blob: dedd1ea5dd4c984e7ec990bd693b7c39c5a8a0f8 [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Gustavo Padovan8c520a52012-05-23 04:04:22 -030027#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028
29#include <net/bluetooth/bluetooth.h>
30#include <net/bluetooth/hci_core.h>
Andrei Emeltchenko9740e492012-05-29 13:59:02 +030031#include <net/bluetooth/a2mp.h>
Vinicius Costa Gomesd8343f12012-08-23 21:32:44 -030032#include <net/bluetooth/smp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070033
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020034struct sco_param {
35 u16 pkt_type;
36 u16 max_latency;
37};
38
39static const struct sco_param sco_param_cvsd[] = {
40 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000a }, /* S3 */
41 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x0007 }, /* S2 */
42 { EDR_ESCO_MASK | ESCO_EV3, 0x0007 }, /* S1 */
43 { EDR_ESCO_MASK | ESCO_HV3, 0xffff }, /* D1 */
44 { EDR_ESCO_MASK | ESCO_HV1, 0xffff }, /* D0 */
45};
46
47static const struct sco_param sco_param_wideband[] = {
48 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000d }, /* T2 */
49 { EDR_ESCO_MASK | ESCO_EV3, 0x0008 }, /* T1 */
50};
51
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030052static void hci_le_create_connection_cancel(struct hci_conn *conn)
Ville Tervofcd89c02011-02-10 22:38:47 -030053{
54 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
55}
56
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030057static void hci_acl_create_connection(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070058{
59 struct hci_dev *hdev = conn->hdev;
60 struct inquiry_entry *ie;
61 struct hci_cp_create_conn cp;
62
Andrei Emeltchenko42d2d872012-02-17 11:40:57 +020063 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -070064
65 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +020066 conn->out = true;
Marcel Holtmanna8746412008-07-14 20:13:46 +020067
Linus Torvalds1da177e2005-04-16 15:20:36 -070068 conn->link_mode = HCI_LM_MASTER;
69
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020070 conn->attempt++;
71
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020072 conn->link_policy = hdev->link_policy;
73
Linus Torvalds1da177e2005-04-16 15:20:36 -070074 memset(&cp, 0, sizeof(cp));
75 bacpy(&cp.bdaddr, &conn->dst);
76 cp.pscan_rep_mode = 0x02;
77
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020078 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
79 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +020080 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
81 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
82 cp.pscan_mode = ie->data.pscan_mode;
83 cp.clock_offset = ie->data.clock_offset |
Andrei Emeltchenko82781e62012-05-25 11:38:27 +030084 __constant_cpu_to_le16(0x8000);
Marcel Holtmann41a96212008-07-14 20:13:48 +020085 }
86
Linus Torvalds1da177e2005-04-16 15:20:36 -070087 memcpy(conn->dev_class, ie->data.dev_class, 3);
Johan Hedberg58a681e2012-01-16 06:47:28 +020088 if (ie->data.ssp_mode > 0)
89 set_bit(HCI_CONN_SSP_ENABLED, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -070090 }
91
Marcel Holtmanna8746412008-07-14 20:13:46 +020092 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -070093 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020094 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -070095 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020096 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020097
Marcel Holtmanna9de9242007-10-20 13:33:56 +020098 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -070099}
100
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300101static void hci_acl_create_connection_cancel(struct hci_conn *conn)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200102{
103 struct hci_cp_create_conn_cancel cp;
104
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300105 BT_DBG("hcon %p", conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200106
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200107 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200108 return;
109
110 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200111 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200112}
113
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300114static void hci_reject_sco(struct hci_conn *conn)
115{
116 struct hci_cp_reject_sync_conn_req cp;
117
118 cp.reason = HCI_ERROR_REMOTE_USER_TERM;
119 bacpy(&cp.bdaddr, &conn->dst);
120
121 hci_send_cmd(conn->hdev, HCI_OP_REJECT_SYNC_CONN_REQ, sizeof(cp), &cp);
122}
123
Andre Guedesbed71742013-01-30 11:50:56 -0300124void hci_disconnect(struct hci_conn *conn, __u8 reason)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700125{
126 struct hci_cp_disconnect cp;
127
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300128 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129
130 conn->state = BT_DISCONN;
131
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700132 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200134 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700135}
136
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300137static void hci_amp_disconn(struct hci_conn *conn, __u8 reason)
138{
139 struct hci_cp_disconn_phy_link cp;
140
141 BT_DBG("hcon %p", conn);
142
143 conn->state = BT_DISCONN;
144
145 cp.phy_handle = HCI_PHY_HANDLE(conn->handle);
146 cp.reason = reason;
147 hci_send_cmd(conn->hdev, HCI_OP_DISCONN_PHY_LINK,
148 sizeof(cp), &cp);
149}
150
Vinicius Costa Gomes57f5d0d2012-07-27 19:32:54 -0300151static void hci_add_sco(struct hci_conn *conn, __u16 handle)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700152{
153 struct hci_dev *hdev = conn->hdev;
154 struct hci_cp_add_sco cp;
155
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300156 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700157
158 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200159 conn->out = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700160
Marcel Holtmannefc76882009-02-06 09:13:37 +0100161 conn->attempt++;
162
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700163 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200164 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700165
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200166 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700167}
168
