5 * Copyright (C) 2007-2013 Intel Corporation. All rights reserved.
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
32 #include <sys/inotify.h>
36 #include <connman/provision.h>
37 #include <connman/ipaddress.h>
40 struct connman_config_service {
45 unsigned int ssid_len;
48 char *anonymous_identity;
51 char *altsubject_match;
52 char *domain_suffix_match;
54 char *client_cert_file;
55 char *private_key_file;
56 char *private_key_passphrase;
57 char *private_key_passphrase_type;
60 enum connman_service_security security;
61 GSList *service_identifiers;
62 char *config_ident; /* file prefix */
63 char *config_entry; /* entry name */
71 unsigned char ipv6_prefix_length;
78 char **search_domains;
83 struct connman_config {
87 GHashTable *service_table;
90 static GHashTable *config_table = NULL;
92 static bool cleanup = false;
94 /* Definition of possible strings in the .config files */
95 #define CONFIG_KEY_NAME "Name"
96 #define CONFIG_KEY_DESC "Description"
98 #define SERVICE_KEY_TYPE "Type"
99 #define SERVICE_KEY_NAME "Name"
100 #define SERVICE_KEY_SSID "SSID"
101 #define SERVICE_KEY_EAP "EAP"
102 #define SERVICE_KEY_CA_CERT "CACertFile"
103 #define SERVICE_KEY_CL_CERT "ClientCertFile"
104 #define SERVICE_KEY_PRV_KEY "PrivateKeyFile"
105 #define SERVICE_KEY_PRV_KEY_PASS "PrivateKeyPassphrase"
106 #define SERVICE_KEY_PRV_KEY_PASS_TYPE "PrivateKeyPassphraseType"
107 #define SERVICE_KEY_IDENTITY "Identity"
108 #define SERVICE_KEY_ANONYMOUS_IDENTITY "AnonymousIdentity"
109 #define SERVICE_KEY_SUBJECT_MATCH "SubjectMatch"
110 #define SERVICE_KEY_ALT_SUBJECT_MATCH "AltSubjectMatch"
111 #define SERVICE_KEY_DOMAIN_SUFF_MATCH "DomainSuffixMatch"
112 #define SERVICE_KEY_DOMAIN_MATCH "DomainMatch"
113 #define SERVICE_KEY_PHASE2 "Phase2"
114 #define SERVICE_KEY_PASSPHRASE "Passphrase"
115 #define SERVICE_KEY_SECURITY "Security"
116 #define SERVICE_KEY_HIDDEN "Hidden"
117 #define SERVICE_KEY_MDNS "mDNS"
119 #define SERVICE_KEY_IPv4 "IPv4"
120 #define SERVICE_KEY_IPv6 "IPv6"
121 #define SERVICE_KEY_IPv6_PRIVACY "IPv6.Privacy"
122 #define SERVICE_KEY_MAC "MAC"
123 #define SERVICE_KEY_DEVICE_NAME "DeviceName"
124 #define SERVICE_KEY_NAMESERVERS "Nameservers"
125 #define SERVICE_KEY_SEARCH_DOMAINS "SearchDomains"
126 #define SERVICE_KEY_TIMESERVERS "Timeservers"
127 #define SERVICE_KEY_DOMAIN "Domain"
129 static const char *config_possible_keys[] = {
135 static const char *service_possible_keys[] = {
143 SERVICE_KEY_PRV_KEY_PASS,
144 SERVICE_KEY_PRV_KEY_PASS_TYPE,
145 SERVICE_KEY_IDENTITY,
146 SERVICE_KEY_ANONYMOUS_IDENTITY,
147 SERVICE_KEY_SUBJECT_MATCH,
148 SERVICE_KEY_ALT_SUBJECT_MATCH,
149 SERVICE_KEY_DOMAIN_SUFF_MATCH,
150 SERVICE_KEY_DOMAIN_MATCH,
152 SERVICE_KEY_PASSPHRASE,
153 SERVICE_KEY_SECURITY,
157 SERVICE_KEY_IPv6_PRIVACY,
159 SERVICE_KEY_DEVICE_NAME,
161 SERVICE_KEY_NAMESERVERS,
162 SERVICE_KEY_SEARCH_DOMAINS,
163 SERVICE_KEY_TIMESERVERS,
168 static void unregister_config(gpointer data)
170 struct connman_config *config = data;
172 connman_info("Removing configuration %s", config->ident);
174 g_hash_table_destroy(config->service_table);
176 g_free(config->description);
177 g_free(config->name);
178 g_free(config->ident);
182 static void unregister_service(gpointer data)
184 struct connman_config_service *config_service = data;
185 struct connman_service *service;
192 connman_info("Removing service configuration %s",
193 config_service->ident);
195 if (config_service->virtual)
198 for (list = config_service->service_identifiers; list;
200 service_id = list->data;
202 service = connman_service_lookup_from_identifier(service_id);
204 __connman_service_set_immutable(service, false);
205 __connman_service_set_config(service, NULL, NULL);
206 __connman_service_remove(service);
209 * Ethernet or gadget service cannot be removed by
210 * __connman_service_remove() so reset the ipconfig
213 if (connman_service_get_type(service) ==
214 CONNMAN_SERVICE_TYPE_ETHERNET ||
215 connman_service_get_type(service) ==
216 CONNMAN_SERVICE_TYPE_GADGET) {
217 __connman_service_disconnect(service);
218 __connman_service_reset_ipconfig(service,
219 CONNMAN_IPCONFIG_TYPE_IPV4, NULL, NULL);
220 __connman_service_reset_ipconfig(service,
221 CONNMAN_IPCONFIG_TYPE_IPV6, NULL, NULL);
222 __connman_service_set_ignore(service, true);
225 * After these operations, user needs to
226 * reconnect ethernet cable to get IP
232 if (!__connman_storage_remove_service(service_id))
233 DBG("Could not remove all files for service %s",
238 g_free(config_service->ident);
