1*86d7f5d3SJohn Marino /* $NetBSD: client.c,v 1.4 2006/09/29 20:06:11 plunky Exp $ */
2*86d7f5d3SJohn Marino /* $DragonFly: src/usr.sbin/bthcid/client.c,v 1.1 2008/01/30 14:10:19 hasso Exp $ */
3*86d7f5d3SJohn Marino
4*86d7f5d3SJohn Marino /*-
5*86d7f5d3SJohn Marino * Copyright (c) 2006 Itronix Inc.
6*86d7f5d3SJohn Marino * All rights reserved.
7*86d7f5d3SJohn Marino *
8*86d7f5d3SJohn Marino * Redistribution and use in source and binary forms, with or without
9*86d7f5d3SJohn Marino * modification, are permitted provided that the following conditions
10*86d7f5d3SJohn Marino * are met:
11*86d7f5d3SJohn Marino * 1. Redistributions of source code must retain the above copyright
12*86d7f5d3SJohn Marino * notice, this list of conditions and the following disclaimer.
13*86d7f5d3SJohn Marino * 2. Redistributions in binary form must reproduce the above copyright
14*86d7f5d3SJohn Marino * notice, this list of conditions and the following disclaimer in the
15*86d7f5d3SJohn Marino * documentation and/or other materials provided with the distribution.
16*86d7f5d3SJohn Marino * 3. The name of Itronix Inc. may not be used to endorse
17*86d7f5d3SJohn Marino * or promote products derived from this software without specific
18*86d7f5d3SJohn Marino * prior written permission.
19*86d7f5d3SJohn Marino *
20*86d7f5d3SJohn Marino * THIS SOFTWARE IS PROVIDED BY ITRONIX INC. ``AS IS'' AND
21*86d7f5d3SJohn Marino * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
22*86d7f5d3SJohn Marino * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
23*86d7f5d3SJohn Marino * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL ITRONIX INC. BE LIABLE FOR ANY
24*86d7f5d3SJohn Marino * DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
25*86d7f5d3SJohn Marino * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
26*86d7f5d3SJohn Marino * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
27*86d7f5d3SJohn Marino * ON ANY THEORY OF LIABILITY, WHETHER IN
28*86d7f5d3SJohn Marino * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29*86d7f5d3SJohn Marino * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
30*86d7f5d3SJohn Marino * POSSIBILITY OF SUCH DAMAGE.
31*86d7f5d3SJohn Marino */
32*86d7f5d3SJohn Marino
33*86d7f5d3SJohn Marino #include <sys/ioctl.h>
34*86d7f5d3SJohn Marino #include <sys/queue.h>
35*86d7f5d3SJohn Marino #include <sys/stat.h>
36*86d7f5d3SJohn Marino #include <sys/types.h>
37*86d7f5d3SJohn Marino #include <sys/event.h>
38*86d7f5d3SJohn Marino #include <sys/time.h>
39*86d7f5d3SJohn Marino #include <sys/un.h>
40*86d7f5d3SJohn Marino #include <bluetooth.h>
41*86d7f5d3SJohn Marino #include <errno.h>
42*86d7f5d3SJohn Marino #include <fcntl.h>
43*86d7f5d3SJohn Marino #include <stdlib.h>
44*86d7f5d3SJohn Marino #include <string.h>
45*86d7f5d3SJohn Marino #include <syslog.h>
46*86d7f5d3SJohn Marino #include <unistd.h>
47*86d7f5d3SJohn Marino
48*86d7f5d3SJohn Marino #include "bthcid.h"
49*86d7f5d3SJohn Marino
50*86d7f5d3SJohn Marino /*
51*86d7f5d3SJohn Marino * A client is anybody who connects to our control socket to
52*86d7f5d3SJohn Marino * receive PIN requests.
