blob: a0836d7187c10e2b43dd9ffbe78a8ab25a1113ee [file] [log] [blame]
Jiri Bencf0706e82007-05-05 11:45:53 -07001/*
2 * Copyright 2002-2005, Instant802 Networks, Inc.
3 * Copyright 2006-2007 Jiri Benc <jbenc@suse.cz>
4 *
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License version 2 as
7 * published by the Free Software Foundation.
8 */
9
10#include <linux/module.h>
11#include <linux/init.h>
Felix Fietkau888d04d2012-03-01 15:22:09 +010012#include <linux/etherdevice.h>
Jiri Bencf0706e82007-05-05 11:45:53 -070013#include <linux/netdevice.h>
14#include <linux/types.h>
15#include <linux/slab.h>
16#include <linux/skbuff.h>
17#include <linux/if_arp.h>
Johannes Berg0d174402007-12-17 15:07:43 +010018#include <linux/timer.h>
Johannes Bergd0709a62008-02-25 16:27:46 +010019#include <linux/rtnetlink.h>
Jiri Bencf0706e82007-05-05 11:45:53 -070020
21#include <net/mac80211.h>
22#include "ieee80211_i.h"
Johannes Berg24487982009-04-23 18:52:52 +020023#include "driver-ops.h"
Johannes Berg2c8dccc2008-04-08 15:14:40 -040024#include "rate.h"
Jiri Bencf0706e82007-05-05 11:45:53 -070025#include "sta_info.h"
Jiri Bence9f207f2007-05-05 11:46:38 -070026#include "debugfs_sta.h"
Luis Carlos Coboee385852008-02-23 15:17:11 +010027#include "mesh.h"
Johannes Bergce662b442011-09-29 16:04:34 +020028#include "wme.h"
Jiri Bencf0706e82007-05-05 11:45:53 -070029
Johannes Bergd0709a62008-02-25 16:27:46 +010030/**
31 * DOC: STA information lifetime rules
32 *
33 * STA info structures (&struct sta_info) are managed in a hash table
34 * for faster lookup and a list for iteration. They are managed using
35 * RCU, i.e. access to the list and hash table is protected by RCU.
36 *
Johannes Berg34e89502010-02-03 13:59:58 +010037 * Upon allocating a STA info structure with sta_info_alloc(), the caller
38 * owns that structure. It must then insert it into the hash table using
39 * either sta_info_insert() or sta_info_insert_rcu(); only in the latter
40 * case (which acquires an rcu read section but must not be called from
41 * within one) will the pointer still be valid after the call. Note that
42 * the caller may not do much with the STA info before inserting it, in
43 * particular, it may not start any mesh peer link management or add
44 * encryption keys.
Johannes Berg93e5deb2008-04-01 15:21:00 +020045 *
46 * When the insertion fails (sta_info_insert()) returns non-zero), the
47 * structure will have been freed by sta_info_insert()!
Johannes Bergd0709a62008-02-25 16:27:46 +010048 *
Johannes Berg34e89502010-02-03 13:59:58 +010049 * Station entries are added by mac80211 when you establish a link with a
Luis R. Rodriguez7e189a12009-06-02 18:38:14 -040050 * peer. This means different things for the different type of interfaces
51 * we support. For a regular station this mean we add the AP sta when we
Lucas De Marchi25985ed2011-03-30 22:57:33 -030052 * receive an association response from the AP. For IBSS this occurs when
Johannes Berg34e89502010-02-03 13:59:58 +010053 * get to know about a peer on the same IBSS. For WDS we add the sta for
Lucas De Marchi25985ed2011-03-30 22:57:33 -030054 * the peer immediately upon device open. When using AP mode we add stations
Johannes Berg34e89502010-02-03 13:59:58 +010055 * for each respective station upon request from userspace through nl80211.
Luis R. Rodriguez7e189a12009-06-02 18:38:14 -040056 *
Johannes Berg34e89502010-02-03 13:59:58 +010057 * In order to remove a STA info structure, various sta_info_destroy_*()
58 * calls are available.
Johannes Bergd0709a62008-02-25 16:27:46 +010059 *
Johannes Berg34e89502010-02-03 13:59:58 +010060 * There is no concept of ownership on a STA entry, each structure is
61 * owned by the global hash table/list until it is removed. All users of
62 * the structure need to be RCU protected so that the structure won't be
63 * freed before they are done using it.
Johannes Bergd0709a62008-02-25 16:27:46 +010064 */
Jiri Bencf0706e82007-05-05 11:45:53 -070065
Johannes Berg4d339602011-12-15 11:24:20 +010066/* Caller must hold local->sta_mtx */
Michael Wube8755e2007-07-27 15:43:23 +020067static int sta_info_hash_del(struct ieee80211_local *local,
68 struct sta_info *sta)
Jiri Bencf0706e82007-05-05 11:45:53 -070069{
70 struct sta_info *s;
71
Johannes Berg40b275b2011-05-13 14:15:49 +020072 s = rcu_dereference_protected(local->sta_hash[STA_HASH(sta->sta.addr)],
Johannes Berg4d339602011-12-15 11:24:20 +010073 lockdep_is_held(&local->sta_mtx));
Jiri Bencf0706e82007-05-05 11:45:53 -070074 if (!s)
Michael Wube8755e2007-07-27 15:43:23 +020075 return -ENOENT;
76 if (s == sta) {
Eric Dumazetcf778b02012-01-12 04:41:32 +000077 rcu_assign_pointer(local->sta_hash[STA_HASH(sta->sta.addr)],
Johannes Bergd0709a62008-02-25 16:27:46 +010078 s->hnext);
Michael Wube8755e2007-07-27 15:43:23 +020079 return 0;
Jiri Bencf0706e82007-05-05 11:45:53 -070080 }
81
Johannes Berg40b275b2011-05-13 14:15:49 +020082 while (rcu_access_pointer(s->hnext) &&
83 rcu_access_pointer(s->hnext) != sta)
84 s = rcu_dereference_protected(s->hnext,
Johannes Berg4d339602011-12-15 11:24:20 +010085 lockdep_is_held(&local->sta_mtx));
Johannes Berg40b275b2011-05-13 14:15:49 +020086 if (rcu_access_pointer(s->hnext)) {
Eric Dumazetcf778b02012-01-12 04:41:32 +000087 rcu_assign_pointer(s->hnext, sta->hnext);
Michael Wube8755e2007-07-27 15:43:23 +020088 return 0;
89 }
Jiri Bencf0706e82007-05-05 11:45:53 -070090
Michael Wube8755e2007-07-27 15:43:23 +020091 return -ENOENT;
Jiri Bencf0706e82007-05-05 11:45:53 -070092}
93
Eliad Pellerb22cfcf2012-09-09 14:43:51 +030094static void free_sta_work(struct work_struct *wk)
95{
96 struct sta_info *sta = container_of(wk, struct sta_info, free_sta_wk);
97 int ac, i;
98 struct tid_ampdu_tx *tid_tx;
99 struct ieee80211_sub_if_data *sdata = sta->sdata;
100 struct ieee80211_local *local = sdata->local;
Marco Porschd012a602012-10-10 12:39:50 -0700101 struct ps_data *ps;
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300102
103 /*
104 * At this point, when being called as call_rcu callback,
105 * neither mac80211 nor the driver can reference this
106 * sta struct any more except by still existing timers
107 * associated with this station that we clean up below.
108 */
109
110 if (test_sta_flag(sta, WLAN_STA_PS_STA)) {
Marco Porschd012a602012-10-10 12:39:50 -0700111 if (sta->sdata->vif.type == NL80211_IFTYPE_AP ||
112 sta->sdata->vif.type == NL80211_IFTYPE_AP_VLAN)
113 ps = &sdata->bss->ps;
114 else
115 return;
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300116
117 clear_sta_flag(sta, WLAN_STA_PS_STA);
118
Marco Porschd012a602012-10-10 12:39:50 -0700119 atomic_dec(&ps->num_sta_ps);
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300120 sta_info_recalc_tim(sta);
121 }
122
123 for (ac = 0; ac < IEEE80211_NUM_ACS; ac++) {
124 local->total_ps_buffered -= skb_queue_len(&sta->ps_tx_buf[ac]);
125 __skb_queue_purge(&sta->ps_tx_buf[ac]);
126 __skb_queue_purge(&sta->tx_filtered[ac]);
127 }
128
129#ifdef CONFIG_MAC80211_MESH
130 if (ieee80211_vif_is_mesh(&sdata->vif)) {
131 mesh_accept_plinks_update(sdata);
132 mesh_plink_deactivate(sta);
133 del_timer_sync(&sta->plink_timer);
134 }
135#endif
136
137 cancel_work_sync(&sta->drv_unblock_wk);
138
139 /*
140 * Destroy aggregation state here. It would be nice to wait for the
141 * driver to finish aggregation stop and then clean up, but for now
142 * drivers have to handle aggregation stop being requested, followed
143 * directly by station destruction.
