ctrl_iface_unix.c 36 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433
  1. /*
  2. * WPA Supplicant / UNIX domain socket -based control interface
  3. * Copyright (c) 2004-2014, Jouni Malinen <j@w1.fi>
  4. *
  5. * This software may be distributed under the terms of the BSD license.
  6. * See README for more details.
  7. */
  8. #include "includes.h"
  9. #include <sys/un.h>
  10. #include <sys/stat.h>
  11. #include <grp.h>
  12. #include <stddef.h>
  13. #include <unistd.h>
  14. #include <fcntl.h>
  15. #ifdef __linux__
  16. #include <sys/ioctl.h>
  17. #include <linux/sockios.h>
  18. #endif /* __linux__ */
  19. #ifdef ANDROID
  20. #include <cutils/sockets.h>
  21. #endif /* ANDROID */
  22. #include "utils/common.h"
  23. #include "utils/eloop.h"
  24. #include "utils/list.h"
  25. #include "eapol_supp/eapol_supp_sm.h"
  26. #include "config.h"
  27. #include "wpa_supplicant_i.h"
  28. #include "ctrl_iface.h"
  29. /* Per-interface ctrl_iface */
  30. /**
  31. * struct wpa_ctrl_dst - Internal data structure of control interface monitors
  32. *
  33. * This structure is used to store information about registered control
  34. * interface monitors into struct wpa_supplicant. This data is private to
  35. * ctrl_iface_unix.c and should not be touched directly from other files.
  36. */
  37. struct wpa_ctrl_dst {
  38. struct dl_list list;
  39. struct sockaddr_un addr;
  40. socklen_t addrlen;
  41. int debug_level;
  42. int errors;
  43. };
  44. struct ctrl_iface_priv {
  45. struct wpa_supplicant *wpa_s;
  46. int sock;
  47. struct dl_list ctrl_dst;
  48. int android_control_socket;
  49. struct dl_list msg_queue;
  50. unsigned int throttle_count;
  51. };
  52. struct ctrl_iface_global_priv {
  53. struct wpa_global *global;
  54. int sock;
  55. struct dl_list ctrl_dst;
  56. int android_control_socket;
  57. struct dl_list msg_queue;
  58. unsigned int throttle_count;
  59. };
  60. struct ctrl_iface_msg {
  61. struct dl_list list;
  62. struct wpa_supplicant *wpa_s;
  63. int level;
  64. enum wpa_msg_type type;
  65. const char *txt;
  66. size_t len;
  67. };
  68. static void wpa_supplicant_ctrl_iface_send(struct wpa_supplicant *wpa_s,
  69. const char *ifname, int sock,
  70. struct dl_list *ctrl_dst,
  71. int level, const char *buf,
  72. size_t len,
  73. struct ctrl_iface_priv *priv,
  74. struct ctrl_iface_global_priv *gp);
  75. static int wpas_ctrl_iface_reinit(struct wpa_supplicant *wpa_s,
  76. struct ctrl_iface_priv *priv);
  77. static int wpas_ctrl_iface_global_reinit(struct wpa_global *global,
  78. struct ctrl_iface_global_priv *priv);
  79. static void wpas_ctrl_sock_debug(const char *title, int sock, const char *buf,
  80. size_t len)
  81. {
  82. #ifdef __linux__
  83. socklen_t optlen;
  84. int sndbuf, outq;
  85. int level = MSG_MSGDUMP;
  86. if (len >= 5 && os_strncmp(buf, "PONG\n", 5) == 0)
  87. level = MSG_EXCESSIVE;
  88. optlen = sizeof(sndbuf);
  89. sndbuf = 0;
  90. if (getsockopt(sock, SOL_SOCKET, SO_SNDBUF, &sndbuf, &optlen) < 0)
  91. sndbuf = -1;
  92. if (ioctl(sock, SIOCOUTQ, &outq) < 0)
  93. outq = -1;
  94. wpa_printf(level,
  95. "CTRL-DEBUG: %s: sock=%d sndbuf=%d outq=%d send_len=%d",
  96. title, sock, sndbuf, outq, (int) len);
  97. #endif /* __linux__ */
  98. }
  99. static int wpa_supplicant_ctrl_iface_attach(struct dl_list *ctrl_dst,
  100. struct sockaddr_un *from,
  101. socklen_t fromlen, int global)
  102. {
  103. struct wpa_ctrl_dst *dst;
  104. char addr_txt[200];
  105. dst = os_zalloc(sizeof(*dst));
  106. if (dst == NULL)
  107. return -1;
  108. os_memcpy(&dst->addr, from, sizeof(struct sockaddr_un));
  109. dst->addrlen = fromlen;
  110. dst->debug_level = MSG_INFO;
  111. dl_list_add(ctrl_dst, &dst->list);
  112. printf_encode(addr_txt, sizeof(addr_txt),
  113. (u8 *) from->sun_path,
  114. fromlen - offsetof(struct sockaddr_un, sun_path));
  115. wpa_printf(MSG_DEBUG, "CTRL_IFACE %smonitor attached %s",
  116. global ? "global " : "", addr_txt);
  117. return 0;
  118. }
  119. static int wpa_supplicant_ctrl_iface_detach(struct dl_list *ctrl_dst,
  120. struct sockaddr_un *from,
  121. socklen_t fromlen)
  122. {
  123. struct wpa_ctrl_dst *dst;
  124. dl_list_for_each(dst, ctrl_dst, struct wpa_ctrl_dst, list) {
  125. if (fromlen == dst->addrlen &&
  126. os_memcmp(from->sun_path, dst->addr.sun_path,
  127. fromlen - offsetof(struct sockaddr_un, sun_path))
  128. == 0) {
  129. char addr_txt[200];
  130. printf_encode(addr_txt, sizeof(addr_txt),
  131. (u8 *) from->sun_path,
  132. fromlen -
  133. offsetof(struct sockaddr_un, sun_path));
  134. wpa_printf(MSG_DEBUG, "CTRL_IFACE monitor detached %s",
  135. addr_txt);
  136. dl_list_del(&dst->list);
  137. os_free(dst);
  138. return 0;
  139. }
  140. }
  141. return -1;
  142. }
  143. static int wpa_supplicant_ctrl_iface_level(struct ctrl_iface_priv *priv,
  144. struct sockaddr_un *from,
  145. socklen_t fromlen,
  146. char *level)
  147. {
  148. struct wpa_ctrl_dst *dst;
  149. wpa_printf(MSG_DEBUG, "CTRL_IFACE LEVEL %s", level);
  150. dl_list_for_each(dst, &priv->ctrl_dst, struct wpa_ctrl_dst, list) {
  151. if (fromlen == dst->addrlen &&
  152. os_memcmp(from->sun_path, dst->addr.sun_path,
  153. fromlen - offsetof(struct sockaddr_un, sun_path))
  154. == 0) {
  155. char addr_txt[200];
  156. dst->debug_level = atoi(level);
  157. printf_encode(addr_txt, sizeof(addr_txt),
  158. (u8 *) from->sun_path, fromlen -
  159. offsetof(struct sockaddr_un, sun_path));