53*86d7f5d3SJohn Marino */
54*86d7f5d3SJohn Marino struct client {
55*86d7f5d3SJohn Marino int fd; /* client descriptor */
56*86d7f5d3SJohn Marino LIST_ENTRY(client) next;
57*86d7f5d3SJohn Marino };
58*86d7f5d3SJohn Marino
59*86d7f5d3SJohn Marino /*
60*86d7f5d3SJohn Marino * PIN cache items are made when we have sent a client pin
61*86d7f5d3SJohn Marino * request. The event is used to expire the item.
62*86d7f5d3SJohn Marino */
63*86d7f5d3SJohn Marino struct item {
64*86d7f5d3SJohn Marino bdaddr_t laddr; /* local device BDADDR */
65*86d7f5d3SJohn Marino bdaddr_t raddr; /* remote device BDADDR */
66*86d7f5d3SJohn Marino uint8_t pin[HCI_PIN_SIZE]; /* PIN */
67*86d7f5d3SJohn Marino int hci; /* HCI socket */
68*86d7f5d3SJohn Marino LIST_ENTRY(item) next;
69*86d7f5d3SJohn Marino };
70*86d7f5d3SJohn Marino
71*86d7f5d3SJohn Marino static LIST_HEAD(,client) client_list;
72*86d7f5d3SJohn Marino static LIST_HEAD(,item) item_list;
73*86d7f5d3SJohn Marino
74*86d7f5d3SJohn Marino #define PIN_REQUEST_TIMEOUT 30 /* Request is valid */
75*86d7f5d3SJohn Marino #define PIN_TIMEOUT 300 /* PIN is valid */
76*86d7f5d3SJohn Marino
77*86d7f5d3SJohn Marino int
init_control(const char * name,mode_t mode)78*86d7f5d3SJohn Marino init_control(const char *name, mode_t mode)
79*86d7f5d3SJohn Marino {
80*86d7f5d3SJohn Marino struct sockaddr_un un;
81*86d7f5d3SJohn Marino struct kevent change;
82*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
83*86d7f5d3SJohn Marino int ctl;
84*86d7f5d3SJohn Marino
85*86d7f5d3SJohn Marino LIST_INIT(&client_list);
86*86d7f5d3SJohn Marino LIST_INIT(&item_list);
87*86d7f5d3SJohn Marino
88*86d7f5d3SJohn Marino if (name == NULL)
89*86d7f5d3SJohn Marino return 0;
90*86d7f5d3SJohn Marino
91*86d7f5d3SJohn Marino if (unlink(name) < 0 && errno != ENOENT)
92*86d7f5d3SJohn Marino return -1;
93*86d7f5d3SJohn Marino
94*86d7f5d3SJohn Marino ctl = socket(PF_LOCAL, SOCK_STREAM, 0);
95*86d7f5d3SJohn Marino if (ctl < 0)
96*86d7f5d3SJohn Marino return -1;
97*86d7f5d3SJohn Marino
98*86d7f5d3SJohn Marino memset(&un, 0, sizeof(un));
99*86d7f5d3SJohn Marino un.sun_len = sizeof(un);
100*86d7f5d3SJohn Marino un.sun_family = AF_LOCAL;
101*86d7f5d3SJohn Marino strlcpy(un.sun_path, name, sizeof(un.sun_path));
102*86d7f5d3SJohn Marino if (bind(ctl, (struct sockaddr *)&un, sizeof(un)) < 0) {
103*86d7f5d3SJohn Marino close(ctl);
104*86d7f5d3SJohn Marino return -1;
105*86d7f5d3SJohn Marino }
106*86d7f5d3SJohn Marino
107*86d7f5d3SJohn Marino if (chmod(name, mode) < 0) {
108*86d7f5d3SJohn Marino close(ctl);
109*86d7f5d3SJohn Marino unlink(name);
110*86d7f5d3SJohn Marino return -1;
111*86d7f5d3SJohn Marino }
112*86d7f5d3SJohn Marino
113*86d7f5d3SJohn Marino if (listen(ctl, 10) < 0) {
114*86d7f5d3SJohn Marino close(ctl);
