Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 1 | /* |
| 2 | * Copyright 2002-2004, Instant802 Networks, Inc. |
| 3 | * Copyright 2005, Devicescape Software, Inc. |
| 4 | * |
| 5 | * This program is free software; you can redistribute it and/or modify |
| 6 | * it under the terms of the GNU General Public License version 2 as |
| 7 | * published by the Free Software Foundation. |
| 8 | */ |
| 9 | |
| 10 | #ifndef IEEE80211_KEY_H |
| 11 | #define IEEE80211_KEY_H |
| 12 | |
| 13 | #include <linux/types.h> |
Johannes Berg | 8f37171 | 2007-08-28 17:01:54 -0400 | [diff] [blame] | 14 | #include <linux/list.h> |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 15 | #include <linux/crypto.h> |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 16 | #include <linux/rcupdate.h> |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 17 | #include <net/mac80211.h> |
| 18 | |
Johannes Berg | e31b821 | 2010-10-05 19:39:30 +0200 | [diff] [blame] | 19 | #define NUM_DEFAULT_KEYS 4 |
| 20 | #define NUM_DEFAULT_MGMT_KEYS 2 |
Max Stepanov | 2475b1cc | 2013-03-24 14:23:27 +0200 | [diff] [blame] | 21 | #define MAX_PN_LEN 16 |
Johannes Berg | e31b821 | 2010-10-05 19:39:30 +0200 | [diff] [blame] | 22 | |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 23 | struct ieee80211_local; |
| 24 | struct ieee80211_sub_if_data; |
| 25 | struct sta_info; |
| 26 | |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 27 | /** |
| 28 | * enum ieee80211_internal_key_flags - internal key flags |
| 29 | * |
| 30 | * @KEY_FLAG_UPLOADED_TO_HARDWARE: Indicates that this key is present |
| 31 | * in the hardware for TX crypto hardware acceleration. |
Johannes Berg | 95acac6 | 2011-07-12 12:30:59 +0200 | [diff] [blame] | 32 | * @KEY_FLAG_TAINTED: Key is tainted and packets should be dropped. |
Cedric Izoard | c7ef38e | 2015-03-17 10:47:33 +0000 | [diff] [blame] | 33 | * @KEY_FLAG_CIPHER_SCHEME: This key is for a hardware cipher scheme |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 34 | */ |
| 35 | enum ieee80211_internal_key_flags { |
| 36 | KEY_FLAG_UPLOADED_TO_HARDWARE = BIT(0), |
Johannes Berg | 95acac6 | 2011-07-12 12:30:59 +0200 | [diff] [blame] | 37 | KEY_FLAG_TAINTED = BIT(1), |
Cedric Izoard | c7ef38e | 2015-03-17 10:47:33 +0000 | [diff] [blame] | 38 | KEY_FLAG_CIPHER_SCHEME = BIT(2), |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 39 | }; |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 40 | |
gregor kowski | ca99861 | 2009-12-09 23:25:05 +0100 | [diff] [blame] | 41 | enum ieee80211_internal_tkip_state { |
| 42 | TKIP_STATE_NOT_INIT, |
| 43 | TKIP_STATE_PHASE1_DONE, |
| 44 | TKIP_STATE_PHASE1_HW_UPLOADED, |
| 45 | }; |
| 46 | |
Harvey Harrison | b0f76b3 | 2008-05-14 16:26:19 -0700 | [diff] [blame] | 47 | struct tkip_ctx { |
Johannes Berg | 523b02e | 2011-07-07 22:28:01 +0200 | [diff] [blame] | 48 | u32 iv32; /* current iv32 */ |
| 49 | u16 iv16; /* current iv16 */ |
| 50 | u16 p1k[5]; /* p1k cache */ |
| 51 | u32 p1k_iv32; /* iv32 for which p1k computed */ |
gregor kowski | ca99861 | 2009-12-09 23:25:05 +0100 | [diff] [blame] | 52 | enum ieee80211_internal_tkip_state state; |
Harvey Harrison | b0f76b3 | 2008-05-14 16:26:19 -0700 | [diff] [blame] | 53 | }; |
| 54 | |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 55 | struct ieee80211_key { |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 56 | struct ieee80211_local *local; |
| 57 | struct ieee80211_sub_if_data *sdata; |
| 58 | struct sta_info *sta; |
| 59 | |
Johannes Berg | 3b96766 | 2008-04-08 17:56:52 +0200 | [diff] [blame] | 60 | /* for sdata list */ |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 61 | struct list_head list; |
| 62 | |
