iface.c 42.9 KB
Newer Older
1
/*
2 3
 * Interface handling (except master interface)
 *
4 5 6
 * Copyright 2002-2005, Instant802 Networks, Inc.
 * Copyright 2005-2006, Devicescape Software, Inc.
 * Copyright (c) 2006 Jiri Benc <jbenc@suse.cz>
7
 * Copyright 2008, Johannes Berg <johannes@sipsolutions.net>
8 9 10 11 12
 *
 * This program is free software; you can redistribute it and/or modify
 * it under the terms of the GNU General Public License version 2 as
 * published by the Free Software Foundation.
 */
13
#include <linux/slab.h>
14 15 16 17 18
#include <linux/kernel.h>
#include <linux/if_arp.h>
#include <linux/netdevice.h>
#include <linux/rtnetlink.h>
#include <net/mac80211.h>
19
#include <net/ieee80211_radiotap.h>
20 21
#include "ieee80211_i.h"
#include "sta_info.h"
22
#include "debugfs_netdev.h"
23
#include "mesh.h"
24
#include "led.h"
25
#include "driver-ops.h"
26
#include "wme.h"
Bill Jordan's avatar
Bill Jordan committed
27
#include "rate.h"
28

29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44
/**
 * DOC: Interface list locking
 *
 * The interface list in each struct ieee80211_local is protected
 * three-fold:
 *
 * (1) modifications may only be done under the RTNL
 * (2) modifications and readers are protected against each other by
 *     the iflist_mtx.
 * (3) modifications are done in an RCU manner so atomic readers
 *     can traverse the list in RCU-safe blocks.
 *
 * As a consequence, reads (traversals) of the list can be protected
 * by either the RTNL, the iflist_mtx or RCU.
 */

45 46 47 48 49 50 51 52 53 54 55 56
bool __ieee80211_recalc_txpower(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_chanctx_conf *chanctx_conf;
	int power;

	rcu_read_lock();
	chanctx_conf = rcu_dereference(sdata->vif.chanctx_conf);
	if (!chanctx_conf) {
		rcu_read_unlock();
		return false;
	}

57
	power = chanctx_conf->def.chan->max_power;
58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79
	rcu_read_unlock();

	if (sdata->user_power_level != IEEE80211_UNSET_POWER_LEVEL)
		power = min(power, sdata->user_power_level);

	if (sdata->ap_power_level != IEEE80211_UNSET_POWER_LEVEL)
		power = min(power, sdata->ap_power_level);

	if (power != sdata->vif.bss_conf.txpower) {
		sdata->vif.bss_conf.txpower = power;
		ieee80211_hw_config(sdata->local, 0);
		return true;
	}

	return false;
}

void ieee80211_recalc_txpower(struct ieee80211_sub_if_data *sdata)
{
	if (__ieee80211_recalc_txpower(sdata))
		ieee80211_bss_info_change_notify(sdata, BSS_CHANGED_TXPOWER);
}
80

81
u32 ieee80211_idle_off(struct ieee80211_local *local)
82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100
{
	if (!(local->hw.conf.flags & IEEE80211_CONF_IDLE))
		return 0;

	local->hw.conf.flags &= ~IEEE80211_CONF_IDLE;
	return IEEE80211_CONF_CHANGE_IDLE;
}

static u32 ieee80211_idle_on(struct ieee80211_local *local)
{
	if (local->hw.conf.flags & IEEE80211_CONF_IDLE)
		return 0;

	drv_flush(local, false);

	local->hw.conf.flags |= IEEE80211_CONF_IDLE;
	return IEEE80211_CONF_CHANGE_IDLE;
}

101
void ieee80211_recalc_idle(struct ieee80211_local *local)
102
{
103
	bool working = false, scanning, active;
104 105
	unsigned int led_trig_start = 0, led_trig_stop = 0;
	struct ieee80211_roc_work *roc;
106
	u32 change;
107 108 109

	lockdep_assert_held(&local->mtx);

110
	active = !list_empty(&local->chanctx_list) || local->monitors;
111 112 113 114

	if (!local->ops->remain_on_channel) {
		list_for_each_entry(roc, &local->roc_list, list) {
			working = true;
115
			break;
116 117 118
		}
	}

119 120
	scanning = test_bit(SCAN_SW_SCANNING, &local->scanning) ||
		   test_bit(SCAN_ONCHANNEL_SCANNING, &local->scanning);
121 122 123 124 125 126

	if (working || scanning)
		led_trig_start |= IEEE80211_TPT_LEDTRIG_FL_WORK;
	else
		led_trig_stop |= IEEE80211_TPT_LEDTRIG_FL_WORK;

127
	if (active)
128 129 130 131 132 133
		led_trig_start |= IEEE80211_TPT_LEDTRIG_FL_CONNECTED;
	else
		led_trig_stop |= IEEE80211_TPT_LEDTRIG_FL_CONNECTED;

	ieee80211_mod_tpt_led_trig(local, led_trig_start, led_trig_stop);