239 g_free(config_service->type);
240 g_free(config_service->name);
241 g_free(config_service->ssid);
242 g_free(config_service->eap);
243 g_free(config_service->identity);
244 g_free(config_service->anonymous_identity);
245 g_free(config_service->ca_cert_file);
246 g_free(config_service->subject_match);
247 g_free(config_service->altsubject_match);
248 g_free(config_service->domain_suffix_match);
249 g_free(config_service->domain_match);
250 g_free(config_service->client_cert_file);
251 g_free(config_service->private_key_file);
252 g_free(config_service->private_key_passphrase);
253 g_free(config_service->private_key_passphrase_type);
254 g_free(config_service->phase2);
255 g_free(config_service->passphrase);
256 g_free(config_service->ipv4_address);
257 g_free(config_service->ipv4_gateway);
258 g_free(config_service->ipv4_netmask);
259 g_free(config_service->ipv6_address);
260 g_free(config_service->ipv6_gateway);
261 g_free(config_service->ipv6_privacy);
262 g_free(config_service->mac);
263 g_free(config_service->devname);
264 g_strfreev(config_service->nameservers);
265 g_strfreev(config_service->search_domains);
266 g_strfreev(config_service->timeservers);
267 g_free(config_service->domain_name);
268 g_slist_free_full(config_service->service_identifiers, g_free);
269 g_free(config_service->config_ident);
270 g_free(config_service->config_entry);
271 g_free(config_service->virtual_file);
272 g_free(config_service);
275 static void check_keys(GKeyFile *keyfile, const char *group,
276 const char **possible_keys)
279 gsize nb_avail_keys, i, j;
281 avail_keys = g_key_file_get_keys(keyfile, group, &nb_avail_keys, NULL);
286 * For each key in the configuration file,
287 * verify it is understood by connman
289 for (i = 0 ; i < nb_avail_keys; i++) {
290 for (j = 0; possible_keys[j] ; j++)
291 if (g_strcmp0(avail_keys[i], possible_keys[j]) == 0)
294 if (!possible_keys[j])
295 connman_warn("Unknown configuration key %s in [%s]",
296 avail_keys[i], group);
299 g_strfreev(avail_keys);
302 static int check_family(const char *address, int expected_family)
307 family = connman_inet_check_ipaddress(address);
309 DBG("Cannot get address family of %s (%d/%s)", address,
310 family, gai_strerror(family));
317 if (expected_family != AF_INET) {
318 DBG("Wrong type address %s, expecting IPv4", address);
324 if (expected_family != AF_INET6) {
325 DBG("Wrong type address %s, expecting IPv6", address);
331 DBG("Unsupported address family %d", family);
340 static int parse_address(const char *address_str, int address_family,
341 char **address, char **netmask, char **gateway)
343 char *addr_str, *mask_str, *gw_str;
347 route = g_strsplit(address_str, "/", 0);
352 if (!addr_str || addr_str[0] == '\0') {
357 if ((err = check_family(addr_str, address_family)) < 0)
361 if (!mask_str || mask_str[0] == '\0') {
367 if (gw_str && gw_str[0]) {
368 if ((err = check_family(gw_str, address_family)) < 0)
373 *address = g_strdup(addr_str);
376 *netmask = g_strdup(mask_str);
379 *gateway = g_strdup(gw_str);
382 DBG("address %s/%s via %s", *address, *netmask, *gateway);
384 DBG("address %s/%s", *address, *netmask);
392 static bool check_address(char *address_str, char **address)
394 if (g_ascii_strcasecmp(address_str, "auto") == 0 ||
395 g_ascii_strcasecmp(address_str, "dhcp") == 0 ||
396 g_ascii_strcasecmp(address_str, "off") == 0) {
397 *address = address_str;
404 static bool load_service_generic(GKeyFile *keyfile,
405 const char *group, struct connman_config *config,
406 struct connman_config_service *service)
412 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv4, NULL);
413 if (str && check_address(str, &service->ipv4_address)) {
416 if (parse_address(str, AF_INET, &service->ipv4_address,
417 &mask, &service->ipv4_gateway) < 0) {
418 connman_warn("Invalid format for IPv4 address %s",
424 if (!g_strrstr(mask, ".")) {
425 /* We have netmask length */
427 struct in_addr netmask_in;
428 unsigned char prefix_len = 32;
430 long int value = strtol(mask, &ptr, 10);
432 if (ptr != mask && *ptr == '\0' && value && value <= 32)
435 addr = 0xffffffff << (32 - prefix_len);
436 netmask_in.s_addr = htonl(addr);
437 service->ipv4_netmask =
438 g_strdup(inet_ntoa(netmask_in));
442 service->ipv4_netmask = mask;
447 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv6, NULL);
448 if (str && check_address(str, &service->ipv6_address)) {
454 if (parse_address(str, AF_INET6, &service->ipv6_address,
455 &mask, &service->ipv6_gateway) < 0) {
456 connman_warn("Invalid format for IPv6 address %s",
