• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  * wpa_supplicant/hostapd control interface library
3  * Copyright (c) 2004-2007, Jouni Malinen <j@w1.fi>
4  *
5  * This software may be distributed under the terms of the BSD license.
6  * See README for more details.
7  */
8 
9 #include "includes.h"
10 
11 #ifdef CONFIG_CTRL_IFACE
12 
13 #ifdef CONFIG_CTRL_IFACE_UNIX
14 #include <sys/stat.h>
15 #include <fcntl.h>
16 #include <sys/un.h>
17 #include <unistd.h>
18 #include <fcntl.h>
19 #endif /* CONFIG_CTRL_IFACE_UNIX */
20 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
21 #include <netdb.h>
22 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
23 
24 #ifdef ANDROID
25 #include <dirent.h>
26 #include <sys/stat.h>
27 #include <cutils/sockets.h>
28 #include "private/android_filesystem_config.h"
29 #endif /* ANDROID */
30 
31 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
32 #include <net/if.h>
33 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
34 
35 #include "wpa_ctrl.h"
36 #include "common.h"
37 
38 
39 #if defined(CONFIG_CTRL_IFACE_UNIX) || defined(CONFIG_CTRL_IFACE_UDP)
40 #define CTRL_IFACE_SOCKET
41 #endif /* CONFIG_CTRL_IFACE_UNIX || CONFIG_CTRL_IFACE_UDP */
42 
43 
44 /**
45  * struct wpa_ctrl - Internal structure for control interface library
46  *
47  * This structure is used by the wpa_supplicant/hostapd control interface
48  * library to store internal data. Programs using the library should not touch
49  * this data directly. They can only use the pointer to the data structure as
50  * an identifier for the control interface connection and use this as one of
51  * the arguments for most of the control interface library functions.
52  */
53 struct wpa_ctrl {
54 #ifdef CONFIG_CTRL_IFACE_UDP
55 	int s;
56 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
57 	struct sockaddr_in6 local;
58 	struct sockaddr_in6 dest;
59 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
60 	struct sockaddr_in local;
61 	struct sockaddr_in dest;
62 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
63 	char *cookie;
64 	char *remote_ifname;
65 	char *remote_ip;
66 #endif /* CONFIG_CTRL_IFACE_UDP */
67 #ifdef CONFIG_CTRL_IFACE_UNIX
68 	int s;
69 	struct sockaddr_un local;
70 	struct sockaddr_un dest;
71 #endif /* CONFIG_CTRL_IFACE_UNIX */
72 #ifdef CONFIG_CTRL_IFACE_NAMED_PIPE
73 	HANDLE pipe;
74 #endif /* CONFIG_CTRL_IFACE_NAMED_PIPE */
75 };
76 
77 
78 #ifdef CONFIG_CTRL_IFACE_UNIX
79 
80 #ifndef CONFIG_CTRL_IFACE_CLIENT_DIR
81 
82 #ifdef OHOS_EUPDATER
83 #define CONFIG_CTRL_IFACE_CLIENT_DIR "/tmp/service/el1/public/wifi"
84 #else
85 #define CONFIG_CTRL_IFACE_CLIENT_DIR "/data/service/el1/public/wifi"
86 #endif // OHOS_EUPDATER
87 
88 #endif /* CONFIG_CTRL_IFACE_CLIENT_DIR */
89 #ifndef CONFIG_CTRL_IFACE_CLIENT_PREFIX
90 #define CONFIG_CTRL_IFACE_CLIENT_PREFIX "wpa_ctrl_"
91 #endif /* CONFIG_CTRL_IFACE_CLIENT_PREFIX */
92 
93 
wpa_ctrl_open(const char * ctrl_path)94 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
95 {
96 	return wpa_ctrl_open2(ctrl_path, NULL);
97 }
98 
99 
wpa_ctrl_open2(const char * ctrl_path,const char * cli_path)100 struct wpa_ctrl * wpa_ctrl_open2(const char *ctrl_path,