  160. wpa_printf(MSG_DEBUG, "CTRL_IFACE changed monitor level to %d for %s",
  161. dst->debug_level, addr_txt);
  162. return 0;
  163. }
  164. }
  165. return -1;
  166. }
  167. static void wpa_supplicant_ctrl_iface_receive(int sock, void *eloop_ctx,
  168. void *sock_ctx)
  169. {
  170. struct wpa_supplicant *wpa_s = eloop_ctx;
  171. struct ctrl_iface_priv *priv = sock_ctx;
  172. char buf[4096];
  173. int res;
  174. struct sockaddr_un from;
  175. socklen_t fromlen = sizeof(from);
  176. char *reply = NULL, *reply_buf = NULL;
  177. size_t reply_len = 0;
  178. int new_attached = 0;
  179. res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
  180. (struct sockaddr *) &from, &fromlen);
  181. if (res < 0) {
  182. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  183. strerror(errno));
  184. return;
  185. }
  186. buf[res] = '\0';
  187. if (os_strcmp(buf, "ATTACH") == 0) {
  188. if (wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst, &from,
  189. fromlen, 0))
  190. reply_len = 1;
  191. else {
  192. new_attached = 1;
  193. reply_len = 2;
  194. }
  195. } else if (os_strcmp(buf, "DETACH") == 0) {
  196. if (wpa_supplicant_ctrl_iface_detach(&priv->ctrl_dst, &from,
  197. fromlen))
  198. reply_len = 1;
  199. else
  200. reply_len = 2;
  201. } else if (os_strncmp(buf, "LEVEL ", 6) == 0) {
  202. if (wpa_supplicant_ctrl_iface_level(priv, &from, fromlen,
  203. buf + 6))
  204. reply_len = 1;
  205. else
  206. reply_len = 2;
  207. } else {
  208. reply_buf = wpa_supplicant_ctrl_iface_process(wpa_s, buf,
  209. &reply_len);
  210. reply = reply_buf;
  211. /*
  212. * There could be some password/key material in the command, so
  213. * clear the buffer explicitly now that it is not needed
  214. * anymore.
  215. */
  216. os_memset(buf, 0, res);
  217. }
  218. if (!reply && reply_len == 1) {
  219. reply = "FAIL\n";
  220. reply_len = 5;
  221. } else if (!reply && reply_len == 2) {
  222. reply = "OK\n";
  223. reply_len = 3;
  224. }
  225. if (reply) {
  226. wpas_ctrl_sock_debug("ctrl_sock-sendto", sock, reply,
  227. reply_len);
  228. if (sendto(sock, reply, reply_len, 0, (struct sockaddr *) &from,
  229. fromlen) < 0) {
  230. int _errno = errno;
  231. wpa_dbg(wpa_s, MSG_DEBUG,
  232. "ctrl_iface sendto failed: %d - %s",
  233. _errno, strerror(_errno));
  234. if (_errno == ENOBUFS || _errno == EAGAIN) {
  235. /*
  236. * The socket send buffer could be full. This
  237. * may happen if client programs are not
  238. * receiving their pending messages. Close and
  239. * reopen the socket as a workaround to avoid
  240. * getting stuck being unable to send any new
  241. * responses.
  242. */
  243. sock = wpas_ctrl_iface_reinit(wpa_s, priv);
  244. if (sock < 0) {
  245. wpa_dbg(wpa_s, MSG_DEBUG, "Failed to reinitialize ctrl_iface socket");
  246. }
  247. }
  248. if (new_attached) {
  249. wpa_dbg(wpa_s, MSG_DEBUG, "Failed to send response to ATTACH - detaching");
  250. new_attached = 0;
  251. wpa_supplicant_ctrl_iface_detach(
  252. &priv->ctrl_dst, &from, fromlen);
  253. }
  254. }
  255. }
  256. os_free(reply_buf);
  257. if (new_attached)
  258. eapol_sm_notify_ctrl_attached(wpa_s->eapol);
  259. }
  260. static char * wpa_supplicant_ctrl_iface_path(struct wpa_supplicant *wpa_s)
  261. {
  262. char *buf;
  263. size_t len;
  264. char *pbuf, *dir = NULL;
  265. int res;
  266. if (wpa_s->conf->ctrl_interface == NULL)
  267. return NULL;
  268. pbuf = os_strdup(wpa_s->conf->ctrl_interface);
  269. if (pbuf == NULL)
  270. return NULL;
  271. if (os_strncmp(pbuf, "DIR=", 4) == 0) {
  272. char *gid_str;
  273. dir = pbuf + 4;
  274. gid_str = os_strstr(dir, " GROUP=");
  275. if (gid_str)
  276. *gid_str = '\0';
  277. } else
  278. dir = pbuf;
  279. len = os_strlen(dir) + os_strlen(wpa_s->ifname) + 2;
  280. buf = os_malloc(len);
  281. if (buf == NULL) {
  282. os_free(pbuf);
  283. return NULL;
  284. }
  285. res = os_snprintf(buf, len, "%s/%s", dir, wpa_s->ifname);
  286. if (os_snprintf_error(len, res)) {
  287. os_free(pbuf);
  288. os_free(buf);
  289. return NULL;
  290. }
  291. #ifdef __CYGWIN__
  292. {
  293. /* Windows/WinPcap uses interface names that are not suitable
  294. * as a file name - convert invalid chars to underscores */
  295. char *pos = buf;
  296. while (*pos) {
  297. if (*pos == '\\')
  298. *pos = '_';
  299. pos++;
  300. }
  301. }
  302. #endif /* __CYGWIN__ */
  303. os_free(pbuf);
  304. return buf;
  305. }
  306. static int wpas_ctrl_iface_throttle(int sock)
  307. {
  308. #ifdef __linux__
  309. socklen_t optlen;
  310. int sndbuf, outq;
  311. optlen = sizeof(sndbuf);
  312. sndbuf = 0;
  313. if (getsockopt(sock, SOL_SOCKET, SO_SNDBUF, &sndbuf, &optlen) < 0 ||
  314. ioctl(sock, SIOCOUTQ, &outq) < 0 ||
  315. sndbuf <= 0 || outq < 0)
  316. return 0;
  317. return outq > sndbuf / 2;
  318. #else /* __linux__ */
  319. return 0;
  320. #endif /* __linux__ */
  321. }
  322. static void wpas_ctrl_msg_send_pending_global(struct wpa_global *global)
  323. {
  324. struct ctrl_iface_global_priv *gpriv;
  325. struct ctrl_iface_msg *msg;
  326. gpriv = global->ctrl_iface;
  327. while (gpriv && !dl_list_empty(&gpriv->msg_queue) &&
  328. !wpas_ctrl_iface_throttle(gpriv->sock)) {
  329. msg = dl_list_first(&gpriv->msg_queue, struct ctrl_iface_msg,
  330. list);
  331. if (!msg)
  332. break;
  333. dl_list_del(&msg->list);
  334. wpa_supplicant_ctrl_iface_send(
  335. msg->wpa_s,
  336. msg->type != WPA_MSG_PER_INTERFACE ?
