blob: a050a69849012d9870bdb71cb9b120df11b18f3b [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Linus Torvalds1da177e2005-04-16 15:20:36 -070027#include <linux/module.h>
28
29#include <linux/types.h>
30#include <linux/errno.h>
31#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/slab.h>
33#include <linux/poll.h>
34#include <linux/fcntl.h>
35#include <linux/init.h>
36#include <linux/skbuff.h>
37#include <linux/interrupt.h>
38#include <linux/notifier.h>
39#include <net/sock.h>
40
41#include <asm/system.h>
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020042#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <asm/unaligned.h>
44
45#include <net/bluetooth/bluetooth.h>
46#include <net/bluetooth/hci_core.h>
47
Ville Tervofcd89c02011-02-10 22:38:47 -030048static void hci_le_connect(struct hci_conn *conn)
49{
50 struct hci_dev *hdev = conn->hdev;
51 struct hci_cp_le_create_conn cp;
52
53 conn->state = BT_CONNECT;
54 conn->out = 1;
Vinicius Costa Gomesb92a6222011-02-10 22:38:52 -030055 conn->link_mode |= HCI_LM_MASTER;
Ville Tervofcd89c02011-02-10 22:38:47 -030056
57 memset(&cp, 0, sizeof(cp));
58 cp.scan_interval = cpu_to_le16(0x0004);
59 cp.scan_window = cpu_to_le16(0x0004);
60 bacpy(&cp.peer_addr, &conn->dst);
61 cp.conn_interval_min = cpu_to_le16(0x0008);
62 cp.conn_interval_max = cpu_to_le16(0x0100);
63 cp.supervision_timeout = cpu_to_le16(0x0064);
64 cp.min_ce_len = cpu_to_le16(0x0001);
65 cp.max_ce_len = cpu_to_le16(0x0001);
66
67 hci_send_cmd(hdev, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
68}
69
70static void hci_le_connect_cancel(struct hci_conn *conn)
71{
72 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
73}
74
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020075void hci_acl_connect(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070076{
77 struct hci_dev *hdev = conn->hdev;
78 struct inquiry_entry *ie;
79 struct hci_cp_create_conn cp;
80
81 BT_DBG("%p", conn);
82
83 conn->state = BT_CONNECT;
Marcel Holtmanna8746412008-07-14 20:13:46 +020084 conn->out = 1;
85
Linus Torvalds1da177e2005-04-16 15:20:36 -070086 conn->link_mode = HCI_LM_MASTER;
87
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020088 conn->attempt++;
89
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020090 conn->link_policy = hdev->link_policy;
91
Linus Torvalds1da177e2005-04-16 15:20:36 -070092 memset(&cp, 0, sizeof(cp));
93 bacpy(&cp.bdaddr, &conn->dst);
94 cp.pscan_rep_mode = 0x02;
95
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020096 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
97 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +020098 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
99 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
100 cp.pscan_mode = ie->data.pscan_mode;
101 cp.clock_offset = ie->data.clock_offset |
102 cpu_to_le16(0x8000);
103 }
104
Linus Torvalds1da177e2005-04-16 15:20:36 -0700105 memcpy(conn->dev_class, ie->data.dev_class, 3);
Marcel Holtmann41a96212008-07-14 20:13:48 +0200106 conn->ssp_mode = ie->data.ssp_mode;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107 }
108
Marcel Holtmanna8746412008-07-14 20:13:46 +0200109 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700110 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200111 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700112 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200113 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +0200114
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200115 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700116}
117
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200118static void hci_acl_connect_cancel(struct hci_conn *conn)
119{
120 struct hci_cp_create_conn_cancel cp;
121
122 BT_DBG("%p", conn);
123
124 if (conn->hdev->hci_ver < 2)
125 return;
126
127 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200128 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200129}
130
Linus Torvalds1da177e2005-04-16 15:20:36 -0700131void hci_acl_disconn(struct hci_conn *conn, __u8 reason)
132{
133 struct hci_cp_disconnect cp;
134
135 BT_DBG("%p", conn);
136
137 conn->state = BT_DISCONN;
138
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700139 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700140 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200141 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700142}
143
144void hci_add_sco(struct hci_conn *conn, __u16 handle)
145{
146 struct hci_dev *hdev = conn->hdev;
147 struct hci_cp_add_sco cp;
148
149 BT_DBG("%p", conn);
150
151 conn->state = BT_CONNECT;
152 conn->out = 1;
153
