blob: 139587159200f86cf1c315d051a061e0961b3d0e [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
Ron Shaffer2d0a0342010-05-28 11:53:46 -04003 Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
Linus Torvalds1da177e2005-04-16 15:20:36 -07004
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090015 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070018 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090020 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth HCI connection handling. */
26
Gustavo Padovan8c520a52012-05-23 04:04:22 -030027#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028
29#include <net/bluetooth/bluetooth.h>
30#include <net/bluetooth/hci_core.h>
31
Marcel Holtmannac4b7232013-10-10 14:54:16 -070032#include "smp.h"
Marcel Holtmann70247282013-10-10 14:54:15 -070033#include "a2mp.h"
34
Frédéric Dalleau2dea6322013-08-19 14:24:03 +020035struct sco_param {
36 u16 pkt_type;
37 u16 max_latency;
38};
39
40static const struct sco_param sco_param_cvsd[] = {
41 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000a }, /* S3 */
42 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x0007 }, /* S2 */
43 { EDR_ESCO_MASK | ESCO_EV3, 0x0007 }, /* S1 */
44 { EDR_ESCO_MASK | ESCO_HV3, 0xffff }, /* D1 */
45 { EDR_ESCO_MASK | ESCO_HV1, 0xffff }, /* D0 */
46};
47
48static const struct sco_param sco_param_wideband[] = {
49 { EDR_ESCO_MASK & ~ESCO_2EV3, 0x000d }, /* T2 */
50 { EDR_ESCO_MASK | ESCO_EV3, 0x0008 }, /* T1 */
51};
52
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030053static void hci_le_create_connection_cancel(struct hci_conn *conn)
Ville Tervofcd89c02011-02-10 22:38:47 -030054{
55 hci_send_cmd(conn->hdev, HCI_OP_LE_CREATE_CONN_CANCEL, 0, NULL);
56}
57
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -030058static void hci_acl_create_connection(struct hci_conn *conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -070059{
60 struct hci_dev *hdev = conn->hdev;
61 struct inquiry_entry *ie;
62 struct hci_cp_create_conn cp;
63
Andrei Emeltchenko42d2d872012-02-17 11:40:57 +020064 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -070065
66 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +020067 conn->out = true;
Marcel Holtmanna8746412008-07-14 20:13:46 +020068
Linus Torvalds1da177e2005-04-16 15:20:36 -070069 conn->link_mode = HCI_LM_MASTER;
70
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020071 conn->attempt++;
72
Marcel Holtmanne4e8e372008-07-14 20:13:47 +020073 conn->link_policy = hdev->link_policy;
74
Linus Torvalds1da177e2005-04-16 15:20:36 -070075 memset(&cp, 0, sizeof(cp));
76 bacpy(&cp.bdaddr, &conn->dst);
77 cp.pscan_rep_mode = 0x02;
78
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020079 ie = hci_inquiry_cache_lookup(hdev, &conn->dst);
80 if (ie) {
Marcel Holtmann41a96212008-07-14 20:13:48 +020081 if (inquiry_entry_age(ie) <= INQUIRY_ENTRY_AGE_MAX) {
82 cp.pscan_rep_mode = ie->data.pscan_rep_mode;
83 cp.pscan_mode = ie->data.pscan_mode;
84 cp.clock_offset = ie->data.clock_offset |
Andrei Emeltchenko82781e62012-05-25 11:38:27 +030085 __constant_cpu_to_le16(0x8000);
Marcel Holtmann41a96212008-07-14 20:13:48 +020086 }
87
Linus Torvalds1da177e2005-04-16 15:20:36 -070088 memcpy(conn->dev_class, ie->data.dev_class, 3);
Johan Hedberg58a681e2012-01-16 06:47:28 +020089 if (ie->data.ssp_mode > 0)
90 set_bit(HCI_CONN_SSP_ENABLED, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -070091 }
92
Marcel Holtmanna8746412008-07-14 20:13:46 +020093 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -070094 if (lmp_rswitch_capable(hdev) && !(hdev->link_mode & HCI_LM_MASTER))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020095 cp.role_switch = 0x01;
Linus Torvalds1da177e2005-04-16 15:20:36 -070096 else
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +020097 cp.role_switch = 0x00;
Marcel Holtmann4c67bc72006-10-15 17:30:56 +020098
Marcel Holtmanna9de9242007-10-20 13:33:56 +020099 hci_send_cmd(hdev, HCI_OP_CREATE_CONN, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700100}
101
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300102static void hci_acl_create_connection_cancel(struct hci_conn *conn)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200103{
104 struct hci_cp_create_conn_cancel cp;
105
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300106 BT_DBG("hcon %p", conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200107
Andrei Emeltchenkod095c1e2011-12-01 14:33:27 +0200108 if (conn->hdev->hci_ver < BLUETOOTH_VER_1_2)
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200109 return;
110
111 bacpy(&cp.bdaddr, &conn->dst);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200112 hci_send_cmd(conn->hdev, HCI_OP_CREATE_CONN_CANCEL, sizeof(cp), &cp);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200113}
114
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300115static void hci_reject_sco(struct hci_conn *conn)
116{
117 struct hci_cp_reject_sync_conn_req cp;
118
119 cp.reason = HCI_ERROR_REMOTE_USER_TERM;
120 bacpy(&cp.bdaddr, &conn->dst);
121
122 hci_send_cmd(conn->hdev, HCI_OP_REJECT_SYNC_CONN_REQ, sizeof(cp), &cp);
123}
124
Andre Guedesbed71742013-01-30 11:50:56 -0300125void hci_disconnect(struct hci_conn *conn, __u8 reason)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700126{
127 struct hci_cp_disconnect cp;
128
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300129 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700130
131 conn->state = BT_DISCONN;
132
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700133 cp.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700134 cp.reason = reason;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200135 hci_send_cmd(conn->hdev, HCI_OP_DISCONNECT, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136}
137
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300138static void hci_amp_disconn(struct hci_conn *conn, __u8 reason)
139{
140 struct hci_cp_disconn_phy_link cp;
141
142 BT_DBG("hcon %p", conn);
143
144 conn->state = BT_DISCONN;
145
146 cp.phy_handle = HCI_PHY_HANDLE(conn->handle);
147 cp.reason = reason;
148 hci_send_cmd(conn->hdev, HCI_OP_DISCONN_PHY_LINK,
149 sizeof(cp), &cp);
150}
151
Vinicius Costa Gomes57f5d0d2012-07-27 19:32:54 -0300152static void hci_add_sco(struct hci_conn *conn, __u16 handle)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700153{
154 struct hci_dev *hdev = conn->hdev;
155 struct hci_cp_add_sco cp;
156
