2 * WPA Supplicant - Basic mesh mode routines
3 * Copyright (c) 2013-2014, cozybit, Inc. All rights reserved.
5 * This software may be distributed under the terms of the BSD license.
6 * See README for more details.
9 #include "utils/includes.h"
11 #include "utils/common.h"
12 #include "utils/eloop.h"
13 #include "utils/uuid.h"
14 #include "common/ieee802_11_defs.h"
15 #include "common/wpa_ctrl.h"
16 #include "ap/sta_info.h"
17 #include "ap/hostapd.h"
18 #include "ap/ieee802_11.h"
19 #include "config_ssid.h"
21 #include "wpa_supplicant_i.h"
30 static void wpa_supplicant_mesh_deinit(struct wpa_supplicant *wpa_s)
32 wpa_supplicant_mesh_iface_deinit(wpa_s, wpa_s->ifmsh);
34 wpa_s->current_ssid = NULL;
35 os_free(wpa_s->mesh_rsn);
36 wpa_s->mesh_rsn = NULL;
37 /* TODO: leave mesh (stop beacon). This will happen on link down
38 * anyway, so it's not urgent */
42 void wpa_supplicant_mesh_iface_deinit(struct wpa_supplicant *wpa_s,
43 struct hostapd_iface *ifmsh)
49 mesh_mpm_deinit(wpa_s, ifmsh);
50 if (ifmsh->mconf->rsn_ie) {
51 ifmsh->mconf->rsn_ie = NULL;
52 /* We cannot free this struct
53 * because wpa_authenticator on
54 * hostapd side is also using it
55 * for now just set to NULL and
56 * let hostapd code free it.
59 os_free(ifmsh->mconf);
63 /* take care of shared data */
64 hostapd_interface_deinit(ifmsh);
65 hostapd_interface_free(ifmsh);
69 static struct mesh_conf * mesh_config_create(struct wpa_supplicant *wpa_s,
70 struct wpa_ssid *ssid)
72 struct mesh_conf *conf;
75 conf = os_zalloc(sizeof(struct mesh_conf));
79 os_memcpy(conf->meshid, ssid->ssid, ssid->ssid_len);
80 conf->meshid_len = ssid->ssid_len;
82 if (ssid->key_mgmt & WPA_KEY_MGMT_SAE)
83 conf->security |= MESH_CONF_SEC_AUTH |
86 conf->security |= MESH_CONF_SEC_NONE;
87 conf->ieee80211w = ssid->ieee80211w;
88 if (conf->ieee80211w == MGMT_FRAME_PROTECTION_DEFAULT) {
89 if (wpa_s->drv_enc & WPA_DRIVER_CAPA_ENC_BIP)
90 conf->ieee80211w = wpa_s->conf->pmf;
92 conf->ieee80211w = NO_MGMT_FRAME_PROTECTION;
95 cipher = wpa_pick_pairwise_cipher(ssid->pairwise_cipher, 0);
96 if (cipher < 0 || cipher == WPA_CIPHER_TKIP) {
97 wpa_msg(wpa_s, MSG_INFO, "mesh: Invalid pairwise cipher");
101 conf->pairwise_cipher = cipher;
103 cipher = wpa_pick_group_cipher(ssid->group_cipher);
104 if (cipher < 0 || cipher == WPA_CIPHER_TKIP ||
105 cipher == WPA_CIPHER_GTK_NOT_USED) {
106 wpa_msg(wpa_s, MSG_INFO, "mesh: Invalid group cipher");
111 conf->group_cipher = cipher;
112 if (conf->ieee80211w != NO_MGMT_FRAME_PROTECTION)
113 conf->mgmt_group_cipher = WPA_CIPHER_AES_128_CMAC;
116 conf->mesh_pp_id = MESH_PATH_PROTOCOL_HWMP;
