1 // SPDX-License-Identifier: GPL-2.0
2 /******************************************************************************
4 * Copyright(c) 2007 - 2011 Realtek Corporation. All rights reserved.
6 ******************************************************************************/
9 #include <linux/ieee80211.h>
11 #include <osdep_service.h>
12 #include <drv_types.h>
13 #include <recv_osdep.h>
14 #include <xmit_osdep.h>
16 #include <mlme_osdep.h>
19 #include <wlan_bssdef.h>
20 #include <rtw_ioctl_set.h>
21 #include <linux/vmalloc.h>
23 extern const u8 MCS_rate_1R[16];
25 int rtw_init_mlme_priv(struct adapter *padapter)
29 struct wlan_network *pnetwork;
30 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
33 /* We don't need to memset padapter->XXX to zero, because adapter is allocated by vzalloc(). */
35 pmlmepriv->nic_hdl = (u8 *)padapter;
37 pmlmepriv->pscanned = NULL;
38 pmlmepriv->fw_state = 0;
39 pmlmepriv->cur_network.network.InfrastructureMode = Ndis802_11AutoUnknown;
40 pmlmepriv->scan_mode = SCAN_ACTIVE;/* 1: active, 0: pasive. Maybe someday we should rename this varable to "active_mode" (Jeff) */
42 spin_lock_init(&pmlmepriv->lock);
43 _rtw_init_queue(&pmlmepriv->free_bss_pool);
44 _rtw_init_queue(&pmlmepriv->scanned_queue);
46 memset(&pmlmepriv->assoc_ssid, 0, sizeof(struct ndis_802_11_ssid));
48 pbuf = vzalloc(array_size(MAX_BSS_CNT, sizeof(struct wlan_network)));
54 pmlmepriv->free_bss_buf = pbuf;
56 pnetwork = (struct wlan_network *)pbuf;
58 for (i = 0; i < MAX_BSS_CNT; i++) {
59 INIT_LIST_HEAD(&pnetwork->list);
61 list_add_tail(&pnetwork->list, &pmlmepriv->free_bss_pool.queue);
66 /* allocate DMA-able/Non-Page memory for cmd_buf and rsp_buf */
68 rtw_clear_scan_deny(padapter);
70 rtw_init_mlme_timer(padapter);
76 #if defined(CONFIG_88EU_AP_MODE)
77 static void rtw_free_mlme_ie_data(u8 **ppie, u32 *plen)
84 void rtw_free_mlme_priv_ie_data(struct mlme_priv *pmlmepriv)
86 rtw_buf_free(&pmlmepriv->assoc_req, &pmlmepriv->assoc_req_len);
87 rtw_buf_free(&pmlmepriv->assoc_rsp, &pmlmepriv->assoc_rsp_len);
88 rtw_free_mlme_ie_data(&pmlmepriv->wps_beacon_ie, &pmlmepriv->wps_beacon_ie_len);
89 rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_req_ie, &pmlmepriv->wps_probe_req_ie_len);
90 rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_resp_ie, &pmlmepriv->wps_probe_resp_ie_len);
91 rtw_free_mlme_ie_data(&pmlmepriv->wps_assoc_resp_ie, &pmlmepriv->wps_assoc_resp_ie_len);
94 void rtw_free_mlme_priv_ie_data(struct mlme_priv *pmlmepriv)
99 void rtw_free_mlme_priv(struct mlme_priv *pmlmepriv)
102 rtw_free_mlme_priv_ie_data(pmlmepriv);
103 vfree(pmlmepriv->free_bss_buf);
107 struct wlan_network *rtw_alloc_network(struct mlme_priv *pmlmepriv)
108 /* _queue *free_queue) */
110 struct wlan_network *pnetwork;
111 struct __queue *free_queue = &pmlmepriv->free_bss_pool;
113 spin_lock_bh(&free_queue->lock);
114 pnetwork = list_first_entry_or_null(&free_queue->queue,
115 struct wlan_network, list);
119 list_del_init(&pnetwork->list);
121 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
122 ("rtw_alloc_network: ptr=%p\n", &pnetwork->list));
123 pnetwork->network_type = 0;
124 pnetwork->fixed = false;
125 pnetwork->last_scanned = jiffies;
127 pnetwork->join_res = 0;
130 spin_unlock_bh(&free_queue->lock);
135 static void _rtw_free_network(struct mlme_priv *pmlmepriv, struct wlan_network *pnetwork, u8 isfreeall)
137 unsigned long curr_time;
139 u32 lifetime = SCANQUEUE_LIFETIME;
140 struct __queue *free_queue = &pmlmepriv->free_bss_pool;
148 if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) ||
149 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)))
152 delta_time = (curr_time - pnetwork->last_scanned)/HZ;
153 if (delta_time < lifetime)/* unit:sec */
156 spin_lock_bh(&free_queue->lock);
157 list_del_init(&pnetwork->list);
158 list_add_tail(&pnetwork->list, &free_queue->queue);
159 spin_unlock_bh(&free_queue->lock);
162 static void rtw_free_network_nolock(struct mlme_priv *pmlmepriv,
163 struct wlan_network *pnetwork)
165 struct __queue *free_queue = &pmlmepriv->free_bss_pool;
171 list_del_init(&pnetwork->list);
172 list_add_tail(&pnetwork->list, get_list_head(free_queue));
176 * return the wlan_network with the matching addr
178 * Shall be called under atomic context... to avoid possible racing condition...
180 struct wlan_network *rtw_find_network(struct __queue *scanned_queue, u8 *addr)
182 struct list_head *phead, *plist;
183 struct wlan_network *pnetwork = NULL;
184 u8 zero_addr[ETH_ALEN] = {0, 0, 0, 0, 0, 0};
186 if (!memcmp(zero_addr, addr, ETH_ALEN)) {
190 phead = get_list_head(scanned_queue);
193 while (plist != phead) {
194 pnetwork = container_of(plist, struct wlan_network, list);
195 if (!memcmp(addr, pnetwork->network.MacAddress, ETH_ALEN))
205 void rtw_free_network_queue(struct adapter *padapter, u8 isfreeall)
207 struct list_head *phead, *plist;
208 struct wlan_network *pnetwork;
209 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
210 struct __queue *scanned_queue = &pmlmepriv->scanned_queue;
212 spin_lock_bh(&scanned_queue->lock);
214 phead = get_list_head(scanned_queue);
217 while (phead != plist) {
218 pnetwork = container_of(plist, struct wlan_network, list);
222 _rtw_free_network(pmlmepriv, pnetwork, isfreeall);
224 spin_unlock_bh(&scanned_queue->lock);
227 int rtw_if_up(struct adapter *padapter)
231 if (padapter->bDriverStopped || padapter->bSurpriseRemoved ||
232 !check_fwstate(&padapter->mlmepriv, _FW_LINKED)) {
233 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
234 ("%s:bDriverStopped(%d) OR bSurpriseRemoved(%d)",
235 __func__, padapter->bDriverStopped,
236 padapter->bSurpriseRemoved));
244 void rtw_generate_random_ibss(u8 *pibss)
246 unsigned long curtime = jiffies;
248 pibss[0] = 0x02; /* in ad-hoc mode bit1 must set to 1 */
251 pibss[3] = (u8)(curtime & 0xff);/* p[0]; */
252 pibss[4] = (u8)((curtime>>8) & 0xff);/* p[1]; */
253 pibss[5] = (u8)((curtime>>16) & 0xff);/* p[2]; */
256 u8 *rtw_get_capability_from_ie(u8 *ie)
261 u16 rtw_get_capability(struct wlan_bssid_ex *bss)
265 memcpy((u8 *)&val, rtw_get_capability_from_ie(bss->ies), 2);
267 return le16_to_cpu(val);
270 u8 *rtw_get_beacon_interval_from_ie(u8 *ie)
275 int rtw_is_same_ibss(struct adapter *adapter, struct wlan_network *pnetwork)
278 struct security_priv *psecuritypriv = &adapter->securitypriv;
280 if ((psecuritypriv->dot11PrivacyAlgrthm != _NO_PRIVACY_) &&
281 (pnetwork->network.Privacy == 0))
283 else if ((psecuritypriv->dot11PrivacyAlgrthm == _NO_PRIVACY_) &&
284 (pnetwork->network.Privacy == 1))
291 static int is_same_ess(struct wlan_bssid_ex *a, struct wlan_bssid_ex *b)
293 return (a->ssid.ssid_length == b->ssid.ssid_length) &&
294 !memcmp(a->ssid.ssid, b->ssid.ssid, a->ssid.ssid_length);
297 int is_same_network(struct wlan_bssid_ex *src, struct wlan_bssid_ex *dst)
300 __le16 le_scap, le_dcap;
302 memcpy((u8 *)&le_scap, rtw_get_capability_from_ie(src->ies), 2);
303 memcpy((u8 *)&le_dcap, rtw_get_capability_from_ie(dst->ies), 2);
305 s_cap = le16_to_cpu(le_scap);
306 d_cap = le16_to_cpu(le_dcap);
308 return ((src->ssid.ssid_length == dst->ssid.ssid_length) &&
309 (!memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN)) &&
310 (!memcmp(src->ssid.ssid, dst->ssid.ssid, src->ssid.ssid_length)) &&
311 ((s_cap & WLAN_CAPABILITY_IBSS) ==
312 (d_cap & WLAN_CAPABILITY_IBSS)) &&
313 ((s_cap & WLAN_CAPABILITY_ESS) ==
314 (d_cap & WLAN_CAPABILITY_ESS)));
317 struct wlan_network *rtw_get_oldest_wlan_network(struct __queue *scanned_queue)
319 struct list_head *plist, *phead;
320 struct wlan_network *pwlan = NULL;
321 struct wlan_network *oldest = NULL;
323 phead = get_list_head(scanned_queue);
325 for (plist = phead->next; plist != phead; plist = plist->next) {
326 pwlan = container_of(plist, struct wlan_network, list);
329 if (!oldest || time_after(oldest->last_scanned, pwlan->last_scanned))
336 void update_network(struct wlan_bssid_ex *dst, struct wlan_bssid_ex *src,
337 struct adapter *padapter, bool update_ie)
339 long rssi_ori = dst->Rssi;
340 u8 sq_smp = src->PhyInfo.SignalQuality;
