blob: bb32f48b88f9f08bdb8d1c2d0d3f974638c0d34f [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Gustavo Padovan8c520a52012-05-23 04:04:22 -030027#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028
29#include <net/bluetooth/bluetooth.h>
30#include <net/bluetooth/hci_core.h>
31
Marcel Holtmannac4b7232013-10-10 14:54:16 -070032#include "smp.h"
Marcel Holtmann70247282013-10-10 14:54:15 -070033#include "a2mp.h"
34
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020035struct sco_param {
36 u16 pkt_type;
37 u16 max_latency;
38};
39
40static const struct sco_param sco_param_cvsd[] = {
41 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000a }, /* S3 */
42 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x0007 }, /* S2 */
43 { EDR_ESCO_MASK | ESCO_EV3, 0x0007 }, /* S1 */
44 { EDR_ESCO_MASK | ESCO_HV3, 0xffff }, /* D1 */
45 { EDR_ESCO_MASK | ESCO_HV1, 0xffff }, /* D0 */
46};
47
48static const struct sco_param sco_param_wideband[] = {
49 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000d }, /* T2 */
50 { EDR_ESCO_MASK | ESCO_EV3, 0x0008 }, /* T1 */
51};
52
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030053static void hci_le_create_connection_cancel(struct hci_conn *conn)
Ville Tervofcd89c02011-02-10 22:38:47 -030054{
55 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
56}
57
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030058static void hci_acl_create_connection(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070059{
60 struct hci_dev *hdev = conn->hdev;
61 struct inquiry_entry *ie;
62 struct hci_cp_create_conn cp;
63
Andrei Emeltchenko42d2d872012-02-17 11:40:57 +020064 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -070065
66 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +020067 conn->out = true;
Marcel Holtmanna8746412008-07-14 20:13:46 +020068
Linus Torvalds1da177e2005-04-16 15:20:36 -070069 conn->link_mode = HCI_LM_MASTER;
70
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020071 conn->attempt++;
72
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020073 conn->link_policy = hdev->link_policy;
74
Linus Torvalds1da177e2005-04-16 15:20:36 -070075 memset(&cp, 0, sizeof(cp));
76 bacpy(&cp.bdaddr, &conn->dst);
77 cp.pscan_rep_mode = 0x02;
78
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020079 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
80 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +020081 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
82 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
83 cp.pscan_mode = ie->data.pscan_mode;
84 cp.clock_offset = ie->data.clock_offset |
Andrei Emeltchenko82781e62012-05-25 11:38:27 +030085 __constant_cpu_to_le16(0x8000);
Marcel Holtmann41a96212008-07-14 20:13:48 +020086 }
87
Linus Torvalds1da177e2005-04-16 15:20:36 -070088 memcpy(conn->dev_class, ie->data.dev_class, 3);
Johan Hedberg58a681e2012-01-16 06:47:28 +020089 if (ie->data.ssp_mode > 0)
90 set_bit(HCI_CONN_SSP_ENABLED, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -070091 }
92
Marcel Holtmanna8746412008-07-14 20:13:46 +020093 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -070094 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020095 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -070096 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020097 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020098
Marcel Holtmanna9de9242007-10-20 13:33:56 +020099 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700100}
101
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300102static void hci_acl_create_connection_cancel(struct hci_conn *conn)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200103{
104 struct hci_cp_create_conn_cancel cp;
105
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300106 BT_DBG("hcon %p", conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200107
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200108 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200109 return;
110
111 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200112 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200113}
114
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300115static void hci_reject_sco(struct hci_conn *conn)
116{
117 struct hci_cp_reject_sync_conn_req cp;
118
119 cp.reason = HCI_ERROR_REMOTE_USER_TERM;
120 bacpy(&cp.bdaddr, &conn->dst);
121
122 hci_send_cmd(conn->hdev, HCI_OP_REJECT_SYNC_CONN_REQ, sizeof(cp), &cp);
123}
124
Andre Guedesbed71742013-01-30 11:50:56 -0300125void hci_disconnect(struct hci_conn *conn, __u8 reason)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700126{
127 struct hci_cp_disconnect cp;
128
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300129 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700130
131 conn->state = BT_DISCONN;
132
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700133 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700134 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200135 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136}
137
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300138static void hci_amp_disconn(struct hci_conn *conn, __u8 reason)
139{
140 struct hci_cp_disconn_phy_link cp;
141
142 BT_DBG("hcon %p", conn);
143
144 conn->state = BT_DISCONN;
145
146 cp.phy_handle = HCI_PHY_HANDLE(conn->handle);
147 cp.reason = reason;
148 hci_send_cmd(conn->hdev, HCI_OP_DISCONN_PHY_LINK,
149 sizeof(cp), &cp);
150}
151
Vinicius Costa Gomes57f5d0d2012-07-27 19:32:54 -0300152static void hci_add_sco(struct hci_conn *conn, __u16 handle)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700153{
154 struct hci_dev *hdev = conn->hdev;
155 struct hci_cp_add_sco cp;
156
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300157 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158
159 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200160 conn->out = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700161
Marcel Holtmannefc76882009-02-06 09:13:37 +0100162 conn->attempt++;
163
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700164 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200165 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700166
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200167 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700168}
169
