUG, "   wpa_ie",
1449                             params->wpa_ie, params->wpa_ie_len);
1450                 drv->assoc_wpa_ie_len = params->wpa_ie_len;
1451                 if (drv->assoc_wpa_ie_len > sizeof(drv->assoc_wpa_ie))
1452                         drv->assoc_wpa_ie_len = sizeof(drv->assoc_wpa_ie);
1453                 os_memcpy(drv->assoc_wpa_ie, params->wpa_ie,
1454                           drv->assoc_wpa_ie_len);
1455         } else
1456                 drv->assoc_wpa_ie_len = 0;
1457
1458         wpa_driver_update_mode(drv, params->mode == IEEE80211_MODE_AP);
1459
1460         drv->ibss = params->mode == IEEE80211_MODE_IBSS;
1461         drv->privacy = params->key_mgmt_suite &
1462                 (WPA_KEY_MGMT_IEEE8021X |
1463                  WPA_KEY_MGMT_PSK |
1464                  WPA_KEY_MGMT_WPA_NONE |
1465                  WPA_KEY_MGMT_FT_IEEE8021X |
1466                  WPA_KEY_MGMT_FT_PSK |
1467                  WPA_KEY_MGMT_IEEE8021X_SHA256 |
1468                  WPA_KEY_MGMT_PSK_SHA256);
1469         if (params->wep_key_len[params->wep_tx_keyidx])
1470                 drv->privacy = 1;
1471
1472 #ifdef DRIVER_TEST_UNIX
1473         if (drv->test_dir && params->bssid &&
1474             params->mode != IEEE80211_MODE_IBSS) {
1475                 os_memset(&drv->hostapd_addr, 0, sizeof(drv->hostapd_addr));
1476                 drv->hostapd_addr.sun_family = AF_UNIX;
1477                 os_snprintf(drv->hostapd_addr.sun_path,
1478                             sizeof(drv->hostapd_addr.sun_path),
1479                             "%s/AP-" MACSTR,
1480                             drv->test_dir, MAC2STR(params->bssid));
1481                 drv->hostapd_addr_set = 1;
1482         }
1483 #endif /* DRIVER_TEST_UNIX */
1484
1485         if (params->mode == IEEE80211_MODE_AP) {
1486                 struct test_driver_bss *bss;
1487                 os_memcpy(drv->ssid, params->ssid, params->ssid_len);
1488                 drv->ssid_len = params->ssid_len;
1489
1490                 test_driver_free_bsses(drv);
1491                 bss = drv->bss = os_zalloc(sizeof(*drv->bss));
1492                 if (bss == NULL)
1493                         return -1;
1494                 os_memcpy(bss->bssid, drv->own_addr, ETH_ALEN);
1495                 os_memcpy(bss->ssid, params->ssid, params->ssid_len);
1496                 bss->ssid_len = params->ssid_len;
1497                 bss->privacy = drv->privacy;
1498                 if (params->wpa_ie && params->wpa_ie_len) {
1499                         bss->ie = os_malloc(params->wpa_ie_len);
1500                         if (bss->ie) {
1501                                 os_memcpy(bss->ie, params->wpa_ie,
1502                                           params->wpa_ie_len);
1503                                 bss->ielen = params->wpa_ie_len;
1504                         }
1505                 }
1506         } else if (drv->test_socket >= 0 &&
1507                    (drv->hostapd_addr_set || drv->hostapd_addr_udp_set)) {
1508                 char cmd[200], *pos, *end;
1509                 int ret;
1510                 end = cmd + sizeof(cmd);
1511                 pos = cmd;
1512                 ret = os_snprintf(pos, end - pos, "ASSOC " MACSTR " ",
1513                                   MAC2STR(drv->own_addr));
1514                 if (ret >= 0 && ret < end - pos)
1515                         pos += ret;
1516                 pos += wpa_snprintf_hex(pos, end - pos, params->ssid,
1517                                         params->ssid_len);
1518                 ret = os_snprintf(pos, end - pos, " ");
1519                 if (ret >= 0 && ret < end - pos)
1520                         pos += ret;
1521                 pos += wpa_snprintf_hex(pos, end - pos, params->wpa_ie,
1522                                         params->wpa_ie_len);
1523                 end[-1] = '\0';
1524 #ifdef DRIVER_TEST_UNIX
1525                 if (drv->hostapd_addr_set &&
1526                     sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1527                            (struct sockaddr *) &drv->hostapd_addr,
1528                            sizeof(drv->hostapd_addr)) < 0) {
1529                         perror("sendto(test_socket)");
1530                         return -1;
1531                 }
1532 #endif /* DRIVER_TEST_UNIX */
1533                 if (drv->hostapd_addr_udp_set &&
1534                     sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1535                            (struct sockaddr *) &drv->hostapd_addr_udp,
1536                            sizeof(drv->hostapd_addr_udp)) < 0) {
1537                         perror("sendto(test_socket)");
1538                         return -1;
1539                 }
1540
1541                 os_memcpy(drv->ssid, params->ssid, params->ssid_len);
1542                 drv->ssid_len = params->ssid_len;
1543         } else {
1544                 drv->associated = 1;
1545                 if (params->mode == IEEE80211_MODE_IBSS) {
