ctrl_iface_unix.c 28 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120
  1. /*
  2. * WPA Supplicant / UNIX domain socket -based control interface
  3. * Copyright (c) 2004-2014, Jouni Malinen <j@w1.fi>
  4. *
  5. * This software may be distributed under the terms of the BSD license.
  6. * See README for more details.
  7. */
  8. #include "includes.h"
  9. #include <sys/un.h>
  10. #include <sys/stat.h>
  11. #include <grp.h>
  12. #include <stddef.h>
  13. #include <unistd.h>
  14. #include <fcntl.h>
  15. #ifdef ANDROID
  16. #include <cutils/sockets.h>
  17. #endif /* ANDROID */
  18. #include "utils/common.h"
  19. #include "utils/eloop.h"
  20. #include "utils/list.h"
  21. #include "eapol_supp/eapol_supp_sm.h"
  22. #include "config.h"
  23. #include "wpa_supplicant_i.h"
  24. #include "ctrl_iface.h"
  25. /* Per-interface ctrl_iface */
  26. /**
  27. * struct wpa_ctrl_dst - Internal data structure of control interface monitors
  28. *
  29. * This structure is used to store information about registered control
  30. * interface monitors into struct wpa_supplicant. This data is private to
  31. * ctrl_iface_unix.c and should not be touched directly from other files.
  32. */
  33. struct wpa_ctrl_dst {
  34. struct dl_list list;
  35. struct sockaddr_un addr;
  36. socklen_t addrlen;
  37. int debug_level;
  38. int errors;
  39. };
  40. struct ctrl_iface_priv {
  41. struct wpa_supplicant *wpa_s;
  42. int sock;
  43. struct dl_list ctrl_dst;
  44. int android_control_socket;
  45. };
  46. struct ctrl_iface_global_priv {
  47. struct wpa_global *global;
  48. int sock;
  49. struct dl_list ctrl_dst;
  50. int android_control_socket;
  51. };
  52. static void wpa_supplicant_ctrl_iface_send(struct wpa_supplicant *wpa_s,
  53. const char *ifname, int sock,
  54. struct dl_list *ctrl_dst,
  55. int level, const char *buf,
  56. size_t len,
  57. struct ctrl_iface_priv *priv,
  58. struct ctrl_iface_global_priv *gp);
  59. static int wpas_ctrl_iface_reinit(struct wpa_supplicant *wpa_s,
  60. struct ctrl_iface_priv *priv);
  61. static int wpas_ctrl_iface_global_reinit(struct wpa_global *global,
  62. struct ctrl_iface_global_priv *priv);
  63. static int wpa_supplicant_ctrl_iface_attach(struct dl_list *ctrl_dst,
  64. struct sockaddr_un *from,
  65. socklen_t fromlen, int global)
  66. {
  67. struct wpa_ctrl_dst *dst;
  68. char addr_txt[200];
  69. dst = os_zalloc(sizeof(*dst));
  70. if (dst == NULL)
  71. return -1;
  72. os_memcpy(&dst->addr, from, sizeof(struct sockaddr_un));
  73. dst->addrlen = fromlen;
  74. dst->debug_level = MSG_INFO;
  75. dl_list_add(ctrl_dst, &dst->list);
  76. printf_encode(addr_txt, sizeof(addr_txt),
  77. (u8 *) from->sun_path,
  78. fromlen - offsetof(struct sockaddr_un, sun_path));
  79. wpa_printf(MSG_DEBUG, "CTRL_IFACE %smonitor attached %s",
  80. global ? "global " : "", addr_txt);
  81. return 0;
  82. }
  83. static int wpa_supplicant_ctrl_iface_detach(struct dl_list *ctrl_dst,
  84. struct sockaddr_un *from,
  85. socklen_t fromlen)
  86. {
  87. struct wpa_ctrl_dst *dst;
  88. dl_list_for_each(dst, ctrl_dst, struct wpa_ctrl_dst, list) {
  89. if (fromlen == dst->addrlen &&
  90. os_memcmp(from->sun_path, dst->addr.sun_path,
  91. fromlen - offsetof(struct sockaddr_un, sun_path))
  92. == 0) {
  93. char addr_txt[200];
  94. printf_encode(addr_txt, sizeof(addr_txt),
  95. (u8 *) from->sun_path,
  96. fromlen -
  97. offsetof(struct sockaddr_un, sun_path));
  98. wpa_printf(MSG_DEBUG, "CTRL_IFACE monitor detached %s",
  99. addr_txt);
  100. dl_list_del(&dst->list);
  101. os_free(dst);
  102. return 0;
  103. }
  104. }
  105. return -1;
  106. }
  107. static int wpa_supplicant_ctrl_iface_level(struct ctrl_iface_priv *priv,
