linux/drivers/staging/rtl8723bs/core/rtw_mlme.c
<<
>>
Prefs
   1/******************************************************************************
   2 *
   3 * Copyright(c) 2007 - 2011 Realtek Corporation. All rights reserved.
   4 *
   5 * This program is free software; you can redistribute it and/or modify it
   6 * under the terms of version 2 of the GNU General Public License as
   7 * published by the Free Software Foundation.
   8 *
   9 * This program is distributed in the hope that it will be useful, but WITHOUT
  10 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
  11 * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
  12 * more details.
  13 *
  14 ******************************************************************************/
  15#define _RTW_MLME_C_
  16
  17#include <linux/etherdevice.h>
  18#include <drv_types.h>
  19#include <rtw_debug.h>
  20#include <linux/jiffies.h>
  21
  22extern u8 rtw_do_join(struct adapter *padapter);
  23
  24sint    _rtw_init_mlme_priv(struct adapter *padapter)
  25{
  26        sint    i;
  27        u8 *pbuf;
  28        struct wlan_network     *pnetwork;
  29        struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
  30        sint    res = _SUCCESS;
  31
  32        pmlmepriv->nic_hdl = (u8 *)padapter;
  33
  34        pmlmepriv->pscanned = NULL;
  35        pmlmepriv->fw_state = WIFI_STATION_STATE; /*  Must sync with rtw_wdev_alloc() */
  36        /*  wdev->iftype = NL80211_IFTYPE_STATION */
  37        pmlmepriv->cur_network.network.InfrastructureMode = Ndis802_11AutoUnknown;
  38        pmlmepriv->scan_mode = SCAN_ACTIVE;/*  1: active, 0: pasive. Maybe someday we should rename this varable to "active_mode" (Jeff) */
  39
  40        spin_lock_init(&(pmlmepriv->lock));
  41        _rtw_init_queue(&(pmlmepriv->free_bss_pool));
  42        _rtw_init_queue(&(pmlmepriv->scanned_queue));
  43
  44        set_scanned_network_val(pmlmepriv, 0);
  45
  46        memset(&pmlmepriv->assoc_ssid, 0, sizeof(struct ndis_802_11_ssid));
  47
  48        pbuf = vzalloc(MAX_BSS_CNT * (sizeof(struct wlan_network)));
  49
  50        if (pbuf == NULL) {
  51                res = _FAIL;
  52                goto exit;
  53        }
  54        pmlmepriv->free_bss_buf = pbuf;
  55
  56        pnetwork = (struct wlan_network *)pbuf;
  57
  58        for (i = 0; i < MAX_BSS_CNT; i++) {
  59                INIT_LIST_HEAD(&(pnetwork->list));
  60
  61                list_add_tail(&(pnetwork->list), &(pmlmepriv->free_bss_pool.queue));
  62
  63                pnetwork++;
  64        }
  65
  66        /* allocate DMA-able/Non-Page memory for cmd_buf and rsp_buf */
  67
  68        rtw_clear_scan_deny(padapter);
  69
  70        #define RTW_ROAM_SCAN_RESULT_EXP_MS 5000
  71        #define RTW_ROAM_RSSI_DIFF_TH 10
  72        #define RTW_ROAM_SCAN_INTERVAL_MS 10000
  73
  74        pmlmepriv->roam_flags = 0
  75                | RTW_ROAM_ON_EXPIRED
  76                | RTW_ROAM_ON_RESUME
  77                #ifdef CONFIG_LAYER2_ROAMING_ACTIVE /* FIXME */
  78                | RTW_ROAM_ACTIVE
  79                #endif
  80                ;
  81
  82        pmlmepriv->roam_scanr_exp_ms = RTW_ROAM_SCAN_RESULT_EXP_MS;
  83        pmlmepriv->roam_rssi_diff_th = RTW_ROAM_RSSI_DIFF_TH;
  84        pmlmepriv->roam_scan_int_ms = RTW_ROAM_SCAN_INTERVAL_MS;
  85
  86        rtw_init_mlme_timer(padapter);
  87
  88exit:
  89
  90        return res;
  91}
  92
  93static void rtw_free_mlme_ie_data(u8 **ppie, u32 *plen)
  94{
  95        if (*ppie) {
  96                kfree(*ppie);
  97                *plen = 0;
  98                *ppie = NULL;
  99        }
 100}
 101
 102void rtw_free_mlme_priv_ie_data(struct mlme_priv *pmlmepriv)
 103{
 104        rtw_buf_free(&pmlmepriv->assoc_req, &pmlmepriv->assoc_req_len);
 105        rtw_buf_free(&pmlmepriv->assoc_rsp, &pmlmepriv->assoc_rsp_len);
 106        rtw_free_mlme_ie_data(&pmlmepriv->wps_beacon_ie, &pmlmepriv->wps_beacon_ie_len);
 107        rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_req_ie, &pmlmepriv->wps_probe_req_ie_len);
 108        rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_resp_ie, &pmlmepriv->wps_probe_resp_ie_len);
 109        rtw_free_mlme_ie_data(&pmlmepriv->wps_assoc_resp_ie, &pmlmepriv->wps_assoc_resp_ie_len);
 110
 111        rtw_free_mlme_ie_data(&pmlmepriv->p2p_beacon_ie, &pmlmepriv->p2p_beacon_ie_len);
 112        rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_req_ie, &pmlmepriv->p2p_probe_req_ie_len);
 113        rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_resp_ie, &pmlmepriv->p2p_probe_resp_ie_len);
 114        rtw_free_mlme_ie_data(&pmlmepriv->p2p_go_probe_resp_ie, &pmlmepriv->p2p_go_probe_resp_ie_len);
 115        rtw_free_mlme_ie_data(&pmlmepriv->p2p_assoc_req_ie, &pmlmepriv->p2p_assoc_req_ie_len);
 116}
 117
 118void _rtw_free_mlme_priv(struct mlme_priv *pmlmepriv)
 119{
 120        if (pmlmepriv) {
 121                rtw_free_mlme_priv_ie_data(pmlmepriv);
 122                if (pmlmepriv->free_bss_buf) {
 123                        vfree(pmlmepriv->free_bss_buf);
 124                }
 125        }
 126}
 127
 128/*
 129struct  wlan_network *_rtw_dequeue_network(struct __queue *queue)
 130{
 131        _irqL irqL;
 132
 133        struct wlan_network *pnetwork;
 134
 135        spin_lock_bh(&queue->lock);
 136
 137        if (list_empty(&queue->queue))
 138
 139                pnetwork = NULL;
 140
 141        else
 142        {
 143                pnetwork = LIST_CONTAINOR(get_next(&queue->queue), struct wlan_network, list);
 144
 145                list_del_init(&(pnetwork->list));
 146        }
 147
 148        spin_unlock_bh(&queue->lock);
 149
 150        return pnetwork;
 151}
 152*/
 153
 154struct  wlan_network *_rtw_alloc_network(struct mlme_priv *pmlmepriv)/* _queue *free_queue) */
 155{
 156        struct  wlan_network    *pnetwork;
 157        struct __queue *free_queue = &pmlmepriv->free_bss_pool;
 158        struct list_head *plist = NULL;
 159
 160        spin_lock_bh(&free_queue->lock);
 161
 162        if (list_empty(&free_queue->queue)) {
 163                pnetwork = NULL;
 164                goto exit;
 165        }
 166        plist = get_next(&(free_queue->queue));
 167
 168        pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
 169
 170        list_del_init(&pnetwork->list);
 171
 172        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("_rtw_alloc_network: ptr =%p\n", plist));
 173        pnetwork->network_type = 0;
 174        pnetwork->fixed = false;
 175        pnetwork->last_scanned = jiffies;
 176        pnetwork->aid = 0;
 177        pnetwork->join_res = 0;
 178
 179        pmlmepriv->num_of_scanned++;
 180
 181exit:
 182        spin_unlock_bh(&free_queue->lock);
 183
 184        return pnetwork;
 185}
 186
 187void _rtw_free_network(struct   mlme_priv *pmlmepriv, struct wlan_network *pnetwork, u8 isfreeall)
 188{
 189        unsigned int delta_time;
 190        u32 lifetime = SCANQUEUE_LIFETIME;
 191/*      _irqL irqL; */
 192        struct __queue *free_queue = &(pmlmepriv->free_bss_pool);
 193
 194        if (pnetwork == NULL)
 195                return;
 196
 197        if (pnetwork->fixed == true)
 198                return;
 199
 200        if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) == true) ||
 201                (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == true))
 202                lifetime = 1;
 203
 204        if (!isfreeall) {
 205                delta_time = jiffies_to_msecs(jiffies - pnetwork->last_scanned);
 206                if (delta_time < lifetime)/*  unit:msec */
 207                        return;
 208        }
 209
 210        spin_lock_bh(&free_queue->lock);
 211
 212        list_del_init(&(pnetwork->list));
 213
 214        list_add_tail(&(pnetwork->list), &(free_queue->queue));
 215
 216        pmlmepriv->num_of_scanned--;
 217
 218
 219        /* DBG_871X("_rtw_free_network:SSID =%s\n", pnetwork->network.Ssid.Ssid); */
 220
 221        spin_unlock_bh(&free_queue->lock);
 222}
 223
 224void _rtw_free_network_nolock(struct    mlme_priv *pmlmepriv, struct wlan_network *pnetwork)
 225{
 226
 227        struct __queue *free_queue = &(pmlmepriv->free_bss_pool);
 228
 229        if (pnetwork == NULL)
 230                return;
 231
 232        if (pnetwork->fixed == true)
 233                return;
 234
 235        /* spin_lock_irqsave(&free_queue->lock, irqL); */
 236
 237        list_del_init(&(pnetwork->list));
 238
 239        list_add_tail(&(pnetwork->list), get_list_head(free_queue));
 240
 241        pmlmepriv->num_of_scanned--;
 242
 243        /* spin_unlock_irqrestore(&free_queue->lock, irqL); */
 244}
 245
 246/*
 247        return the wlan_network with the matching addr
 248
 249        Shall be called under atomic context... to avoid possible racing condition...
 250*/
 251struct wlan_network *_rtw_find_network(struct __queue *scanned_queue, u8 *addr)
 252{
 253        struct list_head        *phead, *plist;
 254        struct  wlan_network *pnetwork = NULL;
 255        u8 zero_addr[ETH_ALEN] = {0, 0, 0, 0, 0, 0};
 256
 257        if (!memcmp(zero_addr, addr, ETH_ALEN)) {
 258                pnetwork = NULL;
 259                goto exit;
 260        }
 261
 262        /* spin_lock_bh(&scanned_queue->lock); */
 263
 264        phead = get_list_head(scanned_queue);
 265        plist = get_next(phead);
 266
 267        while (plist != phead) {
 268                pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
 269
 270                if (!memcmp(addr, pnetwork->network.MacAddress, ETH_ALEN))
 271                        break;
 272
 273                plist = get_next(plist);
 274        }
 275
 276        if (plist == phead)
 277                pnetwork = NULL;
 278
 279        /* spin_unlock_bh(&scanned_queue->lock); */
 280
 281exit:
 282        return pnetwork;
 283}
 284
 285void _rtw_free_network_queue(struct adapter *padapter, u8 isfreeall)
 286{
 287        struct list_head *phead, *plist;
 288        struct wlan_network *pnetwork;
 289        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
 290        struct __queue *scanned_queue = &pmlmepriv->scanned_queue;
 291
 292        spin_lock_bh(&scanned_queue->lock);
 293
 294        phead = get_list_head(scanned_queue);
 295        plist = get_next(phead);
 296
 297        while (phead != plist) {
 298
 299                pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
 300
 301                plist = get_next(plist);
 302
 303                _rtw_free_network(pmlmepriv, pnetwork, isfreeall);
 304
 305        }
 306
 307        spin_unlock_bh(&scanned_queue->lock);
 308}
 309
 310
 311
 312
 313sint rtw_if_up(struct adapter *padapter)
 314{
 315
 316        sint res;
 317
 318        if (padapter->bDriverStopped || padapter->bSurpriseRemoved ||
 319                (check_fwstate(&padapter->mlmepriv, _FW_LINKED) == false)) {
 320                RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("rtw_if_up:bDriverStopped(%d) OR bSurpriseRemoved(%d)", padapter->bDriverStopped, padapter->bSurpriseRemoved));
 321                res = false;
 322        } else
 323                res =  true;
 324        return res;
 325}
 326
 327
 328void rtw_generate_random_ibss(u8 *pibss)
 329{
 330        unsigned long curtime = jiffies;
 331
 332        pibss[0] = 0x02;  /* in ad-hoc mode bit1 must set to 1 */
 333        pibss[1] = 0x11;
 334        pibss[2] = 0x87;
 335        pibss[3] = (u8)(curtime & 0xff) ;/* p[0]; */
 336        pibss[4] = (u8)((curtime>>8) & 0xff) ;/* p[1]; */
 337        pibss[5] = (u8)((curtime>>16) & 0xff) ;/* p[2]; */
 338        return;
 339}
 340
 341u8 *rtw_get_capability_from_ie(u8 *ie)
 342{
 343        return (ie + 8 + 2);
 344}
 345
 346
 347u16 rtw_get_capability(struct wlan_bssid_ex *bss)
 348{
 349        __le16  val;
 350
 351        memcpy((u8 *)&val, rtw_get_capability_from_ie(bss->IEs), 2);
 352
 353        return le16_to_cpu(val);
 354}
 355
 356u8 *rtw_get_beacon_interval_from_ie(u8 *ie)
 357{
 358        return (ie + 8);
 359}
 360
 361
 362int     rtw_init_mlme_priv(struct adapter *padapter)/* struct   mlme_priv *pmlmepriv) */
 363{
 364        int     res;
 365
 366        res = _rtw_init_mlme_priv(padapter);/*  (pmlmepriv); */
 367        return res;
 368}
 369
 370void rtw_free_mlme_priv(struct mlme_priv *pmlmepriv)
 371{
 372        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_free_mlme_priv\n"));
 373        _rtw_free_mlme_priv(pmlmepriv);
 374}
 375
 376/*
 377static struct   wlan_network *rtw_dequeue_network(struct __queue *queue)
 378{
 379        struct wlan_network *pnetwork;
 380
 381        pnetwork = _rtw_dequeue_network(queue);
 382        return pnetwork;
 383}
 384*/
 385
 386struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv);
 387struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv)/* _queue  *free_queue) */
 388{
 389        struct  wlan_network    *pnetwork;
 390
 391        pnetwork = _rtw_alloc_network(pmlmepriv);
 392        return pnetwork;
 393}
 394
 395void rtw_free_network_nolock(struct adapter *padapter, struct wlan_network *pnetwork);
 396void rtw_free_network_nolock(struct adapter *padapter, struct wlan_network *pnetwork)
 397{
 398        /* RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_free_network ==> ssid = %s\n\n" , pnetwork->network.Ssid.Ssid)); */
 399        _rtw_free_network_nolock(&(padapter->mlmepriv), pnetwork);
 400        rtw_cfg80211_unlink_bss(padapter, pnetwork);
 401}
 402
 403
 404void rtw_free_network_queue(struct adapter *dev, u8 isfreeall)
 405{
 406        _rtw_free_network_queue(dev, isfreeall);
