• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  * wpa_supplicant/hostapd control interface library
3  * Copyright (c) 2004-2007, Jouni Malinen <j@w1.fi>
4  *
5  * This software may be distributed under the terms of the BSD license.
6  * See README for more details.
7  */
8 
9 #include "includes.h"
10 
11 #ifdef CONFIG_CTRL_IFACE
12 
13 #ifdef CONFIG_CTRL_IFACE_UNIX
14 #include <sys/stat.h>
15 #include <fcntl.h>
16 #include <sys/un.h>
17 #include <unistd.h>
18 #include <fcntl.h>
19 #endif /* CONFIG_CTRL_IFACE_UNIX */
20 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
21 #include <netdb.h>
22 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
23 
24 #ifdef ANDROID
25 #include <dirent.h>
26 #include <sys/stat.h>
27 #include <cutils/sockets.h>
28 #include "private/android_filesystem_config.h"
29 #endif /* ANDROID */
30 
31 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
32 #include <net/if.h>
33 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
34 
35 #include "wpa_ctrl.h"
36 #include "common.h"
37 
38 #ifdef CONFIG_OPEN_HARMONY_PATCH
39 #include <grp.h>
40 #include <pwd.h>
41 #include <sys/types.h>
42 #endif /* CONFIG_OPEN_HARMONY_PATCH */
43 
44 #if defined(CONFIG_CTRL_IFACE_UNIX) || defined(CONFIG_CTRL_IFACE_UDP)
45 #define CTRL_IFACE_SOCKET
46 #endif /* CONFIG_CTRL_IFACE_UNIX || CONFIG_CTRL_IFACE_UDP */
47 
48 
49 /**
50  * struct wpa_ctrl - Internal structure for control interface library
51  *
52  * This structure is used by the wpa_supplicant/hostapd control interface
53  * library to store internal data. Programs using the library should not touch
54  * this data directly. They can only use the pointer to the data structure as
55  * an identifier for the control interface connection and use this as one of
56  * the arguments for most of the control interface library functions.
57  */
58 struct wpa_ctrl {
59 #ifdef CONFIG_CTRL_IFACE_UDP
60 	int s;
61 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
62 	struct sockaddr_in6 local;
63 	struct sockaddr_in6 dest;
64 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
65 	struct sockaddr_in local;
66 	struct sockaddr_in dest;
67 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
68 	char *cookie;
69 	char *remote_ifname;
70 	char *remote_ip;
71 #endif /* CONFIG_CTRL_IFACE_UDP */
72 #ifdef CONFIG_CTRL_IFACE_UNIX
73 	int s;
74 	struct sockaddr_un local;
75 	struct sockaddr_un dest;
76 #endif /* CONFIG_CTRL_IFACE_UNIX */
77 #ifdef CONFIG_CTRL_IFACE_NAMED_PIPE
78 	HANDLE pipe;
79 #endif /* CONFIG_CTRL_IFACE_NAMED_PIPE */
80 };
81 
82 
83 #ifdef CONFIG_CTRL_IFACE_UNIX
84 
85 #ifndef CONFIG_CTRL_IFACE_CLIENT_DIR
86 #define CONFIG_CTRL_IFACE_CLIENT_DIR "/data/service/el1/public/wifi"
87 #endif /* CONFIG_CTRL_IFACE_CLIENT_DIR */
88 #ifndef CONFIG_CTRL_IFACE_CLIENT_PREFIX
89 #define CONFIG_CTRL_IFACE_CLIENT_PREFIX "wpa_ctrl_"
90 #endif /* CONFIG_CTRL_IFACE_CLIENT_PREFIX */
91 
92 #ifdef CONFIG_OPEN_HARMONY_PATCH
93 #define CONFIG_HOSTAPD_CTRL_IFACE_CLIENT_PREFIX "hostapd_ctrl_"
94 #define PREFIX_SIZE 100
95 #define CONFIG_CTRL_IFACE_CLIENT_DIR_UPDATER "/tmp/service/el1/public/wifi"
96 #endif /* CONFIG_OPEN_HARMONY_PATCH */
97 
98 
wpa_ctrl_open(const char * ctrl_path)99 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
100 {
101 	return wpa_ctrl_open2(ctrl_path, NULL);
102 }
103 
104 #ifdef CONFIG_OPEN_HARMONY_PATCH
get_ctrl_template(void)105 static const char *get_ctrl_template(void)