115*86d7f5d3SJohn Marino unlink(name);
116*86d7f5d3SJohn Marino return -1;
117*86d7f5d3SJohn Marino }
118*86d7f5d3SJohn Marino
119*86d7f5d3SJohn Marino EV_SET(&change, ctl, EVFILT_READ, EV_ADD, 0, 0, NULL);
120*86d7f5d3SJohn Marino if (kevent(hci_kq, &change, 1, NULL, 0, &timeout) == -1) {
121*86d7f5d3SJohn Marino close(ctl);
122*86d7f5d3SJohn Marino unlink(name);
123*86d7f5d3SJohn Marino return -1;
124*86d7f5d3SJohn Marino }
125*86d7f5d3SJohn Marino
126*86d7f5d3SJohn Marino return ctl;
127*86d7f5d3SJohn Marino }
128*86d7f5d3SJohn Marino
129*86d7f5d3SJohn Marino /* Process control socket event */
130*86d7f5d3SJohn Marino void
process_control(int sock)131*86d7f5d3SJohn Marino process_control(int sock)
132*86d7f5d3SJohn Marino {
133*86d7f5d3SJohn Marino struct sockaddr_un un;
134*86d7f5d3SJohn Marino socklen_t n;
135*86d7f5d3SJohn Marino struct kevent change;
136*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
137*86d7f5d3SJohn Marino int fd;
138*86d7f5d3SJohn Marino struct client *cl;
139*86d7f5d3SJohn Marino
140*86d7f5d3SJohn Marino n = sizeof(un);
141*86d7f5d3SJohn Marino fd = accept(sock, (struct sockaddr *)&un, &n);
142*86d7f5d3SJohn Marino if (fd < 0) {
143*86d7f5d3SJohn Marino syslog(LOG_ERR, "Could not accept PIN client connection");
144*86d7f5d3SJohn Marino return;
145*86d7f5d3SJohn Marino }
146*86d7f5d3SJohn Marino
147*86d7f5d3SJohn Marino n = 1;
148*86d7f5d3SJohn Marino if (ioctl(fd, FIONBIO, &n) < 0) {
149*86d7f5d3SJohn Marino syslog(LOG_ERR, "Could not set non blocking IO for client");
150*86d7f5d3SJohn Marino close(fd);
151*86d7f5d3SJohn Marino return;
152*86d7f5d3SJohn Marino }
153*86d7f5d3SJohn Marino
154*86d7f5d3SJohn Marino cl = malloc(sizeof(struct client));
155*86d7f5d3SJohn Marino if (cl == NULL) {
156*86d7f5d3SJohn Marino syslog(LOG_ERR, "Could not malloc client");
157*86d7f5d3SJohn Marino close(fd);
158*86d7f5d3SJohn Marino return;
159*86d7f5d3SJohn Marino }
160*86d7f5d3SJohn Marino
161*86d7f5d3SJohn Marino memset(cl, 0, sizeof(struct client));
162*86d7f5d3SJohn Marino cl->fd = fd;
163*86d7f5d3SJohn Marino
164*86d7f5d3SJohn Marino EV_SET(&change, cl->fd, EVFILT_READ, EV_ADD, 0, 0, cl);
165*86d7f5d3SJohn Marino if (kevent(hci_kq, &change, 1, NULL, 0, &timeout) == -1) {
166*86d7f5d3SJohn Marino syslog(LOG_ERR, "Could not add client event");
167*86d7f5d3SJohn Marino free(cl);
168*86d7f5d3SJohn Marino close(fd);
169*86d7f5d3SJohn Marino return;
170*86d7f5d3SJohn Marino }
171*86d7f5d3SJohn Marino
172*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "New Client");
173*86d7f5d3SJohn Marino LIST_INSERT_HEAD(&client_list, cl, next);
174*86d7f5d3SJohn Marino }
175*86d7f5d3SJohn Marino
176*86d7f5d3SJohn Marino /* Process client response packet */