 407}
 408
 409/*
 410        return the wlan_network with the matching addr
 411
 412        Shall be called under atomic context... to avoid possible racing condition...
 413*/
 414struct  wlan_network *rtw_find_network(struct __queue *scanned_queue, u8 *addr)
 415{
 416        struct  wlan_network *pnetwork = _rtw_find_network(scanned_queue, addr);
 417
 418        return pnetwork;
 419}
 420
 421int rtw_is_same_ibss(struct adapter *adapter, struct wlan_network *pnetwork)
 422{
 423        int ret = true;
 424        struct security_priv *psecuritypriv = &adapter->securitypriv;
 425
 426        if ((psecuritypriv->dot11PrivacyAlgrthm != _NO_PRIVACY_) &&
 427                    (pnetwork->network.Privacy == 0))
 428                ret = false;
 429        else if ((psecuritypriv->dot11PrivacyAlgrthm == _NO_PRIVACY_) &&
 430                 (pnetwork->network.Privacy == 1))
 431                ret = false;
 432        else
 433                ret = true;
 434
 435        return ret;
 436
 437}
 438
 439inline int is_same_ess(struct wlan_bssid_ex *a, struct wlan_bssid_ex *b)
 440{
 441        /* RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("(%s,%d)(%s,%d)\n", */
 442        /*              a->Ssid.Ssid, a->Ssid.SsidLength, b->Ssid.Ssid, b->Ssid.SsidLength)); */
 443        return (a->Ssid.SsidLength == b->Ssid.SsidLength)
 444                &&  !memcmp(a->Ssid.Ssid, b->Ssid.Ssid, a->Ssid.SsidLength);
 445}
 446
 447int is_same_network(struct wlan_bssid_ex *src, struct wlan_bssid_ex *dst, u8 feature)
 448{
 449        u16 s_cap, d_cap;
 450        __le16 tmps, tmpd;
 451
 452        if (rtw_bug_check(dst, src, &s_cap, &d_cap) == false)
 453                        return false;
 454
 455        memcpy((u8 *)&tmps, rtw_get_capability_from_ie(src->IEs), 2);
 456        memcpy((u8 *)&tmpd, rtw_get_capability_from_ie(dst->IEs), 2);
 457
 458
 459        s_cap = le16_to_cpu(tmps);
 460        d_cap = le16_to_cpu(tmpd);
 461
 462        return ((src->Ssid.SsidLength == dst->Ssid.SsidLength) &&
 463                /*      (src->Configuration.DSConfig == dst->Configuration.DSConfig) && */
 464                        ((!memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN))) &&
 465                        ((!memcmp(src->Ssid.Ssid, dst->Ssid.Ssid, src->Ssid.SsidLength))) &&
 466                        ((s_cap & WLAN_CAPABILITY_IBSS) ==
 467                        (d_cap & WLAN_CAPABILITY_IBSS)) &&
 468                        ((s_cap & WLAN_CAPABILITY_BSS) ==
 469                        (d_cap & WLAN_CAPABILITY_BSS)));
 470
 471}
 472
 473struct wlan_network *_rtw_find_same_network(struct __queue *scanned_queue, struct wlan_network *network)
 474{
 475        struct list_head *phead, *plist;
 476        struct wlan_network *found = NULL;
 477
 478        phead = get_list_head(scanned_queue);
 479        plist = get_next(phead);
 480
 481        while (plist != phead) {
 482                found = LIST_CONTAINOR(plist, struct wlan_network, list);
 483
 484                if (is_same_network(&network->network, &found->network, 0))
 485                        break;
 486
 487                plist = get_next(plist);
 488        }
 489
 490        if (plist == phead)
 491                found = NULL;
 492
 493        return found;
 494}
 495
 496struct  wlan_network    *rtw_get_oldest_wlan_network(struct __queue *scanned_queue)
 497{
 498        struct list_head        *plist, *phead;
 499
 500
 501        struct  wlan_network    *pwlan = NULL;
 502        struct  wlan_network    *oldest = NULL;
 503
 504        phead = get_list_head(scanned_queue);
 505
 506        plist = get_next(phead);
 507
 508        while (1) {
 509
 510                if (phead == plist)
 511                        break;
 512
 513                pwlan = LIST_CONTAINOR(plist, struct wlan_network, list);
 514
 515                if (pwlan->fixed != true) {
 516                        if (oldest == NULL || time_after(oldest->last_scanned, pwlan->last_scanned))
 517                                oldest = pwlan;
 518                }
 519
 520                plist = get_next(plist);
 521        }
 522        return oldest;
 523
 524}
 525
 526void update_network(struct wlan_bssid_ex *dst, struct wlan_bssid_ex *src,
 527        struct adapter *padapter, bool update_ie)
 528{
 529        long rssi_ori = dst->Rssi;
 530
 531        u8 sq_smp = src->PhyInfo.SignalQuality;
 532
 533        u8 ss_final;
 534        u8 sq_final;
 535        long rssi_final;
 536
 537        #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
 538        if (strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
 539                DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT", ch%u) ss_ori:%3u, sq_ori:%3u, rssi_ori:%3ld, ss_smp:%3u, sq_smp:%3u, rssi_smp:%3ld\n"
 540                        , FUNC_ADPT_ARG(padapter)
 541                        , src->Ssid.Ssid, MAC_ARG(src->MacAddress), src->Configuration.DSConfig
 542                        , ss_ori, sq_ori, rssi_ori
 543                        , ss_smp, sq_smp, rssi_smp
 544                );
 545        }
 546        #endif
 547
 548        /* The rule below is 1/5 for sample value, 4/5 for history value */
 549        if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) && is_same_network(&(padapter->mlmepriv.cur_network.network), src, 0)) {
 550                /* Take the recvpriv's value for the connected AP*/
 551                ss_final = padapter->recvpriv.signal_strength;
 552                sq_final = padapter->recvpriv.signal_qual;
 553                /* the rssi value here is undecorated, and will be used for antenna diversity */
 554                if (sq_smp != 101) /* from the right channel */
 555                        rssi_final = (src->Rssi+dst->Rssi*4)/5;
 556                else
 557                        rssi_final = rssi_ori;
 558        } else {
 559                if (sq_smp != 101) { /* from the right channel */
 560                        ss_final = ((u32)(src->PhyInfo.SignalStrength)+(u32)(dst->PhyInfo.SignalStrength)*4)/5;
 561                        sq_final = ((u32)(src->PhyInfo.SignalQuality)+(u32)(dst->PhyInfo.SignalQuality)*4)/5;
 562                        rssi_final = (src->Rssi+dst->Rssi*4)/5;
 563                } else {
 564                        /* bss info not receiving from the right channel, use the original RX signal infos */
 565                        ss_final = dst->PhyInfo.SignalStrength;
 566                        sq_final = dst->PhyInfo.SignalQuality;
 567                        rssi_final = dst->Rssi;
 568                }
 569
 570        }
 571
 572        if (update_ie) {
 573                dst->Reserved[0] = src->Reserved[0];
 574                dst->Reserved[1] = src->Reserved[1];
 575                memcpy((u8 *)dst, (u8 *)src, get_wlan_bssid_ex_sz(src));
 576        }
 577
 578        dst->PhyInfo.SignalStrength = ss_final;
 579        dst->PhyInfo.SignalQuality = sq_final;
 580        dst->Rssi = rssi_final;
 581
 582        #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
 583        if (strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
 584                DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT"), SignalStrength:%u, SignalQuality:%u, RawRSSI:%ld\n"
 585                        , FUNC_ADPT_ARG(padapter)
 586                        , dst->Ssid.Ssid, MAC_ARG(dst->MacAddress), dst->PhyInfo.SignalStrength, dst->PhyInfo.SignalQuality, dst->Rssi);
 587        }
 588        #endif
 589}
 590
 591static void update_current_network(struct adapter *adapter, struct wlan_bssid_ex *pnetwork)
 592{
 593        struct  mlme_priv *pmlmepriv = &(adapter->mlmepriv);
 594
 595        rtw_bug_check(&(pmlmepriv->cur_network.network),
 596                &(pmlmepriv->cur_network.network),
 597                &(pmlmepriv->cur_network.network),
 598                &(pmlmepriv->cur_network.network));
 599
 600        if ((check_fwstate(pmlmepriv, _FW_LINKED) == true) && (is_same_network(&(pmlmepriv->cur_network.network), pnetwork, 0))) {
 601                /* RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,"Same Network\n"); */
 602
 603                /* if (pmlmepriv->cur_network.network.IELength<= pnetwork->IELength) */
 604                {
 605                        update_network(&(pmlmepriv->cur_network.network), pnetwork, adapter, true);
 606                        rtw_update_protection(adapter, (pmlmepriv->cur_network.network.IEs) + sizeof(struct ndis_802_11_fix_ie),
 607                                                                        pmlmepriv->cur_network.network.IELength);
 608                }
 609        }
 610}
 611
 612
 613/*
 614
 615Caller must hold pmlmepriv->lock first.
 616
 617
 618*/
 619void rtw_update_scanned_network(struct adapter *adapter, struct wlan_bssid_ex *target)
 620{
 621        struct list_head        *plist, *phead;
 622        u32 bssid_ex_sz;
 623        struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
 624        struct __queue  *queue  = &(pmlmepriv->scanned_queue);
 625        struct wlan_network     *pnetwork = NULL;
 626        struct wlan_network     *oldest = NULL;
 627        int target_find = 0;
 628        u8 feature = 0;
 629
 630        spin_lock_bh(&queue->lock);
 631        phead = get_list_head(queue);
 632        plist = get_next(phead);
 633
 634        while (1) {
 635                if (phead == plist)
 636                        break;
 637
 638                pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
 639
 640                rtw_bug_check(pnetwork, pnetwork, pnetwork, pnetwork);
 641
 642                if (is_same_network(&(pnetwork->network), target, feature)) {
 643                        target_find = 1;
 644                        break;
 645                }
 646
 647                if (rtw_roam_flags(adapter)) {
 648                        /* TODO: don't  select netowrk in the same ess as oldest if it's new enough*/
 649                }
 650
 651                if (oldest == NULL || time_after(oldest->last_scanned, pnetwork->last_scanned))
 652                        oldest = pnetwork;
 653
 654                plist = get_next(plist);
 655
 656        }
 657
 658
 659        /* If we didn't find a match, then get a new network slot to initialize
 660         * with this beacon's information */
 661        /* if (phead == plist) { */
 662        if (!target_find) {
 663                if (list_empty(&pmlmepriv->free_bss_pool.queue)) {
 664                        /* If there are no more slots, expire the oldest */
 665                        /* list_del_init(&oldest->list); */
 666                        pnetwork = oldest;
 667                        if (pnetwork == NULL) {
 668                                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n\n\nsomething wrong here\n\n\n"));
 669                                goto exit;
 670                        }
 671                        memcpy(&(pnetwork->network), target,  get_wlan_bssid_ex_sz(target));
 672                        /*  variable initialize */
 673                        pnetwork->fixed = false;
 674                        pnetwork->last_scanned = jiffies;
 675
 676                        pnetwork->network_type = 0;
 677                        pnetwork->aid = 0;
 678                        pnetwork->join_res = 0;
 679
 680                        /* bss info not receiving from the right channel */
 681                        if (pnetwork->network.PhyInfo.SignalQuality == 101)
 682                                pnetwork->network.PhyInfo.SignalQuality = 0;
 683                } else {
 684                        /* Otherwise just pull from the free list */
 685
 686                        pnetwork = rtw_alloc_network(pmlmepriv); /*  will update scan_time */
 687
 688                        if (pnetwork == NULL) {
 689                                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n\n\nsomething wrong here\n\n\n"));
 690                                goto exit;
 691                        }
 692
 693                        bssid_ex_sz = get_wlan_bssid_ex_sz(target);
 694                        target->Length = bssid_ex_sz;
 695                        memcpy(&(pnetwork->network), target, bssid_ex_sz);
 696
 697                        pnetwork->last_scanned = jiffies;
 698
 699                        /* bss info not receiving from the right channel */
 700                        if (pnetwork->network.PhyInfo.SignalQuality == 101)
 701                                pnetwork->network.PhyInfo.SignalQuality = 0;
 702
 703                        list_add_tail(&(pnetwork->list), &(queue->queue));
 704
 705                }
 706        } else {
 707                /* we have an entry and we are going to update it. But this entry may
 708                 * be already expired. In this case we do the same as we found a new
 709                 * net and call the new_net handler
 710                 */
 711                bool update_ie = true;
 712
 713                pnetwork->last_scanned = jiffies;
 714
 715                /* target.Reserved[0]== 1, means that scanned network is a bcn frame. */
 716                if ((pnetwork->network.IELength > target->IELength) && (target->Reserved[0] == 1))
 717                        update_ie = false;
 718
 719                /*  probe resp(3) > beacon(1) > probe req(2) */
 720                if ((target->Reserved[0] != 2) &&
 721                        (target->Reserved[0] >= pnetwork->network.Reserved[0])
 722                        ) {
 723                        update_ie = true;
 724                } else {
 725                        update_ie = false;
 726                }
 727
 728                update_network(&(pnetwork->network), target, adapter, update_ie);
 729        }
 730
 731exit:
 732        spin_unlock_bh(&queue->lock);
 733}
 734
 735void rtw_add_network(struct adapter *adapter, struct wlan_bssid_ex *pnetwork);
 736void rtw_add_network(struct adapter *adapter, struct wlan_bssid_ex *pnetwork)
 737{
 738        /* struct __queue       *queue  = &(pmlmepriv->scanned_queue); */
 739
 740        /* spin_lock_bh(&queue->lock); */
 741
 742        update_current_network(adapter, pnetwork);
 743
 744        rtw_update_scanned_network(adapter, pnetwork);
 745
 746        /* spin_unlock_bh(&queue->lock); */
 747}
 748
 749/* select the desired network based on the capability of the (i)bss. */
 750/*  check items: (1) security */
 751/*                         (2) network_type */
 752/*                         (3) WMM */
 753/*                         (4) HT */
 754/*                      (5) others */
 755int rtw_is_desired_network(struct adapter *adapter, struct wlan_network *pnetwork);
 756int rtw_is_desired_network(struct adapter *adapter, struct wlan_network *pnetwork)
 757{
 758        struct security_priv *psecuritypriv = &adapter->securitypriv;
 759        struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
 760        u32 desired_encmode;
 761        u32 privacy;
 762
 763        /* u8 wps_ie[512]; */
 764        uint wps_ielen;
 765
 766        int bselected = true;
 767
 768        desired_encmode = psecuritypriv->ndisencryptstatus;
 769        privacy = pnetwork->network.Privacy;
 770
 771        if (check_fwstate(pmlmepriv, WIFI_UNDER_WPS)) {
 772                if (rtw_get_wps_ie(pnetwork->network.IEs+_FIXED_IE_LENGTH_, pnetwork->network.IELength-_FIXED_IE_LENGTH_, NULL, &wps_ielen) != NULL)
 773                        return true;
 774                else
 775                        return false;
 776
 777        }
 778        if (adapter->registrypriv.wifi_spec == 1) { /* for  correct flow of 8021X  to do.... */
 779                u8 *p = NULL;
 780                uint ie_len = 0;
 781
 782                if ((desired_encmode == Ndis802_11EncryptionDisabled) && (privacy != 0))
 783            bselected = false;
 784
 785                if (psecuritypriv->ndisauthtype == Ndis802_11AuthModeWPA2PSK) {
 786                        p = rtw_get_ie(pnetwork->network.IEs + _BEACON_IE_OFFSET_, _RSN_IE_2_, &ie_len, (pnetwork->network.IELength - _BEACON_IE_OFFSET_));
 787                        if (p && ie_len > 0) {
 788                                bselected = true;
 789                        } else {
 790                                bselected = false;
 791                        }
 792                }
 793        }
 794
 795
 796        if ((desired_encmode != Ndis802_11EncryptionDisabled) && (privacy == 0)) {
 797                DBG_871X("desired_encmode: %d, privacy: %d\n", desired_encmode, privacy);
 798                bselected = false;
 799        }
 800
 801        if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == true) {
 802                if (pnetwork->network.InfrastructureMode != pmlmepriv->cur_network.network.InfrastructureMode)
 803                        bselected = false;
 804        }
 805
 806
 807        return bselected;
 808}
 809
 810/* TODO: Perry : For Power Management */
 811void rtw_atimdone_event_callback(struct adapter *adapter, u8 *pbuf)
 812{
 813        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("receive atimdone_evet\n"));
 814}
 815
 816
 817void rtw_survey_event_callback(struct adapter   *adapter, u8 *pbuf)
 818{
 819        u32 len;
