2 * hostapd / VLAN initialization - full dynamic VLAN
3 * Copyright 2003, Instant802 Networks, Inc.
4 * Copyright 2005-2006, Devicescape Software, Inc.
5 * Copyright (c) 2009, Jouni Malinen <j@w1.fi>
7 * This software may be distributed under the terms of the BSD license.
8 * See README for more details.
11 #include "utils/includes.h"
13 /* Avoid conflicts due to NetBSD net/if.h if_type define with driver.h */
15 #include <sys/ioctl.h>
17 #include "utils/common.h"
18 #include "drivers/priv_netlink.h"
19 #include "drivers/linux_ioctl.h"
20 #include "common/linux_bridge.h"
21 #include "common/linux_vlan.h"
22 #include "utils/eloop.h"
24 #include "ap_config.h"
25 #include "ap_drv_ops.h"
27 #include "vlan_init.h"
28 #include "vlan_util.h"
31 struct full_dynamic_vlan {
32 int s; /* socket on which to listen for new/removed interfaces. */
35 #define DVLAN_CLEAN_BR 0x1
36 #define DVLAN_CLEAN_VLAN 0x2
37 #define DVLAN_CLEAN_VLAN_PORT 0x4
39 struct dynamic_iface {
40 char ifname[IFNAMSIZ + 1];
43 struct dynamic_iface *next;
47 /* Increment ref counter for ifname and add clean flag.
48 * If not in list, add it only if some flags are given.
50 static void dyn_iface_get(struct hostapd_data *hapd, const char *ifname,
53 struct dynamic_iface *next, **dynamic_ifaces;
54 struct hapd_interfaces *interfaces;
56 interfaces = hapd->iface->interfaces;
57 dynamic_ifaces = &interfaces->vlan_priv;
59 for (next = *dynamic_ifaces; next; next = next->next) {
60 if (os_strcmp(ifname, next->ifname) == 0)
73 next = os_zalloc(sizeof(*next));
76 os_strlcpy(next->ifname, ifname, sizeof(next->ifname));
79 next->next = *dynamic_ifaces;
80 *dynamic_ifaces = next;
84 /* Decrement reference counter for given ifname.
85 * Return clean flag iff reference counter was decreased to zero, else zero
87 static int dyn_iface_put(struct hostapd_data *hapd, const char *ifname)
89 struct dynamic_iface *next, *prev = NULL, **dynamic_ifaces;
90 struct hapd_interfaces *interfaces;
93 interfaces = hapd->iface->interfaces;
94 dynamic_ifaces = &interfaces->vlan_priv;
96 for (next = *dynamic_ifaces; next; next = next->next) {
97 if (os_strcmp(ifname, next->ifname) == 0)
110 prev->next = next->next;
112 *dynamic_ifaces = next->next;
120 static int ifconfig_down(const char *if_name)
122 wpa_printf(MSG_DEBUG, "VLAN: Set interface %s down", if_name);
123 return ifconfig_helper(if_name, 0);
127 /* This value should be 256 ONLY. If it is something else, then hostapd
128 * might crash!, as this value has been hard-coded in 2.4.x kernel
131 #define MAX_BR_PORTS 256
133 static int br_delif(const char *br_name, const char *if_name)
137 unsigned long args[2];
140 wpa_printf(MSG_DEBUG, "VLAN: br_delif(%s, %s)", br_name, if_name);
141 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
142 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
143 "failed: %s", __func__, strerror(errno));
147 if (linux_br_del_if(fd, br_name, if_name) == 0)
150 if_index = if_nametoindex(if_name);
153 wpa_printf(MSG_ERROR, "VLAN: %s: Failure determining "
154 "interface index for '%s'",
160 args[0] = BRCTL_DEL_IF;
163 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
164 ifr.ifr_data = (void *) args;