134 135
	if (working || scanning || active)
		change = ieee80211_idle_off(local);
136
	else
137 138 139
		change = ieee80211_idle_on(local);
	if (change)
		ieee80211_hw_config(local, change);
140 141
}

142 143
static int ieee80211_change_mtu(struct net_device *dev, int new_mtu)
{
Chaitanya's avatar
Chaitanya committed
144
	if (new_mtu < 256 || new_mtu > IEEE80211_MAX_DATA_LEN)
145 146 147 148 149 150
		return -EINVAL;

	dev->mtu = new_mtu;
	return 0;
}

151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191
static int ieee80211_verify_mac(struct ieee80211_local *local, u8 *addr)
{
	struct ieee80211_sub_if_data *sdata;
	u64 new, mask, tmp;
	u8 *m;
	int ret = 0;

	if (is_zero_ether_addr(local->hw.wiphy->addr_mask))
		return 0;

	m = addr;
	new =	((u64)m[0] << 5*8) | ((u64)m[1] << 4*8) |
		((u64)m[2] << 3*8) | ((u64)m[3] << 2*8) |
		((u64)m[4] << 1*8) | ((u64)m[5] << 0*8);

	m = local->hw.wiphy->addr_mask;
	mask =	((u64)m[0] << 5*8) | ((u64)m[1] << 4*8) |
		((u64)m[2] << 3*8) | ((u64)m[3] << 2*8) |
		((u64)m[4] << 1*8) | ((u64)m[5] << 0*8);


	mutex_lock(&local->iflist_mtx);
	list_for_each_entry(sdata, &local->interfaces, list) {
		if (sdata->vif.type == NL80211_IFTYPE_MONITOR)
			continue;

		m = sdata->vif.addr;
		tmp =	((u64)m[0] << 5*8) | ((u64)m[1] << 4*8) |
			((u64)m[2] << 3*8) | ((u64)m[3] << 2*8) |
			((u64)m[4] << 1*8) | ((u64)m[5] << 0*8);

		if ((new & ~mask) != (tmp & ~mask)) {
			ret = -EINVAL;
			break;
		}
	}
	mutex_unlock(&local->iflist_mtx);

	return ret;
}

192 193 194
static int ieee80211_change_mac(struct net_device *dev, void *addr)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
195
	struct sockaddr *sa = addr;
196 197
	int ret;

198
	if (ieee80211_sdata_running(sdata))
199 200
		return -EBUSY;

201 202 203 204
	ret = ieee80211_verify_mac(sdata->local, sa->sa_data);
	if (ret)
		return ret;

205
	ret = eth_mac_addr(dev, sa);
206 207

	if (ret == 0)
208
		memcpy(sdata->vif.addr, sa->sa_data, ETH_ALEN);
209 210 211 212

	return ret;
}

213 214 215 216
static inline int identical_mac_addr_allowed(int type1, int type2)
{
	return type1 == NL80211_IFTYPE_MONITOR ||
		type2 == NL80211_IFTYPE_MONITOR ||
217 218
		type1 == NL80211_IFTYPE_P2P_DEVICE ||
		type2 == NL80211_IFTYPE_P2P_DEVICE ||
219 220 221 222 223 224 225 226 227 228
		(type1 == NL80211_IFTYPE_AP && type2 == NL80211_IFTYPE_WDS) ||
		(type1 == NL80211_IFTYPE_WDS &&
			(type2 == NL80211_IFTYPE_WDS ||
			 type2 == NL80211_IFTYPE_AP)) ||
		(type1 == NL80211_IFTYPE_AP && type2 == NL80211_IFTYPE_AP_VLAN) ||
		(type1 == NL80211_IFTYPE_AP_VLAN &&
			(type2 == NL80211_IFTYPE_AP ||
			 type2 == NL80211_IFTYPE_AP_VLAN));
}

229 230
static int ieee80211_check_concurrent_iface(struct ieee80211_sub_if_data *sdata,
					    enum nl80211_iftype iftype)
231
{
232
	struct ieee80211_local *local = sdata->local;
233
	struct ieee80211_sub_if_data *nsdata;
234

235
	ASSERT_RTNL();
236 237 238

	/* we hold the RTNL here so can safely walk the list */
	list_for_each_entry(nsdata, &local->interfaces, list) {
239
		if (nsdata != sdata && ieee80211_sdata_running(nsdata)) {
240 241 242 243 244 245 246 247 248 249
			/*
			 * Allow only a single IBSS interface to be up at any
			 * time. This is restricted because beacon distribution
			 * cannot work properly if both are in the same IBSS.
			 *
			 * To remove this restriction we'd have to disallow them
			 * from setting the same SSID on different IBSS interfaces
			 * belonging to the same hardware. Then, however, we're
			 * faced with having to adopt two different TSF timers...
			 */
250
			if (iftype == NL80211_IFTYPE_ADHOC &&
251 252 253 254 255 256 257
			    nsdata->vif.type == NL80211_IFTYPE_ADHOC)
				return -EBUSY;