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300157 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158
159 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200160 conn->out = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700161
Marcel Holtmannefc76882009-02-06 09:13:37 +0100162 conn->attempt++;
163
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700164 cp.handle = cpu_to_le16(handle);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200165 cp.pkt_type = cpu_to_le16(conn->pkt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700166
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200167 hci_send_cmd(hdev, HCI_OP_ADD_SCO, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700168}
169
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200170bool hci_setup_sync(struct hci_conn *conn, __u16 handle)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200171{
172 struct hci_dev *hdev = conn->hdev;
173 struct hci_cp_setup_sync_conn cp;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200174 const struct sco_param *param;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200175
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300176 BT_DBG("hcon %p", conn);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200177
178 conn->state = BT_CONNECT;
Johan Hedberga0c808b2012-01-16 09:49:58 +0200179 conn->out = true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200180
Marcel Holtmannefc76882009-02-06 09:13:37 +0100181 conn->attempt++;
182
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200183 cp.handle = cpu_to_le16(handle);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200184
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300185 cp.tx_bandwidth = __constant_cpu_to_le32(0x00001f40);
186 cp.rx_bandwidth = __constant_cpu_to_le32(0x00001f40);
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200187 cp.voice_setting = cpu_to_le16(conn->setting);
188
189 switch (conn->setting & SCO_AIRMODE_MASK) {
190 case SCO_AIRMODE_TRANSP:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200191 if (conn->attempt > ARRAY_SIZE(sco_param_wideband))
192 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200193 cp.retrans_effort = 0x02;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200194 param = &sco_param_wideband[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200195 break;
196 case SCO_AIRMODE_CVSD:
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200197 if (conn->attempt > ARRAY_SIZE(sco_param_cvsd))
198 return false;
199 cp.retrans_effort = 0x01;
200 param = &sco_param_cvsd[conn->attempt - 1];
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200201 break;
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200202 default:
203 return false;
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200204 }
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200205
Frédéric Dalleau2dea6322013-08-19 14:24:03 +0200206 cp.pkt_type = __cpu_to_le16(param->pkt_type);
207 cp.max_latency = __cpu_to_le16(param->max_latency);
208
209 if (hci_send_cmd(hdev, HCI_OP_SETUP_SYNC_CONN, sizeof(cp), &cp) < 0)
210 return false;
211
212 return true;
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200213}
214
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200215void hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300216 u16 latency, u16 to_multiplier)
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200217{
218 struct hci_cp_le_conn_update cp;
219 struct hci_dev *hdev = conn->hdev;
220
221 memset(&cp, 0, sizeof(cp));
222
223 cp.handle = cpu_to_le16(conn->handle);
224 cp.conn_interval_min = cpu_to_le16(min);
225 cp.conn_interval_max = cpu_to_le16(max);
226 cp.conn_latency = cpu_to_le16(latency);
227 cp.supervision_timeout = cpu_to_le16(to_multiplier);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300228 cp.min_ce_len = __constant_cpu_to_le16(0x0001);
229 cp.max_ce_len = __constant_cpu_to_le16(0x0001);
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200230
231 hci_send_cmd(hdev, HCI_OP_LE_CONN_UPDATE, sizeof(cp), &cp);
232}
Claudio Takahasi2ce603e2011-02-16 20:44:53 -0200233
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300234void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __u8 rand[8],
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300235 __u8 ltk[16])
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300236{
237 struct hci_dev *hdev = conn->hdev;
238 struct hci_cp_le_start_enc cp;
239
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300240 BT_DBG("hcon %p", conn);
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300241
242 memset(&cp, 0, sizeof(cp));
243
244 cp.handle = cpu_to_le16(conn->handle);
245 memcpy(cp.ltk, ltk, sizeof(cp.ltk));
246 cp.ediv = ediv;
Anderson Briglia51beabd2011-09-19 14:41:09 -0400247 memcpy(cp.rand, rand, sizeof(cp.rand));
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300248
249 hci_send_cmd(hdev, HCI_OP_LE_START_ENC, sizeof(cp), &cp);
250}
Vinicius Costa Gomesa7a595f2011-06-09 18:50:47 -0300251
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400252/* Device _must_ be locked */
253void hci_sco_setup(struct hci_conn *conn, __u8 status)
254{
255 struct hci_conn *sco = conn->link;
256
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400257 if (!sco)
258 return;
259
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300260 BT_DBG("hcon %p", conn);
261
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400262 if (!status) {
263 if (lmp_esco_capable(conn->hdev))
264 hci_setup_sync(sco, conn->handle);
265 else
266 hci_add_sco(sco, conn->handle);
267 } else {
268 hci_proto_connect_cfm(sco, status);
269 hci_conn_del(sco);
270 }
271}
272
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300273static void hci_conn_disconnect(struct hci_conn *conn)
274{
275 __u8 reason = hci_proto_disconn_ind(conn);
276
277 switch (conn->type) {
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300278 case AMP_LINK:
279 hci_amp_disconn(conn, reason);
280 break;
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300281 default:
Andre Guedesbed71742013-01-30 11:50:56 -0300282 hci_disconnect(conn, reason);
Andre Guedes4c02e2d2013-01-30 11:50:55 -0300283 break;
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300284 }
285}
286
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300287static void hci_conn_timeout(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700288{