Marcel Holtmannefc76882009-02-06 09:13:37 +0100154 conn->attempt++;
155
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700156 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200157 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200159 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700160}
161
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200162void hci_setup_sync(struct hci_conn *conn, __u16 handle)
163{
164 struct hci_dev *hdev = conn->hdev;
165 struct hci_cp_setup_sync_conn cp;
166
167 BT_DBG("%p", conn);
168
169 conn->state = BT_CONNECT;
170 conn->out = 1;
171
Marcel Holtmannefc76882009-02-06 09:13:37 +0100172 conn->attempt++;
173
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200174 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200175 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200176
177 cp.tx_bandwidth = cpu_to_le32(0x00001f40);
178 cp.rx_bandwidth = cpu_to_le32(0x00001f40);
179 cp.max_latency = cpu_to_le16(0xffff);
180 cp.voice_setting = cpu_to_le16(hdev->voice_setting);
181 cp.retrans_effort = 0xff;
182
183 hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp);
184}
185
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200186void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
187 u16 latency, u16 to_multiplier)
188{
189 struct hci_cp_le_conn_update cp;
190 struct hci_dev *hdev = conn->hdev;
191
192 memset(&cp, 0, sizeof(cp));
193
194 cp.handle = cpu_to_le16(conn->handle);
195 cp.conn_interval_min = cpu_to_le16(min);
196 cp.conn_interval_max = cpu_to_le16(max);
197 cp.conn_latency = cpu_to_le16(latency);
198 cp.supervision_timeout = cpu_to_le16(to_multiplier);
199 cp.min_ce_len = cpu_to_le16(0x0001);
200 cp.max_ce_len = cpu_to_le16(0x0001);
201
202 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
203}
204EXPORT_SYMBOL(hci_le_conn_update);
205
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400206/* Device _must_ be locked */
207void hci_sco_setup(struct hci_conn *conn, __u8 status)
208{
209 struct hci_conn *sco = conn->link;
210
211 BT_DBG("%p", conn);
212
213 if (!sco)
214 return;
215
216 if (!status) {
217 if (lmp_esco_capable(conn->hdev))
218 hci_setup_sync(sco, conn->handle);
219 else
220 hci_add_sco(sco, conn->handle);
221 } else {
222 hci_proto_connect_cfm(sco, status);
223 hci_conn_del(sco);
224 }
225}
226
Linus Torvalds1da177e2005-04-16 15:20:36 -0700227static void hci_conn_timeout(unsigned long arg)
228{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200229 struct hci_conn *conn = (void *) arg;
230 struct hci_dev *hdev = conn->hdev;
Marcel Holtmann2950f212009-02-12 14:02:50 +0100231 __u8 reason;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700232
233 BT_DBG("conn %p state %d", conn, conn->state);
234
235 if (atomic_read(&conn->refcnt))
236 return;
237
238 hci_dev_lock(hdev);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200239
240 switch (conn->state) {
241 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200242 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300243 if (conn->out) {
244 if (conn->type == ACL_LINK)
245 hci_acl_connect_cancel(conn);
246 else if (conn->type == LE_LINK)
247 hci_le_connect_cancel(conn);
248 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200249 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200250 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900251 case BT_CONNECTED:
Marcel Holtmann2950f212009-02-12 14:02:50 +0100252 reason = hci_proto_disconn_ind(conn);
253 hci_acl_disconn(conn, reason);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200254 break;
255 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700256 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200257 break;
258 }
259
Linus Torvalds1da177e2005-04-16 15:20:36 -0700260 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700261}
262
Marcel Holtmann04837f62006-07-03 10:02:33 +0200263static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700264{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200265 struct hci_conn *conn = (void *) arg;
266
267 BT_DBG("conn %p mode %d", conn, conn->mode);
268
269 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700270}
271
272struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
273{
274 struct hci_conn *conn;
275
276 BT_DBG("%s dst %s", hdev->name, batostr(dst));
277
Marcel Holtmann04837f62006-07-03 10:02:33 +0200278 conn = kzalloc(sizeof(struct hci_conn), GFP_ATOMIC);
279 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700280 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281
282 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200283 conn->hdev = hdev;
284 conn->type = type;
285 conn->mode = HCI_CM_ACTIVE;
