e5c9c7ec36a242ca1004b9888d5730d906a31f01
[platform/upstream/connman.git] / src / config.c
1 /*
2  *
3  *  Connection Manager
4  *
5  *  Copyright (C) 2007-2012  Intel Corporation. All rights reserved.
6  *
7  *  This program is free software; you can redistribute it and/or modify
8  *  it under the terms of the GNU General Public License version 2 as
9  *  published by the Free Software Foundation.
10  *
11  *  This program is distributed in the hope that it will be useful,
12  *  but WITHOUT ANY WARRANTY; without even the implied warranty of
13  *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14  *  GNU General Public License for more details.
15  *
16  *  You should have received a copy of the GNU General Public License
17  *  along with this program; if not, write to the Free Software
18  *  Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
19  *
20  */
21
22 #ifdef HAVE_CONFIG_H
23 #include <config.h>
24 #endif
25
26 #include <errno.h>
27 #include <stdio.h>
28 #include <stdlib.h>
29 #include <unistd.h>
30 #include <string.h>
31 #include <sys/vfs.h>
32 #include <sys/inotify.h>
33 #include <netdb.h>
34 #include <glib.h>
35
36 #include <connman/provision.h>
37 #include <connman/ipaddress.h>
38 #include "connman.h"
39
40 struct connman_config_service {
41         char *ident;
42         char *name;
43         char *type;
44         void *ssid;
45         unsigned int ssid_len;
46         char *eap;
47         char *identity;
48         char *ca_cert_file;
49         char *client_cert_file;
50         char *private_key_file;
51         char *private_key_passphrase;
52         char *private_key_passphrase_type;
53         char *phase2;
54         char *passphrase;
55         GSList *service_identifiers;
56         char *config_ident; /* file prefix */
57         char *config_entry; /* entry name */
58         connman_bool_t hidden;
59         connman_bool_t virtual;
60         char *virtual_file;
61         char *ipv4_address;
62         char *ipv4_netmask;
63         char *ipv4_gateway;
64         char *ipv6_address;
65         unsigned char ipv6_prefix_length;
66         char *ipv6_gateway;
67         char *ipv6_privacy;
68         char *mac;
69         char **nameservers;
70         char **search_domains;
71         char **timeservers;
72         char *domain_name;
73 };
74
75 struct connman_config {
76         char *ident;
77         char *name;
78         char *description;
79         GHashTable *service_table;
80 };
81
82 static GHashTable *config_table = NULL;
83
84 static connman_bool_t cleanup = FALSE;
85
86 /* Definition of possible strings in the .config files */
87 #define CONFIG_KEY_NAME                "Name"
88 #define CONFIG_KEY_DESC                "Description"
89
90 #define SERVICE_KEY_TYPE               "Type"
91 #define SERVICE_KEY_NAME               "Name"
92 #define SERVICE_KEY_SSID               "SSID"
93 #define SERVICE_KEY_EAP                "EAP"
94 #define SERVICE_KEY_CA_CERT            "CACertFile"
95 #define SERVICE_KEY_CL_CERT            "ClientCertFile"
96 #define SERVICE_KEY_PRV_KEY            "PrivateKeyFile"
97 #define SERVICE_KEY_PRV_KEY_PASS       "PrivateKeyPassphrase"
98 #define SERVICE_KEY_PRV_KEY_PASS_TYPE  "PrivateKeyPassphraseType"
99 #define SERVICE_KEY_IDENTITY           "Identity"
100 #define SERVICE_KEY_PHASE2             "Phase2"
101 #define SERVICE_KEY_PASSPHRASE         "Passphrase"
102 #define SERVICE_KEY_HIDDEN             "Hidden"
103
104 #define SERVICE_KEY_IPv4               "IPv4"
105 #define SERVICE_KEY_IPv6               "IPv6"
106 #define SERVICE_KEY_IPv6_PRIVACY       "IPv6.Privacy"
107 #define SERVICE_KEY_MAC                "MAC"
108 #define SERVICE_KEY_NAMESERVERS        "Nameservers"
