c0c873d76c811e6d554ee6a4708ed27d041d694a
[oweals/luci.git] / applications / luci-app-travelmate / luasrc / model / cbi / travelmate / wifi_add.lua
1 -- Copyright 2017-2019 Dirk Brenken (dev@brenken.org)
2 -- This is free software, licensed under the Apache License, Version 2.0
3
4 local fs       = require("nixio.fs")
5 local uci      = require("luci.model.uci").cursor()
6 local http     = require("luci.http")
7 local util     = require("luci.util")
8 local scripts  = util.split(util.trim(util.exec("ls /etc/travelmate/*.login 2>/dev/null")), "\n", nil, true) or {}
9 local trmiface = uci:get("travelmate", "global", "trm_iface") or "trm_wwan"
10 local encr_psk = {"psk", "psk2", "psk-mixed"}
11 local encr_wpa = {"wpa", "wpa2", "wpa-mixed"}
12
13 m = SimpleForm("add", translate("Add Wireless Uplink Configuration"))
14 m.submit = translate("Save")
15 m.cancel = translate("Back to overview")
16 m.reset = false
17
18 function m.on_cancel()
19         http.redirect(luci.dispatcher.build_url("admin/services/travelmate/stations"))
20 end
21
22 m.hidden = {
23         device      = http.formvalue("device"),
24         ssid        = http.formvalue("ssid"),
25         bssid       = http.formvalue("bssid"),
26         wep         = http.formvalue("wep"),
27         wpa_suites  = http.formvalue("wpa_suites"),
28         wpa_version = http.formvalue("wpa_version")
29 }
30
31 if m.hidden.ssid == "" then
32         wssid = m:field(Value, "ssid", translate("SSID (hidden)"))
33 else
34         wssid = m:field(Value, "ssid", translate("SSID"))
35 end
36 wssid.datatype = "rangelength(1,32)"
37 wssid.default = m.hidden.ssid or ""
38
39 nobssid = m:field(Flag, "no_bssid", translate("Ignore BSSID"))
40 if m.hidden.ssid == "" then
41         nobssid.default = nobssid.disabled
42 else
43         nobssid.default = nobssid.enabled
44 end
45
46 bssid = m:field(Value, "bssid", translate("BSSID"),
47         translatef("The BSSID information '%s' is optional and only required for hidden networks", m.hidden.bssid or ""))
48 bssid:depends("no_bssid", 0)
49 bssid.datatype = "macaddr"
50 bssid.default = m.hidden.bssid or ""
51
52 if (tonumber(m.hidden.wep) or 0) == 1 then
53         encr = m:field(ListValue, "encryption", translate("Encryption"))
54         encr:value("wep", "WEP")
55         encr:value("wep+open", "WEP Open System")
56         encr:value("wep+mixed", "WEP mixed")
57         encr:value("wep+shared", "WEP Shared Key")
58         encr.default = "wep+open"
59
60         wkey = m:field(Value, "key", translate("WEP-Passphrase"))
61         wkey.password = true
62         wkey.datatype = "wepkey"
63 elseif (tonumber(m.hidden.wpa_version) or 0) > 0 then
64         if m.hidden.wpa_suites == "PSK" or m.hidden.wpa_suites == "PSK2" then
65                 encr = m:field(ListValue, "encryption", translate("Encryption"))
66                 encr:value("psk", "WPA PSK")
67                 encr:value("psk-mixed", "WPA/WPA2 mixed")
68                 encr:value("psk2", "WPA2 PSK")
69                 encr.default = encr_psk[tonumber(m.hidden.wpa_version)] or "psk2"
70
71                 ciph = m:field(ListValue, "cipher", translate("Cipher"))
72                 ciph:value("auto", translate("Automatic"))
73                 ciph:value("ccmp", translate("Force CCMP (AES)"))
74                 ciph:value("tkip", translate("Force TKIP"))
75                 ciph:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
76                 ciph.default = "auto"
77
78                 wkey = m:field(Value, "key", translate("WPA-Passphrase"))
79                 wkey.password = true
80                 wkey.datatype = "wpakey"
81         elseif m.hidden.wpa_suites == "802.1X" then
82                 encr = m:field(ListValue, "encryption", translate("Encryption"))
83                 encr:value("wpa", "WPA Enterprise")
84                 encr:value("wpa-mixed", "WPA/WPA2 Enterprise mixed")
85                 encr:value("wpa2", "WPA2 Enterprise")
86                 encr.default = encr_wpa[tonumber(m.hidden.wpa_version)] or "wpa2"
87
88                 ciph = m:field(ListValue, "cipher", translate("Cipher"))
89                 ciph:value("auto", translate("Automatic"))
90                 ciph:value("ccmp", translate("Force CCMP (AES)"))
91                 ciph:value("tkip", translate("Force TKIP"))
92                 ciph:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
93                 ciph.default = "auto"
94
95                 eaptype = m:field(ListValue, "eap_type", translate("EAP-Method"))
96                 eaptype:value("tls", "TLS")
97                 eaptype:value("ttls", "TTLS")
98                 eaptype:value("peap", "PEAP")
99                 eaptype:value("fast", "FAST")
100                 eaptype.default = "peap"
101
102                 authentication = m:field(ListValue, "auth", translate("Authentication"))
103                 authentication:value("PAP")
104                 authentication:value("CHAP")
105                 authentication:value("MSCHAP")
106                 authentication:value("MSCHAPV2")
107                 authentication:value("EAP-GTC")
108                 authentication:value("EAP-MD5")
109                 authentication:value("EAP-MSCHAPV2")
110                 authentication:value("EAP-TLS")
111                 authentication:value("auth=PAP")
112                 authentication:value("auth=MSCHAPV2")
113                 authentication.default = "EAP-MSCHAPV2"
114
115                 ident = m:field(Value, "identity", translate("Identity"))
116
117                 wkey = m:field(Value, "password", translate("Password"))
