blob: 4405fb352c706738edccee686f6bb646b59be20e [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Gustavo Padovan8c520a52012-05-23 04:04:22 -030027#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028
29#include <net/bluetooth/bluetooth.h>
30#include <net/bluetooth/hci_core.h>
Johan Hedberg4bc58f52014-05-20 09:45:47 +030031#include <net/bluetooth/l2cap.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032
Johan Hedberg0857dd32014-12-19 13:40:20 +020033#include "hci_request.h"
Marcel Holtmannac4b7232013-10-10 14:54:16 -070034#include "smp.h"
Marcel Holtmann70247282013-10-10 14:54:15 -070035#include "a2mp.h"
36
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020037struct sco_param {
38 u16 pkt_type;
39 u16 max_latency;
Johan Hedbergc7da5792014-09-24 22:41:46 +030040 u8 retrans_effort;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020041};
42
Bernhard Thaler48e68ff2014-09-23 11:01:07 +020043static const struct sco_param esco_param_cvsd[] = {
Johan Hedbergc7da5792014-09-24 22:41:46 +030044 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000a, 0x01 }, /* S3 */
45 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x0007, 0x01 }, /* S2 */
46 { EDR_ESCO_MASK | ESCO_EV3, 0x0007, 0x01 }, /* S1 */
47 { EDR_ESCO_MASK | ESCO_HV3, 0xffff, 0x01 }, /* D1 */
48 { EDR_ESCO_MASK | ESCO_HV1, 0xffff, 0x01 }, /* D0 */
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020049};
50
Bernhard Thaler48e68ff2014-09-23 11:01:07 +020051static const struct sco_param sco_param_cvsd[] = {
Johan Hedbergc7da5792014-09-24 22:41:46 +030052 { EDR_ESCO_MASK | ESCO_HV3, 0xffff, 0xff }, /* D1 */
53 { EDR_ESCO_MASK | ESCO_HV1, 0xffff, 0xff }, /* D0 */
Bernhard Thaler48e68ff2014-09-23 11:01:07 +020054};
55
Johan Hedberg565766b2014-09-25 09:48:01 +030056static const struct sco_param esco_param_msbc[] = {
Johan Hedbergc7da5792014-09-24 22:41:46 +030057 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000d, 0x02 }, /* T2 */
58 { EDR_ESCO_MASK | ESCO_EV3, 0x0008, 0x02 }, /* T1 */
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020059};
60
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030061static void hci_le_create_connection_cancel(struct hci_conn *conn)
Ville Tervofcd89c02011-02-10 22:38:47 -030062{
63 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
64}
65
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030066static void hci_acl_create_connection(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070067{
68 struct hci_dev *hdev = conn->hdev;
69 struct inquiry_entry *ie;
70 struct hci_cp_create_conn cp;
71
Andrei Emeltchenko42d2d872012-02-17 11:40:57 +020072 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -070073
74 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +020075 conn->out = true;
Johan Hedberg40bef302014-07-16 11:42:27 +030076 conn->role = HCI_ROLE_MASTER;
Linus Torvalds1da177e2005-04-16 15:20:36 -070077
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020078 conn->attempt++;
79
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020080 conn->link_policy = hdev->link_policy;
81
Linus Torvalds1da177e2005-04-16 15:20:36 -070082 memset(&cp, 0, sizeof(cp));
83 bacpy(&cp.bdaddr, &conn->dst);
84 cp.pscan_rep_mode = 0x02;
85
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020086 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
87 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +020088 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
89 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
90 cp.pscan_mode = ie->data.pscan_mode;
91 cp.clock_offset = ie->data.clock_offset |
Joe Perchesdcf4adb2014-03-12 10:52:35 -070092 cpu_to_le16(0x8000);
Marcel Holtmann41a96212008-07-14 20:13:48 +020093 }
94
Linus Torvalds1da177e2005-04-16 15:20:36 -070095 memcpy(conn->dev_class, ie->data.dev_class, 3);
Johan Hedberg58a681e2012-01-16 06:47:28 +020096 if (ie->data.ssp_mode > 0)
97 set_bit(HCI_CONN_SSP_ENABLED, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -070098 }
99
Marcel Holtmanna8746412008-07-14 20:13:46 +0200100 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700101 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200102 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700103 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200104 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +0200105
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200106 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107}
108
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300109static void hci_acl_create_connection_cancel(struct hci_conn *conn)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200110{
111 struct hci_cp_create_conn_cancel cp;
112
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300113 BT_DBG("hcon %p", conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200114
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200115 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200116 return;
117
118 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200119 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200120}
121
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300122static void hci_reject_sco(struct hci_conn *conn)
123{
124 struct hci_cp_reject_sync_conn_req cp;
125
Johan Hedbergd41c15c2014-09-24 13:14:46 +0300126 cp.reason = HCI_ERROR_REJ_LIMITED_RESOURCES;
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300127 bacpy(&cp.bdaddr, &conn->dst);
128
129 hci_send_cmd(conn->hdev, HCI_OP_REJECT_SYNC_CONN_REQ, sizeof(cp), &cp);
130}
131
Johan Hedberge3b679d2014-08-18 20:33:32 +0300132int hci_disconnect(struct hci_conn *conn, __u8 reason)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133{
134 struct hci_cp_disconnect cp;
135
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300136 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137
Johan Hedberg839035a2014-08-18 20:33:34 +0300138 /* When we are master of an established connection and it enters
139 * the disconnect timeout, then go ahead and try to read the
140 * current clock offset. Processing of the result is done
141 * within the event handling and hci_clock_offset_evt function.
