blob: 1a076941829b5ef8bf3714bb93a9d51d17915df2 [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Linus Torvalds1da177e2005-04-16 15:20:36 -070027#include <linux/module.h>
28
29#include <linux/types.h>
30#include <linux/errno.h>
31#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/slab.h>
33#include <linux/poll.h>
34#include <linux/fcntl.h>
35#include <linux/init.h>
36#include <linux/skbuff.h>
37#include <linux/interrupt.h>
38#include <linux/notifier.h>
39#include <net/sock.h>
40
41#include <asm/system.h>
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020042#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <asm/unaligned.h>
44
45#include <net/bluetooth/bluetooth.h>
46#include <net/bluetooth/hci_core.h>
47
Ville Tervofcd89c02011-02-10 22:38:47 -030048static void hci_le_connect(struct hci_conn *conn)
49{
50 struct hci_dev *hdev = conn->hdev;
51 struct hci_cp_le_create_conn cp;
52
53 conn->state = BT_CONNECT;
54 conn->out = 1;
Vinicius Costa Gomesb92a6222011-02-10 22:38:52 -030055 conn->link_mode |= HCI_LM_MASTER;
Vinicius Costa Gomes7b5c0d52011-06-09 18:50:50 -030056 conn->sec_level = BT_SECURITY_LOW;
Ville Tervofcd89c02011-02-10 22:38:47 -030057
58 memset(&cp, 0, sizeof(cp));
Anderson Lizardo0e833912011-07-27 18:40:09 -030059 cp.scan_interval = cpu_to_le16(0x0060);
60 cp.scan_window = cpu_to_le16(0x0030);
Ville Tervofcd89c02011-02-10 22:38:47 -030061 bacpy(&cp.peer_addr, &conn->dst);
Andre Guedes6d3ce0e72011-05-31 14:20:57 -030062 cp.peer_addr_type = conn->dst_type;
Anderson Lizardo0e833912011-07-27 18:40:09 -030063 cp.conn_interval_min = cpu_to_le16(0x0028);
64 cp.conn_interval_max = cpu_to_le16(0x0038);
65 cp.supervision_timeout = cpu_to_le16(0x002a);
66 cp.min_ce_len = cpu_to_le16(0x0000);
67 cp.max_ce_len = cpu_to_le16(0x0000);
Ville Tervofcd89c02011-02-10 22:38:47 -030068
69 hci_send_cmd(hdev, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
70}
71
72static void hci_le_connect_cancel(struct hci_conn *conn)
73{
74 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
75}
76
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020077void hci_acl_connect(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070078{
79 struct hci_dev *hdev = conn->hdev;
80 struct inquiry_entry *ie;
81 struct hci_cp_create_conn cp;
82
83 BT_DBG("%p", conn);
84
85 conn->state = BT_CONNECT;
Marcel Holtmanna8746412008-07-14 20:13:46 +020086 conn->out = 1;
87
Linus Torvalds1da177e2005-04-16 15:20:36 -070088 conn->link_mode = HCI_LM_MASTER;
89
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020090 conn->attempt++;
91
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020092 conn->link_policy = hdev->link_policy;
93
Linus Torvalds1da177e2005-04-16 15:20:36 -070094 memset(&cp, 0, sizeof(cp));
95 bacpy(&cp.bdaddr, &conn->dst);
96 cp.pscan_rep_mode = 0x02;
97
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020098 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
99 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +0200100 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
101 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
102 cp.pscan_mode = ie->data.pscan_mode;
103 cp.clock_offset = ie->data.clock_offset |
104 cpu_to_le16(0x8000);
105 }
106
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107 memcpy(conn->dev_class, ie->data.dev_class, 3);
Marcel Holtmann41a96212008-07-14 20:13:48 +0200108 conn->ssp_mode = ie->data.ssp_mode;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109 }
110
Marcel Holtmanna8746412008-07-14 20:13:46 +0200111 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700112 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200113 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700114 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200115 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +0200116
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200117 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700118}
119
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200120static void hci_acl_connect_cancel(struct hci_conn *conn)
121{
122 struct hci_cp_create_conn_cancel cp;
123
124 BT_DBG("%p", conn);
125
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200126 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200127 return;
128
129 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200130 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200131}
132
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133void hci_acl_disconn(struct hci_conn *conn, __u8 reason)