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200169bool hci_setup_sync(struct hci_conn *conn, __u16 handle)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200170{
171 struct hci_dev *hdev = conn->hdev;
172 struct hci_cp_setup_sync_conn cp;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200173 const struct sco_param *param;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200174
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300175 BT_DBG("hcon %p", conn);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200176
177 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200178 conn->out = true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200179
Marcel Holtmannefc76882009-02-06 09:13:37 +0100180 conn->attempt++;
181
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200182 cp.handle = cpu_to_le16(handle);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200183
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300184 cp.tx_bandwidth = __constant_cpu_to_le32(0x00001f40);
185 cp.rx_bandwidth = __constant_cpu_to_le32(0x00001f40);
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200186 cp.voice_setting = cpu_to_le16(conn->setting);
187
188 switch (conn->setting & SCO_AIRMODE_MASK) {
189 case SCO_AIRMODE_TRANSP:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200190 if (conn->attempt > ARRAY_SIZE(sco_param_wideband))
191 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200192 cp.retrans_effort = 0x02;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200193 param = &sco_param_wideband[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200194 break;
195 case SCO_AIRMODE_CVSD:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200196 if (conn->attempt > ARRAY_SIZE(sco_param_cvsd))
197 return false;
198 cp.retrans_effort = 0x01;
199 param = &sco_param_cvsd[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200200 break;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200201 default:
202 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200203 }
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200204
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200205 cp.pkt_type = __cpu_to_le16(param->pkt_type);
206 cp.max_latency = __cpu_to_le16(param->max_latency);
207
208 if (hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp) < 0)
209 return false;
210
211 return true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200212}
213
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200214void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300215 u16 latency, u16 to_multiplier)
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200216{
217 struct hci_cp_le_conn_update cp;
218 struct hci_dev *hdev = conn->hdev;
219
220 memset(&cp, 0, sizeof(cp));
221
222 cp.handle = cpu_to_le16(conn->handle);
223 cp.conn_interval_min = cpu_to_le16(min);
224 cp.conn_interval_max = cpu_to_le16(max);
225 cp.conn_latency = cpu_to_le16(latency);
226 cp.supervision_timeout = cpu_to_le16(to_multiplier);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300227 cp.min_ce_len = __constant_cpu_to_le16(0x0001);
228 cp.max_ce_len = __constant_cpu_to_le16(0x0001);
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200229
230 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
231}
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200232
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300233void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __u8 rand[8],
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300234 __u8 ltk[16])
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300235{
236 struct hci_dev *hdev = conn->hdev;
237 struct hci_cp_le_start_enc cp;
238
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300239 BT_DBG("hcon %p", conn);
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300240
241 memset(&cp, 0, sizeof(cp));
242
243 cp.handle = cpu_to_le16(conn->handle);
244 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
245 cp.ediv = ediv;
Anderson Briglia51beabd2011-09-19 14:41:09 -0400246 memcpy(cp.rand, rand, sizeof(cp.rand));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300247
248 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
249}
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300250
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400251/* Device _must_ be locked */
252void hci_sco_setup(struct hci_conn *conn, __u8 status)
253{
254 struct hci_conn *sco = conn->link;
255
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400256 if (!sco)
257 return;
258
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300259 BT_DBG("hcon %p", conn);
260
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400261 if (!status) {
262 if (lmp_esco_capable(conn->hdev))
263 hci_setup_sync(sco, conn->handle);
264 else
265 hci_add_sco(sco, conn->handle);
266 } else {
267 hci_proto_connect_cfm(sco, status);
268 hci_conn_del(sco);
269 }
270}
271
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300272static void hci_conn_disconnect(struct hci_conn *conn)
273{
274 __u8 reason = hci_proto_disconn_ind(conn);
275
276 switch (conn->type) {
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300277 case AMP_LINK:
278 hci_amp_disconn(conn, reason);
279 break;
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300280 default:
Andre Guedesbed71742013-01-30 11:50:56 -0300281 hci_disconnect(conn, reason);
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300282 break;
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300283 }
284}
285
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300286static void hci_conn_timeout(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700287{
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300288 struct hci_conn *conn = container_of(work, struct hci_conn,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300289 disc_work.work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700290
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300291 BT_DBG("hcon %p state %s", conn, state_to_string(conn->state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700292
293 if (atomic_read(&conn->refcnt))
294 return;
295
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200296 switch (conn->state) {
297 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200298 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300299 if (conn->out) {