109 #define SERVICE_KEY_SEARCH_DOMAINS     "SearchDomains"
110 #define SERVICE_KEY_TIMESERVERS        "Timeservers"
111 #define SERVICE_KEY_DOMAIN             "Domain"
112
113 static const char *config_possible_keys[] = {
114         CONFIG_KEY_NAME,
115         CONFIG_KEY_DESC,
116         NULL,
117 };
118
119 static const char *service_possible_keys[] = {
120         SERVICE_KEY_TYPE,
121         SERVICE_KEY_NAME,
122         SERVICE_KEY_SSID,
123         SERVICE_KEY_EAP,
124         SERVICE_KEY_CA_CERT,
125         SERVICE_KEY_CL_CERT,
126         SERVICE_KEY_PRV_KEY,
127         SERVICE_KEY_PRV_KEY_PASS,
128         SERVICE_KEY_PRV_KEY_PASS_TYPE,
129         SERVICE_KEY_IDENTITY,
130         SERVICE_KEY_PHASE2,
131         SERVICE_KEY_PASSPHRASE,
132         SERVICE_KEY_HIDDEN,
133         SERVICE_KEY_IPv4,
134         SERVICE_KEY_IPv6,
135         SERVICE_KEY_IPv6_PRIVACY,
136         SERVICE_KEY_MAC,
137         SERVICE_KEY_NAMESERVERS,
138         SERVICE_KEY_SEARCH_DOMAINS,
139         SERVICE_KEY_TIMESERVERS,
140         SERVICE_KEY_DOMAIN,
141         NULL,
142 };
143
144 static void unregister_config(gpointer data)
145 {
146         struct connman_config *config = data;
147
148         connman_info("Removing configuration %s", config->ident);
149
150         g_hash_table_destroy(config->service_table);
151
152         g_free(config->description);
153         g_free(config->name);
154         g_free(config->ident);
155         g_free(config);
156 }
157
158 static void unregister_service(gpointer data)
159 {
160         struct connman_config_service *config_service = data;
161         struct connman_service *service;
162         char *service_id;
163         GSList *list;
164
165         if (cleanup == TRUE)
166                 goto free_only;
167
168         connman_info("Removing service configuration %s",
169                                                 config_service->ident);
170
171         if (config_service->virtual == TRUE)
172                 goto free_only;
173
174         for (list = config_service->service_identifiers; list != NULL;
175                                                         list = list->next) {
176                 service_id = list->data;
177
178                 service = __connman_service_lookup_from_ident(service_id);
179                 if (service != NULL) {
180                         __connman_service_set_immutable(service, FALSE);
181                         __connman_service_set_config(service, NULL, NULL);
182                         __connman_service_remove(service);
183
184                         /*
185                          * Ethernet service cannot be removed by
186                          * __connman_service_remove() so reset the ipconfig
187                          * here.
188                          */
189                         if (connman_service_get_type(service) ==
190                                                 CONNMAN_SERVICE_TYPE_ETHERNET) {
191                                 __connman_service_disconnect(service);
192                                 __connman_service_reset_ipconfig(service,
193                                         CONNMAN_IPCONFIG_TYPE_IPV4, NULL, NULL);
194                                 __connman_service_reset_ipconfig(service,
195                                         CONNMAN_IPCONFIG_TYPE_IPV6, NULL, NULL);
196                                 __connman_service_set_ignore(service, TRUE);
197
198                                 /*
199                                  * After these operations, user needs to
200                                  * reconnect ethernet cable to get IP
201                                  * address.
