Added support of WPA3-SAE security mode.
[platform/upstream/connman.git] / src / config.c
1 /*
2  *
3  *  Connection Manager
4  *
5  *  Copyright (C) 2007-2013  Intel Corporation. All rights reserved.
6  *
7  *  This program is free software; you can redistribute it and/or modify
8  *  it under the terms of the GNU General Public License version 2 as
9  *  published by the Free Software Foundation.
10  *
11  *  This program is distributed in the hope that it will be useful,
12  *  but WITHOUT ANY WARRANTY; without even the implied warranty of
13  *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14  *  GNU General Public License for more details.
15  *
16  *  You should have received a copy of the GNU General Public License
17  *  along with this program; if not, write to the Free Software
18  *  Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
19  *
20  */
21
22 #ifdef HAVE_CONFIG_H
23 #include <config.h>
24 #endif
25
26 #include <errno.h>
27 #include <stdio.h>
28 #include <stdlib.h>
29 #include <unistd.h>
30 #include <string.h>
31 #include <sys/vfs.h>
32 #include <sys/inotify.h>
33 #include <netdb.h>
34 #include <glib.h>
35
36 #include <connman/provision.h>
37 #include <connman/ipaddress.h>
38 #include "connman.h"
39
40 struct connman_config_service {
41         char *ident;
42         char *name;
43         char *type;
44         void *ssid;
45         unsigned int ssid_len;
46         char *eap;
47         char *identity;
48         char *anonymous_identity;
49         char *ca_cert_file;
50         char *subject_match;
51         char *altsubject_match;
52         char *domain_suffix_match;
53         char *domain_match;
54         char *client_cert_file;
55         char *private_key_file;
56         char *private_key_passphrase;
57         char *private_key_passphrase_type;
58         char *phase2;
59         char *passphrase;
60         enum connman_service_security security;
61         GSList *service_identifiers;
62         char *config_ident; /* file prefix */
63         char *config_entry; /* entry name */
64         bool hidden;
65         bool virtual;
66         char *virtual_file;
67         char *ipv4_address;
68         char *ipv4_netmask;
69         char *ipv4_gateway;
70         char *ipv6_address;
71         unsigned char ipv6_prefix_length;
72         char *ipv6_gateway;
73         char *ipv6_privacy;
74         char *mac;
75         char **nameservers;
76         char **search_domains;
77         char **timeservers;
78         char *domain_name;
79 };
80
81 struct connman_config {
82         char *ident;
83         char *name;
84         char *description;
85         GHashTable *service_table;
86 };
87
88 static GHashTable *config_table = NULL;
89
90 static bool cleanup = false;
91
92 /* Definition of possible strings in the .config files */
93 #define CONFIG_KEY_NAME                "Name"
94 #define CONFIG_KEY_DESC                "Description"
95
96 #define SERVICE_KEY_TYPE               "Type"
97 #define SERVICE_KEY_NAME               "Name"
98 #define SERVICE_KEY_SSID               "SSID"
99 #define SERVICE_KEY_EAP                "EAP"
100 #define SERVICE_KEY_CA_CERT            "CACertFile"
101 #define SERVICE_KEY_CL_CERT            "ClientCertFile"
102 #define SERVICE_KEY_PRV_KEY            "PrivateKeyFile"
103 #define SERVICE_KEY_PRV_KEY_PASS       "PrivateKeyPassphrase"
104 #define SERVICE_KEY_PRV_KEY_PASS_TYPE  "PrivateKeyPassphraseType"
105 #define SERVICE_KEY_IDENTITY           "Identity"
106 #define SERVICE_KEY_ANONYMOUS_IDENTITY "AnonymousIdentity"
107 #define SERVICE_KEY_SUBJECT_MATCH      "SubjectMatch"
108 #define SERVICE_KEY_ALT_SUBJECT_MATCH  "AltSubjectMatch"
109 #define SERVICE_KEY_DOMAIN_SUFF_MATCH  "DomainSuffixMatch"
110 #define SERVICE_KEY_DOMAIN_MATCH       "DomainMatch"
111 #define SERVICE_KEY_PHASE2             "Phase2"
112 #define SERVICE_KEY_PASSPHRASE         "Passphrase"
113 #define SERVICE_KEY_SECURITY           "Security"
114 #define SERVICE_KEY_HIDDEN             "Hidden"
115
116 #define SERVICE_KEY_IPv4               "IPv4"
117 #define SERVICE_KEY_IPv6               "IPv6"
118 #define SERVICE_KEY_IPv6_PRIVACY       "IPv6.Privacy"
119 #define SERVICE_KEY_MAC                "MAC"
120 #define SERVICE_KEY_NAMESERVERS        "Nameservers"
121 #define SERVICE_KEY_SEARCH_DOMAINS     "SearchDomains"
122 #define SERVICE_KEY_TIMESERVERS        "Timeservers"
123 #define SERVICE_KEY_DOMAIN             "Domain"
124
125 static const char *config_possible_keys[] = {
126         CONFIG_KEY_NAME,
127         CONFIG_KEY_DESC,
128         NULL,
129 };
130
131 static const char *service_possible_keys[] = {
132         SERVICE_KEY_TYPE,
133         SERVICE_KEY_NAME,
134         SERVICE_KEY_SSID,
135         SERVICE_KEY_EAP,
136         SERVICE_KEY_CA_CERT,
137         SERVICE_KEY_CL_CERT,
138         SERVICE_KEY_PRV_KEY,
139         SERVICE_KEY_PRV_KEY_PASS,
140         SERVICE_KEY_PRV_KEY_PASS_TYPE,
141         SERVICE_KEY_IDENTITY,
142         SERVICE_KEY_ANONYMOUS_IDENTITY,
143         SERVICE_KEY_SUBJECT_MATCH,
144         SERVICE_KEY_ALT_SUBJECT_MATCH,
145         SERVICE_KEY_DOMAIN_SUFF_MATCH,
146         SERVICE_KEY_DOMAIN_MATCH,
147         SERVICE_KEY_PHASE2,
148         SERVICE_KEY_PASSPHRASE,
149         SERVICE_KEY_SECURITY,
150         SERVICE_KEY_HIDDEN,
151         SERVICE_KEY_IPv4,
152         SERVICE_KEY_IPv6,
153         SERVICE_KEY_IPv6_PRIVACY,
154         SERVICE_KEY_MAC,
155         SERVICE_KEY_NAMESERVERS,
156         SERVICE_KEY_SEARCH_DOMAINS,
157         SERVICE_KEY_TIMESERVERS,
158         SERVICE_KEY_DOMAIN,
159         NULL,
160 };
161
162 static void unregister_config(gpointer data)
163 {
164         struct connman_config *config = data;
165
166         connman_info("Removing configuration %s", config->ident);
167
168         g_hash_table_destroy(config->service_table);
169
170         g_free(config->description);
171         g_free(config->name);
172         g_free(config->ident);
173         g_free(config);
174 }
175
176 static void unregister_service(gpointer data)
177 {
178         struct connman_config_service *config_service = data;
179         struct connman_service *service;
180         char *service_id;
181         GSList *list;
182
183         if (cleanup)
184                 goto free_only;
185
186         connman_info("Removing service configuration %s",
187                                                 config_service->ident);
188
189         if (config_service->virtual)
190                 goto free_only;
191
192         for (list = config_service->service_identifiers; list;
193                                                         list = list->next) {
194                 service_id = list->data;
195
196                 service = __connman_service_lookup_from_ident(service_id);
197                 if (service) {
198                         __connman_service_set_immutable(service, false);
199                         __connman_service_set_config(service, NULL, NULL);
200                         __connman_service_remove(service);
201
202                         /*
203                          * Ethernet or gadget service cannot be removed by
204                          * __connman_service_remove() so reset the ipconfig
205                          * here.