  108. struct sockaddr_un *from,
  109. socklen_t fromlen,
  110. char *level)
  111. {
  112. struct wpa_ctrl_dst *dst;
  113. wpa_printf(MSG_DEBUG, "CTRL_IFACE LEVEL %s", level);
  114. dl_list_for_each(dst, &priv->ctrl_dst, struct wpa_ctrl_dst, list) {
  115. if (fromlen == dst->addrlen &&
  116. os_memcmp(from->sun_path, dst->addr.sun_path,
  117. fromlen - offsetof(struct sockaddr_un, sun_path))
  118. == 0) {
  119. char addr_txt[200];
  120. dst->debug_level = atoi(level);
  121. printf_encode(addr_txt, sizeof(addr_txt),
  122. (u8 *) from->sun_path, fromlen -
  123. offsetof(struct sockaddr_un, sun_path));
  124. wpa_printf(MSG_DEBUG, "CTRL_IFACE changed monitor level to %d for %s",
  125. dst->debug_level, addr_txt);
  126. return 0;
  127. }
  128. }
  129. return -1;
  130. }
  131. static void wpa_supplicant_ctrl_iface_receive(int sock, void *eloop_ctx,
  132. void *sock_ctx)
  133. {
  134. struct wpa_supplicant *wpa_s = eloop_ctx;
  135. struct ctrl_iface_priv *priv = sock_ctx;
  136. char buf[4096];
  137. int res;
  138. struct sockaddr_un from;
  139. socklen_t fromlen = sizeof(from);
  140. char *reply = NULL, *reply_buf = NULL;
  141. size_t reply_len = 0;
  142. int new_attached = 0;
  143. res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
  144. (struct sockaddr *) &from, &fromlen);
  145. if (res < 0) {
  146. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  147. strerror(errno));
  148. return;
  149. }
  150. buf[res] = '\0';
  151. if (os_strcmp(buf, "ATTACH") == 0) {
  152. if (wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst, &from,
  153. fromlen, 0))
  154. reply_len = 1;
  155. else {
  156. new_attached = 1;
  157. reply_len = 2;
  158. }
  159. } else if (os_strcmp(buf, "DETACH") == 0) {
  160. if (wpa_supplicant_ctrl_iface_detach(&priv->ctrl_dst, &from,
  161. fromlen))
  162. reply_len = 1;
  163. else
  164. reply_len = 2;
  165. } else if (os_strncmp(buf, "LEVEL ", 6) == 0) {
  166. if (wpa_supplicant_ctrl_iface_level(priv, &from, fromlen,
  167. buf + 6))
  168. reply_len = 1;
  169. else
  170. reply_len = 2;
  171. } else {
  172. reply_buf = wpa_supplicant_ctrl_iface_process(wpa_s, buf,
  173. &reply_len);
  174. reply = reply_buf;
  175. }
  176. if (!reply && reply_len == 1) {
  177. reply = "FAIL\n";
  178. reply_len = 5;
  179. } else if (!reply && reply_len == 2) {
  180. reply = "OK\n";
  181. reply_len = 3;
  182. }
  183. if (reply) {
  184. if (sendto(sock, reply, reply_len, 0, (struct sockaddr *) &from,
  185. fromlen) < 0) {
  186. int _errno = errno;
  187. wpa_dbg(wpa_s, MSG_DEBUG,
  188. "ctrl_iface sendto failed: %d - %s",
  189. _errno, strerror(_errno));
  190. if (_errno == ENOBUFS || _errno == EAGAIN) {
  191. /*
  192. * The socket send buffer could be full. This
  193. * may happen if client programs are not
  194. * receiving their pending messages. Close and
  195. * reopen the socket as a workaround to avoid
  196. * getting stuck being unable to send any new
  197. * responses.
  198. */
  199. sock = wpas_ctrl_iface_reinit(wpa_s, priv);
  200. if (sock < 0) {
  201. wpa_dbg(wpa_s, MSG_DEBUG, "Failed to reinitialize ctrl_iface socket");
  202. }
  203. }
  204. if (new_attached) {
  205. wpa_dbg(wpa_s, MSG_DEBUG, "Failed to send response to ATTACH - detaching");
  206. new_attached = 0;
  207. wpa_supplicant_ctrl_iface_detach(
  208. &priv->ctrl_dst, &from, fromlen);
  209. }
  210. }
  211. }
  212. os_free(reply_buf);
  213. if (new_attached)
  214. eapol_sm_notify_ctrl_attached(wpa_s->eapol);
  215. }
  216. static char * wpa_supplicant_ctrl_iface_path(struct wpa_supplicant *wpa_s)
  217. {
  218. char *buf;
  219. size_t len;
  220. char *pbuf, *dir = NULL;
