16d49e1aeSJan Lentfer /*
26d49e1aeSJan Lentfer * WPA Supplicant - privilege separated driver interface
36d49e1aeSJan Lentfer * Copyright (c) 2007-2009, Jouni Malinen <j@w1.fi>
46d49e1aeSJan Lentfer *
53ff40c12SJohn Marino * This software may be distributed under the terms of the BSD license.
63ff40c12SJohn Marino * See README for more details.
76d49e1aeSJan Lentfer */
86d49e1aeSJan Lentfer
96d49e1aeSJan Lentfer #include "includes.h"
106d49e1aeSJan Lentfer #include <sys/un.h>
116d49e1aeSJan Lentfer
126d49e1aeSJan Lentfer #include "common.h"
136d49e1aeSJan Lentfer #include "driver.h"
146d49e1aeSJan Lentfer #include "eloop.h"
153ff40c12SJohn Marino #include "common/privsep_commands.h"
166d49e1aeSJan Lentfer
176d49e1aeSJan Lentfer
186d49e1aeSJan Lentfer struct wpa_driver_privsep_data {
196d49e1aeSJan Lentfer void *ctx;
206d49e1aeSJan Lentfer u8 own_addr[ETH_ALEN];
216d49e1aeSJan Lentfer int priv_socket;
226d49e1aeSJan Lentfer char *own_socket_path;
236d49e1aeSJan Lentfer int cmd_socket;
246d49e1aeSJan Lentfer char *own_cmd_path;
256d49e1aeSJan Lentfer struct sockaddr_un priv_addr;
266d49e1aeSJan Lentfer char ifname[16];
276d49e1aeSJan Lentfer };
286d49e1aeSJan Lentfer
296d49e1aeSJan Lentfer
wpa_priv_reg_cmd(struct wpa_driver_privsep_data * drv,int cmd)306d49e1aeSJan Lentfer static int wpa_priv_reg_cmd(struct wpa_driver_privsep_data *drv, int cmd)
316d49e1aeSJan Lentfer {
326d49e1aeSJan Lentfer int res;
336d49e1aeSJan Lentfer
346d49e1aeSJan Lentfer res = sendto(drv->priv_socket, &cmd, sizeof(cmd), 0,
356d49e1aeSJan Lentfer (struct sockaddr *) &drv->priv_addr,
366d49e1aeSJan Lentfer sizeof(drv->priv_addr));
376d49e1aeSJan Lentfer if (res < 0)
38*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "sendto: %s", strerror(errno));
396d49e1aeSJan Lentfer return res < 0 ? -1 : 0;
406d49e1aeSJan Lentfer }
416d49e1aeSJan Lentfer
426d49e1aeSJan Lentfer
wpa_priv_cmd(struct wpa_driver_privsep_data * drv,int cmd,const void * data,size_t data_len,void * reply,size_t * reply_len)436d49e1aeSJan Lentfer static int wpa_priv_cmd(struct wpa_driver_privsep_data *drv, int cmd,
446d49e1aeSJan Lentfer const void *data, size_t data_len,
456d49e1aeSJan Lentfer void *reply, size_t *reply_len)
466d49e1aeSJan Lentfer {
476d49e1aeSJan Lentfer struct msghdr msg;
486d49e1aeSJan Lentfer struct iovec io[2];
496d49e1aeSJan Lentfer
506d49e1aeSJan Lentfer io[0].iov_base = &cmd;
516d49e1aeSJan Lentfer io[0].iov_len = sizeof(cmd);
526d49e1aeSJan Lentfer io[1].iov_base = (u8 *) data;
536d49e1aeSJan Lentfer io[1].iov_len = data_len;
546d49e1aeSJan Lentfer
556d49e1aeSJan Lentfer os_memset(&msg, 0, sizeof(msg));
566d49e1aeSJan Lentfer msg.msg_iov = io;
576d49e1aeSJan Lentfer msg.msg_iovlen = data ? 2 : 1;
586d49e1aeSJan Lentfer msg.msg_name = &drv->priv_addr;
596d49e1aeSJan Lentfer msg.msg_namelen = sizeof(drv->priv_addr);
606d49e1aeSJan Lentfer
616d49e1aeSJan Lentfer if (sendmsg(drv->cmd_socket, &msg, 0) < 0) {
62*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "sendmsg(cmd_socket): %s",
63*a1157835SDaniel Fojt strerror(errno));
646d49e1aeSJan Lentfer return -1;
656d49e1aeSJan Lentfer }
666d49e1aeSJan Lentfer
676d49e1aeSJan Lentfer if (reply) {
686d49e1aeSJan Lentfer fd_set rfds;
696d49e1aeSJan Lentfer struct timeval tv;
706d49e1aeSJan Lentfer int res;
716d49e1aeSJan Lentfer
726d49e1aeSJan Lentfer FD_ZERO(&rfds);
736d49e1aeSJan Lentfer FD_SET(drv->cmd_socket, &rfds);
746d49e1aeSJan Lentfer tv.tv_sec = 5;
756d49e1aeSJan Lentfer tv.tv_usec = 0;
766d49e1aeSJan Lentfer res = select(drv->cmd_socket + 1, &rfds, NULL, NULL, &tv);
776d49e1aeSJan Lentfer if (res < 0 && errno != EINTR) {
78*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "select: %s", strerror(errno));
796d49e1aeSJan Lentfer return -1;
806d49e1aeSJan Lentfer }
816d49e1aeSJan Lentfer
826d49e1aeSJan Lentfer if (FD_ISSET(drv->cmd_socket, &rfds)) {
836d49e1aeSJan Lentfer res = recv(drv->cmd_socket, reply, *reply_len, 0);
846d49e1aeSJan Lentfer if (res < 0) {
85*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "recv: %s",
86*a1157835SDaniel Fojt strerror(errno));
876d49e1aeSJan Lentfer return -1;
886d49e1aeSJan Lentfer }
896d49e1aeSJan Lentfer *reply_len = res;
906d49e1aeSJan Lentfer } else {
916d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "PRIVSEP: Timeout while waiting "
926d49e1aeSJan Lentfer "for reply (cmd=%d)", cmd);
936d49e1aeSJan Lentfer return -1;
946d49e1aeSJan Lentfer }
956d49e1aeSJan Lentfer }
966d49e1aeSJan Lentfer
976d49e1aeSJan Lentfer return 0;
986d49e1aeSJan Lentfer }
996d49e1aeSJan Lentfer
1006d49e1aeSJan Lentfer
wpa_driver_privsep_scan(void * priv,struct wpa_driver_scan_params * params)1013ff40c12SJohn Marino static int wpa_driver_privsep_scan(void *priv,
1023ff40c12SJohn Marino struct wpa_driver_scan_params *params)
1036d49e1aeSJan Lentfer {
1046d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
105*a1157835SDaniel Fojt struct privsep_cmd_scan scan;
106*a1157835SDaniel Fojt size_t i;
107*a1157835SDaniel Fojt
1086d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s: priv=%p", __func__, priv);
109*a1157835SDaniel Fojt os_memset(&scan, 0, sizeof(scan));
110*a1157835SDaniel Fojt scan.num_ssids = params->num_ssids;
111*a1157835SDaniel Fojt for (i = 0; i < params->num_ssids; i++) {