  337. NULL : msg->wpa_s->ifname,
  338. gpriv->sock, &gpriv->ctrl_dst, msg->level,
  339. msg->txt, msg->len, NULL, gpriv);
  340. os_free(msg);
  341. }
  342. }
  343. static void wpas_ctrl_msg_send_pending_iface(struct wpa_supplicant *wpa_s)
  344. {
  345. struct ctrl_iface_priv *priv;
  346. struct ctrl_iface_msg *msg;
  347. priv = wpa_s->ctrl_iface;
  348. while (priv && !dl_list_empty(&priv->msg_queue) &&
  349. !wpas_ctrl_iface_throttle(priv->sock)) {
  350. msg = dl_list_first(&priv->msg_queue, struct ctrl_iface_msg,
  351. list);
  352. if (!msg)
  353. break;
  354. dl_list_del(&msg->list);
  355. wpa_supplicant_ctrl_iface_send(wpa_s, NULL, priv->sock,
  356. &priv->ctrl_dst, msg->level,
  357. msg->txt, msg->len, priv, NULL);
  358. os_free(msg);
  359. }
  360. }
  361. static void wpas_ctrl_msg_queue_timeout(void *eloop_ctx, void *timeout_ctx)
  362. {
  363. struct wpa_supplicant *wpa_s = eloop_ctx;
  364. struct ctrl_iface_priv *priv;
  365. struct ctrl_iface_global_priv *gpriv;
  366. int sock = -1, gsock = -1;
  367. wpas_ctrl_msg_send_pending_global(wpa_s->global);
  368. wpas_ctrl_msg_send_pending_iface(wpa_s);
  369. priv = wpa_s->ctrl_iface;
  370. if (priv && !dl_list_empty(&priv->msg_queue))
  371. sock = priv->sock;
  372. gpriv = wpa_s->global->ctrl_iface;
  373. if (gpriv && !dl_list_empty(&gpriv->msg_queue))
  374. gsock = gpriv->sock;
  375. if (sock > -1 || gsock > -1) {
  376. /* Continue pending message transmission from a timeout */
  377. wpa_printf(MSG_MSGDUMP,
  378. "CTRL: Had to throttle pending event message transmission for (sock %d gsock %d)",
  379. sock, gsock);
  380. eloop_register_timeout(0, 20000, wpas_ctrl_msg_queue_timeout,
  381. wpa_s, NULL);
  382. }
  383. }
  384. static void wpas_ctrl_msg_queue(struct dl_list *queue,
  385. struct wpa_supplicant *wpa_s, int level,
  386. enum wpa_msg_type type,
  387. const char *txt, size_t len)
  388. {
  389. struct ctrl_iface_msg *msg;
  390. msg = os_zalloc(sizeof(*msg) + len);
  391. if (!msg)
  392. return;
  393. msg->wpa_s = wpa_s;
  394. msg->level = level;
  395. msg->type = type;
  396. os_memcpy(msg + 1, txt, len);
  397. msg->txt = (const char *) (msg + 1);
  398. msg->len = len;
  399. dl_list_add_tail(queue, &msg->list);
  400. eloop_cancel_timeout(wpas_ctrl_msg_queue_timeout, wpa_s, NULL);
  401. eloop_register_timeout(0, 0, wpas_ctrl_msg_queue_timeout, wpa_s, NULL);
  402. }
  403. static void wpas_ctrl_msg_queue_limit(unsigned int throttle_count,
  404. struct dl_list *queue)
  405. {
  406. struct ctrl_iface_msg *msg;
  407. if (throttle_count < 2000)
  408. return;
  409. msg = dl_list_first(queue, struct ctrl_iface_msg, list);
  410. if (msg) {
  411. wpa_printf(MSG_DEBUG, "CTRL: Dropped oldest pending message");
  412. dl_list_del(&msg->list);
  413. os_free(msg);
  414. }
  415. }
  416. static void wpa_supplicant_ctrl_iface_msg_cb(void *ctx, int level,
  417. enum wpa_msg_type type,
  418. const char *txt, size_t len)
  419. {
  420. struct wpa_supplicant *wpa_s = ctx;
  421. struct ctrl_iface_priv *priv;
  422. struct ctrl_iface_global_priv *gpriv;
  423. if (wpa_s == NULL)
  424. return;
  425. gpriv = wpa_s->global->ctrl_iface;
  426. if (type != WPA_MSG_NO_GLOBAL && gpriv &&
  427. !dl_list_empty(&gpriv->ctrl_dst)) {
  428. if (!dl_list_empty(&gpriv->msg_queue) ||
  429. wpas_ctrl_iface_throttle(gpriv->sock)) {
  430. if (gpriv->throttle_count == 0) {
  431. wpa_printf(MSG_MSGDUMP,
  432. "CTRL: Had to throttle global event message for sock %d",
  433. gpriv->sock);
  434. }
  435. gpriv->throttle_count++;
  436. wpas_ctrl_msg_queue_limit(gpriv->throttle_count,
  437. &gpriv->msg_queue);
  438. wpas_ctrl_msg_queue(&gpriv->msg_queue, wpa_s, level,
  439. type, txt, len);
  440. } else {
  441. if (gpriv->throttle_count) {
  442. wpa_printf(MSG_MSGDUMP,
  443. "CTRL: Had to throttle %u global event message(s) for sock %d",
  444. gpriv->throttle_count, gpriv->sock);
  445. }
  446. gpriv->throttle_count = 0;
  447. wpa_supplicant_ctrl_iface_send(
  448. wpa_s,
  449. type != WPA_MSG_PER_INTERFACE ?
