xref: /freebsd/contrib/wpa/src/drivers/driver_privsep.c (revision c1d255d3ffdbe447de3ab875bf4e7d7accc5bfc5)
1f05cddf9SRui Paulo /*
2f05cddf9SRui Paulo  * WPA Supplicant - privilege separated driver interface
3f05cddf9SRui Paulo  * Copyright (c) 2007-2009, Jouni Malinen <j@w1.fi>
4f05cddf9SRui Paulo  *
5f05cddf9SRui Paulo  * This software may be distributed under the terms of the BSD license.
6f05cddf9SRui Paulo  * See README for more details.
7f05cddf9SRui Paulo  */
8f05cddf9SRui Paulo 
9f05cddf9SRui Paulo #include "includes.h"
10f05cddf9SRui Paulo #include <sys/un.h>
11f05cddf9SRui Paulo 
12f05cddf9SRui Paulo #include "common.h"
13f05cddf9SRui Paulo #include "driver.h"
14f05cddf9SRui Paulo #include "eloop.h"
15f05cddf9SRui Paulo #include "common/privsep_commands.h"
16f05cddf9SRui Paulo 
17f05cddf9SRui Paulo 
18f05cddf9SRui Paulo struct wpa_driver_privsep_data {
19f05cddf9SRui Paulo 	void *ctx;
20f05cddf9SRui Paulo 	u8 own_addr[ETH_ALEN];
21f05cddf9SRui Paulo 	int priv_socket;
22f05cddf9SRui Paulo 	char *own_socket_path;
23f05cddf9SRui Paulo 	int cmd_socket;
24f05cddf9SRui Paulo 	char *own_cmd_path;
25f05cddf9SRui Paulo 	struct sockaddr_un priv_addr;
26f05cddf9SRui Paulo 	char ifname[16];
27f05cddf9SRui Paulo };
28f05cddf9SRui Paulo 
29f05cddf9SRui Paulo 
wpa_priv_reg_cmd(struct wpa_driver_privsep_data * drv,int cmd)30f05cddf9SRui Paulo static int wpa_priv_reg_cmd(struct wpa_driver_privsep_data *drv, int cmd)
31f05cddf9SRui Paulo {
32f05cddf9SRui Paulo 	int res;
33f05cddf9SRui Paulo 
34f05cddf9SRui Paulo 	res = sendto(drv->priv_socket, &cmd, sizeof(cmd), 0,
35f05cddf9SRui Paulo 		     (struct sockaddr *) &drv->priv_addr,
36f05cddf9SRui Paulo 		     sizeof(drv->priv_addr));
37f05cddf9SRui Paulo 	if (res < 0)
385b9c547cSRui Paulo 		wpa_printf(MSG_ERROR, "sendto: %s", strerror(errno));
39f05cddf9SRui Paulo 	return res < 0 ? -1 : 0;
40f05cddf9SRui Paulo }
41f05cddf9SRui Paulo 
42f05cddf9SRui Paulo 
wpa_priv_cmd(struct wpa_driver_privsep_data * drv,int cmd,const void * data,size_t data_len,void * reply,size_t * reply_len)43f05cddf9SRui Paulo static int wpa_priv_cmd(struct wpa_driver_privsep_data *drv, int cmd,
44f05cddf9SRui Paulo 			const void *data, size_t data_len,
45f05cddf9SRui Paulo 			void *reply, size_t *reply_len)
46f05cddf9SRui Paulo {
47f05cddf9SRui Paulo 	struct msghdr msg;
48f05cddf9SRui Paulo 	struct iovec io[2];
49f05cddf9SRui Paulo 
50f05cddf9SRui Paulo 	io[0].iov_base = &cmd;
51f05cddf9SRui Paulo 	io[0].iov_len = sizeof(cmd);
52f05cddf9SRui Paulo 	io[1].iov_base = (u8 *) data;
53f05cddf9SRui Paulo 	io[1].iov_len = data_len;
54f05cddf9SRui Paulo 
55f05cddf9SRui Paulo 	os_memset(&msg, 0, sizeof(msg));
56f05cddf9SRui Paulo 	msg.msg_iov = io;
57f05cddf9SRui Paulo 	msg.msg_iovlen = data ? 2 : 1;
58f05cddf9SRui Paulo 	msg.msg_name = &drv->priv_addr;
59f05cddf9SRui Paulo 	msg.msg_namelen = sizeof(drv->priv_addr);
60f05cddf9SRui Paulo 
61f05cddf9SRui Paulo 	if (sendmsg(drv->cmd_socket, &msg, 0) < 0) {
625b9c547cSRui Paulo 		wpa_printf(MSG_ERROR, "sendmsg(cmd_socket): %s",
635b9c547cSRui Paulo 			   strerror(errno));
64f05cddf9SRui Paulo 		return -1;
65f05cddf9SRui Paulo 	}
66f05cddf9SRui Paulo 
67f05cddf9SRui Paulo 	if (reply) {
68f05cddf9SRui Paulo 		fd_set rfds;
69f05cddf9SRui Paulo 		struct timeval tv;
70f05cddf9SRui Paulo 		int res;
71f05cddf9SRui Paulo 
72f05cddf9SRui Paulo 		FD_ZERO(&rfds);
73f05cddf9SRui Paulo 		FD_SET(drv->cmd_socket, &rfds);
74f05cddf9SRui Paulo 		tv.tv_sec = 5;
75f05cddf9SRui Paulo 		tv.tv_usec = 0;
76f05cddf9SRui Paulo 		res = select(drv->cmd_socket + 1, &rfds, NULL, NULL, &tv);
77f05cddf9SRui Paulo 		if (res < 0 && errno != EINTR) {
785b9c547cSRui Paulo 			wpa_printf(MSG_ERROR, "select: %s", strerror(errno));
79f05cddf9SRui Paulo 			return -1;
80f05cddf9SRui Paulo 		}
81f05cddf9SRui Paulo 
82f05cddf9SRui Paulo 		if (FD_ISSET(drv->cmd_socket, &rfds)) {
83f05cddf9SRui Paulo 			res = recv(drv->cmd_socket, reply, *reply_len, 0);
84f05cddf9SRui Paulo 			if (res < 0) {
855b9c547cSRui Paulo 				wpa_printf(MSG_ERROR, "recv: %s",
865b9c547cSRui Paulo 					   strerror(errno));
87f05cddf9SRui Paulo 				return -1;
88f05cddf9SRui Paulo 			}
89f05cddf9SRui Paulo 			*reply_len = res;
90f05cddf9SRui Paulo 		} else {
91f05cddf9SRui Paulo 			wpa_printf(MSG_DEBUG, "PRIVSEP: Timeout while waiting "
92f05cddf9SRui Paulo 				   "for reply (cmd=%d)", cmd);
93f05cddf9SRui Paulo 			return -1;
94f05cddf9SRui Paulo 		}
95f05cddf9SRui Paulo 	}
96f05cddf9SRui Paulo 
97f05cddf9SRui Paulo 	return 0;
98f05cddf9SRui Paulo }
99f05cddf9SRui Paulo 
100f05cddf9SRui Paulo 
wpa_driver_privsep_scan(void * priv,struct wpa_driver_scan_params * params)101f05cddf9SRui Paulo static int wpa_driver_privsep_scan(void *priv,
102f05cddf9SRui Paulo 				   struct wpa_driver_scan_params *params)
103f05cddf9SRui Paulo {
104f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
10585732ac8SCy Schubert 	struct privsep_cmd_scan scan;
10685732ac8SCy Schubert 	size_t i;
10785732ac8SCy Schubert 
108f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s: priv=%p", __func__, priv);
10985732ac8SCy Schubert 	os_memset(&scan, 0, sizeof(scan));
11085732ac8SCy Schubert 	scan.num_ssids = params->num_ssids;
11185732ac8SCy Schubert 	for (i = 0; i < params->num_ssids; i++) {