112*a1157835SDaniel Fojt if (!params->ssids[i].ssid)
113*a1157835SDaniel Fojt continue;
114*a1157835SDaniel Fojt scan.ssid_lens[i] = params->ssids[i].ssid_len;
115*a1157835SDaniel Fojt os_memcpy(scan.ssids[i], params->ssids[i].ssid,
116*a1157835SDaniel Fojt scan.ssid_lens[i]);
117*a1157835SDaniel Fojt }
118*a1157835SDaniel Fojt
119*a1157835SDaniel Fojt for (i = 0; i < PRIVSEP_MAX_SCAN_FREQS &&
120*a1157835SDaniel Fojt params->freqs && params->freqs[i]; i++)
121*a1157835SDaniel Fojt scan.freqs[i] = params->freqs[i];
122*a1157835SDaniel Fojt scan.num_freqs = i;
123*a1157835SDaniel Fojt
124*a1157835SDaniel Fojt return wpa_priv_cmd(drv, PRIVSEP_CMD_SCAN, &scan, sizeof(scan),
1256d49e1aeSJan Lentfer NULL, NULL);
1266d49e1aeSJan Lentfer }
1276d49e1aeSJan Lentfer
1286d49e1aeSJan Lentfer
1296d49e1aeSJan Lentfer static struct wpa_scan_results *
wpa_driver_privsep_get_scan_results2(void * priv)1306d49e1aeSJan Lentfer wpa_driver_privsep_get_scan_results2(void *priv)
1316d49e1aeSJan Lentfer {
1326d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
1336d49e1aeSJan Lentfer int res, num;
1346d49e1aeSJan Lentfer u8 *buf, *pos, *end;
1356d49e1aeSJan Lentfer size_t reply_len = 60000;
1366d49e1aeSJan Lentfer struct wpa_scan_results *results;
1376d49e1aeSJan Lentfer struct wpa_scan_res *r;
1386d49e1aeSJan Lentfer
1396d49e1aeSJan Lentfer buf = os_malloc(reply_len);
1406d49e1aeSJan Lentfer if (buf == NULL)
1416d49e1aeSJan Lentfer return NULL;
1426d49e1aeSJan Lentfer res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_SCAN_RESULTS,
1436d49e1aeSJan Lentfer NULL, 0, buf, &reply_len);
1446d49e1aeSJan Lentfer if (res < 0) {
1456d49e1aeSJan Lentfer os_free(buf);
1466d49e1aeSJan Lentfer return NULL;
1476d49e1aeSJan Lentfer }
1486d49e1aeSJan Lentfer
1496d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "privsep: Received %lu bytes of scan results",
1506d49e1aeSJan Lentfer (unsigned long) reply_len);
1516d49e1aeSJan Lentfer if (reply_len < sizeof(int)) {
1526d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "privsep: Invalid scan result len %lu",
1536d49e1aeSJan Lentfer (unsigned long) reply_len);
1546d49e1aeSJan Lentfer os_free(buf);
1556d49e1aeSJan Lentfer return NULL;
1566d49e1aeSJan Lentfer }
1576d49e1aeSJan Lentfer
1586d49e1aeSJan Lentfer pos = buf;
1596d49e1aeSJan Lentfer end = buf + reply_len;
1606d49e1aeSJan Lentfer os_memcpy(&num, pos, sizeof(int));
1616d49e1aeSJan Lentfer if (num < 0 || num > 1000) {
1626d49e1aeSJan Lentfer os_free(buf);
1636d49e1aeSJan Lentfer return NULL;
1646d49e1aeSJan Lentfer }
1656d49e1aeSJan Lentfer pos += sizeof(int);
1666d49e1aeSJan Lentfer
1676d49e1aeSJan Lentfer results = os_zalloc(sizeof(*results));
1686d49e1aeSJan Lentfer if (results == NULL) {
1696d49e1aeSJan Lentfer os_free(buf);
1706d49e1aeSJan Lentfer return NULL;
1716d49e1aeSJan Lentfer }
1726d49e1aeSJan Lentfer
1733ff40c12SJohn Marino results->res = os_calloc(num, sizeof(struct wpa_scan_res *));
1746d49e1aeSJan Lentfer if (results->res == NULL) {
1756d49e1aeSJan Lentfer os_free(results);
1766d49e1aeSJan Lentfer os_free(buf);
1776d49e1aeSJan Lentfer return NULL;
1786d49e1aeSJan Lentfer }
1796d49e1aeSJan Lentfer
180*a1157835SDaniel Fojt while (results->num < (size_t) num && end - pos > (int) sizeof(int)) {
1816d49e1aeSJan Lentfer int len;
1826d49e1aeSJan Lentfer os_memcpy(&len, pos, sizeof(int));
1836d49e1aeSJan Lentfer pos += sizeof(int);
184*a1157835SDaniel Fojt if (len < 0 || len > 10000 || len > end - pos)
1856d49e1aeSJan Lentfer break;
1866d49e1aeSJan Lentfer
187*a1157835SDaniel Fojt r = os_memdup(pos, len);
1886d49e1aeSJan Lentfer if (r == NULL)
1896d49e1aeSJan Lentfer break;
1906d49e1aeSJan Lentfer pos += len;
191*a1157835SDaniel Fojt if (sizeof(*r) + r->ie_len + r->beacon_ie_len > (size_t) len) {
192*a1157835SDaniel Fojt wpa_printf(MSG_ERROR,
193*a1157835SDaniel Fojt "privsep: Invalid scan result len (%d + %d + %d > %d)",
194*a1157835SDaniel Fojt (int) sizeof(*r), (int) r->ie_len,
195*a1157835SDaniel Fojt (int) r->beacon_ie_len, len);
1966d49e1aeSJan Lentfer os_free(r);
1976d49e1aeSJan Lentfer break;
1986d49e1aeSJan Lentfer }
1996d49e1aeSJan Lentfer
2006d49e1aeSJan Lentfer results->res[results->num++] = r;
2016d49e1aeSJan Lentfer }
2026d49e1aeSJan Lentfer
2036d49e1aeSJan Lentfer os_free(buf);
2046d49e1aeSJan Lentfer return results;
2056d49e1aeSJan Lentfer }
2066d49e1aeSJan Lentfer
2076d49e1aeSJan Lentfer
wpa_driver_privsep_set_key(const char * ifname,void * priv,enum wpa_alg alg,const u8 * addr,int key_idx,int set_tx,const u8 * seq,size_t seq_len,const u8 * key,size_t key_len)2083ff40c12SJohn Marino static int wpa_driver_privsep_set_key(const char *ifname, void *priv,
2093ff40c12SJohn Marino enum wpa_alg alg, const u8 *addr,
2106d49e1aeSJan Lentfer int key_idx, int set_tx,
2116d49e1aeSJan Lentfer const u8 *seq, size_t seq_len,
2126d49e1aeSJan Lentfer const u8 *key, size_t key_len)
2136d49e1aeSJan Lentfer {
2146d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
2156d49e1aeSJan Lentfer struct privsep_cmd_set_key cmd;
2166d49e1aeSJan Lentfer
2176d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s: priv=%p alg=%d key_idx=%d set_tx=%d",
2186d49e1aeSJan Lentfer __func__, priv, alg, key_idx, set_tx);
2196d49e1aeSJan Lentfer