345 rtw_hal_antdiv_rssi_compared(padapter, dst, src); /* this will update src.Rssi, need consider again */
347 /* The rule below is 1/5 for sample value, 4/5 for history value */
348 if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) &&
349 is_same_network(&padapter->mlmepriv.cur_network.network, src)) {
350 /* Take the recvpriv's value for the connected AP*/
351 ss_final = padapter->recvpriv.signal_strength;
352 sq_final = padapter->recvpriv.signal_qual;
353 /* the rssi value here is undecorated, and will be used for antenna diversity */
354 if (sq_smp != 101) /* from the right channel */
355 rssi_final = (src->Rssi + dst->Rssi * 4) / 5;
357 rssi_final = rssi_ori;
359 if (sq_smp != 101) { /* from the right channel */
360 ss_final = ((u32)(src->PhyInfo.SignalStrength)+(u32)(dst->PhyInfo.SignalStrength)*4)/5;
361 sq_final = ((u32)(src->PhyInfo.SignalQuality)+(u32)(dst->PhyInfo.SignalQuality)*4)/5;
362 rssi_final = (src->Rssi+dst->Rssi*4)/5;
364 /* bss info not receiving from the right channel, use the original RX signal infos */
365 ss_final = dst->PhyInfo.SignalStrength;
366 sq_final = dst->PhyInfo.SignalQuality;
367 rssi_final = dst->Rssi;
371 memcpy((u8 *)dst, (u8 *)src, get_wlan_bssid_ex_sz(src));
372 dst->PhyInfo.SignalStrength = ss_final;
373 dst->PhyInfo.SignalQuality = sq_final;
374 dst->Rssi = rssi_final;
377 static void update_current_network(struct adapter *adapter, struct wlan_bssid_ex *pnetwork)
379 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
381 if (check_fwstate(pmlmepriv, _FW_LINKED) &&
382 is_same_network(&pmlmepriv->cur_network.network, pnetwork)) {
383 update_network(&pmlmepriv->cur_network.network, pnetwork, adapter, true);
384 rtw_update_protection(adapter, (pmlmepriv->cur_network.network.ies) + sizeof(struct ndis_802_11_fixed_ie),
385 pmlmepriv->cur_network.network.ie_length);
390 * Caller must hold pmlmepriv->lock first.
392 void rtw_update_scanned_network(struct adapter *adapter, struct wlan_bssid_ex *target)
394 struct list_head *plist, *phead;
396 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
397 struct __queue *queue = &pmlmepriv->scanned_queue;
398 struct wlan_network *pnetwork = NULL;
399 struct wlan_network *oldest = NULL;
401 spin_lock_bh(&queue->lock);
402 phead = get_list_head(queue);
405 while (phead != plist) {
406 pnetwork = container_of(plist, struct wlan_network, list);
408 if (is_same_network(&pnetwork->network, target))
410 if ((oldest == ((struct wlan_network *)0)) ||
411 time_after(oldest->last_scanned, pnetwork->last_scanned))
415 /* If we didn't find a match, then get a new network slot to initialize
416 * with this beacon's information
418 if (phead == plist) {
419 if (list_empty(&pmlmepriv->free_bss_pool.queue)) {
420 /* If there are no more slots, expire the oldest */
423 rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA,
424 &target->PhyInfo.Optimum_antenna);
425 memcpy(&pnetwork->network, target,
426 get_wlan_bssid_ex_sz(target));
427 /* variable initialize */
428 pnetwork->fixed = false;
429 pnetwork->last_scanned = jiffies;
431 pnetwork->network_type = 0;
433 pnetwork->join_res = 0;
435 /* bss info not receiving from the right channel */
436 if (pnetwork->network.PhyInfo.SignalQuality == 101)
437 pnetwork->network.PhyInfo.SignalQuality = 0;
439 /* Otherwise just pull from the free list */
441 pnetwork = rtw_alloc_network(pmlmepriv); /* will update scan_time */
444 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
445 ("\n\n\nsomething wrong here\n\n\n"));
449 bssid_ex_sz = get_wlan_bssid_ex_sz(target);
450 target->Length = bssid_ex_sz;
451 rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA,
452 &target->PhyInfo.Optimum_antenna);
453 memcpy(&pnetwork->network, target, bssid_ex_sz);
455 pnetwork->last_scanned = jiffies;
457 /* bss info not receiving from the right channel */
458 if (pnetwork->network.PhyInfo.SignalQuality == 101)
459 pnetwork->network.PhyInfo.SignalQuality = 0;
460 list_add_tail(&pnetwork->list, &queue->queue);
463 /* we have an entry and we are going to update it. But this
464 * entry may be already expired. In this case we do the same
465 * as we found a new net and call the new_net handler
467 bool update_ie = true;
469 pnetwork->last_scanned = jiffies;
471 /* target.Reserved[0]== 1, means that scanned network is a bcn frame. */
472 if ((pnetwork->network.ie_length > target->ie_length) && (target->Reserved[0] == 1))
475 update_network(&pnetwork->network, target, adapter, update_ie);
479 spin_unlock_bh(&queue->lock);
482 static void rtw_add_network(struct adapter *adapter,
483 struct wlan_bssid_ex *pnetwork)
485 update_current_network(adapter, pnetwork);
486 rtw_update_scanned_network(adapter, pnetwork);
490 * select the desired network based on the capability of the (i)bss.
491 * check items: (1) security
497 static int rtw_is_desired_network(struct adapter *adapter, struct wlan_network *pnetwork)
499 struct security_priv *psecuritypriv = &adapter->securitypriv;
500 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
504 /* u8 wps_ie[512]; */
507 int bselected = true;
509 desired_encmode = psecuritypriv->ndisencryptstatus;
510 privacy = pnetwork->network.Privacy;
512 if (check_fwstate(pmlmepriv, WIFI_UNDER_WPS)) {
513 if (rtw_get_wps_ie(pnetwork->network.ies+_FIXED_IE_LENGTH_, pnetwork->network.ie_length-_FIXED_IE_LENGTH_, NULL, &wps_ielen))
518 if (adapter->registrypriv.wifi_spec == 1) { /* for correct flow of 8021X to do.... */
519 if ((desired_encmode == Ndis802_11EncryptionDisabled) && (privacy != 0))
523 if ((desired_encmode != Ndis802_11EncryptionDisabled) && (privacy == 0)) {
524 DBG_88E("desired_encmode: %d, privacy: %d\n", desired_encmode, privacy);
528 if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
529 if (pnetwork->network.InfrastructureMode != pmlmepriv->cur_network.network.InfrastructureMode)
536 /* TODO: Perry: For Power Management */
537 void rtw_atimdone_event_callback(struct adapter *adapter, u8 *pbuf)
539 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("receive atimdone_event\n"));
542 void rtw_survey_event_callback(struct adapter *adapter, u8 *pbuf)
545 struct wlan_bssid_ex *pnetwork;
546 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
548 pnetwork = (struct wlan_bssid_ex *)pbuf;
550 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
551 ("%s, ssid=%s\n", __func__, pnetwork->ssid.ssid));
553 len = get_wlan_bssid_ex_sz(pnetwork);
554 if (len > (sizeof(struct wlan_bssid_ex))) {
555 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
556 ("\n****%s: return a wrong bss ***\n", __func__));
559 spin_lock_bh(&pmlmepriv->lock);
561 /* update IBSS_network 's timestamp */
562 if (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) {
563 if (!memcmp(&pmlmepriv->cur_network.network.MacAddress, pnetwork->MacAddress, ETH_ALEN)) {
564 struct wlan_network *ibss_wlan = NULL;
566 memcpy(pmlmepriv->cur_network.network.ies, pnetwork->ies, 8);
567 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
568 ibss_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->MacAddress);
570 memcpy(ibss_wlan->network.ies, pnetwork->ies, 8);
571 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
574 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
578 /* lock pmlmepriv->lock when you accessing network_q */
579 if (!check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) {
580 if (pnetwork->ssid.ssid[0] == 0)
581 pnetwork->ssid.ssid_length = 0;
582 rtw_add_network(adapter, pnetwork);
586 spin_unlock_bh(&pmlmepriv->lock);
589 void rtw_surveydone_event_callback(struct adapter *adapter, u8 *pbuf)
591 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
593 spin_lock_bh(&pmlmepriv->lock);
595 if (pmlmepriv->wps_probe_req_ie) {
596 pmlmepriv->wps_probe_req_ie_len = 0;
597 kfree(pmlmepriv->wps_probe_req_ie);
598 pmlmepriv->wps_probe_req_ie = NULL;
601 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
602 ("%s: fw_state:%x\n\n", __func__, get_fwstate(pmlmepriv)));
604 if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)) {
605 del_timer_sync(&pmlmepriv->scan_to_timer);
