168e8e04eSSam Leffler /*- 2b032f27cSSam Leffler * Copyright (c) 2002-2008 Sam Leffler, Errno Consulting 368e8e04eSSam Leffler * All rights reserved. 468e8e04eSSam Leffler * 568e8e04eSSam Leffler * Redistribution and use in source and binary forms, with or without 668e8e04eSSam Leffler * modification, are permitted provided that the following conditions 768e8e04eSSam Leffler * are met: 868e8e04eSSam Leffler * 1. Redistributions of source code must retain the above copyright 968e8e04eSSam Leffler * notice, this list of conditions and the following disclaimer. 1068e8e04eSSam Leffler * 2. Redistributions in binary form must reproduce the above copyright 1168e8e04eSSam Leffler * notice, this list of conditions and the following disclaimer in the 1268e8e04eSSam Leffler * documentation and/or other materials provided with the distribution. 1368e8e04eSSam Leffler * 1468e8e04eSSam Leffler * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR 1568e8e04eSSam Leffler * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES 1668e8e04eSSam Leffler * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. 1768e8e04eSSam Leffler * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, 1868e8e04eSSam Leffler * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 1968e8e04eSSam Leffler * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, 2068e8e04eSSam Leffler * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY 2168e8e04eSSam Leffler * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 2268e8e04eSSam Leffler * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF 2368e8e04eSSam Leffler * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 2468e8e04eSSam Leffler */ 2568e8e04eSSam Leffler 2668e8e04eSSam Leffler #include <sys/cdefs.h> 2768e8e04eSSam Leffler __FBSDID("$FreeBSD$"); 2868e8e04eSSam Leffler 2968e8e04eSSam Leffler /* 3068e8e04eSSam Leffler * IEEE 802.11 scanning support. 3168e8e04eSSam Leffler */ 32b032f27cSSam Leffler #include "opt_wlan.h" 33b032f27cSSam Leffler 3468e8e04eSSam Leffler #include <sys/param.h> 3568e8e04eSSam Leffler #include <sys/systm.h> 365efea30fSAndrew Thompson #include <sys/proc.h> 3768e8e04eSSam Leffler #include <sys/kernel.h> 385efea30fSAndrew Thompson #include <sys/condvar.h> 3968e8e04eSSam Leffler 4068e8e04eSSam Leffler #include <sys/socket.h> 4168e8e04eSSam Leffler 4268e8e04eSSam Leffler #include <net/if.h> 4376039bc8SGleb Smirnoff #include <net/if_var.h> 4468e8e04eSSam Leffler #include <net/if_media.h> 4568e8e04eSSam Leffler #include <net/ethernet.h> 4668e8e04eSSam Leffler 4768e8e04eSSam Leffler #include <net80211/ieee80211_var.h> 4868e8e04eSSam Leffler 49cc6dd788SAdrian Chadd /* XXX until it's implemented as attach ops */ 50cc6dd788SAdrian Chadd #include <net80211/ieee80211_scan_sw.h> 51cc6dd788SAdrian Chadd 5268e8e04eSSam Leffler #include <net/bpf.h> 5368e8e04eSSam Leffler 5468e8e04eSSam Leffler /* 5568e8e04eSSam Leffler * Roaming-related defaults. RSSI thresholds are as returned by the 5682c990a4SSam Leffler * driver (.5dBm). Transmit rate thresholds are IEEE rate codes (i.e 57b032f27cSSam Leffler * .5M units) or MCS. 5868e8e04eSSam Leffler */ 5982c990a4SSam Leffler /* rssi thresholds */ 6082c990a4SSam Leffler #define ROAM_RSSI_11A_DEFAULT 14 /* 11a bss */ 6182c990a4SSam Leffler #define ROAM_RSSI_11B_DEFAULT 14 /* 11b bss */ 6282c990a4SSam Leffler #define ROAM_RSSI_11BONLY_DEFAULT 14 /* 11b-only bss */ 6382c990a4SSam Leffler /* transmit rate thresholds */ 6482c990a4SSam Leffler #define ROAM_RATE_11A_DEFAULT 2*12 /* 11a bss */ 6582c990a4SSam Leffler #define ROAM_RATE_11B_DEFAULT 2*5 /* 11b bss */ 6682c990a4SSam Leffler #define ROAM_RATE_11BONLY_DEFAULT 2*1 /* 11b-only bss */ 676a76ae21SSam Leffler #define ROAM_RATE_HALF_DEFAULT 2*6 /* half-width 11a/g bss */ 686a76ae21SSam Leffler #define ROAM_RATE_QUARTER_DEFAULT 2*3 /* quarter-width 11a/g bss */ 6982c990a4SSam Leffler #define ROAM_MCS_11N_DEFAULT (1 | IEEE80211_RATE_MCS) /* 11n bss */ 7068e8e04eSSam Leffler 7168e8e04eSSam Leffler void 7268e8e04eSSam Leffler ieee80211_scan_attach(struct ieee80211com *ic) 7368e8e04eSSam Leffler { 74cc6dd788SAdrian Chadd /* 75*f7f155faSAdrian Chadd * If there's no scan method pointer, attach the 76*f7f155faSAdrian Chadd * swscan set as a default. 