2206d49e1aeSJan Lentfer os_memset(&cmd, 0, sizeof(cmd));
2216d49e1aeSJan Lentfer cmd.alg = alg;
2226d49e1aeSJan Lentfer if (addr)
2236d49e1aeSJan Lentfer os_memcpy(cmd.addr, addr, ETH_ALEN);
2246d49e1aeSJan Lentfer else
2256d49e1aeSJan Lentfer os_memset(cmd.addr, 0xff, ETH_ALEN);
2266d49e1aeSJan Lentfer cmd.key_idx = key_idx;
2276d49e1aeSJan Lentfer cmd.set_tx = set_tx;
2286d49e1aeSJan Lentfer if (seq && seq_len > 0 && seq_len < sizeof(cmd.seq)) {
2296d49e1aeSJan Lentfer os_memcpy(cmd.seq, seq, seq_len);
2306d49e1aeSJan Lentfer cmd.seq_len = seq_len;
2316d49e1aeSJan Lentfer }
2326d49e1aeSJan Lentfer if (key && key_len > 0 && key_len < sizeof(cmd.key)) {
2336d49e1aeSJan Lentfer os_memcpy(cmd.key, key, key_len);
2346d49e1aeSJan Lentfer cmd.key_len = key_len;
2356d49e1aeSJan Lentfer }
2366d49e1aeSJan Lentfer
2376d49e1aeSJan Lentfer return wpa_priv_cmd(drv, PRIVSEP_CMD_SET_KEY, &cmd, sizeof(cmd),
2386d49e1aeSJan Lentfer NULL, NULL);
2396d49e1aeSJan Lentfer }
2406d49e1aeSJan Lentfer
2416d49e1aeSJan Lentfer
wpa_driver_privsep_authenticate(void * priv,struct wpa_driver_auth_params * params)242*a1157835SDaniel Fojt static int wpa_driver_privsep_authenticate(
243*a1157835SDaniel Fojt void *priv, struct wpa_driver_auth_params *params)
244*a1157835SDaniel Fojt {
245*a1157835SDaniel Fojt struct wpa_driver_privsep_data *drv = priv;
246*a1157835SDaniel Fojt struct privsep_cmd_authenticate *data;
247*a1157835SDaniel Fojt int i, res;
248*a1157835SDaniel Fojt size_t buflen;
249*a1157835SDaniel Fojt u8 *pos;
250*a1157835SDaniel Fojt
251*a1157835SDaniel Fojt wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d bssid=" MACSTR
252*a1157835SDaniel Fojt " auth_alg=%d local_state_change=%d p2p=%d",
253*a1157835SDaniel Fojt __func__, priv, params->freq, MAC2STR(params->bssid),
254*a1157835SDaniel Fojt params->auth_alg, params->local_state_change, params->p2p);
255*a1157835SDaniel Fojt
256*a1157835SDaniel Fojt buflen = sizeof(*data) + params->ie_len + params->auth_data_len;
257*a1157835SDaniel Fojt data = os_zalloc(buflen);
258*a1157835SDaniel Fojt if (data == NULL)
259*a1157835SDaniel Fojt return -1;
260*a1157835SDaniel Fojt
261*a1157835SDaniel Fojt data->freq = params->freq;
262*a1157835SDaniel Fojt os_memcpy(data->bssid, params->bssid, ETH_ALEN);
263*a1157835SDaniel Fojt os_memcpy(data->ssid, params->ssid, params->ssid_len);
264*a1157835SDaniel Fojt data->ssid_len = params->ssid_len;
265*a1157835SDaniel Fojt data->auth_alg = params->auth_alg;
266*a1157835SDaniel Fojt data->ie_len = params->ie_len;
267*a1157835SDaniel Fojt for (i = 0; i < 4; i++) {
268*a1157835SDaniel Fojt if (params->wep_key[i])
269*a1157835SDaniel Fojt os_memcpy(data->wep_key[i], params->wep_key[i],
270*a1157835SDaniel Fojt params->wep_key_len[i]);
271*a1157835SDaniel Fojt data->wep_key_len[i] = params->wep_key_len[i];
272*a1157835SDaniel Fojt }
273*a1157835SDaniel Fojt data->wep_tx_keyidx = params->wep_tx_keyidx;
274*a1157835SDaniel Fojt data->local_state_change = params->local_state_change;
275*a1157835SDaniel Fojt data->p2p = params->p2p;
276*a1157835SDaniel Fojt pos = (u8 *) (data + 1);
277*a1157835SDaniel Fojt if (params->ie_len) {
278*a1157835SDaniel Fojt os_memcpy(pos, params->ie, params->ie_len);
279*a1157835SDaniel Fojt pos += params->ie_len;
280*a1157835SDaniel Fojt }
281*a1157835SDaniel Fojt if (params->auth_data_len)
282*a1157835SDaniel Fojt os_memcpy(pos, params->auth_data, params->auth_data_len);
283*a1157835SDaniel Fojt
284*a1157835SDaniel Fojt res = wpa_priv_cmd(drv, PRIVSEP_CMD_AUTHENTICATE, data, buflen,
285*a1157835SDaniel Fojt NULL, NULL);
286*a1157835SDaniel Fojt os_free(data);
287*a1157835SDaniel Fojt
288*a1157835SDaniel Fojt return res;
289*a1157835SDaniel Fojt }
290*a1157835SDaniel Fojt
291*a1157835SDaniel Fojt
wpa_driver_privsep_associate(void * priv,struct wpa_driver_associate_params * params)2926d49e1aeSJan Lentfer static int wpa_driver_privsep_associate(
2936d49e1aeSJan Lentfer void *priv, struct wpa_driver_associate_params *params)
2946d49e1aeSJan Lentfer {
2956d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
2966d49e1aeSJan Lentfer struct privsep_cmd_associate *data;
2976d49e1aeSJan Lentfer int res;
2986d49e1aeSJan Lentfer size_t buflen;
2996d49e1aeSJan Lentfer
3006d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d pairwise_suite=%d "
3016d49e1aeSJan Lentfer "group_suite=%d key_mgmt_suite=%d auth_alg=%d mode=%d",
302*a1157835SDaniel Fojt __func__, priv, params->freq.freq, params->pairwise_suite,
3036d49e1aeSJan Lentfer params->group_suite, params->key_mgmt_suite,
3046d49e1aeSJan Lentfer params->auth_alg, params->mode);
3056d49e1aeSJan Lentfer
3066d49e1aeSJan Lentfer buflen = sizeof(*data) + params->wpa_ie_len;
3076d49e1aeSJan Lentfer data = os_zalloc(buflen);
3086d49e1aeSJan Lentfer if (data == NULL)
3096d49e1aeSJan Lentfer return -1;
3106d49e1aeSJan Lentfer
3116d49e1aeSJan Lentfer if (params->bssid)
3126d49e1aeSJan Lentfer os_memcpy(data->bssid, params->bssid, ETH_ALEN);
3136d49e1aeSJan Lentfer os_memcpy(data->ssid, params->ssid, params->ssid_len);
3146d49e1aeSJan Lentfer data->ssid_len = params->ssid_len;
315*a1157835SDaniel Fojt data->hwmode = params->freq.mode;
316*a1157835SDaniel Fojt data->freq = params->freq.freq;