106 {
107 	if (IsUpdaterMode()) {
108 		wpa_printf(MSG_INFO, "updater mode");
109 		return CONFIG_CTRL_IFACE_CLIENT_DIR_UPDATER "/%s%d-%d";
110 	}
111 	return CONFIG_CTRL_IFACE_CLIENT_DIR "/%s%d-%d";
112 }
113 #endif /* CONFIG_OPEN_HARMONY_PATCH */
114 
wpa_ctrl_open2(const char * ctrl_path,const char * cli_path)115 struct wpa_ctrl * wpa_ctrl_open2(const char *ctrl_path,
116 				 const char *cli_path)
117 {
118 	struct wpa_ctrl *ctrl;
119 	static int counter = 0;
120 	int ret;
121 	size_t res;
122 	int tries = 0;
123 	int flags;
124 #ifdef CONFIG_OPEN_HARMONY_PATCH
125 	char prefix[PREFIX_SIZE] = {0};
126 	struct group *grp_wifi;
127 	gid_t gid_wifi;
128 	struct passwd *pwd_wifi;
129 	uid_t uid_wifi;
130 #endif /* CONFIG_OPEN_HARMONY_PATCH */
131 
132 
133 	if (ctrl_path == NULL)
134 		return NULL;
135 
136 	ctrl = os_zalloc(sizeof(*ctrl));
137 	if (ctrl == NULL)
138 		return NULL;
139 
140 	ctrl->s = socket(PF_UNIX, SOCK_DGRAM, 0);
141 	if (ctrl->s < 0) {
142 		os_free(ctrl);
143 		return NULL;
144 	}
145 
146 	ctrl->local.sun_family = AF_UNIX;
147 	counter++;
148 try_again:
149 #ifdef CONFIG_OPEN_HARMONY_PATCH
150 	if (strstr(ctrl_path, "hostapd") != NULL) {
151 		os_memcpy(prefix, CONFIG_HOSTAPD_CTRL_IFACE_CLIENT_PREFIX,
152 			strlen(CONFIG_HOSTAPD_CTRL_IFACE_CLIENT_PREFIX));
153 	} else {
154 		os_memcpy(prefix, CONFIG_CTRL_IFACE_CLIENT_PREFIX,
155 			strlen(CONFIG_CTRL_IFACE_CLIENT_PREFIX));
156 	}
157 #endif /* CONFIG_OPEN_HARMONY_PATCH */
158 	if (cli_path && cli_path[0] == '/') {
159 		ret = os_snprintf(ctrl->local.sun_path,
160 				  sizeof(ctrl->local.sun_path),
161 				  "%s/" CONFIG_CTRL_IFACE_CLIENT_PREFIX "%d-%d",
162 				  cli_path, (int) getpid(), counter);
163 	} else {
164 		ret = os_snprintf(ctrl->local.sun_path,
165 				  sizeof(ctrl->local.sun_path),
166 #ifdef CONFIG_OPEN_HARMONY_PATCH
167 				  get_ctrl_template(), prefix,
168 #else
169 				  CONFIG_CTRL_IFACE_CLIENT_DIR "/"
170 				  CONFIG_CTRL_IFACE_CLIENT_PREFIX "%d-%d",
171 #endif /* CONFIG_OPEN_HARMONY_PATCH */
172 				  (int) getpid(), counter);
173 	}
174 	if (os_snprintf_error(sizeof(ctrl->local.sun_path), ret)) {
175 		close(ctrl->s);
176 		os_free(ctrl);
177 		return NULL;
178 	}
179 	tries++;
180 #ifdef ANDROID
181 	/* Set client socket file permissions so that bind() creates the client
182 	 * socket with these permissions and there is no need to try to change
183 	 * them with chmod() after bind() which would have potential issues with
184 	 * race conditions. These permissions are needed to make sure the server
185 	 * side (wpa_supplicant or hostapd) can reply to the control interface
186 	 * messages.
187 	 *
188 	 * The lchown() calls below after bind() are also part of the needed
189 	 * operations to allow the response to go through. Those are using the
190 	 * no-deference-symlinks version to avoid races. */
191 	fchmod(ctrl->s, S_IRUSR | S_IWUSR | S_IRGRP | S_IWGRP);
192 #endif /* ANDROID */
193 	fchmod(ctrl->s, S_IRUSR | S_IWUSR | S_IRGRP | S_IWGRP);
194 	if (bind(ctrl->s, (struct sockaddr *) &ctrl->local,
195 		    sizeof(ctrl->local)) < 0) {
196 		if (errno == EADDRINUSE && tries < 2) {
197 			/*
198 			 * getpid() returns unique identifier for this instance
199 			 * of wpa_ctrl, so the existing socket file must have
200 			 * been left by unclean termination of an earlier run.
201 			 * Remove the file and try again.