142 */
143 if (conn->type == ACL_LINK && conn->role == HCI_ROLE_MASTER) {
144 struct hci_dev *hdev = conn->hdev;
Fabian Frederick4f639ed2014-10-25 10:48:58 +0200145 struct hci_cp_read_clock_offset clkoff_cp;
Johan Hedberg839035a2014-08-18 20:33:34 +0300146
Fabian Frederick4f639ed2014-10-25 10:48:58 +0200147 clkoff_cp.handle = cpu_to_le16(conn->handle);
148 hci_send_cmd(hdev, HCI_OP_READ_CLOCK_OFFSET, sizeof(clkoff_cp),
149 &clkoff_cp);
Johan Hedberg839035a2014-08-18 20:33:34 +0300150 }
151
Linus Torvalds1da177e2005-04-16 15:20:36 -0700152 conn->state = BT_DISCONN;
153
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700154 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700155 cp.reason = reason;
Johan Hedberge3b679d2014-08-18 20:33:32 +0300156 return hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700157}
158
Marcel Holtmanna2b19762014-06-27 13:45:08 +0200159static void hci_amp_disconn(struct hci_conn *conn)
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300160{
161 struct hci_cp_disconn_phy_link cp;
162
163 BT_DBG("hcon %p", conn);
164
165 conn->state = BT_DISCONN;
166
167 cp.phy_handle = HCI_PHY_HANDLE(conn->handle);
Marcel Holtmanna2b19762014-06-27 13:45:08 +0200168 cp.reason = hci_proto_disconn_ind(conn);
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300169 hci_send_cmd(conn->hdev, HCI_OP_DISCONN_PHY_LINK,
170 sizeof(cp), &cp);
171}
172
Vinicius Costa Gomes57f5d0d2012-07-27 19:32:54 -0300173static void hci_add_sco(struct hci_conn *conn, __u16 handle)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700174{
175 struct hci_dev *hdev = conn->hdev;
176 struct hci_cp_add_sco cp;
177
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300178 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700179
180 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200181 conn->out = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700182
Marcel Holtmannefc76882009-02-06 09:13:37 +0100183 conn->attempt++;
184
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700185 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200186 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700187
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200188 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700189}
190
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200191bool hci_setup_sync(struct hci_conn *conn, __u16 handle)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200192{
193 struct hci_dev *hdev = conn->hdev;
194 struct hci_cp_setup_sync_conn cp;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200195 const struct sco_param *param;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200196
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300197 BT_DBG("hcon %p", conn);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200198
199 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200200 conn->out = true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200201
Marcel Holtmannefc76882009-02-06 09:13:37 +0100202 conn->attempt++;
203
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200204 cp.handle = cpu_to_le16(handle);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200205
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700206 cp.tx_bandwidth = cpu_to_le32(0x00001f40);
207 cp.rx_bandwidth = cpu_to_le32(0x00001f40);
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200208 cp.voice_setting = cpu_to_le16(conn->setting);
209
210 switch (conn->setting & SCO_AIRMODE_MASK) {
211 case SCO_AIRMODE_TRANSP:
Johan Hedberg565766b2014-09-25 09:48:01 +0300212 if (conn->attempt > ARRAY_SIZE(esco_param_msbc))
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200213 return false;
Johan Hedberg565766b2014-09-25 09:48:01 +0300214 param = &esco_param_msbc[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200215 break;
216 case SCO_AIRMODE_CVSD:
Bernhard Thaler48e68ff2014-09-23 11:01:07 +0200217 if (lmp_esco_capable(conn->link)) {
218 if (conn->attempt > ARRAY_SIZE(esco_param_cvsd))
219 return false;
Bernhard Thaler48e68ff2014-09-23 11:01:07 +0200220 param = &esco_param_cvsd[conn->attempt - 1];
221 } else {
222 if (conn->attempt > ARRAY_SIZE(sco_param_cvsd))
223 return false;
Bernhard Thaler48e68ff2014-09-23 11:01:07 +0200224 param = &sco_param_cvsd[conn->attempt - 1];
225 }
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200226 break;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200227 default:
228 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200229 }
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200230
Johan Hedbergc7da5792014-09-24 22:41:46 +0300231 cp.retrans_effort = param->retrans_effort;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200232 cp.pkt_type = __cpu_to_le16(param->pkt_type);
233 cp.max_latency = __cpu_to_le16(param->max_latency);
234
235 if (hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp) < 0)
236 return false;
237
238 return true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200239}
240
Johan Hedberg7d6ca692014-07-02 17:37:31 +0300241u8 hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max, u16 latency,
242 u16 to_multiplier)
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200243{
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200244 struct hci_dev *hdev = conn->hdev;
Marcel Holtmannf044eb02014-06-29 16:43:26 +0200245 struct hci_conn_params *params;
246 struct hci_cp_le_conn_update cp;
247
248 hci_dev_lock(hdev);
249
250 params = hci_conn_params_lookup(hdev, &conn->dst, conn->dst_type);
251 if (params) {
252 params->conn_min_interval = min;
253 params->conn_max_interval = max;
254 params->conn_latency = latency;
255 params->supervision_timeout = to_multiplier;
256 }
257
258 hci_dev_unlock(hdev);
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200259
260 memset(&cp, 0, sizeof(cp));
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200261 cp.handle = cpu_to_le16(conn->handle);
262 cp.conn_interval_min = cpu_to_le16(min);
263 cp.conn_interval_max = cpu_to_le16(max);
264 cp.conn_latency = cpu_to_le16(latency);
265 cp.supervision_timeout = cpu_to_le16(to_multiplier);
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700266 cp.min_ce_len = cpu_to_le16(0x0000);
267 cp.max_ce_len = cpu_to_le16(0x0000);
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200268
269 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
Johan Hedberg7d6ca692014-07-02 17:37:31 +0300270
271 if (params)
272 return 0x01;
273
274 return 0x00;
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200275}
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200276
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -0800277void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __le64 rand,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300278 __u8 ltk[16])
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300279{
280 struct hci_dev *hdev = conn->hdev;
281 struct hci_cp_le_start_enc cp;
282
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300283 BT_DBG("hcon %p", conn);
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300284
285 memset(&cp, 0, sizeof(cp));
286
287 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -0800288 cp.rand = rand;
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300289 cp.ediv = ediv;
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -0800290 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300291
292 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
293}
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300294
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400295/* Device _must_ be locked */
296void hci_sco_setup(struct hci_conn *conn, __u8 status)
297{
298 struct hci_conn *sco = conn->link;
299
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400300 if (!sco)
301 return;
302
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300303 BT_DBG("hcon %p", conn);
304
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400305 if (!status) {
306 if (lmp_esco_capable(conn->hdev))
307 hci_setup_sync(sco, conn->handle);
308 else
309 hci_add_sco(sco, conn->handle);
310 } else {
311 hci_proto_connect_cfm(sco, status);
312 hci_conn_del(sco);
313 }
314}
315
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300316static void hci_conn_timeout(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700317{
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300318 struct hci_conn *conn = container_of(work, struct hci_conn,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300319 disc_work.work);
Lukasz Rymanowski1d56dc42014-06-17 13:04:20 +0200320 int refcnt = atomic_read(&conn->refcnt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700321
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300322 BT_DBG("hcon %p state %s", conn, state_to_string(conn->state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700323
Lukasz Rymanowski1d56dc42014-06-17 13:04:20 +0200324 WARN_ON(refcnt < 0);
325
326 /* FIXME: It was observed that in pairing failed scenario, refcnt
327 * drops below 0. Probably this is because l2cap_conn_del calls
328 * l2cap_chan_del for each channel, and inside l2cap_chan_del conn is
329 * dropped. After that loop hci_chan_del is called which also drops
330 * conn. For now make sure that ACL is alive if refcnt is higher then 0,
331 * otherwise drop it.
