Path: blob/main/sys/contrib/dev/iwlwifi/mvm/ftm-responder.c
48287 views
// SPDX-License-Identifier: GPL-2.0 OR BSD-3-Clause1/*2* Copyright (C) 2015-2017 Intel Deutschland GmbH3* Copyright (C) 2018-2024 Intel Corporation4*/5#include <net/cfg80211.h>6#include <linux/etherdevice.h>7#include "mvm.h"8#include "constants.h"910struct iwl_mvm_pasn_sta {11struct list_head list;12struct iwl_mvm_int_sta int_sta;13u8 addr[ETH_ALEN];1415/* must be last as it followed by buffer holding the key */16struct ieee80211_key_conf keyconf;17};1819struct iwl_mvm_pasn_hltk_data {20u8 *addr;21u8 cipher;22u8 *hltk;23};2425static int iwl_mvm_ftm_responder_set_bw_v1(struct cfg80211_chan_def *chandef,26u8 *bw, u8 *ctrl_ch_position)27{28switch (chandef->width) {29case NL80211_CHAN_WIDTH_20_NOHT:30*bw = IWL_TOF_BW_20_LEGACY;31break;32case NL80211_CHAN_WIDTH_20:33*bw = IWL_TOF_BW_20_HT;34break;35case NL80211_CHAN_WIDTH_40:36*bw = IWL_TOF_BW_40;37*ctrl_ch_position = iwl_mvm_get_ctrl_pos(chandef);38break;39case NL80211_CHAN_WIDTH_80:40*bw = IWL_TOF_BW_80;41*ctrl_ch_position = iwl_mvm_get_ctrl_pos(chandef);42break;43default:44return -EOPNOTSUPP;45}4647return 0;48}4950static int iwl_mvm_ftm_responder_set_bw_v2(struct cfg80211_chan_def *chandef,51u8 *format_bw, u8 *ctrl_ch_position,52u8 cmd_ver)53{54switch (chandef->width) {55case NL80211_CHAN_WIDTH_20_NOHT:56*format_bw = IWL_LOCATION_FRAME_FORMAT_LEGACY;57*format_bw |= IWL_LOCATION_BW_20MHZ << LOCATION_BW_POS;58break;59case NL80211_CHAN_WIDTH_20:60*format_bw = IWL_LOCATION_FRAME_FORMAT_HT;61*format_bw |= IWL_LOCATION_BW_20MHZ << LOCATION_BW_POS;62break;63case NL80211_CHAN_WIDTH_40:64*format_bw = IWL_LOCATION_FRAME_FORMAT_HT;65*format_bw |= IWL_LOCATION_BW_40MHZ << LOCATION_BW_POS;66*ctrl_ch_position = iwl_mvm_get_ctrl_pos(chandef);67break;68case NL80211_CHAN_WIDTH_80:69*format_bw = IWL_LOCATION_FRAME_FORMAT_VHT;70*format_bw |= IWL_LOCATION_BW_80MHZ << LOCATION_BW_POS;71*ctrl_ch_position = iwl_mvm_get_ctrl_pos(chandef);72break;73case NL80211_CHAN_WIDTH_160:74if (cmd_ver >= 9) {75*format_bw = IWL_LOCATION_FRAME_FORMAT_HE;76*format_bw |= IWL_LOCATION_BW_160MHZ << LOCATION_BW_POS;77*ctrl_ch_position = iwl_mvm_get_ctrl_pos(chandef);78break;79}80fallthrough;81default:82return -EOPNOTSUPP;83}8485return 0;86}8788static void89iwl_mvm_ftm_responder_set_ndp(struct iwl_mvm *mvm,90struct iwl_tof_responder_config_cmd *cmd)91{92/* Up to 2 R2I STS are allowed on the responder */93u32 r2i_max_sts = IWL_MVM_FTM_R2I_MAX_STS < 2 ?94IWL_MVM_FTM_R2I_MAX_STS : 1;9596cmd->r2i_ndp_params = IWL_MVM_FTM_R2I_MAX_REP |97(r2i_max_sts << IWL_RESPONDER_STS_POS) |98(IWL_MVM_FTM_R2I_MAX_TOTAL_LTF << IWL_RESPONDER_TOTAL_LTF_POS);99cmd->i2r_ndp_params = IWL_MVM_FTM_I2R_MAX_REP |100(IWL_MVM_FTM_I2R_MAX_STS << IWL_RESPONDER_STS_POS) |101(IWL_MVM_FTM_I2R_MAX_TOTAL_LTF << IWL_RESPONDER_TOTAL_LTF_POS);102cmd->cmd_valid_fields |=103cpu_to_le32(IWL_TOF_RESPONDER_CMD_VALID_NDP_PARAMS);104}105106static int107iwl_mvm_ftm_responder_cmd(struct iwl_mvm *mvm,108struct ieee80211_vif *vif,109struct