  450. NULL : wpa_s->ifname,
  451. gpriv->sock, &gpriv->ctrl_dst, level,
  452. txt, len, NULL, gpriv);
  453. }
  454. }
  455. priv = wpa_s->ctrl_iface;
  456. if (type != WPA_MSG_ONLY_GLOBAL && priv) {
  457. if (!dl_list_empty(&priv->msg_queue) ||
  458. wpas_ctrl_iface_throttle(priv->sock)) {
  459. if (priv->throttle_count == 0) {
  460. wpa_printf(MSG_MSGDUMP,
  461. "CTRL: Had to throttle event message for sock %d",
  462. priv->sock);
  463. }
  464. priv->throttle_count++;
  465. wpas_ctrl_msg_queue_limit(priv->throttle_count,
  466. &priv->msg_queue);
  467. wpas_ctrl_msg_queue(&priv->msg_queue, wpa_s, level,
  468. type, txt, len);
  469. } else {
  470. if (priv->throttle_count) {
  471. wpa_printf(MSG_MSGDUMP,
  472. "CTRL: Had to throttle %u event message(s) for sock %d",
  473. priv->throttle_count, priv->sock);
  474. }
  475. priv->throttle_count = 0;
  476. wpa_supplicant_ctrl_iface_send(wpa_s, NULL, priv->sock,
  477. &priv->ctrl_dst, level,
  478. txt, len, priv, NULL);
  479. }
  480. }
  481. }
  482. static int wpas_ctrl_iface_open_sock(struct wpa_supplicant *wpa_s,
  483. struct ctrl_iface_priv *priv)
  484. {
  485. struct sockaddr_un addr;
  486. char *fname = NULL;
  487. gid_t gid = 0;
  488. int gid_set = 0;
  489. char *buf, *dir = NULL, *gid_str = NULL;
  490. struct group *grp;
  491. char *endp;
  492. int flags;
  493. buf = os_strdup(wpa_s->conf->ctrl_interface);
  494. if (buf == NULL)
  495. goto fail;
  496. #ifdef ANDROID
  497. os_snprintf(addr.sun_path, sizeof(addr.sun_path), "wpa_%s",
  498. wpa_s->conf->ctrl_interface);
  499. priv->sock = android_get_control_socket(addr.sun_path);
  500. if (priv->sock >= 0) {
  501. priv->android_control_socket = 1;
  502. goto havesock;
  503. }
  504. #endif /* ANDROID */
  505. if (os_strncmp(buf, "DIR=", 4) == 0) {
  506. dir = buf + 4;
  507. gid_str = os_strstr(dir, " GROUP=");
  508. if (gid_str) {
  509. *gid_str = '\0';
  510. gid_str += 7;
  511. }
  512. } else {
  513. dir = buf;
  514. gid_str = wpa_s->conf->ctrl_interface_group;
  515. }
  516. if (mkdir(dir, S_IRWXU | S_IRWXG) < 0) {
  517. if (errno == EEXIST) {
  518. wpa_printf(MSG_DEBUG, "Using existing control "
  519. "interface directory.");
  520. } else {
  521. wpa_printf(MSG_ERROR, "mkdir[ctrl_interface=%s]: %s",
  522. dir, strerror(errno));
  523. goto fail;
  524. }
  525. }
  526. #ifdef ANDROID
  527. /*
  528. * wpa_supplicant is started from /init.*.rc on Android and that seems
  529. * to be using umask 0077 which would leave the control interface
  530. * directory without group access. This breaks things since Wi-Fi
  531. * framework assumes that this directory can be accessed by other
  532. * applications in the wifi group. Fix this by adding group access even
  533. * if umask value would prevent this.
  534. */
  535. if (chmod(dir, S_IRWXU | S_IRWXG) < 0) {
  536. wpa_printf(MSG_ERROR, "CTRL: Could not chmod directory: %s",
  537. strerror(errno));
  538. /* Try to continue anyway */
  539. }
  540. #endif /* ANDROID */
  541. if (gid_str) {
  542. grp = getgrnam(gid_str);
  543. if (grp) {
  544. gid = grp->gr_gid;
  545. gid_set = 1;
  546. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d"
  547. " (from group name '%s')",
  548. (int) gid, gid_str);
  549. } else {
  550. /* Group name not found - try to parse this as gid */
  551. gid = strtol(gid_str, &endp, 10);
  552. if (*gid_str == '\0' || *endp != '\0') {
  553. wpa_printf(MSG_ERROR, "CTRL: Invalid group "
  554. "'%s'", gid_str);
  555. goto fail;
  556. }
  557. gid_set = 1;
  558. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d",
  559. (int) gid);
  560. }
  561. }
  562. if (gid_set && chown(dir, -1, gid) < 0) {
  563. wpa_printf(MSG_ERROR, "chown[ctrl_interface=%s,gid=%d]: %s",
  564. dir, (int) gid, strerror(errno));
  565. goto fail;
  566. }
  567. /* Make sure the group can enter and read the directory */
  568. if (gid_set &&
  569. chmod(dir, S_IRUSR | S_IWUSR | S_IXUSR | S_IRGRP | S_IXGRP) < 0) {
  570. wpa_printf(MSG_ERROR, "CTRL: chmod[ctrl_interface]: %s",
  571. strerror(errno));
  572. goto fail;
  573. }
  574. if (os_strlen(dir) + 1 + os_strlen(wpa_s->ifname) >=
  575. sizeof(addr.sun_path)) {
  576. wpa_printf(MSG_ERROR, "ctrl_iface path limit exceeded");
  577. goto fail;
  578. }
  579. priv->sock = socket(PF_UNIX, SOCK_DGRAM, 0);
  580. if (priv->sock < 0) {
  581. wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
  582. goto fail;
  583. }
  584. os_memset(&addr, 0, sizeof(addr));
  585. #if defined(__FreeBSD__) || defined(__FreeBSD_kernel__)
  586. addr.sun_len = sizeof(addr);
  587. #endif /* __FreeBSD__ */
  588. addr.sun_family = AF_UNIX;
  589. fname = wpa_supplicant_ctrl_iface_path(wpa_s);
  590. if (fname == NULL)
  591. goto fail;
  592. os_strlcpy(addr.sun_path, fname, sizeof(addr.sun_path));
  593. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) < 0) {
  594. wpa_printf(MSG_DEBUG, "ctrl_iface bind(PF_UNIX) failed: %s",
  595. strerror(errno));
  596. if (connect(priv->sock, (struct sockaddr *) &addr,
  597. sizeof(addr)) < 0) {
  598. wpa_printf(MSG_DEBUG, "ctrl_iface exists, but does not"
  599. " allow connections - assuming it was left"
  600. "over from forced program termination");
  601. if (unlink(fname) < 0) {
  602. wpa_printf(MSG_ERROR,
  603. "Could not unlink existing ctrl_iface socket '%s': %s",
  604. fname, strerror(errno));
  605. goto fail;
  606. }
  607. if (bind(priv->sock, (struct sockaddr *) &addr,
  608. sizeof(addr)) < 0) {
  609. wpa_printf(MSG_ERROR, "supp-ctrl-iface-init: bind(PF_UNIX): %s",
  610. strerror(errno));
  611. goto fail;
  612. }
  613. wpa_printf(MSG_DEBUG, "Successfully replaced leftover "
  614. "ctrl_iface socket '%s'", fname);
  615. } else {
  616. wpa_printf(MSG_INFO, "ctrl_iface exists and seems to "
  617. "be in use - cannot override it");
  618. wpa_printf(MSG_INFO, "Delete '%s' manually if it is "
  619. "not used anymore", fname);
  620. os_free(fname);
  621. fname = NULL;
  622. goto fail;
  623. }
  624. }
  625. if (gid_set && chown(fname, -1, gid) < 0) {
  626. wpa_printf(MSG_ERROR, "chown[ctrl_interface=%s,gid=%d]: %s",
  627. fname, (int) gid, strerror(errno));
  628. goto fail;
  629. }
  630. if (chmod(fname, S_IRWXU | S_IRWXG) < 0) {
  631. wpa_printf(MSG_ERROR, "chmod[ctrl_interface=%s]: %s",
  632. fname, strerror(errno));
  633. goto fail;
  634. }
  635. os_free(fname);
  636. #ifdef ANDROID
  637. havesock:
  638. #endif /* ANDROID */
  639. /*
  640. * Make socket non-blocking so that we don't hang forever if
  641. * target dies unexpectedly.
