Commit | Line | Data |
---|---|---|
0381101f JH |
1 | /* |
2 | BlueZ - Bluetooth protocol stack for Linux | |
3 | Copyright (C) 2010 Nokia Corporation | |
4 | ||
5 | This program is free software; you can redistribute it and/or modify | |
6 | it under the terms of the GNU General Public License version 2 as | |
7 | published by the Free Software Foundation; | |
8 | ||
9 | THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS | |
10 | OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, | |
11 | FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS. | |
12 | IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY | |
13 | CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES | |
14 | WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN | |
15 | ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF | |
16 | OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. | |
17 | ||
18 | ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS, | |
19 | COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS | |
20 | SOFTWARE IS DISCLAIMED. | |
21 | */ | |
22 | ||
23 | /* Bluetooth HCI Management interface */ | |
24 | ||
ca69b795 | 25 | #include <linux/kernel.h> |
72359753 | 26 | #include <linux/uaccess.h> |
0381101f JH |
27 | #include <asm/unaligned.h> |
28 | ||
29 | #include <net/bluetooth/bluetooth.h> | |
30 | #include <net/bluetooth/hci_core.h> | |
31 | #include <net/bluetooth/mgmt.h> | |
32 | ||
02d98129 JH |
33 | #define MGMT_VERSION 0 |
34 | #define MGMT_REVISION 1 | |
35 | ||
2519a1fc AG |
36 | #define INQUIRY_LEN_BREDR 0x08 /* TGAP(100) */ |
37 | ||
eec8d2bc JH |
38 | struct pending_cmd { |
39 | struct list_head list; | |
fc2f4b13 | 40 | u16 opcode; |
eec8d2bc | 41 | int index; |
c68fb7ff | 42 | void *param; |
eec8d2bc | 43 | struct sock *sk; |
e9a416b5 | 44 | void *user_data; |
eec8d2bc JH |
45 | }; |
46 | ||
ca69b795 JH |
47 | /* HCI to MGMT error code conversion table */ |
48 | static u8 mgmt_status_table[] = { | |
49 | MGMT_STATUS_SUCCESS, | |
50 | MGMT_STATUS_UNKNOWN_COMMAND, /* Unknown Command */ | |
51 | MGMT_STATUS_NOT_CONNECTED, /* No Connection */ | |
52 | MGMT_STATUS_FAILED, /* Hardware Failure */ | |
53 | MGMT_STATUS_CONNECT_FAILED, /* Page Timeout */ | |
54 | MGMT_STATUS_AUTH_FAILED, /* Authentication Failed */ | |
55 | MGMT_STATUS_NOT_PAIRED, /* PIN or Key Missing */ | |
56 | MGMT_STATUS_NO_RESOURCES, /* Memory Full */ | |
57 | MGMT_STATUS_TIMEOUT, /* Connection Timeout */ | |
58 | MGMT_STATUS_NO_RESOURCES, /* Max Number of Connections */ | |
59 | MGMT_STATUS_NO_RESOURCES, /* Max Number of SCO Connections */ | |
60 | MGMT_STATUS_ALREADY_CONNECTED, /* ACL Connection Exists */ | |
61 | MGMT_STATUS_BUSY, /* Command Disallowed */ | |
62 | MGMT_STATUS_NO_RESOURCES, /* Rejected Limited Resources */ | |
63 | MGMT_STATUS_REJECTED, /* Rejected Security */ | |
64 | MGMT_STATUS_REJECTED, /* Rejected Personal */ | |
65 | MGMT_STATUS_TIMEOUT, /* Host Timeout */ | |
66 | MGMT_STATUS_NOT_SUPPORTED, /* Unsupported Feature */ | |
67 | MGMT_STATUS_INVALID_PARAMS, /* Invalid Parameters */ | |
68 | MGMT_STATUS_DISCONNECTED, /* OE User Ended Connection */ | |
69 | MGMT_STATUS_NO_RESOURCES, /* OE Low Resources */ | |
70 | MGMT_STATUS_DISCONNECTED, /* OE Power Off */ | |
71 | MGMT_STATUS_DISCONNECTED, /* Connection Terminated */ | |
72 | MGMT_STATUS_BUSY, /* Repeated Attempts */ | |
73 | MGMT_STATUS_REJECTED, /* Pairing Not Allowed */ | |
74 | MGMT_STATUS_FAILED, /* Unknown LMP PDU */ | |
75 | MGMT_STATUS_NOT_SUPPORTED, /* Unsupported Remote Feature */ | |
76 | MGMT_STATUS_REJECTED, /* SCO Offset Rejected */ | |
77 | MGMT_STATUS_REJECTED, /* SCO Interval Rejected */ | |
78 | MGMT_STATUS_REJECTED, /* Air Mode Rejected */ | |
79 | MGMT_STATUS_INVALID_PARAMS, /* Invalid LMP Parameters */ | |
80 | MGMT_STATUS_FAILED, /* Unspecified Error */ | |
81 | MGMT_STATUS_NOT_SUPPORTED, /* Unsupported LMP Parameter Value */ | |
82 | MGMT_STATUS_FAILED, /* Role Change Not Allowed */ | |
83 | MGMT_STATUS_TIMEOUT, /* LMP Response Timeout */ | |
84 | MGMT_STATUS_FAILED, /* LMP Error Transaction Collision */ | |
85 | MGMT_STATUS_FAILED, /* LMP PDU Not Allowed */ | |
86 | MGMT_STATUS_REJECTED, /* Encryption Mode Not Accepted */ | |
87 | MGMT_STATUS_FAILED, /* Unit Link Key Used */ | |
88 | MGMT_STATUS_NOT_SUPPORTED, /* QoS Not Supported */ | |
89 | MGMT_STATUS_TIMEOUT, /* Instant Passed */ | |
90 | MGMT_STATUS_NOT_SUPPORTED, /* Pairing Not Supported */ | |
91 | MGMT_STATUS_FAILED, /* Transaction Collision */ | |
92 | MGMT_STATUS_INVALID_PARAMS, /* Unacceptable Parameter */ | |
93 | MGMT_STATUS_REJECTED, /* QoS Rejected */ | |
94 | MGMT_STATUS_NOT_SUPPORTED, /* Classification Not Supported */ | |
95 | MGMT_STATUS_REJECTED, /* Insufficient Security */ | |
96 | MGMT_STATUS_INVALID_PARAMS, /* Parameter Out Of Range */ | |
97 | MGMT_STATUS_BUSY, /* Role Switch Pending */ | |
98 | MGMT_STATUS_FAILED, /* Slot Violation */ | |
99 | MGMT_STATUS_FAILED, /* Role Switch Failed */ | |
100 | MGMT_STATUS_INVALID_PARAMS, /* EIR Too Large */ | |
101 | MGMT_STATUS_NOT_SUPPORTED, /* Simple Pairing Not Supported */ | |
102 | MGMT_STATUS_BUSY, /* Host Busy Pairing */ | |
103 | MGMT_STATUS_REJECTED, /* Rejected, No Suitable Channel */ | |
104 | MGMT_STATUS_BUSY, /* Controller Busy */ | |
105 | MGMT_STATUS_INVALID_PARAMS, /* Unsuitable Connection Interval */ | |
106 | MGMT_STATUS_TIMEOUT, /* Directed Advertising Timeout */ | |
107 | MGMT_STATUS_AUTH_FAILED, /* Terminated Due to MIC Failure */ | |
108 | MGMT_STATUS_CONNECT_FAILED, /* Connection Establishment Failed */ | |
109 | MGMT_STATUS_CONNECT_FAILED, /* MAC Connection Failed */ | |
110 | }; | |
111 | ||
112 | static u8 mgmt_status(u8 hci_status) | |
113 | { | |
114 | if (hci_status < ARRAY_SIZE(mgmt_status_table)) | |
115 | return mgmt_status_table[hci_status]; | |
116 | ||
117 | return MGMT_STATUS_FAILED; | |
118 | } | |
119 | ||
4e51eae9 | 120 | static int cmd_status(struct sock *sk, u16 index, u16 cmd, u8 status) |
f7b64e69 JH |
121 | { |
122 | struct sk_buff *skb; | |
123 | struct mgmt_hdr *hdr; | |
124 | struct mgmt_ev_cmd_status *ev; | |
56b7d137 | 125 | int err; |
f7b64e69 | 126 | |
34eb525c | 127 | BT_DBG("sock %p, index %u, cmd %u, status %u", sk, index, cmd, status); |
f7b64e69 JH |
128 | |
129 | skb = alloc_skb(sizeof(*hdr) + sizeof(*ev), GFP_ATOMIC); | |
130 | if (!skb) | |
131 | return -ENOMEM; | |
132 | ||
133 | hdr = (void *) skb_put(skb, sizeof(*hdr)); | |
134 | ||
135 | hdr->opcode = cpu_to_le16(MGMT_EV_CMD_STATUS); | |
4e51eae9 | 136 | hdr->index = cpu_to_le16(index); |
f7b64e69 JH |
137 | hdr->len = cpu_to_le16(sizeof(*ev)); |
138 | ||
139 | ev = (void *) skb_put(skb, sizeof(*ev)); | |
140 | ev->status = status; | |
141 | put_unaligned_le16(cmd, &ev->opcode); | |
142 | ||
56b7d137 GP |
143 | err = sock_queue_rcv_skb(sk, skb); |
144 | if (err < 0) | |
f7b64e69 JH |
145 | kfree_skb(skb); |
146 | ||
56b7d137 | 147 | return err; |
f7b64e69 JH |
148 | } |
149 | ||
4e51eae9 SJ |
150 | static int cmd_complete(struct sock *sk, u16 index, u16 cmd, void *rp, |
151 | size_t rp_len) | |
02d98129 JH |
152 | { |
153 | struct sk_buff *skb; | |
154 | struct mgmt_hdr *hdr; | |
155 | struct mgmt_ev_cmd_complete *ev; | |
56b7d137 | 156 | int err; |
02d98129 JH |
157 | |
158 | BT_DBG("sock %p", sk); | |
159 | ||
a38528f1 | 160 | skb = alloc_skb(sizeof(*hdr) + sizeof(*ev) + rp_len, GFP_ATOMIC); |
02d98129 JH |
161 | if (!skb) |
162 | return -ENOMEM; | |
163 | ||
164 | hdr = (void *) skb_put(skb, sizeof(*hdr)); | |
02d98129 | 165 | |
a38528f1 | 166 | hdr->opcode = cpu_to_le16(MGMT_EV_CMD_COMPLETE); |
4e51eae9 | 167 | hdr->index = cpu_to_le16(index); |
a38528f1 | 168 | hdr->len = cpu_to_le16(sizeof(*ev) + rp_len); |
02d98129 | 169 | |
a38528f1 JH |
170 | ev = (void *) skb_put(skb, sizeof(*ev) + rp_len); |
171 | put_unaligned_le16(cmd, &ev->opcode); | |
8020c16a SJ |
172 | |
173 | if (rp) | |
174 | memcpy(ev->data, rp, rp_len); | |
02d98129 | 175 | |
56b7d137 GP |
176 | err = sock_queue_rcv_skb(sk, skb); |
177 | if (err < 0) | |
02d98129 JH |
178 | kfree_skb(skb); |
179 | ||
56b7d137 | 180 | return err;; |
02d98129 JH |
181 | } |
182 | ||
a38528f1 JH |
183 | static int read_version(struct sock *sk) |
184 | { | |
185 | struct mgmt_rp_read_version rp; | |
186 | ||
187 | BT_DBG("sock %p", sk); | |
188 | ||
189 | rp.version = MGMT_VERSION; | |
190 | put_unaligned_le16(MGMT_REVISION, &rp.revision); | |
191 | ||
4e51eae9 SJ |
192 | return cmd_complete(sk, MGMT_INDEX_NONE, MGMT_OP_READ_VERSION, &rp, |
193 | sizeof(rp)); | |
a38528f1 JH |
194 | } |
195 | ||
faba42eb JH |
196 | static int read_index_list(struct sock *sk) |
197 | { | |
faba42eb JH |
198 | struct mgmt_rp_read_index_list *rp; |
199 | struct list_head *p; | |
8035ded4 | 200 | struct hci_dev *d; |
a38528f1 | 201 | size_t rp_len; |
faba42eb | 202 | u16 count; |
a38528f1 | 203 | int i, err; |
faba42eb JH |
204 | |
205 | BT_DBG("sock %p", sk); | |
206 | ||
207 | read_lock(&hci_dev_list_lock); | |
208 | ||
209 | count = 0; | |
210 | list_for_each(p, &hci_dev_list) { | |
211 | count++; | |
212 | } | |
213 | ||
a38528f1 JH |
214 | rp_len = sizeof(*rp) + (2 * count); |
215 | rp = kmalloc(rp_len, GFP_ATOMIC); | |
216 | if (!rp) { | |
b2c60d42 | 217 | read_unlock(&hci_dev_list_lock); |
faba42eb | 218 | return -ENOMEM; |
b2c60d42 | 219 | } |
faba42eb | 220 | |
faba42eb JH |
221 | put_unaligned_le16(count, &rp->num_controllers); |
222 | ||
223 | i = 0; | |
8035ded4 | 224 | list_for_each_entry(d, &hci_dev_list, list) { |
3243553f | 225 | if (test_and_clear_bit(HCI_AUTO_OFF, &d->flags)) |
e0f9309f | 226 | cancel_delayed_work(&d->power_off); |
ab81cbf9 JH |
227 | |
228 | if (test_bit(HCI_SETUP, &d->flags)) | |
229 | continue; | |
230 | ||
faba42eb JH |
231 | put_unaligned_le16(d->id, &rp->index[i++]); |
232 | BT_DBG("Added hci%u", d->id); | |
233 | } | |
234 | ||
235 | read_unlock(&hci_dev_list_lock); | |
236 | ||
4e51eae9 SJ |
237 | err = cmd_complete(sk, MGMT_INDEX_NONE, MGMT_OP_READ_INDEX_LIST, rp, |
238 | rp_len); | |
faba42eb | 239 | |
a38528f1 JH |
240 | kfree(rp); |
241 | ||
242 | return err; | |
faba42eb JH |
243 | } |
244 | ||
4e51eae9 | 245 | static int read_controller_info(struct sock *sk, u16 index) |
0381101f | 246 | { |
a38528f1 | 247 | struct mgmt_rp_read_info rp; |
f7b64e69 | 248 | struct hci_dev *hdev; |
0381101f | 249 | |
4e51eae9 | 250 | BT_DBG("sock %p hci%u", sk, index); |
f7b64e69 | 251 | |
4e51eae9 | 252 | hdev = hci_dev_get(index); |
a38528f1 | 253 | if (!hdev) |
ca69b795 JH |
254 | return cmd_status(sk, index, MGMT_OP_READ_INFO, |
255 | MGMT_STATUS_INVALID_PARAMS); | |
f7b64e69 | 256 | |
3243553f JH |
257 | if (test_and_clear_bit(HCI_AUTO_OFF, &hdev->flags)) |
258 | cancel_delayed_work_sync(&hdev->power_off); | |
ab81cbf9 | 259 | |
8c156c32 | 260 | hci_dev_lock_bh(hdev); |
f7b64e69 | 261 | |
ebc99feb JH |
262 | set_bit(HCI_MGMT, &hdev->flags); |
263 | ||
dc4fe30b JH |
264 | memset(&rp, 0, sizeof(rp)); |
265 | ||
a38528f1 | 266 | rp.type = hdev->dev_type; |
f7b64e69 | 267 | |
a38528f1 JH |
268 | rp.powered = test_bit(HCI_UP, &hdev->flags); |
269 | rp.connectable = test_bit(HCI_PSCAN, &hdev->flags); | |
270 | rp.discoverable = test_bit(HCI_ISCAN, &hdev->flags); | |
271 | rp.pairable = test_bit(HCI_PSCAN, &hdev->flags); | |
f7b64e69 JH |
272 | |
273 | if (test_bit(HCI_AUTH, &hdev->flags)) | |
a38528f1 | 274 | rp.sec_mode = 3; |
f7b64e69 | 275 | else if (hdev->ssp_mode > 0) |
a38528f1 | 276 | rp.sec_mode = 4; |
f7b64e69 | 277 | else |
a38528f1 | 278 | rp.sec_mode = 2; |
f7b64e69 | 279 | |
a38528f1 JH |
280 | bacpy(&rp.bdaddr, &hdev->bdaddr); |
281 | memcpy(rp.features, hdev->features, 8); | |
282 | memcpy(rp.dev_class, hdev->dev_class, 3); | |
283 | put_unaligned_le16(hdev->manufacturer, &rp.manufacturer); | |
284 | rp.hci_ver = hdev->hci_ver; | |
285 | put_unaligned_le16(hdev->hci_rev, &rp.hci_rev); | |
f7b64e69 | 286 | |
dc4fe30b JH |
287 | memcpy(rp.name, hdev->dev_name, sizeof(hdev->dev_name)); |
288 | ||
8c156c32 | 289 | hci_dev_unlock_bh(hdev); |
f7b64e69 | 290 | hci_dev_put(hdev); |
0381101f | 291 | |
4e51eae9 | 292 | return cmd_complete(sk, index, MGMT_OP_READ_INFO, &rp, sizeof(rp)); |
0381101f JH |
293 | } |
294 | ||
eec8d2bc JH |