300 if (conn->type == ACL_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300301 hci_acl_create_connection_cancel(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300302 else if (conn->type == LE_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300303 hci_le_create_connection_cancel(conn);
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300304 } else if (conn->type == SCO_LINK || conn->type == ESCO_LINK) {
305 hci_reject_sco(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300306 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200307 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200308 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900309 case BT_CONNECTED:
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300310 hci_conn_disconnect(conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200311 break;
312 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200314 break;
315 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700316}
317
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200318/* Enter sniff mode */
319static void hci_conn_enter_sniff_mode(struct hci_conn *conn)
320{
321 struct hci_dev *hdev = conn->hdev;
322
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300323 BT_DBG("hcon %p mode %d", conn, conn->mode);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200324
325 if (test_bit(HCI_RAW, &hdev->flags))
326 return;
327
328 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
329 return;
330
331 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
332 return;
333
334 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
335 struct hci_cp_sniff_subrate cp;
336 cp.handle = cpu_to_le16(conn->handle);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300337 cp.max_latency = __constant_cpu_to_le16(0);
338 cp.min_remote_timeout = __constant_cpu_to_le16(0);
339 cp.min_local_timeout = __constant_cpu_to_le16(0);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200340 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
341 }
342
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200343 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200344 struct hci_cp_sniff_mode cp;
345 cp.handle = cpu_to_le16(conn->handle);
346 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
347 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300348 cp.attempt = __constant_cpu_to_le16(4);
349 cp.timeout = __constant_cpu_to_le16(1);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200350 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
351 }
352}
353
Marcel Holtmann04837f62006-07-03 10:02:33 +0200354static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700355{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200356 struct hci_conn *conn = (void *) arg;
357
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300358 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200359
360 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700361}
362
Johan Hedberg9f616562011-04-28 11:28:54 -0700363static void hci_conn_auto_accept(unsigned long arg)
364{
365 struct hci_conn *conn = (void *) arg;
366 struct hci_dev *hdev = conn->hdev;
367
Johan Hedberg9f616562011-04-28 11:28:54 -0700368 hci_send_cmd(hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300369 &conn->dst);
Johan Hedberg9f616562011-04-28 11:28:54 -0700370}
371
Linus Torvalds1da177e2005-04-16 15:20:36 -0700372struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
373{
374 struct hci_conn *conn;
375
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300376 BT_DBG("%s dst %pMR", hdev->name, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377
Andre Guedescb601d72012-01-30 09:22:09 -0300378 conn = kzalloc(sizeof(struct hci_conn), GFP_KERNEL);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200379 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700380 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700381
382 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200383 conn->hdev = hdev;
384 conn->type = type;
385 conn->mode = HCI_CM_ACTIVE;
386 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300387 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200388 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300389 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200390 conn->key_type = 0xff;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700391
Johan Hedberg58a681e2012-01-16 06:47:28 +0200392 set_bit(HCI_CONN_POWER_SAVE, &conn->flags);
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200393 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200394
Marcel Holtmanna8746412008-07-14 20:13:46 +0200395 switch (type) {
396 case ACL_LINK:
397 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
398 break;
399 case SCO_LINK:
400 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100401 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
402 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200403 else
404 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
405 break;
406 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100407 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200408 break;
409 }
410
Linus Torvalds1da177e2005-04-16 15:20:36 -0700411 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200412
Marcel Holtmann70c1f202012-02-22 12:06:43 +0100413 INIT_LIST_HEAD(&conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200414
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300415 INIT_DELAYED_WORK(&conn->disc_work, hci_conn_timeout);
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800416 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Johan Hedberg9f616562011-04-28 11:28:54 -0700417 setup_timer(&conn->auto_accept_timer, hci_conn_auto_accept,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300418 (unsigned long) conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700419
420 atomic_set(&conn->refcnt, 0);
421
422 hci_dev_hold(hdev);
423
Linus Torvalds1da177e2005-04-16 15:20:36 -0700424 hci_conn_hash_add(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200425 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700426 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
427
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700428 hci_conn_init_sysfs(conn);
429
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 return conn;
431}
432
433int hci_conn_del(struct hci_conn *conn)
434{