  221. int res;
  222. if (wpa_s->conf->ctrl_interface == NULL)
  223. return NULL;
  224. pbuf = os_strdup(wpa_s->conf->ctrl_interface);
  225. if (pbuf == NULL)
  226. return NULL;
  227. if (os_strncmp(pbuf, "DIR=", 4) == 0) {
  228. char *gid_str;
  229. dir = pbuf + 4;
  230. gid_str = os_strstr(dir, " GROUP=");
  231. if (gid_str)
  232. *gid_str = '\0';
  233. } else
  234. dir = pbuf;
  235. len = os_strlen(dir) + os_strlen(wpa_s->ifname) + 2;
  236. buf = os_malloc(len);
  237. if (buf == NULL) {
  238. os_free(pbuf);
  239. return NULL;
  240. }
  241. res = os_snprintf(buf, len, "%s/%s", dir, wpa_s->ifname);
  242. if (os_snprintf_error(len, res)) {
  243. os_free(pbuf);
  244. os_free(buf);
  245. return NULL;
  246. }
  247. #ifdef __CYGWIN__
  248. {
  249. /* Windows/WinPcap uses interface names that are not suitable
  250. * as a file name - convert invalid chars to underscores */
  251. char *pos = buf;
  252. while (*pos) {
  253. if (*pos == '\\')
  254. *pos = '_';
  255. pos++;
  256. }
  257. }
  258. #endif /* __CYGWIN__ */
  259. os_free(pbuf);
  260. return buf;
  261. }
  262. static void wpa_supplicant_ctrl_iface_msg_cb(void *ctx, int level, int global,
  263. const char *txt, size_t len)
  264. {
  265. struct wpa_supplicant *wpa_s = ctx;
  266. if (wpa_s == NULL)
  267. return;
  268. if (global != 2 && wpa_s->global->ctrl_iface) {
  269. struct ctrl_iface_global_priv *priv = wpa_s->global->ctrl_iface;
  270. if (!dl_list_empty(&priv->ctrl_dst)) {
  271. wpa_supplicant_ctrl_iface_send(wpa_s, global ? NULL :
  272. wpa_s->ifname,
  273. priv->sock,
  274. &priv->ctrl_dst,
  275. level, txt, len, NULL,
  276. priv);
  277. }
  278. }
  279. if (wpa_s->ctrl_iface == NULL)
  280. return;
  281. wpa_supplicant_ctrl_iface_send(wpa_s, NULL, wpa_s->ctrl_iface->sock,
  282. &wpa_s->ctrl_iface->ctrl_dst,
  283. level, txt, len, wpa_s->ctrl_iface,
  284. NULL);
  285. }
  286. static int wpas_ctrl_iface_open_sock(struct wpa_supplicant *wpa_s,
  287. struct ctrl_iface_priv *priv)
  288. {
  289. struct sockaddr_un addr;
  290. char *fname = NULL;
  291. gid_t gid = 0;
  292. int gid_set = 0;
  293. char *buf, *dir = NULL, *gid_str = NULL;
  294. struct group *grp;
  295. char *endp;
  296. int flags;
  297. buf = os_strdup(wpa_s->conf->ctrl_interface);
  298. if (buf == NULL)
  299. goto fail;
  300. #ifdef ANDROID
  301. os_snprintf(addr.sun_path, sizeof(addr.sun_path), "wpa_%s",
  302. wpa_s->conf->ctrl_interface);
  303. priv->sock = android_get_control_socket(addr.sun_path);
  304. if (priv->sock >= 0) {
  305. priv->android_control_socket = 1;
  306. goto havesock;
  307. }
  308. #endif /* ANDROID */
  309. if (os_strncmp(buf, "DIR=", 4) == 0) {
  310. dir = buf + 4;
  311. gid_str = os_strstr(dir, " GROUP=");
  312. if (gid_str) {
  313. *gid_str = '\0';
  314. gid_str += 7;
  315. }
  316. } else {
  317. dir = buf;
  318. gid_str = wpa_s->conf->ctrl_interface_group;
  319. }
  320. if (mkdir(dir, S_IRWXU | S_IRWXG) < 0) {
  321. if (errno == EEXIST) {
  322. wpa_printf(MSG_DEBUG, "Using existing control "
  323. "interface directory.");
  324. } else {
  325. wpa_printf(MSG_ERROR, "mkdir[ctrl_interface=%s]: %s",
  326. dir, strerror(errno));
  327. goto fail;
  328. }
  329. }
  330. #ifdef ANDROID
  331. /*
  332. * wpa_supplicant is started from /init.*.rc on Android and that seems
  333. * to be using umask 0077 which would leave the control interface
  334. * directory without group access. This breaks things since Wi-Fi
  335. * framework assumes that this directory can be accessed by other
  336. * applications in the wifi group. Fix this by adding group access even
  337. * if umask value would prevent this.