144 */
Johannes Berg5a306f52012-11-14 23:22:21 +0100145 for (i = 0; i < IEEE80211_NUM_TIDS; i++) {
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300146 tid_tx = rcu_dereference_raw(sta->ampdu_mlme.tid_tx[i]);
147 if (!tid_tx)
148 continue;
149 __skb_queue_purge(&tid_tx->pending);
150 kfree(tid_tx);
151 }
152
153 sta_info_free(local, sta);
154}
155
156static void free_sta_rcu(struct rcu_head *h)
157{
158 struct sta_info *sta = container_of(h, struct sta_info, rcu_head);
159
160 ieee80211_queue_work(&sta->local->hw, &sta->free_sta_wk);
161}
162
Johannes Bergd0709a62008-02-25 16:27:46 +0100163/* protected by RCU */
Johannes Bergabe60632009-11-25 17:46:18 +0100164struct sta_info *sta_info_get(struct ieee80211_sub_if_data *sdata,
165 const u8 *addr)
Johannes Berg43ba7e92008-02-21 14:09:30 +0100166{
Johannes Bergabe60632009-11-25 17:46:18 +0100167 struct ieee80211_local *local = sdata->local;
Johannes Berg43ba7e92008-02-21 14:09:30 +0100168 struct sta_info *sta;
169
Johannes Berg03791852010-04-06 11:18:42 +0200170 sta = rcu_dereference_check(local->sta_hash[STA_HASH(addr)],
Johannes Berg03791852010-04-06 11:18:42 +0200171 lockdep_is_held(&local->sta_mtx));
Johannes Berg43ba7e92008-02-21 14:09:30 +0100172 while (sta) {
Johannes Bergabe60632009-11-25 17:46:18 +0100173 if (sta->sdata == sdata &&
Joe Perchesb203ca32012-05-08 18:56:52 +0000174 ether_addr_equal(sta->sta.addr, addr))
Johannes Berg43ba7e92008-02-21 14:09:30 +0100175 break;
Johannes Berg03791852010-04-06 11:18:42 +0200176 sta = rcu_dereference_check(sta->hnext,
Johannes Berg03791852010-04-06 11:18:42 +0200177 lockdep_is_held(&local->sta_mtx));
Johannes Berg43ba7e92008-02-21 14:09:30 +0100178 }
179 return sta;
180}
181
Felix Fietkau0e5ded52010-01-08 18:10:58 +0100182/*
183 * Get sta info either from the specified interface
184 * or from one of its vlans
185 */
186struct sta_info *sta_info_get_bss(struct ieee80211_sub_if_data *sdata,
187 const u8 *addr)
188{
189 struct ieee80211_local *local = sdata->local;
190 struct sta_info *sta;
191
Johannes Berg03791852010-04-06 11:18:42 +0200192 sta = rcu_dereference_check(local->sta_hash[STA_HASH(addr)],
Johannes Berg03791852010-04-06 11:18:42 +0200193 lockdep_is_held(&local->sta_mtx));
Felix Fietkau0e5ded52010-01-08 18:10:58 +0100194 while (sta) {
195 if ((sta->sdata == sdata ||
Johannes Berga2c1e3d2010-09-14 21:34:14 +0200196 (sta->sdata->bss && sta->sdata->bss == sdata->bss)) &&
Joe Perchesb203ca32012-05-08 18:56:52 +0000197 ether_addr_equal(sta->sta.addr, addr))
Felix Fietkau0e5ded52010-01-08 18:10:58 +0100198 break;
Johannes Berg03791852010-04-06 11:18:42 +0200199 sta = rcu_dereference_check(sta->hnext,
Johannes Berg03791852010-04-06 11:18:42 +0200200 lockdep_is_held(&local->sta_mtx));
Felix Fietkau0e5ded52010-01-08 18:10:58 +0100201 }
202 return sta;
203}
204
Johannes Berg3b53fde82009-11-16 12:00:37 +0100205struct sta_info *sta_info_get_by_idx(struct ieee80211_sub_if_data *sdata,
206 int idx)
Luis Carlos Coboee385852008-02-23 15:17:11 +0100207{
Johannes Berg3b53fde82009-11-16 12:00:37 +0100208 struct ieee80211_local *local = sdata->local;
Luis Carlos Coboee385852008-02-23 15:17:11 +0100209 struct sta_info *sta;
210 int i = 0;
211
Johannes Bergd0709a62008-02-25 16:27:46 +0100212 list_for_each_entry_rcu(sta, &local->sta_list, list) {
Johannes Berg3b53fde82009-11-16 12:00:37 +0100213 if (sdata != sta->sdata)
Luis Carlos Cobo2a8ca292008-02-29 17:51:25 -0800214 continue;
Luis Carlos Coboee385852008-02-23 15:17:11 +0100215 if (i < idx) {
216 ++i;
217 continue;
Luis Carlos Coboee385852008-02-23 15:17:11 +0100218 }
Luis Carlos Cobo2a8ca292008-02-29 17:51:25 -0800219 return sta;
Luis Carlos Coboee385852008-02-23 15:17:11 +0100220 }
Luis Carlos Coboee385852008-02-23 15:17:11 +0100221
222 return NULL;
223}
Jiri Bencf0706e82007-05-05 11:45:53 -0700224
Johannes Berg93e5deb2008-04-01 15:21:00 +0200225/**
Johannes Bergd9a7ddb2011-12-14 12:35:30 +0100226 * sta_info_free - free STA
Johannes Berg93e5deb2008-04-01 15:21:00 +0200227 *
Randy Dunlap6ef307b2008-07-03 13:52:18 -0700228 * @local: pointer to the global information
Johannes Berg93e5deb2008-04-01 15:21:00 +0200229 * @sta: STA info to free
230 *
231 * This function must undo everything done by sta_info_alloc()
Johannes Bergd9a7ddb2011-12-14 12:35:30 +0100232 * that may happen before sta_info_insert(). It may only be
233 * called when sta_info_insert() has not been attempted (and
234 * if that fails, the station is freed anyway.)
Johannes Berg93e5deb2008-04-01 15:21:00 +0200235 */
Johannes Bergd9a7ddb2011-12-14 12:35:30 +0100236void sta_info_free(struct ieee80211_local *local, struct sta_info *sta)
Johannes Berg93e5deb2008-04-01 15:21:00 +0200237{
Johannes Berg889cbb92012-01-17 10:33:29 +0100238 if (sta->rate_ctrl)
Johannes Bergaf65cd962009-11-17 18:18:36 +0100239 rate_control_free_sta(sta);
Johannes Berg93e5deb2008-04-01 15:21:00 +0200240
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200241 sta_dbg(sta->sdata, "Destroyed STA %pM\n", sta->sta.addr);
Johannes Berg93e5deb2008-04-01 15:21:00 +0200242
243 kfree(sta);
244}
245
Johannes Berg4d339602011-12-15 11:24:20 +0100246/* Caller must hold local->sta_mtx */
Johannes Bergd0709a62008-02-25 16:27:46 +0100247static void sta_info_hash_add(struct ieee80211_local *local,
248 struct sta_info *sta)
Jiri Bencf0706e82007-05-05 11:45:53 -0700249{
Johannes Berg4d339602011-12-15 11:24:20 +0100250 lockdep_assert_held(&local->sta_mtx);
Johannes Berg17741cd2008-09-11 00:02:02 +0200251 sta->hnext = local->sta_hash[STA_HASH(sta->sta.addr)];
Eric Dumazetcf778b02012-01-12 04:41:32 +0000252 rcu_assign_pointer(local->sta_hash[STA_HASH(sta->sta.addr)], sta);
Jiri Bencf0706e82007-05-05 11:45:53 -0700253}
Jiri Bencf0706e82007-05-05 11:45:53 -0700254
Johannes Bergaf818582009-11-06 11:35:50 +0100255static void sta_unblock(struct work_struct *wk)
256{
257 struct sta_info *sta;
258
259 sta = container_of(wk, struct sta_info, drv_unblock_wk);
260
261 if (sta->dead)
262 return;
263
Helmut Schaa54420472012-01-17 09:22:49 +0100264 if (!test_sta_flag(sta, WLAN_STA_PS_STA)) {
265 local_bh_disable();
Johannes Bergaf818582009-11-06 11:35:50 +0100266 ieee80211_sta_ps_deliver_wakeup(sta);
Helmut Schaa54420472012-01-17 09:22:49 +0100267 local_bh_enable();
268 } else if (test_and_clear_sta_flag(sta, WLAN_STA_PSPOLL)) {
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200269 clear_sta_flag(sta, WLAN_STA_PS_DRIVER);
Johannes Bergce662b442011-09-29 16:04:34 +0200270
271 local_bh_disable();
Johannes Bergaf818582009-11-06 11:35:50 +0100272 ieee80211_sta_ps_deliver_poll_response(sta);
Johannes Bergce662b442011-09-29 16:04:34 +0200273 local_bh_enable();
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200274 } else if (test_and_clear_sta_flag(sta, WLAN_STA_UAPSD)) {
275 clear_sta_flag(sta, WLAN_STA_PS_DRIVER);
Johannes Bergce662b442011-09-29 16:04:34 +0200276
277 local_bh_disable();
Johannes Berg47086fc2011-09-29 16:04:33 +0200278 ieee80211_sta_ps_deliver_uapsd(sta);
Johannes Bergce662b442011-09-29 16:04:34 +0200279 local_bh_enable();
Johannes Berg50a94322010-11-16 11:50:28 -0800280 } else
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200281 clear_sta_flag(sta, WLAN_STA_PS_DRIVER);
Johannes Bergaf818582009-11-06 11:35:50 +0100282}
283
Johannes Bergaf65cd962009-11-17 18:18:36 +0100284static int sta_prepare_rate_control(struct ieee80211_local *local,
285 struct sta_info *sta, gfp_t gfp)
286{
287 if (local->hw.flags & IEEE80211_HW_HAS_RATE_CONTROL)
288 return 0;
289
Johannes Berg889cbb92012-01-17 10:33:29 +0100290 sta->rate_ctrl = local->rate_ctrl;
Johannes Bergaf65cd962009-11-17 18:18:36 +0100291 sta->rate_ctrl_priv = rate_control_alloc_sta(sta->rate_ctrl,
292 &sta->sta, gfp);
Johannes Berg889cbb92012-01-17 10:33:29 +0100293 if (!sta->rate_ctrl_priv)
Johannes Bergaf65cd962009-11-17 18:18:36 +0100294 return -ENOMEM;
Johannes Bergaf65cd962009-11-17 18:18:36 +0100295
296 return 0;
297}
298
Johannes Berg73651ee2008-02-25 16:27:47 +0100299struct sta_info *sta_info_alloc(struct ieee80211_sub_if_data *sdata,
Johannes Berg56544162011-12-14 13:28:46 +0100300 const u8 *addr, gfp_t gfp)
Jiri Bencf0706e82007-05-05 11:45:53 -0700301{
Johannes Bergd0709a62008-02-25 16:27:46 +0100302 struct ieee80211_local *local = sdata->local;
Jiri Bencf0706e82007-05-05 11:45:53 -0700303 struct sta_info *sta;
Mohammed Shafi Shajakhanebe27c92011-04-08 21:24:24 +0530304 struct timespec uptime;
Ron Rindjunsky16c5f152007-12-25 17:00:34 +0200305 int i;
Jiri Bencf0706e82007-05-05 11:45:53 -0700306
Johannes Berg17741cd2008-09-11 00:02:02 +0200307 sta = kzalloc(sizeof(*sta) + local->hw.sta_data_size, gfp);
Jiri Bencf0706e82007-05-05 11:45:53 -0700308 if (!sta)
Johannes Berg73651ee2008-02-25 16:27:47 +0100309 return NULL;
Jiri Bencf0706e82007-05-05 11:45:53 -0700310
Johannes Berg07346f812008-05-03 01:02:02 +0200311 spin_lock_init(&sta->lock);
Johannes Bergaf818582009-11-06 11:35:50 +0100312 INIT_WORK(&sta->drv_unblock_wk, sta_unblock);
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300313 INIT_WORK(&sta->free_sta_wk, free_sta_work);
Johannes Berg67c282c2010-06-10 10:21:43 +0200314 INIT_WORK(&sta->ampdu_mlme.work, ieee80211_ba_session_work);
Johannes Berga93e3642010-06-10 10:21:46 +0200315 mutex_init(&sta->ampdu_mlme.mtx);
Johannes Berg07346f812008-05-03 01:02:02 +0200316
Johannes Berg17741cd2008-09-11 00:02:02 +0200317 memcpy(sta->sta.addr, addr, ETH_ALEN);
Johannes Bergd0709a62008-02-25 16:27:46 +0100318 sta->local = local;
319 sta->sdata = sdata;
Felix Fietkau8bc8aec2011-03-21 20:01:00 +0100320 sta->last_rx = jiffies;
Jiri Bencf0706e82007-05-05 11:45:53 -0700321
Johannes Berg71ec3752012-01-20 13:55:20 +0100322 sta->sta_state = IEEE80211_STA_NONE;
323
Mohammed Shafi Shajakhanebe27c92011-04-08 21:24:24 +0530324 do_posix_clock_monotonic_gettime(&uptime);
325 sta->last_connected = uptime.tv_sec;
Bruno Randolf541a45a2010-12-02 19:12:43 +0900326 ewma_init(&sta->avg_signal, 1024, 8);
327
Johannes Bergaf65cd962009-11-17 18:18:36 +0100328 if (sta_prepare_rate_control(local, sta, gfp)) {
Jiri Bencf0706e82007-05-05 11:45:53 -0700329 kfree(sta);
Johannes Berg73651ee2008-02-25 16:27:47 +0100330 return NULL;
Jiri Bencf0706e82007-05-05 11:45:53 -0700331 }
332
Johannes Berg5a306f52012-11-14 23:22:21 +0100333 for (i = 0; i < IEEE80211_NUM_TIDS; i++) {
Johannes Berga622ab72010-06-10 10:21:39 +0200334 /*
335 * timer_to_tid must be initialized with identity mapping
336 * to enable session_timer's data differentiation. See
337 * sta_rx_agg_session_timer_expired for usage.
