main.c 53.5 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
/*
 * Copyright 2002-2005, Instant802 Networks, Inc.
 * Copyright 2005-2006, Devicescape Software, Inc.
 * Copyright 2006-2007	Jiri Benc <jbenc@suse.cz>
 *
 * This program is free software; you can redistribute it and/or modify
 * it under the terms of the GNU General Public License version 2 as
 * published by the Free Software Foundation.
 */

#include <net/mac80211.h>
#include <net/ieee80211_radiotap.h>
#include <linux/module.h>
#include <linux/init.h>
#include <linux/netdevice.h>
#include <linux/types.h>
#include <linux/slab.h>
#include <linux/skbuff.h>
#include <linux/etherdevice.h>
#include <linux/if_arp.h>
#include <linux/wireless.h>
#include <linux/rtnetlink.h>
#include <linux/bitmap.h>
24
#include <net/net_namespace.h>
25 26 27
#include <net/cfg80211.h>

#include "ieee80211_i.h"
Johannes Berg's avatar
Johannes Berg committed
28
#include "rate.h"
29
#include "mesh.h"
30 31 32
#include "wep.h"
#include "wme.h"
#include "aes_ccm.h"
Johannes Berg's avatar
Johannes Berg committed
33
#include "led.h"
34
#include "cfg.h"
35 36
#include "debugfs.h"
#include "debugfs_netdev.h"
37

38 39 40 41 42 43 44 45 46 47
/*
 * For seeing transmitted packets on monitor interfaces
 * we have a radiotap header too.
 */
struct ieee80211_tx_status_rtap_hdr {
	struct ieee80211_radiotap_header hdr;
	__le16 tx_flags;
	u8 data_retries;
} __attribute__ ((packed));

48
/* common interface routines */
49

50
static int header_parse_80211(const struct sk_buff *skb, unsigned char *haddr)
51 52 53 54
{
	memcpy(haddr, skb_mac_header(skb) + 10, ETH_ALEN); /* addr2 */
	return ETH_ALEN;
}
55

56 57 58 59 60 61
/* must be called under mdev tx lock */
static void ieee80211_configure_filter(struct ieee80211_local *local)
{
	unsigned int changed_flags;
	unsigned int new_flags = 0;

62
	if (atomic_read(&local->iff_promiscs))
63 64
		new_flags |= FIF_PROMISC_IN_BSS;

65
	if (atomic_read(&local->iff_allmultis))
66 67 68
		new_flags |= FIF_ALLMULTI;

	if (local->monitors)
69 70 71 72 73 74 75 76 77 78 79 80 81
		new_flags |= FIF_BCN_PRBRESP_PROMISC;

	if (local->fif_fcsfail)
		new_flags |= FIF_FCSFAIL;

	if (local->fif_plcpfail)
		new_flags |= FIF_PLCPFAIL;

	if (local->fif_control)
		new_flags |= FIF_CONTROL;

	if (local->fif_other_bss)
		new_flags |= FIF_OTHER_BSS;
82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97

	changed_flags = local->filter_flags ^ new_flags;

	/* be a bit nasty */
	new_flags |= (1<<31);

	local->ops->configure_filter(local_to_hw(local),
				     changed_flags, &new_flags,
				     local->mdev->mc_count,
				     local->mdev->mc_list);

	WARN_ON(new_flags & (1<<31));

	local->filter_flags = new_flags & ~(1<<31);
}

98
/* master interface */
99

100 101 102 103 104
static int ieee80211_master_open(struct net_device *dev)
{
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	struct ieee80211_sub_if_data *sdata;
	int res = -EOPNOTSUPP;
105

106 107
	/* we hold the RTNL here so can safely walk the list */
	list_for_each_entry(sdata, &local->interfaces, list) {
108 109 110 111 112 113 114
		if (sdata->dev != dev && netif_running(sdata->dev)) {
			res = 0;
			break;
		}
	}
	return res;
}
115

116
static int ieee80211_master_stop(struct net_device *dev)
117
{
118 119
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	struct ieee80211_sub_if_data *sdata;
120

121 122
	/* we hold the RTNL here so can safely walk the list */
	list_for_each_entry(sdata, &local->interfaces, list)
123 124
		if (sdata->dev != dev && netif_running(sdata->dev))
			dev_close(sdata->dev);
125

126 127
	return 0;
}
128

129 130 131 132 133 134 135
static void ieee80211_master_set_multicast_list(struct net_device *dev)
{
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);

	ieee80211_configure_filter(local);
}

136
/* regular interfaces */
137

138
static int ieee80211_change_mtu(struct net_device *dev, int new_mtu)
139
{
140 141 142 143 144
	int meshhdrlen;
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);

	meshhdrlen = (sdata->vif.type == IEEE80211_IF_TYPE_MESH_POINT) ? 5 : 0;

145 146
	/* FIX: what would be proper limits for MTU?
	 * This interface uses 802.3 frames. */
147 148
	if (new_mtu < 256 ||
		new_mtu > IEEE80211_MAX_DATA_LEN - 24 - 6 - meshhdrlen) {
149 150 151 152
		printk(KERN_WARNING "%s: invalid MTU %d\n",
		       dev->name, new_mtu);
		return -EINVAL;
	}
153

154 155 156 157
#ifdef CONFIG_MAC80211_VERBOSE_DEBUG
	printk(KERN_DEBUG "%s: setting MTU %d\n", dev->name, new_mtu);
#endif /* CONFIG_MAC80211_VERBOSE_DEBUG */
	dev->mtu = new_mtu;
158 159 160
	return 0;
}

