87515e34ff
Thanks to dyoung@, scw@, and perry@ for help testing. 2005-08-30 15:27 avatar Properly set ic_curchan before calling back to device driver to do channel switching(ifconfig devX channel Y). This fix should make channel changing works again in monitor mode. Submitted by: sam X-MFC-With: other ic_curchan changes 2005-08-13 18:50 sam revert 1.64: we cannot use the channel characteristics to decide when to do 11g erp sta accounting because b/g channels show up as false positives when operating in 11b. Noticed by: Michal Mertl 2005-08-13 18:31 sam Extend acl support to pass ioctl requests through and use this to add support for getting the current policy setting and collecting the list of mac addresses in the acl table. Submitted by: Michal Mertl (original version) MFC after: 2 weeks 2005-08-10 18:42 sam Don't use ic_curmode to decide when to do 11g station accounting, use the station channel properties. Fixes assert failure/bogus operation when an ap is operating in 11a and has associated stations then switches to 11g. Noticed by: Michal Mertl Reviewed by: avatar MFC after: 2 weeks 2005-08-10 17:22 sam Clarify/fix handling of the current channel: o add ic_curchan and use it uniformly for specifying the current channel instead of overloading ic->ic_bss->ni_chan (or in some drivers ic_ibss_chan) o add ieee80211_scanparams structure to encapsulate scanning-related state captured for rx frames o move rx beacon+probe response frame handling into separate routines o change beacon+probe response handling to treat the scan table more like a scan cache--look for an existing entry before adding a new one; this combined with ic_curchan use corrects handling of stations that were previously found at a different channel o move adhoc neighbor discovery by beacon+probe response frames to a new ieee80211_add_neighbor routine Reviewed by: avatar Tested by: avatar, Michal Mertl MFC after: 2 weeks 2005-08-09 11:19 rwatson Propagate rename of IFF_OACTIVE and IFF_RUNNING to IFF_DRV_OACTIVE and IFF_DRV_RUNNING, as well as the move from ifnet.if_flags to ifnet.if_drv_flags. Device drivers are now responsible for synchronizing access to these flags, as they are in if_drv_flags. This helps prevent races between the network stack and device driver in maintaining the interface flags field. Many __FreeBSD__ and __FreeBSD_version checks maintained and continued; some less so. Reviewed by: pjd, bz MFC after: 7 days 2005-08-08 19:46 sam Split crypto tx+rx key indices and add a key index -> node mapping table: Crypto changes: o change driver/net80211 key_alloc api to return tx+rx key indices; a driver can leave the rx key index set to IEEE80211_KEYIX_NONE or set it to be the same as the tx key index (the former disables use of the key index in building the keyix->node mapping table and is the default setup for naive drivers by null_key_alloc) o add cs_max_keyid to crypto state to specify the max h/w key index a driver will return; this is used to allocate the key index mapping table and to bounds check table loookups o while here introduce ieee80211_keyix (finally) for the type of a h/w key index o change crypto notifiers for rx failures to pass the rx key index up as appropriate (michael failure, replay, etc.) Node table changes: o optionally allocate a h/w key index to node mapping table for the station table using the max key index setting supplied by drivers (note the scan table does not get a map) o defer node table allocation to lateattach so the driver has a chance to set the max key id to size the key index map o while here also defer the aid bitmap allocation o add new ieee80211_find_rxnode_withkey api to find a sta/node entry on frame receive with an optional h/w key index to use in checking mapping table; also updates the map if it does a hash lookup and the found node has a rx key index set in the unicast key; note this work is separated from the old ieee80211_find_rxnode call so drivers do not need to be aware of the new mechanism o move some node table manipulation under the node table lock to close a race on node delete o add ieee80211_node_delucastkey to do the dirty work of deleting unicast key state for a node (deletes any key and handles key map references) Ath driver: o nuke private sc_keyixmap mechansim in favor of net80211 support o update key alloc api These changes close several race conditions for the ath driver operating in ap mode. Other drivers should see no change. Station mode operation for ath no longer uses the key index map but performance tests show no noticeable change and this will be fixed when the scan table is eliminated with the new scanning support. Tested by: Michal Mertl, avatar, others Reviewed by: avatar, others MFC after: 2 weeks 2005-08-08 06:49 sam use ieee80211_iterate_nodes to retrieve station data; the previous code walked the list w/o locking MFC after: 1 week 2005-08-08 04:30 sam Cleanup beacon/listen interval handling: o separate configured beacon interval from listen interval; this avoids potential use of one value for the other (e.g. setting powersavesleep to 0 clobbers the beacon interval used in hostap or ibss mode) o bounds check the beacon interval received in probe response and beacon frames and drop frames