435 struct hci_dev *hdev = conn->hdev;
436
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300437 BT_DBG("%s hcon %p handle %d", hdev->name, conn, conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700438
Marcel Holtmann04837f62006-07-03 10:02:33 +0200439 del_timer(&conn->idle_timer);
440
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300441 cancel_delayed_work_sync(&conn->disc_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700442
Johan Hedberg9f616562011-04-28 11:28:54 -0700443 del_timer(&conn->auto_accept_timer);
444
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200445 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700446 struct hci_conn *sco = conn->link;
447 if (sco)
448 sco->link = NULL;
449
450 /* Unacked frames */
451 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300452 } else if (conn->type == LE_LINK) {
453 if (hdev->le_pkts)
454 hdev->le_cnt += conn->sent;
455 else
456 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200457 } else {
458 struct hci_conn *acl = conn->link;
459 if (acl) {
460 acl->link = NULL;
David Herrmann76a68ba2013-04-06 20:28:37 +0200461 hci_conn_drop(acl);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200462 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700463 }
464
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200465 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200466
Andrei Emeltchenko9740e492012-05-29 13:59:02 +0300467 if (conn->amp_mgr)
468 amp_mgr_put(conn->amp_mgr);
469
Linus Torvalds1da177e2005-04-16 15:20:36 -0700470 hci_conn_hash_del(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200471 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700472 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200473
Linus Torvalds1da177e2005-04-16 15:20:36 -0700474 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700475
David Herrmannfc225c32013-04-06 20:28:38 +0200476 hci_conn_del_sysfs(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800477
Marcel Holtmann384943e2009-05-08 18:20:43 -0700478 hci_dev_put(hdev);
479
David Herrmann8d123562013-04-06 20:28:39 +0200480 hci_conn_put(conn);
Tomas Targownik163f4da2011-06-30 16:30:44 -0300481
Linus Torvalds1da177e2005-04-16 15:20:36 -0700482 return 0;
483}
484
485struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
486{
487 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200488 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700489
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300490 BT_DBG("%pMR -> %pMR", src, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200492 read_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700493
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200494 list_for_each_entry(d, &hci_dev_list, list) {
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -0300495 if (!test_bit(HCI_UP, &d->flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300496 test_bit(HCI_RAW, &d->flags) ||
Marcel Holtmannaf750e92013-09-03 18:08:37 -0700497 test_bit(HCI_USER_CHANNEL, &d->dev_flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300498 d->dev_type != HCI_BREDR)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700499 continue;
500
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900501 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700502 * No source address - find interface with bdaddr != dst
503 * Source address - find interface with bdaddr == src
504 */
505
506 if (use_src) {
507 if (!bacmp(&d->bdaddr, src)) {
508 hdev = d; break;
509 }
510 } else {
511 if (bacmp(&d->bdaddr, dst)) {
512 hdev = d; break;
513 }
514 }
515 }
516
517 if (hdev)
518 hdev = hci_dev_hold(hdev);
519
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200520 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700521 return hdev;
522}
523EXPORT_SYMBOL(hci_get_route);
524
Andre Guedes1d399ae2013-10-08 08:21:17 -0300525static void create_le_conn_complete(struct hci_dev *hdev, u8 status)
526{
527 struct hci_conn *conn;
528
529 if (status == 0)
530 return;
531
532 BT_ERR("HCI request failed to create LE connection: status 0x%2.2x",
533 status);
534
535 hci_dev_lock(hdev);
536
537 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
538 if (!conn)
539 goto done;
540
541 conn->state = BT_CLOSED;
542
543 mgmt_connect_failed(hdev, &conn->dst, conn->type, conn->dst_type,
544 status);
545
546 hci_proto_connect_cfm(conn, status);
547
548 hci_conn_del(conn);
549
550done:
551 hci_dev_unlock(hdev);
552}
553
554static int hci_create_le_conn(struct hci_conn *conn)
555{
556 struct hci_dev *hdev = conn->hdev;
557 struct hci_cp_le_create_conn cp;
558 struct hci_request req;
559 int err;
560
561 hci_req_init(&req, hdev);
562
563 memset(&cp, 0, sizeof(cp));
564 cp.scan_interval = __constant_cpu_to_le16(0x0060);
565 cp.scan_window = __constant_cpu_to_le16(0x0030);
566 bacpy(&cp.peer_addr, &conn->dst);
567 cp.peer_addr_type = conn->dst_type;
568 if (bacmp(&hdev->bdaddr, BDADDR_ANY))
569 cp.own_address_type = ADDR_LE_DEV_PUBLIC;
570 else
571 cp.own_address_type = ADDR_LE_DEV_RANDOM;
572 cp.conn_interval_min = __constant_cpu_to_le16(0x0028);
573 cp.conn_interval_max = __constant_cpu_to_le16(0x0038);
574 cp.supervision_timeout = __constant_cpu_to_le16(0x002a);
575 cp.min_ce_len = __constant_cpu_to_le16(0x0000);
576 cp.max_ce_len = __constant_cpu_to_le16(0x0000);
577 hci_req_add(&req, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
578
579 err = hci_req_run(&req, create_le_conn_complete);
580 if (err) {
581 hci_conn_del(conn);
582 return err;
583 }
584
585 return 0;
586}
587
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300588static struct hci_conn *hci_connect_le(struct hci_dev *hdev, bdaddr_t *dst,
589 u8 dst_type, u8 sec_level, u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700590{
Andre Guedesf1e5d542013-10-03 18:25:44 -0300591 struct hci_conn *conn;
Andre Guedes1d399ae2013-10-08 08:21:17 -0300592 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700593
Johan Hedbergf3d3444a2013-10-05 12:01:04 +0200594 if (test_bit(HCI_ADVERTISING, &hdev->flags))
Johan Hedbergf15504782012-10-24 21:12:03 +0300595 return ERR_PTR(-ENOTSUPP);
596
Andre Guedes620ad522013-10-08 08:21:18 -0300597 /* Some devices send ATT messages as soon as the physical link is
598 * established. To be able to handle these ATT messages, the user-
599 * space first establishes the connection and then starts the pairing
600 * process.
