blob: b04467674a135dc1e440d581f322731bc5ec6527 [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Linus Torvalds1da177e2005-04-16 15:20:36 -070027#include <linux/module.h>
28
29#include <linux/types.h>
30#include <linux/errno.h>
31#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/slab.h>
33#include <linux/poll.h>
34#include <linux/fcntl.h>
35#include <linux/init.h>
36#include <linux/skbuff.h>
37#include <linux/interrupt.h>
38#include <linux/notifier.h>
39#include <net/sock.h>
40
41#include <asm/system.h>
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020042#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <asm/unaligned.h>
44
45#include <net/bluetooth/bluetooth.h>
46#include <net/bluetooth/hci_core.h>
47
Ville Tervofcd89c02011-02-10 22:38:47 -030048static void hci_le_connect(struct hci_conn *conn)
49{
50 struct hci_dev *hdev = conn->hdev;
51 struct hci_cp_le_create_conn cp;
52
53 conn->state = BT_CONNECT;
54 conn->out = 1;
Vinicius Costa Gomesb92a6222011-02-10 22:38:52 -030055 conn->link_mode |= HCI_LM_MASTER;
Vinicius Costa Gomes7b5c0d52011-06-09 18:50:50 -030056 conn->sec_level = BT_SECURITY_LOW;
Ville Tervofcd89c02011-02-10 22:38:47 -030057
58 memset(&cp, 0, sizeof(cp));
Anderson Lizardo0e833912011-07-27 18:40:09 -030059 cp.scan_interval = cpu_to_le16(0x0060);
60 cp.scan_window = cpu_to_le16(0x0030);
Ville Tervofcd89c02011-02-10 22:38:47 -030061 bacpy(&cp.peer_addr, &conn->dst);
Andre Guedes6d3ce0e72011-05-31 14:20:57 -030062 cp.peer_addr_type = conn->dst_type;
Anderson Lizardo0e833912011-07-27 18:40:09 -030063 cp.conn_interval_min = cpu_to_le16(0x0028);
64 cp.conn_interval_max = cpu_to_le16(0x0038);
65 cp.supervision_timeout = cpu_to_le16(0x002a);
66 cp.min_ce_len = cpu_to_le16(0x0000);
67 cp.max_ce_len = cpu_to_le16(0x0000);
Ville Tervofcd89c02011-02-10 22:38:47 -030068
69 hci_send_cmd(hdev, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
70}
71
72static void hci_le_connect_cancel(struct hci_conn *conn)
73{
74 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
75}
76
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020077void hci_acl_connect(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070078{
79 struct hci_dev *hdev = conn->hdev;
80 struct inquiry_entry *ie;
81 struct hci_cp_create_conn cp;
82
83 BT_DBG("%p", conn);
84
85 conn->state = BT_CONNECT;
Marcel Holtmanna8746412008-07-14 20:13:46 +020086 conn->out = 1;
87
Linus Torvalds1da177e2005-04-16 15:20:36 -070088 conn->link_mode = HCI_LM_MASTER;
89
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020090 conn->attempt++;
91
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020092 conn->link_policy = hdev->link_policy;
93
Linus Torvalds1da177e2005-04-16 15:20:36 -070094 memset(&cp, 0, sizeof(cp));
95 bacpy(&cp.bdaddr, &conn->dst);
96 cp.pscan_rep_mode = 0x02;
97
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020098 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
99 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +0200100 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
101 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
102 cp.pscan_mode = ie->data.pscan_mode;
103 cp.clock_offset = ie->data.clock_offset |
104 cpu_to_le16(0x8000);
105 }
106
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107 memcpy(conn->dev_class, ie->data.dev_class, 3);
Marcel Holtmann41a96212008-07-14 20:13:48 +0200108 conn->ssp_mode = ie->data.ssp_mode;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109 }
110
Marcel Holtmanna8746412008-07-14 20:13:46 +0200111 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700112 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200113 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700114 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200115 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +0200116
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200117 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700118}
119
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200120static void hci_acl_connect_cancel(struct hci_conn *conn)
121{
122 struct hci_cp_create_conn_cancel cp;
123
124 BT_DBG("%p", conn);
125
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200126 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200127 return;
128
129 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200130 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200131}