			/*
			 * The remaining checks are only performed for interfaces
			 * with the same MAC address.
			 */
258 259
			if (!ether_addr_equal(sdata->vif.addr,
					      nsdata->vif.addr))
260 261 262 263 264
				continue;

			/*
			 * check whether it may have the same address
			 */
265
			if (!identical_mac_addr_allowed(iftype,
266 267 268 269 270 271
							nsdata->vif.type))
				return -ENOTUNIQ;

			/*
			 * can only add VLANs to enabled APs
			 */
272
			if (iftype == NL80211_IFTYPE_AP_VLAN &&
273 274 275 276 277
			    nsdata->vif.type == NL80211_IFTYPE_AP)
				sdata->bss = &nsdata->u.ap;
		}
	}

278 279 280
	return 0;
}

281 282 283 284 285
static int ieee80211_check_queues(struct ieee80211_sub_if_data *sdata)
{
	int n_queues = sdata->local->hw.queues;
	int i;

286 287 288 289 290 291 292 293 294
	if (sdata->vif.type != NL80211_IFTYPE_P2P_DEVICE) {
		for (i = 0; i < IEEE80211_NUM_ACS; i++) {
			if (WARN_ON_ONCE(sdata->vif.hw_queue[i] ==
					 IEEE80211_INVAL_HW_QUEUE))
				return -EINVAL;
			if (WARN_ON_ONCE(sdata->vif.hw_queue[i] >=
					 n_queues))
				return -EINVAL;
		}
295 296
	}

297 298
	if ((sdata->vif.type != NL80211_IFTYPE_AP &&
	     sdata->vif.type != NL80211_IFTYPE_MESH_POINT) ||
299
	    !(sdata->local->hw.flags & IEEE80211_HW_QUEUE_CONTROL)) {
300 301 302 303 304 305 306 307 308 309 310 311 312
		sdata->vif.cab_queue = IEEE80211_INVAL_HW_QUEUE;
		return 0;
	}

	if (WARN_ON_ONCE(sdata->vif.cab_queue == IEEE80211_INVAL_HW_QUEUE))
		return -EINVAL;

	if (WARN_ON_ONCE(sdata->vif.cab_queue >= n_queues))
		return -EINVAL;

	return 0;
}

313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332
void ieee80211_adjust_monitor_flags(struct ieee80211_sub_if_data *sdata,
				    const int offset)
{
	struct ieee80211_local *local = sdata->local;
	u32 flags = sdata->u.mntr_flags;

#define ADJUST(_f, _s)	do {					\
	if (flags & MONITOR_FLAG_##_f)				\
		local->fif_##_s += offset;			\
	} while (0)

	ADJUST(FCSFAIL, fcsfail);
	ADJUST(PLCPFAIL, plcpfail);
	ADJUST(CONTROL, control);
	ADJUST(CONTROL, pspoll);
	ADJUST(OTHER_BSS, other_bss);

#undef ADJUST
}

333 334 335 336 337 338 339 340
static void ieee80211_set_default_queues(struct ieee80211_sub_if_data *sdata)
{
	struct ieee80211_local *local = sdata->local;
	int i;

	for (i = 0; i < IEEE80211_NUM_ACS; i++) {
		if (local->hw.flags & IEEE80211_HW_QUEUE_CONTROL)
			sdata->vif.hw_queue[i] = IEEE80211_INVAL_HW_QUEUE;
341
		else if (local->hw.queues >= IEEE80211_NUM_ACS)
342
			sdata->vif.hw_queue[i] = i;
343 344
		else
			sdata->vif.hw_queue[i] = 0;
345 346 347 348
	}
	sdata->vif.cab_queue = IEEE80211_INVAL_HW_QUEUE;
}

349
static int ieee80211_add_virtual_monitor(struct ieee80211_local *local)
350 351
{
	struct ieee80211_sub_if_data *sdata;
352
	int ret;
353 354 355 356

	if (!(local->hw.flags & IEEE80211_HW_WANT_MONITOR_VIF))
		return 0;

357
	ASSERT_RTNL();
358

359
	if (local->monitor_sdata)
360
		return 0;
361 362

	sdata = kzalloc(sizeof(*sdata) + local->hw.vif_data_size, GFP_KERNEL);
363 364
	if (!sdata)
		return -ENOMEM;
365 366 367 368 369 370 371

	/* set up data */
	sdata->local = local;
	sdata->vif.type = NL80211_IFTYPE_MONITOR;
	snprintf(sdata->name, IFNAMSIZ, "%s-monitor",
		 wiphy_name(local->hw.wiphy));

372 373
	ieee80211_set_default_queues(sdata);

374 375 376 377
	ret = drv_add_interface(local, sdata);
	if (WARN_ON(ret)) {
		/* ok .. stupid driver, it asked for this! */
		kfree(sdata);
378
		return ret;
379 380
	}

381 382 383
	ret = ieee80211_check_queues(sdata);
	if (ret) {
		kfree(sdata);
384
		return ret;
385 386
	}