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300289 struct hci_conn *conn = container_of(work, struct hci_conn,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300290 disc_work.work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700291
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300292 BT_DBG("hcon %p state %s", conn, state_to_string(conn->state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700293
294 if (atomic_read(&conn->refcnt))
295 return;
296
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200297 switch (conn->state) {
298 case BT_CONNECT:
Marcel Holtmann769be972008-07-14 20:13:49 +0200299 case BT_CONNECT2:
Ville Tervofcd89c02011-02-10 22:38:47 -0300300 if (conn->out) {
301 if (conn->type == ACL_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300302 hci_acl_create_connection_cancel(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300303 else if (conn->type == LE_LINK)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300304 hci_le_create_connection_cancel(conn);
Claudio Takahasi93796fa2013-04-11 13:54:56 -0300305 } else if (conn->type == SCO_LINK || conn->type == ESCO_LINK) {
306 hci_reject_sco(conn);
Ville Tervofcd89c02011-02-10 22:38:47 -0300307 }
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200308 break;
Marcel Holtmann769be972008-07-14 20:13:49 +0200309 case BT_CONFIG:
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900310 case BT_CONNECTED:
Andrei Emeltchenko53502d62012-10-10 17:38:27 +0300311 hci_conn_disconnect(conn);
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200312 break;
313 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700314 conn->state = BT_CLOSED;
Marcel Holtmann6ac59342006-09-26 09:43:48 +0200315 break;
316 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700317}
318
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200319/* Enter sniff mode */
320static void hci_conn_enter_sniff_mode(struct hci_conn *conn)
321{
322 struct hci_dev *hdev = conn->hdev;
323
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300324 BT_DBG("hcon %p mode %d", conn, conn->mode);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200325
326 if (test_bit(HCI_RAW, &hdev->flags))
327 return;
328
329 if (!lmp_sniff_capable(hdev) || !lmp_sniff_capable(conn))
330 return;
331
332 if (conn->mode != HCI_CM_ACTIVE || !(conn->link_policy & HCI_LP_SNIFF))
333 return;
334
335 if (lmp_sniffsubr_capable(hdev) && lmp_sniffsubr_capable(conn)) {
336 struct hci_cp_sniff_subrate cp;
337 cp.handle = cpu_to_le16(conn->handle);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300338 cp.max_latency = __constant_cpu_to_le16(0);
339 cp.min_remote_timeout = __constant_cpu_to_le16(0);
340 cp.min_local_timeout = __constant_cpu_to_le16(0);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200341 hci_send_cmd(hdev, HCI_OP_SNIFF_SUBRATE, sizeof(cp), &cp);
342 }
343
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200344 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200345 struct hci_cp_sniff_mode cp;
346 cp.handle = cpu_to_le16(conn->handle);
347 cp.max_interval = cpu_to_le16(hdev->sniff_max_interval);
348 cp.min_interval = cpu_to_le16(hdev->sniff_min_interval);
Andrei Emeltchenko82781e62012-05-25 11:38:27 +0300349 cp.attempt = __constant_cpu_to_le16(4);
350 cp.timeout = __constant_cpu_to_le16(1);
Gustavo F. Padovan416dc942011-12-07 13:24:33 -0200351 hci_send_cmd(hdev, HCI_OP_SNIFF_MODE, sizeof(cp), &cp);
352 }
353}
354
Marcel Holtmann04837f62006-07-03 10:02:33 +0200355static void hci_conn_idle(unsigned long arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356{
Marcel Holtmann04837f62006-07-03 10:02:33 +0200357 struct hci_conn *conn = (void *) arg;
358
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300359 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200360
361 hci_conn_enter_sniff_mode(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700362}
363
Johan Hedberg9f616562011-04-28 11:28:54 -0700364static void hci_conn_auto_accept(unsigned long arg)
365{
366 struct hci_conn *conn = (void *) arg;
367 struct hci_dev *hdev = conn->hdev;
368
Johan Hedberg9f616562011-04-28 11:28:54 -0700369 hci_send_cmd(hdev, HCI_OP_USER_CONFIRM_REPLY, sizeof(conn->dst),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300370 &conn->dst);
Johan Hedberg9f616562011-04-28 11:28:54 -0700371}
372
Linus Torvalds1da177e2005-04-16 15:20:36 -0700373struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst)
374{
375 struct hci_conn *conn;
376
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300377 BT_DBG("%s dst %pMR", hdev->name, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700378
Andre Guedescb601d72012-01-30 09:22:09 -0300379 conn = kzalloc(sizeof(struct hci_conn), GFP_KERNEL);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200380 if (!conn)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700381 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700382
383 bacpy(&conn->dst, dst);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200384 conn->hdev = hdev;
385 conn->type = type;
386 conn->mode = HCI_CM_ACTIVE;
387 conn->state = BT_OPEN;
Andrei Emeltchenko93f19c92009-09-03 12:34:19 +0300388 conn->auth_type = HCI_AT_GENERAL_BONDING;
Johan Hedberg17fa4b92011-01-25 13:28:33 +0200389 conn->io_capability = hdev->io_capability;
Johan Hedberga9583552011-02-19 12:06:01 -0300390 conn->remote_auth = 0xff;
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200391 conn->key_type = 0xff;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700392
Johan Hedberg58a681e2012-01-16 06:47:28 +0200393 set_bit(HCI_CONN_POWER_SAVE, &conn->flags);
Marcel Holtmann052b30b2009-04-26 20:01:22 +0200394 conn->disc_timeout = HCI_DISCONN_TIMEOUT;
Marcel Holtmann04837f62006-07-03 10:02:33 +0200395
Marcel Holtmanna8746412008-07-14 20:13:46 +0200396 switch (type) {
397 case ACL_LINK:
398 conn->pkt_type = hdev->pkt_type & ACL_PTYPE_MASK;
399 break;
400 case SCO_LINK:
401 if (lmp_esco_capable(hdev))
Marcel Holtmannefc76882009-02-06 09:13:37 +0100402 conn->pkt_type = (hdev->esco_type & SCO_ESCO_MASK) |
403 (hdev->esco_type & EDR_ESCO_MASK);
Marcel Holtmanna8746412008-07-14 20:13:46 +0200404 else
405 conn->pkt_type = hdev->pkt_type & SCO_PTYPE_MASK;
406 break;
407 case ESCO_LINK:
Marcel Holtmannefc76882009-02-06 09:13:37 +0100408 conn->pkt_type = hdev->esco_type & ~EDR_ESCO_MASK;
Marcel Holtmanna8746412008-07-14 20:13:46 +0200409 break;
410 }
411
Linus Torvalds1da177e2005-04-16 15:20:36 -0700412 skb_queue_head_init(&conn->data_q);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200413