202 			 */
203 			unlink(ctrl->local.sun_path);
204 			goto try_again;
205 		}
206 		close(ctrl->s);
207 		os_free(ctrl);
208 		return NULL;
209 	}
210 #ifdef CONFIG_OPEN_HARMONY_PATCH
211 	ret = chmod(ctrl->local.sun_path, S_IRUSR | S_IWUSR | S_IRGRP | S_IWGRP);
212 	if (ret != 0) {
213 		wpa_printf(MSG_ERROR, "chmod %s error:%s", ctrl->local.sun_path, strerror(errno));
214 	}
215 	grp_wifi = getgrnam("wifi");
216 	gid_wifi = grp_wifi ? grp_wifi->gr_gid : 0;
217 	pwd_wifi = getpwnam("wifi");
218 	uid_wifi = pwd_wifi ? pwd_wifi->pw_uid : 0;
219 	if (!gid_wifi || !pwd_wifi) {
220 		wpa_printf(MSG_ERROR, "wpa ctrl get gid(wifi) or uid(wifi) fail");
221 		close(ctrl->s);
222 		unlink(ctrl->local.sun_path);
223 		os_free(ctrl);
224 		return NULL;
225 	}
226 	wpa_printf(MSG_DEBUG, "uid_wifi is %u, gid_wifi is %u", uid_wifi, gid_wifi);
227 	chown(ctrl->local.sun_path, -1, gid_wifi);
228 	chown(ctrl->local.sun_path, uid_wifi, gid_wifi);
229 #endif /* CONFIG_OPEN_HARMONY_PATCH */
230 #ifdef ANDROID
231 	/* Set group even if we do not have privileges to change owner */
232 	lchown(ctrl->local.sun_path, -1, AID_WIFI);
233 	lchown(ctrl->local.sun_path, AID_SYSTEM, AID_WIFI);
234 
235 	if (os_strncmp(ctrl_path, "@android:", 9) == 0) {
236 		if (socket_local_client_connect(
237 			    ctrl->s, ctrl_path + 9,
238 			    ANDROID_SOCKET_NAMESPACE_RESERVED,
239 			    SOCK_DGRAM) < 0) {
240 			close(ctrl->s);
241 			unlink(ctrl->local.sun_path);
242 			os_free(ctrl);
243 			return NULL;
244 		}
245 		return ctrl;
246 	}
247 
248 	/*
249 	 * If the ctrl_path isn't an absolute pathname, assume that
250 	 * it's the name of a socket in the Android reserved namespace.
251 	 * Otherwise, it's a normal UNIX domain socket appearing in the
252 	 * filesystem.
253 	 */
254 	if (*ctrl_path != '/') {
255 		char buf[21];
256 		os_snprintf(buf, sizeof(buf), "wpa_%s", ctrl_path);
257 		if (socket_local_client_connect(
258 			    ctrl->s, buf,
259 			    ANDROID_SOCKET_NAMESPACE_RESERVED,
260 			    SOCK_DGRAM) < 0) {
261 			close(ctrl->s);
262 			unlink(ctrl->local.sun_path);
263 			os_free(ctrl);
264 			return NULL;
265 		}
266 		return ctrl;
267 	}
268 #endif /* ANDROID */
269 
270 	ctrl->dest.sun_family = AF_UNIX;
271 	if (os_strncmp(ctrl_path, "@abstract:", 10) == 0) {
272 		ctrl->dest.sun_path[0] = '\0';
273 		os_strlcpy(ctrl->dest.sun_path + 1, ctrl_path + 10,
274 			   sizeof(ctrl->dest.sun_path) - 1);
275 	} else {
276 		res = os_strlcpy(ctrl->dest.sun_path, ctrl_path,
277 				 sizeof(ctrl->dest.sun_path));
278 		if (res >= sizeof(ctrl->dest.sun_path)) {
279 			close(ctrl->s);
280 			os_free(ctrl);
281 			return NULL;
282 		}
283 	}
284 	if (connect(ctrl->s, (struct sockaddr *) &ctrl->dest,
285 		    sizeof(ctrl->dest)) < 0) {
286 		close(ctrl->s);
287 		unlink(ctrl->local.sun_path);
288 		os_free(ctrl);
289 		return NULL;
290 	}
291 
292 	/*
293 	 * Make socket non-blocking so that we don't hang forever if
294 	 * target dies unexpectedly.