462 value = strtol(mask, &ptr, 10);
463 if (ptr != mask && *ptr == '\0' && value <= 128)
464 service->ipv6_prefix_length = value;
466 service->ipv6_prefix_length = 128;
472 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv6_PRIVACY,
475 g_free(service->ipv6_privacy);
476 service->ipv6_privacy = str;
479 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_MAC, NULL);
481 g_free(service->mac);
485 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_DEVICE_NAME, NULL);
487 g_free(service->devname);
488 service->devname = str;
491 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_DOMAIN, NULL);
493 g_free(service->domain_name);
494 service->domain_name = str;
497 strlist = __connman_config_get_string_list(keyfile, group,
498 SERVICE_KEY_NAMESERVERS,
502 g_strfreev(service->nameservers);
503 service->nameservers = strlist;
508 strlist = __connman_config_get_string_list(keyfile, group,
509 SERVICE_KEY_SEARCH_DOMAINS,
513 g_strfreev(service->search_domains);
514 service->search_domains = strlist;
519 strlist = __connman_config_get_string_list(keyfile, group,
520 SERVICE_KEY_TIMESERVERS,
524 g_strfreev(service->timeservers);
525 service->timeservers = strlist;
530 service->mdns = __connman_config_get_bool(keyfile, group,
531 SERVICE_KEY_MDNS, NULL);
536 g_free(service->ident);
537 g_free(service->type);
538 g_free(service->ipv4_address);
539 g_free(service->ipv4_netmask);
540 g_free(service->ipv4_gateway);
541 g_free(service->ipv6_address);
542 g_free(service->ipv6_gateway);
543 g_free(service->mac);
544 g_free(service->devname);
550 static bool load_service(GKeyFile *keyfile, const char *group,
551 struct connman_config *config)
553 struct connman_config_service *service;
555 char *str, *hex_ssid;
556 enum connman_service_security security;
557 bool service_created = false;
559 /* Strip off "service_" prefix */
562 if (strlen(ident) < 1)
565 /* Verify that provided keys are good */
566 check_keys(keyfile, group, service_possible_keys);
568 service = g_hash_table_lookup(config->service_table, ident);
570 service = g_try_new0(struct connman_config_service, 1);
574 service->ident = g_strdup(ident);
576 service_created = true;
579 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_TYPE, NULL);
581 g_free(service->type);
584 connman_warn("Type of the configured service is missing "
585 "for group %s", group);
589 if (!load_service_generic(keyfile, group, config, service))
592 if (g_strcmp0(str, "ethernet") == 0) {
593 service->config_ident = g_strdup(config->ident);
594 service->config_entry = g_strdup_printf("service_%s",
597 g_hash_table_insert(config->service_table, service->ident,
602 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_NAME, NULL);
604 g_free(service->name);
608 hex_ssid = __connman_config_get_string(keyfile, group, SERVICE_KEY_SSID,
612 unsigned int i, j = 0, hex;
613 size_t hex_ssid_len = strlen(hex_ssid);
615 ssid = g_try_malloc0(hex_ssid_len / 2);
621 for (i = 0; i < hex_ssid_len; i += 2) {
622 if (sscanf(hex_ssid + i, "%02x", &hex) <= 0) {
623 connman_warn("Invalid SSID %s", hex_ssid);
633 g_free(service->ssid);
634 service->ssid = ssid;
635 service->ssid_len = hex_ssid_len / 2;
636 } else if (service->name) {
638 unsigned int ssid_len;
640 ssid_len = strlen(service->name);
641 ssid = g_try_malloc0(ssid_len);
645 memcpy(ssid, service->name, ssid_len);
646 g_free(service->ssid);
647 service->ssid = ssid;
648 service->ssid_len = ssid_len;
651 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_EAP, NULL);
653 g_free(service->eap);
657 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_CA_CERT, NULL);
659 g_free(service->ca_cert_file);
660 service->ca_cert_file = str;
663 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_CL_CERT, NULL);
665 g_free(service->client_cert_file);
666 service->client_cert_file = str;
669 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PRV_KEY, NULL);
671 g_free(service->private_key_file);
672 service->private_key_file = str;
675 str = __connman_config_get_string(keyfile, group,
676 SERVICE_KEY_PRV_KEY_PASS, NULL);
678 g_free(service->private_key_passphrase);
679 service->private_key_passphrase = str;
682 str = __connman_config_get_string(keyfile, group,
683 SERVICE_KEY_PRV_KEY_PASS_TYPE, NULL);
685 g_free(service->private_key_passphrase_type);
686 service->private_key_passphrase_type = str;
689 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IDENTITY, NULL);
691 g_free(service->identity);
692 service->identity = str;