Marcel Holtmann70c1f202012-02-22 12:06:43 +0100414 INIT_LIST_HEAD(&conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200415
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300416 INIT_DELAYED_WORK(&conn->disc_work, hci_conn_timeout);
Pavel Emelyanovb24b8a22008-01-23 21:20:07 -0800417 setup_timer(&conn->idle_timer, hci_conn_idle, (unsigned long)conn);
Johan Hedberg9f616562011-04-28 11:28:54 -0700418 setup_timer(&conn->auto_accept_timer, hci_conn_auto_accept,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300419 (unsigned long) conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700420
421 atomic_set(&conn->refcnt, 0);
422
423 hci_dev_hold(hdev);
424
Linus Torvalds1da177e2005-04-16 15:20:36 -0700425 hci_conn_hash_add(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200426 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700427 hdev->notify(hdev, HCI_NOTIFY_CONN_ADD);
428
Marcel Holtmanna67e8992009-05-02 18:24:06 -0700429 hci_conn_init_sysfs(conn);
430
Linus Torvalds1da177e2005-04-16 15:20:36 -0700431 return conn;
432}
433
434int hci_conn_del(struct hci_conn *conn)
435{
436 struct hci_dev *hdev = conn->hdev;
437
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300438 BT_DBG("%s hcon %p handle %d", hdev->name, conn, conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700439
Marcel Holtmann04837f62006-07-03 10:02:33 +0200440 del_timer(&conn->idle_timer);
441
Gustavo F. Padovan19c40e32011-06-17 13:03:21 -0300442 cancel_delayed_work_sync(&conn->disc_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443
Johan Hedberg9f616562011-04-28 11:28:54 -0700444 del_timer(&conn->auto_accept_timer);
445
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200446 if (conn->type == ACL_LINK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700447 struct hci_conn *sco = conn->link;
448 if (sco)
449 sco->link = NULL;
450
451 /* Unacked frames */
452 hdev->acl_cnt += conn->sent;
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300453 } else if (conn->type == LE_LINK) {
454 if (hdev->le_pkts)
455 hdev->le_cnt += conn->sent;
456 else
457 hdev->acl_cnt += conn->sent;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200458 } else {
459 struct hci_conn *acl = conn->link;
460 if (acl) {
461 acl->link = NULL;
David Herrmann76a68ba2013-04-06 20:28:37 +0200462 hci_conn_drop(acl);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200463 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464 }
465
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -0200466 hci_chan_list_flush(conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +0200467
Andrei Emeltchenko9740e492012-05-29 13:59:02 +0300468 if (conn->amp_mgr)
469 amp_mgr_put(conn->amp_mgr);
470
Linus Torvalds1da177e2005-04-16 15:20:36 -0700471 hci_conn_hash_del(hdev, conn);
Gustavo F. Padovan3c547112011-12-14 22:58:44 -0200472 if (hdev->notify)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700473 hdev->notify(hdev, HCI_NOTIFY_CONN_DEL);
Marcel Holtmann7d0db0a2008-07-14 20:13:51 +0200474
Linus Torvalds1da177e2005-04-16 15:20:36 -0700475 skb_queue_purge(&conn->data_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700476
David Herrmannfc225c32013-04-06 20:28:38 +0200477 hci_conn_del_sysfs(conn);
Dave Young2ae9a6b2009-02-21 16:13:34 +0800478
Marcel Holtmann384943e2009-05-08 18:20:43 -0700479 hci_dev_put(hdev);
480
David Herrmann8d123562013-04-06 20:28:39 +0200481 hci_conn_put(conn);
Tomas Targownik163f4da2011-06-30 16:30:44 -0300482
Linus Torvalds1da177e2005-04-16 15:20:36 -0700483 return 0;
484}
485
486struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src)
487{
488 int use_src = bacmp(src, BDADDR_ANY);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200489 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700490
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300491 BT_DBG("%pMR -> %pMR", src, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200493 read_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700494
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200495 list_for_each_entry(d, &hci_dev_list, list) {
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -0300496 if (!test_bit(HCI_UP, &d->flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300497 test_bit(HCI_RAW, &d->flags) ||
Marcel Holtmannaf750e92013-09-03 18:08:37 -0700498 test_bit(HCI_USER_CHANNEL, &d->dev_flags) ||
Andrei Emeltchenkod300fa92012-06-19 15:21:21 +0300499 d->dev_type != HCI_BREDR)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500 continue;
501
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900502 /* Simple routing:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700503 * No source address - find interface with bdaddr != dst
504 * Source address - find interface with bdaddr == src
505 */
506
507 if (use_src) {
508 if (!bacmp(&d->bdaddr, src)) {
509 hdev = d; break;
510 }
511 } else {
512 if (bacmp(&d->bdaddr, dst)) {
513 hdev = d; break;
514 }
515 }
516 }
517
518 if (hdev)
519 hdev = hci_dev_hold(hdev);
520
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -0200521 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700522 return hdev;
523}
524EXPORT_SYMBOL(hci_get_route);
525
Andre Guedes1d399ae2013-10-08 08:21:17 -0300526static void create_le_conn_complete(struct hci_dev *hdev, u8 status)
527{
528 struct hci_conn *conn;
529
530 if (status == 0)
531 return;
532
533 BT_ERR("HCI request failed to create LE connection: status 0x%2.2x",
534 status);
535
536 hci_dev_lock(hdev);
537
538 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
539 if (!conn)
540 goto done;
541
542 conn->state = BT_CLOSED;
543
544 mgmt_connect_failed(hdev, &conn->dst, conn->type, conn->dst_type,
545 status);
546
547 hci_proto_connect_cfm(conn, status);
548
549 hci_conn_del(conn);
550
551done:
552 hci_dev_unlock(hdev);
553}
554
555static int hci_create_le_conn(struct hci_conn *conn)
556{
557 struct hci_dev *hdev = conn->hdev;
558 struct hci_cp_le_create_conn cp;
559 struct hci_request req;
560 int err;
561
562 hci_req_init(&req, hdev);
563
564 memset(&cp, 0, sizeof(cp));
565 cp.scan_interval = __constant_cpu_to_le16(0x0060);
566 cp.scan_window = __constant_cpu_to_le16(0x0030);
567 bacpy(&cp.peer_addr, &conn->dst);
568 cp.peer_addr_type = conn->dst_type;
569 if (bacmp(&hdev->bdaddr, BDADDR_ANY))
570 cp.own_address_type = ADDR_LE_DEV_PUBLIC;
571 else
572 cp.own_address_type = ADDR_LE_DEV_RANDOM;