117 conf->mesh_pm_id = MESH_PATH_METRIC_AIRTIME;
118 conf->mesh_cc_id = 0;
119 conf->mesh_sp_id = MESH_SYNC_METHOD_NEIGHBOR_OFFSET;
120 conf->mesh_auth_id = (conf->security & MESH_CONF_SEC_AUTH) ? 1 : 0;
121 conf->dot11MeshMaxRetries = ssid->dot11MeshMaxRetries;
122 conf->dot11MeshRetryTimeout = ssid->dot11MeshRetryTimeout;
123 conf->dot11MeshConfirmTimeout = ssid->dot11MeshConfirmTimeout;
124 conf->dot11MeshHoldingTimeout = ssid->dot11MeshHoldingTimeout;
130 static void wpas_mesh_copy_groups(struct hostapd_data *bss,
131 struct wpa_supplicant *wpa_s)
136 for (num_groups = 0; wpa_s->conf->sae_groups[num_groups] > 0;
140 groups_size = (num_groups + 1) * sizeof(wpa_s->conf->sae_groups[0]);
141 bss->conf->sae_groups = os_malloc(groups_size);
142 if (bss->conf->sae_groups)
143 os_memcpy(bss->conf->sae_groups, wpa_s->conf->sae_groups,
148 static int wpa_supplicant_mesh_init(struct wpa_supplicant *wpa_s,
149 struct wpa_ssid *ssid)
151 struct hostapd_iface *ifmsh;
152 struct hostapd_data *bss;
153 struct hostapd_config *conf;
154 struct mesh_conf *mconf;
155 int basic_rates_erp[] = { 10, 20, 55, 60, 110, 120, 240, -1 };
156 static int default_groups[] = { 19, 20, 21, 25, 26, -1 };
160 if (!wpa_s->conf->user_mpm) {
161 /* not much for us to do here */
162 wpa_msg(wpa_s, MSG_WARNING,
163 "user_mpm is not enabled in configuration");
167 wpa_s->ifmsh = ifmsh = os_zalloc(sizeof(*wpa_s->ifmsh));
171 ifmsh->drv_flags = wpa_s->drv_flags;
173 ifmsh->bss = os_calloc(wpa_s->ifmsh->num_bss,
174 sizeof(struct hostapd_data *));
178 ifmsh->bss[0] = bss = os_zalloc(sizeof(struct hostapd_data));
181 dl_list_init(&bss->nr_db);
183 os_memcpy(bss->own_addr, wpa_s->own_addr, ETH_ALEN);
184 bss->driver = wpa_s->driver;
185 bss->drv_priv = wpa_s->drv_priv;
187 bss->mesh_sta_free_cb = mesh_mpm_free_sta;
188 wpa_s->assoc_freq = ssid->frequency;
189 wpa_s->current_ssid = ssid;
191 /* setup an AP config for auth processing */
192 conf = hostapd_config_defaults();
196 bss->conf = *conf->bss;
197 bss->conf->start_disabled = 1;
198 bss->conf->mesh = MESH_ENABLED;
199 bss->conf->ap_max_inactivity = wpa_s->conf->mesh_max_inactivity;
203 ifmsh->bss[0]->max_plinks = wpa_s->conf->max_peer_links;
204 ifmsh->bss[0]->dot11RSNASAERetransPeriod =
205 wpa_s->conf->dot11RSNASAERetransPeriod;
206 os_strlcpy(bss->conf->iface, wpa_s->ifname, sizeof(bss->conf->iface));
208 mconf = mesh_config_create(wpa_s, ssid);
211 ifmsh->mconf = mconf;
213 /* need conf->hw_mode for supported rates. */
214 conf->hw_mode = ieee80211_freq_to_chan(ssid->frequency, &conf->channel);
215 if (conf->hw_mode == NUM_HOSTAPD_MODES) {
216 wpa_printf(MSG_ERROR, "Unsupported mesh mode frequency: %d MHz",