695 str = __connman_config_get_string(keyfile, group,
696 SERVICE_KEY_ANONYMOUS_IDENTITY, NULL);
698 g_free(service->anonymous_identity);
699 service->anonymous_identity = str;
702 str = __connman_config_get_string(keyfile, group,
703 SERVICE_KEY_SUBJECT_MATCH, NULL);
705 g_free(service->subject_match);
706 service->subject_match = str;
709 str = __connman_config_get_string(keyfile, group,
710 SERVICE_KEY_ALT_SUBJECT_MATCH, NULL);
712 g_free(service->altsubject_match);
713 service->altsubject_match = str;
716 str = __connman_config_get_string(keyfile, group,
717 SERVICE_KEY_DOMAIN_SUFF_MATCH, NULL);
719 g_free(service->domain_suffix_match);
720 service->domain_suffix_match = str;
723 str = __connman_config_get_string(keyfile, group,
724 SERVICE_KEY_DOMAIN_MATCH, NULL);
726 g_free(service->domain_match);
727 service->domain_match = str;
730 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PHASE2, NULL);
732 g_free(service->phase2);
733 service->phase2 = str;
736 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PASSPHRASE,
739 g_free(service->passphrase);
740 service->passphrase = str;
743 str = __connman_config_get_string(keyfile, group, SERVICE_KEY_SECURITY,
745 security = __connman_service_string2security(str);
749 if (str && security != CONNMAN_SERVICE_SECURITY_8021X)
750 connman_info("Mismatch between EAP configuration and "
752 SERVICE_KEY_SECURITY, str);
754 service->security = CONNMAN_SERVICE_SECURITY_8021X;
756 } else if (service->passphrase) {
759 if (security == CONNMAN_SERVICE_SECURITY_PSK ||
760 security == CONNMAN_SERVICE_SECURITY_WEP) {
761 service->security = security;
763 connman_info("Mismatch with passphrase and "
765 SERVICE_KEY_SECURITY, str);
768 CONNMAN_SERVICE_SECURITY_PSK;
772 service->security = CONNMAN_SERVICE_SECURITY_PSK;
775 if (security != CONNMAN_SERVICE_SECURITY_NONE)
776 connman_info("Mismatch no security and "
778 SERVICE_KEY_SECURITY, str);
780 service->security = CONNMAN_SERVICE_SECURITY_NONE;
782 service->security = CONNMAN_SERVICE_SECURITY_NONE;
786 service->config_ident = g_strdup(config->ident);
787 service->config_entry = g_strdup_printf("service_%s", service->ident);
789 service->hidden = __connman_config_get_bool(keyfile, group,
790 SERVICE_KEY_HIDDEN, NULL);
793 g_hash_table_insert(config->service_table, service->ident,
796 connman_info("Adding service configuration %s", service->ident);
801 if (service_created) {
802 g_free(service->ident);
803 g_free(service->type);
804 g_free(service->name);
805 g_free(service->ssid);
812 static bool load_service_from_keyfile(GKeyFile *keyfile,
813 struct connman_config *config)
819 groups = g_key_file_get_groups(keyfile, NULL);
821 for (i = 0; groups[i]; i++) {
822 if (!g_str_has_prefix(groups[i], "service_")) {
823 connman_warn("Ignore group named '%s' because prefix "
824 "is not 'service_'", groups[i]);
827 if (load_service(keyfile, groups[i], config))
836 static int load_config(struct connman_config *config)
841 DBG("config %p", config);
843 keyfile = __connman_storage_load_config(config->ident);
847 g_key_file_set_list_separator(keyfile, ',');
849 /* Verify keys validity of the global section */
850 check_keys(keyfile, "global", config_possible_keys);
852 str = __connman_config_get_string(keyfile, "global", CONFIG_KEY_NAME, NULL);
854 g_free(config->name);
858 str = __connman_config_get_string(keyfile, "global", CONFIG_KEY_DESC, NULL);
860 g_free(config->description);
861 config->description = str;
864 if (!load_service_from_keyfile(keyfile, config))
865 connman_warn("Config file %s/%s.config does not contain any "
866 "configuration that can be provisioned!",
867 STORAGEDIR, config->ident);
869 g_key_file_free(keyfile);
874 static struct connman_config *create_config(const char *ident)
876 struct connman_config *config;
878 DBG("ident %s", ident);
880 if (g_hash_table_lookup(config_table, ident))
883 config = g_try_new0(struct connman_config, 1);
887 config->ident = g_strdup(ident);
889 config->service_table = g_hash_table_new_full(g_str_hash, g_str_equal,
890 NULL, unregister_service);
892 g_hash_table_insert(config_table, config->ident, config);
894 connman_info("Adding configuration %s", config->ident);
899 static bool validate_ident(const char *ident)
906 for (i = 0; i < strlen(ident); i++)
907 if (!g_ascii_isprint(ident[i]))
913 static int read_configs(void)
919 dir = g_dir_open(STORAGEDIR, 0, NULL);
923 while ((file = g_dir_read_name(dir))) {
927 if (!g_str_has_suffix(file, ".config"))
930 ident = g_strrstr(file, ".config");