317*a1157835SDaniel Fojt data->channel = params->freq.channel;
3186d49e1aeSJan Lentfer data->pairwise_suite = params->pairwise_suite;
3196d49e1aeSJan Lentfer data->group_suite = params->group_suite;
3206d49e1aeSJan Lentfer data->key_mgmt_suite = params->key_mgmt_suite;
3216d49e1aeSJan Lentfer data->auth_alg = params->auth_alg;
3226d49e1aeSJan Lentfer data->mode = params->mode;
3236d49e1aeSJan Lentfer data->wpa_ie_len = params->wpa_ie_len;
3246d49e1aeSJan Lentfer if (params->wpa_ie)
3256d49e1aeSJan Lentfer os_memcpy(data + 1, params->wpa_ie, params->wpa_ie_len);
3266d49e1aeSJan Lentfer /* TODO: add support for other assoc parameters */
3276d49e1aeSJan Lentfer
3286d49e1aeSJan Lentfer res = wpa_priv_cmd(drv, PRIVSEP_CMD_ASSOCIATE, data, buflen,
3296d49e1aeSJan Lentfer NULL, NULL);
3306d49e1aeSJan Lentfer os_free(data);
3316d49e1aeSJan Lentfer
3326d49e1aeSJan Lentfer return res;
3336d49e1aeSJan Lentfer }
3346d49e1aeSJan Lentfer
3356d49e1aeSJan Lentfer
wpa_driver_privsep_get_bssid(void * priv,u8 * bssid)3366d49e1aeSJan Lentfer static int wpa_driver_privsep_get_bssid(void *priv, u8 *bssid)
3376d49e1aeSJan Lentfer {
3386d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
3396d49e1aeSJan Lentfer int res;
3406d49e1aeSJan Lentfer size_t len = ETH_ALEN;
3416d49e1aeSJan Lentfer
3426d49e1aeSJan Lentfer res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_BSSID, NULL, 0, bssid, &len);
3436d49e1aeSJan Lentfer if (res < 0 || len != ETH_ALEN)
3446d49e1aeSJan Lentfer return -1;
3456d49e1aeSJan Lentfer return 0;
3466d49e1aeSJan Lentfer }
3476d49e1aeSJan Lentfer
3486d49e1aeSJan Lentfer
wpa_driver_privsep_get_ssid(void * priv,u8 * ssid)3496d49e1aeSJan Lentfer static int wpa_driver_privsep_get_ssid(void *priv, u8 *ssid)
3506d49e1aeSJan Lentfer {
3516d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
3526d49e1aeSJan Lentfer int res, ssid_len;
353*a1157835SDaniel Fojt u8 reply[sizeof(int) + SSID_MAX_LEN];
3546d49e1aeSJan Lentfer size_t len = sizeof(reply);
3556d49e1aeSJan Lentfer
3566d49e1aeSJan Lentfer res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_SSID, NULL, 0, reply, &len);
3576d49e1aeSJan Lentfer if (res < 0 || len < sizeof(int))
3586d49e1aeSJan Lentfer return -1;
3596d49e1aeSJan Lentfer os_memcpy(&ssid_len, reply, sizeof(int));
360*a1157835SDaniel Fojt if (ssid_len < 0 || ssid_len > SSID_MAX_LEN ||
361*a1157835SDaniel Fojt sizeof(int) + ssid_len > len) {
3626d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "privsep: Invalid get SSID reply");
3636d49e1aeSJan Lentfer return -1;
3646d49e1aeSJan Lentfer }
3656d49e1aeSJan Lentfer os_memcpy(ssid, &reply[sizeof(int)], ssid_len);
3666d49e1aeSJan Lentfer return ssid_len;
3676d49e1aeSJan Lentfer }
3686d49e1aeSJan Lentfer
3696d49e1aeSJan Lentfer
wpa_driver_privsep_deauthenticate(void * priv,const u8 * addr,u16 reason_code)3706d49e1aeSJan Lentfer static int wpa_driver_privsep_deauthenticate(void *priv, const u8 *addr,
371*a1157835SDaniel Fojt u16 reason_code)
3726d49e1aeSJan Lentfer {
3736d49e1aeSJan Lentfer //struct wpa_driver_privsep_data *drv = priv;
3746d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
3756d49e1aeSJan Lentfer __func__, MAC2STR(addr), reason_code);
3766d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s - TODO", __func__);
3776d49e1aeSJan Lentfer return 0;
3786d49e1aeSJan Lentfer }
3796d49e1aeSJan Lentfer
3806d49e1aeSJan Lentfer
wpa_driver_privsep_event_auth(void * ctx,u8 * buf,size_t len)381*a1157835SDaniel Fojt static void wpa_driver_privsep_event_auth(void *ctx, u8 *buf, size_t len)
382*a1157835SDaniel Fojt {
383*a1157835SDaniel Fojt union wpa_event_data data;
384*a1157835SDaniel Fojt struct privsep_event_auth *auth;
385*a1157835SDaniel Fojt
386*a1157835SDaniel Fojt os_memset(&data, 0, sizeof(data));
387*a1157835SDaniel Fojt if (len < sizeof(*auth))
388*a1157835SDaniel Fojt return;
389*a1157835SDaniel Fojt auth = (struct privsep_event_auth *) buf;
390*a1157835SDaniel Fojt if (len < sizeof(*auth) + auth->ies_len)
391*a1157835SDaniel Fojt return;
392*a1157835SDaniel Fojt
393*a1157835SDaniel Fojt os_memcpy(data.auth.peer, auth->peer, ETH_ALEN);
394*a1157835SDaniel Fojt os_memcpy(data.auth.bssid, auth->bssid, ETH_ALEN);
395*a1157835SDaniel Fojt data.auth.auth_type = auth->auth_type;
396*a1157835SDaniel Fojt data.auth.auth_transaction = auth->auth_transaction;
397*a1157835SDaniel Fojt data.auth.status_code = auth->status_code;
398*a1157835SDaniel Fojt if (auth->ies_len) {
399*a1157835SDaniel Fojt data.auth.ies = (u8 *) (auth + 1);
400*a1157835SDaniel Fojt data.auth.ies_len = auth->ies_len;
401*a1157835SDaniel Fojt }
402*a1157835SDaniel Fojt
403*a1157835SDaniel Fojt wpa_supplicant_event(ctx, EVENT_AUTH, &data);
404*a1157835SDaniel Fojt }
405*a1157835SDaniel Fojt
406*a1157835SDaniel Fojt
wpa_driver_privsep_event_assoc(void * ctx,enum wpa_event_type event,u8 * buf,size_t len)4073ff40c12SJohn Marino static void wpa_driver_privsep_event_assoc(void *ctx,
4083ff40c12SJohn Marino enum wpa_event_type event,
4096d49e1aeSJan Lentfer u8 *buf, size_t len)
4106d49e1aeSJan Lentfer {
4116d49e1aeSJan Lentfer union wpa_event_data data;
4126d49e1aeSJan Lentfer int inc_data = 0;
4136d49e1aeSJan Lentfer u8 *pos, *end;
4146d49e1aeSJan Lentfer int ie_len;
4156d49e1aeSJan Lentfer