101 				 const char *cli_path)
102 {
103 	struct wpa_ctrl *ctrl;
104 	static int counter = 0;
105 	int ret;
106 	size_t res;
107 	int tries = 0;
108 	int flags;
109 
110 	if (ctrl_path == NULL)
111 		return NULL;
112 
113 	ctrl = os_zalloc(sizeof(*ctrl));
114 	if (ctrl == NULL)
115 		return NULL;
116 
117 	ctrl->s = socket(PF_UNIX, SOCK_DGRAM, 0);
118 	if (ctrl->s < 0) {
119 		os_free(ctrl);
120 		return NULL;
121 	}
122 
123 	ctrl->local.sun_family = AF_UNIX;
124 	counter++;
125 try_again:
126 	if (cli_path && cli_path[0] == '/') {
127 		ret = os_snprintf(ctrl->local.sun_path,
128 				  sizeof(ctrl->local.sun_path),
129 				  "%s/" CONFIG_CTRL_IFACE_CLIENT_PREFIX "%d-%d",
130 				  cli_path, (int) getpid(), counter);
131 	} else {
132 		ret = os_snprintf(ctrl->local.sun_path,
133 				  sizeof(ctrl->local.sun_path),
134 				  CONFIG_CTRL_IFACE_CLIENT_DIR "/"
135 				  CONFIG_CTRL_IFACE_CLIENT_PREFIX "%d-%d",
136 				  (int) getpid(), counter);
137 	}
138 	if (os_snprintf_error(sizeof(ctrl->local.sun_path), ret)) {
139 		close(ctrl->s);
140 		os_free(ctrl);
141 		return NULL;
142 	}
143 	tries++;
144 #ifdef ANDROID
145 	/* Set client socket file permissions so that bind() creates the client
146 	 * socket with these permissions and there is no need to try to change
147 	 * them with chmod() after bind() which would have potential issues with
148 	 * race conditions. These permissions are needed to make sure the server
149 	 * side (wpa_supplicant or hostapd) can reply to the control interface
150 	 * messages.
151 	 *
152 	 * The lchown() calls below after bind() are also part of the needed
153 	 * operations to allow the response to go through. Those are using the
154 	 * no-deference-symlinks version to avoid races. */
155 	fchmod(ctrl->s, S_IRUSR | S_IWUSR | S_IRGRP | S_IWGRP);
156 #endif /* ANDROID */
157     fchmod(ctrl->s, S_IRUSR | S_IWUSR | S_IRGRP | S_IWGRP);
158 	if (bind(ctrl->s, (struct sockaddr *) &ctrl->local,
159 		    sizeof(ctrl->local)) < 0) {
160 		if (errno == EADDRINUSE && tries < 2) {
161 			/*
162 			 * getpid() returns unique identifier for this instance
163 			 * of wpa_ctrl, so the existing socket file must have
164 			 * been left by unclean termination of an earlier run.
165 			 * Remove the file and try again.
166 			 */
167 			unlink(ctrl->local.sun_path);
168 			goto try_again;
169 		}
170 		close(ctrl->s);
171 		os_free(ctrl);
172 		return NULL;
173 	}
174 
175 #ifdef ANDROID
176 	/* Set group even if we do not have privileges to change owner */
177 	lchown(ctrl->local.sun_path, -1, AID_WIFI);
178 	lchown(ctrl->local.sun_path, AID_SYSTEM, AID_WIFI);
179 
180 	if (os_strncmp(ctrl_path, "@android:", 9) == 0) {
181 		if (socket_local_client_connect(
182 			    ctrl->s, ctrl_path + 9,
183 			    ANDROID_SOCKET_NAMESPACE_RESERVED,
184 			    SOCK_DGRAM) < 0) {
185 			close(ctrl->s);
186 			unlink(ctrl->local.sun_path);
187 			os_free(ctrl);
188 			return NULL;
189 		}
190 		return ctrl;
191 	}
192 
193 	/*
194 	 * If the ctrl_path isn't an absolute pathname, assume that
195 	 * it's the name of a socket in the Android reserved namespace.
196 	 * Otherwise, it's a normal UNIX domain socket appearing in the
197 	 * filesystem.