11285732ac8SCy Schubert 		if (!params->ssids[i].ssid)
11385732ac8SCy Schubert 			continue;
11485732ac8SCy Schubert 		scan.ssid_lens[i] = params->ssids[i].ssid_len;
11585732ac8SCy Schubert 		os_memcpy(scan.ssids[i], params->ssids[i].ssid,
11685732ac8SCy Schubert 			  scan.ssid_lens[i]);
11785732ac8SCy Schubert 	}
11885732ac8SCy Schubert 
11985732ac8SCy Schubert 	for (i = 0; i < PRIVSEP_MAX_SCAN_FREQS &&
12085732ac8SCy Schubert 		     params->freqs && params->freqs[i]; i++)
12185732ac8SCy Schubert 		scan.freqs[i] = params->freqs[i];
12285732ac8SCy Schubert 	scan.num_freqs = i;
12385732ac8SCy Schubert 
12485732ac8SCy Schubert 	return wpa_priv_cmd(drv, PRIVSEP_CMD_SCAN, &scan, sizeof(scan),
125f05cddf9SRui Paulo 			    NULL, NULL);
126f05cddf9SRui Paulo }
127f05cddf9SRui Paulo 
128f05cddf9SRui Paulo 
129f05cddf9SRui Paulo static struct wpa_scan_results *
wpa_driver_privsep_get_scan_results2(void * priv)130f05cddf9SRui Paulo wpa_driver_privsep_get_scan_results2(void *priv)
131f05cddf9SRui Paulo {
132f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
133f05cddf9SRui Paulo 	int res, num;
134f05cddf9SRui Paulo 	u8 *buf, *pos, *end;
135f05cddf9SRui Paulo 	size_t reply_len = 60000;
136f05cddf9SRui Paulo 	struct wpa_scan_results *results;
137f05cddf9SRui Paulo 	struct wpa_scan_res *r;
138f05cddf9SRui Paulo 
139f05cddf9SRui Paulo 	buf = os_malloc(reply_len);
140f05cddf9SRui Paulo 	if (buf == NULL)
141f05cddf9SRui Paulo 		return NULL;
142f05cddf9SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_SCAN_RESULTS,
143f05cddf9SRui Paulo 			   NULL, 0, buf, &reply_len);
144f05cddf9SRui Paulo 	if (res < 0) {
145f05cddf9SRui Paulo 		os_free(buf);
146f05cddf9SRui Paulo 		return NULL;
147f05cddf9SRui Paulo 	}
148f05cddf9SRui Paulo 
149f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "privsep: Received %lu bytes of scan results",
150f05cddf9SRui Paulo 		   (unsigned long) reply_len);
151f05cddf9SRui Paulo 	if (reply_len < sizeof(int)) {
152f05cddf9SRui Paulo 		wpa_printf(MSG_DEBUG, "privsep: Invalid scan result len %lu",
153f05cddf9SRui Paulo 			   (unsigned long) reply_len);
154f05cddf9SRui Paulo 		os_free(buf);
155f05cddf9SRui Paulo 		return NULL;
156f05cddf9SRui Paulo 	}
157f05cddf9SRui Paulo 
158f05cddf9SRui Paulo 	pos = buf;
159f05cddf9SRui Paulo 	end = buf + reply_len;
160f05cddf9SRui Paulo 	os_memcpy(&num, pos, sizeof(int));
161f05cddf9SRui Paulo 	if (num < 0 || num > 1000) {
162f05cddf9SRui Paulo 		os_free(buf);
163f05cddf9SRui Paulo 		return NULL;
164f05cddf9SRui Paulo 	}
165f05cddf9SRui Paulo 	pos += sizeof(int);
166f05cddf9SRui Paulo 
167f05cddf9SRui Paulo 	results = os_zalloc(sizeof(*results));
168f05cddf9SRui Paulo 	if (results == NULL) {
169f05cddf9SRui Paulo 		os_free(buf);
170f05cddf9SRui Paulo 		return NULL;
171f05cddf9SRui Paulo 	}
172f05cddf9SRui Paulo 
173f05cddf9SRui Paulo 	results->res = os_calloc(num, sizeof(struct wpa_scan_res *));
174f05cddf9SRui Paulo 	if (results->res == NULL) {
175f05cddf9SRui Paulo 		os_free(results);
176f05cddf9SRui Paulo 		os_free(buf);
177f05cddf9SRui Paulo 		return NULL;
178f05cddf9SRui Paulo 	}
179f05cddf9SRui Paulo 
180780fb4a2SCy Schubert 	while (results->num < (size_t) num && end - pos > (int) sizeof(int)) {
181f05cddf9SRui Paulo 		int len;
182f05cddf9SRui Paulo 		os_memcpy(&len, pos, sizeof(int));
183f05cddf9SRui Paulo 		pos += sizeof(int);
184780fb4a2SCy Schubert 		if (len < 0 || len > 10000 || len > end - pos)
185f05cddf9SRui Paulo 			break;
186f05cddf9SRui Paulo 
18785732ac8SCy Schubert 		r = os_memdup(pos, len);
188f05cddf9SRui Paulo 		if (r == NULL)
189f05cddf9SRui Paulo 			break;
190f05cddf9SRui Paulo 		pos += len;
19185732ac8SCy Schubert 		if (sizeof(*r) + r->ie_len + r->beacon_ie_len > (size_t) len) {
19285732ac8SCy Schubert 			wpa_printf(MSG_ERROR,
19385732ac8SCy Schubert 				   "privsep: Invalid scan result len (%d + %d + %d > %d)",
19485732ac8SCy Schubert 				   (int) sizeof(*r), (int) r->ie_len,
19585732ac8SCy Schubert 				   (int) r->beacon_ie_len, len);
196f05cddf9SRui Paulo 			os_free(r);
197f05cddf9SRui Paulo 			break;
198f05cddf9SRui Paulo 		}
199f05cddf9SRui Paulo 
200f05cddf9SRui Paulo 		results->res[results->num++] = r;
201f05cddf9SRui Paulo 	}
202f05cddf9SRui Paulo 
203f05cddf9SRui Paulo 	os_free(buf);
204f05cddf9SRui Paulo 	return results;
205f05cddf9SRui Paulo }
206f05cddf9SRui Paulo 
207f05cddf9SRui Paulo 
wpa_driver_privsep_set_key(void * priv,struct wpa_driver_set_key_params * params)208*c1d255d3SCy Schubert static int wpa_driver_privsep_set_key(void *priv,
209*c1d255d3SCy Schubert 				      struct wpa_driver_set_key_params *params)
210f05cddf9SRui Paulo {
211f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
212f05cddf9SRui Paulo 	struct privsep_cmd_set_key cmd;
213*c1d255d3SCy Schubert 	enum wpa_alg alg = params->alg;
214*c1d255d3SCy Schubert 	const u8 *addr = params->addr;
215*c1d255d3SCy Schubert 	int key_idx = params->key_idx;
216*c1d255d3SCy Schubert 	int set_tx = params->set_tx;
217*c1d255d3SCy Schubert 	const u8 *seq = params->seq;
218*c1d255d3SCy Schubert 	size_t seq_len = params->seq_len;
219*c1d255d3SCy Schubert 	const u8 *key = params->key;
220*c1d255d3SCy Schubert 	size_t key_len = params->key_len;
221f05cddf9SRui Paulo 