 820        struct wlan_bssid_ex *pnetwork;
 821        struct  mlme_priv *pmlmepriv = &(adapter->mlmepriv);
 822
 823        pnetwork = (struct wlan_bssid_ex *)pbuf;
 824
 825        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("rtw_survey_event_callback, ssid =%s\n",  pnetwork->Ssid.Ssid));
 826
 827        len = get_wlan_bssid_ex_sz(pnetwork);
 828        if (len > (sizeof(struct wlan_bssid_ex))) {
 829                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n ****rtw_survey_event_callback: return a wrong bss ***\n"));
 830                return;
 831        }
 832
 833
 834        spin_lock_bh(&pmlmepriv->lock);
 835
 836        /*  update IBSS_network 's timestamp */
 837        if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) == true) {
 838                /* RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_,"rtw_survey_event_callback : WIFI_ADHOC_MASTER_STATE\n\n"); */
 839                if (!memcmp(&(pmlmepriv->cur_network.network.MacAddress), pnetwork->MacAddress, ETH_ALEN)) {
 840                        struct wlan_network *ibss_wlan = NULL;
 841
 842                        memcpy(pmlmepriv->cur_network.network.IEs, pnetwork->IEs, 8);
 843                        spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
 844                        ibss_wlan = rtw_find_network(&pmlmepriv->scanned_queue,  pnetwork->MacAddress);
 845                        if (ibss_wlan) {
 846                                memcpy(ibss_wlan->network.IEs, pnetwork->IEs, 8);
 847                                spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
 848                                goto exit;
 849                        }
 850                        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
 851                }
 852        }
 853
 854        /*  lock pmlmepriv->lock when you accessing network_q */
 855        if ((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == false) {
 856                if (pnetwork->Ssid.Ssid[0] == 0) {
 857                        pnetwork->Ssid.SsidLength = 0;
 858                }
 859                rtw_add_network(adapter, pnetwork);
 860        }
 861
 862exit:
 863
 864        spin_unlock_bh(&pmlmepriv->lock);
 865
 866        return;
 867}
 868
 869
 870
 871void rtw_surveydone_event_callback(struct adapter       *adapter, u8 *pbuf)
 872{
 873        u8 timer_cancelled = false;
 874        struct  mlme_priv *pmlmepriv = &(adapter->mlmepriv);
 875
 876        spin_lock_bh(&pmlmepriv->lock);
 877        if (pmlmepriv->wps_probe_req_ie) {
 878                pmlmepriv->wps_probe_req_ie_len = 0;
 879                kfree(pmlmepriv->wps_probe_req_ie);
 880                pmlmepriv->wps_probe_req_ie = NULL;
 881        }
 882
 883        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("rtw_surveydone_event_callback: fw_state:%x\n\n", get_fwstate(pmlmepriv)));
 884
 885        if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)) {
 886                /* u8 timer_cancelled; */
 887
 888                timer_cancelled = true;
 889                /* _cancel_timer(&pmlmepriv->scan_to_timer, &timer_cancelled); */
 890
 891                _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
 892        } else {
 893
 894                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("nic status =%x, survey done event comes too late!\n", get_fwstate(pmlmepriv)));
 895        }
 896        spin_unlock_bh(&pmlmepriv->lock);
 897
 898        if (timer_cancelled)
 899                _cancel_timer(&pmlmepriv->scan_to_timer, &timer_cancelled);
 900
 901
 902        spin_lock_bh(&pmlmepriv->lock);
 903
 904        rtw_set_signal_stat_timer(&adapter->recvpriv);
 905
 906        if (pmlmepriv->to_join == true) {
 907                if ((check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == true)) {
 908                        if (check_fwstate(pmlmepriv, _FW_LINKED) == false) {
 909                                set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
 910
 911                                if (rtw_select_and_join_from_scanned_queue(pmlmepriv) == _SUCCESS) {
 912                                        _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
 913                                } else{
 914                                        struct wlan_bssid_ex    *pdev_network = &(adapter->registrypriv.dev_network);
 915                                        u8 *pibss = adapter->registrypriv.dev_network.MacAddress;
 916
 917                                        /* pmlmepriv->fw_state ^= _FW_UNDER_SURVEY;because don't set assoc_timer */
 918                                        _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
 919
 920                                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("switching to adhoc master\n"));
 921
 922                                        memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(struct ndis_802_11_ssid));
 923
 924                                        rtw_update_registrypriv_dev_network(adapter);
 925                                        rtw_generate_random_ibss(pibss);
 926
 927                                        pmlmepriv->fw_state = WIFI_ADHOC_MASTER_STATE;
 928
 929                                        if (rtw_createbss_cmd(adapter) != _SUCCESS) {
 930                                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Error =>rtw_createbss_cmd status FAIL\n"));
 931                                        }
 932
 933                                        pmlmepriv->to_join = false;
 934                                }
 935                        }
 936                } else{
 937                        int s_ret;
 938                        set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
 939                        pmlmepriv->to_join = false;
 940                        s_ret = rtw_select_and_join_from_scanned_queue(pmlmepriv);
 941                        if (_SUCCESS == s_ret) {
 942                             _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
 943                        } else if (s_ret == 2) {/* there is no need to wait for join */
 944                                _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
 945                                rtw_indicate_connect(adapter);
 946                        } else{
 947                                DBG_871X("try_to_join, but select scanning queue fail, to_roam:%d\n", rtw_to_roam(adapter));
 948
 949                                if (rtw_to_roam(adapter) != 0) {
 950                                        if (rtw_dec_to_roam(adapter) == 0
 951                                                || _SUCCESS != rtw_sitesurvey_cmd(adapter, &pmlmepriv->assoc_ssid, 1, NULL, 0)
 952                                        ) {
 953                                                rtw_set_to_roam(adapter, 0);
 954#ifdef CONFIG_INTEL_WIDI
 955                                                if (adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING) {
 956                                                        memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
 957                                                        intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
 958                                                        DBG_871X("change to widi listen\n");
 959                                                }
 960#endif /*  CONFIG_INTEL_WIDI */
 961                                                rtw_free_assoc_resources(adapter, 1);
 962                                                rtw_indicate_disconnect(adapter);
 963                                        } else {
 964                                                pmlmepriv->to_join = true;
 965                                        }
 966                                } else
 967                                        rtw_indicate_disconnect(adapter);
 968
 969                                _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
 970                        }
 971                }
 972        } else {
 973                if (rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
 974                        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)
 975                                && check_fwstate(pmlmepriv, _FW_LINKED)) {
 976                                if (rtw_select_roaming_candidate(pmlmepriv) == _SUCCESS) {
 977                                        receive_disconnect(adapter, pmlmepriv->cur_network.network.MacAddress
 978                                                , WLAN_REASON_ACTIVE_ROAM);
 979                                }
 980                        }
 981                }
 982        }
 983
 984        /* DBG_871X("scan complete in %dms\n", jiffies_to_msecs(jiffies - pmlmepriv->scan_start_time)); */
 985
 986        spin_unlock_bh(&pmlmepriv->lock);
 987
 988        rtw_os_xmit_schedule(adapter);
 989
 990        rtw_cfg80211_surveydone_event_callback(adapter);
 991
 992        rtw_indicate_scan_done(adapter, false);
 993}
 994
 995void rtw_dummy_event_callback(struct adapter *adapter, u8 *pbuf)
 996{
 997}
 998
 999void rtw_fwdbg_event_callback(struct adapter *adapter, u8 *pbuf)
1000{
1001}
1002
1003static void free_scanqueue(struct       mlme_priv *pmlmepriv)
1004{
1005        struct __queue *free_queue = &pmlmepriv->free_bss_pool;
1006        struct __queue *scan_queue = &pmlmepriv->scanned_queue;
1007        struct list_head        *plist, *phead, *ptemp;
1008
1009        RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+free_scanqueue\n"));
1010        spin_lock_bh(&scan_queue->lock);
1011        spin_lock_bh(&free_queue->lock);
1012
1013        phead = get_list_head(scan_queue);
1014        plist = get_next(phead);
1015
1016        while (plist != phead) {
1017                ptemp = get_next(plist);
1018                list_del_init(plist);
1019                list_add_tail(plist, &free_queue->queue);
1020                plist = ptemp;
1021                pmlmepriv->num_of_scanned--;
1022        }
1023
1024        spin_unlock_bh(&free_queue->lock);
1025        spin_unlock_bh(&scan_queue->lock);
1026}
1027
1028static void rtw_reset_rx_info(struct debug_priv *pdbgpriv)
1029{
1030        pdbgpriv->dbg_rx_ampdu_drop_count = 0;
1031        pdbgpriv->dbg_rx_ampdu_forced_indicate_count = 0;
1032        pdbgpriv->dbg_rx_ampdu_loss_count = 0;
1033        pdbgpriv->dbg_rx_dup_mgt_frame_drop_count = 0;
1034        pdbgpriv->dbg_rx_ampdu_window_shift_cnt = 0;
1035}
1036
1037static void find_network(struct adapter *adapter)
1038{
1039        struct wlan_network *pwlan = NULL;
1040        struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1041        struct wlan_network *tgt_network = &pmlmepriv->cur_network;
1042
1043        pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
1044        if (pwlan)
1045                pwlan->fixed = false;
1046        else
1047                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_free_assoc_resources : pwlan == NULL\n\n"));
1048
1049
1050        if (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) &&
1051            (adapter->stapriv.asoc_sta_count == 1))
1052                rtw_free_network_nolock(adapter, pwlan);
1053}
1054
1055/*
1056*rtw_free_assoc_resources: the caller has to lock pmlmepriv->lock
1057*/
1058void rtw_free_assoc_resources(struct adapter *adapter, int lock_scanned_queue)
1059{
1060        struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1061        struct wlan_network *tgt_network = &pmlmepriv->cur_network;
1062        struct  sta_priv *pstapriv = &adapter->stapriv;
1063        struct dvobj_priv *psdpriv = adapter->dvobj;
1064        struct debug_priv *pdbgpriv = &psdpriv->drv_dbg;
1065
1066        RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+rtw_free_assoc_resources\n"));
1067        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("tgt_network->network.MacAddress ="MAC_FMT" ssid =%s\n",
1068                MAC_ARG(tgt_network->network.MacAddress), tgt_network->network.Ssid.Ssid));
1069
1070        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE|WIFI_AP_STATE)) {
1071                struct sta_info *psta;
1072
1073                psta = rtw_get_stainfo(&adapter->stapriv, tgt_network->network.MacAddress);
1074                spin_lock_bh(&(pstapriv->sta_hash_lock));
1075                rtw_free_stainfo(adapter,  psta);
1076
1077                spin_unlock_bh(&(pstapriv->sta_hash_lock));
1078
1079        }
1080
1081        if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE|WIFI_AP_STATE)) {
1082                struct sta_info *psta;
1083
1084                rtw_free_all_stainfo(adapter);
1085
1086                psta = rtw_get_bcmc_stainfo(adapter);
1087                rtw_free_stainfo(adapter, psta);
1088
1089                rtw_init_bcmc_stainfo(adapter);
1090        }
1091
1092        find_network(adapter);
1093
1094        if (lock_scanned_queue)
1095                adapter->securitypriv.key_mask = 0;
1096
1097        rtw_reset_rx_info(pdbgpriv);
1098}
1099
1100/*
1101*rtw_indicate_connect: the caller has to lock pmlmepriv->lock
1102*/
1103void rtw_indicate_connect(struct adapter *padapter)
1104{
1105        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1106
1107        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_connect\n"));
1108
1109        pmlmepriv->to_join = false;
1110
1111        if (!check_fwstate(&padapter->mlmepriv, _FW_LINKED)) {
1112
1113                set_fwstate(pmlmepriv, _FW_LINKED);
1114
1115                rtw_os_indicate_connect(padapter);
1116        }
1117
1118        rtw_set_to_roam(padapter, 0);
1119#ifdef CONFIG_INTEL_WIDI
1120        if (padapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING) {
1121                memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1122                intel_widi_wk_cmd(padapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1123                DBG_871X("change to widi listen\n");
1124        }
1125#endif /*  CONFIG_INTEL_WIDI */
1126
1127        rtw_set_scan_deny(padapter, 3000);
1128
1129        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("-rtw_indicate_connect: fw_state = 0x%08x\n", get_fwstate(pmlmepriv)));
1130}
1131
1132/*
1133*rtw_indicate_disconnect: the caller has to lock pmlmepriv->lock
1134*/
1135void rtw_indicate_disconnect(struct adapter *padapter)
1136{
1137        struct  mlme_priv *pmlmepriv = &padapter->mlmepriv;
1138
1139        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_disconnect\n"));
1140
1141        _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING|WIFI_UNDER_WPS);
1142
1143        /* DBG_871X("clear wps when %s\n", __func__); */
1144
1145        if (rtw_to_roam(padapter) > 0)
1146                _clr_fwstate_(pmlmepriv, _FW_LINKED);
1147
1148        if (check_fwstate(&padapter->mlmepriv, _FW_LINKED)
1149                || (rtw_to_roam(padapter) <= 0)
1150        ) {
1151                rtw_os_indicate_disconnect(padapter);
1152
1153                /* set ips_deny_time to avoid enter IPS before LPS leave */
1154                rtw_set_ips_deny(padapter, 3000);
1155
1156                _clr_fwstate_(pmlmepriv, _FW_LINKED);
1157
1158                rtw_clear_scan_deny(padapter);
1159        }
1160
1161        rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_DISCONNECT, 1);
1162}
1163
1164inline void rtw_indicate_scan_done(struct adapter *padapter, bool aborted)
1165{
1166        DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
1167
1168        rtw_os_indicate_scan_done(padapter, aborted);
1169
1170        if (is_primary_adapter(padapter) &&
1171            (!adapter_to_pwrctl(padapter)->bInSuspend) &&
1172            (!check_fwstate(&padapter->mlmepriv,
1173                            WIFI_ASOC_STATE|WIFI_UNDER_LINKING))) {
1174                struct pwrctrl_priv *pwrpriv;
1175
1176                pwrpriv = adapter_to_pwrctl(padapter);
1177                rtw_set_ips_deny(padapter, 0);
1178                _set_timer(&padapter->mlmepriv.dynamic_chk_timer, 1);
1179        }
1180}
1181
1182void rtw_scan_abort(struct adapter *adapter)
1183{
1184        unsigned long start;
1185        struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1186        struct mlme_ext_priv *pmlmeext = &(adapter->mlmeextpriv);
1187
1188        start = jiffies;
1189        pmlmeext->scan_abort = true;
1190        while (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)
1191                && jiffies_to_msecs(start) <= 200) {
1192
1193                if (adapter->bDriverStopped || adapter->bSurpriseRemoved)
1194                        break;
1195
1196                DBG_871X(FUNC_NDEV_FMT"fw_state = _FW_UNDER_SURVEY!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1197                msleep(20);
1198        }
1199
1200        if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)) {
1201                if (!adapter->bDriverStopped && !adapter->bSurpriseRemoved)
1202                        DBG_871X(FUNC_NDEV_FMT"waiting for scan_abort time out!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1203                rtw_indicate_scan_done(adapter, true);
1204        }
1205        pmlmeext->scan_abort = false;
1206}
1207