166 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0 && errno != EINVAL) {
167 /* No error if interface already removed. */
168 wpa_printf(MSG_ERROR, "VLAN: %s: ioctl[SIOCDEVPRIVATE,"
169 "BRCTL_DEL_IF] failed for br_name=%s if_name=%s: "
170 "%s", __func__, br_name, if_name, strerror(errno));
182 Add interface 'if_name' to the bridge 'br_name'
185 returns 1 if the interface is already part of the bridge
188 static int br_addif(const char *br_name, const char *if_name)
192 unsigned long args[2];
195 wpa_printf(MSG_DEBUG, "VLAN: br_addif(%s, %s)", br_name, if_name);
196 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
197 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
198 "failed: %s", __func__, strerror(errno));
202 if (linux_br_add_if(fd, br_name, if_name) == 0)
204 if (errno == EBUSY) {
205 /* The interface is already added. */
210 if_index = if_nametoindex(if_name);
213 wpa_printf(MSG_ERROR, "VLAN: %s: Failure determining "
214 "interface index for '%s'",
220 args[0] = BRCTL_ADD_IF;
223 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
224 ifr.ifr_data = (void *) args;
226 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
227 if (errno == EBUSY) {
228 /* The interface is already added. */
233 wpa_printf(MSG_ERROR, "VLAN: %s: ioctl[SIOCDEVPRIVATE,"
234 "BRCTL_ADD_IF] failed for br_name=%s if_name=%s: "
235 "%s", __func__, br_name, if_name, strerror(errno));
246 static int br_delbr(const char *br_name)
249 unsigned long arg[2];
251 wpa_printf(MSG_DEBUG, "VLAN: br_delbr(%s)", br_name);
252 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
253 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
254 "failed: %s", __func__, strerror(errno));
258 if (linux_br_del(fd, br_name) == 0)
261 arg[0] = BRCTL_DEL_BRIDGE;
262 arg[1] = (unsigned long) br_name;
264 if (ioctl(fd, SIOCGIFBR, arg) < 0 && errno != ENXIO) {
265 /* No error if bridge already removed. */
266 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_DEL_BRIDGE failed for "
267 "%s: %s", __func__, br_name, strerror(errno));
279 Add a bridge with the name 'br_name'.
282 returns 1 if the bridge already exists
285 static int br_addbr(const char *br_name)
288 unsigned long arg[4];
291 wpa_printf(MSG_DEBUG, "VLAN: br_addbr(%s)", br_name);
292 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
293 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
294 "failed: %s", __func__, strerror(errno));
298 if (linux_br_add(fd, br_name) == 0)
300 if (errno == EEXIST) {
301 /* The bridge is already added. */
306 arg[0] = BRCTL_ADD_BRIDGE;
307 arg[1] = (unsigned long) br_name;
309 if (ioctl(fd, SIOCGIFBR, arg) < 0) {
310 if (errno == EEXIST) {
311 /* The bridge is already added. */
315 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_ADD_BRIDGE "
317 __func__, br_name, strerror(errno));
324 /* Decrease forwarding delay to avoid EAPOL timeouts. */
325 os_memset(&ifr, 0, sizeof(ifr));
326 os_strlcpy(ifr.ifr_name, br_name, IFNAMSIZ);
327 arg[0] = BRCTL_SET_BRIDGE_FORWARD_DELAY;
331 ifr.ifr_data = (char *) &arg;
332 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
333 wpa_printf(MSG_ERROR, "VLAN: %s: "