222f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s: priv=%p alg=%d key_idx=%d set_tx=%d",
223f05cddf9SRui Paulo 		   __func__, priv, alg, key_idx, set_tx);
224f05cddf9SRui Paulo 
225f05cddf9SRui Paulo 	os_memset(&cmd, 0, sizeof(cmd));
226f05cddf9SRui Paulo 	cmd.alg = alg;
227f05cddf9SRui Paulo 	if (addr)
228f05cddf9SRui Paulo 		os_memcpy(cmd.addr, addr, ETH_ALEN);
229f05cddf9SRui Paulo 	else
230f05cddf9SRui Paulo 		os_memset(cmd.addr, 0xff, ETH_ALEN);
231f05cddf9SRui Paulo 	cmd.key_idx = key_idx;
232f05cddf9SRui Paulo 	cmd.set_tx = set_tx;
233*c1d255d3SCy Schubert 	cmd.key_flag = params->key_flag;
234f05cddf9SRui Paulo 	if (seq && seq_len > 0 && seq_len < sizeof(cmd.seq)) {
235f05cddf9SRui Paulo 		os_memcpy(cmd.seq, seq, seq_len);
236f05cddf9SRui Paulo 		cmd.seq_len = seq_len;
237f05cddf9SRui Paulo 	}
238f05cddf9SRui Paulo 	if (key && key_len > 0 && key_len < sizeof(cmd.key)) {
239f05cddf9SRui Paulo 		os_memcpy(cmd.key, key, key_len);
240f05cddf9SRui Paulo 		cmd.key_len = key_len;
241f05cddf9SRui Paulo 	}
242f05cddf9SRui Paulo 
243f05cddf9SRui Paulo 	return wpa_priv_cmd(drv, PRIVSEP_CMD_SET_KEY, &cmd, sizeof(cmd),
244f05cddf9SRui Paulo 			    NULL, NULL);
245f05cddf9SRui Paulo }
246f05cddf9SRui Paulo 
247f05cddf9SRui Paulo 
wpa_driver_privsep_authenticate(void * priv,struct wpa_driver_auth_params * params)248325151a3SRui Paulo static int wpa_driver_privsep_authenticate(
249325151a3SRui Paulo 	void *priv, struct wpa_driver_auth_params *params)
250325151a3SRui Paulo {
251325151a3SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
252325151a3SRui Paulo 	struct privsep_cmd_authenticate *data;
253325151a3SRui Paulo 	int i, res;
254325151a3SRui Paulo 	size_t buflen;
255325151a3SRui Paulo 	u8 *pos;
256325151a3SRui Paulo 
257325151a3SRui Paulo 	wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d bssid=" MACSTR
258325151a3SRui Paulo 		   " auth_alg=%d local_state_change=%d p2p=%d",
259325151a3SRui Paulo 		   __func__, priv, params->freq, MAC2STR(params->bssid),
260325151a3SRui Paulo 		   params->auth_alg, params->local_state_change, params->p2p);
261325151a3SRui Paulo 
26285732ac8SCy Schubert 	buflen = sizeof(*data) + params->ie_len + params->auth_data_len;
263325151a3SRui Paulo 	data = os_zalloc(buflen);
264325151a3SRui Paulo 	if (data == NULL)
265325151a3SRui Paulo 		return -1;
266325151a3SRui Paulo 
267325151a3SRui Paulo 	data->freq = params->freq;
268325151a3SRui Paulo 	os_memcpy(data->bssid, params->bssid, ETH_ALEN);
269325151a3SRui Paulo 	os_memcpy(data->ssid, params->ssid, params->ssid_len);
270325151a3SRui Paulo 	data->ssid_len = params->ssid_len;
271325151a3SRui Paulo 	data->auth_alg = params->auth_alg;
272325151a3SRui Paulo 	data->ie_len = params->ie_len;
273325151a3SRui Paulo 	for (i = 0; i < 4; i++) {
274325151a3SRui Paulo 		if (params->wep_key[i])
275325151a3SRui Paulo 			os_memcpy(data->wep_key[i], params->wep_key[i],
276325151a3SRui Paulo 				  params->wep_key_len[i]);
277325151a3SRui Paulo 		data->wep_key_len[i] = params->wep_key_len[i];
278325151a3SRui Paulo 	}
279325151a3SRui Paulo 	data->wep_tx_keyidx = params->wep_tx_keyidx;
280325151a3SRui Paulo 	data->local_state_change = params->local_state_change;
281325151a3SRui Paulo 	data->p2p = params->p2p;
282325151a3SRui Paulo 	pos = (u8 *) (data + 1);
283325151a3SRui Paulo 	if (params->ie_len) {
284325151a3SRui Paulo 		os_memcpy(pos, params->ie, params->ie_len);
285325151a3SRui Paulo 		pos += params->ie_len;
286325151a3SRui Paulo 	}
28785732ac8SCy Schubert 	if (params->auth_data_len)
28885732ac8SCy Schubert 		os_memcpy(pos, params->auth_data, params->auth_data_len);
289325151a3SRui Paulo 
290325151a3SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_AUTHENTICATE, data, buflen,
291325151a3SRui Paulo 			   NULL, NULL);
292325151a3SRui Paulo 	os_free(data);
293325151a3SRui Paulo 
294325151a3SRui Paulo 	return res;
295325151a3SRui Paulo }
296325151a3SRui Paulo 
297325151a3SRui Paulo 
wpa_driver_privsep_associate(void * priv,struct wpa_driver_associate_params * params)298f05cddf9SRui Paulo static int wpa_driver_privsep_associate(
299f05cddf9SRui Paulo 	void *priv, struct wpa_driver_associate_params *params)
300f05cddf9SRui Paulo {
301f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
302f05cddf9SRui Paulo 	struct privsep_cmd_associate *data;
303f05cddf9SRui Paulo 	int res;
304f05cddf9SRui Paulo 	size_t buflen;
305f05cddf9SRui Paulo 
306f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s: priv=%p freq=%d pairwise_suite=%d "
307f05cddf9SRui Paulo 		   "group_suite=%d key_mgmt_suite=%d auth_alg=%d mode=%d",
3085b9c547cSRui Paulo 		   __func__, priv, params->freq.freq, params->pairwise_suite,
309f05cddf9SRui Paulo 		   params->group_suite, params->key_mgmt_suite,
310f05cddf9SRui Paulo 		   params->auth_alg, params->mode);
311f05cddf9SRui Paulo 
312f05cddf9SRui Paulo 	buflen = sizeof(*data) + params->wpa_ie_len;
313f05cddf9SRui Paulo 	data = os_zalloc(buflen);
314f05cddf9SRui Paulo 	if (data == NULL)
315f05cddf9SRui Paulo 		return -1;
316f05cddf9SRui Paulo 
317f05cddf9SRui Paulo 	if (params->bssid)
318f05cddf9SRui Paulo 		os_memcpy(data->bssid, params->bssid, ETH_ALEN);
319f05cddf9SRui Paulo 	os_memcpy(data->ssid, params->ssid, params->ssid_len);
