xref: /freebsd/usr.sbin/bsdinstall/scripts/wlanconfig (revision 153e73d782f3f1b06c502a708a3b30236ab332bd)
1#!/bin/sh
2#-
3# Copyright (c) 2011 Nathan Whitehorn
4# Copyright (c) 2013-2020 Devin Teske
5# All rights reserved.
6#
7# Redistribution and use in source and binary forms, with or without
8# modification, are permitted provided that the following conditions
9# are met:
10# 1. Redistributions of source code must retain the above copyright
11#    notice, this list of conditions and the following disclaimer.
12# 2. Redistributions in binary form must reproduce the above copyright
13#    notice, this list of conditions and the following disclaimer in the
14#    documentation and/or other materials provided with the distribution.
15#
16# THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
17# ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19# ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
20# FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21# DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22# OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23# HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24# LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25# OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26# SUCH DAMAGE.
27#
28#
29############################################################ INCLUDES
30
31BSDCFG_SHARE="/usr/share/bsdconfig"
32. $BSDCFG_SHARE/common.subr || exit 1
33f_include $BSDCFG_SHARE/dialog.subr
34f_dialog_backtitle "$OSNAME Installer"
35
36############################################################ FUNCTIONS
37
38country_set()
39{
40	local error_str iface_up ifconfig_args=
41
42	#
43	# Setup what was selected
44	# NB: Do not change order of arguments (or regdomain will be ignored)
45	#
46	[ "$2" ] && ifconfig_args="$ifconfig_args country $2"
47	[ "$1" ] && ifconfig_args="$ifconfig_args regdomain $1"
48	[ "$ifconfig_args" ] || return $SUCCESS # Nothing to do
49	ifconfig_args="${ifconfig_args# }"
50
51	# Regdomain/country cannot be applied while interface is running
52	iface_up=$( ifconfig -lu | grep -w "$WLAN_IFACE" )
53	[ "$iface_up" ] && ifconfig "$WLAN_IFACE" down
54	f_eval_catch -dk error_str wlanconfig ifconfig "ifconfig %s %s" \
55		"$WLAN_IFACE" "$ifconfig_args"
56	error_str="${error_str#ifconfig: }"
57	# Restart wpa_supplicant(8) (should not fail).
58	[ "$iface_up" ] && ifconfig "$WLAN_IFACE" up && \
59	    f_eval_catch -d wlanconfig wpa_supplicant \
60		'wpa_supplicant -B -i "%s" -c "%s/wpa_supplicant.conf"' \
61		"$WLAN_IFACE" "$BSDINSTALL_TMPETC"
62	if [ "$error_str" ]; then
63		$DIALOG --title "$msg_error" \
64			--backtitle "$DIALOG_BACKTITLE" \
65			--yes-label Change \
66			--no-label Ignore \
67			--yesno \
68			"Error while applying chosen settings ($error_str)" \
69			0 0 || return $SUCCESS # Skip
70		return $FAILURE # Restart
71	else
72		cat > "$BSDINSTALL_TMPETC/rc.conf.net.wlan" <<-EOF
73		create_args_$WLAN_IFACE="$ifconfig_args"
74		EOF
75	fi
76
77	return $SUCCESS
78}
79
80dialog_country_select()
81{
82	local input regdomains countries regdomain country prompt
83	local no_default="<not selected>"
84	local default_regdomain="${1:-$no_default}"
85	local default_country="${2:-$no_default}"
86
87	#
88	# Parse available countries/regdomains
89	#
90	input=$( ifconfig "$WLAN_IFACE" list countries | sed -e 's/DEBUG//gi' )
91	regdomains=$( echo "$input" | awk '
92		sub(/.*domains:/, ""), /[^[:alnum:][[:space:]]/ {
93			n = split($0, domains)
94			for (i = 1; i <= n; i++)
95				printf "'\''%s'\'' '\'\''\n", domains[i]
96		}
97	' | sort )
98	countries=$( echo "$input" | awk '
99		sub(/Country codes:/, ""), sub(/Regulatory.*/, "") {
100			while (match($0, /[[:upper:]][[:upper:][:digit:]] /)) {
101				country = substr($0, RSTART)
102				sub(/ [[:upper:]][[:upper:][:digit:]].*/, "",
103					country)
104				code = substr(country, 1, 2)
105				desc = substr(country, 4)
106				sub(/[[:space:]]*$/, "", desc)
107				printf "'\''%s'\'' '\''%s'\''\n", code, desc
108				$0 = substr($0, RSTART + RLENGTH)
109			}
110		}
111	' | sort )
112
113	f_dialog_title "Regdomain selection"
114	prompt="Select your regdomain."