177*86d7f5d3SJohn Marino void
process_client(int sock,void * arg)178*86d7f5d3SJohn Marino process_client(int sock, void *arg)
179*86d7f5d3SJohn Marino {
180*86d7f5d3SJohn Marino bthcid_pin_response_t rp;
181*86d7f5d3SJohn Marino struct sockaddr_bt sa;
182*86d7f5d3SJohn Marino struct client *cl = arg;
183*86d7f5d3SJohn Marino struct item *item;
184*86d7f5d3SJohn Marino struct kevent change;
185*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
186*86d7f5d3SJohn Marino int n;
187*86d7f5d3SJohn Marino
188*86d7f5d3SJohn Marino n = recv(sock, &rp, sizeof(rp), 0);
189*86d7f5d3SJohn Marino if (n != sizeof(rp)) {
190*86d7f5d3SJohn Marino if (n != 0)
191*86d7f5d3SJohn Marino syslog(LOG_ERR, "Bad Client");
192*86d7f5d3SJohn Marino
193*86d7f5d3SJohn Marino close(sock);
194*86d7f5d3SJohn Marino LIST_REMOVE(cl, next);
195*86d7f5d3SJohn Marino free(cl);
196*86d7f5d3SJohn Marino
197*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "Client Closed");
198*86d7f5d3SJohn Marino return;
199*86d7f5d3SJohn Marino }
200*86d7f5d3SJohn Marino
201*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "Received PIN for %s", bt_ntoa(&rp.raddr, NULL));
202*86d7f5d3SJohn Marino
203*86d7f5d3SJohn Marino LIST_FOREACH(item, &item_list, next) {
204*86d7f5d3SJohn Marino if (bdaddr_same(&rp.laddr, &item->laddr) == 0
205*86d7f5d3SJohn Marino || bdaddr_same(&rp.raddr, &item->raddr) == 0)
206*86d7f5d3SJohn Marino continue;
207*86d7f5d3SJohn Marino
208*86d7f5d3SJohn Marino EV_SET(&change, sock, EVFILT_TIMER, EV_DELETE, 0, 0, NULL);
209*86d7f5d3SJohn Marino kevent(hci_kq, &change, 1, NULL, 0, &timeout);
210*86d7f5d3SJohn Marino if (item->hci != -1) {
211*86d7f5d3SJohn Marino memset(&sa, 0, sizeof(sa));
212*86d7f5d3SJohn Marino sa.bt_len = sizeof(sa);
213*86d7f5d3SJohn Marino sa.bt_family = AF_BLUETOOTH;
214*86d7f5d3SJohn Marino bdaddr_copy(&sa.bt_bdaddr, &item->laddr);
215*86d7f5d3SJohn Marino
216*86d7f5d3SJohn Marino send_pin_code_reply(item->hci, &sa, &item->raddr, rp.pin);
217*86d7f5d3SJohn Marino LIST_REMOVE(item, next);
218*86d7f5d3SJohn Marino free(item);
219*86d7f5d3SJohn Marino return;
220*86d7f5d3SJohn Marino }
221*86d7f5d3SJohn Marino goto newpin;
222*86d7f5d3SJohn Marino }
223*86d7f5d3SJohn Marino
224*86d7f5d3SJohn Marino item = malloc(sizeof(struct item));
225*86d7f5d3SJohn Marino if (item == NULL) {
226*86d7f5d3SJohn Marino syslog(LOG_ERR, "Item allocation failed");
227*86d7f5d3SJohn Marino return;
228*86d7f5d3SJohn Marino }
229*86d7f5d3SJohn Marino
230*86d7f5d3SJohn Marino memset(item, 0, sizeof(struct item));
231*86d7f5d3SJohn Marino bdaddr_copy(&item->laddr, &rp.laddr);
232*86d7f5d3SJohn Marino bdaddr_copy(&item->raddr, &rp.raddr);
233*86d7f5d3SJohn Marino LIST_INSERT_HEAD(&item_list, item, next);
234*86d7f5d3SJohn Marino