295 | static void mgmt_pending_free(struct pending_cmd *cmd) |
296 | { | |
297 | sock_put(cmd->sk); | |
c68fb7ff | 298 | kfree(cmd->param); |
eec8d2bc JH |
299 | kfree(cmd); |
300 | } | |
301 | ||
366a0336 | 302 | static struct pending_cmd *mgmt_pending_add(struct sock *sk, u16 opcode, |
2e58ef3e JH |
303 | struct hci_dev *hdev, |
304 | void *data, u16 len) | |
eec8d2bc JH |
305 | { |
306 | struct pending_cmd *cmd; | |
307 | ||
308 | cmd = kmalloc(sizeof(*cmd), GFP_ATOMIC); | |
309 | if (!cmd) | |
366a0336 | 310 | return NULL; |
eec8d2bc JH |
311 | |
312 | cmd->opcode = opcode; | |
2e58ef3e | 313 | cmd->index = hdev->id; |
eec8d2bc | 314 | |
c68fb7ff SJ |
315 | cmd->param = kmalloc(len, GFP_ATOMIC); |
316 | if (!cmd->param) { | |
eec8d2bc | 317 | kfree(cmd); |
366a0336 | 318 | return NULL; |
eec8d2bc JH |
319 | } |
320 | ||
8fce6357 SJ |
321 | if (data) |
322 | memcpy(cmd->param, data, len); | |
eec8d2bc JH |
323 | |
324 | cmd->sk = sk; | |
325 | sock_hold(sk); | |
326 | ||
2e58ef3e | 327 | list_add(&cmd->list, &hdev->mgmt_pending); |
eec8d2bc | 328 | |
366a0336 | 329 | return cmd; |
eec8d2bc JH |
330 | } |
331 | ||
744cf19e | 332 | static void mgmt_pending_foreach(u16 opcode, struct hci_dev *hdev, |
eec8d2bc JH |
333 | void (*cb)(struct pending_cmd *cmd, void *data), |
334 | void *data) | |
335 | { | |
336 | struct list_head *p, *n; | |
337 | ||
2e58ef3e | 338 | list_for_each_safe(p, n, &hdev->mgmt_pending) { |
eec8d2bc JH |
339 | struct pending_cmd *cmd; |
340 | ||
341 | cmd = list_entry(p, struct pending_cmd, list); | |
342 | ||
b24752fe | 343 | if (opcode > 0 && cmd->opcode != opcode) |
eec8d2bc JH |
344 | continue; |
345 | ||
eec8d2bc JH |
346 | cb(cmd, data); |
347 | } | |
348 | } | |
349 | ||
2e58ef3e | 350 | static struct pending_cmd *mgmt_pending_find(u16 opcode, struct hci_dev *hdev) |
eec8d2bc | 351 | { |
8035ded4 | 352 | struct pending_cmd *cmd; |
eec8d2bc | 353 | |
2e58ef3e | 354 | list_for_each_entry(cmd, &hdev->mgmt_pending, list) { |
2aeabcbe JH |
355 | if (cmd->opcode == opcode) |
356 | return cmd; | |
eec8d2bc JH |
357 | } |
358 | ||
359 | return NULL; | |
360 | } | |
361 | ||
a664b5bc | 362 | static void mgmt_pending_remove(struct pending_cmd *cmd) |
73f22f62 | 363 | { |
73f22f62 JH |
364 | list_del(&cmd->list); |
365 | mgmt_pending_free(cmd); | |
366 | } | |
367 | ||
8680570b JH |
368 | static int send_mode_rsp(struct sock *sk, u16 opcode, u16 index, u8 val) |
369 | { | |
370 | struct mgmt_mode rp; | |
371 | ||
372 | rp.val = val; | |
373 | ||
374 | return cmd_complete(sk, index, opcode, &rp, sizeof(rp)); | |
375 | } | |
376 | ||
4e51eae9 | 377 | static int set_powered(struct sock *sk, u16 index, unsigned char *data, u16 len) |
eec8d2bc | 378 | { |
72a734ec | 379 | struct mgmt_mode *cp; |
eec8d2bc | 380 | struct hci_dev *hdev; |
366a0336 | 381 | struct pending_cmd *cmd; |
366a0336 | 382 | int err, up; |
eec8d2bc JH |
383 | |
384 | cp = (void *) data; | |
eec8d2bc | 385 | |
4e51eae9 | 386 | BT_DBG("request for hci%u", index); |
eec8d2bc | 387 | |
bdce7baf | 388 | if (len != sizeof(*cp)) |
ca69b795 JH |
389 | return cmd_status(sk, index, MGMT_OP_SET_POWERED, |
390 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 391 | |
4e51eae9 | 392 | hdev = hci_dev_get(index); |
eec8d2bc | 393 | if (!hdev) |
ca69b795 JH |
394 | return cmd_status(sk, index, MGMT_OP_SET_POWERED, |
395 | MGMT_STATUS_INVALID_PARAMS); | |
eec8d2bc | 396 | |
8c156c32 | 397 | hci_dev_lock_bh(hdev); |
eec8d2bc JH |
398 | |
399 | up = test_bit(HCI_UP, &hdev->flags); | |
72a734ec | 400 | if ((cp->val && up) || (!cp->val && !up)) { |
8680570b | 401 | err = send_mode_rsp(sk, index, MGMT_OP_SET_POWERED, cp->val); |
eec8d2bc JH |
402 | goto failed; |
403 | } | |
404 | ||
2e58ef3e | 405 | if (mgmt_pending_find(MGMT_OP_SET_POWERED, hdev)) { |
ca69b795 JH |
406 | err = cmd_status(sk, index, MGMT_OP_SET_POWERED, |
407 | MGMT_STATUS_BUSY); | |
eec8d2bc JH |
408 | goto failed; |
409 | } | |
410 | ||
2e58ef3e | 411 | cmd = mgmt_pending_add(sk, MGMT_OP_SET_POWERED, hdev, data, len); |
366a0336 JH |
412 | if (!cmd) { |
413 | err = -ENOMEM; | |
eec8d2bc | 414 | goto failed; |
366a0336 | 415 | } |
eec8d2bc | 416 | |
72a734ec | 417 | if (cp->val) |
eec8d2bc JH |
418 | queue_work(hdev->workqueue, &hdev->power_on); |
419 | else | |
3243553f | 420 | queue_work(hdev->workqueue, &hdev->power_off.work); |
eec8d2bc | 421 | |
366a0336 | 422 | err = 0; |
eec8d2bc JH |
423 | |
424 | failed: | |
8c156c32 | 425 | hci_dev_unlock_bh(hdev); |
eec8d2bc | 426 | hci_dev_put(hdev); |
366a0336 | 427 | return err; |
eec8d2bc JH |
428 | } |
429 | ||
4e51eae9 SJ |
430 | static int set_discoverable(struct sock *sk, u16 index, unsigned char *data, |
431 | u16 len) | |
73f22f62 | 432 | { |
16ab91ab | 433 | struct mgmt_cp_set_discoverable *cp; |
73f22f62 | 434 | struct hci_dev *hdev; |
366a0336 | 435 | struct pending_cmd *cmd; |
73f22f62 JH |
436 | u8 scan; |
437 | int err; | |
438 | ||
439 | cp = (void *) data; | |
73f22f62 | 440 | |
4e51eae9 | 441 | BT_DBG("request for hci%u", index); |
73f22f62 | 442 | |
bdce7baf | 443 | if (len != sizeof(*cp)) |
ca69b795 JH |
444 | return cmd_status(sk, index, MGMT_OP_SET_DISCOVERABLE, |
445 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 446 | |
4e51eae9 | 447 | hdev = hci_dev_get(index); |
73f22f62 | 448 | if (!hdev) |
ca69b795 JH |
449 | return cmd_status(sk, index, MGMT_OP_SET_DISCOVERABLE, |
450 | MGMT_STATUS_INVALID_PARAMS); | |
73f22f62 | 451 | |
8c156c32 | 452 | hci_dev_lock_bh(hdev); |
73f22f62 JH |
453 | |
454 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
ca69b795 JH |
455 | err = cmd_status(sk, index, MGMT_OP_SET_DISCOVERABLE, |
456 | MGMT_STATUS_NOT_POWERED); | |
73f22f62 JH |
457 | goto failed; |
458 | } | |
459 | ||
2e58ef3e JH |
460 | if (mgmt_pending_find(MGMT_OP_SET_DISCOVERABLE, hdev) || |
461 | mgmt_pending_find(MGMT_OP_SET_CONNECTABLE, hdev)) { | |
ca69b795 JH |
462 | err = cmd_status(sk, index, MGMT_OP_SET_DISCOVERABLE, |
463 | MGMT_STATUS_BUSY); | |
73f22f62 JH |
464 | goto failed; |
465 | } | |
466 | ||
72a734ec | 467 | if (cp->val == test_bit(HCI_ISCAN, &hdev->flags) && |
73f22f62 | 468 | test_bit(HCI_PSCAN, &hdev->flags)) { |
8680570b JH |
469 | err = send_mode_rsp(sk, index, MGMT_OP_SET_DISCOVERABLE, |
470 | cp->val); | |
73f22f62 JH |
471 | goto failed; |
472 | } | |
473 | ||
2e58ef3e | 474 | cmd = mgmt_pending_add(sk, MGMT_OP_SET_DISCOVERABLE, hdev, data, len); |
366a0336 JH |
475 | if (!cmd) { |
476 | err = -ENOMEM; | |
73f22f62 | 477 | goto failed; |
366a0336 | 478 | } |
73f22f62 JH |
479 | |
480 | scan = SCAN_PAGE; | |
481 | ||
72a734ec | 482 | if (cp->val) |
73f22f62 | 483 | scan |= SCAN_INQUIRY; |
16ab91ab | 484 | else |
e0f9309f | 485 | cancel_delayed_work(&hdev->discov_off); |
73f22f62 JH |
486 | |
487 | err = hci_send_cmd(hdev, HCI_OP_WRITE_SCAN_ENABLE, 1, &scan); | |
488 | if (err < 0) | |
a664b5bc | 489 | mgmt_pending_remove(cmd); |
73f22f62 | 490 | |
16ab91ab JH |
491 | if (cp->val) |
492 | hdev->discov_timeout = get_unaligned_le16(&cp->timeout); | |
493 | ||
73f22f62 | 494 | failed: |
8c156c32 | 495 | hci_dev_unlock_bh(hdev); |
73f22f62 JH |
496 | hci_dev_put(hdev); |
497 | ||
498 | return err; | |
499 | } | |
500 | ||
4e51eae9 SJ |
501 | static int set_connectable(struct sock *sk, u16 index, unsigned char *data, |
502 | u16 len) | |
9fbcbb45 | 503 | { |
72a734ec | 504 | struct mgmt_mode *cp; |
9fbcbb45 | 505 | struct hci_dev *hdev; |
366a0336 | 506 | struct pending_cmd *cmd; |
9fbcbb45 JH |
507 | u8 scan; |
508 | int err; | |
509 | ||
510 | cp = (void *) data; | |
9fbcbb45 | 511 | |
4e51eae9 | 512 | BT_DBG("request for hci%u", index); |
9fbcbb45 | 513 | |
bdce7baf | 514 | if (len != sizeof(*cp)) |
ca69b795 JH |
515 | return cmd_status(sk, index, MGMT_OP_SET_CONNECTABLE, |
516 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 517 | |
4e51eae9 | 518 | hdev = hci_dev_get(index); |
9fbcbb45 | 519 | if (!hdev) |
ca69b795 JH |
520 | return cmd_status(sk, index, MGMT_OP_SET_CONNECTABLE, |
521 | MGMT_STATUS_INVALID_PARAMS); | |
9fbcbb45 | 522 | |
8c156c32 | 523 | hci_dev_lock_bh(hdev); |
9fbcbb45 JH |
524 | |
525 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
ca69b795 JH |
526 | err = cmd_status(sk, index, MGMT_OP_SET_CONNECTABLE, |
527 | MGMT_STATUS_NOT_POWERED); | |
9fbcbb45 JH |
528 | goto failed; |
529 | } | |
530 | ||
2e58ef3e JH |
531 | if (mgmt_pending_find(MGMT_OP_SET_DISCOVERABLE, hdev) || |
532 | mgmt_pending_find(MGMT_OP_SET_CONNECTABLE, hdev)) { | |
ca69b795 JH |
533 | err = cmd_status(sk, index, MGMT_OP_SET_CONNECTABLE, |
534 | MGMT_STATUS_BUSY); | |
9fbcbb45 JH |
535 | goto failed; |
536 | } | |
537 | ||
72a734ec | 538 | if (cp->val == test_bit(HCI_PSCAN, &hdev->flags)) { |
8680570b JH |
539 | err = send_mode_rsp(sk, index, MGMT_OP_SET_CONNECTABLE, |
540 | cp->val); | |
9fbcbb45 JH |
541 | goto failed; |
542 | } | |
543 | ||
2e58ef3e | 544 | cmd = mgmt_pending_add(sk, MGMT_OP_SET_CONNECTABLE, hdev, data, len); |
366a0336 JH |
545 | if (!cmd) { |
546 | err = -ENOMEM; | |
9fbcbb45 | 547 | goto failed; |
366a0336 | 548 | } |
9fbcbb45 | 549 | |
72a734ec | 550 | if (cp->val) |
9fbcbb45 JH |
551 | scan = SCAN_PAGE; |
552 | else | |
553 | scan = 0; | |
554 | ||
555 | err = hci_send_cmd(hdev, HCI_OP_WRITE_SCAN_ENABLE, 1, &scan); | |
556 | if (err < 0) | |
a664b5bc | 557 | mgmt_pending_remove(cmd); |
9fbcbb45 JH |
558 | |
559 | failed: | |
8c156c32 | 560 | hci_dev_unlock_bh(hdev); |
9fbcbb45 JH |
561 | hci_dev_put(hdev); |
562 | ||
563 | return err; | |
564 | } | |
565 | ||
744cf19e JH |
566 | static int mgmt_event(u16 event, struct hci_dev *hdev, void *data, |
567 | u16 data_len, struct sock *skip_sk) | |
c542a06c JH |
568 | { |
569 | struct sk_buff *skb; | |
570 | struct mgmt_hdr *hdr; | |
571 | ||
572 | skb = alloc_skb(sizeof(*hdr) + data_len, GFP_ATOMIC); | |
573 | if (!skb) | |
574 | return -ENOMEM; | |
575 | ||
576 | bt_cb(skb)->channel = HCI_CHANNEL_CONTROL; | |
577 | ||
578 | hdr = (void *) skb_put(skb, sizeof(*hdr)); | |
579 | hdr->opcode = cpu_to_le16(event); | |
744cf19e JH |
580 | if (hdev) |
581 | hdr->index = cpu_to_le16(hdev->id); | |
582 | else | |
583 | hdr->index = cpu_to_le16(MGMT_INDEX_NONE); | |
c542a06c JH |
584 | hdr->len = cpu_to_le16(data_len); |
585 | ||
4e51eae9 SJ |
586 | if (data) |
587 | memcpy(skb_put(skb, data_len), data, data_len); | |
c542a06c JH |
588 | |
589 | hci_send_to_sock(NULL, skb, skip_sk); | |
590 | kfree_skb(skb); | |
591 | ||
592 | return 0; | |
593 | } | |
594 | ||
4e51eae9 SJ |
595 | static int set_pairable(struct sock *sk, u16 index, unsigned char *data, |
596 | u16 len) | |
c542a06c JH |
597 | { |
598 | struct mgmt_mode *cp, ev; | |
599 | struct hci_dev *hdev; | |
c542a06c JH |
600 | int err; |
601 | ||
602 | cp = (void *) data; | |
c542a06c | 603 | |
4e51eae9 | 604 | BT_DBG("request for hci%u", index); |
c542a06c | 605 | |
bdce7baf | 606 | if (len != sizeof(*cp)) |
ca69b795 JH |
607 | return cmd_status(sk, index, MGMT_OP_SET_PAIRABLE, |
608 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 609 | |
4e51eae9 | 610 | hdev = hci_dev_get(index); |
c542a06c | 611 | if (!hdev) |
ca69b795 JH |
612 | return cmd_status(sk, index, MGMT_OP_SET_PAIRABLE, |
613 | MGMT_STATUS_INVALID_PARAMS); | |
c542a06c | 614 | |
8c156c32 | 615 | hci_dev_lock_bh(hdev); |
c542a06c JH |
616 | |
617 | if (cp->val) | |
618 | set_bit(HCI_PAIRABLE, &hdev->flags); | |
619 | else | |
620 | clear_bit(HCI_PAIRABLE, &hdev->flags); | |
621 | ||
4e51eae9 | 622 | err = send_mode_rsp(sk, MGMT_OP_SET_PAIRABLE, index, cp->val); |
c542a06c JH |
623 | if (err < 0) |
624 | goto failed; | |
625 | ||
c542a06c JH |
626 | ev.val = cp->val; |
627 | ||
744cf19e | 628 | err = mgmt_event(MGMT_EV_PAIRABLE, hdev, &ev, sizeof(ev), sk); |
c542a06c JH |
629 | |
630 | failed: | |
8c156c32 | 631 | hci_dev_unlock_bh(hdev); |
c542a06c JH |
632 | hci_dev_put(hdev); |
633 | ||
634 | return err; | |
635 | } | |
636 | ||
80a1e1db JH |
637 | #define EIR_FLAGS 0x01 /* flags */ |
638 | #define EIR_UUID16_SOME 0x02 /* 16-bit UUID, more available */ | |
639 | #define EIR_UUID16_ALL 0x03 /* 16-bit UUID, all listed */ | |
640 | #define EIR_UUID32_SOME 0x04 /* 32-bit UUID, more available */ | |