4166d49e1aeSJan Lentfer os_memset(&data, 0, sizeof(data));
4176d49e1aeSJan Lentfer
4186d49e1aeSJan Lentfer pos = buf;
4196d49e1aeSJan Lentfer end = buf + len;
4206d49e1aeSJan Lentfer
4216d49e1aeSJan Lentfer if (end - pos < (int) sizeof(int))
4226d49e1aeSJan Lentfer return;
4236d49e1aeSJan Lentfer os_memcpy(&ie_len, pos, sizeof(int));
4246d49e1aeSJan Lentfer pos += sizeof(int);
4256d49e1aeSJan Lentfer if (ie_len < 0 || ie_len > end - pos)
4266d49e1aeSJan Lentfer return;
4276d49e1aeSJan Lentfer if (ie_len) {
4286d49e1aeSJan Lentfer data.assoc_info.req_ies = pos;
4296d49e1aeSJan Lentfer data.assoc_info.req_ies_len = ie_len;
4306d49e1aeSJan Lentfer pos += ie_len;
4316d49e1aeSJan Lentfer inc_data = 1;
4326d49e1aeSJan Lentfer }
4336d49e1aeSJan Lentfer
4346d49e1aeSJan Lentfer wpa_supplicant_event(ctx, event, inc_data ? &data : NULL);
4356d49e1aeSJan Lentfer }
4366d49e1aeSJan Lentfer
4376d49e1aeSJan Lentfer
wpa_driver_privsep_event_interface_status(void * ctx,u8 * buf,size_t len)4386d49e1aeSJan Lentfer static void wpa_driver_privsep_event_interface_status(void *ctx, u8 *buf,
4396d49e1aeSJan Lentfer size_t len)
4406d49e1aeSJan Lentfer {
4416d49e1aeSJan Lentfer union wpa_event_data data;
4426d49e1aeSJan Lentfer int ievent;
4436d49e1aeSJan Lentfer
4446d49e1aeSJan Lentfer if (len < sizeof(int) ||
4456d49e1aeSJan Lentfer len - sizeof(int) > sizeof(data.interface_status.ifname))
4466d49e1aeSJan Lentfer return;
4476d49e1aeSJan Lentfer
4486d49e1aeSJan Lentfer os_memcpy(&ievent, buf, sizeof(int));
4496d49e1aeSJan Lentfer
4506d49e1aeSJan Lentfer os_memset(&data, 0, sizeof(data));
4516d49e1aeSJan Lentfer data.interface_status.ievent = ievent;
4526d49e1aeSJan Lentfer os_memcpy(data.interface_status.ifname, buf + sizeof(int),
4536d49e1aeSJan Lentfer len - sizeof(int));
4546d49e1aeSJan Lentfer wpa_supplicant_event(ctx, EVENT_INTERFACE_STATUS, &data);
4556d49e1aeSJan Lentfer }
4566d49e1aeSJan Lentfer
4576d49e1aeSJan Lentfer
wpa_driver_privsep_event_michael_mic_failure(void * ctx,u8 * buf,size_t len)4586d49e1aeSJan Lentfer static void wpa_driver_privsep_event_michael_mic_failure(
4596d49e1aeSJan Lentfer void *ctx, u8 *buf, size_t len)
4606d49e1aeSJan Lentfer {
4616d49e1aeSJan Lentfer union wpa_event_data data;
4626d49e1aeSJan Lentfer
4636d49e1aeSJan Lentfer if (len != sizeof(int))
4646d49e1aeSJan Lentfer return;
4656d49e1aeSJan Lentfer
4666d49e1aeSJan Lentfer os_memset(&data, 0, sizeof(data));
4676d49e1aeSJan Lentfer os_memcpy(&data.michael_mic_failure.unicast, buf, sizeof(int));
4686d49e1aeSJan Lentfer wpa_supplicant_event(ctx, EVENT_MICHAEL_MIC_FAILURE, &data);
4696d49e1aeSJan Lentfer }
4706d49e1aeSJan Lentfer
4716d49e1aeSJan Lentfer
wpa_driver_privsep_event_pmkid_candidate(void * ctx,u8 * buf,size_t len)4726d49e1aeSJan Lentfer static void wpa_driver_privsep_event_pmkid_candidate(void *ctx, u8 *buf,
4736d49e1aeSJan Lentfer size_t len)
4746d49e1aeSJan Lentfer {
4756d49e1aeSJan Lentfer union wpa_event_data data;
4766d49e1aeSJan Lentfer
4776d49e1aeSJan Lentfer if (len != sizeof(struct pmkid_candidate))
4786d49e1aeSJan Lentfer return;
4796d49e1aeSJan Lentfer
4806d49e1aeSJan Lentfer os_memset(&data, 0, sizeof(data));
4816d49e1aeSJan Lentfer os_memcpy(&data.pmkid_candidate, buf, len);
4826d49e1aeSJan Lentfer wpa_supplicant_event(ctx, EVENT_PMKID_CANDIDATE, &data);
4836d49e1aeSJan Lentfer }
4846d49e1aeSJan Lentfer
4856d49e1aeSJan Lentfer
wpa_driver_privsep_event_ft_response(void * ctx,u8 * buf,size_t len)4866d49e1aeSJan Lentfer static void wpa_driver_privsep_event_ft_response(void *ctx, u8 *buf,
4876d49e1aeSJan Lentfer size_t len)
4886d49e1aeSJan Lentfer {
4896d49e1aeSJan Lentfer union wpa_event_data data;
4906d49e1aeSJan Lentfer
4916d49e1aeSJan Lentfer if (len < sizeof(int) + ETH_ALEN)
4926d49e1aeSJan Lentfer return;
4936d49e1aeSJan Lentfer
4946d49e1aeSJan Lentfer os_memset(&data, 0, sizeof(data));
4956d49e1aeSJan Lentfer os_memcpy(&data.ft_ies.ft_action, buf, sizeof(int));
4966d49e1aeSJan Lentfer os_memcpy(data.ft_ies.target_ap, buf + sizeof(int), ETH_ALEN);
4976d49e1aeSJan Lentfer data.ft_ies.ies = buf + sizeof(int) + ETH_ALEN;
4986d49e1aeSJan Lentfer data.ft_ies.ies_len = len - sizeof(int) - ETH_ALEN;
4996d49e1aeSJan Lentfer wpa_supplicant_event(ctx, EVENT_FT_RESPONSE, &data);
5006d49e1aeSJan Lentfer }
5016d49e1aeSJan Lentfer
5026d49e1aeSJan Lentfer
wpa_driver_privsep_event_rx_eapol(void * ctx,u8 * buf,size_t len)5036d49e1aeSJan Lentfer static void wpa_driver_privsep_event_rx_eapol(void *ctx, u8 *buf, size_t len)
5046d49e1aeSJan Lentfer {
5056d49e1aeSJan Lentfer if (len < ETH_ALEN)
5066d49e1aeSJan Lentfer return;
5073ff40c12SJohn Marino drv_event_eapol_rx(ctx, buf, buf + ETH_ALEN, len - ETH_ALEN);
5086d49e1aeSJan Lentfer }
5096d49e1aeSJan Lentfer
5106d49e1aeSJan Lentfer
wpa_driver_privsep_receive(int sock,void * eloop_ctx,void * sock_ctx)5116d49e1aeSJan Lentfer static void wpa_driver_privsep_receive(int sock, void *eloop_ctx,
5126d49e1aeSJan Lentfer void *sock_ctx)
5136d49e1aeSJan Lentfer {
5146d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = eloop_ctx;
5156d49e1aeSJan Lentfer u8 *buf, *event_buf;
5166d49e1aeSJan Lentfer size_t event_len;
5176d49e1aeSJan Lentfer int res, event;
5186d49e1aeSJan Lentfer enum privsep_event e;
5196d49e1aeSJan Lentfer struct sockaddr_un from;
