Replace hostapd_wps_probe_req_rx() with more generic ProbeReq notifier
[libeap.git] / src / drivers / driver_test.c
1 /*
2  * WPA Supplicant - testing driver interface
3  * Copyright (c) 2004-2008, Jouni Malinen <j@w1.fi>
4  *
5  * This program is free software; you can redistribute it and/or modify
6  * it under the terms of the GNU General Public License version 2 as
7  * published by the Free Software Foundation.
8  *
9  * Alternatively, this software may be distributed under the terms of BSD
10  * license.
11  *
12  * See README and COPYING for more details.
13  */
14
15 /* Make sure we get winsock2.h for Windows build to get sockaddr_storage */
16 #include "build_config.h"
17 #ifdef CONFIG_NATIVE_WINDOWS
18 #include <winsock2.h>
19 #endif /* CONFIG_NATIVE_WINDOWS */
20
21 #include "includes.h"
22
23 #ifndef CONFIG_NATIVE_WINDOWS
24 #include <sys/un.h>
25 #include <dirent.h>
26 #include <sys/stat.h>
27 #define DRIVER_TEST_UNIX
28 #endif /* CONFIG_NATIVE_WINDOWS */
29
30 #include "common.h"
31 #include "driver.h"
32 #include "l2_packet/l2_packet.h"
33 #include "eloop.h"
34 #include "sha1.h"
35 #include "ieee802_11_defs.h"
36
37
38 #ifdef HOSTAPD
39
40 #include "../../hostapd/hostapd.h"
41 #include "../../hostapd/wpa.h"
42 #include "../../hostapd/hw_features.h"
43
44
45 struct test_client_socket {
46         struct test_client_socket *next;
47         u8 addr[ETH_ALEN];
48         struct sockaddr_un un;
49         socklen_t unlen;
50         struct test_driver_bss *bss;
51 };
52
53 struct test_driver_bss {
54         struct test_driver_bss *next;
55         char ifname[IFNAMSIZ + 1];
56         u8 bssid[ETH_ALEN];
57         u8 *ie;
58         size_t ielen;
59         u8 *wps_beacon_ie;
60         size_t wps_beacon_ie_len;
61         u8 *wps_probe_resp_ie;
62         size_t wps_probe_resp_ie_len;
63         u8 ssid[32];
64         size_t ssid_len;
65         int privacy;
66 };
67
68 struct test_driver_data {
69         struct hostapd_data *hapd;
70         struct test_client_socket *cli;
71         int test_socket;
72         struct test_driver_bss *bss;
73         char *socket_dir;
74         char *own_socket_path;
75         int udp_port;
76 };
77
78 #else /* HOSTAPD */
79
80 struct wpa_driver_test_global {
81         int dummy;
82 };
83
84 struct wpa_driver_test_data {
85         struct wpa_driver_test_global *global;
86         void *ctx;
87         u8 own_addr[ETH_ALEN];
88         int test_socket;
89 #ifdef DRIVER_TEST_UNIX
90         struct sockaddr_un hostapd_addr;
91 #endif /* DRIVER_TEST_UNIX */
92         int hostapd_addr_set;
93         struct sockaddr_in hostapd_addr_udp;
94         int hostapd_addr_udp_set;
95         char *own_socket_path;
96         char *test_dir;
97         u8 bssid[ETH_ALEN];
98         u8 ssid[32];
99         size_t ssid_len;
100 #define MAX_SCAN_RESULTS 30
101         struct wpa_scan_res *scanres[MAX_SCAN_RESULTS];
102         size_t num_scanres;
103         int use_associnfo;
104         u8 assoc_wpa_ie[80];
105         size_t assoc_wpa_ie_len;
106         int use_mlme;
107         int associated;
108         u8 *probe_req_ie;
109         size_t probe_req_ie_len;
110         int ibss;
111         int privacy;
112 };
113
114 #endif /* HOSTAPD */
115
116
117 #ifdef HOSTAPD
118
119 static void test_driver_free_bss(struct test_driver_bss *bss)
120 {
121         free(bss->ie);
122         free(bss->wps_beacon_ie);
123         free(bss->wps_probe_resp_ie);
124         free(bss);
125 }
126
127
128 static void test_driver_free_priv(struct test_driver_data *drv)
129 {
130         struct test_driver_bss *bss, *prev;
131
132         if (drv == NULL)
133                 return;
134
135         bss = drv->bss;
136         while (bss) {
137                 prev = bss;
138                 bss = bss->next;
139                 test_driver_free_bss(prev);
140         }
141         free(drv->own_socket_path);
142         free(drv->socket_dir);
143         free(drv);
144 }
145
146
147 static struct test_client_socket *
148 test_driver_get_cli(struct test_driver_data *drv, struct sockaddr_un *from,
149                     socklen_t fromlen)
150 {
151         struct test_client_socket *cli = drv->cli;
152
153         while (cli) {
154                 if (cli->unlen == fromlen &&
155                     strncmp(cli->un.sun_path, from->sun_path,
156                             fromlen - sizeof(cli->un.sun_family)) == 0)
157                         return cli;
158                 cli = cli->next;
159         }
160
161         return NULL;
162 }
163
164
165 static int test_driver_send_eapol(void *priv, const u8 *addr, const u8 *data,
166                                   size_t data_len, int encrypt,
167                                   const u8 *own_addr)
168 {
169         struct test_driver_data *drv = priv;
170         struct test_client_socket *cli;
171         struct msghdr msg;
172         struct iovec io[3];
173         struct l2_ethhdr eth;
174
175         if (drv->test_socket < 0)
176                 return -1;
177
178         cli = drv->cli;
179         while (cli) {
180                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
181                         break;
182                 cli = cli->next;
183         }
184
185         if (!cli) {
186                 wpa_printf(MSG_DEBUG, "%s: no destination client entry",
187                            __func__);
188                 return -1;
189         }
190
191         memcpy(eth.h_dest, addr, ETH_ALEN);
192         memcpy(eth.h_source, own_addr, ETH_ALEN);
193         eth.h_proto = host_to_be16(ETH_P_EAPOL);
194
195         io[0].iov_base = "EAPOL ";
196         io[0].iov_len = 6;
197         io[1].iov_base = &eth;
198         io[1].iov_len = sizeof(eth);
199         io[2].iov_base = (u8 *) data;
200         io[2].iov_len = data_len;
201
202         memset(&msg, 0, sizeof(msg));
203         msg.msg_iov = io;
204         msg.msg_iovlen = 3;
205         msg.msg_name = &cli->un;
206         msg.msg_namelen = cli->unlen;
207         return sendmsg(drv->test_socket, &msg, 0);
208 }
209
210
211 static int test_driver_send_ether(void *priv, const u8 *dst, const u8 *src,
212                                   u16 proto, const u8 *data, size_t data_len)
213 {
214         struct test_driver_data *drv = priv;
215         struct msghdr msg;
216         struct iovec io[3];
217         struct l2_ethhdr eth;
218         char desttxt[30];
219         struct sockaddr_un addr;
220         struct dirent *dent;
221         DIR *dir;
222         int ret = 0, broadcast = 0, count = 0;
223
224         if (drv->test_socket < 0 || drv->socket_dir == NULL) {
225                 wpa_printf(MSG_DEBUG, "%s: invalid parameters (sock=%d "
226                            "socket_dir=%p)",
227                            __func__, drv->test_socket, drv->socket_dir);
228                 return -1;
229         }
230
231         broadcast = memcmp(dst, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) == 0;
232         snprintf(desttxt, sizeof(desttxt), MACSTR, MAC2STR(dst));
233
234         memcpy(eth.h_dest, dst, ETH_ALEN);
235         memcpy(eth.h_source, src, ETH_ALEN);
236         eth.h_proto = host_to_be16(proto);
237
238         io[0].iov_base = "ETHER ";
239         io[0].iov_len = 6;
240         io[1].iov_base = &eth;
241         io[1].iov_len = sizeof(eth);
242         io[2].iov_base = (u8 *) data;
243         io[2].iov_len = data_len;
244
245         memset(&msg, 0, sizeof(msg));
246         msg.msg_iov = io;
247         msg.msg_iovlen = 3;
248
249         dir = opendir(drv->socket_dir);
250         if (dir == NULL) {
251                 perror("test_driver: opendir");
252                 return -1;
253         }
254         while ((dent = readdir(dir))) {
255 #ifdef _DIRENT_HAVE_D_TYPE
256                 /* Skip the file if it is not a socket. Also accept
257                  * DT_UNKNOWN (0) in case the C library or underlying file
258                  * system does not support d_type. */
259                 if (dent->d_type != DT_SOCK && dent->d_type != DT_UNKNOWN)
260                         continue;
261 #endif /* _DIRENT_HAVE_D_TYPE */
262                 if (strcmp(dent->d_name, ".") == 0 ||
263                     strcmp(dent->d_name, "..") == 0)
264                         continue;
265
266                 memset(&addr, 0, sizeof(addr));
267                 addr.sun_family = AF_UNIX;
268                 snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
269                          drv->socket_dir, dent->d_name);
270
271                 if (strcmp(addr.sun_path, drv->own_socket_path) == 0)
272                         continue;
273                 if (!broadcast && strstr(dent->d_name, desttxt) == NULL)
274                         continue;
275
276                 wpa_printf(MSG_DEBUG, "%s: Send ether frame to %s",
277                            __func__, dent->d_name);
278
279                 msg.msg_name = &addr;
280                 msg.msg_namelen = sizeof(addr);
281                 ret = sendmsg(drv->test_socket, &msg, 0);
282                 if (ret < 0)
283                         perror("driver_test: sendmsg");
284                 count++;
285         }
286         closedir(dir);
287
288         if (!broadcast && count == 0) {
289                 wpa_printf(MSG_DEBUG, "%s: Destination " MACSTR " not found",
290                            __func__, MAC2STR(dst));
291                 return -1;
292         }
293
294         return ret;
295 }
296
297
298 static int wpa_driver_test_send_mlme(void *priv, const u8 *buf, size_t len)
299 {
300         struct test_driver_data *drv = priv;
301         struct msghdr msg;
302         struct iovec io[2];
303         const u8 *dest;
304         int ret = 0, broadcast = 0;
305         char desttxt[30];
306         struct sockaddr_un addr;
307         struct dirent *dent;
308         DIR *dir;
309         struct ieee80211_hdr *hdr;
310         u16 fc;
311
312         if (drv->test_socket < 0 || len < 10 || drv->socket_dir == NULL) {
313                 wpa_printf(MSG_DEBUG, "%s: invalid parameters (sock=%d len=%lu"
314                            " socket_dir=%p)",
315                            __func__, drv->test_socket, (unsigned long) len,
316                            drv->socket_dir);
317                 return -1;
318         }
319
320         dest = buf;
321         dest += 4;
322         broadcast = memcmp(dest, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) == 0;
323         snprintf(desttxt, sizeof(desttxt), MACSTR, MAC2STR(dest));
324
325         io[0].iov_base = "MLME ";
326         io[0].iov_len = 5;
327         io[1].iov_base = (void *) buf;
328         io[1].iov_len = len;
329
330         memset(&msg, 0, sizeof(msg));
331         msg.msg_iov = io;
332         msg.msg_iovlen = 2;
333
334         dir = opendir(drv->socket_dir);
335         if (dir == NULL) {
336                 perror("test_driver: opendir");
337                 return -1;
338         }
339         while ((dent = readdir(dir))) {
340 #ifdef _DIRENT_HAVE_D_TYPE
341                 /* Skip the file if it is not a socket. Also accept
342                  * DT_UNKNOWN (0) in case the C library or underlying file
343                  * system does not support d_type. */
344                 if (dent->d_type != DT_SOCK && dent->d_type != DT_UNKNOWN)
345                         continue;
346 #endif /* _DIRENT_HAVE_D_TYPE */
347                 if (strcmp(dent->d_name, ".") == 0 ||
348                     strcmp(dent->d_name, "..") == 0)
349                         continue;
350
351                 memset(&addr, 0, sizeof(addr));
352                 addr.sun_family = AF_UNIX;
353                 snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
354                          drv->socket_dir, dent->d_name);
355
356                 if (strcmp(addr.sun_path, drv->own_socket_path) == 0)
357                         continue;
358                 if (!broadcast && strstr(dent->d_name, desttxt) == NULL)