601 *
602 * So if a hci_conn object already exists for the following connection
603 * attempt, we simply update pending_sec_level and auth_type fields
604 * and return the object found.
605 */
Andre Guedesf1e5d542013-10-03 18:25:44 -0300606 conn = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Andre Guedes620ad522013-10-08 08:21:18 -0300607 if (conn) {
608 conn->pending_sec_level = sec_level;
609 conn->auth_type = auth_type;
610 goto done;
Ville Tervofcd89c02011-02-10 22:38:47 -0300611 }
612
Andre Guedes620ad522013-10-08 08:21:18 -0300613 /* Since the controller supports only one LE connection attempt at a
614 * time, we return -EBUSY if there is any connection attempt running.
615 */
616 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
617 if (conn)
618 return ERR_PTR(-EBUSY);
619
620 conn = hci_conn_add(hdev, LE_LINK, dst);
621 if (!conn)
622 return ERR_PTR(-ENOMEM);
623
624 conn->dst_type = bdaddr_to_le(dst_type);
625 conn->state = BT_CONNECT;
626 conn->out = true;
627 conn->link_mode |= HCI_LM_MASTER;
628 conn->sec_level = BT_SECURITY_LOW;
Andre Guedesf1e5d542013-10-03 18:25:44 -0300629 conn->pending_sec_level = sec_level;
630 conn->auth_type = auth_type;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300631
Andre Guedes620ad522013-10-08 08:21:18 -0300632 err = hci_create_le_conn(conn);
633 if (err)
634 return ERR_PTR(err);
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300635
Andre Guedes620ad522013-10-08 08:21:18 -0300636done:
637 hci_conn_hold(conn);
Andre Guedesf1e5d542013-10-03 18:25:44 -0300638 return conn;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300639}
640
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300641static struct hci_conn *hci_connect_acl(struct hci_dev *hdev, bdaddr_t *dst,
642 u8 sec_level, u8 auth_type)
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200643{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700644 struct hci_conn *acl;
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400645
Johan Hedberg56f87902013-10-02 13:43:13 +0300646 if (!test_bit(HCI_BREDR_ENABLED, &hdev->dev_flags))
647 return ERR_PTR(-ENOTSUPP);
648
Linus Torvalds1da177e2005-04-16 15:20:36 -0700649 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
650 if (!acl) {
651 acl = hci_conn_add(hdev, ACL_LINK, dst);
652 if (!acl)
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200653 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700654 }
655
656 hci_conn_hold(acl);
657
658 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
659 acl->sec_level = BT_SECURITY_LOW;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200660 acl->pending_sec_level = sec_level;
661 acl->auth_type = auth_type;
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300662 hci_acl_create_connection(acl);
Nick Pellyc3902162009-11-13 14:16:32 -0800663 }
664
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300665 return acl;
666}
667
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200668struct hci_conn *hci_connect_sco(struct hci_dev *hdev, int type, bdaddr_t *dst,
669 __u16 setting)
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300670{
671 struct hci_conn *acl;
672 struct hci_conn *sco;
673
Frédéric Dalleaue660ed62013-08-19 14:23:54 +0200674 acl = hci_connect_acl(hdev, dst, BT_SECURITY_LOW, HCI_AT_NO_BONDING);
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300675 if (IS_ERR(acl))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200676 return acl;
677
678 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
679 if (!sco) {
680 sco = hci_conn_add(hdev, type, dst);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200681 if (!sco) {
David Herrmann76a68ba2013-04-06 20:28:37 +0200682 hci_conn_drop(acl);
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200683 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684 }
685 }
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200686
687 acl->link = sco;
688 sco->link = acl;
689
690 hci_conn_hold(sco);
691
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200692 sco->setting = setting;
693
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200694 if (acl->state == BT_CONNECTED &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300695 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Johan Hedberg58a681e2012-01-16 06:47:28 +0200696 set_bit(HCI_CONN_POWER_SAVE, &acl->flags);
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700697 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200698
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200699 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->flags)) {
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200700 /* defer SCO setup until mode change completed */
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200701 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->flags);
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100702 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700703 }
704
705 hci_sco_setup(acl, 0x00);
Marcel Holtmann96a31832009-02-12 16:23:03 +0100706 }
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100707
Marcel Holtmann96a31832009-02-12 16:23:03 +0100708 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700709}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700710
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300711/* Create SCO, ACL or LE connection. */
712struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst,
713 __u8 dst_type, __u8 sec_level, __u8 auth_type)
714{
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300715 BT_DBG("%s dst %pMR type 0x%x", hdev->name, dst, type);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300716