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200170bool hci_setup_sync(struct hci_conn *conn, __u16 handle)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200171{
172 struct hci_dev *hdev = conn->hdev;
173 struct hci_cp_setup_sync_conn cp;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200174 const struct sco_param *param;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200175
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300176 BT_DBG("hcon %p", conn);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200177
178 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200179 conn->out = true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200180
Marcel Holtmannefc76882009-02-06 09:13:37 +0100181 conn->attempt++;
182
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200183 cp.handle = cpu_to_le16(handle);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200184
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300185 cp.tx_bandwidth = __constant_cpu_to_le32(0x00001f40);
186 cp.rx_bandwidth = __constant_cpu_to_le32(0x00001f40);
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200187 cp.voice_setting = cpu_to_le16(conn->setting);
188
189 switch (conn->setting & SCO_AIRMODE_MASK) {
190 case SCO_AIRMODE_TRANSP:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200191 if (conn->attempt > ARRAY_SIZE(sco_param_wideband))
192 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200193 cp.retrans_effort = 0x02;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200194 param = &sco_param_wideband[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200195 break;
196 case SCO_AIRMODE_CVSD:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200197 if (conn->attempt > ARRAY_SIZE(sco_param_cvsd))
198 return false;
199 cp.retrans_effort = 0x01;
200 param = &sco_param_cvsd[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200201 break;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200202 default:
203 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200204 }
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200205
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200206 cp.pkt_type = __cpu_to_le16(param->pkt_type);
207 cp.max_latency = __cpu_to_le16(param->max_latency);
208
209 if (hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp) < 0)
210 return false;
211
212 return true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200213}
214
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200215void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300216 u16 latency, u16 to_multiplier)
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200217{
218 struct hci_cp_le_conn_update cp;
219 struct hci_dev *hdev = conn->hdev;
220
221 memset(&cp, 0, sizeof(cp));
222
223 cp.handle = cpu_to_le16(conn->handle);
224 cp.conn_interval_min = cpu_to_le16(min);
225 cp.conn_interval_max = cpu_to_le16(max);
226 cp.conn_latency = cpu_to_le16(latency);
227 cp.supervision_timeout = cpu_to_le16(to_multiplier);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300228 cp.min_ce_len = __constant_cpu_to_le16(0x0001);
229 cp.max_ce_len = __constant_cpu_to_le16(0x0001);
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200230
231 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
232}
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200233
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300234void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __u8 rand[8],
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300235 __u8 ltk[16])
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300236{
237 struct hci_dev *hdev = conn->hdev;
238 struct hci_cp_le_start_enc cp;
239
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300240 BT_DBG("hcon %p", conn);
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300241
242 memset(&cp, 0, sizeof(cp));
243
244 cp.handle = cpu_to_le16(conn->handle);
245 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
246 cp.ediv = ediv;
Anderson Briglia51beabd2011-09-19 14:41:09 -0400247 memcpy(cp.rand, rand, sizeof(cp.rand));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300248
249 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
250}
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300251
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400252/* Device _must_ be locked */
253void hci_sco_setup(struct hci_conn *conn, __u8 status)
254{
255 struct hci_conn *sco = conn->link;
256
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400257 if (!sco)
258 return;
259
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300260 BT_DBG("hcon %p", conn);
261
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400262 if (!status) {
263 if (lmp_esco_capable(conn->hdev))
264 hci_setup_sync(sco, conn->handle);
265 else
266 hci_add_sco(sco, conn->handle);
267 } else {
268 hci_proto_connect_cfm(sco, status);
269 hci_conn_del(sco);
270 }
271}
272
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300273static void hci_conn_disconnect(struct hci_conn *conn)
274{
275 __u8 reason = hci_proto_disconn_ind(conn);
276
277 switch (conn->type) {
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300278 case AMP_LINK:
279 hci_amp_disconn(conn, reason);
280 break;
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300281 default:
Andre Guedesbed71742013-01-30 11:50:56 -0300282 hci_disconnect(conn, reason);
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300283 break;
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300284 }
285}
286
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300287static void hci_conn_timeout(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700288{
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300289 struct hci_conn *conn = container_of(work, struct hci_conn,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300290 disc_work.work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700291
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300292 BT_DBG("hcon %p state %s", conn, state_to_string(conn->state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700293
294 if (atomic_read(&conn->refcnt))
295 return;
296
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200297 switch (conn->state) {
298 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200299 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300300 if (conn->out) {