359                         continue;
360
361                 wpa_printf(MSG_DEBUG, "%s: Send management frame to %s",
362                            __func__, dent->d_name);
363
364                 msg.msg_name = &addr;
365                 msg.msg_namelen = sizeof(addr);
366                 ret = sendmsg(drv->test_socket, &msg, 0);
367                 if (ret < 0)
368                         perror("driver_test: sendmsg");
369         }
370         closedir(dir);
371
372         hdr = (struct ieee80211_hdr *) buf;
373         fc = le_to_host16(hdr->frame_control);
374         hostapd_mgmt_tx_cb(drv->hapd, (u8 *) buf, len, WLAN_FC_GET_STYPE(fc),
375                            ret >= 0);
376
377         return ret;
378 }
379
380
381 static void test_driver_scan(struct test_driver_data *drv,
382                              struct sockaddr_un *from, socklen_t fromlen,
383                              char *data)
384 {
385         char buf[512], *pos, *end;
386         int ret;
387         struct test_driver_bss *bss;
388         u8 sa[ETH_ALEN];
389         u8 ie[512];
390         size_t ielen;
391
392         /* data: optional [ ' ' | STA-addr | ' ' | IEs(hex) ] */
393
394         wpa_printf(MSG_DEBUG, "test_driver: SCAN");
395
396         if (*data) {
397                 if (*data != ' ' ||
398                     hwaddr_aton(data + 1, sa)) {
399                         wpa_printf(MSG_DEBUG, "test_driver: Unexpected SCAN "
400                                    "command format");
401                         return;
402                 }
403
404                 data += 18;
405                 while (*data == ' ')
406                         data++;
407                 ielen = os_strlen(data) / 2;
408                 if (ielen > sizeof(ie))
409                         ielen = sizeof(ie);
410                 if (hexstr2bin(data, ie, ielen) < 0)
411                         ielen = 0;
412
413                 wpa_printf(MSG_DEBUG, "test_driver: Scan from " MACSTR,
414                            MAC2STR(sa));
415                 wpa_hexdump(MSG_MSGDUMP, "test_driver: scan IEs", ie, ielen);
416
417                 hostapd_probe_req_rx(drv->hapd, sa, ie, ielen);
418         }
419
420         for (bss = drv->bss; bss; bss = bss->next) {
421                 pos = buf;
422                 end = buf + sizeof(buf);
423
424                 /* reply: SCANRESP BSSID SSID IEs */
425                 ret = snprintf(pos, end - pos, "SCANRESP " MACSTR " ",
426                                MAC2STR(bss->bssid));
427                 if (ret < 0 || ret >= end - pos)
428                         return;
429                 pos += ret;
430                 pos += wpa_snprintf_hex(pos, end - pos,
431                                         bss->ssid, bss->ssid_len);
432                 ret = snprintf(pos, end - pos, " ");
433                 if (ret < 0 || ret >= end - pos)
434                         return;
435                 pos += ret;
436                 pos += wpa_snprintf_hex(pos, end - pos, bss->ie, bss->ielen);
437                 pos += wpa_snprintf_hex(pos, end - pos, bss->wps_probe_resp_ie,
438                                         bss->wps_probe_resp_ie_len);
439
440                 if (bss->privacy) {
441                         ret = snprintf(pos, end - pos, " PRIVACY");
442                         if (ret < 0 || ret >= end - pos)
443                                 return;
444                         pos += ret;
445                 }
446
447                 sendto(drv->test_socket, buf, pos - buf, 0,
448                        (struct sockaddr *) from, fromlen);
449         }
450 }
451
452
453 static struct hostapd_data * test_driver_get_hapd(struct test_driver_data *drv,
454                                                   struct test_driver_bss *bss)
455 {
456         struct hostapd_iface *iface = drv->hapd->iface;
457         struct hostapd_data *hapd = NULL;
458         size_t i;
459
460         if (bss == NULL) {
461                 wpa_printf(MSG_DEBUG, "%s: bss == NULL", __func__);
462                 return NULL;
463         }
464
465         for (i = 0; i < iface->num_bss; i++) {
466                 hapd = iface->bss[i];
467                 if (memcmp(hapd->own_addr, bss->bssid, ETH_ALEN) == 0)
468                         break;
469         }
470         if (i == iface->num_bss) {
471                 wpa_printf(MSG_DEBUG, "%s: no matching interface entry found "
472                            "for BSSID " MACSTR, __func__, MAC2STR(bss->bssid));
473                 return NULL;
474         }
475
476         return hapd;
477 }
478
479
480 static int test_driver_new_sta(struct test_driver_data *drv,
481                                struct test_driver_bss *bss, const u8 *addr,
482                                const u8 *ie, size_t ielen)
483 {
484         struct hostapd_data *hapd;
485
486         hapd = test_driver_get_hapd(drv, bss);
487         if (hapd == NULL)
488                 return -1;
489
490         return hostapd_notif_assoc(hapd, addr, ie, ielen);
491 }
492
493
494 static void test_driver_assoc(struct test_driver_data *drv,
495                               struct sockaddr_un *from, socklen_t fromlen,
496                               char *data)
497 {
498         struct test_client_socket *cli;
499         u8 ie[256], ssid[32];
500         size_t ielen, ssid_len = 0;
501         char *pos, *pos2, cmd[50];
502         struct test_driver_bss *bss;
503
504         /* data: STA-addr SSID(hex) IEs(hex) */
505
506         cli = os_zalloc(sizeof(*cli));
507         if (cli == NULL)
508                 return;
509
510         if (hwaddr_aton(data, cli->addr)) {
511                 printf("test_socket: Invalid MAC address '%s' in ASSOC\n",
512                        data);
513                 free(cli);
514                 return;
515         }
516         pos = data + 17;
517         while (*pos == ' ')
518                 pos++;
519         pos2 = strchr(pos, ' ');
520         ielen = 0;
521         if (pos2) {
522                 ssid_len = (pos2 - pos) / 2;
523                 if (hexstr2bin(pos, ssid, ssid_len) < 0) {
524                         wpa_printf(MSG_DEBUG, "%s: Invalid SSID", __func__);
525                         free(cli);
526                         return;
527                 }
528                 wpa_hexdump_ascii(MSG_DEBUG, "test_driver_assoc: SSID",
529                                   ssid, ssid_len);
530
531                 pos = pos2 + 1;
532                 ielen = strlen(pos) / 2;
533                 if (ielen > sizeof(ie))
534                         ielen = sizeof(ie);
535                 if (hexstr2bin(pos, ie, ielen) < 0)
536                         ielen = 0;
537         }
538
539         for (bss = drv->bss; bss; bss = bss->next) {
540                 if (bss->ssid_len == ssid_len &&
541                     memcmp(bss->ssid, ssid, ssid_len) == 0)
542                         break;
543         }
544         if (bss == NULL) {
545                 wpa_printf(MSG_DEBUG, "%s: No matching SSID found from "
546                            "configured BSSes", __func__);
547                 free(cli);
548                 return;
549         }
550
551         cli->bss = bss;
552         memcpy(&cli->un, from, sizeof(cli->un));
553         cli->unlen = fromlen;
554         cli->next = drv->cli;
555         drv->cli = cli;
556         wpa_hexdump_ascii(MSG_DEBUG, "test_socket: ASSOC sun_path",
557                           (const u8 *) cli->un.sun_path,
558                           cli->unlen - sizeof(cli->un.sun_family));
559
560         snprintf(cmd, sizeof(cmd), "ASSOCRESP " MACSTR " 0",
561                  MAC2STR(bss->bssid));
562         sendto(drv->test_socket, cmd, strlen(cmd), 0,
563                (struct sockaddr *) from, fromlen);
564
565         if (test_driver_new_sta(drv, bss, cli->addr, ie, ielen) < 0) {
566                 wpa_printf(MSG_DEBUG, "test_driver: failed to add new STA");
567         }
568 }
569
570
571 static void test_driver_disassoc(struct test_driver_data *drv,
572                                  struct sockaddr_un *from, socklen_t fromlen)
573 {
574         struct test_client_socket *cli;
575
576         cli = test_driver_get_cli(drv, from, fromlen);
577         if (!cli)
578                 return;
579
580         hostapd_notif_disassoc(drv->hapd, cli->addr);
581 }
582
583
584 static void test_driver_eapol(struct test_driver_data *drv,
585                               struct sockaddr_un *from, socklen_t fromlen,
586                               u8 *data, size_t datalen)
587 {
588         struct test_client_socket *cli;
589         if (datalen > 14) {
590                 /* Skip Ethernet header */
591                 wpa_printf(MSG_DEBUG, "test_driver: dst=" MACSTR " src="
592                            MACSTR " proto=%04x",
593                            MAC2STR(data), MAC2STR(data + ETH_ALEN),
594                            WPA_GET_BE16(data + 2 * ETH_ALEN));
595                 data += 14;
596                 datalen -= 14;
597         }
598         cli = test_driver_get_cli(drv, from, fromlen);
599         if (cli) {
600                 struct hostapd_data *hapd;
601                 hapd = test_driver_get_hapd(drv, cli->bss);
602                 if (hapd == NULL)
603                         return;
604                 hostapd_eapol_receive(hapd, cli->addr, data, datalen);
605         } else {
606                 wpa_printf(MSG_DEBUG, "test_socket: EAPOL from unknown "
607                            "client");
608         }
609 }
610
611
612 static void test_driver_ether(struct test_driver_data *drv,
613                               struct sockaddr_un *from, socklen_t fromlen,
614                               u8 *data, size_t datalen)
615 {
616         struct l2_ethhdr *eth;
617
618         if (datalen < sizeof(*eth))
619                 return;
620
621         eth = (struct l2_ethhdr *) data;
622         wpa_printf(MSG_DEBUG, "test_driver: RX ETHER dst=" MACSTR " src="
623                    MACSTR " proto=%04x",
624                    MAC2STR(eth->h_dest), MAC2STR(eth->h_source),
625                    be_to_host16(eth->h_proto));
626
627 #ifdef CONFIG_IEEE80211R
628         if (be_to_host16(eth->h_proto) == ETH_P_RRB) {
629                 wpa_ft_rrb_rx(drv->hapd->wpa_auth, eth->h_source,
630                               data + sizeof(*eth), datalen - sizeof(*eth));
631         }
632 #endif /* CONFIG_IEEE80211R */
633 }
634
635
636 static void test_driver_mlme(struct test_driver_data *drv,
637                              struct sockaddr_un *from, socklen_t fromlen,
638                              u8 *data, size_t datalen)
639 {
640         struct ieee80211_hdr *hdr;
641         u16 fc;
642
643         hdr = (struct ieee80211_hdr *) data;
644
645         if (test_driver_get_cli(drv, from, fromlen) == NULL && datalen >= 16) {
646                 struct test_client_socket *cli;
647                 cli = os_zalloc(sizeof(*cli));
648                 if (cli == NULL)
649                         return;
650                 wpa_printf(MSG_DEBUG, "Adding client entry for " MACSTR,
651                            MAC2STR(hdr->addr2));
652                 memcpy(cli->addr, hdr->addr2, ETH_ALEN);
653                 memcpy(&cli->un, from, sizeof(cli->un));
654                 cli->unlen = fromlen;
655                 cli->next = drv->cli;
656                 drv->cli = cli;
657         }
658
659         wpa_hexdump(MSG_MSGDUMP, "test_driver_mlme: received frame",
660                     data, datalen);
661         fc = le_to_host16(hdr->frame_control);
662         if (WLAN_FC_GET_TYPE(fc) != WLAN_FC_TYPE_MGMT) {
663                 wpa_printf(MSG_ERROR, "%s: received non-mgmt frame",
664                            __func__);
665                 return;
666         }
667         hostapd_mgmt_rx(drv->hapd, data, datalen, WLAN_FC_GET_STYPE(fc), NULL);
668 }
669
670
671 static void test_driver_receive_unix(int sock, void *eloop_ctx, void *sock_ctx)
672 {