387
	ret = ieee80211_vif_use_channel(sdata, &local->monitor_chandef,
Johannes Berg's avatar
Johannes Berg committed
388 389 390 391
					IEEE80211_CHANCTX_EXCLUSIVE);
	if (ret) {
		drv_remove_interface(local, sdata);
		kfree(sdata);
392
		return ret;
Johannes Berg's avatar
Johannes Berg committed
393 394
	}

395
	mutex_lock(&local->iflist_mtx);
396
	rcu_assign_pointer(local->monitor_sdata, sdata);
397
	mutex_unlock(&local->iflist_mtx);
398 399

	return 0;
400 401
}

402
static void ieee80211_del_virtual_monitor(struct ieee80211_local *local)
403 404 405 406 407 408
{
	struct ieee80211_sub_if_data *sdata;

	if (!(local->hw.flags & IEEE80211_HW_WANT_MONITOR_VIF))
		return;

409 410
	ASSERT_RTNL();

411
	mutex_lock(&local->iflist_mtx);
412

413 414
	sdata = rcu_dereference_protected(local->monitor_sdata,
					  lockdep_is_held(&local->iflist_mtx));
415 416 417 418
	if (!sdata) {
		mutex_unlock(&local->iflist_mtx);
		return;
	}
419 420

	rcu_assign_pointer(local->monitor_sdata, NULL);
421 422
	mutex_unlock(&local->iflist_mtx);

423 424
	synchronize_net();

Johannes Berg's avatar
Johannes Berg committed
425 426
	ieee80211_vif_release_channel(sdata);

427 428 429 430 431
	drv_remove_interface(local, sdata);

	kfree(sdata);
}

432 433 434 435 436
/*
 * NOTE: Be very careful when changing this function, it must NOT return
 * an error on interface type changes that have been pre-checked, so most
 * checks should be in ieee80211_check_concurrent_iface.
 */
437
int ieee80211_do_open(struct wireless_dev *wdev, bool coming_up)
438
{
439 440
	struct ieee80211_sub_if_data *sdata = IEEE80211_WDEV_TO_SUB_IF(wdev);
	struct net_device *dev = wdev->netdev;
441 442 443 444 445 446
	struct ieee80211_local *local = sdata->local;
	struct sta_info *sta;
	u32 changed = 0;
	int res;
	u32 hw_reconf_flags = 0;

447 448 449 450 451
	switch (sdata->vif.type) {
	case NL80211_IFTYPE_WDS:
		if (!is_valid_ether_addr(sdata->u.wds.remote_addr))
			return -ENOLINK;
		break;
452 453 454
	case NL80211_IFTYPE_AP_VLAN: {
		struct ieee80211_sub_if_data *master;

455 456
		if (!sdata->bss)
			return -ENOLINK;
457

458
		list_add(&sdata->u.vlan.list, &sdata->bss->vlans);
459 460 461 462 463 464 465

		master = container_of(sdata->bss,
				      struct ieee80211_sub_if_data, u.ap);
		sdata->control_port_protocol =
			master->control_port_protocol;
		sdata->control_port_no_encrypt =
			master->control_port_no_encrypt;
466
		break;
467
		}
468 469 470 471 472 473 474
	case NL80211_IFTYPE_AP:
		sdata->bss = &sdata->u.ap;
		break;
	case NL80211_IFTYPE_MESH_POINT:
	case NL80211_IFTYPE_STATION:
	case NL80211_IFTYPE_MONITOR:
	case NL80211_IFTYPE_ADHOC:
475
	case NL80211_IFTYPE_P2P_DEVICE:
476 477 478
		/* no special treatment */
		break;
	case NL80211_IFTYPE_UNSPECIFIED:
479
	case NUM_NL80211_IFTYPES:
480 481
	case NL80211_IFTYPE_P2P_CLIENT:
	case NL80211_IFTYPE_P2P_GO:
482 483 484 485 486 487
		/* cannot happen */
		WARN_ON(1);
		break;
	}

	if (local->open_count == 0) {
488
		res = drv_start(local);
489 490
		if (res)
			goto err_del_bss;
491 492
		if (local->ops->napi_poll)
			napi_enable(&local->napi);
493 494
		/* we're brought up, everything changes */
		hw_reconf_flags = ~0;
Johannes Berg's avatar
Johannes Berg committed
495
		ieee80211_led_radio(local, true);
496 497
		ieee80211_mod_tpt_led_trig(local,
					   IEEE80211_TPT_LEDTRIG_FL_RADIO, 0);
498 499 500
	}