301 if (conn->type == ACL_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300302 hci_acl_create_connection_cancel(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300303 else if (conn->type == LE_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300304 hci_le_create_connection_cancel(conn);
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300305 } else if (conn->type == SCO_LINK || conn->type == ESCO_LINK) {
306 hci_reject_sco(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300307 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200308 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200309 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900310 case BT_CONNECTED:
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300311 hci_conn_disconnect(conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200312 break;
313 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700314 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200315 break;
316 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700317}
318
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200319/* Enter sniff mode */
320static void hci_conn_enter_sniff_mode(struct hci_conn *conn)
321{
322 struct hci_dev *hdev = conn->hdev;
323
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300324 BT_DBG("hcon %p mode %d", conn, conn->mode);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200325
326 if (test_bit(HCI_RAW, &hdev->flags))
327 return;
328
329 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
330 return;
331
332 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
333 return;
334
335 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
336 struct hci_cp_sniff_subrate cp;
337 cp.handle = cpu_to_le16(conn->handle);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300338 cp.max_latency = __constant_cpu_to_le16(0);
339 cp.min_remote_timeout = __constant_cpu_to_le16(0);
340 cp.min_local_timeout = __constant_cpu_to_le16(0);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200341 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
342 }
343
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200344 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200345 struct hci_cp_sniff_mode cp;
346 cp.handle = cpu_to_le16(conn->handle);
347 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
348 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300349 cp.attempt = __constant_cpu_to_le16(4);
350 cp.timeout = __constant_cpu_to_le16(1);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200351 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
352 }
353}
354
Marcel Holtmann04837f62006-07-03 10:02:33 +0200355static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200357 struct hci_conn *conn = (void *) arg;
358
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300359 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200360
361 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700362}
363
Johan Hedberg9f616562011-04-28 11:28:54 -0700364static void hci_conn_auto_accept(unsigned long arg)
365{
366 struct hci_conn *conn = (void *) arg;
367 struct hci_dev *hdev = conn->hdev;
368
Johan Hedberg9f616562011-04-28 11:28:54 -0700369 hci_send_cmd(hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300370 &conn->dst);
Johan Hedberg9f616562011-04-28 11:28:54 -0700371}
372
Linus Torvalds1da177e2005-04-16 15:20:36 -0700373struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
374{
375 struct hci_conn *conn;
376
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300377 BT_DBG("%s dst %pMR", hdev->name, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700378
Andre Guedescb601d72012-01-30 09:22:09 -0300379 conn = kzalloc(sizeof(struct hci_conn), GFP_KERNEL);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200380 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700381 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700382
383 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200384 conn->hdev = hdev;
385 conn->type = type;
386 conn->mode = HCI_CM_ACTIVE;
387 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300388 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200389 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300390 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200391 conn->key_type = 0xff;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700392
Johan Hedberg58a681e2012-01-16 06:47:28 +0200393 set_bit(HCI_CONN_POWER_SAVE, &conn->flags);
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200394 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200395
Marcel Holtmanna8746412008-07-14 20:13:46 +0200396 switch (type) {
397 case ACL_LINK:
398 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
399 break;
400 case SCO_LINK:
401 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100402 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
403 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200404 else
405 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
406 break;
407 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100408 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200409 break;
410 }
411
Linus Torvalds1da177e2005-04-16 15:20:36 -0700412 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200413
Marcel Holtmann70c1f202012-02-22 12:06:43 +0100414 INIT_LIST_HEAD(&conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200415
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300416 INIT_DELAYED_WORK(&conn->disc_work, hci_conn_timeout);
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800417 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Johan Hedberg9f616562011-04-28 11:28:54 -0700418 setup_timer(&conn->auto_accept_timer, hci_conn_auto_accept,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300419 (unsigned long) conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700420
421 atomic_set(&conn->refcnt, 0);
422
423 hci_dev_hold(hdev);
424
Linus Torvalds1da177e2005-04-16 15:20:36 -0700425 hci_conn_hash_add(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200426 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700427 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
428
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700429 hci_conn_init_sysfs(conn);
430
Linus Torvalds1da177e2005-04-16 15:20:36 -0700431 return conn;
432}
433
434int hci_conn_del(struct hci_conn *conn)
435{
436 struct hci_dev *hdev = conn->hdev;
437