673         struct test_driver_data *drv = eloop_ctx;
674         char buf[2000];
675         int res;
676         struct sockaddr_un from;
677         socklen_t fromlen = sizeof(from);
678
679         res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
680                        (struct sockaddr *) &from, &fromlen);
681         if (res < 0) {
682                 perror("recvfrom(test_socket)");
683                 return;
684         }
685         buf[res] = '\0';
686
687         wpa_printf(MSG_DEBUG, "test_driver: received %u bytes", res);
688
689         if (strncmp(buf, "SCAN", 4) == 0) {
690                 test_driver_scan(drv, &from, fromlen, buf + 4);
691         } else if (strncmp(buf, "ASSOC ", 6) == 0) {
692                 test_driver_assoc(drv, &from, fromlen, buf + 6);
693         } else if (strcmp(buf, "DISASSOC") == 0) {
694                 test_driver_disassoc(drv, &from, fromlen);
695         } else if (strncmp(buf, "EAPOL ", 6) == 0) {
696                 test_driver_eapol(drv, &from, fromlen, (u8 *) buf + 6,
697                                   res - 6);
698         } else if (strncmp(buf, "ETHER ", 6) == 0) {
699                 test_driver_ether(drv, &from, fromlen, (u8 *) buf + 6,
700                                   res - 6);
701         } else if (strncmp(buf, "MLME ", 5) == 0) {
702                 test_driver_mlme(drv, &from, fromlen, (u8 *) buf + 5, res - 5);
703         } else {
704                 wpa_hexdump_ascii(MSG_DEBUG, "Unknown test_socket command",
705                                   (u8 *) buf, res);
706         }
707 }
708
709
710 static struct test_driver_bss *
711 test_driver_get_bss(struct test_driver_data *drv, const char *ifname)
712 {
713         struct test_driver_bss *bss;
714
715         for (bss = drv->bss; bss; bss = bss->next) {
716                 if (strcmp(bss->ifname, ifname) == 0)
717                         return bss;
718         }
719         return NULL;
720 }
721
722
723 static int test_driver_set_generic_elem(const char *ifname, void *priv,
724                                         const u8 *elem, size_t elem_len)
725 {
726         struct test_driver_data *drv = priv;
727         struct test_driver_bss *bss;
728
729         bss = test_driver_get_bss(drv, ifname);
730         if (bss == NULL)
731                 return -1;
732
733         free(bss->ie);
734
735         if (elem == NULL) {
736                 bss->ie = NULL;
737                 bss->ielen = 0;
738                 return 0;
739         }
740
741         bss->ie = malloc(elem_len);
742         if (bss->ie == NULL) {
743                 bss->ielen = 0;
744                 return -1;
745         }
746
747         memcpy(bss->ie, elem, elem_len);
748         bss->ielen = elem_len;
749         return 0;
750 }
751
752
753 static int test_driver_set_wps_beacon_ie(const char *ifname, void *priv,
754                                          const u8 *ie, size_t len)
755 {
756         struct test_driver_data *drv = priv;
757         struct test_driver_bss *bss;
758
759         wpa_hexdump(MSG_DEBUG, "test_driver: Beacon WPS IE", ie, len);
760         bss = test_driver_get_bss(drv, ifname);
761         if (bss == NULL)
762                 return -1;
763
764         free(bss->wps_beacon_ie);
765
766         if (ie == NULL) {
767                 bss->wps_beacon_ie = NULL;
768                 bss->wps_beacon_ie_len = 0;
769                 return 0;
770         }
771
772         bss->wps_beacon_ie = malloc(len);
773         if (bss->wps_beacon_ie == NULL) {
774                 bss->wps_beacon_ie_len = 0;
775                 return -1;
776         }
777
778         memcpy(bss->wps_beacon_ie, ie, len);
779         bss->wps_beacon_ie_len = len;
780         return 0;
781 }
782
783
784 static int test_driver_set_wps_probe_resp_ie(const char *ifname, void *priv,
785                                              const u8 *ie, size_t len)
786 {
787         struct test_driver_data *drv = priv;
788         struct test_driver_bss *bss;
789
790         wpa_hexdump(MSG_DEBUG, "test_driver: ProbeResp WPS IE", ie, len);
791         bss = test_driver_get_bss(drv, ifname);
792         if (bss == NULL)
793                 return -1;
794
795         free(bss->wps_probe_resp_ie);
796
797         if (ie == NULL) {
798                 bss->wps_probe_resp_ie = NULL;
799                 bss->wps_probe_resp_ie_len = 0;
800                 return 0;
801         }
802
803         bss->wps_probe_resp_ie = malloc(len);
804         if (bss->wps_probe_resp_ie == NULL) {
805                 bss->wps_probe_resp_ie_len = 0;
806                 return -1;
807         }
808
809         memcpy(bss->wps_probe_resp_ie, ie, len);
810         bss->wps_probe_resp_ie_len = len;
811         return 0;
812 }
813
814
815 static int test_driver_sta_deauth(void *priv, const u8 *own_addr,
816                                   const u8 *addr, int reason)
817 {
818         struct test_driver_data *drv = priv;
819         struct test_client_socket *cli;
820
821         if (drv->test_socket < 0)
822                 return -1;
823
824         cli = drv->cli;
825         while (cli) {
826                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
827                         break;
828                 cli = cli->next;
829         }
830
831         if (!cli)
832                 return -1;
833
834         return sendto(drv->test_socket, "DEAUTH", 6, 0,
835                       (struct sockaddr *) &cli->un, cli->unlen);
836 }
837
838
839 static int test_driver_sta_disassoc(void *priv, const u8 *own_addr,
840                                     const u8 *addr, int reason)
841 {
842         struct test_driver_data *drv = priv;
843         struct test_client_socket *cli;
844
845         if (drv->test_socket < 0)
846                 return -1;
847
848         cli = drv->cli;
849         while (cli) {
850                 if (memcmp(cli->addr, addr, ETH_ALEN) == 0)
851                         break;
852                 cli = cli->next;
853         }
854
855         if (!cli)
856                 return -1;
857
858         return sendto(drv->test_socket, "DISASSOC", 8, 0,
859                       (struct sockaddr *) &cli->un, cli->unlen);
860 }
861
862
863 static int test_driver_bss_add(void *priv, const char *ifname, const u8 *bssid)
864 {
865         struct test_driver_data *drv = priv;
866         struct test_driver_bss *bss;
867
868         wpa_printf(MSG_DEBUG, "%s(ifname=%s bssid=" MACSTR ")",
869                    __func__, ifname, MAC2STR(bssid));
870
871         bss = os_zalloc(sizeof(*bss));
872         if (bss == NULL)
873                 return -1;
874
875         os_strlcpy(bss->ifname, ifname, IFNAMSIZ);
876         memcpy(bss->bssid, bssid, ETH_ALEN);
877
878         bss->next = drv->bss;
879         drv->bss = bss;
880
881         return 0;
882 }
883
884
885 static int test_driver_bss_remove(void *priv, const char *ifname)
886 {
887         struct test_driver_data *drv = priv;
888         struct test_driver_bss *bss, *prev;
889         struct test_client_socket *cli, *prev_c;
890
891         wpa_printf(MSG_DEBUG, "%s(ifname=%s)", __func__, ifname);
892
893         for (prev = NULL, bss = drv->bss; bss; prev = bss, bss = bss->next) {
894                 if (strcmp(bss->ifname, ifname) != 0)
895                         continue;
896
897                 if (prev)
898                         prev->next = bss->next;
899                 else
900                         drv->bss = bss->next;
901
902                 for (prev_c = NULL, cli = drv->cli; cli;
903                      prev_c = cli, cli = cli->next) {
904                         if (cli->bss != bss)
905                                 continue;
906                         if (prev_c)
907                                 prev_c->next = cli->next;
908                         else
909                                 drv->cli = cli->next;
910                         free(cli);
911                         break;
912                 }
913
914                 test_driver_free_bss(bss);
915                 return 0;
916         }
917
918         return -1;
919 }
920
921
922 static int test_driver_if_add(const char *iface, void *priv,
923                               enum hostapd_driver_if_type type, char *ifname,
924                               const u8 *addr)
925 {
926         wpa_printf(MSG_DEBUG, "%s(iface=%s type=%d ifname=%s)",
927                    __func__, iface, type, ifname);
928         return 0;
929 }
930
931
932 static int test_driver_if_update(void *priv, enum hostapd_driver_if_type type,
933                                  char *ifname, const u8 *addr)
934 {
935         wpa_printf(MSG_DEBUG, "%s(type=%d ifname=%s)", __func__, type, ifname);
936         return 0;
937 }
938
939
940 static int test_driver_if_remove(void *priv, enum hostapd_driver_if_type type,
941                                  const char *ifname, const u8 *addr)
942 {
943         wpa_printf(MSG_DEBUG, "%s(type=%d ifname=%s)", __func__, type, ifname);
944         return 0;
945 }
946
947
948 static int test_driver_valid_bss_mask(void *priv, const u8 *addr,
949                                       const u8 *mask)
950 {
951         return 0;
952 }
953
954
955 static int test_driver_set_ssid(const char *ifname, void *priv, const u8 *buf,
956                                 int len)
957 {
958         struct test_driver_data *drv = priv;
959         struct test_driver_bss *bss;
960
961         wpa_printf(MSG_DEBUG, "%s(ifname=%s)", __func__, ifname);
962         wpa_hexdump_ascii(MSG_DEBUG, "test_driver_set_ssid: SSID", buf, len);
963
964         for (bss = drv->bss; bss; bss = bss->next) {
965                 if (strcmp(bss->ifname, ifname) != 0)
966                         continue;
967
968                 if (len < 0 || (size_t) len > sizeof(bss->ssid))
969                         return -1;
970
971                 memcpy(bss->ssid, buf, len);
972                 bss->ssid_len = len;
973
974                 return 0;
975         }
976
977         return -1;
978 }
979
980
981 static int test_driver_set_privacy(const char *ifname, void *priv, int enabled)
982 {
983         struct test_driver_data *drv = priv;
984         struct test_driver_bss *bss;
985
986         wpa_printf(MSG_DEBUG, "%s(ifname=%s enabled=%d)",
987                    __func__, ifname, enabled);
988
989         for (bss = drv->bss; bss; bss = bss->next) {
990                 if (strcmp(bss->ifname, ifname) != 0)
991                         continue;
992
993                 bss->privacy = enabled;
994
995                 return 0;
996         }
997
998         return -1;
999 }
1000
1001
1002 static int test_driver_set_key(const char *iface, void *priv, wpa_alg alg,
1003                                const u8 *addr, int key_idx, int set_tx,
1004                                const u8 *seq, size_t seq_len,
1005                                const u8 *key, size_t key_len)
1006 {
1007         wpa_printf(MSG_DEBUG, "%s(iface=%s alg=%d idx=%d set_tx=%d)",
1008                    __func__, iface, alg, key_idx, set_tx);
1009         if (addr)
1010                 wpa_printf(MSG_DEBUG, "   addr=" MACSTR, MAC2STR(addr));
1011         if (key)
1012                 wpa_hexdump_key(MSG_DEBUG, "   key", key, key_len);
1013         return 0;
1014 }
1015
1016
1017 static int test_driver_set_sta_vlan(void *priv, const u8 *addr,
1018                                     const char *ifname, int vlan_id)
1019 {
1020         wpa_printf(MSG_DEBUG, "%s(addr=" MACSTR " ifname=%s vlan_id=%d)",
1021                    __func__, MAC2STR(addr), ifname, vlan_id);
1022         return 0;
1023 }
1024
1025
1026 static int test_driver_sta_add(const char *ifname, void *priv,
1027                                struct hostapd_sta_add_params *params)
1028 {
1029         struct test_driver_data *drv = priv;
1030         struct test_client_socket *cli;
1031         struct test_driver_bss *bss;
1032
1033         wpa_printf(MSG_DEBUG, "%s(ifname=%s addr=" MACSTR " aid=%d "
