xref: /OK3568_Linux_fs/kernel/net/mac802154/rx.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-only
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun  * Copyright (C) 2007-2012 Siemens AG
4*4882a593Smuzhiyun  *
5*4882a593Smuzhiyun  * Written by:
6*4882a593Smuzhiyun  * Pavel Smolenskiy <pavel.smolenskiy@gmail.com>
7*4882a593Smuzhiyun  * Maxim Gorbachyov <maxim.gorbachev@siemens.com>
8*4882a593Smuzhiyun  * Dmitry Eremin-Solenikov <dbaryshkov@gmail.com>
9*4882a593Smuzhiyun  * Alexander Smirnov <alex.bluesman.smirnov@gmail.com>
10*4882a593Smuzhiyun  */
11*4882a593Smuzhiyun 
12*4882a593Smuzhiyun #include <linux/kernel.h>
13*4882a593Smuzhiyun #include <linux/module.h>
14*4882a593Smuzhiyun #include <linux/netdevice.h>
15*4882a593Smuzhiyun #include <linux/crc-ccitt.h>
16*4882a593Smuzhiyun #include <asm/unaligned.h>
17*4882a593Smuzhiyun 
18*4882a593Smuzhiyun #include <net/mac802154.h>
19*4882a593Smuzhiyun #include <net/ieee802154_netdev.h>
20*4882a593Smuzhiyun #include <net/nl802154.h>
21*4882a593Smuzhiyun 
22*4882a593Smuzhiyun #include "ieee802154_i.h"
23*4882a593Smuzhiyun 
ieee802154_deliver_skb(struct sk_buff * skb)24*4882a593Smuzhiyun static int ieee802154_deliver_skb(struct sk_buff *skb)
25*4882a593Smuzhiyun {
26*4882a593Smuzhiyun 	skb->ip_summed = CHECKSUM_UNNECESSARY;
27*4882a593Smuzhiyun 	skb->protocol = htons(ETH_P_IEEE802154);
28*4882a593Smuzhiyun 
29*4882a593Smuzhiyun 	return netif_receive_skb(skb);
30*4882a593Smuzhiyun }
31*4882a593Smuzhiyun 
32*4882a593Smuzhiyun static int
ieee802154_subif_frame(struct ieee802154_sub_if_data * sdata,struct sk_buff * skb,const struct ieee802154_hdr * hdr)33*4882a593Smuzhiyun ieee802154_subif_frame(struct ieee802154_sub_if_data *sdata,
34*4882a593Smuzhiyun 		       struct sk_buff *skb, const struct ieee802154_hdr *hdr)
35*4882a593Smuzhiyun {
36*4882a593Smuzhiyun 	struct wpan_dev *wpan_dev = &sdata->wpan_dev;
37*4882a593Smuzhiyun 	__le16 span, sshort;
38*4882a593Smuzhiyun 	int rc;
39*4882a593Smuzhiyun 
40*4882a593Smuzhiyun 	pr_debug("getting packet via slave interface %s\n", sdata->dev->name);
41*4882a593Smuzhiyun 
42*4882a593Smuzhiyun 	span = wpan_dev->pan_id;
43*4882a593Smuzhiyun 	sshort = wpan_dev->short_addr;
44*4882a593Smuzhiyun 
45*4882a593Smuzhiyun 	switch (mac_cb(skb)->dest.mode) {
46*4882a593Smuzhiyun 	case IEEE802154_ADDR_NONE:
47*4882a593Smuzhiyun 		if (hdr->source.mode != IEEE802154_ADDR_NONE)
48*4882a593Smuzhiyun 			/* FIXME: check if we are PAN coordinator */
49*4882a593Smuzhiyun 			skb->pkt_type = PACKET_OTHERHOST;
50*4882a593Smuzhiyun 		else
51*4882a593Smuzhiyun 			/* ACK comes with both addresses empty */
52*4882a593Smuzhiyun 			skb->pkt_type = PACKET_HOST;
53*4882a593Smuzhiyun 		break;
54*4882a593Smuzhiyun 	case IEEE802154_ADDR_LONG:
55*4882a593Smuzhiyun 		if (mac_cb(skb)->dest.pan_id != span &&
56*4882a593Smuzhiyun 		    mac_cb(skb)->dest.pan_id != cpu_to_le16(IEEE802154_PANID_BROADCAST))
57*4882a593Smuzhiyun 			skb->pkt_type = PACKET_OTHERHOST;
58*4882a593Smuzhiyun 		else if (mac_cb(skb)->dest.extended_addr == wpan_dev->extended_addr)
59*4882a593Smuzhiyun 			skb->pkt_type = PACKET_HOST;
60*4882a593Smuzhiyun 		else