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300438 BT_DBG("%s hcon %p handle %d", hdev->name, conn, conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700439
Marcel Holtmann04837f62006-07-03 10:02:33 +0200440 del_timer(&conn->idle_timer);
441
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300442 cancel_delayed_work_sync(&conn->disc_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443
Johan Hedberg9f616562011-04-28 11:28:54 -0700444 del_timer(&conn->auto_accept_timer);
445
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200446 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700447 struct hci_conn *sco = conn->link;
448 if (sco)
449 sco->link = NULL;
450
451 /* Unacked frames */
452 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300453 } else if (conn->type == LE_LINK) {
454 if (hdev->le_pkts)
455 hdev->le_cnt += conn->sent;
456 else
457 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200458 } else {
459 struct hci_conn *acl = conn->link;
460 if (acl) {
461 acl->link = NULL;
David Herrmann76a68ba2013-04-06 20:28:37 +0200462 hci_conn_drop(acl);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200463 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464 }
465
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200466 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200467
Andrei Emeltchenko9740e492012-05-29 13:59:02 +0300468 if (conn->amp_mgr)
469 amp_mgr_put(conn->amp_mgr);
470
Linus Torvalds1da177e2005-04-16 15:20:36 -0700471 hci_conn_hash_del(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200472 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700473 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200474
Linus Torvalds1da177e2005-04-16 15:20:36 -0700475 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700476
David Herrmannfc225c32013-04-06 20:28:38 +0200477 hci_conn_del_sysfs(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800478
Marcel Holtmann384943e2009-05-08 18:20:43 -0700479 hci_dev_put(hdev);
480
David Herrmann8d123562013-04-06 20:28:39 +0200481 hci_conn_put(conn);
Tomas Targownik163f4da2011-06-30 16:30:44 -0300482
Linus Torvalds1da177e2005-04-16 15:20:36 -0700483 return 0;
484}
485
486struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
487{
488 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200489 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700490
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300491 BT_DBG("%pMR -> %pMR", src, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200493 read_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700494
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200495 list_for_each_entry(d, &hci_dev_list, list) {
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -0300496 if (!test_bit(HCI_UP, &d->flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300497 test_bit(HCI_RAW, &d->flags) ||
Marcel Holtmannaf750e92013-09-03 18:08:37 -0700498 test_bit(HCI_USER_CHANNEL, &d->dev_flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300499 d->dev_type != HCI_BREDR)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500 continue;
501
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900502 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700503 * No source address - find interface with bdaddr != dst
504 * Source address - find interface with bdaddr == src
505 */
506
507 if (use_src) {
508 if (!bacmp(&d->bdaddr, src)) {
509 hdev = d; break;
510 }
511 } else {
512 if (bacmp(&d->bdaddr, dst)) {
513 hdev = d; break;
514 }
515 }
516 }
517
518 if (hdev)
519 hdev = hci_dev_hold(hdev);
520
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200521 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700522 return hdev;
523}
524EXPORT_SYMBOL(hci_get_route);
525
Andre Guedes1d399ae2013-10-08 08:21:17 -0300526static void create_le_conn_complete(struct hci_dev *hdev, u8 status)
527{
528 struct hci_conn *conn;
529
530 if (status == 0)
531 return;
532
533 BT_ERR("HCI request failed to create LE connection: status 0x%2.2x",
534 status);
535
536 hci_dev_lock(hdev);
537
538 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
539 if (!conn)
540 goto done;
541
542 conn->state = BT_CLOSED;
543
544 mgmt_connect_failed(hdev, &conn->dst, conn->type, conn->dst_type,
545 status);
546
547 hci_proto_connect_cfm(conn, status);
548
549 hci_conn_del(conn);
550
551done:
552 hci_dev_unlock(hdev);
553}
554
555static int hci_create_le_conn(struct hci_conn *conn)
556{
557 struct hci_dev *hdev = conn->hdev;
558 struct hci_cp_le_create_conn cp;
559 struct hci_request req;
560 int err;
561
562 hci_req_init(&req, hdev);
563
564 memset(&cp, 0, sizeof(cp));
Marcel Holtmannbef64732013-10-11 08:23:19 -0700565 cp.scan_interval = cpu_to_le16(hdev->le_scan_interval);
566 cp.scan_window = cpu_to_le16(hdev->le_scan_window);
Andre Guedes1d399ae2013-10-08 08:21:17 -0300567 bacpy(&cp.peer_addr, &conn->dst);
568 cp.peer_addr_type = conn->dst_type;
569 if (bacmp(&hdev->bdaddr, BDADDR_ANY))
570 cp.own_address_type = ADDR_LE_DEV_PUBLIC;
571 else
572 cp.own_address_type = ADDR_LE_DEV_RANDOM;
573 cp.conn_interval_min = __constant_cpu_to_le16(0x0028);
574 cp.conn_interval_max = __constant_cpu_to_le16(0x0038);
575 cp.supervision_timeout = __constant_cpu_to_le16(0x002a);
576 cp.min_ce_len = __constant_cpu_to_le16(0x0000);
577 cp.max_ce_len = __constant_cpu_to_le16(0x0000);
578 hci_req_add(&req, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
579
580 err = hci_req_run(&req, create_le_conn_complete);
581 if (err) {
582 hci_conn_del(conn);
583 return err;
584 }
585
586 return 0;
587}
588
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300589static struct hci_conn *hci_connect_le(struct hci_dev *hdev, bdaddr_t *dst,
590 u8 dst_type, u8 sec_level, u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700591{
Andre Guedesf1e5d542013-10-03 18:25:44 -0300592 struct hci_conn *conn;
Andre Guedes1d399ae2013-10-08 08:21:17 -0300593 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700594
Johan Hedbergf3d3444a2013-10-05 12:01:04 +0200595 if (test_bit(HCI_ADVERTISING, &hdev->flags))
Johan Hedbergf15504782012-10-24 21:12:03 +0300596 return ERR_PTR(-ENOTSUPP);
597
Andre Guedes620ad522013-10-08 08:21:18 -0300598 /* Some devices send ATT messages as soon as the physical link is
599 * established. To be able to handle these ATT messages, the user-
600 * space first establishes the connection and then starts the pairing
601 * process.