1546                         os_memcpy(drv->ssid, params->ssid, params->ssid_len);
1547                         drv->ssid_len = params->ssid_len;
1548                         if (params->bssid)
1549                                 os_memcpy(drv->bssid, params->bssid, ETH_ALEN);
1550                         else {
1551                                 os_get_random(drv->bssid, ETH_ALEN);
1552                                 drv->bssid[0] &= ~0x01;
1553                                 drv->bssid[0] |= 0x02;
1554                         }
1555                 }
1556                 wpa_supplicant_event(drv->ctx, EVENT_ASSOC, NULL);
1557         }
1558
1559         return 0;
1560 }
1561
1562
1563 static int wpa_driver_test_get_bssid(void *priv, u8 *bssid)
1564 {
1565         struct wpa_driver_test_data *drv = priv;
1566         os_memcpy(bssid, drv->bssid, ETH_ALEN);
1567         return 0;
1568 }
1569
1570
1571 static int wpa_driver_test_get_ssid(void *priv, u8 *ssid)
1572 {
1573         struct wpa_driver_test_data *drv = priv;
1574         os_memcpy(ssid, drv->ssid, 32);
1575         return drv->ssid_len;
1576 }
1577
1578
1579 static int wpa_driver_test_send_disassoc(struct wpa_driver_test_data *drv)
1580 {
1581 #ifdef DRIVER_TEST_UNIX
1582         if (drv->test_socket >= 0 &&
1583             sendto(drv->test_socket, "DISASSOC", 8, 0,
1584                    (struct sockaddr *) &drv->hostapd_addr,
1585                    sizeof(drv->hostapd_addr)) < 0) {
1586                 perror("sendto(test_socket)");
1587                 return -1;
1588         }
1589 #endif /* DRIVER_TEST_UNIX */
1590         if (drv->test_socket >= 0 && drv->hostapd_addr_udp_set &&
1591             sendto(drv->test_socket, "DISASSOC", 8, 0,
1592                    (struct sockaddr *) &drv->hostapd_addr_udp,
1593                    sizeof(drv->hostapd_addr_udp)) < 0) {
1594                 perror("sendto(test_socket)");
1595                 return -1;
1596         }
1597         return 0;
1598 }
1599
1600
1601 static int wpa_driver_test_deauthenticate(void *priv, const u8 *addr,
1602                                           int reason_code)
1603 {
1604         struct wpa_driver_test_data *drv = priv;
1605         wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
1606                    __func__, MAC2STR(addr), reason_code);
1607         os_memset(drv->bssid, 0, ETH_ALEN);
1608         drv->associated = 0;
1609         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1610         return wpa_driver_test_send_disassoc(drv);
1611 }
1612
1613
1614 static int wpa_driver_test_disassociate(void *priv, const u8 *addr,
1615                                         int reason_code)
1616 {
1617         struct wpa_driver_test_data *drv = priv;
1618         wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
1619                    __func__, MAC2STR(addr), reason_code);
1620         os_memset(drv->bssid, 0, ETH_ALEN);
1621         drv->associated = 0;
1622         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1623         return wpa_driver_test_send_disassoc(drv);
1624 }
1625
1626
1627 static void wpa_driver_test_scanresp(struct wpa_driver_test_data *drv,
1628                                      struct sockaddr *from,
1629                                      socklen_t fromlen,
1630                                      const char *data)
1631 {
1632         struct wpa_scan_res *res;
1633         const char *pos, *pos2;
1634         size_t len;
1635         u8 *ie_pos, *ie_start, *ie_end;
1636 #define MAX_IE_LEN 1000
1637
1638         wpa_printf(MSG_DEBUG, "test_driver: SCANRESP %s", data);
1639         if (drv->num_scanres >= MAX_SCAN_RESULTS) {
1640                 wpa_printf(MSG_DEBUG, "test_driver: No room for the new scan "
1641                            "result");
1642                 return;
1643         }
1644
1645         /* SCANRESP BSSID SSID IEs */
1646
1647         res = os_zalloc(sizeof(*res) + MAX_IE_LEN);
1648         if (res == NULL)
1649                 return;
1650         ie_start = ie_pos = (u8 *) (res + 1);
1651         ie_end = ie_pos + MAX_IE_LEN;
1652
1653         if (hwaddr_aton(data, res->bssid)) {
1654                 wpa_printf(MSG_DEBUG, "test_driver: invalid BSSID in scanres");
1655                 os_free(res);
1656                 return;
1657         }
1658
1659         pos = data + 17;
1660         while (*pos == ' ')
1661                 pos++;
1662         pos2 = os_strchr(pos, ' ');
1663         if (pos2 == NULL) {
1664                 wpa_printf(MSG_DEBUG, "test_driver: invalid SSID termination "
1665                            "in scanres");
1666                 os_free(res);
1667                 return;
1668         }
1669         len = (pos2 - pos) / 2;
1670         if (len > 32)
1671                 len = 32;
1672         /*
1673          * Generate SSID IE from the SSID field since this IE is not included
1674          * in the main IE field.