606 _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
608 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("nic status=%x, survey done event comes too late!\n", get_fwstate(pmlmepriv)));
611 rtw_set_signal_stat_timer(&adapter->recvpriv);
613 if (pmlmepriv->to_join) {
614 if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
615 if (!check_fwstate(pmlmepriv, _FW_LINKED)) {
616 set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
618 if (rtw_select_and_join_from_scanned_queue(pmlmepriv) == _SUCCESS) {
619 mod_timer(&pmlmepriv->assoc_timer,
620 jiffies + msecs_to_jiffies(MAX_JOIN_TIMEOUT));
622 struct wlan_bssid_ex *pdev_network = &adapter->registrypriv.dev_network;
623 u8 *pibss = adapter->registrypriv.dev_network.MacAddress;
625 _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
627 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("switching to adhoc master\n"));
629 memcpy(&pdev_network->ssid, &pmlmepriv->assoc_ssid, sizeof(struct ndis_802_11_ssid));
631 rtw_update_registrypriv_dev_network(adapter);
632 rtw_generate_random_ibss(pibss);
634 pmlmepriv->fw_state = WIFI_ADHOC_MASTER_STATE;
636 if (rtw_createbss_cmd(adapter) != _SUCCESS)
637 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Error=>rtw_createbss_cmd status FAIL\n"));
638 pmlmepriv->to_join = false;
644 set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
645 pmlmepriv->to_join = false;
646 s_ret = rtw_select_and_join_from_scanned_queue(pmlmepriv);
647 if (s_ret == _SUCCESS) {
648 mod_timer(&pmlmepriv->assoc_timer,
649 jiffies + msecs_to_jiffies(MAX_JOIN_TIMEOUT));
650 } else if (s_ret == 2) { /* there is no need to wait for join */
651 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
652 rtw_indicate_connect(adapter);
654 DBG_88E("try_to_join, but select scanning queue fail, to_roaming:%d\n", pmlmepriv->to_roaming);
655 if (pmlmepriv->to_roaming != 0) {
656 if (--pmlmepriv->to_roaming == 0 ||
657 rtw_sitesurvey_cmd(adapter, &pmlmepriv->assoc_ssid, 1, NULL, 0) != _SUCCESS) {
658 pmlmepriv->to_roaming = 0;
659 rtw_free_assoc_resources(adapter);
660 rtw_indicate_disconnect(adapter);
662 pmlmepriv->to_join = true;
665 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
670 indicate_wx_scan_complete_event(adapter);
672 spin_unlock_bh(&pmlmepriv->lock);
674 rtw_os_xmit_schedule(adapter);
677 void rtw_dummy_event_callback(struct adapter *adapter, u8 *pbuf)
681 void rtw_fwdbg_event_callback(struct adapter *adapter, u8 *pbuf)
685 static void free_scanqueue(struct mlme_priv *pmlmepriv)
687 struct __queue *free_queue = &pmlmepriv->free_bss_pool;
688 struct __queue *scan_queue = &pmlmepriv->scanned_queue;
689 struct list_head *plist, *phead, *ptemp;
691 RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+%s\n", __func__));
692 spin_lock_bh(&scan_queue->lock);
693 spin_lock_bh(&free_queue->lock);
695 phead = get_list_head(scan_queue);
698 while (plist != phead) {
700 list_del_init(plist);
701 list_add_tail(plist, &free_queue->queue);
705 spin_unlock_bh(&free_queue->lock);
706 spin_unlock_bh(&scan_queue->lock);
710 * rtw_free_assoc_resources: the caller has to lock pmlmepriv->lock
712 void rtw_free_assoc_resources(struct adapter *adapter)
714 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
716 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
717 rtw_free_assoc_resources_locked(adapter);
718 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
722 * rtw_free_assoc_resources_locked: the caller has to lock pmlmepriv->lock
724 void rtw_free_assoc_resources_locked(struct adapter *adapter)
726 struct wlan_network *pwlan = NULL;
727 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
728 struct sta_priv *pstapriv = &adapter->stapriv;
729 struct wlan_network *tgt_network = &pmlmepriv->cur_network;
731 RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+rtw_free_assoc_resources\n"));
732 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
733 ("tgt_network->network.MacAddress=%pM ssid=%s\n",
734 tgt_network->network.MacAddress, tgt_network->network.ssid.ssid));
736 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE | WIFI_AP_STATE)) {
737 struct sta_info *psta;
739 psta = rtw_get_stainfo(&adapter->stapriv, tgt_network->network.MacAddress);
741 spin_lock_bh(&pstapriv->sta_hash_lock);
742 rtw_free_stainfo(adapter, psta);
743 spin_unlock_bh(&pstapriv->sta_hash_lock);
746 if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE | WIFI_ADHOC_MASTER_STATE | WIFI_AP_STATE)) {
747 struct sta_info *psta;
749 rtw_free_all_stainfo(adapter);
751 psta = rtw_get_bcmc_stainfo(adapter);
752 spin_lock_bh(&pstapriv->sta_hash_lock);
753 rtw_free_stainfo(adapter, psta);
754 spin_unlock_bh(&pstapriv->sta_hash_lock);
756 rtw_init_bcmc_stainfo(adapter);
759 pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
761 pwlan->fixed = false;
763 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_free_assoc_resources:pwlan==NULL\n\n"));
765 if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) && (adapter->stapriv.asoc_sta_count == 1)))
766 rtw_free_network_nolock(pmlmepriv, pwlan);
768 pmlmepriv->key_mask = 0;
772 * rtw_indicate_connect: the caller has to lock pmlmepriv->lock
774 void rtw_indicate_connect(struct adapter *padapter)
776 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
778 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+%s\n", __func__));
780 pmlmepriv->to_join = false;
782 if (!check_fwstate(&padapter->mlmepriv, _FW_LINKED)) {
783 set_fwstate(pmlmepriv, _FW_LINKED);
785 led_control_8188eu(padapter, LED_CTL_LINK);
787 rtw_os_indicate_connect(padapter);
790 pmlmepriv->to_roaming = 0;
792 rtw_set_scan_deny(padapter, 3000);
794 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("-%s: fw_state=0x%08x\n", __func__, get_fwstate(pmlmepriv)));
798 * rtw_indicate_disconnect: the caller has to lock pmlmepriv->lock
800 void rtw_indicate_disconnect(struct adapter *padapter)
802 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
804 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+%s\n", __func__));
806 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING | WIFI_UNDER_WPS);
808 if (pmlmepriv->to_roaming > 0)
809 _clr_fwstate_(pmlmepriv, _FW_LINKED);
811 if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) ||
812 (pmlmepriv->to_roaming <= 0)) {
813 rtw_os_indicate_disconnect(padapter);
815 _clr_fwstate_(pmlmepriv, _FW_LINKED);
816 led_control_8188eu(padapter, LED_CTL_NO_LINK);
817 rtw_clear_scan_deny(padapter);
820 rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_DISCONNECT, 1);
823 inline void rtw_indicate_scan_done(struct adapter *padapter, bool aborted)
825 indicate_wx_scan_complete_event(padapter);
828 static struct sta_info *rtw_joinbss_update_stainfo(struct adapter *padapter, struct wlan_network *pnetwork)
831 struct sta_info *bmc_sta, *psta = NULL;
832 struct recv_reorder_ctrl *preorder_ctrl;
833 struct sta_priv *pstapriv = &padapter->stapriv;
835 psta = rtw_get_stainfo(pstapriv, pnetwork->network.MacAddress);
837 psta = rtw_alloc_stainfo(pstapriv, pnetwork->network.MacAddress);
839 if (psta) { /* update ptarget_sta */
840 DBG_88E("%s\n", __func__);
841 psta->aid = pnetwork->join_res;
844 rtw_hal_set_odm_var(padapter, HAL_ODM_STA_INFO, psta, true);
845 /* security related */
846 if (padapter->securitypriv.dot11AuthAlgrthm == dot11AuthAlgrthm_8021X) {
847 padapter->securitypriv.binstallGrpkey = false;
848 padapter->securitypriv.busetkipkey = false;
849 padapter->securitypriv.bgrpkey_handshake = false;
850 psta->ieee8021x_blocked = true;
851 psta->dot118021XPrivacy = padapter->securitypriv.dot11PrivacyAlgrthm;
852 memset((u8 *)&psta->dot118021x_UncstKey, 0, sizeof(union Keytype));
853 memset((u8 *)&psta->dot11tkiprxmickey, 0, sizeof(union Keytype));
854 memset((u8 *)&psta->dot11tkiptxmickey, 0, sizeof(union Keytype));
855 memset((u8 *)&psta->dot11txpn, 0, sizeof(union pn48));
856 memset((u8 *)&psta->dot11rxpn, 0, sizeof(union pn48));
859 * Commented by Albert 2012/07/21
860 * When doing the WPS, the wps_ie_len won't equal to 0
861 * And the Wi-Fi driver shouldn't allow the data
862 * packet to be transmitted.