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300717 switch (type) {
718 case LE_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300719 return hci_connect_le(hdev, dst, dst_type, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300720 case ACL_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300721 return hci_connect_acl(hdev, dst, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300722 }
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300723
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300724 return ERR_PTR(-EINVAL);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300725}
726
Linus Torvalds1da177e2005-04-16 15:20:36 -0700727/* Check link security requirement */
728int hci_conn_check_link_mode(struct hci_conn *conn)
729{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300730 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700731
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200732 if (hci_conn_ssp_enabled(conn) && !(conn->link_mode & HCI_LM_ENCRYPT))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700733 return 0;
734
735 return 1;
736}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700737
738/* Authenticate remote device */
739static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
740{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300741 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700742
Johan Hedberg765c2a92011-01-19 12:06:52 +0530743 if (conn->pending_sec_level > sec_level)
744 sec_level = conn->pending_sec_level;
745
Linus Torvalds1da177e2005-04-16 15:20:36 -0700746 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530747 conn->pending_sec_level = sec_level;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700748 else if (conn->link_mode & HCI_LM_AUTH)
749 return 1;
750
Johan Hedberg65cf6862011-01-19 12:06:49 +0530751 /* Make sure we preserve an existing MITM requirement*/
752 auth_type |= (conn->auth_type & 0x01);
753
Marcel Holtmann96a31832009-02-12 16:23:03 +0100754 conn->auth_type = auth_type;
755
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200756 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700757 struct hci_cp_auth_requested cp;
Peter Hurleyb7d05ba2012-01-13 15:11:30 +0100758
759 /* encrypt must be pending if auth is also pending */
760 set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags);
761
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700762 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200763 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300764 sizeof(cp), &cp);
Waldemar Rymarkiewicz19f8def2011-05-31 15:49:25 +0200765 if (conn->key_type != 0xff)
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200766 set_bit(HCI_CONN_REAUTH_PEND, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700767 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100768
Linus Torvalds1da177e2005-04-16 15:20:36 -0700769 return 0;
770}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700771
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200772/* Encrypt the the link */
773static void hci_conn_encrypt(struct hci_conn *conn)
774{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300775 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200776
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200777 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags)) {
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200778 struct hci_cp_set_conn_encrypt cp;
779 cp.handle = cpu_to_le16(conn->handle);
780 cp.encrypt = 0x01;
781 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300782 &cp);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200783 }
784}
785
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100786/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100787int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700788{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300789 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700790
Vinicius Costa Gomesd8343f12012-08-23 21:32:44 -0300791 if (conn->type == LE_LINK)
792 return smp_conn_security(conn, sec_level);
793
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200794 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100795 if (sec_level == BT_SECURITY_SDP)
796 return 1;
797
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200798 /* For non 2.1 devices and low security level we don't need the link
799 key. */
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200800 if (sec_level == BT_SECURITY_LOW && !hci_conn_ssp_enabled(conn))
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700801 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100802
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200803 /* For other security levels we need the link key. */
804 if (!(conn->link_mode & HCI_LM_AUTH))
805 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700806
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200807 /* An authenticated combination key has sufficient security for any
808 security level. */
809 if (conn->key_type == HCI_LK_AUTH_COMBINATION)
810 goto encrypt;
811
812 /* An unauthenticated combination key has sufficient security for
813 security level 1 and 2. */
814 if (conn->key_type == HCI_LK_UNAUTH_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300815 (sec_level == BT_SECURITY_MEDIUM || sec_level == BT_SECURITY_LOW))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200816 goto encrypt;
817
818 /* A combination key has always sufficient security for the security
819 levels 1 or 2. High security level requires the combination key
820 is generated using maximum PIN code length (16).