61*4882a593Smuzhiyun 			skb->pkt_type = PACKET_OTHERHOST;
62*4882a593Smuzhiyun 		break;
63*4882a593Smuzhiyun 	case IEEE802154_ADDR_SHORT:
64*4882a593Smuzhiyun 		if (mac_cb(skb)->dest.pan_id != span &&
65*4882a593Smuzhiyun 		    mac_cb(skb)->dest.pan_id != cpu_to_le16(IEEE802154_PANID_BROADCAST))
66*4882a593Smuzhiyun 			skb->pkt_type = PACKET_OTHERHOST;
67*4882a593Smuzhiyun 		else if (mac_cb(skb)->dest.short_addr == sshort)
68*4882a593Smuzhiyun 			skb->pkt_type = PACKET_HOST;
69*4882a593Smuzhiyun 		else if (mac_cb(skb)->dest.short_addr ==
70*4882a593Smuzhiyun 			  cpu_to_le16(IEEE802154_ADDR_BROADCAST))
71*4882a593Smuzhiyun 			skb->pkt_type = PACKET_BROADCAST;
72*4882a593Smuzhiyun 		else
73*4882a593Smuzhiyun 			skb->pkt_type = PACKET_OTHERHOST;
74*4882a593Smuzhiyun 		break;
75*4882a593Smuzhiyun 	default:
76*4882a593Smuzhiyun 		pr_debug("invalid dest mode\n");
77*4882a593Smuzhiyun 		goto fail;
78*4882a593Smuzhiyun 	}
79*4882a593Smuzhiyun 
80*4882a593Smuzhiyun 	skb->dev = sdata->dev;
81*4882a593Smuzhiyun 
82*4882a593Smuzhiyun 	/* TODO this should be moved after netif_receive_skb call, otherwise
83*4882a593Smuzhiyun 	 * wireshark will show a mac header with security fields and the
84*4882a593Smuzhiyun 	 * payload is already decrypted.
85*4882a593Smuzhiyun 	 */
86*4882a593Smuzhiyun 	rc = mac802154_llsec_decrypt(&sdata->sec, skb);
87*4882a593Smuzhiyun 	if (rc) {
88*4882a593Smuzhiyun 		pr_debug("decryption failed: %i\n", rc);
89*4882a593Smuzhiyun 		goto fail;
90*4882a593Smuzhiyun 	}
91*4882a593Smuzhiyun 
92*4882a593Smuzhiyun 	sdata->dev->stats.rx_packets++;
93*4882a593Smuzhiyun 	sdata->dev->stats.rx_bytes += skb->len;
94*4882a593Smuzhiyun 
95*4882a593Smuzhiyun 	switch (mac_cb(skb)->type) {
96*4882a593Smuzhiyun 	case IEEE802154_FC_TYPE_BEACON:
97*4882a593Smuzhiyun 	case IEEE802154_FC_TYPE_ACK:
98*4882a593Smuzhiyun 	case IEEE802154_FC_TYPE_MAC_CMD:
99*4882a593Smuzhiyun 		goto fail;
100*4882a593Smuzhiyun 
101*4882a593Smuzhiyun 	case IEEE802154_FC_TYPE_DATA:
102*4882a593Smuzhiyun 		return ieee802154_deliver_skb(skb);
103*4882a593Smuzhiyun 	default:
104*4882a593Smuzhiyun 		pr_warn_ratelimited("ieee802154: bad frame received "
105*4882a593Smuzhiyun 				    "(type = %d)\n", mac_cb(skb)->type);
106*4882a593Smuzhiyun 		goto fail;
107*4882a593Smuzhiyun 	}
108*4882a593Smuzhiyun 
109*4882a593Smuzhiyun fail:
110*4882a593Smuzhiyun 	kfree_skb(skb);
111*4882a593Smuzhiyun 	return NET_RX_DROP;
112*4882a593Smuzhiyun }
113*4882a593Smuzhiyun 
114*4882a593Smuzhiyun static void
ieee802154_print_addr(const char * name,const struct ieee802154_addr * addr)115*4882a593Smuzhiyun ieee802154_print_addr(const char *name, const struct ieee802154_addr *addr)
116*4882a593Smuzhiyun {
117*4882a593Smuzhiyun 	if (addr->mode == IEEE802154_ADDR_NONE)
118*4882a593Smuzhiyun 		pr_debug("%s not present\n", name);
119*4882a593Smuzhiyun 
120*4882a593Smuzhiyun 	pr_debug("%s PAN ID: %04x\n", name, le16_to_cpu(addr->pan_id));
121*4882a593Smuzhiyun 	if (addr->mode == IEEE802154_ADDR_SHORT) {
122*4882a593Smuzhiyun 		pr_debug("%s is short: %04x\n", name,
123*4882a593Smuzhiyun 			 le16_to_cpu(addr->short_addr));
124*4882a593Smuzhiyun 	} else {