118                 wkey.password = true
119                 wkey.datatype = "wpakey"
120
121                 cacert = m:field(Value, "ca_cert", translate("Path to CA-Certificate"))
122                 cacert.rmempty = true
123
124                 clientcert = m:field(Value, "client_cert", translate("Path to Client-Certificate"))
125                 clientcert:depends("eap_type","tls")
126                 clientcert.rmempty = true
127
128                 privkey = m:field(Value, "priv_key", translate("Path to Private Key"))
129                 privkey:depends("eap_type","tls")
130                 privkey.rmempty = true
131
132                 privkeypwd = m:field(Value, "priv_key_pwd", translate("Password of Private Key"))
133                 privkeypwd:depends("eap_type","tls")
134                 privkeypwd.datatype = "wpakey"
135                 privkeypwd.password = true
136                 privkeypwd.rmempty = true
137         end
138 end
139
140 local login_section = (m.hidden.ssid or "") .. (m.hidden.bssid or "")
141 login_section = login_section:gsub("[^%w_]", "_")
142 local cmd = uci:get("travelmate", login_section, "command")
143 local cmd_args_default = uci:get("travelmate", login_section, "command_args")
144 cmd_list = m:field(ListValue, "cmdlist", translate("Auto Login Script"),
145         translate("External script reference which will be called for automated captive portal logins."))
146 cmd_args = m:field(Value, "cmdargs", translate("Optional Arguments"),
147         translate("Space separated list of additional optional arguments passed to the Auto Login Script, i.e. username and password"))
148 for _, z in ipairs(scripts) do
149         cmd_list:value(z)
150         cmd_args:depends("cmdlist", z)
151 end
152 cmd_list:value("none")
153 cmd_list.default = cmd or "none"
154 cmd_args.default = cmd_args_default
155
156 function wssid.write(self, section, value)
157         newsection = uci:section("wireless", "wifi-iface", nil, {
158                 mode     = "sta",
159                 network  = trmiface,
160                 device   = m.hidden.device,
161                 ssid     = wssid:formvalue(section),
162                 bssid    = bssid:formvalue(section),
163                 disabled = "1"
164         })
165
166         if (tonumber(m.hidden.wep) or 0) == 1 then
167                 uci:set("wireless", newsection, "encryption", encr:formvalue(section))
168                 uci:set("wireless", newsection, "key", wkey:formvalue(section) or "")
169         elseif (tonumber(m.hidden.wpa_version) or 0) > 0 then
170                 if m.hidden.wpa_suites == "PSK" or m.hidden.wpa_suites == "PSK2" then
171                         if ciph:formvalue(section) ~= "auto" then
172                                 uci:set("wireless", newsection, "encryption", encr:formvalue(section) .. "+" .. ciph:formvalue(section))
173                         else
174                                 uci:set("wireless", newsection, "encryption", encr:formvalue(section))
175                         end
176                         uci:set("wireless", newsection, "key", wkey:formvalue(section) or "")
177                 elseif m.hidden.wpa_suites == "802.1X" then
178                         if ciph:formvalue(section) ~= "auto" then
179                                 uci:set("wireless", newsection, "encryption", encr:formvalue(section) .. "+" .. ciph:formvalue(section))
180                         else
181                                 uci:set("wireless", newsection, "encryption", encr:formvalue(section))
182                         end
183                         uci:set("wireless", newsection, "eap_type", eaptype:formvalue(section))
184                         uci:set("wireless", newsection, "auth", authentication:formvalue(section))
185                         uci:set("wireless", newsection, "identity", ident:formvalue(section) or "")
186                         uci:set("wireless", newsection, "password", wkey:formvalue(section) or "")
187                         uci:set("wireless", newsection, "ca_cert", cacert:formvalue(section) or "")
188                         uci:set("wireless", newsection, "client_cert", clientcert:formvalue(section) or "")
189                         uci:set("wireless", newsection, "priv_key", privkey:formvalue(section) or "")
190                         uci:set("wireless", newsection, "priv_key_pwd", privkeypwd:formvalue(section) or "")
191                 end
192         else
193                 uci:set("wireless", newsection, "encryption", "none")
194         end
195         local login_section = (wssid:formvalue(section) or "") .. (bssid:formvalue(section) or "")
196         login_section = login_section:gsub("[^%w_]", "_")
197         if not uci:get("travelmate", login_section) and cmd_list:formvalue(section) ~= "none" then
198                 uci:set("travelmate", login_section, "login")
199         end
200         if uci:get("travelmate", login_section) then
201                 uci:set("travelmate", login_section, "command", cmd_list:formvalue(section))
202                 uci:set("travelmate", login_section, "command_args", cmd_args:formvalue(section))
203                 uci:save("travelmate")
204                 uci:commit("travelmate")
205         end
206         uci:save("wireless")
207         uci:commit("wireless")
208         luci.sys.call("env -i /bin/ubus call network reload >/dev/null 2>&1")
209         http.redirect(luci.dispatcher.build_url("admin/services/travelmate/stations"))
210 end
211
212 return m