]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/blob - usr.sbin/bsdinstall/scripts/wlanconfig
The output of dialog needs to be sanitized
[FreeBSD/FreeBSD.git] / usr.sbin / bsdinstall / scripts / wlanconfig
1 #!/bin/sh
2 #-
3 # Copyright (c) 2011 Nathan Whitehorn
4 # Copyright (c) 2013-2016 Devin Teske
5 # All rights reserved.
6 #
7 # Redistribution and use in source and binary forms, with or without
8 # modification, are permitted provided that the following conditions
9 # are met:
10 # 1. Redistributions of source code must retain the above copyright
11 #    notice, this list of conditions and the following disclaimer.
12 # 2. Redistributions in binary form must reproduce the above copyright
13 #    notice, this list of conditions and the following disclaimer in the
14 #    documentation and/or other materials provided with the distribution.
15 #
16 # THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
17 # ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18 # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19 # ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
20 # FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21 # DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22 # OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23 # HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24 # LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25 # OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26 # SUCH DAMAGE.
27 #
28 # $FreeBSD$
29 #
30 ############################################################ INCLUDES
31
32 BSDCFG_SHARE="/usr/share/bsdconfig"
33 . $BSDCFG_SHARE/common.subr || exit 1
34 f_include $BSDCFG_SHARE/dialog.subr
35 f_dialog_backtitle "FreeBSD Installer"
36
37 ############################################################ FUNCTIONS
38
39 country_set()
40 {
41         local error_str iface_up ifconfig_args=
42
43         #
44         # Setup what was selected
45         # NB: Do not change order of arguments (or regdomain will be ignored)
46         #
47         [ "$2" ] && ifconfig_args="$ifconfig_args country $2"
48         [ "$1" ] && ifconfig_args="$ifconfig_args regdomain $1"
49         [ "$ifconfig_args" ] || return $SUCCESS # Nothing to do
50         ifconfig_args="${ifconfig_args# }"
51
52         # Regdomain/country cannot be applied while interface is running
53         iface_up=$( ifconfig -lu | grep -w "$WLAN_IFACE" )
54         [ "$iface_up" ] && ifconfig "$WLAN_IFACE" down
55         error_str=$( ifconfig "$WLAN_IFACE" $ifconfig_args 2>&1 |
56                 sed -e 's/ifconfig: //' )
57         if [ "$iface_up" ]; then
58                 # Restart wpa_supplicant(8) (should not fail).
59                 wpa_supplicant -B -i "$WLAN_IFACE" -c \
60                         "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
61         fi
62         if [ "$error_str" ]; then
63                 $DIALOG \
64                         --title "$msg_error" \
65                         --backtitle "$DIALOG_BACKTITLE" \
66                         --yes-label Change \
67                         --no-label Ignore \
68                         --yesno \
69                         "Error while applying chosen settings ($error_str)" \
70                         0 0 || return $SUCCESS # Skip
71                 return $FAILURE # Restart
72         else
73                 awk 'sub(/^\t\t/,"")||1' \
74                         > "$BSDINSTALL_TMPETC/rc.conf.net.wlan" <<-EOF
75                 create_args_$WLAN_IFACE="$ifconfig_args"
76                 EOF
77         fi
78
79         return $SUCCESS
80 }
81
82 dialog_country_select()
83 {
84         local input regdomains countries regdomain country prompt
85         local no_default="<not selected>"
86         local default_regdomain="${1:-$no_default}"
87         local default_country="${2:-$no_default}"
88
89         #
90         # Parse available countries/regdomains
91         #
92         input=$( ifconfig "$WLAN_IFACE" list countries | sed -e 's/DEBUG//gi' )
93         regdomains=$( echo "$input" | awk '
94                 sub(/.*domains:/, ""), /[^[:alnum:][[:space:]]/ {
95                         n = split($0, domains)
96                         for (i = 1; i <= n; i++)
97                                 printf "'\''%s'\'' '\'\''", domains[i]
98                 }
99         ' | sort )
100         countries=$( echo "$input" | awk '
101                 sub(/Country codes:/, ""), sub(/Regulatory.*/, "") {
102                         while (match($0, /[[:upper:]][[:upper:][:digit:]] /)) {
103                                 country = substr($0, RSTART)
104                                 sub(/ [[:upper:]][[:upper:][:digit:]].*/, "", country)
105                                 code = substr(country, 1, 2)
106                                 desc = substr(country, 4)
107                                 sub(/[[:space:]]*$/, "", desc)
108                                 printf "'\''%s'\'' '\''%s'\''\n", code, desc
109                                 $0 = substr($0, RSTART + RLENGTH)
110                         }
111                 }
112         ' | sort )
113
114         f_dialog_title "Regdomain selection"
115         prompt="Select your regdomain."