221 conf->secondary_channel = ssid->ht40;
222 if (conf->hw_mode == HOSTAPD_MODE_IEEE80211A && ssid->vht) {
223 conf->vht_oper_chwidth = ssid->max_oper_chwidth;
224 switch (conf->vht_oper_chwidth) {
225 case VHT_CHANWIDTH_80MHZ:
226 case VHT_CHANWIDTH_80P80MHZ:
227 ieee80211_freq_to_chan(
229 &conf->vht_oper_centr_freq_seg0_idx);
230 conf->vht_oper_centr_freq_seg0_idx += ssid->ht40 * 2;
232 case VHT_CHANWIDTH_160MHZ:
233 ieee80211_freq_to_chan(
235 &conf->vht_oper_centr_freq_seg0_idx);
236 conf->vht_oper_centr_freq_seg0_idx += ssid->ht40 * 2;
237 conf->vht_oper_centr_freq_seg0_idx += 40 / 5;
240 ieee80211_freq_to_chan(ssid->vht_center_freq2,
241 &conf->vht_oper_centr_freq_seg1_idx);
244 if (ssid->mesh_basic_rates == NULL) {
246 * XXX: Hack! This is so an MPM which correctly sets the ERP
247 * mandatory rates as BSSBasicRateSet doesn't reject us. We
248 * could add a new hw_mode HOSTAPD_MODE_IEEE80211G_ERP, but
249 * this is way easier. This also makes our BSSBasicRateSet
250 * advertised in beacons match the one in peering frames, sigh.
252 if (conf->hw_mode == HOSTAPD_MODE_IEEE80211G) {
253 conf->basic_rates = os_malloc(sizeof(basic_rates_erp));
254 if (!conf->basic_rates)
256 os_memcpy(conf->basic_rates, basic_rates_erp,
257 sizeof(basic_rates_erp));
262 if (ssid->mesh_basic_rates[rate_len] < 1)
266 conf->basic_rates = os_calloc(rate_len + 1, sizeof(int));
267 if (conf->basic_rates == NULL)
269 os_memcpy(conf->basic_rates, ssid->mesh_basic_rates,
270 rate_len * sizeof(int));
271 conf->basic_rates[rate_len] = -1;
274 if (hostapd_setup_interface(ifmsh)) {
275 wpa_printf(MSG_ERROR,
276 "Failed to initialize hostapd interface for mesh");
280 if (wpa_drv_init_mesh(wpa_s)) {
281 wpa_msg(wpa_s, MSG_ERROR, "Failed to init mesh in driver");
285 if (mconf->security != MESH_CONF_SEC_NONE) {
286 if (ssid->passphrase == NULL) {
287 wpa_printf(MSG_ERROR,
288 "mesh: Passphrase for SAE not configured");
292 bss->conf->wpa = ssid->proto;
293 bss->conf->wpa_key_mgmt = ssid->key_mgmt;
295 if (wpa_s->conf->sae_groups &&
296 wpa_s->conf->sae_groups[0] > 0) {
297 wpas_mesh_copy_groups(bss, wpa_s);
299 bss->conf->sae_groups =
300 os_malloc(sizeof(default_groups));
301 if (!bss->conf->sae_groups)
303 os_memcpy(bss->conf->sae_groups, default_groups,
304 sizeof(default_groups));
307 len = os_strlen(ssid->passphrase);
308 bss->conf->ssid.wpa_passphrase =
309 dup_binstr(ssid->passphrase, len);
311 wpa_s->mesh_rsn = mesh_rsn_auth_init(wpa_s, mconf);
312 if (!wpa_s->mesh_rsn)
316 wpa_supplicant_conf_ap_ht(wpa_s, ssid, conf);
320 wpa_supplicant_mesh_deinit(wpa_s);