132
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133void hci_acl_disconn(struct hci_conn *conn, __u8 reason)
134{
135 struct hci_cp_disconnect cp;
136
137 BT_DBG("%p", conn);
138
139 conn->state = BT_DISCONN;
140
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700141 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700142 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200143 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700144}
145
146void hci_add_sco(struct hci_conn *conn, __u16 handle)
147{
148 struct hci_dev *hdev = conn->hdev;
149 struct hci_cp_add_sco cp;
150
151 BT_DBG("%p", conn);
152
153 conn->state = BT_CONNECT;
154 conn->out = 1;
155
Marcel Holtmannefc76882009-02-06 09:13:37 +0100156 conn->attempt++;
157
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700158 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200159 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700160
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200161 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700162}
163
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200164void hci_setup_sync(struct hci_conn *conn, __u16 handle)
165{
166 struct hci_dev *hdev = conn->hdev;
167 struct hci_cp_setup_sync_conn cp;
168
169 BT_DBG("%p", conn);
170
171 conn->state = BT_CONNECT;
172 conn->out = 1;
173
Marcel Holtmannefc76882009-02-06 09:13:37 +0100174 conn->attempt++;
175
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200176 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200177 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200178
179 cp.tx_bandwidth = cpu_to_le32(0x00001f40);
180 cp.rx_bandwidth = cpu_to_le32(0x00001f40);
181 cp.max_latency = cpu_to_le16(0xffff);
182 cp.voice_setting = cpu_to_le16(hdev->voice_setting);
183 cp.retrans_effort = 0xff;
184
185 hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp);
186}
187
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200188void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
189 u16 latency, u16 to_multiplier)
190{
191 struct hci_cp_le_conn_update cp;
192 struct hci_dev *hdev = conn->hdev;
193
194 memset(&cp, 0, sizeof(cp));
195
196 cp.handle = cpu_to_le16(conn->handle);
197 cp.conn_interval_min = cpu_to_le16(min);
198 cp.conn_interval_max = cpu_to_le16(max);
199 cp.conn_latency = cpu_to_le16(latency);
200 cp.supervision_timeout = cpu_to_le16(to_multiplier);
201 cp.min_ce_len = cpu_to_le16(0x0001);
202 cp.max_ce_len = cpu_to_le16(0x0001);
203
204 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
205}
206EXPORT_SYMBOL(hci_le_conn_update);
207
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300208void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __u8 rand[8],
209 __u8 ltk[16])
210{
211 struct hci_dev *hdev = conn->hdev;
212 struct hci_cp_le_start_enc cp;
213
214 BT_DBG("%p", conn);
215
216 memset(&cp, 0, sizeof(cp));
217
218 cp.handle = cpu_to_le16(conn->handle);
219 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
220 cp.ediv = ediv;
Anderson Briglia51beabd2011-09-19 14:41:09 -0400221 memcpy(cp.rand, rand, sizeof(cp.rand));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300222
223 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
224}
225EXPORT_SYMBOL(hci_le_start_enc);
226
227void hci_le_ltk_reply(struct hci_conn *conn, u8 ltk[16])
228{
229 struct hci_dev *hdev = conn->hdev;
230 struct hci_cp_le_ltk_reply cp;
231
232 BT_DBG("%p", conn);
233
234 memset(&cp, 0, sizeof(cp));
235
236 cp.handle = cpu_to_le16(conn->handle);
237 memcpy(cp.ltk, ltk, sizeof(ltk));
238
239 hci_send_cmd(hdev, HCI_OP_LE_LTK_REPLY, sizeof(cp), &cp);
240}
241EXPORT_SYMBOL(hci_le_ltk_reply);
242
243void hci_le_ltk_neg_reply(struct hci_conn *conn)
244{
245 struct hci_dev *hdev = conn->hdev;
246 struct hci_cp_le_ltk_neg_reply cp;
247
248 BT_DBG("%p", conn);
249
250 memset(&cp, 0, sizeof(cp));
251
252 cp.handle = cpu_to_le16(conn->handle);
253
254 hci_send_cmd(hdev, HCI_OP_LE_LTK_NEG_REPLY, sizeof(cp), &cp);
255}
256
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400257/* Device _must_ be locked */
258void hci_sco_setup(struct hci_conn *conn, __u8 status)
259{
260 struct hci_conn *sco = conn->link;
261
262 BT_DBG("%p", conn);
263
264 if (!sco)
265 return;
266
267 if (!status) {
268 if (lmp_esco_capable(conn->hdev))
269 hci_setup_sync(sco, conn->handle);
270 else
271 hci_add_sco(sco, conn->handle);
272 } else {