1675          */
1676         *ie_pos++ = WLAN_EID_SSID;
1677         *ie_pos++ = len;
1678         if (hexstr2bin(pos, ie_pos, len) < 0) {
1679                 wpa_printf(MSG_DEBUG, "test_driver: invalid SSID in scanres");
1680                 os_free(res);
1681                 return;
1682         }
1683         ie_pos += len;
1684
1685         pos = pos2 + 1;
1686         pos2 = os_strchr(pos, ' ');
1687         if (pos2 == NULL)
1688                 len = os_strlen(pos) / 2;
1689         else
1690                 len = (pos2 - pos) / 2;
1691         if ((int) len > ie_end - ie_pos)
1692                 len = ie_end - ie_pos;
1693         if (hexstr2bin(pos, ie_pos, len) < 0) {
1694                 wpa_printf(MSG_DEBUG, "test_driver: invalid IEs in scanres");
1695                 os_free(res);
1696                 return;
1697         }
1698         ie_pos += len;
1699         res->ie_len = ie_pos - ie_start;
1700
1701         if (pos2) {
1702                 pos = pos2 + 1;
1703                 while (*pos == ' ')
1704                         pos++;
1705                 if (os_strstr(pos, "PRIVACY"))
1706                         res->caps |= IEEE80211_CAP_PRIVACY;
1707                 if (os_strstr(pos, "IBSS"))
1708                         res->caps |= IEEE80211_CAP_IBSS;
1709         }
1710
1711         os_free(drv->scanres[drv->num_scanres]);
1712         drv->scanres[drv->num_scanres++] = res;
1713 }
1714
1715
1716 static void wpa_driver_test_assocresp(struct wpa_driver_test_data *drv,
1717                                       struct sockaddr *from,
1718                                       socklen_t fromlen,
1719                                       const char *data)
1720 {
1721         /* ASSOCRESP BSSID <res> */
1722         if (hwaddr_aton(data, drv->bssid)) {
1723                 wpa_printf(MSG_DEBUG, "test_driver: invalid BSSID in "
1724                            "assocresp");
1725         }
1726         if (drv->use_associnfo) {
1727                 union wpa_event_data event;
1728                 os_memset(&event, 0, sizeof(event));
1729                 event.assoc_info.req_ies = drv->assoc_wpa_ie;
1730                 event.assoc_info.req_ies_len = drv->assoc_wpa_ie_len;
1731                 wpa_supplicant_event(drv->ctx, EVENT_ASSOCINFO, &event);
1732         }
1733         drv->associated = 1;
1734         wpa_supplicant_event(drv->ctx, EVENT_ASSOC, NULL);
1735 }
1736
1737
1738 static void wpa_driver_test_disassoc(struct wpa_driver_test_data *drv,
1739                                      struct sockaddr *from,
1740                                      socklen_t fromlen)
1741 {
1742         drv->associated = 0;
1743         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1744 }
1745
1746
1747 static void wpa_driver_test_eapol(struct wpa_driver_test_data *drv,
1748                                   struct sockaddr *from,
1749                                   socklen_t fromlen,
1750                                   const u8 *data, size_t data_len)
1751 {
1752         const u8 *src = drv->bssid;
1753
1754         if (data_len > 14) {
1755                 /* Skip Ethernet header */
1756                 src = data + ETH_ALEN;
1757                 data += 14;
1758                 data_len -= 14;
1759         }
1760 #ifndef HOSTAPD
1761         wpa_supplicant_rx_eapol(drv->ctx, src, data, data_len);
1762 #endif /* HOSTAPD */
1763 }
1764
1765
1766 static void wpa_driver_test_mlme(struct wpa_driver_test_data *drv,
1767                                  struct sockaddr *from,
1768                                  socklen_t fromlen,
1769                                  const u8 *data, size_t data_len)
1770 {
1771 #ifdef CONFIG_CLIENT_MLME
1772         struct ieee80211_rx_status rx_status;
1773         os_memset(&rx_status, 0, sizeof(rx_status));
1774         wpa_supplicant_sta_rx(drv->ctx, data, data_len, &rx_status);
1775 #endif /* CONFIG_CLIENT_MLME */
1776 }
1777
1778
1779 static void wpa_driver_test_scan_cmd(struct wpa_driver_test_data *drv,
1780                                      struct sockaddr *from,
1781                                      socklen_t fromlen,
1782                                      const u8 *data, size_t data_len)
1783 {
1784         char buf[512], *pos, *end;
1785         int ret;
1786
1787         /* data: optional [ STA-addr | ' ' | IEs(hex) ] */
1788
1789         if (!drv->ibss)
1790                 return;
1791
1792         pos = buf;
1793         end = buf + sizeof(buf);
1794
1795         /* reply: SCANRESP BSSID SSID IEs */
1796         ret = snprintf(pos, end - pos, "SCANRESP " MACSTR " ",
1797                        MAC2STR(drv->bssid));
1798         if (ret < 0 || ret >= end - pos)
1799                 return;
1800         pos += ret;
1801         pos += wpa_snprintf_hex(pos, end - pos,
1802                                 drv->ssid, drv->ssid_len);
1803         ret = snprintf(pos, end - pos, " ");
1804         if (ret < 0 || ret >= end - pos)
1805                 return;
1806         pos += ret;
1807         pos += wpa_snprintf_hex(pos, end - pos, drv->assoc_wpa_ie,