  642. */
  643. flags = fcntl(priv->sock, F_GETFL);
  644. if (flags >= 0) {
  645. flags |= O_NONBLOCK;
  646. if (fcntl(priv->sock, F_SETFL, flags) < 0) {
  647. wpa_printf(MSG_INFO, "fcntl(ctrl, O_NONBLOCK): %s",
  648. strerror(errno));
  649. /* Not fatal, continue on.*/
  650. }
  651. }
  652. eloop_register_read_sock(priv->sock, wpa_supplicant_ctrl_iface_receive,
  653. wpa_s, priv);
  654. wpa_msg_register_cb(wpa_supplicant_ctrl_iface_msg_cb);
  655. os_free(buf);
  656. return 0;
  657. fail:
  658. if (priv->sock >= 0) {
  659. close(priv->sock);
  660. priv->sock = -1;
  661. }
  662. if (fname) {
  663. unlink(fname);
  664. os_free(fname);
  665. }
  666. os_free(buf);
  667. return -1;
  668. }
  669. struct ctrl_iface_priv *
  670. wpa_supplicant_ctrl_iface_init(struct wpa_supplicant *wpa_s)
  671. {
  672. struct ctrl_iface_priv *priv;
  673. priv = os_zalloc(sizeof(*priv));
  674. if (priv == NULL)
  675. return NULL;
  676. dl_list_init(&priv->ctrl_dst);
  677. dl_list_init(&priv->msg_queue);
  678. priv->wpa_s = wpa_s;
  679. priv->sock = -1;
  680. if (wpa_s->conf->ctrl_interface == NULL)
  681. return priv;
  682. #ifdef ANDROID
  683. if (wpa_s->global->params.ctrl_interface) {
  684. int same = 0;
  685. if (wpa_s->global->params.ctrl_interface[0] == '/') {
  686. if (os_strcmp(wpa_s->global->params.ctrl_interface,
  687. wpa_s->conf->ctrl_interface) == 0)
  688. same = 1;
  689. } else if (os_strncmp(wpa_s->global->params.ctrl_interface,
  690. "@android:", 9) == 0 ||
  691. os_strncmp(wpa_s->global->params.ctrl_interface,
  692. "@abstract:", 10) == 0) {
  693. char *pos;
  694. /*
  695. * Currently, Android uses @android:wpa_* as the naming
  696. * convention for the global ctrl interface. This logic
  697. * needs to be revisited if the above naming convention
  698. * is modified.
  699. */
  700. pos = os_strchr(wpa_s->global->params.ctrl_interface,
  701. '_');
  702. if (pos &&
  703. os_strcmp(pos + 1,
  704. wpa_s->conf->ctrl_interface) == 0)
  705. same = 1;
  706. }
  707. if (same) {
  708. /*
  709. * The invalid configuration combination might be
  710. * possible to hit in an Android OTA upgrade case, so
  711. * instead of refusing to start the wpa_supplicant
  712. * process, do not open the per-interface ctrl_iface
  713. * and continue with the global control interface that
  714. * was set from the command line since the Wi-Fi
  715. * framework will use it for operations.
  716. */
  717. wpa_printf(MSG_ERROR,
  718. "global ctrl interface %s matches ctrl interface %s - do not open per-interface ctrl interface",
  719. wpa_s->global->params.ctrl_interface,
  720. wpa_s->conf->ctrl_interface);
  721. return priv;
  722. }
  723. }
  724. #endif /* ANDROID */
  725. if (wpas_ctrl_iface_open_sock(wpa_s, priv) < 0) {
  726. os_free(priv);
  727. return NULL;
  728. }
  729. return priv;
  730. }
  731. static int wpas_ctrl_iface_reinit(struct wpa_supplicant *wpa_s,
  732. struct ctrl_iface_priv *priv)
  733. {
  734. int res;
  735. if (priv->sock <= 0)
  736. return -1;
  737. /*
  738. * On Android, the control socket being used may be the socket
  739. * that is created when wpa_supplicant is started as a /init.*.rc
  740. * service. Such a socket is maintained as a key-value pair in
  741. * Android's environment. Closing this control socket would leave us
  742. * in a bad state with an invalid socket descriptor.
  743. */
  744. if (priv->android_control_socket)
  745. return priv->sock;
  746. eloop_unregister_read_sock(priv->sock);
  747. close(priv->sock);
  748. priv->sock = -1;
  749. res = wpas_ctrl_iface_open_sock(wpa_s, priv);
  750. if (res < 0)
  751. return -1;
  752. return priv->sock;
  753. }
  754. void wpa_supplicant_ctrl_iface_deinit(struct ctrl_iface_priv *priv)
  755. {
  756. struct wpa_ctrl_dst *dst, *prev;
  757. struct ctrl_iface_msg *msg, *prev_msg;
  758. struct ctrl_iface_global_priv *gpriv;
  759. if (priv->sock > -1) {
  760. char *fname;
  761. char *buf, *dir = NULL;
  762. eloop_unregister_read_sock(priv->sock);
  763. if (!dl_list_empty(&priv->ctrl_dst)) {
  764. /*
  765. * Wait before closing the control socket if
  766. * there are any attached monitors in order to allow
  767. * them to receive any pending messages.