125*4882a593Smuzhiyun 		u64 hw = swab64((__force u64)addr->extended_addr);
126*4882a593Smuzhiyun 
127*4882a593Smuzhiyun 		pr_debug("%s is hardware: %8phC\n", name, &hw);
128*4882a593Smuzhiyun 	}
129*4882a593Smuzhiyun }
130*4882a593Smuzhiyun 
131*4882a593Smuzhiyun static int
ieee802154_parse_frame_start(struct sk_buff * skb,struct ieee802154_hdr * hdr)132*4882a593Smuzhiyun ieee802154_parse_frame_start(struct sk_buff *skb, struct ieee802154_hdr *hdr)
133*4882a593Smuzhiyun {
134*4882a593Smuzhiyun 	int hlen;
135*4882a593Smuzhiyun 	struct ieee802154_mac_cb *cb = mac_cb(skb);
136*4882a593Smuzhiyun 
137*4882a593Smuzhiyun 	skb_reset_mac_header(skb);
138*4882a593Smuzhiyun 
139*4882a593Smuzhiyun 	hlen = ieee802154_hdr_pull(skb, hdr);
140*4882a593Smuzhiyun 	if (hlen < 0)
141*4882a593Smuzhiyun 		return -EINVAL;
142*4882a593Smuzhiyun 
143*4882a593Smuzhiyun 	skb->mac_len = hlen;
144*4882a593Smuzhiyun 
145*4882a593Smuzhiyun 	pr_debug("fc: %04x dsn: %02x\n", le16_to_cpup((__le16 *)&hdr->fc),
146*4882a593Smuzhiyun 		 hdr->seq);
147*4882a593Smuzhiyun 
148*4882a593Smuzhiyun 	cb->type = hdr->fc.type;
149*4882a593Smuzhiyun 	cb->ackreq = hdr->fc.ack_request;
150*4882a593Smuzhiyun 	cb->secen = hdr->fc.security_enabled;
151*4882a593Smuzhiyun 
152*4882a593Smuzhiyun 	ieee802154_print_addr("destination", &hdr->dest);
153*4882a593Smuzhiyun 	ieee802154_print_addr("source", &hdr->source);
154*4882a593Smuzhiyun 
155*4882a593Smuzhiyun 	cb->source = hdr->source;
156*4882a593Smuzhiyun 	cb->dest = hdr->dest;
157*4882a593Smuzhiyun 
158*4882a593Smuzhiyun 	if (hdr->fc.security_enabled) {
159*4882a593Smuzhiyun 		u64 key;
160*4882a593Smuzhiyun 
161*4882a593Smuzhiyun 		pr_debug("seclevel %i\n", hdr->sec.level);
162*4882a593Smuzhiyun 
163*4882a593Smuzhiyun 		switch (hdr->sec.key_id_mode) {
164*4882a593Smuzhiyun 		case IEEE802154_SCF_KEY_IMPLICIT:
165*4882a593Smuzhiyun 			pr_debug("implicit key\n");
166*4882a593Smuzhiyun 			break;
167*4882a593Smuzhiyun 
168*4882a593Smuzhiyun 		case IEEE802154_SCF_KEY_INDEX:
169*4882a593Smuzhiyun 			pr_debug("key %02x\n", hdr->sec.key_id);
170*4882a593Smuzhiyun 			break;
171*4882a593Smuzhiyun 
172*4882a593Smuzhiyun 		case IEEE802154_SCF_KEY_SHORT_INDEX:
173*4882a593Smuzhiyun 			pr_debug("key %04x:%04x %02x\n",
174*4882a593Smuzhiyun 				 le32_to_cpu(hdr->sec.short_src) >> 16,
175*4882a593Smuzhiyun 				 le32_to_cpu(hdr->sec.short_src) & 0xffff,
176*4882a593Smuzhiyun 				 hdr->sec.key_id);
177*4882a593Smuzhiyun 			break;
178*4882a593Smuzhiyun 
179*4882a593Smuzhiyun 		case IEEE802154_SCF_KEY_HW_INDEX:
180*4882a593Smuzhiyun 			key = swab64((__force u64)hdr->sec.extended_src);
181*4882a593Smuzhiyun 			pr_debug("key source %8phC %02x\n", &key,
182*4882a593Smuzhiyun 				 hdr->sec.key_id);
183*4882a593Smuzhiyun 			break;
184*4882a593Smuzhiyun 		}
185*4882a593Smuzhiyun 	}
186*4882a593Smuzhiyun 
187*4882a593Smuzhiyun 	return 0;
188*4882a593Smuzhiyun }
189*4882a593Smuzhiyun 
190*4882a593Smuzhiyun static void
__ieee802154_rx_handle_packet(struct ieee802154_local * local,struct sk_buff * skb)191*4882a593Smuzhiyun __ieee802154_rx_handle_packet(struct ieee802154_local *local,
192*4882a593Smuzhiyun 			      struct sk_buff *skb)