  338. */
  339. if (chmod(dir, S_IRWXU | S_IRWXG) < 0) {
  340. wpa_printf(MSG_ERROR, "CTRL: Could not chmod directory: %s",
  341. strerror(errno));
  342. /* Try to continue anyway */
  343. }
  344. #endif /* ANDROID */
  345. if (gid_str) {
  346. grp = getgrnam(gid_str);
  347. if (grp) {
  348. gid = grp->gr_gid;
  349. gid_set = 1;
  350. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d"
  351. " (from group name '%s')",
  352. (int) gid, gid_str);
  353. } else {
  354. /* Group name not found - try to parse this as gid */
  355. gid = strtol(gid_str, &endp, 10);
  356. if (*gid_str == '\0' || *endp != '\0') {
  357. wpa_printf(MSG_ERROR, "CTRL: Invalid group "
  358. "'%s'", gid_str);
  359. goto fail;
  360. }
  361. gid_set = 1;
  362. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d",
  363. (int) gid);
  364. }
  365. }
  366. if (gid_set && chown(dir, -1, gid) < 0) {
  367. wpa_printf(MSG_ERROR, "chown[ctrl_interface=%s,gid=%d]: %s",
  368. dir, (int) gid, strerror(errno));
  369. goto fail;
  370. }
  371. /* Make sure the group can enter and read the directory */
  372. if (gid_set &&
  373. chmod(dir, S_IRUSR | S_IWUSR | S_IXUSR | S_IRGRP | S_IXGRP) < 0) {
  374. wpa_printf(MSG_ERROR, "CTRL: chmod[ctrl_interface]: %s",
  375. strerror(errno));
  376. goto fail;
  377. }
  378. if (os_strlen(dir) + 1 + os_strlen(wpa_s->ifname) >=
  379. sizeof(addr.sun_path)) {
  380. wpa_printf(MSG_ERROR, "ctrl_iface path limit exceeded");
  381. goto fail;
  382. }
  383. priv->sock = socket(PF_UNIX, SOCK_DGRAM, 0);
  384. if (priv->sock < 0) {
  385. wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
  386. goto fail;
  387. }
  388. os_memset(&addr, 0, sizeof(addr));
  389. #if defined(__FreeBSD__) || defined(__FreeBSD_kernel__)
  390. addr.sun_len = sizeof(addr);
  391. #endif /* __FreeBSD__ */
  392. addr.sun_family = AF_UNIX;
  393. fname = wpa_supplicant_ctrl_iface_path(wpa_s);
  394. if (fname == NULL)
  395. goto fail;
  396. os_strlcpy(addr.sun_path, fname, sizeof(addr.sun_path));
  397. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) < 0) {
  398. wpa_printf(MSG_DEBUG, "ctrl_iface bind(PF_UNIX) failed: %s",
  399. strerror(errno));
  400. if (connect(priv->sock, (struct sockaddr *) &addr,
  401. sizeof(addr)) < 0) {
  402. wpa_printf(MSG_DEBUG, "ctrl_iface exists, but does not"
  403. " allow connections - assuming it was left"
  404. "over from forced program termination");
  405. if (unlink(fname) < 0) {
  406. wpa_printf(MSG_ERROR,
  407. "Could not unlink existing ctrl_iface socket '%s': %s",
  408. fname, strerror(errno));
  409. goto fail;
  410. }
  411. if (bind(priv->sock, (struct sockaddr *) &addr,
  412. sizeof(addr)) < 0) {
  413. wpa_printf(MSG_ERROR, "supp-ctrl-iface-init: bind(PF_UNIX): %s",
  414. strerror(errno));
  415. goto fail;
  416. }
  417. wpa_printf(MSG_DEBUG, "Successfully replaced leftover "
  418. "ctrl_iface socket '%s'", fname);
  419. } else {
  420. wpa_printf(MSG_INFO, "ctrl_iface exists and seems to "
  421. "be in use - cannot override it");
  422. wpa_printf(MSG_INFO, "Delete '%s' manually if it is "
  423. "not used anymore", fname);
  424. os_free(fname);
  425. fname = NULL;
  426. goto fail;
  427. }
  428. }
  429. if (gid_set && chown(fname, -1, gid) < 0) {
  430. wpa_printf(MSG_ERROR, "chown[ctrl_interface=%s,gid=%d]: %s",
  431. fname, (int) gid, strerror(errno));
  432. goto fail;
  433. }
  434. if (chmod(fname, S_IRWXU | S_IRWXG) < 0) {
  435. wpa_printf(MSG_ERROR, "chmod[ctrl_interface=%s]: %s",
  436. fname, strerror(errno));
  437. goto fail;
  438. }
  439. os_free(fname);
  440. #ifdef ANDROID
  441. havesock:
  442. #endif /* ANDROID */
  443. /*
  444. * Make socket non-blocking so that we don't hang forever if
  445. * target dies unexpectedly.
  446. */
  447. flags = fcntl(priv->sock, F_GETFL);
  448. if (flags >= 0) {
  449. flags |= O_NONBLOCK;
  450. if (fcntl(priv->sock, F_SETFL, flags) < 0) {
  451. wpa_printf(MSG_INFO, "fcntl(ctrl, O_NONBLOCK): %s",
  452. strerror(errno));
  453. /* Not fatal, continue on.*/
  454. }
  455. }
  456. eloop_register_read_sock(priv->sock, wpa_supplicant_ctrl_iface_receive,
  457. wpa_s, priv);
  458. wpa_msg_register_cb(wpa_supplicant_ctrl_iface_msg_cb);
  459. os_free(buf);
  460. return 0;
  461. fail:
  462. if (priv->sock >= 0) {
  463. close(priv->sock);
  464. priv->sock = -1;
  465. }
  466. if (fname) {
  467. unlink(fname);
  468. os_free(fname);
  469. }
  470. os_free(buf);
  471. return -1;
  472. }
  473. struct ctrl_iface_priv *
  474. wpa_supplicant_ctrl_iface_init(struct wpa_supplicant *wpa_s)
  475. {
  476. struct ctrl_iface_priv *priv;
  477. priv = os_zalloc(sizeof(*priv));
  478. if (priv == NULL)
  479. return NULL;
  480. dl_list_init(&priv->ctrl_dst);
  481. priv->wpa_s = wpa_s;
  482. priv->sock = -1;
  483. if (wpa_s->conf->ctrl_interface == NULL)
  484. return priv;
  485. if (wpas_ctrl_iface_open_sock(wpa_s, priv) < 0) {
  486. os_free(priv);
  487. return NULL;
  488. }
  489. return priv;
  490. }
  491. static int wpas_ctrl_iface_reinit(struct wpa_supplicant *wpa_s,
  492. struct ctrl_iface_priv *priv)
  493. {
  494. int res;
  495. if (priv->sock <= 0)
  496. return -1;
  497. /*
  498. * On Android, the control socket being used may be the socket
  499. * that is created when wpa_supplicant is started as a /init.*.rc
  500. * service. Such a socket is maintained as a key-value pair in
  501. * Android's environment. Closing this control socket would leave us
  502. * in a bad state with an invalid socket descriptor.