235*86d7f5d3SJohn Marino newpin:
236*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "Caching PIN for %s", bt_ntoa(&rp.raddr, NULL));
237*86d7f5d3SJohn Marino
238*86d7f5d3SJohn Marino memcpy(item->pin, rp.pin, HCI_PIN_SIZE);
239*86d7f5d3SJohn Marino item->hci = -1;
240*86d7f5d3SJohn Marino
241*86d7f5d3SJohn Marino EV_SET(&change, sock, EVFILT_TIMER, EV_ADD, 0, PIN_TIMEOUT * 1000, NULL);
242*86d7f5d3SJohn Marino if (kevent(hci_kq, &change, 1, NULL, 0, &timeout) == -1) {
243*86d7f5d3SJohn Marino syslog(LOG_ERR, "Cannot add event timer for item");
244*86d7f5d3SJohn Marino LIST_REMOVE(item, next);
245*86d7f5d3SJohn Marino free(item);
246*86d7f5d3SJohn Marino }
247*86d7f5d3SJohn Marino }
248*86d7f5d3SJohn Marino
249*86d7f5d3SJohn Marino /* Send PIN request to client */
250*86d7f5d3SJohn Marino int
send_client_request(bdaddr_t * laddr,bdaddr_t * raddr,int hci)251*86d7f5d3SJohn Marino send_client_request(bdaddr_t *laddr, bdaddr_t *raddr, int hci)
252*86d7f5d3SJohn Marino {
253*86d7f5d3SJohn Marino bthcid_pin_request_t cp;
254*86d7f5d3SJohn Marino struct client *cl;
255*86d7f5d3SJohn Marino struct item *item;
256*86d7f5d3SJohn Marino struct kevent change;
257*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
258*86d7f5d3SJohn Marino int n = 0;
259*86d7f5d3SJohn Marino
260*86d7f5d3SJohn Marino memset(&cp, 0, sizeof(cp));
261*86d7f5d3SJohn Marino bdaddr_copy(&cp.laddr, laddr);
262*86d7f5d3SJohn Marino bdaddr_copy(&cp.raddr, raddr);
263*86d7f5d3SJohn Marino cp.time = PIN_REQUEST_TIMEOUT;
264*86d7f5d3SJohn Marino
265*86d7f5d3SJohn Marino LIST_FOREACH(cl, &client_list, next) {
266*86d7f5d3SJohn Marino if (send(cl->fd, &cp, sizeof(cp), 0) != sizeof(cp))
267*86d7f5d3SJohn Marino syslog(LOG_ERR, "send PIN request failed");
268*86d7f5d3SJohn Marino else
269*86d7f5d3SJohn Marino n++;
270*86d7f5d3SJohn Marino }
271*86d7f5d3SJohn Marino
272*86d7f5d3SJohn Marino if (n == 0)
273*86d7f5d3SJohn Marino return 0;
274*86d7f5d3SJohn Marino
275*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "Sent PIN requests to %d client%s.",
276*86d7f5d3SJohn Marino n, (n == 1 ? "" : "s"));
277*86d7f5d3SJohn Marino
278*86d7f5d3SJohn Marino item = malloc(sizeof(struct item));
279*86d7f5d3SJohn Marino if (item == NULL) {
280*86d7f5d3SJohn Marino syslog(LOG_ERR, "Cannot allocate PIN request item");
281*86d7f5d3SJohn Marino return 0;
282*86d7f5d3SJohn Marino }
283*86d7f5d3SJohn Marino
284*86d7f5d3SJohn Marino memset(item, 0, sizeof(struct item));
285*86d7f5d3SJohn Marino bdaddr_copy(&item->laddr, laddr);
286*86d7f5d3SJohn Marino bdaddr_copy(&item->raddr, raddr);
287*86d7f5d3SJohn Marino item->hci = hci;
288*86d7f5d3SJohn Marino EV_SET(&change, item->hci, EVFILT_TIMER, EV_ADD, 0, cp.time * 1000, item);