1034                    "capability=0x%x flags=0x%x listen_interval=%d)",
1035                    __func__, ifname, MAC2STR(params->addr), params->aid,
1036                    params->capability, params->flags,
1037                    params->listen_interval);
1038         wpa_hexdump(MSG_DEBUG, "test_driver_sta_add - supp_rates",
1039                     params->supp_rates, params->supp_rates_len);
1040
1041         cli = drv->cli;
1042         while (cli) {
1043                 if (os_memcmp(cli->addr, params->addr, ETH_ALEN) == 0)
1044                         break;
1045                 cli = cli->next;
1046         }
1047         if (!cli) {
1048                 wpa_printf(MSG_DEBUG, "%s: no matching client entry",
1049                            __func__);
1050                 return -1;
1051         }
1052
1053         for (bss = drv->bss; bss; bss = bss->next) {
1054                 if (strcmp(ifname, bss->ifname) == 0)
1055                         break;
1056         }
1057         if (bss == NULL) {
1058                 wpa_printf(MSG_DEBUG, "%s: No matching interface found from "
1059                            "configured BSSes", __func__);
1060                 return -1;
1061         }
1062
1063         cli->bss = bss;
1064
1065         return 0;
1066 }
1067
1068
1069 static void * test_driver_init(struct hostapd_data *hapd,
1070                                struct wpa_init_params *params)
1071 {
1072         struct test_driver_data *drv;
1073         struct sockaddr_un addr_un;
1074         struct sockaddr_in addr_in;
1075         struct sockaddr *addr;
1076         socklen_t alen;
1077
1078         drv = os_zalloc(sizeof(struct test_driver_data));
1079         if (drv == NULL) {
1080                 printf("Could not allocate memory for test driver data\n");
1081                 return NULL;
1082         }
1083         drv->bss = os_zalloc(sizeof(*drv->bss));
1084         if (drv->bss == NULL) {
1085                 printf("Could not allocate memory for test driver BSS data\n");
1086                 free(drv);
1087                 return NULL;
1088         }
1089
1090         drv->hapd = hapd;
1091
1092         /* Generate a MAC address to help testing with multiple APs */
1093         params->own_addr[0] = 0x02; /* locally administered */
1094         sha1_prf((const u8 *) params->ifname, strlen(params->ifname),
1095                  "hostapd test bssid generation",
1096                  params->ssid, params->ssid_len,
1097                  params->own_addr + 1, ETH_ALEN - 1);
1098
1099         os_strlcpy(drv->bss->ifname, params->ifname, IFNAMSIZ);
1100         memcpy(drv->bss->bssid, params->own_addr, ETH_ALEN);
1101
1102         if (params->test_socket) {
1103                 if (os_strlen(params->test_socket) >=
1104                     sizeof(addr_un.sun_path)) {
1105                         printf("Too long test_socket path\n");
1106                         test_driver_free_priv(drv);
1107                         return NULL;
1108                 }
1109                 if (strncmp(params->test_socket, "DIR:", 4) == 0) {
1110                         size_t len = strlen(params->test_socket) + 30;
1111                         drv->socket_dir = strdup(params->test_socket + 4);
1112                         drv->own_socket_path = malloc(len);
1113                         if (drv->own_socket_path) {
1114                                 snprintf(drv->own_socket_path, len,
1115                                          "%s/AP-" MACSTR,
1116                                          params->test_socket + 4,
1117                                          MAC2STR(params->own_addr));
1118                         }
1119                 } else if (strncmp(params->test_socket, "UDP:", 4) == 0) {
1120                         drv->udp_port = atoi(params->test_socket + 4);
1121                 } else {
1122                         drv->own_socket_path = strdup(params->test_socket);
1123                 }
1124                 if (drv->own_socket_path == NULL && drv->udp_port == 0) {
1125                         test_driver_free_priv(drv);
1126                         return NULL;
1127                 }
1128
1129                 drv->test_socket = socket(drv->udp_port ? PF_INET : PF_UNIX,
1130                                           SOCK_DGRAM, 0);
1131                 if (drv->test_socket < 0) {
1132                         perror("socket");
1133                         test_driver_free_priv(drv);
1134                         return NULL;
1135                 }
1136
1137                 if (drv->udp_port) {
1138                         os_memset(&addr_in, 0, sizeof(addr_in));
1139                         addr_in.sin_family = AF_INET;
1140                         addr_in.sin_port = htons(drv->udp_port);
1141                         addr = (struct sockaddr *) &addr_in;
1142                         alen = sizeof(addr_in);
1143                 } else {
1144                         os_memset(&addr_un, 0, sizeof(addr_un));
1145                         addr_un.sun_family = AF_UNIX;
1146                         os_strlcpy(addr_un.sun_path, drv->own_socket_path,
1147                                    sizeof(addr_un.sun_path));
1148                         addr = (struct sockaddr *) &addr_un;
1149                         alen = sizeof(addr_un);
1150                 }
1151                 if (bind(drv->test_socket, addr, alen) < 0) {
1152                         perror("bind(PF_UNIX)");
1153                         close(drv->test_socket);
1154                         if (drv->own_socket_path)
1155                                 unlink(drv->own_socket_path);
1156                         test_driver_free_priv(drv);
1157                         return NULL;
1158                 }
1159                 eloop_register_read_sock(drv->test_socket,
1160                                          test_driver_receive_unix, drv, NULL);
1161         } else
1162                 drv->test_socket = -1;
1163
1164         return drv;
1165 }
1166
1167
1168 static void test_driver_deinit(void *priv)
1169 {
1170         struct test_driver_data *drv = priv;
1171         struct test_client_socket *cli, *prev;
1172
1173         cli = drv->cli;
1174         while (cli) {
1175                 prev = cli;
1176                 cli = cli->next;
1177                 free(prev);
1178         }
1179
1180         if (drv->test_socket >= 0) {
1181                 eloop_unregister_read_sock(drv->test_socket);
1182                 close(drv->test_socket);
1183                 if (drv->own_socket_path)
1184                         unlink(drv->own_socket_path);
1185         }
1186
1187         /* There should be only one BSS remaining at this point. */
1188         if (drv->bss == NULL)
1189                 wpa_printf(MSG_ERROR, "%s: drv->bss == NULL", __func__);
1190         else if (drv->bss->next)
1191                 wpa_printf(MSG_ERROR, "%s: drv->bss->next != NULL", __func__);
1192
1193         test_driver_free_priv(drv);
1194 }
1195
1196 #else /* HOSTAPD */
1197
1198 static void wpa_driver_test_poll(void *eloop_ctx, void *timeout_ctx)
1199 {
1200         struct wpa_driver_test_data *drv = eloop_ctx;
1201
1202 #ifdef DRIVER_TEST_UNIX
1203         if (drv->associated && drv->hostapd_addr_set) {
1204                 struct stat st;
1205                 if (stat(drv->hostapd_addr.sun_path, &st) < 0) {
1206                         wpa_printf(MSG_DEBUG, "%s: lost connection to AP: %s",
1207                                    __func__, strerror(errno));
1208                         drv->associated = 0;
1209                         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1210                 }
1211         }
1212 #endif /* DRIVER_TEST_UNIX */
1213
1214         eloop_register_timeout(1, 0, wpa_driver_test_poll, drv, NULL);
1215 }
1216
1217
1218 static int wpa_driver_test_set_wpa(void *priv, int enabled)
1219 {
1220         wpa_printf(MSG_DEBUG, "%s: enabled=%d", __func__, enabled);
1221         return 0;
1222 }
1223
1224
1225 static void wpa_driver_test_scan_timeout(void *eloop_ctx, void *timeout_ctx)
1226 {
1227         wpa_printf(MSG_DEBUG, "Scan timeout - try to get results");
1228         wpa_supplicant_event(timeout_ctx, EVENT_SCAN_RESULTS, NULL);
1229 }
1230
1231
1232 #ifdef DRIVER_TEST_UNIX
1233 static void wpa_driver_scan_dir(struct wpa_driver_test_data *drv,
1234                                 const char *path)
1235 {
1236         struct dirent *dent;
1237         DIR *dir;
1238         struct sockaddr_un addr;
1239         char cmd[512], *pos, *end;
1240         int ret;
1241
1242         dir = opendir(path);
1243         if (dir == NULL)
1244                 return;
1245
1246         end = cmd + sizeof(cmd);
1247         pos = cmd;
1248         ret = os_snprintf(pos, end - pos, "SCAN " MACSTR,
1249                           MAC2STR(drv->own_addr));
1250         if (ret >= 0 && ret < end - pos)
1251                 pos += ret;
1252         if (drv->probe_req_ie) {
1253                 ret = os_snprintf(pos, end - pos, " ");
1254                 if (ret >= 0 && ret < end - pos)
1255                         pos += ret;
1256                 pos += wpa_snprintf_hex(pos, end - pos, drv->probe_req_ie,
1257                                         drv->probe_req_ie_len);
1258         }
1259         end[-1] = '\0';
1260
1261         while ((dent = readdir(dir))) {
1262                 if (os_strncmp(dent->d_name, "AP-", 3) != 0 &&
1263                     os_strncmp(dent->d_name, "STA-", 4) != 0)
1264                         continue;
1265                 if (drv->own_socket_path) {
1266                         size_t olen, dlen;
1267                         olen = os_strlen(drv->own_socket_path);
1268                         dlen = os_strlen(dent->d_name);
1269                         if (olen >= dlen &&
1270                             os_strcmp(dent->d_name,
1271                                       drv->own_socket_path + olen - dlen) == 0)
1272                                 continue;
1273                 }
1274                 wpa_printf(MSG_DEBUG, "%s: SCAN %s", __func__, dent->d_name);
1275
1276                 os_memset(&addr, 0, sizeof(addr));
1277                 addr.sun_family = AF_UNIX;
1278                 os_snprintf(addr.sun_path, sizeof(addr.sun_path), "%s/%s",
1279                             path, dent->d_name);
1280
1281                 if (sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1282                            (struct sockaddr *) &addr, sizeof(addr)) < 0) {
1283                         perror("sendto(test_socket)");
1284                 }
1285         }
1286         closedir(dir);
1287 }
1288 #endif /* DRIVER_TEST_UNIX */
1289
1290
1291 static int wpa_driver_test_scan(void *priv,
1292                                 struct wpa_driver_scan_params *params)
1293 {
1294         struct wpa_driver_test_data *drv = priv;
1295         size_t i;
1296
1297         wpa_printf(MSG_DEBUG, "%s: priv=%p", __func__, priv);
1298         for (i = 0; i < params->num_ssids; i++)
1299                 wpa_hexdump(MSG_DEBUG, "Scan SSID",
1300                             params->ssids[i].ssid, params->ssids[i].ssid_len);
1301         wpa_hexdump(MSG_DEBUG, "Scan extra IE(s)",
1302                     params->extra_ies, params->extra_ies_len);
1303
1304         drv->num_scanres = 0;
1305
1306 #ifdef DRIVER_TEST_UNIX
1307         if (drv->test_socket >= 0 && drv->test_dir)
1308                 wpa_driver_scan_dir(drv, drv->test_dir);
1309
1310         if (drv->test_socket >= 0 && drv->hostapd_addr_set &&
1311             sendto(drv->test_socket, "SCAN", 4, 0,
1312                    (struct sockaddr *) &drv->hostapd_addr,
1313                    sizeof(drv->hostapd_addr)) < 0) {
1314                 perror("sendto(test_socket)");
1315         }
1316 #endif /* DRIVER_TEST_UNIX */
1317
1318         if (drv->test_socket >= 0 && drv->hostapd_addr_udp_set &&
1319             sendto(drv->test_socket, "SCAN", 4, 0,
