iface.c 42.2 KB
Newer Older
1
/*
2 3
 * Interface handling (except master interface)
 *
4 5 6
 * Copyright 2002-2005, Instant802 Networks, Inc.
 * Copyright 2005-2006, Devicescape Software, Inc.
 * Copyright (c) 2006 Jiri Benc <jbenc@suse.cz>
7
 * Copyright 2008, Johannes Berg <johannes@sipsolutions.net>
8 9 10 11 12
 *
 * This program is free software; you can redistribute it and/or modify
 * it under the terms of the GNU General Public License version 2 as
 * published by the Free Software Foundation.
 */
13
#include <linux/slab.h>
14 15 16 17 18
#include <linux/kernel.h>
#include <linux/if_arp.h>
#include <linux/netdevice.h>
#include <linux/rtnetlink.h>
#include <net/mac80211.h>
19
#include <net/ieee80211_radiotap.h>
20 21
#include "ieee80211_i.h"
#include "sta_info.h"
22
#include "debugfs_netdev.h"
23
#include "mesh.h"
24
#include "led.h"
25
#include "driver-ops.h"
26
#include "wme.h"
Bill Jordan's avatar
Bill Jordan committed
27
#include "rate.h"
28

29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44
/**
 * DOC: Interface list locking
 *
 * The interface list in each struct ieee80211_local is protected
 * three-fold:
 *
 * (1) modifications may only be done under the RTNL
 * (2) modifications and readers are protected against each other by
 *     the iflist_mtx.
 * (3) modifications are done in an RCU manner so atomic readers
 *     can traverse the list in RCU-safe blocks.
 *
 * As a consequence, reads (traversals) of the list can be protected
 * by either the RTNL, the iflist_mtx or RCU.
 */

45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79
bool __ieee80211_recalc_txpower(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_chanctx_conf *chanctx_conf;
	int power;

	rcu_read_lock();
	chanctx_conf = rcu_dereference(sdata->vif.chanctx_conf);
	if (!chanctx_conf) {
		rcu_read_unlock();
		return false;
	}

	power = chanctx_conf->channel->max_power;
	rcu_read_unlock();

	if (sdata->user_power_level != IEEE80211_UNSET_POWER_LEVEL)
		power = min(power, sdata->user_power_level);

	if (sdata->ap_power_level != IEEE80211_UNSET_POWER_LEVEL)
		power = min(power, sdata->ap_power_level);

	if (power != sdata->vif.bss_conf.txpower) {
		sdata->vif.bss_conf.txpower = power;
		ieee80211_hw_config(sdata->local, 0);
		return true;
	}

	return false;
}

void ieee80211_recalc_txpower(struct ieee80211_sub_if_data *sdata)
{
	if (__ieee80211_recalc_txpower(sdata))
		ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_TXPOWER);
}
80

81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137
static u32 ieee80211_idle_off(struct ieee80211_local *local,
			      const char *reason)
{
	if (!(local->hw.conf.flags & IEEE80211_CONF_IDLE))
		return 0;

	local->hw.conf.flags &= ~IEEE80211_CONF_IDLE;
	return IEEE80211_CONF_CHANGE_IDLE;
}

static u32 ieee80211_idle_on(struct ieee80211_local *local)
{
	if (local->hw.conf.flags & IEEE80211_CONF_IDLE)
		return 0;

	drv_flush(local, false);

	local->hw.conf.flags |= IEEE80211_CONF_IDLE;
	return IEEE80211_CONF_CHANGE_IDLE;
}

static u32 __ieee80211_recalc_idle(struct ieee80211_local *local)
{
	struct ieee80211_sub_if_data *sdata;
	int count = 0;
	bool working = false, scanning = false;
	unsigned int led_trig_start = 0, led_trig_stop = 0;
	struct ieee80211_roc_work *roc;

#ifdef CONFIG_PROVE_LOCKING
	WARN_ON(debug_locks && !lockdep_rtnl_is_held() &&
		!lockdep_is_held(&local->iflist_mtx));
#endif
	lockdep_assert_held(&local->mtx);

	list_for_each_entry(sdata, &local->interfaces, list) {
		if (!ieee80211_sdata_running(sdata)) {
			sdata->vif.bss_conf.idle = true;
			continue;
		}

		sdata->old_idle = sdata->vif.bss_conf.idle;

		/* do not count disabled managed interfaces */
		if (sdata->vif.type == NL80211_IFTYPE_STATION &&
		    !sdata->u.mgd.associated &&
		    !sdata->u.mgd.auth_data &&
		    !sdata->u.mgd.assoc_data) {
			sdata->vif.bss_conf.idle = true;
			continue;
		}
		/* do not count unused IBSS interfaces */
		if (sdata->vif.type == NL80211_IFTYPE_ADHOC &&
		    !sdata->u.ibss.ssid_len) {
			sdata->vif.bss_conf.idle = true;
			continue;
		}
138 139 140 141

		if (sdata->vif.type == NL80211_IFTYPE_P2P_DEVICE)
			continue;

142 143 144 145 146 147 148 149 150 151 152 153
		/* count everything else */
		sdata->vif.bss_conf.idle = false;
		count++;
	}

	if (!local->ops->remain_on_channel) {
		list_for_each_entry(roc, &local->roc_list, list) {
			working = true;
			roc->sdata->vif.bss_conf.idle = false;
		}
	}