295 	 */
296 	flags = fcntl(ctrl->s, F_GETFL);
297 	if (flags >= 0) {
298 		flags |= O_NONBLOCK;
299 		if (fcntl(ctrl->s, F_SETFL, flags) < 0) {
300 			perror("fcntl(ctrl->s, O_NONBLOCK)");
301 			/* Not fatal, continue on.*/
302 		}
303 	}
304 
305 	return ctrl;
306 }
307 
308 
wpa_ctrl_close(struct wpa_ctrl * ctrl)309 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
310 {
311 	if (ctrl == NULL)
312 		return;
313 	unlink(ctrl->local.sun_path);
314 	if (ctrl->s >= 0)
315 		close(ctrl->s);
316 	os_free(ctrl);
317 }
318 
319 
320 #ifdef ANDROID
321 /**
322  * wpa_ctrl_cleanup() - Delete any local UNIX domain socket files that
323  * may be left over from clients that were previously connected to
324  * wpa_supplicant. This keeps these files from being orphaned in the
325  * event of crashes that prevented them from being removed as part
326  * of the normal orderly shutdown.
327  */
wpa_ctrl_cleanup(void)328 void wpa_ctrl_cleanup(void)
329 {
330 	DIR *dir;
331 	struct dirent *result;
332 	size_t dirnamelen;
333 	size_t maxcopy;
334 	char pathname[PATH_MAX];
335 	char *namep;
336 
337 	if ((dir = opendir(CONFIG_CTRL_IFACE_CLIENT_DIR)) == NULL)
338 		return;
339 
340 	dirnamelen = (size_t) os_snprintf(pathname, sizeof(pathname), "%s/",
341 					  CONFIG_CTRL_IFACE_CLIENT_DIR);
342 	if (dirnamelen >= sizeof(pathname)) {
343 		closedir(dir);
344 		return;
345 	}
346 	namep = pathname + dirnamelen;
347 	maxcopy = PATH_MAX - dirnamelen;
348 	while ((result = readdir(dir)) != NULL) {
349 		if (os_strlcpy(namep, result->d_name, maxcopy) < maxcopy)
350 			unlink(pathname);
351 	}
352 	closedir(dir);
353 }
354 #endif /* ANDROID */
355 
356 #else /* CONFIG_CTRL_IFACE_UNIX */
357 
358 #ifdef ANDROID
wpa_ctrl_cleanup(void)359 void wpa_ctrl_cleanup(void)
360 {
361 }
362 #endif /* ANDROID */
363 
364 #endif /* CONFIG_CTRL_IFACE_UNIX */
365 
366 #ifdef CONFIG_CTRL_IFACE_UDP
367 #if defined(CONFIG_OPEN_HARMONY_PATCH) || defined(CONFIG_OPEN_HARMONY_PATCH_LITE)
wpa_ctrl_port(const char * ctrl_path,struct wpa_ctrl * ctrl)368 int wpa_ctrl_port(const char *ctrl_path, struct wpa_ctrl *ctrl)
369 {
370 	if (ctrl_path == NULL || ctrl == NULL) {
371 		return -1;
372 	}
373 
374 	if (os_strcmp(ctrl_path, "global") == 0) {
375 		ctrl->dest.sin_port = htons(WPA_GLOBAL_CTRL_IFACE_PORT);
376 		return 0;
377 	}
378 
379 	char *port, *name;
380 	int port_id;
381 	name = os_strdup(ctrl_path);
382 	if (name == NULL) {
383 		return -1;
384 	}
385 
386 	port = os_strchr(name, ':');
387 	if (port) {
388 		port_id = atoi(&port[1]);
389 		port[0] = '\0';
390 		ctrl->dest.sin_port = htons(port_id);
391 	}
392 	os_free(name);
393 	return 0;
394 }
395 #endif /* CONFIG_OPEN_HARMONY_PATCH */
396 
wpa_ctrl_open(const char * ctrl_path)397 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
398 {
399 	struct wpa_ctrl *ctrl;
400 	char buf[128];
401 	size_t len;
402 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
403 	struct hostent *h;
404 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
405 
406 	ctrl = os_zalloc(sizeof(*ctrl));
407 	if (ctrl == NULL)
408 		return NULL;
409 
410 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
411 	ctrl->s = socket(PF_INET6, SOCK_DGRAM, 0);
412 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
413 	ctrl->s = socket(PF_INET, SOCK_DGRAM, 0);
414 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
415 	if (ctrl->s < 0) {
416 		perror("socket");
417 		os_free(ctrl);
418 		return NULL;
419 	}
420 