	/*
501 502
	 * Copy the hopefully now-present MAC address to
	 * this interface, if it has the special null one.
503
	 */
504
	if (dev && is_zero_ether_addr(dev->dev_addr)) {
505 506 507 508 509 510
		memcpy(dev->dev_addr,
		       local->hw.wiphy->perm_addr,
		       ETH_ALEN);
		memcpy(dev->perm_addr, dev->dev_addr, ETH_ALEN);

		if (!is_valid_ether_addr(dev->dev_addr)) {
511 512
			res = -EADDRNOTAVAIL;
			goto err_stop;
513
		}
514 515 516 517
	}

	switch (sdata->vif.type) {
	case NL80211_IFTYPE_AP_VLAN:
518 519 520
		/* no need to tell driver, but set carrier and chanctx */
		if (rtnl_dereference(sdata->bss->beacon)) {
			ieee80211_vif_vlan_copy_chanctx(sdata);
521
			netif_carrier_on(dev);
522
		} else {
523
			netif_carrier_off(dev);
524
		}
525 526 527 528 529 530 531
		break;
	case NL80211_IFTYPE_MONITOR:
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs++;
			break;
		}

532 533 534 535 536 537
		if (local->monitors == 0 && local->open_count == 0) {
			res = ieee80211_add_virtual_monitor(local);
			if (res)
				goto err_stop;
		}

538 539
		/* must be before the call to ieee80211_configure_filter */
		local->monitors++;
540
		if (local->monitors == 1) {
541 542
			local->hw.conf.flags |= IEEE80211_CONF_MONITOR;
			hw_reconf_flags |= IEEE80211_CONF_CHANGE_MONITOR;
543
		}
544

545
		ieee80211_adjust_monitor_flags(sdata, 1);
546
		ieee80211_configure_filter(local);
547 548 549
		mutex_lock(&local->mtx);
		ieee80211_recalc_idle(local);
		mutex_unlock(&local->mtx);
550 551

		netif_carrier_on(dev);
552 553
		break;
	default:
554
		if (coming_up) {
555 556
			ieee80211_del_virtual_monitor(local);

557
			res = drv_add_interface(local, sdata);
558 559
			if (res)
				goto err_stop;
560 561 562
			res = ieee80211_check_queues(sdata);
			if (res)
				goto err_del_interface;
563
		}
564

565 566
		drv_add_interface_debugfs(local, sdata);

567
		if (sdata->vif.type == NL80211_IFTYPE_AP) {
568
			local->fif_pspoll++;
569
			local->fif_probe_req++;
570 571

			ieee80211_configure_filter(local);
572 573
		} else if (sdata->vif.type == NL80211_IFTYPE_ADHOC) {
			local->fif_probe_req++;
574
		}
575

576 577
		if (sdata->vif.type != NL80211_IFTYPE_P2P_DEVICE)
			changed |= ieee80211_reset_erp_info(sdata);
578 579
		ieee80211_bss_info_change_notify(sdata, changed);

580 581 582 583 584
		switch (sdata->vif.type) {
		case NL80211_IFTYPE_STATION:
		case NL80211_IFTYPE_ADHOC:
		case NL80211_IFTYPE_AP:
		case NL80211_IFTYPE_MESH_POINT:
585
			netif_carrier_off(dev);
586
			break;
587
		case NL80211_IFTYPE_WDS:
588
		case NL80211_IFTYPE_P2P_DEVICE:
589
			break;
590
		default:
591
			netif_carrier_on(dev);
592
		}
593 594 595 596 597 598

		/*
		 * set default queue parameters so drivers don't
		 * need to initialise the hardware if the hardware
		 * doesn't start up with sane defaults
		 */
599
		ieee80211_set_wmm_default(sdata, true);
600 601
	}

602 603
	set_bit(SDATA_STATE_RUNNING, &sdata->state);

604 605 606 607 608 609 610 611 612
	if (sdata->vif.type == NL80211_IFTYPE_WDS) {
		/* Create STA entry for the WDS peer */
		sta = sta_info_alloc(sdata, sdata->u.wds.remote_addr,
				     GFP_KERNEL);
		if (!sta) {
			res = -ENOMEM;
			goto err_del_interface;
		}

613 614 615
		sta_info_pre_move_state(sta, IEEE80211_STA_AUTH);
		sta_info_pre_move_state(sta, IEEE80211_STA_ASSOC);
		sta_info_pre_move_state(sta, IEEE80211_STA_AUTHORIZED);
616 617 618 619 620 621

		res = sta_info_insert(sta);
		if (res) {
			/* STA has been freed */
			goto err_del_interface;
		}
Bill Jordan's avatar
Bill Jordan committed
622 623

		rate_control_rate_init(sta);
624
		netif_carrier_on(dev);
625 626
	} else if (sdata->vif.type == NL80211_IFTYPE_P2P_DEVICE) {
		rcu_assign_pointer(local->p2p_sdata, sdata);
627 628 629 630 631 632 633 634 635 636 637 638 639
	}

	/*
	 * set_multicast_list will be invoked by the networking core
	 * which will check whether any increments here were done in
	 * error and sync them down to the hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_inc(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_inc(&local->iff_promiscs);

640 641 642
	if (coming_up)
		local->open_count++;