161 162 163 164 165 166 167 168 169 170 171 172 173 174 175
static inline int identical_mac_addr_allowed(int type1, int type2)
{
	return (type1 == IEEE80211_IF_TYPE_MNTR ||
		type2 == IEEE80211_IF_TYPE_MNTR ||
		(type1 == IEEE80211_IF_TYPE_AP &&
		 type2 == IEEE80211_IF_TYPE_WDS) ||
		(type1 == IEEE80211_IF_TYPE_WDS &&
		 (type2 == IEEE80211_IF_TYPE_WDS ||
		  type2 == IEEE80211_IF_TYPE_AP)) ||
		(type1 == IEEE80211_IF_TYPE_AP &&
		 type2 == IEEE80211_IF_TYPE_VLAN) ||
		(type1 == IEEE80211_IF_TYPE_VLAN &&
		 (type2 == IEEE80211_IF_TYPE_AP ||
		  type2 == IEEE80211_IF_TYPE_VLAN)));
}
176

177
static int ieee80211_open(struct net_device *dev)
178
{
179 180 181 182
	struct ieee80211_sub_if_data *sdata, *nsdata;
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	struct ieee80211_if_init_conf conf;
	int res;
183
	bool need_hw_reconfig = 0;
184
	struct sta_info *sta;
185

186
	sdata = IEEE80211_DEV_TO_SUB_IF(dev);
187

188 189
	/* we hold the RTNL here so can safely walk the list */
	list_for_each_entry(nsdata, &local->interfaces, list) {
190
		struct net_device *ndev = nsdata->dev;
191

192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237
		if (ndev != dev && ndev != local->mdev && netif_running(ndev)) {
			/*
			 * Allow only a single IBSS interface to be up at any
			 * time. This is restricted because beacon distribution
			 * cannot work properly if both are in the same IBSS.
			 *
			 * To remove this restriction we'd have to disallow them
			 * from setting the same SSID on different IBSS interfaces
			 * belonging to the same hardware. Then, however, we're
			 * faced with having to adopt two different TSF timers...
			 */
			if (sdata->vif.type == IEEE80211_IF_TYPE_IBSS &&
			    nsdata->vif.type == IEEE80211_IF_TYPE_IBSS)
				return -EBUSY;

			/*
			 * Disallow multiple IBSS/STA mode interfaces.
			 *
			 * This is a technical restriction, it is possible although
			 * most likely not IEEE 802.11 compliant to have multiple
			 * STAs with just a single hardware (the TSF timer will not
			 * be adjusted properly.)
			 *
			 * However, because mac80211 uses the master device's BSS
			 * information for each STA/IBSS interface, doing this will
			 * currently corrupt that BSS information completely, unless,
			 * a not very useful case, both STAs are associated to the
			 * same BSS.
			 *
			 * To remove this restriction, the BSS information needs to
			 * be embedded in the STA/IBSS mode sdata instead of using
			 * the master device's BSS structure.
			 */
			if ((sdata->vif.type == IEEE80211_IF_TYPE_STA ||
			     sdata->vif.type == IEEE80211_IF_TYPE_IBSS) &&
			    (nsdata->vif.type == IEEE80211_IF_TYPE_STA ||
			     nsdata->vif.type == IEEE80211_IF_TYPE_IBSS))
				return -EBUSY;

			/*
			 * The remaining checks are only performed for interfaces
			 * with the same MAC address.
			 */
			if (compare_ether_addr(dev->dev_addr, ndev->dev_addr))
				continue;

238 239 240
			/*
			 * check whether it may have the same address
			 */
241 242
			if (!identical_mac_addr_allowed(sdata->vif.type,
							nsdata->vif.type))
243 244 245 246 247
				return -ENOTUNIQ;

			/*
			 * can only add VLANs to enabled APs
			 */
248
			if (sdata->vif.type == IEEE80211_IF_TYPE_VLAN &&
249
			    nsdata->vif.type == IEEE80211_IF_TYPE_AP)
250
				sdata->u.vlan.ap = nsdata;
251 252
		}
	}
253

254
	switch (sdata->vif.type) {
255
	case IEEE80211_IF_TYPE_WDS:
256
		if (!is_valid_ether_addr(sdata->u.wds.remote_addr))
257 258 259 260 261 262
			return -ENOLINK;
		break;
	case IEEE80211_IF_TYPE_VLAN:
		if (!sdata->u.vlan.ap)
			return -ENOLINK;
		break;
Johannes Berg's avatar
Johannes Berg committed
263 264 265 266
	case IEEE80211_IF_TYPE_AP:
	case IEEE80211_IF_TYPE_STA:
	case IEEE80211_IF_TYPE_MNTR:
	case IEEE80211_IF_TYPE_IBSS:
267
	case IEEE80211_IF_TYPE_MESH_POINT:
Johannes Berg's avatar
Johannes Berg committed
268 269
		/* no special treatment */
		break;
270 271 272 273
	case IEEE80211_IF_TYPE_INVALID:
		/* cannot happen */
		WARN_ON(1);
		break;
274
	}
275

276 277
	if (local->open_count == 0) {
		res = 0;
278 279 280
		if (local->ops->start)
			res = local->ops->start(local_to_hw(local));
		if (res)
281
			return res;
282
		need_hw_reconfig = 1;
283
		ieee80211_led_radio(local, local->hw.conf.radio_enabled);
284
	}
285