with bogus settings; not clear if we should instead clamp the value as any alteration would result in mismatched sta+ap configuration and probably be more confusing (don't want to log to the console but perhaps ok with rate limiting) o while here up max beacon interval to reflect WiFi standard Noticed by: Martin <nakal@nurfuerspam.de> MFC after: 1 week 2005-08-06 05:57 sam fix debug msg typo MFC after: 3 days 2005-08-06 05:56 sam Fix handling of frames sent prior to a station being authorized when operating in ap mode. Previously we allocated a node from the station table, sent the frame (using the node), then released the reference that "held the frame in the table". But while the frame was in flight the node might be reclaimed which could lead to problems. The solution is to add an ieee80211_tmp_node routine that crafts a node that does exist in a table and so isn't ever reclaimed; it exists only so long as the associated frame is in flight. MFC after: 5 days 2005-07-31 07:12 sam close a race between reclaiming a node when a station is inactive and sending the null data frame used to probe inactive stations MFC after: 5 days 2005-07-27 05:41 sam when bridging internally bypass the bss node as traffic to it must follow the normal input path Submitted by: Michal Mertl MFC after: 5 days 2005-07-27 03:53 sam bandaid ni_fails handling so ap's with association failures are reconsidered after a bit; a proper fix involves more changes to the scanning infrastructure Reviewed by: avatar, David Young MFC after: 5 days 2005-07-23 01:16 sam the AREF flag is only meaningful in ap mode; adhoc neighbors now are timed out of the sta/neighbor table 2005-07-23 00:25 sam o move inactivity-related debug msgs under IEEE80211_MSG_INACT o probe inactive neighbors in adhoc mode (they don't have an association id so previously were being timed out) MFC after: 3 days 2005-07-22 22:11 sam split xmit of probe request frame out into a separate routine that takes explicit parameters; this will be needed when scanning is decoupled from the state machine to do bg scanning MFC after: 3 days 2005-07-22 21:48 sam split 802.11 frame xmit setup code into ieee80211_send_setup MFC after: 3 days 2005-07-22 18:57 sam simplify ic_newassoc callback MFC after: 3 days 2005-07-22 18:54 sam simplify ieee80211_ibss_merge api MFC after: 3 days 2005-07-22 18:50 sam add stats we know we'll need soon and some spare fields for future expansion MFC after: 3 days 2005-07-22 18:45 sam simplify tim callback api MFC after: 3 days 2005-07-22 18:42 sam don't include 802.3 header in min frame length calculation as it may not be present for a frag; fixes problem with small (fragmented) frames being dropped Obtained from: Atheros MFC after: 3 days 2005-07-22 18:36 sam simplify ieee80211_node_authorize and ieee80211_node_unauthorize api's MFC after: 3 days 2005-07-22 18:31 sam simplifiy ieee80211_send_nulldata api MFC after: 3 days 2005-07-22 18:29 sam simplify rate set api's by removing ic parameter (implicit in node reference) MFC after: 3 days 2005-07-22 18:21 sam reject association requests with a wpa/rsn ie when wpa/rsn is not configured on the ap; previously we either ignored the ie or (possibly) failed an assertion Obtained from: Atheros MFC after: 3 days 2005-07-22 18:16 sam missed one in last commit; add device name to discard msgs 2005-07-22 18:13 sam include device name in discard msgs 2005-07-22 18:12 sam add diag msgs for frames discarded because the direction field is wrong 2005-07-22 18:08 sam split data frame delivery out to a new function ieee80211_deliver_data 2005-07-22 18:00 sam o add IEEE80211_IOC_FRAGTHRESHOLD for getting+setting the tx fragmentation threshold o fix bounds checking on IEEE80211_IOC_RTSTHRESHOLD MFC after: 3 days 2005-07-22 17:55 sam o add IEEE80211_FRAG_DEFAULT o move default settings for RTS and frag thresholds to ieee80211_var.h 2005-07-22 17:50 sam diff reduction against p4: define IEEE80211_FIXED_RATE_NONE and use it instead of -1 2005-07-22 17:37 sam add flags missed in last merge 2005-07-22 17:36 sam Diff reduction against p4: o add ic_flags_ext for eventual extention of ic_flags o define/reserve flag+capabilities bits for superg, bg scan, and roaming support o refactor debug msg macros MFC after: 3 days 2005-07-22 06:17 sam send a response when an auth request is denied due to an acl; might be better to silently ignore the frame but this way we give stations a chance of figuring out what's wrong 2005-07-22 06:15 sam remove excess whitespace 2005-07-22 05:55 sam use IF_HANDOFF when bridging frames internally so if_start gets called; fixes communication between associated sta's MFC after: 3 days 2005-07-11 04:06 sam Handle encrypt of arbitarily fragmented mbuf chains: previously we bailed if we couldn't collect the 16-bytes of data required for an aes block cipher in 2 mbufs; now we deal with it. While here make space accounting signed so a sanity check does the right thing for malformed mbuf chains. Approved by: re (scottl) 2005-07-11 04:00 sam nuke assert that duplicates real check Reviewed by: avatar Approved by: re (scottl)
330 lines
8.3 KiB
C
330 lines
8.3 KiB
C
/*-
|
|
* Copyright (c) 2004-2005 Sam Leffler, Errno Consulting
|
|
* All rights reserved.