206                          */
207                         if (connman_service_get_type(service) ==
208                                                 CONNMAN_SERVICE_TYPE_ETHERNET ||
209                                         connman_service_get_type(service) ==
210                                                 CONNMAN_SERVICE_TYPE_GADGET) {
211                                 __connman_service_disconnect(service);
212                                 __connman_service_reset_ipconfig(service,
213                                         CONNMAN_IPCONFIG_TYPE_IPV4, NULL, NULL);
214                                 __connman_service_reset_ipconfig(service,
215                                         CONNMAN_IPCONFIG_TYPE_IPV6, NULL, NULL);
216                                 __connman_service_set_ignore(service, true);
217
218                                 /*
219                                  * After these operations, user needs to
220                                  * reconnect ethernet cable to get IP
221                                  * address.
222                                  */
223                         }
224                 }
225
226                 if (!__connman_storage_remove_service(service_id))
227                         DBG("Could not remove all files for service %s",
228                                                                 service_id);
229         }
230
231 free_only:
232         g_free(config_service->ident);
233         g_free(config_service->type);
234         g_free(config_service->name);
235         g_free(config_service->ssid);
236         g_free(config_service->eap);
237         g_free(config_service->identity);
238         g_free(config_service->anonymous_identity);
239         g_free(config_service->ca_cert_file);
240         g_free(config_service->subject_match);
241         g_free(config_service->altsubject_match);
242         g_free(config_service->domain_suffix_match);
243         g_free(config_service->domain_match);
244         g_free(config_service->client_cert_file);
245         g_free(config_service->private_key_file);
246         g_free(config_service->private_key_passphrase);
247         g_free(config_service->private_key_passphrase_type);
248         g_free(config_service->phase2);
249         g_free(config_service->passphrase);
250         g_free(config_service->ipv4_address);
251         g_free(config_service->ipv4_gateway);
252         g_free(config_service->ipv4_netmask);
253         g_free(config_service->ipv6_address);
254         g_free(config_service->ipv6_gateway);
255         g_free(config_service->ipv6_privacy);
256         g_free(config_service->mac);
257         g_strfreev(config_service->nameservers);
258         g_strfreev(config_service->search_domains);
259         g_strfreev(config_service->timeservers);
260         g_free(config_service->domain_name);
261         g_slist_free_full(config_service->service_identifiers, g_free);
262         g_free(config_service->config_ident);
263         g_free(config_service->config_entry);
264         g_free(config_service->virtual_file);
265         g_free(config_service);
266 }
267
268 static void check_keys(GKeyFile *keyfile, const char *group,
269                         const char **possible_keys)
270 {
271         char **avail_keys;
272         gsize nb_avail_keys, i, j;
273
274         avail_keys = g_key_file_get_keys(keyfile, group, &nb_avail_keys, NULL);
275         if (!avail_keys)
276                 return;
277
278         /*
279          * For each key in the configuration file,
280          * verify it is understood by connman
281          */
282         for (i = 0 ; i < nb_avail_keys; i++) {
283                 for (j = 0; possible_keys[j] ; j++)
284                         if (g_strcmp0(avail_keys[i], possible_keys[j]) == 0)
285                                 break;
286
287                 if (!possible_keys[j])
288                         connman_warn("Unknown configuration key %s in [%s]",
289                                         avail_keys[i], group);
290         }
291
292         g_strfreev(avail_keys);
293 }
294
295 static int check_family(const char *address, int expected_family)
296 {
297         int family;
298         int err = 0;
299
300         family = connman_inet_check_ipaddress(address);
301         if (family < 0) {
302                 DBG("Cannot get address family of %s (%d/%s)", address,
303                         family, gai_strerror(family));
304                 err = -EINVAL;
305                 goto out;
306         }
307
308         switch (family) {
309         case AF_INET:
310                 if (expected_family != AF_INET) {
311                         DBG("Wrong type address %s, expecting IPv4", address);
312                         err = -EINVAL;
313                         goto out;
314                 }
315                 break;
316         case AF_INET6:
317                 if (expected_family != AF_INET6) {
318                         DBG("Wrong type address %s, expecting IPv6", address);
319                         err = -EINVAL;
320                         goto out;
321                 }
322                 break;
323         default:
324                 DBG("Unsupported address family %d", family);
325                 err = -EINVAL;
326                 goto out;
327         }
328
329 out:
330         return err;
331 }
332
333 static int parse_address(const char *address_str, int address_family,
334                         char **address, char **netmask, char **gateway)
335 {
336         char *addr_str, *mask_str, *gw_str;
337         int err = 0;
338         char **route;
339
340         route = g_strsplit(address_str, "/", 0);
341         if (!route)
342                 return -EINVAL;
343
344         addr_str = route[0];
345         if (!addr_str || addr_str[0] == '\0') {
346                 err = -EINVAL;
347                 goto out;
348         }
349
350         if ((err = check_family(addr_str, address_family)) < 0)
351                 goto out;
352
353         mask_str = route[1];
354         if (!mask_str || mask_str[0] == '\0') {
355                 err = -EINVAL;
356                 goto out;
357         }
358
359         gw_str = route[2];
360         if (gw_str && gw_str[0]) {
361                 if ((err = check_family(gw_str, address_family)) < 0)
362                         goto out;
363         }
364
365         g_free(*address);
366         *address = g_strdup(addr_str);
367
368         g_free(*netmask);
369         *netmask = g_strdup(mask_str);
370
371         g_free(*gateway);
372         *gateway = g_strdup(gw_str);
373
374         if (*gateway)
375                 DBG("address %s/%s via %s", *address, *netmask, *gateway);
376         else
377                 DBG("address %s/%s", *address, *netmask);
378
379 out:
380         g_strfreev(route);
381
382         return err;
383 }
384
385 static bool check_address(char *address_str, char **address)
386 {
387         if (g_ascii_strcasecmp(address_str, "auto") == 0 ||
388                         g_ascii_strcasecmp(address_str, "dhcp") == 0 ||
389                         g_ascii_strcasecmp(address_str, "off") == 0) {
390                 *address = address_str;
391                 return false;
392         }
393
394         return true;
395 }
396
397 static bool load_service_generic(GKeyFile *keyfile,
398                         const char *group, struct connman_config *config,
399                         struct connman_config_service *service)
400 {
401         char *str, *mask;
402         char **strlist;
403         gsize length;
404
405         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv4, NULL);
406         if (str && check_address(str, &service->ipv4_address)) {
407                 mask = NULL;
408
409                 if (parse_address(str, AF_INET, &service->ipv4_address,
410                                         &mask, &service->ipv4_gateway) < 0) {
411                         connman_warn("Invalid format for IPv4 address %s",
412                                                                         str);
413                         g_free(str);
414                         goto err;
415                 }
416
417                 if (!g_strrstr(mask, ".")) {
418                         /* We have netmask length */
419                         in_addr_t addr;
420                         struct in_addr netmask_in;
421                         unsigned char prefix_len = 32;
422                         char *ptr;
423                         long int value = strtol(mask, &ptr, 10);
424
425                         if (ptr != mask && *ptr == '\0' && value && value <= 32)
426                                 prefix_len = value;
427
428                         addr = 0xffffffff << (32 - prefix_len);
429                         netmask_in.s_addr = htonl(addr);
430                         service->ipv4_netmask =
431                                 g_strdup(inet_ntoa(netmask_in));