602 *
603 * So if a hci_conn object already exists for the following connection
604 * attempt, we simply update pending_sec_level and auth_type fields
605 * and return the object found.
606 */
Andre Guedesf1e5d542013-10-03 18:25:44 -0300607 conn = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Andre Guedes620ad522013-10-08 08:21:18 -0300608 if (conn) {
609 conn->pending_sec_level = sec_level;
610 conn->auth_type = auth_type;
611 goto done;
Ville Tervofcd89c02011-02-10 22:38:47 -0300612 }
613
Andre Guedes620ad522013-10-08 08:21:18 -0300614 /* Since the controller supports only one LE connection attempt at a
615 * time, we return -EBUSY if there is any connection attempt running.
616 */
617 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
618 if (conn)
619 return ERR_PTR(-EBUSY);
620
621 conn = hci_conn_add(hdev, LE_LINK, dst);
622 if (!conn)
623 return ERR_PTR(-ENOMEM);
624
Marcel Holtmann79d95a12013-10-13 03:57:38 -0700625 if (dst_type == BDADDR_LE_PUBLIC)
626 conn->dst_type = ADDR_LE_DEV_PUBLIC;
627 else
628 conn->dst_type = ADDR_LE_DEV_RANDOM;
Andre Guedes620ad522013-10-08 08:21:18 -0300629 conn->state = BT_CONNECT;
630 conn->out = true;
631 conn->link_mode |= HCI_LM_MASTER;
632 conn->sec_level = BT_SECURITY_LOW;
Andre Guedesf1e5d542013-10-03 18:25:44 -0300633 conn->pending_sec_level = sec_level;
634 conn->auth_type = auth_type;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300635
Andre Guedes620ad522013-10-08 08:21:18 -0300636 err = hci_create_le_conn(conn);
637 if (err)
638 return ERR_PTR(err);
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300639
Andre Guedes620ad522013-10-08 08:21:18 -0300640done:
641 hci_conn_hold(conn);
Andre Guedesf1e5d542013-10-03 18:25:44 -0300642 return conn;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300643}
644
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300645static struct hci_conn *hci_connect_acl(struct hci_dev *hdev, bdaddr_t *dst,
646 u8 sec_level, u8 auth_type)
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200647{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700648 struct hci_conn *acl;
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400649
Johan Hedberg56f87902013-10-02 13:43:13 +0300650 if (!test_bit(HCI_BREDR_ENABLED, &hdev->dev_flags))
651 return ERR_PTR(-ENOTSUPP);
652
Linus Torvalds1da177e2005-04-16 15:20:36 -0700653 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
654 if (!acl) {
655 acl = hci_conn_add(hdev, ACL_LINK, dst);
656 if (!acl)
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200657 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700658 }
659
660 hci_conn_hold(acl);
661
662 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
663 acl->sec_level = BT_SECURITY_LOW;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200664 acl->pending_sec_level = sec_level;
665 acl->auth_type = auth_type;
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300666 hci_acl_create_connection(acl);
Nick Pellyc3902162009-11-13 14:16:32 -0800667 }
668
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300669 return acl;
670}
671
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200672struct hci_conn *hci_connect_sco(struct hci_dev *hdev, int type, bdaddr_t *dst,
673 __u16 setting)
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300674{
675 struct hci_conn *acl;
676 struct hci_conn *sco;
677
Frédéric Dalleaue660ed62013-08-19 14:23:54 +0200678 acl = hci_connect_acl(hdev, dst, BT_SECURITY_LOW, HCI_AT_NO_BONDING);
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300679 if (IS_ERR(acl))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200680 return acl;
681
682 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
683 if (!sco) {
684 sco = hci_conn_add(hdev, type, dst);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200685 if (!sco) {
David Herrmann76a68ba2013-04-06 20:28:37 +0200686 hci_conn_drop(acl);
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200687 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700688 }
689 }
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200690
691 acl->link = sco;
692 sco->link = acl;
693
694 hci_conn_hold(sco);
695
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200696 sco->setting = setting;
697
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200698 if (acl->state == BT_CONNECTED &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300699 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Johan Hedberg58a681e2012-01-16 06:47:28 +0200700 set_bit(HCI_CONN_POWER_SAVE, &acl->flags);
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700701 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200702
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200703 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->flags)) {
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200704 /* defer SCO setup until mode change completed */
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200705 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->flags);
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100706 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700707 }
708
709 hci_sco_setup(acl, 0x00);
Marcel Holtmann96a31832009-02-12 16:23:03 +0100710 }
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100711
Marcel Holtmann96a31832009-02-12 16:23:03 +0100712 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700713}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700714
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300715/* Create SCO, ACL or LE connection. */
716struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst,
717 __u8 dst_type, __u8 sec_level, __u8 auth_type)
718{