cfg80211_chan_def *chandef,110struct ieee80211_bss_conf *link_conf)111{112u32 cmd_id = WIDE_ID(LOCATION_GROUP, TOF_RESPONDER_CONFIG_CMD);113struct iwl_mvm_vif *mvmvif = iwl_mvm_vif_from_mac80211(vif);114/*115* The command structure is the same for versions 6, 7 and 8 (only the116* field interpretation is different), so the same struct can be use117* for all cases.118*/119struct iwl_tof_responder_config_cmd cmd = {120.channel_num = chandef->chan->hw_value,121.cmd_valid_fields =122cpu_to_le32(IWL_TOF_RESPONDER_CMD_VALID_CHAN_INFO |123IWL_TOF_RESPONDER_CMD_VALID_BSSID |124IWL_TOF_RESPONDER_CMD_VALID_STA_ID),125.sta_id = mvmvif->link[link_conf->link_id]->bcast_sta.sta_id,126};127u8 cmd_ver = iwl_fw_lookup_cmd_ver(mvm->fw, cmd_id, 6);128int err;129int cmd_size;130131lockdep_assert_held(&mvm->mutex);132133if (cmd_ver >= 10) {134cmd.band =135iwl_mvm_phy_band_from_nl80211(chandef->chan->band);136}137138/* Use a default of bss_color=1 for now */139if (cmd_ver >= 9) {140cmd.cmd_valid_fields |=141cpu_to_le32(IWL_TOF_RESPONDER_CMD_VALID_BSS_COLOR |142IWL_TOF_RESPONDER_CMD_VALID_MIN_MAX_TIME_BETWEEN_MSR);143cmd.bss_color = 1;144cmd.min_time_between_msr =145cpu_to_le16(IWL_MVM_FTM_NON_TB_MIN_TIME_BETWEEN_MSR);146cmd.max_time_between_msr =147cpu_to_le16(IWL_MVM_FTM_NON_TB_MAX_TIME_BETWEEN_MSR);148cmd_size = sizeof(struct iwl_tof_responder_config_cmd_v9);149} else {150/* All versions up to version 8 have the same size */151cmd_size = sizeof(struct iwl_tof_responder_config_cmd_v8);152}153154if (cmd_ver >= 8)155iwl_mvm_ftm_responder_set_ndp(mvm, (void *)&cmd);156157if (cmd_ver >= 7)158err = iwl_mvm_ftm_responder_set_bw_v2(chandef, &cmd.format_bw,159&cmd.ctrl_ch_position,160cmd_ver);161else162err = iwl_mvm_ftm_responder_set_bw_v1(chandef, &cmd.format_bw,163&cmd.ctrl_ch_position);164165if (err) {166IWL_ERR(mvm, "Failed to set responder bandwidth\n");167return err;168}169170memcpy(cmd.bssid, vif->addr, ETH_ALEN);171172return iwl_mvm_send_cmd_pdu(mvm, cmd_id, 0, cmd_size, &cmd);173}174175static int176iwl_mvm_ftm_responder_dyn_cfg_v2(struct iwl_mvm *mvm,177struct ieee80211_vif *vif,178struct ieee80211_ftm_responder_params *params)179{180struct iwl_tof_responder_dyn_config_cmd_v2 cmd = {181.lci_len = cpu_to_le32(params->lci_len + 2),182.civic_len = cpu_to_le32(params->civicloc_len + 2),183};184u8 data[IWL_LCI_CIVIC_IE_MAX_SIZE] = {0};185struct iwl_host_cmd hcmd = {186.id = WIDE_ID(LOCATION_GROUP, TOF_RESPONDER_DYN_CONFIG_CMD),187.data[0] = &cmd,188.len[0] = sizeof(cmd),189.data[1] = &data,190/* .len[1] set later */191/* may not be able to DMA from stack */192.dataflags[1] = IWL_HCMD_DFL_DUP,193};194u32 aligned_lci_len = ALIGN(params->lci_len + 2, 4);195u32 aligned_civicloc_len = ALIGN(params->civicloc_len + 2, 4);196u8 *pos = data;197198lockdep_assert_held(&mvm->mutex);199200if (aligned_lci_len + aligned_civicloc_len > sizeof(data)) {201IWL_ERR(mvm, "LCI/civicloc data too big (%zd + %zd)\n",202params->lci_len, params->civicloc_len);203return -ENOBUFS;204}205206pos[0] = WLAN_EID_MEASURE_REPORT;207pos[1] = params->lci_len;208memcpy(pos + 2, params->lci, params->lci_len);209210pos += aligned_lci_len;211pos[0] = WLAN_EID_MEASURE_REPORT;212pos[1] = params->civicloc_len;213memcpy(pos + 2, params->civicloc, params->civicloc_len);214215hcmd.len[1] = aligned_lci_len + aligned_civicloc_len;216217return iwl_mvm_send_cmd(mvm, &hcmd);218}219220static int221iwl_mvm_ftm_responder_dyn_cfg_v3(struct iwl_mvm *mvm,222struct ieee80211_vif *vif,223struct ieee80211_ftm_responder_params *params,224struct iwl_mvm_pasn_hltk_data *hltk_data)225{226struct iwl_tof_responder_dyn_config_cmd cmd;227struct iwl_host_cmd hcmd = {228.id = WIDE_ID(LOCATION_GROUP, TOF_RESPONDER_DYN_CONFIG_CMD),229.data[0] = &cmd,230.len[0] = sizeof(cmd),231/* may not be able to DMA from stack */232.dataflags[0] = IWL_HCMD_DFL_DUP,233};234235lockdep_assert_held(&mvm->mutex);236237cmd.valid_flags = 0;238239if (params) {240if (params->lci_len + 2 > sizeof(cmd.lci_buf) ||241params->civicloc_len + 2 > sizeof(cmd.civic_buf)) {242IWL_ERR(mvm,243"LCI/civic data too big (lci=%zd, civic=%zd)\n",244params->lci_len, params->civicloc_len);245return -ENOBUFS;246}247248cmd.lci_buf[0] = WLAN_EID_MEASURE_REPORT;249cmd.lci_buf[1] = params->lci_len;250memcpy(cmd.lci_buf + 2, params->lci, params->lci_len);251cmd.lci_len = params->lci_len + 2;252253cmd.civic_buf[0] = WLAN_EID_MEASURE_REPORT;254cmd.civic_buf[1] = params->civicloc_len;255memcpy(cmd.civic_buf + 2, params->civicloc,256params->civicloc_len);257cmd.civic_len = params->civicloc_len + 2;258259cmd.valid_flags |= IWL_RESPONDER_DYN_CFG_VALID_LCI |260IWL_RESPONDER_DYN_CFG_VALID_CIVIC;261}262263if (hltk_data) {264if (hltk_data->cipher > IWL_LOCATION_CIPHER_GCMP_256) {265IWL_ERR(mvm, "invalid cipher: %u\n",266hltk_data->cipher);267return -EINVAL;268}269270cmd.cipher = hltk_data->cipher;271memcpy(cmd.addr, hltk_data->addr, sizeof(cmd.addr));272memcpy(cmd.hltk_buf, hltk_data->hltk, sizeof(cmd.hltk_buf));273cmd.valid_flags |= IWL_RESPONDER_DYN_CFG_VALID_PASN_STA;274}275276return iwl_mvm_send_cmd(mvm, &hcmd);277}278279static int280iwl_mvm_ftm_responder_dyn_cfg_cmd(struct iwl_mvm *mvm,281struct ieee80211_vif *vif,282struct ieee80211_ftm_responder_params *params)283{284int ret;285u8 cmd_ver = iwl_fw_lookup_cmd_ver(mvm->fw,286WIDE_ID(LOCATION_GROUP, TOF_RESPONDER_DYN_CONFIG_CMD),2872);288289switch (cmd_ver) {290case 2:291ret = iwl_mvm_ftm_responder_dyn_cfg_v2(mvm, vif,292params);293break;294case 3:295ret = iwl_mvm_ftm_responder_dyn_cfg_v3(mvm, vif,296params, NULL);297break;298default:299IWL_ERR(mvm, "Unsupported DYN_CONFIG_CMD version %u\n",300cmd_ver);301ret = -EOPNOTSUPP;302}303304return ret;305}306307static void iwl_mvm_resp_del_pasn_sta(struct iwl_mvm *mvm,308struct ieee80211_vif *vif,309struct iwl_mvm_pasn_sta *sta)310{311list_del(&sta->list);312313if (sta->keyconf.keylen)314iwl_mvm_sec_key_del_pasn(mvm, vif, BIT(sta->int_sta.sta_id),315&sta->keyconf);316317if (iwl_mvm_has_mld_api(mvm->fw))318iwl_mvm_mld_rm_sta_id(mvm, sta->int_sta.sta_id);319else320iwl_mvm_rm_sta_id(mvm, vif, sta->int_sta.sta_id);321322iwl_mvm_dealloc_int_sta(mvm, &sta->int_sta);323kfree(sta);324}325326int iwl_mvm_ftm_start_responder(struct iwl_mvm *mvm, struct ieee80211_vif *vif,327struct ieee80211_bss_conf *bss_conf)328{329struct iwl_mvm_vif *mvmvif = iwl_mvm_vif_from_mac80211(vif);330struct ieee80211_ftm_responder_params *params;331struct ieee80211_chanctx_conf ctx, *pctx;332u16 *phy_ctxt_id;333struct iwl_mvm_phy_ctxt *phy_ctxt;334int ret;335336params = bss_conf->ftmr_params;337338lockdep_assert_held(&mvm->mutex);339340if (WARN_ON_ONCE(!bss_conf->ftm_responder))341return -EINVAL;342343if (vif->p2p || vif->type != NL80211_IFTYPE_AP ||344!mvmvif->ap_ibss_active) {345IWL_ERR(mvm, "Cannot start responder, not in AP mode\n");346return -EIO;347}348349rcu_read_lock();350pctx = rcu_dereference(bss_conf->chanctx_conf);351/* Copy the ctx to unlock the rcu and send the phy ctxt. We don't care352* about changes in the ctx after releasing the lock because the driver353* is still protected by the mutex. */354ctx = *pctx;355phy_ctxt_id = (u16 *)pctx->drv_priv;356rcu_read_unlock();357358phy_ctxt = &mvm->phy_ctxts[*phy_ctxt_id];359ret = iwl_mvm_phy_ctxt_changed(mvm, phy_ctxt, &ctx.def, &ctx.ap,360ctx.rx_chains_static,361ctx.rx_chains_dynamic);362if (ret)363return ret;364365ret = iwl_mvm_ftm_responder_cmd(mvm, vif, &ctx.def, bss_conf);366if (ret)367return ret;368369if (params)370ret = iwl_mvm_ftm_responder_dyn_cfg_cmd(mvm, vif, params);371372return ret;373}374375void iwl_mvm_ftm_responder_clear(struct iwl_mvm *mvm,376struct ieee80211_vif *vif)377{378struct iwl_mvm_pasn_sta *sta, *prev;379380lockdep_assert_held(&mvm->mutex);381382list_for_each_entry_safe(sta, prev, &mvm->resp_pasn_list, list)383iwl_mvm_resp_del_pasn_sta(mvm, vif, sta);384}385386void iwl_mvm_ftm_restart_responder(struct iwl_mvm *mvm,387struct ieee80211_vif *vif,388struct ieee80211_bss_conf *bss_conf)389{390if (!bss_conf->ftm_responder)391return;392393iwl_mvm_ftm_responder_clear(mvm, vif);394iwl_mvm_ftm_start_responder(mvm, vif, bss_conf);395}396397void iwl_mvm_ftm_responder_stats(struct iwl_mvm *mvm,398struct iwl_rx_cmd_buffer *rxb)399{400struct iwl_rx_packet *pkt = rxb_addr(rxb);401struct iwl_ftm_responder_stats *resp = (void *)pkt->data;402struct cfg80211_ftm_responder_stats *stats = &mvm->ftm_resp_stats;403u32 flags = le32_to_cpu(resp->flags);404405if (resp->success_ftm == resp->ftm_per_burst)406stats->success_num++;407else if (resp->success_ftm >= 2)408stats->partial_num++;409else410stats->failed_num++;411412if ((flags & FTM_RESP_STAT_ASAP_REQ) &&413(flags & FTM_RESP_STAT_ASAP_RESP))414stats->asap_num++;415416if (flags & FTM_RESP_STAT_NON_ASAP_RESP)417stats->non_asap_num++;418419stats->total_duration_ms += le32_to_cpu(resp->duration) / USEC_PER_MSEC;420421if (flags & FTM_RESP_STAT_TRIGGER_UNKNOWN)422stats->unknown_triggers_num++;423424if (flags & FTM_RESP_STAT_DUP)425stats->reschedule_requests_num++;426427if (flags & FTM_RESP_STAT_NON_ASAP_OUT_WIN)428stats->out_of_window_triggers_num++;429}430431432