325 void wpa_mesh_notify_peer(struct wpa_supplicant *wpa_s, const u8 *addr,
326 const u8 *ies, size_t ie_len)
328 struct ieee802_11_elems elems;
330 wpa_msg(wpa_s, MSG_INFO,
331 "new peer notification for " MACSTR, MAC2STR(addr));
333 if (ieee802_11_parse_elems(ies, ie_len, &elems, 0) == ParseFailed) {
334 wpa_msg(wpa_s, MSG_INFO, "Could not parse beacon from " MACSTR,
338 wpa_mesh_new_mesh_peer(wpa_s, addr, &elems);
342 void wpa_supplicant_mesh_add_scan_ie(struct wpa_supplicant *wpa_s,
343 struct wpabuf **extra_ie)
345 /* EID + 0-length (wildcard) mesh-id */
348 if (wpabuf_resize(extra_ie, ielen) == 0) {
349 wpabuf_put_u8(*extra_ie, WLAN_EID_MESH_ID);
350 wpabuf_put_u8(*extra_ie, 0);
355 int wpa_supplicant_join_mesh(struct wpa_supplicant *wpa_s,
356 struct wpa_ssid *ssid)
358 struct wpa_driver_mesh_join_params params;
361 if (!ssid || !ssid->ssid || !ssid->ssid_len || !ssid->frequency) {
366 wpa_supplicant_mesh_deinit(wpa_s);
368 wpa_s->pairwise_cipher = WPA_CIPHER_NONE;
369 wpa_s->group_cipher = WPA_CIPHER_NONE;
370 wpa_s->mgmt_group_cipher = 0;
372 os_memset(¶ms, 0, sizeof(params));
373 params.meshid = ssid->ssid;
374 params.meshid_len = ssid->ssid_len;
375 ibss_mesh_setup_freq(wpa_s, ssid, ¶ms.freq);
376 wpa_s->mesh_ht_enabled = !!params.freq.ht_enabled;
377 wpa_s->mesh_vht_enabled = !!params.freq.vht_enabled;
378 if (params.freq.ht_enabled && params.freq.sec_channel_offset)
379 ssid->ht40 = params.freq.sec_channel_offset;
380 if (wpa_s->mesh_vht_enabled) {
382 switch (params.freq.bandwidth) {
384 if (params.freq.center_freq2) {
385 ssid->max_oper_chwidth = VHT_CHANWIDTH_80P80MHZ;
386 ssid->vht_center_freq2 =
387 params.freq.center_freq2;
389 ssid->max_oper_chwidth = VHT_CHANWIDTH_80MHZ;
393 ssid->max_oper_chwidth = VHT_CHANWIDTH_160MHZ;
396 ssid->max_oper_chwidth = VHT_CHANWIDTH_USE_HT;
400 if (ssid->beacon_int > 0)
401 params.beacon_int = ssid->beacon_int;
402 else if (wpa_s->conf->beacon_int > 0)
403 params.beacon_int = wpa_s->conf->beacon_int;
404 if (ssid->dtim_period > 0)
405 params.dtim_period = ssid->dtim_period;
406 else if (wpa_s->conf->dtim_period > 0)
407 params.dtim_period = wpa_s->conf->dtim_period;
408 params.conf.max_peer_links = wpa_s->conf->max_peer_links;
410 if (ssid->key_mgmt & WPA_KEY_MGMT_SAE) {
411 params.flags |= WPA_DRIVER_MESH_FLAG_SAE_AUTH;
412 params.flags |= WPA_DRIVER_MESH_FLAG_AMPE;
413 wpa_s->conf->user_mpm = 1;
416 if (wpa_s->conf->user_mpm) {
417 params.flags |= WPA_DRIVER_MESH_FLAG_USER_MPM;
418 params.conf.auto_plinks = 0;
420 params.flags |= WPA_DRIVER_MESH_FLAG_DRIVER_MPM;
421 params.conf.auto_plinks = 1;
423 params.conf.peer_link_timeout = wpa_s->conf->mesh_max_inactivity;