134{
135 struct hci_cp_disconnect cp;
136
137 BT_DBG("%p", conn);
138
139 conn->state = BT_DISCONN;
140
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700141 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700142 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200143 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700144}
145
146void hci_add_sco(struct hci_conn *conn, __u16 handle)
147{
148 struct hci_dev *hdev = conn->hdev;
149 struct hci_cp_add_sco cp;
150
151 BT_DBG("%p", conn);
152
153 conn->state = BT_CONNECT;
154 conn->out = 1;
155
Marcel Holtmannefc76882009-02-06 09:13:37 +0100156 conn->attempt++;
157
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700158 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200159 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700160
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200161 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700162}
163
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200164void hci_setup_sync(struct hci_conn *conn, __u16 handle)
165{
166 struct hci_dev *hdev = conn->hdev;
167 struct hci_cp_setup_sync_conn cp;
168
169 BT_DBG("%p", conn);
170
171 conn->state = BT_CONNECT;
172 conn->out = 1;
173
Marcel Holtmannefc76882009-02-06 09:13:37 +0100174 conn->attempt++;
175
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200176 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200177 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200178
179 cp.tx_bandwidth = cpu_to_le32(0x00001f40);
180 cp.rx_bandwidth = cpu_to_le32(0x00001f40);
181 cp.max_latency = cpu_to_le16(0xffff);
182 cp.voice_setting = cpu_to_le16(hdev->voice_setting);
183 cp.retrans_effort = 0xff;
184
185 hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp);
186}
187
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200188void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
189 u16 latency, u16 to_multiplier)
190{
191 struct hci_cp_le_conn_update cp;
192 struct hci_dev *hdev = conn->hdev;
193
194 memset(&cp, 0, sizeof(cp));
195
196 cp.handle = cpu_to_le16(conn->handle);
197 cp.conn_interval_min = cpu_to_le16(min);
198 cp.conn_interval_max = cpu_to_le16(max);
199 cp.conn_latency = cpu_to_le16(latency);
200 cp.supervision_timeout = cpu_to_le16(to_multiplier);
201 cp.min_ce_len = cpu_to_le16(0x0001);
202 cp.max_ce_len = cpu_to_le16(0x0001);
203
204 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
205}
206EXPORT_SYMBOL(hci_le_conn_update);
207
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300208void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __u8 rand[8],
209 __u8 ltk[16])
210{
211 struct hci_dev *hdev = conn->hdev;
212 struct hci_cp_le_start_enc cp;
213
214 BT_DBG("%p", conn);
215
216 memset(&cp, 0, sizeof(cp));
217
218 cp.handle = cpu_to_le16(conn->handle);
219 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
220 cp.ediv = ediv;
Anderson Briglia51beabd2011-09-19 14:41:09 -0400221 memcpy(cp.rand, rand, sizeof(cp.rand));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300222
223 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
224}
225EXPORT_SYMBOL(hci_le_start_enc);
226
227void hci_le_ltk_reply(struct hci_conn *conn, u8 ltk[16])
228{
229 struct hci_dev *hdev = conn->hdev;
230 struct hci_cp_le_ltk_reply cp;
231
232 BT_DBG("%p", conn);
233
234 memset(&cp, 0, sizeof(cp));
235
236 cp.handle = cpu_to_le16(conn->handle);
237 memcpy(cp.ltk, ltk, sizeof(ltk));
238
239 hci_send_cmd(hdev, HCI_OP_LE_LTK_REPLY, sizeof(cp), &cp);
240}
241EXPORT_SYMBOL(hci_le_ltk_reply);
242
243void hci_le_ltk_neg_reply(struct hci_conn *conn)
244{
245 struct hci_dev *hdev = conn->hdev;
246 struct hci_cp_le_ltk_neg_reply cp;
247
248 BT_DBG("%p", conn);
249
250 memset(&cp, 0, sizeof(cp));
251
252 cp.handle = cpu_to_le16(conn->handle);
253
254 hci_send_cmd(hdev, HCI_OP_LE_LTK_NEG_REPLY, sizeof(cp), &cp);
255}
256
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400257/* Device _must_ be locked */
258void hci_sco_setup(struct hci_conn *conn, __u8 status)
259{
260 struct hci_conn *sco = conn->link;
261
262 BT_DBG("%p", conn);
263
264 if (!sco)
265 return;
266
267 if (!status) {
268 if (lmp_esco_capable(conn->hdev))
269 hci_setup_sync(sco, conn->handle);
270 else
271 hci_add_sco(sco, conn->handle);
272 } else {
273 hci_proto_connect_cfm(sco, status);
274 hci_conn_del(sco);
275 }
276}
277
Linus Torvalds1da177e2005-04-16 15:20:36 -0700278static void hci_conn_timeout(unsigned long arg)