5206d49e1aeSJan Lentfer socklen_t fromlen = sizeof(from);
5216d49e1aeSJan Lentfer const size_t buflen = 2000;
5226d49e1aeSJan Lentfer
5236d49e1aeSJan Lentfer buf = os_malloc(buflen);
5246d49e1aeSJan Lentfer if (buf == NULL)
5256d49e1aeSJan Lentfer return;
5266d49e1aeSJan Lentfer res = recvfrom(sock, buf, buflen, 0,
5276d49e1aeSJan Lentfer (struct sockaddr *) &from, &fromlen);
5286d49e1aeSJan Lentfer if (res < 0) {
529*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "recvfrom(priv_socket): %s",
530*a1157835SDaniel Fojt strerror(errno));
5316d49e1aeSJan Lentfer os_free(buf);
5326d49e1aeSJan Lentfer return;
5336d49e1aeSJan Lentfer }
5346d49e1aeSJan Lentfer
5356d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "privsep_driver: received %u bytes", res);
5366d49e1aeSJan Lentfer
5376d49e1aeSJan Lentfer if (res < (int) sizeof(int)) {
5386d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "Too short event message (len=%d)", res);
5396d49e1aeSJan Lentfer return;
5406d49e1aeSJan Lentfer }
5416d49e1aeSJan Lentfer
5426d49e1aeSJan Lentfer os_memcpy(&event, buf, sizeof(int));
5436d49e1aeSJan Lentfer event_buf = &buf[sizeof(int)];
5446d49e1aeSJan Lentfer event_len = res - sizeof(int);
5456d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "privsep: Event %d received (len=%lu)",
5466d49e1aeSJan Lentfer event, (unsigned long) event_len);
5476d49e1aeSJan Lentfer
5486d49e1aeSJan Lentfer e = event;
5496d49e1aeSJan Lentfer switch (e) {
5506d49e1aeSJan Lentfer case PRIVSEP_EVENT_SCAN_RESULTS:
5516d49e1aeSJan Lentfer wpa_supplicant_event(drv->ctx, EVENT_SCAN_RESULTS, NULL);
5526d49e1aeSJan Lentfer break;
553*a1157835SDaniel Fojt case PRIVSEP_EVENT_SCAN_STARTED:
554*a1157835SDaniel Fojt wpa_supplicant_event(drv->ctx, EVENT_SCAN_STARTED, NULL);
555*a1157835SDaniel Fojt break;
5566d49e1aeSJan Lentfer case PRIVSEP_EVENT_ASSOC:
5576d49e1aeSJan Lentfer wpa_driver_privsep_event_assoc(drv->ctx, EVENT_ASSOC,
5586d49e1aeSJan Lentfer event_buf, event_len);
5596d49e1aeSJan Lentfer break;
5606d49e1aeSJan Lentfer case PRIVSEP_EVENT_DISASSOC:
5616d49e1aeSJan Lentfer wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
5626d49e1aeSJan Lentfer break;
5636d49e1aeSJan Lentfer case PRIVSEP_EVENT_ASSOCINFO:
5646d49e1aeSJan Lentfer wpa_driver_privsep_event_assoc(drv->ctx, EVENT_ASSOCINFO,
5656d49e1aeSJan Lentfer event_buf, event_len);
5666d49e1aeSJan Lentfer break;
5676d49e1aeSJan Lentfer case PRIVSEP_EVENT_MICHAEL_MIC_FAILURE:
5686d49e1aeSJan Lentfer wpa_driver_privsep_event_michael_mic_failure(
5696d49e1aeSJan Lentfer drv->ctx, event_buf, event_len);
5706d49e1aeSJan Lentfer break;
5716d49e1aeSJan Lentfer case PRIVSEP_EVENT_INTERFACE_STATUS:
5726d49e1aeSJan Lentfer wpa_driver_privsep_event_interface_status(drv->ctx, event_buf,
5736d49e1aeSJan Lentfer event_len);
5746d49e1aeSJan Lentfer break;
5756d49e1aeSJan Lentfer case PRIVSEP_EVENT_PMKID_CANDIDATE:
5766d49e1aeSJan Lentfer wpa_driver_privsep_event_pmkid_candidate(drv->ctx, event_buf,
5776d49e1aeSJan Lentfer event_len);
5786d49e1aeSJan Lentfer break;
5796d49e1aeSJan Lentfer case PRIVSEP_EVENT_FT_RESPONSE:
5806d49e1aeSJan Lentfer wpa_driver_privsep_event_ft_response(drv->ctx, event_buf,
5816d49e1aeSJan Lentfer event_len);
5826d49e1aeSJan Lentfer break;
5836d49e1aeSJan Lentfer case PRIVSEP_EVENT_RX_EAPOL:
5846d49e1aeSJan Lentfer wpa_driver_privsep_event_rx_eapol(drv->ctx, event_buf,
5856d49e1aeSJan Lentfer event_len);
5866d49e1aeSJan Lentfer break;
587*a1157835SDaniel Fojt case PRIVSEP_EVENT_AUTH:
588*a1157835SDaniel Fojt wpa_driver_privsep_event_auth(drv->ctx, event_buf, event_len);
589*a1157835SDaniel Fojt break;
5906d49e1aeSJan Lentfer }
5916d49e1aeSJan Lentfer
5926d49e1aeSJan Lentfer os_free(buf);
5936d49e1aeSJan Lentfer }
5946d49e1aeSJan Lentfer
5956d49e1aeSJan Lentfer
wpa_driver_privsep_init(void * ctx,const char * ifname)5966d49e1aeSJan Lentfer static void * wpa_driver_privsep_init(void *ctx, const char *ifname)
5976d49e1aeSJan Lentfer {
5986d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv;
5996d49e1aeSJan Lentfer
6006d49e1aeSJan Lentfer drv = os_zalloc(sizeof(*drv));
6016d49e1aeSJan Lentfer if (drv == NULL)
6026d49e1aeSJan Lentfer return NULL;
6036d49e1aeSJan Lentfer drv->ctx = ctx;
6046d49e1aeSJan Lentfer drv->priv_socket = -1;
6056d49e1aeSJan Lentfer drv->cmd_socket = -1;
6066d49e1aeSJan Lentfer os_strlcpy(drv->ifname, ifname, sizeof(drv->ifname));
6076d49e1aeSJan Lentfer
6086d49e1aeSJan Lentfer return drv;
6096d49e1aeSJan Lentfer }
6106d49e1aeSJan Lentfer
6116d49e1aeSJan Lentfer
wpa_driver_privsep_deinit(void * priv)6126d49e1aeSJan Lentfer static void wpa_driver_privsep_deinit(void *priv)
6136d49e1aeSJan Lentfer {
6146d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
6156d49e1aeSJan Lentfer
6166d49e1aeSJan Lentfer if (drv->priv_socket >= 0) {
6176d49e1aeSJan Lentfer wpa_priv_reg_cmd(drv, PRIVSEP_CMD_UNREGISTER);
6186d49e1aeSJan Lentfer eloop_unregister_read_sock(drv->priv_socket);
6196d49e1aeSJan Lentfer close(drv->priv_socket);
6206d49e1aeSJan Lentfer }
6216d49e1aeSJan Lentfer
6226d49e1aeSJan Lentfer if (drv->own_socket_path) {
6236d49e1aeSJan Lentfer unlink(drv->own_socket_path);
6246d49e1aeSJan Lentfer os_free(drv->own_socket_path);
6256d49e1aeSJan Lentfer }