934 str = g_string_new_len(file, ident - file);
938 ident = g_string_free(str, FALSE);
940 if (validate_ident(ident)) {
941 struct connman_config *config;
943 config = create_config(ident);
947 connman_error("Invalid config ident %s", ident);
958 static void config_notify_handler(struct inotify_event *event,
966 if (!g_str_has_suffix(ident, ".config"))
969 ext = g_strrstr(ident, ".config");
975 if (!validate_ident(ident)) {
976 connman_error("Invalid config ident %s", ident);
980 if (event->mask & (IN_CREATE | IN_MOVED_TO))
981 create_config(ident);
983 if (event->mask & (IN_MODIFY | IN_MOVED_TO)) {
984 struct connman_config *config;
986 config = g_hash_table_lookup(config_table, ident);
990 g_hash_table_remove_all(config->service_table);
992 ret = __connman_service_provision_changed(ident);
995 * Re-scan the config file for any
998 g_hash_table_remove_all(config->service_table);
1000 __connman_service_provision_changed(ident);
1005 if (event->mask & (IN_DELETE | IN_MOVED_FROM))
1006 g_hash_table_remove(config_table, ident);
1009 int __connman_config_init(void)
1013 config_table = g_hash_table_new_full(g_str_hash, g_str_equal,
1014 NULL, unregister_config);
1016 connman_inotify_register(STORAGEDIR, config_notify_handler);
1018 return read_configs();
1021 void __connman_config_cleanup(void)
1027 connman_inotify_unregister(STORAGEDIR, config_notify_handler);
1029 g_hash_table_destroy(config_table);
1030 config_table = NULL;
1035 char *__connman_config_get_string(GKeyFile *key_file,
1036 const char *group_name, const char *key, GError **error)
1038 char *str = g_key_file_get_string(key_file, group_name, key, error);
1042 /* passphrases can have spaces in the end */
1043 if (!g_strcmp0(key, SERVICE_KEY_PASSPHRASE) ||
1044 !g_strcmp0(key, SERVICE_KEY_PRV_KEY_PASS))
1047 return g_strchomp(str);
1050 char **__connman_config_get_string_list(GKeyFile *key_file,
1051 const char *group_name, const char *key, gsize *length, GError **error)
1054 char **strlist = g_key_file_get_string_list(key_file, group_name, key,
1061 *p = g_strstrip(*p);
1068 bool __connman_config_get_bool(GKeyFile *key_file,
1069 const char *group_name, const char *key, GError **error)
1074 valstr = g_key_file_get_value(key_file, group_name, key, error);
1078 valstr = g_strchomp(valstr);
1079 if (strcmp(valstr, "true") == 0 || strcmp(valstr, "1") == 0)
1087 static char *config_pem_fsid(const char *pem_file)
1090 unsigned *fsid = (unsigned *) &buf.f_fsid;
1091 unsigned long long fsid64;
1096 if (statfs(pem_file, &buf) < 0) {
1097 connman_error("statfs error %s for %s",
1098 strerror(errno), pem_file);
1102 fsid64 = ((unsigned long long) fsid[0] << 32) | fsid[1];
1104 return g_strdup_printf("%llx", fsid64);
1107 static void provision_service_wifi(struct connman_config_service *config,
1108 struct connman_service *service,
1109 struct connman_network *network,
1110 const void *ssid, unsigned int ssid_len)
1113 __connman_service_set_string(service, "EAP", config->eap);
1115 if (config->identity)
1116 __connman_service_set_string(service, "Identity",
1119 if (config->anonymous_identity)
1120 __connman_service_set_string(service, "AnonymousIdentity",
1121 config->anonymous_identity);
1123 if (config->ca_cert_file)
1124 __connman_service_set_string(service, "CACertFile",
1125 config->ca_cert_file);
1127 if (config->subject_match)
1128 __connman_service_set_string(service, "SubjectMatch",
1129 config->subject_match);
1131 if (config->altsubject_match)
1132 __connman_service_set_string(service, "AltSubjectMatch",
1133 config->altsubject_match);
1135 if (config->domain_suffix_match)
1136 __connman_service_set_string(service, "DomainSuffixMatch",
1137 config->domain_suffix_match);
1139 if (config->domain_match)
1140 __connman_service_set_string(service, "DomainMatch",
1141 config->domain_match);
1143 if (config->client_cert_file)
1144 __connman_service_set_string(service, "ClientCertFile",
1145 config->client_cert_file);
1147 if (config->private_key_file)
1148 __connman_service_set_string(service, "PrivateKeyFile",
1149 config->private_key_file);
1151 if (g_strcmp0(config->private_key_passphrase_type, "fsid") == 0 &&
1152 config->private_key_file) {
1155 fsid = config_pem_fsid(config->private_key_file);
1159 g_free(config->private_key_passphrase);
1160 config->private_key_passphrase = fsid;
1163 if (config->private_key_passphrase) {
1164 __connman_service_set_string(service, "PrivateKeyPassphrase",
1165 config->private_key_passphrase);
1167 * TODO: Support for PEAP with both identity and key passwd.