286
	switch (sdata->vif.type) {
287 288 289 290
	case IEEE80211_IF_TYPE_VLAN:
		list_add(&sdata->u.vlan.list, &sdata->u.vlan.ap->u.ap.vlans);
		/* no need to tell driver */
		break;
291
	case IEEE80211_IF_TYPE_MNTR:
292 293 294 295 296
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs++;
			break;
		}

297
		/* must be before the call to ieee80211_configure_filter */
298
		local->monitors++;
299
		if (local->monitors == 1)
300
			local->hw.conf.flags |= IEEE80211_CONF_RADIOTAP;
301 302 303 304 305 306 307 308 309 310 311 312 313

		if (sdata->u.mntr_flags & MONITOR_FLAG_FCSFAIL)
			local->fif_fcsfail++;
		if (sdata->u.mntr_flags & MONITOR_FLAG_PLCPFAIL)
			local->fif_plcpfail++;
		if (sdata->u.mntr_flags & MONITOR_FLAG_CONTROL)
			local->fif_control++;
		if (sdata->u.mntr_flags & MONITOR_FLAG_OTHER_BSS)
			local->fif_other_bss++;

		netif_tx_lock_bh(local->mdev);
		ieee80211_configure_filter(local);
		netif_tx_unlock_bh(local->mdev);
314 315 316 317 318 319
		break;
	case IEEE80211_IF_TYPE_STA:
	case IEEE80211_IF_TYPE_IBSS:
		sdata->u.sta.flags &= ~IEEE80211_STA_PREV_BSSID_SET;
		/* fall through */
	default:
320
		conf.vif = &sdata->vif;
321
		conf.type = sdata->vif.type;
322 323 324
		conf.mac_addr = dev->dev_addr;
		res = local->ops->add_interface(local_to_hw(local), &conf);
		if (res)
325
			goto err_stop;
326

327
		ieee80211_if_config(dev);
328
		ieee80211_reset_erp_info(dev);
329
		ieee80211_enable_keys(sdata);
330

331
		if (sdata->vif.type == IEEE80211_IF_TYPE_STA &&
332
		    !(sdata->flags & IEEE80211_SDATA_USERSPACE_MLME))
333 334 335
			netif_carrier_off(dev);
		else
			netif_carrier_on(dev);
336
	}
337

338 339 340 341 342 343 344 345 346
	if (sdata->vif.type == IEEE80211_IF_TYPE_WDS) {
		/* Create STA entry for the WDS peer */
		sta = sta_info_alloc(sdata, sdata->u.wds.remote_addr,
				     GFP_KERNEL);
		if (!sta) {
			res = -ENOMEM;
			goto err_del_interface;
		}

347
		/* no locking required since STA is not live yet */
348 349 350 351 352 353 354 355 356
		sta->flags |= WLAN_STA_AUTHORIZED;

		res = sta_info_insert(sta);
		if (res) {
			/* STA has been freed */
			goto err_del_interface;
		}
	}

357 358 359
	if (local->open_count == 0) {
		res = dev_open(local->mdev);
		WARN_ON(res);
360 361
		if (res)
			goto err_del_interface;
362 363 364 365
		tasklet_enable(&local->tx_pending_tasklet);
		tasklet_enable(&local->tasklet);
	}

366 367 368 369 370 371 372 373 374 375 376
	/*
	 * set_multicast_list will be invoked by the networking core
	 * which will check whether any increments here were done in
	 * error and sync them down to the hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_inc(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_inc(&local->iff_promiscs);

377
	local->open_count++;
378 379
	if (need_hw_reconfig)
		ieee80211_hw_config(local);
380

381 382 383 384 385 386
	/*
	 * ieee80211_sta_work is disabled while network interface
	 * is down. Therefore, some configuration changes may not
	 * yet be effective. Trigger execution of ieee80211_sta_work
	 * to fix this.
	 */
Johannes Berg's avatar
Johannes Berg committed
387 388
	if (sdata->vif.type == IEEE80211_IF_TYPE_STA ||
	    sdata->vif.type == IEEE80211_IF_TYPE_IBSS) {
389 390 391 392
		struct ieee80211_if_sta *ifsta = &sdata->u.sta;
		queue_work(local->hw.workqueue, &ifsta->work);
	}

393
	netif_start_queue(dev);
394

395
	return 0;
396 397 398 399 400 401
 err_del_interface:
	local->ops->remove_interface(local_to_hw(local), &conf);
 err_stop:
	if (!local->open_count && local->ops->stop)
		local->ops->stop(local_to_hw(local));
	return res;
402 403
}

404
static int ieee80211_stop(struct net_device *dev)
405
{
406 407
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
	struct ieee80211_local *local = sdata->local;
408
	struct ieee80211_if_init_conf conf;
409
	struct sta_info *sta;
410

411 412 413 414
	/*
	 * Stop TX on this interface first.
	 */
	netif_stop_queue(dev);
415

416 417 418
	/*
	 * Now delete all active aggregation sessions.
	 */
419 420 421 422
	rcu_read_lock();

	list_for_each_entry_rcu(sta, &local->sta_list, list) {
		if (sta->sdata == sdata)
423
			ieee80211_sta_tear_down_BA_sessions(dev, sta->addr);
424 425
	}

426 427
	rcu_read_unlock();