154 155 156
	sdata = rcu_dereference_protected(local->scan_sdata,
					  lockdep_is_held(&local->mtx));
	if (sdata && !(local->hw.flags & IEEE80211_HW_SCAN_WHILE_IDLE)) {
157
		scanning = true;
158
		sdata->vif.bss_conf.idle = false;
159 160 161 162
	}

	list_for_each_entry(sdata, &local->interfaces, list) {
		if (sdata->vif.type == NL80211_IFTYPE_MONITOR ||
163 164
		    sdata->vif.type == NL80211_IFTYPE_AP_VLAN ||
		    sdata->vif.type == NL80211_IFTYPE_P2P_DEVICE)
165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207
			continue;
		if (sdata->old_idle == sdata->vif.bss_conf.idle)
			continue;
		if (!ieee80211_sdata_running(sdata))
			continue;
		ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_IDLE);
	}

	if (working || scanning)
		led_trig_start |= IEEE80211_TPT_LEDTRIG_FL_WORK;
	else
		led_trig_stop |= IEEE80211_TPT_LEDTRIG_FL_WORK;

	if (count)
		led_trig_start |= IEEE80211_TPT_LEDTRIG_FL_CONNECTED;
	else
		led_trig_stop |= IEEE80211_TPT_LEDTRIG_FL_CONNECTED;

	ieee80211_mod_tpt_led_trig(local, led_trig_start, led_trig_stop);

	if (working)
		return ieee80211_idle_off(local, "working");
	if (scanning)
		return ieee80211_idle_off(local, "scanning");
	if (!count)
		return ieee80211_idle_on(local);
	else
		return ieee80211_idle_off(local, "in use");

	return 0;
}

void ieee80211_recalc_idle(struct ieee80211_local *local)
{
	u32 chg;

	mutex_lock(&local->iflist_mtx);
	chg = __ieee80211_recalc_idle(local);
	mutex_unlock(&local->iflist_mtx);
	if (chg)
		ieee80211_hw_config(local, chg);
}

208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225
static int ieee80211_change_mtu(struct net_device *dev, int new_mtu)
{
	int meshhdrlen;
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);

	meshhdrlen = (sdata->vif.type == NL80211_IFTYPE_MESH_POINT) ? 5 : 0;

	/* FIX: what would be proper limits for MTU?
	 * This interface uses 802.3 frames. */
	if (new_mtu < 256 ||
	    new_mtu > IEEE80211_MAX_DATA_LEN - 24 - 6 - meshhdrlen) {
		return -EINVAL;
	}

	dev->mtu = new_mtu;
	return 0;
}

226 227 228
static int ieee80211_change_mac(struct net_device *dev, void *addr)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
229
	struct sockaddr *sa = addr;
230 231
	int ret;

232
	if (ieee80211_sdata_running(sdata))
233 234
		return -EBUSY;

235
	ret = eth_mac_addr(dev, sa);
236 237

	if (ret == 0)
238
		memcpy(sdata->vif.addr, sa->sa_data, ETH_ALEN);
239 240 241 242

	return ret;
}

243 244 245 246
static inline int identical_mac_addr_allowed(int type1, int type2)
{
	return type1 == NL80211_IFTYPE_MONITOR ||
		type2 == NL80211_IFTYPE_MONITOR ||
247 248
		type1 == NL80211_IFTYPE_P2P_DEVICE ||
		type2 == NL80211_IFTYPE_P2P_DEVICE ||
249 250 251 252 253 254 255 256 257 258
		(type1 == NL80211_IFTYPE_AP && type2 == NL80211_IFTYPE_WDS) ||
		(type1 == NL80211_IFTYPE_WDS &&
			(type2 == NL80211_IFTYPE_WDS ||
			 type2 == NL80211_IFTYPE_AP)) ||
		(type1 == NL80211_IFTYPE_AP && type2 == NL80211_IFTYPE_AP_VLAN) ||
		(type1 == NL80211_IFTYPE_AP_VLAN &&
			(type2 == NL80211_IFTYPE_AP ||
			 type2 == NL80211_IFTYPE_AP_VLAN));
}

259 260
static int ieee80211_check_concurrent_iface(struct ieee80211_sub_if_data *sdata,
					    enum nl80211_iftype iftype)
261
{
262
	struct ieee80211_local *local = sdata->local;
263
	struct ieee80211_sub_if_data *nsdata;
264

265
	ASSERT_RTNL();
266 267 268

	/* we hold the RTNL here so can safely walk the list */
	list_for_each_entry(nsdata, &local->interfaces, list) {
269
		if (nsdata != sdata && ieee80211_sdata_running(nsdata)) {
270 271 272 273 274 275 276 277 278 279
			/*
			 * Allow only a single IBSS interface to be up at any
			 * time. This is restricted because beacon distribution
			 * cannot work properly if both are in the same IBSS.
			 *
			 * To remove this restriction we'd have to disallow them
			 * from setting the same SSID on different IBSS interfaces
			 * belonging to the same hardware. Then, however, we're
			 * faced with having to adopt two different TSF timers...
			 */
280
			if (iftype == NL80211_IFTYPE_ADHOC &&
281 282 283 284 285 286 287
			    nsdata->vif.type == NL80211_IFTYPE_ADHOC)
				return -EBUSY;