286 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300287 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200288 conn->io_capability = hdev->io_capability;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700289
Marcel Holtmann04837f62006-07-03 10:02:33 +0200290 conn->power_save = 1;
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200291 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200292
Marcel Holtmanna8746412008-07-14 20:13:46 +0200293 switch (type) {
294 case ACL_LINK:
295 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
296 break;
297 case SCO_LINK:
298 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100299 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
300 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200301 else
302 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
303 break;
304 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100305 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200306 break;
307 }
308
Linus Torvalds1da177e2005-04-16 15:20:36 -0700309 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200310
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800311 setup_timer(&conn->disc_timer, hci_conn_timeout, (unsigned long)conn);
312 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313
314 atomic_set(&conn->refcnt, 0);
315
316 hci_dev_hold(hdev);
317
318 tasklet_disable(&hdev->tx_task);
319
320 hci_conn_hash_add(hdev, conn);
321 if (hdev->notify)
322 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
323
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700324 atomic_set(&conn->devref, 0);
325
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700326 hci_conn_init_sysfs(conn);
327
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328 tasklet_enable(&hdev->tx_task);
329
330 return conn;
331}
332
333int hci_conn_del(struct hci_conn *conn)
334{
335 struct hci_dev *hdev = conn->hdev;
336
337 BT_DBG("%s conn %p handle %d", hdev->name, conn, conn->handle);
338
Marcel Holtmann04837f62006-07-03 10:02:33 +0200339 del_timer(&conn->idle_timer);
340
341 del_timer(&conn->disc_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700342
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200343 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700344 struct hci_conn *sco = conn->link;
345 if (sco)
346 sco->link = NULL;
347
348 /* Unacked frames */
349 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300350 } else if (conn->type == LE_LINK) {
351 if (hdev->le_pkts)
352 hdev->le_cnt += conn->sent;
353 else
354 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200355 } else {
356 struct hci_conn *acl = conn->link;
357 if (acl) {
358 acl->link = NULL;
359 hci_conn_put(acl);
360 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700361 }
362
363 tasklet_disable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200364
Linus Torvalds1da177e2005-04-16 15:20:36 -0700365 hci_conn_hash_del(hdev, conn);
366 if (hdev->notify)
367 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200368
Linus Torvalds1da177e2005-04-16 15:20:36 -0700369 tasklet_enable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200370
Linus Torvalds1da177e2005-04-16 15:20:36 -0700371 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700372
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700373 hci_conn_put_device(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800374
Marcel Holtmann384943e2009-05-08 18:20:43 -0700375 hci_dev_put(hdev);
376
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377 return 0;
378}
379
380struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
381{
382 int use_src = bacmp(src, BDADDR_ANY);
383 struct hci_dev *hdev = NULL;
384 struct list_head *p;
385
386 BT_DBG("%s -> %s", batostr(src), batostr(dst));
387
388 read_lock_bh(&hci_dev_list_lock);
389
390 list_for_each(p, &hci_dev_list) {
391 struct hci_dev *d = list_entry(p, struct hci_dev, list);
392
393 if (!test_bit(HCI_UP, &d->flags) || test_bit(HCI_RAW, &d->flags))
394 continue;
395
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900396 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700397 * No source address - find interface with bdaddr != dst
398 * Source address - find interface with bdaddr == src
399 */
400
401 if (use_src) {
402 if (!bacmp(&d->bdaddr, src)) {
403 hdev = d; break;
404 }
405 } else {
406 if (bacmp(&d->bdaddr, dst)) {
407 hdev = d; break;
408 }
409 }
410 }
411
412 if (hdev)
413 hdev = hci_dev_hold(hdev);
414
415 read_unlock_bh(&hci_dev_list_lock);
416 return hdev;
417}
418EXPORT_SYMBOL(hci_get_route);
419