573 cp.conn_interval_min = __constant_cpu_to_le16(0x0028);
574 cp.conn_interval_max = __constant_cpu_to_le16(0x0038);
575 cp.supervision_timeout = __constant_cpu_to_le16(0x002a);
576 cp.min_ce_len = __constant_cpu_to_le16(0x0000);
577 cp.max_ce_len = __constant_cpu_to_le16(0x0000);
578 hci_req_add(&req, HCI_OP_LE_CREATE_CONN, sizeof(cp), &cp);
579
580 err = hci_req_run(&req, create_le_conn_complete);
581 if (err) {
582 hci_conn_del(conn);
583 return err;
584 }
585
586 return 0;
587}
588
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300589static struct hci_conn *hci_connect_le(struct hci_dev *hdev, bdaddr_t *dst,
590 u8 dst_type, u8 sec_level, u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700591{
Andre Guedesf1e5d542013-10-03 18:25:44 -0300592 struct hci_conn *conn;
Andre Guedes1d399ae2013-10-08 08:21:17 -0300593 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700594
Johan Hedbergf3d3444a2013-10-05 12:01:04 +0200595 if (test_bit(HCI_ADVERTISING, &hdev->flags))
Johan Hedbergf15504782012-10-24 21:12:03 +0300596 return ERR_PTR(-ENOTSUPP);
597
Andre Guedes620ad522013-10-08 08:21:18 -0300598 /* Some devices send ATT messages as soon as the physical link is
599 * established. To be able to handle these ATT messages, the user-
600 * space first establishes the connection and then starts the pairing
601 * process.
602 *
603 * So if a hci_conn object already exists for the following connection
604 * attempt, we simply update pending_sec_level and auth_type fields
605 * and return the object found.
606 */
Andre Guedesf1e5d542013-10-03 18:25:44 -0300607 conn = hci_conn_hash_lookup_ba(hdev, LE_LINK, dst);
Andre Guedes620ad522013-10-08 08:21:18 -0300608 if (conn) {
609 conn->pending_sec_level = sec_level;
610 conn->auth_type = auth_type;
611 goto done;
Ville Tervofcd89c02011-02-10 22:38:47 -0300612 }
613
Andre Guedes620ad522013-10-08 08:21:18 -0300614 /* Since the controller supports only one LE connection attempt at a
615 * time, we return -EBUSY if there is any connection attempt running.
616 */
617 conn = hci_conn_hash_lookup_state(hdev, LE_LINK, BT_CONNECT);
618 if (conn)
619 return ERR_PTR(-EBUSY);
620
621 conn = hci_conn_add(hdev, LE_LINK, dst);
622 if (!conn)
623 return ERR_PTR(-ENOMEM);
624
625 conn->dst_type = bdaddr_to_le(dst_type);
626 conn->state = BT_CONNECT;
627 conn->out = true;
628 conn->link_mode |= HCI_LM_MASTER;
629 conn->sec_level = BT_SECURITY_LOW;
Andre Guedesf1e5d542013-10-03 18:25:44 -0300630 conn->pending_sec_level = sec_level;
631 conn->auth_type = auth_type;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300632
Andre Guedes620ad522013-10-08 08:21:18 -0300633 err = hci_create_le_conn(conn);
634 if (err)
635 return ERR_PTR(err);
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300636
Andre Guedes620ad522013-10-08 08:21:18 -0300637done:
638 hci_conn_hold(conn);
Andre Guedesf1e5d542013-10-03 18:25:44 -0300639 return conn;
Vinicius Costa Gomesd04aef42012-07-27 19:32:56 -0300640}
641
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300642static struct hci_conn *hci_connect_acl(struct hci_dev *hdev, bdaddr_t *dst,
643 u8 sec_level, u8 auth_type)
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200644{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700645 struct hci_conn *acl;
Marcel Holtmanne73439d2010-07-26 10:06:00 -0400646
Johan Hedberg56f87902013-10-02 13:43:13 +0300647 if (!test_bit(HCI_BREDR_ENABLED, &hdev->dev_flags))
648 return ERR_PTR(-ENOTSUPP);
649
Linus Torvalds1da177e2005-04-16 15:20:36 -0700650 acl = hci_conn_hash_lookup_ba(hdev, ACL_LINK, dst);
651 if (!acl) {
652 acl = hci_conn_add(hdev, ACL_LINK, dst);
653 if (!acl)
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200654 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700655 }
656
657 hci_conn_hold(acl);
658
659 if (acl->state == BT_OPEN || acl->state == BT_CLOSED) {
660 acl->sec_level = BT_SECURITY_LOW;
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200661 acl->pending_sec_level = sec_level;
662 acl->auth_type = auth_type;
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300663 hci_acl_create_connection(acl);
Nick Pellyc3902162009-11-13 14:16:32 -0800664 }
665
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300666 return acl;
667}
668
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200669struct hci_conn *hci_connect_sco(struct hci_dev *hdev, int type, bdaddr_t *dst,
670 __u16 setting)
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300671{
672 struct hci_conn *acl;
673 struct hci_conn *sco;
674
Frédéric Dalleaue660ed62013-08-19 14:23:54 +0200675 acl = hci_connect_acl(hdev, dst, BT_SECURITY_LOW, HCI_AT_NO_BONDING);
Vinicius Costa Gomesdb474272012-07-28 22:35:59 -0300676 if (IS_ERR(acl))
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +0200677 return acl;
678
679 sco = hci_conn_hash_lookup_ba(hdev, type, dst);
680 if (!sco) {
681 sco = hci_conn_add(hdev, type, dst);
Marcel Holtmann5b7f9902007-07-11 09:51:55 +0200682 if (!sco) {
David Herrmann76a68ba2013-04-06 20:28:37 +0200683 hci_conn_drop(acl);
Johan Hedberg48c7aba2012-02-19 14:06:48 +0200684 return ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700685 }
686 }
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200687
688 acl->link = sco;
689 sco->link = acl;
690
691 hci_conn_hold(sco);
692
Frédéric Dalleau10c62dd2013-08-19 14:23:59 +0200693 sco->setting = setting;
694
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200695 if (acl->state == BT_CONNECTED &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300696 (sco->state == BT_OPEN || sco->state == BT_CLOSED)) {
Johan Hedberg58a681e2012-01-16 06:47:28 +0200697 set_bit(HCI_CONN_POWER_SAVE, &acl->flags);
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700698 hci_conn_enter_active_mode(acl, BT_POWER_FORCE_ACTIVE_ON);
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200699
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200700 if (test_bit(HCI_CONN_MODE_CHANGE_PEND, &acl->flags)) {
Marcel Holtmanne7c29cb2008-09-09 07:19:20 +0200701 /* defer SCO setup until mode change completed */
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200702 set_bit(HCI_CONN_SCO_SETUP_PEND, &acl->flags);
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100703 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700704 }
705
706 hci_sco_setup(acl, 0x00);
Marcel Holtmann96a31832009-02-12 16:23:03 +0100707 }
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100708