1808                                 drv->assoc_wpa_ie_len);
1809
1810         if (drv->privacy) {
1811                 ret = snprintf(pos, end - pos, " PRIVACY");
1812                 if (ret < 0 || ret >= end - pos)
1813                         return;
1814                 pos += ret;
1815         }
1816
1817         ret = snprintf(pos, end - pos, " IBSS");
1818         if (ret < 0 || ret >= end - pos)
1819                 return;
1820         pos += ret;
1821
1822         sendto(drv->test_socket, buf, pos - buf, 0,
1823                (struct sockaddr *) from, fromlen);
1824 }
1825
1826
1827 static void wpa_driver_test_receive_unix(int sock, void *eloop_ctx,
1828                                          void *sock_ctx)
1829 {
1830         struct wpa_driver_test_data *drv = eloop_ctx;
1831         char *buf;
1832         int res;
1833         struct sockaddr_storage from;
1834         socklen_t fromlen = sizeof(from);
1835         const size_t buflen = 2000;
1836
1837         if (drv->ap) {
1838                 test_driver_receive_unix(sock, eloop_ctx, sock_ctx);
1839                 return;
1840         }
1841
1842         buf = os_malloc(buflen);
1843         if (buf == NULL)
1844                 return;
1845         res = recvfrom(sock, buf, buflen - 1, 0,
1846                        (struct sockaddr *) &from, &fromlen);
1847         if (res < 0) {
1848                 perror("recvfrom(test_socket)");
1849                 os_free(buf);
1850                 return;
1851         }
1852         buf[res] = '\0';
1853
1854         wpa_printf(MSG_DEBUG, "test_driver: received %u bytes", res);
1855
1856         if (os_strncmp(buf, "SCANRESP ", 9) == 0) {
1857                 wpa_driver_test_scanresp(drv, (struct sockaddr *) &from,
1858                                          fromlen, buf + 9);
1859         } else if (os_strncmp(buf, "ASSOCRESP ", 10) == 0) {
1860                 wpa_driver_test_assocresp(drv, (struct sockaddr *) &from,
1861                                           fromlen, buf + 10);
1862         } else if (os_strcmp(buf, "DISASSOC") == 0) {
1863                 wpa_driver_test_disassoc(drv, (struct sockaddr *) &from,
1864                                          fromlen);
1865         } else if (os_strcmp(buf, "DEAUTH") == 0) {
1866                 wpa_driver_test_disassoc(drv, (struct sockaddr *) &from,
1867                                          fromlen);
1868         } else if (os_strncmp(buf, "EAPOL ", 6) == 0) {
1869                 wpa_driver_test_eapol(drv, (struct sockaddr *) &from, fromlen,
1870                                       (const u8 *) buf + 6, res - 6);
1871         } else if (os_strncmp(buf, "MLME ", 5) == 0) {
1872                 wpa_driver_test_mlme(drv, (struct sockaddr *) &from, fromlen,
1873                                      (const u8 *) buf + 5, res - 5);
1874         } else if (os_strncmp(buf, "SCAN ", 5) == 0) {
1875                 wpa_driver_test_scan_cmd(drv, (struct sockaddr *) &from,
1876                                          fromlen,
1877                                          (const u8 *) buf + 5, res - 5);
1878         } else {
1879                 wpa_hexdump_ascii(MSG_DEBUG, "Unknown test_socket command",
1880                                   (u8 *) buf, res);
1881         }
1882         os_free(buf);
1883 }
1884
1885
1886 static void * wpa_driver_test_init2(void *ctx, const char *ifname,
1887                                     void *global_priv)
1888 {
1889         struct wpa_driver_test_data *drv;
1890
1891         drv = os_zalloc(sizeof(*drv));
1892         if (drv == NULL)
1893                 return NULL;
1894         drv->global = global_priv;
1895         drv->ctx = ctx;
1896         drv->test_socket = -1;
1897
1898         /* Set dummy BSSID and SSID for testing. */
1899         drv->bssid[0] = 0x02;
1900         drv->bssid[1] = 0x00;
1901         drv->bssid[2] = 0x00;
1902         drv->bssid[3] = 0x00;
1903         drv->bssid[4] = 0x00;
1904         drv->bssid[5] = 0x01;
1905         os_memcpy(drv->ssid, "test", 5);
1906         drv->ssid_len = 4;
1907
1908         /* Generate a MAC address to help testing with multiple STAs */
1909         drv->own_addr[0] = 0x02; /* locally administered */
1910         sha1_prf((const u8 *) ifname, os_strlen(ifname),
1911                  "wpa_supplicant test mac addr generation",
1912                  NULL, 0, drv->own_addr + 1, ETH_ALEN - 1);
1913         eloop_register_timeout(1, 0, wpa_driver_test_poll, drv, NULL);
1914
1915         return drv;
1916 }
1917
1918
1919 static void wpa_driver_test_close_test_socket(struct wpa_driver_test_data *drv)
1920 {
1921         if (drv->test_socket >= 0) {
1922                 eloop_unregister_read_sock(drv->test_socket);
1923                 close(drv->test_socket);
1924                 drv->test_socket = -1;
1925         }
1926
1927         if (drv->own_socket_path) {
1928                 unlink(drv->own_socket_path);
1929                 os_free(drv->own_socket_path);
1930                 drv->own_socket_path = NULL;