864 if (padapter->securitypriv.wps_ie_len != 0) {
865 psta->ieee8021x_blocked = true;
866 padapter->securitypriv.wps_ie_len = 0;
868 /* for A-MPDU Rx reordering buffer control for bmc_sta & sta_info */
869 /* if A-MPDU Rx is enabled, resetting rx_ordering_ctrl wstart_b(indicate_seq) to default value = 0xffff */
870 /* todo: check if AP can send A-MPDU packets */
871 for (i = 0; i < 16; i++) {
872 /* preorder_ctrl = &precvpriv->recvreorder_ctrl[i]; */
873 preorder_ctrl = &psta->recvreorder_ctrl[i];
874 preorder_ctrl->enable = false;
875 preorder_ctrl->indicate_seq = 0xffff;
876 preorder_ctrl->wend_b = 0xffff;
877 preorder_ctrl->wsize_b = 64;/* max_ampdu_sz; ex. 32(kbytes) -> wsize_b = 32 */
879 bmc_sta = rtw_get_bcmc_stainfo(padapter);
881 for (i = 0; i < 16; i++) {
882 /* preorder_ctrl = &precvpriv->recvreorder_ctrl[i]; */
883 preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
884 preorder_ctrl->enable = false;
885 preorder_ctrl->indicate_seq = 0xffff;
886 preorder_ctrl->wend_b = 0xffff;
887 preorder_ctrl->wsize_b = 64;/* max_ampdu_sz; ex. 32(kbytes) -> wsize_b = 32 */
891 update_sta_info(padapter, psta);
896 /* pnetwork: returns from rtw_joinbss_event_callback */
897 /* ptarget_wlan: found from scanned_queue */
898 static void rtw_joinbss_update_network(struct adapter *padapter, struct wlan_network *ptarget_wlan, struct wlan_network *pnetwork)
900 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
901 struct wlan_network *cur_network = &pmlmepriv->cur_network;
903 DBG_88E("%s\n", __func__);
905 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
906 ("\nfw_state:%x, BSSID:%pM\n",
907 get_fwstate(pmlmepriv), pnetwork->network.MacAddress));
909 /* why not use ptarget_wlan?? */
910 memcpy(&cur_network->network, &pnetwork->network, pnetwork->network.Length);
911 /* some ies in pnetwork is wrong, so we should use ptarget_wlan ies */
912 cur_network->network.ie_length = ptarget_wlan->network.ie_length;
913 memcpy(&cur_network->network.ies[0], &ptarget_wlan->network.ies[0], MAX_IE_SZ);
915 cur_network->aid = pnetwork->join_res;
917 rtw_set_signal_stat_timer(&padapter->recvpriv);
918 padapter->recvpriv.signal_strength = ptarget_wlan->network.PhyInfo.SignalStrength;
919 padapter->recvpriv.signal_qual = ptarget_wlan->network.PhyInfo.SignalQuality;
920 /* the ptarget_wlan->network.Rssi is raw data, we use ptarget_wlan->network.PhyInfo.SignalStrength instead (has scaled) */
921 padapter->recvpriv.rssi = translate_percentage_to_dbm(ptarget_wlan->network.PhyInfo.SignalStrength);
922 rtw_set_signal_stat_timer(&padapter->recvpriv);
924 /* update fw_state will clr _FW_UNDER_LINKING here indirectly */
925 switch (pnetwork->network.InfrastructureMode) {
926 case Ndis802_11Infrastructure:
927 if (pmlmepriv->fw_state&WIFI_UNDER_WPS)
928 pmlmepriv->fw_state = WIFI_STATION_STATE|WIFI_UNDER_WPS;
930 pmlmepriv->fw_state = WIFI_STATION_STATE;
933 pmlmepriv->fw_state = WIFI_ADHOC_STATE;
936 pmlmepriv->fw_state = WIFI_NULL_STATE;
937 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Invalid network_mode\n"));
941 rtw_update_protection(padapter, (cur_network->network.ies) +
942 sizeof(struct ndis_802_11_fixed_ie),
943 (cur_network->network.ie_length));
944 rtw_update_ht_cap(padapter, cur_network->network.ies, cur_network->network.ie_length);
947 /* Notes: the function could be > passive_level (the same context as Rx tasklet) */
948 /* pnetwork: returns from rtw_joinbss_event_callback */
949 /* ptarget_wlan: found from scanned_queue */
950 /* if join_res > 0, for (fw_state == WIFI_STATION_STATE), we check if "ptarget_sta" & "ptarget_wlan" exist. */
951 /* if join_res > 0, for (fw_state == WIFI_ADHOC_STATE), we only check if "ptarget_wlan" exist. */
952 /* if join_res > 0, update "cur_network->network" from "pnetwork->network" if (ptarget_wlan != NULL). */
954 void rtw_joinbss_event_prehandle(struct adapter *adapter, u8 *pbuf)
956 struct sta_info *ptarget_sta = NULL, *pcur_sta = NULL;
957 struct sta_priv *pstapriv = &adapter->stapriv;
958 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
959 struct wlan_network *pnetwork = (struct wlan_network *)pbuf;
960 struct wlan_network *cur_network = &pmlmepriv->cur_network;
961 struct wlan_network *pcur_wlan = NULL, *ptarget_wlan = NULL;
962 unsigned int the_same_macaddr = false;
964 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("joinbss event call back received with res=%d\n", pnetwork->join_res));
966 rtw_get_encrypt_decrypt_from_registrypriv(adapter);
968 if (pmlmepriv->assoc_ssid.ssid_length == 0)
969 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("@@@@@ joinbss event call back for Any SSid\n"));
971 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("@@@@@ rtw_joinbss_event_callback for SSid:%s\n", pmlmepriv->assoc_ssid.ssid));
973 the_same_macaddr = !memcmp(pnetwork->network.MacAddress, cur_network->network.MacAddress, ETH_ALEN);
975 pnetwork->network.Length = get_wlan_bssid_ex_sz(&pnetwork->network);
976 if (pnetwork->network.Length > sizeof(struct wlan_bssid_ex)) {
977 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n\n ***joinbss_evt_callback return a wrong bss ***\n\n"));
981 spin_lock_bh(&pmlmepriv->lock);
983 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("\nrtw_joinbss_event_callback!! _enter_critical\n"));
985 if (pnetwork->join_res > 0) {
986 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
987 if (check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) {
988 /* s1. find ptarget_wlan */
989 if (check_fwstate(pmlmepriv, _FW_LINKED)) {
990 if (the_same_macaddr) {
991 ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
993 pcur_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
995 pcur_wlan->fixed = false;
997 pcur_sta = rtw_get_stainfo(pstapriv, cur_network->network.MacAddress);
999 spin_lock_bh(&pstapriv->sta_hash_lock);
1000 rtw_free_stainfo(adapter, pcur_sta);
1001 spin_unlock_bh(&pstapriv->sta_hash_lock);
1004 ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->network.MacAddress);
1005 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1007 ptarget_wlan->fixed = true;
1011 ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->network.MacAddress);
1012 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1014 ptarget_wlan->fixed = true;
1018 /* s2. update cur_network */
1020 rtw_joinbss_update_network(adapter, ptarget_wlan, pnetwork);
1022 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Can't find ptarget_wlan when joinbss_event callback\n"));
1023 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1024 goto ignore_joinbss_callback;
1027 /* s3. find ptarget_sta & update ptarget_sta after update cur_network only for station mode */
1028 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1029 ptarget_sta = rtw_joinbss_update_stainfo(adapter, pnetwork);
1031 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Can't update stainfo when joinbss_event callback\n"));
1032 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1033 goto ignore_joinbss_callback;
1037 /* s4. indicate connect */
1038 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1039 rtw_indicate_connect(adapter);
1041 /* adhoc mode will rtw_indicate_connect when rtw_stassoc_event_callback */
1042 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("adhoc mode, fw_state:%x", get_fwstate(pmlmepriv)));
1045 /* s5. Cancel assoc_timer */
1046 del_timer_sync(&pmlmepriv->assoc_timer);
1048 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("Cancel assoc_timer\n"));
1051 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_joinbss_event_callback err: fw_state:%x", get_fwstate(pmlmepriv)));
1052 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1053 goto ignore_joinbss_callback;
1056 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1058 } else if (pnetwork->join_res == -4) {
1059 rtw_reset_securitypriv(adapter);
1060 mod_timer(&pmlmepriv->assoc_timer,
1061 jiffies + msecs_to_jiffies(1));
1063 if (check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) {
1064 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("fail! clear _FW_UNDER_LINKING ^^^fw_state=%x\n", get_fwstate(pmlmepriv)));
1065 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1067 } else { /* if join_res < 0 (join fails), then try again */
1068 mod_timer(&pmlmepriv->assoc_timer,
1069 jiffies + msecs_to_jiffies(1));
1070 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1073 ignore_joinbss_callback:
1074 spin_unlock_bh(&pmlmepriv->lock);
1077 void rtw_joinbss_event_callback(struct adapter *adapter, u8 *pbuf)