273 hci_proto_connect_cfm(sco, status);
274 hci_conn_del(sco);
275 }
276}
277
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300278static void hci_conn_timeout(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700279{
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300280 struct hci_conn *conn = container_of(work, struct hci_conn,
281 disc_work.work);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200282 struct hci_dev *hdev = conn->hdev;
Marcel Holtmann2950f212009-02-12 14:02:50 +0100283 __u8 reason;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700284
285 BT_DBG("conn %p state %d", conn, conn->state);
286
287 if (atomic_read(&conn->refcnt))
288 return;
289
290 hci_dev_lock(hdev);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200291
292 switch (conn->state) {
293 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200294 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300295 if (conn->out) {
296 if (conn->type == ACL_LINK)
297 hci_acl_connect_cancel(conn);
298 else if (conn->type == LE_LINK)
299 hci_le_connect_cancel(conn);
300 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200301 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200302 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900303 case BT_CONNECTED:
Marcel Holtmann2950f212009-02-12 14:02:50 +0100304 reason = hci_proto_disconn_ind(conn);
305 hci_acl_disconn(conn, reason);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200306 break;
307 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700308 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200309 break;
310 }
311
Linus Torvalds1da177e2005-04-16 15:20:36 -0700312 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313}
314
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200315/* Enter sniff mode */
316static void hci_conn_enter_sniff_mode(struct hci_conn *conn)
317{
318 struct hci_dev *hdev = conn->hdev;
319
320 BT_DBG("conn %p mode %d", conn, conn->mode);
321
322 if (test_bit(HCI_RAW, &hdev->flags))
323 return;
324
325 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
326 return;
327
328 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
329 return;
330
331 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
332 struct hci_cp_sniff_subrate cp;
333 cp.handle = cpu_to_le16(conn->handle);
334 cp.max_latency = cpu_to_le16(0);
335 cp.min_remote_timeout = cpu_to_le16(0);
336 cp.min_local_timeout = cpu_to_le16(0);
337 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
338 }
339
340 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
341 struct hci_cp_sniff_mode cp;
342 cp.handle = cpu_to_le16(conn->handle);
343 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
344 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
345 cp.attempt = cpu_to_le16(4);
346 cp.timeout = cpu_to_le16(1);
347 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
348 }
349}
350
Marcel Holtmann04837f62006-07-03 10:02:33 +0200351static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700352{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200353 struct hci_conn *conn = (void *) arg;
354
355 BT_DBG("conn %p mode %d", conn, conn->mode);
356
357 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700358}
359
Johan Hedberg9f616562011-04-28 11:28:54 -0700360static void hci_conn_auto_accept(unsigned long arg)
361{
362 struct hci_conn *conn = (void *) arg;
363 struct hci_dev *hdev = conn->hdev;
364
Johan Hedberg9f616562011-04-28 11:28:54 -0700365 hci_send_cmd(hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
366 &conn->dst);
Johan Hedberg9f616562011-04-28 11:28:54 -0700367}
368
Linus Torvalds1da177e2005-04-16 15:20:36 -0700369struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
370{
371 struct hci_conn *conn;
372
373 BT_DBG("%s dst %s", hdev->name, batostr(dst));
374
Marcel Holtmann04837f62006-07-03 10:02:33 +0200375 conn = kzalloc(sizeof(struct hci_conn), GFP_ATOMIC);
376 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700378
379 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200380 conn->hdev = hdev;
381 conn->type = type;
382 conn->mode = HCI_CM_ACTIVE;
383 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300384 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200385 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300386 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200387 conn->key_type = 0xff;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700388