77cc6dd788SAdrian Chadd */ 78*f7f155faSAdrian Chadd if (ic->ic_scan_methods == NULL) 79cc6dd788SAdrian Chadd ieee80211_swscan_attach(ic); 80*f7f155faSAdrian Chadd else 81*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_attach(ic); 8268e8e04eSSam Leffler } 8368e8e04eSSam Leffler 8468e8e04eSSam Leffler void 8568e8e04eSSam Leffler ieee80211_scan_detach(struct ieee80211com *ic) 8668e8e04eSSam Leffler { 8768e8e04eSSam Leffler 88cc6dd788SAdrian Chadd /* 89cc6dd788SAdrian Chadd * Ideally we'd do the ss_ops detach call here; 90*f7f155faSAdrian Chadd * but then sc_detach() would need to be split in two. 91cc6dd788SAdrian Chadd * 92cc6dd788SAdrian Chadd * I'll do that later. 93cc6dd788SAdrian Chadd */ 94*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_detach(ic); 9568e8e04eSSam Leffler } 9668e8e04eSSam Leffler 9782c990a4SSam Leffler static const struct ieee80211_roamparam defroam[IEEE80211_MODE_MAX] = { 9882c990a4SSam Leffler [IEEE80211_MODE_11A] = { .rssi = ROAM_RSSI_11A_DEFAULT, 9982c990a4SSam Leffler .rate = ROAM_RATE_11A_DEFAULT }, 10082c990a4SSam Leffler [IEEE80211_MODE_11G] = { .rssi = ROAM_RSSI_11B_DEFAULT, 10182c990a4SSam Leffler .rate = ROAM_RATE_11B_DEFAULT }, 10282c990a4SSam Leffler [IEEE80211_MODE_11B] = { .rssi = ROAM_RSSI_11BONLY_DEFAULT, 10382c990a4SSam Leffler .rate = ROAM_RATE_11BONLY_DEFAULT }, 10482c990a4SSam Leffler [IEEE80211_MODE_TURBO_A]= { .rssi = ROAM_RSSI_11A_DEFAULT, 10582c990a4SSam Leffler .rate = ROAM_RATE_11A_DEFAULT }, 10682c990a4SSam Leffler [IEEE80211_MODE_TURBO_G]= { .rssi = ROAM_RSSI_11A_DEFAULT, 10782c990a4SSam Leffler .rate = ROAM_RATE_11A_DEFAULT }, 10882c990a4SSam Leffler [IEEE80211_MODE_STURBO_A]={ .rssi = ROAM_RSSI_11A_DEFAULT, 10982c990a4SSam Leffler .rate = ROAM_RATE_11A_DEFAULT }, 1106a76ae21SSam Leffler [IEEE80211_MODE_HALF] = { .rssi = ROAM_RSSI_11A_DEFAULT, 1116a76ae21SSam Leffler .rate = ROAM_RATE_HALF_DEFAULT }, 1126a76ae21SSam Leffler [IEEE80211_MODE_QUARTER]= { .rssi = ROAM_RSSI_11A_DEFAULT, 1136a76ae21SSam Leffler .rate = ROAM_RATE_QUARTER_DEFAULT }, 11482c990a4SSam Leffler [IEEE80211_MODE_11NA] = { .rssi = ROAM_RSSI_11A_DEFAULT, 11582c990a4SSam Leffler .rate = ROAM_MCS_11N_DEFAULT }, 11682c990a4SSam Leffler [IEEE80211_MODE_11NG] = { .rssi = ROAM_RSSI_11B_DEFAULT, 11782c990a4SSam Leffler .rate = ROAM_MCS_11N_DEFAULT }, 11882c990a4SSam Leffler }; 119b032f27cSSam Leffler 120b032f27cSSam Leffler void 121b032f27cSSam Leffler ieee80211_scan_vattach(struct ieee80211vap *vap) 122b032f27cSSam Leffler { 123*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 124*f7f155faSAdrian Chadd 125b032f27cSSam Leffler vap->iv_bgscanidle = (IEEE80211_BGSCAN_IDLE_DEFAULT*1000)/hz; 126b032f27cSSam Leffler vap->iv_bgscanintvl = IEEE80211_BGSCAN_INTVAL_DEFAULT*hz; 127b032f27cSSam Leffler vap->iv_scanvalid = IEEE80211_SCAN_VALID_DEFAULT*hz; 128b032f27cSSam Leffler 129b032f27cSSam Leffler vap->iv_roaming = IEEE80211_ROAMING_AUTO; 13082c990a4SSam Leffler memcpy(vap->iv_roamparms, defroam, sizeof(defroam)); 131cc6dd788SAdrian Chadd 132*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_vattach(vap); 133b032f27cSSam Leffler } 134b032f27cSSam Leffler 135b032f27cSSam Leffler void 136b032f27cSSam Leffler ieee80211_scan_vdetach(struct ieee80211vap *vap) 137b032f27cSSam Leffler { 138b032f27cSSam Leffler struct ieee80211com *ic = vap->iv_ic; 139b032f27cSSam Leffler struct ieee80211_scan_state *ss; 140b032f27cSSam Leffler 141b032f27cSSam Leffler IEEE80211_LOCK(ic); 142b032f27cSSam Leffler ss = ic->ic_scan; 143cc6dd788SAdrian Chadd 144*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_vdetach(vap); 145cc6dd788SAdrian Chadd 146b032f27cSSam Leffler if (ss != NULL && ss->ss_vap == vap) { 147b032f27cSSam Leffler if (ss->ss_ops != NULL) { 148b032f27cSSam Leffler ss->ss_ops->scan_detach(ss); 149b032f27cSSam Leffler ss->ss_ops = NULL; 150b032f27cSSam Leffler } 151b032f27cSSam Leffler ss->ss_vap = NULL; 152b032f27cSSam Leffler } 153b032f27cSSam Leffler IEEE80211_UNLOCK(ic); 154b032f27cSSam Leffler } 155b032f27cSSam Leffler 15668e8e04eSSam Leffler /* 15768e8e04eSSam Leffler * Simple-minded scanner module support. 