198 	 */
199 	if (*ctrl_path != '/') {
200 		char buf[21];
201 		os_snprintf(buf, sizeof(buf), "wpa_%s", ctrl_path);
202 		if (socket_local_client_connect(
203 			    ctrl->s, buf,
204 			    ANDROID_SOCKET_NAMESPACE_RESERVED,
205 			    SOCK_DGRAM) < 0) {
206 			close(ctrl->s);
207 			unlink(ctrl->local.sun_path);
208 			os_free(ctrl);
209 			return NULL;
210 		}
211 		return ctrl;
212 	}
213 #endif /* ANDROID */
214 
215 	ctrl->dest.sun_family = AF_UNIX;
216 	if (os_strncmp(ctrl_path, "@abstract:", 10) == 0) {
217 		ctrl->dest.sun_path[0] = '\0';
218 		os_strlcpy(ctrl->dest.sun_path + 1, ctrl_path + 10,
219 			   sizeof(ctrl->dest.sun_path) - 1);
220 	} else {
221 		res = os_strlcpy(ctrl->dest.sun_path, ctrl_path,
222 				 sizeof(ctrl->dest.sun_path));
223 		if (res >= sizeof(ctrl->dest.sun_path)) {
224 			close(ctrl->s);
225 			os_free(ctrl);
226 			return NULL;
227 		}
228 	}
229 	if (connect(ctrl->s, (struct sockaddr *) &ctrl->dest,
230 		    sizeof(ctrl->dest)) < 0) {
231 		close(ctrl->s);
232 		unlink(ctrl->local.sun_path);
233 		os_free(ctrl);
234 		return NULL;
235 	}
236 
237 	/*
238 	 * Make socket non-blocking so that we don't hang forever if
239 	 * target dies unexpectedly.
240 	 */
241 	flags = fcntl(ctrl->s, F_GETFL);
242 	if (flags >= 0) {
243 		flags |= O_NONBLOCK;
244 		if (fcntl(ctrl->s, F_SETFL, flags) < 0) {
245 			perror("fcntl(ctrl->s, O_NONBLOCK)");
246 			/* Not fatal, continue on.*/
247 		}
248 	}
249 
250 	return ctrl;
251 }
252 
253 
wpa_ctrl_close(struct wpa_ctrl * ctrl)254 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
255 {
256 	if (ctrl == NULL)
257 		return;
258 	unlink(ctrl->local.sun_path);
259 	if (ctrl->s >= 0)
260 		close(ctrl->s);
261 	os_free(ctrl);
262 }
263 
264 
265 #ifdef ANDROID
266 /**
267  * wpa_ctrl_cleanup() - Delete any local UNIX domain socket files that
268  * may be left over from clients that were previously connected to
269  * wpa_supplicant. This keeps these files from being orphaned in the
270  * event of crashes that prevented them from being removed as part
271  * of the normal orderly shutdown.