  768. */
  769. wpa_printf(MSG_DEBUG, "CTRL_IFACE wait for attached "
  770. "monitors to receive messages");
  771. os_sleep(0, 100000);
  772. }
  773. close(priv->sock);
  774. priv->sock = -1;
  775. fname = wpa_supplicant_ctrl_iface_path(priv->wpa_s);
  776. if (fname) {
  777. unlink(fname);
  778. os_free(fname);
  779. }
  780. if (priv->wpa_s->conf->ctrl_interface == NULL)
  781. goto free_dst;
  782. buf = os_strdup(priv->wpa_s->conf->ctrl_interface);
  783. if (buf == NULL)
  784. goto free_dst;
  785. if (os_strncmp(buf, "DIR=", 4) == 0) {
  786. char *gid_str;
  787. dir = buf + 4;
  788. gid_str = os_strstr(dir, " GROUP=");
  789. if (gid_str)
  790. *gid_str = '\0';
  791. } else
  792. dir = buf;
  793. if (rmdir(dir) < 0) {
  794. if (errno == ENOTEMPTY) {
  795. wpa_printf(MSG_DEBUG, "Control interface "
  796. "directory not empty - leaving it "
  797. "behind");
  798. } else {
  799. wpa_printf(MSG_ERROR,
  800. "rmdir[ctrl_interface=%s]: %s",
  801. dir, strerror(errno));
  802. }
  803. }
  804. os_free(buf);
  805. }
  806. free_dst:
  807. dl_list_for_each_safe(dst, prev, &priv->ctrl_dst, struct wpa_ctrl_dst,
  808. list)
  809. os_free(dst);
  810. dl_list_for_each_safe(msg, prev_msg, &priv->msg_queue,
  811. struct ctrl_iface_msg, list) {
  812. dl_list_del(&msg->list);
  813. os_free(msg);
  814. }
  815. gpriv = priv->wpa_s->global->ctrl_iface;
  816. if (gpriv) {
  817. dl_list_for_each_safe(msg, prev_msg, &gpriv->msg_queue,
  818. struct ctrl_iface_msg, list) {
  819. if (msg->wpa_s == priv->wpa_s) {
  820. dl_list_del(&msg->list);
  821. os_free(msg);
  822. }
  823. }
  824. }
  825. eloop_cancel_timeout(wpas_ctrl_msg_queue_timeout, priv->wpa_s, NULL);
  826. os_free(priv);
  827. }
  828. /**
  829. * wpa_supplicant_ctrl_iface_send - Send a control interface packet to monitors
  830. * @ifname: Interface name for global control socket or %NULL
  831. * @sock: Local socket fd
  832. * @ctrl_dst: List of attached listeners
  833. * @level: Priority level of the message
  834. * @buf: Message data
  835. * @len: Message length
  836. *
  837. * Send a packet to all monitor programs attached to the control interface.
  838. */
  839. static void wpa_supplicant_ctrl_iface_send(struct wpa_supplicant *wpa_s,
  840. const char *ifname, int sock,
  841. struct dl_list *ctrl_dst,
  842. int level, const char *buf,
  843. size_t len,
  844. struct ctrl_iface_priv *priv,
  845. struct ctrl_iface_global_priv *gp)
  846. {
  847. struct wpa_ctrl_dst *dst, *next;
  848. char levelstr[10];
  849. int idx, res;
  850. struct msghdr msg;
  851. struct iovec io[5];
  852. if (sock < 0 || dl_list_empty(ctrl_dst))
  853. return;
  854. res = os_snprintf(levelstr, sizeof(levelstr), "<%d>", level);
  855. if (os_snprintf_error(sizeof(levelstr), res))
  856. return;
  857. idx = 0;
  858. if (ifname) {
  859. io[idx].iov_base = "IFNAME=";
  860. io[idx].iov_len = 7;
  861. idx++;
  862. io[idx].iov_base = (char *) ifname;
  863. io[idx].iov_len = os_strlen(ifname);
  864. idx++;
  865. io[idx].iov_base = " ";
  866. io[idx].iov_len = 1;
  867. idx++;
  868. }
  869. io[idx].iov_base = levelstr;
  870. io[idx].iov_len = os_strlen(levelstr);
  871. idx++;
  872. io[idx].iov_base = (char *) buf;
  873. io[idx].iov_len = len;
  874. idx++;
  875. os_memset(&msg, 0, sizeof(msg));
  876. msg.msg_iov = io;
  877. msg.msg_iovlen = idx;
  878. dl_list_for_each_safe(dst, next, ctrl_dst, struct wpa_ctrl_dst, list) {
  879. int _errno;
  880. char addr_txt[200];
  881. if (level < dst->debug_level)
  882. continue;
  883. printf_encode(addr_txt, sizeof(addr_txt),
  884. (u8 *) dst->addr.sun_path, dst->addrlen -
  885. offsetof(struct sockaddr_un, sun_path));
  886. msg.msg_name = (void *) &dst->addr;
  887. msg.msg_namelen = dst->addrlen;
  888. wpas_ctrl_sock_debug("ctrl_sock-sendmsg", sock, buf, len);
  889. if (sendmsg(sock, &msg, MSG_DONTWAIT) >= 0) {
  890. wpa_printf(MSG_MSGDUMP,
  891. "CTRL_IFACE monitor sent successfully to %s",
  892. addr_txt);
  893. dst->errors = 0;
  894. continue;
  895. }
  896. _errno = errno;
  897. wpa_printf(MSG_DEBUG, "CTRL_IFACE monitor[%s]: %d - %s",
  898. addr_txt, errno, strerror(errno));
  899. dst->errors++;
  900. if (dst->errors > 10 || _errno == ENOENT || _errno == EPERM) {
  901. wpa_printf(MSG_INFO, "CTRL_IFACE: Detach monitor %s that cannot receive messages",
  902. addr_txt);
  903. wpa_supplicant_ctrl_iface_detach(ctrl_dst, &dst->addr,
  904. dst->addrlen);
  905. }
  906. if (_errno == ENOBUFS || _errno == EAGAIN) {
  907. /*
  908. * The socket send buffer could be full. This may happen
  909. * if client programs are not receiving their pending
  910. * messages. Close and reopen the socket as a workaround
  911. * to avoid getting stuck being unable to send any new
  912. * responses.