15868e8e04eSSam Leffler */ 159b032f27cSSam Leffler static const char *scan_modnames[IEEE80211_OPMODE_MAX] = { 16068e8e04eSSam Leffler "wlan_scan_sta", /* IEEE80211_M_IBSS */ 16168e8e04eSSam Leffler "wlan_scan_sta", /* IEEE80211_M_STA */ 16268e8e04eSSam Leffler "wlan_scan_wds", /* IEEE80211_M_WDS */ 16368e8e04eSSam Leffler "wlan_scan_sta", /* IEEE80211_M_AHDEMO */ 16468e8e04eSSam Leffler "wlan_scan_ap", /* IEEE80211_M_HOSTAP */ 16568e8e04eSSam Leffler "wlan_scan_monitor", /* IEEE80211_M_MONITOR */ 16659aa14a9SRui Paulo "wlan_scan_sta", /* IEEE80211_M_MBSS */ 16768e8e04eSSam Leffler }; 168b032f27cSSam Leffler static const struct ieee80211_scanner *scanners[IEEE80211_OPMODE_MAX]; 16968e8e04eSSam Leffler 17068e8e04eSSam Leffler const struct ieee80211_scanner * 17168e8e04eSSam Leffler ieee80211_scanner_get(enum ieee80211_opmode mode) 17268e8e04eSSam Leffler { 173b032f27cSSam Leffler if (mode >= IEEE80211_OPMODE_MAX) 17468e8e04eSSam Leffler return NULL; 175b032f27cSSam Leffler if (scanners[mode] == NULL) 17668e8e04eSSam Leffler ieee80211_load_module(scan_modnames[mode]); 17768e8e04eSSam Leffler return scanners[mode]; 17868e8e04eSSam Leffler } 17968e8e04eSSam Leffler 18068e8e04eSSam Leffler void 18168e8e04eSSam Leffler ieee80211_scanner_register(enum ieee80211_opmode mode, 18268e8e04eSSam Leffler const struct ieee80211_scanner *scan) 18368e8e04eSSam Leffler { 184b032f27cSSam Leffler if (mode >= IEEE80211_OPMODE_MAX) 18568e8e04eSSam Leffler return; 18668e8e04eSSam Leffler scanners[mode] = scan; 18768e8e04eSSam Leffler } 18868e8e04eSSam Leffler 18968e8e04eSSam Leffler void 19068e8e04eSSam Leffler ieee80211_scanner_unregister(enum ieee80211_opmode mode, 19168e8e04eSSam Leffler const struct ieee80211_scanner *scan) 19268e8e04eSSam Leffler { 193b032f27cSSam Leffler if (mode >= IEEE80211_OPMODE_MAX) 19468e8e04eSSam Leffler return; 19568e8e04eSSam Leffler if (scanners[mode] == scan) 19668e8e04eSSam Leffler scanners[mode] = NULL; 19768e8e04eSSam Leffler } 19868e8e04eSSam Leffler 19968e8e04eSSam Leffler void 20068e8e04eSSam Leffler ieee80211_scanner_unregister_all(const struct ieee80211_scanner *scan) 20168e8e04eSSam Leffler { 20268e8e04eSSam Leffler int m; 20368e8e04eSSam Leffler 204b032f27cSSam Leffler for (m = 0; m < IEEE80211_OPMODE_MAX; m++) 20568e8e04eSSam Leffler if (scanners[m] == scan) 20668e8e04eSSam Leffler scanners[m] = NULL; 20768e8e04eSSam Leffler } 20868e8e04eSSam Leffler 20968e8e04eSSam Leffler /* 21068e8e04eSSam Leffler * Update common scanner state to reflect the current 21168e8e04eSSam Leffler * operating mode. This is called when the state machine 21268e8e04eSSam Leffler * is transitioned to RUN state w/o scanning--e.g. when 21368e8e04eSSam Leffler * operating in monitor mode. The purpose of this is to 21468e8e04eSSam Leffler * ensure later callbacks find ss_ops set to properly 21568e8e04eSSam Leffler * reflect current operating mode. 21668e8e04eSSam Leffler */ 217cc6dd788SAdrian Chadd void 218cc6dd788SAdrian Chadd ieee80211_scan_update_locked(struct ieee80211vap *vap, 219b032f27cSSam Leffler const struct ieee80211_scanner *scan) 22068e8e04eSSam Leffler { 221b032f27cSSam Leffler struct ieee80211com *ic = vap->iv_ic; 22268e8e04eSSam Leffler struct ieee80211_scan_state *ss = ic->ic_scan; 22368e8e04eSSam Leffler 224b032f27cSSam Leffler IEEE80211_LOCK_ASSERT(ic); 225b032f27cSSam Leffler 226b032f27cSSam Leffler #ifdef IEEE80211_DEBUG 227b032f27cSSam Leffler if (ss->ss_vap != vap || ss->ss_ops != scan) { 228b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 229b032f27cSSam Leffler "%s: current scanner is <%s:%s>, switch to <%s:%s>\n", 230b032f27cSSam Leffler __func__, 231b032f27cSSam Leffler ss->ss_vap != NULL ? 232b032f27cSSam Leffler ss->ss_vap->iv_ifp->if_xname : "none", 233b032f27cSSam Leffler ss->ss_vap != NULL ? 