421 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
422 	ctrl->local.sin6_family = AF_INET6;
423 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
424 	ctrl->local.sin6_addr = in6addr_any;
425 #else /* CONFIG_CTRL_IFACE_UDP_REMOTE */
426 	inet_pton(AF_INET6, "::1", &ctrl->local.sin6_addr);
427 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
428 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
429 	ctrl->local.sin_family = AF_INET;
430 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
431 	ctrl->local.sin_addr.s_addr = INADDR_ANY;
432 #else /* CONFIG_CTRL_IFACE_UDP_REMOTE */
433 	ctrl->local.sin_addr.s_addr = htonl((127 << 24) | 1);
434 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
435 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
436 
437 	if (bind(ctrl->s, (struct sockaddr *) &ctrl->local,
438 		 sizeof(ctrl->local)) < 0) {
439 		close(ctrl->s);
440 		os_free(ctrl);
441 		return NULL;
442 	}
443 
444 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
445 	ctrl->dest.sin6_family = AF_INET6;
446 	inet_pton(AF_INET6, "::1", &ctrl->dest.sin6_addr);
447 	ctrl->dest.sin6_port = htons(WPA_CTRL_IFACE_PORT);
448 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
449 	ctrl->dest.sin_family = AF_INET;
450 	ctrl->dest.sin_addr.s_addr = htonl((127 << 24) | 1);
451 	ctrl->dest.sin_port = htons(WPA_CTRL_IFACE_PORT);
452 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
453 
454 #if defined(CONFIG_OPEN_HARMONY_PATCH) || defined(CONFIG_OPEN_HARMONY_PATCH_LITE)
455 	if (wpa_ctrl_port(ctrl_path, ctrl) < 0) {
456 		wpa_printf(MSG_ERROR, "get port fail");
457 	}
458 #endif /* CONFIG_OPEN_HARMONY_PATCH | CONFIG_OPEN_HARMONY_PATCH_LITE */
459 
460 #ifdef CONFIG_CTRL_IFACE_UDP_REMOTE
461 	if (ctrl_path) {
462 		char *port, *name;
463 		int port_id;
464 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
465 		char *scope;
466 		int scope_id = 0;
467 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
468 
469 		name = os_strdup(ctrl_path);
470 		if (name == NULL) {
471 			close(ctrl->s);
472 			os_free(ctrl);
473 			return NULL;
474 		}
475 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
476 		port = os_strchr(name, ',');
477 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
478 		port = os_strchr(name, ':');
479 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
480 
481 		if (port) {
482 			port_id = atoi(&port[1]);
483 			port[0] = '\0';
484 		} else
485 			port_id = WPA_CTRL_IFACE_PORT;
486 
487 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
488 		scope = os_strchr(name, '%');
489 		if (scope) {
490 			scope_id = if_nametoindex(&scope[1]);
491 			scope[0] = '\0';
492 		}
493 		h = gethostbyname2(name, AF_INET6);
494 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
495 		h = gethostbyname(name);
496 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
497 		ctrl->remote_ip = os_strdup(name);
498 		os_free(name);
499 		if (h == NULL) {
500 			perror("gethostbyname");
501 			close(ctrl->s);
502 			os_free(ctrl->remote_ip);
503 			os_free(ctrl);
504 			return NULL;
505 		}
506 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
507 		ctrl->dest.sin6_scope_id = scope_id;
508 		ctrl->dest.sin6_port = htons(port_id);
509 		os_memcpy(&ctrl->dest.sin6_addr, h->h_addr, h->h_length);
510 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
511 		ctrl->dest.sin_port = htons(port_id);
512 		os_memcpy(&ctrl->dest.sin_addr.s_addr, h->h_addr, h->h_length);