Marcel Holtmann04837f62006-07-03 10:02:33 +0200389 conn->power_save = 1;
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200390 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200391
Marcel Holtmanna8746412008-07-14 20:13:46 +0200392 switch (type) {
393 case ACL_LINK:
394 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
395 break;
396 case SCO_LINK:
397 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100398 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
399 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200400 else
401 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
402 break;
403 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100404 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200405 break;
406 }
407
Linus Torvalds1da177e2005-04-16 15:20:36 -0700408 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200409
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200410 INIT_LIST_HEAD(&conn->chan_list);;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200411
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300412 INIT_DELAYED_WORK(&conn->disc_work, hci_conn_timeout);
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800413 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Johan Hedberg9f616562011-04-28 11:28:54 -0700414 setup_timer(&conn->auto_accept_timer, hci_conn_auto_accept,
415 (unsigned long) conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700416
417 atomic_set(&conn->refcnt, 0);
418
419 hci_dev_hold(hdev);
420
421 tasklet_disable(&hdev->tx_task);
422
423 hci_conn_hash_add(hdev, conn);
424 if (hdev->notify)
425 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
426
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700427 atomic_set(&conn->devref, 0);
428
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700429 hci_conn_init_sysfs(conn);
430
Linus Torvalds1da177e2005-04-16 15:20:36 -0700431 tasklet_enable(&hdev->tx_task);
432
433 return conn;
434}
435
436int hci_conn_del(struct hci_conn *conn)
437{
438 struct hci_dev *hdev = conn->hdev;
439
440 BT_DBG("%s conn %p handle %d", hdev->name, conn, conn->handle);
441
Marcel Holtmann04837f62006-07-03 10:02:33 +0200442 del_timer(&conn->idle_timer);
443
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300444 cancel_delayed_work_sync(&conn->disc_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700445
Johan Hedberg9f616562011-04-28 11:28:54 -0700446 del_timer(&conn->auto_accept_timer);
447
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200448 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700449 struct hci_conn *sco = conn->link;
450 if (sco)
451 sco->link = NULL;
452
453 /* Unacked frames */
454 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300455 } else if (conn->type == LE_LINK) {
456 if (hdev->le_pkts)
457 hdev->le_cnt += conn->sent;
458 else
459 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200460 } else {
461 struct hci_conn *acl = conn->link;
462 if (acl) {
463 acl->link = NULL;
464 hci_conn_put(acl);
465 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466 }
467
468 tasklet_disable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200469
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200470 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200471
Linus Torvalds1da177e2005-04-16 15:20:36 -0700472 hci_conn_hash_del(hdev, conn);
473 if (hdev->notify)
474 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200475
Linus Torvalds1da177e2005-04-16 15:20:36 -0700476 tasklet_enable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200477
Linus Torvalds1da177e2005-04-16 15:20:36 -0700478 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700479
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700480 hci_conn_put_device(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800481
Marcel Holtmann384943e2009-05-08 18:20:43 -0700482 hci_dev_put(hdev);
483
Tomas Targownik163f4da2011-06-30 16:30:44 -0300484 if (conn->handle == 0)
485 kfree(conn);
486
Linus Torvalds1da177e2005-04-16 15:20:36 -0700487 return 0;
488}
489
490struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
491{
492 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200493 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700494
495 BT_DBG("%s -> %s", batostr(src), batostr(dst));
496
497 read_lock_bh(&hci_dev_list_lock);
498