Johannes Berg | ad0e2b5 | 2010-06-01 10:19:19 +0200 | [diff] [blame] | 63 | /* protected by key mutex */ |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 64 | unsigned int flags; |
| 65 | |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 66 | union { |
| 67 | struct { |
Johannes Berg | 523b02e | 2011-07-07 22:28:01 +0200 | [diff] [blame] | 68 | /* protects tx context */ |
| 69 | spinlock_t txlock; |
| 70 | |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 71 | /* last used TSC */ |
Harvey Harrison | b0f76b3 | 2008-05-14 16:26:19 -0700 | [diff] [blame] | 72 | struct tkip_ctx tx; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 73 | |
| 74 | /* last received RSC */ |
Johannes Berg | 5a306f5 | 2012-11-14 23:22:21 +0100 | [diff] [blame] | 75 | struct tkip_ctx rx[IEEE80211_NUM_TIDS]; |
Saravana | b98ea05 | 2012-12-04 19:47:42 +0530 | [diff] [blame] | 76 | |
| 77 | /* number of mic failures */ |
| 78 | u32 mic_failures; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 79 | } tkip; |
| 80 | struct { |
Johannes Berg | aba83a0b | 2011-07-06 21:59:39 +0200 | [diff] [blame] | 81 | atomic64_t tx_pn; |
Jouni Malinen | 9190252 | 2010-06-11 10:27:33 -0700 | [diff] [blame] | 82 | /* |
| 83 | * Last received packet number. The first |
Johannes Berg | 5a306f5 | 2012-11-14 23:22:21 +0100 | [diff] [blame] | 84 | * IEEE80211_NUM_TIDS counters are used with Data |
Jouni Malinen | 9190252 | 2010-06-11 10:27:33 -0700 | [diff] [blame] | 85 | * frames and the last counter is used with Robust |
| 86 | * Management frames. |
| 87 | */ |
Johannes Berg | 4325f6c | 2013-05-08 13:09:08 +0200 | [diff] [blame] | 88 | u8 rx_pn[IEEE80211_NUM_TIDS + 1][IEEE80211_CCMP_PN_LEN]; |
Ard Biesheuvel | 7ec7c4a | 2013-10-10 09:55:20 +0200 | [diff] [blame] | 89 | struct crypto_aead *tfm; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 90 | u32 replays; /* dot11RSNAStatsCCMPReplays */ |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 91 | } ccmp; |
Jouni Malinen | 765cb46 | 2009-01-08 13:32:01 +0200 | [diff] [blame] | 92 | struct { |
Johannes Berg | 75396ae | 2011-07-06 22:00:35 +0200 | [diff] [blame] | 93 | atomic64_t tx_pn; |
Johannes Berg | 4325f6c | 2013-05-08 13:09:08 +0200 | [diff] [blame] | 94 | u8 rx_pn[IEEE80211_CMAC_PN_LEN]; |
Jouni Malinen | 765cb46 | 2009-01-08 13:32:01 +0200 | [diff] [blame] | 95 | struct crypto_cipher *tfm; |
| 96 | u32 replays; /* dot11RSNAStatsCMACReplays */ |
| 97 | u32 icverrors; /* dot11RSNAStatsCMACICVErrors */ |
Jouni Malinen | 765cb46 | 2009-01-08 13:32:01 +0200 | [diff] [blame] | 98 | } aes_cmac; |
Max Stepanov | 2475b1cc | 2013-03-24 14:23:27 +0200 | [diff] [blame] | 99 | struct { |
Jouni Malinen | 00b9cfa | 2015-01-24 19:52:06 +0200 | [diff] [blame] | 100 | atomic64_t tx_pn; |
Jouni Malinen | 8ade538 | 2015-01-24 19:52:09 +0200 | [diff] [blame] | 101 | u8 rx_pn[IEEE80211_GMAC_PN_LEN]; |
| 102 | struct crypto_aead *tfm; |
| 103 | u32 replays; /* dot11RSNAStatsCMACReplays */ |
| 104 | u32 icverrors; /* dot11RSNAStatsCMACICVErrors */ |
| 105 | } aes_gmac; |
| 106 | struct { |
| 107 | atomic64_t tx_pn; |
Jouni Malinen | 00b9cfa | 2015-01-24 19:52:06 +0200 | [diff] [blame] | 108 | /* Last received packet number. The first |
| 109 | * IEEE80211_NUM_TIDS counters are used with Data |
| 110 | * frames and the last counter is used with Robust |
| 111 | * Management frames. |
| 112 | */ |
| 113 | u8 rx_pn[IEEE80211_NUM_TIDS + 1][IEEE80211_GCMP_PN_LEN]; |
| 114 | struct crypto_aead *tfm; |
| 115 | u32 replays; /* dot11RSNAStatsGCMPReplays */ |
| 116 | } gcmp; |
| 117 | struct { |
Max Stepanov | 2475b1cc | 2013-03-24 14:23:27 +0200 | [diff] [blame] | 118 | /* generic cipher scheme */ |
| 119 | u8 rx_pn[IEEE80211_NUM_TIDS + 1][MAX_PN_LEN]; |