821 For pre 2.1 units. */
822 if (conn->key_type == HCI_LK_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300823 (sec_level != BT_SECURITY_HIGH || conn->pin_length == 16))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200824 goto encrypt;
825
826auth:
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200827 if (test_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700828 return 0;
829
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +0300830 if (!hci_conn_auth(conn, sec_level, auth_type))
831 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100832
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200833encrypt:
834 if (conn->link_mode & HCI_LM_ENCRYPT)
835 return 1;
836
837 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700838 return 0;
839}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100840EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700841
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200842/* Check secure link requirement */
843int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
844{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300845 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200846
847 if (sec_level != BT_SECURITY_HIGH)
848 return 1; /* Accept if non-secure is required */
849
Waldemar Rymarkiewiczef4177e2011-06-02 14:24:52 +0200850 if (conn->sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200851 return 1;
852
853 return 0; /* Reject not secure link */
854}
855EXPORT_SYMBOL(hci_conn_check_secure);
856
Linus Torvalds1da177e2005-04-16 15:20:36 -0700857/* Change link key */
858int hci_conn_change_link_key(struct hci_conn *conn)
859{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300860 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700861
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200862 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700863 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700864 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200865 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300866 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700867 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100868
Linus Torvalds1da177e2005-04-16 15:20:36 -0700869 return 0;
870}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700871
872/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100873int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700874{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300875 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700876
877 if (!role && conn->link_mode & HCI_LM_MASTER)
878 return 1;
879
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200880 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700881 struct hci_cp_switch_role cp;
882 bacpy(&cp.bdaddr, &conn->dst);
883 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200884 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700885 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100886
Linus Torvalds1da177e2005-04-16 15:20:36 -0700887 return 0;
888}
889EXPORT_SYMBOL(hci_conn_switch_role);
890
Marcel Holtmann04837f62006-07-03 10:02:33 +0200891/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700892void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200893{
894 struct hci_dev *hdev = conn->hdev;
895
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300896 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200897
898 if (test_bit(HCI_RAW, &hdev->flags))
899 return;
900
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700901 if (conn->mode != HCI_CM_SNIFF)
902 goto timer;
903
Johan Hedberg58a681e2012-01-16 06:47:28 +0200904 if (!test_bit(HCI_CONN_POWER_SAVE, &conn->flags) && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200905 goto timer;
906
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200907 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Marcel Holtmann04837f62006-07-03 10:02:33 +0200908 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700909 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200910 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200911 }
912
913timer:
914 if (hdev->idle_timeout > 0)
915 mod_timer(&conn->idle_timer,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300916 jiffies + msecs_to_jiffies(hdev->idle_timeout));
Marcel Holtmann04837f62006-07-03 10:02:33 +0200917}
918
Linus Torvalds1da177e2005-04-16 15:20:36 -0700919/* Drop all connection on the device */
920void hci_conn_hash_flush(struct hci_dev *hdev)
921{
922 struct hci_conn_hash *h = &hdev->conn_hash;
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +0200923 struct hci_conn *c, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700924
925 BT_DBG("hdev %s", hdev->name);
926
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +0200927 list_for_each_entry_safe(c, n, &h->list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700928 c->state = BT_CLOSED;
929
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +0200930 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700931 hci_conn_del(c);
932 }
933}
934
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200935/* Check pending connect attempts */
936void hci_conn_check_pending(struct hci_dev *hdev)
937{
938 struct hci_conn *conn;
939
940 BT_DBG("hdev %s", hdev->name);
941
942 hci_dev_lock(hdev);
943
944 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
945 if (conn)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300946 hci_acl_create_connection(conn);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200947
948 hci_dev_unlock(hdev);
949}
950
Linus Torvalds1da177e2005-04-16 15:20:36 -0700951int hci_get_conn_list(void __user *arg)
952{
Gustavo Padovanfc5fef62012-05-23 04:04:19 -0300953 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700954 struct hci_conn_list_req req, *cl;
955 struct hci_conn_info *ci;
956 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700957 int n = 0, size, err;
958
959 if (copy_from_user(&req, arg, sizeof(req)))
960 return -EFAULT;
961
962 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