193*4882a593Smuzhiyun {
194*4882a593Smuzhiyun 	int ret;
195*4882a593Smuzhiyun 	struct ieee802154_sub_if_data *sdata;
196*4882a593Smuzhiyun 	struct ieee802154_hdr hdr;
197*4882a593Smuzhiyun 
198*4882a593Smuzhiyun 	ret = ieee802154_parse_frame_start(skb, &hdr);
199*4882a593Smuzhiyun 	if (ret) {
200*4882a593Smuzhiyun 		pr_debug("got invalid frame\n");
201*4882a593Smuzhiyun 		kfree_skb(skb);
202*4882a593Smuzhiyun 		return;
203*4882a593Smuzhiyun 	}
204*4882a593Smuzhiyun 
205*4882a593Smuzhiyun 	list_for_each_entry_rcu(sdata, &local->interfaces, list) {
206*4882a593Smuzhiyun 		if (sdata->wpan_dev.iftype != NL802154_IFTYPE_NODE)
207*4882a593Smuzhiyun 			continue;
208*4882a593Smuzhiyun 
209*4882a593Smuzhiyun 		if (!ieee802154_sdata_running(sdata))
210*4882a593Smuzhiyun 			continue;
211*4882a593Smuzhiyun 
212*4882a593Smuzhiyun 		ieee802154_subif_frame(sdata, skb, &hdr);
213*4882a593Smuzhiyun 		skb = NULL;
214*4882a593Smuzhiyun 		break;
215*4882a593Smuzhiyun 	}
216*4882a593Smuzhiyun 
217*4882a593Smuzhiyun 	kfree_skb(skb);
218*4882a593Smuzhiyun }
219*4882a593Smuzhiyun 
220*4882a593Smuzhiyun static void
ieee802154_monitors_rx(struct ieee802154_local * local,struct sk_buff * skb)221*4882a593Smuzhiyun ieee802154_monitors_rx(struct ieee802154_local *local, struct sk_buff *skb)
222*4882a593Smuzhiyun {
223*4882a593Smuzhiyun 	struct sk_buff *skb2;
224*4882a593Smuzhiyun 	struct ieee802154_sub_if_data *sdata;
225*4882a593Smuzhiyun 
226*4882a593Smuzhiyun 	skb_reset_mac_header(skb);
227*4882a593Smuzhiyun 	skb->ip_summed = CHECKSUM_UNNECESSARY;
228*4882a593Smuzhiyun 	skb->pkt_type = PACKET_OTHERHOST;
229*4882a593Smuzhiyun 	skb->protocol = htons(ETH_P_IEEE802154);
230*4882a593Smuzhiyun 
231*4882a593Smuzhiyun 	list_for_each_entry_rcu(sdata, &local->interfaces, list) {
232*4882a593Smuzhiyun 		if (sdata->wpan_dev.iftype != NL802154_IFTYPE_MONITOR)
233*4882a593Smuzhiyun 			continue;
234*4882a593Smuzhiyun 
235*4882a593Smuzhiyun 		if (!ieee802154_sdata_running(sdata))
236*4882a593Smuzhiyun 			continue;
237*4882a593Smuzhiyun 
238*4882a593Smuzhiyun 		skb2 = skb_clone(skb, GFP_ATOMIC);
239*4882a593Smuzhiyun 		if (skb2) {
240*4882a593Smuzhiyun 			skb2->dev = sdata->dev;
241*4882a593Smuzhiyun 			ieee802154_deliver_skb(skb2);
242*4882a593Smuzhiyun 
243*4882a593Smuzhiyun 			sdata->dev->stats.rx_packets++;
244*4882a593Smuzhiyun 			sdata->dev->stats.rx_bytes += skb->len;
245*4882a593Smuzhiyun 		}
246*4882a593Smuzhiyun 	}
247*4882a593Smuzhiyun }
248*4882a593Smuzhiyun 
ieee802154_rx(struct ieee802154_local * local,struct sk_buff * skb)249*4882a593Smuzhiyun void ieee802154_rx(struct ieee802154_local *local, struct sk_buff *skb)
250*4882a593Smuzhiyun {
251*4882a593Smuzhiyun 	u16 crc;
252*4882a593Smuzhiyun 
253*4882a593Smuzhiyun 	WARN_ON_ONCE(softirq_count() == 0);
254*4882a593Smuzhiyun 
255*4882a593Smuzhiyun 	if (local->suspended)
256*4882a593Smuzhiyun 		goto drop;
257*4882a593Smuzhiyun 
258*4882a593Smuzhiyun 	/* TODO: When a transceiver omits the checksum here, we
259*4882a593Smuzhiyun 	 * add an own calculated one. This is currently an ugly
260*4882a593Smuzhiyun 	 * solution because the monitor needs a crc here.