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200499 list_for_each_entry(d, &hci_dev_list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500 if (!test_bit(HCI_UP, &d->flags) || test_bit(HCI_RAW, &d->flags))
501 continue;
502
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900503 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504 * No source address - find interface with bdaddr != dst
505 * Source address - find interface with bdaddr == src
506 */
507
508 if (use_src) {
509 if (!bacmp(&d->bdaddr, src)) {
510 hdev = d; break;
511 }
512 } else {
513 if (bacmp(&d->bdaddr, dst)) {
514 hdev = d; break;
515 }
516 }
517 }
518
519 if (hdev)
520 hdev = hci_dev_hold(hdev);
521
522 read_unlock_bh(&hci_dev_list_lock);
523 return hdev;
524}
525EXPORT_SYMBOL(hci_get_route);
526
Ville Tervofcd89c02011-02-10 22:38:47 -0300527/* Create SCO, ACL or LE connection.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700528 * Device _must_ be locked */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100529struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700530{
531 struct hci_conn *acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200532 struct hci_conn *sco;
Ville Tervofcd89c02011-02-10 22:38:47 -0300533 struct hci_conn *le;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700534
535 BT_DBG("%s dst %s", hdev->name, batostr(dst));
536
Ville Tervofcd89c02011-02-10 22:38:47 -0300537 if (type == LE_LINK) {
Andre Guedeseda42b52011-05-31 14:20:56 -0300538 struct adv_entry *entry;
539
Ville Tervofcd89c02011-02-10 22:38:47 -0300540 le = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Anderson Briglia15c47942011-02-21 15:09:23 -0300541 if (le)
Ville Tervo30e76272011-02-22 16:10:53 -0300542 return ERR_PTR(-EBUSY);
Andre Guedeseda42b52011-05-31 14:20:56 -0300543
544 entry = hci_find_adv_entry(hdev, dst);
545 if (!entry)
546 return ERR_PTR(-EHOSTUNREACH);
547
Anderson Briglia15c47942011-02-21 15:09:23 -0300548 le = hci_conn_add(hdev, LE_LINK, dst);
Ville Tervofcd89c02011-02-10 22:38:47 -0300549 if (!le)
Ville Tervo30e76272011-02-22 16:10:53 -0300550 return ERR_PTR(-ENOMEM);
Andre Guedes893d6752011-05-31 14:20:55 -0300551
Andre Guedeseda42b52011-05-31 14:20:56 -0300552 le->dst_type = entry->bdaddr_type;
553
Andre Guedes893d6752011-05-31 14:20:55 -0300554 hci_le_connect(le);
Ville Tervofcd89c02011-02-10 22:38:47 -0300555
556 hci_conn_hold(le);
557
558 return le;
559 }
560
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200561 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
562 if (!acl) {
563 acl = hci_conn_add(hdev, ACL_LINK, dst);
564 if (!acl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700565 return NULL;
566 }
567
568 hci_conn_hold(acl);
569
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200570 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
Johan Hedberg765c2a92011-01-19 12:06:52 +0530571 acl->sec_level = BT_SECURITY_LOW;
572 acl->pending_sec_level = sec_level;
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200573 acl->auth_type = auth_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700574 hci_acl_connect(acl);
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200575 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200577 if (type == ACL_LINK)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700578 return acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200579
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200580 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
581 if (!sco) {
582 sco = hci_conn_add(hdev, type, dst);
583 if (!sco) {
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200584 hci_conn_put(acl);
585 return NULL;
586 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700587 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200588
589 acl->link = sco;
590 sco->link = acl;
591
592 hci_conn_hold(sco);
593
594 if (acl->state == BT_CONNECTED &&
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200595 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Nick Pellyc3902162009-11-13 14:16:32 -0800596 acl->power_save = 1;
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700597 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Nick Pellyc3902162009-11-13 14:16:32 -0800598
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400599 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->pend)) {
600 /* defer SCO setup until mode change completed */