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300719 BT_DBG("%s dst %pMR type 0x%x", hdev->name, dst, type);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300720
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300721 switch (type) {
722 case LE_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300723 return hci_connect_le(hdev, dst, dst_type, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300724 case ACL_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300725 return hci_connect_acl(hdev, dst, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300726 }
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300727
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300728 return ERR_PTR(-EINVAL);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300729}
730
Linus Torvalds1da177e2005-04-16 15:20:36 -0700731/* Check link security requirement */
732int hci_conn_check_link_mode(struct hci_conn *conn)
733{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300734 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700735
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200736 if (hci_conn_ssp_enabled(conn) && !(conn->link_mode & HCI_LM_ENCRYPT))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700737 return 0;
738
739 return 1;
740}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700741
742/* Authenticate remote device */
743static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
744{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300745 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700746
Johan Hedberg765c2a92011-01-19 12:06:52 +0530747 if (conn->pending_sec_level > sec_level)
748 sec_level = conn->pending_sec_level;
749
Linus Torvalds1da177e2005-04-16 15:20:36 -0700750 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530751 conn->pending_sec_level = sec_level;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700752 else if (conn->link_mode & HCI_LM_AUTH)
753 return 1;
754
Johan Hedberg65cf6862011-01-19 12:06:49 +0530755 /* Make sure we preserve an existing MITM requirement*/
756 auth_type |= (conn->auth_type & 0x01);
757
Marcel Holtmann96a31832009-02-12 16:23:03 +0100758 conn->auth_type = auth_type;
759
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200760 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700761 struct hci_cp_auth_requested cp;
Peter Hurleyb7d05ba2012-01-13 15:11:30 +0100762
763 /* encrypt must be pending if auth is also pending */
764 set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags);
765
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700766 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200767 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300768 sizeof(cp), &cp);
Waldemar Rymarkiewicz19f8def2011-05-31 15:49:25 +0200769 if (conn->key_type != 0xff)
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200770 set_bit(HCI_CONN_REAUTH_PEND, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700771 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100772
Linus Torvalds1da177e2005-04-16 15:20:36 -0700773 return 0;
774}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700775
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200776/* Encrypt the the link */
777static void hci_conn_encrypt(struct hci_conn *conn)
778{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300779 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200780
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200781 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags)) {
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200782 struct hci_cp_set_conn_encrypt cp;
783 cp.handle = cpu_to_le16(conn->handle);
784 cp.encrypt = 0x01;
785 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300786 &cp);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200787 }
788}
789
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100790/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100791int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700792{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300793 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700794
Vinicius Costa Gomesd8343f12012-08-23 21:32:44 -0300795 if (conn->type == LE_LINK)
796 return smp_conn_security(conn, sec_level);
797
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200798 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100799 if (sec_level == BT_SECURITY_SDP)
800 return 1;
801
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200802 /* For non 2.1 devices and low security level we don't need the link
803 key. */
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200804 if (sec_level == BT_SECURITY_LOW && !hci_conn_ssp_enabled(conn))
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700805 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100806
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200807 /* For other security levels we need the link key. */
808 if (!(conn->link_mode & HCI_LM_AUTH))
809 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700810
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200811 /* An authenticated combination key has sufficient security for any
812 security level. */
813 if (conn->key_type == HCI_LK_AUTH_COMBINATION)
814 goto encrypt;
815
816 /* An unauthenticated combination key has sufficient security for
817 security level 1 and 2. */
818 if (conn->key_type == HCI_LK_UNAUTH_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300819 (sec_level == BT_SECURITY_MEDIUM || sec_level == BT_SECURITY_LOW))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200820 goto encrypt;
821
822 /* A combination key has always sufficient security for the security
823 levels 1 or 2. High security level requires the combination key
824 is generated using maximum PIN code length (16).