261*4882a593Smuzhiyun 	 */
262*4882a593Smuzhiyun 	if (local->hw.flags & IEEE802154_HW_RX_OMIT_CKSUM) {
263*4882a593Smuzhiyun 		crc = crc_ccitt(0, skb->data, skb->len);
264*4882a593Smuzhiyun 		put_unaligned_le16(crc, skb_put(skb, 2));
265*4882a593Smuzhiyun 	}
266*4882a593Smuzhiyun 
267*4882a593Smuzhiyun 	rcu_read_lock();
268*4882a593Smuzhiyun 
269*4882a593Smuzhiyun 	ieee802154_monitors_rx(local, skb);
270*4882a593Smuzhiyun 
271*4882a593Smuzhiyun 	/* Check if transceiver doesn't validate the checksum.
272*4882a593Smuzhiyun 	 * If not we validate the checksum here.
273*4882a593Smuzhiyun 	 */
274*4882a593Smuzhiyun 	if (local->hw.flags & IEEE802154_HW_RX_DROP_BAD_CKSUM) {
275*4882a593Smuzhiyun 		crc = crc_ccitt(0, skb->data, skb->len);
276*4882a593Smuzhiyun 		if (crc) {
277*4882a593Smuzhiyun 			rcu_read_unlock();
278*4882a593Smuzhiyun 			goto drop;
279*4882a593Smuzhiyun 		}
280*4882a593Smuzhiyun 	}
281*4882a593Smuzhiyun 	/* remove crc */
282*4882a593Smuzhiyun 	skb_trim(skb, skb->len - 2);
283*4882a593Smuzhiyun 
284*4882a593Smuzhiyun 	__ieee802154_rx_handle_packet(local, skb);
285*4882a593Smuzhiyun 
286*4882a593Smuzhiyun 	rcu_read_unlock();
287*4882a593Smuzhiyun 
288*4882a593Smuzhiyun 	return;
289*4882a593Smuzhiyun drop:
290*4882a593Smuzhiyun 	kfree_skb(skb);
291*4882a593Smuzhiyun }
292*4882a593Smuzhiyun 
293*4882a593Smuzhiyun void
ieee802154_rx_irqsafe(struct ieee802154_hw * hw,struct sk_buff * skb,u8 lqi)294*4882a593Smuzhiyun ieee802154_rx_irqsafe(struct ieee802154_hw *hw, struct sk_buff *skb, u8 lqi)
295*4882a593Smuzhiyun {
296*4882a593Smuzhiyun 	struct ieee802154_local *local = hw_to_local(hw);
297*4882a593Smuzhiyun 	struct ieee802154_mac_cb *cb = mac_cb_init(skb);
298*4882a593Smuzhiyun 
299*4882a593Smuzhiyun 	cb->lqi = lqi;
300*4882a593Smuzhiyun 	skb->pkt_type = IEEE802154_RX_MSG;
301*4882a593Smuzhiyun 	skb_queue_tail(&local->skb_queue, skb);
302*4882a593Smuzhiyun 	tasklet_schedule(&local->tasklet);
303*4882a593Smuzhiyun }
304*4882a593Smuzhiyun EXPORT_SYMBOL(ieee802154_rx_irqsafe);
305