1208static struct sta_info *rtw_joinbss_update_stainfo(struct adapter *padapter, struct wlan_network *pnetwork)
1209{
1210        int i;
1211        struct sta_info *bmc_sta, *psta = NULL;
1212        struct recv_reorder_ctrl *preorder_ctrl;
1213        struct sta_priv *pstapriv = &padapter->stapriv;
1214        struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1215
1216        psta = rtw_get_stainfo(pstapriv, pnetwork->network.MacAddress);
1217        if (psta == NULL) {
1218                psta = rtw_alloc_stainfo(pstapriv, pnetwork->network.MacAddress);
1219        }
1220
1221        if (psta) { /* update ptarget_sta */
1222
1223                DBG_871X("%s\n", __func__);
1224
1225                psta->aid  = pnetwork->join_res;
1226
1227                update_sta_info(padapter, psta);
1228
1229                /* update station supportRate */
1230                psta->bssratelen = rtw_get_rateset_len(pnetwork->network.SupportedRates);
1231                memcpy(psta->bssrateset, pnetwork->network.SupportedRates, psta->bssratelen);
1232                rtw_hal_update_sta_rate_mask(padapter, psta);
1233
1234                psta->wireless_mode = pmlmeext->cur_wireless_mode;
1235                psta->raid = rtw_hal_networktype_to_raid(padapter, psta);
1236
1237
1238                /* sta mode */
1239                rtw_hal_set_odm_var(padapter, HAL_ODM_STA_INFO, psta, true);
1240
1241                /* security related */
1242                if (padapter->securitypriv.dot11AuthAlgrthm == dot11AuthAlgrthm_8021X) {
1243                        padapter->securitypriv.binstallGrpkey = false;
1244                        padapter->securitypriv.busetkipkey = false;
1245                        padapter->securitypriv.bgrpkey_handshake = false;
1246
1247                        psta->ieee8021x_blocked = true;
1248                        psta->dot118021XPrivacy = padapter->securitypriv.dot11PrivacyAlgrthm;
1249
1250                        memset((u8 *)&psta->dot118021x_UncstKey, 0, sizeof(union Keytype));
1251
1252                        memset((u8 *)&psta->dot11tkiprxmickey, 0, sizeof(union Keytype));
1253                        memset((u8 *)&psta->dot11tkiptxmickey, 0, sizeof(union Keytype));
1254
1255                        memset((u8 *)&psta->dot11txpn, 0, sizeof(union pn48));
1256                        psta->dot11txpn.val = psta->dot11txpn.val + 1;
1257                        memset((u8 *)&psta->dot11wtxpn, 0, sizeof(union pn48));
1258                        memset((u8 *)&psta->dot11rxpn, 0, sizeof(union pn48));
1259                }
1260
1261                /*      Commented by Albert 2012/07/21 */
1262                /*      When doing the WPS, the wps_ie_len won't equal to 0 */
1263                /*      And the Wi-Fi driver shouldn't allow the data packet to be transmitted. */
1264                if (padapter->securitypriv.wps_ie_len != 0) {
1265                        psta->ieee8021x_blocked = true;
1266                        padapter->securitypriv.wps_ie_len = 0;
1267                }
1268
1269
1270                /* for A-MPDU Rx reordering buffer control for bmc_sta & sta_info */
1271                /* if A-MPDU Rx is enabled, resetting  rx_ordering_ctrl wstart_b(indicate_seq) to default value = 0xffff */
1272                /* todo: check if AP can send A-MPDU packets */
1273                for (i = 0; i < 16 ; i++) {
1274                        /* preorder_ctrl = &precvpriv->recvreorder_ctrl[i]; */
1275                        preorder_ctrl = &psta->recvreorder_ctrl[i];
1276                        preorder_ctrl->enable = false;
1277                        preorder_ctrl->indicate_seq = 0xffff;
1278                        #ifdef DBG_RX_SEQ
1279                        DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u\n", __func__, __LINE__,
1280                                preorder_ctrl->indicate_seq);
1281                        #endif
1282                        preorder_ctrl->wend_b = 0xffff;
1283                        preorder_ctrl->wsize_b = 64;/* max_ampdu_sz;ex. 32(kbytes) -> wsize_b =32 */
1284                }
1285
1286
1287                bmc_sta = rtw_get_bcmc_stainfo(padapter);
1288                if (bmc_sta) {
1289                        for (i = 0; i < 16 ; i++) {
1290                                /* preorder_ctrl = &precvpriv->recvreorder_ctrl[i]; */
1291                                preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
1292                                preorder_ctrl->enable = false;
1293                                preorder_ctrl->indicate_seq = 0xffff;
1294                                #ifdef DBG_RX_SEQ
1295                                DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u\n", __func__, __LINE__,
1296                                        preorder_ctrl->indicate_seq);
1297                                #endif
1298                                preorder_ctrl->wend_b = 0xffff;
1299                                preorder_ctrl->wsize_b = 64;/* max_ampdu_sz;ex. 32(kbytes) -> wsize_b =32 */
1300                        }
1301                }
1302        }
1303
1304        return psta;
1305
1306}
1307
1308/* pnetwork : returns from rtw_joinbss_event_callback */
1309/* ptarget_wlan: found from scanned_queue */
1310static void rtw_joinbss_update_network(struct adapter *padapter, struct wlan_network *ptarget_wlan, struct wlan_network  *pnetwork)
1311{
1312        struct mlme_priv *pmlmepriv = &(padapter->mlmepriv);
1313        struct wlan_network  *cur_network = &(pmlmepriv->cur_network);
1314
1315        DBG_871X("%s\n", __func__);
1316
1317        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("\nfw_state:%x, BSSID:"MAC_FMT"\n"
1318                , get_fwstate(pmlmepriv), MAC_ARG(pnetwork->network.MacAddress)));
1319
1320
1321        /*  why not use ptarget_wlan?? */
1322        memcpy(&cur_network->network, &pnetwork->network, pnetwork->network.Length);
1323        /*  some IEs in pnetwork is wrong, so we should use ptarget_wlan IEs */
1324        cur_network->network.IELength = ptarget_wlan->network.IELength;
1325        memcpy(&cur_network->network.IEs[0], &ptarget_wlan->network.IEs[0], MAX_IE_SZ);
1326
1327        cur_network->aid = pnetwork->join_res;
1328
1329
1330        rtw_set_signal_stat_timer(&padapter->recvpriv);
1331
1332        padapter->recvpriv.signal_strength = ptarget_wlan->network.PhyInfo.SignalStrength;
1333        padapter->recvpriv.signal_qual = ptarget_wlan->network.PhyInfo.SignalQuality;
1334        /* the ptarget_wlan->network.Rssi is raw data, we use ptarget_wlan->network.PhyInfo.SignalStrength instead (has scaled) */
1335        padapter->recvpriv.rssi = translate_percentage_to_dbm(ptarget_wlan->network.PhyInfo.SignalStrength);
1336        #if defined(DBG_RX_SIGNAL_DISPLAY_PROCESSING) && 1
1337                DBG_871X(FUNC_ADPT_FMT" signal_strength:%3u, rssi:%3d, signal_qual:%3u"
1338                        "\n"
1339                        , FUNC_ADPT_ARG(padapter)
1340                        , padapter->recvpriv.signal_strength
1341                        , padapter->recvpriv.rssi
1342                        , padapter->recvpriv.signal_qual
1343        );
1344        #endif
1345
1346        rtw_set_signal_stat_timer(&padapter->recvpriv);
1347
1348        /* update fw_state will clr _FW_UNDER_LINKING here indirectly */
1349        switch (pnetwork->network.InfrastructureMode) {
1350        case Ndis802_11Infrastructure:
1351
1352                        if (pmlmepriv->fw_state&WIFI_UNDER_WPS)
1353                                pmlmepriv->fw_state = WIFI_STATION_STATE|WIFI_UNDER_WPS;
1354                        else
1355                                pmlmepriv->fw_state = WIFI_STATION_STATE;
1356
1357                        break;
1358        case Ndis802_11IBSS:
1359                        pmlmepriv->fw_state = WIFI_ADHOC_STATE;
1360                        break;
1361        default:
1362                        pmlmepriv->fw_state = WIFI_NULL_STATE;
1363                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Invalid network_mode\n"));
1364                        break;
1365        }
1366
1367        rtw_update_protection(padapter, (cur_network->network.IEs) + sizeof(struct ndis_802_11_fix_ie),
1368                                                                        (cur_network->network.IELength));
1369
1370        rtw_update_ht_cap(padapter, cur_network->network.IEs, cur_network->network.IELength, (u8) cur_network->network.Configuration.DSConfig);
1371}
1372
1373/* Notes: the function could be > passive_level (the same context as Rx tasklet) */
1374/* pnetwork : returns from rtw_joinbss_event_callback */
1375/* ptarget_wlan: found from scanned_queue */
1376/* if join_res > 0, for (fw_state ==WIFI_STATION_STATE), we check if  "ptarget_sta" & "ptarget_wlan" exist. */
1377/* if join_res > 0, for (fw_state ==WIFI_ADHOC_STATE), we only check if "ptarget_wlan" exist. */
1378/* if join_res > 0, update "cur_network->network" from "pnetwork->network" if (ptarget_wlan != NULL). */
1379/*  */
1380/* define REJOIN */
1381void rtw_joinbss_event_prehandle(struct adapter *adapter, u8 *pbuf)
1382{
1383        static u8 retry;
1384        u8 timer_cancelled;
1385        struct sta_info *ptarget_sta = NULL, *pcur_sta = NULL;
1386        struct  sta_priv *pstapriv = &adapter->stapriv;
1387        struct  mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1388        struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
1389        struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
1390        struct wlan_network     *pcur_wlan = NULL, *ptarget_wlan = NULL;
1391        unsigned int            the_same_macaddr = false;
1392
1393        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("joinbss event call back received with res =%d\n", pnetwork->join_res));
1394
1395        rtw_get_encrypt_decrypt_from_registrypriv(adapter);
1396
1397
1398        if (pmlmepriv->assoc_ssid.SsidLength == 0) {
1399                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("@@@@@   joinbss event call back  for Any SSid\n"));
1400        } else{
1401                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("@@@@@   rtw_joinbss_event_callback for SSid:%s\n", pmlmepriv->assoc_ssid.Ssid));
1402        }
1403
1404        the_same_macaddr = !memcmp(pnetwork->network.MacAddress, cur_network->network.MacAddress, ETH_ALEN);
1405
1406        pnetwork->network.Length = get_wlan_bssid_ex_sz(&pnetwork->network);
1407        if (pnetwork->network.Length > sizeof(struct wlan_bssid_ex)) {
1408                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n\n ***joinbss_evt_callback return a wrong bss ***\n\n"));
1409                return;
1410        }
1411
1412        spin_lock_bh(&pmlmepriv->lock);
1413
1414        pmlmepriv->LinkDetectInfo.TrafficTransitionCount = 0;
1415        pmlmepriv->LinkDetectInfo.LowPowerTransitionCount = 0;
1416
1417        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("\n rtw_joinbss_event_callback !! spin_lock_irqsave\n"));
1418
1419        if (pnetwork->join_res > 0) {
1420                spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
1421                retry = 0;
1422                if (check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) {
1423                        /* s1. find ptarget_wlan */
1424                        if (check_fwstate(pmlmepriv, _FW_LINKED)) {
1425                                if (the_same_macaddr == true) {
1426                                        ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
1427                                } else{
1428                                        pcur_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
1429                                        if (pcur_wlan)
1430                                                pcur_wlan->fixed = false;
1431
1432                                        pcur_sta = rtw_get_stainfo(pstapriv, cur_network->network.MacAddress);
1433                                        if (pcur_sta)
1434                                                rtw_free_stainfo(adapter,  pcur_sta);
1435
1436                                        ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->network.MacAddress);
1437                                        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE) == true) {
1438                                                if (ptarget_wlan)
1439                                                        ptarget_wlan->fixed = true;
1440                                        }
1441                                }
1442
1443                        } else{
1444                                ptarget_wlan = _rtw_find_same_network(&pmlmepriv->scanned_queue, pnetwork);
1445                                if (check_fwstate(pmlmepriv, WIFI_STATION_STATE) == true) {
1446                                        if (ptarget_wlan)
1447                                                ptarget_wlan->fixed = true;
1448                                }
1449                        }
1450
1451                        /* s2. update cur_network */
1452                        if (ptarget_wlan) {
1453                                rtw_joinbss_update_network(adapter, ptarget_wlan, pnetwork);
1454                        } else{
1455                                DBG_871X_LEVEL(_drv_always_, "Can't find ptarget_wlan when joinbss_event callback\n");
1456                                spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1457                                goto ignore_joinbss_callback;
1458                        }
1459
1460
1461                        /* s3. find ptarget_sta & update ptarget_sta after update cur_network only for station mode */
1462                        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE) == true) {
1463                                ptarget_sta = rtw_joinbss_update_stainfo(adapter, pnetwork);
1464                                if (ptarget_sta == NULL) {
1465                                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Can't update stainfo when joinbss_event callback\n"));
1466                                        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1467                                        goto ignore_joinbss_callback;
1468                                }
1469                        }
1470
1471                        /* s4. indicate connect */
1472                        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE) == true) {
1473                                pmlmepriv->cur_network_scanned = ptarget_wlan;
1474                                rtw_indicate_connect(adapter);
1475                        } else{
1476                                /* adhoc mode will rtw_indicate_connect when rtw_stassoc_event_callback */
1477                                RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("adhoc mode, fw_state:%x", get_fwstate(pmlmepriv)));
1478                        }
1479
1480
1481                        /* s5. Cancel assoc_timer */
1482                        _cancel_timer(&pmlmepriv->assoc_timer, &timer_cancelled);
1483
1484                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("Cancel assoc_timer\n"));
1485
1486                } else{
1487                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_joinbss_event_callback err: fw_state:%x", get_fwstate(pmlmepriv)));
1488                        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1489                        goto ignore_joinbss_callback;
1490                }
1491
1492                spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1493
1494        } else if (pnetwork->join_res == -4) {
1495                rtw_reset_securitypriv(adapter);
1496                _set_timer(&pmlmepriv->assoc_timer, 1);
1497
1498                /* rtw_free_assoc_resources(adapter, 1); */
1499
1500                if ((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == true) {
1501                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("fail! clear _FW_UNDER_LINKING ^^^fw_state =%x\n", get_fwstate(pmlmepriv)));
1502                        _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1503                }
1504
1505        } else{/* if join_res < 0 (join fails), then try again */
1506
1507                #ifdef REJOIN
1508                res = _FAIL;
1509                if (retry < 2) {
1510                        res = rtw_select_and_join_from_scanned_queue(pmlmepriv);
1511                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("rtw_select_and_join_from_scanned_queue again! res:%d\n", res));
1512                }
1513
1514                if (res == _SUCCESS) {
1515                        /* extend time of assoc_timer */
1516                        _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
1517                        retry++;
1518                } else if (res == 2) {/* there is no need to wait for join */
1519                        _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1520                        rtw_indicate_connect(adapter);
1521                } else{
1522                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Set Assoc_Timer = 1; can't find match ssid in scanned_q\n"));
1523                #endif
1524