1931         }
1932 }
1933
1934
1935 static void wpa_driver_test_deinit(void *priv)
1936 {
1937         struct wpa_driver_test_data *drv = priv;
1938         struct test_client_socket *cli, *prev;
1939         int i;
1940
1941         cli = drv->cli;
1942         while (cli) {
1943                 prev = cli;
1944                 cli = cli->next;
1945                 os_free(prev);
1946         }
1947
1948 #ifdef HOSTAPD
1949         /* There should be only one BSS remaining at this point. */
1950         if (drv->bss == NULL)
1951                 wpa_printf(MSG_ERROR, "%s: drv->bss == NULL", __func__);
1952         else if (drv->bss->next)
1953                 wpa_printf(MSG_ERROR, "%s: drv->bss->next != NULL", __func__);
1954 #endif /* HOSTAPD */
1955
1956         test_driver_free_bsses(drv);
1957
1958         wpa_driver_test_close_test_socket(drv);
1959         eloop_cancel_timeout(wpa_driver_test_scan_timeout, drv, drv->ctx);
1960         eloop_cancel_timeout(wpa_driver_test_poll, drv, NULL);
1961         os_free(drv->test_dir);
1962         for (i = 0; i < MAX_SCAN_RESULTS; i++)
1963                 os_free(drv->scanres[i]);
1964         os_free(drv->probe_req_ie);
1965         os_free(drv);
1966 }
1967
1968
1969 static int wpa_driver_test_attach(struct wpa_driver_test_data *drv,
1970                                   const char *dir, int ap)
1971 {
1972 #ifdef DRIVER_TEST_UNIX
1973         static unsigned int counter = 0;
1974         struct sockaddr_un addr;
1975         size_t len;
1976
1977         os_free(drv->own_socket_path);
1978         if (dir) {
1979                 len = os_strlen(dir) + 30;
1980                 drv->own_socket_path = os_malloc(len);
1981                 if (drv->own_socket_path == NULL)
1982                         return -1;
1983                 os_snprintf(drv->own_socket_path, len, "%s/%s-" MACSTR,
1984                             dir, ap ? "AP" : "STA", MAC2STR(drv->own_addr));
1985         } else {
1986                 drv->own_socket_path = os_malloc(100);
1987                 if (drv->own_socket_path == NULL)
1988                         return -1;
1989                 os_snprintf(drv->own_socket_path, 100,
1990                             "/tmp/wpa_supplicant_test-%d-%d",
1991                             getpid(), counter++);
1992         }
1993
1994         drv->test_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
1995         if (drv->test_socket < 0) {
1996                 perror("socket(PF_UNIX)");
1997                 os_free(drv->own_socket_path);
1998                 drv->own_socket_path = NULL;
1999                 return -1;
2000         }
2001
2002         os_memset(&addr, 0, sizeof(addr));
2003         addr.sun_family = AF_UNIX;
2004         os_strlcpy(addr.sun_path, drv->own_socket_path, sizeof(addr.sun_path));
2005         if (bind(drv->test_socket, (struct sockaddr *) &addr,
2006                  sizeof(addr)) < 0) {
2007                 perror("bind(PF_UNIX)");
2008                 close(drv->test_socket);
2009                 unlink(drv->own_socket_path);
2010                 os_free(drv->own_socket_path);
2011                 drv->own_socket_path = NULL;
2012                 return -1;
2013         }
2014
2015         eloop_register_read_sock(drv->test_socket,
2016                                  wpa_driver_test_receive_unix, drv, NULL);
2017
2018         return 0;
2019 #else /* DRIVER_TEST_UNIX */
2020         return -1;
2021 #endif /* DRIVER_TEST_UNIX */
2022 }
2023
2024
2025 static int wpa_driver_test_attach_udp(struct wpa_driver_test_data *drv,
2026                                       char *dst)
2027 {
2028         char *pos;
2029
2030         pos = os_strchr(dst, ':');
2031         if (pos == NULL)
2032                 return -1;
2033         *pos++ = '\0';
2034         wpa_printf(MSG_DEBUG, "%s: addr=%s port=%s", __func__, dst, pos);
2035
2036         drv->test_socket = socket(PF_INET, SOCK_DGRAM, 0);
2037         if (drv->test_socket < 0) {
2038                 perror("socket(PF_INET)");
2039                 return -1;
2040         }
2041
2042         os_memset(&drv->hostapd_addr_udp, 0, sizeof(drv->hostapd_addr_udp));
2043         drv->hostapd_addr_udp.sin_family = AF_INET;
2044 #if defined(CONFIG_NATIVE_WINDOWS) || defined(CONFIG_ANSI_C_EXTRA)
2045         {
2046                 int a[4];
2047                 u8 *pos;
2048                 sscanf(dst, "%d.%d.%d.%d", &a[0], &a[1], &a[2], &a[3]);
2049                 pos = (u8 *) &drv->hostapd_addr_udp.sin_addr;
2050                 *pos++ = a[0];
2051                 *pos++ = a[1];
2052                 *pos++ = a[2];
2053                 *pos++ = a[3];
2054         }
2055 #else /* CONFIG_NATIVE_WINDOWS or CONFIG_ANSI_C_EXTRA */
2056         inet_aton(dst, &drv->hostapd_addr_udp.sin_addr);
2057 #endif /* CONFIG_NATIVE_WINDOWS or CONFIG_ANSI_C_EXTRA */
2058         drv->hostapd_addr_udp.sin_port = htons(atoi(pos));
2059
2060         drv->hostapd_addr_udp_set = 1;
2061
2062         eloop_register_read_sock(drv->test_socket,
2063                                  wpa_driver_test_receive_unix, drv, NULL);