1079 struct wlan_network *pnetwork = (struct wlan_network *)pbuf;
1081 mlmeext_joinbss_event_callback(adapter, pnetwork->join_res);
1083 rtw_os_xmit_schedule(adapter);
1086 static u8 search_max_mac_id(struct adapter *padapter)
1089 #if defined(CONFIG_88EU_AP_MODE)
1091 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1092 struct sta_priv *pstapriv = &padapter->stapriv;
1094 struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1095 struct mlme_ext_info *pmlmeinfo = &pmlmeext->mlmext_info;
1097 #if defined(CONFIG_88EU_AP_MODE)
1098 if (check_fwstate(pmlmepriv, WIFI_AP_STATE)) {
1099 for (aid = pstapriv->max_num_sta; aid > 0; aid--) {
1100 if (pstapriv->sta_aid[aid-1])
1106 {/* adhoc id = 31~2 */
1107 for (mac_id = NUM_STA-1; mac_id >= IBSS_START_MAC_ID; mac_id--) {
1108 if (pmlmeinfo->FW_sta_info[mac_id].status == 1)
1115 /* FOR AP , AD-HOC mode */
1116 void rtw_stassoc_hw_rpt(struct adapter *adapter, struct sta_info *psta)
1124 macid = search_max_mac_id(adapter);
1125 rtw_hal_set_hwreg(adapter, HW_VAR_TX_RPT_MAX_MACID, (u8 *)&macid);
1126 media_status = (psta->mac_id<<8)|1; /* MACID|OPMODE:1 connect */
1127 rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status);
1130 void rtw_stassoc_event_callback(struct adapter *adapter, u8 *pbuf)
1132 struct sta_info *psta;
1133 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1134 struct stassoc_event *pstassoc = (struct stassoc_event *)pbuf;
1135 struct wlan_network *cur_network = &pmlmepriv->cur_network;
1136 struct wlan_network *ptarget_wlan = NULL;
1138 if (!rtw_access_ctrl(adapter, pstassoc->macaddr))
1141 #if defined(CONFIG_88EU_AP_MODE)
1142 if (check_fwstate(pmlmepriv, WIFI_AP_STATE)) {
1143 psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);
1145 ap_sta_info_defer_update(adapter, psta);
1146 rtw_stassoc_hw_rpt(adapter, psta);
1151 /* for AD-HOC mode */
1152 psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);
1154 /* the sta have been in sta_info_queue => do nothing */
1155 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1156 ("Error: %s: sta has been in sta_hash_queue\n",
1158 return; /* between drv has received this event before and fw have not yet to set key to CAM_ENTRY) */
1160 psta = rtw_alloc_stainfo(&adapter->stapriv, pstassoc->macaddr);
1162 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1163 ("Can't alloc sta_info when %s\n", __func__));
1166 /* to do: init sta_info variable */
1167 psta->qos_option = 0;
1168 psta->mac_id = (uint)pstassoc->cam_id;
1169 DBG_88E("%s\n", __func__);
1170 /* for ad-hoc mode */
1171 rtw_hal_set_odm_var(adapter, HAL_ODM_STA_INFO, psta, true);
1172 rtw_stassoc_hw_rpt(adapter, psta);
1173 if (adapter->securitypriv.dot11AuthAlgrthm == dot11AuthAlgrthm_8021X)
1174 psta->dot118021XPrivacy = adapter->securitypriv.dot11PrivacyAlgrthm;
1175 psta->ieee8021x_blocked = false;
1176 spin_lock_bh(&pmlmepriv->lock);
1177 if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) ||
1178 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE))) {
1179 if (adapter->stapriv.asoc_sta_count == 2) {
1180 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
1181 ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
1183 ptarget_wlan->fixed = true;
1184 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1185 /* a sta + bc/mc_stainfo (not Ibss_stainfo) */
1186 rtw_indicate_connect(adapter);
1189 spin_unlock_bh(&pmlmepriv->lock);
1190 mlmeext_sta_add_event_callback(adapter, psta);
1193 void rtw_stadel_event_callback(struct adapter *adapter, u8 *pbuf)
1196 struct sta_info *psta;
1197 struct wlan_network *pwlan = NULL;
1198 struct wlan_bssid_ex *pdev_network = NULL;
1200 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1201 struct stadel_event *pstadel = (struct stadel_event *)pbuf;
1202 struct sta_priv *pstapriv = &adapter->stapriv;
1203 struct wlan_network *tgt_network = &pmlmepriv->cur_network;
1205 psta = rtw_get_stainfo(&adapter->stapriv, pstadel->macaddr);
1207 mac_id = psta->mac_id;
1209 mac_id = pstadel->mac_id;
1211 DBG_88E("%s(mac_id=%d)=%pM\n", __func__, mac_id, pstadel->macaddr);
1216 media_status = (mac_id<<8)|0; /* MACID|OPMODE:0 means disconnect */
1217 /* for STA, AP, ADHOC mode, report disconnect stauts to FW */
1218 rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status);
1221 if (check_fwstate(pmlmepriv, WIFI_AP_STATE))
1224 mlmeext_sta_del_event_callback(adapter);
1226 spin_lock_bh(&pmlmepriv->lock);
1228 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1229 if (pmlmepriv->to_roaming > 0)
1230 pmlmepriv->to_roaming--; /* this stadel_event is caused by roaming, decrease to_roaming */
1231 else if (pmlmepriv->to_roaming == 0)
1232 pmlmepriv->to_roaming = adapter->registrypriv.max_roaming_times;
1234 if (*((unsigned short *)(pstadel->rsvd)) != WLAN_REASON_EXPIRATION_CHK)
1235 pmlmepriv->to_roaming = 0; /* don't roam */
1237 rtw_free_uc_swdec_pending_queue(adapter);
1239 rtw_free_assoc_resources(adapter);
1240 rtw_indicate_disconnect(adapter);
1241 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
1242 /* remove the network entry in scanned_queue */
1243 pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
1245 pwlan->fixed = false;
1246 rtw_free_network_nolock(pmlmepriv, pwlan);
1248 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1249 _rtw_roaming(adapter, tgt_network);
1251 if (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) ||
1252 check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
1253 spin_lock_bh(&pstapriv->sta_hash_lock);
1254 rtw_free_stainfo(adapter, psta);
1255 spin_unlock_bh(&pstapriv->sta_hash_lock);
1257 if (adapter->stapriv.asoc_sta_count == 1) { /* a sta + bc/mc_stainfo (not Ibss_stainfo) */
1258 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
1259 /* free old ibss network */
1260 pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
1262 pwlan->fixed = false;
1263 rtw_free_network_nolock(pmlmepriv, pwlan);
1265 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1266 /* re-create ibss */
1267 pdev_network = &adapter->registrypriv.dev_network;
1268 pibss = adapter->registrypriv.dev_network.MacAddress;
1270 memcpy(pdev_network, &tgt_network->network, get_wlan_bssid_ex_sz(&tgt_network->network));
1272 memcpy(&pdev_network->ssid, &pmlmepriv->assoc_ssid, sizeof(struct ndis_802_11_ssid));
1274 rtw_update_registrypriv_dev_network(adapter);
1276 rtw_generate_random_ibss(pibss);
1278 if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
1279 set_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE);
1280 _clr_fwstate_(pmlmepriv, WIFI_ADHOC_STATE);
1283 if (rtw_createbss_cmd(adapter) != _SUCCESS)
1284 RT_TRACE(_module_rtl871x_ioctl_set_c_, _drv_err_, ("***Error=>stadel_event_callback: rtw_createbss_cmd status FAIL***\n "));
1287 spin_unlock_bh(&pmlmepriv->lock);
1290 void rtw_cpwm_event_callback(struct adapter *padapter, u8 *pbuf)
1292 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+%s !!!\n", __func__));
1296 * _rtw_join_timeout_handler - Timeout/failure handler for CMD JoinBss
1297 * @adapter: pointer to struct adapter structure
1299 void _rtw_join_timeout_handler (struct timer_list *t)
1301 struct adapter *adapter = from_timer(adapter, t, mlmepriv.assoc_timer);
1302 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1305 DBG_88E("%s, fw_state=%x\n", __func__, get_fwstate(pmlmepriv));
1307 if (adapter->bDriverStopped || adapter->bSurpriseRemoved)
1310 spin_lock_bh(&pmlmepriv->lock);
1312 if (pmlmepriv->to_roaming > 0) { /* join timeout caused by roaming */
1314 pmlmepriv->to_roaming--;
1315 if (pmlmepriv->to_roaming != 0) { /* try another , */
1316 DBG_88E("%s try another roaming\n", __func__);
1317 do_join_r = rtw_do_join(adapter);
1318 if (do_join_r != _SUCCESS) {
1319 DBG_88E("%s roaming do_join return %d\n", __func__, do_join_r);
1324 DBG_88E("%s We've try roaming but fail\n", __func__);
1325 rtw_indicate_disconnect(adapter);
1329 rtw_indicate_disconnect(adapter);
1330 free_scanqueue(pmlmepriv);/* */
1332 spin_unlock_bh(&pmlmepriv->lock);
1336 * rtw_scan_timeout_handler - Timeout/Failure handler for CMD SiteSurvey
1337 * @adapter: pointer to struct adapter structure
1339 void rtw_scan_timeout_handler (struct timer_list *t)
1341 struct adapter *adapter = from_timer(adapter, t,
1342 mlmepriv.scan_to_timer);
1343 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1345 DBG_88E(FUNC_ADPT_FMT" fw_state=%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
1346 spin_lock_bh(&pmlmepriv->lock);
1347 _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1348 spin_unlock_bh(&pmlmepriv->lock);