116         eval f_dialog_menu_size height width rows \
117                 \"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
118                 \"\$prompt\" \"\" $regdomains
119         regdomain=$( eval $DIALOG \
120                 --title \"\$DIALOG_TITLE\"             \
121                 --backtitle \"\$DIALOG_BACKTITLE\"     \
122                 --cancel-label \"\$msg_skip\"          \
123                 --default-item \"\$default_regdomain\" \
124                 --menu \"\$prompt\"                    \
125                 $height $width $rows                   \
126                 $regdomains                            \
127                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
128         )
129         f_dialog_data_sanitize regdomain
130
131         f_dialog_title "Country selection"
132         prompt="Select your country."
133         eval f_dialog_menu_size height width rows \
134                 \"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
135                 \"\$prompt\" \"\" $countries
136         country=$( eval $DIALOG \
137                 --title \"\$DIALOG_TITLE\"           \
138                 --backtitle \"\$DIALOG_BACKTITLE\"   \
139                 --cancel-label \"\$msg_skip\"        \
140                 --default-item \"\$default_country\" \
141                 --menu \"\$prompt\"                  \
142                 $height $width $rows                 \
143                 $countries                           \
144                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
145         )
146         f_dialog_data_sanitize country
147
148         country_set "$regdomain" "$country"
149 }
150
151 ############################################################ MAIN
152
153 : > "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
154 chmod 0600 "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
155
156 cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" << EOF
157 ctrl_interface=/var/run/wpa_supplicant
158 eapol_version=2
159 ap_scan=1
160 fast_reauth=1
161
162 EOF
163
164 #
165 # Try to reach wpa_supplicant. If it isn't running and we can modify the
166 # existing system, start it. Otherwise, fail.
167 #
168 (wpa_cli ping >/dev/null 2>/dev/null || ([ "$BSDINSTALL_CONFIGCURRENT" ] &&
169         wpa_supplicant -B -i $1 -c "$BSDINSTALL_TMPETC/wpa_supplicant.conf")) ||
170         ($DIALOG --backtitle "$DIALOG_BACKTITLE" --title "$msg_error" --msgbox \
171         "Could not start wpa_supplicant!" 0 0; exit 1) || exit 1
172
173 # See if we succeeded
174 wpa_cli ping >/dev/null 2>/dev/null
175 if [ $? -ne 0 -a ! "$BSDINSTALL_CONFIGCURRENT" ]; then
176         $DIALOG \
177                 --title "$msg_error" \
178                 --backtitle "$DIALOG_BACKTITLE" \
179                 --msgbox "Wireless cannot be configured without making changes to the local system!" \
180                 0 0
181         exit 1
182 fi
183
184 #
185 # There is no way to check country/regdomain without (possible)
186 # interface state modification
187 #
188 if [ "$BSDINSTALL_CONFIGCURRENT" ]; then
189         # Get current country/regdomain for selected interface
190         WLAN_IFACE=$( wpa_cli ifname | tail -1 )
191         INPUT=$( ifconfig "$WLAN_IFACE" list regdomain | head -1 )
192         DEF_REGDOMAIN=$( echo $INPUT | cut -w -f 2 )
193         DEF_COUNTRY=$( echo $INPUT | cut -w -f 4 )
194         [ "$DEF_REGDOMAIN" = 0 ] && DEF_REGDOMAIN="<not selected>"
195         [ "$DEF_COUNTRY" = 0 ] && DEF_COUNTRY="<not selected>"
196         f_dialog_title "Regdomain/country"
197         $DIALOG \
198                 --title "$DIALOG_TITLE" \
199                 --backtitle "$DIALOG_BACKTITLE" \
200                 --yesno "Change regdomain/country (now $DEF_REGDOMAIN/$DEF_COUNTRY)?" \
201                 0 0
202         if [ $? -eq 0 ]; then
203                 while :; do
204                         dialog_country_select "$DEF_REGDOMAIN" "$DEF_COUNTRY"
205                         if [ $? -eq $SUCCESS ]; then
206                                 break
207                         fi
208                 done
209         fi
210 fi
211
212 while :; do
213         SCANSSID=0
214         output=$( wpa_cli scan 2>&1 )
215         f_dprintf "%s" "$output"
216         f_dialog_title "Scanning"
217         $DIALOG \
218                 --title "$DIALOG_TITLE" \
219                 --backtitle "$DIALOG_BACKTITLE" \
220                 --ok-label "$msg_skip" \
221                 --pause "Waiting 5 seconds to scan for wireless networks..." \
222                 9 40 5 || exit 1
223
224         SCAN_RESULTS=$( wpa_cli scan_results )
225         NETWORKS=$( echo "$SCAN_RESULTS" | awk -F '\t' '
226                 /..:..:..:..:..:../ && $5 { printf("\"%s\"\t%s\n", $5, $4) }
227         ' | sort | uniq )
228
229         if [ ! "$NETWORKS" ]; then
230                 f_dialog_title "$msg_error"
231                 $DIALOG \
232                         --title "$DIALOG_TITLE" \
233                         --backtitle "$DIALOG_BACKTITLE" \
234                         --yesno "No wireless networks were found. Rescan?" \
235                         0 0 && continue
236                 exit 1
237         fi
238
239         f_dialog_title "Network Selection"
240         NETWORK=$( sh -c "$DIALOG \
241                 --title \"$DIALOG_TITLE\" \
242                 --backtitle \"$DIALOG_BACKTITLE\" \
243                 --extra-button \
244                 --extra-label \"Rescan\" \
245                 --menu \"Select a wireless network to connect to.\" \
246                 0 0 0 \
247                 $( echo $NETWORKS | tr '\n' ' ' )" \
248                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
249         )
250         retval=$?