338 */
Ron Rindjunsky16c5f152007-12-25 17:00:34 +0200339 sta->timer_to_tid[i] = i;
Ron Rindjunsky16c5f152007-12-25 17:00:34 +0200340 }
Johannes Berg948d8872011-09-29 16:04:29 +0200341 for (i = 0; i < IEEE80211_NUM_ACS; i++) {
342 skb_queue_head_init(&sta->ps_tx_buf[i]);
343 skb_queue_head_init(&sta->tx_filtered[i]);
344 }
Johannes Berg73651ee2008-02-25 16:27:47 +0100345
Johannes Berg5a306f52012-11-14 23:22:21 +0100346 for (i = 0; i < IEEE80211_NUM_TIDS; i++)
Alexey Dobriyan4be929b2010-05-24 14:33:03 -0700347 sta->last_seq_ctrl[i] = cpu_to_le16(USHRT_MAX);
Senthil Balasubramaniancccaec92009-05-14 18:42:08 +0530348
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200349 sta_dbg(sdata, "Allocated STA %pM\n", sta->sta.addr);
Johannes Berg73651ee2008-02-25 16:27:47 +0100350
Johannes Berg03e44972008-02-27 09:56:40 +0100351#ifdef CONFIG_MAC80211_MESH
Javier Cardona57cf8042011-05-13 10:45:43 -0700352 sta->plink_state = NL80211_PLINK_LISTEN;
Johannes Berg03e44972008-02-27 09:56:40 +0100353 init_timer(&sta->plink_timer);
354#endif
355
Johannes Berg73651ee2008-02-25 16:27:47 +0100356 return sta;
357}
358
Guy Eilam8c71df72011-08-17 15:18:14 +0300359static int sta_info_insert_check(struct sta_info *sta)
Johannes Berg34e89502010-02-03 13:59:58 +0100360{
Johannes Berg34e89502010-02-03 13:59:58 +0100361 struct ieee80211_sub_if_data *sdata = sta->sdata;
Johannes Berg34e89502010-02-03 13:59:58 +0100362
Johannes Berg03e44972008-02-27 09:56:40 +0100363 /*
364 * Can't be a WARN_ON because it can be triggered through a race:
365 * something inserts a STA (on one CPU) without holding the RTNL
366 * and another CPU turns off the net device.
367 */
Guy Eilam8c71df72011-08-17 15:18:14 +0300368 if (unlikely(!ieee80211_sdata_running(sdata)))
369 return -ENETDOWN;
Johannes Berg03e44972008-02-27 09:56:40 +0100370
Joe Perchesb203ca32012-05-08 18:56:52 +0000371 if (WARN_ON(ether_addr_equal(sta->sta.addr, sdata->vif.addr) ||
Guy Eilam8c71df72011-08-17 15:18:14 +0300372 is_multicast_ether_addr(sta->sta.addr)))
373 return -EINVAL;
374
375 return 0;
376}
377
Johannes Bergf09603a2012-01-20 13:55:21 +0100378static int sta_info_insert_drv_state(struct ieee80211_local *local,
379 struct ieee80211_sub_if_data *sdata,
380 struct sta_info *sta)
381{
382 enum ieee80211_sta_state state;
383 int err = 0;
384
385 for (state = IEEE80211_STA_NOTEXIST; state < sta->sta_state; state++) {
386 err = drv_sta_state(local, sdata, sta, state, state + 1);
387 if (err)
388 break;
389 }
390
391 if (!err) {
Johannes Berga4ec45a2012-01-20 13:55:22 +0100392 /*
393 * Drivers using legacy sta_add/sta_remove callbacks only
394 * get uploaded set to true after sta_add is called.
395 */
396 if (!local->ops->sta_add)
397 sta->uploaded = true;
Johannes Bergf09603a2012-01-20 13:55:21 +0100398 return 0;
399 }
400
401 if (sdata->vif.type == NL80211_IFTYPE_ADHOC) {
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200402 sdata_info(sdata,
403 "failed to move IBSS STA %pM to state %d (%d) - keeping it anyway\n",
404 sta->sta.addr, state + 1, err);
Johannes Bergf09603a2012-01-20 13:55:21 +0100405 err = 0;
406 }
407
408 /* unwind on error */
409 for (; state > IEEE80211_STA_NOTEXIST; state--)
410 WARN_ON(drv_sta_state(local, sdata, sta, state, state - 1));
411
412 return err;
413}
414
Guy Eilam8c71df72011-08-17 15:18:14 +0300415/*
416 * should be called with sta_mtx locked
417 * this function replaces the mutex lock
418 * with a RCU lock
419 */
Johannes Berg4d339602011-12-15 11:24:20 +0100420static int sta_info_insert_finish(struct sta_info *sta) __acquires(RCU)
Guy Eilam8c71df72011-08-17 15:18:14 +0300421{
422 struct ieee80211_local *local = sta->local;
423 struct ieee80211_sub_if_data *sdata = sta->sdata;
Johannes Berg7852e362012-01-20 13:55:24 +0100424 struct station_info sinfo;
Guy Eilam8c71df72011-08-17 15:18:14 +0300425 int err = 0;
426
427 lockdep_assert_held(&local->sta_mtx);
Johannes Berg34e89502010-02-03 13:59:58 +0100428
Johannes Berg7852e362012-01-20 13:55:24 +0100429 /* check if STA exists already */
430 if (sta_info_get_bss(sdata, sta->sta.addr)) {
431 err = -EEXIST;
432 goto out_err;
Johannes Berg43ba7e92008-02-21 14:09:30 +0100433 }
Johannes Berg32bfd352007-12-19 01:31:26 +0100434
Johannes Berg7852e362012-01-20 13:55:24 +0100435 /* notify driver */
436 err = sta_info_insert_drv_state(local, sdata, sta);
437 if (err)
438 goto out_err;
Johannes Berg32bfd352007-12-19 01:31:26 +0100439
Johannes Berg7852e362012-01-20 13:55:24 +0100440 local->num_sta++;
441 local->sta_generation++;
442 smp_mb();
Johannes Berg4d339602011-12-15 11:24:20 +0100443
Johannes Berg7852e362012-01-20 13:55:24 +0100444 /* make the station visible */
445 sta_info_hash_add(local, sta);
Johannes Berg4d339602011-12-15 11:24:20 +0100446
Arik Nemtsov794454c2012-06-03 23:32:32 +0300447 list_add_rcu(&sta->list, &local->sta_list);
Johannes Berg83d5cc02012-01-12 09:31:10 +0100448
Johannes Berg7852e362012-01-20 13:55:24 +0100449 set_sta_flag(sta, WLAN_STA_INSERTED);
Johannes Berg4d339602011-12-15 11:24:20 +0100450
Johannes Berg7852e362012-01-20 13:55:24 +0100451 ieee80211_sta_debugfs_add(sta);
452 rate_control_add_sta_debugfs(sta);
Johannes Berg4d339602011-12-15 11:24:20 +0100453
Johannes Berg7852e362012-01-20 13:55:24 +0100454 memset(&sinfo, 0, sizeof(sinfo));
455 sinfo.filled = 0;
456 sinfo.generation = local->sta_generation;
457 cfg80211_new_sta(sdata->dev, sta->sta.addr, &sinfo, GFP_KERNEL);
Johannes Bergd0709a62008-02-25 16:27:46 +0100458
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200459 sta_dbg(sdata, "Inserted STA %pM\n", sta->sta.addr);
Jiri Bencf0706e82007-05-05 11:45:53 -0700460
Johannes Berg34e89502010-02-03 13:59:58 +0100461 /* move reference to rcu-protected */
462 rcu_read_lock();
463 mutex_unlock(&local->sta_mtx);
Jiri Bence9f207f2007-05-05 11:46:38 -0700464
Johannes Berg73651ee2008-02-25 16:27:47 +0100465 if (ieee80211_vif_is_mesh(&sdata->vif))
466 mesh_accept_plinks_update(sdata);
467
468 return 0;
Johannes Berg4d339602011-12-15 11:24:20 +0100469 out_err:
470 mutex_unlock(&local->sta_mtx);
471 rcu_read_lock();
472 return err;
Guy Eilam8c71df72011-08-17 15:18:14 +0300473}
474
475int sta_info_insert_rcu(struct sta_info *sta) __acquires(RCU)
476{
477 struct ieee80211_local *local = sta->local;
Guy Eilam8c71df72011-08-17 15:18:14 +0300478 int err = 0;
479
Johannes Berg4d339602011-12-15 11:24:20 +0100480 might_sleep();
481
Guy Eilam8c71df72011-08-17 15:18:14 +0300482 err = sta_info_insert_check(sta);
483 if (err) {
Jiri Bencf0706e82007-05-05 11:45:53 -0700484 rcu_read_lock();
485 goto out_free;
486 }
487
Johannes Berg004c8722008-02-20 11:21:35 +0100488 mutex_lock(&local->sta_mtx);
489
Johannes Berg4d339602011-12-15 11:24:20 +0100490 err = sta_info_insert_finish(sta);
Guy Eilam8c71df72011-08-17 15:18:14 +0300491 if (err)
Johannes Berg004c8722008-02-20 11:21:35 +0100492 goto out_free;
Johannes Bergd0709a62008-02-25 16:27:46 +0100493
Johannes Berg004c8722008-02-20 11:21:35 +0100494 return 0;
Johannes Berg93e5deb2008-04-01 15:21:00 +0200495 out_free:
496 BUG_ON(!err);
Johannes Bergd9a7ddb2011-12-14 12:35:30 +0100497 sta_info_free(local, sta);
Johannes Berg93e5deb2008-04-01 15:21:00 +0200498 return err;
Jiri Bencf0706e82007-05-05 11:45:53 -0700499}
500
Johannes Berg34e89502010-02-03 13:59:58 +0100501int sta_info_insert(struct sta_info *sta)
502{
503 int err = sta_info_insert_rcu(sta);
504
505 rcu_read_unlock();
506
507 return err;
508}
509
Marco Porschd012a602012-10-10 12:39:50 -0700510static inline void __bss_tim_set(u8 *tim, u16 id)
Johannes Berg004c8722008-02-20 11:21:35 +0100511{
512 /*
513 * This format has been mandated by the IEEE specifications,
514 * so this line may not be changed to use the __set_bit() format.
515 */
Marco Porschd012a602012-10-10 12:39:50 -0700516 tim[id / 8] |= (1 << (id % 8));
Johannes Berg004c8722008-02-20 11:21:35 +0100517}
518
Marco Porschd012a602012-10-10 12:39:50 -0700519static inline void __bss_tim_clear(u8 *tim, u16 id)
Johannes Berg004c8722008-02-20 11:21:35 +0100520{
521 /*
522 * This format has been mandated by the IEEE specifications,
523 * so this line may not be changed to use the __clear_bit() format.