513 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
514 	} else
515 		ctrl->remote_ip = os_strdup("localhost");
516 #endif /* CONFIG_CTRL_IFACE_UDP_REMOTE */
517 
518 	if (connect(ctrl->s, (struct sockaddr *) &ctrl->dest,
519 		    sizeof(ctrl->dest)) < 0) {
520 #ifdef CONFIG_CTRL_IFACE_UDP_IPV6
521 		char addr[INET6_ADDRSTRLEN];
522 		wpa_printf(MSG_ERROR, "connect(%s:%d) failed: %s",
523 			   inet_ntop(AF_INET6, &ctrl->dest.sin6_addr, addr,
524 				     sizeof(ctrl->dest)),
525 			   ntohs(ctrl->dest.sin6_port),
526 			   strerror(errno));
527 #else /* CONFIG_CTRL_IFACE_UDP_IPV6 */
528 		wpa_printf(MSG_ERROR, "connect(%s:%d) failed: %s",
529 			   inet_ntoa(ctrl->dest.sin_addr),
530 			   ntohs(ctrl->dest.sin_port),
531 			   strerror(errno));
532 #endif /* CONFIG_CTRL_IFACE_UDP_IPV6 */
533 		close(ctrl->s);
534 		os_free(ctrl->remote_ip);
535 		os_free(ctrl);
536 		return NULL;
537 	}
538 
539 	len = sizeof(buf) - 1;
540 	if (wpa_ctrl_request(ctrl, "GET_COOKIE", 10, buf, &len, NULL) == 0) {
541 		buf[len] = '\0';
542 		ctrl->cookie = os_strdup(buf);
543 	}
544 
545 	if (wpa_ctrl_request(ctrl, "IFNAME", 6, buf, &len, NULL) == 0) {
546 		buf[len] = '\0';
547 		ctrl->remote_ifname = os_strdup(buf);
548 	}
549 
550 	return ctrl;
551 }
552 
553 
wpa_ctrl_get_remote_ifname(struct wpa_ctrl * ctrl)554 char * wpa_ctrl_get_remote_ifname(struct wpa_ctrl *ctrl)
555 {
556 #define WPA_CTRL_MAX_PS_NAME 100
557 	static char ps[WPA_CTRL_MAX_PS_NAME] = {};
558 	os_snprintf(ps, WPA_CTRL_MAX_PS_NAME, "%s/%s",
559 		    ctrl->remote_ip, ctrl->remote_ifname);
560 	return ps;
561 }
562 
563 
wpa_ctrl_close(struct wpa_ctrl * ctrl)564 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
565 {
566 	close(ctrl->s);
567 	os_free(ctrl->cookie);
568 	os_free(ctrl->remote_ifname);
569 	os_free(ctrl->remote_ip);
570 	os_free(ctrl);
571 }
572 
573 #endif /* CONFIG_CTRL_IFACE_UDP */
574 
575 
576 #ifdef CTRL_IFACE_SOCKET
wpa_ctrl_request(struct wpa_ctrl * ctrl,const char * cmd,size_t cmd_len,char * reply,size_t * reply_len,void (* msg_cb)(char * msg,size_t len))577 int wpa_ctrl_request(struct wpa_ctrl *ctrl, const char *cmd, size_t cmd_len,
578 		     char *reply, size_t *reply_len,
579 		     void (*msg_cb)(char *msg, size_t len))
580 {
581 	struct timeval tv;
582 	struct os_reltime started_at, ending_at;
583 	int res;
584 	fd_set rfds;
585 	const char *_cmd;
586 	char *cmd_buf = NULL;
587 	size_t _cmd_len;
588 #ifdef CONFIG_OPEN_HARMONY_PATCH
589 	if (disable_anonymized_print()) {
590 		wpa_printf(MSG_INFO, "wpa_ctrl_request cmd: %s", cmd);
591 	}
592 #endif // CONFIG_OPEN_HARMONY_PATCH
593 
594 #ifdef CONFIG_CTRL_IFACE_UDP
595 	if (ctrl->cookie) {
596 		char *pos;
597 		_cmd_len = os_strlen(ctrl->cookie) + 1 + cmd_len;
598 		cmd_buf = os_malloc(_cmd_len);
599 		if (cmd_buf == NULL)
600 			return -1;
601 		_cmd = cmd_buf;
602 		pos = cmd_buf;
603 		os_strlcpy(pos, ctrl->cookie, _cmd_len);
604 		pos += os_strlen(ctrl->cookie);
605 		*pos++ = ' ';
606 		os_memcpy(pos, cmd, cmd_len);
607 	} else
608 #endif /* CONFIG_CTRL_IFACE_UDP */
609 	{
610 		_cmd = cmd;
611 		_cmd_len = cmd_len;
612 	}
613 
614 	errno = 0;
615 	started_at.sec = 0;
616 	started_at.usec = 0;
617 retry_send:
618 	wpa_printf(MSG_DEBUG, "wpa_ctrl_request send success!");
619 	if (send(ctrl->s, _cmd, _cmd_len, 0) < 0) {
620 		if (errno == EAGAIN || errno == EBUSY || errno == EWOULDBLOCK)
621 		{
622 			/*
623 			 * Must be a non-blocking socket... Try for a bit
624 			 * longer before giving up.