1168 * In that case, we should check if both of them are found
1169 * from the config file. If not, we should not set the
1170 * service passphrase in order for the UI to request for an
1171 * additional passphrase.
1176 __connman_service_set_string(service, "Phase2", config->phase2);
1178 if (config->passphrase)
1179 __connman_service_set_string(service, "Passphrase",
1180 config->passphrase);
1183 __connman_service_set_hidden(service);
1186 struct connect_virtual {
1187 struct connman_service *service;
1191 static gboolean remove_virtual_config(gpointer user_data)
1193 struct connect_virtual *virtual = user_data;
1195 __connman_service_connect(virtual->service,
1196 CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1197 g_hash_table_remove(config_table, virtual->vfile);
1204 static int try_provision_service(struct connman_config_service *config,
1205 struct connman_service *service)
1207 struct connman_network *network;
1208 const void *service_id;
1209 enum connman_service_type type;
1211 unsigned int ssid_len;
1214 network = __connman_service_get_network(service);
1216 connman_error("Service has no network set");
1220 DBG("network %p ident %s", network,
1221 connman_network_get_identifier(network));
1223 type = connman_service_get_type(service);
1226 case CONNMAN_SERVICE_TYPE_WIFI:
1227 if (__connman_service_string2type(config->type) != type)
1230 ssid = connman_network_get_blob(network, "WiFi.SSID",
1235 if (!config->ssid || ssid_len != config->ssid_len)
1238 if (memcmp(config->ssid, ssid, ssid_len))
1241 str = connman_network_get_string(network, "WiFi.Security");
1242 if (config->security != __connman_service_string2security(str))
1247 case CONNMAN_SERVICE_TYPE_ETHERNET:
1248 case CONNMAN_SERVICE_TYPE_GADGET:
1250 if (__connman_service_string2type(config->type) != type)
1255 case CONNMAN_SERVICE_TYPE_UNKNOWN:
1256 case CONNMAN_SERVICE_TYPE_SYSTEM:
1257 case CONNMAN_SERVICE_TYPE_BLUETOOTH:
1258 case CONNMAN_SERVICE_TYPE_CELLULAR:
1259 case CONNMAN_SERVICE_TYPE_GPS:
1260 case CONNMAN_SERVICE_TYPE_VPN:
1261 case CONNMAN_SERVICE_TYPE_P2P:
1266 DBG("service %p ident %s", service,
1267 connman_service_get_identifier(service));
1270 struct connman_device *device;
1271 const char *device_addr;
1273 device = connman_network_get_device(network);
1275 connman_error("Network device is missing");
1279 device_addr = connman_device_get_string(device, "Address");
1281 DBG("wants %s has %s", config->mac, device_addr);
1283 if (g_ascii_strcasecmp(device_addr, config->mac) != 0)
1285 } else if (config->devname) {
1286 struct connman_device *device;
1287 const char *devname;
1289 device = connman_network_get_device(network);
1291 connman_error("Network device is missing");
1295 devname = connman_device_get_string(device, "Interface");
1297 DBG("wants %s has %s", config->devname, devname);
1299 if (g_ascii_strcasecmp(devname, config->devname) != 0)
1303 if (!config->ipv6_address) {
1304 connman_network_set_ipv6_method(network,
1305 CONNMAN_IPCONFIG_METHOD_AUTO);
1306 } else if (g_ascii_strcasecmp(config->ipv6_address, "off") == 0) {
1307 connman_network_set_ipv6_method(network,
1308 CONNMAN_IPCONFIG_METHOD_OFF);
1309 } else if (g_ascii_strcasecmp(config->ipv6_address, "auto") == 0 ||
1310 g_ascii_strcasecmp(config->ipv6_address, "dhcp") == 0) {
1311 connman_network_set_ipv6_method(network,
1312 CONNMAN_IPCONFIG_METHOD_AUTO);
1314 struct connman_ipaddress *address;
1316 if (config->ipv6_prefix_length == 0) {
1317 DBG("IPv6 prefix missing");
1321 address = connman_ipaddress_alloc(AF_INET6);
1325 connman_ipaddress_set_ipv6(address, config->ipv6_address,
1326 config->ipv6_prefix_length,
1327 config->ipv6_gateway);
1329 connman_network_set_ipv6_method(network,
1330 CONNMAN_IPCONFIG_METHOD_FIXED);
1332 if (connman_network_set_ipaddress(network, address) < 0)
1333 DBG("Unable to set IPv6 address to network %p",
1336 connman_ipaddress_free(address);
1339 if (config->ipv6_privacy) {
1340 struct connman_ipconfig *ipconfig;
1342 ipconfig = __connman_service_get_ip6config(service);
1344 __connman_ipconfig_ipv6_set_privacy(ipconfig,
1345 config->ipv6_privacy);
1348 if (!config->ipv4_address) {
1349 connman_network_set_ipv4_method(network,
1350 CONNMAN_IPCONFIG_METHOD_DHCP);
1351 } else if (g_ascii_strcasecmp(config->ipv4_address, "off") == 0) {
1352 connman_network_set_ipv4_method(network,
1353 CONNMAN_IPCONFIG_METHOD_OFF);