2064
2065         return 0;
2066 }
2067
2068
2069 static int wpa_driver_test_set_param(void *priv, const char *param)
2070 {
2071         struct wpa_driver_test_data *drv = priv;
2072         const char *pos;
2073
2074         wpa_printf(MSG_DEBUG, "%s: param='%s'", __func__, param);
2075         if (param == NULL)
2076                 return 0;
2077
2078         wpa_driver_test_close_test_socket(drv);
2079
2080 #ifdef DRIVER_TEST_UNIX
2081         pos = os_strstr(param, "test_socket=");
2082         if (pos) {
2083                 const char *pos2;
2084                 size_t len;
2085
2086                 pos += 12;
2087                 pos2 = os_strchr(pos, ' ');
2088                 if (pos2)
2089                         len = pos2 - pos;
2090                 else
2091                         len = os_strlen(pos);
2092                 if (len > sizeof(drv->hostapd_addr.sun_path))
2093                         return -1;
2094                 os_memset(&drv->hostapd_addr, 0, sizeof(drv->hostapd_addr));
2095                 drv->hostapd_addr.sun_family = AF_UNIX;
2096                 os_memcpy(drv->hostapd_addr.sun_path, pos, len);
2097                 drv->hostapd_addr_set = 1;
2098         }
2099 #endif /* DRIVER_TEST_UNIX */
2100
2101         pos = os_strstr(param, "test_dir=");
2102         if (pos) {
2103                 char *end;
2104                 os_free(drv->test_dir);
2105                 drv->test_dir = os_strdup(pos + 9);
2106                 if (drv->test_dir == NULL)
2107                         return -1;
2108                 end = os_strchr(drv->test_dir, ' ');
2109                 if (end)
2110                         *end = '\0';
2111                 if (wpa_driver_test_attach(drv, drv->test_dir, 0))
2112                         return -1;
2113         } else {
2114                 pos = os_strstr(param, "test_udp=");
2115                 if (pos) {
2116                         char *dst, *epos;
2117                         dst = os_strdup(pos + 9);
2118                         if (dst == NULL)
2119                                 return -1;
2120                         epos = os_strchr(dst, ' ');
2121                         if (epos)
2122                                 *epos = '\0';
2123                         if (wpa_driver_test_attach_udp(drv, dst))
2124                                 return -1;
2125                         os_free(dst);
2126                 } else if (wpa_driver_test_attach(drv, NULL, 0))
2127                         return -1;
2128         }
2129
2130         if (os_strstr(param, "use_associnfo=1")) {
2131                 wpa_printf(MSG_DEBUG, "test_driver: Use AssocInfo events");
2132                 drv->use_associnfo = 1;
2133         }
2134
2135 #ifdef CONFIG_CLIENT_MLME
2136         if (os_strstr(param, "use_mlme=1")) {
2137                 wpa_printf(MSG_DEBUG, "test_driver: Use internal MLME");
2138                 drv->use_mlme = 1;
2139         }
2140 #endif /* CONFIG_CLIENT_MLME */
2141
2142         return 0;
2143 }
2144
2145
2146 static const u8 * wpa_driver_test_get_mac_addr(void *priv)
2147 {
2148         struct wpa_driver_test_data *drv = priv;
2149         wpa_printf(MSG_DEBUG, "%s", __func__);
2150         return drv->own_addr;
2151 }
2152
2153
2154 static int wpa_driver_test_send_eapol(void *priv, const u8 *dest, u16 proto,
2155                                       const u8 *data, size_t data_len)
2156 {
2157         struct wpa_driver_test_data *drv = priv;
2158         char *msg;
2159         size_t msg_len;
2160         struct l2_ethhdr eth;
2161         struct sockaddr *addr;
2162         socklen_t alen;
2163 #ifdef DRIVER_TEST_UNIX
2164         struct sockaddr_un addr_un;
2165 #endif /* DRIVER_TEST_UNIX */
2166
2167         wpa_hexdump(MSG_MSGDUMP, "test_send_eapol TX frame", data, data_len);
2168
2169         os_memset(&eth, 0, sizeof(eth));
2170         os_memcpy(eth.h_dest, dest, ETH_ALEN);
2171         os_memcpy(eth.h_source, drv->own_addr, ETH_ALEN);
2172         eth.h_proto = host_to_be16(proto);
2173
2174         msg_len = 6 + sizeof(eth) + data_len;
2175         msg = os_malloc(msg_len);
2176         if (msg == NULL)
2177                 return -1;
2178         os_memcpy(msg, "EAPOL ", 6);
2179         os_memcpy(msg + 6, &eth, sizeof(eth));
2180         os_memcpy(msg + 6 + sizeof(eth), data, data_len);
2181
2182         if (os_memcmp(dest, drv->bssid, ETH_ALEN) == 0 ||
2183             drv->test_dir == NULL) {
2184                 if (drv->hostapd_addr_udp_set) {
2185                         addr = (struct sockaddr *) &drv->hostapd_addr_udp;
2186                         alen = sizeof(drv->hostapd_addr_udp);
2187                 } else {
2188 #ifdef DRIVER_TEST_UNIX
2189                         addr = (struct sockaddr *) &drv->hostapd_addr;
2190                         alen = sizeof(drv->hostapd_addr);
2191 #else /* DRIVER_TEST_UNIX */
2192                         os_free(msg);
2193                         return -1;
2194 #endif /* DRIVER_TEST_UNIX */
2195                 }
2196         } else {