|
|
*
|
|
* Redistribution and use in source and binary forms, with or without
|
|
* modification, are permitted provided that the following conditions
|
|
* are met:
|
|
* 1. Redistributions of source code must retain the above copyright
|
|
* notice, this list of conditions and the following disclaimer.
|
|
* 2. Redistributions in binary form must reproduce the above copyright
|
|
* notice, this list of conditions and the following disclaimer in the
|
|
* documentation and/or other materials provided with the distribution.
|
|
* 3. The name of the author may not be used to endorse or promote products
|
|
* derived from this software without specific prior written permission.
|
|
*
|
|
* Alternatively, this software may be distributed under the terms of the
|
|
* GNU General Public License ("GPL") version 2 as published by the Free
|
|
* Software Foundation.
|
|
*
|
|
* THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
|
|
* IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
|
|
* OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
|
|
* IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
|
|
* INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
|
|
* NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
|
|
* DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
|
|
* THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
|
|
* (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
|
|
* THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
|
|
*/
|
|
|
|
#include <sys/cdefs.h>
|
|
#ifdef __FreeBSD__
|
|
__FBSDID("$FreeBSD: src/sys/net80211/ieee80211_acl.c,v 1.4 2005/08/13 17:31:48 sam Exp $");
|
|
#endif
|
|
#ifdef __NetBSD__
|
|
__KERNEL_RCSID(0, "$NetBSD: ieee80211_acl.c,v 1.4 2005/11/18 16:40:08 skrll Exp $");
|
|
#endif
|
|
|
|
/*
|
|
* IEEE 802.11 MAC ACL support.
|
|
*
|
|
* When this module is loaded the sender address of each received
|
|
* frame is passed to the iac_check method and the module indicates
|
|
* if the frame should be accepted or rejected. If the policy is
|
|
* set to ACL_POLICY_OPEN then all frames are accepted w/o checking
|
|
* the address. Otherwise, the address is looked up in the database
|
|
* and if found the frame is either accepted (ACL_POLICY_ALLOW)
|
|
* or rejected (ACL_POLICY_DENT).
|
|
*/
|
|
#include <sys/param.h>
|
|
#include <sys/kernel.h>
|
|
#include <sys/systm.h>
|
|
#include <sys/mbuf.h>
|
|
#include <sys/queue.h>
|
|
|
|
#include <sys/socket.h>
|
|
|
|
#include <net/if.h>
|
|
#include <net/if_media.h>
|
|
#include <net/if_ether.h>
|
|
#include <net/route.h>
|
|
|
|
#include <net80211/ieee80211_var.h>
|
|
|
|
enum {
|
|
ACL_POLICY_OPEN = 0, /* open, don't check ACL's */
|
|
ACL_POLICY_ALLOW = 1, /* allow traffic from MAC */
|
|
ACL_POLICY_DENY = 2, /* deny traffic from MAC */
|
|
};
|
|
|
|
#define ACL_HASHSIZE 32
|
|
|
|
struct acl {
|
|
TAILQ_ENTRY(acl) acl_list;
|
|
LIST_ENTRY(acl) acl_hash;
|
|
u_int8_t acl_macaddr[IEEE80211_ADDR_LEN];
|
|
};
|
|
struct aclstate {
|
|
acl_lock_t as_lock;
|
|
int as_policy;
|
|
int as_nacls;
|
|
TAILQ_HEAD(, acl) as_list; /* list of all ACL's */