320f05cddf9SRui Paulo 	data->ssid_len = params->ssid_len;
3215b9c547cSRui Paulo 	data->hwmode = params->freq.mode;
3225b9c547cSRui Paulo 	data->freq = params->freq.freq;
3235b9c547cSRui Paulo 	data->channel = params->freq.channel;
324f05cddf9SRui Paulo 	data->pairwise_suite = params->pairwise_suite;
325f05cddf9SRui Paulo 	data->group_suite = params->group_suite;
326f05cddf9SRui Paulo 	data->key_mgmt_suite = params->key_mgmt_suite;
327f05cddf9SRui Paulo 	data->auth_alg = params->auth_alg;
328f05cddf9SRui Paulo 	data->mode = params->mode;
329f05cddf9SRui Paulo 	data->wpa_ie_len = params->wpa_ie_len;
330f05cddf9SRui Paulo 	if (params->wpa_ie)
331f05cddf9SRui Paulo 		os_memcpy(data + 1, params->wpa_ie, params->wpa_ie_len);
332f05cddf9SRui Paulo 	/* TODO: add support for other assoc parameters */
333f05cddf9SRui Paulo 
334f05cddf9SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_ASSOCIATE, data, buflen,
335f05cddf9SRui Paulo 			   NULL, NULL);
336f05cddf9SRui Paulo 	os_free(data);
337f05cddf9SRui Paulo 
338f05cddf9SRui Paulo 	return res;
339f05cddf9SRui Paulo }
340f05cddf9SRui Paulo 
341f05cddf9SRui Paulo 
wpa_driver_privsep_get_bssid(void * priv,u8 * bssid)342f05cddf9SRui Paulo static int wpa_driver_privsep_get_bssid(void *priv, u8 *bssid)
343f05cddf9SRui Paulo {
344f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
345f05cddf9SRui Paulo 	int res;
346f05cddf9SRui Paulo 	size_t len = ETH_ALEN;
347f05cddf9SRui Paulo 
348f05cddf9SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_BSSID, NULL, 0, bssid, &len);
349f05cddf9SRui Paulo 	if (res < 0 || len != ETH_ALEN)
350f05cddf9SRui Paulo 		return -1;
351f05cddf9SRui Paulo 	return 0;
352f05cddf9SRui Paulo }
353f05cddf9SRui Paulo 
354f05cddf9SRui Paulo 
wpa_driver_privsep_get_ssid(void * priv,u8 * ssid)355f05cddf9SRui Paulo static int wpa_driver_privsep_get_ssid(void *priv, u8 *ssid)
356f05cddf9SRui Paulo {
357f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
358f05cddf9SRui Paulo 	int res, ssid_len;
359325151a3SRui Paulo 	u8 reply[sizeof(int) + SSID_MAX_LEN];
360f05cddf9SRui Paulo 	size_t len = sizeof(reply);
361f05cddf9SRui Paulo 
362f05cddf9SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_SSID, NULL, 0, reply, &len);
363f05cddf9SRui Paulo 	if (res < 0 || len < sizeof(int))
364f05cddf9SRui Paulo 		return -1;
365f05cddf9SRui Paulo 	os_memcpy(&ssid_len, reply, sizeof(int));
366325151a3SRui Paulo 	if (ssid_len < 0 || ssid_len > SSID_MAX_LEN ||
367325151a3SRui Paulo 	    sizeof(int) + ssid_len > len) {
368f05cddf9SRui Paulo 		wpa_printf(MSG_DEBUG, "privsep: Invalid get SSID reply");
369f05cddf9SRui Paulo 		return -1;
370f05cddf9SRui Paulo 	}
371f05cddf9SRui Paulo 	os_memcpy(ssid, &reply[sizeof(int)], ssid_len);
372f05cddf9SRui Paulo 	return ssid_len;
373f05cddf9SRui Paulo }
374f05cddf9SRui Paulo 
375f05cddf9SRui Paulo 
wpa_driver_privsep_deauthenticate(void * priv,const u8 * addr,u16 reason_code)376f05cddf9SRui Paulo static int wpa_driver_privsep_deauthenticate(void *priv, const u8 *addr,
377206b73d0SCy Schubert 					     u16 reason_code)
378f05cddf9SRui Paulo {
379f05cddf9SRui Paulo 	//struct wpa_driver_privsep_data *drv = priv;
380f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s addr=" MACSTR " reason_code=%d",
381f05cddf9SRui Paulo 		   __func__, MAC2STR(addr), reason_code);
382f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s - TODO", __func__);
383f05cddf9SRui Paulo 	return 0;
384f05cddf9SRui Paulo }
385f05cddf9SRui Paulo 
386f05cddf9SRui Paulo 
wpa_driver_privsep_event_auth(void * ctx,u8 * buf,size_t len)387325151a3SRui Paulo static void wpa_driver_privsep_event_auth(void *ctx, u8 *buf, size_t len)
388325151a3SRui Paulo {
389325151a3SRui Paulo 	union wpa_event_data data;
390325151a3SRui Paulo 	struct privsep_event_auth *auth;
391325151a3SRui Paulo 
392325151a3SRui Paulo 	os_memset(&data, 0, sizeof(data));
393325151a3SRui Paulo 	if (len < sizeof(*auth))
394325151a3SRui Paulo 		return;
395325151a3SRui Paulo 	auth = (struct privsep_event_auth *) buf;
396325151a3SRui Paulo 	if (len < sizeof(*auth) + auth->ies_len)
397325151a3SRui Paulo 		return;
398325151a3SRui Paulo 
399325151a3SRui Paulo 	os_memcpy(data.auth.peer, auth->peer, ETH_ALEN);
400325151a3SRui Paulo 	os_memcpy(data.auth.bssid, auth->bssid, ETH_ALEN);
401325151a3SRui Paulo 	data.auth.auth_type = auth->auth_type;
402325151a3SRui Paulo 	data.auth.auth_transaction = auth->auth_transaction;
403325151a3SRui Paulo 	data.auth.status_code = auth->status_code;
404325151a3SRui Paulo 	if (auth->ies_len) {
405325151a3SRui Paulo 		data.auth.ies = (u8 *) (auth + 1);
406325151a3SRui Paulo 		data.auth.ies_len = auth->ies_len;
407325151a3SRui Paulo 	}
408325151a3SRui Paulo 
409325151a3SRui Paulo 	wpa_supplicant_event(ctx, EVENT_AUTH, &data);
410325151a3SRui Paulo }
411325151a3SRui Paulo 
412325151a3SRui Paulo 
wpa_driver_privsep_event_assoc(void * ctx,enum wpa_event_type event,u8 * buf,size_t len)413f05cddf9SRui Paulo static void wpa_driver_privsep_event_assoc(void *ctx,
414f05cddf9SRui Paulo 					   enum wpa_event_type event,
415f05cddf9SRui Paulo 					   u8 *buf, size_t len)
416f05cddf9SRui Paulo {
417f05cddf9SRui Paulo 	union wpa_event_data data;
418f05cddf9SRui Paulo 	int inc_data = 0;
419f05cddf9SRui Paulo 	u8 *pos, *end;