2197 #ifdef DRIVER_TEST_UNIX
2198                 struct stat st;
2199                 os_memset(&addr_un, 0, sizeof(addr_un));
2200                 addr_un.sun_family = AF_UNIX;
2201                 os_snprintf(addr_un.sun_path, sizeof(addr_un.sun_path),
2202                             "%s/STA-" MACSTR, drv->test_dir, MAC2STR(dest));
2203                 if (stat(addr_un.sun_path, &st) < 0) {
2204                         os_snprintf(addr_un.sun_path, sizeof(addr_un.sun_path),
2205                                     "%s/AP-" MACSTR,
2206                                     drv->test_dir, MAC2STR(dest));
2207                 }
2208                 addr = (struct sockaddr *) &addr_un;
2209                 alen = sizeof(addr_un);
2210 #else /* DRIVER_TEST_UNIX */
2211                 os_free(msg);
2212                 return -1;
2213 #endif /* DRIVER_TEST_UNIX */
2214         }
2215
2216         if (sendto(drv->test_socket, msg, msg_len, 0, addr, alen) < 0) {
2217                 perror("sendmsg(test_socket)");
2218                 os_free(msg);
2219                 return -1;
2220         }
2221
2222         os_free(msg);
2223         return 0;
2224 }
2225
2226
2227 static int wpa_driver_test_get_capa(void *priv, struct wpa_driver_capa *capa)
2228 {
2229         struct wpa_driver_test_data *drv = priv;
2230         os_memset(capa, 0, sizeof(*capa));
2231         capa->key_mgmt = WPA_DRIVER_CAPA_KEY_MGMT_WPA |
2232                 WPA_DRIVER_CAPA_KEY_MGMT_WPA2 |
2233                 WPA_DRIVER_CAPA_KEY_MGMT_WPA_PSK |
2234                 WPA_DRIVER_CAPA_KEY_MGMT_WPA2_PSK |
2235                 WPA_DRIVER_CAPA_KEY_MGMT_WPA_NONE |
2236                 WPA_DRIVER_CAPA_KEY_MGMT_FT |
2237                 WPA_DRIVER_CAPA_KEY_MGMT_FT_PSK;
2238         capa->enc = WPA_DRIVER_CAPA_ENC_WEP40 |
2239                 WPA_DRIVER_CAPA_ENC_WEP104 |
2240                 WPA_DRIVER_CAPA_ENC_TKIP |
2241                 WPA_DRIVER_CAPA_ENC_CCMP;
2242         capa->auth = WPA_DRIVER_AUTH_OPEN |
2243                 WPA_DRIVER_AUTH_SHARED |
2244                 WPA_DRIVER_AUTH_LEAP;
2245         if (drv->use_mlme)
2246                 capa->flags |= WPA_DRIVER_FLAGS_USER_SPACE_MLME;
2247         capa->flags |= WPA_DRIVER_FLAGS_AP;
2248         capa->max_scan_ssids = 2;
2249
2250         return 0;
2251 }
2252
2253
2254 static int wpa_driver_test_mlme_setprotection(void *priv, const u8 *addr,
2255                                               int protect_type,
2256                                               int key_type)
2257 {
2258         wpa_printf(MSG_DEBUG, "%s: protect_type=%d key_type=%d",
2259                    __func__, protect_type, key_type);
2260
2261         if (addr) {
2262                 wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR,
2263                            __func__, MAC2STR(addr));
2264         }
2265
2266         return 0;
2267 }
2268
2269
2270 static int wpa_driver_test_set_channel(void *priv, hostapd_hw_mode phymode,
2271                                        int chan, int freq)
2272 {
2273         wpa_printf(MSG_DEBUG, "%s: phymode=%d chan=%d freq=%d",
2274                    __func__, phymode, chan, freq);
2275         return 0;
2276 }
2277
2278
2279 static int wpa_driver_test_mlme_add_sta(void *priv, const u8 *addr,
2280                                         const u8 *supp_rates,
2281                                         size_t supp_rates_len)
2282 {
2283         wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR, __func__, MAC2STR(addr));
2284         return 0;
2285 }
2286
2287
2288 static int wpa_driver_test_mlme_remove_sta(void *priv, const u8 *addr)
2289 {
2290         wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR, __func__, MAC2STR(addr));
2291         return 0;
2292 }
2293
2294
2295 static int wpa_driver_test_set_ssid(void *priv, const u8 *ssid,
2296                                     size_t ssid_len)
2297 {
2298         wpa_printf(MSG_DEBUG, "%s", __func__);
2299         return 0;
2300 }
2301
2302
2303 static int wpa_driver_test_set_bssid(void *priv, const u8 *bssid)
2304 {
2305         wpa_printf(MSG_DEBUG, "%s: bssid=" MACSTR, __func__, MAC2STR(bssid));
2306         return 0;
2307 }
2308
2309
2310 static void * wpa_driver_test_global_init(void)
2311 {
2312         struct wpa_driver_test_global *global;
2313
2314         global = os_zalloc(sizeof(*global));
2315         return global;
2316 }
2317
2318
2319 static void wpa_driver_test_global_deinit(void *priv)
2320 {
2321         struct wpa_driver_test_global *global = priv;
2322         os_free(global);
2323 }
2324
2325
2326 static struct wpa_interface_info *
2327 wpa_driver_test_get_interfaces(void *global_priv)
2328 {
2329         /* struct wpa_driver_test_global *global = priv; */
2330         struct wpa_interface_info *iface;
2331
2332         iface = os_zalloc(sizeof(*iface));
2333         if (iface == NULL)
2334                 return iface;
2335         iface->ifname = os_strdup("sta0");
2336         iface->desc = os_strdup("test interface 0");
2337         iface->drv_name = "test";