279{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200280 struct hci_conn *conn = (void *) arg;
281 struct hci_dev *hdev = conn->hdev;
Marcel Holtmann2950f212009-02-12 14:02:50 +0100282 __u8 reason;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700283
284 BT_DBG("conn %p state %d", conn, conn->state);
285
286 if (atomic_read(&conn->refcnt))
287 return;
288
289 hci_dev_lock(hdev);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200290
291 switch (conn->state) {
292 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200293 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300294 if (conn->out) {
295 if (conn->type == ACL_LINK)
296 hci_acl_connect_cancel(conn);
297 else if (conn->type == LE_LINK)
298 hci_le_connect_cancel(conn);
299 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200300 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200301 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900302 case BT_CONNECTED:
Marcel Holtmann2950f212009-02-12 14:02:50 +0100303 reason = hci_proto_disconn_ind(conn);
304 hci_acl_disconn(conn, reason);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200305 break;
306 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700307 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200308 break;
309 }
310
Linus Torvalds1da177e2005-04-16 15:20:36 -0700311 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700312}
313
Marcel Holtmann04837f62006-07-03 10:02:33 +0200314static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700315{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200316 struct hci_conn *conn = (void *) arg;
317
318 BT_DBG("conn %p mode %d", conn, conn->mode);
319
320 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700321}
322
Johan Hedberg9f616562011-04-28 11:28:54 -0700323static void hci_conn_auto_accept(unsigned long arg)
324{
325 struct hci_conn *conn = (void *) arg;
326 struct hci_dev *hdev = conn->hdev;
327
328 hci_dev_lock(hdev);
329
330 hci_send_cmd(hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
331 &conn->dst);
332
333 hci_dev_unlock(hdev);
334}
335
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
337{
338 struct hci_conn *conn;
339
340 BT_DBG("%s dst %s", hdev->name, batostr(dst));
341
Marcel Holtmann04837f62006-07-03 10:02:33 +0200342 conn = kzalloc(sizeof(struct hci_conn), GFP_ATOMIC);
343 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700344 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700345
346 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200347 conn->hdev = hdev;
348 conn->type = type;
349 conn->mode = HCI_CM_ACTIVE;
350 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300351 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200352 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300353 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200354 conn->key_type = 0xff;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700355
Marcel Holtmann04837f62006-07-03 10:02:33 +0200356 conn->power_save = 1;
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200357 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200358
Marcel Holtmanna8746412008-07-14 20:13:46 +0200359 switch (type) {
360 case ACL_LINK:
361 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
362 break;
363 case SCO_LINK:
364 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100365 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
366 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200367 else
368 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
369 break;
370 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100371 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200372 break;
373 }
374
Linus Torvalds1da177e2005-04-16 15:20:36 -0700375 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200376
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200377 INIT_LIST_HEAD(&conn->chan_list);;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200378
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800379 setup_timer(&conn->disc_timer, hci_conn_timeout, (unsigned long)conn);
380 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Johan Hedberg9f616562011-04-28 11:28:54 -0700381 setup_timer(&conn->auto_accept_timer, hci_conn_auto_accept,
382 (unsigned long) conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700383
384 atomic_set(&conn->refcnt, 0);
385
386 hci_dev_hold(hdev);
387
388 tasklet_disable(&hdev->tx_task);
389