332 */
333 if (refcnt > 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 return;
335
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200336 switch (conn->state) {
337 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200338 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300339 if (conn->out) {
340 if (conn->type == ACL_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300341 hci_acl_create_connection_cancel(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300342 else if (conn->type == LE_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300343 hci_le_create_connection_cancel(conn);
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300344 } else if (conn->type == SCO_LINK || conn->type == ESCO_LINK) {
345 hci_reject_sco(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300346 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200347 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200348 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900349 case BT_CONNECTED:
Marcel Holtmann40051e42014-06-27 13:45:09 +0200350 if (conn->type == AMP_LINK) {
351 hci_amp_disconn(conn);
352 } else {
353 __u8 reason = hci_proto_disconn_ind(conn);
354 hci_disconnect(conn, reason);
355 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200356 break;
357 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700358 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200359 break;
360 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700361}
362
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200363/* Enter sniff mode */
Johan Hedberga74a84f2013-10-16 18:11:40 +0300364static void hci_conn_idle(struct work_struct *work)
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200365{
Johan Hedberga74a84f2013-10-16 18:11:40 +0300366 struct hci_conn *conn = container_of(work, struct hci_conn,
367 idle_work.work);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200368 struct hci_dev *hdev = conn->hdev;
369
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300370 BT_DBG("hcon %p mode %d", conn, conn->mode);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200371
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200372 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
373 return;
374
375 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
376 return;
377
378 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
379 struct hci_cp_sniff_subrate cp;
380 cp.handle = cpu_to_le16(conn->handle);
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700381 cp.max_latency = cpu_to_le16(0);
382 cp.min_remote_timeout = cpu_to_le16(0);
383 cp.min_local_timeout = cpu_to_le16(0);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200384 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
385 }
386
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200387 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200388 struct hci_cp_sniff_mode cp;
389 cp.handle = cpu_to_le16(conn->handle);
390 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
391 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700392 cp.attempt = cpu_to_le16(4);
393 cp.timeout = cpu_to_le16(1);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200394 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
395 }
396}
397
Johan Hedberg7bc18d92013-10-16 18:11:39 +0300398static void hci_conn_auto_accept(struct work_struct *work)
Johan Hedberg9f616562011-04-28 11:28:54 -0700399{
Johan Hedberg7bc18d92013-10-16 18:11:39 +0300400 struct hci_conn *conn = container_of(work, struct hci_conn,
401 auto_accept_work.work);
Johan Hedberg9f616562011-04-28 11:28:54 -0700402
Johan Hedberg7bc18d92013-10-16 18:11:39 +0300403 hci_send_cmd(conn->hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300404 &conn->dst);
Johan Hedberg9f616562011-04-28 11:28:54 -0700405}
406
Johan Hedberg9489eca2014-02-28 17:45:46 +0200407static void le_conn_timeout(struct work_struct *work)
408{
409 struct hci_conn *conn = container_of(work, struct hci_conn,
410 le_conn_timeout.work);
Johan Hedberg3c857752014-03-25 10:30:49 +0200411 struct hci_dev *hdev = conn->hdev;
Johan Hedberg9489eca2014-02-28 17:45:46 +0200412
413 BT_DBG("");
414
Johan Hedberg3c857752014-03-25 10:30:49 +0200415 /* We could end up here due to having done directed advertising,
416 * so clean up the state if necessary. This should however only
417 * happen with broken hardware or if low duty cycle was used
418 * (which doesn't have a timeout of its own).
419 */
Johan Hedberg0b1db38c2014-10-28 22:23:27 +0100420 if (conn->role == HCI_ROLE_SLAVE) {
Johan Hedberg3c857752014-03-25 10:30:49 +0200421 u8 enable = 0x00;
422 hci_send_cmd(hdev, HCI_OP_LE_SET_ADV_ENABLE, sizeof(enable),
423 &enable);
424 hci_le_conn_failed(conn, HCI_ERROR_ADVERTISING_TIMEOUT);
425 return;
426 }
427
Johan Hedberg9489eca2014-02-28 17:45:46 +0200428 hci_le_create_connection_cancel(conn);
429}
430
Johan Hedberga5c4e302014-07-16 11:56:07 +0300431struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst,
432 u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700433{
434 struct hci_conn *conn;
435
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300436 BT_DBG("%s dst %pMR", hdev->name, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700437
Johan Hedberg27f70f32014-07-21 10:50:06 +0300438 conn = kzalloc(sizeof(*conn), GFP_KERNEL);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200439 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700440 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700441
442 bacpy(&conn->dst, dst);
Marcel Holtmann662e8822013-10-13 05:23:59 -0700443 bacpy(&conn->src, &hdev->bdaddr);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200444 conn->hdev = hdev;
445 conn->type = type;
Johan Hedberga5c4e302014-07-16 11:56:07 +0300446 conn->role = role;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200447 conn->mode = HCI_CM_ACTIVE;
448 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300449 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200450 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300451 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200452 conn->key_type = 0xff;
Johan Hedbergebf86aa2014-12-05 13:36:08 +0200453 conn->rssi = HCI_RSSI_INVALID;
Andrzej Kaczmarek5a134fa2014-05-09 21:35:28 +0200454 conn->tx_power = HCI_TX_POWER_INVALID;
Andrzej Kaczmarekd0455ed2014-05-14 13:43:05 +0200455 conn->max_tx_power = HCI_TX_POWER_INVALID;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700456
Johan Hedberg58a681e2012-01-16 06:47:28 +0200457 set_bit(HCI_CONN_POWER_SAVE, &conn->flags);
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200458 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200459
Johan Hedberga5c4e302014-07-16 11:56:07 +0300460 if (conn->role == HCI_ROLE_MASTER)
461 conn->out = true;
462
Marcel Holtmanna8746412008-07-14 20:13:46 +0200463 switch (type) {
464 case ACL_LINK:
465 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
466 break;
Johan Hedberg9c84d1d2014-03-24 20:21:50 +0200467 case LE_LINK:
468 /* conn->src should reflect the local identity address */
469 hci_copy_identity_address(hdev, &conn->src, &conn->src_type);
470 break;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200471 case SCO_LINK:
472 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100473 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
474 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200475 else
476 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
477 break;
478 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100479 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200480 break;
481 }
482
Linus Torvalds1da177e2005-04-16 15:20:36 -0700483 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200484
Marcel Holtmann70c1f202012-02-22 12:06:43 +0100485 INIT_LIST_HEAD(&conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200486
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300487 INIT_DELAYED_WORK(&conn->disc_work, hci_conn_timeout);
Johan Hedberg7bc18d92013-10-16 18:11:39 +0300488 INIT_DELAYED_WORK(&conn->auto_accept_work, hci_conn_auto_accept);
Johan Hedberga74a84f2013-10-16 18:11:40 +0300489 INIT_DELAYED_WORK(&conn->idle_work, hci_conn_idle);
Johan Hedberg9489eca2014-02-28 17:45:46 +0200490 INIT_DELAYED_WORK(&conn->le_conn_timeout, le_conn_timeout);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491
492 atomic_set(&conn->refcnt, 0);
493
494 hci_dev_hold(hdev);
495
Linus Torvalds1da177e2005-04-16 15:20:36 -0700496 hci_conn_hash_add(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200497 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700498 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
499
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700500 hci_conn_init_sysfs(conn);