  503. */
  504. if (priv->android_control_socket)
  505. return priv->sock;
  506. eloop_unregister_read_sock(priv->sock);
  507. close(priv->sock);
  508. priv->sock = -1;
  509. res = wpas_ctrl_iface_open_sock(wpa_s, priv);
  510. if (res < 0)
  511. return -1;
  512. return priv->sock;
  513. }
  514. void wpa_supplicant_ctrl_iface_deinit(struct ctrl_iface_priv *priv)
  515. {
  516. struct wpa_ctrl_dst *dst, *prev;
  517. if (priv->sock > -1) {
  518. char *fname;
  519. char *buf, *dir = NULL;
  520. eloop_unregister_read_sock(priv->sock);
  521. if (!dl_list_empty(&priv->ctrl_dst)) {
  522. /*
  523. * Wait before closing the control socket if
  524. * there are any attached monitors in order to allow
  525. * them to receive any pending messages.
  526. */
  527. wpa_printf(MSG_DEBUG, "CTRL_IFACE wait for attached "
  528. "monitors to receive messages");
  529. os_sleep(0, 100000);
  530. }
  531. close(priv->sock);
  532. priv->sock = -1;
  533. fname = wpa_supplicant_ctrl_iface_path(priv->wpa_s);
  534. if (fname) {
  535. unlink(fname);
  536. os_free(fname);
  537. }
  538. if (priv->wpa_s->conf->ctrl_interface == NULL)
  539. goto free_dst;
  540. buf = os_strdup(priv->wpa_s->conf->ctrl_interface);
  541. if (buf == NULL)
  542. goto free_dst;
  543. if (os_strncmp(buf, "DIR=", 4) == 0) {
  544. char *gid_str;
  545. dir = buf + 4;
  546. gid_str = os_strstr(dir, " GROUP=");
  547. if (gid_str)
  548. *gid_str = '\0';
  549. } else
  550. dir = buf;
  551. if (rmdir(dir) < 0) {
  552. if (errno == ENOTEMPTY) {
  553. wpa_printf(MSG_DEBUG, "Control interface "
  554. "directory not empty - leaving it "
  555. "behind");
  556. } else {
  557. wpa_printf(MSG_ERROR,
  558. "rmdir[ctrl_interface=%s]: %s",
  559. dir, strerror(errno));
  560. }
  561. }
  562. os_free(buf);
  563. }
  564. free_dst:
  565. dl_list_for_each_safe(dst, prev, &priv->ctrl_dst, struct wpa_ctrl_dst,
  566. list)
  567. os_free(dst);
  568. os_free(priv);
  569. }
  570. /**
  571. * wpa_supplicant_ctrl_iface_send - Send a control interface packet to monitors
  572. * @ifname: Interface name for global control socket or %NULL
  573. * @sock: Local socket fd
  574. * @ctrl_dst: List of attached listeners
  575. * @level: Priority level of the message
  576. * @buf: Message data
  577. * @len: Message length
  578. *
  579. * Send a packet to all monitor programs attached to the control interface.
  580. */
  581. static void wpa_supplicant_ctrl_iface_send(struct wpa_supplicant *wpa_s,
  582. const char *ifname, int sock,
  583. struct dl_list *ctrl_dst,
  584. int level, const char *buf,
  585. size_t len,
  586. struct ctrl_iface_priv *priv,
  587. struct ctrl_iface_global_priv *gp)
  588. {
  589. struct wpa_ctrl_dst *dst, *next;
  590. char levelstr[10];
  591. int idx, res;
  592. struct msghdr msg;
  593. struct iovec io[5];
  594. if (sock < 0 || dl_list_empty(ctrl_dst))
  595. return;
  596. res = os_snprintf(levelstr, sizeof(levelstr), "<%d>", level);
  597. if (os_snprintf_error(sizeof(levelstr), res))
  598. return;
  599. idx = 0;
  600. if (ifname) {
  601. io[idx].iov_base = "IFNAME=";
  602. io[idx].iov_len = 7;
  603. idx++;
  604. io[idx].iov_base = (char *) ifname;
  605. io[idx].iov_len = os_strlen(ifname);
  606. idx++;
  607. io[idx].iov_base = " ";
  608. io[idx].iov_len = 1;
  609. idx++;
  610. }
  611. io[idx].iov_base = levelstr;
  612. io[idx].iov_len = os_strlen(levelstr);
  613. idx++;
  614. io[idx].iov_base = (char *) buf;
  615. io[idx].iov_len = len;
  616. idx++;
  617. os_memset(&msg, 0, sizeof(msg));
  618. msg.msg_iov = io;
  619. msg.msg_iovlen = idx;
  620. dl_list_for_each_safe(dst, next, ctrl_dst, struct wpa_ctrl_dst, list) {
  621. int _errno;
  622. char addr_txt[200];
  623. if (level < dst->debug_level)
  624. continue;
  625. printf_encode(addr_txt, sizeof(addr_txt),
  626. (u8 *) dst->addr.sun_path, dst->addrlen -
  627. offsetof(struct sockaddr_un, sun_path));
  628. msg.msg_name = (void *) &dst->addr;
  629. msg.msg_namelen = dst->addrlen;
  630. if (sendmsg(sock, &msg, MSG_DONTWAIT) >= 0) {
  631. wpa_printf(MSG_DEBUG, "CTRL_IFACE monitor sent successfully to %s",
  632. addr_txt);
  633. dst->errors = 0;
  634. continue;
  635. }
  636. _errno = errno;
  637. wpa_printf(MSG_DEBUG, "CTRL_IFACE monitor[%s]: %d - %s",
  638. addr_txt, errno, strerror(errno));
  639. dst->errors++;
  640. if (dst->errors > 10 || _errno == ENOENT || _errno == EPERM) {
  641. wpa_printf(MSG_INFO, "CTRL_IFACE: Detach monitor %s that cannot receive messages",
  642. addr_txt);
  643. wpa_supplicant_ctrl_iface_detach(ctrl_dst, &dst->addr,
  644. dst->addrlen);
  645. }
  646. if (_errno == ENOBUFS || _errno == EAGAIN) {
  647. /*
  648. * The socket send buffer could be full. This may happen
  649. * if client programs are not receiving their pending
  650. * messages. Close and reopen the socket as a workaround
  651. * to avoid getting stuck being unable to send any new
  652. * responses.