524 */
Marco Porschd012a602012-10-10 12:39:50 -0700525 tim[id / 8] &= ~(1 << (id % 8));
Johannes Berg004c8722008-02-20 11:21:35 +0100526}
527
Johannes Berg948d8872011-09-29 16:04:29 +0200528static unsigned long ieee80211_tids_for_ac(int ac)
Johannes Berg004c8722008-02-20 11:21:35 +0100529{
Johannes Berg948d8872011-09-29 16:04:29 +0200530 /* If we ever support TIDs > 7, this obviously needs to be adjusted */
531 switch (ac) {
532 case IEEE80211_AC_VO:
533 return BIT(6) | BIT(7);
534 case IEEE80211_AC_VI:
535 return BIT(4) | BIT(5);
536 case IEEE80211_AC_BE:
537 return BIT(0) | BIT(3);
538 case IEEE80211_AC_BK:
539 return BIT(1) | BIT(2);
540 default:
541 WARN_ON(1);
542 return 0;
Johannes Bergd0709a62008-02-25 16:27:46 +0100543 }
Johannes Berg004c8722008-02-20 11:21:35 +0100544}
545
Johannes Bergc868cb352011-09-29 16:04:27 +0200546void sta_info_recalc_tim(struct sta_info *sta)
Johannes Berg004c8722008-02-20 11:21:35 +0100547{
Johannes Bergc868cb352011-09-29 16:04:27 +0200548 struct ieee80211_local *local = sta->local;
Marco Porschd012a602012-10-10 12:39:50 -0700549 struct ps_data *ps;
Johannes Bergd0709a62008-02-25 16:27:46 +0100550 unsigned long flags;
Johannes Berg948d8872011-09-29 16:04:29 +0200551 bool indicate_tim = false;
552 u8 ignore_for_tim = sta->sta.uapsd_queues;
553 int ac;
Marco Porschd012a602012-10-10 12:39:50 -0700554 u16 id;
Johannes Berg004c8722008-02-20 11:21:35 +0100555
Marco Porschd012a602012-10-10 12:39:50 -0700556 if (sta->sdata->vif.type == NL80211_IFTYPE_AP ||
557 sta->sdata->vif.type == NL80211_IFTYPE_AP_VLAN) {
558 if (WARN_ON_ONCE(!sta->sdata->bss))
559 return;
560
561 ps = &sta->sdata->bss->ps;
562 id = sta->sta.aid;
563 } else {
Johannes Bergc868cb352011-09-29 16:04:27 +0200564 return;
Marco Porschd012a602012-10-10 12:39:50 -0700565 }
Johannes Berg3e122be2008-07-09 14:40:34 +0200566
Johannes Bergc868cb352011-09-29 16:04:27 +0200567 /* No need to do anything if the driver does all */
568 if (local->hw.flags & IEEE80211_HW_AP_LINK_PS)
569 return;
Johannes Berg004c8722008-02-20 11:21:35 +0100570
Johannes Bergc868cb352011-09-29 16:04:27 +0200571 if (sta->dead)
572 goto done;
Johannes Berg3e122be2008-07-09 14:40:34 +0200573
Johannes Berg948d8872011-09-29 16:04:29 +0200574 /*
575 * If all ACs are delivery-enabled then we should build
576 * the TIM bit for all ACs anyway; if only some are then
577 * we ignore those and build the TIM bit using only the
578 * non-enabled ones.
579 */
580 if (ignore_for_tim == BIT(IEEE80211_NUM_ACS) - 1)
581 ignore_for_tim = 0;
Johannes Berg3e122be2008-07-09 14:40:34 +0200582
Johannes Berg948d8872011-09-29 16:04:29 +0200583 for (ac = 0; ac < IEEE80211_NUM_ACS; ac++) {
584 unsigned long tids;
585
586 if (ignore_for_tim & BIT(ac))
587 continue;
588
589 indicate_tim |= !skb_queue_empty(&sta->tx_filtered[ac]) ||
590 !skb_queue_empty(&sta->ps_tx_buf[ac]);
591 if (indicate_tim)
592 break;
593
594 tids = ieee80211_tids_for_ac(ac);
595
596 indicate_tim |=
597 sta->driver_buffered_tids & tids;
Johannes Bergd0709a62008-02-25 16:27:46 +0100598 }
Johannes Berg004c8722008-02-20 11:21:35 +0100599
Johannes Bergc868cb352011-09-29 16:04:27 +0200600 done:
Johannes Berg4d339602011-12-15 11:24:20 +0100601 spin_lock_irqsave(&local->tim_lock, flags);
Johannes Berg004c8722008-02-20 11:21:35 +0100602
Johannes Berg948d8872011-09-29 16:04:29 +0200603 if (indicate_tim)
Marco Porschd012a602012-10-10 12:39:50 -0700604 __bss_tim_set(ps->tim, id);
Johannes Bergc868cb352011-09-29 16:04:27 +0200605 else
Marco Porschd012a602012-10-10 12:39:50 -0700606 __bss_tim_clear(ps->tim, id);
Johannes Berg3e122be2008-07-09 14:40:34 +0200607
Johannes Bergc868cb352011-09-29 16:04:27 +0200608 if (local->ops->set_tim) {
609 local->tim_in_locked_section = true;
Johannes Berg948d8872011-09-29 16:04:29 +0200610 drv_set_tim(local, &sta->sta, indicate_tim);
Johannes Bergc868cb352011-09-29 16:04:27 +0200611 local->tim_in_locked_section = false;
Johannes Berg004c8722008-02-20 11:21:35 +0100612 }
Johannes Berg004c8722008-02-20 11:21:35 +0100613
Johannes Berg4d339602011-12-15 11:24:20 +0100614 spin_unlock_irqrestore(&local->tim_lock, flags);
Johannes Berg004c8722008-02-20 11:21:35 +0100615}
616
Johannes Bergcd0b8d82011-09-06 14:13:06 +0200617static bool sta_info_buffer_expired(struct sta_info *sta, struct sk_buff *skb)
Jiri Bencf0706e82007-05-05 11:45:53 -0700618{
Johannes Berge039fa42008-05-15 12:55:29 +0200619 struct ieee80211_tx_info *info;
Jiri Bencf0706e82007-05-05 11:45:53 -0700620 int timeout;
621
622 if (!skb)
Johannes Bergcd0b8d82011-09-06 14:13:06 +0200623 return false;
Jiri Bencf0706e82007-05-05 11:45:53 -0700624
Johannes Berge039fa42008-05-15 12:55:29 +0200625 info = IEEE80211_SKB_CB(skb);
Jiri Bencf0706e82007-05-05 11:45:53 -0700626
627 /* Timeout: (2 * listen_interval * beacon_int * 1024 / 1000000) sec */
Johannes Berg57c4d7b2009-04-23 16:10:04 +0200628 timeout = (sta->listen_interval *
629 sta->sdata->vif.bss_conf.beacon_int *
630 32 / 15625) * HZ;
Jiri Bencf0706e82007-05-05 11:45:53 -0700631 if (timeout < STA_TX_BUFFER_EXPIRE)
632 timeout = STA_TX_BUFFER_EXPIRE;
Johannes Berge039fa42008-05-15 12:55:29 +0200633 return time_after(jiffies, info->control.jiffies + timeout);
Jiri Bencf0706e82007-05-05 11:45:53 -0700634}
635
636
Johannes Berg948d8872011-09-29 16:04:29 +0200637static bool sta_info_cleanup_expire_buffered_ac(struct ieee80211_local *local,
638 struct sta_info *sta, int ac)
Jiri Bencf0706e82007-05-05 11:45:53 -0700639{
640 unsigned long flags;
641 struct sk_buff *skb;
642
Johannes Berg60750392011-09-29 16:04:28 +0200643 /*
644 * First check for frames that should expire on the filtered
645 * queue. Frames here were rejected by the driver and are on
646 * a separate queue to avoid reordering with normal PS-buffered
647 * frames. They also aren't accounted for right now in the
648 * total_ps_buffered counter.
649 */
Jiri Bencf0706e82007-05-05 11:45:53 -0700650 for (;;) {
Johannes Berg948d8872011-09-29 16:04:29 +0200651 spin_lock_irqsave(&sta->tx_filtered[ac].lock, flags);
652 skb = skb_peek(&sta->tx_filtered[ac]);
Johannes Berg57c4d7b2009-04-23 16:10:04 +0200653 if (sta_info_buffer_expired(sta, skb))
Johannes Berg948d8872011-09-29 16:04:29 +0200654 skb = __skb_dequeue(&sta->tx_filtered[ac]);
Johannes Berg836341a2008-02-20 02:07:21 +0100655 else
Jiri Bencf0706e82007-05-05 11:45:53 -0700656 skb = NULL;
Johannes Berg948d8872011-09-29 16:04:29 +0200657 spin_unlock_irqrestore(&sta->tx_filtered[ac].lock, flags);
Jiri Bencf0706e82007-05-05 11:45:53 -0700658
Johannes Berg60750392011-09-29 16:04:28 +0200659 /*
660 * Frames are queued in order, so if this one
661 * hasn't expired yet we can stop testing. If
662 * we actually reached the end of the queue we
663 * also need to stop, of course.
664 */
665 if (!skb)
666 break;
Felix Fietkaud4fa14c2012-10-10 22:40:23 +0200667 ieee80211_free_txskb(&local->hw, skb);
Johannes Berg60750392011-09-29 16:04:28 +0200668 }
669
670 /*
671 * Now also check the normal PS-buffered queue, this will
672 * only find something if the filtered queue was emptied
673 * since the filtered frames are all before the normal PS
674 * buffered frames.
675 */
Jiri Bencf0706e82007-05-05 11:45:53 -0700676 for (;;) {
Johannes Berg948d8872011-09-29 16:04:29 +0200677 spin_lock_irqsave(&sta->ps_tx_buf[ac].lock, flags);
678 skb = skb_peek(&sta->ps_tx_buf[ac]);
Jiri Bencf0706e82007-05-05 11:45:53 -0700679 if (sta_info_buffer_expired(sta, skb))
Johannes Berg948d8872011-09-29 16:04:29 +0200680 skb = __skb_dequeue(&sta->ps_tx_buf[ac]);
Jiri Bencf0706e82007-05-05 11:45:53 -0700681 else
682 skb = NULL;
Johannes Berg948d8872011-09-29 16:04:29 +0200683 spin_unlock_irqrestore(&sta->ps_tx_buf[ac].lock, flags);
Jiri Bencf0706e82007-05-05 11:45:53 -0700684
Johannes Berg60750392011-09-29 16:04:28 +0200685 /*
686 * frames are queued in order, so if this one
687 * hasn't expired yet (or we reached the end of
688 * the queue) we can stop testing
689 */
Johannes Berg836341a2008-02-20 02:07:21 +0100690 if (!skb)
Jiri Bencf0706e82007-05-05 11:45:53 -0700691 break;
Johannes Berg836341a2008-02-20 02:07:21 +0100692
Johannes Berg836341a2008-02-20 02:07:21 +0100693 local->total_ps_buffered--;
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200694 ps_dbg(sta->sdata, "Buffered frame expired (STA %pM)\n",
695 sta->sta.addr);
Felix Fietkaud4fa14c2012-10-10 22:40:23 +0200696 ieee80211_free_txskb(&local->hw, skb);
Jiri Bencf0706e82007-05-05 11:45:53 -0700697 }
Juuso Oikarinen3393a602010-04-19 10:12:52 +0300698
Johannes Berg60750392011-09-29 16:04:28 +0200699 /*
700 * Finally, recalculate the TIM bit for this station -- it might
701 * now be clear because the station was too slow to retrieve its
702 * frames.