1354 } else if (g_ascii_strcasecmp(config->ipv4_address, "auto") == 0 ||
1355 g_ascii_strcasecmp(config->ipv4_address, "dhcp") == 0) {
1356 connman_network_set_ipv4_method(network,
1357 CONNMAN_IPCONFIG_METHOD_DHCP);
1359 struct connman_ipaddress *address;
1361 if (!config->ipv4_netmask) {
1362 DBG("IPv4 netmask missing");
1366 address = connman_ipaddress_alloc(AF_INET);
1370 connman_ipaddress_set_ipv4(address, config->ipv4_address,
1371 config->ipv4_netmask,
1372 config->ipv4_gateway);
1374 connman_network_set_ipv4_method(network,
1375 CONNMAN_IPCONFIG_METHOD_FIXED);
1377 if (connman_network_set_ipaddress(network, address) < 0)
1378 DBG("Unable to set IPv4 address to network %p",
1381 connman_ipaddress_free(address);
1384 __connman_service_disconnect(service);
1386 service_id = connman_service_get_identifier(service);
1387 config->service_identifiers =
1388 g_slist_prepend(config->service_identifiers,
1389 g_strdup(service_id));
1391 __connman_service_set_favorite_delayed(service, true, true);
1393 __connman_service_set_config(service, config->config_ident,
1394 config->config_entry);
1396 if (config->domain_name)
1397 __connman_service_set_domainname(service, config->domain_name);
1399 if (config->nameservers) {
1402 __connman_service_nameserver_clear(service);
1404 for (i = 0; config->nameservers[i]; i++) {
1405 __connman_service_nameserver_append(service,
1406 config->nameservers[i], false);
1410 if (config->search_domains)
1411 __connman_service_set_search_domains(service,
1412 config->search_domains);
1414 __connman_service_set_mdns(service, config->mdns);
1416 if (config->timeservers)
1417 __connman_service_set_timeservers(service,
1418 config->timeservers);
1420 if (type == CONNMAN_SERVICE_TYPE_WIFI) {
1421 provision_service_wifi(config, service, network,
1425 __connman_service_mark_dirty();
1427 __connman_service_load_modifiable(service);
1429 if (config->virtual) {
1430 struct connect_virtual *virtual;
1432 virtual = g_malloc0(sizeof(struct connect_virtual));
1433 virtual->service = service;
1434 virtual->vfile = config->virtual_file;
1436 g_idle_add(remove_virtual_config, virtual);
1441 __connman_service_set_immutable(service, true);
1443 if (type == CONNMAN_SERVICE_TYPE_ETHERNET ||
1444 type == CONNMAN_SERVICE_TYPE_GADGET) {
1445 __connman_service_connect(service,
1446 CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1451 __connman_service_auto_connect(CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1457 find_and_provision_service_from_config(struct connman_service *service,
1458 struct connman_config *config)
1460 GHashTableIter iter;
1461 gpointer value, key;
1463 g_hash_table_iter_init(&iter, config->service_table);
1464 while (g_hash_table_iter_next(&iter, &key,
1466 if (!try_provision_service(value, service))
1473 static int find_and_provision_service(struct connman_service *service)
1475 GHashTableIter iter;
1476 gpointer value, key;
1478 g_hash_table_iter_init(&iter, config_table);
1480 while (g_hash_table_iter_next(&iter, &key, &value)) {
1481 struct connman_config *config = value;
1483 if (!find_and_provision_service_from_config(service, config))
1490 int __connman_config_provision_service(struct connman_service *service)
1492 enum connman_service_type type;
1494 /* For now only WiFi, Gadget and Ethernet services are supported */
1495 type = connman_service_get_type(service);
1497 DBG("service %p type %d", service, type);
1499 if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1500 type != CONNMAN_SERVICE_TYPE_ETHERNET &&
1501 type != CONNMAN_SERVICE_TYPE_GADGET)
1504 return find_and_provision_service(service);
1507 int __connman_config_provision_service_ident(struct connman_service *service,
1508 const char *ident, const char *file, const char *entry)
1510 enum connman_service_type type;
1511 struct connman_config *config;
1514 /* For now only WiFi, Gadget and Ethernet services are supported */
1515 type = connman_service_get_type(service);
1517 DBG("service %p type %d", service, type);
1519 if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1520 type != CONNMAN_SERVICE_TYPE_ETHERNET &&
1521 type != CONNMAN_SERVICE_TYPE_GADGET)
1524 config = g_hash_table_lookup(config_table, ident);
1526 GHashTableIter iter;
1527 gpointer value, key;
1530 g_hash_table_iter_init(&iter, config->service_table);
1533 * Check if we need to remove individual service if it
1534 * is missing from config file.