390 hci_conn_hash_add(hdev, conn);
391 if (hdev->notify)
392 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
393
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700394 atomic_set(&conn->devref, 0);
395
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700396 hci_conn_init_sysfs(conn);
397
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398 tasklet_enable(&hdev->tx_task);
399
400 return conn;
401}
402
403int hci_conn_del(struct hci_conn *conn)
404{
405 struct hci_dev *hdev = conn->hdev;
406
407 BT_DBG("%s conn %p handle %d", hdev->name, conn, conn->handle);
408
Marcel Holtmann04837f62006-07-03 10:02:33 +0200409 del_timer(&conn->idle_timer);
410
411 del_timer(&conn->disc_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700412
Johan Hedberg9f616562011-04-28 11:28:54 -0700413 del_timer(&conn->auto_accept_timer);
414
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200415 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700416 struct hci_conn *sco = conn->link;
417 if (sco)
418 sco->link = NULL;
419
420 /* Unacked frames */
421 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300422 } else if (conn->type == LE_LINK) {
423 if (hdev->le_pkts)
424 hdev->le_cnt += conn->sent;
425 else
426 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200427 } else {
428 struct hci_conn *acl = conn->link;
429 if (acl) {
430 acl->link = NULL;
431 hci_conn_put(acl);
432 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700433 }
434
435 tasklet_disable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200436
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200437 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200438
Linus Torvalds1da177e2005-04-16 15:20:36 -0700439 hci_conn_hash_del(hdev, conn);
440 if (hdev->notify)
441 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200442
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443 tasklet_enable(&hdev->tx_task);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200444
Linus Torvalds1da177e2005-04-16 15:20:36 -0700445 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700446
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700447 hci_conn_put_device(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800448
Marcel Holtmann384943e2009-05-08 18:20:43 -0700449 hci_dev_put(hdev);
450
Tomas Targownik163f4da2011-06-30 16:30:44 -0300451 if (conn->handle == 0)
452 kfree(conn);
453
Linus Torvalds1da177e2005-04-16 15:20:36 -0700454 return 0;
455}
456
457struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
458{
459 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200460 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700461
462 BT_DBG("%s -> %s", batostr(src), batostr(dst));
463
464 read_lock_bh(&hci_dev_list_lock);
465
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200466 list_for_each_entry(d, &hci_dev_list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700467 if (!test_bit(HCI_UP, &d->flags) || test_bit(HCI_RAW, &d->flags))
468 continue;
469
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900470 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700471 * No source address - find interface with bdaddr != dst
472 * Source address - find interface with bdaddr == src
473 */
474
475 if (use_src) {
476 if (!bacmp(&d->bdaddr, src)) {
477 hdev = d; break;
478 }
479 } else {
480 if (bacmp(&d->bdaddr, dst)) {
481 hdev = d; break;
482 }
483 }
484 }
485
486 if (hdev)
487 hdev = hci_dev_hold(hdev);
488
489 read_unlock_bh(&hci_dev_list_lock);
490 return hdev;
491}
492EXPORT_SYMBOL(hci_get_route);
493
Ville Tervofcd89c02011-02-10 22:38:47 -0300494/* Create SCO, ACL or LE connection.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700495 * Device _must_ be locked */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100496struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700497{
498 struct hci_conn *acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200499 struct hci_conn *sco;
Ville Tervofcd89c02011-02-10 22:38:47 -0300500 struct hci_conn *le;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700501
502 BT_DBG("%s dst %s", hdev->name, batostr(dst));
503
Ville Tervofcd89c02011-02-10 22:38:47 -0300504 if (type == LE_LINK) {
Andre Guedeseda42b52011-05-31 14:20:56 -0300505 struct adv_entry *entry;
506
Ville Tervofcd89c02011-02-10 22:38:47 -0300507 le = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Anderson Briglia15c47942011-02-21 15:09:23 -0300508 if (le)