643
	if (hw_reconf_flags)
644
		ieee80211_hw_config(local, hw_reconf_flags);
645

646
	ieee80211_recalc_ps(local, -1);
647

648 649
	if (dev)
		netif_tx_start_all_queues(dev);
650 651 652

	return 0;
 err_del_interface:
653
	drv_remove_interface(local, sdata);
654
 err_stop:
655 656
	if (!local->open_count)
		drv_stop(local);
657 658 659 660
 err_del_bss:
	sdata->bss = NULL;
	if (sdata->vif.type == NL80211_IFTYPE_AP_VLAN)
		list_del(&sdata->u.vlan.list);
661
	/* might already be clear but that doesn't matter */
662
	clear_bit(SDATA_STATE_RUNNING, &sdata->state);
663 664 665
	return res;
}

666
static int ieee80211_open(struct net_device *dev)
667 668
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
669 670 671
	int err;

	/* fail early if user set an invalid address */
672
	if (!is_valid_ether_addr(dev->dev_addr))
673 674 675 676 677 678
		return -EADDRNOTAVAIL;

	err = ieee80211_check_concurrent_iface(sdata, sdata->vif.type);
	if (err)
		return err;

679
	return ieee80211_do_open(&sdata->wdev, true);
680 681 682 683 684
}

static void ieee80211_do_stop(struct ieee80211_sub_if_data *sdata,
			      bool going_down)
{
685
	struct ieee80211_local *local = sdata->local;
686 687
	unsigned long flags;
	struct sk_buff *skb, *tmp;
688
	u32 hw_reconf_flags = 0;
689
	int i, flushed;
690
	struct ps_data *ps;
691

692 693
	clear_bit(SDATA_STATE_RUNNING, &sdata->state);

694
	if (rcu_access_pointer(local->scan_sdata) == sdata)
695 696
		ieee80211_scan_cancel(local);

697 698 699
	/*
	 * Stop TX on this interface first.
	 */
700 701
	if (sdata->dev)
		netif_tx_stop_all_queues(sdata->dev);
702

703
	ieee80211_roc_purge(sdata);
704

705 706 707
	if (sdata->vif.type == NL80211_IFTYPE_STATION)
		ieee80211_mgd_stop(sdata);

708 709 710 711 712 713 714 715 716 717
	/*
	 * Remove all stations associated with this interface.
	 *
	 * This must be done before calling ops->remove_interface()
	 * because otherwise we can later invoke ops->sta_notify()
	 * whenever the STAs are removed, and that invalidates driver
	 * assumptions about always getting a vif pointer that is valid
	 * (because if we remove a STA after ops->remove_interface()
	 * the driver will have removed the vif info already!)
	 *
718 719 720
	 * This is relevant only in WDS mode, in all other modes we've
	 * already removed all stations when disconnecting or similar,
	 * so warn otherwise.
721 722
	 *
	 * We call sta_info_flush_cleanup() later, to combine RCU waits.
723
	 */
724
	flushed = sta_info_flush_defer(sdata);
725 726
	WARN_ON_ONCE((sdata->vif.type != NL80211_IFTYPE_WDS && flushed > 0) ||
		     (sdata->vif.type == NL80211_IFTYPE_WDS && flushed != 1));
727 728 729 730 731 732 733 734 735 736 737 738 739

	/*
	 * Don't count this interface for promisc/allmulti while it
	 * is down. dev_mc_unsync() will invoke set_multicast_list
	 * on the master interface which will sync these down to the
	 * hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_dec(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_dec(&local->iff_promiscs);

740
	if (sdata->vif.type == NL80211_IFTYPE_AP) {
741
		local->fif_pspoll--;
742 743 744 745
		local->fif_probe_req--;
	} else if (sdata->vif.type == NL80211_IFTYPE_ADHOC) {
		local->fif_probe_req--;
	}
746

747 748 749 750 751 752 753
	if (sdata->dev) {
		netif_addr_lock_bh(sdata->dev);
		spin_lock_bh(&local->filter_lock);
		__hw_addr_unsync(&local->mc_list, &sdata->dev->mc,
				 sdata->dev->addr_len);
		spin_unlock_bh(&local->filter_lock);
		netif_addr_unlock_bh(sdata->dev);
Johannes Berg's avatar
Johannes Berg committed
754

755 756
		ieee80211_configure_filter(local);
	}
757

758 759
	del_timer_sync(&local->dynamic_ps_timer);
	cancel_work_sync(&local->dynamic_ps_enable_work);
760

761 762
	cancel_work_sync(&sdata->recalc_smps);

763 764 765 766 767 768 769 770 771 772
	cancel_delayed_work_sync(&sdata->dfs_cac_timer_work);

	if (sdata->wdev.cac_started) {
		mutex_lock(&local->iflist_mtx);
		ieee80211_vif_release_channel(sdata);
		mutex_unlock(&local->iflist_mtx);
		cfg80211_cac_event(sdata->dev, NL80211_RADAR_CAC_ABORTED,
				   GFP_KERNEL);
	}

773 774
	/* APs need special treatment */
	if (sdata->vif.type == NL80211_IFTYPE_AP) {
775
		struct ieee80211_sub_if_data *vlan, *tmpsdata;
776 777