234b032f27cSSam Leffler ieee80211_opmode_name[ss->ss_vap->iv_opmode] : "none", 235b032f27cSSam Leffler vap->iv_ifp->if_xname, 236b032f27cSSam Leffler ieee80211_opmode_name[vap->iv_opmode]); 23768e8e04eSSam Leffler } 238b032f27cSSam Leffler #endif 239b032f27cSSam Leffler ss->ss_vap = vap; 24068e8e04eSSam Leffler if (ss->ss_ops != scan) { 241b032f27cSSam Leffler /* 242b032f27cSSam Leffler * Switch scanners; detach old, attach new. Special 243b032f27cSSam Leffler * case where a single scan module implements multiple 244b032f27cSSam Leffler * policies by using different scan ops but a common 245b032f27cSSam Leffler * core. We assume if the old and new attach methods 246b032f27cSSam Leffler * are identical then it's ok to just change ss_ops 247b032f27cSSam Leffler * and not flush the internal state of the module. 248b032f27cSSam Leffler */ 249b032f27cSSam Leffler if (scan == NULL || ss->ss_ops == NULL || 250b032f27cSSam Leffler ss->ss_ops->scan_attach != scan->scan_attach) { 25168e8e04eSSam Leffler if (ss->ss_ops != NULL) 25268e8e04eSSam Leffler ss->ss_ops->scan_detach(ss); 25368e8e04eSSam Leffler if (scan != NULL && !scan->scan_attach(ss)) { 25468e8e04eSSam Leffler /* XXX attach failure */ 25568e8e04eSSam Leffler /* XXX stat+msg */ 256b032f27cSSam Leffler scan = NULL; 257b032f27cSSam Leffler } 258b032f27cSSam Leffler } 25968e8e04eSSam Leffler ss->ss_ops = scan; 26068e8e04eSSam Leffler } 26168e8e04eSSam Leffler } 26268e8e04eSSam Leffler 26368e8e04eSSam Leffler void 26468e8e04eSSam Leffler ieee80211_scan_dump_channels(const struct ieee80211_scan_state *ss) 26568e8e04eSSam Leffler { 2665efea30fSAndrew Thompson struct ieee80211com *ic = ss->ss_ic; 26768e8e04eSSam Leffler const char *sep; 26868e8e04eSSam Leffler int i; 26968e8e04eSSam Leffler 27068e8e04eSSam Leffler sep = ""; 27168e8e04eSSam Leffler for (i = ss->ss_next; i < ss->ss_last; i++) { 27268e8e04eSSam Leffler const struct ieee80211_channel *c = ss->ss_chans[i]; 27368e8e04eSSam Leffler 27468e8e04eSSam Leffler printf("%s%u%c", sep, ieee80211_chan2ieee(ic, c), 275a1cbd043SAdrian Chadd ieee80211_channel_type_char(c)); 27668e8e04eSSam Leffler sep = ", "; 27768e8e04eSSam Leffler } 27868e8e04eSSam Leffler } 27968e8e04eSSam Leffler 280b032f27cSSam Leffler #ifdef IEEE80211_DEBUG 281cc6dd788SAdrian Chadd void 282cc6dd788SAdrian Chadd ieee80211_scan_dump(struct ieee80211_scan_state *ss) 283b032f27cSSam Leffler { 284b032f27cSSam Leffler struct ieee80211vap *vap = ss->ss_vap; 285b032f27cSSam Leffler 286b032f27cSSam Leffler if_printf(vap->iv_ifp, "scan set "); 287b032f27cSSam Leffler ieee80211_scan_dump_channels(ss); 288110a70e3SSam Leffler printf(" dwell min %lums max %lums\n", 289110a70e3SSam Leffler ticks_to_msecs(ss->ss_mindwell), ticks_to_msecs(ss->ss_maxdwell)); 290b032f27cSSam Leffler } 291b032f27cSSam Leffler #endif /* IEEE80211_DEBUG */ 292b032f27cSSam Leffler 293cc6dd788SAdrian Chadd void 294cc6dd788SAdrian Chadd ieee80211_scan_copy_ssid(struct ieee80211vap *vap, struct ieee80211_scan_state *ss, 29568e8e04eSSam Leffler int nssid, const struct ieee80211_scan_ssid ssids[]) 29668e8e04eSSam Leffler { 29768e8e04eSSam Leffler if (nssid > IEEE80211_SCAN_MAX_SSID) { 29868e8e04eSSam Leffler /* XXX printf */ 299b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 30068e8e04eSSam Leffler "%s: too many ssid %d, ignoring all of them\n", 30168e8e04eSSam Leffler __func__, nssid); 30268e8e04eSSam Leffler return; 30368e8e04eSSam Leffler } 30468e8e04eSSam Leffler memcpy(ss->ss_ssid, ssids, nssid * sizeof(ssids[0])); 30568e8e04eSSam Leffler ss->ss_nssid = nssid; 30668e8e04eSSam Leffler } 30768e8e04eSSam Leffler 30868e8e04eSSam Leffler /* 30968e8e04eSSam Leffler * Start a scan unless one is already going. 31068e8e04eSSam Leffler */ 311cc6dd788SAdrian Chadd int 312b032f27cSSam Leffler ieee80211_start_scan(struct ieee80211vap *vap, int flags, 313b032f27cSSam Leffler u_int duration, u_int mindwell, u_int maxdwell, 314b032f27cSSam Leffler u_int nssid, const struct ieee80211_scan_ssid ssids[]) 315b032f27cSSam Leffler { 316b032f27cSSam Leffler const struct ieee80211_scanner *scan; 317*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 318b032f27cSSam Leffler 319b032f27cSSam Leffler scan = ieee80211_scanner_get(vap->iv_opmode); 320b032f27cSSam Leffler if (scan == NULL) { 321b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 