501
Linus Torvalds1da177e2005-04-16 15:20:36 -0700502 return conn;
503}
504
505int hci_conn_del(struct hci_conn *conn)
506{
507 struct hci_dev *hdev = conn->hdev;
508
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300509 BT_DBG("%s hcon %p handle %d", hdev->name, conn, conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700510
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300511 cancel_delayed_work_sync(&conn->disc_work);
Johan Hedberg7bc18d92013-10-16 18:11:39 +0300512 cancel_delayed_work_sync(&conn->auto_accept_work);
Johan Hedberga74a84f2013-10-16 18:11:40 +0300513 cancel_delayed_work_sync(&conn->idle_work);
Johan Hedberg9f616562011-04-28 11:28:54 -0700514
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200515 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700516 struct hci_conn *sco = conn->link;
517 if (sco)
518 sco->link = NULL;
519
520 /* Unacked frames */
521 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300522 } else if (conn->type == LE_LINK) {
Johan Hedberg980ffc02014-10-28 22:23:26 +0100523 cancel_delayed_work(&conn->le_conn_timeout);
Johan Hedberg9489eca2014-02-28 17:45:46 +0200524
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300525 if (hdev->le_pkts)
526 hdev->le_cnt += conn->sent;
527 else
528 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200529 } else {
530 struct hci_conn *acl = conn->link;
531 if (acl) {
532 acl->link = NULL;
David Herrmann76a68ba2013-04-06 20:28:37 +0200533 hci_conn_drop(acl);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200534 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700535 }
536
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200537 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200538
Andrei Emeltchenko9740e492012-05-29 13:59:02 +0300539 if (conn->amp_mgr)
540 amp_mgr_put(conn->amp_mgr);
541
Linus Torvalds1da177e2005-04-16 15:20:36 -0700542 hci_conn_hash_del(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200543 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700544 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200545
Linus Torvalds1da177e2005-04-16 15:20:36 -0700546 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700547
David Herrmannfc225c32013-04-06 20:28:38 +0200548 hci_conn_del_sysfs(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800549
Alfonso Acosta89cbb062014-10-11 21:44:47 +0000550 if (test_bit(HCI_CONN_PARAM_REMOVAL_PEND, &conn->flags))
551 hci_conn_params_del(conn->hdev, &conn->dst, conn->dst_type);
552
Marcel Holtmann384943e2009-05-08 18:20:43 -0700553 hci_dev_put(hdev);
554
David Herrmann8d123562013-04-06 20:28:39 +0200555 hci_conn_put(conn);
Tomas Targownik163f4da2011-06-30 16:30:44 -0300556
Linus Torvalds1da177e2005-04-16 15:20:36 -0700557 return 0;
558}
559
560struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
561{
562 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200563 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700564
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300565 BT_DBG("%pMR -> %pMR", src, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700566
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200567 read_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700568
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200569 list_for_each_entry(d, &hci_dev_list, list) {
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -0300570 if (!test_bit(HCI_UP, &d->flags) ||
Marcel Holtmannaf750e92013-09-03 18:08:37 -0700571 test_bit(HCI_USER_CHANNEL, &d->dev_flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300572 d->dev_type != HCI_BREDR)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700573 continue;
574
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900575 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576 * No source address - find interface with bdaddr != dst
577 * Source address - find interface with bdaddr == src
578 */
579
580 if (use_src) {
581 if (!bacmp(&d->bdaddr, src)) {
582 hdev = d; break;
583 }
584 } else {
585 if (bacmp(&d->bdaddr, dst)) {
586 hdev = d; break;
587 }
588 }
589 }
590
591 if (hdev)
592 hdev = hci_dev_hold(hdev);
593
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200594 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700595 return hdev;
596}
597EXPORT_SYMBOL(hci_get_route);
598
Andre Guedes9bb3c012014-01-30 18:22:08 -0300599/* This function requires the caller holds hdev->lock */
Andre Guedes06c053f2014-02-26 20:21:41 -0300600void hci_le_conn_failed(struct hci_conn *conn, u8 status)
Andre Guedes9bb3c012014-01-30 18:22:08 -0300601{
602 struct hci_dev *hdev = conn->hdev;
Johan Hedbergf161dd42014-08-15 21:06:54 +0300603 struct hci_conn_params *params;
604
605 params = hci_pend_le_action_lookup(&hdev->pend_le_conns, &conn->dst,
606 conn->dst_type);
607 if (params && params->conn) {
608 hci_conn_drop(params->conn);
Johan Hedbergf8aaf9b2014-08-17 23:28:57 +0300609 hci_conn_put(params->conn);
Johan Hedbergf161dd42014-08-15 21:06:54 +0300610 params->conn = NULL;
611 }
Andre Guedes9bb3c012014-01-30 18:22:08 -0300612
613 conn->state = BT_CLOSED;
614
615 mgmt_connect_failed(hdev, &conn->dst, conn->type, conn->dst_type,
616 status);
617
618 hci_proto_connect_cfm(conn, status);
619
620 hci_conn_del(conn);
Andre Guedesa4790db2014-02-26 20:21:47 -0300621
622 /* Since we may have temporarily stopped the background scanning in
623 * favor of connection establishment, we should restart it.
624 */
625 hci_update_background_scan(hdev);
Johan Hedberg3c857752014-03-25 10:30:49 +0200626
627 /* Re-enable advertising in case this was a failed connection
628 * attempt as a peripheral.
629 */
630 mgmt_reenable_advertising(hdev);
Andre Guedes9bb3c012014-01-30 18:22:08 -0300631}
632
Andre Guedes1d399ae2013-10-08 08:21:17 -0300633static void create_le_conn_complete(struct hci_dev *hdev, u8 status)
634{
635 struct hci_conn *conn;
636
637 if (status == 0)
638 return;
639
640 BT_ERR("HCI request failed to create LE connection: status 0x%2.2x",
641 status);
642
643 hci_dev_lock(hdev);
644
645 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
646 if (!conn)
647 goto done;
648
Andre Guedes06c053f2014-02-26 20:21:41 -0300649 hci_le_conn_failed(conn, status);
Andre Guedes1d399ae2013-10-08 08:21:17 -0300650
651done:
652 hci_dev_unlock(hdev);
653}
654
Andre Guedes2acf3d92014-02-26 20:21:42 -0300655static void hci_req_add_le_create_conn(struct hci_request *req,
656 struct hci_conn *conn)
657{
658 struct hci_cp_le_create_conn cp;
659 struct hci_dev *hdev = conn->hdev;
660 u8 own_addr_type;
661
662 memset(&cp, 0, sizeof(cp));
663
664 /* Update random address, but set require_privacy to false so
Marcel Holtmann9437d2e2014-12-07 20:13:17 +0100665 * that we never connect with an non-resolvable address.
Andre Guedes2acf3d92014-02-26 20:21:42 -0300666 */
667 if (hci_update_random_address(req, false, &own_addr_type))
668 return;
669
Andre Guedes2acf3d92014-02-26 20:21:42 -0300670 cp.scan_interval = cpu_to_le16(hdev->le_scan_interval);
671 cp.scan_window = cpu_to_le16(hdev->le_scan_window);
672 bacpy(&cp.peer_addr, &conn->dst);
673 cp.peer_addr_type = conn->dst_type;
674 cp.own_address_type = own_addr_type;
675 cp.conn_interval_min = cpu_to_le16(conn->le_conn_min_interval);
676 cp.conn_interval_max = cpu_to_le16(conn->le_conn_max_interval);
Marcel Holtmann037fc412014-06-29 16:43:27 +0200677 cp.conn_latency = cpu_to_le16(conn->le_conn_latency);
678 cp.supervision_timeout = cpu_to_le16(conn->le_supv_timeout);
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700679 cp.min_ce_len = cpu_to_le16(0x0000);
680 cp.max_ce_len = cpu_to_le16(0x0000);
Andre Guedes2acf3d92014-02-26 20:21:42 -0300681
682 hci_req_add(req, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
Johan Hedbergb46e0032014-02-28 12:54:15 +0200683
684 conn->state = BT_CONNECT;
Andre Guedes2acf3d92014-02-26 20:21:42 -0300685}
686
Johan Hedberg3c857752014-03-25 10:30:49 +0200687static void hci_req_directed_advertising(struct hci_request *req,
688 struct hci_conn *conn)
689{
690 struct hci_dev *hdev = req->hdev;
691 struct hci_cp_le_set_adv_param cp;
692 u8 own_addr_type;
693 u8 enable;
694
Johan Hedberg5ce194c2014-07-08 15:07:49 +0300695 /* Clear the HCI_LE_ADV bit temporarily so that the
Johan Hedberg3c857752014-03-25 10:30:49 +0200696 * hci_update_random_address knows that it's safe to go ahead
697 * and write a new random address. The flag will be set back on
698 * as soon as the SET_ADV_ENABLE HCI command completes.
699 */
Johan Hedberg5ce194c2014-07-08 15:07:49 +0300700 clear_bit(HCI_LE_ADV, &hdev->dev_flags);
Johan Hedberg3c857752014-03-25 10:30:49 +0200701
702 /* Set require_privacy to false so that the remote device has a
703 * chance of identifying us.
