1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34#include "device.h"
35#include "wpa2.h"
36
37static int msglevel =MSG_LEVEL_INFO;
38
39
40static const u8 abyOUIGK[4] = { 0x00, 0x0F, 0xAC, 0x00 };
41static const u8 abyOUIWEP40[4] = { 0x00, 0x0F, 0xAC, 0x01 };
42static const u8 abyOUIWEP104[4] = { 0x00, 0x0F, 0xAC, 0x05 };
43static const u8 abyOUITKIP[4] = { 0x00, 0x0F, 0xAC, 0x02 };
44static const u8 abyOUICCMP[4] = { 0x00, 0x0F, 0xAC, 0x04 };
45
46static const u8 abyOUI8021X[4] = { 0x00, 0x0F, 0xAC, 0x01 };
47static const u8 abyOUIPSK[4] = { 0x00, 0x0F, 0xAC, 0x02 };
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63void
64WPA2_ClearRSN (
65 PKnownBSS pBSSNode
66 )
67{
68 int ii;
69
70 pBSSNode->bWPA2Valid = false;
71
72 pBSSNode->byCSSGK = WLAN_11i_CSS_CCMP;
73 for (ii=0; ii < 4; ii ++)
74 pBSSNode->abyCSSPK[ii] = WLAN_11i_CSS_CCMP;
75 pBSSNode->wCSSPKCount = 1;
76 for (ii=0; ii < 4; ii ++)
77 pBSSNode->abyAKMSSAuthType[ii] = WLAN_11i_AKMSS_802_1X;
78 pBSSNode->wAKMSSAuthCount = 1;
79 pBSSNode->sRSNCapObj.bRSNCapExist = false;
80 pBSSNode->sRSNCapObj.wRSNCap = 0;
81}
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98void
99WPA2vParseRSN (
100 PKnownBSS pBSSNode,
101 PWLAN_IE_RSN pRSN
102 )
103{
104 int i, j;
105 u16 m = 0, n = 0;
106 u8 * pbyOUI;
107 bool bUseGK = false;
108
109 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"WPA2_ParseRSN: [%d]\n", pRSN->len);
110
111 WPA2_ClearRSN(pBSSNode);
112
113 if (pRSN->len == 2) {
114 if ((pRSN->byElementID == WLAN_EID_RSN) && (pRSN->wVersion == 1)) {
115 pBSSNode->bWPA2Valid = true;
116 }
117 return;
118 }
119
120 if (pRSN->len < 6) {
121
122 return;
123 }
124
125
126 if ((pRSN->byElementID == WLAN_EID_RSN) &&
127 (pRSN->wVersion == 1)) {
128
129 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"Legal 802.11i RSN\n");
130
131 pbyOUI = &(pRSN->abyRSN[0]);
132 if ( !memcmp(pbyOUI, abyOUIWEP40, 4))
133 pBSSNode->byCSSGK = WLAN_11i_CSS_WEP40;
134 else if ( !memcmp(pbyOUI, abyOUITKIP, 4))
135 pBSSNode->byCSSGK = WLAN_11i_CSS_TKIP;
136 else if ( !memcmp(pbyOUI, abyOUICCMP, 4))
137 pBSSNode->byCSSGK = WLAN_11i_CSS_CCMP;
138 else if ( !memcmp(pbyOUI, abyOUIWEP104, 4))
139 pBSSNode->byCSSGK = WLAN_11i_CSS_WEP104;
140 else if ( !memcmp(pbyOUI, abyOUIGK, 4)) {
141
142 return;
143 } else
144
145 pBSSNode->byCSSGK = WLAN_11i_CSS_UNKNOWN;
146
147 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"802.11i CSS: %X\n", pBSSNode->byCSSGK);
148
149 if (pRSN->len == 6) {
150 pBSSNode->bWPA2Valid = true;
151 return;
152 }
153