703 */
704 sta_info_recalc_tim(sta);
705
706 /*
707 * Return whether there are any frames still buffered, this is
708 * used to check whether the cleanup timer still needs to run,
709 * if there are no frames we don't need to rearm the timer.
710 */
Johannes Berg948d8872011-09-29 16:04:29 +0200711 return !(skb_queue_empty(&sta->ps_tx_buf[ac]) &&
712 skb_queue_empty(&sta->tx_filtered[ac]));
713}
714
715static bool sta_info_cleanup_expire_buffered(struct ieee80211_local *local,
716 struct sta_info *sta)
717{
718 bool have_buffered = false;
719 int ac;
720
721 /* This is only necessary for stations on BSS interfaces */
722 if (!sta->sdata->bss)
723 return false;
724
725 for (ac = 0; ac < IEEE80211_NUM_ACS; ac++)
726 have_buffered |=
727 sta_info_cleanup_expire_buffered_ac(local, sta, ac);
728
729 return have_buffered;
Jiri Bencf0706e82007-05-05 11:45:53 -0700730}
731
Johannes Berg83d5cc02012-01-12 09:31:10 +0100732int __must_check __sta_info_destroy(struct sta_info *sta)
Johannes Berg34e89502010-02-03 13:59:58 +0100733{
734 struct ieee80211_local *local;
735 struct ieee80211_sub_if_data *sdata;
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300736 int ret, i;
Johannes Berg34e89502010-02-03 13:59:58 +0100737
738 might_sleep();
739
740 if (!sta)
741 return -ENOENT;
742
743 local = sta->local;
744 sdata = sta->sdata;
745
Johannes Berg83d5cc02012-01-12 09:31:10 +0100746 lockdep_assert_held(&local->sta_mtx);
747
Johannes Berg098a6072010-04-06 11:18:47 +0200748 /*
749 * Before removing the station from the driver and
750 * rate control, it might still start new aggregation
751 * sessions -- block that to make sure the tear-down
752 * will be sufficient.
753 */
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200754 set_sta_flag(sta, WLAN_STA_BLOCK_BA);
Johannes Berg582bb502012-07-18 12:54:46 +0200755 ieee80211_sta_tear_down_BA_sessions(sta, false);
Johannes Berg098a6072010-04-06 11:18:47 +0200756
Johannes Berg34e89502010-02-03 13:59:58 +0100757 ret = sta_info_hash_del(local, sta);
Johannes Berg34e89502010-02-03 13:59:58 +0100758 if (ret)
759 return ret;
760
Arik Nemtsov794454c2012-06-03 23:32:32 +0300761 list_del_rcu(&sta->list);
Johannes Berg4d339602011-12-15 11:24:20 +0100762
Johannes Berg8cb23152011-05-12 15:07:15 +0200763 mutex_lock(&local->key_mtx);
Johannes Berge31b8212010-10-05 19:39:30 +0200764 for (i = 0; i < NUM_DEFAULT_KEYS; i++)
Johannes Berg40b275b2011-05-13 14:15:49 +0200765 __ieee80211_key_free(key_mtx_dereference(local, sta->gtk[i]));
Johannes Berge31b8212010-10-05 19:39:30 +0200766 if (sta->ptk)
Johannes Berg40b275b2011-05-13 14:15:49 +0200767 __ieee80211_key_free(key_mtx_dereference(local, sta->ptk));
Johannes Berg8cb23152011-05-12 15:07:15 +0200768 mutex_unlock(&local->key_mtx);
Johannes Berg34e89502010-02-03 13:59:58 +0100769
770 sta->dead = true;
771
Johannes Berg34e89502010-02-03 13:59:58 +0100772 local->num_sta--;
773 local->sta_generation++;
774
775 if (sdata->vif.type == NL80211_IFTYPE_AP_VLAN)
Stephen Hemmingera9b3cd72011-08-01 16:19:00 +0000776 RCU_INIT_POINTER(sdata->u.vlan.sta, NULL);
Johannes Berg34e89502010-02-03 13:59:58 +0100777
Johannes Berg83d5cc02012-01-12 09:31:10 +0100778 while (sta->sta_state > IEEE80211_STA_NONE) {
Johannes Bergf09603a2012-01-20 13:55:21 +0100779 ret = sta_info_move_state(sta, sta->sta_state - 1);
780 if (ret) {
Johannes Berg83d5cc02012-01-12 09:31:10 +0100781 WARN_ON_ONCE(1);
782 break;
783 }
784 }
Johannes Bergd9a7ddb2011-12-14 12:35:30 +0100785
Johannes Bergf09603a2012-01-20 13:55:21 +0100786 if (sta->uploaded) {
Johannes Bergf09603a2012-01-20 13:55:21 +0100787 ret = drv_sta_state(local, sdata, sta, IEEE80211_STA_NONE,
788 IEEE80211_STA_NOTEXIST);
789 WARN_ON_ONCE(ret != 0);
790 }
Johannes Berg34e89502010-02-03 13:59:58 +0100791
Johannes Bergbdcbd8e2012-06-22 11:29:50 +0200792 sta_dbg(sdata, "Removed STA %pM\n", sta->sta.addr);
793
Jouni Malinenec15e682011-03-23 15:29:52 +0200794 cfg80211_del_sta(sdata->dev, sta->sta.addr, GFP_KERNEL);
795
Johannes Berg34e89502010-02-03 13:59:58 +0100796 rate_control_remove_sta_debugfs(sta);
797 ieee80211_sta_debugfs_remove(sta);
798
Eliad Pellerb22cfcf2012-09-09 14:43:51 +0300799 call_rcu(&sta->rcu_head, free_sta_rcu);
Johannes Berg34e89502010-02-03 13:59:58 +0100800
801 return 0;
802}
803
804int sta_info_destroy_addr(struct ieee80211_sub_if_data *sdata, const u8 *addr)
805{
806 struct sta_info *sta;
807 int ret;
808
809 mutex_lock(&sdata->local->sta_mtx);
Johannes Berg7852e362012-01-20 13:55:24 +0100810 sta = sta_info_get(sdata, addr);
Johannes Berg34e89502010-02-03 13:59:58 +0100811 ret = __sta_info_destroy(sta);
812 mutex_unlock(&sdata->local->sta_mtx);
813
814 return ret;
815}
816
817int sta_info_destroy_addr_bss(struct ieee80211_sub_if_data *sdata,
818 const u8 *addr)
819{
820 struct sta_info *sta;
821 int ret;
822
823 mutex_lock(&sdata->local->sta_mtx);
Johannes Berg7852e362012-01-20 13:55:24 +0100824 sta = sta_info_get_bss(sdata, addr);
Johannes Berg34e89502010-02-03 13:59:58 +0100825 ret = __sta_info_destroy(sta);
826 mutex_unlock(&sdata->local->sta_mtx);
827
828 return ret;
829}
Jiri Bencf0706e82007-05-05 11:45:53 -0700830
831static void sta_info_cleanup(unsigned long data)
832{
833 struct ieee80211_local *local = (struct ieee80211_local *) data;
834 struct sta_info *sta;
Juuso Oikarinen3393a602010-04-19 10:12:52 +0300835 bool timer_needed = false;
Jiri Bencf0706e82007-05-05 11:45:53 -0700836
Johannes Bergd0709a62008-02-25 16:27:46 +0100837 rcu_read_lock();
838 list_for_each_entry_rcu(sta, &local->sta_list, list)
Juuso Oikarinen3393a602010-04-19 10:12:52 +0300839 if (sta_info_cleanup_expire_buffered(local, sta))
840 timer_needed = true;
Johannes Bergd0709a62008-02-25 16:27:46 +0100841 rcu_read_unlock();
Jiri Bencf0706e82007-05-05 11:45:53 -0700842
Johannes Berg5bb644a2009-05-17 11:40:42 +0200843 if (local->quiescing)
844 return;
845
Juuso Oikarinen3393a602010-04-19 10:12:52 +0300846 if (!timer_needed)
847 return;
848
Johannes Berg26d59532011-04-01 13:52:48 +0200849 mod_timer(&local->sta_cleanup,
850 round_jiffies(jiffies + STA_INFO_CLEANUP_INTERVAL));
Jiri Bencf0706e82007-05-05 11:45:53 -0700851}
852
853void sta_info_init(struct ieee80211_local *local)
854{
Johannes Berg4d339602011-12-15 11:24:20 +0100855 spin_lock_init(&local->tim_lock);
Johannes Berg34e89502010-02-03 13:59:58 +0100856 mutex_init(&local->sta_mtx);
Jiri Bencf0706e82007-05-05 11:45:53 -0700857 INIT_LIST_HEAD(&local->sta_list);
Jiri Bencf0706e82007-05-05 11:45:53 -0700858
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800859 setup_timer(&local->sta_cleanup, sta_info_cleanup,
860 (unsigned long)local);
Jiri Bencf0706e82007-05-05 11:45:53 -0700861}
862
863void sta_info_stop(struct ieee80211_local *local)
864{
Jiri Bencf0706e82007-05-05 11:45:53 -0700865 del_timer(&local->sta_cleanup);
Michael Wube8755e2007-07-27 15:43:23 +0200866 sta_info_flush(local, NULL);
Jiri Bencf0706e82007-05-05 11:45:53 -0700867}
868
Jiri Bencf0706e82007-05-05 11:45:53 -0700869/**
870 * sta_info_flush - flush matching STA entries from the STA table
Johannes Berg44213b52008-02-25 16:27:49 +0100871 *
872 * Returns the number of removed STA entries.