625 			 */
626 			if (started_at.sec == 0)
627 				os_get_reltime(&started_at);
628 			else {
629 				struct os_reltime n;
630 				os_get_reltime(&n);
631 				/* Try for a few seconds. */
632 				if (os_reltime_expired(&n, &started_at, 5))
633 					goto send_err;
634 			}
635 			os_sleep(1, 0);
636 			goto retry_send;
637 		}
638 	send_err:
639 		wpa_printf(MSG_ERROR, "wpa_ctrl_request send fail!");
640 		os_free(cmd_buf);
641 		return -1;
642 	}
643 	os_free(cmd_buf);
644 
645 	os_get_reltime(&ending_at);
646 	ending_at.sec += 10;
647 
648 	for (;;) {
649 		struct os_reltime diff;
650 
651 		os_get_reltime(&started_at);
652 		if (os_reltime_before(&ending_at, &started_at))
653 			return -2;
654 		os_reltime_sub(&ending_at, &started_at, &diff);
655 		tv.tv_sec = diff.sec;
656 		tv.tv_usec = diff.usec;
657 
658 		FD_ZERO(&rfds);
659 		FD_SET(ctrl->s, &rfds);
660 		res = select(ctrl->s + 1, &rfds, NULL, NULL, &tv);
661 		if (res < 0 && errno == EINTR)
662 			continue;
663 		if (res < 0)
664 			return res;
665 		if (FD_ISSET(ctrl->s, &rfds)) {
666 			res = recv(ctrl->s, reply, *reply_len, 0);
667 			wpa_printf(MSG_DEBUG, "wpa_ctrl_request recv success!");
668 			if (res < 0)
669 				return res;
670 			if ((res > 0 && reply[0] == '<') ||
671 			    (res > 6 && strncmp(reply, "IFNAME=", 7) == 0)) {
672 				/* This is an unsolicited message from
673 				 * wpa_supplicant, not the reply to the
674 				 * request. Use msg_cb to report this to the
675 				 * caller. */
676 				if (msg_cb) {
677 					/* Make sure the message is nul
678 					 * terminated. */
679 					if ((size_t) res == *reply_len)
680 						res = (*reply_len) - 1;
681 					reply[res] = '\0';
682 					msg_cb(reply, res);
683 				}
684 				continue;
685 			}
686 			*reply_len = res;
687 			break;
688 		} else {
689 			return -2;
690 		}
691 	}
692 	return 0;
693 }
694 #endif /* CTRL_IFACE_SOCKET */
695 
696 
wpa_ctrl_attach_helper(struct wpa_ctrl * ctrl,int attach)697 static int wpa_ctrl_attach_helper(struct wpa_ctrl *ctrl, int attach)
698 {
699 	char buf[10];
700 	int ret;
701 	size_t len = 10;
702 
703 	ret = wpa_ctrl_request(ctrl, attach ? "ATTACH" : "DETACH", 6,
704 			       buf, &len, NULL);
705 	if (ret < 0)
706 		return ret;
707 	if (len == 3 && os_memcmp(buf, "OK\n", 3) == 0)
708 		return 0;
709 	return -1;
710 }
711 
712 
wpa_ctrl_attach(struct wpa_ctrl * ctrl)713 int wpa_ctrl_attach(struct wpa_ctrl *ctrl)
714 {
715 	return wpa_ctrl_attach_helper(ctrl, 1);
716 }
717 
718 
wpa_ctrl_detach(struct wpa_ctrl * ctrl)719 int wpa_ctrl_detach(struct wpa_ctrl *ctrl)
720 {
721 	return wpa_ctrl_attach_helper(ctrl, 0);
722 }
723 
724 
725 #ifdef CTRL_IFACE_SOCKET
726 
wpa_ctrl_recv(struct wpa_ctrl * ctrl,char * reply,size_t * reply_len)727 int wpa_ctrl_recv(struct wpa_ctrl *ctrl, char *reply, size_t *reply_len)
728 {
729 	int res;
730 
731 	res = recv(ctrl->s, reply, *reply_len, 0);
732 	if (res < 0)
733 		return res;
734 	*reply_len = res;
735 	return 0;
736 }
737 
738 
wpa_ctrl_pending(struct wpa_ctrl * ctrl)739 int wpa_ctrl_pending(struct wpa_ctrl *ctrl)
740 {
741 	struct timeval tv;
742 	fd_set rfds;
743 	tv.tv_sec = 0;
744 	tv.tv_usec = 0;
745 	FD_ZERO(&rfds);
746 	FD_SET(ctrl->s, &rfds);
747 	select(ctrl->s + 1, &rfds, NULL, NULL, &tv);
748 	return FD_ISSET(ctrl->s, &rfds);
749 }
750 
751 
wpa_ctrl_get_fd(struct wpa_ctrl * ctrl)752 int wpa_ctrl_get_fd(struct wpa_ctrl *ctrl)
753 {
754 	return ctrl->s;
755 }
756 
757 #endif /* CTRL_IFACE_SOCKET */
758 
759 
760 #ifdef CONFIG_CTRL_IFACE_NAMED_PIPE