704 */
705 if (hci_update_random_address(req, false, &own_addr_type) < 0)
706 return;
707
708 memset(&cp, 0, sizeof(cp));
709 cp.type = LE_ADV_DIRECT_IND;
710 cp.own_address_type = own_addr_type;
711 cp.direct_addr_type = conn->dst_type;
712 bacpy(&cp.direct_addr, &conn->dst);
713 cp.channel_map = hdev->le_adv_channel_map;
714
715 hci_req_add(req, HCI_OP_LE_SET_ADV_PARAM, sizeof(cp), &cp);
716
717 enable = 0x01;
718 hci_req_add(req, HCI_OP_LE_SET_ADV_ENABLE, sizeof(enable), &enable);
719
720 conn->state = BT_CONNECT;
721}
722
Andre Guedes04a6c582014-02-26 20:21:44 -0300723struct hci_conn *hci_connect_le(struct hci_dev *hdev, bdaddr_t *dst,
Johan Hedbergcdd62752014-07-07 15:02:28 +0300724 u8 dst_type, u8 sec_level, u16 conn_timeout,
Johan Hedberge804d252014-07-16 11:42:28 +0300725 u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700726{
Andre Guedes4292f1f2014-02-03 13:56:19 -0300727 struct hci_conn_params *params;
Andre Guedesf1e5d542013-10-03 18:25:44 -0300728 struct hci_conn *conn;
Johan Hedberg1ebfcc12014-02-18 21:41:36 +0200729 struct smp_irk *irk;
Andre Guedes2acf3d92014-02-26 20:21:42 -0300730 struct hci_request req;
Andre Guedes1d399ae2013-10-08 08:21:17 -0300731 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700732
Andre Guedes620ad522013-10-08 08:21:18 -0300733 /* Some devices send ATT messages as soon as the physical link is
734 * established. To be able to handle these ATT messages, the user-
735 * space first establishes the connection and then starts the pairing
736 * process.
737 *
738 * So if a hci_conn object already exists for the following connection
739 * attempt, we simply update pending_sec_level and auth_type fields
740 * and return the object found.
741 */
Andre Guedesf1e5d542013-10-03 18:25:44 -0300742 conn = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Andre Guedes620ad522013-10-08 08:21:18 -0300743 if (conn) {
744 conn->pending_sec_level = sec_level;
Andre Guedes620ad522013-10-08 08:21:18 -0300745 goto done;
Ville Tervofcd89c02011-02-10 22:38:47 -0300746 }
747
Andre Guedes620ad522013-10-08 08:21:18 -0300748 /* Since the controller supports only one LE connection attempt at a
749 * time, we return -EBUSY if there is any connection attempt running.
750 */
751 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
752 if (conn)
753 return ERR_PTR(-EBUSY);
754
Marcel Holtmannedb4b462014-02-18 15:13:43 -0800755 /* When given an identity address with existing identity
756 * resolving key, the connection needs to be established
757 * to a resolvable random address.
758 *
759 * This uses the cached random resolvable address from
760 * a previous scan. When no cached address is available,
761 * try connecting to the identity address instead.
762 *
763 * Storing the resolvable random address is required here
764 * to handle connection failures. The address will later
765 * be resolved back into the original identity address
766 * from the connect request.
767 */
Johan Hedberg1ebfcc12014-02-18 21:41:36 +0200768 irk = hci_find_irk_by_addr(hdev, dst, dst_type);
769 if (irk && bacmp(&irk->rpa, BDADDR_ANY)) {
770 dst = &irk->rpa;
771 dst_type = ADDR_LE_DEV_RANDOM;
772 }
773
Johan Hedberga5c4e302014-07-16 11:56:07 +0300774 conn = hci_conn_add(hdev, LE_LINK, dst, role);
Andre Guedes620ad522013-10-08 08:21:18 -0300775 if (!conn)
776 return ERR_PTR(-ENOMEM);
777
Johan Hedberg1ebfcc12014-02-18 21:41:36 +0200778 conn->dst_type = dst_type;
Andre Guedes620ad522013-10-08 08:21:18 -0300779 conn->sec_level = BT_SECURITY_LOW;
Andre Guedesf1e5d542013-10-03 18:25:44 -0300780 conn->pending_sec_level = sec_level;
Johan Hedberg09ae2602014-07-06 13:41:15 +0300781 conn->conn_timeout = conn_timeout;
Andre Guedes4292f1f2014-02-03 13:56:19 -0300782
Johan Hedberg3c857752014-03-25 10:30:49 +0200783 hci_req_init(&req, hdev);
784
Johan Hedberg376f54c2014-07-08 15:07:52 +0300785 /* Disable advertising if we're active. For master role
786 * connections most controllers will refuse to connect if
787 * advertising is enabled, and for slave role connections we
788 * anyway have to disable it in order to start directed
789 * advertising.
790 */
791 if (test_bit(HCI_LE_ADV, &hdev->dev_flags)) {
792 u8 enable = 0x00;
793 hci_req_add(&req, HCI_OP_LE_SET_ADV_ENABLE, sizeof(enable),
794 &enable);
795 }
796
Johan Hedbergcdd62752014-07-07 15:02:28 +0300797 /* If requested to connect as slave use directed advertising */
Johan Hedberge804d252014-07-16 11:42:28 +0300798 if (conn->role == HCI_ROLE_SLAVE) {
Johan Hedberge8bb6b92014-07-08 15:07:53 +0300799 /* If we're active scanning most controllers are unable
800 * to initiate advertising. Simply reject the attempt.
801 */
802 if (test_bit(HCI_LE_SCAN, &hdev->dev_flags) &&
803 hdev->le_scan_type == LE_SCAN_ACTIVE) {
804 skb_queue_purge(&req.cmd_q);
805 hci_conn_del(conn);
806 return ERR_PTR(-EBUSY);
807 }
808
Johan Hedberg3c857752014-03-25 10:30:49 +0200809 hci_req_directed_advertising(&req, conn);
810 goto create_conn;
811 }
812
Andre Guedes4292f1f2014-02-03 13:56:19 -0300813 params = hci_conn_params_lookup(hdev, &conn->dst, conn->dst_type);
814 if (params) {
815 conn->le_conn_min_interval = params->conn_min_interval;
816 conn->le_conn_max_interval = params->conn_max_interval;
Marcel Holtmann037fc412014-06-29 16:43:27 +0200817 conn->le_conn_latency = params->conn_latency;
818 conn->le_supv_timeout = params->supervision_timeout;
Andre Guedes4292f1f2014-02-03 13:56:19 -0300819 } else {
820 conn->le_conn_min_interval = hdev->le_conn_min_interval;
821 conn->le_conn_max_interval = hdev->le_conn_max_interval;
Marcel Holtmann04fb7d92014-06-30 12:34:36 +0200822 conn->le_conn_latency = hdev->le_conn_latency;
823 conn->le_supv_timeout = hdev->le_supv_timeout;
Andre Guedes4292f1f2014-02-03 13:56:19 -0300824 }
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300825
Andre Guedes2acf3d92014-02-26 20:21:42 -0300826 /* If controller is scanning, we stop it since some controllers are
Johan Hedberg81ad6fd2014-02-28 20:26:13 +0200827 * not able to scan and connect at the same time. Also set the
828 * HCI_LE_SCAN_INTERRUPTED flag so that the command complete
829 * handler for scan disabling knows to set the correct discovery
830 * state.