1536 if (file && entry) {
1537 while (g_hash_table_iter_next(&iter, &key,
1539 struct connman_config_service *config_service;
1541 config_service = value;
1543 if (g_strcmp0(config_service->config_ident,
1547 if (g_strcmp0(config_service->config_entry,
1555 DBG("found %d ident %s file %s entry %s", found, ident,
1560 * The entry+8 will skip "service_" prefix
1562 g_hash_table_remove(config->service_table,
1568 find_and_provision_service_from_config(service, config);
1574 static void generate_random_string(char *str, int length)
1580 memset(str, '\0', length);
1582 for (i = 0; i < length-1; i++) {
1584 __connman_util_get_random(&rand);
1585 val = (uint8_t)(rand % 122);
1588 } while((val > 57 && val < 65) || (val > 90 && val < 97));
1594 int connman_config_provision_mutable_service(GKeyFile *keyfile)
1596 struct connman_config_service *service_config;
1597 struct connman_config *config;
1598 char *vfile, *group = NULL;
1603 generate_random_string(rstr, 11);
1605 vfile = g_strdup_printf("service_mutable_%s.config", rstr);
1607 config = create_config(vfile);
1611 if (!load_service_from_keyfile(keyfile, config))
1614 group = g_key_file_get_start_group(keyfile);
1616 service_config = g_hash_table_lookup(config->service_table, group+8);
1617 if (!service_config)
1620 /* Specific to non file based config: */
1621 g_free(service_config->config_ident);
1622 service_config->config_ident = NULL;
1623 g_free(service_config->config_entry);
1624 service_config->config_entry = NULL;
1626 service_config->virtual = true;
1627 service_config->virtual_file = vfile;
1629 __connman_service_provision_changed(vfile);
1631 if (g_strcmp0(service_config->type, "wifi") == 0)
1632 __connman_device_request_scan(CONNMAN_SERVICE_TYPE_WIFI);
1638 DBG("Could not proceed");
1639 g_hash_table_remove(config_table, vfile);
1645 struct connman_config_entry **connman_config_get_entries(const char *type)
1647 GHashTableIter iter_file, iter_config;
1648 gpointer value, key;
1649 struct connman_config_entry **entries = NULL;
1652 g_hash_table_iter_init(&iter_file, config_table);
1653 while (g_hash_table_iter_next(&iter_file, &key, &value)) {
1654 struct connman_config *config_file = value;
1655 struct connman_config_entry **tmp_entries = entries;
1657 count = g_hash_table_size(config_file->service_table);
1659 entries = g_try_realloc(entries, (i + count + 1) *
1660 sizeof(struct connman_config_entry *));
1662 g_free(tmp_entries);
1666 g_hash_table_iter_init(&iter_config,
1667 config_file->service_table);
1668 while (g_hash_table_iter_next(&iter_config, &key,
1670 struct connman_config_service *config = value;
1673 g_strcmp0(config->type, type) != 0)
1676 entries[i] = g_try_new0(struct connman_config_entry,
1681 entries[i]->ident = g_strdup(config->ident);
1682 entries[i]->name = g_strdup(config->name);
1683 entries[i]->ssid = g_try_malloc0(config->ssid_len + 1);
1684 if (!entries[i]->ssid)
1687 memcpy(entries[i]->ssid, config->ssid,
1689 entries[i]->ssid_len = config->ssid_len;
1690 entries[i]->hidden = config->hidden;
1697 struct connman_config_entry **tmp_entries = entries;
1699 entries = g_try_realloc(entries, (i + 1) *
1700 sizeof(struct connman_config_entry *));
1702 g_free(tmp_entries);
1708 DBG("%d provisioned AP found", i);
1714 connman_config_free_entries(entries);
1718 void connman_config_free_entries(struct connman_config_entry **entries)
1725 for (i = 0; entries[i]; i++) {
1726 g_free(entries[i]->ident);
1727 g_free(entries[i]->name);
1728 g_free(entries[i]->ssid);
1735 bool __connman_config_address_provisioned(const char *address,
1736 const char *netmask)
1738 GHashTableIter iter, siter;
1739 gpointer value, key, svalue, skey;
1741 if (!address || !netmask)
1744 g_hash_table_iter_init(&iter, config_table);
1746 while (g_hash_table_iter_next(&iter, &key, &value)) {
1747 struct connman_config *config = value;
1749 g_hash_table_iter_init(&siter, config->service_table);
1750 while (g_hash_table_iter_next(&siter, &skey, &svalue)) {
1751 struct connman_config_service *service = svalue;
1753 if (!g_strcmp0(address, service->ipv4_address) &&
1755 service->ipv4_netmask))