425 if (wpa_supplicant_mesh_init(wpa_s, ssid)) {
426 wpa_msg(wpa_s, MSG_ERROR, "Failed to init mesh");
427 wpa_drv_leave_mesh(wpa_s);
432 if (ssid->key_mgmt & WPA_KEY_MGMT_SAE) {
433 wpa_s->pairwise_cipher = wpa_s->mesh_rsn->pairwise_cipher;
434 wpa_s->group_cipher = wpa_s->mesh_rsn->group_cipher;
435 wpa_s->mgmt_group_cipher = wpa_s->mesh_rsn->mgmt_group_cipher;
439 params.ies = wpa_s->ifmsh->mconf->rsn_ie;
440 params.ie_len = wpa_s->ifmsh->mconf->rsn_ie_len;
441 params.basic_rates = wpa_s->ifmsh->basic_rates;
442 params.conf.flags |= WPA_DRIVER_MESH_CONF_FLAG_HT_OP_MODE;
443 params.conf.ht_opmode = wpa_s->ifmsh->bss[0]->iface->ht_op_mode;
446 wpa_msg(wpa_s, MSG_INFO, "joining mesh %s",
447 wpa_ssid_txt(ssid->ssid, ssid->ssid_len));
448 ret = wpa_drv_join_mesh(wpa_s, ¶ms);
450 wpa_msg(wpa_s, MSG_ERROR, "mesh join error=%d", ret);
452 /* hostapd sets the interface down until we associate */
453 wpa_drv_set_operstate(wpa_s, 1);
456 wpa_supplicant_set_state(wpa_s, WPA_COMPLETED);
463 int wpa_supplicant_leave_mesh(struct wpa_supplicant *wpa_s)
467 wpa_msg(wpa_s, MSG_INFO, "leaving mesh");
469 /* Need to send peering close messages first */
470 wpa_supplicant_mesh_deinit(wpa_s);
472 ret = wpa_drv_leave_mesh(wpa_s);
474 wpa_msg(wpa_s, MSG_ERROR, "mesh leave error=%d", ret);
476 wpa_drv_set_operstate(wpa_s, 1);
482 static int mesh_attr_text(const u8 *ies, size_t ies_len, char *buf, char *end)
484 struct ieee802_11_elems elems;
485 char *mesh_id, *pos = buf;
486 u8 *bss_basic_rate_set;
487 int bss_basic_rate_set_len, ret, i;
489 if (ieee802_11_parse_elems(ies, ies_len, &elems, 0) == ParseFailed)
492 if (elems.mesh_id_len < 1)
495 mesh_id = os_malloc(elems.mesh_id_len + 1);
499 os_memcpy(mesh_id, elems.mesh_id, elems.mesh_id_len);
500 mesh_id[elems.mesh_id_len] = '\0';
501 ret = os_snprintf(pos, end - pos, "mesh_id=%s\n", mesh_id);
503 if (os_snprintf_error(end - pos, ret))
507 if (elems.mesh_config_len > 6) {
508 ret = os_snprintf(pos, end - pos,
509 "active_path_selection_protocol_id=0x%02x\n"
510 "active_path_selection_metric_id=0x%02x\n"
511 "congestion_control_mode_id=0x%02x\n"
512 "synchronization_method_id=0x%02x\n"
513 "authentication_protocol_id=0x%02x\n"
514 "mesh_formation_info=0x%02x\n"
515 "mesh_capability=0x%02x\n",
516 elems.mesh_config[0], elems.mesh_config[1],
517 elems.mesh_config[2], elems.mesh_config[3],
518 elems.mesh_config[4], elems.mesh_config[5],
519 elems.mesh_config[6]);
520 if (os_snprintf_error(end - pos, ret))
525 bss_basic_rate_set = os_malloc(elems.supp_rates_len +
526 elems.ext_supp_rates_len);
527 if (bss_basic_rate_set == NULL)
530 bss_basic_rate_set_len = 0;