272  */
wpa_ctrl_cleanup(void)273 void wpa_ctrl_cleanup(void)
274 {
275 	DIR *dir;
276 	struct dirent *result;
277 	size_t dirnamelen;
278 	size_t maxcopy;
279 	char pathname[PATH_MAX];
280 	char *namep;
281 
282 	if ((dir = opendir(CONFIG_CTRL_IFACE_CLIENT_DIR)) == NULL)
283 		return;
284 
285 	dirnamelen = (size_t) os_snprintf(pathname, sizeof(pathname), "%s/",
286 					  CONFIG_CTRL_IFACE_CLIENT_DIR);
287 	if (dirnamelen >= sizeof(pathname)) {
288 		closedir(dir);
289 		return;
290 	}
291 	namep = pathname + dirnamelen;
292 	maxcopy = PATH_MAX - dirnamelen;
293 	while ((result = readdir(dir)) != NULL) {
294 		if (os_strlcpy(namep, result->d_name, maxcopy) < maxcopy)
295 			unlink(pathname);
296 	}
297 	closedir(dir);
298 }
299 #endif /* ANDROID */
300 
301 #else /* CONFIG_CTRL_IFACE_UNIX */
302 
303 #ifdef ANDROID
wpa_ctrl_cleanup(void)304 void wpa_ctrl_cleanup(void)
305 {
306 }
307 #endif /* ANDROID */
308 
309 #endif /* CONFIG_CTRL_IFACE_UNIX */
310 
311 #ifdef CONFIG_CTRL_IFACE_UDP
312 #if defined(CONFIG_OPEN_HARMONY_PATCH) || defined(CONFIG_OPEN_HARMONY_PATCH_LITE)
wpa_ctrl_port(const char * ctrl_path,struct wpa_ctrl * ctrl)313 int wpa_ctrl_port(const char *ctrl_path, struct wpa_ctrl *ctrl)
314 {
315 	if (ctrl_path == NULL || ctrl == NULL) {
316 		return -1;
317 	}
318 
319 	if (os_strcmp(ctrl_path, "global") == 0) {
320 		ctrl->dest.sin_port = htons(WPA_GLOBAL_CTRL_IFACE_PORT);
321 		return 0;
322 	}
323 
324 	char *port, *name;
325 	int port_id;
326 	name = os_strdup(ctrl_path);
327 	if (name == NULL) {
328 		return -1;
329 	}
330 
331 	port = os_strchr(name, ':');
332 	if (port) {
333 		port_id = atoi(&port[1]);
334 		port[0] = '\0';
335 		ctrl->dest.sin_port = htons(port_id);
336 	}
337 	os_free(name);
338 	return 0;
339 }
340 #endif /* CONFIG_OPEN_HARMONY_PATCH */
341 
wpa_ctrl_open(const char * ctrl_path)342 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
343 {
344 	struct wpa_ctrl *ctrl;
345 	char buf[128];
346 	size_t len;
347 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
348 	struct hostent *h;
349 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
350 
351 	ctrl = os_zalloc(sizeof(*ctrl));
352 	if (ctrl == NULL)
353 		return NULL;
354 
355 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
356 	ctrl->s = socket(PF_INET6, SOCK_DGRAM, 0);
357 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
358 	ctrl->s = socket(PF_INET, SOCK_DGRAM, 0);
359 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
360 	if (ctrl->s < 0) {
361 		perror("socket");
362 		os_free(ctrl);
363 		return NULL;
364 	}
365 
366 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
367 	ctrl->local.sin6_family = AF_INET6;
368 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
369 	ctrl->local.sin6_addr = in6addr_any;
370 #else /* CONFIG_CTRL_IFACE_UDP_REMOTE */
371 	inet_pton(AF_INET6, "::1", &ctrl->local.sin6_addr);
372 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
373 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
374 	ctrl->local.sin_family = AF_INET;
375 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
376 	ctrl->local.sin_addr.s_addr = INADDR_ANY;
377 #else /* CONFIG_CTRL_IFACE_UDP_REMOTE */
378 	ctrl->local.sin_addr.s_addr = htonl((127 << 24) | 1);
379 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
380 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
381 
382 	if (bind(ctrl->s, (struct sockaddr *) &ctrl->local,
383 		 sizeof(ctrl->local)) < 0) {
384 		close(ctrl->s);
385 		os_free(ctrl);
386 		return NULL;
387 	}
388 