428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
	/*
	 * Remove all stations associated with this interface.
	 *
	 * This must be done before calling ops->remove_interface()
	 * because otherwise we can later invoke ops->sta_notify()
	 * whenever the STAs are removed, and that invalidates driver
	 * assumptions about always getting a vif pointer that is valid
	 * (because if we remove a STA after ops->remove_interface()
	 * the driver will have removed the vif info already!)
	 *
	 * We could relax this and only unlink the stations from the
	 * hash table and list but keep them on a per-sdata list that
	 * will be inserted back again when the interface is brought
	 * up again, but I don't currently see a use case for that,
	 * except with WDS which gets a STA entry created when it is
	 * brought up.
	 */
	sta_info_flush(local, sdata);
446

447 448 449 450 451 452 453 454 455 456 457 458
	/*
	 * Don't count this interface for promisc/allmulti while it
	 * is down. dev_mc_unsync() will invoke set_multicast_list
	 * on the master interface which will sync these down to the
	 * hardware as filter flags.
	 */
	if (sdata->flags & IEEE80211_SDATA_ALLMULTI)
		atomic_dec(&local->iff_allmultis);

	if (sdata->flags & IEEE80211_SDATA_PROMISC)
		atomic_dec(&local->iff_promiscs);

459 460
	dev_mc_unsync(local->mdev, dev);

461
	/* APs need special treatment */
462
	if (sdata->vif.type == IEEE80211_IF_TYPE_AP) {
463
		struct ieee80211_sub_if_data *vlan, *tmp;
464
		struct beacon_data *old_beacon = sdata->u.ap.beacon;
465

466 467 468 469 470 471
		/* remove beacon */
		rcu_assign_pointer(sdata->u.ap.beacon, NULL);
		synchronize_rcu();
		kfree(old_beacon);

		/* down all dependent devices, that is VLANs */
472 473 474 475 476 477
		list_for_each_entry_safe(vlan, tmp, &sdata->u.ap.vlans,
					 u.vlan.list)
			dev_close(vlan->dev);
		WARN_ON(!list_empty(&sdata->u.ap.vlans));
	}

478
	local->open_count--;
479

480
	switch (sdata->vif.type) {
481 482 483 484 485
	case IEEE80211_IF_TYPE_VLAN:
		list_del(&sdata->u.vlan.list);
		sdata->u.vlan.ap = NULL;
		/* no need to tell driver */
		break;
486
	case IEEE80211_IF_TYPE_MNTR:
487 488 489 490 491
		if (sdata->u.mntr_flags & MONITOR_FLAG_COOK_FRAMES) {
			local->cooked_mntrs--;
			break;
		}

492
		local->monitors--;
493
		if (local->monitors == 0)
494
			local->hw.conf.flags &= ~IEEE80211_CONF_RADIOTAP;
495 496 497 498 499 500 501 502 503 504 505 506 507

		if (sdata->u.mntr_flags & MONITOR_FLAG_FCSFAIL)
			local->fif_fcsfail--;
		if (sdata->u.mntr_flags & MONITOR_FLAG_PLCPFAIL)
			local->fif_plcpfail--;
		if (sdata->u.mntr_flags & MONITOR_FLAG_CONTROL)
			local->fif_control--;
		if (sdata->u.mntr_flags & MONITOR_FLAG_OTHER_BSS)
			local->fif_other_bss--;

		netif_tx_lock_bh(local->mdev);
		ieee80211_configure_filter(local);
		netif_tx_unlock_bh(local->mdev);
508
		break;
509
	case IEEE80211_IF_TYPE_MESH_POINT:
510 511 512 513
	case IEEE80211_IF_TYPE_STA:
	case IEEE80211_IF_TYPE_IBSS:
		sdata->u.sta.state = IEEE80211_DISABLED;
		del_timer_sync(&sdata->u.sta.timer);
514
		/*
515 516 517 518
		 * When we get here, the interface is marked down.
		 * Call synchronize_rcu() to wait for the RX path
		 * should it be using the interface and enqueuing
		 * frames at this very time on another CPU.
519
		 */
520
		synchronize_rcu();
521
		skb_queue_purge(&sdata->u.sta.skb_queue);
522

Zhu Yi's avatar
Zhu Yi committed
523 524 525 526 527 528
		if (local->scan_dev == sdata->dev) {
			if (!local->ops->hw_scan) {
				local->sta_sw_scanning = 0;
				cancel_delayed_work(&local->scan_work);
			} else
				local->sta_hw_scanning = 0;
529
		}
Zhu Yi's avatar
Zhu Yi committed
530

531
		flush_workqueue(local->hw.workqueue);
532 533 534 535 536

		sdata->u.sta.flags &= ~IEEE80211_STA_PRIVACY_INVOKED;
		kfree(sdata->u.sta.extra_ie);
		sdata->u.sta.extra_ie = NULL;
		sdata->u.sta.extra_ie_len = 0;
537 538
		/* fall through */
	default:
539
		conf.vif = &sdata->vif;
540
		conf.type = sdata->vif.type;
541
		conf.mac_addr = dev->dev_addr;
542 543
		/* disable all keys for as long as this netdev is down */
		ieee80211_disable_keys(sdata);
544
		local->ops->remove_interface(local_to_hw(local), &conf);
545 546
	}

547 548 549
	if (local->open_count == 0) {
		if (netif_running(local->mdev))
			dev_close(local->mdev);
550

551 552
		if (local->ops->stop)
			local->ops->stop(local_to_hw(local));
553

554 555
		ieee80211_led_radio(local, 0);