1320                    (struct sockaddr *) &drv->hostapd_addr_udp,
1321                    sizeof(drv->hostapd_addr_udp)) < 0) {
1322                 perror("sendto(test_socket)");
1323         }
1324
1325         eloop_cancel_timeout(wpa_driver_test_scan_timeout, drv, drv->ctx);
1326         eloop_register_timeout(1, 0, wpa_driver_test_scan_timeout, drv,
1327                                drv->ctx);
1328         return 0;
1329 }
1330
1331
1332 static struct wpa_scan_results * wpa_driver_test_get_scan_results2(void *priv)
1333 {
1334         struct wpa_driver_test_data *drv = priv;
1335         struct wpa_scan_results *res;
1336         size_t i;
1337
1338         res = os_zalloc(sizeof(*res));
1339         if (res == NULL)
1340                 return NULL;
1341
1342         res->res = os_zalloc(drv->num_scanres * sizeof(struct wpa_scan_res *));
1343         if (res->res == NULL) {
1344                 os_free(res);
1345                 return NULL;
1346         }
1347
1348         for (i = 0; i < drv->num_scanres; i++) {
1349                 struct wpa_scan_res *r;
1350                 if (drv->scanres[i] == NULL)
1351                         continue;
1352                 r = os_malloc(sizeof(*r) + drv->scanres[i]->ie_len);
1353                 if (r == NULL)
1354                         break;
1355                 os_memcpy(r, drv->scanres[i],
1356                           sizeof(*r) + drv->scanres[i]->ie_len);
1357                 res->res[res->num++] = r;
1358         }
1359
1360         return res;
1361 }
1362
1363
1364 static int wpa_driver_test_set_key(void *priv, wpa_alg alg, const u8 *addr,
1365                                    int key_idx, int set_tx,
1366                                    const u8 *seq, size_t seq_len,
1367                                    const u8 *key, size_t key_len)
1368 {
1369         wpa_printf(MSG_DEBUG, "%s: priv=%p alg=%d key_idx=%d set_tx=%d",
1370                    __func__, priv, alg, key_idx, set_tx);
1371         if (addr) {
1372                 wpa_printf(MSG_DEBUG, "   addr=" MACSTR, MAC2STR(addr));
1373         }
1374         if (seq) {
1375                 wpa_hexdump(MSG_DEBUG, "   seq", seq, seq_len);
1376         }
1377         if (key) {
1378                 wpa_hexdump(MSG_DEBUG, "   key", key, key_len);
1379         }
1380         return 0;
1381 }
1382
1383
1384 static int wpa_driver_test_associate(
1385         void *priv, struct wpa_driver_associate_params *params)
1386 {
1387         struct wpa_driver_test_data *drv = priv;
1388         wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d pairwise_suite=%d "
1389                    "group_suite=%d key_mgmt_suite=%d auth_alg=%d mode=%d",
1390                    __func__, priv, params->freq, params->pairwise_suite,
1391                    params->group_suite, params->key_mgmt_suite,
1392                    params->auth_alg, params->mode);
1393         if (params->bssid) {
1394                 wpa_printf(MSG_DEBUG, "   bssid=" MACSTR,
1395                            MAC2STR(params->bssid));
1396         }
1397         if (params->ssid) {
1398                 wpa_hexdump_ascii(MSG_DEBUG, "   ssid",
1399                                   params->ssid, params->ssid_len);
1400         }
1401         if (params->wpa_ie) {
1402                 wpa_hexdump(MSG_DEBUG, "   wpa_ie",
1403                             params->wpa_ie, params->wpa_ie_len);
1404                 drv->assoc_wpa_ie_len = params->wpa_ie_len;
1405                 if (drv->assoc_wpa_ie_len > sizeof(drv->assoc_wpa_ie))
1406                         drv->assoc_wpa_ie_len = sizeof(drv->assoc_wpa_ie);
1407                 os_memcpy(drv->assoc_wpa_ie, params->wpa_ie,
1408                           drv->assoc_wpa_ie_len);
1409         } else
1410                 drv->assoc_wpa_ie_len = 0;
1411
1412         drv->ibss = params->mode == IEEE80211_MODE_IBSS;
1413         drv->privacy = params->key_mgmt_suite &
1414                 (WPA_KEY_MGMT_IEEE8021X |
1415                  WPA_KEY_MGMT_PSK |
1416                  WPA_KEY_MGMT_WPA_NONE |
1417                  WPA_KEY_MGMT_FT_IEEE8021X |
1418                  WPA_KEY_MGMT_FT_PSK |
1419                  WPA_KEY_MGMT_IEEE8021X_SHA256 |
1420                  WPA_KEY_MGMT_PSK_SHA256);
1421         if (params->wep_key_len[params->wep_tx_keyidx])
1422                 drv->privacy = 1;
1423
1424 #ifdef DRIVER_TEST_UNIX
1425         if (drv->test_dir && params->bssid &&
1426             params->mode != IEEE80211_MODE_IBSS) {
1427                 os_memset(&drv->hostapd_addr, 0, sizeof(drv->hostapd_addr));
1428                 drv->hostapd_addr.sun_family = AF_UNIX;
1429                 os_snprintf(drv->hostapd_addr.sun_path,
1430                             sizeof(drv->hostapd_addr.sun_path),
1431                             "%s/AP-" MACSTR,
1432                             drv->test_dir, MAC2STR(params->bssid));
1433                 drv->hostapd_addr_set = 1;
1434         }
1435 #endif /* DRIVER_TEST_UNIX */
1436
1437         if (drv->test_socket >= 0 &&
1438             (drv->hostapd_addr_set || drv->hostapd_addr_udp_set)) {
1439                 char cmd[200], *pos, *end;
1440                 int ret;
1441                 end = cmd + sizeof(cmd);
1442                 pos = cmd;
1443                 ret = os_snprintf(pos, end - pos, "ASSOC " MACSTR " ",
1444                                   MAC2STR(drv->own_addr));
1445                 if (ret >= 0 && ret < end - pos)
1446                         pos += ret;
1447                 pos += wpa_snprintf_hex(pos, end - pos, params->ssid,
1448                                         params->ssid_len);
1449                 ret = os_snprintf(pos, end - pos, " ");
1450                 if (ret >= 0 && ret < end - pos)
1451                         pos += ret;
1452                 pos += wpa_snprintf_hex(pos, end - pos, params->wpa_ie,
1453                                         params->wpa_ie_len);
1454                 end[-1] = '\0';
1455 #ifdef DRIVER_TEST_UNIX
1456                 if (drv->hostapd_addr_set &&
1457                     sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1458                            (struct sockaddr *) &drv->hostapd_addr,
1459                            sizeof(drv->hostapd_addr)) < 0) {
1460                         perror("sendto(test_socket)");
1461                         return -1;
1462                 }
1463 #endif /* DRIVER_TEST_UNIX */
1464                 if (drv->hostapd_addr_udp_set &&
1465                     sendto(drv->test_socket, cmd, os_strlen(cmd), 0,
1466                            (struct sockaddr *) &drv->hostapd_addr_udp,
1467                            sizeof(drv->hostapd_addr_udp)) < 0) {
1468                         perror("sendto(test_socket)");
1469                         return -1;
1470                 }
1471
1472                 os_memcpy(drv->ssid, params->ssid, params->ssid_len);
1473                 drv->ssid_len = params->ssid_len;
1474         } else {
1475                 drv->associated = 1;
1476                 if (params->mode == IEEE80211_MODE_IBSS) {
1477                         os_memcpy(drv->ssid, params->ssid, params->ssid_len);
1478                         drv->ssid_len = params->ssid_len;
1479                         if (params->bssid)
1480                                 os_memcpy(drv->bssid, params->bssid, ETH_ALEN);
1481                         else {
1482                                 os_get_random(drv->bssid, ETH_ALEN);
1483                                 drv->bssid[0] &= ~0x01;
1484                                 drv->bssid[0] |= 0x02;
1485                         }
1486                 }
1487                 wpa_supplicant_event(drv->ctx, EVENT_ASSOC, NULL);
1488         }
1489
1490         return 0;
1491 }
1492
1493
1494 static int wpa_driver_test_get_bssid(void *priv, u8 *bssid)
1495 {
1496         struct wpa_driver_test_data *drv = priv;
1497         os_memcpy(bssid, drv->bssid, ETH_ALEN);
1498         return 0;
1499 }
1500
1501
1502 static int wpa_driver_test_get_ssid(void *priv, u8 *ssid)
1503 {
1504         struct wpa_driver_test_data *drv = priv;
1505         os_memcpy(ssid, drv->ssid, 32);
1506         return drv->ssid_len;
1507 }
1508
1509
1510 static int wpa_driver_test_send_disassoc(struct wpa_driver_test_data *drv)
1511 {
1512 #ifdef DRIVER_TEST_UNIX
1513         if (drv->test_socket >= 0 &&
1514             sendto(drv->test_socket, "DISASSOC", 8, 0,
1515                    (struct sockaddr *) &drv->hostapd_addr,
1516                    sizeof(drv->hostapd_addr)) < 0) {
1517                 perror("sendto(test_socket)");
1518                 return -1;
1519         }
1520 #endif /* DRIVER_TEST_UNIX */
1521         if (drv->test_socket >= 0 && drv->hostapd_addr_udp_set &&
1522             sendto(drv->test_socket, "DISASSOC", 8, 0,
1523                    (struct sockaddr *) &drv->hostapd_addr_udp,
1524                    sizeof(drv->hostapd_addr_udp)) < 0) {
1525                 perror("sendto(test_socket)");
1526                 return -1;
1527         }
1528         return 0;
1529 }
1530
1531
1532 static int wpa_driver_test_deauthenticate(void *priv, const u8 *addr,
1533                                           int reason_code)
1534 {
1535         struct wpa_driver_test_data *drv = priv;
1536         wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
1537                    __func__, MAC2STR(addr), reason_code);
1538         os_memset(drv->bssid, 0, ETH_ALEN);
1539         drv->associated = 0;
1540         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1541         return wpa_driver_test_send_disassoc(drv);
1542 }
1543
1544
1545 static int wpa_driver_test_disassociate(void *priv, const u8 *addr,
1546                                         int reason_code)
1547 {
1548         struct wpa_driver_test_data *drv = priv;
1549         wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
1550                    __func__, MAC2STR(addr), reason_code);
1551         os_memset(drv->bssid, 0, ETH_ALEN);
1552         drv->associated = 0;
1553         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1554         return wpa_driver_test_send_disassoc(drv);
1555 }
1556
1557
1558 static void wpa_driver_test_scanresp(struct wpa_driver_test_data *drv,
1559                                      struct sockaddr *from,
1560                                      socklen_t fromlen,
1561                                      const char *data)
1562 {
1563         struct wpa_scan_res *res;
1564         const char *pos, *pos2;
1565         size_t len;
1566         u8 *ie_pos, *ie_start, *ie_end;
1567 #define MAX_IE_LEN 1000
1568
1569         wpa_printf(MSG_DEBUG, "test_driver: SCANRESP %s", data);
1570         if (drv->num_scanres >= MAX_SCAN_RESULTS) {
1571                 wpa_printf(MSG_DEBUG, "test_driver: No room for the new scan "
1572                            "result");
1573                 return;
1574         }
1575
1576         /* SCANRESP BSSID SSID IEs */
1577
1578         res = os_zalloc(sizeof(*res) + MAX_IE_LEN);
1579         if (res == NULL)
1580                 return;
1581         ie_start = ie_pos = (u8 *) (res + 1);
1582         ie_end = ie_pos + MAX_IE_LEN;
1583
1584         if (hwaddr_aton(data, res->bssid)) {
1585                 wpa_printf(MSG_DEBUG, "test_driver: invalid BSSID in scanres");
1586                 os_free(res);
1587                 return;
1588         }
1589
1590         pos = data + 17;
1591         while (*pos == ' ')
1592                 pos++;
1593         pos2 = os_strchr(pos, ' ');
1594         if (pos2 == NULL) {
1595                 wpa_printf(MSG_DEBUG, "test_driver: invalid SSID termination "
1596                            "in scanres");
1597                 os_free(res);
1598                 return;
1599         }
1600         len = (pos2 - pos) / 2;
1601         if (len > 32)
1602                 len = 32;
1603         /*
1604          * Generate SSID IE from the SSID field since this IE is not included
1605          * in the main IE field.