Ville Tervofcd89c02011-02-10 22:38:47 -0300420/* Create SCO, ACL or LE connection.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700421 * Device _must_ be locked */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100422struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700423{
424 struct hci_conn *acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200425 struct hci_conn *sco;
Ville Tervofcd89c02011-02-10 22:38:47 -0300426 struct hci_conn *le;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700427
428 BT_DBG("%s dst %s", hdev->name, batostr(dst));
429
Ville Tervofcd89c02011-02-10 22:38:47 -0300430 if (type == LE_LINK) {
431 le = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
432 if (!le)
433 le = hci_conn_add(hdev, LE_LINK, dst);
434 if (!le)
435 return NULL;
436 if (le->state == BT_OPEN)
437 hci_le_connect(le);
438
439 hci_conn_hold(le);
440
441 return le;
442 }
443
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200444 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
445 if (!acl) {
446 acl = hci_conn_add(hdev, ACL_LINK, dst);
447 if (!acl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700448 return NULL;
449 }
450
451 hci_conn_hold(acl);
452
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200453 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
Johan Hedberg765c2a92011-01-19 12:06:52 +0530454 acl->sec_level = BT_SECURITY_LOW;
455 acl->pending_sec_level = sec_level;
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200456 acl->auth_type = auth_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700457 hci_acl_connect(acl);
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200458 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700459
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200460 if (type == ACL_LINK)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700461 return acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200462
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200463 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
464 if (!sco) {
465 sco = hci_conn_add(hdev, type, dst);
466 if (!sco) {
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200467 hci_conn_put(acl);
468 return NULL;
469 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700470 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200471
472 acl->link = sco;
473 sco->link = acl;
474
475 hci_conn_hold(sco);
476
477 if (acl->state == BT_CONNECTED &&
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200478 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Nick Pellyc3902162009-11-13 14:16:32 -0800479 acl->power_save = 1;
480 hci_conn_enter_active_mode(acl);
481
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400482 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->pend)) {
483 /* defer SCO setup until mode change completed */
484 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->pend);
485 return sco;
486 }
487
488 hci_sco_setup(acl, 0x00);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200489 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200490
491 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492}
493EXPORT_SYMBOL(hci_connect);
494
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200495/* Check link security requirement */
496int hci_conn_check_link_mode(struct hci_conn *conn)
497{
498 BT_DBG("conn %p", conn);
499
500 if (conn->ssp_mode > 0 && conn->hdev->ssp_mode > 0 &&
501 !(conn->link_mode & HCI_LM_ENCRYPT))
502 return 0;
503
504 return 1;
505}
506EXPORT_SYMBOL(hci_conn_check_link_mode);
507
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508/* Authenticate remote device */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100509static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700510{
511 BT_DBG("conn %p", conn);
512
Johan Hedberg765c2a92011-01-19 12:06:52 +0530513 if (conn->pending_sec_level > sec_level)
514 sec_level = conn->pending_sec_level;
515
Marcel Holtmann96a31832009-02-12 16:23:03 +0100516 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530517 conn->pending_sec_level = sec_level;
Marcel Holtmann96a31832009-02-12 16:23:03 +0100518 else if (conn->link_mode & HCI_LM_AUTH)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700519 return 1;
520
Johan Hedberg65cf6862011-01-19 12:06:49 +0530521 /* Make sure we preserve an existing MITM requirement*/
522 auth_type |= (conn->auth_type & 0x01);
523
Marcel Holtmann96a31832009-02-12 16:23:03 +0100524 conn->auth_type = auth_type;
525
Linus Torvalds1da177e2005-04-16 15:20:36 -0700526 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
527 struct hci_cp_auth_requested cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700528 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200529 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