641 | #define EIR_UUID32_ALL 0x05 /* 32-bit UUID, all listed */ | |
642 | #define EIR_UUID128_SOME 0x06 /* 128-bit UUID, more available */ | |
643 | #define EIR_UUID128_ALL 0x07 /* 128-bit UUID, all listed */ | |
644 | #define EIR_NAME_SHORT 0x08 /* shortened local name */ | |
645 | #define EIR_NAME_COMPLETE 0x09 /* complete local name */ | |
646 | #define EIR_TX_POWER 0x0A /* transmit power level */ | |
647 | #define EIR_DEVICE_ID 0x10 /* device ID */ | |
648 | ||
649 | #define PNP_INFO_SVCLASS_ID 0x1200 | |
650 | ||
651 | static u8 bluetooth_base_uuid[] = { | |
652 | 0xFB, 0x34, 0x9B, 0x5F, 0x80, 0x00, 0x00, 0x80, | |
653 | 0x00, 0x10, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, | |
654 | }; | |
655 | ||
656 | static u16 get_uuid16(u8 *uuid128) | |
657 | { | |
658 | u32 val; | |
659 | int i; | |
660 | ||
661 | for (i = 0; i < 12; i++) { | |
662 | if (bluetooth_base_uuid[i] != uuid128[i]) | |
663 | return 0; | |
664 | } | |
665 | ||
666 | memcpy(&val, &uuid128[12], 4); | |
667 | ||
668 | val = le32_to_cpu(val); | |
669 | if (val > 0xffff) | |
670 | return 0; | |
671 | ||
672 | return (u16) val; | |
673 | } | |
674 | ||
675 | static void create_eir(struct hci_dev *hdev, u8 *data) | |
676 | { | |
677 | u8 *ptr = data; | |
678 | u16 eir_len = 0; | |
679 | u16 uuid16_list[HCI_MAX_EIR_LENGTH / sizeof(u16)]; | |
680 | int i, truncated = 0; | |
8035ded4 | 681 | struct bt_uuid *uuid; |
80a1e1db JH |
682 | size_t name_len; |
683 | ||
684 | name_len = strlen(hdev->dev_name); | |
685 | ||
686 | if (name_len > 0) { | |
687 | /* EIR Data type */ | |
688 | if (name_len > 48) { | |
689 | name_len = 48; | |
690 | ptr[1] = EIR_NAME_SHORT; | |
691 | } else | |
692 | ptr[1] = EIR_NAME_COMPLETE; | |
693 | ||
694 | /* EIR Data length */ | |
695 | ptr[0] = name_len + 1; | |
696 | ||
697 | memcpy(ptr + 2, hdev->dev_name, name_len); | |
698 | ||
699 | eir_len += (name_len + 2); | |
700 | ptr += (name_len + 2); | |
701 | } | |
702 | ||
703 | memset(uuid16_list, 0, sizeof(uuid16_list)); | |
704 | ||
705 | /* Group all UUID16 types */ | |
8035ded4 | 706 | list_for_each_entry(uuid, &hdev->uuids, list) { |
80a1e1db JH |
707 | u16 uuid16; |
708 | ||
709 | uuid16 = get_uuid16(uuid->uuid); | |
710 | if (uuid16 == 0) | |
711 | return; | |
712 | ||
713 | if (uuid16 < 0x1100) | |
714 | continue; | |
715 | ||
716 | if (uuid16 == PNP_INFO_SVCLASS_ID) | |
717 | continue; | |
718 | ||
719 | /* Stop if not enough space to put next UUID */ | |
720 | if (eir_len + 2 + sizeof(u16) > HCI_MAX_EIR_LENGTH) { | |
721 | truncated = 1; | |
722 | break; | |
723 | } | |
724 | ||
725 | /* Check for duplicates */ | |
726 | for (i = 0; uuid16_list[i] != 0; i++) | |
727 | if (uuid16_list[i] == uuid16) | |
728 | break; | |
729 | ||
730 | if (uuid16_list[i] == 0) { | |
731 | uuid16_list[i] = uuid16; | |
732 | eir_len += sizeof(u16); | |
733 | } | |
734 | } | |
735 | ||
736 | if (uuid16_list[0] != 0) { | |
737 | u8 *length = ptr; | |
738 | ||
739 | /* EIR Data type */ | |
740 | ptr[1] = truncated ? EIR_UUID16_SOME : EIR_UUID16_ALL; | |
741 | ||
742 | ptr += 2; | |
743 | eir_len += 2; | |
744 | ||
745 | for (i = 0; uuid16_list[i] != 0; i++) { | |
746 | *ptr++ = (uuid16_list[i] & 0x00ff); | |
747 | *ptr++ = (uuid16_list[i] & 0xff00) >> 8; | |
748 | } | |
749 | ||
750 | /* EIR Data length */ | |
751 | *length = (i * sizeof(u16)) + 1; | |
752 | } | |
753 | } | |
754 | ||
755 | static int update_eir(struct hci_dev *hdev) | |
756 | { | |
757 | struct hci_cp_write_eir cp; | |
758 | ||
759 | if (!(hdev->features[6] & LMP_EXT_INQ)) | |
760 | return 0; | |
761 | ||
762 | if (hdev->ssp_mode == 0) | |
763 | return 0; | |
764 | ||
765 | if (test_bit(HCI_SERVICE_CACHE, &hdev->flags)) | |
766 | return 0; | |
767 | ||
768 | memset(&cp, 0, sizeof(cp)); | |
769 | ||
770 | create_eir(hdev, cp.data); | |
771 | ||
772 | if (memcmp(cp.data, hdev->eir, sizeof(cp.data)) == 0) | |
773 | return 0; | |
774 | ||
775 | memcpy(hdev->eir, cp.data, sizeof(cp.data)); | |
776 | ||
777 | return hci_send_cmd(hdev, HCI_OP_WRITE_EIR, sizeof(cp), &cp); | |
778 | } | |
779 | ||
1aff6f09 JH |
780 | static u8 get_service_classes(struct hci_dev *hdev) |
781 | { | |
12dc0743 | 782 | struct bt_uuid *uuid; |
1aff6f09 JH |
783 | u8 val = 0; |
784 | ||
12dc0743 | 785 | list_for_each_entry(uuid, &hdev->uuids, list) |
1aff6f09 | 786 | val |= uuid->svc_hint; |
1aff6f09 JH |
787 | |
788 | return val; | |
789 | } | |
790 | ||
791 | static int update_class(struct hci_dev *hdev) | |
792 | { | |
793 | u8 cod[3]; | |
794 | ||
795 | BT_DBG("%s", hdev->name); | |
796 | ||
797 | if (test_bit(HCI_SERVICE_CACHE, &hdev->flags)) | |
798 | return 0; | |
799 | ||
800 | cod[0] = hdev->minor_class; | |
801 | cod[1] = hdev->major_class; | |
802 | cod[2] = get_service_classes(hdev); | |
803 | ||
804 | if (memcmp(cod, hdev->dev_class, 3) == 0) | |
805 | return 0; | |
806 | ||
807 | return hci_send_cmd(hdev, HCI_OP_WRITE_CLASS_OF_DEV, sizeof(cod), cod); | |
808 | } | |
809 | ||
4e51eae9 | 810 | static int add_uuid(struct sock *sk, u16 index, unsigned char *data, u16 len) |
2aeb9a1a JH |
811 | { |
812 | struct mgmt_cp_add_uuid *cp; | |
813 | struct hci_dev *hdev; | |
814 | struct bt_uuid *uuid; | |
2aeb9a1a JH |
815 | int err; |
816 | ||
817 | cp = (void *) data; | |
2aeb9a1a | 818 | |
4e51eae9 | 819 | BT_DBG("request for hci%u", index); |
2aeb9a1a | 820 | |
bdce7baf | 821 | if (len != sizeof(*cp)) |
ca69b795 JH |
822 | return cmd_status(sk, index, MGMT_OP_ADD_UUID, |
823 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 824 | |
4e51eae9 | 825 | hdev = hci_dev_get(index); |
2aeb9a1a | 826 | if (!hdev) |
ca69b795 JH |
827 | return cmd_status(sk, index, MGMT_OP_ADD_UUID, |
828 | MGMT_STATUS_INVALID_PARAMS); | |
2aeb9a1a | 829 | |
8c156c32 | 830 | hci_dev_lock_bh(hdev); |
2aeb9a1a JH |
831 | |
832 | uuid = kmalloc(sizeof(*uuid), GFP_ATOMIC); | |
833 | if (!uuid) { | |
834 | err = -ENOMEM; | |
835 | goto failed; | |
836 | } | |
837 | ||
838 | memcpy(uuid->uuid, cp->uuid, 16); | |
1aff6f09 | 839 | uuid->svc_hint = cp->svc_hint; |
2aeb9a1a JH |
840 | |
841 | list_add(&uuid->list, &hdev->uuids); | |
842 | ||
1aff6f09 JH |
843 | err = update_class(hdev); |
844 | if (err < 0) | |
845 | goto failed; | |
846 | ||
80a1e1db JH |
847 | err = update_eir(hdev); |
848 | if (err < 0) | |
849 | goto failed; | |
850 | ||
4e51eae9 | 851 | err = cmd_complete(sk, index, MGMT_OP_ADD_UUID, NULL, 0); |
2aeb9a1a JH |
852 | |
853 | failed: | |
8c156c32 | 854 | hci_dev_unlock_bh(hdev); |
2aeb9a1a JH |
855 | hci_dev_put(hdev); |
856 | ||
857 | return err; | |
858 | } | |
859 | ||
4e51eae9 | 860 | static int remove_uuid(struct sock *sk, u16 index, unsigned char *data, u16 len) |
2aeb9a1a JH |
861 | { |
862 | struct list_head *p, *n; | |
779cb850 | 863 | struct mgmt_cp_remove_uuid *cp; |
2aeb9a1a JH |
864 | struct hci_dev *hdev; |
865 | u8 bt_uuid_any[] = { 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0 }; | |
2aeb9a1a JH |
866 | int err, found; |
867 | ||
868 | cp = (void *) data; | |
2aeb9a1a | 869 | |
4e51eae9 | 870 | BT_DBG("request for hci%u", index); |
2aeb9a1a | 871 | |
bdce7baf | 872 | if (len != sizeof(*cp)) |
ca69b795 JH |
873 | return cmd_status(sk, index, MGMT_OP_REMOVE_UUID, |
874 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 875 | |
4e51eae9 | 876 | hdev = hci_dev_get(index); |
2aeb9a1a | 877 | if (!hdev) |
ca69b795 JH |
878 | return cmd_status(sk, index, MGMT_OP_REMOVE_UUID, |
879 | MGMT_STATUS_INVALID_PARAMS); | |
2aeb9a1a | 880 | |
8c156c32 | 881 | hci_dev_lock_bh(hdev); |
2aeb9a1a JH |
882 | |
883 | if (memcmp(cp->uuid, bt_uuid_any, 16) == 0) { | |
884 | err = hci_uuids_clear(hdev); | |
885 | goto unlock; | |
886 | } | |
887 | ||
888 | found = 0; | |
889 | ||
890 | list_for_each_safe(p, n, &hdev->uuids) { | |
891 | struct bt_uuid *match = list_entry(p, struct bt_uuid, list); | |
892 | ||
893 | if (memcmp(match->uuid, cp->uuid, 16) != 0) | |
894 | continue; | |
895 | ||
896 | list_del(&match->list); | |
897 | found++; | |
898 | } | |
899 | ||
900 | if (found == 0) { | |
ca69b795 JH |
901 | err = cmd_status(sk, index, MGMT_OP_REMOVE_UUID, |
902 | MGMT_STATUS_INVALID_PARAMS); | |
2aeb9a1a JH |
903 | goto unlock; |
904 | } | |
905 | ||
1aff6f09 JH |
906 | err = update_class(hdev); |
907 | if (err < 0) | |
908 | goto unlock; | |
909 | ||
80a1e1db JH |
910 | err = update_eir(hdev); |
911 | if (err < 0) | |
912 | goto unlock; | |
913 | ||
4e51eae9 | 914 | err = cmd_complete(sk, index, MGMT_OP_REMOVE_UUID, NULL, 0); |
2aeb9a1a JH |
915 | |
916 | unlock: | |
8c156c32 | 917 | hci_dev_unlock_bh(hdev); |
2aeb9a1a JH |
918 | hci_dev_put(hdev); |
919 | ||
920 | return err; | |
921 | } | |
922 | ||
4e51eae9 SJ |
923 | static int set_dev_class(struct sock *sk, u16 index, unsigned char *data, |
924 | u16 len) | |
1aff6f09 JH |
925 | { |
926 | struct hci_dev *hdev; | |
927 | struct mgmt_cp_set_dev_class *cp; | |
1aff6f09 JH |
928 | int err; |
929 | ||
930 | cp = (void *) data; | |
1aff6f09 | 931 | |
4e51eae9 | 932 | BT_DBG("request for hci%u", index); |
1aff6f09 | 933 | |
bdce7baf | 934 | if (len != sizeof(*cp)) |
ca69b795 JH |
935 | return cmd_status(sk, index, MGMT_OP_SET_DEV_CLASS, |
936 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 937 | |
4e51eae9 | 938 | hdev = hci_dev_get(index); |
1aff6f09 | 939 | if (!hdev) |
ca69b795 JH |
940 | return cmd_status(sk, index, MGMT_OP_SET_DEV_CLASS, |
941 | MGMT_STATUS_INVALID_PARAMS); | |
1aff6f09 | 942 | |
8c156c32 | 943 | hci_dev_lock_bh(hdev); |
1aff6f09 JH |
944 | |
945 | hdev->major_class = cp->major; | |
946 | hdev->minor_class = cp->minor; | |
947 | ||
948 | err = update_class(hdev); | |
949 | ||
950 | if (err == 0) | |
4e51eae9 | 951 | err = cmd_complete(sk, index, MGMT_OP_SET_DEV_CLASS, NULL, 0); |
1aff6f09 | 952 | |
8c156c32 | 953 | hci_dev_unlock_bh(hdev); |
1aff6f09 JH |
954 | hci_dev_put(hdev); |
955 | ||
956 | return err; | |
957 | } | |
958 | ||
4e51eae9 SJ |
959 | static int set_service_cache(struct sock *sk, u16 index, unsigned char *data, |
960 | u16 len) | |
1aff6f09 JH |
961 | { |
962 | struct hci_dev *hdev; | |
963 | struct mgmt_cp_set_service_cache *cp; | |
1aff6f09 JH |
964 | int err; |
965 | ||
966 | cp = (void *) data; | |
1aff6f09 | 967 | |
bdce7baf | 968 | if (len != sizeof(*cp)) |
ca69b795 JH |
969 | return cmd_status(sk, index, MGMT_OP_SET_SERVICE_CACHE, |
970 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 971 | |
4e51eae9 | 972 | hdev = hci_dev_get(index); |
1aff6f09 | 973 | if (!hdev) |
ca69b795 JH |
974 | return cmd_status(sk, index, MGMT_OP_SET_SERVICE_CACHE, |
975 | MGMT_STATUS_INVALID_PARAMS); | |
1aff6f09 | 976 | |
8c156c32 | 977 | hci_dev_lock_bh(hdev); |
1aff6f09 | 978 | |
4e51eae9 | 979 | BT_DBG("hci%u enable %d", index, cp->enable); |
1aff6f09 JH |
980 | |
981 | if (cp->enable) { | |
982 | set_bit(HCI_SERVICE_CACHE, &hdev->flags); | |
983 | err = 0; | |
984 | } else { | |
985 | clear_bit(HCI_SERVICE_CACHE, &hdev->flags); | |
986 | err = update_class(hdev); | |
80a1e1db JH |
987 | if (err == 0) |
988 | err = update_eir(hdev); | |
1aff6f09 JH |
989 | } |
990 | ||
991 | if (err == 0) | |
4e51eae9 SJ |
992 | err = cmd_complete(sk, index, MGMT_OP_SET_SERVICE_CACHE, NULL, |
993 | 0); | |
e5b82e58 GP |
994 | else |
995 | cmd_status(sk, index, MGMT_OP_SET_SERVICE_CACHE, -err); | |
996 | ||
1aff6f09 | 997 | |
8c156c32 | 998 | hci_dev_unlock_bh(hdev); |
1aff6f09 JH |
999 | hci_dev_put(hdev); |
1000 | ||
1001 | return err; | |
1002 | } | |
1003 | ||
86742e1e JH |
1004 | static int load_link_keys(struct sock *sk, u16 index, unsigned char *data, |
1005 | u16 len) | |
55ed8ca1 JH |
1006 | { |
1007 | struct hci_dev *hdev; | |
86742e1e | 1008 | struct mgmt_cp_load_link_keys *cp; |
4e51eae9 | 1009 | u16 key_count, expected_len; |
a492cd52 | 1010 | int i; |
55ed8ca1 JH |
1011 | |
1012 | cp = (void *) data; | |
bdce7baf SJ |
1013 | |
1014 | if (len < sizeof(*cp)) | |
ca69b795 JH |
1015 | return cmd_status(sk, index, MGMT_OP_LOAD_LINK_KEYS, |
1016 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1017 | |
55ed8ca1 JH |
1018 | key_count = get_unaligned_le16(&cp->key_count); |
1019 | ||
86742e1e JH |
1020 | expected_len = sizeof(*cp) + key_count * |