Ville Tervo30e76272011-02-22 16:10:53 -0300509 return ERR_PTR(-EBUSY);
Andre Guedeseda42b52011-05-31 14:20:56 -0300510
511 entry = hci_find_adv_entry(hdev, dst);
512 if (!entry)
513 return ERR_PTR(-EHOSTUNREACH);
514
Anderson Briglia15c47942011-02-21 15:09:23 -0300515 le = hci_conn_add(hdev, LE_LINK, dst);
Ville Tervofcd89c02011-02-10 22:38:47 -0300516 if (!le)
Ville Tervo30e76272011-02-22 16:10:53 -0300517 return ERR_PTR(-ENOMEM);
Andre Guedes893d6752011-05-31 14:20:55 -0300518
Andre Guedeseda42b52011-05-31 14:20:56 -0300519 le->dst_type = entry->bdaddr_type;
520
Andre Guedes893d6752011-05-31 14:20:55 -0300521 hci_le_connect(le);
Ville Tervofcd89c02011-02-10 22:38:47 -0300522
523 hci_conn_hold(le);
524
525 return le;
526 }
527
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200528 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
529 if (!acl) {
530 acl = hci_conn_add(hdev, ACL_LINK, dst);
531 if (!acl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700532 return NULL;
533 }
534
535 hci_conn_hold(acl);
536
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200537 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
Johan Hedberg765c2a92011-01-19 12:06:52 +0530538 acl->sec_level = BT_SECURITY_LOW;
539 acl->pending_sec_level = sec_level;
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200540 acl->auth_type = auth_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700541 hci_acl_connect(acl);
Marcel Holtmann09ab6f42008-09-09 07:19:20 +0200542 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700543
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200544 if (type == ACL_LINK)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700545 return acl;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200546
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200547 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
548 if (!sco) {
549 sco = hci_conn_add(hdev, type, dst);
550 if (!sco) {
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200551 hci_conn_put(acl);
552 return NULL;
553 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700554 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200555
556 acl->link = sco;
557 sco->link = acl;
558
559 hci_conn_hold(sco);
560
561 if (acl->state == BT_CONNECTED &&
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200562 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Nick Pellyc3902162009-11-13 14:16:32 -0800563 acl->power_save = 1;
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700564 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Nick Pellyc3902162009-11-13 14:16:32 -0800565
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400566 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->pend)) {
567 /* defer SCO setup until mode change completed */
568 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->pend);
569 return sco;
570 }
571
572 hci_sco_setup(acl, 0x00);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200573 }
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200574
575 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576}
577EXPORT_SYMBOL(hci_connect);
578
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200579/* Check link security requirement */
580int hci_conn_check_link_mode(struct hci_conn *conn)
581{
582 BT_DBG("conn %p", conn);
583
584 if (conn->ssp_mode > 0 && conn->hdev->ssp_mode > 0 &&
585 !(conn->link_mode & HCI_LM_ENCRYPT))
586 return 0;
587
588 return 1;
589}
590EXPORT_SYMBOL(hci_conn_check_link_mode);
591
Linus Torvalds1da177e2005-04-16 15:20:36 -0700592/* Authenticate remote device */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100593static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700594{
595 BT_DBG("conn %p", conn);
596
Johan Hedberg765c2a92011-01-19 12:06:52 +0530597 if (conn->pending_sec_level > sec_level)
598 sec_level = conn->pending_sec_level;
599
Marcel Holtmann96a31832009-02-12 16:23:03 +0100600 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530601 conn->pending_sec_level = sec_level;
Marcel Holtmann96a31832009-02-12 16:23:03 +0100602 else if (conn->link_mode & HCI_LM_AUTH)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700603 return 1;
604
Johan Hedberg65cf6862011-01-19 12:06:49 +0530605 /* Make sure we preserve an existing MITM requirement*/
606 auth_type |= (conn->auth_type & 0x01);
607
Marcel Holtmann96a31832009-02-12 16:23:03 +0100608 conn->auth_type = auth_type;
609
Linus Torvalds1da177e2005-04-16 15:20:36 -0700610 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