289*86d7f5d3SJohn Marino if (kevent(hci_kq, &change, 1, NULL, 0, &timeout) == -1) {
290*86d7f5d3SJohn Marino syslog(LOG_ERR, "Cannot add request timer");
291*86d7f5d3SJohn Marino free(item);
292*86d7f5d3SJohn Marino return 0;
293*86d7f5d3SJohn Marino }
294*86d7f5d3SJohn Marino
295*86d7f5d3SJohn Marino LIST_INSERT_HEAD(&item_list, item, next);
296*86d7f5d3SJohn Marino return 1;
297*86d7f5d3SJohn Marino }
298*86d7f5d3SJohn Marino
299*86d7f5d3SJohn Marino /* Process item event (by expiring it) */
300*86d7f5d3SJohn Marino void
process_item(void * arg)301*86d7f5d3SJohn Marino process_item(void *arg)
302*86d7f5d3SJohn Marino {
303*86d7f5d3SJohn Marino struct item *item = arg;
304*86d7f5d3SJohn Marino struct kevent change;
305*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
306*86d7f5d3SJohn Marino
307*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "PIN for %s expired", bt_ntoa(&item->raddr, NULL));
308*86d7f5d3SJohn Marino LIST_REMOVE(item, next);
309*86d7f5d3SJohn Marino EV_SET(&change, item->hci, EVFILT_TIMER, EV_DELETE, 0, 0, 0);
310*86d7f5d3SJohn Marino kevent(hci_kq, &change, 1, NULL, 0, &timeout);
311*86d7f5d3SJohn Marino free(item);
312*86d7f5d3SJohn Marino }
313*86d7f5d3SJohn Marino
314*86d7f5d3SJohn Marino /* lookup PIN in item cache */
315*86d7f5d3SJohn Marino uint8_t *
lookup_pin(bdaddr_t * laddr,bdaddr_t * raddr)316*86d7f5d3SJohn Marino lookup_pin(bdaddr_t *laddr, bdaddr_t *raddr)
317*86d7f5d3SJohn Marino {
318*86d7f5d3SJohn Marino static uint8_t pin[HCI_PIN_SIZE];
319*86d7f5d3SJohn Marino struct item *item;
320*86d7f5d3SJohn Marino struct kevent change;
321*86d7f5d3SJohn Marino struct timespec timeout = { 0, 0 };
322*86d7f5d3SJohn Marino
323*86d7f5d3SJohn Marino LIST_FOREACH(item, &item_list, next) {
324*86d7f5d3SJohn Marino if (bdaddr_same(raddr, &item->raddr) == 0)
325*86d7f5d3SJohn Marino continue;
326*86d7f5d3SJohn Marino
327*86d7f5d3SJohn Marino if (bdaddr_same(laddr, &item->laddr) == 0
328*86d7f5d3SJohn Marino && bdaddr_any(&item->laddr) == 0)
329*86d7f5d3SJohn Marino continue;
330*86d7f5d3SJohn Marino
331*86d7f5d3SJohn Marino if (item->hci >= 0)
332*86d7f5d3SJohn Marino break;
333*86d7f5d3SJohn Marino
334*86d7f5d3SJohn Marino syslog(LOG_DEBUG, "Matched PIN from cache");
335*86d7f5d3SJohn Marino memcpy(pin, item->pin, sizeof(pin));
336*86d7f5d3SJohn Marino
337*86d7f5d3SJohn Marino LIST_REMOVE(item, next);
338*86d7f5d3SJohn Marino EV_SET(&change, item->hci, EVFILT_TIMER, EV_DELETE, 0, 0, 0);
339*86d7f5d3SJohn Marino kevent(hci_kq, &change, 1, NULL, 0, &timeout);
340*86d7f5d3SJohn Marino free(item);
341*86d7f5d3SJohn Marino
342*86d7f5d3SJohn Marino return pin;
343*86d7f5d3SJohn Marino }
344*86d7f5d3SJohn Marino
345*86d7f5d3SJohn Marino return NULL;
346*86d7f5d3SJohn Marino }
347