115	eval f_dialog_menu_size height width rows \
116		\"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
117		\"\$prompt\" \"\" $regdomains
118	regdomain=$( eval $DIALOG \
119		--title \"\$DIALOG_TITLE\"             \
120		--backtitle \"\$DIALOG_BACKTITLE\"     \
121		--cancel-label \"\$msg_skip\"          \
122		--default-item \"\$default_regdomain\" \
123		--menu \"\$prompt\"                    \
124		$height $width $rows                   \
125		$regdomains                            \
126		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
127	)
128	f_dialog_data_sanitize regdomain
129
130	f_dialog_title "Country selection"
131	prompt="Select your country."
132	eval f_dialog_menu_size height width rows \
133		\"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
134		\"\$prompt\" \"\" $countries
135	country=$( eval $DIALOG \
136		--title \"\$DIALOG_TITLE\"           \
137		--backtitle \"\$DIALOG_BACKTITLE\"   \
138		--cancel-label \"\$msg_skip\"        \
139		--default-item \"\$default_country\" \
140		--menu \"\$prompt\"                  \
141		$height $width $rows                 \
142		$countries                           \
143		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
144	)
145	f_dialog_data_sanitize country
146
147	country_set "$regdomain" "$country"
148}
149
150############################################################ MAIN
151
152: > "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
153chmod 0600 "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
154
155cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<EOF
156ctrl_interface=/var/run/wpa_supplicant
157eapol_version=2
158ap_scan=1
159fast_reauth=1
160
161EOF
162
163#
164# Try to reach wpa_supplicant. If it isn't running and we can modify the
165# existing system, start it. Otherwise, fail.
166#
167if ! f_eval_catch -d wlanconfig wpa_cli "wpa_cli ping"; then
168	if [ ! "$BSDINSTALL_CONFIGCURRENT" ]; then
169		f_show_err "Wireless cannot be configured without %s" \
170		           "making changes to the local system!"
171		exit 1
172	fi
173	f_eval_catch wlanconfig wpa_supplicant \
174		'wpa_supplicant -B -i "%s" -c "%s/wpa_supplicant.conf"' \
175		"$1" "$BSDINSTALL_TMPETC" || exit 1
176
177	# See if we succeeded
178	f_eval_catch wlanconfig wpa_cli "wpa_cli ping" || exit 1
179fi
180
181#
182# There is no way to check country/regdomain without (possible)
183# interface state modification
184#
185if [ "$BSDINSTALL_CONFIGCURRENT" ]; then
186	# Get current country/regdomain for selected interface
187	WLAN_IFACE=$( wpa_cli ifname | tail -n 1 )
188	INPUT=$( ifconfig "$WLAN_IFACE" list regdomain | head -n 1 )
189	DEF_REGDOMAIN=$( echo "$INPUT" | cut -w -f 2 )
190	DEF_COUNTRY=$( echo "$INPUT" | cut -w -f 4 )
191	[ "$DEF_REGDOMAIN" = 0 ] && DEF_REGDOMAIN="<not selected>"
192	[ "$DEF_COUNTRY" = 0 ] && DEF_COUNTRY="<not selected>"
193	f_dialog_title "Regdomain/country"
194	if f_yesno "Change regdomain/country ($DEF_REGDOMAIN/$DEF_COUNTRY)?"
195	then
196		while ! dialog_country_select "$DEF_REGDOMAIN" "$DEF_COUNTRY"
197		do :; done
198	fi
199fi
200
201while :; do
202	SCANSSID=0
203	# While wpa_supplicant may IFF_UP the interface, we do not want to rely
204	# in this.  In case the script is run manually (outside the installer,
205	# e.g., for testing) wpa_supplicant may be running and the wlanN
206	# interface may be down (especially if dialog_country_select is not
207	# run successfully either) and scanning will not work.
208	f_eval_catch -d wlanconfig ifconfig "ifconfig $WLAN_IFACE up"
209	f_eval_catch -d wlanconfig wpa_cli "wpa_cli scan"
210	f_dialog_title "Scanning"
211	f_dialog_pause "Waiting 5 seconds to scan for wireless networks..." 5 ||
212		exit 1
213
214	f_eval_catch -dk SCAN_RESULTS wlanconfig wpa_cli "wpa_cli scan_results"
215	NETWORKS=$( echo "$SCAN_RESULTS" | awk -F '\t' '
216		/..:..:..:..:..:../ && $5 { printf "\"%s\"\t\"%s\"\n", $5, $4 }
217	' | sort | uniq )
218
219	if [ ! "$NETWORKS" ]; then
220		f_dialog_title "$msg_error"
221		f_yesno "No wireless networks were found. Rescan?" && continue
222	else
223		f_dialog_title "Network Selection"
224		prompt="Select a wireless network to connect to."
225		f_dialog_menu_size height width rows "$DIALOG_TITLE" \
226			"$DIALOG_BACKTITLE" "$prompt" "" $NETWORKS
227		NETWORK=$( eval $DIALOG \
228			--title \"\$DIALOG_TITLE\"         \
229			--backtitle \"\$DIALOG_BACKTITLE\" \
230			--extra-button                     \
231			--extra-label \"Rescan\"           \
232			--menu \"\$prompt\"                \
233			$height $width $rows               \
234			$NETWORKS                          \
235			2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
236		)
237	fi
238	retval=$?