601 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->pend);
602 return sco;
603 }
604
605 hci_sco_setup(acl, 0x00);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200606 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200607
608 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700609}
610EXPORT_SYMBOL(hci_connect);
611
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200612/* Check link security requirement */
613int hci_conn_check_link_mode(struct hci_conn *conn)
614{
615 BT_DBG("conn %p", conn);
616
617 if (conn->ssp_mode > 0 && conn->hdev->ssp_mode > 0 &&
618 !(conn->link_mode & HCI_LM_ENCRYPT))
619 return 0;
620
621 return 1;
622}
623EXPORT_SYMBOL(hci_conn_check_link_mode);
624
Linus Torvalds1da177e2005-04-16 15:20:36 -0700625/* Authenticate remote device */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100626static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700627{
628 BT_DBG("conn %p", conn);
629
Johan Hedberg765c2a92011-01-19 12:06:52 +0530630 if (conn->pending_sec_level > sec_level)
631 sec_level = conn->pending_sec_level;
632
Marcel Holtmann96a31832009-02-12 16:23:03 +0100633 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530634 conn->pending_sec_level = sec_level;
Marcel Holtmann96a31832009-02-12 16:23:03 +0100635 else if (conn->link_mode & HCI_LM_AUTH)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700636 return 1;
637
Johan Hedberg65cf6862011-01-19 12:06:49 +0530638 /* Make sure we preserve an existing MITM requirement*/
639 auth_type |= (conn->auth_type & 0x01);
640
Marcel Holtmann96a31832009-02-12 16:23:03 +0100641 conn->auth_type = auth_type;
642
Linus Torvalds1da177e2005-04-16 15:20:36 -0700643 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
644 struct hci_cp_auth_requested cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700645 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200646 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
647 sizeof(cp), &cp);
Waldemar Rymarkiewicz19f8def2011-05-31 15:49:25 +0200648 if (conn->key_type != 0xff)
649 set_bit(HCI_CONN_REAUTH_PEND, &conn->pend);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700650 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100651
Linus Torvalds1da177e2005-04-16 15:20:36 -0700652 return 0;
653}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700654
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200655/* Encrypt the the link */
656static void hci_conn_encrypt(struct hci_conn *conn)
657{
658 BT_DBG("conn %p", conn);
659
660 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->pend)) {
661 struct hci_cp_set_conn_encrypt cp;
662 cp.handle = cpu_to_le16(conn->handle);
663 cp.encrypt = 0x01;
664 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
665 &cp);
666 }
667}
668
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100669/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100670int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700671{
672 BT_DBG("conn %p", conn);
673
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200674 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100675 if (sec_level == BT_SECURITY_SDP)
676 return 1;
677
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200678 /* For non 2.1 devices and low security level we don't need the link
679 key. */
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700680 if (sec_level == BT_SECURITY_LOW &&
681 (!conn->ssp_mode || !conn->hdev->ssp_mode))
682 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100683
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200684 /* For other security levels we need the link key. */
685 if (!(conn->link_mode & HCI_LM_AUTH))
686 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700687
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200688 /* An authenticated combination key has sufficient security for any
689 security level. */
690 if (conn->key_type == HCI_LK_AUTH_COMBINATION)
691 goto encrypt;
692
693 /* An unauthenticated combination key has sufficient security for
694 security level 1 and 2. */
695 if (conn->key_type == HCI_LK_UNAUTH_COMBINATION &&
696 (sec_level == BT_SECURITY_MEDIUM ||
697 sec_level == BT_SECURITY_LOW))
698 goto encrypt;
699
700 /* A combination key has always sufficient security for the security
701 levels 1 or 2. High security level requires the combination key
702 is generated using maximum PIN code length (16).