1021 | sizeof(struct mgmt_link_key_info); | |
a492cd52 | 1022 | if (expected_len != len) { |
86742e1e | 1023 | BT_ERR("load_link_keys: expected %u bytes, got %u bytes", |
a492cd52 | 1024 | len, expected_len); |
ca69b795 JH |
1025 | return cmd_status(sk, index, MGMT_OP_LOAD_LINK_KEYS, |
1026 | MGMT_STATUS_INVALID_PARAMS); | |
55ed8ca1 JH |
1027 | } |
1028 | ||
4e51eae9 | 1029 | hdev = hci_dev_get(index); |
55ed8ca1 | 1030 | if (!hdev) |
ca69b795 JH |
1031 | return cmd_status(sk, index, MGMT_OP_LOAD_LINK_KEYS, |
1032 | MGMT_STATUS_INVALID_PARAMS); | |
55ed8ca1 | 1033 | |
4e51eae9 | 1034 | BT_DBG("hci%u debug_keys %u key_count %u", index, cp->debug_keys, |
55ed8ca1 JH |
1035 | key_count); |
1036 | ||
8c156c32 | 1037 | hci_dev_lock_bh(hdev); |
55ed8ca1 JH |
1038 | |
1039 | hci_link_keys_clear(hdev); | |
1040 | ||
1041 | set_bit(HCI_LINK_KEYS, &hdev->flags); | |
1042 | ||
1043 | if (cp->debug_keys) | |
1044 | set_bit(HCI_DEBUG_KEYS, &hdev->flags); | |
1045 | else | |
1046 | clear_bit(HCI_DEBUG_KEYS, &hdev->flags); | |
1047 | ||
a492cd52 | 1048 | for (i = 0; i < key_count; i++) { |
86742e1e | 1049 | struct mgmt_link_key_info *key = &cp->keys[i]; |
55ed8ca1 | 1050 | |
d25e28ab | 1051 | hci_add_link_key(hdev, NULL, 0, &key->bdaddr, key->val, key->type, |
55ed8ca1 JH |
1052 | key->pin_len); |
1053 | } | |
1054 | ||
0e5f875a JH |
1055 | cmd_complete(sk, index, MGMT_OP_LOAD_LINK_KEYS, NULL, 0); |
1056 | ||
8c156c32 | 1057 | hci_dev_unlock_bh(hdev); |
55ed8ca1 JH |
1058 | hci_dev_put(hdev); |
1059 | ||
a492cd52 | 1060 | return 0; |
55ed8ca1 JH |
1061 | } |
1062 | ||
86742e1e JH |
1063 | static int remove_keys(struct sock *sk, u16 index, unsigned char *data, |
1064 | u16 len) | |
55ed8ca1 JH |
1065 | { |
1066 | struct hci_dev *hdev; | |
86742e1e | 1067 | struct mgmt_cp_remove_keys *cp; |
a8a1d19e JH |
1068 | struct mgmt_rp_remove_keys rp; |
1069 | struct hci_cp_disconnect dc; | |
1070 | struct pending_cmd *cmd; | |
55ed8ca1 | 1071 | struct hci_conn *conn; |
55ed8ca1 JH |
1072 | int err; |
1073 | ||
1074 | cp = (void *) data; | |
55ed8ca1 | 1075 | |
bdce7baf | 1076 | if (len != sizeof(*cp)) |
ca69b795 JH |
1077 | return cmd_status(sk, index, MGMT_OP_REMOVE_KEYS, |
1078 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1079 | |
4e51eae9 | 1080 | hdev = hci_dev_get(index); |
55ed8ca1 | 1081 | if (!hdev) |
ca69b795 JH |
1082 | return cmd_status(sk, index, MGMT_OP_REMOVE_KEYS, |
1083 | MGMT_STATUS_INVALID_PARAMS); | |
55ed8ca1 | 1084 | |
8c156c32 | 1085 | hci_dev_lock_bh(hdev); |
55ed8ca1 | 1086 | |
a8a1d19e JH |
1087 | memset(&rp, 0, sizeof(rp)); |
1088 | bacpy(&rp.bdaddr, &cp->bdaddr); | |
ca69b795 | 1089 | rp.status = MGMT_STATUS_FAILED; |
a8a1d19e | 1090 | |
55ed8ca1 | 1091 | err = hci_remove_link_key(hdev, &cp->bdaddr); |
ca69b795 JH |
1092 | if (err < 0) { |
1093 | rp.status = MGMT_STATUS_NOT_PAIRED; | |
55ed8ca1 | 1094 | goto unlock; |
ca69b795 | 1095 | } |
55ed8ca1 | 1096 | |
a8a1d19e JH |
1097 | if (!test_bit(HCI_UP, &hdev->flags) || !cp->disconnect) { |
1098 | err = cmd_complete(sk, index, MGMT_OP_REMOVE_KEYS, &rp, | |
1099 | sizeof(rp)); | |
55ed8ca1 | 1100 | goto unlock; |
a8a1d19e | 1101 | } |
55ed8ca1 JH |
1102 | |
1103 | conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &cp->bdaddr); | |
a8a1d19e JH |
1104 | if (!conn) { |
1105 | err = cmd_complete(sk, index, MGMT_OP_REMOVE_KEYS, &rp, | |
1106 | sizeof(rp)); | |
1107 | goto unlock; | |
1108 | } | |
55ed8ca1 | 1109 | |
a8a1d19e JH |
1110 | cmd = mgmt_pending_add(sk, MGMT_OP_REMOVE_KEYS, hdev, cp, sizeof(*cp)); |
1111 | if (!cmd) { | |
1112 | err = -ENOMEM; | |
1113 | goto unlock; | |
55ed8ca1 JH |
1114 | } |
1115 | ||
a8a1d19e JH |
1116 | put_unaligned_le16(conn->handle, &dc.handle); |
1117 | dc.reason = 0x13; /* Remote User Terminated Connection */ | |
1118 | err = hci_send_cmd(hdev, HCI_OP_DISCONNECT, sizeof(dc), &dc); | |
1119 | if (err < 0) | |
1120 | mgmt_pending_remove(cmd); | |
1121 | ||
55ed8ca1 | 1122 | unlock: |
ca69b795 | 1123 | if (err < 0) |
a8a1d19e JH |
1124 | err = cmd_complete(sk, index, MGMT_OP_REMOVE_KEYS, &rp, |
1125 | sizeof(rp)); | |
8c156c32 | 1126 | hci_dev_unlock_bh(hdev); |
55ed8ca1 JH |
1127 | hci_dev_put(hdev); |
1128 | ||
1129 | return err; | |
1130 | } | |
1131 | ||
4e51eae9 | 1132 | static int disconnect(struct sock *sk, u16 index, unsigned char *data, u16 len) |
8962ee74 JH |
1133 | { |
1134 | struct hci_dev *hdev; | |
1135 | struct mgmt_cp_disconnect *cp; | |
1136 | struct hci_cp_disconnect dc; | |
366a0336 | 1137 | struct pending_cmd *cmd; |
8962ee74 | 1138 | struct hci_conn *conn; |
8962ee74 JH |
1139 | int err; |
1140 | ||
1141 | BT_DBG(""); | |
1142 | ||
1143 | cp = (void *) data; | |
8962ee74 | 1144 | |
bdce7baf | 1145 | if (len != sizeof(*cp)) |
ca69b795 JH |
1146 | return cmd_status(sk, index, MGMT_OP_DISCONNECT, |
1147 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1148 | |
4e51eae9 | 1149 | hdev = hci_dev_get(index); |
8962ee74 | 1150 | if (!hdev) |
ca69b795 JH |
1151 | return cmd_status(sk, index, MGMT_OP_DISCONNECT, |
1152 | MGMT_STATUS_INVALID_PARAMS); | |
8962ee74 | 1153 | |
8c156c32 | 1154 | hci_dev_lock_bh(hdev); |
8962ee74 JH |
1155 | |
1156 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
ca69b795 JH |
1157 | err = cmd_status(sk, index, MGMT_OP_DISCONNECT, |
1158 | MGMT_STATUS_NOT_POWERED); | |
8962ee74 JH |
1159 | goto failed; |
1160 | } | |
1161 | ||
2e58ef3e | 1162 | if (mgmt_pending_find(MGMT_OP_DISCONNECT, hdev)) { |
ca69b795 JH |
1163 | err = cmd_status(sk, index, MGMT_OP_DISCONNECT, |
1164 | MGMT_STATUS_BUSY); | |
8962ee74 JH |
1165 | goto failed; |
1166 | } | |
1167 | ||
1168 | conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &cp->bdaddr); | |
365227e5 VCG |
1169 | if (!conn) |
1170 | conn = hci_conn_hash_lookup_ba(hdev, LE_LINK, &cp->bdaddr); | |
1171 | ||
8962ee74 | 1172 | if (!conn) { |
ca69b795 JH |
1173 | err = cmd_status(sk, index, MGMT_OP_DISCONNECT, |
1174 | MGMT_STATUS_NOT_CONNECTED); | |
8962ee74 JH |
1175 | goto failed; |
1176 | } | |
1177 | ||
2e58ef3e | 1178 | cmd = mgmt_pending_add(sk, MGMT_OP_DISCONNECT, hdev, data, len); |
366a0336 JH |
1179 | if (!cmd) { |
1180 | err = -ENOMEM; | |
8962ee74 | 1181 | goto failed; |
366a0336 | 1182 | } |
8962ee74 JH |
1183 | |
1184 | put_unaligned_le16(conn->handle, &dc.handle); | |
1185 | dc.reason = 0x13; /* Remote User Terminated Connection */ | |
1186 | ||
1187 | err = hci_send_cmd(hdev, HCI_OP_DISCONNECT, sizeof(dc), &dc); | |
1188 | if (err < 0) | |
a664b5bc | 1189 | mgmt_pending_remove(cmd); |
8962ee74 JH |
1190 | |
1191 | failed: | |
8c156c32 | 1192 | hci_dev_unlock_bh(hdev); |
8962ee74 JH |
1193 | hci_dev_put(hdev); |
1194 | ||
1195 | return err; | |
1196 | } | |
1197 | ||
48264f06 | 1198 | static u8 link_to_mgmt(u8 link_type, u8 addr_type) |
4c659c39 JH |
1199 | { |
1200 | switch (link_type) { | |
1201 | case LE_LINK: | |
48264f06 JH |
1202 | switch (addr_type) { |
1203 | case ADDR_LE_DEV_PUBLIC: | |
1204 | return MGMT_ADDR_LE_PUBLIC; | |
1205 | case ADDR_LE_DEV_RANDOM: | |
1206 | return MGMT_ADDR_LE_RANDOM; | |
1207 | default: | |
1208 | return MGMT_ADDR_INVALID; | |
1209 | } | |
4c659c39 JH |
1210 | case ACL_LINK: |
1211 | return MGMT_ADDR_BREDR; | |
1212 | default: | |
1213 | return MGMT_ADDR_INVALID; | |
1214 | } | |
1215 | } | |
1216 | ||
8ce6284e | 1217 | static int get_connections(struct sock *sk, u16 index) |
2784eb41 | 1218 | { |
2784eb41 JH |
1219 | struct mgmt_rp_get_connections *rp; |
1220 | struct hci_dev *hdev; | |
8035ded4 | 1221 | struct hci_conn *c; |
2784eb41 | 1222 | struct list_head *p; |
a38528f1 | 1223 | size_t rp_len; |
4e51eae9 | 1224 | u16 count; |
2784eb41 JH |
1225 | int i, err; |
1226 | ||
1227 | BT_DBG(""); | |
1228 | ||
4e51eae9 | 1229 | hdev = hci_dev_get(index); |
2784eb41 | 1230 | if (!hdev) |
ca69b795 JH |
1231 | return cmd_status(sk, index, MGMT_OP_GET_CONNECTIONS, |
1232 | MGMT_STATUS_INVALID_PARAMS); | |
2784eb41 | 1233 | |
8c156c32 | 1234 | hci_dev_lock_bh(hdev); |
2784eb41 JH |
1235 | |
1236 | count = 0; | |
1237 | list_for_each(p, &hdev->conn_hash.list) { | |
1238 | count++; | |
1239 | } | |
1240 | ||
4c659c39 | 1241 | rp_len = sizeof(*rp) + (count * sizeof(struct mgmt_addr_info)); |
a38528f1 JH |
1242 | rp = kmalloc(rp_len, GFP_ATOMIC); |
1243 | if (!rp) { | |
2784eb41 JH |
1244 | err = -ENOMEM; |
1245 | goto unlock; | |
1246 | } | |
1247 | ||
2784eb41 JH |
1248 | put_unaligned_le16(count, &rp->conn_count); |
1249 | ||
2784eb41 | 1250 | i = 0; |
4c659c39 JH |
1251 | list_for_each_entry(c, &hdev->conn_hash.list, list) { |
1252 | bacpy(&rp->addr[i].bdaddr, &c->dst); | |
48264f06 | 1253 | rp->addr[i].type = link_to_mgmt(c->type, c->dst_type); |
4c659c39 JH |
1254 | if (rp->addr[i].type == MGMT_ADDR_INVALID) |
1255 | continue; | |
1256 | i++; | |
1257 | } | |
1258 | ||
1259 | /* Recalculate length in case of filtered SCO connections, etc */ | |
1260 | rp_len = sizeof(*rp) + (i * sizeof(struct mgmt_addr_info)); | |
2784eb41 | 1261 | |
4e51eae9 | 1262 | err = cmd_complete(sk, index, MGMT_OP_GET_CONNECTIONS, rp, rp_len); |
2784eb41 JH |
1263 | |
1264 | unlock: | |
a38528f1 | 1265 | kfree(rp); |
8c156c32 | 1266 | hci_dev_unlock_bh(hdev); |
2784eb41 JH |
1267 | hci_dev_put(hdev); |
1268 | return err; | |
1269 | } | |
1270 | ||
96d97a67 WR |
1271 | static int send_pin_code_neg_reply(struct sock *sk, u16 index, |
1272 | struct hci_dev *hdev, struct mgmt_cp_pin_code_neg_reply *cp) | |
1273 | { | |
1274 | struct pending_cmd *cmd; | |
1275 | int err; | |
1276 | ||
2e58ef3e | 1277 | cmd = mgmt_pending_add(sk, MGMT_OP_PIN_CODE_NEG_REPLY, hdev, cp, |
96d97a67 WR |
1278 | sizeof(*cp)); |
1279 | if (!cmd) | |
1280 | return -ENOMEM; | |
1281 | ||
1282 | err = hci_send_cmd(hdev, HCI_OP_PIN_CODE_NEG_REPLY, sizeof(cp->bdaddr), | |
1283 | &cp->bdaddr); | |
1284 | if (err < 0) | |
1285 | mgmt_pending_remove(cmd); | |
1286 | ||
1287 | return err; | |
1288 | } | |
1289 | ||
4e51eae9 SJ |
1290 | static int pin_code_reply(struct sock *sk, u16 index, unsigned char *data, |
1291 | u16 len) | |
980e1a53 JH |
1292 | { |
1293 | struct hci_dev *hdev; | |
96d97a67 | 1294 | struct hci_conn *conn; |
980e1a53 | 1295 | struct mgmt_cp_pin_code_reply *cp; |
96d97a67 | 1296 | struct mgmt_cp_pin_code_neg_reply ncp; |
980e1a53 | 1297 | struct hci_cp_pin_code_reply reply; |
366a0336 | 1298 | struct pending_cmd *cmd; |
980e1a53 JH |
1299 | int err; |
1300 | ||
1301 | BT_DBG(""); | |
1302 | ||
1303 | cp = (void *) data; | |
980e1a53 | 1304 | |
bdce7baf | 1305 | if (len != sizeof(*cp)) |
ca69b795 JH |
1306 | return cmd_status(sk, index, MGMT_OP_PIN_CODE_REPLY, |
1307 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1308 | |
4e51eae9 | 1309 | hdev = hci_dev_get(index); |
980e1a53 | 1310 | if (!hdev) |
ca69b795 JH |
1311 | return cmd_status(sk, index, MGMT_OP_PIN_CODE_REPLY, |
1312 | MGMT_STATUS_INVALID_PARAMS); | |
980e1a53 | 1313 | |
8c156c32 | 1314 | hci_dev_lock_bh(hdev); |
980e1a53 JH |
1315 | |
1316 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
ca69b795 JH |
1317 | err = cmd_status(sk, index, MGMT_OP_PIN_CODE_REPLY, |
1318 | MGMT_STATUS_NOT_POWERED); | |
980e1a53 JH |
1319 | goto failed; |
1320 | } | |
1321 | ||
96d97a67 WR |
1322 | conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &cp->bdaddr); |
1323 | if (!conn) { | |
ca69b795 JH |
1324 | err = cmd_status(sk, index, MGMT_OP_PIN_CODE_REPLY, |
1325 | MGMT_STATUS_NOT_CONNECTED); | |
96d97a67 WR |
1326 | goto failed; |
1327 | } | |
1328 | ||
1329 | if (conn->pending_sec_level == BT_SECURITY_HIGH && cp->pin_len != 16) { | |
1330 | bacpy(&ncp.bdaddr, &cp->bdaddr); | |
1331 | ||
1332 | BT_ERR("PIN code is not 16 bytes long"); | |
1333 | ||
1334 | err = send_pin_code_neg_reply(sk, index, hdev, &ncp); | |
1335 | if (err >= 0) | |
1336 | err = cmd_status(sk, index, MGMT_OP_PIN_CODE_REPLY, | |
ca69b795 | 1337 | MGMT_STATUS_INVALID_PARAMS); |
96d97a67 WR |
1338 | |
1339 | goto failed; | |
1340 | } | |
1341 | ||
2e58ef3e | 1342 | cmd = mgmt_pending_add(sk, MGMT_OP_PIN_CODE_REPLY, hdev, data, len); |
366a0336 JH |
1343 | if (!cmd) { |
1344 | err = -ENOMEM; | |
980e1a53 | 1345 | goto failed; |
366a0336 | 1346 | } |
980e1a53 JH |
1347 | |
1348 | bacpy(&reply.bdaddr, &cp->bdaddr); | |