239	f_dialog_data_sanitize NETWORK
240	case $retval in
241	$DIALOG_OK) break ;;
242	$DIALOG_CANCEL)
243		# Ask if the user wants to select network manually
244		f_dialog_title "Network Selection"
245		f_yesno "Do you want to select the network manually?" || exit 1
246		f_dialog_input NETWORK "Enter SSID" || exit 1
247		prompt="Select encryption type"
248		menu_list="
249			'1 WPA/WPA2 PSK' ''
250			'2 WPA/WPA2 EAP' ''
251			'3 WEP' ''
252			'0 None' ''
253		" # END-QUOTE
254		eval f_dialog_menu_size height width rows \"\$DIALOG_TITLE\" \
255			\"\$DIALOG_BACKTITLE\" \"\$prompt\" \"\" $menu_list
256		ENCRYPTION=$( eval $DIALOG \
257			--title \"\$DIALOG_TITLE\"         \
258			--backtitle \"\$DIALOG_BACKTITLE\" \
259			--menu \"\$prompt\"                \
260			$height $width $rows               \
261			$menu_list                         \
262			2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
263		) || exit 1
264		SCANSSID=1
265		break
266		;;
267	$DIALOG_EXTRA) # Rescan
268		;;
269	esac
270done
271
272[ "$ENCRYPTION" ] || ENCRYPTION=$( echo "$NETWORKS" |
273	awk -F '\t' "/^\"$NETWORK\"\t/ { print \$2 }" )
274
275if echo "$ENCRYPTION" | grep -q PSK; then
276	PASS=$( $DIALOG \
277		--title "WPA Setup"              \
278		--backtitle "$DIALOG_BACKTITLE"  \
279		--insecure                       \
280		--mixedform ""                   \
281		0 0 0                            \
282		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
283		"Password" 2 0 "" 2 12 15 63 1   \
284		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
285	) || exec "$0" "$@"
286	awk 'sub(/^\\/,"")||1' \
287		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
288	network={
289	\	ssid="$NETWORK"
290	\	scan_ssid=$SCANSSID
291	\	psk="$PASS"
292	\	priority=5
293	}
294	EOF
295elif echo "$ENCRYPTION" | grep -q EAP; then
296	USERPASS=$( $DIALOG \
297		--title "WPA-Enterprise Setup"   \
298		--backtitle "$DIALOG_BACKTITLE"  \
299		--insecure                       \
300		--mixedform ""                   \
301		0 0 0                            \
302		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
303		"Username" 2 0 "" 2 12 25 63 0   \
304		"Password" 3 0 "" 3 12 25 63 1   \
305		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
306	) || exec "$0" "$@"
307	awk 'sub(/^\\/,"")||1' \
308		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
309	network={
310	\	ssid="$NETWORK"
311	\	scan_ssid=$SCANSSID
312	\	key_mgmt=WPA-EAP$(
313		echo "$USERPASS" | awk '
314			NR == 1 { printf "\n\tidentity=\"%s\"", $1 }
315			NR == 2 { printf "\n\tpassword=\"%s\"", $1 }
316		' )
317	\	priority=5
318	}
319	EOF
320elif echo "$ENCRYPTION" | grep -q WEP; then
321	WEPKEY=$( $DIALOG \
322		--title "WEP Setup"              \
323		--backtitle "$DIALOG_BACKTITLE"  \
324		--insecure                       \
325		--mixedform ""                   \
326		0 0 0                            \
327		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
328		"WEP Key 0" 2 0 "" 2 12 15 0 1   \
329		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
330	) || exec "$0" "$@"
331	awk 'sub(/^\\/,"")||1' \
332		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
333	network={
334	\	ssid="$NETWORK"
335	\	scan_ssid=$SCANSSID
336	\	key_mgmt=NONE
337	\	wep_key0="$WEPKEY"
338	\	wep_tx_keyidx=0
339	\	priority=5
340	}
341	EOF
342else # Open
343	awk 'sub(/^\\/,"")||1' \
344		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
345	network={
346	\	ssid="$NETWORK"
347	\	scan_ssid=$SCANSSID
348	\	key_mgmt=NONE
349	\	priority=5
350	}
351	EOF
352fi
353
354# Connect to any open networks policy
355cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<EOF
356network={
357	priority=0
358	key_mgmt=NONE
359}
360EOF
361
362# Bring up new network
363[ "$BSDINSTALL_CONFIGCURRENT" ] &&
364	f_eval_catch -d wlanconfig wpa_cli "wpa_cli reconfigure"
365
366exit $SUCCESS
367
368################################################################################
369# END
370################################################################################
371