			/*
			 * The remaining checks are only performed for interfaces
			 * with the same MAC address.
			 */
288 289
			if (!ether_addr_equal(sdata->vif.addr,
					      nsdata->vif.addr))
290 291 292 293 294
				continue;

			/*
			 * check whether it may have the same address
			 */
295
			if (!identical_mac_addr_allowed(iftype,
296 297 298 299 300 301
							nsdata->vif.type))
				return -ENOTUNIQ;

			/*
			 * can only add VLANs to enabled APs
			 */
302
			if (iftype == NL80211_IFTYPE_AP_VLAN &&
303 304 305 306 307
			    nsdata->vif.type == NL80211_IFTYPE_AP)
				sdata->bss = &nsdata->u.ap;
		}
	}

308 309 310
	return 0;
}

311 312 313 314 315
static int ieee80211_check_queues(struct ieee80211_sub_if_data *sdata)
{
	int n_queues = sdata->local->hw.queues;
	int i;

316 317 318 319 320 321 322 323 324
	if (sdata->vif.type != NL80211_IFTYPE_P2P_DEVICE) {
		for (i = 0; i < IEEE80211_NUM_ACS; i++) {
			if (WARN_ON_ONCE(sdata->vif.hw_queue[i] ==
					 IEEE80211_INVAL_HW_QUEUE))
				return -EINVAL;
			if (WARN_ON_ONCE(sdata->vif.hw_queue[i] >=
					 n_queues))
				return -EINVAL;
		}
325 326
	}

327 328
	if ((sdata->vif.type != NL80211_IFTYPE_AP) ||
	    !(sdata->local->hw.flags & IEEE80211_HW_QUEUE_CONTROL)) {
329 330 331 332 333 334 335 336 337 338 339 340 341
		sdata->vif.cab_queue = IEEE80211_INVAL_HW_QUEUE;
		return 0;
	}

	if (WARN_ON_ONCE(sdata->vif.cab_queue == IEEE80211_INVAL_HW_QUEUE))
		return -EINVAL;

	if (WARN_ON_ONCE(sdata->vif.cab_queue >= n_queues))
		return -EINVAL;

	return 0;
}

342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361
void ieee80211_adjust_monitor_flags(struct ieee80211_sub_if_data *sdata,
				    const int offset)
{
	struct ieee80211_local *local = sdata->local;
	u32 flags = sdata->u.mntr_flags;

#define ADJUST(_f, _s)	do {					\
	if (flags & MONITOR_FLAG_##_f)				\
		local->fif_##_s += offset;			\
	} while (0)

	ADJUST(FCSFAIL, fcsfail);
	ADJUST(PLCPFAIL, plcpfail);
	ADJUST(CONTROL, control);
	ADJUST(CONTROL, pspoll);
	ADJUST(OTHER_BSS, other_bss);

#undef ADJUST
}

362 363 364 365 366 367 368 369
static void ieee80211_set_default_queues(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_local *local = sdata->local;
	int i;

	for (i = 0; i < IEEE80211_NUM_ACS; i++) {
		if (local->hw.flags & IEEE80211_HW_QUEUE_CONTROL)
			sdata->vif.hw_queue[i] = IEEE80211_INVAL_HW_QUEUE;
370
		else if (local->hw.queues >= IEEE80211_NUM_ACS)
371
			sdata->vif.hw_queue[i] = i;
372 373
		else
			sdata->vif.hw_queue[i] = 0;
374 375 376 377
	}
	sdata->vif.cab_queue = IEEE80211_INVAL_HW_QUEUE;
}

378
static int ieee80211_add_virtual_monitor(struct ieee80211_local *local)
379 380
{
	struct ieee80211_sub_if_data *sdata;
381
	int ret = 0;
382 383 384 385

	if (!(local->hw.flags & IEEE80211_HW_WANT_MONITOR_VIF))
		return 0;

386 387
	mutex_lock(&local->iflist_mtx);

388
	if (local->monitor_sdata)
389
		goto out_unlock;
390 391

	sdata = kzalloc(sizeof(*sdata) + local->hw.vif_data_size, GFP_KERNEL);
392 393 394 395
	if (!sdata) {
		ret = -ENOMEM;
		goto out_unlock;
	}
396 397 398 399 400 401 402

	/* set up data */
	sdata->local = local;
	sdata->vif.type = NL80211_IFTYPE_MONITOR;
	snprintf(sdata->name, IFNAMSIZ, "%s-monitor",
		 wiphy_name(local->hw.wiphy));

403 404
	ieee80211_set_default_queues(sdata);

405 406 407 408
	ret = drv_add_interface(local, sdata);
	if (WARN_ON(ret)) {
		/* ok .. stupid driver, it asked for this! */
		kfree(sdata);
409
		goto out_unlock;
410 411
	}

412 413 414
	ret = ieee80211_check_queues(sdata);
	if (ret) {
		kfree(sdata);
415
		goto out_unlock;
416 417
	}

Johannes Berg's avatar
Johannes Berg committed
418 419 420 421 422 423 424 425 426
	ret = ieee80211_vif_use_channel(sdata, local->monitor_channel,
					local->monitor_channel_type,
					IEEE80211_CHANCTX_EXCLUSIVE);
	if (ret) {
		drv_remove_interface(local, sdata);
		kfree(sdata);
		goto out_unlock;
	}