|
|
LIST_HEAD(, acl) as_hash[ACL_HASHSIZE];
|
|
struct ieee80211com *as_ic;
|
|
};
|
|
|
|
/* simple hash is enough for variation of macaddr */
|
|
#define ACL_HASH(addr) \
|
|
(((const u_int8_t *)(addr))[IEEE80211_ADDR_LEN - 1] % ACL_HASHSIZE)
|
|
|
|
MALLOC_DEFINE(M_80211_ACL, "acl", "802.11 station acl");
|
|
|
|
static int acl_free_all(struct ieee80211com *);
|
|
|
|
static int
|
|
acl_attach(struct ieee80211com *ic)
|
|
{
|
|
struct aclstate *as;
|
|
|
|
MALLOC(as, struct aclstate *, sizeof(struct aclstate),
|
|
M_80211_ACL, M_NOWAIT | M_ZERO);
|
|
if (as == NULL)
|
|
return 0;
|
|
ACL_LOCK_INIT(as, "acl");
|
|
TAILQ_INIT(&as->as_list);
|
|
as->as_policy = ACL_POLICY_OPEN;
|
|
as->as_ic = ic;
|
|
ic->ic_as = as;
|
|
return 1;
|
|
}
|
|
|
|
static void
|
|
acl_detach(struct ieee80211com *ic)
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
|
|
acl_free_all(ic);
|
|
ic->ic_as = NULL;
|
|
ACL_LOCK_DESTROY(as);
|
|
FREE(as, M_DEVBUF);
|
|
}
|
|
|
|
static __inline struct acl *
|
|
_find_acl(struct aclstate *as, const u_int8_t *macaddr)
|
|
{
|
|
struct acl *acl;
|
|
int hash;
|
|
|
|
hash = ACL_HASH(macaddr);
|
|
LIST_FOREACH(acl, &as->as_hash[hash], acl_hash) {
|
|
if (IEEE80211_ADDR_EQ(acl->acl_macaddr, macaddr))
|
|
return acl;
|
|
}
|
|
return NULL;
|
|
}
|
|
|
|
static void
|
|
_acl_free(struct aclstate *as, struct acl *acl)
|
|
{
|
|
ACL_LOCK_ASSERT(as);
|
|
|
|
TAILQ_REMOVE(&as->as_list, acl, acl_list);
|
|
LIST_REMOVE(acl, acl_hash);
|
|
FREE(acl, M_80211_ACL);
|
|
as->as_nacls--;
|
|
}
|
|
|
|
static int
|
|
acl_check(struct ieee80211com *ic, const u_int8_t mac[IEEE80211_ADDR_LEN])
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
|
|
switch (as->as_policy) {
|
|
case ACL_POLICY_OPEN:
|
|
return 1;
|
|
case ACL_POLICY_ALLOW:
|
|
return _find_acl(as, mac) != NULL;
|
|
case ACL_POLICY_DENY:
|
|
return _find_acl(as, mac) == NULL;
|
|
}
|
|
return 0; /* should not happen */
|
|
}
|
|
|
|
static int
|
|
acl_add(struct ieee80211com *ic, const u_int8_t mac[IEEE80211_ADDR_LEN])
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
struct acl *acl, *new;
|
|
int hash;
|
|
|
|
MALLOC(new, struct acl *, sizeof(struct acl), M_80211_ACL, M_NOWAIT | M_ZERO);
|
|
if (new == NULL) {
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL,
|
|
"ACL: add %s failed, no memory\n", ether_sprintf(mac));
|
|
/* XXX statistic */
|
|
return ENOMEM;
|
|
}
|
|
|
|
ACL_LOCK(as);
|
|
hash = ACL_HASH(mac);
|
|
LIST_FOREACH(acl, &as->as_hash[hash], acl_hash) {
|
|
if (IEEE80211_ADDR_EQ(acl->acl_macaddr, mac)) {
|
|
ACL_UNLOCK(as);
|
|
FREE(new, M_80211_ACL);
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL,
|
|
"ACL: add %s failed, already present\n",
|
|
ether_sprintf(mac));
|
|
return EEXIST;
|
|
}
|
|
}
|
|
IEEE80211_ADDR_COPY(new->acl_macaddr, mac);
|
|
TAILQ_INSERT_TAIL(&as->as_list, new, acl_list);
|
|
LIST_INSERT_HEAD(&as->as_hash[hash], new, acl_hash);
|
|
as->as_nacls++;
|
|
ACL_UNLOCK(as);
|
|
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL,
|
|
"ACL: add %s\n", ether_sprintf(mac));
|
|
return 0;
|
|
}
|
|
|
|
static int
|
|