  653. */
  654. if (priv)
  655. sock = wpas_ctrl_iface_reinit(wpa_s, priv);
  656. else if (gp)
  657. sock = wpas_ctrl_iface_global_reinit(
  658. wpa_s->global, gp);
  659. else
  660. break;
  661. if (sock < 0) {
  662. wpa_dbg(wpa_s, MSG_DEBUG,
  663. "Failed to reinitialize ctrl_iface socket");
  664. break;
  665. }
  666. }
  667. }
  668. }
  669. void wpa_supplicant_ctrl_iface_wait(struct ctrl_iface_priv *priv)
  670. {
  671. char buf[256];
  672. int res;
  673. struct sockaddr_un from;
  674. socklen_t fromlen = sizeof(from);
  675. for (;;) {
  676. wpa_printf(MSG_DEBUG, "CTRL_IFACE - %s - wait for monitor to "
  677. "attach", priv->wpa_s->ifname);
  678. eloop_wait_for_read_sock(priv->sock);
  679. res = recvfrom(priv->sock, buf, sizeof(buf) - 1, 0,
  680. (struct sockaddr *) &from, &fromlen);
  681. if (res < 0) {
  682. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  683. strerror(errno));
  684. continue;
  685. }
  686. buf[res] = '\0';
  687. if (os_strcmp(buf, "ATTACH") == 0) {
  688. /* handle ATTACH signal of first monitor interface */
  689. if (!wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst,
  690. &from, fromlen,
  691. 0)) {
  692. if (sendto(priv->sock, "OK\n", 3, 0,
  693. (struct sockaddr *) &from, fromlen) <
  694. 0) {
  695. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  696. strerror(errno));
  697. }
  698. /* OK to continue */
  699. return;
  700. } else {
  701. if (sendto(priv->sock, "FAIL\n", 5, 0,
  702. (struct sockaddr *) &from, fromlen) <
  703. 0) {
  704. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  705. strerror(errno));
  706. }
  707. }
  708. } else {
  709. /* return FAIL for all other signals */
  710. if (sendto(priv->sock, "FAIL\n", 5, 0,
  711. (struct sockaddr *) &from, fromlen) < 0) {
  712. wpa_printf(MSG_DEBUG,
  713. "ctrl_iface sendto failed: %s",
  714. strerror(errno));
  715. }
  716. }
  717. }
  718. }
  719. /* Global ctrl_iface */
  720. static void wpa_supplicant_global_ctrl_iface_receive(int sock, void *eloop_ctx,
  721. void *sock_ctx)
  722. {
  723. struct wpa_global *global = eloop_ctx;
  724. struct ctrl_iface_global_priv *priv = sock_ctx;
  725. char buf[4096];
  726. int res;
  727. struct sockaddr_un from;
  728. socklen_t fromlen = sizeof(from);
  729. char *reply = NULL, *reply_buf = NULL;
  730. size_t reply_len;
  731. res = recvfrom(sock, buf, sizeof(buf) - 1, 0,
  732. (struct sockaddr *) &from, &fromlen);
  733. if (res < 0) {
  734. wpa_printf(MSG_ERROR, "recvfrom(ctrl_iface): %s",
  735. strerror(errno));
  736. return;
  737. }
  738. buf[res] = '\0';
  739. if (os_strcmp(buf, "ATTACH") == 0) {
  740. if (wpa_supplicant_ctrl_iface_attach(&priv->ctrl_dst, &from,
  741. fromlen, 1))
  742. reply_len = 1;
  743. else
  744. reply_len = 2;
  745. } else if (os_strcmp(buf, "DETACH") == 0) {
  746. if (wpa_supplicant_ctrl_iface_detach(&priv->ctrl_dst, &from,
  747. fromlen))
  748. reply_len = 1;
  749. else
  750. reply_len = 2;
  751. } else {
  752. reply_buf = wpa_supplicant_global_ctrl_iface_process(
  753. global, buf, &reply_len);
  754. reply = reply_buf;
  755. }
  756. if (!reply && reply_len == 1) {
  757. reply = "FAIL\n";
  758. reply_len = 5;
  759. } else if (!reply && reply_len == 2) {
  760. reply = "OK\n";
  761. reply_len = 3;
  762. }
  763. if (reply) {
  764. if (sendto(sock, reply, reply_len, 0, (struct sockaddr *) &from,
  765. fromlen) < 0) {
  766. wpa_printf(MSG_DEBUG, "ctrl_iface sendto failed: %s",
  767. strerror(errno));
  768. }
  769. }
  770. os_free(reply_buf);
  771. }
  772. static int wpas_global_ctrl_iface_open_sock(struct wpa_global *global,
  773. struct ctrl_iface_global_priv *priv)