322b032f27cSSam Leffler "%s: no scanner support for %s mode\n", 323b032f27cSSam Leffler __func__, ieee80211_opmode_name[vap->iv_opmode]); 324b032f27cSSam Leffler /* XXX stat */ 325b032f27cSSam Leffler return 0; 326b032f27cSSam Leffler } 327b032f27cSSam Leffler 328*f7f155faSAdrian Chadd return ic->ic_scan_methods->sc_start_scan(scan, vap, flags, duration, 329b032f27cSSam Leffler mindwell, maxdwell, nssid, ssids); 33068e8e04eSSam Leffler } 33168e8e04eSSam Leffler 33268e8e04eSSam Leffler /* 33368e8e04eSSam Leffler * Check the scan cache for an ap/channel to use; if that 33468e8e04eSSam Leffler * fails then kick off a new scan. 33568e8e04eSSam Leffler */ 33668e8e04eSSam Leffler int 337b032f27cSSam Leffler ieee80211_check_scan(struct ieee80211vap *vap, int flags, 338b032f27cSSam Leffler u_int duration, u_int mindwell, u_int maxdwell, 33968e8e04eSSam Leffler u_int nssid, const struct ieee80211_scan_ssid ssids[]) 34068e8e04eSSam Leffler { 341b032f27cSSam Leffler struct ieee80211com *ic = vap->iv_ic; 34268e8e04eSSam Leffler struct ieee80211_scan_state *ss = ic->ic_scan; 343b032f27cSSam Leffler const struct ieee80211_scanner *scan; 344aa0fbc73SSam Leffler int result; 345b032f27cSSam Leffler 346b032f27cSSam Leffler scan = ieee80211_scanner_get(vap->iv_opmode); 347b032f27cSSam Leffler if (scan == NULL) { 348b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 349b032f27cSSam Leffler "%s: no scanner support for %s mode\n", 350b032f27cSSam Leffler __func__, vap->iv_opmode); 351b032f27cSSam Leffler /* XXX stat */ 352b032f27cSSam Leffler return 0; 353b032f27cSSam Leffler } 35468e8e04eSSam Leffler 35568e8e04eSSam Leffler /* 35668e8e04eSSam Leffler * Check if there's a list of scan candidates already. 35768e8e04eSSam Leffler * XXX want more than the ap we're currently associated with 35868e8e04eSSam Leffler */ 35968e8e04eSSam Leffler 36068e8e04eSSam Leffler IEEE80211_LOCK(ic); 361b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 362b032f27cSSam Leffler "%s: %s scan, %s%s%s%s%s\n" 36368e8e04eSSam Leffler , __func__ 36468e8e04eSSam Leffler , flags & IEEE80211_SCAN_ACTIVE ? "active" : "passive" 36568e8e04eSSam Leffler , flags & IEEE80211_SCAN_FLUSH ? "flush" : "append" 36668e8e04eSSam Leffler , flags & IEEE80211_SCAN_NOPICK ? ", nopick" : "" 367b032f27cSSam Leffler , flags & IEEE80211_SCAN_NOJOIN ? ", nojoin" : "" 36868e8e04eSSam Leffler , flags & IEEE80211_SCAN_PICK1ST ? ", pick1st" : "" 36968e8e04eSSam Leffler , flags & IEEE80211_SCAN_ONCE ? ", once" : "" 37068e8e04eSSam Leffler ); 37168e8e04eSSam Leffler 372b032f27cSSam Leffler if (ss->ss_ops != scan) { 373b032f27cSSam Leffler /* XXX re-use cache contents? e.g. adhoc<->sta */ 374b032f27cSSam Leffler flags |= IEEE80211_SCAN_FLUSH; 375b032f27cSSam Leffler } 376aa0fbc73SSam Leffler 377cc6dd788SAdrian Chadd /* 378cc6dd788SAdrian Chadd * XXX TODO: separate things out a bit better. 379cc6dd788SAdrian Chadd */ 380cc6dd788SAdrian Chadd ieee80211_scan_update_locked(vap, scan); 381aa0fbc73SSam Leffler 382*f7f155faSAdrian Chadd result = ic->ic_scan_methods->sc_check_scan(scan, vap, flags, duration, 383b032f27cSSam Leffler mindwell, maxdwell, nssid, ssids); 384cc6dd788SAdrian Chadd 385b032f27cSSam Leffler IEEE80211_UNLOCK(ic); 386b032f27cSSam Leffler 387cc6dd788SAdrian Chadd return (result); 388b032f27cSSam Leffler } 389b032f27cSSam Leffler 390b032f27cSSam Leffler /* 391b032f27cSSam Leffler * Check the scan cache for an ap/channel to use; if that fails 392b032f27cSSam Leffler * then kick off a scan using the current settings. 