1349 | reply.pin_len = cp->pin_len; | |
24718ca5 | 1350 | memcpy(reply.pin_code, cp->pin_code, sizeof(reply.pin_code)); |
980e1a53 JH |
1351 | |
1352 | err = hci_send_cmd(hdev, HCI_OP_PIN_CODE_REPLY, sizeof(reply), &reply); | |
1353 | if (err < 0) | |
a664b5bc | 1354 | mgmt_pending_remove(cmd); |
980e1a53 JH |
1355 | |
1356 | failed: | |
8c156c32 | 1357 | hci_dev_unlock_bh(hdev); |
980e1a53 JH |
1358 | hci_dev_put(hdev); |
1359 | ||
1360 | return err; | |
1361 | } | |
1362 | ||
4e51eae9 SJ |
1363 | static int pin_code_neg_reply(struct sock *sk, u16 index, unsigned char *data, |
1364 | u16 len) | |
980e1a53 JH |
1365 | { |
1366 | struct hci_dev *hdev; | |
1367 | struct mgmt_cp_pin_code_neg_reply *cp; | |
980e1a53 JH |
1368 | int err; |
1369 | ||
1370 | BT_DBG(""); | |
1371 | ||
1372 | cp = (void *) data; | |
980e1a53 | 1373 | |
bdce7baf SJ |
1374 | if (len != sizeof(*cp)) |
1375 | return cmd_status(sk, index, MGMT_OP_PIN_CODE_NEG_REPLY, | |
ca69b795 | 1376 | MGMT_STATUS_INVALID_PARAMS); |
bdce7baf | 1377 | |
4e51eae9 | 1378 | hdev = hci_dev_get(index); |
980e1a53 | 1379 | if (!hdev) |
4e51eae9 | 1380 | return cmd_status(sk, index, MGMT_OP_PIN_CODE_NEG_REPLY, |
ca69b795 | 1381 | MGMT_STATUS_INVALID_PARAMS); |
980e1a53 | 1382 | |
8c156c32 | 1383 | hci_dev_lock_bh(hdev); |
980e1a53 JH |
1384 | |
1385 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
4e51eae9 | 1386 | err = cmd_status(sk, index, MGMT_OP_PIN_CODE_NEG_REPLY, |
ca69b795 | 1387 | MGMT_STATUS_NOT_POWERED); |
980e1a53 JH |
1388 | goto failed; |
1389 | } | |
1390 | ||
96d97a67 | 1391 | err = send_pin_code_neg_reply(sk, index, hdev, cp); |
980e1a53 JH |
1392 | |
1393 | failed: | |
8c156c32 | 1394 | hci_dev_unlock_bh(hdev); |
980e1a53 JH |
1395 | hci_dev_put(hdev); |
1396 | ||
1397 | return err; | |
1398 | } | |
1399 | ||
4e51eae9 SJ |
1400 | static int set_io_capability(struct sock *sk, u16 index, unsigned char *data, |
1401 | u16 len) | |
17fa4b9d JH |
1402 | { |
1403 | struct hci_dev *hdev; | |
1404 | struct mgmt_cp_set_io_capability *cp; | |
17fa4b9d JH |
1405 | |
1406 | BT_DBG(""); | |
1407 | ||
1408 | cp = (void *) data; | |
17fa4b9d | 1409 | |
bdce7baf | 1410 | if (len != sizeof(*cp)) |
ca69b795 JH |
1411 | return cmd_status(sk, index, MGMT_OP_SET_IO_CAPABILITY, |
1412 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1413 | |
4e51eae9 | 1414 | hdev = hci_dev_get(index); |
17fa4b9d | 1415 | if (!hdev) |
ca69b795 JH |
1416 | return cmd_status(sk, index, MGMT_OP_SET_IO_CAPABILITY, |
1417 | MGMT_STATUS_INVALID_PARAMS); | |
17fa4b9d | 1418 | |
8c156c32 | 1419 | hci_dev_lock_bh(hdev); |
17fa4b9d JH |
1420 | |
1421 | hdev->io_capability = cp->io_capability; | |
1422 | ||
1423 | BT_DBG("%s IO capability set to 0x%02x", hdev->name, | |
b8534e0f | 1424 | hdev->io_capability); |
17fa4b9d | 1425 | |
8c156c32 | 1426 | hci_dev_unlock_bh(hdev); |
17fa4b9d JH |
1427 | hci_dev_put(hdev); |
1428 | ||
4e51eae9 | 1429 | return cmd_complete(sk, index, MGMT_OP_SET_IO_CAPABILITY, NULL, 0); |
17fa4b9d JH |
1430 | } |
1431 | ||
e9a416b5 JH |
1432 | static inline struct pending_cmd *find_pairing(struct hci_conn *conn) |
1433 | { | |
1434 | struct hci_dev *hdev = conn->hdev; | |
8035ded4 | 1435 | struct pending_cmd *cmd; |
e9a416b5 | 1436 | |
2e58ef3e | 1437 | list_for_each_entry(cmd, &hdev->mgmt_pending, list) { |
e9a416b5 JH |
1438 | if (cmd->opcode != MGMT_OP_PAIR_DEVICE) |
1439 | continue; | |
1440 | ||
e9a416b5 JH |
1441 | if (cmd->user_data != conn) |
1442 | continue; | |
1443 | ||
1444 | return cmd; | |
1445 | } | |
1446 | ||
1447 | return NULL; | |
1448 | } | |
1449 | ||
1450 | static void pairing_complete(struct pending_cmd *cmd, u8 status) | |
1451 | { | |
1452 | struct mgmt_rp_pair_device rp; | |
1453 | struct hci_conn *conn = cmd->user_data; | |
1454 | ||
ba4e564f JH |
1455 | bacpy(&rp.addr.bdaddr, &conn->dst); |
1456 | rp.addr.type = link_to_mgmt(conn->type, conn->dst_type); | |
e9a416b5 JH |
1457 | rp.status = status; |
1458 | ||
4e51eae9 | 1459 | cmd_complete(cmd->sk, cmd->index, MGMT_OP_PAIR_DEVICE, &rp, sizeof(rp)); |
e9a416b5 JH |
1460 | |
1461 | /* So we don't get further callbacks for this connection */ | |
1462 | conn->connect_cfm_cb = NULL; | |
1463 | conn->security_cfm_cb = NULL; | |
1464 | conn->disconn_cfm_cb = NULL; | |
1465 | ||
1466 | hci_conn_put(conn); | |
1467 | ||
a664b5bc | 1468 | mgmt_pending_remove(cmd); |
e9a416b5 JH |
1469 | } |
1470 | ||
1471 | static void pairing_complete_cb(struct hci_conn *conn, u8 status) | |
1472 | { | |
1473 | struct pending_cmd *cmd; | |
1474 | ||
1475 | BT_DBG("status %u", status); | |
1476 | ||
1477 | cmd = find_pairing(conn); | |
56e5cb86 | 1478 | if (!cmd) |
e9a416b5 | 1479 | BT_DBG("Unable to find a pending command"); |
56e5cb86 JH |
1480 | else |
1481 | pairing_complete(cmd, status); | |
e9a416b5 JH |
1482 | } |
1483 | ||
4e51eae9 | 1484 | static int pair_device(struct sock *sk, u16 index, unsigned char *data, u16 len) |
e9a416b5 JH |
1485 | { |
1486 | struct hci_dev *hdev; | |
1487 | struct mgmt_cp_pair_device *cp; | |
1425acb7 | 1488 | struct mgmt_rp_pair_device rp; |
e9a416b5 JH |
1489 | struct pending_cmd *cmd; |
1490 | u8 sec_level, auth_type; | |
1491 | struct hci_conn *conn; | |
e9a416b5 JH |
1492 | int err; |
1493 | ||
1494 | BT_DBG(""); | |
1495 | ||
1496 | cp = (void *) data; | |
e9a416b5 | 1497 | |
bdce7baf | 1498 | if (len != sizeof(*cp)) |
ca69b795 JH |
1499 | return cmd_status(sk, index, MGMT_OP_PAIR_DEVICE, |
1500 | MGMT_STATUS_INVALID_PARAMS); | |
bdce7baf | 1501 | |
4e51eae9 | 1502 | hdev = hci_dev_get(index); |
e9a416b5 | 1503 | if (!hdev) |
ca69b795 JH |
1504 | return cmd_status(sk, index, MGMT_OP_PAIR_DEVICE, |
1505 | MGMT_STATUS_INVALID_PARAMS); | |
e9a416b5 | 1506 | |
8c156c32 | 1507 | hci_dev_lock_bh(hdev); |
e9a416b5 | 1508 | |
c908df36 VCG |
1509 | sec_level = BT_SECURITY_MEDIUM; |
1510 | if (cp->io_cap == 0x03) | |
e9a416b5 | 1511 | auth_type = HCI_AT_DEDICATED_BONDING; |
c908df36 | 1512 | else |
e9a416b5 | 1513 | auth_type = HCI_AT_DEDICATED_BONDING_MITM; |
e9a416b5 | 1514 | |
ba4e564f JH |
1515 | if (cp->addr.type == MGMT_ADDR_BREDR) |
1516 | conn = hci_connect(hdev, ACL_LINK, &cp->addr.bdaddr, sec_level, | |
7a512d01 VCG |
1517 | auth_type); |
1518 | else | |
ba4e564f | 1519 | conn = hci_connect(hdev, LE_LINK, &cp->addr.bdaddr, sec_level, |
7a512d01 VCG |
1520 | auth_type); |
1521 | ||
1425acb7 JH |
1522 | memset(&rp, 0, sizeof(rp)); |
1523 | bacpy(&rp.addr.bdaddr, &cp->addr.bdaddr); | |
1524 | rp.addr.type = cp->addr.type; | |
1525 | ||
30e76272 | 1526 | if (IS_ERR(conn)) { |
1425acb7 JH |
1527 | rp.status = -PTR_ERR(conn); |
1528 | err = cmd_complete(sk, index, MGMT_OP_PAIR_DEVICE, | |
1529 | &rp, sizeof(rp)); | |
e9a416b5 JH |
1530 | goto unlock; |
1531 | } | |
1532 | ||
1533 | if (conn->connect_cfm_cb) { | |
1534 | hci_conn_put(conn); | |
1425acb7 JH |
1535 | rp.status = EBUSY; |
1536 | err = cmd_complete(sk, index, MGMT_OP_PAIR_DEVICE, | |
1537 | &rp, sizeof(rp)); | |
e9a416b5 JH |
1538 | goto unlock; |
1539 | } | |
1540 | ||
2e58ef3e | 1541 | cmd = mgmt_pending_add(sk, MGMT_OP_PAIR_DEVICE, hdev, data, len); |
e9a416b5 JH |
1542 | if (!cmd) { |
1543 | err = -ENOMEM; | |
1544 | hci_conn_put(conn); | |
1545 | goto unlock; | |
1546 | } | |
1547 | ||
7a512d01 | 1548 | /* For LE, just connecting isn't a proof that the pairing finished */ |
ba4e564f | 1549 | if (cp->addr.type == MGMT_ADDR_BREDR) |
7a512d01 VCG |
1550 | conn->connect_cfm_cb = pairing_complete_cb; |
1551 | ||
e9a416b5 JH |
1552 | conn->security_cfm_cb = pairing_complete_cb; |
1553 | conn->disconn_cfm_cb = pairing_complete_cb; | |
1554 | conn->io_capability = cp->io_cap; | |
1555 | cmd->user_data = conn; | |
1556 | ||
1557 | if (conn->state == BT_CONNECTED && | |
1558 | hci_conn_security(conn, sec_level, auth_type)) | |
1559 | pairing_complete(cmd, 0); | |
1560 | ||
1561 | err = 0; | |
1562 | ||
1563 | unlock: | |
8c156c32 | 1564 | hci_dev_unlock_bh(hdev); |
e9a416b5 JH |
1565 | hci_dev_put(hdev); |
1566 | ||
1567 | return err; | |
1568 | } | |
1569 | ||
0df4c185 BG |
1570 | static int user_pairing_resp(struct sock *sk, u16 index, bdaddr_t *bdaddr, |
1571 | u16 mgmt_op, u16 hci_op, __le32 passkey) | |
a5c29683 | 1572 | { |
a5c29683 JH |
1573 | struct pending_cmd *cmd; |
1574 | struct hci_dev *hdev; | |
0df4c185 | 1575 | struct hci_conn *conn; |
a5c29683 JH |
1576 | int err; |
1577 | ||
4e51eae9 | 1578 | hdev = hci_dev_get(index); |
a5c29683 | 1579 | if (!hdev) |
ca69b795 JH |
1580 | return cmd_status(sk, index, mgmt_op, |
1581 | MGMT_STATUS_INVALID_PARAMS); | |
a5c29683 | 1582 | |
8c156c32 | 1583 | hci_dev_lock_bh(hdev); |
08ba5382 | 1584 | |
a5c29683 | 1585 | if (!test_bit(HCI_UP, &hdev->flags)) { |
0df4c185 BG |
1586 | err = cmd_status(sk, index, mgmt_op, MGMT_STATUS_NOT_POWERED); |
1587 | goto done; | |
a5c29683 JH |
1588 | } |
1589 | ||
0df4c185 | 1590 | cmd = mgmt_pending_add(sk, mgmt_op, hdev, bdaddr, sizeof(*bdaddr)); |
a5c29683 JH |
1591 | if (!cmd) { |
1592 | err = -ENOMEM; | |
0df4c185 | 1593 | goto done; |
a5c29683 JH |
1594 | } |
1595 | ||
0df4c185 BG |
1596 | /* Continue with pairing via HCI */ |
1597 | err = hci_send_cmd(hdev, hci_op, sizeof(*bdaddr), bdaddr); | |
a664b5bc JH |
1598 | if (err < 0) |
1599 | mgmt_pending_remove(cmd); | |
a5c29683 | 1600 | |
0df4c185 | 1601 | done: |
8c156c32 | 1602 | hci_dev_unlock_bh(hdev); |
a5c29683 JH |
1603 | hci_dev_put(hdev); |
1604 | ||
1605 | return err; | |
1606 | } | |
1607 | ||
0df4c185 BG |
1608 | static int user_confirm_reply(struct sock *sk, u16 index, void *data, u16 len) |
1609 | { | |
1610 | struct mgmt_cp_user_confirm_reply *cp = (void *) data; | |
1611 | ||
1612 | BT_DBG(""); | |
1613 | ||
1614 | if (len != sizeof(*cp)) | |
1615 | return cmd_status(sk, index, MGMT_OP_USER_CONFIRM_REPLY, | |
1616 | MGMT_STATUS_INVALID_PARAMS); | |
1617 | ||
1618 | return user_pairing_resp(sk, index, &cp->bdaddr, | |
1619 | MGMT_OP_USER_CONFIRM_REPLY, | |
1620 | HCI_OP_USER_CONFIRM_REPLY, 0); | |
1621 | } | |
1622 | ||
1623 | static int user_confirm_neg_reply(struct sock *sk, u16 index, void *data, | |
1624 | u16 len) | |
1625 | { | |
1626 | struct mgmt_cp_user_confirm_reply *cp = (void *) data; | |
1627 | ||
1628 | BT_DBG(""); | |
1629 | ||
1630 | if (len != sizeof(*cp)) | |
1631 | return cmd_status(sk, index, MGMT_OP_USER_CONFIRM_NEG_REPLY, | |
1632 | MGMT_STATUS_INVALID_PARAMS); | |
1633 | ||
1634 | return user_pairing_resp(sk, index, &cp->bdaddr, | |
1635 | MGMT_OP_USER_CONFIRM_NEG_REPLY, | |
1636 | HCI_OP_USER_CONFIRM_NEG_REPLY, 0); | |
1637 | } | |
1638 | ||
b312b161 JH |
1639 | static int set_local_name(struct sock *sk, u16 index, unsigned char *data, |
1640 | u16 len) | |
1641 | { | |
1642 | struct mgmt_cp_set_local_name *mgmt_cp = (void *) data; | |
1643 | struct hci_cp_write_local_name hci_cp; | |
1644 | struct hci_dev *hdev; | |
1645 | struct pending_cmd *cmd; | |
1646 | int err; | |
1647 | ||
1648 | BT_DBG(""); | |
1649 | ||
1650 | if (len != sizeof(*mgmt_cp)) | |
ca69b795 JH |
1651 | return cmd_status(sk, index, MGMT_OP_SET_LOCAL_NAME, |
1652 | MGMT_STATUS_INVALID_PARAMS); | |
b312b161 JH |
1653 | |
1654 | hdev = hci_dev_get(index); | |
1655 | if (!hdev) | |
ca69b795 JH |
1656 | return cmd_status(sk, index, MGMT_OP_SET_LOCAL_NAME, |
1657 | MGMT_STATUS_INVALID_PARAMS); | |
b312b161 | 1658 | |
8c156c32 | 1659 | hci_dev_lock_bh(hdev); |
b312b161 | 1660 | |
2e58ef3e | 1661 | cmd = mgmt_pending_add(sk, MGMT_OP_SET_LOCAL_NAME, hdev, data, len); |
b312b161 JH |
1662 | if (!cmd) { |
1663 | err = -ENOMEM; | |
1664 | goto failed; | |
1665 | } | |
1666 | ||
1667 | memcpy(hci_cp.name, mgmt_cp->name, sizeof(hci_cp.name)); | |
1668 | err = hci_send_cmd(hdev, HCI_OP_WRITE_LOCAL_NAME, sizeof(hci_cp), | |
1669 | &hci_cp); | |
1670 | if (err < 0) | |
1671 | mgmt_pending_remove(cmd); | |
1672 | ||
1673 | failed: | |
8c156c32 | 1674 | hci_dev_unlock_bh(hdev); |
b312b161 JH |
1675 | hci_dev_put(hdev); |
1676 | ||
1677 | return err; | |
1678 | } | |
1679 | ||
c35938b2 SJ |
1680 | static int read_local_oob_data(struct sock *sk, u16 index) |
1681 | { | |
1682 | struct hci_dev *hdev; | |
1683 | struct pending_cmd *cmd; | |
1684 | int err; | |
1685 | ||