427
	rcu_assign_pointer(local->monitor_sdata, sdata);
428 429 430
 out_unlock:
	mutex_unlock(&local->iflist_mtx);
	return ret;
431 432
}

433
static void ieee80211_del_virtual_monitor(struct ieee80211_local *local)
434 435 436 437 438 439
{
	struct ieee80211_sub_if_data *sdata;

	if (!(local->hw.flags & IEEE80211_HW_WANT_MONITOR_VIF))
		return;

440
	mutex_lock(&local->iflist_mtx);
441

442 443
	sdata = rcu_dereference_protected(local->monitor_sdata,
					  lockdep_is_held(&local->iflist_mtx));
444
	if (!sdata)
445
		goto out_unlock;
446 447 448 449

	rcu_assign_pointer(local->monitor_sdata, NULL);
	synchronize_net();

Johannes Berg's avatar
Johannes Berg committed
450 451
	ieee80211_vif_release_channel(sdata);

452 453 454
	drv_remove_interface(local, sdata);

	kfree(sdata);
455 456
 out_unlock:
	mutex_unlock(&local->iflist_mtx);
457 458
}

459 460 461 462 463
/*
 * NOTE: Be very careful when changing this function, it must NOT return
 * an error on interface type changes that have been pre-checked, so most
 * checks should be in ieee80211_check_concurrent_iface.
 */
464
int ieee80211_do_open(struct wireless_dev *wdev, bool coming_up)
465
{
466 467
	struct ieee80211_sub_if_data *sdata = IEEE80211_WDEV_TO_SUB_IF(wdev);
	struct net_device *dev = wdev->netdev;
468 469 470 471 472 473
	struct ieee80211_local *local = sdata->local;
	struct sta_info *sta;
	u32 changed = 0;
	int res;
	u32 hw_reconf_flags = 0;

474 475 476 477 478
	switch (sdata->vif.type) {
	case NL80211_IFTYPE_WDS:
		if (!is_valid_ether_addr(sdata->u.wds.remote_addr))
			return -ENOLINK;
		break;
479 480 481
	case NL80211_IFTYPE_AP_VLAN: {
		struct ieee80211_sub_if_data *master;

482 483
		if (!sdata->bss)
			return -ENOLINK;
484

485
		list_add(&sdata->u.vlan.list, &sdata->bss->vlans);
486 487 488 489 490 491 492

		master = container_of(sdata->bss,
				      struct ieee80211_sub_if_data, u.ap);
		sdata->control_port_protocol =
			master->control_port_protocol;
		sdata->control_port_no_encrypt =
			master->control_port_no_encrypt;
493
		break;
494
		}
495 496 497 498 499 500 501
	case NL80211_IFTYPE_AP:
		sdata->bss = &sdata->u.ap;
		break;
	case NL80211_IFTYPE_MESH_POINT:
	case NL80211_IFTYPE_STATION:
	case NL80211_IFTYPE_MONITOR:
	case NL80211_IFTYPE_ADHOC:
502
	case NL80211_IFTYPE_P2P_DEVICE:
503 504 505
		/* no special treatment */
		break;
	case NL80211_IFTYPE_UNSPECIFIED:
506
	case NUM_NL80211_IFTYPES:
507 508
	case NL80211_IFTYPE_P2P_CLIENT:
	case NL80211_IFTYPE_P2P_GO:
509 510 511 512 513 514
		/* cannot happen */
		WARN_ON(1);
		break;
	}

	if (local->open_count == 0) {
515
		res = drv_start(local);
516 517
		if (res)
			goto err_del_bss;
518 519
		if (local->ops->napi_poll)
			napi_enable(&local->napi);
520 521
		/* we're brought up, everything changes */
		hw_reconf_flags = ~0;
Johannes Berg's avatar
Johannes Berg committed
522
		ieee80211_led_radio(local, true);
523 524
		ieee80211_mod_tpt_led_trig(local,
					   IEEE80211_TPT_LEDTRIG_FL_RADIO, 0);
525 526 527
	}

	/*
528 529
	 * Copy the hopefully now-present MAC address to
	 * this interface, if it has the special null one.
530
	 */
531
	if (dev && is_zero_ether_addr(dev->dev_addr)) {
532 533 534 535 536 537
		memcpy(dev->dev_addr,
		       local->hw.wiphy->perm_addr,
		       ETH_ALEN);
		memcpy(dev->perm_addr, dev->dev_addr, ETH_ALEN);

		if (!is_valid_ether_addr(dev->dev_addr)) {
538 539
			res = -EADDRNOTAVAIL;
			goto err_stop;
540
		}
541 542 543 544
	}

	switch (sdata->vif.type) {
	case NL80211_IFTYPE_AP_VLAN:
545 546 547 548 549
		/* no need to tell driver, but set carrier */
		if (rtnl_dereference(sdata->bss->beacon))
			netif_carrier_on(dev);
		else
			netif_carrier_off(dev);
550 551 552 553 554 555 556
		break;
	case NL80211_IFTYPE_MONITOR:
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs++;
			break;
		}

557 558 559 560 561 562
		if (local->monitors == 0 && local->open_count == 0) {
			res = ieee80211_add_virtual_monitor(local);
			if (res)
				goto err_stop;
		}