334 "BRCTL_SET_BRIDGE_FORWARD_DELAY (1 sec) failed for "
335 "%s: %s", __func__, br_name, strerror(errno));
336 /* Continue anyway */
344 static int br_getnumports(const char *br_name)
349 unsigned long arg[4];
350 int ifindices[MAX_BR_PORTS];
353 if ((fd = socket(AF_INET, SOCK_STREAM, 0)) < 0) {
354 wpa_printf(MSG_ERROR, "VLAN: %s: socket(AF_INET,SOCK_STREAM) "
355 "failed: %s", __func__, strerror(errno));
359 arg[0] = BRCTL_GET_PORT_LIST;
360 arg[1] = (unsigned long) ifindices;
361 arg[2] = MAX_BR_PORTS;
364 os_memset(ifindices, 0, sizeof(ifindices));
365 os_strlcpy(ifr.ifr_name, br_name, sizeof(ifr.ifr_name));
366 ifr.ifr_data = (void *) arg;
368 if (ioctl(fd, SIOCDEVPRIVATE, &ifr) < 0) {
369 wpa_printf(MSG_ERROR, "VLAN: %s: BRCTL_GET_PORT_LIST "
371 __func__, br_name, strerror(errno));
376 for (i = 1; i < MAX_BR_PORTS; i++) {
377 if (ifindices[i] > 0) {
387 static void vlan_newlink_tagged(int vlan_naming, const char *tagged_interface,
388 const char *br_name, int vid,
389 struct hostapd_data *hapd)
391 char vlan_ifname[IFNAMSIZ];
395 if (vlan_naming == DYNAMIC_VLAN_NAMING_WITH_DEVICE)
396 ret = os_snprintf(vlan_ifname, sizeof(vlan_ifname), "%s.%d",
397 tagged_interface, vid);
399 ret = os_snprintf(vlan_ifname, sizeof(vlan_ifname), "vlan%d",
401 if (ret >= (int) sizeof(vlan_ifname))
402 wpa_printf(MSG_WARNING,
403 "VLAN: Interface name was truncated to %s",
407 ifconfig_up(tagged_interface);
408 if (!vlan_add(tagged_interface, vid, vlan_ifname))
409 clean |= DVLAN_CLEAN_VLAN;
411 if (!br_addif(br_name, vlan_ifname))
412 clean |= DVLAN_CLEAN_VLAN_PORT;
414 dyn_iface_get(hapd, vlan_ifname, clean);
416 ifconfig_up(vlan_ifname);
420 static void vlan_bridge_name(char *br_name, struct hostapd_data *hapd,
421 struct hostapd_vlan *vlan, int vid)
423 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
426 if (vlan->bridge[0]) {
427 os_strlcpy(br_name, vlan->bridge, IFNAMSIZ);
429 } else if (hapd->conf->vlan_bridge[0]) {
430 ret = os_snprintf(br_name, IFNAMSIZ, "%s%d",
431 hapd->conf->vlan_bridge, vid);
432 } else if (tagged_interface) {
433 ret = os_snprintf(br_name, IFNAMSIZ, "br%s.%d",
434 tagged_interface, vid);
436 ret = os_snprintf(br_name, IFNAMSIZ, "brvlan%d", vid);
439 wpa_printf(MSG_WARNING,
440 "VLAN: Interface name was truncated to %s",
445 static void vlan_get_bridge(const char *br_name, struct hostapd_data *hapd,
448 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
449 int vlan_naming = hapd->conf->ssid.vlan_naming;
451 dyn_iface_get(hapd, br_name, br_addbr(br_name) ? 0 : DVLAN_CLEAN_BR);
453 ifconfig_up(br_name);
455 if (tagged_interface)
456 vlan_newlink_tagged(vlan_naming, tagged_interface, br_name,
461 void vlan_newlink(const char *ifname, struct hostapd_data *hapd)
463 char br_name[IFNAMSIZ];
464 struct hostapd_vlan *vlan;
465 int untagged, *tagged, i, notempty;
467 wpa_printf(MSG_DEBUG, "VLAN: vlan_newlink(%s)", ifname);
469 for (vlan = hapd->conf->vlan; vlan; vlan = vlan->next) {
470 if (vlan->configured ||
471 os_strcmp(ifname, vlan->ifname) != 0)
478 vlan->configured = 1;
480 notempty = vlan->vlan_desc.notempty;
481 untagged = vlan->vlan_desc.untagged;
482 tagged = vlan->vlan_desc.tagged;