703 For pre 2.1 units. */
704 if (conn->key_type == HCI_LK_COMBINATION &&
705 (sec_level != BT_SECURITY_HIGH ||
706 conn->pin_length == 16))
707 goto encrypt;
708
709auth:
Arek Lichwa4dff5232011-10-26 11:23:22 +0200710 if (test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->pend))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700711 return 0;
712
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +0300713 if (!hci_conn_auth(conn, sec_level, auth_type))
714 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100715
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200716encrypt:
717 if (conn->link_mode & HCI_LM_ENCRYPT)
718 return 1;
719
720 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700721 return 0;
722}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100723EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700724
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200725/* Check secure link requirement */
726int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
727{
728 BT_DBG("conn %p", conn);
729
730 if (sec_level != BT_SECURITY_HIGH)
731 return 1; /* Accept if non-secure is required */
732
Waldemar Rymarkiewiczef4177e2011-06-02 14:24:52 +0200733 if (conn->sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200734 return 1;
735
736 return 0; /* Reject not secure link */
737}
738EXPORT_SYMBOL(hci_conn_check_secure);
739
Linus Torvalds1da177e2005-04-16 15:20:36 -0700740/* Change link key */
741int hci_conn_change_link_key(struct hci_conn *conn)
742{
743 BT_DBG("conn %p", conn);
744
745 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
746 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700747 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200748 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
749 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700750 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100751
Linus Torvalds1da177e2005-04-16 15:20:36 -0700752 return 0;
753}
754EXPORT_SYMBOL(hci_conn_change_link_key);
755
756/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100757int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700758{
759 BT_DBG("conn %p", conn);
760
761 if (!role && conn->link_mode & HCI_LM_MASTER)
762 return 1;
763
764 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->pend)) {
765 struct hci_cp_switch_role cp;
766 bacpy(&cp.bdaddr, &conn->dst);
767 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200768 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700769 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100770
Linus Torvalds1da177e2005-04-16 15:20:36 -0700771 return 0;
772}
773EXPORT_SYMBOL(hci_conn_switch_role);
774
Marcel Holtmann04837f62006-07-03 10:02:33 +0200775/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700776void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200777{
778 struct hci_dev *hdev = conn->hdev;
779
780 BT_DBG("conn %p mode %d", conn, conn->mode);
781
782 if (test_bit(HCI_RAW, &hdev->flags))
783 return;
784
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700785 if (conn->mode != HCI_CM_SNIFF)
786 goto timer;
787
788 if (!conn->power_save && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200789 goto timer;
790
791 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
792 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700793 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200794 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200795 }
796
797timer:
798 if (hdev->idle_timeout > 0)
799 mod_timer(&conn->idle_timer,
800 jiffies + msecs_to_jiffies(hdev->idle_timeout));
801}
802
Linus Torvalds1da177e2005-04-16 15:20:36 -0700803/* Drop all connection on the device */
804void hci_conn_hash_flush(struct hci_dev *hdev)
805{
806 struct hci_conn_hash *h = &hdev->conn_hash;
Gustavo F. Padovan3e9c40a2011-12-14 22:52:31 -0200807 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700808
809 BT_DBG("hdev %s", hdev->name);
810
Gustavo F. Padovan3e9c40a2011-12-14 22:52:31 -0200811 list_for_each_entry(c, &h->list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700812 c->state = BT_CLOSED;
813
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +0200814 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700815 hci_conn_del(c);
816 }
817}
818
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200819/* Check pending connect attempts */
820void hci_conn_check_pending(struct hci_dev *hdev)
821{
822 struct hci_conn *conn;
823
824 BT_DBG("hdev %s", hdev->name);
825
826 hci_dev_lock(hdev);
827
828 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
829 if (conn)
830 hci_acl_connect(conn);
831
832 hci_dev_unlock(hdev);
833}
834
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700835void hci_conn_hold_device(struct hci_conn *conn)
836{
837 atomic_inc(&conn->devref);
838}
839EXPORT_SYMBOL(hci_conn_hold_device);
840
841void hci_conn_put_device(struct hci_conn *conn)
842{
843 if (atomic_dec_and_test(&conn->devref))