873 *
Jiri Bencf0706e82007-05-05 11:45:53 -0700874 * @local: local interface data
Johannes Bergd0709a62008-02-25 16:27:46 +0100875 * @sdata: matching rule for the net device (sta->dev) or %NULL to match all STAs
Jiri Bencf0706e82007-05-05 11:45:53 -0700876 */
Johannes Berg44213b52008-02-25 16:27:49 +0100877int sta_info_flush(struct ieee80211_local *local,
Johannes Bergaf8cdcd2009-04-19 21:25:43 +0200878 struct ieee80211_sub_if_data *sdata)
Jiri Bencf0706e82007-05-05 11:45:53 -0700879{
880 struct sta_info *sta, *tmp;
Johannes Berg44213b52008-02-25 16:27:49 +0100881 int ret = 0;
Jiri Bencf0706e82007-05-05 11:45:53 -0700882
Johannes Bergd0709a62008-02-25 16:27:46 +0100883 might_sleep();
884
Johannes Berg34e89502010-02-03 13:59:58 +0100885 mutex_lock(&local->sta_mtx);
Johannes Berg34e89502010-02-03 13:59:58 +0100886 list_for_each_entry_safe(sta, tmp, &local->sta_list, list) {
Johannes Berg34316832012-02-25 21:40:46 +0100887 if (!sdata || sdata == sta->sdata) {
Johannes Berg34e89502010-02-03 13:59:58 +0100888 WARN_ON(__sta_info_destroy(sta));
Johannes Berg34316832012-02-25 21:40:46 +0100889 ret++;
890 }
Johannes Berg34e89502010-02-03 13:59:58 +0100891 }
892 mutex_unlock(&local->sta_mtx);
Johannes Berg44213b52008-02-25 16:27:49 +0100893
894 return ret;
Jiri Bencf0706e82007-05-05 11:45:53 -0700895}
Johannes Bergdc6676b2008-03-31 19:23:03 +0200896
Johannes Berg24723d12008-09-11 00:01:46 +0200897void ieee80211_sta_expire(struct ieee80211_sub_if_data *sdata,
898 unsigned long exp_time)
899{
900 struct ieee80211_local *local = sdata->local;
901 struct sta_info *sta, *tmp;
Johannes Berg24723d12008-09-11 00:01:46 +0200902
Johannes Berg34e89502010-02-03 13:59:58 +0100903 mutex_lock(&local->sta_mtx);
Mohammed Shafi Shajakhane46a2cf2011-12-26 10:43:29 +0530904
905 list_for_each_entry_safe(sta, tmp, &local->sta_list, list) {
Marek Lindnerec2b7742011-12-20 23:16:52 +0800906 if (sdata != sta->sdata)
907 continue;
908
Johannes Berg24723d12008-09-11 00:01:46 +0200909 if (time_after(jiffies, sta->last_rx + exp_time)) {
Mohammed Shafi Shajakhaneea57d42012-10-08 21:33:47 +0530910 sta_dbg(sta->sdata, "expiring inactive STA %pM\n",
911 sta->sta.addr);
Johannes Berg34e89502010-02-03 13:59:58 +0100912 WARN_ON(__sta_info_destroy(sta));
Johannes Berg24723d12008-09-11 00:01:46 +0200913 }
Mohammed Shafi Shajakhane46a2cf2011-12-26 10:43:29 +0530914 }
915
Johannes Berg34e89502010-02-03 13:59:58 +0100916 mutex_unlock(&local->sta_mtx);
Johannes Berg24723d12008-09-11 00:01:46 +0200917}
Johannes Berg17741cd2008-09-11 00:02:02 +0200918
Ben Greear686b9cb2010-09-23 09:44:36 -0700919struct ieee80211_sta *ieee80211_find_sta_by_ifaddr(struct ieee80211_hw *hw,
920 const u8 *addr,
921 const u8 *localaddr)
Johannes Berg17741cd2008-09-11 00:02:02 +0200922{
Johannes Bergabe60632009-11-25 17:46:18 +0100923 struct sta_info *sta, *nxt;
Johannes Berg17741cd2008-09-11 00:02:02 +0200924
Ben Greear686b9cb2010-09-23 09:44:36 -0700925 /*
926 * Just return a random station if localaddr is NULL
927 * ... first in list.
928 */
Johannes Bergf7c65592010-04-30 13:48:36 +0200929 for_each_sta_info(hw_to_local(hw), addr, sta, nxt) {
Ben Greear686b9cb2010-09-23 09:44:36 -0700930 if (localaddr &&
Joe Perchesb203ca32012-05-08 18:56:52 +0000931 !ether_addr_equal(sta->sdata->vif.addr, localaddr))
Ben Greear686b9cb2010-09-23 09:44:36 -0700932 continue;
Johannes Bergf7c65592010-04-30 13:48:36 +0200933 if (!sta->uploaded)
934 return NULL;
Johannes Bergabe60632009-11-25 17:46:18 +0100935 return &sta->sta;
Johannes Bergf7c65592010-04-30 13:48:36 +0200936 }
937
Johannes Bergabe60632009-11-25 17:46:18 +0100938 return NULL;
Johannes Berg17741cd2008-09-11 00:02:02 +0200939}
Ben Greear686b9cb2010-09-23 09:44:36 -0700940EXPORT_SYMBOL_GPL(ieee80211_find_sta_by_ifaddr);
Johannes Berg5ed176e2009-11-04 14:42:28 +0100941
942struct ieee80211_sta *ieee80211_find_sta(struct ieee80211_vif *vif,
943 const u8 *addr)
944{
Johannes Bergf7c65592010-04-30 13:48:36 +0200945 struct sta_info *sta;
Johannes Berg5ed176e2009-11-04 14:42:28 +0100946
947 if (!vif)
948 return NULL;
949
Johannes Bergf7c65592010-04-30 13:48:36 +0200950 sta = sta_info_get_bss(vif_to_sdata(vif), addr);
951 if (!sta)
952 return NULL;
Johannes Berg5ed176e2009-11-04 14:42:28 +0100953
Johannes Bergf7c65592010-04-30 13:48:36 +0200954 if (!sta->uploaded)
955 return NULL;
956
957 return &sta->sta;
Johannes Berg5ed176e2009-11-04 14:42:28 +0100958}
Johannes Berg17741cd2008-09-11 00:02:02 +0200959EXPORT_SYMBOL(ieee80211_find_sta);
Johannes Bergaf818582009-11-06 11:35:50 +0100960
Johannes Berg50a94322010-11-16 11:50:28 -0800961static void clear_sta_ps_flags(void *_sta)
962{
963 struct sta_info *sta = _sta;
Helmut Schaa608383b2012-01-30 15:18:00 +0100964 struct ieee80211_sub_if_data *sdata = sta->sdata;
Marco Porschd012a602012-10-10 12:39:50 -0700965 struct ps_data *ps;
966
967 if (sdata->vif.type == NL80211_IFTYPE_AP ||
968 sdata->vif.type == NL80211_IFTYPE_AP_VLAN)
969 ps = &sdata->bss->ps;
970 else
971 return;
Johannes Berg50a94322010-11-16 11:50:28 -0800972
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200973 clear_sta_flag(sta, WLAN_STA_PS_DRIVER);
Helmut Schaa608383b2012-01-30 15:18:00 +0100974 if (test_and_clear_sta_flag(sta, WLAN_STA_PS_STA))
Marco Porschd012a602012-10-10 12:39:50 -0700975 atomic_dec(&ps->num_sta_ps);
Johannes Berg50a94322010-11-16 11:50:28 -0800976}
977
Johannes Bergaf818582009-11-06 11:35:50 +0100978/* powersave support code */
979void ieee80211_sta_ps_deliver_wakeup(struct sta_info *sta)
980{
981 struct ieee80211_sub_if_data *sdata = sta->sdata;
982 struct ieee80211_local *local = sdata->local;
Johannes Berg948d8872011-09-29 16:04:29 +0200983 struct sk_buff_head pending;
984 int filtered = 0, buffered = 0, ac;
Johannes Bergaf818582009-11-06 11:35:50 +0100985
Johannes Bergc2c98fd2011-09-29 16:04:36 +0200986 clear_sta_flag(sta, WLAN_STA_SP);
Johannes Berg47086fc2011-09-29 16:04:33 +0200987
Johannes Berg5a306f52012-11-14 23:22:21 +0100988 BUILD_BUG_ON(BITS_TO_LONGS(IEEE80211_NUM_TIDS) > 1);
Johannes Berg948d8872011-09-29 16:04:29 +0200989 sta->driver_buffered_tids = 0;
990
Arik Nemtsovd057e5a2011-01-31 22:29:13 +0200991 if (!(local->hw.flags & IEEE80211_HW_AP_LINK_PS))
992 drv_sta_notify(local, sdata, STA_NOTIFY_AWAKE, &sta->sta);
Johannes Bergaf818582009-11-06 11:35:50 +0100993
Johannes Berg948d8872011-09-29 16:04:29 +0200994 skb_queue_head_init(&pending);
Johannes Bergaf818582009-11-06 11:35:50 +0100995
996 /* Send all buffered frames to the station */
Johannes Berg948d8872011-09-29 16:04:29 +0200997 for (ac = 0; ac < IEEE80211_NUM_ACS; ac++) {
998 int count = skb_queue_len(&pending), tmp;
999
1000 skb_queue_splice_tail_init(&sta->tx_filtered[ac], &pending);
1001 tmp = skb_queue_len(&pending);
1002 filtered += tmp - count;
1003 count = tmp;
1004
1005 skb_queue_splice_tail_init(&sta->ps_tx_buf[ac], &pending);
1006 tmp = skb_queue_len(&pending);
1007 buffered += tmp - count;
1008 }
1009
1010 ieee80211_add_pending_skbs_fn(local, &pending, clear_sta_ps_flags, sta);
1011
Johannes Bergaf818582009-11-06 11:35:50 +01001012 local->total_ps_buffered -= buffered;
1013
Johannes Bergc868cb352011-09-29 16:04:27 +02001014 sta_info_recalc_tim(sta);
1015
Johannes Bergbdcbd8e2012-06-22 11:29:50 +02001016 ps_dbg(sdata,
1017 "STA %pM aid %d sending %d filtered/%d PS frames since STA not sleeping anymore\n",
1018 sta->sta.addr, sta->sta.aid, filtered, buffered);
Johannes Bergaf818582009-11-06 11:35:50 +01001019}
1020
Johannes Bergce662b442011-09-29 16:04:34 +02001021static void ieee80211_send_null_response(struct ieee80211_sub_if_data *sdata,
1022 struct sta_info *sta, int tid,
Johannes Berg40b96402011-09-29 16:04:38 +02001023 enum ieee80211_frame_release_type reason)
Johannes Bergce662b442011-09-29 16:04:34 +02001024{
1025 struct ieee80211_local *local = sdata->local;
1026 struct ieee80211_qos_hdr *nullfunc;
1027 struct sk_buff *skb;
1028 int size = sizeof(*nullfunc);
1029 __le16 fc;
Johannes Bergc2c98fd2011-09-29 16:04:36 +02001030 bool qos = test_sta_flag(sta, WLAN_STA_WME);
Johannes Bergce662b442011-09-29 16:04:34 +02001031 struct ieee80211_tx_info *info;
Johannes Berg55de9082012-07-26 17:24:39 +02001032 struct ieee80211_chanctx_conf *chanctx_conf;
Johannes Bergce662b442011-09-29 16:04:34 +02001033
1034 if (qos) {
1035 fc = cpu_to_le16(IEEE80211_FTYPE_DATA |
1036 IEEE80211_STYPE_QOS_NULLFUNC |
1037 IEEE80211_FCTL_FROMDS);
1038 } else {
1039 size -= 2;
1040 fc = cpu_to_le16(IEEE80211_FTYPE_DATA |
1041 IEEE80211_STYPE_NULLFUNC |
1042 IEEE80211_FCTL_FROMDS);
1043 }
1044
1045 skb = dev_alloc_skb(local->hw.extra_tx_headroom + size);
1046 if (!skb)
1047 return;
1048
1049 skb_reserve(skb, local->hw.extra_tx_headroom);
1050
1051 nullfunc = (void *) skb_put(skb, size);
1052 nullfunc->frame_control = fc;
1053 nullfunc->duration_id = 0;
1054 memcpy(nullfunc->addr1, sta->sta.addr, ETH_ALEN);
1055 memcpy(nullfunc->addr2, sdata->vif.addr, ETH_ALEN);
1056 memcpy(nullfunc->addr3, sdata->vif.addr, ETH_ALEN);
1057
Johannes Berg59b66252011-10-13 13:19:19 +02001058 skb->priority = tid;
1059 skb_set_queue_mapping(skb, ieee802_1d_to_ac[tid]);
Johannes Bergce662b442011-09-29 16:04:34 +02001060 if (qos) {
Johannes Bergce662b442011-09-29 16:04:34 +02001061 nullfunc->qos_ctrl = cpu_to_le16(tid);
1062
Johannes Berg40b96402011-09-29 16:04:38 +02001063 if (reason == IEEE80211_FRAME_RELEASE_UAPSD)
Johannes Bergce662b442011-09-29 16:04:34 +02001064 nullfunc->qos_ctrl |=
1065 cpu_to_le16(IEEE80211_QOS_CTL_EOSP);
1066 }
1067
1068 info = IEEE80211_SKB_CB(skb);
1069
1070 /*
1071 * Tell TX path to send this frame even though the
1072 * STA may still remain is PS mode after this frame
Johannes Bergdeeaee12011-09-29 16:04:35 +02001073 * exchange. Also set EOSP to indicate this packet
1074 * ends the poll/service period.