1525                        _set_timer(&pmlmepriv->assoc_timer, 1);
1526                        /* rtw_free_assoc_resources(adapter, 1); */
1527                        _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1528
1529                #ifdef REJOIN
1530                        retry = 0;
1531                }
1532                #endif
1533        }
1534
1535ignore_joinbss_callback:
1536
1537        spin_unlock_bh(&pmlmepriv->lock);
1538}
1539
1540void rtw_joinbss_event_callback(struct adapter *adapter, u8 *pbuf)
1541{
1542        struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
1543
1544        mlmeext_joinbss_event_callback(adapter, pnetwork->join_res);
1545
1546        rtw_os_xmit_schedule(adapter);
1547}
1548
1549/* FOR STA, AP , AD-HOC mode */
1550void rtw_sta_media_status_rpt(struct adapter *adapter, struct sta_info *psta, u32 mstatus)
1551{
1552        u16 media_status_rpt;
1553
1554        if (psta == NULL)
1555                return;
1556
1557        media_status_rpt = (u16)((psta->mac_id<<8)|mstatus); /*   MACID|OPMODE:1 connect */
1558        rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status_rpt);
1559}
1560
1561void rtw_stassoc_event_callback(struct adapter *adapter, u8 *pbuf)
1562{
1563        struct sta_info *psta;
1564        struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1565        struct stassoc_event    *pstassoc       = (struct stassoc_event *)pbuf;
1566        struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
1567        struct wlan_network     *ptarget_wlan = NULL;
1568
1569        if (rtw_access_ctrl(adapter, pstassoc->macaddr) == false)
1570                return;
1571
1572        if (check_fwstate(pmlmepriv, WIFI_AP_STATE)) {
1573                psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);
1574                if (psta) {
1575                        u8 *passoc_req = NULL;
1576                        u32 assoc_req_len = 0;
1577
1578                        rtw_sta_media_status_rpt(adapter, psta, 1);
1579
1580#ifndef CONFIG_AUTO_AP_MODE
1581
1582                        ap_sta_info_defer_update(adapter, psta);
1583
1584                        /* report to upper layer */
1585                        DBG_871X("indicate_sta_assoc_event to upper layer - hostapd\n");
1586                        spin_lock_bh(&psta->lock);
1587                        if (psta->passoc_req && psta->assoc_req_len > 0) {
1588                                passoc_req = rtw_zmalloc(psta->assoc_req_len);
1589                                if (passoc_req) {
1590                                        assoc_req_len = psta->assoc_req_len;
1591                                        memcpy(passoc_req, psta->passoc_req, assoc_req_len);
1592
1593                                        kfree(psta->passoc_req);
1594                                        psta->passoc_req = NULL;
1595                                        psta->assoc_req_len = 0;
1596                                }
1597                        }
1598                        spin_unlock_bh(&psta->lock);
1599
1600                        if (passoc_req && assoc_req_len > 0) {
1601                                rtw_cfg80211_indicate_sta_assoc(adapter, passoc_req, assoc_req_len);
1602
1603                                kfree(passoc_req);
1604                        }
1605#endif /* CONFIG_AUTO_AP_MODE */
1606                }
1607                return;
1608        }
1609
1610        /* for AD-HOC mode */
1611        psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);
1612        if (psta != NULL) {
1613                /* the sta have been in sta_info_queue => do nothing */
1614
1615                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Error: rtw_stassoc_event_callback: sta has been in sta_hash_queue\n"));
1616
1617                return; /* between drv has received this event before and  fw have not yet to set key to CAM_ENTRY) */
1618        }
1619
1620        psta = rtw_alloc_stainfo(&adapter->stapriv, pstassoc->macaddr);
1621        if (psta == NULL) {
1622                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("Can't alloc sta_info when rtw_stassoc_event_callback\n"));
1623                return;
1624        }
1625
1626        /* to do : init sta_info variable */
1627        psta->qos_option = 0;
1628        psta->mac_id = (uint)pstassoc->cam_id;
1629        /* psta->aid = (uint)pstassoc->cam_id; */
1630        DBG_871X("%s\n", __func__);
1631        /* for ad-hoc mode */
1632        rtw_hal_set_odm_var(adapter, HAL_ODM_STA_INFO, psta, true);
1633
1634        rtw_sta_media_status_rpt(adapter, psta, 1);
1635
1636        if (adapter->securitypriv.dot11AuthAlgrthm == dot11AuthAlgrthm_8021X)
1637                psta->dot118021XPrivacy = adapter->securitypriv.dot11PrivacyAlgrthm;
1638
1639
1640        psta->ieee8021x_blocked = false;
1641
1642        spin_lock_bh(&pmlmepriv->lock);
1643
1644        if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) == true) ||
1645                (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == true)) {
1646                if (adapter->stapriv.asoc_sta_count == 2) {
1647                        spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
1648                        ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
1649                        pmlmepriv->cur_network_scanned = ptarget_wlan;
1650                        if (ptarget_wlan)
1651                                ptarget_wlan->fixed = true;
1652                        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1653                        /*  a sta + bc/mc_stainfo (not Ibss_stainfo) */
1654                        rtw_indicate_connect(adapter);
1655                }
1656        }
1657
1658        spin_unlock_bh(&pmlmepriv->lock);
1659
1660
1661        mlmeext_sta_add_event_callback(adapter, psta);
1662}
1663
1664void rtw_stadel_event_callback(struct adapter *adapter, u8 *pbuf)
1665{
1666        int mac_id = (-1);
1667        struct sta_info *psta;
1668        struct wlan_network *pwlan = NULL;
1669        struct wlan_bssid_ex    *pdev_network = NULL;
1670        u8 *pibss = NULL;
1671        struct  mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1672        struct  stadel_event *pstadel   = (struct stadel_event *)pbuf;
1673        struct wlan_network *tgt_network = &(pmlmepriv->cur_network);
1674        struct mlme_ext_priv *pmlmeext = &adapter->mlmeextpriv;
1675        struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1676
1677        psta = rtw_get_stainfo(&adapter->stapriv, pstadel->macaddr);
1678        if (psta)
1679                mac_id = psta->mac_id;
1680        else
1681                mac_id = pstadel->mac_id;
1682
1683        DBG_871X("%s(mac_id =%d) =" MAC_FMT "\n", __func__, mac_id, MAC_ARG(pstadel->macaddr));
1684
1685        if (mac_id >= 0) {
1686                u16 media_status;
1687                media_status = (mac_id<<8)|0; /*   MACID|OPMODE:0 means disconnect */
1688                /* for STA, AP, ADHOC mode, report disconnect stauts to FW */
1689                rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status);
1690        }
1691
1692        /* if (check_fwstate(pmlmepriv, WIFI_AP_STATE)) */
1693        if ((pmlmeinfo->state&0x03) == WIFI_FW_AP_STATE)
1694                return;
1695
1696
1697        mlmeext_sta_del_event_callback(adapter);
1698
1699        spin_lock_bh(&pmlmepriv->lock);
1700
1701        if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
1702                u16 reason = *((unsigned short *)(pstadel->rsvd));
1703                bool roam = false;
1704                struct wlan_network *roam_target = NULL;
1705
1706                if (adapter->registrypriv.wifi_spec == 1) {
1707                        roam = false;
1708                } else if (reason == WLAN_REASON_EXPIRATION_CHK && rtw_chk_roam_flags(adapter, RTW_ROAM_ON_EXPIRED)) {
1709                        roam = true;
1710                } else if (reason == WLAN_REASON_ACTIVE_ROAM && rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
1711                        roam = true;
1712                        roam_target = pmlmepriv->roam_network;
1713                }
1714#ifdef CONFIG_INTEL_WIDI
1715                else if (adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_CONNECTED) {
1716                        roam = true;
1717                }
1718#endif /*  CONFIG_INTEL_WIDI */
1719
1720                if (roam == true) {
1721                        if (rtw_to_roam(adapter) > 0)
1722                                rtw_dec_to_roam(adapter); /* this stadel_event is caused by roaming, decrease to_roam */
1723                        else if (rtw_to_roam(adapter) == 0)
1724                                rtw_set_to_roam(adapter, adapter->registrypriv.max_roaming_times);
1725                } else {
1726                        rtw_set_to_roam(adapter, 0);
1727                }
1728
1729                rtw_free_uc_swdec_pending_queue(adapter);
1730
1731                rtw_free_assoc_resources(adapter, 1);
1732                rtw_indicate_disconnect(adapter);
1733
1734                spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
1735                /*  remove the network entry in scanned_queue */
1736                pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
1737                if (pwlan) {
1738                        pwlan->fixed = false;
1739                        rtw_free_network_nolock(adapter, pwlan);
1740                }
1741                spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1742
1743#ifdef CONFIG_INTEL_WIDI
1744                if (!rtw_to_roam(adapter))
1745                        process_intel_widi_disconnect(adapter, 1);
1746#endif /*  CONFIG_INTEL_WIDI */
1747
1748                _rtw_roaming(adapter, roam_target);
1749        }
1750
1751        if (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) ||
1752              check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
1753
1754                rtw_free_stainfo(adapter,  psta);
1755
1756                if (adapter->stapriv.asoc_sta_count == 1) {/* a sta + bc/mc_stainfo (not Ibss_stainfo) */
1757                        /* rtw_indicate_disconnect(adapter);removed@20091105 */
1758                        spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
1759                        /* free old ibss network */
1760                        /* pwlan = rtw_find_network(&pmlmepriv->scanned_queue, pstadel->macaddr); */
1761                        pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
1762                        if (pwlan) {
1763                                pwlan->fixed = false;
1764                                rtw_free_network_nolock(adapter, pwlan);
1765                        }
1766                        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
1767                        /* re-create ibss */
1768                        pdev_network = &(adapter->registrypriv.dev_network);
1769                        pibss = adapter->registrypriv.dev_network.MacAddress;
1770
1771                        memcpy(pdev_network, &tgt_network->network, get_wlan_bssid_ex_sz(&tgt_network->network));
1772
1773                        memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(struct ndis_802_11_ssid));
1774
1775                        rtw_update_registrypriv_dev_network(adapter);
1776
1777                        rtw_generate_random_ibss(pibss);
1778
1779                        if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)) {
1780                                set_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE);
1781                                _clr_fwstate_(pmlmepriv, WIFI_ADHOC_STATE);
1782                        }
1783
1784                        if (rtw_createbss_cmd(adapter) != _SUCCESS) {
1785
1786                                RT_TRACE(_module_rtl871x_ioctl_set_c_, _drv_err_, ("***Error =>stadel_event_callback: rtw_createbss_cmd status FAIL***\n "));
1787
1788                        }
1789
1790
1791                }
1792
1793        }
1794
1795        spin_unlock_bh(&pmlmepriv->lock);
1796}
1797
1798void rtw_cpwm_event_callback(struct adapter *padapter, u8 *pbuf)
1799{
1800        struct reportpwrstate_parm *preportpwrstate;
1801
1802        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_cpwm_event_callback !!!\n"));
1803        preportpwrstate = (struct reportpwrstate_parm *)pbuf;
1804        preportpwrstate->state |= (u8)(adapter_to_pwrctl(padapter)->cpwm_tog + 0x80);
1805        cpwm_int_hdl(padapter, preportpwrstate);
1806}
1807
1808
1809void rtw_wmm_event_callback(struct adapter *padapter, u8 *pbuf)
1810{
1811        WMMOnAssocRsp(padapter);
1812}
1813
1814/*
1815* _rtw_join_timeout_handler - Timeout/failure handler for CMD JoinBss
1816* @adapter: pointer to struct adapter structure
1817*/
1818void _rtw_join_timeout_handler(struct timer_list *t)
1819{
1820        struct adapter *adapter = from_timer(adapter, t,
1821                                                  mlmepriv.assoc_timer);
1822        struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1823
1824        DBG_871X("%s, fw_state =%x\n", __func__, get_fwstate(pmlmepriv));
1825
1826        if (adapter->bDriverStopped || adapter->bSurpriseRemoved)
1827                return;
1828
1829        spin_lock_bh(&pmlmepriv->lock);
1830
1831        if (rtw_to_roam(adapter) > 0) { /* join timeout caused by roaming */
1832                while (1) {
1833                        rtw_dec_to_roam(adapter);
1834                        if (rtw_to_roam(adapter) != 0) { /* try another */
1835                                int do_join_r;
1836                                DBG_871X("%s try another roaming\n", __func__);
1837                                do_join_r = rtw_do_join(adapter);
1838                                if (_SUCCESS != do_join_r) {
1839                                        DBG_871X("%s roaming do_join return %d\n", __func__, do_join_r);
1840                                        continue;
1841                                }
1842                                break;
1843                        } else {
1844#ifdef CONFIG_INTEL_WIDI
1845                                if (adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING) {
1846                                        memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1847                                        intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1848                                        DBG_871X("change to widi listen\n");
1849                                }
1850#endif /*  CONFIG_INTEL_WIDI */
1851                                DBG_871X("%s We've try roaming but fail\n", __func__);
1852                                rtw_indicate_disconnect(adapter);
1853                                break;
1854                        }
1855                }
1856
1857        } else{
1858                rtw_indicate_disconnect(adapter);
1859                free_scanqueue(pmlmepriv);/*  */
1860
1861                /* indicate disconnect for the case that join_timeout and check_fwstate != FW_LINKED */
1862                rtw_cfg80211_indicate_disconnect(adapter);
1863
1864        }
1865
1866        spin_unlock_bh(&pmlmepriv->lock);
1867}
1868
1869/*
1870* rtw_scan_timeout_handler - Timeout/Failure handler for CMD SiteSurvey
1871* @adapter: pointer to struct adapter structure
1872*/
1873void rtw_scan_timeout_handler(struct timer_list *t)
1874{
1875        struct adapter *adapter = from_timer(adapter, t,
1876                                                  mlmepriv.scan_to_timer);
1877        struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1878
1879        DBG_871X(FUNC_ADPT_FMT" fw_state =%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
1880
1881        spin_lock_bh(&pmlmepriv->lock);
1882
1883        _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1884
1885        spin_unlock_bh(&pmlmepriv->lock);
1886
1887        rtw_indicate_scan_done(adapter, true);
1888}
1889
1890void rtw_mlme_reset_auto_scan_int(struct adapter *adapter)
1891{
1892        struct mlme_priv *mlme = &adapter->mlmepriv;
1893        struct mlme_ext_priv *pmlmeext = &adapter->mlmeextpriv;
1894        struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1895
1896        if (pmlmeinfo->VHT_enable) /* disable auto scan when connect to 11AC AP */
1897                mlme->auto_scan_int_ms = 0;
1898        else if (adapter->registrypriv.wifi_spec && is_client_associated_to_ap(adapter) == true)
1899                mlme->auto_scan_int_ms = 60*1000;
1900        else if (rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
1901                if (check_fwstate(mlme, WIFI_STATION_STATE) && check_fwstate(mlme, _FW_LINKED))
1902                        mlme->auto_scan_int_ms = mlme->roam_scan_int_ms;
1903        } else
1904                mlme->auto_scan_int_ms = 0; /* disabled */
1905
1906        return;
1907}
1908
1909static void rtw_auto_scan_handler(struct adapter *padapter)
1910{
1911        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1912
1913        rtw_mlme_reset_auto_scan_int(padapter);
1914
1915        if (pmlmepriv->auto_scan_int_ms != 0
1916                && jiffies_to_msecs(jiffies - pmlmepriv->scan_start_time) > pmlmepriv->auto_scan_int_ms) {