432
433                         g_free(mask);
434                 } else
435                         service->ipv4_netmask = mask;
436
437                 g_free(str);
438         }
439
440         str =  __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv6, NULL);
441         if (str && check_address(str, &service->ipv6_address)) {
442                 long int value;
443                 char *ptr;
444
445                 mask = NULL;
446
447                 if (parse_address(str, AF_INET6, &service->ipv6_address,
448                                         &mask, &service->ipv6_gateway) < 0) {
449                         connman_warn("Invalid format for IPv6 address %s",
450                                                                         str);
451                         g_free(str);
452                         goto err;
453                 }
454
455                 value = strtol(mask, &ptr, 10);
456                 if (ptr != mask && *ptr == '\0' && value <= 128)
457                         service->ipv6_prefix_length = value;
458                 else
459                         service->ipv6_prefix_length = 128;
460
461                 g_free(mask);
462                 g_free(str);
463         }
464
465         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IPv6_PRIVACY,
466                                                                         NULL);
467         if (str) {
468                 g_free(service->ipv6_privacy);
469                 service->ipv6_privacy = str;
470         }
471
472         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_MAC, NULL);
473         if (str) {
474                 g_free(service->mac);
475                 service->mac = str;
476         }
477
478         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_DOMAIN, NULL);
479         if (str) {
480                 g_free(service->domain_name);
481                 service->domain_name = str;
482         }
483
484         strlist = __connman_config_get_string_list(keyfile, group,
485                                         SERVICE_KEY_NAMESERVERS,
486                                         &length, NULL);
487         if (strlist) {
488                 if (length != 0) {
489                         g_strfreev(service->nameservers);
490                         service->nameservers = strlist;
491                 } else
492                         g_strfreev(strlist);
493         }
494
495         strlist = __connman_config_get_string_list(keyfile, group,
496                                         SERVICE_KEY_SEARCH_DOMAINS,
497                                         &length, NULL);
498         if (strlist) {
499                 if (length != 0) {
500                         g_strfreev(service->search_domains);
501                         service->search_domains = strlist;
502                 } else
503                         g_strfreev(strlist);
504         }
505
506         strlist = __connman_config_get_string_list(keyfile, group,
507                                         SERVICE_KEY_TIMESERVERS,
508                                         &length, NULL);
509         if (strlist) {
510                 if (length != 0) {
511                         g_strfreev(service->timeservers);
512                         service->timeservers = strlist;
513                 } else
514                         g_strfreev(strlist);
515         }
516
517         return true;
518
519 err:
520         g_free(service->ident);
521         g_free(service->type);
522         g_free(service->ipv4_address);
523         g_free(service->ipv4_netmask);
524         g_free(service->ipv4_gateway);
525         g_free(service->ipv6_address);
526         g_free(service->ipv6_gateway);
527         g_free(service->mac);
528         g_free(service);
529
530         return false;
531 }
532
533 static bool load_service(GKeyFile *keyfile, const char *group,
534                                                 struct connman_config *config)
535 {
536         struct connman_config_service *service;
537         const char *ident;
538         char *str, *hex_ssid;
539         enum connman_service_security security;
540         bool service_created = false;
541
542         /* Strip off "service_" prefix */
543         ident = group + 8;
544
545         if (strlen(ident) < 1)
546                 return false;
547
548         /* Verify that provided keys are good */
549         check_keys(keyfile, group, service_possible_keys);
550
551         service = g_hash_table_lookup(config->service_table, ident);
552         if (!service) {
553                 service = g_try_new0(struct connman_config_service, 1);
554                 if (!service)
555                         return false;
556
557                 service->ident = g_strdup(ident);
558
559                 service_created = true;
560         }
561
562         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_TYPE, NULL);
563         if (str) {
564                 g_free(service->type);
565                 service->type = str;
566         } else {
567                 DBG("Type of the configured service is missing for group %s",
568                                                                         group);
569                 goto err;
570         }
571
572         if (!load_service_generic(keyfile, group, config, service))
573                 return false;
574
575         if (g_strcmp0(str, "ethernet") == 0) {
576                 service->config_ident = g_strdup(config->ident);
577                 service->config_entry = g_strdup_printf("service_%s",
578                                                         service->ident);
579
580                 g_hash_table_insert(config->service_table, service->ident,
581                                                                 service);
582                 return true;
583         }
584
585         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_NAME, NULL);
586         if (str) {
587                 g_free(service->name);
588                 service->name = str;
589         }
590
591         hex_ssid = __connman_config_get_string(keyfile, group, SERVICE_KEY_SSID,
592                                          NULL);
593         if (hex_ssid) {
594                 char *ssid;
595                 unsigned int i, j = 0, hex;
596                 size_t hex_ssid_len = strlen(hex_ssid);
597
598                 ssid = g_try_malloc0(hex_ssid_len / 2);
599                 if (!ssid) {
600                         g_free(hex_ssid);
601                         goto err;
602                 }
603
604                 for (i = 0; i < hex_ssid_len; i += 2) {
605                         if (sscanf(hex_ssid + i, "%02x", &hex) <= 0) {
606                                 connman_warn("Invalid SSID %s", hex_ssid);
607                                 g_free(ssid);
608                                 g_free(hex_ssid);
609                                 goto err;
610                         }
611                         ssid[j++] = hex;
612                 }
613
614                 g_free(hex_ssid);
615
616                 g_free(service->ssid);
617                 service->ssid = ssid;
618                 service->ssid_len = hex_ssid_len / 2;
619         } else if (service->name) {
620                 char *ssid;
621                 unsigned int ssid_len;
622
623                 ssid_len = strlen(service->name);
624                 ssid = g_try_malloc0(ssid_len);
625                 if (!ssid)
626                         goto err;
627
628                 memcpy(ssid, service->name, ssid_len);
629                 g_free(service->ssid);
630                 service->ssid = ssid;
631                 service->ssid_len = ssid_len;
632         }
633
634         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_EAP, NULL);
635         if (str) {
636                 g_free(service->eap);
637                 service->eap = str;
638         }
639
640         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_CA_CERT, NULL);
641         if (str) {
642                 g_free(service->ca_cert_file);
643                 service->ca_cert_file = str;
644         }
645
646         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_CL_CERT, NULL);
647         if (str) {
648                 g_free(service->client_cert_file);
649                 service->client_cert_file = str;
650         }
651
652         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PRV_KEY, NULL);
653         if (str) {
654                 g_free(service->private_key_file);
655                 service->private_key_file = str;
656         }
657
658         str = __connman_config_get_string(keyfile, group,
659                                                 SERVICE_KEY_PRV_KEY_PASS, NULL);
660         if (str) {
661                 g_free(service->private_key_passphrase);
662                 service->private_key_passphrase = str;