1606          */
1607         *ie_pos++ = WLAN_EID_SSID;
1608         *ie_pos++ = len;
1609         if (hexstr2bin(pos, ie_pos, len) < 0) {
1610                 wpa_printf(MSG_DEBUG, "test_driver: invalid SSID in scanres");
1611                 os_free(res);
1612                 return;
1613         }
1614         ie_pos += len;
1615
1616         pos = pos2 + 1;
1617         pos2 = os_strchr(pos, ' ');
1618         if (pos2 == NULL)
1619                 len = os_strlen(pos) / 2;
1620         else
1621                 len = (pos2 - pos) / 2;
1622         if ((int) len > ie_end - ie_pos)
1623                 len = ie_end - ie_pos;
1624         if (hexstr2bin(pos, ie_pos, len) < 0) {
1625                 wpa_printf(MSG_DEBUG, "test_driver: invalid IEs in scanres");
1626                 os_free(res);
1627                 return;
1628         }
1629         ie_pos += len;
1630         res->ie_len = ie_pos - ie_start;
1631
1632         if (pos2) {
1633                 pos = pos2 + 1;
1634                 while (*pos == ' ')
1635                         pos++;
1636                 if (os_strstr(pos, "PRIVACY"))
1637                         res->caps |= IEEE80211_CAP_PRIVACY;
1638                 if (os_strstr(pos, "IBSS"))
1639                         res->caps |= IEEE80211_CAP_IBSS;
1640         }
1641
1642         os_free(drv->scanres[drv->num_scanres]);
1643         drv->scanres[drv->num_scanres++] = res;
1644 }
1645
1646
1647 static void wpa_driver_test_assocresp(struct wpa_driver_test_data *drv,
1648                                       struct sockaddr *from,
1649                                       socklen_t fromlen,
1650                                       const char *data)
1651 {
1652         /* ASSOCRESP BSSID <res> */
1653         if (hwaddr_aton(data, drv->bssid)) {
1654                 wpa_printf(MSG_DEBUG, "test_driver: invalid BSSID in "
1655                            "assocresp");
1656         }
1657         if (drv->use_associnfo) {
1658                 union wpa_event_data event;
1659                 os_memset(&event, 0, sizeof(event));
1660                 event.assoc_info.req_ies = drv->assoc_wpa_ie;
1661                 event.assoc_info.req_ies_len = drv->assoc_wpa_ie_len;
1662                 wpa_supplicant_event(drv->ctx, EVENT_ASSOCINFO, &event);
1663         }
1664         drv->associated = 1;
1665         wpa_supplicant_event(drv->ctx, EVENT_ASSOC, NULL);
1666 }
1667
1668
1669 static void wpa_driver_test_disassoc(struct wpa_driver_test_data *drv,
1670                                      struct sockaddr *from,
1671                                      socklen_t fromlen)
1672 {
1673         drv->associated = 0;
1674         wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
1675 }
1676
1677
1678 static void wpa_driver_test_eapol(struct wpa_driver_test_data *drv,
1679                                   struct sockaddr *from,
1680                                   socklen_t fromlen,
1681                                   const u8 *data, size_t data_len)
1682 {
1683         const u8 *src = drv->bssid;
1684
1685         if (data_len > 14) {
1686                 /* Skip Ethernet header */
1687                 src = data + ETH_ALEN;
1688                 data += 14;
1689                 data_len -= 14;
1690         }
1691         wpa_supplicant_rx_eapol(drv->ctx, src, data, data_len);
1692 }
1693
1694
1695 static void wpa_driver_test_mlme(struct wpa_driver_test_data *drv,
1696                                  struct sockaddr *from,
1697                                  socklen_t fromlen,
1698                                  const u8 *data, size_t data_len)
1699 {
1700 #ifdef CONFIG_CLIENT_MLME
1701         struct ieee80211_rx_status rx_status;
1702         os_memset(&rx_status, 0, sizeof(rx_status));
1703         wpa_supplicant_sta_rx(drv->ctx, data, data_len, &rx_status);
1704 #endif /* CONFIG_CLIENT_MLME */
1705 }
1706
1707
1708 static void wpa_driver_test_scan_cmd(struct wpa_driver_test_data *drv,
1709                                      struct sockaddr *from,
1710                                      socklen_t fromlen,
1711                                      const u8 *data, size_t data_len)
1712 {
1713         char buf[512], *pos, *end;
1714         int ret;
1715
1716         /* data: optional [ STA-addr | ' ' | IEs(hex) ] */
1717
1718         if (!drv->ibss)
1719                 return;
1720
1721         pos = buf;
1722         end = buf + sizeof(buf);
1723
1724         /* reply: SCANRESP BSSID SSID IEs */
1725         ret = snprintf(pos, end - pos, "SCANRESP " MACSTR " ",
1726                        MAC2STR(drv->bssid));
1727         if (ret < 0 || ret >= end - pos)
1728                 return;
1729         pos += ret;
1730         pos += wpa_snprintf_hex(pos, end - pos,
1731                                 drv->ssid, drv->ssid_len);
1732         ret = snprintf(pos, end - pos, " ");
1733         if (ret < 0 || ret >= end - pos)
1734                 return;
1735         pos += ret;
1736         pos += wpa_snprintf_hex(pos, end - pos, drv->assoc_wpa_ie,
1737                                 drv->assoc_wpa_ie_len);
1738
1739         if (drv->privacy) {
1740                 ret = snprintf(pos, end - pos, " PRIVACY");
1741                 if (ret < 0 || ret >= end - pos)
1742                         return;
1743                 pos += ret;
1744         }
1745
1746         ret = snprintf(pos, end - pos, " IBSS");
1747         if (ret < 0 || ret >= end - pos)
1748                 return;
1749         pos += ret;
1750
1751         sendto(drv->test_socket, buf, pos - buf, 0,
1752                (struct sockaddr *) from, fromlen);
1753 }
1754
1755
1756 static void wpa_driver_test_receive_unix(int sock, void *eloop_ctx,
1757                                          void *sock_ctx)
1758 {
1759         struct wpa_driver_test_data *drv = eloop_ctx;
1760         char *buf;
1761         int res;
1762         struct sockaddr_storage from;
1763         socklen_t fromlen = sizeof(from);
1764         const size_t buflen = 2000;
1765
1766         buf = os_malloc(buflen);
1767         if (buf == NULL)
1768                 return;
1769         res = recvfrom(sock, buf, buflen - 1, 0,
1770                        (struct sockaddr *) &from, &fromlen);
1771         if (res < 0) {
1772                 perror("recvfrom(test_socket)");
1773                 os_free(buf);
1774                 return;
1775         }
1776         buf[res] = '\0';
1777
1778         wpa_printf(MSG_DEBUG, "test_driver: received %u bytes", res);
1779
1780         if (os_strncmp(buf, "SCANRESP ", 9) == 0) {
1781                 wpa_driver_test_scanresp(drv, (struct sockaddr *) &from,
1782                                          fromlen, buf + 9);
1783         } else if (os_strncmp(buf, "ASSOCRESP ", 10) == 0) {
1784                 wpa_driver_test_assocresp(drv, (struct sockaddr *) &from,
1785                                           fromlen, buf + 10);
1786         } else if (os_strcmp(buf, "DISASSOC") == 0) {
1787                 wpa_driver_test_disassoc(drv, (struct sockaddr *) &from,
1788                                          fromlen);
1789         } else if (os_strcmp(buf, "DEAUTH") == 0) {
1790                 wpa_driver_test_disassoc(drv, (struct sockaddr *) &from,
1791                                          fromlen);
1792         } else if (os_strncmp(buf, "EAPOL ", 6) == 0) {
1793                 wpa_driver_test_eapol(drv, (struct sockaddr *) &from, fromlen,
1794                                       (const u8 *) buf + 6, res - 6);
1795         } else if (os_strncmp(buf, "MLME ", 5) == 0) {
1796                 wpa_driver_test_mlme(drv, (struct sockaddr *) &from, fromlen,
1797                                      (const u8 *) buf + 5, res - 5);
1798         } else if (os_strncmp(buf, "SCAN ", 5) == 0) {
1799                 wpa_driver_test_scan_cmd(drv, (struct sockaddr *) &from,
1800                                          fromlen,
1801                                          (const u8 *) buf + 5, res - 5);
1802         } else {
1803                 wpa_hexdump_ascii(MSG_DEBUG, "Unknown test_socket command",
1804                                   (u8 *) buf, res);
1805         }
1806         os_free(buf);
1807 }
1808
1809
1810 static void * wpa_driver_test_init2(void *ctx, const char *ifname,
1811                                     void *global_priv)
1812 {
1813         struct wpa_driver_test_data *drv;
1814
1815         drv = os_zalloc(sizeof(*drv));
1816         if (drv == NULL)
1817                 return NULL;
1818         drv->global = global_priv;
1819         drv->ctx = ctx;
1820         drv->test_socket = -1;
1821
1822         /* Set dummy BSSID and SSID for testing. */
1823         drv->bssid[0] = 0x02;
1824         drv->bssid[1] = 0x00;
1825         drv->bssid[2] = 0x00;
1826         drv->bssid[3] = 0x00;
1827         drv->bssid[4] = 0x00;
1828         drv->bssid[5] = 0x01;
1829         os_memcpy(drv->ssid, "test", 5);
1830         drv->ssid_len = 4;
1831
1832         /* Generate a MAC address to help testing with multiple STAs */
1833         drv->own_addr[0] = 0x02; /* locally administered */
1834         sha1_prf((const u8 *) ifname, os_strlen(ifname),
1835                  "wpa_supplicant test mac addr generation",
1836                  NULL, 0, drv->own_addr + 1, ETH_ALEN - 1);
1837         eloop_register_timeout(1, 0, wpa_driver_test_poll, drv, NULL);
1838
1839         return drv;
1840 }
1841
1842
1843 static void wpa_driver_test_close_test_socket(struct wpa_driver_test_data *drv)
1844 {
1845         if (drv->test_socket >= 0) {
1846                 eloop_unregister_read_sock(drv->test_socket);
1847                 close(drv->test_socket);
1848                 drv->test_socket = -1;
1849         }
1850
1851         if (drv->own_socket_path) {
1852                 unlink(drv->own_socket_path);
1853                 os_free(drv->own_socket_path);
1854                 drv->own_socket_path = NULL;
1855         }
1856 }
1857
1858
1859 static void wpa_driver_test_deinit(void *priv)
1860 {
1861         struct wpa_driver_test_data *drv = priv;
1862         int i;
1863         wpa_driver_test_close_test_socket(drv);
1864         eloop_cancel_timeout(wpa_driver_test_scan_timeout, drv, drv->ctx);
1865         eloop_cancel_timeout(wpa_driver_test_poll, drv, NULL);
1866         os_free(drv->test_dir);
1867         for (i = 0; i < MAX_SCAN_RESULTS; i++)
1868                 os_free(drv->scanres[i]);
1869         os_free(drv->probe_req_ie);
1870         os_free(drv);
1871 }
1872
1873
1874 static int wpa_driver_test_attach(struct wpa_driver_test_data *drv,
1875                                   const char *dir)
1876 {
1877 #ifdef DRIVER_TEST_UNIX
1878         static unsigned int counter = 0;
1879         struct sockaddr_un addr;
1880         size_t len;
1881
1882         os_free(drv->own_socket_path);
1883         if (dir) {
1884                 len = os_strlen(dir) + 30;
1885                 drv->own_socket_path = os_malloc(len);
1886                 if (drv->own_socket_path == NULL)
1887                         return -1;
1888                 os_snprintf(drv->own_socket_path, len, "%s/STA-" MACSTR,
1889                             dir, MAC2STR(drv->own_addr));
1890         } else {
1891                 drv->own_socket_path = os_malloc(100);
1892                 if (drv->own_socket_path == NULL)
1893                         return -1;
1894                 os_snprintf(drv->own_socket_path, 100,
1895                             "/tmp/wpa_supplicant_test-%d-%d",
1896                             getpid(), counter++);
1897         }
1898
1899         drv->test_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
1900         if (drv->test_socket < 0) {
1901                 perror("socket(PF_UNIX)");
1902                 os_free(drv->own_socket_path);
1903                 drv->own_socket_path = NULL;
1904                 return -1;
1905         }
1906
1907         os_memset(&addr, 0, sizeof(addr));
1908         addr.sun_family = AF_UNIX;
1909         os_strlcpy(addr.sun_path, drv->own_socket_path, sizeof(addr.sun_path));
1910         if (bind(drv->test_socket, (struct sockaddr *) &addr,
1911                  sizeof(addr)) < 0) {