Johannes Bergce662b442011-09-29 16:04:34 +02001075 */
Johannes Berg02f2f1a2012-02-27 12:18:30 +01001076 info->flags |= IEEE80211_TX_CTL_NO_PS_BUFFER |
Johannes Bergdeeaee12011-09-29 16:04:35 +02001077 IEEE80211_TX_STATUS_EOSP |
1078 IEEE80211_TX_CTL_REQ_TX_STATUS;
Johannes Bergce662b442011-09-29 16:04:34 +02001079
Johannes Berg40b96402011-09-29 16:04:38 +02001080 drv_allow_buffered_frames(local, sta, BIT(tid), 1, reason, false);
1081
Johannes Berg55de9082012-07-26 17:24:39 +02001082 rcu_read_lock();
1083 chanctx_conf = rcu_dereference(sdata->vif.chanctx_conf);
1084 if (WARN_ON(!chanctx_conf)) {
1085 rcu_read_unlock();
1086 kfree_skb(skb);
1087 return;
1088 }
1089
1090 ieee80211_xmit(sdata, skb, chanctx_conf->channel->band);
1091 rcu_read_unlock();
Johannes Bergce662b442011-09-29 16:04:34 +02001092}
1093
Johannes Berg47086fc2011-09-29 16:04:33 +02001094static void
1095ieee80211_sta_ps_deliver_response(struct sta_info *sta,
1096 int n_frames, u8 ignored_acs,
1097 enum ieee80211_frame_release_type reason)
Johannes Bergaf818582009-11-06 11:35:50 +01001098{
1099 struct ieee80211_sub_if_data *sdata = sta->sdata;
1100 struct ieee80211_local *local = sdata->local;
Johannes Berg4049e092011-09-29 16:04:32 +02001101 bool found = false;
Johannes Berg948d8872011-09-29 16:04:29 +02001102 bool more_data = false;
1103 int ac;
Johannes Berg4049e092011-09-29 16:04:32 +02001104 unsigned long driver_release_tids = 0;
Johannes Berg47086fc2011-09-29 16:04:33 +02001105 struct sk_buff_head frames;
1106
Johannes Bergdeeaee12011-09-29 16:04:35 +02001107 /* Service or PS-Poll period starts */
Johannes Bergc2c98fd2011-09-29 16:04:36 +02001108 set_sta_flag(sta, WLAN_STA_SP);
Johannes Bergdeeaee12011-09-29 16:04:35 +02001109
Johannes Berg47086fc2011-09-29 16:04:33 +02001110 __skb_queue_head_init(&frames);
Johannes Bergaf818582009-11-06 11:35:50 +01001111
Johannes Berg948d8872011-09-29 16:04:29 +02001112 /*
Johannes Berg47086fc2011-09-29 16:04:33 +02001113 * Get response frame(s) and more data bit for it.
Johannes Berg948d8872011-09-29 16:04:29 +02001114 */
1115 for (ac = 0; ac < IEEE80211_NUM_ACS; ac++) {
Johannes Berg4049e092011-09-29 16:04:32 +02001116 unsigned long tids;
1117
Johannes Berg47086fc2011-09-29 16:04:33 +02001118 if (ignored_acs & BIT(ac))
Johannes Berg948d8872011-09-29 16:04:29 +02001119 continue;
1120
Johannes Berg4049e092011-09-29 16:04:32 +02001121 tids = ieee80211_tids_for_ac(ac);
1122
1123 if (!found) {
1124 driver_release_tids = sta->driver_buffered_tids & tids;
1125 if (driver_release_tids) {
1126 found = true;
1127 } else {
Johannes Berg47086fc2011-09-29 16:04:33 +02001128 struct sk_buff *skb;
1129
1130 while (n_frames > 0) {
1131 skb = skb_dequeue(&sta->tx_filtered[ac]);
1132 if (!skb) {
1133 skb = skb_dequeue(
1134 &sta->ps_tx_buf[ac]);
1135 if (skb)
1136 local->total_ps_buffered--;
1137 }
1138 if (!skb)
1139 break;
1140 n_frames--;
Johannes Berg4049e092011-09-29 16:04:32 +02001141 found = true;
Johannes Berg47086fc2011-09-29 16:04:33 +02001142 __skb_queue_tail(&frames, skb);
1143 }
Johannes Berg4049e092011-09-29 16:04:32 +02001144 }
1145
1146 /*
1147 * If the driver has data on more than one TID then
1148 * certainly there's more data if we release just a
1149 * single frame now (from a single TID).
1150 */
Johannes Berg47086fc2011-09-29 16:04:33 +02001151 if (reason == IEEE80211_FRAME_RELEASE_PSPOLL &&
1152 hweight16(driver_release_tids) > 1) {
Johannes Berg4049e092011-09-29 16:04:32 +02001153 more_data = true;
1154 driver_release_tids =
1155 BIT(ffs(driver_release_tids) - 1);
1156 break;
Johannes Berg948d8872011-09-29 16:04:29 +02001157 }
1158 }
1159
Johannes Berg948d8872011-09-29 16:04:29 +02001160 if (!skb_queue_empty(&sta->tx_filtered[ac]) ||
1161 !skb_queue_empty(&sta->ps_tx_buf[ac])) {
1162 more_data = true;
1163 break;
1164 }
Johannes Bergaf818582009-11-06 11:35:50 +01001165 }
Johannes Bergaf818582009-11-06 11:35:50 +01001166
Johannes Berg4049e092011-09-29 16:04:32 +02001167 if (!found) {
Johannes Bergce662b442011-09-29 16:04:34 +02001168 int tid;
Johannes Berg4049e092011-09-29 16:04:32 +02001169
Johannes Bergce662b442011-09-29 16:04:34 +02001170 /*
1171 * For PS-Poll, this can only happen due to a race condition
1172 * when we set the TIM bit and the station notices it, but
1173 * before it can poll for the frame we expire it.
1174 *
1175 * For uAPSD, this is said in the standard (11.2.1.5 h):
1176 * At each unscheduled SP for a non-AP STA, the AP shall
1177 * attempt to transmit at least one MSDU or MMPDU, but no
1178 * more than the value specified in the Max SP Length field
1179 * in the QoS Capability element from delivery-enabled ACs,
1180 * that are destined for the non-AP STA.
1181 *
1182 * Since we have no other MSDU/MMPDU, transmit a QoS null frame.
1183 */
1184
1185 /* This will evaluate to 1, 3, 5 or 7. */
1186 tid = 7 - ((ffs(~ignored_acs) - 1) << 1);
1187
Johannes Berg40b96402011-09-29 16:04:38 +02001188 ieee80211_send_null_response(sdata, sta, tid, reason);
Johannes Berg4049e092011-09-29 16:04:32 +02001189 return;
1190 }
1191
Johannes Berg47086fc2011-09-29 16:04:33 +02001192 if (!driver_release_tids) {
1193 struct sk_buff_head pending;
1194 struct sk_buff *skb;
Johannes Berg40b96402011-09-29 16:04:38 +02001195 int num = 0;
1196 u16 tids = 0;
Johannes Bergaf818582009-11-06 11:35:50 +01001197
Johannes Berg47086fc2011-09-29 16:04:33 +02001198 skb_queue_head_init(&pending);
Johannes Bergaf818582009-11-06 11:35:50 +01001199
Johannes Berg47086fc2011-09-29 16:04:33 +02001200 while ((skb = __skb_dequeue(&frames))) {
1201 struct ieee80211_tx_info *info = IEEE80211_SKB_CB(skb);
1202 struct ieee80211_hdr *hdr = (void *) skb->data;
Johannes Berg40b96402011-09-29 16:04:38 +02001203 u8 *qoshdr = NULL;
1204
1205 num++;
Johannes Bergaf818582009-11-06 11:35:50 +01001206
Johannes Berg47086fc2011-09-29 16:04:33 +02001207 /*
1208 * Tell TX path to send this frame even though the
1209 * STA may still remain is PS mode after this frame
1210 * exchange.
1211 */
Johannes Berg02f2f1a2012-02-27 12:18:30 +01001212 info->flags |= IEEE80211_TX_CTL_NO_PS_BUFFER;
Johannes Bergaf818582009-11-06 11:35:50 +01001213
Johannes Berg47086fc2011-09-29 16:04:33 +02001214 /*
1215 * Use MoreData flag to indicate whether there are
1216 * more buffered frames for this STA
1217 */
Janusz.Dziedzic@tieto.com24b9c372011-11-07 09:47:47 +02001218 if (more_data || !skb_queue_empty(&frames))
Johannes Berg47086fc2011-09-29 16:04:33 +02001219 hdr->frame_control |=
1220 cpu_to_le16(IEEE80211_FCTL_MOREDATA);
Janusz.Dziedzic@tieto.com24b9c372011-11-07 09:47:47 +02001221 else
1222 hdr->frame_control &=
1223 cpu_to_le16(~IEEE80211_FCTL_MOREDATA);
Johannes Berg47086fc2011-09-29 16:04:33 +02001224
Johannes Berg40b96402011-09-29 16:04:38 +02001225 if (ieee80211_is_data_qos(hdr->frame_control) ||
1226 ieee80211_is_qos_nullfunc(hdr->frame_control))
1227 qoshdr = ieee80211_get_qos_ctl(hdr);
1228
Marco Porsch52a3f202012-03-16 15:30:26 +01001229 /* end service period after last frame */
1230 if (skb_queue_empty(&frames)) {
1231 if (reason == IEEE80211_FRAME_RELEASE_UAPSD &&
1232 qoshdr)
1233 *qoshdr |= IEEE80211_QOS_CTL_EOSP;
Johannes Berg47086fc2011-09-29 16:04:33 +02001234
Marco Porsch52a3f202012-03-16 15:30:26 +01001235 info->flags |= IEEE80211_TX_STATUS_EOSP |
1236 IEEE80211_TX_CTL_REQ_TX_STATUS;
1237 }
Johannes Bergdeeaee12011-09-29 16:04:35 +02001238
Johannes Berg40b96402011-09-29 16:04:38 +02001239 if (qoshdr)
1240 tids |= BIT(*qoshdr & IEEE80211_QOS_CTL_TID_MASK);
1241 else
1242 tids |= BIT(0);
1243
Johannes Berg47086fc2011-09-29 16:04:33 +02001244 __skb_queue_tail(&pending, skb);
1245 }
1246
Johannes Berg40b96402011-09-29 16:04:38 +02001247 drv_allow_buffered_frames(local, sta, tids, num,
1248 reason, more_data);
1249
Johannes Berg47086fc2011-09-29 16:04:33 +02001250 ieee80211_add_pending_skbs(local, &pending);
Johannes Bergaf818582009-11-06 11:35:50 +01001251
Johannes Bergc868cb352011-09-29 16:04:27 +02001252 sta_info_recalc_tim(sta);
Johannes Bergaf818582009-11-06 11:35:50 +01001253 } else {
1254 /*
Johannes Berg4049e092011-09-29 16:04:32 +02001255 * We need to release a frame that is buffered somewhere in the
1256 * driver ... it'll have to handle that.