Andre Guedes2acf3d92014-02-26 20:21:42 -0300831 */
832 if (test_bit(HCI_LE_SCAN, &hdev->dev_flags)) {
833 hci_req_add_le_scan_disable(&req);
Johan Hedberg81ad6fd2014-02-28 20:26:13 +0200834 set_bit(HCI_LE_SCAN_INTERRUPTED, &hdev->dev_flags);
Andre Guedes2acf3d92014-02-26 20:21:42 -0300835 }
836
Johan Hedberg81ad6fd2014-02-28 20:26:13 +0200837 hci_req_add_le_create_conn(&req, conn);
838
Johan Hedberg3c857752014-03-25 10:30:49 +0200839create_conn:
Johan Hedberg81ad6fd2014-02-28 20:26:13 +0200840 err = hci_req_run(&req, create_le_conn_complete);
Andre Guedes2acf3d92014-02-26 20:21:42 -0300841 if (err) {
842 hci_conn_del(conn);
Andre Guedes620ad522013-10-08 08:21:18 -0300843 return ERR_PTR(err);
Andre Guedes2acf3d92014-02-26 20:21:42 -0300844 }
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300845
Andre Guedes620ad522013-10-08 08:21:18 -0300846done:
847 hci_conn_hold(conn);
Andre Guedesf1e5d542013-10-03 18:25:44 -0300848 return conn;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300849}
850
Andre Guedes04a6c582014-02-26 20:21:44 -0300851struct hci_conn *hci_connect_acl(struct hci_dev *hdev, bdaddr_t *dst,
852 u8 sec_level, u8 auth_type)
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200853{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854 struct hci_conn *acl;
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400855
Johan Hedberg56f87902013-10-02 13:43:13 +0300856 if (!test_bit(HCI_BREDR_ENABLED, &hdev->dev_flags))
Johan Hedbergbeb19e42014-07-18 11:15:26 +0300857 return ERR_PTR(-EOPNOTSUPP);
Johan Hedberg56f87902013-10-02 13:43:13 +0300858
Linus Torvalds1da177e2005-04-16 15:20:36 -0700859 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
860 if (!acl) {
Johan Hedberga5c4e302014-07-16 11:56:07 +0300861 acl = hci_conn_add(hdev, ACL_LINK, dst, HCI_ROLE_MASTER);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700862 if (!acl)
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200863 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700864 }
865
866 hci_conn_hold(acl);
867
868 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
869 acl->sec_level = BT_SECURITY_LOW;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200870 acl->pending_sec_level = sec_level;
871 acl->auth_type = auth_type;
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300872 hci_acl_create_connection(acl);
Nick Pellyc3902162009-11-13 14:16:32 -0800873 }
874
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300875 return acl;
876}
877
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200878struct hci_conn *hci_connect_sco(struct hci_dev *hdev, int type, bdaddr_t *dst,
879 __u16 setting)
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300880{
881 struct hci_conn *acl;
882 struct hci_conn *sco;
883
Frédéric Dalleaue660ed62013-08-19 14:23:54 +0200884 acl = hci_connect_acl(hdev, dst, BT_SECURITY_LOW, HCI_AT_NO_BONDING);
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300885 if (IS_ERR(acl))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200886 return acl;
887
888 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
889 if (!sco) {
Johan Hedberga5c4e302014-07-16 11:56:07 +0300890 sco = hci_conn_add(hdev, type, dst, HCI_ROLE_MASTER);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200891 if (!sco) {
David Herrmann76a68ba2013-04-06 20:28:37 +0200892 hci_conn_drop(acl);
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200893 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700894 }
895 }
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200896
897 acl->link = sco;
898 sco->link = acl;
899
900 hci_conn_hold(sco);
901
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200902 sco->setting = setting;
903
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200904 if (acl->state == BT_CONNECTED &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300905 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Johan Hedberg58a681e2012-01-16 06:47:28 +0200906 set_bit(HCI_CONN_POWER_SAVE, &acl->flags);
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700907 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200908
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200909 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->flags)) {
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200910 /* defer SCO setup until mode change completed */
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200911 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->flags);
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100912 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700913 }
914
915 hci_sco_setup(acl, 0x00);
Marcel Holtmann96a31832009-02-12 16:23:03 +0100916 }
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100917
Marcel Holtmann96a31832009-02-12 16:23:03 +0100918 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700919}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700920
921/* Check link security requirement */
922int hci_conn_check_link_mode(struct hci_conn *conn)
923{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300924 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700925
Marcel Holtmann40b552a2014-03-19 14:10:25 -0700926 /* In Secure Connections Only mode, it is required that Secure
927 * Connections is used and the link is encrypted with AES-CCM
928 * using a P-256 authenticated combination key.
929 */
930 if (test_bit(HCI_SC_ONLY, &conn->hdev->flags)) {
931 if (!hci_conn_sc_enabled(conn) ||
932 !test_bit(HCI_CONN_AES_CCM, &conn->flags) ||
933 conn->key_type != HCI_LK_AUTH_COMBINATION_P256)
934 return 0;
935 }
936
Johan Hedberg4dae2792014-06-24 17:03:50 +0300937 if (hci_conn_ssp_enabled(conn) &&
938 !test_bit(HCI_CONN_ENCRYPT, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700939 return 0;
940
941 return 1;
942}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700943
944/* Authenticate remote device */
945static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
946{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300947 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700948
Johan Hedberg765c2a92011-01-19 12:06:52 +0530949 if (conn->pending_sec_level > sec_level)
950 sec_level = conn->pending_sec_level;
951
Linus Torvalds1da177e2005-04-16 15:20:36 -0700952 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530953 conn->pending_sec_level = sec_level;
Johan Hedberg4dae2792014-06-24 17:03:50 +0300954 else if (test_bit(HCI_CONN_AUTH, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700955 return 1;
956
Johan Hedberg65cf6862011-01-19 12:06:49 +0530957 /* Make sure we preserve an existing MITM requirement*/
958 auth_type |= (conn->auth_type & 0x01);
959
Marcel Holtmann96a31832009-02-12 16:23:03 +0100960 conn->auth_type = auth_type;
961
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200962 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963 struct hci_cp_auth_requested cp;
Peter Hurleyb7d05ba2012-01-13 15:11:30 +0100964
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700965 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200966 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300967 sizeof(cp), &cp);
Johan Hedberg09da1f32014-04-11 12:02:32 -0700968
969 /* If we're already encrypted set the REAUTH_PEND flag,
970 * otherwise set the ENCRYPT_PEND.