  774. {
  775. struct sockaddr_un addr;
  776. const char *ctrl = global->params.ctrl_interface;
  777. int flags;
  778. wpa_printf(MSG_DEBUG, "Global control interface '%s'", ctrl);
  779. #ifdef ANDROID
  780. if (os_strncmp(ctrl, "@android:", 9) == 0) {
  781. priv->sock = android_get_control_socket(ctrl + 9);
  782. if (priv->sock < 0) {
  783. wpa_printf(MSG_ERROR, "Failed to open Android control "
  784. "socket '%s'", ctrl + 9);
  785. goto fail;
  786. }
  787. wpa_printf(MSG_DEBUG, "Using Android control socket '%s'",
  788. ctrl + 9);
  789. priv->android_control_socket = 1;
  790. goto havesock;
  791. }
  792. if (os_strncmp(ctrl, "@abstract:", 10) != 0) {
  793. /*
  794. * Backwards compatibility - try to open an Android control
  795. * socket and if that fails, assume this was a UNIX domain
  796. * socket instead.
  797. */
  798. priv->sock = android_get_control_socket(ctrl);
  799. if (priv->sock >= 0) {
  800. wpa_printf(MSG_DEBUG,
  801. "Using Android control socket '%s'",
  802. ctrl);
  803. priv->android_control_socket = 1;
  804. goto havesock;
  805. }
  806. }
  807. #endif /* ANDROID */
  808. priv->sock = socket(PF_UNIX, SOCK_DGRAM, 0);
  809. if (priv->sock < 0) {
  810. wpa_printf(MSG_ERROR, "socket(PF_UNIX): %s", strerror(errno));
  811. goto fail;
  812. }
  813. os_memset(&addr, 0, sizeof(addr));
  814. #if defined(__FreeBSD__) || defined(__FreeBSD_kernel__)
  815. addr.sun_len = sizeof(addr);
  816. #endif /* __FreeBSD__ */
  817. addr.sun_family = AF_UNIX;
  818. if (os_strncmp(ctrl, "@abstract:", 10) == 0) {
  819. addr.sun_path[0] = '\0';
  820. os_strlcpy(addr.sun_path + 1, ctrl + 10,
  821. sizeof(addr.sun_path) - 1);
  822. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) <
  823. 0) {
  824. wpa_printf(MSG_ERROR, "supp-global-ctrl-iface-init: "
  825. "bind(PF_UNIX;%s) failed: %s",
  826. ctrl, strerror(errno));
  827. goto fail;
  828. }
  829. wpa_printf(MSG_DEBUG, "Using Abstract control socket '%s'",
  830. ctrl + 10);
  831. goto havesock;
  832. }
  833. os_strlcpy(addr.sun_path, ctrl, sizeof(addr.sun_path));
  834. if (bind(priv->sock, (struct sockaddr *) &addr, sizeof(addr)) < 0) {
  835. wpa_printf(MSG_INFO, "supp-global-ctrl-iface-init(%s) (will try fixup): bind(PF_UNIX): %s",
  836. ctrl, strerror(errno));
  837. if (connect(priv->sock, (struct sockaddr *) &addr,
  838. sizeof(addr)) < 0) {
  839. wpa_printf(MSG_DEBUG, "ctrl_iface exists, but does not"
  840. " allow connections - assuming it was left"
  841. "over from forced program termination");
  842. if (unlink(ctrl) < 0) {
  843. wpa_printf(MSG_ERROR,
  844. "Could not unlink existing ctrl_iface socket '%s': %s",
  845. ctrl, strerror(errno));
  846. goto fail;
  847. }
  848. if (bind(priv->sock, (struct sockaddr *) &addr,
  849. sizeof(addr)) < 0) {
  850. wpa_printf(MSG_ERROR, "supp-glb-iface-init: bind(PF_UNIX;%s): %s",
  851. ctrl, strerror(errno));
  852. goto fail;
  853. }
  854. wpa_printf(MSG_DEBUG, "Successfully replaced leftover "
  855. "ctrl_iface socket '%s'",
  856. ctrl);
  857. } else {
  858. wpa_printf(MSG_INFO, "ctrl_iface exists and seems to "
  859. "be in use - cannot override it");
  860. wpa_printf(MSG_INFO, "Delete '%s' manually if it is "
  861. "not used anymore",
  862. ctrl);
  863. goto fail;
  864. }
  865. }
  866. wpa_printf(MSG_DEBUG, "Using UNIX control socket '%s'", ctrl);
  867. if (global->params.ctrl_interface_group) {
  868. char *gid_str = global->params.ctrl_interface_group;
  869. gid_t gid = 0;
  870. struct group *grp;
  871. char *endp;
  872. grp = getgrnam(gid_str);
  873. if (grp) {
  874. gid = grp->gr_gid;
  875. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d"