		/* down all dependent devices, that is VLANs */
778
		list_for_each_entry_safe(vlan, tmpsdata, &sdata->u.ap.vlans,
779 780 781
					 u.vlan.list)
			dev_close(vlan->dev);
		WARN_ON(!list_empty(&sdata->u.ap.vlans));
782 783 784 785 786 787 788 789 790 791 792 793 794
	} else if (sdata->vif.type == NL80211_IFTYPE_AP_VLAN) {
		/* remove all packets in parent bc_buf pointing to this dev */
		ps = &sdata->bss->ps;

		spin_lock_irqsave(&ps->bc_buf.lock, flags);
		skb_queue_walk_safe(&ps->bc_buf, skb, tmp) {
			if (skb->dev == sdata->dev) {
				__skb_unlink(skb, &ps->bc_buf);
				local->total_ps_buffered--;
				ieee80211_free_txskb(&local->hw, skb);
			}
		}
		spin_unlock_irqrestore(&ps->bc_buf.lock, flags);
795 796
	}

797 798
	if (going_down)
		local->open_count--;
799 800 801 802

	switch (sdata->vif.type) {
	case NL80211_IFTYPE_AP_VLAN:
		list_del(&sdata->u.vlan.list);
803
		rcu_assign_pointer(sdata->vif.chanctx_conf, NULL);
804 805 806 807 808 809 810 811 812
		/* no need to tell driver */
		break;
	case NL80211_IFTYPE_MONITOR:
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs--;
			break;
		}

		local->monitors--;
813
		if (local->monitors == 0) {
814 815
			local->hw.conf.flags &= ~IEEE80211_CONF_MONITOR;
			hw_reconf_flags |= IEEE80211_CONF_CHANGE_MONITOR;
816
			ieee80211_del_virtual_monitor(local);
817
		}
818

819
		ieee80211_adjust_monitor_flags(sdata, -1);
820
		ieee80211_configure_filter(local);
821 822 823
		mutex_lock(&local->mtx);
		ieee80211_recalc_idle(local);
		mutex_unlock(&local->mtx);
824
		break;
825 826 827 828
	case NL80211_IFTYPE_P2P_DEVICE:
		/* relies on synchronize_rcu() below */
		rcu_assign_pointer(local->p2p_sdata, NULL);
		/* fall through */
829
	default:
830
		cancel_work_sync(&sdata->work);
Johannes Berg's avatar
Johannes Berg committed
831 832
		/*
		 * When we get here, the interface is marked down.
833 834 835 836 837 838 839
		 *
		 * sta_info_flush_cleanup() requires rcu_barrier()
		 * first to wait for the station call_rcu() calls
		 * to complete, here we need at least sychronize_rcu()
		 * it to wait for the RX path in case it is using the
		 * interface and enqueuing frames at this very time on
		 * another CPU.
Johannes Berg's avatar
Johannes Berg committed
840
		 */
841
		rcu_barrier();
842 843
		sta_info_flush_cleanup(sdata);

Johannes Berg's avatar
Johannes Berg committed
844 845
		skb_queue_purge(&sdata->skb_queue);

846 847 848 849
		/*
		 * Free all remaining keys, there shouldn't be any,
		 * except maybe group keys in AP more or WDS?
		 */
Johannes Berg's avatar
Johannes Berg committed
850
		ieee80211_free_keys(sdata);
851

852 853
		drv_remove_interface_debugfs(local, sdata);

854
		if (going_down)
855
			drv_remove_interface(local, sdata);
856 857 858 859
	}

	sdata->bss = NULL;

860 861
	ieee80211_recalc_ps(local, -1);

862
	if (local->open_count == 0) {
863 864
		if (local->ops->napi_poll)
			napi_disable(&local->napi);
865
		ieee80211_clear_tx_pending(local);
866
		ieee80211_stop_device(local);
867

868 869
		/* no reconfiguring after stop! */
		hw_reconf_flags = 0;
870 871
	}

872
	/* do after stop to avoid reconfiguring when we stop anyway */
Johannes Berg's avatar
Johannes Berg committed
873
	if (hw_reconf_flags)
874 875
		ieee80211_hw_config(local, hw_reconf_flags);

876 877 878 879 880 881
	spin_lock_irqsave(&local->queue_stop_reason_lock, flags);
	for (i = 0; i < IEEE80211_MAX_QUEUES; i++) {
		skb_queue_walk_safe(&local->pending[i], skb, tmp) {
			struct ieee80211_tx_info *info = IEEE80211_SKB_CB(skb);
			if (info->control.vif == &sdata->vif) {
				__skb_unlink(skb, &local->pending[i]);
882
				ieee80211_free_txskb(&local->hw, skb);
883 884 885 886
			}
		}
	}
	spin_unlock_irqrestore(&local->queue_stop_reason_lock, flags);
887 888 889

	if (local->monitors == local->open_count && local->monitors > 0)
		ieee80211_add_virtual_monitor(local);
890 891 892 893 894 895 896
}

static int ieee80211_stop(struct net_device *dev)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);