389 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
390 	ctrl->dest.sin6_family = AF_INET6;
391 	inet_pton(AF_INET6, "::1", &ctrl->dest.sin6_addr);
392 	ctrl->dest.sin6_port = htons(WPA_CTRL_IFACE_PORT);
393 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
394 	ctrl->dest.sin_family = AF_INET;
395 	ctrl->dest.sin_addr.s_addr = htonl((127 << 24) | 1);
396 	ctrl->dest.sin_port = htons(WPA_CTRL_IFACE_PORT);
397 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
398 
399 #if defined(CONFIG_OPEN_HARMONY_PATCH) || defined(CONFIG_OPEN_HARMONY_PATCH_LITE)
400 	if (wpa_ctrl_port(ctrl_path, ctrl) < 0) {
401 		wpa_printf(MSG_ERROR, "get port fail");
402 	}
403 #endif /* CONFIG_OPEN_HARMONY_PATCH | CONFIG_OPEN_HARMONY_PATCH_LITE */
404 
405 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
406 	if (ctrl_path) {
407 		char *port, *name;
408 		int port_id;
409 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
410 		char *scope;
411 		int scope_id = 0;
412 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
413 
414 		name = os_strdup(ctrl_path);
415 		if (name == NULL) {
416 			close(ctrl->s);
417 			os_free(ctrl);
418 			return NULL;
419 		}
420 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
421 		port = os_strchr(name, ',');
422 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
423 		port = os_strchr(name, ':');
424 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
425 
426 		if (port) {
427 			port_id = atoi(&port[1]);
428 			port[0] = '\0';
429 		} else
430 			port_id = WPA_CTRL_IFACE_PORT;
431 
432 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
433 		scope = os_strchr(name, '%');
434 		if (scope) {
435 			scope_id = if_nametoindex(&scope[1]);
436 			scope[0] = '\0';
437 		}
438 		h = gethostbyname2(name, AF_INET6);
439 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
440 		h = gethostbyname(name);
441 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
442 		ctrl->remote_ip = os_strdup(name);
443 		os_free(name);
444 		if (h == NULL) {
445 			perror("gethostbyname");
446 			close(ctrl->s);
447 			os_free(ctrl->remote_ip);
448 			os_free(ctrl);
449 			return NULL;
450 		}
451 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
452 		ctrl->dest.sin6_scope_id = scope_id;
453 		ctrl->dest.sin6_port = htons(port_id);
454 		os_memcpy(&ctrl->dest.sin6_addr, h->h_addr, h->h_length);
455 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
456 		ctrl->dest.sin_port = htons(port_id);
457 		os_memcpy(&ctrl->dest.sin_addr.s_addr, h->h_addr, h->h_length);
458 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
459 	} else
460 		ctrl->remote_ip = os_strdup("localhost");
461 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
462 
463 	if (connect(ctrl->s, (struct sockaddr *) &ctrl->dest,
464 		    sizeof(ctrl->dest)) < 0) {
465 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
466 		char addr[INET6_ADDRSTRLEN];
467 		wpa_printf(MSG_ERROR, "connect(%s:%d) failed: %s",
468 			   inet_ntop(AF_INET6, &ctrl->dest.sin6_addr, addr,
469 				     sizeof(ctrl->dest)),
470 			   ntohs(ctrl->dest.sin6_port),
471 			   strerror(errno));
472 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
473 		wpa_printf(MSG_ERROR, "connect(%s:%d) failed: %s",
474 			   inet_ntoa(ctrl->dest.sin_addr),
475 			   ntohs(ctrl->dest.sin_port),
476 			   strerror(errno));
477 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
478 		close(ctrl->s);
479 		os_free(ctrl->remote_ip);
480 		os_free(ctrl);
481 		return NULL;
482 	}
483 
484 	len = sizeof(buf) - 1;