486 if (hapd->conf->bridge[0] &&
487 !br_addif(hapd->conf->bridge, ifname))
488 vlan->clean |= DVLAN_CLEAN_WLAN_PORT;
489 } else if (untagged > 0 && untagged <= MAX_VLAN_ID) {
490 vlan_bridge_name(br_name, hapd, vlan, untagged);
492 vlan_get_bridge(br_name, hapd, untagged);
494 if (!br_addif(br_name, ifname))
495 vlan->clean |= DVLAN_CLEAN_WLAN_PORT;
498 for (i = 0; i < MAX_NUM_TAGGED_VLAN && tagged[i]; i++) {
499 if (tagged[i] == untagged ||
500 tagged[i] <= 0 || tagged[i] > MAX_VLAN_ID ||
501 (i > 0 && tagged[i] == tagged[i - 1]))
503 vlan_bridge_name(br_name, hapd, vlan, tagged[i]);
504 vlan_get_bridge(br_name, hapd, tagged[i]);
505 vlan_newlink_tagged(DYNAMIC_VLAN_NAMING_WITH_DEVICE,
506 ifname, br_name, tagged[i], hapd);
513 static void vlan_dellink_tagged(int vlan_naming, const char *tagged_interface,
514 const char *br_name, int vid,
515 struct hostapd_data *hapd)
517 char vlan_ifname[IFNAMSIZ];
521 if (vlan_naming == DYNAMIC_VLAN_NAMING_WITH_DEVICE)
522 ret = os_snprintf(vlan_ifname, sizeof(vlan_ifname), "%s.%d",
523 tagged_interface, vid);
525 ret = os_snprintf(vlan_ifname, sizeof(vlan_ifname), "vlan%d",
527 if (ret >= (int) sizeof(vlan_ifname))
528 wpa_printf(MSG_WARNING,
529 "VLAN: Interface name was truncated to %s",
533 clean = dyn_iface_put(hapd, vlan_ifname);
535 if (clean & DVLAN_CLEAN_VLAN_PORT)
536 br_delif(br_name, vlan_ifname);
538 if (clean & DVLAN_CLEAN_VLAN) {
539 ifconfig_down(vlan_ifname);
540 vlan_rem(vlan_ifname);
545 static void vlan_put_bridge(const char *br_name, struct hostapd_data *hapd,
549 char *tagged_interface = hapd->conf->ssid.vlan_tagged_interface;
550 int vlan_naming = hapd->conf->ssid.vlan_naming;
552 if (tagged_interface)
553 vlan_dellink_tagged(vlan_naming, tagged_interface, br_name,
556 clean = dyn_iface_put(hapd, br_name);
557 if ((clean & DVLAN_CLEAN_BR) && br_getnumports(br_name) == 0) {
558 ifconfig_down(br_name);
564 void vlan_dellink(const char *ifname, struct hostapd_data *hapd)
566 struct hostapd_vlan *first, *prev, *vlan = hapd->conf->vlan;
568 wpa_printf(MSG_DEBUG, "VLAN: vlan_dellink(%s)", ifname);
573 if (os_strcmp(ifname, vlan->ifname) != 0) {
583 if (vlan->configured) {
584 int notempty = vlan->vlan_desc.notempty;
585 int untagged = vlan->vlan_desc.untagged;
586 int *tagged = vlan->vlan_desc.tagged;
587 char br_name[IFNAMSIZ];
590 for (i = 0; i < MAX_NUM_TAGGED_VLAN && tagged[i]; i++) {
591 if (tagged[i] == untagged ||
592 tagged[i] <= 0 || tagged[i] > MAX_VLAN_ID ||
593 (i > 0 && tagged[i] == tagged[i - 1]))
595 vlan_bridge_name(br_name, hapd, vlan, tagged[i]);
596 vlan_dellink_tagged(DYNAMIC_VLAN_NAMING_WITH_DEVICE,
597 ifname, br_name, tagged[i], hapd);
598 vlan_put_bridge(br_name, hapd, tagged[i]);
603 if (hapd->conf->bridge[0] &&
604 (vlan->clean & DVLAN_CLEAN_WLAN_PORT))
605 br_delif(hapd->conf->bridge, ifname);
606 } else if (untagged > 0 && untagged <= MAX_VLAN_ID) {
607 vlan_bridge_name(br_name, hapd, vlan, untagged);
609 if (vlan->clean & DVLAN_CLEAN_WLAN_PORT)
610 br_delif(br_name, vlan->ifname);
612 vlan_put_bridge(br_name, hapd, untagged);
617 * Ensure this VLAN interface is actually removed even if
618 * NEWLINK message is only received later.