  913. */
  914. if (priv)
  915. sock = wpas_ctrl_iface_reinit(wpa_s, priv);
  916. else if (gp)
  917. sock = wpas_ctrl_iface_global_reinit(
  918. wpa_s->global, gp);
  919. else
  920. break;
  921. if (sock < 0) {
  922. wpa_dbg(wpa_s, MSG_DEBUG,
  923. "Failed to reinitialize ctrl_iface socket");
  924. break;
  925. }
  926. }
  927. }
  928. }
  929. void wpa_supplicant_ctrl_iface_wait(struct ctrl_iface_priv *priv)
  930. {
  931. char buf[256];
  932. int res;
  933. struct sockaddr_un from;
  934. socklen_t fromlen = sizeof(from);
  935. for (;;) {
  936. wpa_printf(MSG_DEBUG, "CTRL_IFACE - %s - wait for monitor to "
  937. "attach", priv->wpa_s->ifname);
  938. eloop_wait_for_read_sock(priv->sock);
  939. res = recvfrom(priv->sock, buf, sizeof(buf) - 1, 0,
  940. (struct sockaddr *) &from, &fromlen);
  941. if (res < 0) {
  942. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  943. strerror(errno));
  944. continue;
  945. }
  946. buf[res] = '\0';
  947. if (os_strcmp(buf, "ATTACH") == 0) {
  948. /* handle ATTACH signal of first monitor interface */
  949. if (!wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst,
  950. &from, fromlen,
  951. 0)) {
  952. if (sendto(priv->sock, "OK\n", 3, 0,
  953. (struct sockaddr *) &from, fromlen) <
  954. 0) {
  955. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  956. strerror(errno));
  957. }
  958. /* OK to continue */
  959. return;
  960. } else {
  961. if (sendto(priv->sock, "FAIL\n", 5, 0,
  962. (struct sockaddr *) &from, fromlen) <
  963. 0) {
  964. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  965. strerror(errno));
  966. }
  967. }
  968. } else {
  969. /* return FAIL for all other signals */
  970. if (sendto(priv->sock, "FAIL\n", 5, 0,
  971. (struct sockaddr *) &from, fromlen) < 0) {
  972. wpa_printf(MSG_DEBUG,
  973. "ctrl_iface sendto failed: %s",
  974. strerror(errno));
  975. }
  976. }
  977. }
  978. }
  979. /* Global ctrl_iface */
  980. static void wpa_supplicant_global_ctrl_iface_receive(int sock, void *eloop_ctx,
  981. void *sock_ctx)
  982. {
  983. struct wpa_global *global = eloop_ctx;
  984. struct ctrl_iface_global_priv *priv = sock_ctx;
  985. char buf[4096];
  986. int res;
  987. struct sockaddr_un from;
  988. socklen_t fromlen = sizeof(from);
  989. char *reply = NULL, *reply_buf = NULL;
  990. size_t reply_len;
  991. res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
  992. (struct sockaddr *) &from, &fromlen);
  993. if (res < 0) {
  994. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  995. strerror(errno));
  996. return;
  997. }
  998. buf[res] = '\0';
  999. if (os_strcmp(buf, "ATTACH") == 0) {
  1000. if (wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst, &from,
  1001. fromlen, 1))
  1002. reply_len = 1;
  1003. else
  1004. reply_len = 2;
  1005. } else if (os_strcmp(buf, "DETACH") == 0) {
  1006. if (wpa_supplicant_ctrl_iface_detach(&priv->ctrl_dst, &from,
  1007. fromlen))
  1008. reply_len = 1;
  1009. else
  1010. reply_len = 2;
  1011. } else {
  1012. reply_buf = wpa_supplicant_global_ctrl_iface_process(
  1013. global, buf, &reply_len);
  1014. reply = reply_buf;
  1015. /*
  1016. * There could be some password/key material in the command, so
  1017. * clear the buffer explicitly now that it is not needed
  1018. * anymore.
  1019. */
  1020. os_memset(buf, 0, res);
  1021. }
  1022. if (!reply && reply_len == 1) {
  1023. reply = "FAIL\n";
  1024. reply_len = 5;
  1025. } else if (!reply && reply_len == 2) {
  1026. reply = "OK\n";
  1027. reply_len = 3;
  1028. }
  1029. if (reply) {
  1030. wpas_ctrl_sock_debug("global_ctrl_sock-sendto",
  1031. sock, reply, reply_len);
  1032. if (sendto(sock, reply, reply_len, 0, (struct sockaddr *) &from,
  1033. fromlen) < 0) {
  1034. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  1035. strerror(errno));
  1036. }
  1037. }
  1038. os_free(reply_buf);
  1039. }
  1040. static int wpas_global_ctrl_iface_open_sock(struct wpa_global *global,
  1041. struct ctrl_iface_global_priv *priv)
  1042. {
  1043. struct sockaddr_un addr;
  1044. const char *ctrl = global->params.ctrl_interface;
  1045. int flags;
  1046. wpa_printf(MSG_DEBUG, "Global control interface '%s'", ctrl);
  1047. #ifdef ANDROID
  1048. if (os_strncmp(ctrl, "@android:", 9) == 0) {
  1049. priv->sock = android_get_control_socket(ctrl + 9);
  1050. if (priv->sock < 0) {
  1051. wpa_printf(MSG_ERROR, "Failed to open Android control "
  1052. "socket '%s'", ctrl + 9);
  1053. goto fail;
  1054. }
  1055. wpa_printf(MSG_DEBUG, "Using Android control socket '%s'",
  1056. ctrl + 9);
  1057. priv->android_control_socket = 1;
  1058. goto havesock;
  1059. }
  1060. if (os_strncmp(ctrl, "@abstract:", 10) != 0) {
  1061. /*
  1062. * Backwards compatibility - try to open an Android control
  1063. * socket and if that fails, assume this was a UNIX domain
  1064. * socket instead.
  1065. */
  1066. priv->sock = android_get_control_socket(ctrl);
  1067. if (priv->sock >= 0) {
  1068. wpa_printf(MSG_DEBUG,
  1069. "Using Android control socket '%s'",
  1070. ctrl);
  1071. priv->android_control_socket = 1;
  1072. goto havesock;
  1073. }
  1074. }
  1075. #endif /* ANDROID */
  1076. priv->sock = socket(PF_UNIX, SOCK_DGRAM, 0);
  1077. if (priv->sock < 0) {
  1078. wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
  1079. goto fail;
  1080. }
  1081. os_memset(&addr, 0, sizeof(addr));
  1082. #if defined(__FreeBSD__) || defined(__FreeBSD_kernel__)
  1083. addr.sun_len = sizeof(addr);
  1084. #endif /* __FreeBSD__ */
  1085. addr.sun_family = AF_UNIX;
  1086. if (os_strncmp(ctrl, "@abstract:", 10) == 0) {
  1087. addr.sun_path[0] = '\0';
  1088. os_strlcpy(addr.sun_path + 1, ctrl + 10,
  1089. sizeof(addr.sun_path) - 1);
  1090. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) <
  1091. 0) {
  1092. wpa_printf(MSG_ERROR, "supp-global-ctrl-iface-init: "
  1093. "bind(PF_UNIX;%s) failed: %s",