6266d49e1aeSJan Lentfer
6276d49e1aeSJan Lentfer if (drv->cmd_socket >= 0) {
6286d49e1aeSJan Lentfer eloop_unregister_read_sock(drv->cmd_socket);
6296d49e1aeSJan Lentfer close(drv->cmd_socket);
6306d49e1aeSJan Lentfer }
6316d49e1aeSJan Lentfer
6326d49e1aeSJan Lentfer if (drv->own_cmd_path) {
6336d49e1aeSJan Lentfer unlink(drv->own_cmd_path);
6346d49e1aeSJan Lentfer os_free(drv->own_cmd_path);
6356d49e1aeSJan Lentfer }
6366d49e1aeSJan Lentfer
6376d49e1aeSJan Lentfer os_free(drv);
6386d49e1aeSJan Lentfer }
6396d49e1aeSJan Lentfer
6406d49e1aeSJan Lentfer
wpa_driver_privsep_set_param(void * priv,const char * param)6416d49e1aeSJan Lentfer static int wpa_driver_privsep_set_param(void *priv, const char *param)
6426d49e1aeSJan Lentfer {
6436d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
6446d49e1aeSJan Lentfer const char *pos;
6456d49e1aeSJan Lentfer char *own_dir, *priv_dir;
6466d49e1aeSJan Lentfer static unsigned int counter = 0;
6476d49e1aeSJan Lentfer size_t len;
6486d49e1aeSJan Lentfer struct sockaddr_un addr;
6496d49e1aeSJan Lentfer
6506d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s: param='%s'", __func__, param);
6516d49e1aeSJan Lentfer if (param == NULL)
6526d49e1aeSJan Lentfer pos = NULL;
6536d49e1aeSJan Lentfer else
6546d49e1aeSJan Lentfer pos = os_strstr(param, "own_dir=");
6556d49e1aeSJan Lentfer if (pos) {
6566d49e1aeSJan Lentfer char *end;
6576d49e1aeSJan Lentfer own_dir = os_strdup(pos + 8);
6586d49e1aeSJan Lentfer if (own_dir == NULL)
6596d49e1aeSJan Lentfer return -1;
6606d49e1aeSJan Lentfer end = os_strchr(own_dir, ' ');
6616d49e1aeSJan Lentfer if (end)
6626d49e1aeSJan Lentfer *end = '\0';
6636d49e1aeSJan Lentfer } else {
6646d49e1aeSJan Lentfer own_dir = os_strdup("/tmp");
6656d49e1aeSJan Lentfer if (own_dir == NULL)
6666d49e1aeSJan Lentfer return -1;
6676d49e1aeSJan Lentfer }
6686d49e1aeSJan Lentfer
6696d49e1aeSJan Lentfer if (param == NULL)
6706d49e1aeSJan Lentfer pos = NULL;
6716d49e1aeSJan Lentfer else
6726d49e1aeSJan Lentfer pos = os_strstr(param, "priv_dir=");
6736d49e1aeSJan Lentfer if (pos) {
6746d49e1aeSJan Lentfer char *end;
6756d49e1aeSJan Lentfer priv_dir = os_strdup(pos + 9);
6766d49e1aeSJan Lentfer if (priv_dir == NULL) {
6776d49e1aeSJan Lentfer os_free(own_dir);
6786d49e1aeSJan Lentfer return -1;
6796d49e1aeSJan Lentfer }
6806d49e1aeSJan Lentfer end = os_strchr(priv_dir, ' ');
6816d49e1aeSJan Lentfer if (end)
6826d49e1aeSJan Lentfer *end = '\0';
6836d49e1aeSJan Lentfer } else {
6846d49e1aeSJan Lentfer priv_dir = os_strdup("/var/run/wpa_priv");
6856d49e1aeSJan Lentfer if (priv_dir == NULL) {
6866d49e1aeSJan Lentfer os_free(own_dir);
6876d49e1aeSJan Lentfer return -1;
6886d49e1aeSJan Lentfer }
6896d49e1aeSJan Lentfer }
6906d49e1aeSJan Lentfer
6916d49e1aeSJan Lentfer len = os_strlen(own_dir) + 50;
6926d49e1aeSJan Lentfer drv->own_socket_path = os_malloc(len);
6936d49e1aeSJan Lentfer if (drv->own_socket_path == NULL) {
6946d49e1aeSJan Lentfer os_free(priv_dir);
6956d49e1aeSJan Lentfer os_free(own_dir);
6966d49e1aeSJan Lentfer return -1;
6976d49e1aeSJan Lentfer }
6986d49e1aeSJan Lentfer os_snprintf(drv->own_socket_path, len, "%s/wpa_privsep-%d-%d",
6996d49e1aeSJan Lentfer own_dir, getpid(), counter++);
7006d49e1aeSJan Lentfer
7016d49e1aeSJan Lentfer len = os_strlen(own_dir) + 50;
7026d49e1aeSJan Lentfer drv->own_cmd_path = os_malloc(len);
7036d49e1aeSJan Lentfer if (drv->own_cmd_path == NULL) {
7046d49e1aeSJan Lentfer os_free(drv->own_socket_path);
7056d49e1aeSJan Lentfer drv->own_socket_path = NULL;
7066d49e1aeSJan Lentfer os_free(priv_dir);
7076d49e1aeSJan Lentfer os_free(own_dir);
7086d49e1aeSJan Lentfer return -1;
7096d49e1aeSJan Lentfer }
7106d49e1aeSJan Lentfer os_snprintf(drv->own_cmd_path, len, "%s/wpa_privsep-%d-%d",
7116d49e1aeSJan Lentfer own_dir, getpid(), counter++);
7126d49e1aeSJan Lentfer
7136d49e1aeSJan Lentfer os_free(own_dir);
7146d49e1aeSJan Lentfer
7156d49e1aeSJan Lentfer drv->priv_addr.sun_family = AF_UNIX;
7166d49e1aeSJan Lentfer os_snprintf(drv->priv_addr.sun_path, sizeof(drv->priv_addr.sun_path),
7176d49e1aeSJan Lentfer "%s/%s", priv_dir, drv->ifname);
7186d49e1aeSJan Lentfer os_free(priv_dir);
7196d49e1aeSJan Lentfer
7206d49e1aeSJan Lentfer drv->priv_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
7216d49e1aeSJan Lentfer if (drv->priv_socket < 0) {
722*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
7236d49e1aeSJan Lentfer os_free(drv->own_socket_path);
7246d49e1aeSJan Lentfer drv->own_socket_path = NULL;
7256d49e1aeSJan Lentfer return -1;
7266d49e1aeSJan Lentfer }
7276d49e1aeSJan Lentfer
7286d49e1aeSJan Lentfer os_memset(&addr, 0, sizeof(addr));
7296d49e1aeSJan Lentfer addr.sun_family = AF_UNIX;
7306d49e1aeSJan Lentfer os_strlcpy(addr.sun_path, drv->own_socket_path, sizeof(addr.sun_path));
7316d49e1aeSJan Lentfer if (bind(drv->priv_socket, (struct sockaddr *) &addr, sizeof(addr)) <
7326d49e1aeSJan Lentfer 0) {
733*a1157835SDaniel Fojt wpa_printf(MSG_ERROR,
734*a1157835SDaniel Fojt "privsep-set-params priv-sock: bind(PF_UNIX): %s",
735*a1157835SDaniel Fojt strerror(errno));
7366d49e1aeSJan Lentfer close(drv->priv_socket);
7376d49e1aeSJan Lentfer drv->priv_socket = -1;
7386d49e1aeSJan Lentfer unlink(drv->own_socket_path);
7396d49e1aeSJan Lentfer os_free(drv->own_socket_path);