Marcel Holtmann96a31832009-02-12 16:23:03 +0100709 return sco;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700710}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700711
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300712/* Create SCO, ACL or LE connection. */
713struct hci_conn *hci_connect(struct hci_dev *hdev, int type, bdaddr_t *dst,
714 __u8 dst_type, __u8 sec_level, __u8 auth_type)
715{
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +0300716 BT_DBG("%s dst %pMR type 0x%x", hdev->name, dst, type);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300717
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300718 switch (type) {
719 case LE_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300720 return hci_connect_le(hdev, dst, dst_type, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300721 case ACL_LINK:
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300722 return hci_connect_acl(hdev, dst, sec_level, auth_type);
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300723 }
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300724
Vinicius Costa Gomes4cd2d982012-07-27 19:32:59 -0300725 return ERR_PTR(-EINVAL);
Vinicius Costa Gomesb7d839b2012-07-27 19:32:58 -0300726}
727
Linus Torvalds1da177e2005-04-16 15:20:36 -0700728/* Check link security requirement */
729int hci_conn_check_link_mode(struct hci_conn *conn)
730{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300731 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700732
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200733 if (hci_conn_ssp_enabled(conn) && !(conn->link_mode & HCI_LM_ENCRYPT))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700734 return 0;
735
736 return 1;
737}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700738
739/* Authenticate remote device */
740static int hci_conn_auth(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
741{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300742 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700743
Johan Hedberg765c2a92011-01-19 12:06:52 +0530744 if (conn->pending_sec_level > sec_level)
745 sec_level = conn->pending_sec_level;
746
Linus Torvalds1da177e2005-04-16 15:20:36 -0700747 if (sec_level > conn->sec_level)
Johan Hedberg765c2a92011-01-19 12:06:52 +0530748 conn->pending_sec_level = sec_level;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700749 else if (conn->link_mode & HCI_LM_AUTH)
750 return 1;
751
Johan Hedberg65cf6862011-01-19 12:06:49 +0530752 /* Make sure we preserve an existing MITM requirement*/
753 auth_type |= (conn->auth_type & 0x01);
754
Marcel Holtmann96a31832009-02-12 16:23:03 +0100755 conn->auth_type = auth_type;
756
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200757 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700758 struct hci_cp_auth_requested cp;
Peter Hurleyb7d05ba2012-01-13 15:11:30 +0100759
760 /* encrypt must be pending if auth is also pending */
761 set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags);
762
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700763 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200764 hci_send_cmd(conn->hdev, HCI_OP_AUTH_REQUESTED,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300765 sizeof(cp), &cp);
Waldemar Rymarkiewicz19f8def2011-05-31 15:49:25 +0200766 if (conn->key_type != 0xff)
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200767 set_bit(HCI_CONN_REAUTH_PEND, &conn->flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700768 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100769
Linus Torvalds1da177e2005-04-16 15:20:36 -0700770 return 0;
771}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700772
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200773/* Encrypt the the link */
774static void hci_conn_encrypt(struct hci_conn *conn)
775{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300776 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200777
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200778 if (!test_and_set_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags)) {
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200779 struct hci_cp_set_conn_encrypt cp;
780 cp.handle = cpu_to_le16(conn->handle);
781 cp.encrypt = 0x01;
782 hci_send_cmd(conn->hdev, HCI_OP_SET_CONN_ENCRYPT, sizeof(cp),
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300783 &cp);
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200784 }
785}
786
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100787/* Enable security */
Marcel Holtmann0684e5f2009-02-09 02:48:38 +0100788int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700789{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300790 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700791
Vinicius Costa Gomesd8343f12012-08-23 21:32:44 -0300792 if (conn->type == LE_LINK)
793 return smp_conn_security(conn, sec_level);
794
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200795 /* For sdp we don't need the link key. */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100796 if (sec_level == BT_SECURITY_SDP)
797 return 1;
798
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200799 /* For non 2.1 devices and low security level we don't need the link
800 key. */
Johan Hedbergaa64a8b2012-01-18 21:33:12 +0200801 if (sec_level == BT_SECURITY_LOW && !hci_conn_ssp_enabled(conn))
Marcel Holtmann3fdca1e2009-04-28 09:04:55 -0700802 return 1;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100803
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200804 /* For other security levels we need the link key. */
805 if (!(conn->link_mode & HCI_LM_AUTH))
806 goto auth;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700807
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200808 /* An authenticated combination key has sufficient security for any
809 security level. */
810 if (conn->key_type == HCI_LK_AUTH_COMBINATION)
811 goto encrypt;
812
813 /* An unauthenticated combination key has sufficient security for
814 security level 1 and 2. */
815 if (conn->key_type == HCI_LK_UNAUTH_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300816 (sec_level == BT_SECURITY_MEDIUM || sec_level == BT_SECURITY_LOW))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200817 goto encrypt;
818
819 /* A combination key has always sufficient security for the security
820 levels 1 or 2. High security level requires the combination key
821 is generated using maximum PIN code length (16).