611 struct hci_cp_auth_requested cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700612 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200613 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
614 sizeof(cp), &cp);
Waldemar Rymarkiewicz19f8def2011-05-31 15:49:25 +0200615 if (conn->key_type != 0xff)
616 set_bit(HCI_CONN_REAUTH_PEND, &conn->pend);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700617 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100618
Linus Torvalds1da177e2005-04-16 15:20:36 -0700619 return 0;
620}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700621
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200622/* Encrypt the the link */
623static void hci_conn_encrypt(struct hci_conn *conn)
624{
625 BT_DBG("conn %p", conn);
626
627 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->pend)) {
628 struct hci_cp_set_conn_encrypt cp;
629 cp.handle = cpu_to_le16(conn->handle);
630 cp.encrypt = 0x01;
631 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
632 &cp);
633 }
634}
635
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100636/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100637int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700638{
639 BT_DBG("conn %p", conn);
640
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200641 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100642 if (sec_level == BT_SECURITY_SDP)
643 return 1;
644
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200645 /* For non 2.1 devices and low security level we don't need the link
646 key. */
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700647 if (sec_level == BT_SECURITY_LOW &&
648 (!conn->ssp_mode || !conn->hdev->ssp_mode))
649 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100650
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200651 /* For other security levels we need the link key. */
652 if (!(conn->link_mode & HCI_LM_AUTH))
653 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700654
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200655 /* An authenticated combination key has sufficient security for any
656 security level. */
657 if (conn->key_type == HCI_LK_AUTH_COMBINATION)
658 goto encrypt;
659
660 /* An unauthenticated combination key has sufficient security for
661 security level 1 and 2. */
662 if (conn->key_type == HCI_LK_UNAUTH_COMBINATION &&
663 (sec_level == BT_SECURITY_MEDIUM ||
664 sec_level == BT_SECURITY_LOW))
665 goto encrypt;
666
667 /* A combination key has always sufficient security for the security
668 levels 1 or 2. High security level requires the combination key
669 is generated using maximum PIN code length (16).
670 For pre 2.1 units. */
671 if (conn->key_type == HCI_LK_COMBINATION &&
672 (sec_level != BT_SECURITY_HIGH ||
673 conn->pin_length == 16))
674 goto encrypt;
675
676auth:
Arek Lichwa4dff5232011-10-26 11:23:22 +0200677 if (test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->pend))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700678 return 0;
679
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +0300680 if (!hci_conn_auth(conn, sec_level, auth_type))
681 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100682
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200683encrypt:
684 if (conn->link_mode & HCI_LM_ENCRYPT)
685 return 1;
686
687 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700688 return 0;
689}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100690EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700691
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200692/* Check secure link requirement */
693int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
694{
695 BT_DBG("conn %p", conn);
696
697 if (sec_level != BT_SECURITY_HIGH)
698 return 1; /* Accept if non-secure is required */
699
Waldemar Rymarkiewiczef4177e2011-06-02 14:24:52 +0200700 if (conn->sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200701 return 1;
702
703 return 0; /* Reject not secure link */
704}
705EXPORT_SYMBOL(hci_conn_check_secure);
706
Linus Torvalds1da177e2005-04-16 15:20:36 -0700707/* Change link key */
708int hci_conn_change_link_key(struct hci_conn *conn)
709{
710 BT_DBG("conn %p", conn);
711
712 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->pend)) {
713 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700714 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200715 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