844 hci_conn_del_sysfs(conn);
845}
846EXPORT_SYMBOL(hci_conn_put_device);
847
Linus Torvalds1da177e2005-04-16 15:20:36 -0700848int hci_get_conn_list(void __user *arg)
849{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200850 register struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700851 struct hci_conn_list_req req, *cl;
852 struct hci_conn_info *ci;
853 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854 int n = 0, size, err;
855
856 if (copy_from_user(&req, arg, sizeof(req)))
857 return -EFAULT;
858
859 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
860 return -EINVAL;
861
862 size = sizeof(req) + req.conn_num * sizeof(*ci);
863
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200864 cl = kmalloc(size, GFP_KERNEL);
865 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700866 return -ENOMEM;
867
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200868 hdev = hci_dev_get(req.dev_id);
869 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700870 kfree(cl);
871 return -ENODEV;
872 }
873
874 ci = cl->conn_info;
875
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300876 hci_dev_lock(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200877 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700878 bacpy(&(ci + n)->bdaddr, &c->dst);
879 (ci + n)->handle = c->handle;
880 (ci + n)->type = c->type;
881 (ci + n)->out = c->out;
882 (ci + n)->state = c->state;
883 (ci + n)->link_mode = c->link_mode;
884 if (++n >= req.conn_num)
885 break;
886 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300887 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700888
889 cl->dev_id = hdev->id;
890 cl->conn_num = n;
891 size = sizeof(req) + n * sizeof(*ci);
892
893 hci_dev_put(hdev);
894
895 err = copy_to_user(arg, cl, size);
896 kfree(cl);
897
898 return err ? -EFAULT : 0;
899}
900
901int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
902{
903 struct hci_conn_info_req req;
904 struct hci_conn_info ci;
905 struct hci_conn *conn;
906 char __user *ptr = arg + sizeof(req);
907
908 if (copy_from_user(&req, arg, sizeof(req)))
909 return -EFAULT;
910
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300911 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700912 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
913 if (conn) {
914 bacpy(&ci.bdaddr, &conn->dst);
915 ci.handle = conn->handle;
916 ci.type = conn->type;
917 ci.out = conn->out;
918 ci.state = conn->state;
919 ci.link_mode = conn->link_mode;
920 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300921 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700922
923 if (!conn)
924 return -ENOENT;
925
926 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
927}
Marcel Holtmann40be4922008-07-14 20:13:50 +0200928
929int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
930{
931 struct hci_auth_info_req req;
932 struct hci_conn *conn;
933
934 if (copy_from_user(&req, arg, sizeof(req)))
935 return -EFAULT;
936
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300937 hci_dev_lock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200938 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
939 if (conn)
940 req.type = conn->auth_type;
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300941 hci_dev_unlock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200942
943 if (!conn)
944 return -ENOENT;
945
946 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
947}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200948
949struct hci_chan *hci_chan_create(struct hci_conn *conn)
950{
951 struct hci_dev *hdev = conn->hdev;
952 struct hci_chan *chan;
953
954 BT_DBG("%s conn %p", hdev->name, conn);
955
956 chan = kzalloc(sizeof(struct hci_chan), GFP_ATOMIC);
957 if (!chan)
958 return NULL;
959
960 chan->conn = conn;
961 skb_queue_head_init(&chan->data_q);
962
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -0200963 list_add_rcu(&chan->list, &conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200964
965 return chan;
966}
967
968int hci_chan_del(struct hci_chan *chan)
969{
970 struct hci_conn *conn = chan->conn;
971 struct hci_dev *hdev = conn->hdev;
972
973 BT_DBG("%s conn %p chan %p", hdev->name, conn, chan);
974
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -0200975 list_del_rcu(&chan->list);
976
977 synchronize_rcu();
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200978
979 skb_queue_purge(&chan->data_q);
980 kfree(chan);
981
982 return 0;
983}
984
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200985void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200986{
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -0200987 struct hci_chan *chan;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200988
989 BT_DBG("conn %p", conn);
990
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -0200991 list_for_each_entry_rcu(chan, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200992 hci_chan_del(chan);
993}