251         f_dialog_data_sanitize NETWORK
252         case $retval in
253         $DIALOG_OK) break ;;
254         $DIALOG_CANCEL)
255                 # here we ask if the user wants to select the network manually
256                 f_dialog_title "Network Selection"
257                 f_dialog_yesno "Do you want to select the network manually?" || exit 1
258                 f_dialog_input NETWORK "Enter SSID" || exit 1
259                 ENCRYPTION=$( $DIALOG \
260                         --title "$DIALOG_TITLE" \
261                         --backtitle "$DIALOG_BACKTITLE" \
262                         --menu "Select encryption type" \
263                         0 0 0 \
264                         "1 WPA/WPA2 PSK" "" \
265                         "2 WPA/WPA2 EAP" "" \
266                         "3 WEP" "" \
267                         "0 None" "" \
268                         2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
269                 ) || exit 1
270                 SCANSSID=1
271                 break
272                 ;;
273         $DIALOG_EXTRA) # Rescan
274                 ;;
275         esac
276 done
277
278 [ "$ENCRYPTION" ] || ENCRYPTION=$( echo "$NETWORKS" |
279         awk -F '\t' "/^\"$NETWORK\"\t/ { printf(\"%s\n\", \\\$2 ) }" )
280
281 if echo $ENCRYPTION | grep -q 'PSK'; then
282         PASS=$( $DIALOG \
283                 --title "WPA Setup" \
284                 --backtitle "$DIALOG_BACKTITLE" \
285                 --insecure \
286                 --mixedform "" \
287                 0 0 0 \
288                 "SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
289                 "Password" 2 0 "" 2 12 15 63 1 \
290                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
291         ) || exec "$0" "$@"
292         awk 'sub(/^\t/,"")||1' \
293                 >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
294         network={
295                 ssid="$NETWORK"
296                 scan_ssid=$SCANSSID
297                 psk="$PASS"
298                 priority=5
299         }
300         EOF
301 elif echo $ENCRYPTION | grep -q EAP; then
302         USERPASS=$( $DIALOG \
303                 --title "WPA-Enterprise Setup" \
304                 --backtitle "$DIALOG_BACKTITLE" \
305                 --insecure \
306                 --mixedform "" \
307                 0 0 0 \
308                 "SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
309                 "Username" 2 0 "" 2 12 25 63 0 \
310                 "Password" 3 0 "" 3 12 25 63 1 \
311                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
312         ) || exec "$0" "$@"
313         awk 'sub(/^\t/,"")||1' \
314                 >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
315         network={
316                 ssid="$NETWORK"
317                 scan_ssid=$SCANSSID
318                 key_mgmt=WPA-EAP$(
319                 echo "$USERPASS" | awk '
320                         NR == 1 { printf "\n\t\tidentity=\"%s\"", $1 }
321                         NR == 2 { printf "\n\t\tpassword=\"%s\"", $1 }
322                 ' )
323                 priority=5
324         }
325         EOF
326 elif echo $ENCRYPTION | grep -q WEP; then
327         WEPKEY=$( $DIALOG \
328                 --title "WEP Setup" \
329                 --backtitle "$DIALOG_BACKTITLE" \
330                 --insecure \
331                 --mixedform "" \
332                 0 0 0 \
333                 "SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
334                 "WEP Key 0" 2 0 "" 2 12 15 0 1 \
335                 2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
336         ) || exec "$0" "$@"
337         awk 'sub(/^\t/,"")||1' \
338                 >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
339         network={
340                 ssid="$NETWORK"
341                 scan_ssid=$SCANSSID
342                 key_mgmt=NONE
343                 wep_key0="$WEPKEY"
344                 wep_tx_keyidx=0
345                 priority=5
346         }
347         EOF
348 else # Open
349         awk 'sub(/^\t/,"")||1' \
350                 >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
351         network={
352                 ssid="$NETWORK"
353                 scan_ssid=$SCANSSID
354                 key_mgmt=NONE
355                 priority=5
356         }
357         EOF
358 fi
359
360 # Connect to any open networks policy
361 cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" << EOF
362 network={
363         priority=0
364         key_mgmt=NONE
365 }
366 EOF
367
368 # Bring up new network
369 if [ "$BSDINSTALL_CONFIGCURRENT" ]; then
370         output=$( wpa_cli reconfigure 2>&1 )
371         f_dprintf "%s" "$output"
372 fi
373
374 exit $SUCCESS
375
376 ################################################################################
377 # END
378 ################################################################################