563 564
		/* must be before the call to ieee80211_configure_filter */
		local->monitors++;
565
		if (local->monitors == 1) {
566 567
			local->hw.conf.flags |= IEEE80211_CONF_MONITOR;
			hw_reconf_flags |= IEEE80211_CONF_CHANGE_MONITOR;
568
		}
569

570
		ieee80211_adjust_monitor_flags(sdata, 1);
571
		ieee80211_configure_filter(local);
572 573

		netif_carrier_on(dev);
574 575
		break;
	default:
576
		if (coming_up) {
577 578
			ieee80211_del_virtual_monitor(local);

579
			res = drv_add_interface(local, sdata);
580 581
			if (res)
				goto err_stop;
582 583 584
			res = ieee80211_check_queues(sdata);
			if (res)
				goto err_del_interface;
585
		}
586

587
		if (sdata->vif.type == NL80211_IFTYPE_AP) {
588
			local->fif_pspoll++;
589
			local->fif_probe_req++;
590 591

			ieee80211_configure_filter(local);
592 593
		} else if (sdata->vif.type == NL80211_IFTYPE_ADHOC) {
			local->fif_probe_req++;
594
		}
595

596 597
		if (sdata->vif.type != NL80211_IFTYPE_P2P_DEVICE)
			changed |= ieee80211_reset_erp_info(sdata);
598 599
		ieee80211_bss_info_change_notify(sdata, changed);

600 601 602 603 604
		switch (sdata->vif.type) {
		case NL80211_IFTYPE_STATION:
		case NL80211_IFTYPE_ADHOC:
		case NL80211_IFTYPE_AP:
		case NL80211_IFTYPE_MESH_POINT:
605
			netif_carrier_off(dev);
606
			break;
607
		case NL80211_IFTYPE_WDS:
608
		case NL80211_IFTYPE_P2P_DEVICE:
609
			break;
610
		default:
611
			netif_carrier_on(dev);
612
		}
613 614 615 616 617 618

		/*
		 * set default queue parameters so drivers don't
		 * need to initialise the hardware if the hardware
		 * doesn't start up with sane defaults
		 */
619
		ieee80211_set_wmm_default(sdata, true);
620 621
	}

622 623
	set_bit(SDATA_STATE_RUNNING, &sdata->state);

624 625 626 627 628 629 630 631 632
	if (sdata->vif.type == NL80211_IFTYPE_WDS) {
		/* Create STA entry for the WDS peer */
		sta = sta_info_alloc(sdata, sdata->u.wds.remote_addr,
				     GFP_KERNEL);
		if (!sta) {
			res = -ENOMEM;
			goto err_del_interface;
		}

633 634 635
		sta_info_pre_move_state(sta, IEEE80211_STA_AUTH);
		sta_info_pre_move_state(sta, IEEE80211_STA_ASSOC);
		sta_info_pre_move_state(sta, IEEE80211_STA_AUTHORIZED);
636 637 638 639 640 641

		res = sta_info_insert(sta);
		if (res) {
			/* STA has been freed */
			goto err_del_interface;
		}
Bill Jordan's avatar
Bill Jordan committed
642 643

		rate_control_rate_init(sta);
644
		netif_carrier_on(dev);
645 646
	} else if (sdata->vif.type == NL80211_IFTYPE_P2P_DEVICE) {
		rcu_assign_pointer(local->p2p_sdata, sdata);
647 648 649 650 651 652 653 654 655 656 657 658 659
	}

	/*
	 * set_multicast_list will be invoked by the networking core
	 * which will check whether any increments here were done in
	 * error and sync them down to the hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_inc(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_inc(&local->iff_promiscs);

660
	mutex_lock(&local->mtx);
661
	hw_reconf_flags |= __ieee80211_recalc_idle(local);
662
	mutex_unlock(&local->mtx);
663

664 665 666
	if (coming_up)
		local->open_count++;

667
	if (hw_reconf_flags)
668
		ieee80211_hw_config(local, hw_reconf_flags);
669

670
	ieee80211_recalc_ps(local, -1);
671

672 673
	if (dev)
		netif_tx_start_all_queues(dev);
674 675 676

	return 0;
 err_del_interface:
677
	drv_remove_interface(local, sdata);
678
 err_stop:
679 680
	if (!local->open_count)
		drv_stop(local);
681 682 683 684
 err_del_bss:
	sdata->bss = NULL;
	if (sdata->vif.type == NL80211_IFTYPE_AP_VLAN)
		list_del(&sdata->u.vlan.list);
685
	/* might already be clear but that doesn't matter */
686
	clear_bit(SDATA_STATE_RUNNING, &sdata->state);
687 688 689
	return res;
}

690
static int ieee80211_open(struct net_device *dev)
691 692
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
693 694 695
	int err;

	/* fail early if user set an invalid address */
696
	if (!is_valid_ether_addr(dev->dev_addr))
697 698 699 700 701 702
		return -EADDRNOTAVAIL;

	err = ieee80211_check_concurrent_iface(sdata, sdata->vif.type);
	if (err)
		return err;

703
	return ieee80211_do_open(&sdata->wdev, true);
704 705 706 707 708
}

static void ieee80211_do_stop(struct ieee80211_sub_if_data *sdata,
			      bool going_down)
{
709
	struct ieee80211_local *local = sdata->local;
710 711
	unsigned long flags;
	struct sk_buff *skb, *tmp;
712
	u32 hw_reconf_flags = 0;
713
	int i;
714