420f05cddf9SRui Paulo 	int ie_len;
421f05cddf9SRui Paulo 
422f05cddf9SRui Paulo 	os_memset(&data, 0, sizeof(data));
423f05cddf9SRui Paulo 
424f05cddf9SRui Paulo 	pos = buf;
425f05cddf9SRui Paulo 	end = buf + len;
426f05cddf9SRui Paulo 
427f05cddf9SRui Paulo 	if (end - pos < (int) sizeof(int))
428f05cddf9SRui Paulo 		return;
429f05cddf9SRui Paulo 	os_memcpy(&ie_len, pos, sizeof(int));
430f05cddf9SRui Paulo 	pos += sizeof(int);
431f05cddf9SRui Paulo 	if (ie_len < 0 || ie_len > end - pos)
432f05cddf9SRui Paulo 		return;
433f05cddf9SRui Paulo 	if (ie_len) {
434f05cddf9SRui Paulo 		data.assoc_info.req_ies = pos;
435f05cddf9SRui Paulo 		data.assoc_info.req_ies_len = ie_len;
436f05cddf9SRui Paulo 		pos += ie_len;
437f05cddf9SRui Paulo 		inc_data = 1;
438f05cddf9SRui Paulo 	}
439f05cddf9SRui Paulo 
440f05cddf9SRui Paulo 	wpa_supplicant_event(ctx, event, inc_data ? &data : NULL);
441f05cddf9SRui Paulo }
442f05cddf9SRui Paulo 
443f05cddf9SRui Paulo 
wpa_driver_privsep_event_interface_status(void * ctx,u8 * buf,size_t len)444f05cddf9SRui Paulo static void wpa_driver_privsep_event_interface_status(void *ctx, u8 *buf,
445f05cddf9SRui Paulo 						      size_t len)
446f05cddf9SRui Paulo {
447f05cddf9SRui Paulo 	union wpa_event_data data;
448f05cddf9SRui Paulo 	int ievent;
449f05cddf9SRui Paulo 
450f05cddf9SRui Paulo 	if (len < sizeof(int) ||
451f05cddf9SRui Paulo 	    len - sizeof(int) > sizeof(data.interface_status.ifname))
452f05cddf9SRui Paulo 		return;
453f05cddf9SRui Paulo 
454f05cddf9SRui Paulo 	os_memcpy(&ievent, buf, sizeof(int));
455f05cddf9SRui Paulo 
456f05cddf9SRui Paulo 	os_memset(&data, 0, sizeof(data));
457f05cddf9SRui Paulo 	data.interface_status.ievent = ievent;
458f05cddf9SRui Paulo 	os_memcpy(data.interface_status.ifname, buf + sizeof(int),
459f05cddf9SRui Paulo 		  len - sizeof(int));
460f05cddf9SRui Paulo 	wpa_supplicant_event(ctx, EVENT_INTERFACE_STATUS, &data);
461f05cddf9SRui Paulo }
462f05cddf9SRui Paulo 
463f05cddf9SRui Paulo 
wpa_driver_privsep_event_michael_mic_failure(void * ctx,u8 * buf,size_t len)464f05cddf9SRui Paulo static void wpa_driver_privsep_event_michael_mic_failure(
465f05cddf9SRui Paulo 	void *ctx, u8 *buf, size_t len)
466f05cddf9SRui Paulo {
467f05cddf9SRui Paulo 	union wpa_event_data data;
468f05cddf9SRui Paulo 
469f05cddf9SRui Paulo 	if (len != sizeof(int))
470f05cddf9SRui Paulo 		return;
471f05cddf9SRui Paulo 
472f05cddf9SRui Paulo 	os_memset(&data, 0, sizeof(data));
473f05cddf9SRui Paulo 	os_memcpy(&data.michael_mic_failure.unicast, buf, sizeof(int));
474f05cddf9SRui Paulo 	wpa_supplicant_event(ctx, EVENT_MICHAEL_MIC_FAILURE, &data);
475f05cddf9SRui Paulo }
476f05cddf9SRui Paulo 
477f05cddf9SRui Paulo 
wpa_driver_privsep_event_pmkid_candidate(void * ctx,u8 * buf,size_t len)478f05cddf9SRui Paulo static void wpa_driver_privsep_event_pmkid_candidate(void *ctx, u8 *buf,
479f05cddf9SRui Paulo 						     size_t len)
480f05cddf9SRui Paulo {
481f05cddf9SRui Paulo 	union wpa_event_data data;
482f05cddf9SRui Paulo 
483f05cddf9SRui Paulo 	if (len != sizeof(struct pmkid_candidate))
484f05cddf9SRui Paulo 		return;
485f05cddf9SRui Paulo 
486f05cddf9SRui Paulo 	os_memset(&data, 0, sizeof(data));
487f05cddf9SRui Paulo 	os_memcpy(&data.pmkid_candidate, buf, len);
488f05cddf9SRui Paulo 	wpa_supplicant_event(ctx, EVENT_PMKID_CANDIDATE, &data);
489f05cddf9SRui Paulo }
490f05cddf9SRui Paulo 
491f05cddf9SRui Paulo 
wpa_driver_privsep_event_ft_response(void * ctx,u8 * buf,size_t len)492f05cddf9SRui Paulo static void wpa_driver_privsep_event_ft_response(void *ctx, u8 *buf,
493f05cddf9SRui Paulo 						 size_t len)
494f05cddf9SRui Paulo {
495f05cddf9SRui Paulo 	union wpa_event_data data;
496f05cddf9SRui Paulo 
497f05cddf9SRui Paulo 	if (len < sizeof(int) + ETH_ALEN)
498f05cddf9SRui Paulo 		return;
499f05cddf9SRui Paulo 
500f05cddf9SRui Paulo 	os_memset(&data, 0, sizeof(data));
501f05cddf9SRui Paulo 	os_memcpy(&data.ft_ies.ft_action, buf, sizeof(int));
502f05cddf9SRui Paulo 	os_memcpy(data.ft_ies.target_ap, buf + sizeof(int), ETH_ALEN);
503f05cddf9SRui Paulo 	data.ft_ies.ies = buf + sizeof(int) + ETH_ALEN;
504f05cddf9SRui Paulo 	data.ft_ies.ies_len = len - sizeof(int) - ETH_ALEN;
505f05cddf9SRui Paulo 	wpa_supplicant_event(ctx, EVENT_FT_RESPONSE, &data);
506f05cddf9SRui Paulo }
507f05cddf9SRui Paulo 
508f05cddf9SRui Paulo 
wpa_driver_privsep_event_rx_eapol(void * ctx,u8 * buf,size_t len)509f05cddf9SRui Paulo static void wpa_driver_privsep_event_rx_eapol(void *ctx, u8 *buf, size_t len)
510f05cddf9SRui Paulo {
511f05cddf9SRui Paulo 	if (len < ETH_ALEN)
512f05cddf9SRui Paulo 		return;
513f05cddf9SRui Paulo 	drv_event_eapol_rx(ctx, buf, buf + ETH_ALEN, len - ETH_ALEN);
514f05cddf9SRui Paulo }
515f05cddf9SRui Paulo 
516f05cddf9SRui Paulo 
wpa_driver_privsep_receive(int sock,void * eloop_ctx,void * sock_ctx)517f05cddf9SRui Paulo static void wpa_driver_privsep_receive(int sock, void *eloop_ctx,
518f05cddf9SRui Paulo 				       void *sock_ctx)
519f05cddf9SRui Paulo {
520f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = eloop_ctx;
521f05cddf9SRui Paulo 	u8 *buf, *event_buf;
522f05cddf9SRui Paulo 	size_t event_len;
523f05cddf9SRui Paulo 	int res, event;
524f05cddf9SRui Paulo 	enum privsep_event e;