530 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700531 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100532
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533 return 0;
534}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700535
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100536/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100537int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700538{
539 BT_DBG("conn %p", conn);
540
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100541 if (sec_level == BT_SECURITY_SDP)
542 return 1;
543
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700544 if (sec_level == BT_SECURITY_LOW &&
545 (!conn->ssp_mode || !conn->hdev->ssp_mode))
546 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100547
Linus Torvalds1da177e2005-04-16 15:20:36 -0700548 if (conn->link_mode & HCI_LM_ENCRYPT)
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100549 return hci_conn_auth(conn, sec_level, auth_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700550
551 if (test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->pend))
552 return 0;
553
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100554 if (hci_conn_auth(conn, sec_level, auth_type)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700555 struct hci_cp_set_conn_encrypt cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700556 cp.handle = cpu_to_le16(conn->handle);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900557 cp.encrypt = 1;
Marcel Holtmann40be4922008-07-14 20:13:50 +0200558 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT,
559 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700560 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100561
Linus Torvalds1da177e2005-04-16 15:20:36 -0700562 return 0;
563}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100564EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700565
566/* Change link key */
567int hci_conn_change_link_key(struct hci_conn *conn)
568{
569 BT_DBG("conn %p", conn);
570
571 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
572 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700573 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200574 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
575 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100577
Linus Torvalds1da177e2005-04-16 15:20:36 -0700578 return 0;
579}
580EXPORT_SYMBOL(hci_conn_change_link_key);
581
582/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100583int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700584{
585 BT_DBG("conn %p", conn);
586
587 if (!role && conn->link_mode & HCI_LM_MASTER)
588 return 1;
589
590 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->pend)) {
591 struct hci_cp_switch_role cp;
592 bacpy(&cp.bdaddr, &conn->dst);
593 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200594 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700595 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100596
Linus Torvalds1da177e2005-04-16 15:20:36 -0700597 return 0;
598}
599EXPORT_SYMBOL(hci_conn_switch_role);
600
Marcel Holtmann04837f62006-07-03 10:02:33 +0200601/* Enter active mode */
602void hci_conn_enter_active_mode(struct hci_conn *conn)
603{
604 struct hci_dev *hdev = conn->hdev;
605
606 BT_DBG("conn %p mode %d", conn, conn->mode);
607
608 if (test_bit(HCI_RAW, &hdev->flags))
609 return;
610
611 if (conn->mode != HCI_CM_SNIFF || !conn->power_save)
612 goto timer;
613
614 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
615 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700616 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200617 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200618 }
619
620timer:
621 if (hdev->idle_timeout > 0)
622 mod_timer(&conn->idle_timer,
623 jiffies + msecs_to_jiffies(hdev->idle_timeout));
624}
625
626/* Enter sniff mode */
627void hci_conn_enter_sniff_mode(struct hci_conn *conn)
628{
629 struct hci_dev *hdev = conn->hdev;
630
631 BT_DBG("conn %p mode %d", conn, conn->mode);
632
633 if (test_bit(HCI_RAW, &hdev->flags))
634 return;
635
636 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
637 return;
638
639 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
640 return;
641
642 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
643 struct hci_cp_sniff_subrate cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700644 cp.handle = cpu_to_le16(conn->handle);
645 cp.max_latency = cpu_to_le16(0);
646 cp.min_remote_timeout = cpu_to_le16(0);
647 cp.min_local_timeout = cpu_to_le16(0);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200648 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200649 }