620 if (if_nametoindex(vlan->ifname) && vlan_if_remove(hapd, vlan))
621 wpa_printf(MSG_ERROR,
622 "VLAN: Could not remove VLAN iface: %s: %s",
623 vlan->ifname, strerror(errno));
626 hapd->conf->vlan = vlan->next;
628 prev->next = vlan->next;
635 vlan_read_ifnames(struct nlmsghdr *h, size_t len, int del,
636 struct hostapd_data *hapd)
638 struct ifinfomsg *ifi;
639 int attrlen, nlmsg_len, rta_len;
641 char ifname[IFNAMSIZ + 1];
643 if (len < sizeof(*ifi))
648 nlmsg_len = NLMSG_ALIGN(sizeof(struct ifinfomsg));
650 attrlen = h->nlmsg_len - nlmsg_len;
654 attr = (struct rtattr *) (((char *) ifi) + nlmsg_len);
656 os_memset(ifname, 0, sizeof(ifname));
657 rta_len = RTA_ALIGN(sizeof(struct rtattr));
658 while (RTA_OK(attr, attrlen)) {
659 if (attr->rta_type == IFLA_IFNAME) {
660 int n = attr->rta_len - rta_len;
664 if ((size_t) n >= sizeof(ifname))
665 n = sizeof(ifname) - 1;
666 os_memcpy(ifname, ((char *) attr) + rta_len, n);
670 attr = RTA_NEXT(attr, attrlen);
675 if (del && if_nametoindex(ifname)) {
676 /* interface still exists, race condition ->
677 * iface has just been recreated */
681 wpa_printf(MSG_DEBUG,
682 "VLAN: RTM_%sLINK: ifi_index=%d ifname=%s ifi_family=%d ifi_flags=0x%x (%s%s%s%s)",
684 ifi->ifi_index, ifname, ifi->ifi_family, ifi->ifi_flags,
685 (ifi->ifi_flags & IFF_UP) ? "[UP]" : "",
686 (ifi->ifi_flags & IFF_RUNNING) ? "[RUNNING]" : "",
687 (ifi->ifi_flags & IFF_LOWER_UP) ? "[LOWER_UP]" : "",
688 (ifi->ifi_flags & IFF_DORMANT) ? "[DORMANT]" : "");
691 vlan_dellink(ifname, hapd);
693 vlan_newlink(ifname, hapd);
697 static void vlan_event_receive(int sock, void *eloop_ctx, void *sock_ctx)
701 struct sockaddr_nl from;
704 struct hostapd_data *hapd = eloop_ctx;
706 fromlen = sizeof(from);
707 left = recvfrom(sock, buf, sizeof(buf), MSG_DONTWAIT,
708 (struct sockaddr *) &from, &fromlen);
710 if (errno != EINTR && errno != EAGAIN)
711 wpa_printf(MSG_ERROR, "VLAN: %s: recvfrom failed: %s",
712 __func__, strerror(errno));
716 h = (struct nlmsghdr *) buf;
717 while (NLMSG_OK(h, left)) {
721 plen = len - sizeof(*h);
722 if (len > left || plen < 0) {
723 wpa_printf(MSG_DEBUG, "VLAN: Malformed netlink "
724 "message: len=%d left=%d plen=%d",
729 switch (h->nlmsg_type) {
731 vlan_read_ifnames(h, plen, 0, hapd);
734 vlan_read_ifnames(h, plen, 1, hapd);
738 h = NLMSG_NEXT(h, left);
742 wpa_printf(MSG_DEBUG, "VLAN: %s: %d extra bytes in the end of "
743 "netlink message", __func__, left);
748 struct full_dynamic_vlan *
749 full_dynamic_vlan_init(struct hostapd_data *hapd)
751 struct sockaddr_nl local;
752 struct full_dynamic_vlan *priv;
754 priv = os_zalloc(sizeof(*priv));
758 vlan_set_name_type(hapd->conf->ssid.vlan_naming ==
759 DYNAMIC_VLAN_NAMING_WITH_DEVICE ?
760 VLAN_NAME_TYPE_RAW_PLUS_VID_NO_PAD :
761 VLAN_NAME_TYPE_PLUS_VID_NO_PAD);
763 priv->s = socket(PF_NETLINK, SOCK_RAW, NETLINK_ROUTE);
765 wpa_printf(MSG_ERROR, "VLAN: %s: socket(PF_NETLINK,SOCK_RAW,"
766 "NETLINK_ROUTE) failed: %s",
767 __func__, strerror(errno));
772 os_memset(&local, 0, sizeof(local));
773 local.nl_family = AF_NETLINK;
774 local.nl_groups = RTMGRP_LINK;
775 if (bind(priv->s, (struct sockaddr *) &local, sizeof(local)) < 0) {
776 wpa_printf(MSG_ERROR, "VLAN: %s: bind(netlink) failed: %s",
777 __func__, strerror(errno));
783 if (eloop_register_read_sock(priv->s, vlan_event_receive, hapd, NULL))
794 void full_dynamic_vlan_deinit(struct full_dynamic_vlan *priv)
798 eloop_unregister_read_sock(priv->s);