525f05cddf9SRui Paulo 	struct sockaddr_un from;
526f05cddf9SRui Paulo 	socklen_t fromlen = sizeof(from);
527f05cddf9SRui Paulo 	const size_t buflen = 2000;
528f05cddf9SRui Paulo 
529f05cddf9SRui Paulo 	buf = os_malloc(buflen);
530f05cddf9SRui Paulo 	if (buf == NULL)
531f05cddf9SRui Paulo 		return;
532f05cddf9SRui Paulo 	res = recvfrom(sock, buf, buflen, 0,
533f05cddf9SRui Paulo 		       (struct sockaddr *) &from, &fromlen);
534f05cddf9SRui Paulo 	if (res < 0) {
5355b9c547cSRui Paulo 		wpa_printf(MSG_ERROR, "recvfrom(priv_socket): %s",
5365b9c547cSRui Paulo 			   strerror(errno));
537f05cddf9SRui Paulo 		os_free(buf);
538f05cddf9SRui Paulo 		return;
539f05cddf9SRui Paulo 	}
540f05cddf9SRui Paulo 
541f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "privsep_driver: received %u bytes", res);
542f05cddf9SRui Paulo 
543f05cddf9SRui Paulo 	if (res < (int) sizeof(int)) {
544f05cddf9SRui Paulo 		wpa_printf(MSG_DEBUG, "Too short event message (len=%d)", res);
545f05cddf9SRui Paulo 		return;
546f05cddf9SRui Paulo 	}
547f05cddf9SRui Paulo 
548f05cddf9SRui Paulo 	os_memcpy(&event, buf, sizeof(int));
549f05cddf9SRui Paulo 	event_buf = &buf[sizeof(int)];
550f05cddf9SRui Paulo 	event_len = res - sizeof(int);
551f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "privsep: Event %d received (len=%lu)",
552f05cddf9SRui Paulo 		   event, (unsigned long) event_len);
553f05cddf9SRui Paulo 
554f05cddf9SRui Paulo 	e = event;
555f05cddf9SRui Paulo 	switch (e) {
556f05cddf9SRui Paulo 	case PRIVSEP_EVENT_SCAN_RESULTS:
557f05cddf9SRui Paulo 		wpa_supplicant_event(drv->ctx, EVENT_SCAN_RESULTS, NULL);
558f05cddf9SRui Paulo 		break;
559325151a3SRui Paulo 	case PRIVSEP_EVENT_SCAN_STARTED:
560325151a3SRui Paulo 		wpa_supplicant_event(drv->ctx, EVENT_SCAN_STARTED, NULL);
561325151a3SRui Paulo 		break;
562f05cddf9SRui Paulo 	case PRIVSEP_EVENT_ASSOC:
563f05cddf9SRui Paulo 		wpa_driver_privsep_event_assoc(drv->ctx, EVENT_ASSOC,
564f05cddf9SRui Paulo 					       event_buf, event_len);
565f05cddf9SRui Paulo 		break;
566f05cddf9SRui Paulo 	case PRIVSEP_EVENT_DISASSOC:
567f05cddf9SRui Paulo 		wpa_supplicant_event(drv->ctx, EVENT_DISASSOC, NULL);
568f05cddf9SRui Paulo 		break;
569f05cddf9SRui Paulo 	case PRIVSEP_EVENT_ASSOCINFO:
570f05cddf9SRui Paulo 		wpa_driver_privsep_event_assoc(drv->ctx, EVENT_ASSOCINFO,
571f05cddf9SRui Paulo 					       event_buf, event_len);
572f05cddf9SRui Paulo 		break;
573f05cddf9SRui Paulo 	case PRIVSEP_EVENT_MICHAEL_MIC_FAILURE:
574f05cddf9SRui Paulo 		wpa_driver_privsep_event_michael_mic_failure(
575f05cddf9SRui Paulo 			drv->ctx, event_buf, event_len);
576f05cddf9SRui Paulo 		break;
577f05cddf9SRui Paulo 	case PRIVSEP_EVENT_INTERFACE_STATUS:
578f05cddf9SRui Paulo 		wpa_driver_privsep_event_interface_status(drv->ctx, event_buf,
579f05cddf9SRui Paulo 							  event_len);
580f05cddf9SRui Paulo 		break;
581f05cddf9SRui Paulo 	case PRIVSEP_EVENT_PMKID_CANDIDATE:
582f05cddf9SRui Paulo 		wpa_driver_privsep_event_pmkid_candidate(drv->ctx, event_buf,
583f05cddf9SRui Paulo 							 event_len);
584f05cddf9SRui Paulo 		break;
585f05cddf9SRui Paulo 	case PRIVSEP_EVENT_FT_RESPONSE:
586f05cddf9SRui Paulo 		wpa_driver_privsep_event_ft_response(drv->ctx, event_buf,
587f05cddf9SRui Paulo 						     event_len);
588f05cddf9SRui Paulo 		break;
589f05cddf9SRui Paulo 	case PRIVSEP_EVENT_RX_EAPOL:
590f05cddf9SRui Paulo 		wpa_driver_privsep_event_rx_eapol(drv->ctx, event_buf,
591f05cddf9SRui Paulo 						  event_len);
592f05cddf9SRui Paulo 		break;
593325151a3SRui Paulo 	case PRIVSEP_EVENT_AUTH:
594325151a3SRui Paulo 		wpa_driver_privsep_event_auth(drv->ctx, event_buf, event_len);
595325151a3SRui Paulo 		break;
596f05cddf9SRui Paulo 	}
597f05cddf9SRui Paulo 
598f05cddf9SRui Paulo 	os_free(buf);
599f05cddf9SRui Paulo }
600f05cddf9SRui Paulo 
601f05cddf9SRui Paulo 
wpa_driver_privsep_init(void * ctx,const char * ifname)602f05cddf9SRui Paulo static void * wpa_driver_privsep_init(void *ctx, const char *ifname)
603f05cddf9SRui Paulo {
604f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv;
605f05cddf9SRui Paulo 
606f05cddf9SRui Paulo 	drv = os_zalloc(sizeof(*drv));
607f05cddf9SRui Paulo 	if (drv == NULL)
608f05cddf9SRui Paulo 		return NULL;
609f05cddf9SRui Paulo 	drv->ctx = ctx;
610f05cddf9SRui Paulo 	drv->priv_socket = -1;
611f05cddf9SRui Paulo 	drv->cmd_socket = -1;
612f05cddf9SRui Paulo 	os_strlcpy(drv->ifname, ifname, sizeof(drv->ifname));
613f05cddf9SRui Paulo 
614f05cddf9SRui Paulo 	return drv;
615f05cddf9SRui Paulo }
616f05cddf9SRui Paulo 
617f05cddf9SRui Paulo 
wpa_driver_privsep_deinit(void * priv)618f05cddf9SRui Paulo static void wpa_driver_privsep_deinit(void *priv)
619f05cddf9SRui Paulo {
620f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
621f05cddf9SRui Paulo 
622f05cddf9SRui Paulo 	if (drv->priv_socket >= 0) {
623f05cddf9SRui Paulo 		wpa_priv_reg_cmd(drv, PRIVSEP_CMD_UNREGISTER);
624f05cddf9SRui Paulo 		eloop_unregister_read_sock(drv->priv_socket);
625f05cddf9SRui Paulo 		close(drv->priv_socket);
626f05cddf9SRui Paulo 	}
627f05cddf9SRui Paulo 
628f05cddf9SRui Paulo 	if (drv->own_socket_path) {
629f05cddf9SRui Paulo 		unlink(drv->own_socket_path);
630f05cddf9SRui Paulo 		os_free(drv->own_socket_path);
631f05cddf9SRui Paulo 	}
632f05cddf9SRui Paulo 