1686 | BT_DBG("hci%u", index); | |
1687 | ||
1688 | hdev = hci_dev_get(index); | |
1689 | if (!hdev) | |
1690 | return cmd_status(sk, index, MGMT_OP_READ_LOCAL_OOB_DATA, | |
ca69b795 | 1691 | MGMT_STATUS_INVALID_PARAMS); |
c35938b2 | 1692 | |
8c156c32 | 1693 | hci_dev_lock_bh(hdev); |
c35938b2 SJ |
1694 | |
1695 | if (!test_bit(HCI_UP, &hdev->flags)) { | |
1696 | err = cmd_status(sk, index, MGMT_OP_READ_LOCAL_OOB_DATA, | |
ca69b795 | 1697 | MGMT_STATUS_NOT_POWERED); |
c35938b2 SJ |
1698 | goto unlock; |
1699 | } | |
1700 | ||
1701 | if (!(hdev->features[6] & LMP_SIMPLE_PAIR)) { | |
1702 | err = cmd_status(sk, index, MGMT_OP_READ_LOCAL_OOB_DATA, | |
ca69b795 | 1703 | MGMT_STATUS_NOT_SUPPORTED); |
c35938b2 SJ |
1704 | goto unlock; |
1705 | } | |
1706 | ||
2e58ef3e | 1707 | if (mgmt_pending_find(MGMT_OP_READ_LOCAL_OOB_DATA, hdev)) { |
ca69b795 JH |
1708 | err = cmd_status(sk, index, MGMT_OP_READ_LOCAL_OOB_DATA, |
1709 | MGMT_STATUS_BUSY); | |
c35938b2 SJ |
1710 | goto unlock; |
1711 | } | |
1712 | ||
2e58ef3e | 1713 | cmd = mgmt_pending_add(sk, MGMT_OP_READ_LOCAL_OOB_DATA, hdev, NULL, 0); |
c35938b2 SJ |
1714 | if (!cmd) { |
1715 | err = -ENOMEM; | |
1716 | goto unlock; | |
1717 | } | |
1718 | ||
1719 | err = hci_send_cmd(hdev, HCI_OP_READ_LOCAL_OOB_DATA, 0, NULL); | |
1720 | if (err < 0) | |
1721 | mgmt_pending_remove(cmd); | |
1722 | ||
1723 | unlock: | |
8c156c32 | 1724 | hci_dev_unlock_bh(hdev); |
c35938b2 SJ |
1725 | hci_dev_put(hdev); |
1726 | ||
1727 | return err; | |
1728 | } | |
1729 | ||
2763eda6 SJ |
1730 | static int add_remote_oob_data(struct sock *sk, u16 index, unsigned char *data, |
1731 | u16 len) | |
1732 | { | |
1733 | struct hci_dev *hdev; | |
1734 | struct mgmt_cp_add_remote_oob_data *cp = (void *) data; | |
1735 | int err; | |
1736 | ||
1737 | BT_DBG("hci%u ", index); | |
1738 | ||
1739 | if (len != sizeof(*cp)) | |
1740 | return cmd_status(sk, index, MGMT_OP_ADD_REMOTE_OOB_DATA, | |
ca69b795 | 1741 | MGMT_STATUS_INVALID_PARAMS); |
2763eda6 SJ |
1742 | |
1743 | hdev = hci_dev_get(index); | |
1744 | if (!hdev) | |
1745 | return cmd_status(sk, index, MGMT_OP_ADD_REMOTE_OOB_DATA, | |
ca69b795 | 1746 | MGMT_STATUS_INVALID_PARAMS); |
2763eda6 | 1747 | |
8c156c32 | 1748 | hci_dev_lock_bh(hdev); |
2763eda6 SJ |
1749 | |
1750 | err = hci_add_remote_oob_data(hdev, &cp->bdaddr, cp->hash, | |
1751 | cp->randomizer); | |
1752 | if (err < 0) | |
ca69b795 JH |
1753 | err = cmd_status(sk, index, MGMT_OP_ADD_REMOTE_OOB_DATA, |
1754 | MGMT_STATUS_FAILED); | |
2763eda6 SJ |
1755 | else |
1756 | err = cmd_complete(sk, index, MGMT_OP_ADD_REMOTE_OOB_DATA, NULL, | |
1757 | 0); | |
1758 | ||
8c156c32 | 1759 | hci_dev_unlock_bh(hdev); |
2763eda6 SJ |
1760 | hci_dev_put(hdev); |
1761 | ||
1762 | return err; | |
1763 | } | |
1764 | ||
1765 | static int remove_remote_oob_data(struct sock *sk, u16 index, | |
1766 | unsigned char *data, u16 len) | |
1767 | { | |
1768 | struct hci_dev *hdev; | |
1769 | struct mgmt_cp_remove_remote_oob_data *cp = (void *) data; | |
1770 | int err; | |
1771 | ||
1772 | BT_DBG("hci%u ", index); | |
1773 | ||
1774 | if (len != sizeof(*cp)) | |
1775 | return cmd_status(sk, index, MGMT_OP_REMOVE_REMOTE_OOB_DATA, | |
ca69b795 | 1776 | MGMT_STATUS_INVALID_PARAMS); |
2763eda6 SJ |
1777 | |
1778 | hdev = hci_dev_get(index); | |
1779 | if (!hdev) | |
1780 | return cmd_status(sk, index, MGMT_OP_REMOVE_REMOTE_OOB_DATA, | |
ca69b795 | 1781 | MGMT_STATUS_INVALID_PARAMS); |
2763eda6 | 1782 | |
8c156c32 | 1783 | hci_dev_lock_bh(hdev); |
2763eda6 SJ |
1784 | |
1785 | err = hci_remove_remote_oob_data(hdev, &cp->bdaddr); | |
1786 | if (err < 0) | |
1787 | err = cmd_status(sk, index, MGMT_OP_REMOVE_REMOTE_OOB_DATA, | |
ca69b795 | 1788 | MGMT_STATUS_INVALID_PARAMS); |
2763eda6 SJ |
1789 | else |
1790 | err = cmd_complete(sk, index, MGMT_OP_REMOVE_REMOTE_OOB_DATA, | |
1791 | NULL, 0); | |
1792 | ||
8c156c32 | 1793 | hci_dev_unlock_bh(hdev); |
2763eda6 SJ |
1794 | hci_dev_put(hdev); |
1795 | ||
1796 | return err; | |
1797 | } | |
1798 | ||
450dfdaf JH |
1799 | static int start_discovery(struct sock *sk, u16 index, |
1800 | unsigned char *data, u16 len) | |
14a53664 | 1801 | { |
450dfdaf | 1802 | struct mgmt_cp_start_discovery *cp = (void *) data; |
14a53664 JH |
1803 | struct pending_cmd *cmd; |
1804 | struct hci_dev *hdev; | |
1805 | int err; | |
1806 | ||
1807 | BT_DBG("hci%u", index); | |
1808 | ||
450dfdaf JH |
1809 | if (len != sizeof(*cp)) |
1810 | return cmd_status(sk, index, MGMT_OP_START_DISCOVERY, | |
1811 | MGMT_STATUS_INVALID_PARAMS); | |
1812 | ||
14a53664 JH |
1813 | hdev = hci_dev_get(index); |
1814 | if (!hdev) | |
ca69b795 JH |
1815 | return cmd_status(sk, index, MGMT_OP_START_DISCOVERY, |
1816 | MGMT_STATUS_INVALID_PARAMS); | |
14a53664 JH |
1817 | |
1818 | hci_dev_lock_bh(hdev); | |
1819 | ||
bd2d1334 | 1820 | if (!test_bit(HCI_UP, &hdev->flags)) { |
ca69b795 JH |
1821 | err = cmd_status(sk, index, MGMT_OP_START_DISCOVERY, |
1822 | MGMT_STATUS_NOT_POWERED); | |
bd2d1334 JH |
1823 | goto failed; |
1824 | } | |
1825 | ||
2e58ef3e | 1826 | cmd = mgmt_pending_add(sk, MGMT_OP_START_DISCOVERY, hdev, NULL, 0); |
14a53664 JH |
1827 | if (!cmd) { |
1828 | err = -ENOMEM; | |
1829 | goto failed; | |
1830 | } | |
1831 | ||
2519a1fc | 1832 | err = hci_do_inquiry(hdev, INQUIRY_LEN_BREDR); |
14a53664 JH |
1833 | if (err < 0) |
1834 | mgmt_pending_remove(cmd); | |
1835 | ||
1836 | failed: | |
1837 | hci_dev_unlock_bh(hdev); | |
1838 | hci_dev_put(hdev); | |
1839 | ||
1840 | return err; | |
1841 | } | |
1842 | ||
1843 | static int stop_discovery(struct sock *sk, u16 index) | |
1844 | { | |
1845 | struct hci_dev *hdev; | |
1846 | struct pending_cmd *cmd; | |
1847 | int err; | |
1848 | ||
1849 | BT_DBG("hci%u", index); | |
1850 | ||
1851 | hdev = hci_dev_get(index); | |
1852 | if (!hdev) | |
ca69b795 JH |
1853 | return cmd_status(sk, index, MGMT_OP_STOP_DISCOVERY, |
1854 | MGMT_STATUS_INVALID_PARAMS); | |
14a53664 JH |
1855 | |
1856 | hci_dev_lock_bh(hdev); | |
1857 | ||
2e58ef3e | 1858 | cmd = mgmt_pending_add(sk, MGMT_OP_STOP_DISCOVERY, hdev, NULL, 0); |
14a53664 JH |
1859 | if (!cmd) { |
1860 | err = -ENOMEM; | |
1861 | goto failed; | |
1862 | } | |
1863 | ||
023d5049 | 1864 | err = hci_cancel_inquiry(hdev); |
14a53664 JH |
1865 | if (err < 0) |
1866 | mgmt_pending_remove(cmd); | |
1867 | ||
1868 | failed: | |
1869 | hci_dev_unlock_bh(hdev); | |
1870 | hci_dev_put(hdev); | |
1871 | ||
1872 | return err; | |
1873 | } | |
1874 | ||
7fbec224 AJ |
1875 | static int block_device(struct sock *sk, u16 index, unsigned char *data, |
1876 | u16 len) | |
1877 | { | |
1878 | struct hci_dev *hdev; | |
5e762444 | 1879 | struct mgmt_cp_block_device *cp = (void *) data; |
7fbec224 AJ |
1880 | int err; |
1881 | ||
1882 | BT_DBG("hci%u", index); | |
1883 | ||
7fbec224 AJ |
1884 | if (len != sizeof(*cp)) |
1885 | return cmd_status(sk, index, MGMT_OP_BLOCK_DEVICE, | |
ca69b795 | 1886 | MGMT_STATUS_INVALID_PARAMS); |
7fbec224 AJ |
1887 | |
1888 | hdev = hci_dev_get(index); | |
1889 | if (!hdev) | |
1890 | return cmd_status(sk, index, MGMT_OP_BLOCK_DEVICE, | |
ca69b795 | 1891 | MGMT_STATUS_INVALID_PARAMS); |
7fbec224 | 1892 | |
5e762444 AJ |
1893 | hci_dev_lock_bh(hdev); |
1894 | ||
7fbec224 | 1895 | err = hci_blacklist_add(hdev, &cp->bdaddr); |
7fbec224 | 1896 | if (err < 0) |
ca69b795 JH |
1897 | err = cmd_status(sk, index, MGMT_OP_BLOCK_DEVICE, |
1898 | MGMT_STATUS_FAILED); | |
7fbec224 AJ |
1899 | else |
1900 | err = cmd_complete(sk, index, MGMT_OP_BLOCK_DEVICE, | |
1901 | NULL, 0); | |
5e762444 | 1902 | |
5e762444 | 1903 | hci_dev_unlock_bh(hdev); |
7fbec224 AJ |
1904 | hci_dev_put(hdev); |
1905 | ||
1906 | return err; | |
1907 | } | |
1908 | ||
1909 | static int unblock_device(struct sock *sk, u16 index, unsigned char *data, | |
1910 | u16 len) | |
1911 | { | |
1912 | struct hci_dev *hdev; | |
5e762444 | 1913 | struct mgmt_cp_unblock_device *cp = (void *) data; |
7fbec224 AJ |
1914 | int err; |
1915 | ||
1916 | BT_DBG("hci%u", index); | |
1917 | ||
7fbec224 AJ |
1918 | if (len != sizeof(*cp)) |
1919 | return cmd_status(sk, index, MGMT_OP_UNBLOCK_DEVICE, | |
ca69b795 | 1920 | MGMT_STATUS_INVALID_PARAMS); |
7fbec224 AJ |
1921 | |
1922 | hdev = hci_dev_get(index); | |
1923 | if (!hdev) | |
1924 | return cmd_status(sk, index, MGMT_OP_UNBLOCK_DEVICE, | |
ca69b795 | 1925 | MGMT_STATUS_INVALID_PARAMS); |
7fbec224 | 1926 | |
5e762444 AJ |
1927 | hci_dev_lock_bh(hdev); |
1928 | ||
7fbec224 AJ |
1929 | err = hci_blacklist_del(hdev, &cp->bdaddr); |
1930 | ||
1931 | if (err < 0) | |
ca69b795 JH |
1932 | err = cmd_status(sk, index, MGMT_OP_UNBLOCK_DEVICE, |
1933 | MGMT_STATUS_INVALID_PARAMS); | |
7fbec224 AJ |
1934 | else |
1935 | err = cmd_complete(sk, index, MGMT_OP_UNBLOCK_DEVICE, | |
1936 | NULL, 0); | |
5e762444 | 1937 | |
5e762444 | 1938 | hci_dev_unlock_bh(hdev); |
7fbec224 AJ |
1939 | hci_dev_put(hdev); |
1940 | ||
1941 | return err; | |
1942 | } | |
1943 | ||
f6422ec6 AJ |
1944 | static int set_fast_connectable(struct sock *sk, u16 index, |
1945 | unsigned char *data, u16 len) | |
1946 | { | |
1947 | struct hci_dev *hdev; | |
1948 | struct mgmt_cp_set_fast_connectable *cp = (void *) data; | |
1949 | struct hci_cp_write_page_scan_activity acp; | |
1950 | u8 type; | |
1951 | int err; | |
1952 | ||
1953 | BT_DBG("hci%u", index); | |
1954 | ||
1955 | if (len != sizeof(*cp)) | |
1956 | return cmd_status(sk, index, MGMT_OP_SET_FAST_CONNECTABLE, | |
ca69b795 | 1957 | MGMT_STATUS_INVALID_PARAMS); |
f6422ec6 AJ |
1958 | |
1959 | hdev = hci_dev_get(index); | |
1960 | if (!hdev) | |
1961 | return cmd_status(sk, index, MGMT_OP_SET_FAST_CONNECTABLE, | |
ca69b795 | 1962 | MGMT_STATUS_INVALID_PARAMS); |
f6422ec6 AJ |
1963 | |
1964 | hci_dev_lock(hdev); | |
1965 | ||
1966 | if (cp->enable) { | |
1967 | type = PAGE_SCAN_TYPE_INTERLACED; | |
1968 | acp.interval = 0x0024; /* 22.5 msec page scan interval */ | |
1969 | } else { | |
1970 | type = PAGE_SCAN_TYPE_STANDARD; /* default */ | |
1971 | acp.interval = 0x0800; /* default 1.28 sec page scan */ | |
1972 | } | |
1973 | ||
1974 | acp.window = 0x0012; /* default 11.25 msec page scan window */ | |
1975 | ||
1976 | err = hci_send_cmd(hdev, HCI_OP_WRITE_PAGE_SCAN_ACTIVITY, | |
1977 | sizeof(acp), &acp); | |
1978 | if (err < 0) { | |
1979 | err = cmd_status(sk, index, MGMT_OP_SET_FAST_CONNECTABLE, | |
ca69b795 | 1980 | MGMT_STATUS_FAILED); |
f6422ec6 AJ |
1981 | goto done; |
1982 | } | |
1983 | ||
1984 | err = hci_send_cmd(hdev, HCI_OP_WRITE_PAGE_SCAN_TYPE, 1, &type); | |
1985 | if (err < 0) { | |
1986 | err = cmd_status(sk, index, MGMT_OP_SET_FAST_CONNECTABLE, | |
ca69b795 | 1987 | MGMT_STATUS_FAILED); |
f6422ec6 AJ |
1988 | goto done; |
1989 | } | |
1990 | ||
1991 | err = cmd_complete(sk, index, MGMT_OP_SET_FAST_CONNECTABLE, | |
1992 | NULL, 0); | |
1993 | done: | |
1994 | hci_dev_unlock(hdev); | |
1995 | hci_dev_put(hdev); | |
1996 | ||
1997 | return err; | |
1998 | } | |
1999 | ||
0381101f JH |
2000 | int mgmt_control(struct sock *sk, struct msghdr *msg, size_t msglen) |
2001 | { | |
2002 | unsigned char *buf; | |
2003 | struct mgmt_hdr *hdr; | |
4e51eae9 | 2004 | u16 opcode, index, len; |
0381101f JH |
2005 | int err; |
2006 | ||
2007 | BT_DBG("got %zu bytes", msglen); | |
2008 | ||
2009 | if (msglen < sizeof(*hdr)) | |
2010 | return -EINVAL; | |
2011 | ||
e63a15ec | 2012 | buf = kmalloc(msglen, GFP_KERNEL); |
0381101f JH |
2013 | if (!buf) |
2014 | return -ENOMEM; | |
2015 | ||
2016 | if (memcpy_fromiovec(buf, msg->msg_iov, msglen)) { | |
2017 | err = -EFAULT; | |
2018 | goto done; | |
2019 | } | |
2020 | ||
2021 | hdr = (struct mgmt_hdr *) buf; | |
2022 | opcode = get_unaligned_le16(&hdr->opcode); | |
4e51eae9 | 2023 | index = get_unaligned_le16(&hdr->index); |
0381101f JH |
2024 | len = get_unaligned_le16(&hdr->len); |
2025 | ||
2026 | if (len != msglen - sizeof(*hdr)) { | |
2027 | err = -EINVAL; | |
2028 | goto done; | |
2029 | } | |
2030 | ||
2031 | switch (opcode) { | |
02d98129 JH |
2032 | case MGMT_OP_READ_VERSION: |
2033 | err = read_version(sk); | |
2034 | break; | |
faba42eb JH |
2035 | case MGMT_OP_READ_INDEX_LIST: |
2036 | err = read_index_list(sk); | |
2037 | break; | |
f7b64e69 | 2038 | case MGMT_OP_READ_INFO: |