556 557 558 559
		tasklet_disable(&local->tx_pending_tasklet);
		tasklet_disable(&local->tasklet);
	}

560 561 562
	return 0;
}

563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580
int ieee80211_start_tx_ba_session(struct ieee80211_hw *hw, u8 *ra, u16 tid)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct sta_info *sta;
	struct ieee80211_sub_if_data *sdata;
	u16 start_seq_num = 0;
	u8 *state;
	int ret;
	DECLARE_MAC_BUF(mac);

	if (tid >= STA_TID_NUM)
		return -EINVAL;

#ifdef CONFIG_MAC80211_HT_DEBUG
	printk(KERN_DEBUG "Open BA session requested for %s tid %u\n",
				print_mac(mac, ra), tid);
#endif /* CONFIG_MAC80211_HT_DEBUG */

581 582
	rcu_read_lock();

583 584 585
	sta = sta_info_get(local, ra);
	if (!sta) {
		printk(KERN_DEBUG "Could not find the station\n");
586
		rcu_read_unlock();
587 588 589
		return -ENOENT;
	}

590
	spin_lock_bh(&sta->lock);
591 592

	/* we have tried too many times, receiver does not want A-MPDU */
593
	if (sta->ampdu_mlme.addba_req_num[tid] > HT_AGG_MAX_RETRIES) {
594 595 596 597
		ret = -EBUSY;
		goto start_ba_exit;
	}

598
	state = &sta->ampdu_mlme.tid_state_tx[tid];
599 600 601 602 603 604 605 606 607 608
	/* check if the TID is not in aggregation flow already */
	if (*state != HT_AGG_STATE_IDLE) {
#ifdef CONFIG_MAC80211_HT_DEBUG
		printk(KERN_DEBUG "BA request denied - session is not "
				 "idle on tid %u\n", tid);
#endif /* CONFIG_MAC80211_HT_DEBUG */
		ret = -EAGAIN;
		goto start_ba_exit;
	}

609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625
	/* prepare A-MPDU MLME for Tx aggregation */
	sta->ampdu_mlme.tid_tx[tid] =
			kmalloc(sizeof(struct tid_ampdu_tx), GFP_ATOMIC);
	if (!sta->ampdu_mlme.tid_tx[tid]) {
		if (net_ratelimit())
			printk(KERN_ERR "allocate tx mlme to tid %d failed\n",
					tid);
		ret = -ENOMEM;
		goto start_ba_exit;
	}
	/* Tx timer */
	sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer.function =
			sta_addba_resp_timer_expired;
	sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer.data =
			(unsigned long)&sta->timer_to_tid[tid];
	init_timer(&sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer);

626 627 628 629 630
	/* ensure that TX flow won't interrupt us
	 * until the end of the call to requeue function */
	spin_lock_bh(&local->mdev->queue_lock);

	/* create a new queue for this aggregation */
631
	ret = ieee80211_ht_agg_queue_add(local, sta, tid);
632 633 634 635 636

	/* case no queue is available to aggregation
	 * don't switch to aggregation */
	if (ret) {
#ifdef CONFIG_MAC80211_HT_DEBUG
637
		printk(KERN_DEBUG "BA request denied - queue unavailable for"
638 639
					" tid %d\n", tid);
#endif /* CONFIG_MAC80211_HT_DEBUG */
640
		goto start_ba_err;
641
	}
642
	sdata = sta->sdata;
643 644 645 646 647 648 649 650 651 652 653 654 655

	/* Ok, the Addba frame hasn't been sent yet, but if the driver calls the
	 * call back right away, it must see that the flow has begun */
	*state |= HT_ADDBA_REQUESTED_MSK;

	if (local->ops->ampdu_action)
		ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_TX_START,
						ra, tid, &start_seq_num);

	if (ret) {
		/* No need to requeue the packets in the agg queue, since we
		 * held the tx lock: no packet could be enqueued to the newly
		 * allocated queue */
656
		 ieee80211_ht_agg_queue_remove(local, sta, tid, 0);
657
#ifdef CONFIG_MAC80211_HT_DEBUG
658 659
		printk(KERN_DEBUG "BA request denied - HW unavailable for"
					" tid %d\n", tid);
660 661
#endif /* CONFIG_MAC80211_HT_DEBUG */
		*state = HT_AGG_STATE_IDLE;
662
		goto start_ba_err;
663 664 665
	}

	/* Will put all the packets in the new SW queue */
666
	ieee80211_requeue(local, ieee802_1d_to_ac[tid]);
667 668 669 670
	spin_unlock_bh(&local->mdev->queue_lock);

	/* send an addBA request */
	sta->ampdu_mlme.dialog_token_allocator++;
671
	sta->ampdu_mlme.tid_tx[tid]->dialog_token =
672
			sta->ampdu_mlme.dialog_token_allocator;
673
	sta->ampdu_mlme.tid_tx[tid]->ssn = start_seq_num;
674

675
	ieee80211_send_addba_request(sta->sdata->dev, ra, tid,
676 677
			 sta->ampdu_mlme.tid_tx[tid]->dialog_token,
			 sta->ampdu_mlme.tid_tx[tid]->ssn,
678 679 680
			 0x40, 5000);

	/* activate the timer for the recipient's addBA response */
681
	sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer.expires =
682
				jiffies + ADDBA_RESP_INTERVAL;
683
	add_timer(&sta->ampdu_mlme.tid_tx[tid]->addba_resp_timer);
684
	printk(KERN_DEBUG "activated addBA response timer on tid %d\n", tid);
685
	goto start_ba_exit;
686