663         }
664
665         str = __connman_config_get_string(keyfile, group,
666                                         SERVICE_KEY_PRV_KEY_PASS_TYPE, NULL);
667         if (str) {
668                 g_free(service->private_key_passphrase_type);
669                 service->private_key_passphrase_type = str;
670         }
671
672         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_IDENTITY, NULL);
673         if (str) {
674                 g_free(service->identity);
675                 service->identity = str;
676         }
677
678         str = __connman_config_get_string(keyfile, group,
679                                         SERVICE_KEY_ANONYMOUS_IDENTITY, NULL);
680         if (str) {
681                 g_free(service->anonymous_identity);
682                 service->anonymous_identity = str;
683         }
684
685         str = __connman_config_get_string(keyfile, group,
686                                         SERVICE_KEY_SUBJECT_MATCH, NULL);
687         if (str) {
688                 g_free(service->subject_match);
689                 service->subject_match = str;
690         }
691
692         str = __connman_config_get_string(keyfile, group,
693                                         SERVICE_KEY_ALT_SUBJECT_MATCH, NULL);
694         if (str) {
695                 g_free(service->altsubject_match);
696                 service->altsubject_match = str;
697         }
698
699         str = __connman_config_get_string(keyfile, group,
700                                         SERVICE_KEY_DOMAIN_SUFF_MATCH, NULL);
701         if (str) {
702                 g_free(service->domain_suffix_match);
703                 service->domain_suffix_match = str;
704         }
705
706         str = __connman_config_get_string(keyfile, group,
707                                         SERVICE_KEY_DOMAIN_MATCH, NULL);
708         if (str) {
709                 g_free(service->domain_match);
710                 service->domain_match = str;
711         }
712
713         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PHASE2, NULL);
714         if (str) {
715                 g_free(service->phase2);
716                 service->phase2 = str;
717         }
718
719         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_PASSPHRASE,
720                                         NULL);
721         if (str) {
722                 g_free(service->passphrase);
723                 service->passphrase = str;
724         }
725
726         str = __connman_config_get_string(keyfile, group, SERVICE_KEY_SECURITY,
727                         NULL);
728         security = __connman_service_string2security(str);
729
730         if (service->eap) {
731
732                 if (str && security != CONNMAN_SERVICE_SECURITY_8021X)
733                         connman_info("Mismatch between EAP configuration and "
734                                         "setting %s = %s",
735                                         SERVICE_KEY_SECURITY, str);
736
737                 service->security = CONNMAN_SERVICE_SECURITY_8021X;
738
739         } else if (service->passphrase) {
740
741                 if (str) {
742                         if (security == CONNMAN_SERVICE_SECURITY_PSK ||
743 #if defined TIZEN_EXT
744                             security == CONNMAN_SERVICE_SECURITY_RSN ||
745                             security == CONNMAN_SERVICE_SECURITY_SAE ||
746 #endif
747                                         security == CONNMAN_SERVICE_SECURITY_WEP) {
748                                 service->security = security;
749                         } else {
750                                 connman_info("Mismatch with passphrase and "
751                                                 "setting %s = %s",
752                                                 SERVICE_KEY_SECURITY, str);
753
754                                 service->security =
755                                         CONNMAN_SERVICE_SECURITY_PSK;
756                         }
757
758                 } else
759                         service->security = CONNMAN_SERVICE_SECURITY_PSK;
760         } else if (str) {
761
762                 if (security != CONNMAN_SERVICE_SECURITY_NONE) {
763                         connman_info("Mismatch no security and "
764                                         "setting %s = %s",
765                                         SERVICE_KEY_SECURITY, str);
766                 }
767                         service->security = CONNMAN_SERVICE_SECURITY_NONE;
768         } else
769                         service->security = CONNMAN_SERVICE_SECURITY_NONE;
770
771         g_free(str);
772
773         service->config_ident = g_strdup(config->ident);
774         service->config_entry = g_strdup_printf("service_%s", service->ident);
775
776         service->hidden = __connman_config_get_bool(keyfile, group,
777                                                 SERVICE_KEY_HIDDEN, NULL);
778
779         if (service_created)
780                 g_hash_table_insert(config->service_table, service->ident,
781                                         service);
782
783         connman_info("Adding service configuration %s", service->ident);
784
785         return true;
786
787 err:
788         if (service_created) {
789                 g_free(service->ident);
790                 g_free(service->type);
791                 g_free(service->name);
792                 g_free(service->ssid);
793                 g_free(service);
794         }
795
796         return false;
797 }
798
799 static bool load_service_from_keyfile(GKeyFile *keyfile,
800                                                 struct connman_config *config)
801 {
802         bool found = false;
803         char **groups;
804         int i;
805
806         groups = g_key_file_get_groups(keyfile, NULL);
807
808         for (i = 0; groups[i]; i++) {
809                 if (!g_str_has_prefix(groups[i], "service_"))
810                         continue;
811                 if (load_service(keyfile, groups[i], config))
812                         found = true;
813         }
814
815         g_strfreev(groups);
816
817         return found;
818 }
819
820 static int load_config(struct connman_config *config)
821 {
822         GKeyFile *keyfile;
823         char *str;
824
825         DBG("config %p", config);
826
827         keyfile = __connman_storage_load_config(config->ident);
828         if (!keyfile)
829                 return -EIO;
830
831         g_key_file_set_list_separator(keyfile, ',');
832
833         /* Verify keys validity of the global section */
834         check_keys(keyfile, "global", config_possible_keys);
835
836         str = __connman_config_get_string(keyfile, "global", CONFIG_KEY_NAME, NULL);
837         if (str) {
838                 g_free(config->name);
839                 config->name = str;
840         }
841
842         str = __connman_config_get_string(keyfile, "global", CONFIG_KEY_DESC, NULL);
843         if (str) {
844                 g_free(config->description);
845                 config->description = str;
846         }
847
848         if (!load_service_from_keyfile(keyfile, config))
849                 connman_warn("Config file %s/%s.config does not contain any "
850                         "configuration that can be provisioned!",
851                         STORAGEDIR, config->ident);
852
853         g_key_file_free(keyfile);
854
855         return 0;
856 }
857
858 static struct connman_config *create_config(const char *ident)
859 {
860         struct connman_config *config;
861
862         DBG("ident %s", ident);
863
864         if (g_hash_table_lookup(config_table, ident))
865                 return NULL;
866
867         config = g_try_new0(struct connman_config, 1);
868         if (!config)
869                 return NULL;
870
871         config->ident = g_strdup(ident);
872
873         config->service_table = g_hash_table_new_full(g_str_hash, g_str_equal,
874                                                 NULL, unregister_service);
875
876         g_hash_table_insert(config_table, config->ident, config);
877
878         connman_info("Adding configuration %s", config->ident);
879
880         return config;
881 }
882
883 static bool validate_ident(const char *ident)
884 {
885         unsigned int i;
886
887         if (!ident)
888                 return false;
889
890         for (i = 0; i < strlen(ident); i++)
891                 if (!g_ascii_isprint(ident[i]))
892                         return false;
893
894         return true;
895 }
896
897 static int read_configs(void)
898 {
899         GDir *dir;
900
901         DBG("");
902
903         dir = g_dir_open(STORAGEDIR, 0, NULL);
904         if (dir) {
905                 const gchar *file;
906
907                 while ((file = g_dir_read_name(dir))) {
908                         GString *str;
909                         gchar *ident;
910
911                         if (!g_str_has_suffix(file, ".config"))