393b032f27cSSam Leffler */ 394b032f27cSSam Leffler int 395b032f27cSSam Leffler ieee80211_check_scan_current(struct ieee80211vap *vap) 396b032f27cSSam Leffler { 397b032f27cSSam Leffler return ieee80211_check_scan(vap, 398b032f27cSSam Leffler IEEE80211_SCAN_ACTIVE, 399b032f27cSSam Leffler IEEE80211_SCAN_FOREVER, 0, 0, 400b032f27cSSam Leffler vap->iv_des_nssid, vap->iv_des_ssid); 40168e8e04eSSam Leffler } 40268e8e04eSSam Leffler 40368e8e04eSSam Leffler /* 40468e8e04eSSam Leffler * Restart a previous scan. If the previous scan completed 40568e8e04eSSam Leffler * then we start again using the existing channel list. 40668e8e04eSSam Leffler */ 40768e8e04eSSam Leffler int 408b032f27cSSam Leffler ieee80211_bg_scan(struct ieee80211vap *vap, int flags) 40968e8e04eSSam Leffler { 410*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 411b032f27cSSam Leffler const struct ieee80211_scanner *scan; 412b032f27cSSam Leffler 413cc6dd788SAdrian Chadd // IEEE80211_UNLOCK_ASSERT(sc); 414cc6dd788SAdrian Chadd 415b032f27cSSam Leffler scan = ieee80211_scanner_get(vap->iv_opmode); 416b032f27cSSam Leffler if (scan == NULL) { 417b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, 418b032f27cSSam Leffler "%s: no scanner support for %s mode\n", 419b032f27cSSam Leffler __func__, vap->iv_opmode); 420b032f27cSSam Leffler /* XXX stat */ 421b032f27cSSam Leffler return 0; 422b032f27cSSam Leffler } 42368e8e04eSSam Leffler 42468e8e04eSSam Leffler /* 425cc6dd788SAdrian Chadd * XXX TODO: pull apart the bgscan logic into whatever 426cc6dd788SAdrian Chadd * belongs here and whatever belongs in the software 427cc6dd788SAdrian Chadd * scanner. 42868e8e04eSSam Leffler */ 429*f7f155faSAdrian Chadd return (ic->ic_scan_methods->sc_bg_scan(scan, vap, flags)); 43068e8e04eSSam Leffler } 43168e8e04eSSam Leffler 43268e8e04eSSam Leffler /* 433b032f27cSSam Leffler * Cancel any scan currently going on for the specified vap. 434b032f27cSSam Leffler */ 435b032f27cSSam Leffler void 436b032f27cSSam Leffler ieee80211_cancel_scan(struct ieee80211vap *vap) 437b032f27cSSam Leffler { 438*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 439b032f27cSSam Leffler 440*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_cancel_scan(vap); 441b032f27cSSam Leffler } 442b032f27cSSam Leffler 443b032f27cSSam Leffler /* 44468e8e04eSSam Leffler * Cancel any scan currently going on. 44568e8e04eSSam Leffler */ 44668e8e04eSSam Leffler void 447b032f27cSSam Leffler ieee80211_cancel_anyscan(struct ieee80211vap *vap) 44868e8e04eSSam Leffler { 449*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 45068e8e04eSSam Leffler 451*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_cancel_anyscan(vap); 45268e8e04eSSam Leffler } 45368e8e04eSSam Leffler 45468e8e04eSSam Leffler /* 45568e8e04eSSam Leffler * Public access to scan_next for drivers that manage 45668e8e04eSSam Leffler * scanning themselves (e.g. for firmware-based devices). 45768e8e04eSSam Leffler */ 45868e8e04eSSam Leffler void 459b032f27cSSam Leffler ieee80211_scan_next(struct ieee80211vap *vap) 46068e8e04eSSam Leffler { 461*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 462b032f27cSSam Leffler 463*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_scan_next(vap); 46468e8e04eSSam Leffler } 46568e8e04eSSam Leffler 46668e8e04eSSam Leffler /* 467d81b3a55SAndrew Thompson * Public access to scan_next for drivers that are not able to scan single 468d81b3a55SAndrew Thompson * channels (e.g. for firmware-based devices). 469d81b3a55SAndrew Thompson */ 470d81b3a55SAndrew Thompson void 471b032f27cSSam Leffler ieee80211_scan_done(struct ieee80211vap *vap) 472d81b3a55SAndrew Thompson { 473b032f27cSSam Leffler struct ieee80211com *ic = vap->iv_ic; 474b032f27cSSam Leffler struct ieee80211_scan_state *ss; 475d81b3a55SAndrew Thompson 4762c617940SAdrian Chadd IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, "%s: called\n", __func__); 4772c617940SAdrian Chadd 478b032f27cSSam Leffler IEEE80211_LOCK(ic); 479b032f27cSSam Leffler ss = ic->ic_scan; 480d81b3a55SAndrew Thompson ss->ss_next = ss->ss_last; /* all channels are complete */ 481cc6dd788SAdrian Chadd 482*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_scan_done(vap); 483cc6dd788SAdrian Chadd 484b032f27cSSam Leffler IEEE80211_UNLOCK(ic); 485b032f27cSSam Leffler } 486b032f27cSSam Leffler 487b032f27cSSam Leffler /* 488b032f27cSSam Leffler * Probe the curent channel, if allowed, while scanning. 489b032f27cSSam Leffler * If the channel is not marked passive-only then send 490b032f27cSSam Leffler * a probe request immediately. Otherwise mark state and 491b032f27cSSam Leffler * listen for beacons on the channel; if we receive something 492b032f27cSSam Leffler * then we'll transmit a probe request. 