715 716
	clear_bit(SDATA_STATE_RUNNING, &sdata->state);

717
	if (rcu_access_pointer(local->scan_sdata) == sdata)
718 719
		ieee80211_scan_cancel(local);

720 721 722
	/*
	 * Stop TX on this interface first.
	 */
723 724
	if (sdata->dev)
		netif_tx_stop_all_queues(sdata->dev);
725

726
	ieee80211_roc_purge(sdata);
727

728 729 730 731 732 733 734 735 736 737
	/*
	 * Remove all stations associated with this interface.
	 *
	 * This must be done before calling ops->remove_interface()
	 * because otherwise we can later invoke ops->sta_notify()
	 * whenever the STAs are removed, and that invalidates driver
	 * assumptions about always getting a vif pointer that is valid
	 * (because if we remove a STA after ops->remove_interface()
	 * the driver will have removed the vif info already!)
	 *
738 739 740
	 * This is relevant only in AP, WDS and mesh modes, since in
	 * all other modes we've already removed all stations when
	 * disconnecting etc.
741 742 743 744 745 746 747 748 749 750 751 752 753 754 755
	 */
	sta_info_flush(local, sdata);

	/*
	 * Don't count this interface for promisc/allmulti while it
	 * is down. dev_mc_unsync() will invoke set_multicast_list
	 * on the master interface which will sync these down to the
	 * hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_dec(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_dec(&local->iff_promiscs);

756
	if (sdata->vif.type == NL80211_IFTYPE_AP) {
757
		local->fif_pspoll--;
758 759 760 761
		local->fif_probe_req--;
	} else if (sdata->vif.type == NL80211_IFTYPE_ADHOC) {
		local->fif_probe_req--;
	}
762

763 764 765 766 767 768 769
	if (sdata->dev) {
		netif_addr_lock_bh(sdata->dev);
		spin_lock_bh(&local->filter_lock);
		__hw_addr_unsync(&local->mc_list, &sdata->dev->mc,
				 sdata->dev->addr_len);
		spin_unlock_bh(&local->filter_lock);
		netif_addr_unlock_bh(sdata->dev);
Johannes Berg's avatar
Johannes Berg committed
770

771 772
		ieee80211_configure_filter(local);
	}
773

774 775
	del_timer_sync(&local->dynamic_ps_timer);
	cancel_work_sync(&local->dynamic_ps_enable_work);
776

777 778
	cancel_work_sync(&sdata->recalc_smps);

779 780
	/* APs need special treatment */
	if (sdata->vif.type == NL80211_IFTYPE_AP) {
781
		struct ieee80211_sub_if_data *vlan, *tmpsdata;
782 783

		/* down all dependent devices, that is VLANs */
784
		list_for_each_entry_safe(vlan, tmpsdata, &sdata->u.ap.vlans,
785 786 787
					 u.vlan.list)
			dev_close(vlan->dev);
		WARN_ON(!list_empty(&sdata->u.ap.vlans));
788 789
	} else if (sdata->vif.type == NL80211_IFTYPE_STATION) {
		ieee80211_mgd_stop(sdata);
790 791
	}

792 793
	if (going_down)
		local->open_count--;
794 795 796 797 798 799 800 801 802 803 804 805 806

	switch (sdata->vif.type) {
	case NL80211_IFTYPE_AP_VLAN:
		list_del(&sdata->u.vlan.list);
		/* no need to tell driver */
		break;
	case NL80211_IFTYPE_MONITOR:
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs--;
			break;
		}

		local->monitors--;
807
		if (local->monitors == 0) {
808 809
			local->hw.conf.flags &= ~IEEE80211_CONF_MONITOR;
			hw_reconf_flags |= IEEE80211_CONF_CHANGE_MONITOR;
810
			ieee80211_del_virtual_monitor(local);
811
		}
812

813
		ieee80211_adjust_monitor_flags(sdata, -1);
814 815
		ieee80211_configure_filter(local);
		break;
816 817 818 819
	case NL80211_IFTYPE_P2P_DEVICE:
		/* relies on synchronize_rcu() below */
		rcu_assign_pointer(local->p2p_sdata, NULL);
		/* fall through */
820
	default:
821
		flush_work(&sdata->work);
Johannes Berg's avatar
Johannes Berg committed
822 823
		/*
		 * When we get here, the interface is marked down.
824
		 * Call rcu_barrier() to wait both for the RX path
Johannes Berg's avatar
Johannes Berg committed
825
		 * should it be using the interface and enqueuing
826 827
		 * frames at this very time on another CPU, and
		 * for the sta free call_rcu callbacks.
Johannes Berg's avatar
Johannes Berg committed
828
		 */
829 830 831 832 833 834 835 836 837
		rcu_barrier();

		/*
		 * free_sta_rcu() enqueues a work for the actual
		 * sta cleanup, so we need to flush it while
		 * sdata is still valid.
		 */
		flush_workqueue(local->workqueue);

Johannes Berg's avatar
Johannes Berg committed
838 839
		skb_queue_purge(&sdata->skb_queue);