1257 * Note that, as per the comment above, it'll also have to see
1258 * if there is more than just one frame on the specific TID that
1259 * we're releasing from, and it needs to set the more-data bit
1260 * accordingly if we tell it that there's no more data. If we do
1261 * tell it there's more data, then of course the more-data bit
1262 * needs to be set anyway.
Johannes Bergaf818582009-11-06 11:35:50 +01001263 */
Johannes Berg4049e092011-09-29 16:04:32 +02001264 drv_release_buffered_frames(local, sta, driver_release_tids,
Johannes Berg47086fc2011-09-29 16:04:33 +02001265 n_frames, reason, more_data);
Johannes Berg4049e092011-09-29 16:04:32 +02001266
1267 /*
1268 * Note that we don't recalculate the TIM bit here as it would
1269 * most likely have no effect at all unless the driver told us
1270 * that the TID became empty before returning here from the
1271 * release function.
1272 * Either way, however, when the driver tells us that the TID
1273 * became empty we'll do the TIM recalculation.
1274 */
Johannes Bergaf818582009-11-06 11:35:50 +01001275 }
1276}
1277
Johannes Bergaf818582009-11-06 11:35:50 +01001278void ieee80211_sta_ps_deliver_poll_response(struct sta_info *sta)
1279{
Johannes Berg47086fc2011-09-29 16:04:33 +02001280 u8 ignore_for_response = sta->sta.uapsd_queues;
Johannes Bergaf818582009-11-06 11:35:50 +01001281
Johannes Berg47086fc2011-09-29 16:04:33 +02001282 /*
1283 * If all ACs are delivery-enabled then we should reply
1284 * from any of them, if only some are enabled we reply
1285 * only from the non-enabled ones.
1286 */
1287 if (ignore_for_response == BIT(IEEE80211_NUM_ACS) - 1)
1288 ignore_for_response = 0;
1289
1290 ieee80211_sta_ps_deliver_response(sta, 1, ignore_for_response,
1291 IEEE80211_FRAME_RELEASE_PSPOLL);
1292}
1293
1294void ieee80211_sta_ps_deliver_uapsd(struct sta_info *sta)
1295{
1296 int n_frames = sta->sta.max_sp;
1297 u8 delivery_enabled = sta->sta.uapsd_queues;
1298
1299 /*
1300 * If we ever grow support for TSPEC this might happen if
1301 * the TSPEC update from hostapd comes in between a trigger
1302 * frame setting WLAN_STA_UAPSD in the RX path and this
1303 * actually getting called.
1304 */
1305 if (!delivery_enabled)
1306 return;
1307
Johannes Berg47086fc2011-09-29 16:04:33 +02001308 switch (sta->sta.max_sp) {
1309 case 1:
1310 n_frames = 2;
1311 break;
1312 case 2:
1313 n_frames = 4;
1314 break;
1315 case 3:
1316 n_frames = 6;
1317 break;
1318 case 0:
1319 /* XXX: what is a good value? */
1320 n_frames = 8;
1321 break;
Johannes Bergaf818582009-11-06 11:35:50 +01001322 }
Johannes Bergaf818582009-11-06 11:35:50 +01001323
Johannes Berg47086fc2011-09-29 16:04:33 +02001324 ieee80211_sta_ps_deliver_response(sta, n_frames, ~delivery_enabled,
1325 IEEE80211_FRAME_RELEASE_UAPSD);
Johannes Bergaf818582009-11-06 11:35:50 +01001326}
1327
1328void ieee80211_sta_block_awake(struct ieee80211_hw *hw,
1329 struct ieee80211_sta *pubsta, bool block)
1330{
1331 struct sta_info *sta = container_of(pubsta, struct sta_info, sta);
1332
Johannes Bergb5878a22010-04-07 16:48:40 +02001333 trace_api_sta_block_awake(sta->local, pubsta, block);
1334
Johannes Bergaf818582009-11-06 11:35:50 +01001335 if (block)
Johannes Bergc2c98fd2011-09-29 16:04:36 +02001336 set_sta_flag(sta, WLAN_STA_PS_DRIVER);
1337 else if (test_sta_flag(sta, WLAN_STA_PS_DRIVER))
Johannes Bergaf818582009-11-06 11:35:50 +01001338 ieee80211_queue_work(hw, &sta->drv_unblock_wk);
1339}
1340EXPORT_SYMBOL(ieee80211_sta_block_awake);
Felix Fietkaudcf55fb2011-04-17 17:45:00 +02001341
Johannes Berg37fbd902011-09-29 16:04:39 +02001342void ieee80211_sta_eosp_irqsafe(struct ieee80211_sta *pubsta)
1343{
1344 struct sta_info *sta = container_of(pubsta, struct sta_info, sta);
1345 struct ieee80211_local *local = sta->local;
1346 struct sk_buff *skb;
1347 struct skb_eosp_msg_data *data;
1348
1349 trace_api_eosp(local, pubsta);
1350
1351 skb = alloc_skb(0, GFP_ATOMIC);
1352 if (!skb) {
1353 /* too bad ... but race is better than loss */
1354 clear_sta_flag(sta, WLAN_STA_SP);
1355 return;
1356 }
1357
1358 data = (void *)skb->cb;
1359 memcpy(data->sta, pubsta->addr, ETH_ALEN);
1360 memcpy(data->iface, sta->sdata->vif.addr, ETH_ALEN);
1361 skb->pkt_type = IEEE80211_EOSP_MSG;
1362 skb_queue_tail(&local->skb_queue, skb);
1363 tasklet_schedule(&local->tasklet);
1364}
1365EXPORT_SYMBOL(ieee80211_sta_eosp_irqsafe);
1366
Johannes Berg042ec452011-09-29 16:04:26 +02001367void ieee80211_sta_set_buffered(struct ieee80211_sta *pubsta,
1368 u8 tid, bool buffered)
Felix Fietkaudcf55fb2011-04-17 17:45:00 +02001369{
1370 struct sta_info *sta = container_of(pubsta, struct sta_info, sta);
1371
Johannes Berg5a306f52012-11-14 23:22:21 +01001372 if (WARN_ON(tid >= IEEE80211_NUM_TIDS))
Johannes Berg042ec452011-09-29 16:04:26 +02001373 return;
1374
Johannes Berg948d8872011-09-29 16:04:29 +02001375 if (buffered)
1376 set_bit(tid, &sta->driver_buffered_tids);
1377 else
1378 clear_bit(tid, &sta->driver_buffered_tids);
1379
Johannes Bergc868cb352011-09-29 16:04:27 +02001380 sta_info_recalc_tim(sta);
Felix Fietkaudcf55fb2011-04-17 17:45:00 +02001381}
Johannes Berg042ec452011-09-29 16:04:26 +02001382EXPORT_SYMBOL(ieee80211_sta_set_buffered);
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001383
Johannes Berg83d5cc02012-01-12 09:31:10 +01001384int sta_info_move_state(struct sta_info *sta,
1385 enum ieee80211_sta_state new_state)
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001386{
Johannes Berg8bf11d82011-12-15 11:17:37 +01001387 might_sleep();
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001388
1389 if (sta->sta_state == new_state)
1390 return 0;
1391
Johannes Bergf09603a2012-01-20 13:55:21 +01001392 /* check allowed transitions first */
1393
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001394 switch (new_state) {
1395 case IEEE80211_STA_NONE:
Johannes Bergf09603a2012-01-20 13:55:21 +01001396 if (sta->sta_state != IEEE80211_STA_AUTH)
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001397 return -EINVAL;
1398 break;
1399 case IEEE80211_STA_AUTH:
Johannes Bergf09603a2012-01-20 13:55:21 +01001400 if (sta->sta_state != IEEE80211_STA_NONE &&
1401 sta->sta_state != IEEE80211_STA_ASSOC)
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001402 return -EINVAL;
1403 break;
1404 case IEEE80211_STA_ASSOC:
Johannes Bergf09603a2012-01-20 13:55:21 +01001405 if (sta->sta_state != IEEE80211_STA_AUTH &&
1406 sta->sta_state != IEEE80211_STA_AUTHORIZED)
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001407 return -EINVAL;
1408 break;
1409 case IEEE80211_STA_AUTHORIZED:
Johannes Bergf09603a2012-01-20 13:55:21 +01001410 if (sta->sta_state != IEEE80211_STA_ASSOC)
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001411 return -EINVAL;
1412 break;
1413 default:
1414 WARN(1, "invalid state %d", new_state);
1415 return -EINVAL;
1416 }
1417
Johannes Bergbdcbd8e2012-06-22 11:29:50 +02001418 sta_dbg(sta->sdata, "moving STA %pM to state %d\n",
1419 sta->sta.addr, new_state);
Johannes Bergf09603a2012-01-20 13:55:21 +01001420
1421 /*
1422 * notify the driver before the actual changes so it can
1423 * fail the transition
1424 */
1425 if (test_sta_flag(sta, WLAN_STA_INSERTED)) {
1426 int err = drv_sta_state(sta->local, sta->sdata, sta,
1427 sta->sta_state, new_state);
1428 if (err)
1429 return err;
1430 }
1431
1432 /* reflect the change in all state variables */
1433
1434 switch (new_state) {
1435 case IEEE80211_STA_NONE:
1436 if (sta->sta_state == IEEE80211_STA_AUTH)
1437 clear_bit(WLAN_STA_AUTH, &sta->_flags);
1438 break;
1439 case IEEE80211_STA_AUTH:
1440 if (sta->sta_state == IEEE80211_STA_NONE)
1441 set_bit(WLAN_STA_AUTH, &sta->_flags);
1442 else if (sta->sta_state == IEEE80211_STA_ASSOC)
1443 clear_bit(WLAN_STA_ASSOC, &sta->_flags);
1444 break;
1445 case IEEE80211_STA_ASSOC:
1446 if (sta->sta_state == IEEE80211_STA_AUTH) {
1447 set_bit(WLAN_STA_ASSOC, &sta->_flags);
1448 } else if (sta->sta_state == IEEE80211_STA_AUTHORIZED) {
Felix Fietkau7e3ed022012-04-23 19:49:03 +02001449 if (sta->sdata->vif.type == NL80211_IFTYPE_AP ||
1450 (sta->sdata->vif.type == NL80211_IFTYPE_AP_VLAN &&
1451 !sta->sdata->u.vlan.sta))
1452 atomic_dec(&sta->sdata->bss->num_mcast_sta);
Johannes Bergf09603a2012-01-20 13:55:21 +01001453 clear_bit(WLAN_STA_AUTHORIZED, &sta->_flags);
1454 }
1455 break;
1456 case IEEE80211_STA_AUTHORIZED:
1457 if (sta->sta_state == IEEE80211_STA_ASSOC) {
Felix Fietkau7e3ed022012-04-23 19:49:03 +02001458 if (sta->sdata->vif.type == NL80211_IFTYPE_AP ||
1459 (sta->sdata->vif.type == NL80211_IFTYPE_AP_VLAN &&
1460 !sta->sdata->u.vlan.sta))
1461 atomic_inc(&sta->sdata->bss->num_mcast_sta);
Johannes Bergf09603a2012-01-20 13:55:21 +01001462 set_bit(WLAN_STA_AUTHORIZED, &sta->_flags);
1463 }
1464 break;
1465 default:
1466 break;
1467 }
1468
Johannes Bergd9a7ddb2011-12-14 12:35:30 +01001469 sta->sta_state = new_state;
1470
1471 return 0;
1472}