493b032f27cSSam Leffler */ 494b032f27cSSam Leffler void 495b032f27cSSam Leffler ieee80211_probe_curchan(struct ieee80211vap *vap, int force) 496b032f27cSSam Leffler { 497b032f27cSSam Leffler struct ieee80211com *ic = vap->iv_ic; 498b032f27cSSam Leffler 499b032f27cSSam Leffler if ((ic->ic_curchan->ic_flags & IEEE80211_CHAN_PASSIVE) && !force) { 500b032f27cSSam Leffler ic->ic_flags_ext |= IEEE80211_FEXT_PROBECHAN; 501b032f27cSSam Leffler return; 502b032f27cSSam Leffler } 503d81b3a55SAndrew Thompson 504*f7f155faSAdrian Chadd ic->ic_scan_methods->sc_scan_probe_curchan(vap, force); 50568e8e04eSSam Leffler } 50668e8e04eSSam Leffler 50768e8e04eSSam Leffler #ifdef IEEE80211_DEBUG 50868e8e04eSSam Leffler static void 509b032f27cSSam Leffler dump_country(const uint8_t *ie) 510b032f27cSSam Leffler { 511b032f27cSSam Leffler const struct ieee80211_country_ie *cie = 512b032f27cSSam Leffler (const struct ieee80211_country_ie *) ie; 513b032f27cSSam Leffler int i, nbands, schan, nchan; 514b032f27cSSam Leffler 515b032f27cSSam Leffler if (cie->len < 3) { 516b032f27cSSam Leffler printf(" <bogus country ie, len %d>", cie->len); 517b032f27cSSam Leffler return; 518b032f27cSSam Leffler } 519b032f27cSSam Leffler printf(" country [%c%c%c", cie->cc[0], cie->cc[1], cie->cc[2]); 520b032f27cSSam Leffler nbands = (cie->len - 3) / sizeof(cie->band[0]); 521b032f27cSSam Leffler for (i = 0; i < nbands; i++) { 522b032f27cSSam Leffler schan = cie->band[i].schan; 523b032f27cSSam Leffler nchan = cie->band[i].nchan; 524b032f27cSSam Leffler if (nchan != 1) 525b032f27cSSam Leffler printf(" %u-%u,%u", schan, schan + nchan-1, 526b032f27cSSam Leffler cie->band[i].maxtxpwr); 527b032f27cSSam Leffler else 528b032f27cSSam Leffler printf(" %u,%u", schan, cie->band[i].maxtxpwr); 529b032f27cSSam Leffler } 530b032f27cSSam Leffler printf("]"); 531b032f27cSSam Leffler } 532b032f27cSSam Leffler 533cc6dd788SAdrian Chadd void 534cc6dd788SAdrian Chadd ieee80211_scan_dump_probe_beacon(uint8_t subtype, int isnew, 53568e8e04eSSam Leffler const uint8_t mac[IEEE80211_ADDR_LEN], 536b032f27cSSam Leffler const struct ieee80211_scanparams *sp, int rssi) 53768e8e04eSSam Leffler { 53868e8e04eSSam Leffler 53968e8e04eSSam Leffler printf("[%s] %s%s on chan %u (bss chan %u) ", 54068e8e04eSSam Leffler ether_sprintf(mac), isnew ? "new " : "", 54168e8e04eSSam Leffler ieee80211_mgt_subtype_name[subtype >> IEEE80211_FC0_SUBTYPE_SHIFT], 542b032f27cSSam Leffler sp->chan, sp->bchan); 54368e8e04eSSam Leffler ieee80211_print_essid(sp->ssid + 2, sp->ssid[1]); 544b032f27cSSam Leffler printf(" rssi %d\n", rssi); 54568e8e04eSSam Leffler 54668e8e04eSSam Leffler if (isnew) { 54768e8e04eSSam Leffler printf("[%s] caps 0x%x bintval %u erp 0x%x", 54868e8e04eSSam Leffler ether_sprintf(mac), sp->capinfo, sp->bintval, sp->erp); 549b032f27cSSam Leffler if (sp->country != NULL) 550b032f27cSSam Leffler dump_country(sp->country); 55168e8e04eSSam Leffler printf("\n"); 55268e8e04eSSam Leffler } 55368e8e04eSSam Leffler } 55468e8e04eSSam Leffler #endif /* IEEE80211_DEBUG */ 55568e8e04eSSam Leffler 55668e8e04eSSam Leffler /* 55768e8e04eSSam Leffler * Process a beacon or probe response frame. 55868e8e04eSSam Leffler */ 55968e8e04eSSam Leffler void 560b032f27cSSam Leffler ieee80211_add_scan(struct ieee80211vap *vap, 5612808a02bSAdrian Chadd struct ieee80211_channel *curchan, 56268e8e04eSSam Leffler const struct ieee80211_scanparams *sp, 56368e8e04eSSam Leffler const struct ieee80211_frame *wh, 5645463c4a4SSam Leffler int subtype, int rssi, int noise) 56568e8e04eSSam Leffler { 566*f7f155faSAdrian Chadd struct ieee80211com *ic = vap->iv_ic; 56768e8e04eSSam Leffler 568*f7f155faSAdrian Chadd return (ic->ic_scan_methods->sc_add_scan(vap, curchan, sp, wh, subtype, 5692808a02bSAdrian Chadd rssi, noise)); 57068e8e04eSSam Leffler } 57168e8e04eSSam Leffler 57268e8e04eSSam Leffler /* 57368e8e04eSSam Leffler * Timeout/age scan cache entries; called from sta timeout 57468e8e04eSSam Leffler * timer (XXX should be self-contained). 