687 688 689 690 691
start_ba_err:
	kfree(sta->ampdu_mlme.tid_tx[tid]);
	sta->ampdu_mlme.tid_tx[tid] = NULL;
	spin_unlock_bh(&local->mdev->queue_lock);
	ret = -EBUSY;
692
start_ba_exit:
693
	spin_unlock_bh(&sta->lock);
694
	rcu_read_unlock();
695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711
	return ret;
}
EXPORT_SYMBOL(ieee80211_start_tx_ba_session);

int ieee80211_stop_tx_ba_session(struct ieee80211_hw *hw,
				 u8 *ra, u16 tid,
				 enum ieee80211_back_parties initiator)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct sta_info *sta;
	u8 *state;
	int ret = 0;
	DECLARE_MAC_BUF(mac);

	if (tid >= STA_TID_NUM)
		return -EINVAL;

712
	rcu_read_lock();
713
	sta = sta_info_get(local, ra);
714 715
	if (!sta) {
		rcu_read_unlock();
716
		return -ENOENT;
717
	}
718 719

	/* check if the TID is in aggregation */
720
	state = &sta->ampdu_mlme.tid_state_tx[tid];
721
	spin_lock_bh(&sta->lock);
722 723 724 725 726 727

	if (*state != HT_AGG_STATE_OPERATIONAL) {
		ret = -ENOENT;
		goto stop_BA_exit;
	}

728 729 730 731 732
#ifdef CONFIG_MAC80211_HT_DEBUG
	printk(KERN_DEBUG "Tx BA session stop requested for %s tid %u\n",
				print_mac(mac, ra), tid);
#endif /* CONFIG_MAC80211_HT_DEBUG */

733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750
	ieee80211_stop_queue(hw, sta->tid_to_tx_q[tid]);

	*state = HT_AGG_STATE_REQ_STOP_BA_MSK |
		(initiator << HT_AGG_STATE_INITIATOR_SHIFT);

	if (local->ops->ampdu_action)
		ret = local->ops->ampdu_action(hw, IEEE80211_AMPDU_TX_STOP,
						ra, tid, NULL);

	/* case HW denied going back to legacy */
	if (ret) {
		WARN_ON(ret != -EBUSY);
		*state = HT_AGG_STATE_OPERATIONAL;
		ieee80211_wake_queue(hw, sta->tid_to_tx_q[tid]);
		goto stop_BA_exit;
	}

stop_BA_exit:
751
	spin_unlock_bh(&sta->lock);
752
	rcu_read_unlock();
753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769
	return ret;
}
EXPORT_SYMBOL(ieee80211_stop_tx_ba_session);

void ieee80211_start_tx_ba_cb(struct ieee80211_hw *hw, u8 *ra, u16 tid)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct sta_info *sta;
	u8 *state;
	DECLARE_MAC_BUF(mac);

	if (tid >= STA_TID_NUM) {
		printk(KERN_DEBUG "Bad TID value: tid = %d (>= %d)\n",
				tid, STA_TID_NUM);
		return;
	}

770
	rcu_read_lock();
771 772
	sta = sta_info_get(local, ra);
	if (!sta) {
773
		rcu_read_unlock();
774 775 776 777 778
		printk(KERN_DEBUG "Could not find station: %s\n",
				print_mac(mac, ra));
		return;
	}

779
	state = &sta->ampdu_mlme.tid_state_tx[tid];
780
	spin_lock_bh(&sta->lock);
781 782 783 784

	if (!(*state & HT_ADDBA_REQUESTED_MSK)) {
		printk(KERN_DEBUG "addBA was not requested yet, state is %d\n",
				*state);
785
		spin_unlock_bh(&sta->lock);
786
		rcu_read_unlock();
787 788 789 790 791 792 793 794 795 796 797
		return;
	}

	WARN_ON_ONCE(*state & HT_ADDBA_DRV_READY_MSK);

	*state |= HT_ADDBA_DRV_READY_MSK;

	if (*state == HT_AGG_STATE_OPERATIONAL) {
		printk(KERN_DEBUG "Aggregation is on for tid %d \n", tid);
		ieee80211_wake_queue(hw, sta->tid_to_tx_q[tid]);
	}
798
	spin_unlock_bh(&sta->lock);
799
	rcu_read_unlock();
800 801 802 803 804 805 806 807 808 809 810 811 812 813 814 815 816
}
EXPORT_SYMBOL(ieee80211_start_tx_ba_cb);

void ieee80211_stop_tx_ba_cb(struct ieee80211_hw *hw, u8 *ra, u8 tid)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct sta_info *sta;
	u8 *state;
	int agg_queue;
	DECLARE_MAC_BUF(mac);

	if (tid >= STA_TID_NUM) {
		printk(KERN_DEBUG "Bad TID value: tid = %d (>= %d)\n",
				tid, STA_TID_NUM);
		return;
	}

817 818
#ifdef CONFIG_MAC80211_HT_DEBUG
	printk(KERN_DEBUG "Stopping Tx BA session for %s tid %d\n",
819
				print_mac(mac, ra), tid);
820
#endif /* CONFIG_MAC80211_HT_DEBUG */
821

822
	rcu_read_lock();
823 824 825 826
	sta = sta_info_get(local, ra);
	if (!sta) {
		printk(KERN_DEBUG "Could not find station: %s\n",
				print_mac(mac, ra));
827
		rcu_read_unlock();
828 829
		return;
	}
830
	state = &sta->ampdu_mlme.tid_state_tx[tid];
831