485 	if (wpa_ctrl_request(ctrl, "GET_COOKIE", 10, buf, &len, NULL) == 0) {
486 		buf[len] = '\0';
487 		ctrl->cookie = os_strdup(buf);
488 	}
489 
490 	if (wpa_ctrl_request(ctrl, "IFNAME", 6, buf, &len, NULL) == 0) {
491 		buf[len] = '\0';
492 		ctrl->remote_ifname = os_strdup(buf);
493 	}
494 
495 	return ctrl;
496 }
497 
498 
wpa_ctrl_get_remote_ifname(struct wpa_ctrl * ctrl)499 char * wpa_ctrl_get_remote_ifname(struct wpa_ctrl *ctrl)
500 {
501 #define WPA_CTRL_MAX_PS_NAME 100
502 	static char ps[WPA_CTRL_MAX_PS_NAME] = {};
503 	os_snprintf(ps, WPA_CTRL_MAX_PS_NAME, "%s/%s",
504 		    ctrl->remote_ip, ctrl->remote_ifname);
505 	return ps;
506 }
507 
508 
wpa_ctrl_close(struct wpa_ctrl * ctrl)509 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
510 {
511 	close(ctrl->s);
512 	os_free(ctrl->cookie);
513 	os_free(ctrl->remote_ifname);
514 	os_free(ctrl->remote_ip);
515 	os_free(ctrl);
516 }
517 
518 #endif /* CONFIG_CTRL_IFACE_UDP */
519 
520 
521 #ifdef CTRL_IFACE_SOCKET
wpa_ctrl_request(struct wpa_ctrl * ctrl,const char * cmd,size_t cmd_len,char * reply,size_t * reply_len,void (* msg_cb)(char * msg,size_t len))522 int wpa_ctrl_request(struct wpa_ctrl *ctrl, const char *cmd, size_t cmd_len,
523 		     char *reply, size_t *reply_len,
524 		     void (*msg_cb)(char *msg, size_t len))
525 {
526 	struct timeval tv;
527 	struct os_reltime started_at;
528 	int res;
529 	fd_set rfds;
530 	const char *_cmd;
531 	char *cmd_buf = NULL;
532 	size_t _cmd_len;
533 #ifdef CONFIG_OPEN_HARMONY_PATCH
534     wpa_printf(MSG_INFO, "wpa_ctrl_request cmd: %s", cmd);
535 #endif // CONFIG_OPEN_HARMONY_PATCH
536 
537 #ifdef CONFIG_CTRL_IFACE_UDP
538 	if (ctrl->cookie) {
539 		char *pos;
540 		_cmd_len = os_strlen(ctrl->cookie) + 1 + cmd_len;
541 		cmd_buf = os_malloc(_cmd_len);
542 		if (cmd_buf == NULL)
543 			return -1;
544 		_cmd = cmd_buf;
545 		pos = cmd_buf;
546 		os_strlcpy(pos, ctrl->cookie, _cmd_len);
547 		pos += os_strlen(ctrl->cookie);
548 		*pos++ = ' ';
549 		os_memcpy(pos, cmd, cmd_len);
550 	} else
551 #endif /* CONFIG_CTRL_IFACE_UDP */
552 	{
553 		_cmd = cmd;
554 		_cmd_len = cmd_len;
555 	}
556 
557 	errno = 0;
558 	started_at.sec = 0;
559 	started_at.usec = 0;
560 retry_send:
561 	if (send(ctrl->s, _cmd, _cmd_len, 0) < 0) {
562 		if (errno == EAGAIN || errno == EBUSY || errno == EWOULDBLOCK)
563 		{
564 			/*
565 			 * Must be a non-blocking socket... Try for a bit
566 			 * longer before giving up.
567 			 */
568 			if (started_at.sec == 0)
569 				os_get_reltime(&started_at);
570 			else {
571 				struct os_reltime n;
572 				os_get_reltime(&n);
573 				/* Try for a few seconds. */
574 				if (os_reltime_expired(&n, &started_at, 5))
575 					goto send_err;
576 			}
577 			os_sleep(1, 0);
578 			goto retry_send;
579 		}
580 	send_err:
581 		os_free(cmd_buf);
582 		return -1;
583 	}
584 	os_free(cmd_buf);
585 
586 	for (;;) {
587 		tv.tv_sec = 10;
588 		tv.tv_usec = 0;
589 		FD_ZERO(&rfds);
590 		FD_SET(ctrl->s, &rfds);
591 		res = select(ctrl->s + 1, &rfds, NULL, NULL, &tv);
592 		if (res < 0 && errno == EINTR)
593 			continue;
594 		if (res < 0)
595 			return res;
596 		if (FD_ISSET(ctrl->s, &rfds)) {
597 			res = recv(ctrl->s, reply, *reply_len, 0);
598 			if (res < 0)
599 				return res;
600 			if ((res > 0 && reply[0] == '<') ||
601 			    (res > 6 && strncmp(reply, "IFNAME=", 7) == 0)) {
602 				/* This is an unsolicited message from
603 				 * wpa_supplicant, not the reply to the
604 				 * request. Use msg_cb to report this to the
605 				 * caller. */