7406d49e1aeSJan Lentfer drv->own_socket_path = NULL;
7416d49e1aeSJan Lentfer return -1;
7426d49e1aeSJan Lentfer }
7436d49e1aeSJan Lentfer
7446d49e1aeSJan Lentfer eloop_register_read_sock(drv->priv_socket, wpa_driver_privsep_receive,
7456d49e1aeSJan Lentfer drv, NULL);
7466d49e1aeSJan Lentfer
7476d49e1aeSJan Lentfer drv->cmd_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
7486d49e1aeSJan Lentfer if (drv->cmd_socket < 0) {
749*a1157835SDaniel Fojt wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
7506d49e1aeSJan Lentfer os_free(drv->own_cmd_path);
7516d49e1aeSJan Lentfer drv->own_cmd_path = NULL;
7526d49e1aeSJan Lentfer return -1;
7536d49e1aeSJan Lentfer }
7546d49e1aeSJan Lentfer
7556d49e1aeSJan Lentfer os_memset(&addr, 0, sizeof(addr));
7566d49e1aeSJan Lentfer addr.sun_family = AF_UNIX;
7576d49e1aeSJan Lentfer os_strlcpy(addr.sun_path, drv->own_cmd_path, sizeof(addr.sun_path));
7586d49e1aeSJan Lentfer if (bind(drv->cmd_socket, (struct sockaddr *) &addr, sizeof(addr)) < 0)
7596d49e1aeSJan Lentfer {
760*a1157835SDaniel Fojt wpa_printf(MSG_ERROR,
761*a1157835SDaniel Fojt "privsep-set-params cmd-sock: bind(PF_UNIX): %s",
762*a1157835SDaniel Fojt strerror(errno));
7636d49e1aeSJan Lentfer close(drv->cmd_socket);
7646d49e1aeSJan Lentfer drv->cmd_socket = -1;
7656d49e1aeSJan Lentfer unlink(drv->own_cmd_path);
7666d49e1aeSJan Lentfer os_free(drv->own_cmd_path);
7676d49e1aeSJan Lentfer drv->own_cmd_path = NULL;
7686d49e1aeSJan Lentfer return -1;
7696d49e1aeSJan Lentfer }
7706d49e1aeSJan Lentfer
7716d49e1aeSJan Lentfer if (wpa_priv_reg_cmd(drv, PRIVSEP_CMD_REGISTER) < 0) {
7726d49e1aeSJan Lentfer wpa_printf(MSG_ERROR, "Failed to register with wpa_priv");
7736d49e1aeSJan Lentfer return -1;
7746d49e1aeSJan Lentfer }
7756d49e1aeSJan Lentfer
7766d49e1aeSJan Lentfer return 0;
7776d49e1aeSJan Lentfer }
7786d49e1aeSJan Lentfer
7796d49e1aeSJan Lentfer
wpa_driver_privsep_get_capa(void * priv,struct wpa_driver_capa * capa)7806d49e1aeSJan Lentfer static int wpa_driver_privsep_get_capa(void *priv,
7816d49e1aeSJan Lentfer struct wpa_driver_capa *capa)
7826d49e1aeSJan Lentfer {
7836d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
7846d49e1aeSJan Lentfer int res;
7856d49e1aeSJan Lentfer size_t len = sizeof(*capa);
7866d49e1aeSJan Lentfer
7876d49e1aeSJan Lentfer res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_CAPA, NULL, 0, capa, &len);
7886d49e1aeSJan Lentfer if (res < 0 || len != sizeof(*capa))
7896d49e1aeSJan Lentfer return -1;
790*a1157835SDaniel Fojt /* For now, no support for passing extended_capa pointers */
791*a1157835SDaniel Fojt capa->extended_capa = NULL;
792*a1157835SDaniel Fojt capa->extended_capa_mask = NULL;
793*a1157835SDaniel Fojt capa->extended_capa_len = 0;
7946d49e1aeSJan Lentfer return 0;
7956d49e1aeSJan Lentfer }
7966d49e1aeSJan Lentfer
7976d49e1aeSJan Lentfer
wpa_driver_privsep_get_mac_addr(void * priv)7986d49e1aeSJan Lentfer static const u8 * wpa_driver_privsep_get_mac_addr(void *priv)
7996d49e1aeSJan Lentfer {
8006d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
8016d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s", __func__);
8026d49e1aeSJan Lentfer return drv->own_addr;
8036d49e1aeSJan Lentfer }
8046d49e1aeSJan Lentfer
8056d49e1aeSJan Lentfer
wpa_driver_privsep_set_country(void * priv,const char * alpha2)8066d49e1aeSJan Lentfer static int wpa_driver_privsep_set_country(void *priv, const char *alpha2)
8076d49e1aeSJan Lentfer {
8086d49e1aeSJan Lentfer struct wpa_driver_privsep_data *drv = priv;
8096d49e1aeSJan Lentfer wpa_printf(MSG_DEBUG, "%s country='%s'", __func__, alpha2);
8106d49e1aeSJan Lentfer return wpa_priv_cmd(drv, PRIVSEP_CMD_SET_COUNTRY, alpha2,
8116d49e1aeSJan Lentfer os_strlen(alpha2), NULL, NULL);
8126d49e1aeSJan Lentfer }
8136d49e1aeSJan Lentfer
8146d49e1aeSJan Lentfer
8156d49e1aeSJan Lentfer struct wpa_driver_ops wpa_driver_privsep_ops = {
8166d49e1aeSJan Lentfer "privsep",
8176d49e1aeSJan Lentfer "wpa_supplicant privilege separated driver",
8183ff40c12SJohn Marino .get_bssid = wpa_driver_privsep_get_bssid,
8193ff40c12SJohn Marino .get_ssid = wpa_driver_privsep_get_ssid,
8203ff40c12SJohn Marino .set_key = wpa_driver_privsep_set_key,
8213ff40c12SJohn Marino .init = wpa_driver_privsep_init,
8223ff40c12SJohn Marino .deinit = wpa_driver_privsep_deinit,
8233ff40c12SJohn Marino .set_param = wpa_driver_privsep_set_param,
8243ff40c12SJohn Marino .scan2 = wpa_driver_privsep_scan,
8253ff40c12SJohn Marino .deauthenticate = wpa_driver_privsep_deauthenticate,
826*a1157835SDaniel Fojt .authenticate = wpa_driver_privsep_authenticate,
8273ff40c12SJohn Marino .associate = wpa_driver_privsep_associate,
8283ff40c12SJohn Marino .get_capa = wpa_driver_privsep_get_capa,
8293ff40c12SJohn Marino .get_mac_addr = wpa_driver_privsep_get_mac_addr,
8303ff40c12SJohn Marino .get_scan_results2 = wpa_driver_privsep_get_scan_results2,
8313ff40c12SJohn Marino .set_country = wpa_driver_privsep_set_country,
8326d49e1aeSJan Lentfer };
8336d49e1aeSJan Lentfer
8346d49e1aeSJan Lentfer
835*a1157835SDaniel Fojt const struct wpa_driver_ops *const wpa_drivers[] =
8366d49e1aeSJan Lentfer {
8376d49e1aeSJan Lentfer &wpa_driver_privsep_ops,
8386d49e1aeSJan Lentfer NULL
8396d49e1aeSJan Lentfer };
840