840 841 842 843
		/*
		 * Free all remaining keys, there shouldn't be any,
		 * except maybe group keys in AP more or WDS?
		 */
Johannes Berg's avatar
Johannes Berg committed
844
		ieee80211_free_keys(sdata);
845

846
		if (going_down)
847
			drv_remove_interface(local, sdata);
848 849 850 851
	}

	sdata->bss = NULL;

852
	mutex_lock(&local->mtx);
853
	hw_reconf_flags |= __ieee80211_recalc_idle(local);
854
	mutex_unlock(&local->mtx);
855 856 857

	ieee80211_recalc_ps(local, -1);

858
	if (local->open_count == 0) {
859 860
		if (local->ops->napi_poll)
			napi_disable(&local->napi);
861
		ieee80211_clear_tx_pending(local);
862
		ieee80211_stop_device(local);
863

864 865
		/* no reconfiguring after stop! */
		hw_reconf_flags = 0;
866 867
	}

868
	/* do after stop to avoid reconfiguring when we stop anyway */
Johannes Berg's avatar
Johannes Berg committed
869
	if (hw_reconf_flags)
870 871
		ieee80211_hw_config(local, hw_reconf_flags);

872 873 874 875 876 877
	spin_lock_irqsave(&local->queue_stop_reason_lock, flags);
	for (i = 0; i < IEEE80211_MAX_QUEUES; i++) {
		skb_queue_walk_safe(&local->pending[i], skb, tmp) {
			struct ieee80211_tx_info *info = IEEE80211_SKB_CB(skb);
			if (info->control.vif == &sdata->vif) {
				__skb_unlink(skb, &local->pending[i]);
878
				ieee80211_free_txskb(&local->hw, skb);
879 880 881 882
			}
		}
	}
	spin_unlock_irqrestore(&local->queue_stop_reason_lock, flags);
883 884 885

	if (local->monitors == local->open_count && local->monitors > 0)
		ieee80211_add_virtual_monitor(local);
886 887 888 889 890 891 892
}

static int ieee80211_stop(struct net_device *dev)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);

	ieee80211_do_stop(sdata, true);
893

894 895 896 897 898 899
	return 0;
}

static void ieee80211_set_multicast_list(struct net_device *dev)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
900
	struct ieee80211_local *local = sdata->local;
901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922
	int allmulti, promisc, sdata_allmulti, sdata_promisc;

	allmulti = !!(dev->flags & IFF_ALLMULTI);
	promisc = !!(dev->flags & IFF_PROMISC);
	sdata_allmulti = !!(sdata->flags & IEEE80211_SDATA_ALLMULTI);
	sdata_promisc = !!(sdata->flags & IEEE80211_SDATA_PROMISC);

	if (allmulti != sdata_allmulti) {
		if (dev->flags & IFF_ALLMULTI)
			atomic_inc(&local->iff_allmultis);
		else
			atomic_dec(&local->iff_allmultis);
		sdata->flags ^= IEEE80211_SDATA_ALLMULTI;
	}

	if (promisc != sdata_promisc) {
		if (dev->flags & IFF_PROMISC)
			atomic_inc(&local->iff_promiscs);
		else
			atomic_dec(&local->iff_promiscs);
		sdata->flags ^= IEEE80211_SDATA_PROMISC;
	}
Johannes Berg's avatar
Johannes Berg committed
923
	spin_lock_bh(&local->filter_lock);
924
	__hw_addr_sync(&local->mc_list, &dev->mc, dev->addr_len);
Johannes Berg's avatar
Johannes Berg committed
925
	spin_unlock_bh(&local->filter_lock);
926
	ieee80211_queue_work(&local->hw, &local->reconfig_filter);
927 928
}

929 930 931 932
/*
 * Called when the netdev is removed or, by the code below, before
 * the interface type changes.
 */
933
static void ieee80211_teardown_sdata(struct ieee80211_sub_if_data *sdata)
934
{
935 936
	struct ieee80211_local *local = sdata->local;
	int flushed;
937 938
	int i;

939 940 941
	/* free extra data */
	ieee80211_free_keys(sdata);

942 943
	ieee80211_debugfs_remove_netdev(sdata);

944
	for (i = 0; i < IEEE80211_FRAGMENT_MAX; i++)
945 946
		__skb_queue_purge(&sdata->fragments[i].skb_list);
	sdata->fragment_next = 0;
947

948 949
	if (ieee80211_vif_is_mesh(&sdata->vif))
		mesh_rmc_free(sdata);
950 951 952

	flushed = sta_info_flush(local, sdata);
	WARN_ON(flushed);
953 954
}

955 956 957 958 959
static void ieee80211_uninit(struct net_device *dev)
{
	ieee80211_teardown_sdata(IEEE80211_DEV_TO_SUB_IF(dev));
}

960 961 962 963 964 965
static u16 ieee80211_netdev_select_queue(struct net_device *dev,
					 struct sk_buff *skb)
{
	return ieee80211_select_queue(IEEE80211_DEV_TO_SUB_IF(dev), skb);
}

966 967 968
static const struct net_device_ops ieee80211_dataif_ops = {
	.ndo_open		= ieee80211_open,
	.ndo_stop		= ieee80211_stop,
969
	.ndo_uninit		= ieee80211_uninit,
970
	.ndo_start_xmit		= ieee80211_subif_start_xmit,
971
	.ndo_set_rx_mode	= ieee80211_set_multicast_list,
972
	.ndo_change_mtu 	= ieee80211_change_mtu,
973
	.ndo_set_mac_address 	= ieee80211_change_mac,
974
	.ndo_select_queue	= ieee80211_netdev_select_queue,
975 976
};