650
651 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
652 struct hci_cp_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700653 cp.handle = cpu_to_le16(conn->handle);
654 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
655 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
656 cp.attempt = cpu_to_le16(4);
657 cp.timeout = cpu_to_le16(1);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200658 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200659 }
660}
661
Linus Torvalds1da177e2005-04-16 15:20:36 -0700662/* Drop all connection on the device */
663void hci_conn_hash_flush(struct hci_dev *hdev)
664{
665 struct hci_conn_hash *h = &hdev->conn_hash;
666 struct list_head *p;
667
668 BT_DBG("hdev %s", hdev->name);
669
670 p = h->list.next;
671 while (p != &h->list) {
672 struct hci_conn *c;
673
674 c = list_entry(p, struct hci_conn, list);
675 p = p->next;
676
677 c->state = BT_CLOSED;
678
Marcel Holtmann2950f212009-02-12 14:02:50 +0100679 hci_proto_disconn_cfm(c, 0x16);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700680 hci_conn_del(c);
681 }
682}
683
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200684/* Check pending connect attempts */
685void hci_conn_check_pending(struct hci_dev *hdev)
686{
687 struct hci_conn *conn;
688
689 BT_DBG("hdev %s", hdev->name);
690
691 hci_dev_lock(hdev);
692
693 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
694 if (conn)
695 hci_acl_connect(conn);
696
697 hci_dev_unlock(hdev);
698}
699
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700700void hci_conn_hold_device(struct hci_conn *conn)
701{
702 atomic_inc(&conn->devref);
703}
704EXPORT_SYMBOL(hci_conn_hold_device);
705
706void hci_conn_put_device(struct hci_conn *conn)
707{
708 if (atomic_dec_and_test(&conn->devref))
709 hci_conn_del_sysfs(conn);
710}
711EXPORT_SYMBOL(hci_conn_put_device);
712
Linus Torvalds1da177e2005-04-16 15:20:36 -0700713int hci_get_conn_list(void __user *arg)
714{
715 struct hci_conn_list_req req, *cl;
716 struct hci_conn_info *ci;
717 struct hci_dev *hdev;
718 struct list_head *p;
719 int n = 0, size, err;
720
721 if (copy_from_user(&req, arg, sizeof(req)))
722 return -EFAULT;
723
724 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
725 return -EINVAL;
726
727 size = sizeof(req) + req.conn_num * sizeof(*ci);
728
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200729 cl = kmalloc(size, GFP_KERNEL);
730 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700731 return -ENOMEM;
732
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200733 hdev = hci_dev_get(req.dev_id);
734 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700735 kfree(cl);
736 return -ENODEV;
737 }
738
739 ci = cl->conn_info;
740
741 hci_dev_lock_bh(hdev);
742 list_for_each(p, &hdev->conn_hash.list) {
743 register struct hci_conn *c;
744 c = list_entry(p, struct hci_conn, list);
745
746 bacpy(&(ci + n)->bdaddr, &c->dst);
747 (ci + n)->handle = c->handle;
748 (ci + n)->type = c->type;
749 (ci + n)->out = c->out;
750 (ci + n)->state = c->state;
751 (ci + n)->link_mode = c->link_mode;
752 if (++n >= req.conn_num)
753 break;
754 }
755 hci_dev_unlock_bh(hdev);
756
757 cl->dev_id = hdev->id;
758 cl->conn_num = n;
759 size = sizeof(req) + n * sizeof(*ci);
760
761 hci_dev_put(hdev);
762
763 err = copy_to_user(arg, cl, size);
764 kfree(cl);
765
766 return err ? -EFAULT : 0;
767}
768
769int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
770{
771 struct hci_conn_info_req req;
772 struct hci_conn_info ci;
773 struct hci_conn *conn;
774 char __user *ptr = arg + sizeof(req);
775
776 if (copy_from_user(&req, arg, sizeof(req)))
777 return -EFAULT;
778
779 hci_dev_lock_bh(hdev);
780 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
781 if (conn) {
782 bacpy(&ci.bdaddr, &conn->dst);
783 ci.handle = conn->handle;
784 ci.type = conn->type;
785 ci.out = conn->out;
786 ci.state = conn->state;
787 ci.link_mode = conn->link_mode;
788 }
789 hci_dev_unlock_bh(hdev);
790
791 if (!conn)
792 return -ENOENT;
793
794 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
795}
Marcel Holtmann40be4922008-07-14 20:13:50 +0200796
797int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
798{
799 struct hci_auth_info_req req;
800 struct hci_conn *conn;
801
802 if (copy_from_user(&req, arg, sizeof(req)))
803 return -EFAULT;
804
805 hci_dev_lock_bh(hdev);
806 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
807 if (conn)
808 req.type = conn->auth_type;
809 hci_dev_unlock_bh(hdev);
810
811 if (!conn)
812 return -ENOENT;
813
814 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
815}