1349 rtw_indicate_scan_done(adapter, true);
1352 static void rtw_auto_scan_handler(struct adapter *padapter)
1354 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1356 /* auto site survey per 60sec */
1357 if (pmlmepriv->scan_interval > 0) {
1358 pmlmepriv->scan_interval--;
1359 if (pmlmepriv->scan_interval == 0) {
1360 DBG_88E("%s\n", __func__);
1361 rtw_set_802_11_bssid_list_scan(padapter, NULL, 0);
1362 pmlmepriv->scan_interval = SCAN_INTERVAL;/* 30*2 sec = 60sec */
1367 void rtw_dynamic_check_timer_handlder(struct timer_list *t)
1369 struct adapter *adapter = from_timer(adapter, t,
1370 mlmepriv.dynamic_chk_timer);
1371 struct registry_priv *pregistrypriv = &adapter->registrypriv;
1375 if (!adapter->hw_init_completed)
1377 if ((adapter->bDriverStopped) || (adapter->bSurpriseRemoved))
1379 if (adapter->net_closed)
1381 rtw_dynamic_chk_wk_cmd(adapter);
1383 if (pregistrypriv->wifi_spec == 1) {
1384 /* auto site survey */
1385 rtw_auto_scan_handler(adapter);
1388 mod_timer(&adapter->mlmepriv.dynamic_chk_timer,
1389 jiffies + msecs_to_jiffies(2000));
1392 #define RTW_SCAN_RESULT_EXPIRE 2000
1395 * Select a new join candidate from the original @param candidate and @param competitor
1396 * @return true: candidate is updated
1397 * @return false: candidate is not updated
1399 static int rtw_check_join_candidate(struct mlme_priv *pmlmepriv
1400 , struct wlan_network **candidate, struct wlan_network *competitor)
1402 int updated = false;
1403 unsigned long since_scan;
1404 struct adapter *adapter = container_of(pmlmepriv, struct adapter,
1407 /* check bssid, if needed */
1408 if (pmlmepriv->assoc_by_bssid) {
1409 if (memcmp(competitor->network.MacAddress, pmlmepriv->assoc_bssid, ETH_ALEN))
1413 /* check ssid, if needed */
1414 if (pmlmepriv->assoc_ssid.ssid_length) {
1415 if (competitor->network.ssid.ssid_length != pmlmepriv->assoc_ssid.ssid_length ||
1416 memcmp(competitor->network.ssid.ssid, pmlmepriv->assoc_ssid.ssid, pmlmepriv->assoc_ssid.ssid_length))
1420 if (!rtw_is_desired_network(adapter, competitor))
1423 if (pmlmepriv->to_roaming) {
1424 since_scan = jiffies - competitor->last_scanned;
1425 if (jiffies_to_msecs(since_scan) >= RTW_SCAN_RESULT_EXPIRE ||
1426 !is_same_ess(&competitor->network, &pmlmepriv->cur_network.network))
1430 if (!*candidate || (*candidate)->network.Rssi < competitor->network.Rssi) {
1431 *candidate = competitor;
1435 DBG_88E("[by_bssid:%u][assoc_ssid:%s]new candidate: %s(%pM rssi:%d\n",
1436 pmlmepriv->assoc_by_bssid,
1437 pmlmepriv->assoc_ssid.ssid,
1438 (*candidate)->network.ssid.ssid,
1439 (*candidate)->network.MacAddress,
1440 (int)(*candidate)->network.Rssi);
1441 DBG_88E("[to_roaming:%u]\n", pmlmepriv->to_roaming);
1450 * The caller of the sub-routine will be in critical section...
1451 * The caller must hold the following spinlock
1455 int rtw_select_and_join_from_scanned_queue(struct mlme_priv *pmlmepriv)
1458 struct list_head *phead;
1459 struct adapter *adapter;
1460 struct __queue *queue = &pmlmepriv->scanned_queue;
1461 struct wlan_network *pnetwork = NULL;
1462 struct wlan_network *candidate = NULL;
1463 u8 supp_ant_div = false;
1465 spin_lock_bh(&pmlmepriv->scanned_queue.lock);
1466 phead = get_list_head(queue);
1467 adapter = (struct adapter *)pmlmepriv->nic_hdl;
1468 pmlmepriv->pscanned = phead->next;
1469 while (phead != pmlmepriv->pscanned) {
1470 pnetwork = container_of(pmlmepriv->pscanned, struct wlan_network, list);
1472 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("%s return _FAIL:(pnetwork==NULL)\n", __func__));
1476 pmlmepriv->pscanned = pmlmepriv->pscanned->next;
1477 rtw_check_join_candidate(pmlmepriv, &candidate, pnetwork);
1480 DBG_88E("%s: return _FAIL(candidate==NULL)\n", __func__);
1484 DBG_88E("%s: candidate: %s(%pM ch:%u)\n", __func__,
1485 candidate->network.ssid.ssid, candidate->network.MacAddress,
1486 candidate->network.Configuration.DSConfig);
1489 /* check for situation of _FW_LINKED */
1490 if (check_fwstate(pmlmepriv, _FW_LINKED)) {
1491 DBG_88E("%s: _FW_LINKED while ask_for_joinbss!!!\n", __func__);
1493 rtw_disassoc_cmd(adapter, 0, true);
1494 rtw_indicate_disconnect(adapter);
1495 rtw_free_assoc_resources_locked(adapter);
1498 rtw_hal_get_def_var(adapter, HAL_DEF_IS_SUPPORT_ANT_DIV, &(supp_ant_div));
1502 rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(cur_ant));
1503 DBG_88E("#### Opt_Ant_(%s), cur_Ant(%s)\n",
1504 (candidate->network.PhyInfo.Optimum_antenna == 2) ? "A" : "B",
1505 (cur_ant == 2) ? "A" : "B"
1509 ret = rtw_joinbss_cmd(adapter, candidate);
1512 spin_unlock_bh(&pmlmepriv->scanned_queue.lock);
1516 int rtw_set_auth(struct adapter *adapter, struct security_priv *psecuritypriv)
1518 struct cmd_obj *pcmd;
1519 struct setauth_parm *psetauthparm;
1520 struct cmd_priv *pcmdpriv = &adapter->cmdpriv;
1523 pcmd = kzalloc(sizeof(struct cmd_obj), GFP_KERNEL);
1525 res = _FAIL; /* try again */
1529 psetauthparm = kzalloc(sizeof(struct setauth_parm), GFP_KERNEL);
1530 if (!psetauthparm) {
1535 psetauthparm->mode = (unsigned char)psecuritypriv->dot11AuthAlgrthm;
1536 pcmd->cmdcode = _SetAuth_CMD_;
1537 pcmd->parmbuf = (unsigned char *)psetauthparm;
1538 pcmd->cmdsz = sizeof(struct setauth_parm);
1541 INIT_LIST_HEAD(&pcmd->list);
1542 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1543 ("after enqueue set_auth_cmd, auth_mode=%x\n",
1544 psecuritypriv->dot11AuthAlgrthm));
1545 res = rtw_enqueue_cmd(pcmdpriv, pcmd);
1550 int rtw_set_key(struct adapter *adapter, struct security_priv *psecuritypriv, int keyid, u8 set_tx)
1553 struct cmd_obj *pcmd;
1554 struct setkey_parm *psetkeyparm;
1555 struct cmd_priv *pcmdpriv = &adapter->cmdpriv;
1556 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1559 pcmd = kzalloc(sizeof(struct cmd_obj), GFP_KERNEL);
1561 return _FAIL; /* try again */
1563 psetkeyparm = kzalloc(sizeof(struct setkey_parm), GFP_KERNEL);
1569 if (psecuritypriv->dot11AuthAlgrthm == dot11AuthAlgrthm_8021X) {
1570 psetkeyparm->algorithm = (unsigned char)psecuritypriv->dot118021XGrpPrivacy;
1571 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1572 ("\n %s: psetkeyparm->algorithm=(unsigned char)psecuritypriv->dot118021XGrpPrivacy=%d\n",
1573 __func__, psetkeyparm->algorithm));
1575 psetkeyparm->algorithm = (u8)psecuritypriv->dot11PrivacyAlgrthm;
1576 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1577 ("\n %s: psetkeyparm->algorithm=(u8)psecuritypriv->dot11PrivacyAlgrthm=%d\n",
1578 __func__, psetkeyparm->algorithm));
1580 psetkeyparm->keyid = (u8)keyid;/* 0~3 */
1581 psetkeyparm->set_tx = set_tx;
1582 pmlmepriv->key_mask |= BIT(psetkeyparm->keyid);
1583 DBG_88E("==> %s algorithm(%x), keyid(%x), key_mask(%x)\n",
1584 __func__, psetkeyparm->algorithm, psetkeyparm->keyid,
1585 pmlmepriv->key_mask);
1586 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1587 ("\n %s: psetkeyparm->algorithm=%d psetkeyparm->keyid=(u8)keyid=%d\n",
1588 __func__, psetkeyparm->algorithm, keyid));
1590 switch (psetkeyparm->algorithm) {
1593 memcpy(&psetkeyparm->key[0],
1594 &psecuritypriv->dot11DefKey[keyid].skey[0], keylen);
1598 memcpy(&psetkeyparm->key[0],
1599 &psecuritypriv->dot11DefKey[keyid].skey[0], keylen);
1603 memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
1604 psetkeyparm->grpkey = 1;
1608 memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
1609 psetkeyparm->grpkey = 1;
1612 RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,
1613 ("\n %s:psecuritypriv->dot11PrivacyAlgrthm=%x (must be 1 or 2 or 4 or 5)\n",
1614 __func__, psecuritypriv->dot11PrivacyAlgrthm));
1618 pcmd->cmdcode = _SetKey_CMD_;
1619 pcmd->parmbuf = (u8 *)psetkeyparm;
1620 pcmd->cmdsz = sizeof(struct setkey_parm);
1623 INIT_LIST_HEAD(&pcmd->list);
1624 return rtw_enqueue_cmd(pcmdpriv, pcmd);
1633 /* adjust ies for rtw_joinbss_cmd in WMM */
1634 int rtw_restruct_wmm_ie(struct adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len, uint initial_out_len)
1636 unsigned int ielength = 0;
1639 /* i = 12; after the fixed IE */
1640 for (i = 12; i < in_len; i += (in_ie[i + 1] + 2) /* to the next IE element */) {
1641 ielength = initial_out_len;
1643 if (in_ie[i] == 0xDD && in_ie[i+2] == 0x00 && in_ie[i+3] == 0x50 && in_ie[i+4] == 0xF2 && in_ie[i+5] == 0x02 && i+5 < in_len) {
1644 /* WMM element ID and OUI */
1645 /* Append WMM IE to the last index of out_ie */
1647 for (j = i; j < i + 9; j++) {
1648 out_ie[ielength] = in_ie[j];
1651 out_ie[initial_out_len + 1] = 0x07;
1652 out_ie[initial_out_len + 6] = 0x00;
1653 out_ie[initial_out_len + 8] = 0x00;
1661 * Ported from 8185: IsInPreAuthKeyList().