633f05cddf9SRui Paulo 	if (drv->cmd_socket >= 0) {
634f05cddf9SRui Paulo 		eloop_unregister_read_sock(drv->cmd_socket);
635f05cddf9SRui Paulo 		close(drv->cmd_socket);
636f05cddf9SRui Paulo 	}
637f05cddf9SRui Paulo 
638f05cddf9SRui Paulo 	if (drv->own_cmd_path) {
639f05cddf9SRui Paulo 		unlink(drv->own_cmd_path);
640f05cddf9SRui Paulo 		os_free(drv->own_cmd_path);
641f05cddf9SRui Paulo 	}
642f05cddf9SRui Paulo 
643f05cddf9SRui Paulo 	os_free(drv);
644f05cddf9SRui Paulo }
645f05cddf9SRui Paulo 
646f05cddf9SRui Paulo 
wpa_driver_privsep_set_param(void * priv,const char * param)647f05cddf9SRui Paulo static int wpa_driver_privsep_set_param(void *priv, const char *param)
648f05cddf9SRui Paulo {
649f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
650f05cddf9SRui Paulo 	const char *pos;
651f05cddf9SRui Paulo 	char *own_dir, *priv_dir;
652f05cddf9SRui Paulo 	static unsigned int counter = 0;
653f05cddf9SRui Paulo 	size_t len;
654f05cddf9SRui Paulo 	struct sockaddr_un addr;
655f05cddf9SRui Paulo 
656f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s: param='%s'", __func__, param);
657f05cddf9SRui Paulo 	if (param == NULL)
658f05cddf9SRui Paulo 		pos = NULL;
659f05cddf9SRui Paulo 	else
660f05cddf9SRui Paulo 		pos = os_strstr(param, "own_dir=");
661f05cddf9SRui Paulo 	if (pos) {
662f05cddf9SRui Paulo 		char *end;
663f05cddf9SRui Paulo 		own_dir = os_strdup(pos + 8);
664f05cddf9SRui Paulo 		if (own_dir == NULL)
665f05cddf9SRui Paulo 			return -1;
666f05cddf9SRui Paulo 		end = os_strchr(own_dir, ' ');
667f05cddf9SRui Paulo 		if (end)
668f05cddf9SRui Paulo 			*end = '\0';
669f05cddf9SRui Paulo 	} else {
670f05cddf9SRui Paulo 		own_dir = os_strdup("/tmp");
671f05cddf9SRui Paulo 		if (own_dir == NULL)
672f05cddf9SRui Paulo 			return -1;
673f05cddf9SRui Paulo 	}
674f05cddf9SRui Paulo 
675f05cddf9SRui Paulo 	if (param == NULL)
676f05cddf9SRui Paulo 		pos = NULL;
677f05cddf9SRui Paulo 	else
678f05cddf9SRui Paulo 		pos = os_strstr(param, "priv_dir=");
679f05cddf9SRui Paulo 	if (pos) {
680f05cddf9SRui Paulo 		char *end;
681f05cddf9SRui Paulo 		priv_dir = os_strdup(pos + 9);
682f05cddf9SRui Paulo 		if (priv_dir == NULL) {
683f05cddf9SRui Paulo 			os_free(own_dir);
684f05cddf9SRui Paulo 			return -1;
685f05cddf9SRui Paulo 		}
686f05cddf9SRui Paulo 		end = os_strchr(priv_dir, ' ');
687f05cddf9SRui Paulo 		if (end)
688f05cddf9SRui Paulo 			*end = '\0';
689f05cddf9SRui Paulo 	} else {
690f05cddf9SRui Paulo 		priv_dir = os_strdup("/var/run/wpa_priv");
691f05cddf9SRui Paulo 		if (priv_dir == NULL) {
692f05cddf9SRui Paulo 			os_free(own_dir);
693f05cddf9SRui Paulo 			return -1;
694f05cddf9SRui Paulo 		}
695f05cddf9SRui Paulo 	}
696f05cddf9SRui Paulo 
697f05cddf9SRui Paulo 	len = os_strlen(own_dir) + 50;
698f05cddf9SRui Paulo 	drv->own_socket_path = os_malloc(len);
699f05cddf9SRui Paulo 	if (drv->own_socket_path == NULL) {
700f05cddf9SRui Paulo 		os_free(priv_dir);
701f05cddf9SRui Paulo 		os_free(own_dir);
702f05cddf9SRui Paulo 		return -1;
703f05cddf9SRui Paulo 	}
704f05cddf9SRui Paulo 	os_snprintf(drv->own_socket_path, len, "%s/wpa_privsep-%d-%d",
705f05cddf9SRui Paulo 		    own_dir, getpid(), counter++);
706f05cddf9SRui Paulo 
707f05cddf9SRui Paulo 	len = os_strlen(own_dir) + 50;
708f05cddf9SRui Paulo 	drv->own_cmd_path = os_malloc(len);
709f05cddf9SRui Paulo 	if (drv->own_cmd_path == NULL) {
710f05cddf9SRui Paulo 		os_free(drv->own_socket_path);
711f05cddf9SRui Paulo 		drv->own_socket_path = NULL;
712f05cddf9SRui Paulo 		os_free(priv_dir);
713f05cddf9SRui Paulo 		os_free(own_dir);
714f05cddf9SRui Paulo 		return -1;
715f05cddf9SRui Paulo 	}
716f05cddf9SRui Paulo 	os_snprintf(drv->own_cmd_path, len, "%s/wpa_privsep-%d-%d",
717f05cddf9SRui Paulo 		    own_dir, getpid(), counter++);
718f05cddf9SRui Paulo 
719f05cddf9SRui Paulo 	os_free(own_dir);
720f05cddf9SRui Paulo 
721f05cddf9SRui Paulo 	drv->priv_addr.sun_family = AF_UNIX;
722f05cddf9SRui Paulo 	os_snprintf(drv->priv_addr.sun_path, sizeof(drv->priv_addr.sun_path),
723f05cddf9SRui Paulo 		    "%s/%s", priv_dir, drv->ifname);
724f05cddf9SRui Paulo 	os_free(priv_dir);
725f05cddf9SRui Paulo 
726f05cddf9SRui Paulo 	drv->priv_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
727f05cddf9SRui Paulo 	if (drv->priv_socket < 0) {
7285b9c547cSRui Paulo 		wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
729f05cddf9SRui Paulo 		os_free(drv->own_socket_path);
730f05cddf9SRui Paulo 		drv->own_socket_path = NULL;
731f05cddf9SRui Paulo 		return -1;
732f05cddf9SRui Paulo 	}
733f05cddf9SRui Paulo 
734f05cddf9SRui Paulo 	os_memset(&addr, 0, sizeof(addr));
735f05cddf9SRui Paulo 	addr.sun_family = AF_UNIX;
736f05cddf9SRui Paulo 	os_strlcpy(addr.sun_path, drv->own_socket_path, sizeof(addr.sun_path));
737f05cddf9SRui Paulo 	if (bind(drv->priv_socket, (struct sockaddr *) &addr, sizeof(addr)) <
738f05cddf9SRui Paulo 	    0) {
7395b9c547cSRui Paulo 		wpa_printf(MSG_ERROR,
7405b9c547cSRui Paulo 			   "privsep-set-params priv-sock: bind(PF_UNIX): %s",
7415b9c547cSRui Paulo 			   strerror(errno));
742f05cddf9SRui Paulo 		close(drv->priv_socket);
743f05cddf9SRui Paulo 		drv->priv_socket = -1;
744f05cddf9SRui Paulo 		unlink(drv->own_socket_path);
745f05cddf9SRui Paulo 		os_free(drv->own_socket_path);