825 For pre 2.1 units. */
826 if (conn->key_type == HCI_LK_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300827 (sec_level != BT_SECURITY_HIGH || conn->pin_length == 16))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200828 goto encrypt;
829
830auth:
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200831 if (test_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700832 return 0;
833
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +0300834 if (!hci_conn_auth(conn, sec_level, auth_type))
835 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100836
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200837encrypt:
838 if (conn->link_mode & HCI_LM_ENCRYPT)
839 return 1;
840
841 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700842 return 0;
843}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100844EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700845
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200846/* Check secure link requirement */
847int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
848{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300849 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200850
851 if (sec_level != BT_SECURITY_HIGH)
852 return 1; /* Accept if non-secure is required */
853
Waldemar Rymarkiewiczef4177e2011-06-02 14:24:52 +0200854 if (conn->sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200855 return 1;
856
857 return 0; /* Reject not secure link */
858}
859EXPORT_SYMBOL(hci_conn_check_secure);
860
Linus Torvalds1da177e2005-04-16 15:20:36 -0700861/* Change link key */
862int hci_conn_change_link_key(struct hci_conn *conn)
863{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300864 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700865
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200866 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700867 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700868 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200869 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300870 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700871 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100872
Linus Torvalds1da177e2005-04-16 15:20:36 -0700873 return 0;
874}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700875
876/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100877int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700878{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300879 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700880
881 if (!role && conn->link_mode & HCI_LM_MASTER)
882 return 1;
883
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200884 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700885 struct hci_cp_switch_role cp;
886 bacpy(&cp.bdaddr, &conn->dst);
887 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200888 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700889 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100890
Linus Torvalds1da177e2005-04-16 15:20:36 -0700891 return 0;
892}
893EXPORT_SYMBOL(hci_conn_switch_role);
894
Marcel Holtmann04837f62006-07-03 10:02:33 +0200895/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700896void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200897{
898 struct hci_dev *hdev = conn->hdev;
899
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300900 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200901
902 if (test_bit(HCI_RAW, &hdev->flags))
903 return;
904
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700905 if (conn->mode != HCI_CM_SNIFF)
906 goto timer;
907
Johan Hedberg58a681e2012-01-16 06:47:28 +0200908 if (!test_bit(HCI_CONN_POWER_SAVE, &conn->flags) && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200909 goto timer;
910
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200911 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Marcel Holtmann04837f62006-07-03 10:02:33 +0200912 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700913 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200914 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200915 }
916
917timer:
918 if (hdev->idle_timeout > 0)
919 mod_timer(&conn->idle_timer,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300920 jiffies + msecs_to_jiffies(hdev->idle_timeout));
Marcel Holtmann04837f62006-07-03 10:02:33 +0200921}
922
Linus Torvalds1da177e2005-04-16 15:20:36 -0700923/* Drop all connection on the device */
924void hci_conn_hash_flush(struct hci_dev *hdev)
925{
926 struct hci_conn_hash *h = &hdev->conn_hash;
Andrei Emeltchenko3c4e0df2012-02-02 10:32:17 +0200927 struct hci_conn *c, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700928
929 BT_DBG("hdev %s", hdev->name);
930
Andrei Emeltchenko3c4e0df2012-02-02 10:32:17 +0200931 list_for_each_entry_safe(c, n, &h->list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700932 c->state = BT_CLOSED;
933
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +0200934 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700935 hci_conn_del(c);
936 }
937}
938
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200939/* Check pending connect attempts */
940void hci_conn_check_pending(struct hci_dev *hdev)
941{
942 struct hci_conn *conn;
943
944 BT_DBG("hdev %s", hdev->name);
945
946 hci_dev_lock(hdev);
947
948 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
949 if (conn)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300950 hci_acl_create_connection(conn);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200951
952 hci_dev_unlock(hdev);
953}
954
Linus Torvalds1da177e2005-04-16 15:20:36 -0700955int hci_get_conn_list(void __user *arg)
956{
Gustavo Padovanfc5fef62012-05-23 04:04:19 -0300957 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700958 struct hci_conn_list_req req, *cl;
959 struct hci_conn_info *ci;
960 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700961 int n = 0, size, err;
962
963 if (copy_from_user(&req, arg, sizeof(req)))
964 return -EFAULT;
965
966 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