  1094. ctrl, strerror(errno));
  1095. goto fail;
  1096. }
  1097. wpa_printf(MSG_DEBUG, "Using Abstract control socket '%s'",
  1098. ctrl + 10);
  1099. goto havesock;
  1100. }
  1101. os_strlcpy(addr.sun_path, ctrl, sizeof(addr.sun_path));
  1102. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) < 0) {
  1103. wpa_printf(MSG_INFO, "supp-global-ctrl-iface-init(%s) (will try fixup): bind(PF_UNIX): %s",
  1104. ctrl, strerror(errno));
  1105. if (connect(priv->sock, (struct sockaddr *) &addr,
  1106. sizeof(addr)) < 0) {
  1107. wpa_printf(MSG_DEBUG, "ctrl_iface exists, but does not"
  1108. " allow connections - assuming it was left"
  1109. "over from forced program termination");
  1110. if (unlink(ctrl) < 0) {
  1111. wpa_printf(MSG_ERROR,
  1112. "Could not unlink existing ctrl_iface socket '%s': %s",
  1113. ctrl, strerror(errno));
  1114. goto fail;
  1115. }
  1116. if (bind(priv->sock, (struct sockaddr *) &addr,
  1117. sizeof(addr)) < 0) {
  1118. wpa_printf(MSG_ERROR, "supp-glb-iface-init: bind(PF_UNIX;%s): %s",
  1119. ctrl, strerror(errno));
  1120. goto fail;
  1121. }
  1122. wpa_printf(MSG_DEBUG, "Successfully replaced leftover "
  1123. "ctrl_iface socket '%s'",
  1124. ctrl);
  1125. } else {
  1126. wpa_printf(MSG_INFO, "ctrl_iface exists and seems to "
  1127. "be in use - cannot override it");
  1128. wpa_printf(MSG_INFO, "Delete '%s' manually if it is "
  1129. "not used anymore",
  1130. ctrl);
  1131. goto fail;
  1132. }
  1133. }
  1134. wpa_printf(MSG_DEBUG, "Using UNIX control socket '%s'", ctrl);
  1135. if (global->params.ctrl_interface_group) {
  1136. char *gid_str = global->params.ctrl_interface_group;
  1137. gid_t gid = 0;
  1138. struct group *grp;
  1139. char *endp;
  1140. grp = getgrnam(gid_str);
  1141. if (grp) {
  1142. gid = grp->gr_gid;
  1143. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d"
  1144. " (from group name '%s')",
  1145. (int) gid, gid_str);
  1146. } else {
  1147. /* Group name not found - try to parse this as gid */
  1148. gid = strtol(gid_str, &endp, 10);
  1149. if (*gid_str == '\0' || *endp != '\0') {
  1150. wpa_printf(MSG_ERROR, "CTRL: Invalid group "
  1151. "'%s'", gid_str);
  1152. goto fail;
  1153. }
  1154. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d",
  1155. (int) gid);
  1156. }
  1157. if (chown(ctrl, -1, gid) < 0) {
  1158. wpa_printf(MSG_ERROR,
  1159. "chown[global_ctrl_interface=%s,gid=%d]: %s",
  1160. ctrl, (int) gid, strerror(errno));
  1161. goto fail;
  1162. }
  1163. if (chmod(ctrl, S_IRWXU | S_IRWXG) < 0) {
  1164. wpa_printf(MSG_ERROR,
  1165. "chmod[global_ctrl_interface=%s]: %s",
  1166. ctrl, strerror(errno));
  1167. goto fail;
  1168. }
  1169. } else {
  1170. if (chmod(ctrl, S_IRWXU) < 0) {
  1171. wpa_printf(MSG_DEBUG,
  1172. "chmod[global_ctrl_interface=%s](S_IRWXU): %s",
  1173. ctrl, strerror(errno));
  1174. /* continue anyway since group change was not required
  1175. */
  1176. }
  1177. }
  1178. havesock:
  1179. /*
  1180. * Make socket non-blocking so that we don't hang forever if
  1181. * target dies unexpectedly.
  1182. */
  1183. flags = fcntl(priv->sock, F_GETFL);
  1184. if (flags >= 0) {
  1185. flags |= O_NONBLOCK;
  1186. if (fcntl(priv->sock, F_SETFL, flags) < 0) {
  1187. wpa_printf(MSG_INFO, "fcntl(ctrl, O_NONBLOCK): %s",
  1188. strerror(errno));
  1189. /* Not fatal, continue on.*/
  1190. }
  1191. }
  1192. eloop_register_read_sock(priv->sock,
  1193. wpa_supplicant_global_ctrl_iface_receive,
  1194. global, priv);
  1195. return 0;
  1196. fail:
  1197. if (priv->sock >= 0) {
  1198. close(priv->sock);
  1199. priv->sock = -1;
  1200. }
  1201. return -1;
  1202. }
  1203. struct ctrl_iface_global_priv *
  1204. wpa_supplicant_global_ctrl_iface_init(struct wpa_global *global)
  1205. {
  1206. struct ctrl_iface_global_priv *priv;
  1207. priv = os_zalloc(sizeof(*priv));
  1208. if (priv == NULL)
  1209. return NULL;
  1210. dl_list_init(&priv->ctrl_dst);
  1211. dl_list_init(&priv->msg_queue);
  1212. priv->global = global;
  1213. priv->sock = -1;
  1214. if (global->params.ctrl_interface == NULL)
  1215. return priv;
  1216. if (wpas_global_ctrl_iface_open_sock(global, priv) < 0) {
  1217. os_free(priv);
  1218. return NULL;
  1219. }
  1220. wpa_msg_register_cb(wpa_supplicant_ctrl_iface_msg_cb);
  1221. return priv;
  1222. }
  1223. static int wpas_ctrl_iface_global_reinit(struct wpa_global *global,
  1224. struct ctrl_iface_global_priv *priv)
  1225. {
  1226. int res;
  1227. if (priv->sock <= 0)
  1228. return -1;
  1229. /*
  1230. * On Android, the control socket being used may be the socket
  1231. * that is created when wpa_supplicant is started as a /init.*.rc
  1232. * service. Such a socket is maintained as a key-value pair in
  1233. * Android's environment. Closing this control socket would leave us
  1234. * in a bad state with an invalid socket descriptor.
  1235. */
  1236. if (priv->android_control_socket)
  1237. return priv->sock;
  1238. eloop_unregister_read_sock(priv->sock);
  1239. close(priv->sock);
  1240. priv->sock = -1;
  1241. res = wpas_global_ctrl_iface_open_sock(global, priv);
  1242. if (res < 0)
  1243. return -1;
  1244. return priv->sock;
  1245. }
  1246. void
  1247. wpa_supplicant_global_ctrl_iface_deinit(struct ctrl_iface_global_priv *priv)
  1248. {
  1249. struct wpa_ctrl_dst *dst, *prev;
  1250. struct ctrl_iface_msg *msg, *prev_msg;
  1251. if (priv->sock >= 0) {
  1252. eloop_unregister_read_sock(priv->sock);
  1253. close(priv->sock);
  1254. }
  1255. if (priv->global->params.ctrl_interface)
  1256. unlink(priv->global->params.ctrl_interface);
  1257. dl_list_for_each_safe(dst, prev, &priv->ctrl_dst, struct wpa_ctrl_dst,
  1258. list)
  1259. os_free(dst);
  1260. dl_list_for_each_safe(msg, prev_msg, &priv->msg_queue,
  1261. struct ctrl_iface_msg, list) {
  1262. dl_list_del(&msg->list);
  1263. os_free(msg);
  1264. }
  1265. os_free(priv);
  1266. }