154 if (pRSN->len >= 8) {
155 pBSSNode->wCSSPKCount = *((u16 *) &(pRSN->abyRSN[4]));
156 j = 0;
157 pbyOUI = &(pRSN->abyRSN[6]);
158
159 for (i = 0; (i < pBSSNode->wCSSPKCount) && (j < sizeof(pBSSNode->abyCSSPK)/sizeof(u8)); i++) {
160
161 if (pRSN->len >= 8+i*4+4) {
162 if ( !memcmp(pbyOUI, abyOUIGK, 4)) {
163 pBSSNode->abyCSSPK[j++] = WLAN_11i_CSS_USE_GROUP;
164 bUseGK = true;
165 } else if ( !memcmp(pbyOUI, abyOUIWEP40, 4)) {
166
167 } else if ( !memcmp(pbyOUI, abyOUITKIP, 4)) {
168 if (pBSSNode->byCSSGK != WLAN_11i_CSS_CCMP)
169 pBSSNode->abyCSSPK[j++] = WLAN_11i_CSS_TKIP;
170 else
171 ;
172 } else if ( !memcmp(pbyOUI, abyOUICCMP, 4)) {
173 pBSSNode->abyCSSPK[j++] = WLAN_11i_CSS_CCMP;
174 } else if ( !memcmp(pbyOUI, abyOUIWEP104, 4)) {
175
176 } else {
177
178 pBSSNode->abyCSSPK[j++] = WLAN_11i_CSS_UNKNOWN;
179 }
180 pbyOUI += 4;
181 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"abyCSSPK[%d]: %X\n", j-1, pBSSNode->abyCSSPK[j-1]);
182 } else
183 break;
184 }
185
186 if (bUseGK == true) {
187 if (j != 1) {
188
189 return;
190 }
191 if (pBSSNode->byCSSGK == WLAN_11i_CSS_CCMP) {
192
193 return;
194 }
195 }
196 if ((pBSSNode->wCSSPKCount != 0) && (j == 0)) {
197
198 return;
199 }
200 pBSSNode->wCSSPKCount = (u16)j;
201 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"wCSSPKCount: %d\n", pBSSNode->wCSSPKCount);
202 }
203
204 m = *((u16 *) &(pRSN->abyRSN[4]));
205
206 if (pRSN->len >= 10+m*4) {
207 pBSSNode->wAKMSSAuthCount = *((u16 *) &(pRSN->abyRSN[6+4*m]));
208 j = 0;
209 pbyOUI = &(pRSN->abyRSN[8+4*m]);
210 for (i = 0; (i < pBSSNode->wAKMSSAuthCount) && (j < sizeof(pBSSNode->abyAKMSSAuthType)/sizeof(u8)); i++) {
211 if (pRSN->len >= 10+(m+i)*4+4) {
212 if ( !memcmp(pbyOUI, abyOUI8021X, 4))
213 pBSSNode->abyAKMSSAuthType[j++] = WLAN_11i_AKMSS_802_1X;
214 else if ( !memcmp(pbyOUI, abyOUIPSK, 4))
215 pBSSNode->abyAKMSSAuthType[j++] = WLAN_11i_AKMSS_PSK;
216 else
217
218 pBSSNode->abyAKMSSAuthType[j++] = WLAN_11i_AKMSS_UNKNOWN;
219 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"abyAKMSSAuthType[%d]: %X\n", j-1, pBSSNode->abyAKMSSAuthType[j-1]);
220 } else
221 break;
222 }
223 pBSSNode->wAKMSSAuthCount = (u16)j;
224 DBG_PRT(MSG_LEVEL_DEBUG, KERN_INFO"wAKMSSAuthCount: %d\n", pBSSNode->wAKMSSAuthCount);
225
226 n = *((u16 *) &(pRSN->abyRSN[6+4*m]));
227 if (pRSN->len >= 12+4*m+4*n) {
228 pBSSNode->sRSNCapObj.bRSNCapExist = true;
229 pBSSNode->sRSNCapObj.wRSNCap = *((u16 *) &(pRSN->abyRSN[8+4*m+4*n]));
230 }
231 }
232
233 pBSSNode->bWPA2Valid = true;
234 }
235}
236