912                                 continue;
913
914                         ident = g_strrstr(file, ".config");
915                         if (!ident)
916                                 continue;
917
918                         str = g_string_new_len(file, ident - file);
919                         if (!str)
920                                 continue;
921
922                         ident = g_string_free(str, FALSE);
923
924                         if (validate_ident(ident)) {
925                                 struct connman_config *config;
926
927                                 config = create_config(ident);
928                                 if (config)
929                                         load_config(config);
930                         } else {
931                                 connman_error("Invalid config ident %s", ident);
932                         }
933                         g_free(ident);
934                 }
935
936                 g_dir_close(dir);
937         }
938
939         return 0;
940 }
941
942 static void config_notify_handler(struct inotify_event *event,
943                                         const char *ident)
944 {
945         char *ext;
946
947         if (!ident)
948                 return;
949
950         if (!g_str_has_suffix(ident, ".config"))
951                 return;
952
953         ext = g_strrstr(ident, ".config");
954         if (!ext)
955                 return;
956
957         *ext = '\0';
958
959         if (!validate_ident(ident)) {
960                 connman_error("Invalid config ident %s", ident);
961                 return;
962         }
963
964         if (event->mask & (IN_CREATE | IN_MOVED_TO))
965                 create_config(ident);
966
967         if (event->mask & (IN_MODIFY | IN_MOVED_TO)) {
968                 struct connman_config *config;
969
970                 config = g_hash_table_lookup(config_table, ident);
971                 if (config) {
972                         int ret;
973
974                         g_hash_table_remove_all(config->service_table);
975                         load_config(config);
976                         ret = __connman_service_provision_changed(ident);
977                         if (ret > 0) {
978                                 /*
979                                  * Re-scan the config file for any
980                                  * changes
981                                  */
982                                 g_hash_table_remove_all(config->service_table);
983                                 load_config(config);
984                                 __connman_service_provision_changed(ident);
985                         }
986                 }
987         }
988
989         if (event->mask & (IN_DELETE | IN_MOVED_FROM))
990                 g_hash_table_remove(config_table, ident);
991 }
992
993 int __connman_config_init(void)
994 {
995         DBG("");
996
997         config_table = g_hash_table_new_full(g_str_hash, g_str_equal,
998                                                 NULL, unregister_config);
999
1000         connman_inotify_register(STORAGEDIR, config_notify_handler);
1001
1002         return read_configs();
1003 }
1004
1005 void __connman_config_cleanup(void)
1006 {
1007         DBG("");
1008
1009         cleanup = true;
1010
1011         connman_inotify_unregister(STORAGEDIR, config_notify_handler);
1012
1013         g_hash_table_destroy(config_table);
1014         config_table = NULL;
1015
1016         cleanup = false;
1017 }
1018
1019 char *__connman_config_get_string(GKeyFile *key_file,
1020         const char *group_name, const char *key, GError **error)
1021 {
1022         char *str = g_key_file_get_string(key_file, group_name, key, error);
1023         if (!str)
1024                 return NULL;
1025
1026         /* passphrases can have spaces in the end */
1027         if (!g_strcmp0(key, SERVICE_KEY_PASSPHRASE) ||
1028                         !g_strcmp0(key, SERVICE_KEY_PRV_KEY_PASS))
1029                 return str;
1030
1031         return g_strchomp(str);
1032 }
1033
1034 char **__connman_config_get_string_list(GKeyFile *key_file,
1035         const char *group_name, const char *key, gsize *length, GError **error)
1036 {
1037         char **p;
1038         char **strlist = g_key_file_get_string_list(key_file, group_name, key,
1039                 length, error);
1040         if (!strlist)
1041                 return NULL;
1042
1043         p = strlist;
1044         while (*p) {
1045                 *p = g_strstrip(*p);
1046                 p++;
1047         }
1048
1049         return strlist;
1050 }
1051
1052 bool __connman_config_get_bool(GKeyFile *key_file,
1053         const char *group_name, const char *key, GError **error)
1054 {
1055         char *valstr;
1056         bool val = false;
1057
1058         valstr = g_key_file_get_value(key_file, group_name, key, error);
1059         if (!valstr)
1060                 return false;
1061
1062         valstr = g_strchomp(valstr);
1063         if (strcmp(valstr, "true") == 0 || strcmp(valstr, "1") == 0)
1064                 val = true;
1065
1066         g_free(valstr);
1067
1068         return val;
1069 }
1070
1071 static char *config_pem_fsid(const char *pem_file)
1072 {
1073         struct statfs buf;
1074         unsigned *fsid = (unsigned *) &buf.f_fsid;
1075         unsigned long long fsid64;
1076
1077         if (!pem_file)
1078                 return NULL;
1079
1080         if (statfs(pem_file, &buf) < 0) {
1081                 connman_error("statfs error %s for %s",
1082                                                 strerror(errno), pem_file);
1083                 return NULL;
1084         }
1085
1086         fsid64 = ((unsigned long long) fsid[0] << 32) | fsid[1];
1087
1088         return g_strdup_printf("%llx", fsid64);
1089 }
1090
1091 static void provision_service_wifi(struct connman_config_service *config,
1092                                 struct connman_service *service,
1093                                 struct connman_network *network,
1094                                 const void *ssid, unsigned int ssid_len)
1095 {
1096         if (config->eap)
1097                 __connman_service_set_string(service, "EAP", config->eap);
1098
1099         if (config->identity)
1100                 __connman_service_set_string(service, "Identity",
1101                                                         config->identity);
1102
1103         if (config->anonymous_identity)
1104                 __connman_service_set_string(service, "AnonymousIdentity",
1105                                                 config->anonymous_identity);
1106
1107         if (config->ca_cert_file)
1108                 __connman_service_set_string(service, "CACertFile",
1109                                                         config->ca_cert_file);
1110
1111         if (config->subject_match)
1112                 __connman_service_set_string(service, "SubjectMatch",
1113                                                         config->subject_match);
1114
1115         if (config->altsubject_match)
1116                 __connman_service_set_string(service, "AltSubjectMatch",
1117                                                         config->altsubject_match);
1118
1119         if (config->domain_suffix_match)
1120                 __connman_service_set_string(service, "DomainSuffixMatch",
1121                                                         config->domain_suffix_match);
1122
1123         if (config->domain_match)
1124                 __connman_service_set_string(service, "DomainMatch",
1125                                                         config->domain_match);
1126
1127         if (config->client_cert_file)
1128                 __connman_service_set_string(service, "ClientCertFile",
1129                                                 config->client_cert_file);
1130
1131         if (config->private_key_file)
1132                 __connman_service_set_string(service, "PrivateKeyFile",
1133                                                 config->private_key_file);
1134
1135         if (g_strcmp0(config->private_key_passphrase_type, "fsid") == 0 &&
1136                                         config->private_key_file) {
1137                 char *fsid;
1138
1139                 fsid = config_pem_fsid(config->private_key_file);
1140                 if (!fsid)
1141                         return;
1142
1143                 g_free(config->private_key_passphrase);
1144                 config->private_key_passphrase = fsid;
1145         }
1146
1147         if (config->private_key_passphrase) {
1148                 __connman_service_set_string(service, "PrivateKeyPassphrase",
1149                                                 config->private_key_passphrase);
1150                 /*
1151                  * TODO: Support for PEAP with both identity and key passwd.