1912                 perror("bind(PF_UNIX)");
1913                 close(drv->test_socket);
1914                 unlink(drv->own_socket_path);
1915                 os_free(drv->own_socket_path);
1916                 drv->own_socket_path = NULL;
1917                 return -1;
1918         }
1919
1920         eloop_register_read_sock(drv->test_socket,
1921                                  wpa_driver_test_receive_unix, drv, NULL);
1922
1923         return 0;
1924 #else /* DRIVER_TEST_UNIX */
1925         return -1;
1926 #endif /* DRIVER_TEST_UNIX */
1927 }
1928
1929
1930 static int wpa_driver_test_attach_udp(struct wpa_driver_test_data *drv,
1931                                       char *dst)
1932 {
1933         char *pos;
1934
1935         pos = os_strchr(dst, ':');
1936         if (pos == NULL)
1937                 return -1;
1938         *pos++ = '\0';
1939         wpa_printf(MSG_DEBUG, "%s: addr=%s port=%s", __func__, dst, pos);
1940
1941         drv->test_socket = socket(PF_INET, SOCK_DGRAM, 0);
1942         if (drv->test_socket < 0) {
1943                 perror("socket(PF_INET)");
1944                 return -1;
1945         }
1946
1947         os_memset(&drv->hostapd_addr_udp, 0, sizeof(drv->hostapd_addr_udp));
1948         drv->hostapd_addr_udp.sin_family = AF_INET;
1949 #if defined(CONFIG_NATIVE_WINDOWS) || defined(CONFIG_ANSI_C_EXTRA)
1950         {
1951                 int a[4];
1952                 u8 *pos;
1953                 sscanf(dst, "%d.%d.%d.%d", &a[0], &a[1], &a[2], &a[3]);
1954                 pos = (u8 *) &drv->hostapd_addr_udp.sin_addr;
1955                 *pos++ = a[0];
1956                 *pos++ = a[1];
1957                 *pos++ = a[2];
1958                 *pos++ = a[3];
1959         }
1960 #else /* CONFIG_NATIVE_WINDOWS or CONFIG_ANSI_C_EXTRA */
1961         inet_aton(dst, &drv->hostapd_addr_udp.sin_addr);
1962 #endif /* CONFIG_NATIVE_WINDOWS or CONFIG_ANSI_C_EXTRA */
1963         drv->hostapd_addr_udp.sin_port = htons(atoi(pos));
1964
1965         drv->hostapd_addr_udp_set = 1;
1966
1967         eloop_register_read_sock(drv->test_socket,
1968                                  wpa_driver_test_receive_unix, drv, NULL);
1969
1970         return 0;
1971 }
1972
1973
1974 static int wpa_driver_test_set_param(void *priv, const char *param)
1975 {
1976         struct wpa_driver_test_data *drv = priv;
1977         const char *pos;
1978
1979         wpa_printf(MSG_DEBUG, "%s: param='%s'", __func__, param);
1980         if (param == NULL)
1981                 return 0;
1982
1983         wpa_driver_test_close_test_socket(drv);
1984
1985 #ifdef DRIVER_TEST_UNIX
1986         pos = os_strstr(param, "test_socket=");
1987         if (pos) {
1988                 const char *pos2;
1989                 size_t len;
1990
1991                 pos += 12;
1992                 pos2 = os_strchr(pos, ' ');
1993                 if (pos2)
1994                         len = pos2 - pos;
1995                 else
1996                         len = os_strlen(pos);
1997                 if (len > sizeof(drv->hostapd_addr.sun_path))
1998                         return -1;
1999                 os_memset(&drv->hostapd_addr, 0, sizeof(drv->hostapd_addr));
2000                 drv->hostapd_addr.sun_family = AF_UNIX;
2001                 os_memcpy(drv->hostapd_addr.sun_path, pos, len);
2002                 drv->hostapd_addr_set = 1;
2003         }
2004 #endif /* DRIVER_TEST_UNIX */
2005
2006         pos = os_strstr(param, "test_dir=");
2007         if (pos) {
2008                 char *end;
2009                 os_free(drv->test_dir);
2010                 drv->test_dir = os_strdup(pos + 9);
2011                 if (drv->test_dir == NULL)
2012                         return -1;
2013                 end = os_strchr(drv->test_dir, ' ');
2014                 if (end)
2015                         *end = '\0';
2016                 if (wpa_driver_test_attach(drv, drv->test_dir))
2017                         return -1;
2018         } else {
2019                 pos = os_strstr(param, "test_udp=");
2020                 if (pos) {
2021                         char *dst, *epos;
2022                         dst = os_strdup(pos + 9);
2023                         if (dst == NULL)
2024                                 return -1;
2025                         epos = os_strchr(dst, ' ');
2026                         if (epos)
2027                                 *epos = '\0';
2028                         if (wpa_driver_test_attach_udp(drv, dst))
2029                                 return -1;
2030                         os_free(dst);
2031                 } else if (wpa_driver_test_attach(drv, NULL))
2032                         return -1;
2033         }
2034
2035         if (os_strstr(param, "use_associnfo=1")) {
2036                 wpa_printf(MSG_DEBUG, "test_driver: Use AssocInfo events");
2037                 drv->use_associnfo = 1;
2038         }
2039
2040 #ifdef CONFIG_CLIENT_MLME
2041         if (os_strstr(param, "use_mlme=1")) {
2042                 wpa_printf(MSG_DEBUG, "test_driver: Use internal MLME");
2043                 drv->use_mlme = 1;
2044         }
2045 #endif /* CONFIG_CLIENT_MLME */
2046
2047         return 0;
2048 }
2049
2050
2051 static const u8 * wpa_driver_test_get_mac_addr(void *priv)
2052 {
2053         struct wpa_driver_test_data *drv = priv;
2054         wpa_printf(MSG_DEBUG, "%s", __func__);
2055         return drv->own_addr;
2056 }
2057
2058
2059 static int wpa_driver_test_send_eapol(void *priv, const u8 *dest, u16 proto,
2060                                       const u8 *data, size_t data_len)
2061 {
2062         struct wpa_driver_test_data *drv = priv;
2063         char *msg;
2064         size_t msg_len;
2065         struct l2_ethhdr eth;
2066         struct sockaddr *addr;
2067         socklen_t alen;
2068 #ifdef DRIVER_TEST_UNIX
2069         struct sockaddr_un addr_un;
2070 #endif /* DRIVER_TEST_UNIX */
2071
2072         wpa_hexdump(MSG_MSGDUMP, "test_send_eapol TX frame", data, data_len);
2073
2074         os_memset(&eth, 0, sizeof(eth));
2075         os_memcpy(eth.h_dest, dest, ETH_ALEN);
2076         os_memcpy(eth.h_source, drv->own_addr, ETH_ALEN);
2077         eth.h_proto = host_to_be16(proto);
2078
2079         msg_len = 6 + sizeof(eth) + data_len;
2080         msg = os_malloc(msg_len);
2081         if (msg == NULL)
2082                 return -1;
2083         os_memcpy(msg, "EAPOL ", 6);
2084         os_memcpy(msg + 6, &eth, sizeof(eth));
2085         os_memcpy(msg + 6 + sizeof(eth), data, data_len);
2086
2087         if (os_memcmp(dest, drv->bssid, ETH_ALEN) == 0 ||
2088             drv->test_dir == NULL) {
2089                 if (drv->hostapd_addr_udp_set) {
2090                         addr = (struct sockaddr *) &drv->hostapd_addr_udp;
2091                         alen = sizeof(drv->hostapd_addr_udp);
2092                 } else {
2093 #ifdef DRIVER_TEST_UNIX
2094                         addr = (struct sockaddr *) &drv->hostapd_addr;
2095                         alen = sizeof(drv->hostapd_addr);
2096 #else /* DRIVER_TEST_UNIX */
2097                         os_free(msg);
2098                         return -1;
2099 #endif /* DRIVER_TEST_UNIX */
2100                 }
2101         } else {
2102 #ifdef DRIVER_TEST_UNIX
2103                 struct stat st;
2104                 os_memset(&addr_un, 0, sizeof(addr_un));
2105                 addr_un.sun_family = AF_UNIX;
2106                 os_snprintf(addr_un.sun_path, sizeof(addr_un.sun_path),
2107                             "%s/STA-" MACSTR, drv->test_dir, MAC2STR(dest));
2108                 if (stat(addr_un.sun_path, &st) < 0) {
2109                         os_snprintf(addr_un.sun_path, sizeof(addr_un.sun_path),
2110                                     "%s/AP-" MACSTR,
2111                                     drv->test_dir, MAC2STR(dest));
2112                 }
2113                 addr = (struct sockaddr *) &addr_un;
2114                 alen = sizeof(addr_un);
2115 #else /* DRIVER_TEST_UNIX */
2116                 os_free(msg);
2117                 return -1;
2118 #endif /* DRIVER_TEST_UNIX */
2119         }
2120
2121         if (sendto(drv->test_socket, msg, msg_len, 0, addr, alen) < 0) {
2122                 perror("sendmsg(test_socket)");
2123                 os_free(msg);
2124                 return -1;
2125         }
2126
2127         os_free(msg);
2128         return 0;
2129 }
2130
2131
2132 static int wpa_driver_test_get_capa(void *priv, struct wpa_driver_capa *capa)
2133 {
2134         struct wpa_driver_test_data *drv = priv;
2135         os_memset(capa, 0, sizeof(*capa));
2136         capa->key_mgmt = WPA_DRIVER_CAPA_KEY_MGMT_WPA |
2137                 WPA_DRIVER_CAPA_KEY_MGMT_WPA2 |
2138                 WPA_DRIVER_CAPA_KEY_MGMT_WPA_PSK |
2139                 WPA_DRIVER_CAPA_KEY_MGMT_WPA2_PSK |
2140                 WPA_DRIVER_CAPA_KEY_MGMT_WPA_NONE |
2141                 WPA_DRIVER_CAPA_KEY_MGMT_FT |
2142                 WPA_DRIVER_CAPA_KEY_MGMT_FT_PSK;
2143         capa->enc = WPA_DRIVER_CAPA_ENC_WEP40 |
2144                 WPA_DRIVER_CAPA_ENC_WEP104 |
2145                 WPA_DRIVER_CAPA_ENC_TKIP |
2146                 WPA_DRIVER_CAPA_ENC_CCMP;
2147         capa->auth = WPA_DRIVER_AUTH_OPEN |
2148                 WPA_DRIVER_AUTH_SHARED |
2149                 WPA_DRIVER_AUTH_LEAP;
2150         if (drv->use_mlme)
2151                 capa->flags |= WPA_DRIVER_FLAGS_USER_SPACE_MLME;
2152         capa->max_scan_ssids = 2;
2153
2154         return 0;
2155 }
2156
2157
2158 static int wpa_driver_test_mlme_setprotection(void *priv, const u8 *addr,
2159                                               int protect_type,
2160                                               int key_type)
2161 {
2162         wpa_printf(MSG_DEBUG, "%s: protect_type=%d key_type=%d",
2163                    __func__, protect_type, key_type);
2164
2165         if (addr) {
2166                 wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR,
2167                            __func__, MAC2STR(addr));
2168         }
2169
2170         return 0;
2171 }
2172
2173
2174 #ifdef CONFIG_CLIENT_MLME
2175 static int wpa_driver_test_set_channel(void *priv, hostapd_hw_mode phymode,
2176                                        int chan, int freq)
2177 {
2178         wpa_printf(MSG_DEBUG, "%s: phymode=%d chan=%d freq=%d",
2179                    __func__, phymode, chan, freq);
2180         return 0;
2181 }
2182
2183
2184 static int wpa_driver_test_send_mlme(void *priv, const u8 *data,
2185                                      size_t data_len)
2186 {
2187         struct wpa_driver_test_data *drv = priv;
2188         struct msghdr msg;
2189         struct iovec io[2];
2190         struct sockaddr_un addr;
2191         const u8 *dest;
2192         struct dirent *dent;
2193         DIR *dir;
2194
2195         wpa_hexdump(MSG_MSGDUMP, "test_send_mlme", data, data_len);
2196         if (data_len < 10)
2197                 return -1;
2198         dest = data + 4;
2199
2200         io[0].iov_base = "MLME ";
2201         io[0].iov_len = 5;
2202         io[1].iov_base = (u8 *) data;
2203         io[1].iov_len = data_len;
2204
2205         os_memset(&msg, 0, sizeof(msg));
2206         msg.msg_iov = io;
2207         msg.msg_iovlen = 2;
2208         if (os_memcmp(dest, drv->bssid, ETH_ALEN) == 0 ||
2209             drv->test_dir == NULL) {
2210                 if (drv->hostapd_addr_udp_set) {
2211                         msg.msg_name = &drv->hostapd_addr_udp;
2212                         msg.msg_namelen = sizeof(drv->hostapd_addr_udp);
2213                 } else {
2214 #ifdef DRIVER_TEST_UNIX
2215                         msg.msg_name = &drv->hostapd_addr;
2216                         msg.msg_namelen = sizeof(drv->hostapd_addr);
2217 #endif /* DRIVER_TEST_UNIX */
2218                 }
2219         } else if (os_memcmp(dest, "\xff\xff\xff\xff\xff\xff", ETH_ALEN) == 0)
2220         {
2221                 dir = opendir(drv->test_dir);
2222                 if (dir == NULL)
2223                         return -1;
2224                 while ((dent = readdir(dir))) {
2225 #ifdef _DIRENT_HAVE_D_TYPE
2226                         /* Skip the file if it is not a socket.