746f05cddf9SRui Paulo 		drv->own_socket_path = NULL;
747f05cddf9SRui Paulo 		return -1;
748f05cddf9SRui Paulo 	}
749f05cddf9SRui Paulo 
750f05cddf9SRui Paulo 	eloop_register_read_sock(drv->priv_socket, wpa_driver_privsep_receive,
751f05cddf9SRui Paulo 				 drv, NULL);
752f05cddf9SRui Paulo 
753f05cddf9SRui Paulo 	drv->cmd_socket = socket(PF_UNIX, SOCK_DGRAM, 0);
754f05cddf9SRui Paulo 	if (drv->cmd_socket < 0) {
7555b9c547cSRui Paulo 		wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
756f05cddf9SRui Paulo 		os_free(drv->own_cmd_path);
757f05cddf9SRui Paulo 		drv->own_cmd_path = NULL;
758f05cddf9SRui Paulo 		return -1;
759f05cddf9SRui Paulo 	}
760f05cddf9SRui Paulo 
761f05cddf9SRui Paulo 	os_memset(&addr, 0, sizeof(addr));
762f05cddf9SRui Paulo 	addr.sun_family = AF_UNIX;
763f05cddf9SRui Paulo 	os_strlcpy(addr.sun_path, drv->own_cmd_path, sizeof(addr.sun_path));
764f05cddf9SRui Paulo 	if (bind(drv->cmd_socket, (struct sockaddr *) &addr, sizeof(addr)) < 0)
765f05cddf9SRui Paulo 	{
7665b9c547cSRui Paulo 		wpa_printf(MSG_ERROR,
7675b9c547cSRui Paulo 			   "privsep-set-params cmd-sock: bind(PF_UNIX): %s",
7685b9c547cSRui Paulo 			   strerror(errno));
769f05cddf9SRui Paulo 		close(drv->cmd_socket);
770f05cddf9SRui Paulo 		drv->cmd_socket = -1;
771f05cddf9SRui Paulo 		unlink(drv->own_cmd_path);
772f05cddf9SRui Paulo 		os_free(drv->own_cmd_path);
773f05cddf9SRui Paulo 		drv->own_cmd_path = NULL;
774f05cddf9SRui Paulo 		return -1;
775f05cddf9SRui Paulo 	}
776f05cddf9SRui Paulo 
777f05cddf9SRui Paulo 	if (wpa_priv_reg_cmd(drv, PRIVSEP_CMD_REGISTER) < 0) {
778f05cddf9SRui Paulo 		wpa_printf(MSG_ERROR, "Failed to register with wpa_priv");
779f05cddf9SRui Paulo 		return -1;
780f05cddf9SRui Paulo 	}
781f05cddf9SRui Paulo 
782f05cddf9SRui Paulo 	return 0;
783f05cddf9SRui Paulo }
784f05cddf9SRui Paulo 
785f05cddf9SRui Paulo 
wpa_driver_privsep_get_capa(void * priv,struct wpa_driver_capa * capa)786f05cddf9SRui Paulo static int wpa_driver_privsep_get_capa(void *priv,
787f05cddf9SRui Paulo 				       struct wpa_driver_capa *capa)
788f05cddf9SRui Paulo {
789f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
790f05cddf9SRui Paulo 	int res;
791f05cddf9SRui Paulo 	size_t len = sizeof(*capa);
792f05cddf9SRui Paulo 
793f05cddf9SRui Paulo 	res = wpa_priv_cmd(drv, PRIVSEP_CMD_GET_CAPA, NULL, 0, capa, &len);
794f05cddf9SRui Paulo 	if (res < 0 || len != sizeof(*capa))
795f05cddf9SRui Paulo 		return -1;
796325151a3SRui Paulo 	/* For now, no support for passing extended_capa pointers */
797325151a3SRui Paulo 	capa->extended_capa = NULL;
798325151a3SRui Paulo 	capa->extended_capa_mask = NULL;
799325151a3SRui Paulo 	capa->extended_capa_len = 0;
800*c1d255d3SCy Schubert 	/* Control port is not yet supported */
801*c1d255d3SCy Schubert 	capa->flags &= ~WPA_DRIVER_FLAGS_CONTROL_PORT;
802f05cddf9SRui Paulo 	return 0;
803f05cddf9SRui Paulo }
804f05cddf9SRui Paulo 
805f05cddf9SRui Paulo 
wpa_driver_privsep_get_mac_addr(void * priv)806f05cddf9SRui Paulo static const u8 * wpa_driver_privsep_get_mac_addr(void *priv)
807f05cddf9SRui Paulo {
808f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
809f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s", __func__);
810f05cddf9SRui Paulo 	return drv->own_addr;
811f05cddf9SRui Paulo }
812f05cddf9SRui Paulo 
813f05cddf9SRui Paulo 
wpa_driver_privsep_set_country(void * priv,const char * alpha2)814f05cddf9SRui Paulo static int wpa_driver_privsep_set_country(void *priv, const char *alpha2)
815f05cddf9SRui Paulo {
816f05cddf9SRui Paulo 	struct wpa_driver_privsep_data *drv = priv;
817f05cddf9SRui Paulo 	wpa_printf(MSG_DEBUG, "%s country='%s'", __func__, alpha2);
818f05cddf9SRui Paulo 	return wpa_priv_cmd(drv, PRIVSEP_CMD_SET_COUNTRY, alpha2,
819f05cddf9SRui Paulo 			    os_strlen(alpha2), NULL, NULL);
820f05cddf9SRui Paulo }
821f05cddf9SRui Paulo 
822f05cddf9SRui Paulo 
823f05cddf9SRui Paulo struct wpa_driver_ops wpa_driver_privsep_ops = {
824f05cddf9SRui Paulo 	"privsep",
825f05cddf9SRui Paulo 	"wpa_supplicant privilege separated driver",
826f05cddf9SRui Paulo 	.get_bssid = wpa_driver_privsep_get_bssid,
827f05cddf9SRui Paulo 	.get_ssid = wpa_driver_privsep_get_ssid,
828f05cddf9SRui Paulo 	.set_key = wpa_driver_privsep_set_key,
829f05cddf9SRui Paulo 	.init = wpa_driver_privsep_init,
830f05cddf9SRui Paulo 	.deinit = wpa_driver_privsep_deinit,
831f05cddf9SRui Paulo 	.set_param = wpa_driver_privsep_set_param,
832f05cddf9SRui Paulo 	.scan2 = wpa_driver_privsep_scan,
833f05cddf9SRui Paulo 	.deauthenticate = wpa_driver_privsep_deauthenticate,
834325151a3SRui Paulo 	.authenticate = wpa_driver_privsep_authenticate,
835f05cddf9SRui Paulo 	.associate = wpa_driver_privsep_associate,
836f05cddf9SRui Paulo 	.get_capa = wpa_driver_privsep_get_capa,
837f05cddf9SRui Paulo 	.get_mac_addr = wpa_driver_privsep_get_mac_addr,
838f05cddf9SRui Paulo 	.get_scan_results2 = wpa_driver_privsep_get_scan_results2,
839f05cddf9SRui Paulo 	.set_country = wpa_driver_privsep_set_country,
840f05cddf9SRui Paulo };
841f05cddf9SRui Paulo 
842f05cddf9SRui Paulo 
843325151a3SRui Paulo const struct wpa_driver_ops *const wpa_drivers[] =
844f05cddf9SRui Paulo {
845f05cddf9SRui Paulo 	&wpa_driver_privsep_ops,
846f05cddf9SRui Paulo 	NULL
847f05cddf9SRui Paulo };
848