1152                  * In that case, we should check if both of them are found
1153                  * from the config file. If not, we should not set the
1154                  * service passphrase in order for the UI to request for an
1155                  * additional passphrase.
1156                  */
1157         }
1158
1159         if (config->phase2)
1160                 __connman_service_set_string(service, "Phase2", config->phase2);
1161 #if defined TIZEN_EXT
1162         else
1163                 __connman_service_set_string(service, "Phase2", NULL);
1164 #endif
1165
1166         if (config->passphrase)
1167                 __connman_service_set_string(service, "Passphrase",
1168                                                 config->passphrase);
1169
1170         if (config->hidden)
1171                 __connman_service_set_hidden(service);
1172 }
1173
1174 struct connect_virtual {
1175         struct connman_service *service;
1176         const char *vfile;
1177 };
1178
1179 static gboolean remove_virtual_config(gpointer user_data)
1180 {
1181         struct connect_virtual *virtual = user_data;
1182
1183         __connman_service_connect(virtual->service,
1184                                 CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1185         g_hash_table_remove(config_table, virtual->vfile);
1186
1187         g_free(virtual);
1188
1189         return FALSE;
1190 }
1191
1192 #if defined TIZEN_EXT
1193 static bool __check_address_type(int address_family, const char *address)
1194 {
1195         unsigned char buf[sizeof(struct in6_addr)] = {0, };
1196         int err = 0;
1197
1198         err = inet_pton(address_family, address, buf);
1199         if(err > 0)
1200                 return TRUE;
1201
1202         return FALSE;
1203 }
1204 #endif
1205
1206 static int try_provision_service(struct connman_config_service *config,
1207                                 struct connman_service *service)
1208 {
1209         struct connman_network *network;
1210         const void *service_id;
1211         enum connman_service_type type;
1212         const void *ssid;
1213         unsigned int ssid_len;
1214
1215         network = __connman_service_get_network(service);
1216         if (!network) {
1217                 connman_error("Service has no network set");
1218                 return -EINVAL;
1219         }
1220
1221         DBG("network %p ident %s", network,
1222                                 connman_network_get_identifier(network));
1223
1224         type = connman_service_get_type(service);
1225
1226         switch(type) {
1227         case CONNMAN_SERVICE_TYPE_WIFI:
1228                 if (__connman_service_string2type(config->type) != type)
1229                         return -ENOENT;
1230
1231                 ssid = connman_network_get_blob(network, "WiFi.SSID",
1232                                                 &ssid_len);
1233                 if (!ssid) {
1234                         connman_error("Network SSID not set");
1235                         return -EINVAL;
1236                 }
1237
1238                 if (!config->ssid || ssid_len != config->ssid_len)
1239                         return -ENOENT;
1240
1241                 if (memcmp(config->ssid, ssid, ssid_len))
1242                         return -ENOENT;
1243
1244                 break;
1245
1246         case CONNMAN_SERVICE_TYPE_ETHERNET:
1247         case CONNMAN_SERVICE_TYPE_GADGET:
1248
1249                 if (__connman_service_string2type(config->type) != type)
1250                         return -ENOENT;
1251
1252                 break;
1253
1254         case CONNMAN_SERVICE_TYPE_UNKNOWN:
1255         case CONNMAN_SERVICE_TYPE_SYSTEM:
1256         case CONNMAN_SERVICE_TYPE_BLUETOOTH:
1257         case CONNMAN_SERVICE_TYPE_CELLULAR:
1258         case CONNMAN_SERVICE_TYPE_GPS:
1259         case CONNMAN_SERVICE_TYPE_VPN:
1260         case CONNMAN_SERVICE_TYPE_P2P:
1261 #if defined TIZEN_EXT_WIFI_MESH
1262         case CONNMAN_SERVICE_TYPE_MESH:
1263 #endif
1264
1265                 return -ENOENT;
1266         }
1267
1268         DBG("service %p ident %s", service,
1269                                         __connman_service_get_ident(service));
1270
1271         if (config->mac) {
1272                 struct connman_device *device;
1273                 const char *device_addr;
1274
1275                 device = connman_network_get_device(network);
1276                 if (!device) {
1277                         connman_error("Network device is missing");
1278                         return -ENODEV;
1279                 }
1280
1281                 device_addr = connman_device_get_string(device, "Address");
1282
1283                 DBG("wants %s has %s", config->mac, device_addr);
1284
1285                 if (g_ascii_strcasecmp(device_addr, config->mac) != 0)
1286                         return -ENOENT;
1287         }
1288
1289 #if defined TIZEN_EXT
1290         struct connman_ipconfig *ip6config = __connman_service_get_ip6config(service);
1291         enum connman_ipconfig_method ipv6_method = __connman_ipconfig_get_method(ip6config);
1292         if (ipv6_method == CONNMAN_IPCONFIG_METHOD_MANUAL)
1293                 goto ipv6_out;
1294 #endif
1295         if (!config->ipv6_address) {
1296                 connman_network_set_ipv6_method(network,
1297                                                 CONNMAN_IPCONFIG_METHOD_AUTO);
1298         } else if (g_ascii_strcasecmp(config->ipv6_address, "off") == 0) {
1299                 connman_network_set_ipv6_method(network,
1300                                                 CONNMAN_IPCONFIG_METHOD_OFF);
1301         } else if (g_ascii_strcasecmp(config->ipv6_address, "auto") == 0 ||
1302                         g_ascii_strcasecmp(config->ipv6_address, "dhcp") == 0) {
1303                 connman_network_set_ipv6_method(network,
1304                                                 CONNMAN_IPCONFIG_METHOD_AUTO);
1305         } else {
1306                 struct connman_ipaddress *address;
1307
1308                 if (config->ipv6_prefix_length == 0) {
1309                         DBG("IPv6 prefix missing");
1310                         return -EINVAL;
1311                 }
1312
1313                 address = connman_ipaddress_alloc(AF_INET6);
1314                 if (!address)
1315                         return -ENOENT;
1316
1317                 connman_ipaddress_set_ipv6(address, config->ipv6_address,
1318                                         config->ipv6_prefix_length,
1319                                         config->ipv6_gateway);
1320
1321                 connman_network_set_ipv6_method(network,
1322                                                 CONNMAN_IPCONFIG_METHOD_FIXED);
1323
1324                 if (connman_network_set_ipaddress(network, address) < 0)
1325                         DBG("Unable to set IPv6 address to network %p",
1326                                                                 network);
1327
1328                 connman_ipaddress_free(address);
1329         }
1330
1331 #if defined TIZEN_EXT
1332 ipv6_out:
1333 #endif
1334         if (config->ipv6_privacy) {
1335                 struct connman_ipconfig *ipconfig;
1336
1337                 ipconfig = __connman_service_get_ip6config(service);
1338                 if (ipconfig)
1339                         __connman_ipconfig_ipv6_set_privacy(ipconfig,
1340                                                         config->ipv6_privacy);
1341         }
1342
1343 #if defined TIZEN_EXT
1344         struct connman_ipconfig *ip4config = __connman_service_get_ip4config(service);
1345         enum connman_ipconfig_method ipv4_method = __connman_ipconfig_get_method(ip4config);
1346         if (ipv4_method == CONNMAN_IPCONFIG_METHOD_MANUAL)
1347                 goto ipv4_out;
1348 #endif
1349         if (!config->ipv4_address) {
1350                 connman_network_set_ipv4_method(network,
1351                                                 CONNMAN_IPCONFIG_METHOD_DHCP);
1352         } else if (g_ascii_strcasecmp(config->ipv4_address, "off") == 0) {
1353                 connman_network_set_ipv4_method(network,