2227                          * Also accept DT_UNKNOWN (0) in case
2228                          * the C library or underlying file
2229                          * system does not support d_type. */
2230                         if (dent->d_type != DT_SOCK &&
2231                             dent->d_type != DT_UNKNOWN)
2232                                 continue;
2233 #endif /* _DIRENT_HAVE_D_TYPE */
2234                         if (os_strcmp(dent->d_name, ".") == 0 ||
2235                             os_strcmp(dent->d_name, "..") == 0)
2236                                 continue;
2237                         wpa_printf(MSG_DEBUG, "%s: Send broadcast MLME to %s",
2238                                    __func__, dent->d_name);
2239                         os_memset(&addr, 0, sizeof(addr));
2240                         addr.sun_family = AF_UNIX;
2241                         os_snprintf(addr.sun_path, sizeof(addr.sun_path),
2242                                     "%s/%s", drv->test_dir, dent->d_name);
2243
2244                         msg.msg_name = &addr;
2245                         msg.msg_namelen = sizeof(addr);
2246
2247                         if (sendmsg(drv->test_socket, &msg, 0) < 0)
2248                                 perror("sendmsg(test_socket)");
2249                 }
2250                 closedir(dir);
2251                 return 0;
2252         } else {
2253                 struct stat st;
2254                 os_memset(&addr, 0, sizeof(addr));
2255                 addr.sun_family = AF_UNIX;
2256                 os_snprintf(addr.sun_path, sizeof(addr.sun_path),
2257                             "%s/AP-" MACSTR, drv->test_dir, MAC2STR(dest));
2258                 if (stat(addr.sun_path, &st) < 0) {
2259                         os_snprintf(addr.sun_path, sizeof(addr.sun_path),
2260                                     "%s/STA-" MACSTR,
2261                                     drv->test_dir, MAC2STR(dest));
2262                 }
2263                 msg.msg_name = &addr;
2264                 msg.msg_namelen = sizeof(addr);
2265         }
2266
2267         if (sendmsg(drv->test_socket, &msg, 0) < 0) {
2268                 perror("sendmsg(test_socket)");
2269                 return -1;
2270         }
2271
2272         return 0;
2273 }
2274
2275
2276 static int wpa_driver_test_mlme_add_sta(void *priv, const u8 *addr,
2277                                         const u8 *supp_rates,
2278                                         size_t supp_rates_len)
2279 {
2280         wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR, __func__, MAC2STR(addr));
2281         return 0;
2282 }
2283
2284
2285 static int wpa_driver_test_mlme_remove_sta(void *priv, const u8 *addr)
2286 {
2287         wpa_printf(MSG_DEBUG, "%s: addr=" MACSTR, __func__, MAC2STR(addr));
2288         return 0;
2289 }
2290
2291
2292 static int wpa_driver_test_set_ssid(void *priv, const u8 *ssid,
2293                                     size_t ssid_len)
2294 {
2295         wpa_printf(MSG_DEBUG, "%s", __func__);
2296         return 0;
2297 }
2298
2299
2300 static int wpa_driver_test_set_bssid(void *priv, const u8 *bssid)
2301 {
2302         wpa_printf(MSG_DEBUG, "%s: bssid=" MACSTR, __func__, MAC2STR(bssid));
2303         return 0;
2304 }
2305 #endif /* CONFIG_CLIENT_MLME */
2306
2307
2308 static int wpa_driver_test_set_probe_req_ie(void *priv, const u8 *ies,
2309                                             size_t ies_len)
2310 {
2311         struct wpa_driver_test_data *drv = priv;
2312
2313         os_free(drv->probe_req_ie);
2314         if (ies) {
2315                 drv->probe_req_ie = os_malloc(ies_len);
2316                 if (drv->probe_req_ie == NULL) {
2317                         drv->probe_req_ie_len = 0;
2318                         return -1;
2319                 }
2320                 os_memcpy(drv->probe_req_ie, ies, ies_len);
2321                 drv->probe_req_ie_len = ies_len;
2322         } else {
2323                 drv->probe_req_ie = NULL;
2324                 drv->probe_req_ie_len = 0;
2325         }
2326         return 0;
2327 }
2328
2329
2330 static void * wpa_driver_test_global_init(void)
2331 {
2332         struct wpa_driver_test_global *global;
2333
2334         global = os_zalloc(sizeof(*global));
2335         return global;
2336 }
2337
2338
2339 static void wpa_driver_test_global_deinit(void *priv)
2340 {
2341         struct wpa_driver_test_global *global = priv;
2342         os_free(global);
2343 }
2344
2345
2346 static struct wpa_interface_info *
2347 wpa_driver_test_get_interfaces(void *global_priv)
2348 {
2349         /* struct wpa_driver_test_global *global = priv; */
2350         struct wpa_interface_info *iface;
2351
2352         iface = os_zalloc(sizeof(*iface));
2353         if (iface == NULL)
2354                 return iface;
2355         iface->ifname = os_strdup("sta0");
2356         iface->desc = os_strdup("test interface 0");
2357         iface->drv_name = "test";
2358         iface->next = os_zalloc(sizeof(*iface));
2359         if (iface->next) {
2360                 iface->next->ifname = os_strdup("sta1");
2361                 iface->next->desc = os_strdup("test interface 1");
2362                 iface->next->drv_name = "test";
2363         }
2364
2365         return iface;
2366 }
2367
2368 #endif /* HOSTAPD */
2369
2370
2371 #if defined(HOSTAPD) || defined(CONFIG_CLIENT_MLME)
2372 static struct hostapd_hw_modes *
2373 wpa_driver_test_get_hw_feature_data(void *priv, u16 *num_modes, u16 *flags)
2374 {
2375         struct hostapd_hw_modes *modes;
2376
2377         *num_modes = 3;
2378         *flags = 0;
2379         modes = os_zalloc(*num_modes * sizeof(struct hostapd_hw_modes));
2380         if (modes == NULL)
2381                 return NULL;
2382         modes[0].mode = HOSTAPD_MODE_IEEE80211G;
2383         modes[0].num_channels = 1;
2384         modes[0].num_rates = 1;
2385         modes[0].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2386         modes[0].rates = os_zalloc(sizeof(struct hostapd_rate_data));
2387         if (modes[0].channels == NULL || modes[0].rates == NULL)
2388                 goto fail;
2389         modes[0].channels[0].chan = 1;
2390         modes[0].channels[0].freq = 2412;
2391         modes[0].channels[0].flag = 0;
2392         modes[0].rates[0].rate = 10;
2393         modes[0].rates[0].flags = HOSTAPD_RATE_BASIC | HOSTAPD_RATE_SUPPORTED |
2394                 HOSTAPD_RATE_CCK | HOSTAPD_RATE_MANDATORY;
2395
2396         modes[1].mode = HOSTAPD_MODE_IEEE80211B;
2397         modes[1].num_channels = 1;
2398         modes[1].num_rates = 1;
2399         modes[1].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2400         modes[1].rates = os_zalloc(sizeof(struct hostapd_rate_data));
2401         if (modes[1].channels == NULL || modes[1].rates == NULL)
2402                 goto fail;
2403         modes[1].channels[0].chan = 1;
2404         modes[1].channels[0].freq = 2412;
2405         modes[1].channels[0].flag = 0;
2406         modes[1].rates[0].rate = 10;
2407         modes[1].rates[0].flags = HOSTAPD_RATE_BASIC | HOSTAPD_RATE_SUPPORTED |
2408                 HOSTAPD_RATE_CCK | HOSTAPD_RATE_MANDATORY;
2409
2410         modes[2].mode = HOSTAPD_MODE_IEEE80211A;
2411         modes[2].num_channels = 1;
2412         modes[2].num_rates = 1;
2413         modes[2].channels = os_zalloc(sizeof(struct hostapd_channel_data));
2414         modes[2].rates = os_zalloc(sizeof(struct hostapd_rate_data));
2415         if (modes[2].channels == NULL || modes[2].rates == NULL)
2416                 goto fail;
2417         modes[2].channels[0].chan = 60;
2418         modes[2].channels[0].freq = 5300;
2419         modes[2].channels[0].flag = 0;
2420         modes[2].rates[0].rate = 60;
2421         modes[2].rates[0].flags = HOSTAPD_RATE_BASIC | HOSTAPD_RATE_SUPPORTED |
2422                 HOSTAPD_RATE_MANDATORY;
2423
2424         return modes;
2425
2426 fail:
2427         if (modes) {
2428                 size_t i;
2429                 for (i = 0; i < *num_modes; i++) {
2430                         os_free(modes[i].channels);
2431                         os_free(modes[i].rates);
2432                 }
2433                 os_free(modes);
2434         }
2435         return NULL;
2436 }
2437 #endif /* HOSTAPD || CONFIG_CLIENT_MLME */
2438
2439
2440 const struct wpa_driver_ops wpa_driver_test_ops = {
2441         "test",
2442         "wpa_supplicant test driver",
2443 #ifdef HOSTAPD
2444         .hapd_init = test_driver_init,
2445         .hapd_deinit = test_driver_deinit,
2446         .hapd_send_eapol = test_driver_send_eapol,
2447         .send_mlme = wpa_driver_test_send_mlme,
2448         .set_generic_elem = test_driver_set_generic_elem,
2449         .sta_deauth = test_driver_sta_deauth,
2450         .sta_disassoc = test_driver_sta_disassoc,
2451         .get_hw_feature_data = wpa_driver_test_get_hw_feature_data,
2452         .bss_add = test_driver_bss_add,
2453         .bss_remove = test_driver_bss_remove,
2454         .if_add = test_driver_if_add,
2455         .if_update = test_driver_if_update,
2456         .if_remove = test_driver_if_remove,
2457         .valid_bss_mask = test_driver_valid_bss_mask,
2458         .hapd_set_ssid = test_driver_set_ssid,
2459         .set_privacy = test_driver_set_privacy,
2460         .hapd_set_key = test_driver_set_key,
2461         .set_sta_vlan = test_driver_set_sta_vlan,
2462         .sta_add = test_driver_sta_add,
2463         .send_ether = test_driver_send_ether,
2464         .set_wps_beacon_ie = test_driver_set_wps_beacon_ie,
2465         .set_wps_probe_resp_ie = test_driver_set_wps_probe_resp_ie,
2466 #else /* HOSTAPD */
2467         .get_bssid = wpa_driver_test_get_bssid,
2468         .get_ssid = wpa_driver_test_get_ssid,
2469         .set_wpa = wpa_driver_test_set_wpa,
2470         .set_key = wpa_driver_test_set_key,
2471         .deinit = wpa_driver_test_deinit,
2472         .set_param = wpa_driver_test_set_param,
2473         .deauthenticate = wpa_driver_test_deauthenticate,
2474         .disassociate = wpa_driver_test_disassociate,
2475         .associate = wpa_driver_test_associate,
2476         .get_capa = wpa_driver_test_get_capa,
2477         .get_mac_addr = wpa_driver_test_get_mac_addr,
2478         .send_eapol = wpa_driver_test_send_eapol,
2479         .mlme_setprotection = wpa_driver_test_mlme_setprotection,
2480 #ifdef CONFIG_CLIENT_MLME
2481         .get_hw_feature_data = wpa_driver_test_get_hw_feature_data,
2482         .set_channel = wpa_driver_test_set_channel,
2483         .set_ssid = wpa_driver_test_set_ssid,
2484         .set_bssid = wpa_driver_test_set_bssid,
2485         .send_mlme = wpa_driver_test_send_mlme,
2486         .mlme_add_sta = wpa_driver_test_mlme_add_sta,
2487         .mlme_remove_sta = wpa_driver_test_mlme_remove_sta,
2488 #endif /* CONFIG_CLIENT_MLME */
2489         .get_scan_results2 = wpa_driver_test_get_scan_results2,
2490         .set_probe_req_ie = wpa_driver_test_set_probe_req_ie,
2491         .global_init = wpa_driver_test_global_init,
2492         .global_deinit = wpa_driver_test_global_deinit,
2493         .init2 = wpa_driver_test_init2,
2494         .get_interfaces = wpa_driver_test_get_interfaces,
2495         .scan2 = wpa_driver_test_scan,
2496 #endif /* HOSTAPD */
2497 };