1917
1918                if (!padapter->registrypriv.wifi_spec) {
1919                        if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY|_FW_UNDER_LINKING) == true) {
1920                                DBG_871X(FUNC_ADPT_FMT" _FW_UNDER_SURVEY|_FW_UNDER_LINKING\n", FUNC_ADPT_ARG(padapter));
1921                                goto exit;
1922                        }
1923
1924                        if (pmlmepriv->LinkDetectInfo.bBusyTraffic == true) {
1925                                DBG_871X(FUNC_ADPT_FMT" exit BusyTraffic\n", FUNC_ADPT_ARG(padapter));
1926                                goto exit;
1927                        }
1928                }
1929
1930                DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
1931
1932                rtw_set_802_11_bssid_list_scan(padapter, NULL, 0);
1933        }
1934
1935exit:
1936        return;
1937}
1938
1939void rtw_dynamic_check_timer_handler(struct adapter *adapter)
1940{
1941        if (!adapter)
1942                return;
1943
1944        if (adapter->hw_init_completed == false)
1945                return;
1946
1947        if ((adapter->bDriverStopped == true) || (adapter->bSurpriseRemoved == true))
1948                return;
1949
1950        if (adapter->net_closed == true)
1951                return;
1952
1953        if (is_primary_adapter(adapter))
1954                DBG_871X("IsBtDisabled =%d, IsBtControlLps =%d\n", rtw_btcoex_IsBtDisabled(adapter), rtw_btcoex_IsBtControlLps(adapter));
1955
1956        if ((adapter_to_pwrctl(adapter)->bFwCurrentInPSMode == true)
1957                && (rtw_btcoex_IsBtControlLps(adapter) == false)
1958                ) {
1959                u8 bEnterPS;
1960
1961                linked_status_chk(adapter);
1962
1963                bEnterPS = traffic_status_watchdog(adapter, 1);
1964                if (bEnterPS) {
1965                        /* rtw_lps_ctrl_wk_cmd(adapter, LPS_CTRL_ENTER, 1); */
1966                        rtw_hal_dm_watchdog_in_lps(adapter);
1967                } else{
1968                        /* call rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_LEAVE, 1) in traffic_status_watchdog() */
1969                }
1970
1971        } else{
1972                if (is_primary_adapter(adapter)) {
1973                        rtw_dynamic_chk_wk_cmd(adapter);
1974                }
1975        }
1976
1977        /* auto site survey */
1978        rtw_auto_scan_handler(adapter);
1979}
1980
1981
1982inline bool rtw_is_scan_deny(struct adapter *adapter)
1983{
1984        struct mlme_priv *mlmepriv = &adapter->mlmepriv;
1985        return (atomic_read(&mlmepriv->set_scan_deny) != 0) ? true : false;
1986}
1987
1988inline void rtw_clear_scan_deny(struct adapter *adapter)
1989{
1990        struct mlme_priv *mlmepriv = &adapter->mlmepriv;
1991        atomic_set(&mlmepriv->set_scan_deny, 0);
1992
1993        DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
1994}
1995
1996void rtw_set_scan_deny_timer_hdl(struct adapter *adapter)
1997{
1998        rtw_clear_scan_deny(adapter);
1999}
2000
2001void rtw_set_scan_deny(struct adapter *adapter, u32 ms)
2002{
2003        struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2004
2005        DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
2006        atomic_set(&mlmepriv->set_scan_deny, 1);
2007        _set_timer(&mlmepriv->set_scan_deny_timer, ms);
2008}
2009
2010/*
2011* Select a new roaming candidate from the original @param candidate and @param competitor
2012* @return true: candidate is updated
2013* @return false: candidate is not updated
2014*/
2015static int rtw_check_roaming_candidate(struct mlme_priv *mlme
2016        , struct wlan_network **candidate, struct wlan_network *competitor)
2017{
2018        int updated = false;
2019        struct adapter *adapter = container_of(mlme, struct adapter, mlmepriv);
2020
2021        if (is_same_ess(&competitor->network, &mlme->cur_network.network) == false)
2022                goto exit;
2023
2024        if (rtw_is_desired_network(adapter, competitor) == false)
2025                goto exit;
2026
2027        DBG_871X("roam candidate:%s %s("MAC_FMT", ch%3u) rssi:%d, age:%5d\n",
2028                (competitor == mlme->cur_network_scanned)?"*":" ",
2029                competitor->network.Ssid.Ssid,
2030                MAC_ARG(competitor->network.MacAddress),
2031                competitor->network.Configuration.DSConfig,
2032                (int)competitor->network.Rssi,
2033                jiffies_to_msecs(jiffies - competitor->last_scanned)
2034        );
2035
2036        /* got specific addr to roam */
2037        if (!is_zero_mac_addr(mlme->roam_tgt_addr)) {
2038                if (!memcmp(mlme->roam_tgt_addr, competitor->network.MacAddress, ETH_ALEN))
2039                        goto update;
2040                else
2041                        goto exit;
2042        }
2043        if (jiffies_to_msecs(jiffies - competitor->last_scanned) >= mlme->roam_scanr_exp_ms)
2044                goto exit;
2045
2046        if (competitor->network.Rssi - mlme->cur_network_scanned->network.Rssi < mlme->roam_rssi_diff_th)
2047                goto exit;
2048
2049        if (*candidate != NULL && (*candidate)->network.Rssi >= competitor->network.Rssi)
2050                goto exit;
2051
2052update:
2053        *candidate = competitor;
2054        updated = true;
2055
2056exit:
2057        return updated;
2058}
2059
2060int rtw_select_roaming_candidate(struct mlme_priv *mlme)
2061{
2062        int ret = _FAIL;
2063        struct list_head        *phead;
2064        struct adapter *adapter;
2065        struct __queue  *queue  = &(mlme->scanned_queue);
2066        struct  wlan_network    *pnetwork = NULL;
2067        struct  wlan_network    *candidate = NULL;
2068
2069        if (mlme->cur_network_scanned == NULL) {
2070                rtw_warn_on(1);
2071                return ret;
2072        }
2073
2074        spin_lock_bh(&(mlme->scanned_queue.lock));
2075        phead = get_list_head(queue);
2076        adapter = (struct adapter *)mlme->nic_hdl;
2077
2078        mlme->pscanned = get_next(phead);
2079
2080        while (phead != mlme->pscanned) {
2081
2082                pnetwork = LIST_CONTAINOR(mlme->pscanned, struct wlan_network, list);
2083                if (pnetwork == NULL) {
2084                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("%s return _FAIL:(pnetwork == NULL)\n", __func__));
2085                        ret = _FAIL;
2086                        goto exit;
2087                }
2088
2089                mlme->pscanned = get_next(mlme->pscanned);
2090
2091                DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
2092                        , pnetwork->network.Ssid.Ssid
2093                        , MAC_ARG(pnetwork->network.MacAddress)
2094                        , pnetwork->network.Configuration.DSConfig
2095                        , (int)pnetwork->network.Rssi);
2096
2097                rtw_check_roaming_candidate(mlme, &candidate, pnetwork);
2098
2099        }
2100
2101        if (candidate == NULL) {
2102                DBG_871X("%s: return _FAIL(candidate == NULL)\n", __func__);
2103                ret = _FAIL;
2104                goto exit;
2105        } else {
2106                DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __func__,
2107                        candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
2108                        candidate->network.Configuration.DSConfig);
2109
2110                mlme->roam_network = candidate;
2111
2112                if (!memcmp(candidate->network.MacAddress, mlme->roam_tgt_addr, ETH_ALEN))
2113                        eth_zero_addr(mlme->roam_tgt_addr);
2114        }
2115
2116        ret = _SUCCESS;
2117exit:
2118        spin_unlock_bh(&(mlme->scanned_queue.lock));
2119
2120        return ret;
2121}
2122
2123/*
2124* Select a new join candidate from the original @param candidate and @param competitor
2125* @return true: candidate is updated
2126* @return false: candidate is not updated
2127*/
2128static int rtw_check_join_candidate(struct mlme_priv *mlme
2129        , struct wlan_network **candidate, struct wlan_network *competitor)
2130{
2131        int updated = false;
2132        struct adapter *adapter = container_of(mlme, struct adapter, mlmepriv);
2133
2134
2135        /* check bssid, if needed */
2136        if (mlme->assoc_by_bssid == true) {
2137                if (memcmp(competitor->network.MacAddress, mlme->assoc_bssid, ETH_ALEN))
2138                        goto exit;
2139        }
2140
2141        /* check ssid, if needed */
2142        if (mlme->assoc_ssid.Ssid[0] && mlme->assoc_ssid.SsidLength) {
2143                if (competitor->network.Ssid.SsidLength != mlme->assoc_ssid.SsidLength
2144                        || memcmp(competitor->network.Ssid.Ssid, mlme->assoc_ssid.Ssid, mlme->assoc_ssid.SsidLength)
2145                )
2146                        goto exit;
2147        }
2148
2149        if (rtw_is_desired_network(adapter, competitor)  == false)
2150                goto exit;
2151
2152        if (rtw_to_roam(adapter) > 0) {
2153                if (jiffies_to_msecs(jiffies - competitor->last_scanned) >= mlme->roam_scanr_exp_ms
2154                        || is_same_ess(&competitor->network, &mlme->cur_network.network) == false
2155                )
2156                        goto exit;
2157        }
2158
2159        if (*candidate == NULL || (*candidate)->network.Rssi < competitor->network.Rssi) {
2160                *candidate = competitor;
2161                updated = true;
2162        }
2163
2164        if (updated) {
2165                DBG_871X("[by_bssid:%u][assoc_ssid:%s]"
2166                        "[to_roam:%u] "
2167                        "new candidate: %s("MAC_FMT", ch%u) rssi:%d\n",
2168                        mlme->assoc_by_bssid,
2169                        mlme->assoc_ssid.Ssid,
2170                        rtw_to_roam(adapter),
2171                        (*candidate)->network.Ssid.Ssid,
2172                        MAC_ARG((*candidate)->network.MacAddress),
2173                        (*candidate)->network.Configuration.DSConfig,
2174                        (int)(*candidate)->network.Rssi
2175                );
2176        }
2177
2178exit:
2179        return updated;
2180}
2181
2182/*
2183Calling context:
2184The caller of the sub-routine will be in critical section...
2185
2186The caller must hold the following spinlock
2187
2188pmlmepriv->lock
2189
2190
2191*/
2192
2193int rtw_select_and_join_from_scanned_queue(struct mlme_priv *pmlmepriv)
2194{
2195        int ret;
2196        struct list_head        *phead;
2197        struct adapter *adapter;
2198        struct __queue  *queue  = &(pmlmepriv->scanned_queue);
2199        struct  wlan_network    *pnetwork = NULL;
2200        struct  wlan_network    *candidate = NULL;
2201
2202        adapter = (struct adapter *)pmlmepriv->nic_hdl;
2203
2204        spin_lock_bh(&(pmlmepriv->scanned_queue.lock));
2205
2206        if (pmlmepriv->roam_network) {
2207                candidate = pmlmepriv->roam_network;
2208                pmlmepriv->roam_network = NULL;
2209                goto candidate_exist;
2210        }
2211
2212        phead = get_list_head(queue);
2213        pmlmepriv->pscanned = get_next(phead);
2214
2215        while (phead != pmlmepriv->pscanned) {
2216
2217                pnetwork = LIST_CONTAINOR(pmlmepriv->pscanned, struct wlan_network, list);
2218                if (pnetwork == NULL) {
2219                        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("%s return _FAIL:(pnetwork == NULL)\n", __func__));
2220                        ret = _FAIL;
2221                        goto exit;
2222                }
2223
2224                pmlmepriv->pscanned = get_next(pmlmepriv->pscanned);
2225
2226                DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
2227                        , pnetwork->network.Ssid.Ssid
2228                        , MAC_ARG(pnetwork->network.MacAddress)
2229                        , pnetwork->network.Configuration.DSConfig
2230                        , (int)pnetwork->network.Rssi);
2231
2232                rtw_check_join_candidate(pmlmepriv, &candidate, pnetwork);
2233
2234        }
2235
2236        if (candidate == NULL) {
2237                DBG_871X("%s: return _FAIL(candidate == NULL)\n", __func__);
2238#ifdef CONFIG_WOWLAN
2239                _clr_fwstate_(pmlmepriv, _FW_LINKED|_FW_UNDER_LINKING);
2240#endif
2241                ret = _FAIL;
2242                goto exit;
2243        } else {
2244                DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __func__,
2245                        candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
2246                        candidate->network.Configuration.DSConfig);
2247                goto candidate_exist;
2248        }
2249
2250candidate_exist:
2251
2252        /*  check for situation of  _FW_LINKED */
2253        if (check_fwstate(pmlmepriv, _FW_LINKED) == true) {
2254                DBG_871X("%s: _FW_LINKED while ask_for_joinbss!!!\n", __func__);
2255
2256                rtw_disassoc_cmd(adapter, 0, true);
2257                rtw_indicate_disconnect(adapter);
2258                rtw_free_assoc_resources(adapter, 0);
2259        }
2260
2261        set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
2262        ret = rtw_joinbss_cmd(adapter, candidate);
2263
2264exit:
2265        spin_unlock_bh(&(pmlmepriv->scanned_queue.lock));
2266        return ret;
2267}
2268
2269sint rtw_set_auth(struct adapter *adapter, struct security_priv *psecuritypriv)
2270{
2271        struct  cmd_obj *pcmd;
2272        struct  setauth_parm *psetauthparm;
2273        struct  cmd_priv *pcmdpriv = &(adapter->cmdpriv);
2274        sint            res = _SUCCESS;
2275
2276        pcmd = rtw_zmalloc(sizeof(struct cmd_obj));
2277        if (pcmd == NULL) {
2278                res = _FAIL;  /* try again */
2279                goto exit;
2280        }
2281
2282        psetauthparm = rtw_zmalloc(sizeof(struct setauth_parm));
2283        if (psetauthparm == NULL) {
2284                kfree((unsigned char *)pcmd);
2285                res = _FAIL;
2286                goto exit;
2287        }
2288
2289        memset(psetauthparm, 0, sizeof(struct setauth_parm));
2290        psetauthparm->mode = (unsigned char)psecuritypriv->dot11AuthAlgrthm;
2291
2292        pcmd->cmdcode = _SetAuth_CMD_;
2293        pcmd->parmbuf = (unsigned char *)psetauthparm;
2294        pcmd->cmdsz =  (sizeof(struct setauth_parm));
2295        pcmd->rsp = NULL;
2296        pcmd->rspsz = 0;
2297
2298
2299        INIT_LIST_HEAD(&pcmd->list);
2300
2301        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("after enqueue set_auth_cmd, auth_mode =%x\n", psecuritypriv->dot11AuthAlgrthm));
2302
2303        res = rtw_enqueue_cmd(pcmdpriv, pcmd);
2304
2305exit:
2306        return res;
2307}
2308
2309sint rtw_set_key(struct adapter *adapter, struct security_priv *psecuritypriv, sint keyid, u8 set_tx, bool enqueue)
2310{
2311        u8 keylen;
2312        struct cmd_obj          *pcmd;
2313        struct setkey_parm      *psetkeyparm;
2314        struct cmd_priv         *pcmdpriv = &(adapter->cmdpriv);
2315        sint    res = _SUCCESS;
2316
2317        psetkeyparm = rtw_zmalloc(sizeof(struct setkey_parm));
2318        if (psetkeyparm == NULL) {
2319                res = _FAIL;
2320                goto exit;
2321        }
2322        memset(psetkeyparm, 0, sizeof(struct setkey_parm));
2323
2324        if (psecuritypriv->dot11AuthAlgrthm == dot11AuthAlgrthm_8021X) {
2325                psetkeyparm->algorithm = (unsigned char)psecuritypriv->dot118021XGrpPrivacy;
2326                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n rtw_set_key: psetkeyparm->algorithm =(unsigned char)psecuritypriv->dot118021XGrpPrivacy =%d\n", psetkeyparm->algorithm));
2327        } else {
2328                psetkeyparm->algorithm = (u8)psecuritypriv->dot11PrivacyAlgrthm;
2329                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n rtw_set_key: psetkeyparm->algorithm =(u8)psecuritypriv->dot11PrivacyAlgrthm =%d\n", psetkeyparm->algorithm));
2330
2331        }
2332        psetkeyparm->keyid = (u8)keyid;/* 0~3 */
2333        psetkeyparm->set_tx = set_tx;
2334        if (is_wep_enc(psetkeyparm->algorithm))
2335                adapter->securitypriv.key_mask |= BIT(psetkeyparm->keyid);
2336
2337        DBG_871X("==> rtw_set_key algorithm(%x), keyid(%x), key_mask(%x)\n", psetkeyparm->algorithm, psetkeyparm->keyid, adapter->securitypriv.key_mask);
2338        RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n rtw_set_key: psetkeyparm->algorithm =%d psetkeyparm->keyid =(u8)keyid =%d\n", psetkeyparm->algorithm, keyid));
2339
2340        switch (psetkeyparm->algorithm) {
2341
2342        case _WEP40_:
2343                keylen = 5;
2344                memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
2345                break;
2346        case _WEP104_:
2347                keylen = 13;
2348                memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
2349                break;
2350        case _TKIP_:
2351                keylen = 16;
2352                memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
2353                psetkeyparm->grpkey = 1;