1354                                                 CONNMAN_IPCONFIG_METHOD_OFF);
1355         } else if (g_ascii_strcasecmp(config->ipv4_address, "auto") == 0 ||
1356                         g_ascii_strcasecmp(config->ipv4_address, "dhcp") == 0) {
1357                 connman_network_set_ipv4_method(network,
1358                                                 CONNMAN_IPCONFIG_METHOD_DHCP);
1359         } else {
1360                 struct connman_ipaddress *address;
1361
1362                 if (!config->ipv4_netmask) {
1363                         DBG("IPv4 netmask missing");
1364                         return -EINVAL;
1365                 }
1366
1367                 address = connman_ipaddress_alloc(AF_INET);
1368                 if (!address)
1369                         return -ENOENT;
1370
1371                 connman_ipaddress_set_ipv4(address, config->ipv4_address,
1372                                         config->ipv4_netmask,
1373                                         config->ipv4_gateway);
1374
1375                 connman_network_set_ipv4_method(network,
1376                                                 CONNMAN_IPCONFIG_METHOD_FIXED);
1377
1378                 if (connman_network_set_ipaddress(network, address) < 0)
1379                         DBG("Unable to set IPv4 address to network %p",
1380                                                                 network);
1381
1382                 connman_ipaddress_free(address);
1383         }
1384
1385 #if defined TIZEN_EXT
1386 ipv4_out:
1387 #endif
1388         __connman_service_disconnect(service);
1389
1390         service_id = __connman_service_get_ident(service);
1391         config->service_identifiers =
1392                 g_slist_prepend(config->service_identifiers,
1393                                 g_strdup(service_id));
1394
1395         __connman_service_set_favorite_delayed(service, true, true);
1396
1397         __connman_service_set_config(service, config->config_ident,
1398                                                 config->config_entry);
1399
1400         if (config->domain_name)
1401                 __connman_service_set_domainname(service, config->domain_name);
1402
1403         if (config->nameservers) {
1404                 int i;
1405
1406                 __connman_service_nameserver_clear(service);
1407
1408                 for (i = 0; config->nameservers[i]; i++) {
1409 #if defined TIZEN_EXT
1410                         if (__check_address_type(AF_INET, config->nameservers[i]))
1411                                 __connman_service_nameserver_append(service,
1412                                                 config->nameservers[i], false,
1413                                                 CONNMAN_IPCONFIG_TYPE_IPV4);
1414                         else if (__check_address_type(AF_INET6, config->nameservers[i]))
1415                                 __connman_service_nameserver_append(service,
1416                                                 config->nameservers[i], false,
1417                                                 CONNMAN_IPCONFIG_TYPE_IPV6);
1418 #else
1419                         __connman_service_nameserver_append(service,
1420                                                 config->nameservers[i], false);
1421 #endif
1422                 }
1423         }
1424
1425         if (config->search_domains)
1426                 __connman_service_set_search_domains(service,
1427                                                 config->search_domains);
1428
1429         if (config->timeservers)
1430                 __connman_service_set_timeservers(service,
1431                                                 config->timeservers);
1432
1433         if (type == CONNMAN_SERVICE_TYPE_WIFI) {
1434                 provision_service_wifi(config, service, network,
1435                                                         ssid, ssid_len);
1436         }
1437
1438         __connman_service_mark_dirty();
1439
1440         __connman_service_load_modifiable(service);
1441
1442         if (config->virtual) {
1443                 struct connect_virtual *virtual;
1444
1445                 virtual = g_malloc0(sizeof(struct connect_virtual));
1446                 virtual->service = service;
1447                 virtual->vfile = config->virtual_file;
1448
1449                 g_idle_add(remove_virtual_config, virtual);
1450
1451                 return 0;
1452         }
1453
1454 #if !defined TIZEN_EXT
1455         __connman_service_set_immutable(service, true);
1456 #endif
1457
1458         if (type == CONNMAN_SERVICE_TYPE_ETHERNET ||
1459                         type == CONNMAN_SERVICE_TYPE_GADGET) {
1460                 __connman_service_connect(service,
1461                                 CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1462
1463                 return 0;
1464         }
1465
1466         __connman_service_auto_connect(CONNMAN_SERVICE_CONNECT_REASON_AUTO);
1467
1468         return 0;
1469 }
1470
1471 static int
1472 find_and_provision_service_from_config(struct connman_service *service,
1473                                         struct connman_config *config)
1474 {
1475         GHashTableIter iter;
1476         gpointer value, key;
1477
1478         g_hash_table_iter_init(&iter, config->service_table);
1479         while (g_hash_table_iter_next(&iter, &key,
1480                                         &value)) {
1481                 if (!try_provision_service(value, service))
1482                         return 0;
1483         }
1484
1485         return -ENOENT;
1486 }
1487
1488 static int find_and_provision_service(struct connman_service *service)
1489 {
1490         GHashTableIter iter;
1491         gpointer value, key;
1492
1493         g_hash_table_iter_init(&iter, config_table);
1494
1495         while (g_hash_table_iter_next(&iter, &key, &value)) {
1496                 struct connman_config *config = value;
1497
1498                 if (!find_and_provision_service_from_config(service, config))
1499                         return 0;
1500         }
1501
1502         return -ENOENT;
1503 }
1504
1505 int __connman_config_provision_service(struct connman_service *service)
1506 {
1507         enum connman_service_type type;
1508
1509         /* For now only WiFi, Gadget and Ethernet services are supported */
1510         type = connman_service_get_type(service);
1511
1512         DBG("service %p type %d", service, type);
1513
1514         if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1515                         type != CONNMAN_SERVICE_TYPE_ETHERNET &&
1516                         type != CONNMAN_SERVICE_TYPE_GADGET)
1517                 return -ENOSYS;
1518
1519 #if defined TIZEN_EXT
1520         if(type == CONNMAN_SERVICE_TYPE_WIFI &&
1521                         __connman_service_get_security(service) ==
1522                         CONNMAN_SERVICE_SECURITY_NONE)
1523                 return -ENOSYS;
1524 #endif
1525
1526         return find_and_provision_service(service);
1527 }
1528
1529 int __connman_config_provision_service_ident(struct connman_service *service,
1530                         const char *ident, const char *file, const char *entry)
1531 {
1532         enum connman_service_type type;
1533         struct connman_config *config;
1534         int ret = 0;
1535
1536         /* For now only WiFi, Gadget and Ethernet services are supported */
1537         type = connman_service_get_type(service);
1538
1539         DBG("service %p type %d", service, type);
1540
1541         if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1542                         type != CONNMAN_SERVICE_TYPE_ETHERNET &&
1543                         type != CONNMAN_SERVICE_TYPE_GADGET)
1544                 return -ENOSYS;
1545
1546         config = g_hash_table_lookup(config_table, ident);
1547         if (config) {
1548                 GHashTableIter iter;
1549                 gpointer value, key;
1550                 bool found = false;
1551
1552                 g_hash_table_iter_init(&iter, config->service_table);
1553
1554                 /*
1555                  * Check if we need to remove individual service if it
1556                  * is missing from config file.