| 120 | } gen; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 121 | } u; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 122 | |
Johannes Berg | 8f20fc2 | 2007-08-28 17:01:54 -0400 | [diff] [blame] | 123 | /* number of times this key has been used */ |
| 124 | int tx_rx_count; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 125 | |
Jiri Benc | e9f207f | 2007-05-05 11:46:38 -0700 | [diff] [blame] | 126 | #ifdef CONFIG_MAC80211_DEBUGFS |
| 127 | struct { |
| 128 | struct dentry *stalink; |
| 129 | struct dentry *dir; |
Johannes Berg | d9c58f3 | 2008-04-08 16:46:36 -0400 | [diff] [blame] | 130 | int cnt; |
Jiri Benc | e9f207f | 2007-05-05 11:46:38 -0700 | [diff] [blame] | 131 | } debugfs; |
| 132 | #endif |
| 133 | |
Johannes Berg | 8f20fc2 | 2007-08-28 17:01:54 -0400 | [diff] [blame] | 134 | /* |
| 135 | * key config, must be last because it contains key |
| 136 | * material as variable length member |
| 137 | */ |
| 138 | struct ieee80211_key_conf conf; |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 139 | }; |
| 140 | |
Max Stepanov | 2475b1cc | 2013-03-24 14:23:27 +0200 | [diff] [blame] | 141 | struct ieee80211_key * |
| 142 | ieee80211_key_alloc(u32 cipher, int idx, size_t key_len, |
| 143 | const u8 *key_data, |
| 144 | size_t seq_len, const u8 *seq, |
| 145 | const struct ieee80211_cipher_scheme *cs); |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 146 | /* |
| 147 | * Insert a key into data structures (sdata, sta if necessary) |
Johannes Berg | 79cf2df | 2013-03-06 22:53:52 +0100 | [diff] [blame] | 148 | * to make it used, free old key. On failure, also free the new key. |
Johannes Berg | db4d116 | 2008-02-25 16:27:45 +0100 | [diff] [blame] | 149 | */ |
Johannes Berg | 79cf2df | 2013-03-06 22:53:52 +0100 | [diff] [blame] | 150 | int ieee80211_key_link(struct ieee80211_key *key, |
| 151 | struct ieee80211_sub_if_data *sdata, |
| 152 | struct sta_info *sta); |
Johannes Berg | 3b8d9c2 | 2013-03-06 22:58:23 +0100 | [diff] [blame] | 153 | void ieee80211_key_free(struct ieee80211_key *key, bool delay_tailroom); |
Johannes Berg | 79cf2df | 2013-03-06 22:53:52 +0100 | [diff] [blame] | 154 | void ieee80211_key_free_unused(struct ieee80211_key *key); |
Johannes Berg | f7e0104 | 2010-12-09 19:49:02 +0100 | [diff] [blame] | 155 | void ieee80211_set_default_key(struct ieee80211_sub_if_data *sdata, int idx, |
| 156 | bool uni, bool multi); |
Jouni Malinen | 3cfcf6ac | 2009-01-08 13:32:02 +0200 | [diff] [blame] | 157 | void ieee80211_set_default_mgmt_key(struct ieee80211_sub_if_data *sdata, |
| 158 | int idx); |
Johannes Berg | 7907c7d | 2013-12-04 23:47:09 +0100 | [diff] [blame] | 159 | void ieee80211_free_keys(struct ieee80211_sub_if_data *sdata, |
| 160 | bool force_synchronize); |
Johannes Berg | 6d10e46 | 2013-03-06 23:09:11 +0100 | [diff] [blame] | 161 | void ieee80211_free_sta_keys(struct ieee80211_local *local, |
| 162 | struct sta_info *sta); |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 163 | void ieee80211_enable_keys(struct ieee80211_sub_if_data *sdata); |
Michal Kazior | f9dca80 | 2015-05-13 09:16:48 +0000 | [diff] [blame^] | 164 | void ieee80211_reset_crypto_tx_tailroom(struct ieee80211_sub_if_data *sdata); |
Johannes Berg | 11a843b | 2007-08-28 17:01:55 -0400 | [diff] [blame] | 165 | |
Johannes Berg | 40b275b | 2011-05-13 14:15:49 +0200 | [diff] [blame] | 166 | #define key_mtx_dereference(local, ref) \ |
| 167 | rcu_dereference_protected(ref, lockdep_is_held(&((local)->key_mtx))) |
| 168 | |
Johannes Berg | 8d1f7ec | 2013-02-23 00:59:03 +0100 | [diff] [blame] | 169 | void ieee80211_delayed_tailroom_dec(struct work_struct *wk); |
| 170 | |
Jiri Benc | f0706e8 | 2007-05-05 11:45:53 -0700 | [diff] [blame] | 171 | #endif /* IEEE80211_KEY_H */ |