2354                break;
2355        case _AES_:
2356                keylen = 16;
2357                memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
2358                psetkeyparm->grpkey = 1;
2359                break;
2360        default:
2361                RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("\n rtw_set_key:psecuritypriv->dot11PrivacyAlgrthm = %x (must be 1 or 2 or 4 or 5)\n", psecuritypriv->dot11PrivacyAlgrthm));
2362                res = _FAIL;
2363                kfree((unsigned char *)psetkeyparm);
2364                goto exit;
2365        }
2366
2367
2368        if (enqueue) {
2369                pcmd = rtw_zmalloc(sizeof(struct cmd_obj));
2370                if (pcmd == NULL) {
2371                        kfree((unsigned char *)psetkeyparm);
2372                        res = _FAIL;  /* try again */
2373                        goto exit;
2374                }
2375
2376                pcmd->cmdcode = _SetKey_CMD_;
2377                pcmd->parmbuf = (u8 *)psetkeyparm;
2378                pcmd->cmdsz =  (sizeof(struct setkey_parm));
2379                pcmd->rsp = NULL;
2380                pcmd->rspsz = 0;
2381
2382                INIT_LIST_HEAD(&pcmd->list);
2383
2384                /* sema_init(&(pcmd->cmd_sem), 0); */
2385
2386                res = rtw_enqueue_cmd(pcmdpriv, pcmd);
2387        } else{
2388                setkey_hdl(adapter, (u8 *)psetkeyparm);
2389                kfree((u8 *) psetkeyparm);
2390        }
2391exit:
2392        return res;
2393}
2394
2395/* adjust IEs for rtw_joinbss_cmd in WMM */
2396int rtw_restruct_wmm_ie(struct adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len, uint initial_out_len)
2397{
2398        unsigned        int ielength = 0;
2399        unsigned int i, j;
2400
2401        i = 12; /* after the fixed IE */
2402        while (i < in_len) {
2403                ielength = initial_out_len;
2404
2405                if (in_ie[i] == 0xDD && in_ie[i+2] == 0x00 && in_ie[i+3] == 0x50  && in_ie[i+4] == 0xF2 && in_ie[i+5] == 0x02 && i+5 < in_len) { /* WMM element ID and OUI */
2406                        for (j = i; j < i + 9; j++) {
2407                                        out_ie[ielength] = in_ie[j];
2408                                        ielength++;
2409                        }
2410                        out_ie[initial_out_len + 1] = 0x07;
2411                        out_ie[initial_out_len + 6] = 0x00;
2412                        out_ie[initial_out_len + 8] = 0x00;
2413
2414                        break;
2415                }
2416
2417                i += (in_ie[i+1]+2); /*  to the next IE element */
2418        }
2419
2420        return ielength;
2421
2422}
2423
2424
2425/*  */
2426/*  Ported from 8185: IsInPreAuthKeyList(). (Renamed from SecIsInPreAuthKeyList(), 2006-10-13.) */
2427/*  Added by Annie, 2006-05-07. */
2428/*  */
2429/*  Search by BSSID, */
2430/*  Return Value: */
2431/*              -1              :if there is no pre-auth key in the  table */
2432/*              >= 0            :if there is pre-auth key, and   return the entry id */
2433/*  */
2434/*  */
2435
2436static int SecIsInPMKIDList(struct adapter *Adapter, u8 *bssid)
2437{
2438        struct security_priv *psecuritypriv = &Adapter->securitypriv;
2439        int i = 0;
2440
2441        do {
2442                if ((psecuritypriv->PMKIDList[i].bUsed) &&
2443                                (!memcmp(psecuritypriv->PMKIDList[i].Bssid, bssid, ETH_ALEN))) {
2444                        break;
2445                } else{
2446                        i++;
2447                        /* continue; */
2448                }
2449
2450        } while (i < NUM_PMKID_CACHE);
2451
2452        if (i == NUM_PMKID_CACHE) {
2453                i = -1;/*  Could not find. */
2454        } else {
2455                /*  There is one Pre-Authentication Key for the specific BSSID. */
2456        }
2457
2458        return i;
2459
2460}
2461
2462/*  */
2463/*  Check the RSN IE length */
2464/*  If the RSN IE length <= 20, the RSN IE didn't include the PMKID information */
2465/*  0-11th element in the array are the fixed IE */
2466/*  12th element in the array is the IE */
2467/*  13th element in the array is the IE length */
2468/*  */
2469
2470static int rtw_append_pmkid(struct adapter *Adapter, int iEntry, u8 *ie, uint ie_len)
2471{
2472        struct security_priv *psecuritypriv = &Adapter->securitypriv;
2473
2474        if (ie[13] <= 20) {
2475                /*  The RSN IE didn't include the PMK ID, append the PMK information */
2476                        ie[ie_len] = 1;
2477                        ie_len++;
2478                        ie[ie_len] = 0; /* PMKID count = 0x0100 */
2479                        ie_len++;
2480                        memcpy(&ie[ie_len], &psecuritypriv->PMKIDList[iEntry].PMKID, 16);
2481
2482                        ie_len += 16;
2483                        ie[13] += 18;/* PMKID length = 2+16 */
2484
2485        }
2486        return ie_len;
2487}
2488
2489sint rtw_restruct_sec_ie(struct adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len)
2490{
2491        u8 authmode = 0x0;
2492        uint    ielength;
2493        int iEntry;
2494
2495        struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
2496        struct security_priv *psecuritypriv = &adapter->securitypriv;
2497        uint    ndisauthmode = psecuritypriv->ndisauthtype;
2498
2499        RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_,
2500                 ("+rtw_restruct_sec_ie: ndisauthmode =%d\n", ndisauthmode));
2501
2502        /* copy fixed ie only */
2503        memcpy(out_ie, in_ie, 12);
2504        ielength = 12;
2505        if ((ndisauthmode == Ndis802_11AuthModeWPA) || (ndisauthmode == Ndis802_11AuthModeWPAPSK))
2506                        authmode = _WPA_IE_ID_;
2507        if ((ndisauthmode == Ndis802_11AuthModeWPA2) || (ndisauthmode == Ndis802_11AuthModeWPA2PSK))
2508                        authmode = _WPA2_IE_ID_;
2509
2510        if (check_fwstate(pmlmepriv, WIFI_UNDER_WPS)) {
2511                memcpy(out_ie+ielength, psecuritypriv->wps_ie, psecuritypriv->wps_ie_len);
2512
2513                ielength += psecuritypriv->wps_ie_len;
2514        } else if ((authmode == _WPA_IE_ID_) || (authmode == _WPA2_IE_ID_)) {
2515                /* copy RSN or SSN */
2516                memcpy(&out_ie[ielength], &psecuritypriv->supplicant_ie[0], psecuritypriv->supplicant_ie[1]+2);
2517                /* debug for CONFIG_IEEE80211W
2518                {
2519                        int jj;
2520                        printk("supplicant_ie_length =%d &&&&&&&&&&&&&&&&&&&\n", psecuritypriv->supplicant_ie[1]+2);
2521                        for (jj = 0; jj < psecuritypriv->supplicant_ie[1]+2; jj++)
2522                                printk(" %02x ", psecuritypriv->supplicant_ie[jj]);
2523                        printk("\n");
2524                }*/
2525                ielength += psecuritypriv->supplicant_ie[1]+2;
2526                rtw_report_sec_ie(adapter, authmode, psecuritypriv->supplicant_ie);
2527        }
2528
2529        iEntry = SecIsInPMKIDList(adapter, pmlmepriv->assoc_bssid);
2530        if (iEntry < 0) {
2531                return ielength;
2532        } else{
2533                if (authmode == _WPA2_IE_ID_)
2534                        ielength = rtw_append_pmkid(adapter, iEntry, out_ie, ielength);
2535        }
2536        return ielength;
2537}
2538
2539void rtw_init_registrypriv_dev_network(struct adapter *adapter)
2540{
2541        struct registry_priv *pregistrypriv = &adapter->registrypriv;
2542        struct eeprom_priv *peepriv = &adapter->eeprompriv;
2543        struct wlan_bssid_ex    *pdev_network = &pregistrypriv->dev_network;
2544        u8 *myhwaddr = myid(peepriv);
2545
2546        memcpy(pdev_network->MacAddress, myhwaddr, ETH_ALEN);
2547
2548        memcpy(&pdev_network->Ssid, &pregistrypriv->ssid, sizeof(struct ndis_802_11_ssid));
2549
2550        pdev_network->Configuration.Length = sizeof(struct ndis_802_11_conf);
2551        pdev_network->Configuration.BeaconPeriod = 100;
2552        pdev_network->Configuration.FHConfig.Length = 0;
2553        pdev_network->Configuration.FHConfig.HopPattern = 0;
2554        pdev_network->Configuration.FHConfig.HopSet = 0;
2555        pdev_network->Configuration.FHConfig.DwellTime = 0;
2556}
2557
2558void rtw_update_registrypriv_dev_network(struct adapter *adapter)
2559{
2560        int sz = 0;
2561        struct registry_priv *pregistrypriv = &adapter->registrypriv;
2562        struct wlan_bssid_ex    *pdev_network = &pregistrypriv->dev_network;
2563        struct  security_priv *psecuritypriv = &adapter->securitypriv;
2564        struct  wlan_network    *cur_network = &adapter->mlmepriv.cur_network;
2565        /* struct       xmit_priv *pxmitpriv = &adapter->xmitpriv; */
2566
2567        pdev_network->Privacy = (psecuritypriv->dot11PrivacyAlgrthm > 0 ? 1 : 0) ; /*  adhoc no 802.1x */
2568
2569        pdev_network->Rssi = 0;
2570
2571        switch (pregistrypriv->wireless_mode) {
2572        case WIRELESS_11B:
2573                pdev_network->NetworkTypeInUse = (Ndis802_11DS);
2574                break;
2575        case WIRELESS_11G:
2576        case WIRELESS_11BG:
2577        case WIRELESS_11_24N:
2578        case WIRELESS_11G_24N:
2579        case WIRELESS_11BG_24N:
2580                pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
2581                break;
2582        case WIRELESS_11A:
2583        case WIRELESS_11A_5N:
2584                pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
2585                break;
2586        case WIRELESS_11ABGN:
2587                if (pregistrypriv->channel > 14)
2588                        pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
2589                else
2590                        pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
2591                break;
2592        default:
2593                /*  TODO */
2594                break;
2595        }
2596
2597        pdev_network->Configuration.DSConfig = (pregistrypriv->channel);
2598        RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("pregistrypriv->channel =%d, pdev_network->Configuration.DSConfig = 0x%x\n", pregistrypriv->channel, pdev_network->Configuration.DSConfig));
2599
2600        if (cur_network->network.InfrastructureMode == Ndis802_11IBSS)
2601                pdev_network->Configuration.ATIMWindow = (0);
2602
2603        pdev_network->InfrastructureMode = (cur_network->network.InfrastructureMode);
2604
2605        /*  1. Supported rates */
2606        /*  2. IE */
2607
2608        /* rtw_set_supported_rate(pdev_network->SupportedRates, pregistrypriv->wireless_mode) ;  will be called in rtw_generate_ie */
2609        sz = rtw_generate_ie(pregistrypriv);
2610
2611        pdev_network->IELength = sz;
2612
2613        pdev_network->Length = get_wlan_bssid_ex_sz((struct wlan_bssid_ex  *)pdev_network);
2614
2615        /* notes: translate IELength & Length after assign the Length to cmdsz in createbss_cmd(); */
2616        /* pdev_network->IELength = cpu_to_le32(sz); */
2617}
2618
2619void rtw_get_encrypt_decrypt_from_registrypriv(struct adapter *adapter)
2620{
2621}
2622
2623/* the function is at passive_level */
2624void rtw_joinbss_reset(struct adapter *padapter)
2625{
2626        u8 threshold;
2627        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2628
2629        struct ht_priv  *phtpriv = &pmlmepriv->htpriv;
2630
2631        /* todo: if you want to do something io/reg/hw setting before join_bss, please add code here */
2632
2633        pmlmepriv->num_FortyMHzIntolerant = 0;
2634
2635        pmlmepriv->num_sta_no_ht = 0;
2636
2637        phtpriv->ampdu_enable = false;/* reset to disabled */
2638
2639        /*  TH = 1 => means that invalidate usb rx aggregation */
2640        /*  TH = 0 => means that validate usb rx aggregation, use init value. */
2641        if (phtpriv->ht_option) {
2642                if (padapter->registrypriv.wifi_spec == 1)
2643                        threshold = 1;
2644                else
2645                        threshold = 0;
2646                rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
2647        } else{
2648                threshold = 1;
2649                rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
2650        }
2651}
2652
2653void rtw_ht_use_default_setting(struct adapter *padapter)
2654{
2655        struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
2656        struct ht_priv  *phtpriv = &pmlmepriv->htpriv;
2657        struct registry_priv *pregistrypriv = &padapter->registrypriv;
2658        bool            bHwLDPCSupport = false, bHwSTBCSupport = false;
2659        bool            bHwSupportBeamformer = false, bHwSupportBeamformee = false;
2660
2661        if (pregistrypriv->wifi_spec)
2662                phtpriv->bss_coexist = 1;
2663        else
2664                phtpriv->bss_coexist = 0;
2665
2666        phtpriv->sgi_40m = TEST_FLAG(pregistrypriv->short_gi, BIT1) ? true : false;
2667        phtpriv->sgi_20m = TEST_FLAG(pregistrypriv->short_gi, BIT0) ? true : false;
2668
2669        /*  LDPC support */
2670        rtw_hal_get_def_var(padapter, HAL_DEF_RX_LDPC, (u8 *)&bHwLDPCSupport);
2671        CLEAR_FLAGS(phtpriv->ldpc_cap);
2672        if (bHwLDPCSupport) {
2673                if (TEST_FLAG(pregistrypriv->ldpc_cap, BIT4))
2674                        SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_RX);
2675        }
2676        rtw_hal_get_def_var(padapter, HAL_DEF_TX_LDPC, (u8 *)&bHwLDPCSupport);
2677        if (bHwLDPCSupport) {
2678                if (TEST_FLAG(pregistrypriv->ldpc_cap, BIT5))
2679                        SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_TX);
2680        }
2681        if (phtpriv->ldpc_cap)
2682                DBG_871X("[HT] Support LDPC = 0x%02X\n", phtpriv->ldpc_cap);
2683
2684        /*  STBC */
2685        rtw_hal_get_def_var(padapter, HAL_DEF_TX_STBC, (u8 *)&bHwSTBCSupport);
2686        CLEAR_FLAGS(phtpriv->stbc_cap);
2687        if (bHwSTBCSupport) {
2688                if (TEST_FLAG(pregistrypriv->stbc_cap, BIT5))
2689                        SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX);
2690        }
2691        rtw_hal_get_def_var(padapter, HAL_DEF_RX_STBC, (u8 *)&bHwSTBCSupport);
2692        if (bHwSTBCSupport) {
2693                if (TEST_FLAG(pregistrypriv->stbc_cap, BIT4))
2694                        SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX);
2695        }
2696        if (phtpriv->stbc_cap)
2697                DBG_871X("[HT] Support STBC = 0x%02X\n", phtpriv->stbc_cap);
2698
2699        /*  Beamforming setting */
2700        rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMER, (u8 *)&bHwSupportBeamformer);
2701        rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMEE, (u8 *)&bHwSupportBeamformee);
2702        CLEAR_FLAGS(phtpriv->beamform_cap);
2703        if (TEST_FLAG(pregistrypriv->beamform_cap, BIT4) && bHwSupportBeamformer) {
2704                SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMER_ENABLE);
2705                DBG_871X("[HT] Support Beamformer\n");
2706        }
2707        if (TEST_FLAG(pregistrypriv->beamform_cap, BIT5) && bHwSupportBeamformee) {
2708                SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMEE_ENABLE);
2709                DBG_871X("[HT] Support Beamformee\n");
2710        }
2711}
2712
2713void rtw_build_wmm_ie_ht(struct adapter *padapter, u8 *out_ie, uint *pout_len)
2714{
2715        unsigned char WMM_IE[] = {0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
2716        int out_len;
2717        u8 *pframe;
2718
2719        if (padapter->mlmepriv.qospriv.qos_option == 0) {
2720                out_len = *pout_len;
2721                pframe = rtw_set_ie(out_ie+out_len, _VENDOR_SPECIFIC_IE_,
2722                                                        _WMM_IE_Length_, WMM_IE, pout_len);
2723
2724                padapter->mlmepriv.qospriv.qos_option = 1;
2725        }
2726}
2727
2728/* the function is >= passive_level */
2729unsigned int rtw_restructure_ht_ie(struct adapter *padapter, u8 *in_ie, u8 *out_ie, uint in_len, uint *pout_len, u8 channel)
2730{
2731        u32 ielen, out_len;
2732        enum HT_CAP_AMPDU_FACTOR max_rx_ampdu_factor;
2733        unsigned char *p, *pframe;
2734        struct rtw_ieee80211_ht_cap ht_capie;
2735        u8 cbw40_enable = 0, stbc_rx_enable = 0, rf_type = 0, operation_bw = 0;
2736        struct registry_priv *pregistrypriv = &padapter->registrypriv;
2737        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2738        struct ht_priv  *phtpriv = &pmlmepriv->htpriv;
2739        struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
2740
2741        phtpriv->ht_option = false;
2742
2743        out_len = *pout_len;
2744
2745        memset(&ht_capie, 0, sizeof(struct rtw_ieee80211_ht_cap));
2746
2747        ht_capie.cap_info = cpu_to_le16(IEEE80211_HT_CAP_DSSSCCK40);
2748
2749        if (phtpriv->sgi_20m)
2750                ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_SGI_20);
2751
2752        /* Get HT BW */
2753        if (in_ie == NULL) {
2754                /* TDLS: TODO 20/40 issue */
2755                if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