832
	spin_lock_bh(&sta->lock);
833 834
	if ((*state & HT_AGG_STATE_REQ_STOP_BA_MSK) == 0) {
		printk(KERN_DEBUG "unexpected callback to A-MPDU stop\n");
835
		spin_unlock_bh(&sta->lock);
836
		rcu_read_unlock();
837 838 839 840
		return;
	}

	if (*state & HT_AGG_STATE_INITIATOR_MSK)
841
		ieee80211_send_delba(sta->sdata->dev, ra, tid,
842 843 844 845 846 847 848 849
			WLAN_BACK_INITIATOR, WLAN_REASON_QSTA_NOT_USE);

	agg_queue = sta->tid_to_tx_q[tid];

	/* avoid ordering issues: we are the only one that can modify
	 * the content of the qdiscs */
	spin_lock_bh(&local->mdev->queue_lock);
	/* remove the queue for this aggregation */
850
	ieee80211_ht_agg_queue_remove(local, sta, tid, 1);
851 852 853 854 855 856 857 858
	spin_unlock_bh(&local->mdev->queue_lock);

	/* we just requeued the all the frames that were in the removed
	 * queue, and since we might miss a softirq we do netif_schedule.
	 * ieee80211_wake_queue is not used here as this queue is not
	 * necessarily stopped */
	netif_schedule(local->mdev);
	*state = HT_AGG_STATE_IDLE;
859 860 861
	sta->ampdu_mlme.addba_req_num[tid] = 0;
	kfree(sta->ampdu_mlme.tid_tx[tid]);
	sta->ampdu_mlme.tid_tx[tid] = NULL;
862
	spin_unlock_bh(&sta->lock);
863

864
	rcu_read_unlock();
865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913
}
EXPORT_SYMBOL(ieee80211_stop_tx_ba_cb);

void ieee80211_start_tx_ba_cb_irqsafe(struct ieee80211_hw *hw,
				      const u8 *ra, u16 tid)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct ieee80211_ra_tid *ra_tid;
	struct sk_buff *skb = dev_alloc_skb(0);

	if (unlikely(!skb)) {
		if (net_ratelimit())
			printk(KERN_WARNING "%s: Not enough memory, "
			       "dropping start BA session", skb->dev->name);
		return;
	}
	ra_tid = (struct ieee80211_ra_tid *) &skb->cb;
	memcpy(&ra_tid->ra, ra, ETH_ALEN);
	ra_tid->tid = tid;

	skb->pkt_type = IEEE80211_ADDBA_MSG;
	skb_queue_tail(&local->skb_queue, skb);
	tasklet_schedule(&local->tasklet);
}
EXPORT_SYMBOL(ieee80211_start_tx_ba_cb_irqsafe);

void ieee80211_stop_tx_ba_cb_irqsafe(struct ieee80211_hw *hw,
				     const u8 *ra, u16 tid)
{
	struct ieee80211_local *local = hw_to_local(hw);
	struct ieee80211_ra_tid *ra_tid;
	struct sk_buff *skb = dev_alloc_skb(0);

	if (unlikely(!skb)) {
		if (net_ratelimit())
			printk(KERN_WARNING "%s: Not enough memory, "
			       "dropping stop BA session", skb->dev->name);
		return;
	}
	ra_tid = (struct ieee80211_ra_tid *) &skb->cb;
	memcpy(&ra_tid->ra, ra, ETH_ALEN);
	ra_tid->tid = tid;

	skb->pkt_type = IEEE80211_DELBA_MSG;
	skb_queue_tail(&local->skb_queue, skb);
	tasklet_schedule(&local->tasklet);
}
EXPORT_SYMBOL(ieee80211_stop_tx_ba_cb_irqsafe);

914 915 916 917
static void ieee80211_set_multicast_list(struct net_device *dev)
{
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
918
	int allmulti, promisc, sdata_allmulti, sdata_promisc;
919

920 921
	allmulti = !!(dev->flags & IFF_ALLMULTI);
	promisc = !!(dev->flags & IFF_PROMISC);
922 923
	sdata_allmulti = !!(sdata->flags & IEEE80211_SDATA_ALLMULTI);
	sdata_promisc = !!(sdata->flags & IEEE80211_SDATA_PROMISC);
924 925 926

	if (allmulti != sdata_allmulti) {
		if (dev->flags & IFF_ALLMULTI)
927
			atomic_inc(&local->iff_allmultis);
928
		else
929
			atomic_dec(&local->iff_allmultis);
930
		sdata->flags ^= IEEE80211_SDATA_ALLMULTI;
931
	}
932 933 934

	if (promisc != sdata_promisc) {
		if (dev->flags & IFF_PROMISC)
935
			atomic_inc(&local->iff_promiscs);
936
		else
937
			atomic_dec(&local->iff_promiscs);
938
		sdata->flags ^= IEEE80211_SDATA_PROMISC;
939
	}
940 941

	dev_mc_sync(local->mdev, dev);
942 943
}

944 945 946 947 948 949 950 951
static const struct header_ops ieee80211_header_ops = {
	.create		= eth_header,
	.parse		= header_parse_80211,
	.rebuild	= eth_rebuild_header,
	.cache		= eth_header_cache,
	.cache_update	= eth_header_cache_update,
};