971 */
Johan Hedberg4dae2792014-06-24 17:03:50 +0300972 if (test_bit(HCI_CONN_ENCRYPT, &conn->flags))
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200973 set_bit(HCI_CONN_REAUTH_PEND, &conn->flags);
Johan Hedberg09da1f32014-04-11 12:02:32 -0700974 else
975 set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700976 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100977
Linus Torvalds1da177e2005-04-16 15:20:36 -0700978 return 0;
979}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700980
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200981/* Encrypt the the link */
982static void hci_conn_encrypt(struct hci_conn *conn)
983{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300984 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200985
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200986 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags)) {
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200987 struct hci_cp_set_conn_encrypt cp;
988 cp.handle = cpu_to_le16(conn->handle);
989 cp.encrypt = 0x01;
990 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300991 &cp);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200992 }
993}
994
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100995/* Enable security */
Johan Hedberge7cafc42014-07-17 15:35:38 +0300996int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type,
997 bool initiator)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700998{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300999 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001000
Vinicius Costa Gomesd8343f12012-08-23 21:32:44 -03001001 if (conn->type == LE_LINK)
1002 return smp_conn_security(conn, sec_level);
1003
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001004 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001005 if (sec_level == BT_SECURITY_SDP)
1006 return 1;
1007
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001008 /* For non 2.1 devices and low security level we don't need the link
1009 key. */
Johan Hedbergaa64a8b2012-01-18 21:33:12 +02001010 if (sec_level == BT_SECURITY_LOW && !hci_conn_ssp_enabled(conn))
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -07001011 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001012
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001013 /* For other security levels we need the link key. */
Johan Hedberg4dae2792014-06-24 17:03:50 +03001014 if (!test_bit(HCI_CONN_AUTH, &conn->flags))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001015 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001016
Marcel Holtmann7b5a9242014-01-15 22:37:39 -08001017 /* An authenticated FIPS approved combination key has sufficient
1018 * security for security level 4. */
1019 if (conn->key_type == HCI_LK_AUTH_COMBINATION_P256 &&
1020 sec_level == BT_SECURITY_FIPS)
1021 goto encrypt;
1022
1023 /* An authenticated combination key has sufficient security for
1024 security level 3. */
1025 if ((conn->key_type == HCI_LK_AUTH_COMBINATION_P192 ||
1026 conn->key_type == HCI_LK_AUTH_COMBINATION_P256) &&
1027 sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001028 goto encrypt;
1029
1030 /* An unauthenticated combination key has sufficient security for
1031 security level 1 and 2. */
Marcel Holtmann66138ce2014-01-10 02:07:20 -08001032 if ((conn->key_type == HCI_LK_UNAUTH_COMBINATION_P192 ||
1033 conn->key_type == HCI_LK_UNAUTH_COMBINATION_P256) &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -03001034 (sec_level == BT_SECURITY_MEDIUM || sec_level == BT_SECURITY_LOW))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001035 goto encrypt;
1036
1037 /* A combination key has always sufficient security for the security
1038 levels 1 or 2. High security level requires the combination key
1039 is generated using maximum PIN code length (16).
1040 For pre 2.1 units. */
1041 if (conn->key_type == HCI_LK_COMBINATION &&
Marcel Holtmann7b5a9242014-01-15 22:37:39 -08001042 (sec_level == BT_SECURITY_MEDIUM || sec_level == BT_SECURITY_LOW ||
1043 conn->pin_length == 16))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001044 goto encrypt;
1045
1046auth:
Johan Hedberg51a8efd2012-01-16 06:10:31 +02001047 if (test_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001048 return 0;
1049
Johan Hedberg977f8fc2014-07-17 15:35:39 +03001050 if (initiator)
1051 set_bit(HCI_CONN_AUTH_INITIATOR, &conn->flags);
1052
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +03001053 if (!hci_conn_auth(conn, sec_level, auth_type))
1054 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001055
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001056encrypt:
Johan Hedberg4dae2792014-06-24 17:03:50 +03001057 if (test_bit(HCI_CONN_ENCRYPT, &conn->flags))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +02001058 return 1;
1059
1060 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001061 return 0;
1062}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001063EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001064
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +02001065/* Check secure link requirement */
1066int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
1067{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001068 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +02001069
Marcel Holtmann9cb2e032014-02-01 11:32:25 -08001070 /* Accept if non-secure or higher security level is required */
1071 if (sec_level != BT_SECURITY_HIGH && sec_level != BT_SECURITY_FIPS)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +02001072 return 1;
1073
Marcel Holtmann9cb2e032014-02-01 11:32:25 -08001074 /* Accept if secure or higher security level is already present */
1075 if (conn->sec_level == BT_SECURITY_HIGH ||
1076 conn->sec_level == BT_SECURITY_FIPS)
1077 return 1;
1078
1079 /* Reject not secure link */
1080 return 0;
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +02001081}
1082EXPORT_SYMBOL(hci_conn_check_secure);
1083
Linus Torvalds1da177e2005-04-16 15:20:36 -07001084/* Change link key */
1085int hci_conn_change_link_key(struct hci_conn *conn)
1086{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001087 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001088
Johan Hedberg51a8efd2012-01-16 06:10:31 +02001089 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001090 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07001091 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001092 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -03001093 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001094 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001095
Linus Torvalds1da177e2005-04-16 15:20:36 -07001096 return 0;
1097}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001098
1099/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001100int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001101{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001102 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001103
Johan Hedberg40bef302014-07-16 11:42:27 +03001104 if (role == conn->role)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001105 return 1;
1106
Johan Hedberg51a8efd2012-01-16 06:10:31 +02001107 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001108 struct hci_cp_switch_role cp;
1109 bacpy(&cp.bdaddr, &conn->dst);
1110 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +02001111 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001112 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +01001113
Linus Torvalds1da177e2005-04-16 15:20:36 -07001114 return 0;
1115}
1116EXPORT_SYMBOL(hci_conn_switch_role);
1117
Marcel Holtmann04837f62006-07-03 10:02:33 +02001118/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -07001119void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +02001120{
1121 struct hci_dev *hdev = conn->hdev;
1122
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001123 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +02001124
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -07001125 if (conn->mode != HCI_CM_SNIFF)
1126 goto timer;
1127
Johan Hedberg58a681e2012-01-16 06:47:28 +02001128 if (!test_bit(HCI_CONN_POWER_SAVE, &conn->flags) && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +02001129 goto timer;
1130
Johan Hedberg51a8efd2012-01-16 06:10:31 +02001131 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Marcel Holtmann04837f62006-07-03 10:02:33 +02001132 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07001133 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +02001134 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +02001135 }
1136
1137timer:
1138 if (hdev->idle_timeout > 0)
Johan Hedberga74a84f2013-10-16 18:11:40 +03001139 queue_delayed_work(hdev->workqueue, &conn->idle_work,
1140 msecs_to_jiffies(hdev->idle_timeout));
Marcel Holtmann04837f62006-07-03 10:02:33 +02001141}
1142
Linus Torvalds1da177e2005-04-16 15:20:36 -07001143/* Drop all connection on the device */
1144void hci_conn_hash_flush(struct hci_dev *hdev)
1145{