606 				if (msg_cb) {
607 					/* Make sure the message is nul
608 					 * terminated. */
609 					if ((size_t) res == *reply_len)
610 						res = (*reply_len) - 1;
611 					reply[res] = '\0';
612 					msg_cb(reply, res);
613 				}
614 				continue;
615 			}
616 			*reply_len = res;
617 			break;
618 		} else {
619 			return -2;
620 		}
621 	}
622 	return 0;
623 }
624 #endif /* CTRL_IFACE_SOCKET */
625 
626 
wpa_ctrl_attach_helper(struct wpa_ctrl * ctrl,int attach)627 static int wpa_ctrl_attach_helper(struct wpa_ctrl *ctrl, int attach)
628 {
629 	char buf[10];
630 	int ret;
631 	size_t len = 10;
632 
633 	ret = wpa_ctrl_request(ctrl, attach ? "ATTACH" : "DETACH", 6,
634 			       buf, &len, NULL);
635 	if (ret < 0)
636 		return ret;
637 	if (len == 3 && os_memcmp(buf, "OK\n", 3) == 0)
638 		return 0;
639 	return -1;
640 }
641 
642 
wpa_ctrl_attach(struct wpa_ctrl * ctrl)643 int wpa_ctrl_attach(struct wpa_ctrl *ctrl)
644 {
645 	return wpa_ctrl_attach_helper(ctrl, 1);
646 }
647 
648 
wpa_ctrl_detach(struct wpa_ctrl * ctrl)649 int wpa_ctrl_detach(struct wpa_ctrl *ctrl)
650 {
651 	return wpa_ctrl_attach_helper(ctrl, 0);
652 }
653 
654 
655 #ifdef CTRL_IFACE_SOCKET
656 
wpa_ctrl_recv(struct wpa_ctrl * ctrl,char * reply,size_t * reply_len)657 int wpa_ctrl_recv(struct wpa_ctrl *ctrl, char *reply, size_t *reply_len)
658 {
659 	int res;
660 
661 	res = recv(ctrl->s, reply, *reply_len, 0);
662 	if (res < 0)
663 		return res;
664 	*reply_len = res;
665 	return 0;
666 }
667 
668 
wpa_ctrl_pending(struct wpa_ctrl * ctrl)669 int wpa_ctrl_pending(struct wpa_ctrl *ctrl)
670 {
671 	struct timeval tv;
672 	fd_set rfds;
673 	tv.tv_sec = 0;
674 	tv.tv_usec = 0;
675 	FD_ZERO(&rfds);
676 	FD_SET(ctrl->s, &rfds);
677 	select(ctrl->s + 1, &rfds, NULL, NULL, &tv);
678 	return FD_ISSET(ctrl->s, &rfds);
679 }
680 
681 
wpa_ctrl_get_fd(struct wpa_ctrl * ctrl)682 int wpa_ctrl_get_fd(struct wpa_ctrl *ctrl)
683 {
684 	return ctrl->s;
685 }
686 
687 #endif /* CTRL_IFACE_SOCKET */
688 
689 
690 #ifdef CONFIG_CTRL_IFACE_NAMED_PIPE
691 
692 #ifndef WPA_SUPPLICANT_NAMED_PIPE
693 #define WPA_SUPPLICANT_NAMED_PIPE "WpaSupplicant"
694 #endif
695 #define NAMED_PIPE_PREFIX TEXT("\\\\.\\pipe\\") TEXT(WPA_SUPPLICANT_NAMED_PIPE)
696 
wpa_ctrl_open(const char * ctrl_path)697 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
698 {
699 	struct wpa_ctrl *ctrl;
700 	DWORD mode;
701 	TCHAR name[256];
702 	int i, ret;
703 
704 	ctrl = os_malloc(sizeof(*ctrl));
705 	if (ctrl == NULL)
706 		return NULL;
707 	os_memset(ctrl, 0, sizeof(*ctrl));
708 
709 #ifdef UNICODE
710 	if (ctrl_path == NULL)
711 		ret = _snwprintf(name, 256, NAMED_PIPE_PREFIX);
712 	else
713 		ret = _snwprintf(name, 256, NAMED_PIPE_PREFIX TEXT("-%S"),
714 				 ctrl_path);
715 #else /* UNICODE */
716 	if (ctrl_path == NULL)
717 		ret = os_snprintf(name, 256, NAMED_PIPE_PREFIX);
718 	else
719 		ret = os_snprintf(name, 256, NAMED_PIPE_PREFIX "-%s",
720 				  ctrl_path);
721 #endif /* UNICODE */
722 	if (os_snprintf_error(256, ret)) {
723 		os_free(ctrl);
724 		return NULL;
725 	}
726 
727 	for (i = 0; i < 10; i++) {
728 		ctrl->pipe = CreateFile(name, GENERIC_READ | GENERIC_WRITE, 0,
729 					NULL, OPEN_EXISTING, 0, NULL);
730 		/*
731 		 * Current named pipe server side in wpa_supplicant is
732 		 * re-opening the pipe for new clients only after the previous
733 		 * one is taken into use. This leaves a small window for race
734 		 * conditions when two connections are being opened at almost
735 		 * the same time. Retry if that was the case.