716 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700717 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100718
Linus Torvalds1da177e2005-04-16 15:20:36 -0700719 return 0;
720}
721EXPORT_SYMBOL(hci_conn_change_link_key);
722
723/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100724int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700725{
726 BT_DBG("conn %p", conn);
727
728 if (!role && conn->link_mode & HCI_LM_MASTER)
729 return 1;
730
731 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->pend)) {
732 struct hci_cp_switch_role cp;
733 bacpy(&cp.bdaddr, &conn->dst);
734 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200735 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700736 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100737
Linus Torvalds1da177e2005-04-16 15:20:36 -0700738 return 0;
739}
740EXPORT_SYMBOL(hci_conn_switch_role);
741
Marcel Holtmann04837f62006-07-03 10:02:33 +0200742/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700743void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200744{
745 struct hci_dev *hdev = conn->hdev;
746
747 BT_DBG("conn %p mode %d", conn, conn->mode);
748
749 if (test_bit(HCI_RAW, &hdev->flags))
750 return;
751
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700752 if (conn->mode != HCI_CM_SNIFF)
753 goto timer;
754
755 if (!conn->power_save && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200756 goto timer;
757
758 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
759 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700760 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200761 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200762 }
763
764timer:
765 if (hdev->idle_timeout > 0)
766 mod_timer(&conn->idle_timer,
767 jiffies + msecs_to_jiffies(hdev->idle_timeout));
768}
769
770/* Enter sniff mode */
771void hci_conn_enter_sniff_mode(struct hci_conn *conn)
772{
773 struct hci_dev *hdev = conn->hdev;
774
775 BT_DBG("conn %p mode %d", conn, conn->mode);
776
777 if (test_bit(HCI_RAW, &hdev->flags))
778 return;
779
780 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
781 return;
782
783 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
784 return;
785
786 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
787 struct hci_cp_sniff_subrate cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700788 cp.handle = cpu_to_le16(conn->handle);
789 cp.max_latency = cpu_to_le16(0);
790 cp.min_remote_timeout = cpu_to_le16(0);
791 cp.min_local_timeout = cpu_to_le16(0);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200792 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200793 }
794
795 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->pend)) {
796 struct hci_cp_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700797 cp.handle = cpu_to_le16(conn->handle);
798 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
799 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
800 cp.attempt = cpu_to_le16(4);
801 cp.timeout = cpu_to_le16(1);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200802 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200803 }
804}
805
Linus Torvalds1da177e2005-04-16 15:20:36 -0700806/* Drop all connection on the device */
807void hci_conn_hash_flush(struct hci_dev *hdev)
808{
809 struct hci_conn_hash *h = &hdev->conn_hash;
810 struct list_head *p;
811
812 BT_DBG("hdev %s", hdev->name);
813
814 p = h->list.next;
815 while (p != &h->list) {
816 struct hci_conn *c;
817
818 c = list_entry(p, struct hci_conn, list);
819 p = p->next;
820
821 c->state = BT_CLOSED;
822
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +0200823 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700824 hci_conn_del(c);
825 }
826}
827
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200828/* Check pending connect attempts */
829void hci_conn_check_pending(struct hci_dev *hdev)
830{
831 struct hci_conn *conn;
832
833 BT_DBG("hdev %s", hdev->name);
834
835 hci_dev_lock(hdev);
836
837 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
838 if (conn)
839 hci_acl_connect(conn);
840
841 hci_dev_unlock(hdev);
842}
843
Marcel Holtmann9eba32b2009-08-22 14:19:26 -0700844void hci_conn_hold_device(struct hci_conn *conn)
845{
846 atomic_inc(&conn->devref);
847}
848EXPORT_SYMBOL(hci_conn_hold_device);
849
850void hci_conn_put_device(struct hci_conn *conn)
851{
852 if (atomic_dec_and_test(&conn->devref))
853 hci_conn_del_sysfs(conn);