977 978 979 980 981 982 983 984
static u16 ieee80211_monitor_select_queue(struct net_device *dev,
					  struct sk_buff *skb)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
	struct ieee80211_local *local = sdata->local;
	struct ieee80211_hdr *hdr;
	struct ieee80211_radiotap_header *rtap = (void *)skb->data;

985
	if (local->hw.queues < IEEE80211_NUM_ACS)
986 987 988
		return 0;

	if (skb->len < 4 ||
Johannes Berg's avatar
Johannes Berg committed
989
	    skb->len < le16_to_cpu(rtap->it_len) + 2 /* frame control */)
990 991
		return 0; /* doesn't matter, frame will be dropped */

Johannes Berg's avatar
Johannes Berg committed
992
	hdr = (void *)((u8 *)skb->data + le16_to_cpu(rtap->it_len));
993

994
	return ieee80211_select_queue_80211(sdata, skb, hdr);
995 996
}

997 998 999
static const struct net_device_ops ieee80211_monitorif_ops = {
	.ndo_open		= ieee80211_open,
	.ndo_stop		= ieee80211_stop,
1000
	.ndo_uninit		= ieee80211_uninit,
1001
	.ndo_start_xmit		= ieee80211_monitor_start_xmit,
1002
	.ndo_set_rx_mode	= ieee80211_set_multicast_list,
1003 1004
	.ndo_change_mtu 	= ieee80211_change_mtu,
	.ndo_set_mac_address 	= eth_mac_addr,
1005
	.ndo_select_queue	= ieee80211_monitor_select_queue,
1006 1007 1008 1009 1010
};

static void ieee80211_if_setup(struct net_device *dev)
{
	ether_setup(dev);
1011
	dev->priv_flags &= ~IFF_TX_SKB_SHARING;
1012 1013 1014 1015
	dev->netdev_ops = &ieee80211_dataif_ops;
	dev->destructor = free_netdev;
}

1016 1017 1018 1019 1020 1021
static void ieee80211_iface_work(struct work_struct *work)
{
	struct ieee80211_sub_if_data *sdata =
		container_of(work, struct ieee80211_sub_if_data, work);
	struct ieee80211_local *local = sdata->local;
	struct sk_buff *skb;
1022
	struct sta_info *sta;
1023
	struct ieee80211_ra_tid *ra_tid;
1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040

	if (!ieee80211_sdata_running(sdata))
		return;

	if (local->scanning)
		return;

	/*
	 * ieee80211_queue_work() should have picked up most cases,
	 * here we'll pick the rest.
	 */
	if (WARN(local->suspended,
		 "interface work scheduled while going to suspend\n"))
		return;

	/* first process frames */
	while ((skb = skb_dequeue(&sdata->skb_queue))) {
1041 1042
		struct ieee80211_mgmt *mgmt = (void *)skb->data;

1043 1044 1045 1046 1047 1048 1049 1050 1051 1052
		if (skb->pkt_type == IEEE80211_SDATA_QUEUE_AGG_START) {
			ra_tid = (void *)&skb->cb;
			ieee80211_start_tx_ba_cb(&sdata->vif, ra_tid->ra,
						 ra_tid->tid);
		} else if (skb->pkt_type == IEEE80211_SDATA_QUEUE_AGG_STOP) {
			ra_tid = (void *)&skb->cb;
			ieee80211_stop_tx_ba_cb(&sdata->vif, ra_tid->ra,
						ra_tid->tid);
		} else if (ieee80211_is_action(mgmt->frame_control) &&
			   mgmt->u.action.category == WLAN_CATEGORY_BACK) {
1053 1054
			int len = skb->len;

1055
			mutex_lock(&local->sta_mtx);
1056
			sta = sta_info_get_bss(sdata, mgmt->sa);
1057 1058 1059 1060 1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072 1073 1074 1075
			if (sta) {
				switch (mgmt->u.action.u.addba_req.action_code) {
				case WLAN_ACTION_ADDBA_REQ:
					ieee80211_process_addba_request(
							local, sta, mgmt, len);
					break;
				case WLAN_ACTION_ADDBA_RESP:
					ieee80211_process_addba_resp(local, sta,
								     mgmt, len);
					break;
				case WLAN_ACTION_DELBA:
					ieee80211_process_delba(sdata, sta,
								mgmt, len);
					break;
				default:
					WARN_ON(1);
					break;
				}
			}
1076
			mutex_unlock(&local->sta_mtx);
1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095
		} else if (ieee80211_is_data_qos(mgmt->frame_control)) {
			struct ieee80211_hdr *hdr = (void *)mgmt;
			/*
			 * So the frame isn't mgmt, but frame_control
			 * is at the right place anyway, of course, so
			 * the if statement is correct.
			 *
			 * Warn if we have other data frame types here,
			 * they must not get here.
			 */
			WARN_ON(hdr->frame_control &
					cpu_to_le16(IEEE80211_STYPE_NULLFUNC));
			WARN_ON(!(hdr->seq_ctrl &