	ieee80211_do_stop(sdata, true);
897

898 899 900 901 902 903
	return 0;
}

static void ieee80211_set_multicast_list(struct net_device *dev)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
904
	struct ieee80211_local *local = sdata->local;
905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926
	int allmulti, promisc, sdata_allmulti, sdata_promisc;

	allmulti = !!(dev->flags & IFF_ALLMULTI);
	promisc = !!(dev->flags & IFF_PROMISC);
	sdata_allmulti = !!(sdata->flags & IEEE80211_SDATA_ALLMULTI);
	sdata_promisc = !!(sdata->flags & IEEE80211_SDATA_PROMISC);

	if (allmulti != sdata_allmulti) {
		if (dev->flags & IFF_ALLMULTI)
			atomic_inc(&local->iff_allmultis);
		else
			atomic_dec(&local->iff_allmultis);
		sdata->flags ^= IEEE80211_SDATA_ALLMULTI;
	}

	if (promisc != sdata_promisc) {
		if (dev->flags & IFF_PROMISC)
			atomic_inc(&local->iff_promiscs);
		else
			atomic_dec(&local->iff_promiscs);
		sdata->flags ^= IEEE80211_SDATA_PROMISC;
	}
Johannes Berg's avatar
Johannes Berg committed
927
	spin_lock_bh(&local->filter_lock);
928
	__hw_addr_sync(&local->mc_list, &dev->mc, dev->addr_len);
Johannes Berg's avatar
Johannes Berg committed
929
	spin_unlock_bh(&local->filter_lock);
930
	ieee80211_queue_work(&local->hw, &local->reconfig_filter);
931 932
}

933 934 935 936
/*
 * Called when the netdev is removed or, by the code below, before
 * the interface type changes.
 */
937
static void ieee80211_teardown_sdata(struct ieee80211_sub_if_data *sdata)
938
{
939
	int flushed;
940 941
	int i;

942 943 944
	/* free extra data */
	ieee80211_free_keys(sdata);

945 946
	ieee80211_debugfs_remove_netdev(sdata);

947
	for (i = 0; i < IEEE80211_FRAGMENT_MAX; i++)
948 949
		__skb_queue_purge(&sdata->fragments[i].skb_list);
	sdata->fragment_next = 0;
950

951 952
	if (ieee80211_vif_is_mesh(&sdata->vif))
		mesh_rmc_free(sdata);
953

954
	flushed = sta_info_flush(sdata);
955
	WARN_ON(flushed);
956 957
}

958 959 960 961 962
static void ieee80211_uninit(struct net_device *dev)
{
	ieee80211_teardown_sdata(IEEE80211_DEV_TO_SUB_IF(dev));
}

963 964 965 966 967 968
static u16 ieee80211_netdev_select_queue(struct net_device *dev,
					 struct sk_buff *skb)
{
	return ieee80211_select_queue(IEEE80211_DEV_TO_SUB_IF(dev), skb);
}

969 970 971
static const struct net_device_ops ieee80211_dataif_ops = {
	.ndo_open		= ieee80211_open,
	.ndo_stop		= ieee80211_stop,
972
	.ndo_uninit		= ieee80211_uninit,
973
	.ndo_start_xmit		= ieee80211_subif_start_xmit,
974
	.ndo_set_rx_mode	= ieee80211_set_multicast_list,
975
	.ndo_change_mtu 	= ieee80211_change_mtu,
976
	.ndo_set_mac_address 	= ieee80211_change_mac,
977
	.ndo_select_queue	= ieee80211_netdev_select_queue,
978 979
};

980 981 982 983 984 985 986 987
static u16 ieee80211_monitor_select_queue(struct net_device *dev,
					  struct sk_buff *skb)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
	struct ieee80211_local *local = sdata->local;
	struct ieee80211_hdr *hdr;
	struct ieee80211_radiotap_header *rtap = (void *)skb->data;

988
	if (local->hw.queues < IEEE80211_NUM_ACS)
989 990 991
		return 0;

	if (skb->len < 4 ||
Johannes Berg's avatar
Johannes Berg committed
992
	    skb->len < le16_to_cpu(rtap->it_len) + 2 /* frame control */)
993 994
		return 0; /* doesn't matter, frame will be dropped */

Johannes Berg's avatar
Johannes Berg committed
995
	hdr = (void *)((u8 *)skb->data + le16_to_cpu(rtap->it_len));
996

997
	return ieee80211_select_queue_80211(sdata, skb, hdr);
998 999
}

1000 1001 1002
static const struct net_device_ops ieee80211_monitorif_ops = {
	.ndo_open		= ieee80211_open,
	.ndo_stop		= ieee80211_stop,
1003
	.ndo_uninit		= ieee80211_uninit,
1004
	.ndo_start_xmit		= ieee80211_monitor_start_xmit,
1005
	.ndo_set_rx_mode	= ieee80211_set_multicast_list,
1006 1007
	.ndo_change_mtu 	= ieee80211_change_mtu,
	.ndo_set_mac_address 	= eth_mac_addr,
1008