967 return -EINVAL;
968
969 size = sizeof(req) + req.conn_num * sizeof(*ci);
970
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200971 cl = kmalloc(size, GFP_KERNEL);
972 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700973 return -ENOMEM;
974
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200975 hdev = hci_dev_get(req.dev_id);
976 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700977 kfree(cl);
978 return -ENODEV;
979 }
980
981 ci = cl->conn_info;
982
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300983 hci_dev_lock(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200984 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700985 bacpy(&(ci + n)->bdaddr, &c->dst);
986 (ci + n)->handle = c->handle;
987 (ci + n)->type = c->type;
988 (ci + n)->out = c->out;
989 (ci + n)->state = c->state;
990 (ci + n)->link_mode = c->link_mode;
991 if (++n >= req.conn_num)
992 break;
993 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300994 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700995
996 cl->dev_id = hdev->id;
997 cl->conn_num = n;
998 size = sizeof(req) + n * sizeof(*ci);
999
1000 hci_dev_put(hdev);
1001
1002 err = copy_to_user(arg, cl, size);
1003 kfree(cl);
1004
1005 return err ? -EFAULT : 0;
1006}
1007
1008int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
1009{
1010 struct hci_conn_info_req req;
1011 struct hci_conn_info ci;
1012 struct hci_conn *conn;
1013 char __user *ptr = arg + sizeof(req);
1014
1015 if (copy_from_user(&req, arg, sizeof(req)))
1016 return -EFAULT;
1017
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001018 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001019 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
1020 if (conn) {
1021 bacpy(&ci.bdaddr, &conn->dst);
1022 ci.handle = conn->handle;
1023 ci.type = conn->type;
1024 ci.out = conn->out;
1025 ci.state = conn->state;
1026 ci.link_mode = conn->link_mode;
1027 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001028 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001029
1030 if (!conn)
1031 return -ENOENT;
1032
1033 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
1034}
Marcel Holtmann40be4922008-07-14 20:13:50 +02001035
1036int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
1037{
1038 struct hci_auth_info_req req;
1039 struct hci_conn *conn;
1040
1041 if (copy_from_user(&req, arg, sizeof(req)))
1042 return -EFAULT;
1043
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001044 hci_dev_lock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001045 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
1046 if (conn)
1047 req.type = conn->auth_type;
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001048 hci_dev_unlock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001049
1050 if (!conn)
1051 return -ENOENT;
1052
1053 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
1054}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001055
1056struct hci_chan *hci_chan_create(struct hci_conn *conn)
1057{
1058 struct hci_dev *hdev = conn->hdev;
1059 struct hci_chan *chan;
1060
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001061 BT_DBG("%s hcon %p", hdev->name, conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001062
Andre Guedes75d77352012-01-30 09:22:10 -03001063 chan = kzalloc(sizeof(struct hci_chan), GFP_KERNEL);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001064 if (!chan)
1065 return NULL;
1066
1067 chan->conn = conn;
1068 skb_queue_head_init(&chan->data_q);
Mat Martineau168df8e2012-10-23 15:24:13 -07001069 chan->state = BT_CONNECTED;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001070
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001071 list_add_rcu(&chan->list, &conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001072
1073 return chan;
1074}
1075
Andrei Emeltchenko94720072012-09-06 15:05:43 +03001076void hci_chan_del(struct hci_chan *chan)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001077{
1078 struct hci_conn *conn = chan->conn;
1079 struct hci_dev *hdev = conn->hdev;
1080
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001081 BT_DBG("%s hcon %p chan %p", hdev->name, conn, chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001082
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001083 list_del_rcu(&chan->list);
1084
1085 synchronize_rcu();
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001086
David Herrmann76a68ba2013-04-06 20:28:37 +02001087 hci_conn_drop(conn);
Andrei Emeltchenkoe9b02742012-10-25 15:20:51 +03001088
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001089 skb_queue_purge(&chan->data_q);
1090 kfree(chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001091}
1092
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -02001093void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001094{
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001095 struct hci_chan *chan, *n;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001096
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001097 BT_DBG("hcon %p", conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001098
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001099 list_for_each_entry_safe(chan, n, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001100 hci_chan_del(chan);
1101}
Andrei Emeltchenko42c4e532012-10-10 17:38:28 +03001102
1103static struct hci_chan *__hci_chan_lookup_handle(struct hci_conn *hcon,
1104 __u16 handle)
1105{
1106 struct hci_chan *hchan;
1107
1108 list_for_each_entry(hchan, &hcon->chan_list, list) {
1109 if (hchan->handle == handle)
1110 return hchan;
1111 }
1112
1113 return NULL;
1114}
1115
1116struct hci_chan *hci_chan_lookup_handle(struct hci_dev *hdev, __u16 handle)
1117{
1118 struct hci_conn_hash *h = &hdev->conn_hash;
1119 struct hci_conn *hcon;
1120 struct hci_chan *hchan = NULL;
1121
1122 rcu_read_lock();
1123
1124 list_for_each_entry_rcu(hcon, &h->list, list) {
1125 hchan = __hci_chan_lookup_handle(hcon, handle);
1126 if (hchan)
1127 break;
1128 }
1129
1130 rcu_read_unlock();
1131
1132 return hchan;
1133}