1146 struct hci_conn_hash *h = &hdev->conn_hash;
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +02001147 struct hci_conn *c, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001148
1149 BT_DBG("hdev %s", hdev->name);
1150
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +02001151 list_for_each_entry_safe(c, n, &h->list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152 c->state = BT_CLOSED;
1153
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +02001154 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001155 hci_conn_del(c);
1156 }
1157}
1158
Marcel Holtmanna9de9242007-10-20 13:33:56 +02001159/* Check pending connect attempts */
1160void hci_conn_check_pending(struct hci_dev *hdev)
1161{
1162 struct hci_conn *conn;
1163
1164 BT_DBG("hdev %s", hdev->name);
1165
1166 hci_dev_lock(hdev);
1167
1168 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
1169 if (conn)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -03001170 hci_acl_create_connection(conn);
Marcel Holtmanna9de9242007-10-20 13:33:56 +02001171
1172 hci_dev_unlock(hdev);
1173}
1174
Johan Hedberg4dae2792014-06-24 17:03:50 +03001175static u32 get_link_mode(struct hci_conn *conn)
1176{
1177 u32 link_mode = 0;
1178
Johan Hedberg40bef302014-07-16 11:42:27 +03001179 if (conn->role == HCI_ROLE_MASTER)
Johan Hedberg4dae2792014-06-24 17:03:50 +03001180 link_mode |= HCI_LM_MASTER;
1181
1182 if (test_bit(HCI_CONN_ENCRYPT, &conn->flags))
1183 link_mode |= HCI_LM_ENCRYPT;
1184
1185 if (test_bit(HCI_CONN_AUTH, &conn->flags))
1186 link_mode |= HCI_LM_AUTH;
1187
1188 if (test_bit(HCI_CONN_SECURE, &conn->flags))
1189 link_mode |= HCI_LM_SECURE;
1190
1191 if (test_bit(HCI_CONN_FIPS, &conn->flags))
1192 link_mode |= HCI_LM_FIPS;
1193
1194 return link_mode;
1195}
1196
Linus Torvalds1da177e2005-04-16 15:20:36 -07001197int hci_get_conn_list(void __user *arg)
1198{
Gustavo Padovanfc5fef62012-05-23 04:04:19 -03001199 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 struct hci_conn_list_req req, *cl;
1201 struct hci_conn_info *ci;
1202 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001203 int n = 0, size, err;
1204
1205 if (copy_from_user(&req, arg, sizeof(req)))
1206 return -EFAULT;
1207
1208 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
1209 return -EINVAL;
1210
1211 size = sizeof(req) + req.conn_num * sizeof(*ci);
1212
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001213 cl = kmalloc(size, GFP_KERNEL);
1214 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001215 return -ENOMEM;
1216
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001217 hdev = hci_dev_get(req.dev_id);
1218 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001219 kfree(cl);
1220 return -ENODEV;
1221 }
1222
1223 ci = cl->conn_info;
1224
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001225 hci_dev_lock(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001226 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001227 bacpy(&(ci + n)->bdaddr, &c->dst);
1228 (ci + n)->handle = c->handle;
1229 (ci + n)->type = c->type;
1230 (ci + n)->out = c->out;
1231 (ci + n)->state = c->state;
Johan Hedberg4dae2792014-06-24 17:03:50 +03001232 (ci + n)->link_mode = get_link_mode(c);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001233 if (++n >= req.conn_num)
1234 break;
1235 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001236 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001237
1238 cl->dev_id = hdev->id;
1239 cl->conn_num = n;
1240 size = sizeof(req) + n * sizeof(*ci);
1241
1242 hci_dev_put(hdev);
1243
1244 err = copy_to_user(arg, cl, size);
1245 kfree(cl);
1246
1247 return err ? -EFAULT : 0;
1248}
1249
1250int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
1251{
1252 struct hci_conn_info_req req;
1253 struct hci_conn_info ci;
1254 struct hci_conn *conn;
1255 char __user *ptr = arg + sizeof(req);
1256
1257 if (copy_from_user(&req, arg, sizeof(req)))
1258 return -EFAULT;
1259
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001260 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001261 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
1262 if (conn) {
1263 bacpy(&ci.bdaddr, &conn->dst);
1264 ci.handle = conn->handle;
1265 ci.type = conn->type;
1266 ci.out = conn->out;
1267 ci.state = conn->state;
Johan Hedberg4dae2792014-06-24 17:03:50 +03001268 ci.link_mode = get_link_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001269 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001270 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001271
1272 if (!conn)
1273 return -ENOENT;
1274
1275 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
1276}
Marcel Holtmann40be4922008-07-14 20:13:50 +02001277
1278int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
1279{
1280 struct hci_auth_info_req req;
1281 struct hci_conn *conn;
1282
1283 if (copy_from_user(&req, arg, sizeof(req)))
1284 return -EFAULT;
1285
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001286 hci_dev_lock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001287 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
1288 if (conn)
1289 req.type = conn->auth_type;
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001290 hci_dev_unlock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001291
1292 if (!conn)
1293 return -ENOENT;
1294
1295 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
1296}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001297
1298struct hci_chan *hci_chan_create(struct hci_conn *conn)
1299{
1300 struct hci_dev *hdev = conn->hdev;
1301 struct hci_chan *chan;
1302
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001303 BT_DBG("%s hcon %p", hdev->name, conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001304
Johan Hedbergf94b6652014-08-18 00:41:44 +03001305 if (test_bit(HCI_CONN_DROP, &conn->flags)) {
1306 BT_DBG("Refusing to create new hci_chan");
1307 return NULL;
1308 }
1309
Johan Hedberg27f70f32014-07-21 10:50:06 +03001310 chan = kzalloc(sizeof(*chan), GFP_KERNEL);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001311 if (!chan)
1312 return NULL;
1313
Johan Hedberg6c388d32014-08-18 00:41:42 +03001314 chan->conn = hci_conn_get(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001315 skb_queue_head_init(&chan->data_q);
Mat Martineau168df8e2012-10-23 15:24:13 -07001316 chan->state = BT_CONNECTED;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001317
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001318 list_add_rcu(&chan->list, &conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001319
1320 return chan;
1321}
1322
Andrei Emeltchenko94720072012-09-06 15:05:43 +03001323void hci_chan_del(struct hci_chan *chan)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001324{
1325 struct hci_conn *conn = chan->conn;
1326 struct hci_dev *hdev = conn->hdev;
1327
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001328 BT_DBG("%s hcon %p chan %p", hdev->name, conn, chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001329
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001330 list_del_rcu(&chan->list);
1331
1332 synchronize_rcu();
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001333
Johan Hedbergbcbb6552014-08-18 20:33:27 +03001334 /* Prevent new hci_chan's to be created for this hci_conn */
Johan Hedbergf94b6652014-08-18 00:41:44 +03001335 set_bit(HCI_CONN_DROP, &conn->flags);
Johan Hedbergb3ff6702014-08-18 00:41:43 +03001336
Johan Hedberg6c388d32014-08-18 00:41:42 +03001337 hci_conn_put(conn);
Andrei Emeltchenkoe9b02742012-10-25 15:20:51 +03001338
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001339 skb_queue_purge(&chan->data_q);
1340 kfree(chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001341}
1342
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -02001343void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001344{
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001345 struct hci_chan *chan, *n;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001346
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001347 BT_DBG("hcon %p", conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001348
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001349 list_for_each_entry_safe(chan, n, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001350 hci_chan_del(chan);
1351}
Andrei Emeltchenko42c4e532012-10-10 17:38:28 +03001352
1353static struct hci_chan *__hci_chan_lookup_handle(struct hci_conn *hcon,
1354 __u16 handle)
1355{
1356 struct hci_chan *hchan;
1357
1358 list_for_each_entry(hchan, &hcon->chan_list, list) {
1359 if (hchan->handle == handle)
1360 return hchan;
1361 }
1362
1363 return NULL;
1364}
1365
1366struct hci_chan *hci_chan_lookup_handle(struct hci_dev *hdev, __u16 handle)
1367{
1368 struct hci_conn_hash *h = &hdev->conn_hash;
1369 struct hci_conn *hcon;
1370 struct hci_chan *hchan = NULL;
1371
1372 rcu_read_lock();
1373
1374 list_for_each_entry_rcu(hcon, &h->list, list) {
1375 hchan = __hci_chan_lookup_handle(hcon, handle);
1376 if (hchan)
1377 break;
1378 }
1379
1380 rcu_read_unlock();
1381
1382 return hchan;
1383}