531 for (i = 0; i < elems.supp_rates_len; i++) {
532 if (elems.supp_rates[i] & 0x80) {
533 bss_basic_rate_set[bss_basic_rate_set_len++] =
534 (elems.supp_rates[i] & 0x7f) * 5;
537 for (i = 0; i < elems.ext_supp_rates_len; i++) {
538 if (elems.ext_supp_rates[i] & 0x80) {
539 bss_basic_rate_set[bss_basic_rate_set_len++] =
540 (elems.ext_supp_rates[i] & 0x7f) * 5;
543 if (bss_basic_rate_set_len > 0) {
544 ret = os_snprintf(pos, end - pos, "bss_basic_rate_set=%d",
545 bss_basic_rate_set[0]);
546 if (os_snprintf_error(end - pos, ret))
550 for (i = 1; i < bss_basic_rate_set_len; i++) {
551 ret = os_snprintf(pos, end - pos, " %d",
552 bss_basic_rate_set[i]);
553 if (os_snprintf_error(end - pos, ret))
558 ret = os_snprintf(pos, end - pos, "\n");
559 if (os_snprintf_error(end - pos, ret))
564 os_free(bss_basic_rate_set);
570 int wpas_mesh_scan_result_text(const u8 *ies, size_t ies_len, char *buf,
573 return mesh_attr_text(ies, ies_len, buf, end);
577 static int wpas_mesh_get_ifname(struct wpa_supplicant *wpa_s, char *ifname,
580 char *ifname_ptr = wpa_s->ifname;
583 res = os_snprintf(ifname, len, "mesh-%s-%d", ifname_ptr,
585 if (os_snprintf_error(len, res) ||
586 (os_strlen(ifname) >= IFNAMSIZ &&
587 os_strlen(wpa_s->ifname) < IFNAMSIZ)) {
588 /* Try to avoid going over the IFNAMSIZ length limit */
589 res = os_snprintf(ifname, len, "mesh-%d", wpa_s->mesh_if_idx);
590 if (os_snprintf_error(len, res))
593 wpa_s->mesh_if_idx++;
598 int wpas_mesh_add_interface(struct wpa_supplicant *wpa_s, char *ifname,
601 struct wpa_interface iface;
602 struct wpa_supplicant *mesh_wpa_s;
605 if (ifname[0] == '\0' && wpas_mesh_get_ifname(wpa_s, ifname, len) < 0)
608 if (wpa_drv_if_add(wpa_s, WPA_IF_MESH, ifname, NULL, NULL, NULL, addr,
610 wpa_printf(MSG_ERROR,
611 "mesh: Failed to create new mesh interface");
614 wpa_printf(MSG_INFO, "mesh: Created virtual interface %s addr "
615 MACSTR, ifname, MAC2STR(addr));
617 os_memset(&iface, 0, sizeof(iface));
618 iface.ifname = ifname;
619 iface.driver = wpa_s->driver->name;
620 iface.driver_param = wpa_s->conf->driver_param;
621 iface.ctrl_interface = wpa_s->conf->ctrl_interface;
623 mesh_wpa_s = wpa_supplicant_add_iface(wpa_s->global, &iface, wpa_s);
625 wpa_printf(MSG_ERROR,
626 "mesh: Failed to create new wpa_supplicant interface");
627 wpa_drv_if_remove(wpa_s, WPA_IF_MESH, ifname);
630 mesh_wpa_s->mesh_if_created = 1;
635 int wpas_mesh_peer_remove(struct wpa_supplicant *wpa_s, const u8 *addr)
637 return mesh_mpm_close_peer(wpa_s, addr);
641 int wpas_mesh_peer_add(struct wpa_supplicant *wpa_s, const u8 *addr,
644 return mesh_mpm_connect_peer(wpa_s, addr, duration);