736 		 */
737 		if (ctrl->pipe != INVALID_HANDLE_VALUE ||
738 		    GetLastError() != ERROR_PIPE_BUSY)
739 			break;
740 		WaitNamedPipe(name, 1000);
741 	}
742 	if (ctrl->pipe == INVALID_HANDLE_VALUE) {
743 		os_free(ctrl);
744 		return NULL;
745 	}
746 
747 	mode = PIPE_READMODE_MESSAGE;
748 	if (!SetNamedPipeHandleState(ctrl->pipe, &mode, NULL, NULL)) {
749 		CloseHandle(ctrl->pipe);
750 		os_free(ctrl);
751 		return NULL;
752 	}
753 
754 	return ctrl;
755 }
756 
757 
wpa_ctrl_close(struct wpa_ctrl * ctrl)758 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
759 {
760 	CloseHandle(ctrl->pipe);
761 	os_free(ctrl);
762 }
763 
764 
wpa_ctrl_request(struct wpa_ctrl * ctrl,const char * cmd,size_t cmd_len,char * reply,size_t * reply_len,void (* msg_cb)(char * msg,size_t len))765 int wpa_ctrl_request(struct wpa_ctrl *ctrl, const char *cmd, size_t cmd_len,
766 		     char *reply, size_t *reply_len,
767 		     void (*msg_cb)(char *msg, size_t len))
768 {
769 	DWORD written;
770 	DWORD readlen = *reply_len;
771 
772 	if (!WriteFile(ctrl->pipe, cmd, cmd_len, &written, NULL))
773 		return -1;
774 
775 	if (!ReadFile(ctrl->pipe, reply, *reply_len, &readlen, NULL))
776 		return -1;
777 	*reply_len = readlen;
778 
779 	return 0;
780 }
781 
782 
wpa_ctrl_recv(struct wpa_ctrl * ctrl,char * reply,size_t * reply_len)783 int wpa_ctrl_recv(struct wpa_ctrl *ctrl, char *reply, size_t *reply_len)
784 {
785 	DWORD len = *reply_len;
786 	if (!ReadFile(ctrl->pipe, reply, *reply_len, &len, NULL))
787 		return -1;
788 	*reply_len = len;
789 	return 0;
790 }
791 
792 
wpa_ctrl_pending(struct wpa_ctrl * ctrl)793 int wpa_ctrl_pending(struct wpa_ctrl *ctrl)
794 {
795 	DWORD left;
796 
797 	if (!PeekNamedPipe(ctrl->pipe, NULL, 0, NULL, &left, NULL))
798 		return -1;
799 	return left ? 1 : 0;
800 }
801 
802 
wpa_ctrl_get_fd(struct wpa_ctrl * ctrl)803 int wpa_ctrl_get_fd(struct wpa_ctrl *ctrl)
804 {
805 	return -1;
806 }
807 
808 #endif /* CONFIG_CTRL_IFACE_NAMED_PIPE */
809 
810 #endif /* CONFIG_CTRL_IFACE */
811