57568e8e04eSSam Leffler */ 57668e8e04eSSam Leffler void 57768e8e04eSSam Leffler ieee80211_scan_timeout(struct ieee80211com *ic) 57868e8e04eSSam Leffler { 57968e8e04eSSam Leffler struct ieee80211_scan_state *ss = ic->ic_scan; 58068e8e04eSSam Leffler 58168e8e04eSSam Leffler if (ss->ss_ops != NULL) 58268e8e04eSSam Leffler ss->ss_ops->scan_age(ss); 58368e8e04eSSam Leffler } 58468e8e04eSSam Leffler 58568e8e04eSSam Leffler /* 58668e8e04eSSam Leffler * Mark a scan cache entry after a successful associate. 58768e8e04eSSam Leffler */ 58868e8e04eSSam Leffler void 589b032f27cSSam Leffler ieee80211_scan_assoc_success(struct ieee80211vap *vap, const uint8_t mac[]) 59068e8e04eSSam Leffler { 591b032f27cSSam Leffler struct ieee80211_scan_state *ss = vap->iv_ic->ic_scan; 59268e8e04eSSam Leffler 59368e8e04eSSam Leffler if (ss->ss_ops != NULL) { 594b032f27cSSam Leffler IEEE80211_NOTE_MAC(vap, IEEE80211_MSG_SCAN, 59568e8e04eSSam Leffler mac, "%s", __func__); 59668e8e04eSSam Leffler ss->ss_ops->scan_assoc_success(ss, mac); 59768e8e04eSSam Leffler } 59868e8e04eSSam Leffler } 59968e8e04eSSam Leffler 60068e8e04eSSam Leffler /* 60168e8e04eSSam Leffler * Demerit a scan cache entry after failing to associate. 60268e8e04eSSam Leffler */ 60368e8e04eSSam Leffler void 604b032f27cSSam Leffler ieee80211_scan_assoc_fail(struct ieee80211vap *vap, 60568e8e04eSSam Leffler const uint8_t mac[], int reason) 60668e8e04eSSam Leffler { 607b032f27cSSam Leffler struct ieee80211_scan_state *ss = vap->iv_ic->ic_scan; 60868e8e04eSSam Leffler 60968e8e04eSSam Leffler if (ss->ss_ops != NULL) { 610b032f27cSSam Leffler IEEE80211_NOTE_MAC(vap, IEEE80211_MSG_SCAN, mac, 61168e8e04eSSam Leffler "%s: reason %u", __func__, reason); 61268e8e04eSSam Leffler ss->ss_ops->scan_assoc_fail(ss, mac, reason); 61368e8e04eSSam Leffler } 61468e8e04eSSam Leffler } 61568e8e04eSSam Leffler 61668e8e04eSSam Leffler /* 61768e8e04eSSam Leffler * Iterate over the contents of the scan cache. 61868e8e04eSSam Leffler */ 61968e8e04eSSam Leffler void 620b032f27cSSam Leffler ieee80211_scan_iterate(struct ieee80211vap *vap, 62168e8e04eSSam Leffler ieee80211_scan_iter_func *f, void *arg) 62268e8e04eSSam Leffler { 623b032f27cSSam Leffler struct ieee80211_scan_state *ss = vap->iv_ic->ic_scan; 62468e8e04eSSam Leffler 62568e8e04eSSam Leffler if (ss->ss_ops != NULL) 62668e8e04eSSam Leffler ss->ss_ops->scan_iterate(ss, f, arg); 62768e8e04eSSam Leffler } 62868e8e04eSSam Leffler 62968e8e04eSSam Leffler /* 63068e8e04eSSam Leffler * Flush the contents of the scan cache. 63168e8e04eSSam Leffler */ 63268e8e04eSSam Leffler void 633b032f27cSSam Leffler ieee80211_scan_flush(struct ieee80211vap *vap) 634b032f27cSSam Leffler { 635b032f27cSSam Leffler struct ieee80211_scan_state *ss = vap->iv_ic->ic_scan; 636b032f27cSSam Leffler 637b032f27cSSam Leffler if (ss->ss_ops != NULL && ss->ss_vap == vap) { 638b032f27cSSam Leffler IEEE80211_DPRINTF(vap, IEEE80211_MSG_SCAN, "%s\n", __func__); 639b032f27cSSam Leffler ss->ss_ops->scan_flush(ss); 640b032f27cSSam Leffler } 641b032f27cSSam Leffler } 642b032f27cSSam Leffler 643b032f27cSSam Leffler /* 644b032f27cSSam Leffler * Check the scan cache for an ap/channel to use; if that 645b032f27cSSam Leffler * fails then kick off a new scan. 646b032f27cSSam Leffler */ 647b032f27cSSam Leffler struct ieee80211_channel * 648b032f27cSSam Leffler ieee80211_scan_pickchannel(struct ieee80211com *ic, int flags) 64968e8e04eSSam Leffler { 65068e8e04eSSam Leffler struct ieee80211_scan_state *ss = ic->ic_scan; 65168e8e04eSSam Leffler 652b032f27cSSam Leffler IEEE80211_LOCK_ASSERT(ic); 653b032f27cSSam Leffler 654b032f27cSSam Leffler if (ss == NULL || ss->ss_ops == NULL || ss->ss_vap == NULL) { 655b032f27cSSam Leffler /* XXX printf? */ 656b032f27cSSam Leffler return NULL; 65768e8e04eSSam Leffler } 658b032f27cSSam Leffler if (ss->ss_ops->scan_pickchan == NULL) { 659b032f27cSSam Leffler IEEE80211_DPRINTF(ss->ss_vap, IEEE80211_MSG_SCAN, 660b032f27cSSam Leffler "%s: scan module does not support picking a channel, " 661b032f27cSSam Leffler "opmode %s\n", __func__, ss->ss_vap->iv_opmode); 662b032f27cSSam Leffler return NULL; 663b032f27cSSam Leffler } 664b032f27cSSam Leffler return ss->ss_ops->scan_pickchan(ss, flags); 66568e8e04eSSam Leffler } 666