4e51eae9 | 2039 | err = read_controller_info(sk, index); |
f7b64e69 | 2040 | break; |
eec8d2bc | 2041 | case MGMT_OP_SET_POWERED: |
4e51eae9 | 2042 | err = set_powered(sk, index, buf + sizeof(*hdr), len); |
eec8d2bc | 2043 | break; |
73f22f62 | 2044 | case MGMT_OP_SET_DISCOVERABLE: |
4e51eae9 | 2045 | err = set_discoverable(sk, index, buf + sizeof(*hdr), len); |
73f22f62 | 2046 | break; |
9fbcbb45 | 2047 | case MGMT_OP_SET_CONNECTABLE: |
4e51eae9 | 2048 | err = set_connectable(sk, index, buf + sizeof(*hdr), len); |
9fbcbb45 | 2049 | break; |
c542a06c | 2050 | case MGMT_OP_SET_PAIRABLE: |
4e51eae9 | 2051 | err = set_pairable(sk, index, buf + sizeof(*hdr), len); |
c542a06c | 2052 | break; |
2aeb9a1a | 2053 | case MGMT_OP_ADD_UUID: |
4e51eae9 | 2054 | err = add_uuid(sk, index, buf + sizeof(*hdr), len); |
2aeb9a1a JH |
2055 | break; |
2056 | case MGMT_OP_REMOVE_UUID: | |
4e51eae9 | 2057 | err = remove_uuid(sk, index, buf + sizeof(*hdr), len); |
2aeb9a1a | 2058 | break; |
1aff6f09 | 2059 | case MGMT_OP_SET_DEV_CLASS: |
4e51eae9 | 2060 | err = set_dev_class(sk, index, buf + sizeof(*hdr), len); |
1aff6f09 JH |
2061 | break; |
2062 | case MGMT_OP_SET_SERVICE_CACHE: | |
4e51eae9 | 2063 | err = set_service_cache(sk, index, buf + sizeof(*hdr), len); |
1aff6f09 | 2064 | break; |
86742e1e JH |
2065 | case MGMT_OP_LOAD_LINK_KEYS: |
2066 | err = load_link_keys(sk, index, buf + sizeof(*hdr), len); | |
55ed8ca1 | 2067 | break; |
86742e1e JH |
2068 | case MGMT_OP_REMOVE_KEYS: |
2069 | err = remove_keys(sk, index, buf + sizeof(*hdr), len); | |
55ed8ca1 | 2070 | break; |
8962ee74 | 2071 | case MGMT_OP_DISCONNECT: |
4e51eae9 | 2072 | err = disconnect(sk, index, buf + sizeof(*hdr), len); |
8962ee74 | 2073 | break; |
2784eb41 | 2074 | case MGMT_OP_GET_CONNECTIONS: |
8ce6284e | 2075 | err = get_connections(sk, index); |
2784eb41 | 2076 | break; |
980e1a53 | 2077 | case MGMT_OP_PIN_CODE_REPLY: |
4e51eae9 | 2078 | err = pin_code_reply(sk, index, buf + sizeof(*hdr), len); |
980e1a53 JH |
2079 | break; |
2080 | case MGMT_OP_PIN_CODE_NEG_REPLY: | |
4e51eae9 | 2081 | err = pin_code_neg_reply(sk, index, buf + sizeof(*hdr), len); |
980e1a53 | 2082 | break; |
17fa4b9d | 2083 | case MGMT_OP_SET_IO_CAPABILITY: |
4e51eae9 | 2084 | err = set_io_capability(sk, index, buf + sizeof(*hdr), len); |
17fa4b9d | 2085 | break; |
e9a416b5 | 2086 | case MGMT_OP_PAIR_DEVICE: |
4e51eae9 | 2087 | err = pair_device(sk, index, buf + sizeof(*hdr), len); |
e9a416b5 | 2088 | break; |
a5c29683 | 2089 | case MGMT_OP_USER_CONFIRM_REPLY: |
0df4c185 | 2090 | err = user_confirm_reply(sk, index, buf + sizeof(*hdr), len); |
a5c29683 JH |
2091 | break; |
2092 | case MGMT_OP_USER_CONFIRM_NEG_REPLY: | |
0df4c185 BG |
2093 | err = user_confirm_neg_reply(sk, index, buf + sizeof(*hdr), |
2094 | len); | |
a5c29683 | 2095 | break; |
b312b161 JH |
2096 | case MGMT_OP_SET_LOCAL_NAME: |
2097 | err = set_local_name(sk, index, buf + sizeof(*hdr), len); | |
2098 | break; | |
c35938b2 SJ |
2099 | case MGMT_OP_READ_LOCAL_OOB_DATA: |
2100 | err = read_local_oob_data(sk, index); | |
2101 | break; | |
2763eda6 SJ |
2102 | case MGMT_OP_ADD_REMOTE_OOB_DATA: |
2103 | err = add_remote_oob_data(sk, index, buf + sizeof(*hdr), len); | |
2104 | break; | |
2105 | case MGMT_OP_REMOVE_REMOTE_OOB_DATA: | |
2106 | err = remove_remote_oob_data(sk, index, buf + sizeof(*hdr), | |
2107 | len); | |
2108 | break; | |
14a53664 | 2109 | case MGMT_OP_START_DISCOVERY: |
450dfdaf | 2110 | err = start_discovery(sk, index, buf + sizeof(*hdr), len); |
14a53664 JH |
2111 | break; |
2112 | case MGMT_OP_STOP_DISCOVERY: | |
2113 | err = stop_discovery(sk, index); | |
2114 | break; | |
7fbec224 AJ |
2115 | case MGMT_OP_BLOCK_DEVICE: |
2116 | err = block_device(sk, index, buf + sizeof(*hdr), len); | |
2117 | break; | |
2118 | case MGMT_OP_UNBLOCK_DEVICE: | |
2119 | err = unblock_device(sk, index, buf + sizeof(*hdr), len); | |
2120 | break; | |
f6422ec6 AJ |
2121 | case MGMT_OP_SET_FAST_CONNECTABLE: |
2122 | err = set_fast_connectable(sk, index, buf + sizeof(*hdr), | |
2123 | len); | |
2124 | break; | |
0381101f JH |
2125 | default: |
2126 | BT_DBG("Unknown op %u", opcode); | |
ca69b795 JH |
2127 | err = cmd_status(sk, index, opcode, |
2128 | MGMT_STATUS_UNKNOWN_COMMAND); | |
0381101f JH |
2129 | break; |
2130 | } | |
2131 | ||
e41d8b4e JH |
2132 | if (err < 0) |
2133 | goto done; | |
2134 | ||
0381101f JH |
2135 | err = msglen; |
2136 | ||
2137 | done: | |
2138 | kfree(buf); | |
2139 | return err; | |
2140 | } | |
c71e97bf | 2141 | |
b24752fe JH |
2142 | static void cmd_status_rsp(struct pending_cmd *cmd, void *data) |
2143 | { | |
2144 | u8 *status = data; | |
2145 | ||
2146 | cmd_status(cmd->sk, cmd->index, cmd->opcode, *status); | |
2147 | mgmt_pending_remove(cmd); | |
2148 | } | |
2149 | ||
744cf19e | 2150 | int mgmt_index_added(struct hci_dev *hdev) |
c71e97bf | 2151 | { |
744cf19e | 2152 | return mgmt_event(MGMT_EV_INDEX_ADDED, hdev, NULL, 0, NULL); |
c71e97bf JH |
2153 | } |
2154 | ||
744cf19e | 2155 | int mgmt_index_removed(struct hci_dev *hdev) |
c71e97bf | 2156 | { |
b24752fe JH |
2157 | u8 status = ENODEV; |
2158 | ||
744cf19e | 2159 | mgmt_pending_foreach(0, hdev, cmd_status_rsp, &status); |
b24752fe | 2160 | |
744cf19e | 2161 | return mgmt_event(MGMT_EV_INDEX_REMOVED, hdev, NULL, 0, NULL); |
eec8d2bc JH |
2162 | } |
2163 | ||
73f22f62 | 2164 | struct cmd_lookup { |
72a734ec | 2165 | u8 val; |
eec8d2bc JH |
2166 | struct sock *sk; |
2167 | }; | |
2168 | ||
72a734ec | 2169 | static void mode_rsp(struct pending_cmd *cmd, void *data) |
eec8d2bc | 2170 | { |
c68fb7ff | 2171 | struct mgmt_mode *cp = cmd->param; |
73f22f62 | 2172 | struct cmd_lookup *match = data; |
eec8d2bc | 2173 | |
72a734ec | 2174 | if (cp->val != match->val) |
eec8d2bc JH |
2175 | return; |
2176 | ||
053f0211 | 2177 | send_mode_rsp(cmd->sk, cmd->opcode, cmd->index, cp->val); |
eec8d2bc JH |
2178 | |
2179 | list_del(&cmd->list); | |
2180 | ||
2181 | if (match->sk == NULL) { | |
2182 | match->sk = cmd->sk; | |
2183 | sock_hold(match->sk); | |
2184 | } | |
2185 | ||
2186 | mgmt_pending_free(cmd); | |
c71e97bf | 2187 | } |
5add6af8 | 2188 | |
744cf19e | 2189 | int mgmt_powered(struct hci_dev *hdev, u8 powered) |
5add6af8 | 2190 | { |
72a734ec | 2191 | struct mgmt_mode ev; |
73f22f62 | 2192 | struct cmd_lookup match = { powered, NULL }; |
eec8d2bc | 2193 | int ret; |
5add6af8 | 2194 | |
744cf19e | 2195 | mgmt_pending_foreach(MGMT_OP_SET_POWERED, hdev, mode_rsp, &match); |
5add6af8 | 2196 | |
b24752fe JH |
2197 | if (!powered) { |
2198 | u8 status = ENETDOWN; | |
744cf19e | 2199 | mgmt_pending_foreach(0, hdev, cmd_status_rsp, &status); |
b24752fe JH |
2200 | } |
2201 | ||
72a734ec | 2202 | ev.val = powered; |
eec8d2bc | 2203 | |
744cf19e | 2204 | ret = mgmt_event(MGMT_EV_POWERED, hdev, &ev, sizeof(ev), match.sk); |
eec8d2bc JH |
2205 | |
2206 | if (match.sk) | |
2207 | sock_put(match.sk); | |
2208 | ||
2209 | return ret; | |
5add6af8 | 2210 | } |
73f22f62 | 2211 | |
744cf19e | 2212 | int mgmt_discoverable(struct hci_dev *hdev, u8 discoverable) |
73f22f62 | 2213 | { |
72a734ec | 2214 | struct mgmt_mode ev; |
73f22f62 JH |
2215 | struct cmd_lookup match = { discoverable, NULL }; |
2216 | int ret; | |
2217 | ||
744cf19e | 2218 | mgmt_pending_foreach(MGMT_OP_SET_DISCOVERABLE, hdev, mode_rsp, &match); |
72a734ec | 2219 | |
72a734ec | 2220 | ev.val = discoverable; |
73f22f62 | 2221 | |
744cf19e | 2222 | ret = mgmt_event(MGMT_EV_DISCOVERABLE, hdev, &ev, sizeof(ev), |
4e51eae9 | 2223 | match.sk); |
73f22f62 JH |
2224 | |
2225 | if (match.sk) | |
2226 | sock_put(match.sk); | |
2227 | ||
2228 | return ret; | |
2229 | } | |
9fbcbb45 | 2230 | |
744cf19e | 2231 | int mgmt_connectable(struct hci_dev *hdev, u8 connectable) |
9fbcbb45 | 2232 | { |
72a734ec | 2233 | struct mgmt_mode ev; |
9fbcbb45 JH |
2234 | struct cmd_lookup match = { connectable, NULL }; |
2235 | int ret; | |
2236 | ||
744cf19e | 2237 | mgmt_pending_foreach(MGMT_OP_SET_CONNECTABLE, hdev, mode_rsp, &match); |
9fbcbb45 | 2238 | |
72a734ec | 2239 | ev.val = connectable; |
9fbcbb45 | 2240 | |
744cf19e | 2241 | ret = mgmt_event(MGMT_EV_CONNECTABLE, hdev, &ev, sizeof(ev), match.sk); |
9fbcbb45 JH |
2242 | |
2243 | if (match.sk) | |
2244 | sock_put(match.sk); | |
2245 | ||
2246 | return ret; | |
2247 | } | |
55ed8ca1 | 2248 | |
744cf19e | 2249 | int mgmt_write_scan_failed(struct hci_dev *hdev, u8 scan, u8 status) |
2d7cee58 | 2250 | { |
ca69b795 JH |
2251 | u8 mgmt_err = mgmt_status(status); |
2252 | ||
2d7cee58 | 2253 | if (scan & SCAN_PAGE) |
744cf19e | 2254 | mgmt_pending_foreach(MGMT_OP_SET_CONNECTABLE, hdev, |
ca69b795 | 2255 | cmd_status_rsp, &mgmt_err); |
2d7cee58 JH |
2256 | |
2257 | if (scan & SCAN_INQUIRY) | |
744cf19e | 2258 | mgmt_pending_foreach(MGMT_OP_SET_DISCOVERABLE, hdev, |
ca69b795 | 2259 | cmd_status_rsp, &mgmt_err); |
2d7cee58 JH |
2260 | |
2261 | return 0; | |
2262 | } | |
2263 | ||
744cf19e JH |
2264 | int mgmt_new_link_key(struct hci_dev *hdev, struct link_key *key, |
2265 | u8 persistent) | |
55ed8ca1 | 2266 | { |
86742e1e | 2267 | struct mgmt_ev_new_link_key ev; |
55ed8ca1 | 2268 | |
a492cd52 | 2269 | memset(&ev, 0, sizeof(ev)); |
55ed8ca1 | 2270 | |
a492cd52 VCG |
2271 | ev.store_hint = persistent; |
2272 | bacpy(&ev.key.bdaddr, &key->bdaddr); | |
2273 | ev.key.type = key->type; | |
2274 | memcpy(ev.key.val, key->val, 16); | |
2275 | ev.key.pin_len = key->pin_len; | |
55ed8ca1 | 2276 | |
744cf19e | 2277 | return mgmt_event(MGMT_EV_NEW_LINK_KEY, hdev, &ev, sizeof(ev), NULL); |
55ed8ca1 | 2278 | } |
f7520543 | 2279 | |
48264f06 JH |
2280 | int mgmt_connected(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type, |
2281 | u8 addr_type) | |
f7520543 | 2282 | { |
4c659c39 | 2283 | struct mgmt_addr_info ev; |
f7520543 | 2284 | |
f7520543 | 2285 | bacpy(&ev.bdaddr, bdaddr); |
48264f06 | 2286 | ev.type = link_to_mgmt(link_type, addr_type); |
f7520543 | 2287 | |
744cf19e | 2288 | return mgmt_event(MGMT_EV_CONNECTED, hdev, &ev, sizeof(ev), NULL); |
f7520543 JH |
2289 | } |
2290 | ||
8962ee74 JH |
2291 | static void disconnect_rsp(struct pending_cmd *cmd, void *data) |
2292 | { | |
c68fb7ff | 2293 | struct mgmt_cp_disconnect *cp = cmd->param; |
8962ee74 | 2294 | struct sock **sk = data; |
a38528f1 | 2295 | struct mgmt_rp_disconnect rp; |
8962ee74 | 2296 | |
a38528f1 | 2297 | bacpy(&rp.bdaddr, &cp->bdaddr); |
37d9ef76 | 2298 | rp.status = 0; |
8962ee74 | 2299 | |
4e51eae9 | 2300 | cmd_complete(cmd->sk, cmd->index, MGMT_OP_DISCONNECT, &rp, sizeof(rp)); |
8962ee74 JH |
2301 | |
2302 | *sk = cmd->sk; | |
2303 | sock_hold(*sk); | |
2304 | ||
a664b5bc | 2305 | mgmt_pending_remove(cmd); |
8962ee74 JH |
2306 | } |
2307 | ||
a8a1d19e JH |
2308 | static void remove_keys_rsp(struct pending_cmd *cmd, void *data) |
2309 | { | |
2310 | u8 *status = data; | |
2311 | struct mgmt_cp_remove_keys *cp = cmd->param; | |
2312 | struct mgmt_rp_remove_keys rp; | |
2313 | ||
2314 | memset(&rp, 0, sizeof(rp)); | |
2315 | bacpy(&rp.bdaddr, &cp->bdaddr); | |
2316 | if (status != NULL) | |
2317 | rp.status = *status; | |
2318 | ||
2319 | cmd_complete(cmd->sk, cmd->index, MGMT_OP_REMOVE_KEYS, &rp, | |
2320 | sizeof(rp)); | |
2321 | ||
2322 | mgmt_pending_remove(cmd); | |
2323 | } | |
2324 | ||
48264f06 JH |
2325 | int mgmt_disconnected(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type, |
2326 | u8 addr_type) | |
f7520543 | 2327 | { |
4c659c39 | 2328 | struct mgmt_addr_info ev; |
8962ee74 JH |
2329 | struct sock *sk = NULL; |
2330 | int err; | |
2331 | ||
744cf19e | 2332 | mgmt_pending_foreach(MGMT_OP_DISCONNECT, hdev, disconnect_rsp, &sk); |
f7520543 | 2333 | |
f7520543 | 2334 | bacpy(&ev.bdaddr, bdaddr); |
48264f06 | 2335 | ev.type = link_to_mgmt(link_type, addr_type); |
f7520543 | 2336 | |
744cf19e | 2337 | err = mgmt_event(MGMT_EV_DISCONNECTED, hdev, &ev, sizeof(ev), sk); |
8962ee74 JH |
2338 | |
2339 | if (sk) | |
2340 | sock_put(sk); | |
2341 | ||
a8a1d19e JH |
2342 | mgmt_pending_foreach(MGMT_OP_REMOVE_KEYS, hdev, remove_keys_rsp, NULL); |
2343 | ||
8962ee74 JH |
2344 | return err; |
2345 | } | |
2346 | ||
37d9ef76 | 2347 | int mgmt_disconnect_failed(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 status) |