1557                  */
1558                 if (file && entry) {
1559                         while (g_hash_table_iter_next(&iter, &key,
1560                                                         &value)) {
1561                                 struct connman_config_service *config_service;
1562
1563                                 config_service = value;
1564
1565                                 if (g_strcmp0(config_service->config_ident,
1566                                                                 file) != 0)
1567                                         continue;
1568
1569                                 if (g_strcmp0(config_service->config_entry,
1570                                                                 entry) != 0)
1571                                         continue;
1572
1573                                 found = true;
1574                                 break;
1575                         }
1576
1577                         DBG("found %d ident %s file %s entry %s", found, ident,
1578                                                                 file, entry);
1579
1580                         if (!found) {
1581                                 /*
1582                                  * The entry+8 will skip "service_" prefix
1583                                  */
1584                                 g_hash_table_remove(config->service_table,
1585                                                 entry + 8);
1586                                 ret = 1;
1587                         }
1588                 }
1589
1590                 find_and_provision_service_from_config(service, config);
1591         }
1592
1593         return ret;
1594 }
1595
1596 static void generate_random_string(char *str, int length)
1597 {
1598         uint8_t val;
1599         int i;
1600         uint64_t rand;
1601
1602         memset(str, '\0', length);
1603
1604         for (i = 0; i < length-1; i++) {
1605                 do {
1606                         __connman_util_get_random(&rand);
1607                         val = (uint8_t)(rand % 122);
1608                         if (val < 48)
1609                                 val += 48;
1610                 } while((val > 57 && val < 65) || (val > 90 && val < 97));
1611
1612                 str[i] = val;
1613         }
1614 }
1615
1616 int connman_config_provision_mutable_service(GKeyFile *keyfile)
1617 {
1618         struct connman_config_service *service_config;
1619         struct connman_config *config;
1620         char *vfile, *group = NULL;
1621         char rstr[11];
1622
1623         DBG("");
1624
1625         generate_random_string(rstr, 11);
1626
1627         vfile = g_strdup_printf("service_mutable_%s.config", rstr);
1628
1629         config = create_config(vfile);
1630         if (!config)
1631                 return -ENOMEM;
1632
1633         if (!load_service_from_keyfile(keyfile, config))
1634                 goto error;
1635
1636         group = g_key_file_get_start_group(keyfile);
1637
1638         service_config = g_hash_table_lookup(config->service_table, group+8);
1639         if (!service_config)
1640                 goto error;
1641
1642         /* Specific to non file based config: */
1643         g_free(service_config->config_ident);
1644         service_config->config_ident = NULL;
1645         g_free(service_config->config_entry);
1646         service_config->config_entry = NULL;
1647
1648         service_config->virtual = true;
1649         service_config->virtual_file = vfile;
1650
1651         __connman_service_provision_changed(vfile);
1652
1653         if (g_strcmp0(service_config->type, "wifi") == 0)
1654                 __connman_device_request_scan(CONNMAN_SERVICE_TYPE_WIFI);
1655
1656         g_free(group);
1657         return 0;
1658
1659 error:
1660         DBG("Could not proceed");
1661         g_hash_table_remove(config_table, vfile);
1662         g_free(vfile);
1663         g_free(group);
1664         return -EINVAL;
1665 }
1666
1667 struct connman_config_entry **connman_config_get_entries(const char *type)
1668 {
1669         GHashTableIter iter_file, iter_config;
1670         gpointer value, key;
1671         struct connman_config_entry **entries = NULL;
1672         int i = 0, count;
1673
1674         g_hash_table_iter_init(&iter_file, config_table);
1675         while (g_hash_table_iter_next(&iter_file, &key, &value)) {
1676                 struct connman_config *config_file = value;
1677                 struct connman_config_entry **tmp_entries = entries;
1678
1679                 count = g_hash_table_size(config_file->service_table);
1680
1681                 entries = g_try_realloc(entries, (i + count + 1) *
1682                                         sizeof(struct connman_config_entry *));
1683                 if (!entries) {
1684                         g_free(tmp_entries);
1685                         return NULL;
1686                 }
1687
1688                 g_hash_table_iter_init(&iter_config,
1689                                                 config_file->service_table);
1690                 while (g_hash_table_iter_next(&iter_config, &key,
1691                                                         &value)) {
1692                         struct connman_config_service *config = value;
1693
1694                         if (type &&
1695                                         g_strcmp0(config->type, type) != 0)
1696                                 continue;
1697
1698                         entries[i] = g_try_new0(struct connman_config_entry,
1699                                                 1);
1700                         if (!entries[i])
1701                                 goto cleanup;
1702
1703                         entries[i]->ident = g_strdup(config->ident);
1704                         entries[i]->name = g_strdup(config->name);
1705                         entries[i]->ssid = g_try_malloc0(config->ssid_len + 1);
1706                         if (!entries[i]->ssid)
1707                                 goto cleanup;
1708
1709                         memcpy(entries[i]->ssid, config->ssid,
1710                                                         config->ssid_len);
1711                         entries[i]->ssid_len = config->ssid_len;
1712                         entries[i]->hidden = config->hidden;
1713
1714                         i++;
1715                 }
1716         }
1717
1718         if (entries) {
1719                 struct connman_config_entry **tmp_entries = entries;
1720
1721                 entries = g_try_realloc(entries, (i + 1) *
1722                                         sizeof(struct connman_config_entry *));
1723                 if (!entries) {
1724                         g_free(tmp_entries);
1725                         return NULL;
1726                 }
1727
1728                 entries[i] = NULL;
1729
1730                 DBG("%d provisioned AP found", i);
1731         }
1732
1733         return entries;
1734
1735 cleanup:
1736         connman_config_free_entries(entries);
1737         return NULL;
1738 }
1739
1740 void connman_config_free_entries(struct connman_config_entry **entries)
1741 {
1742         int i;
1743
1744         if (!entries)
1745                 return;
1746
1747         for (i = 0; entries[i]; i++) {
1748                 g_free(entries[i]->ident);
1749                 g_free(entries[i]->name);
1750                 g_free(entries[i]->ssid);
1751                 g_free(entries[i]);
1752         }
1753
1754         g_free(entries);
1755         return;
1756 }
1757
1758 bool __connman_config_address_provisioned(const char *address,
1759                                         const char *netmask)
1760 {
1761         GHashTableIter iter, siter;
1762         gpointer value, key, svalue, skey;
1763
1764         if (!address || !netmask)
1765                 return false;
1766
1767         g_hash_table_iter_init(&iter, config_table);
1768
1769         while (g_hash_table_iter_next(&iter, &key, &value)) {
1770                 struct connman_config *config = value;
1771
1772                 g_hash_table_iter_init(&siter, config->service_table);
1773                 while (g_hash_table_iter_next(&siter, &skey, &svalue)) {
1774                         struct connman_config_service *service = svalue;
1775
1776                         if (!g_strcmp0(address, service->ipv4_address) &&
1777                                         !g_strcmp0(netmask,
1778                                                 service->ipv4_netmask))
1779                                 return true;
1780                 }
1781         }
1782
1783         return false;
1784 }