854}
855EXPORT_SYMBOL(hci_conn_put_device);
856
Linus Torvalds1da177e2005-04-16 15:20:36 -0700857int hci_get_conn_list(void __user *arg)
858{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200859 register struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700860 struct hci_conn_list_req req, *cl;
861 struct hci_conn_info *ci;
862 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700863 int n = 0, size, err;
864
865 if (copy_from_user(&req, arg, sizeof(req)))
866 return -EFAULT;
867
868 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
869 return -EINVAL;
870
871 size = sizeof(req) + req.conn_num * sizeof(*ci);
872
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200873 cl = kmalloc(size, GFP_KERNEL);
874 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700875 return -ENOMEM;
876
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200877 hdev = hci_dev_get(req.dev_id);
878 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700879 kfree(cl);
880 return -ENODEV;
881 }
882
883 ci = cl->conn_info;
884
885 hci_dev_lock_bh(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200886 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700887 bacpy(&(ci + n)->bdaddr, &c->dst);
888 (ci + n)->handle = c->handle;
889 (ci + n)->type = c->type;
890 (ci + n)->out = c->out;
891 (ci + n)->state = c->state;
892 (ci + n)->link_mode = c->link_mode;
893 if (++n >= req.conn_num)
894 break;
895 }
896 hci_dev_unlock_bh(hdev);
897
898 cl->dev_id = hdev->id;
899 cl->conn_num = n;
900 size = sizeof(req) + n * sizeof(*ci);
901
902 hci_dev_put(hdev);
903
904 err = copy_to_user(arg, cl, size);
905 kfree(cl);
906
907 return err ? -EFAULT : 0;
908}
909
910int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
911{
912 struct hci_conn_info_req req;
913 struct hci_conn_info ci;
914 struct hci_conn *conn;
915 char __user *ptr = arg + sizeof(req);
916
917 if (copy_from_user(&req, arg, sizeof(req)))
918 return -EFAULT;
919
920 hci_dev_lock_bh(hdev);
921 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
922 if (conn) {
923 bacpy(&ci.bdaddr, &conn->dst);
924 ci.handle = conn->handle;
925 ci.type = conn->type;
926 ci.out = conn->out;
927 ci.state = conn->state;
928 ci.link_mode = conn->link_mode;
929 }
930 hci_dev_unlock_bh(hdev);
931
932 if (!conn)
933 return -ENOENT;
934
935 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
936}
Marcel Holtmann40be4922008-07-14 20:13:50 +0200937
938int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
939{
940 struct hci_auth_info_req req;
941 struct hci_conn *conn;
942
943 if (copy_from_user(&req, arg, sizeof(req)))
944 return -EFAULT;
945
946 hci_dev_lock_bh(hdev);
947 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
948 if (conn)
949 req.type = conn->auth_type;
950 hci_dev_unlock_bh(hdev);
951
952 if (!conn)
953 return -ENOENT;
954
955 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
956}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200957
958struct hci_chan *hci_chan_create(struct hci_conn *conn)
959{
960 struct hci_dev *hdev = conn->hdev;
961 struct hci_chan *chan;
962
963 BT_DBG("%s conn %p", hdev->name, conn);
964
965 chan = kzalloc(sizeof(struct hci_chan), GFP_ATOMIC);
966 if (!chan)
967 return NULL;
968
969 chan->conn = conn;
970 skb_queue_head_init(&chan->data_q);
971
972 tasklet_disable(&hdev->tx_task);
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200973 list_add(&conn->chan_list, &chan->list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200974 tasklet_enable(&hdev->tx_task);
975
976 return chan;
977}
978
979int hci_chan_del(struct hci_chan *chan)
980{
981 struct hci_conn *conn = chan->conn;
982 struct hci_dev *hdev = conn->hdev;
983
984 BT_DBG("%s conn %p chan %p", hdev->name, conn, chan);
985
986 tasklet_disable(&hdev->tx_task);
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200987 list_del(&chan->list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200988 tasklet_enable(&hdev->tx_task);
989
990 skb_queue_purge(&chan->data_q);
991 kfree(chan);
992
993 return 0;
994}
995
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200996void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200997{
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200998 struct hci_chan *chan, *tmp;
999
1000 BT_DBG("conn %p", conn);
1001
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -02001002 list_for_each_entry_safe(chan, tmp, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001003 hci_chan_del(chan);
1004}