acl_remove(struct ieee80211com *ic, const u_int8_t mac[IEEE80211_ADDR_LEN])
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
struct acl *acl;
|
|
|
|
ACL_LOCK(as);
|
|
acl = _find_acl(as, mac);
|
|
if (acl != NULL)
|
|
_acl_free(as, acl);
|
|
ACL_UNLOCK(as);
|
|
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL,
|
|
"ACL: remove %s%s\n", ether_sprintf(mac),
|
|
acl == NULL ? ", not present" : "");
|
|
|
|
return (acl == NULL ? ENOENT : 0);
|
|
}
|
|
|
|
static int
|
|
acl_free_all(struct ieee80211com *ic)
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
struct acl *acl;
|
|
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL, "ACL: %s\n", "free all");
|
|
|
|
ACL_LOCK(as);
|
|
while ((acl = TAILQ_FIRST(&as->as_list)) != NULL)
|
|
_acl_free(as, acl);
|
|
ACL_UNLOCK(as);
|
|
|
|
return 0;
|
|
}
|
|
|
|
static int
|
|
acl_setpolicy(struct ieee80211com *ic, int policy)
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
|
|
IEEE80211_DPRINTF(ic, IEEE80211_MSG_ACL,
|
|
"ACL: set policy to %u\n", policy);
|
|
|
|
switch (policy) {
|
|
case IEEE80211_MACCMD_POLICY_OPEN:
|
|
as->as_policy = ACL_POLICY_OPEN;
|
|
break;
|
|
case IEEE80211_MACCMD_POLICY_ALLOW:
|
|
as->as_policy = ACL_POLICY_ALLOW;
|
|
break;
|
|
case IEEE80211_MACCMD_POLICY_DENY:
|
|
as->as_policy = ACL_POLICY_DENY;
|
|
break;
|
|
default:
|
|
return EINVAL;
|
|
}
|
|
return 0;
|
|
}
|
|
|
|
static int
|
|
acl_getpolicy(struct ieee80211com *ic)
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
|
|
return as->as_policy;
|
|
}
|
|
|
|
static int
|
|
acl_setioctl(struct ieee80211com *ic, struct ieee80211req *ireq)
|
|
{
|
|
|
|
return EINVAL;
|
|
}
|
|
|
|
static int
|
|
acl_getioctl(struct ieee80211com *ic, struct ieee80211req *ireq)
|
|
{
|
|
struct aclstate *as = ic->ic_as;
|
|
struct acl *acl;
|
|
struct ieee80211req_maclist *ap;
|
|
int error, space, i;
|
|
|
|
switch (ireq->i_val) {
|
|
case IEEE80211_MACCMD_POLICY:
|
|
ireq->i_val = as->as_policy;
|
|
return 0;
|
|
case IEEE80211_MACCMD_LIST:
|
|
space = as->as_nacls * IEEE80211_ADDR_LEN;
|
|
if (ireq->i_len == 0) {
|
|
ireq->i_len = space; /* return required space */
|
|
return 0; /* NB: must not error */
|
|
}
|
|
MALLOC(ap, struct ieee80211req_maclist *, space,
|
|
M_TEMP, M_NOWAIT);
|
|
if (ap == NULL)
|
|
return ENOMEM;
|
|
i = 0;
|
|
ACL_LOCK(as);
|
|
TAILQ_FOREACH(acl, &as->as_list, acl_list) {
|
|
IEEE80211_ADDR_COPY(ap[i].ml_macaddr, acl->acl_macaddr);
|
|
i++;
|
|
}
|
|
ACL_UNLOCK(as);
|
|
if (ireq->i_len >= space) {
|
|
error = copyout(ap, ireq->i_data, space);
|
|
ireq->i_len = space;
|
|
} else
|
|
error = copyout(ap, ireq->i_data, ireq->i_len);
|
|
FREE(ap, M_TEMP);
|
|
return error;
|
|
}
|
|
return EINVAL;
|
|
}
|
|
|
|
static const struct ieee80211_aclator mac = {
|
|
.iac_name = "mac",
|
|
.iac_attach = acl_attach,
|
|
.iac_detach = acl_detach,
|
|
.iac_check = acl_check,
|
|
.iac_add = acl_add,
|
|
.iac_remove = acl_remove,
|
|
.iac_flush = acl_free_all,
|
|
.iac_setpolicy = acl_setpolicy,
|
|
.iac_getpolicy = acl_getpolicy,
|
|
.iac_setioctl = acl_setioctl,
|
|
.iac_getioctl = acl_getioctl,
|
|
};
|