2338         iface->next = os_zalloc(sizeof(*iface));
2339         if (iface->next) {
2340                 iface->next->ifname = os_strdup("sta1");
2341                 iface->next->desc = os_strdup("test interface 1");
2342                 iface->next->drv_name = "test";
2343         }
2344
2345         return iface;
2346 }
2347
2348
2349 static struct hostapd_hw_modes *
2350 wpa_driver_test_get_hw_feature_data(void *priv, u16 *num_modes, u16 *flags)
2351 {
2352         struct hostapd_hw_modes *modes;
2353
2354         *num_modes = 3;
2355         *flags = 0;
2356         modes = os_zalloc(*num_modes * sizeof(struct hostapd_hw_modes));
2357         if (modes == NULL)
2358                 return NULL;
2359         modes[0].mode = HOSTAPD_MODE_IEEE80211G;
2360         modes[0].num_channels = 1;
2361         modes[0].num_rates = 1;
2362         modes[0].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2363         modes[0].rates = os_zalloc(sizeof(int));
2364         if (modes[0].channels == NULL || modes[0].rates == NULL)
2365                 goto fail;
2366         modes[0].channels[0].chan = 1;
2367         modes[0].channels[0].freq = 2412;
2368         modes[0].channels[0].flag = 0;
2369         modes[0].rates[0] = 10;
2370
2371         modes[1].mode = HOSTAPD_MODE_IEEE80211B;
2372         modes[1].num_channels = 1;
2373         modes[1].num_rates = 1;
2374         modes[1].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2375         modes[1].rates = os_zalloc(sizeof(int));
2376         if (modes[1].channels == NULL || modes[1].rates == NULL)
2377                 goto fail;
2378         modes[1].channels[0].chan = 1;
2379         modes[1].channels[0].freq = 2412;
2380         modes[1].channels[0].flag = 0;
2381         modes[1].rates[0] = 10;
2382
2383         modes[2].mode = HOSTAPD_MODE_IEEE80211A;
2384         modes[2].num_channels = 1;
2385         modes[2].num_rates = 1;
2386         modes[2].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2387         modes[2].rates = os_zalloc(sizeof(int));
2388         if (modes[2].channels == NULL || modes[2].rates == NULL)
2389                 goto fail;
2390         modes[2].channels[0].chan = 60;
2391         modes[2].channels[0].freq = 5300;
2392         modes[2].channels[0].flag = 0;
2393         modes[2].rates[0] = 60;
2394
2395         return modes;
2396
2397 fail:
2398         if (modes) {
2399                 size_t i;
2400                 for (i = 0; i < *num_modes; i++) {
2401                         os_free(modes[i].channels);
2402                         os_free(modes[i].rates);
2403                 }
2404                 os_free(modes);
2405         }
2406         return NULL;
2407 }
2408
2409
2410 const struct wpa_driver_ops wpa_driver_test_ops = {
2411         "test",
2412         "wpa_supplicant test driver",
2413         .hapd_init = test_driver_init,
2414         .hapd_deinit = wpa_driver_test_deinit,
2415         .hapd_send_eapol = test_driver_send_eapol,
2416         .send_mlme = wpa_driver_test_send_mlme,
2417         .set_generic_elem = test_driver_set_generic_elem,
2418         .sta_deauth = test_driver_sta_deauth,
2419         .sta_disassoc = test_driver_sta_disassoc,
2420         .get_hw_feature_data = wpa_driver_test_get_hw_feature_data,
2421         .if_add = test_driver_if_add,
2422         .if_remove = test_driver_if_remove,
2423         .valid_bss_mask = test_driver_valid_bss_mask,
2424         .hapd_set_ssid = test_driver_set_ssid,
2425         .set_privacy = test_driver_set_privacy,
2426         .set_sta_vlan = test_driver_set_sta_vlan,
2427         .sta_add = test_driver_sta_add,
2428         .send_ether = test_driver_send_ether,
2429         .set_wps_beacon_ie = test_driver_set_wps_beacon_ie,
2430         .set_wps_probe_resp_ie = test_driver_set_wps_probe_resp_ie,
2431         .get_bssid = wpa_driver_test_get_bssid,
2432         .get_ssid = wpa_driver_test_get_ssid,
2433         .set_key = wpa_driver_test_set_key,
2434         .deinit = wpa_driver_test_deinit,
2435         .set_param = wpa_driver_test_set_param,
2436         .deauthenticate = wpa_driver_test_deauthenticate,
2437         .disassociate = wpa_driver_test_disassociate,
2438         .associate = wpa_driver_test_associate,
2439         .get_capa = wpa_driver_test_get_capa,
2440         .get_mac_addr = wpa_driver_test_get_mac_addr,
2441         .send_eapol = wpa_driver_test_send_eapol,
2442         .mlme_setprotection = wpa_driver_test_mlme_setprotection,
2443         .set_channel = wpa_driver_test_set_channel,
2444         .set_ssid = wpa_driver_test_set_ssid,
2445         .set_bssid = wpa_driver_test_set_bssid,
2446         .mlme_add_sta = wpa_driver_test_mlme_add_sta,
2447         .mlme_remove_sta = wpa_driver_test_mlme_remove_sta,
2448         .get_scan_results2 = wpa_driver_test_get_scan_results2,
2449         .global_init = wpa_driver_test_global_init,
2450         .global_deinit = wpa_driver_test_global_deinit,
2451         .init2 = wpa_driver_test_init2,
2452         .get_interfaces = wpa_driver_test_get_interfaces,
2453         .scan2 = wpa_driver_test_scan,
2454 };