8962ee74 JH |
2348 | { |
2349 | struct pending_cmd *cmd; | |
ca69b795 | 2350 | u8 mgmt_err = mgmt_status(status); |
8962ee74 JH |
2351 | int err; |
2352 | ||
2e58ef3e | 2353 | cmd = mgmt_pending_find(MGMT_OP_DISCONNECT, hdev); |
8962ee74 JH |
2354 | if (!cmd) |
2355 | return -ENOENT; | |
2356 | ||
37d9ef76 JH |
2357 | if (bdaddr) { |
2358 | struct mgmt_rp_disconnect rp; | |
2359 | ||
2360 | bacpy(&rp.bdaddr, bdaddr); | |
2361 | rp.status = status; | |
2362 | ||
2363 | err = cmd_complete(cmd->sk, cmd->index, MGMT_OP_DISCONNECT, | |
2364 | &rp, sizeof(rp)); | |
2365 | } else | |
2366 | err = cmd_status(cmd->sk, hdev->id, MGMT_OP_DISCONNECT, | |
ca69b795 | 2367 | mgmt_err); |
8962ee74 | 2368 | |
a664b5bc | 2369 | mgmt_pending_remove(cmd); |
8962ee74 JH |
2370 | |
2371 | return err; | |
f7520543 | 2372 | } |
17d5c04c | 2373 | |
48264f06 JH |
2374 | int mgmt_connect_failed(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type, |
2375 | u8 addr_type, u8 status) | |
17d5c04c JH |
2376 | { |
2377 | struct mgmt_ev_connect_failed ev; | |
2378 | ||
4c659c39 | 2379 | bacpy(&ev.addr.bdaddr, bdaddr); |
48264f06 | 2380 | ev.addr.type = link_to_mgmt(link_type, addr_type); |
ca69b795 | 2381 | ev.status = mgmt_status(status); |
17d5c04c | 2382 | |
744cf19e | 2383 | return mgmt_event(MGMT_EV_CONNECT_FAILED, hdev, &ev, sizeof(ev), NULL); |
17d5c04c | 2384 | } |
980e1a53 | 2385 | |
744cf19e | 2386 | int mgmt_pin_code_request(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 secure) |
980e1a53 JH |
2387 | { |
2388 | struct mgmt_ev_pin_code_request ev; | |
2389 | ||
980e1a53 | 2390 | bacpy(&ev.bdaddr, bdaddr); |
a770bb5a | 2391 | ev.secure = secure; |
980e1a53 | 2392 | |
744cf19e | 2393 | return mgmt_event(MGMT_EV_PIN_CODE_REQUEST, hdev, &ev, sizeof(ev), |
4e51eae9 | 2394 | NULL); |
980e1a53 JH |
2395 | } |
2396 | ||
744cf19e JH |
2397 | int mgmt_pin_code_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr, |
2398 | u8 status) | |
980e1a53 JH |
2399 | { |
2400 | struct pending_cmd *cmd; | |
ac56fb13 | 2401 | struct mgmt_rp_pin_code_reply rp; |
980e1a53 JH |
2402 | int err; |
2403 | ||
2e58ef3e | 2404 | cmd = mgmt_pending_find(MGMT_OP_PIN_CODE_REPLY, hdev); |
980e1a53 JH |
2405 | if (!cmd) |
2406 | return -ENOENT; | |
2407 | ||
ac56fb13 | 2408 | bacpy(&rp.bdaddr, bdaddr); |
ca69b795 | 2409 | rp.status = mgmt_status(status); |
ac56fb13 | 2410 | |
744cf19e | 2411 | err = cmd_complete(cmd->sk, hdev->id, MGMT_OP_PIN_CODE_REPLY, &rp, |
4e51eae9 | 2412 | sizeof(rp)); |
980e1a53 | 2413 | |
a664b5bc | 2414 | mgmt_pending_remove(cmd); |
980e1a53 JH |
2415 | |
2416 | return err; | |
2417 | } | |
2418 | ||
744cf19e JH |
2419 | int mgmt_pin_code_neg_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr, |
2420 | u8 status) | |
980e1a53 JH |
2421 | { |
2422 | struct pending_cmd *cmd; | |
ac56fb13 | 2423 | struct mgmt_rp_pin_code_reply rp; |
980e1a53 JH |
2424 | int err; |
2425 | ||
2e58ef3e | 2426 | cmd = mgmt_pending_find(MGMT_OP_PIN_CODE_NEG_REPLY, hdev); |
980e1a53 JH |
2427 | if (!cmd) |
2428 | return -ENOENT; | |
2429 | ||
ac56fb13 | 2430 | bacpy(&rp.bdaddr, bdaddr); |
ca69b795 | 2431 | rp.status = mgmt_status(status); |
ac56fb13 | 2432 | |
744cf19e | 2433 | err = cmd_complete(cmd->sk, hdev->id, MGMT_OP_PIN_CODE_NEG_REPLY, &rp, |
4e51eae9 | 2434 | sizeof(rp)); |
980e1a53 | 2435 | |
a664b5bc | 2436 | mgmt_pending_remove(cmd); |
980e1a53 JH |
2437 | |
2438 | return err; | |
2439 | } | |
a5c29683 | 2440 | |
744cf19e JH |
2441 | int mgmt_user_confirm_request(struct hci_dev *hdev, bdaddr_t *bdaddr, |
2442 | __le32 value, u8 confirm_hint) | |
a5c29683 JH |
2443 | { |
2444 | struct mgmt_ev_user_confirm_request ev; | |
2445 | ||
744cf19e | 2446 | BT_DBG("%s", hdev->name); |
a5c29683 | 2447 | |
a5c29683 | 2448 | bacpy(&ev.bdaddr, bdaddr); |
55bc1a37 | 2449 | ev.confirm_hint = confirm_hint; |
a5c29683 JH |
2450 | put_unaligned_le32(value, &ev.value); |
2451 | ||
744cf19e | 2452 | return mgmt_event(MGMT_EV_USER_CONFIRM_REQUEST, hdev, &ev, sizeof(ev), |
4e51eae9 | 2453 | NULL); |
a5c29683 JH |
2454 | } |
2455 | ||
0df4c185 | 2456 | static int user_pairing_resp_complete(struct hci_dev *hdev, bdaddr_t *bdaddr, |
744cf19e | 2457 | u8 status, u8 opcode) |
a5c29683 JH |
2458 | { |
2459 | struct pending_cmd *cmd; | |
2460 | struct mgmt_rp_user_confirm_reply rp; | |
2461 | int err; | |
2462 | ||
2e58ef3e | 2463 | cmd = mgmt_pending_find(opcode, hdev); |
a5c29683 JH |
2464 | if (!cmd) |
2465 | return -ENOENT; | |
2466 | ||
a5c29683 | 2467 | bacpy(&rp.bdaddr, bdaddr); |
ca69b795 | 2468 | rp.status = mgmt_status(status); |
744cf19e | 2469 | err = cmd_complete(cmd->sk, hdev->id, opcode, &rp, sizeof(rp)); |
a5c29683 | 2470 | |
a664b5bc | 2471 | mgmt_pending_remove(cmd); |
a5c29683 JH |
2472 | |
2473 | return err; | |
2474 | } | |
2475 | ||
744cf19e JH |
2476 | int mgmt_user_confirm_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr, |
2477 | u8 status) | |
a5c29683 | 2478 | { |
0df4c185 | 2479 | return user_pairing_resp_complete(hdev, bdaddr, status, |
a5c29683 JH |
2480 | MGMT_OP_USER_CONFIRM_REPLY); |
2481 | } | |
2482 | ||
744cf19e JH |
2483 | int mgmt_user_confirm_neg_reply_complete(struct hci_dev *hdev, |
2484 | bdaddr_t *bdaddr, u8 status) | |
a5c29683 | 2485 | { |
0df4c185 | 2486 | return user_pairing_resp_complete(hdev, bdaddr, status, |
a5c29683 JH |
2487 | MGMT_OP_USER_CONFIRM_NEG_REPLY); |
2488 | } | |
2a611692 | 2489 | |
744cf19e | 2490 | int mgmt_auth_failed(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 status) |
2a611692 JH |
2491 | { |
2492 | struct mgmt_ev_auth_failed ev; | |
2493 | ||
2a611692 | 2494 | bacpy(&ev.bdaddr, bdaddr); |
ca69b795 | 2495 | ev.status = mgmt_status(status); |
2a611692 | 2496 | |
744cf19e | 2497 | return mgmt_event(MGMT_EV_AUTH_FAILED, hdev, &ev, sizeof(ev), NULL); |
2a611692 | 2498 | } |
b312b161 | 2499 | |
744cf19e | 2500 | int mgmt_set_local_name_complete(struct hci_dev *hdev, u8 *name, u8 status) |
b312b161 JH |
2501 | { |
2502 | struct pending_cmd *cmd; | |
2503 | struct mgmt_cp_set_local_name ev; | |
2504 | int err; | |
2505 | ||
2506 | memset(&ev, 0, sizeof(ev)); | |
2507 | memcpy(ev.name, name, HCI_MAX_NAME_LENGTH); | |
2508 | ||
2e58ef3e | 2509 | cmd = mgmt_pending_find(MGMT_OP_SET_LOCAL_NAME, hdev); |
b312b161 JH |
2510 | if (!cmd) |
2511 | goto send_event; | |
2512 | ||
2513 | if (status) { | |
744cf19e | 2514 | err = cmd_status(cmd->sk, hdev->id, MGMT_OP_SET_LOCAL_NAME, |
ca69b795 | 2515 | mgmt_status(status)); |
b312b161 JH |
2516 | goto failed; |
2517 | } | |
2518 | ||
744cf19e | 2519 | update_eir(hdev); |
80a1e1db | 2520 | |
744cf19e | 2521 | err = cmd_complete(cmd->sk, hdev->id, MGMT_OP_SET_LOCAL_NAME, &ev, |
b312b161 JH |
2522 | sizeof(ev)); |
2523 | if (err < 0) | |
2524 | goto failed; | |
2525 | ||
2526 | send_event: | |
744cf19e | 2527 | err = mgmt_event(MGMT_EV_LOCAL_NAME_CHANGED, hdev, &ev, sizeof(ev), |
b312b161 JH |
2528 | cmd ? cmd->sk : NULL); |
2529 | ||
2530 | failed: | |
2531 | if (cmd) | |
2532 | mgmt_pending_remove(cmd); | |
2533 | return err; | |
2534 | } | |
c35938b2 | 2535 | |
744cf19e JH |
2536 | int mgmt_read_local_oob_data_reply_complete(struct hci_dev *hdev, u8 *hash, |
2537 | u8 *randomizer, u8 status) | |
c35938b2 SJ |
2538 | { |
2539 | struct pending_cmd *cmd; | |
2540 | int err; | |
2541 | ||
744cf19e | 2542 | BT_DBG("%s status %u", hdev->name, status); |
c35938b2 | 2543 | |
2e58ef3e | 2544 | cmd = mgmt_pending_find(MGMT_OP_READ_LOCAL_OOB_DATA, hdev); |
c35938b2 SJ |
2545 | if (!cmd) |
2546 | return -ENOENT; | |
2547 | ||
2548 | if (status) { | |
744cf19e | 2549 | err = cmd_status(cmd->sk, hdev->id, |
ca69b795 JH |
2550 | MGMT_OP_READ_LOCAL_OOB_DATA, |
2551 | mgmt_status(status)); | |
c35938b2 SJ |
2552 | } else { |
2553 | struct mgmt_rp_read_local_oob_data rp; | |
2554 | ||
2555 | memcpy(rp.hash, hash, sizeof(rp.hash)); | |
2556 | memcpy(rp.randomizer, randomizer, sizeof(rp.randomizer)); | |
2557 | ||
744cf19e JH |
2558 | err = cmd_complete(cmd->sk, hdev->id, |
2559 | MGMT_OP_READ_LOCAL_OOB_DATA, | |
2560 | &rp, sizeof(rp)); | |
c35938b2 SJ |
2561 | } |
2562 | ||
2563 | mgmt_pending_remove(cmd); | |
2564 | ||
2565 | return err; | |
2566 | } | |
e17acd40 | 2567 | |
48264f06 JH |
2568 | int mgmt_device_found(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type, |
2569 | u8 addr_type, u8 *dev_class, s8 rssi, u8 *eir) | |
e17acd40 JH |
2570 | { |
2571 | struct mgmt_ev_device_found ev; | |
2572 | ||
2573 | memset(&ev, 0, sizeof(ev)); | |
2574 | ||
4c659c39 | 2575 | bacpy(&ev.addr.bdaddr, bdaddr); |
48264f06 | 2576 | ev.addr.type = link_to_mgmt(link_type, addr_type); |
e17acd40 JH |
2577 | ev.rssi = rssi; |
2578 | ||
2579 | if (eir) | |
2580 | memcpy(ev.eir, eir, sizeof(ev.eir)); | |
2581 | ||
f8523598 AG |
2582 | if (dev_class) |
2583 | memcpy(ev.dev_class, dev_class, sizeof(ev.dev_class)); | |
2584 | ||
744cf19e | 2585 | return mgmt_event(MGMT_EV_DEVICE_FOUND, hdev, &ev, sizeof(ev), NULL); |
e17acd40 | 2586 | } |
a88a9652 | 2587 | |
744cf19e | 2588 | int mgmt_remote_name(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 *name) |
a88a9652 JH |
2589 | { |
2590 | struct mgmt_ev_remote_name ev; | |
2591 | ||
2592 | memset(&ev, 0, sizeof(ev)); | |
2593 | ||
2594 | bacpy(&ev.bdaddr, bdaddr); | |
2595 | memcpy(ev.name, name, HCI_MAX_NAME_LENGTH); | |
2596 | ||
744cf19e | 2597 | return mgmt_event(MGMT_EV_REMOTE_NAME, hdev, &ev, sizeof(ev), NULL); |
a88a9652 | 2598 | } |
314b2381 | 2599 | |
7a135109 | 2600 | int mgmt_start_discovery_failed(struct hci_dev *hdev, u8 status) |
164a6e78 JH |
2601 | { |
2602 | struct pending_cmd *cmd; | |
2603 | int err; | |
2604 | ||
2e58ef3e | 2605 | cmd = mgmt_pending_find(MGMT_OP_START_DISCOVERY, hdev); |
164a6e78 JH |
2606 | if (!cmd) |
2607 | return -ENOENT; | |
2608 | ||
ca69b795 | 2609 | err = cmd_status(cmd->sk, hdev->id, cmd->opcode, mgmt_status(status)); |
164a6e78 JH |
2610 | mgmt_pending_remove(cmd); |
2611 | ||
2612 | return err; | |
2613 | } | |
2614 | ||
e6d465cb AG |
2615 | int mgmt_stop_discovery_failed(struct hci_dev *hdev, u8 status) |
2616 | { | |
2617 | struct pending_cmd *cmd; | |
2618 | int err; | |
2619 | ||
2620 | cmd = mgmt_pending_find(MGMT_OP_STOP_DISCOVERY, hdev); | |
2621 | if (!cmd) | |
2622 | return -ENOENT; | |
2623 | ||
2624 | err = cmd_status(cmd->sk, hdev->id, cmd->opcode, status); | |
2625 | mgmt_pending_remove(cmd); | |
2626 | ||
2627 | return err; | |
2628 | } | |
2629 | ||
744cf19e | 2630 | int mgmt_discovering(struct hci_dev *hdev, u8 discovering) |
314b2381 | 2631 | { |
164a6e78 JH |
2632 | struct pending_cmd *cmd; |
2633 | ||
2634 | if (discovering) | |
2e58ef3e | 2635 | cmd = mgmt_pending_find(MGMT_OP_START_DISCOVERY, hdev); |
164a6e78 | 2636 | else |
2e58ef3e | 2637 | cmd = mgmt_pending_find(MGMT_OP_STOP_DISCOVERY, hdev); |
164a6e78 JH |
2638 | |
2639 | if (cmd != NULL) { | |
744cf19e | 2640 | cmd_complete(cmd->sk, hdev->id, cmd->opcode, NULL, 0); |
164a6e78 JH |
2641 | mgmt_pending_remove(cmd); |
2642 | } | |
2643 | ||
744cf19e | 2644 | return mgmt_event(MGMT_EV_DISCOVERING, hdev, &discovering, |
314b2381 JH |
2645 | sizeof(discovering), NULL); |
2646 | } | |
5e762444 | 2647 | |
744cf19e | 2648 | int mgmt_device_blocked(struct hci_dev *hdev, bdaddr_t *bdaddr) |
5e762444 AJ |
2649 | { |
2650 | struct pending_cmd *cmd; | |
2651 | struct mgmt_ev_device_blocked ev; | |
2652 | ||
2e58ef3e | 2653 | cmd = mgmt_pending_find(MGMT_OP_BLOCK_DEVICE, hdev); |
5e762444 AJ |
2654 | |
2655 | bacpy(&ev.bdaddr, bdaddr); | |
2656 | ||
744cf19e JH |
2657 | return mgmt_event(MGMT_EV_DEVICE_BLOCKED, hdev, &ev, sizeof(ev), |
2658 | cmd ? cmd->sk : NULL); | |
5e762444 AJ |
2659 | } |
2660 | ||
744cf19e | 2661 | int mgmt_device_unblocked(struct hci_dev *hdev, bdaddr_t *bdaddr) |
5e762444 AJ |
2662 | { |
2663 | struct pending_cmd *cmd; | |
2664 | struct mgmt_ev_device_unblocked ev; | |
2665 | ||
2e58ef3e | 2666 | cmd = mgmt_pending_find(MGMT_OP_UNBLOCK_DEVICE, hdev); |
5e762444 AJ |
2667 | |
2668 | bacpy(&ev.bdaddr, bdaddr); | |
2669 | ||
744cf19e JH |
2670 | return mgmt_event(MGMT_EV_DEVICE_UNBLOCKED, hdev, &ev, sizeof(ev), |
2671 | cmd ? cmd->sk : NULL); | |
5e762444 | 2672 | } |