  876. " (from group name '%s')",
  877. (int) gid, gid_str);
  878. } else {
  879. /* Group name not found - try to parse this as gid */
  880. gid = strtol(gid_str, &endp, 10);
  881. if (*gid_str == '\0' || *endp != '\0') {
  882. wpa_printf(MSG_ERROR, "CTRL: Invalid group "
  883. "'%s'", gid_str);
  884. goto fail;
  885. }
  886. wpa_printf(MSG_DEBUG, "ctrl_interface_group=%d",
  887. (int) gid);
  888. }
  889. if (chown(ctrl, -1, gid) < 0) {
  890. wpa_printf(MSG_ERROR,
  891. "chown[global_ctrl_interface=%s,gid=%d]: %s",
  892. ctrl, (int) gid, strerror(errno));
  893. goto fail;
  894. }
  895. if (chmod(ctrl, S_IRWXU | S_IRWXG) < 0) {
  896. wpa_printf(MSG_ERROR,
  897. "chmod[global_ctrl_interface=%s]: %s",
  898. ctrl, strerror(errno));
  899. goto fail;
  900. }
  901. } else {
  902. if (chmod(ctrl, S_IRWXU) < 0) {
  903. wpa_printf(MSG_DEBUG,
  904. "chmod[global_ctrl_interface=%s](S_IRWXU): %s",
  905. ctrl, strerror(errno));
  906. /* continue anyway since group change was not required
  907. */
  908. }
  909. }
  910. havesock:
  911. /*
  912. * Make socket non-blocking so that we don't hang forever if
  913. * target dies unexpectedly.
  914. */
  915. flags = fcntl(priv->sock, F_GETFL);
  916. if (flags >= 0) {
  917. flags |= O_NONBLOCK;
  918. if (fcntl(priv->sock, F_SETFL, flags) < 0) {
  919. wpa_printf(MSG_INFO, "fcntl(ctrl, O_NONBLOCK): %s",
  920. strerror(errno));
  921. /* Not fatal, continue on.*/
  922. }
  923. }
  924. eloop_register_read_sock(priv->sock,
  925. wpa_supplicant_global_ctrl_iface_receive,
  926. global, priv);
  927. return 0;
  928. fail:
  929. if (priv->sock >= 0) {
  930. close(priv->sock);
  931. priv->sock = -1;
  932. }
  933. return -1;
  934. }
  935. struct ctrl_iface_global_priv *
  936. wpa_supplicant_global_ctrl_iface_init(struct wpa_global *global)
  937. {
  938. struct ctrl_iface_global_priv *priv;
  939. priv = os_zalloc(sizeof(*priv));
  940. if (priv == NULL)
  941. return NULL;
  942. dl_list_init(&priv->ctrl_dst);
  943. priv->global = global;
  944. priv->sock = -1;
  945. if (global->params.ctrl_interface == NULL)
  946. return priv;
  947. if (wpas_global_ctrl_iface_open_sock(global, priv) < 0) {
  948. os_free(priv);
  949. return NULL;
  950. }
  951. wpa_msg_register_cb(wpa_supplicant_ctrl_iface_msg_cb);
  952. return priv;
  953. }
  954. static int wpas_ctrl_iface_global_reinit(struct wpa_global *global,
  955. struct ctrl_iface_global_priv *priv)
  956. {
  957. int res;
  958. if (priv->sock <= 0)
  959. return -1;
  960. /*
  961. * On Android, the control socket being used may be the socket
  962. * that is created when wpa_supplicant is started as a /init.*.rc
  963. * service. Such a socket is maintained as a key-value pair in
  964. * Android's environment. Closing this control socket would leave us
  965. * in a bad state with an invalid socket descriptor.
  966. */
  967. if (priv->android_control_socket)
  968. return priv->sock;
  969. eloop_unregister_read_sock(priv->sock);
  970. close(priv->sock);
  971. priv->sock = -1;
  972. res = wpas_global_ctrl_iface_open_sock(global, priv);
  973. if (res < 0)
  974. return -1;
  975. return priv->sock;
  976. }
  977. void
  978. wpa_supplicant_global_ctrl_iface_deinit(struct ctrl_iface_global_priv *priv)
  979. {
  980. struct wpa_ctrl_dst *dst, *prev;
  981. if (priv->sock >= 0) {
  982. eloop_unregister_read_sock(priv->sock);
  983. close(priv->sock);
  984. }
  985. if (priv->global->params.ctrl_interface)
  986. unlink(priv->global->params.ctrl_interface);
  987. dl_list_for_each_safe(dst, prev, &priv->ctrl_dst, struct wpa_ctrl_dst,
  988. list)
  989. os_free(dst);
  990. os_free(priv);
  991. }