952
/* Must not be called for mdev */
953
void ieee80211_if_setup(struct net_device *dev)
954
{
955 956 957 958 959 960 961 962 963
	ether_setup(dev);
	dev->hard_start_xmit = ieee80211_subif_start_xmit;
	dev->wireless_handlers = &ieee80211_iw_handler_def;
	dev->set_multicast_list = ieee80211_set_multicast_list;
	dev->change_mtu = ieee80211_change_mtu;
	dev->open = ieee80211_open;
	dev->stop = ieee80211_stop;
	dev->destructor = ieee80211_if_free;
}
964

965 966 967 968 969 970 971 972 973 974 975
/* everything else */

static int __ieee80211_if_config(struct net_device *dev,
				 struct sk_buff *beacon,
				 struct ieee80211_tx_control *control)
{
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	struct ieee80211_if_conf conf;

	if (!local->ops->config_interface || !netif_running(dev))
976 977
		return 0;

978
	memset(&conf, 0, sizeof(conf));
979 980 981
	conf.type = sdata->vif.type;
	if (sdata->vif.type == IEEE80211_IF_TYPE_STA ||
	    sdata->vif.type == IEEE80211_IF_TYPE_IBSS) {
982
		conf.bssid = sdata->u.sta.bssid;
983 984
		conf.ssid = sdata->u.sta.ssid;
		conf.ssid_len = sdata->u.sta.ssid_len;
Johannes Berg's avatar
Johannes Berg committed
985
	} else if (ieee80211_vif_is_mesh(&sdata->vif)) {
986
		conf.beacon = beacon;
987
		conf.beacon_control = control;
988
		ieee80211_start_mesh(dev);
989
	} else if (sdata->vif.type == IEEE80211_IF_TYPE_AP) {
990 991 992 993
		conf.ssid = sdata->u.ap.ssid;
		conf.ssid_len = sdata->u.ap.ssid_len;
		conf.beacon = beacon;
		conf.beacon_control = control;
994
	}
995
	return local->ops->config_interface(local_to_hw(local),
996
					    &sdata->vif, &conf);
997 998
}

999 1000
int ieee80211_if_config(struct net_device *dev)
{
1001 1002 1003 1004 1005
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
	if (sdata->vif.type == IEEE80211_IF_TYPE_MESH_POINT &&
	    (local->hw.flags & IEEE80211_HW_HOST_GEN_BEACON_TEMPLATE))
		return ieee80211_if_config_beacon(dev);
1006 1007
	return __ieee80211_if_config(dev, NULL, NULL);
}
1008

1009
int ieee80211_if_config_beacon(struct net_device *dev)
1010 1011
{
	struct ieee80211_local *local = wdev_priv(dev->ieee80211_ptr);
1012
	struct ieee80211_tx_control control;
1013
	struct ieee80211_sub_if_data *sdata = IEEE80211_DEV_TO_SUB_IF(dev);
1014
	struct sk_buff *skb;
1015

1016
	if (!(local->hw.flags & IEEE80211_HW_HOST_GEN_BEACON_TEMPLATE))
1017
		return 0;
1018 1019
	skb = ieee80211_beacon_get(local_to_hw(local), &sdata->vif,
				   &control);
1020 1021 1022 1023
	if (!skb)
		return -ENOMEM;
	return __ieee80211_if_config(dev, skb, &control);
}
1024

1025 1026 1027 1028
int ieee80211_hw_config(struct ieee80211_local *local)
{
	struct ieee80211_channel *chan;
	int ret = 0;
1029

1030
	if (local->sta_sw_scanning)
1031
		chan = local->scan_channel;
1032
	else
1033
		chan = local->oper_channel;
1034

1035 1036 1037 1038 1039 1040 1041 1042 1043
	local->hw.conf.channel = chan;

	if (!local->hw.conf.power_level)
		local->hw.conf.power_level = chan->max_power;
	else
		local->hw.conf.power_level = min(chan->max_power,
					       local->hw.conf.power_level);

	local->hw.conf.max_antenna_gain = chan->max_antenna_gain;
1044

1045
#ifdef CONFIG_MAC80211_VERBOSE_DEBUG
1046 1047 1048
	printk(KERN_DEBUG "%s: HW CONFIG: freq=%d\n",
	       wiphy_name(local->hw.wiphy), chan->center_freq);
#endif
1049

1050
	if (local->open_count)
1051
		ret = local->ops->config(local_to_hw(local), &local->hw.conf);
1052

1053 1054
	return ret;
}
1055

1056
/**
Tomas Winkler's avatar
Tomas Winkler committed
1057 1058 1059
 * ieee80211_handle_ht should be used only after legacy configuration
 * has been determined namely band, as ht configuration depends upon
 * the hardware's HT abilities for a _specific_ band.
1060
 */
Tomas Winkler's avatar
Tomas Winkler committed
1061
u32 ieee80211_handle_ht(struct ieee80211_local *local, int enable_ht,
1062 1063 1064 1065
			   struct ieee80211_ht_info *req_ht_cap,
			   struct ieee80211_ht_bss_info *req_bss_cap)
{
	struct ieee80211_conf *conf = &local->hw.conf;
1066
	struct ieee80211_supported_band *sband;
Tomas Winkler's avatar
Tomas Winkler committed
1067 1068 1069
	struct ieee80211_ht_info ht_conf;
	struct ieee80211_ht_bss_info ht_bss_conf;
	u32 changed = 0;
1070 1071 1072
	int i</