761 
762 #ifndef WPA_SUPPLICANT_NAMED_PIPE
763 #define WPA_SUPPLICANT_NAMED_PIPE "WpaSupplicant"
764 #endif
765 #define NAMED_PIPE_PREFIX TEXT("\\\\.\\pipe\\") TEXT(WPA_SUPPLICANT_NAMED_PIPE)
766 
wpa_ctrl_open(const char * ctrl_path)767 struct wpa_ctrl * wpa_ctrl_open(const char *ctrl_path)
768 {
769 	struct wpa_ctrl *ctrl;
770 	DWORD mode;
771 	TCHAR name[256];
772 	int i, ret;
773 
774 	ctrl = os_malloc(sizeof(*ctrl));
775 	if (ctrl == NULL)
776 		return NULL;
777 	os_memset(ctrl, 0, sizeof(*ctrl));
778 
779 #ifdef UNICODE
780 	if (ctrl_path == NULL)
781 		ret = _snwprintf(name, 256, NAMED_PIPE_PREFIX);
782 	else
783 		ret = _snwprintf(name, 256, NAMED_PIPE_PREFIX TEXT("-%S"),
784 				 ctrl_path);
785 #else /* UNICODE */
786 	if (ctrl_path == NULL)
787 		ret = os_snprintf(name, 256, NAMED_PIPE_PREFIX);
788 	else
789 		ret = os_snprintf(name, 256, NAMED_PIPE_PREFIX "-%s",
790 				  ctrl_path);
791 #endif /* UNICODE */
792 	if (os_snprintf_error(256, ret)) {
793 		os_free(ctrl);
794 		return NULL;
795 	}
796 
797 	for (i = 0; i < 10; i++) {
798 		ctrl->pipe = CreateFile(name, GENERIC_READ | GENERIC_WRITE, 0,
799 					NULL, OPEN_EXISTING, 0, NULL);
800 		/*
801 		 * Current named pipe server side in wpa_supplicant is
802 		 * re-opening the pipe for new clients only after the previous
803 		 * one is taken into use. This leaves a small window for race
804 		 * conditions when two connections are being opened at almost
805 		 * the same time. Retry if that was the case.
806 		 */
807 		if (ctrl->pipe != INVALID_HANDLE_VALUE ||
808 		    GetLastError() != ERROR_PIPE_BUSY)
809 			break;
810 		WaitNamedPipe(name, 1000);
811 	}
812 	if (ctrl->pipe == INVALID_HANDLE_VALUE) {
813 		os_free(ctrl);
814 		return NULL;
815 	}
816 
817 	mode = PIPE_READMODE_MESSAGE;
818 	if (!SetNamedPipeHandleState(ctrl->pipe, &mode, NULL, NULL)) {
819 		CloseHandle(ctrl->pipe);
820 		os_free(ctrl);
821 		return NULL;
822 	}
823 
824 	return ctrl;
825 }
826 
827 
wpa_ctrl_close(struct wpa_ctrl * ctrl)828 void wpa_ctrl_close(struct wpa_ctrl *ctrl)
829 {
830 	CloseHandle(ctrl->pipe);
831 	os_free(ctrl);
832 }
833 
834 
wpa_ctrl_request(struct wpa_ctrl * ctrl,const char * cmd,size_t cmd_len,char * reply,size_t * reply_len,void (* msg_cb)(char * msg,size_t len))835 int wpa_ctrl_request(struct wpa_ctrl *ctrl, const char *cmd, size_t cmd_len,
836 		     char *reply, size_t *reply_len,
837 		     void (*msg_cb)(char *msg, size_t len))
838 {
839 	DWORD written;
840 	DWORD readlen = *reply_len;
841 
842 	if (!WriteFile(ctrl->pipe, cmd, cmd_len, &written, NULL))
843 		return -1;
844 
845 	if (!ReadFile(ctrl->pipe, reply, *reply_len, &readlen, NULL))
846 		return -1;
847 	*reply_len = readlen;
848 
849 	return 0;
850 }
851 
852 
wpa_ctrl_recv(struct wpa_ctrl * ctrl,char * reply,size_t * reply_len)853 int wpa_ctrl_recv(struct wpa_ctrl *ctrl, char *reply, size_t *reply_len)
854 {
855 	DWORD len = *reply_len;
856 	if (!ReadFile(ctrl->pipe, reply, *reply_len, &len, NULL))
857 		return -1;
858 	*reply_len = len;
859 	return 0;
860 }
861 
862 
wpa_ctrl_pending(struct wpa_ctrl * ctrl)863 int wpa_ctrl_pending(struct wpa_ctrl *ctrl)
864 {
865 	DWORD left;
866 
867 	if (!PeekNamedPipe(ctrl->pipe, NULL, 0, NULL, &left, NULL))
868 		return -1;
869 	return left ? 1 : 0;
870 }
871 
872 
wpa_ctrl_get_fd(struct wpa_ctrl * ctrl)873 int wpa_ctrl_get_fd(struct wpa_ctrl *ctrl)
874 {
875 	return -1;
876 }
877 
878 #endif /* CONFIG_CTRL_IFACE_NAMED_PIPE */
879 
880 #endif /* CONFIG_CTRL_IFACE */
881