202                                  */
203                         }
204                 }
205
206                 if (__connman_storage_remove_service(service_id) == FALSE)
207                         DBG("Could not remove all files for service %s",
208                                                                 service_id);
209         }
210
211 free_only:
212         g_free(config_service->ident);
213         g_free(config_service->type);
214         g_free(config_service->name);
215         g_free(config_service->ssid);
216         g_free(config_service->eap);
217         g_free(config_service->identity);
218         g_free(config_service->ca_cert_file);
219         g_free(config_service->client_cert_file);
220         g_free(config_service->private_key_file);
221         g_free(config_service->private_key_passphrase);
222         g_free(config_service->private_key_passphrase_type);
223         g_free(config_service->phase2);
224         g_free(config_service->passphrase);
225         g_free(config_service->ipv4_address);
226         g_free(config_service->ipv4_gateway);
227         g_free(config_service->ipv4_netmask);
228         g_free(config_service->ipv6_address);
229         g_free(config_service->ipv6_gateway);
230         g_free(config_service->ipv6_privacy);
231         g_free(config_service->mac);
232         g_strfreev(config_service->nameservers);
233         g_strfreev(config_service->search_domains);
234         g_strfreev(config_service->timeservers);
235         g_free(config_service->domain_name);
236         g_slist_free_full(config_service->service_identifiers, g_free);
237         g_free(config_service->config_ident);
238         g_free(config_service->config_entry);
239         g_free(config_service->virtual_file);
240         g_free(config_service);
241 }
242
243 static void check_keys(GKeyFile *keyfile, const char *group,
244                         const char **possible_keys)
245 {
246         char **avail_keys;
247         gsize nb_avail_keys, i, j;
248
249         avail_keys = g_key_file_get_keys(keyfile, group, &nb_avail_keys, NULL);
250         if (avail_keys == NULL)
251                 return;
252
253         /*
254          * For each key in the configuration file,
255          * verify it is understood by connman
256          */
257         for (i = 0 ; i < nb_avail_keys; i++) {
258                 for (j = 0; possible_keys[j] ; j++)
259                         if (g_strcmp0(avail_keys[i], possible_keys[j]) == 0)
260                                 break;
261
262                 if (possible_keys[j] == NULL)
263                         connman_warn("Unknown configuration key %s in [%s]",
264                                         avail_keys[i], group);
265         }
266
267         g_strfreev(avail_keys);
268 }
269
270 static int check_family(const char *address, int expected_family)
271 {
272         int family;
273         int err = 0;
274
275         family = connman_inet_check_ipaddress(address);
276         if (family < 0) {
277                 DBG("Cannot get address family of %s (%d/%s)", address,
278                         family, gai_strerror(family));
279                 err = -EINVAL;
280                 goto out;
281         }
282
283         switch (family) {
284         case AF_INET:
285                 if (expected_family != AF_INET) {
286                         DBG("Wrong type address %s, expecting IPv4", address);
287                         err = -EINVAL;
288                         goto out;
289                 }
290                 break;
291         case AF_INET6:
292                 if (expected_family != AF_INET6) {
293                         DBG("Wrong type address %s, expecting IPv6", address);
294                         err = -EINVAL;
295                         goto out;
296                 }
297                 break;
298         default:
299                 DBG("Unsupported address family %d", family);
300                 err = -EINVAL;
301                 goto out;
302         }
303
304 out:
305         return err;
306 }
307
308 static int parse_address(const char *address_str, int address_family,
309                         char **address, char **netmask, char **gateway)
310 {
311         char *addr_str, *mask_str, *gw_str;
312         int err = 0;
313         char **route;
314
315         route = g_strsplit(address_str, "/", 0);
316         if (route == NULL)
317                 return -EINVAL;
318
319         addr_str = route[0];
320         if (addr_str == NULL || addr_str[0] == '\0') {
321                 err = -EINVAL;
322                 goto out;
323         }
324
325         if ((err = check_family(addr_str, address_family)) < 0)
326                 goto out;
327
328         mask_str = route[1];
329         if (mask_str == NULL || mask_str[0] == '\0') {
330                 err = -EINVAL;
331                 goto out;
332         }
333
334         gw_str = route[2];
335         if (gw_str == NULL || gw_str[0] == '\0') {
336                 err = -EINVAL;
337                 goto out;
338         }
339
340         if ((err = check_family(gw_str, address_family)) < 0)
341                 goto out;
342
343         g_free(*address);
344         *address = g_strdup(addr_str);
345
346         g_free(*netmask);
347         *netmask = g_strdup(mask_str);
348
349         g_free(*gateway);
350         *gateway = g_strdup(gw_str);
351
352         DBG("address %s/%s via %s", *address, *netmask, *gateway);
353
354 out:
355         g_strfreev(route);
356
357         return err;
358 }
359
360 static connman_bool_t check_address(char *address_str, char **address)