1662 * (Renamed from SecIsInPreAuthKeyList(), 2006-10-13.)
1663 * Added by Annie, 2006-05-07.
1666 * -1 :if there is no pre-auth key in the table
1667 * >= 0 :if there is pre-auth key, and return the entry id
1669 static int SecIsInPMKIDList(struct adapter *Adapter, u8 *bssid)
1671 struct security_priv *psecuritypriv = &Adapter->securitypriv;
1675 if ((psecuritypriv->PMKIDList[i].bUsed) &&
1676 (!memcmp(psecuritypriv->PMKIDList[i].Bssid, bssid, ETH_ALEN)))
1678 } while (++i < NUM_PMKID_CACHE);
1680 if (i == NUM_PMKID_CACHE)
1681 i = -1;/* Could not find. */
1687 /* Check the RSN IE length */
1688 /* If the RSN IE length <= 20, the RSN IE didn't include the PMKID information */
1689 /* 0-11th element in the array are the fixed IE */
1690 /* 12th element in the array is the IE */
1691 /* 13th element in the array is the IE length */
1694 static int rtw_append_pmkid(struct adapter *Adapter, int iEntry, u8 *ie, uint ie_len)
1696 struct security_priv *psecuritypriv = &Adapter->securitypriv;
1699 /* The RSN IE didn't include the PMK ID, append the PMK information */
1702 ie[ie_len] = 0; /* PMKID count = 0x0100 */
1704 memcpy(&ie[ie_len], &psecuritypriv->PMKIDList[iEntry].PMKID, 16);
1707 ie[13] += 18;/* PMKID length = 2+16 */
1712 int rtw_restruct_sec_ie(struct adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len)
1717 struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1718 struct security_priv *psecuritypriv = &adapter->securitypriv;
1719 uint ndisauthmode = psecuritypriv->ndisauthtype;
1720 uint ndissecuritytype = psecuritypriv->ndisencryptstatus;
1722 RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_,
1723 ("+%s: ndisauthmode=%d ndissecuritytype=%d\n", __func__,
1724 ndisauthmode, ndissecuritytype));
1726 /* copy fixed ie only */
1727 memcpy(out_ie, in_ie, 12);
1729 if ((ndisauthmode == Ndis802_11AuthModeWPA) ||
1730 (ndisauthmode == Ndis802_11AuthModeWPAPSK))
1731 authmode = _WPA_IE_ID_;
1732 if ((ndisauthmode == Ndis802_11AuthModeWPA2) ||
1733 (ndisauthmode == Ndis802_11AuthModeWPA2PSK))
1734 authmode = _WPA2_IE_ID_;
1736 if (check_fwstate(pmlmepriv, WIFI_UNDER_WPS)) {
1737 memcpy(out_ie+ielength, psecuritypriv->wps_ie, psecuritypriv->wps_ie_len);
1739 ielength += psecuritypriv->wps_ie_len;
1740 } else if ((authmode == _WPA_IE_ID_) || (authmode == _WPA2_IE_ID_)) {
1741 /* copy RSN or SSN */
1742 memcpy(&out_ie[ielength], &psecuritypriv->supplicant_ie[0], psecuritypriv->supplicant_ie[1]+2);
1743 ielength += psecuritypriv->supplicant_ie[1]+2;
1744 rtw_report_sec_ie(adapter, authmode, psecuritypriv->supplicant_ie);
1747 iEntry = SecIsInPMKIDList(adapter, pmlmepriv->assoc_bssid);
1748 if (iEntry >= 0 && authmode == _WPA2_IE_ID_)
1749 ielength = rtw_append_pmkid(adapter, iEntry, out_ie, ielength);
1754 void rtw_init_registrypriv_dev_network(struct adapter *adapter)
1756 struct registry_priv *pregistrypriv = &adapter->registrypriv;
1757 struct eeprom_priv *peepriv = &adapter->eeprompriv;
1758 struct wlan_bssid_ex *pdev_network = &pregistrypriv->dev_network;
1759 u8 *myhwaddr = myid(peepriv);
1761 memcpy(pdev_network->MacAddress, myhwaddr, ETH_ALEN);
1763 memcpy(&pdev_network->ssid, &pregistrypriv->ssid, sizeof(struct ndis_802_11_ssid));
1765 pdev_network->Configuration.Length = sizeof(struct ndis_802_11_config);
1766 pdev_network->Configuration.BeaconPeriod = 100;
1767 pdev_network->Configuration.FHConfig.Length = 0;
1768 pdev_network->Configuration.FHConfig.HopPattern = 0;
1769 pdev_network->Configuration.FHConfig.HopSet = 0;
1770 pdev_network->Configuration.FHConfig.DwellTime = 0;
1773 void rtw_update_registrypriv_dev_network(struct adapter *adapter)
1776 struct registry_priv *pregistrypriv = &adapter->registrypriv;
1777 struct wlan_bssid_ex *pdev_network = &pregistrypriv->dev_network;
1778 struct security_priv *psecuritypriv = &adapter->securitypriv;
1779 struct wlan_network *cur_network = &adapter->mlmepriv.cur_network;
1781 pdev_network->Privacy = psecuritypriv->dot11PrivacyAlgrthm > 0 ? 1 : 0; /* adhoc no 802.1x */
1783 pdev_network->Rssi = 0;
1785 switch (pregistrypriv->wireless_mode) {
1787 pdev_network->NetworkTypeInUse = Ndis802_11DS;
1791 case WIRELESS_11_24N:
1792 case WIRELESS_11G_24N:
1793 case WIRELESS_11BG_24N:
1794 pdev_network->NetworkTypeInUse = Ndis802_11OFDM24;
1797 pdev_network->NetworkTypeInUse = Ndis802_11OFDM24;
1801 pdev_network->Configuration.DSConfig = pregistrypriv->channel;
1802 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_,
1803 ("pregistrypriv->channel=%d, pdev_network->Configuration.DSConfig=0x%x\n",
1804 pregistrypriv->channel, pdev_network->Configuration.DSConfig));
1806 if (cur_network->network.InfrastructureMode == Ndis802_11IBSS)
1807 pdev_network->Configuration.ATIMWindow = 0;
1809 pdev_network->InfrastructureMode = cur_network->network.InfrastructureMode;
1811 /* 1. Supported rates */
1814 sz = rtw_generate_ie(pregistrypriv);
1815 pdev_network->ie_length = sz;
1816 pdev_network->Length = get_wlan_bssid_ex_sz((struct wlan_bssid_ex *)pdev_network);
1818 /* notes: translate ie_length & Length after assign the Length to cmdsz in createbss_cmd(); */
1819 /* pdev_network->ie_length = cpu_to_le32(sz); */
1822 void rtw_get_encrypt_decrypt_from_registrypriv(struct adapter *adapter)
1826 /* the function is at passive_level */
1827 void rtw_joinbss_reset(struct adapter *padapter)
1830 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1831 struct ht_priv *phtpriv = &pmlmepriv->htpriv;
1833 /* todo: if you want to do something io/reg/hw setting before join_bss, please add code here */
1834 pmlmepriv->num_FortyMHzIntolerant = 0;
1836 pmlmepriv->num_sta_no_ht = 0;
1838 phtpriv->ampdu_enable = false;/* reset to disabled */
1840 /* TH = 1 => means that invalidate usb rx aggregation */
1841 /* TH = 0 => means that validate usb rx aggregation, use init value. */
1842 if (phtpriv->ht_option) {
1843 if (padapter->registrypriv.wifi_spec == 1)
1847 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
1850 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
1854 /* the function is >= passive_level */