822 For pre 2.1 units. */
823 if (conn->key_type == HCI_LK_COMBINATION &&
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300824 (sec_level != BT_SECURITY_HIGH || conn->pin_length == 16))
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200825 goto encrypt;
826
827auth:
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200828 if (test_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700829 return 0;
830
Luiz Augusto von Dentz6fdf6582011-06-13 15:37:35 +0300831 if (!hci_conn_auth(conn, sec_level, auth_type))
832 return 0;
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100833
Waldemar Rymarkiewicz13d39312011-04-28 12:07:55 +0200834encrypt:
835 if (conn->link_mode & HCI_LM_ENCRYPT)
836 return 1;
837
838 hci_conn_encrypt(conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700839 return 0;
840}
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100841EXPORT_SYMBOL(hci_conn_security);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700842
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200843/* Check secure link requirement */
844int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level)
845{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300846 BT_DBG("hcon %p", conn);
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200847
848 if (sec_level != BT_SECURITY_HIGH)
849 return 1; /* Accept if non-secure is required */
850
Waldemar Rymarkiewiczef4177e2011-06-02 14:24:52 +0200851 if (conn->sec_level == BT_SECURITY_HIGH)
Waldemar Rymarkiewiczb3b1b062011-05-06 09:42:31 +0200852 return 1;
853
854 return 0; /* Reject not secure link */
855}
856EXPORT_SYMBOL(hci_conn_check_secure);
857
Linus Torvalds1da177e2005-04-16 15:20:36 -0700858/* Change link key */
859int hci_conn_change_link_key(struct hci_conn *conn)
860{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300861 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700862
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200863 if (!test_and_set_bit(HCI_CONN_AUTH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700864 struct hci_cp_change_conn_link_key cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700865 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmann40be4922008-07-14 20:13:50 +0200866 hci_send_cmd(conn->hdev, HCI_OP_CHANGE_CONN_LINK_KEY,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300867 sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700868 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100869
Linus Torvalds1da177e2005-04-16 15:20:36 -0700870 return 0;
871}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700872
873/* Switch role */
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100874int hci_conn_switch_role(struct hci_conn *conn, __u8 role)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700875{
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300876 BT_DBG("hcon %p", conn);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700877
878 if (!role && conn->link_mode & HCI_LM_MASTER)
879 return 1;
880
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200881 if (!test_and_set_bit(HCI_CONN_RSWITCH_PEND, &conn->flags)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700882 struct hci_cp_switch_role cp;
883 bacpy(&cp.bdaddr, &conn->dst);
884 cp.role = role;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200885 hci_send_cmd(conn->hdev, HCI_OP_SWITCH_ROLE, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700886 }
Marcel Holtmann8c1b2352009-01-15 21:58:04 +0100887
Linus Torvalds1da177e2005-04-16 15:20:36 -0700888 return 0;
889}
890EXPORT_SYMBOL(hci_conn_switch_role);
891
Marcel Holtmann04837f62006-07-03 10:02:33 +0200892/* Enter active mode */
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700893void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200894{
895 struct hci_dev *hdev = conn->hdev;
896
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +0300897 BT_DBG("hcon %p mode %d", conn, conn->mode);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200898
899 if (test_bit(HCI_RAW, &hdev->flags))
900 return;
901
Jaikumar Ganesh14b12d02011-05-23 18:06:04 -0700902 if (conn->mode != HCI_CM_SNIFF)
903 goto timer;
904
Johan Hedberg58a681e2012-01-16 06:47:28 +0200905 if (!test_bit(HCI_CONN_POWER_SAVE, &conn->flags) && !force_active)
Marcel Holtmann04837f62006-07-03 10:02:33 +0200906 goto timer;
907
Johan Hedberg51a8efd2012-01-16 06:10:31 +0200908 if (!test_and_set_bit(HCI_CONN_MODE_CHANGE_PEND, &conn->flags)) {
Marcel Holtmann04837f62006-07-03 10:02:33 +0200909 struct hci_cp_exit_sniff_mode cp;
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700910 cp.handle = cpu_to_le16(conn->handle);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200911 hci_send_cmd(hdev, HCI_OP_EXIT_SNIFF_MODE, sizeof(cp), &cp);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200912 }
913
914timer:
915 if (hdev->idle_timeout > 0)
916 mod_timer(&conn->idle_timer,
Gustavo Padovan5974e4c2012-05-17 00:36:25 -0300917 jiffies + msecs_to_jiffies(hdev->idle_timeout));
Marcel Holtmann04837f62006-07-03 10:02:33 +0200918}
919
Linus Torvalds1da177e2005-04-16 15:20:36 -0700920/* Drop all connection on the device */
921void hci_conn_hash_flush(struct hci_dev *hdev)
922{
923 struct hci_conn_hash *h = &hdev->conn_hash;
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +0200924 struct hci_conn *c, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700925
926 BT_DBG("hdev %s", hdev->name);
927
Andrei Emeltchenko3c4e0df02012-02-02 10:32:17 +0200928 list_for_each_entry_safe(c, n, &h->list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700929 c->state = BT_CLOSED;
930
Andrei Emeltchenko9f5a0d72011-11-07 14:20:25 +0200931 hci_proto_disconn_cfm(c, HCI_ERROR_LOCAL_HOST_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700932 hci_conn_del(c);
933 }
934}
935
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200936/* Check pending connect attempts */
937void hci_conn_check_pending(struct hci_dev *hdev)
938{
939 struct hci_conn *conn;
940
941 BT_DBG("hdev %s", hdev->name);
942
943 hci_dev_lock(hdev);
944
945 conn = hci_conn_hash_lookup_state(hdev, ACL_LINK, BT_CONNECT2);
946 if (conn)
Vinicius Costa Gomes1aef8662012-07-27 19:32:55 -0300947 hci_acl_create_connection(conn);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200948
949 hci_dev_unlock(hdev);
950}
951
Linus Torvalds1da177e2005-04-16 15:20:36 -0700952int hci_get_conn_list(void __user *arg)
953{
Gustavo Padovanfc5fef62012-05-23 04:04:19 -0300954 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700955 struct hci_conn_list_req req, *cl;