963 return -EINVAL;
964
965 size = sizeof(req) + req.conn_num * sizeof(*ci);
966
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200967 cl = kmalloc(size, GFP_KERNEL);
968 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700969 return -ENOMEM;
970
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200971 hdev = hci_dev_get(req.dev_id);
972 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700973 kfree(cl);
974 return -ENODEV;
975 }
976
977 ci = cl->conn_info;
978
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300979 hci_dev_lock(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200980 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700981 bacpy(&(ci + n)->bdaddr, &c->dst);
982 (ci + n)->handle = c->handle;
983 (ci + n)->type = c->type;
984 (ci + n)->out = c->out;
985 (ci + n)->state = c->state;
986 (ci + n)->link_mode = c->link_mode;
987 if (++n >= req.conn_num)
988 break;
989 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300990 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700991
992 cl->dev_id = hdev->id;
993 cl->conn_num = n;
994 size = sizeof(req) + n * sizeof(*ci);
995
996 hci_dev_put(hdev);
997
998 err = copy_to_user(arg, cl, size);
999 kfree(cl);
1000
1001 return err ? -EFAULT : 0;
1002}
1003
1004int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
1005{
1006 struct hci_conn_info_req req;
1007 struct hci_conn_info ci;
1008 struct hci_conn *conn;
1009 char __user *ptr = arg + sizeof(req);
1010
1011 if (copy_from_user(&req, arg, sizeof(req)))
1012 return -EFAULT;
1013
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001014 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001015 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
1016 if (conn) {
1017 bacpy(&ci.bdaddr, &conn->dst);
1018 ci.handle = conn->handle;
1019 ci.type = conn->type;
1020 ci.out = conn->out;
1021 ci.state = conn->state;
1022 ci.link_mode = conn->link_mode;
1023 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001024 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001025
1026 if (!conn)
1027 return -ENOENT;
1028
1029 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
1030}
Marcel Holtmann40be4922008-07-14 20:13:50 +02001031
1032int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
1033{
1034 struct hci_auth_info_req req;
1035 struct hci_conn *conn;
1036
1037 if (copy_from_user(&req, arg, sizeof(req)))
1038 return -EFAULT;
1039
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001040 hci_dev_lock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001041 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
1042 if (conn)
1043 req.type = conn->auth_type;
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001044 hci_dev_unlock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001045
1046 if (!conn)
1047 return -ENOENT;
1048
1049 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
1050}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001051
1052struct hci_chan *hci_chan_create(struct hci_conn *conn)
1053{
1054 struct hci_dev *hdev = conn->hdev;
1055 struct hci_chan *chan;
1056
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001057 BT_DBG("%s hcon %p", hdev->name, conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001058
Andre Guedes75d77352012-01-30 09:22:10 -03001059 chan = kzalloc(sizeof(struct hci_chan), GFP_KERNEL);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001060 if (!chan)
1061 return NULL;
1062
1063 chan->conn = conn;
1064 skb_queue_head_init(&chan->data_q);
Mat Martineau168df8e2012-10-23 15:24:13 -07001065 chan->state = BT_CONNECTED;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001066
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001067 list_add_rcu(&chan->list, &conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001068
1069 return chan;
1070}
1071
Andrei Emeltchenko94720072012-09-06 15:05:43 +03001072void hci_chan_del(struct hci_chan *chan)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001073{
1074 struct hci_conn *conn = chan->conn;
1075 struct hci_dev *hdev = conn->hdev;
1076
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001077 BT_DBG("%s hcon %p chan %p", hdev->name, conn, chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001078
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001079 list_del_rcu(&chan->list);
1080
1081 synchronize_rcu();
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001082
David Herrmann76a68ba2013-04-06 20:28:37 +02001083 hci_conn_drop(conn);
Andrei Emeltchenkoe9b02742012-10-25 15:20:51 +03001084
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001085 skb_queue_purge(&chan->data_q);
1086 kfree(chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001087}
1088
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -02001089void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001090{
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001091 struct hci_chan *chan, *n;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001092
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001093 BT_DBG("hcon %p", conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001094
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001095 list_for_each_entry_safe(chan, n, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001096 hci_chan_del(chan);
1097}
Andrei Emeltchenko42c4e532012-10-10 17:38:28 +03001098
1099static struct hci_chan *__hci_chan_lookup_handle(struct hci_conn *hcon,
1100 __u16 handle)
1101{
1102 struct hci_chan *hchan;
1103
1104 list_for_each_entry(hchan, &hcon->chan_list, list) {
1105 if (hchan->handle == handle)
1106 return hchan;
1107 }
1108
1109 return NULL;
1110}
1111
1112struct hci_chan *hci_chan_lookup_handle(struct hci_dev *hdev, __u16 handle)
1113{
1114 struct hci_conn_hash *h = &hdev->conn_hash;
1115 struct hci_conn *hcon;
1116 struct hci_chan *hchan = NULL;
1117
1118 rcu_read_lock();
1119
1120 list_for_each_entry_rcu(hcon, &h->list, list) {
1121 hchan = __hci_chan_lookup_handle(hcon, handle);
1122 if (hchan)
1123 break;
1124 }
1125
1126 rcu_read_unlock();
1127
1128 return hchan;
1129}