2756                        operation_bw = padapter->mlmeextpriv.cur_bwmode;
2757                        if (operation_bw > CHANNEL_WIDTH_40)
2758                                operation_bw = CHANNEL_WIDTH_40;
2759                } else
2760                        /* TDLS: TODO 40? */
2761                        operation_bw = CHANNEL_WIDTH_40;
2762        } else {
2763                p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
2764                if (p && (ielen == sizeof(struct ieee80211_ht_addt_info))) {
2765                        struct HT_info_element *pht_info = (struct HT_info_element *)(p+2);
2766                        if (pht_info->infos[0] & BIT(2)) {
2767                                switch (pht_info->infos[0] & 0x3) {
2768                                case 1:
2769                                case 3:
2770                                        operation_bw = CHANNEL_WIDTH_40;
2771                                        break;
2772                                default:
2773                                        operation_bw = CHANNEL_WIDTH_20;
2774                                        break;
2775                                }
2776                        } else {
2777                                operation_bw = CHANNEL_WIDTH_20;
2778                        }
2779                }
2780        }
2781
2782        /* to disable 40M Hz support while gd_bw_40MHz_en = 0 */
2783        if (channel > 14) {
2784                if ((pregistrypriv->bw_mode & 0xf0) > 0)
2785                        cbw40_enable = 1;
2786        } else {
2787                if ((pregistrypriv->bw_mode & 0x0f) > 0)
2788                        cbw40_enable = 1;
2789        }
2790
2791        if ((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) {
2792                ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_SUP_WIDTH);
2793                if (phtpriv->sgi_40m)
2794                        ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_SGI_40);
2795        }
2796
2797        if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX))
2798                ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_TX_STBC);
2799
2800        /* todo: disable SM power save mode */
2801        ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_SM_PS);
2802
2803        if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX)) {
2804                if ((channel <= 14 && pregistrypriv->rx_stbc == 0x1) || /* enable for 2.4GHz */
2805                        (pregistrypriv->wifi_spec == 1)) {
2806                        stbc_rx_enable = 1;
2807                        DBG_871X("declare supporting RX STBC\n");
2808                }
2809        }
2810
2811        /* fill default supported_mcs_set */
2812        memcpy(ht_capie.supp_mcs_set, pmlmeext->default_supported_mcs_set, 16);
2813
2814        /* update default supported_mcs_set */
2815        rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
2816
2817        switch (rf_type) {
2818        case RF_1T1R:
2819                if (stbc_rx_enable)
2820                        ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_RX_STBC_1R);/* RX STBC One spatial stream */
2821
2822                set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_1R);
2823                break;
2824
2825        case RF_2T2R:
2826        case RF_1T2R:
2827        default:
2828                if (stbc_rx_enable)
2829                        ht_capie.cap_info |= cpu_to_le16(IEEE80211_HT_CAP_RX_STBC_2R);/* RX STBC two spatial stream */
2830
2831                #ifdef CONFIG_DISABLE_MCS13TO15
2832                if (((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) && (pregistrypriv->wifi_spec != 1))
2833                                set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R_13TO15_OFF);
2834                else
2835                                set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R);
2836                #else /* CONFIG_DISABLE_MCS13TO15 */
2837                        set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R);
2838                #endif /* CONFIG_DISABLE_MCS13TO15 */
2839                break;
2840        }
2841
2842        {
2843                u32 rx_packet_offset, max_recvbuf_sz;
2844                rtw_hal_get_def_var(padapter, HAL_DEF_RX_PACKET_OFFSET, &rx_packet_offset);
2845                rtw_hal_get_def_var(padapter, HAL_DEF_MAX_RECVBUF_SZ, &max_recvbuf_sz);
2846        }
2847
2848        if (padapter->driver_rx_ampdu_factor != 0xFF)
2849                max_rx_ampdu_factor =
2850                  (enum HT_CAP_AMPDU_FACTOR)padapter->driver_rx_ampdu_factor;
2851        else
2852                rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR,
2853                                    &max_rx_ampdu_factor);
2854
2855        /* rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR, &max_rx_ampdu_factor); */
2856        ht_capie.ampdu_params_info = (max_rx_ampdu_factor&0x03);
2857
2858        if (padapter->securitypriv.dot11PrivacyAlgrthm == _AES_)
2859                ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&(0x07<<2));
2860        else
2861                ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&0x00);
2862
2863        pframe = rtw_set_ie(out_ie+out_len, _HT_CAPABILITY_IE_,
2864                                                sizeof(struct rtw_ieee80211_ht_cap), (unsigned char *)&ht_capie, pout_len);
2865
2866        phtpriv->ht_option = true;
2867
2868        if (in_ie != NULL) {
2869                p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
2870                if (p && (ielen == sizeof(struct ieee80211_ht_addt_info))) {
2871                        out_len = *pout_len;
2872                        pframe = rtw_set_ie(out_ie+out_len, _HT_ADD_INFO_IE_, ielen, p+2, pout_len);
2873                }
2874        }
2875
2876        return phtpriv->ht_option;
2877
2878}
2879
2880/* the function is > passive_level (in critical_section) */
2881void rtw_update_ht_cap(struct adapter *padapter, u8 *pie, uint ie_len, u8 channel)
2882{
2883        u8 *p, max_ampdu_sz;
2884        int len;
2885        /* struct sta_info *bmc_sta, *psta; */
2886        struct rtw_ieee80211_ht_cap *pht_capie;
2887        struct ieee80211_ht_addt_info *pht_addtinfo;
2888        /* struct recv_reorder_ctrl *preorder_ctrl; */
2889        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2890        struct ht_priv  *phtpriv = &pmlmepriv->htpriv;
2891        /* struct recv_priv *precvpriv = &padapter->recvpriv; */
2892        struct registry_priv *pregistrypriv = &padapter->registrypriv;
2893        /* struct wlan_network *pcur_network = &(pmlmepriv->cur_network);; */
2894        struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
2895        struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
2896        u8 cbw40_enable = 0;
2897
2898
2899        if (!phtpriv->ht_option)
2900                return;
2901
2902        if ((!pmlmeinfo->HT_info_enable) || (!pmlmeinfo->HT_caps_enable))
2903                return;
2904
2905        DBG_871X("+rtw_update_ht_cap()\n");
2906
2907        /* maybe needs check if ap supports rx ampdu. */
2908        if ((phtpriv->ampdu_enable == false) && (pregistrypriv->ampdu_enable == 1)) {
2909                if (pregistrypriv->wifi_spec == 1) {
2910                        /* remove this part because testbed AP should disable RX AMPDU */
2911                        /* phtpriv->ampdu_enable = false; */
2912                        phtpriv->ampdu_enable = true;
2913                } else {
2914                        phtpriv->ampdu_enable = true;
2915                }
2916        } else if (pregistrypriv->ampdu_enable == 2) {
2917                /* remove this part because testbed AP should disable RX AMPDU */
2918                /* phtpriv->ampdu_enable = true; */
2919        }
2920
2921
2922        /* check Max Rx A-MPDU Size */
2923        len = 0;
2924        p = rtw_get_ie(pie+sizeof(struct ndis_802_11_fix_ie), _HT_CAPABILITY_IE_, &len, ie_len-sizeof(struct ndis_802_11_fix_ie));
2925        if (p && len > 0) {
2926                pht_capie = (struct rtw_ieee80211_ht_cap *)(p+2);
2927                max_ampdu_sz = (pht_capie->ampdu_params_info & IEEE80211_HT_CAP_AMPDU_FACTOR);
2928                max_ampdu_sz = 1 << (max_ampdu_sz+3); /*  max_ampdu_sz (kbytes); */
2929
2930                /* DBG_871X("rtw_update_ht_cap(): max_ampdu_sz =%d\n", max_ampdu_sz); */
2931                phtpriv->rx_ampdu_maxlen = max_ampdu_sz;
2932
2933        }
2934
2935
2936        len = 0;
2937        p = rtw_get_ie(pie+sizeof(struct ndis_802_11_fix_ie), _HT_ADD_INFO_IE_, &len, ie_len-sizeof(struct ndis_802_11_fix_ie));
2938        if (p && len > 0) {
2939                pht_addtinfo = (struct ieee80211_ht_addt_info *)(p+2);
2940                /* todo: */
2941        }
2942
2943        if (channel > 14) {
2944                if ((pregistrypriv->bw_mode & 0xf0) > 0)
2945                        cbw40_enable = 1;
2946        } else {
2947                if ((pregistrypriv->bw_mode & 0x0f) > 0)
2948                        cbw40_enable = 1;
2949        }
2950
2951        /* update cur_bwmode & cur_ch_offset */
2952        if ((cbw40_enable) &&
2953            (le16_to_cpu(pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info) &
2954              BIT(1)) && (pmlmeinfo->HT_info.infos[0] & BIT(2))) {
2955                int i;
2956                u8 rf_type;
2957
2958                rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
2959
2960                /* update the MCS set */
2961                for (i = 0; i < 16; i++)
2962                        pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= pmlmeext->default_supported_mcs_set[i];
2963
2964                /* update the MCS rates */
2965                switch (rf_type) {
2966                case RF_1T1R:
2967                case RF_1T2R:
2968                        set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_1R);
2969                        break;
2970                case RF_2T2R:
2971                default:
2972#ifdef CONFIG_DISABLE_MCS13TO15
2973                        if (pmlmeext->cur_bwmode == CHANNEL_WIDTH_40 && pregistrypriv->wifi_spec != 1)
2974                                set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R_13TO15_OFF);
2975                        else
2976                                set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R);
2977#else /* CONFIG_DISABLE_MCS13TO15 */
2978                        set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R);
2979#endif /* CONFIG_DISABLE_MCS13TO15 */
2980                }
2981
2982                /* switch to the 40M Hz mode according to the AP */
2983                /* pmlmeext->cur_bwmode = CHANNEL_WIDTH_40; */
2984                switch ((pmlmeinfo->HT_info.infos[0] & 0x3)) {
2985                case EXTCHNL_OFFSET_UPPER:
2986                        pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_LOWER;
2987                        break;
2988
2989                case EXTCHNL_OFFSET_LOWER:
2990                        pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_UPPER;
2991                        break;
2992
2993                default:
2994                        pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
2995                        break;
2996                }
2997        }
2998
2999        /*  */
3000        /*  Config SM Power Save setting */
3001        /*  */
3002        pmlmeinfo->SM_PS =
3003                (le16_to_cpu(pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info) &
3004                 0x0C) >> 2;
3005        if (pmlmeinfo->SM_PS == WLAN_HT_CAP_SM_PS_STATIC)
3006                DBG_871X("%s(): WLAN_HT_CAP_SM_PS_STATIC\n", __func__);
3007
3008        /*  */
3009        /*  Config current HT Protection mode. */
3010        /*  */
3011        pmlmeinfo->HT_protection = pmlmeinfo->HT_info.infos[1] & 0x3;
3012}
3013
3014void rtw_issue_addbareq_cmd(struct adapter *padapter, struct xmit_frame *pxmitframe)
3015{
3016        u8 issued;
3017        int priority;
3018        struct sta_info *psta = NULL;
3019        struct ht_priv *phtpriv;
3020        struct pkt_attrib *pattrib = &pxmitframe->attrib;
3021        s32 bmcst = IS_MCAST(pattrib->ra);
3022
3023        /* if (bmcst || (padapter->mlmepriv.LinkDetectInfo.bTxBusyTraffic == false)) */
3024        if (bmcst || (padapter->mlmepriv.LinkDetectInfo.NumTxOkInPeriod < 100))
3025                return;
3026
3027        priority = pattrib->priority;
3028
3029        psta = rtw_get_stainfo(&padapter->stapriv, pattrib->ra);
3030        if (pattrib->psta != psta) {
3031                DBG_871X("%s, pattrib->psta(%p) != psta(%p)\n", __func__, pattrib->psta, psta);
3032                return;
3033        }
3034
3035        if (psta == NULL) {
3036                DBG_871X("%s, psta ==NUL\n", __func__);
3037                return;
3038        }
3039
3040        if (!(psta->state & _FW_LINKED)) {
3041                DBG_871X("%s, psta->state(0x%x) != _FW_LINKED\n", __func__, psta->state);
3042                return;
3043        }
3044
3045
3046        phtpriv = &psta->htpriv;
3047
3048        if ((phtpriv->ht_option == true) && (phtpriv->ampdu_enable == true)) {
3049                issued = (phtpriv->agg_enable_bitmap>>priority)&0x1;
3050                issued |= (phtpriv->candidate_tid_bitmap>>priority)&0x1;
3051
3052                if (0 == issued) {
3053                        DBG_871X("rtw_issue_addbareq_cmd, p =%d\n", priority);
3054                        psta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
3055                        rtw_addbareq_cmd(padapter, (u8) priority, pattrib->ra);
3056                }
3057        }
3058
3059}
3060
3061void rtw_append_exented_cap(struct adapter *padapter, u8 *out_ie, uint *pout_len)
3062{
3063        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
3064        struct ht_priv  *phtpriv = &pmlmepriv->htpriv;
3065        u8 cap_content[8] = {0};
3066        u8 *pframe;
3067
3068
3069        if (phtpriv->bss_coexist) {
3070                SET_EXT_CAPABILITY_ELE_BSS_COEXIST(cap_content, 1);
3071        }
3072
3073        pframe = rtw_set_ie(out_ie + *pout_len, EID_EXTCapability, 8, cap_content, pout_len);
3074}
3075
3076inline void rtw_set_to_roam(struct adapter *adapter, u8 to_roam)
3077{
3078        if (to_roam == 0)
3079                adapter->mlmepriv.to_join = false;
3080        adapter->mlmepriv.to_roam = to_roam;
3081}
3082
3083inline u8 rtw_dec_to_roam(struct adapter *adapter)
3084{
3085        adapter->mlmepriv.to_roam--;
3086        return adapter->mlmepriv.to_roam;
3087}
3088
3089inline u8 rtw_to_roam(struct adapter *adapter)
3090{
3091        return adapter->mlmepriv.to_roam;
3092}
3093
3094void rtw_roaming(struct adapter *padapter, struct wlan_network *tgt_network)
3095{
3096        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
3097
3098        spin_lock_bh(&pmlmepriv->lock);
3099        _rtw_roaming(padapter, tgt_network);
3100        spin_unlock_bh(&pmlmepriv->lock);
3101}
3102void _rtw_roaming(struct adapter *padapter, struct wlan_network *tgt_network)
3103{
3104        struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
3105        struct wlan_network *cur_network = &pmlmepriv->cur_network;
3106        int do_join_r;
3107
3108        if (0 < rtw_to_roam(padapter)) {
3109                DBG_871X("roaming from %s("MAC_FMT"), length:%d\n",
3110                                cur_network->network.Ssid.Ssid, MAC_ARG(cur_network->network.MacAddress),
3111                                cur_network->network.Ssid.SsidLength);
3112                memcpy(&pmlmepriv->assoc_ssid, &cur_network->network.Ssid, sizeof(struct ndis_802_11_ssid));
3113
3114                pmlmepriv->assoc_by_bssid = false;
3115
3116                while (1) {
3117                        do_join_r = rtw_do_join(padapter);
3118                        if (_SUCCESS == do_join_r) {
3119                                break;
3120                        } else {
3121                                DBG_871X("roaming do_join return %d\n", do_join_r);
3122                                rtw_dec_to_roam(padapter);
3123
3124                                if (rtw_to_roam(padapter) > 0) {
3125                                        continue;
3126                                } else {
3127                                        DBG_871X("%s(%d) -to roaming fail, indicate_disconnect\n", __func__, __LINE__);
3128                                        rtw_indicate_disconnect(padapter);
3129                                        break;
3130                                }
3131                        }
3132                }
3133        }
3134
3135}
3136
3137sint rtw_linked_check(struct adapter *padapter)
3138{
3139        if ((check_fwstate(&padapter->mlmepriv, WIFI_AP_STATE) == true) ||
3140                        (check_fwstate(&padapter->mlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE) == true)) {
3141                if (padapter->stapriv.asoc_sta_count > 2)
3142                        return true;
3143        } else{ /* Station mode */
3144                if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) == true)
3145                        return true;
3146        }
3147        return false;
3148}
3149