956 struct hci_conn_info *ci;
957 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700958 int n = 0, size, err;
959
960 if (copy_from_user(&req, arg, sizeof(req)))
961 return -EFAULT;
962
963 if (!req.conn_num || req.conn_num > (PAGE_SIZE * 2) / sizeof(*ci))
964 return -EINVAL;
965
966 size = sizeof(req) + req.conn_num * sizeof(*ci);
967
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200968 cl = kmalloc(size, GFP_KERNEL);
969 if (!cl)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700970 return -ENOMEM;
971
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200972 hdev = hci_dev_get(req.dev_id);
973 if (!hdev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700974 kfree(cl);
975 return -ENODEV;
976 }
977
978 ci = cl->conn_info;
979
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300980 hci_dev_lock(hdev);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200981 list_for_each_entry(c, &hdev->conn_hash.list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700982 bacpy(&(ci + n)->bdaddr, &c->dst);
983 (ci + n)->handle = c->handle;
984 (ci + n)->type = c->type;
985 (ci + n)->out = c->out;
986 (ci + n)->state = c->state;
987 (ci + n)->link_mode = c->link_mode;
988 if (++n >= req.conn_num)
989 break;
990 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300991 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700992
993 cl->dev_id = hdev->id;
994 cl->conn_num = n;
995 size = sizeof(req) + n * sizeof(*ci);
996
997 hci_dev_put(hdev);
998
999 err = copy_to_user(arg, cl, size);
1000 kfree(cl);
1001
1002 return err ? -EFAULT : 0;
1003}
1004
1005int hci_get_conn_info(struct hci_dev *hdev, void __user *arg)
1006{
1007 struct hci_conn_info_req req;
1008 struct hci_conn_info ci;
1009 struct hci_conn *conn;
1010 char __user *ptr = arg + sizeof(req);
1011
1012 if (copy_from_user(&req, arg, sizeof(req)))
1013 return -EFAULT;
1014
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001015 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001016 conn = hci_conn_hash_lookup_ba(hdev, req.type, &req.bdaddr);
1017 if (conn) {
1018 bacpy(&ci.bdaddr, &conn->dst);
1019 ci.handle = conn->handle;
1020 ci.type = conn->type;
1021 ci.out = conn->out;
1022 ci.state = conn->state;
1023 ci.link_mode = conn->link_mode;
1024 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001025 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001026
1027 if (!conn)
1028 return -ENOENT;
1029
1030 return copy_to_user(ptr, &ci, sizeof(ci)) ? -EFAULT : 0;
1031}
Marcel Holtmann40be4922008-07-14 20:13:50 +02001032
1033int hci_get_auth_info(struct hci_dev *hdev, void __user *arg)
1034{
1035 struct hci_auth_info_req req;
1036 struct hci_conn *conn;
1037
1038 if (copy_from_user(&req, arg, sizeof(req)))
1039 return -EFAULT;
1040
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001041 hci_dev_lock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001042 conn = hci_conn_hash_lookup_ba(hdev, ACL_LINK, &req.bdaddr);
1043 if (conn)
1044 req.type = conn->auth_type;
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001045 hci_dev_unlock(hdev);
Marcel Holtmann40be4922008-07-14 20:13:50 +02001046
1047 if (!conn)
1048 return -ENOENT;
1049
1050 return copy_to_user(arg, &req, sizeof(req)) ? -EFAULT : 0;
1051}
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001052
1053struct hci_chan *hci_chan_create(struct hci_conn *conn)
1054{
1055 struct hci_dev *hdev = conn->hdev;
1056 struct hci_chan *chan;
1057
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001058 BT_DBG("%s hcon %p", hdev->name, conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001059
Andre Guedes75d77352012-01-30 09:22:10 -03001060 chan = kzalloc(sizeof(struct hci_chan), GFP_KERNEL);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001061 if (!chan)
1062 return NULL;
1063
1064 chan->conn = conn;
1065 skb_queue_head_init(&chan->data_q);
Mat Martineau168df8e2012-10-23 15:24:13 -07001066 chan->state = BT_CONNECTED;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001067
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001068 list_add_rcu(&chan->list, &conn->chan_list);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001069
1070 return chan;
1071}
1072
Andrei Emeltchenko94720072012-09-06 15:05:43 +03001073void hci_chan_del(struct hci_chan *chan)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001074{
1075 struct hci_conn *conn = chan->conn;
1076 struct hci_dev *hdev = conn->hdev;
1077
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001078 BT_DBG("%s hcon %p chan %p", hdev->name, conn, chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001079
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02001080 list_del_rcu(&chan->list);
1081
1082 synchronize_rcu();
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001083
David Herrmann76a68ba2013-04-06 20:28:37 +02001084 hci_conn_drop(conn);
Andrei Emeltchenkoe9b02742012-10-25 15:20:51 +03001085
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001086 skb_queue_purge(&chan->data_q);
1087 kfree(chan);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001088}
1089
Gustavo F. Padovan2c33c062011-12-14 13:02:51 -02001090void hci_chan_list_flush(struct hci_conn *conn)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001091{
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001092 struct hci_chan *chan, *n;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001093
Andrei Emeltchenko38b3fef2012-06-15 11:50:28 +03001094 BT_DBG("hcon %p", conn);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001095
Andrei Emeltchenko2a5a5ec2012-02-02 10:32:18 +02001096 list_for_each_entry_safe(chan, n, &conn->chan_list, list)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02001097 hci_chan_del(chan);
1098}
Andrei Emeltchenko42c4e532012-10-10 17:38:28 +03001099
1100static struct hci_chan *__hci_chan_lookup_handle(struct hci_conn *hcon,
1101 __u16 handle)
1102{
1103 struct hci_chan *hchan;
1104
1105 list_for_each_entry(hchan, &hcon->chan_list, list) {
1106 if (hchan->handle == handle)
1107 return hchan;
1108 }
1109
1110 return NULL;
1111}
1112
1113struct hci_chan *hci_chan_lookup_handle(struct hci_dev *hdev, __u16 handle)
1114{
1115 struct hci_conn_hash *h = &hdev->conn_hash;
1116 struct hci_conn *hcon;
1117 struct hci_chan *hchan = NULL;
1118
1119 rcu_read_lock();
1120
1121 list_for_each_entry_rcu(hcon, &h->list, list) {
1122 hchan = __hci_chan_lookup_handle(hcon, handle);
1123 if (hchan)
1124 break;
1125 }
1126
1127 rcu_read_unlock();
1128
1129 return hchan;
1130}