1855 unsigned int rtw_restructure_ht_ie(struct adapter *padapter, u8 *in_ie, u8 *out_ie, uint in_len, uint *pout_len)
1858 enum ht_cap_ampdu_factor max_rx_ampdu_factor;
1860 unsigned char WMM_IE[] = {0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
1861 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1862 struct qos_priv *pqospriv = &pmlmepriv->qospriv;
1863 struct ht_priv *phtpriv = &pmlmepriv->htpriv;
1864 u32 rx_packet_offset, max_recvbuf_sz;
1866 phtpriv->ht_option = false;
1868 p = rtw_get_ie(in_ie+12, _HT_CAPABILITY_IE_, &ielen, in_len-12);
1870 if (p && ielen > 0) {
1871 struct ieee80211_ht_cap ht_cap;
1873 if (pqospriv->qos_option == 0) {
1874 out_len = *pout_len;
1875 rtw_set_ie(out_ie + out_len, _VENDOR_SPECIFIC_IE_,
1876 _WMM_IE_Length_, WMM_IE, pout_len);
1878 pqospriv->qos_option = 1;
1881 out_len = *pout_len;
1883 memset(&ht_cap, 0, sizeof(struct ieee80211_ht_cap));
1885 ht_cap.cap_info = cpu_to_le16(IEEE80211_HT_CAP_SUP_WIDTH |
1886 IEEE80211_HT_CAP_SGI_20 |
1887 IEEE80211_HT_CAP_SGI_40 |
1888 IEEE80211_HT_CAP_TX_STBC |
1889 IEEE80211_HT_CAP_DSSSCCK40);
1891 rtw_hal_get_def_var(padapter, HAL_DEF_RX_PACKET_OFFSET, &rx_packet_offset);
1892 rtw_hal_get_def_var(padapter, HAL_DEF_MAX_RECVBUF_SZ, &max_recvbuf_sz);
1895 ampdu_params_info [1:0]:Max AMPDU Len => 0:8k , 1:16k, 2:32k, 3:64k
1896 ampdu_params_info [4:2]:Min MPDU Start Spacing
1899 rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR, &max_rx_ampdu_factor);
1900 ht_cap.ampdu_params_info = max_rx_ampdu_factor & 0x03;
1902 if (padapter->securitypriv.dot11PrivacyAlgrthm == _AES_)
1903 ht_cap.ampdu_params_info |= IEEE80211_HT_CAP_AMPDU_DENSITY & (0x07 << 2);
1905 ht_cap.ampdu_params_info |= IEEE80211_HT_CAP_AMPDU_DENSITY & 0x00;
1907 rtw_set_ie(out_ie+out_len, _HT_CAPABILITY_IE_,
1908 sizeof(struct ieee80211_ht_cap),
1909 (unsigned char *)&ht_cap, pout_len);
1911 phtpriv->ht_option = true;
1913 p = rtw_get_ie(in_ie+12, _HT_ADD_INFO_IE_, &ielen, in_len-12);
1914 if (p && (ielen == sizeof(struct ieee80211_ht_addt_info))) {
1915 out_len = *pout_len;
1916 rtw_set_ie(out_ie+out_len, _HT_ADD_INFO_IE_, ielen, p+2, pout_len);
1919 return phtpriv->ht_option;
1922 /* the function is > passive_level (in critical_section) */
1923 void rtw_update_ht_cap(struct adapter *padapter, u8 *pie, uint ie_len)
1925 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1926 struct ht_priv *phtpriv = &pmlmepriv->htpriv;
1927 struct registry_priv *pregistrypriv = &padapter->registrypriv;
1928 struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1929 struct mlme_ext_info *pmlmeinfo = &pmlmeext->mlmext_info;
1931 if (!phtpriv->ht_option)
1934 if ((!pmlmeinfo->HT_info_enable) || (!pmlmeinfo->HT_caps_enable))
1937 DBG_88E("+%s()\n", __func__);
1939 /* maybe needs check if ap supports rx ampdu. */
1940 if ((!phtpriv->ampdu_enable) && (pregistrypriv->ampdu_enable == 1)) {
1941 if (pregistrypriv->wifi_spec == 1)
1942 phtpriv->ampdu_enable = false;
1944 phtpriv->ampdu_enable = true;
1945 } else if (pregistrypriv->ampdu_enable == 2) {
1946 phtpriv->ampdu_enable = true;
1949 /* update cur_bwmode & cur_ch_offset */
1950 if ((pregistrypriv->cbw40_enable) &&
1951 (le16_to_cpu(pmlmeinfo->HT_caps.cap_info) & BIT(1)) &&
1952 (pmlmeinfo->HT_info.infos[0] & BIT(2))) {
1955 /* update the MCS rates */
1956 for (i = 0; i < 16; i++)
1957 ((u8 *)&pmlmeinfo->HT_caps.mcs)[i] &= MCS_rate_1R[i];
1958 /* switch to the 40M Hz mode according to the AP */
1959 pmlmeext->cur_bwmode = HT_CHANNEL_WIDTH_40;
1960 switch ((pmlmeinfo->HT_info.infos[0] & 0x3)) {
1961 case HT_EXTCHNL_OFFSET_UPPER:
1962 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_LOWER;
1964 case HT_EXTCHNL_OFFSET_LOWER:
1965 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_UPPER;
1968 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
1973 /* Config SM Power Save setting */
1974 pmlmeinfo->SM_PS = (le16_to_cpu(pmlmeinfo->HT_caps.cap_info) & 0x0C) >> 2;
1975 if (pmlmeinfo->SM_PS == WLAN_HT_CAP_SM_PS_STATIC)
1976 DBG_88E("%s(): WLAN_HT_CAP_SM_PS_STATIC\n", __func__);
1978 /* Config current HT Protection mode. */
1979 pmlmeinfo->HT_protection = pmlmeinfo->HT_info.infos[1] & 0x3;
1982 void rtw_issue_addbareq_cmd(struct adapter *padapter, struct xmit_frame *pxmitframe)
1986 struct sta_info *psta = NULL;
1987 struct ht_priv *phtpriv;
1988 struct pkt_attrib *pattrib = &pxmitframe->attrib;
1990 if (is_multicast_ether_addr(pattrib->ra) ||
1991 padapter->mlmepriv.LinkDetectInfo.NumTxOkInPeriod < 100)
1994 priority = pattrib->priority;
1997 psta = pattrib->psta;
1999 psta = rtw_get_stainfo(&padapter->stapriv, pattrib->ra);
2004 phtpriv = &psta->htpriv;
2006 if ((phtpriv->ht_option) && (phtpriv->ampdu_enable)) {
2007 issued = (phtpriv->agg_enable_bitmap >> priority) & 0x1;
2008 issued |= (phtpriv->candidate_tid_bitmap >> priority) & 0x1;
2011 DBG_88E("%s, p=%d\n", __func__, priority);
2012 psta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
2013 rtw_addbareq_cmd(padapter, (u8)priority, pattrib->ra);
2018 void rtw_roaming(struct adapter *padapter, struct wlan_network *tgt_network)
2020 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2022 spin_lock_bh(&pmlmepriv->lock);
2023 _rtw_roaming(padapter, tgt_network);
2024 spin_unlock_bh(&pmlmepriv->lock);
2027 void _rtw_roaming(struct adapter *padapter, struct wlan_network *tgt_network)
2029 struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2031 struct wlan_network *pnetwork;
2034 pnetwork = tgt_network;
2036 pnetwork = &pmlmepriv->cur_network;
2038 if (pmlmepriv->to_roaming > 0) {
2039 DBG_88E("roaming from %s(%pM length:%d\n",
2040 pnetwork->network.ssid.ssid, pnetwork->network.MacAddress,
2041 pnetwork->network.ssid.ssid_length);
2042 memcpy(&pmlmepriv->assoc_ssid, &pnetwork->network.ssid, sizeof(struct ndis_802_11_ssid));
2044 pmlmepriv->assoc_by_bssid = false;
2047 do_join_r = rtw_do_join(padapter);
2048 if (do_join_r == _SUCCESS) {
2051 DBG_88E("roaming do_join return %d\n", do_join_r);
2052 pmlmepriv->to_roaming--;
2054 if (pmlmepriv->to_roaming > 0) {
2057 DBG_88E("%s(%d) -to roaming fail, indicate_disconnect\n", __func__, __LINE__);
2058 rtw_indicate_disconnect(padapter);