361 {
362         if (g_ascii_strcasecmp(address_str, "auto") == 0 ||
363                         g_ascii_strcasecmp(address_str, "dhcp") == 0 ||
364                         g_ascii_strcasecmp(address_str, "off") == 0) {
365                 *address = address_str;
366                 return FALSE;
367         }
368
369         return TRUE;
370 }
371
372 static connman_bool_t load_service_generic(GKeyFile *keyfile,
373                         const char *group, struct connman_config *config,
374                         struct connman_config_service *service)
375 {
376         char *str, *mask;
377         char **strlist;
378         gsize length;
379
380         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_IPv4, NULL);
381         if (str != NULL && check_address(str, &service->ipv4_address) == TRUE) {
382                 mask = NULL;
383
384                 if (parse_address(str, AF_INET, &service->ipv4_address,
385                                         &mask, &service->ipv4_gateway) < 0) {
386                         connman_warn("Invalid format for IPv4 address %s",
387                                                                         str);
388                         g_free(str);
389                         goto err;
390                 }
391
392                 if (g_strrstr(mask, ".") == NULL) {
393                         /* We have netmask length */
394                         in_addr_t addr;
395                         struct in_addr netmask_in;
396                         unsigned char prefix_len = 32;
397                         char *ptr;
398                         long int value = strtol(mask, &ptr, 10);
399
400                         if (ptr != mask && *ptr == '\0' && value <= 32)
401                                 prefix_len = value;
402
403                         addr = 0xffffffff << (32 - prefix_len);
404                         netmask_in.s_addr = htonl(addr);
405                         service->ipv4_netmask =
406                                 g_strdup(inet_ntoa(netmask_in));
407
408                         g_free(mask);
409                 } else
410                         service->ipv4_netmask = mask;
411
412                 g_free(str);
413         }
414
415         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_IPv6, NULL);
416         if (str != NULL && check_address(str, &service->ipv6_address) == TRUE) {
417                 long int value;
418                 char *ptr;
419
420                 mask = NULL;
421
422                 if (parse_address(str, AF_INET6, &service->ipv6_address,
423                                         &mask, &service->ipv6_gateway) < 0) {
424                         connman_warn("Invalid format for IPv6 address %s",
425                                                                         str);
426                         g_free(str);
427                         goto err;
428                 }
429
430                 value = strtol(mask, &ptr, 10);
431                 if (ptr != mask && *ptr == '\0' && value <= 128)
432                         service->ipv6_prefix_length = value;
433                 else
434                         service->ipv6_prefix_length = 128;
435
436                 g_free(mask);
437                 g_free(str);
438         }
439
440         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_IPv6_PRIVACY,
441                                                                         NULL);
442         if (str != NULL) {
443                 g_free(service->ipv6_privacy);
444                 service->ipv6_privacy = str;
445         }
446
447         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_MAC, NULL);
448         if (str != NULL) {
449                 g_free(service->mac);
450                 service->mac = str;
451         }
452
453         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_DOMAIN, NULL);
454         if (str != NULL) {
455                 g_free(service->domain_name);
456                 service->domain_name = str;
457         }
458
459         strlist = g_key_file_get_string_list(keyfile, group,
460                                         SERVICE_KEY_NAMESERVERS,
461                                         &length, NULL);
462         if (strlist != NULL) {
463                 if (length != 0) {
464                         g_strfreev(service->nameservers);
465                         service->nameservers = strlist;
466                 } else
467                         g_strfreev(strlist);
468         }
469
470         strlist = g_key_file_get_string_list(keyfile, group,
471                                         SERVICE_KEY_SEARCH_DOMAINS,
472                                         &length, NULL);
473         if (strlist != NULL) {
474                 if (length != 0) {
475                         g_strfreev(service->search_domains);
476                         service->search_domains = strlist;
477                 } else
478                         g_strfreev(strlist);
479         }
480
481         strlist = g_key_file_get_string_list(keyfile, group,
482                                         SERVICE_KEY_TIMESERVERS,
483                                         &length, NULL);
484         if (strlist != NULL) {
485                 if (length != 0) {
486                         g_strfreev(service->timeservers);
487                         service->timeservers = strlist;
488                 } else
489                         g_strfreev(strlist);
490         }
491
492         return TRUE;
493
494 err:
495         g_free(service->ident);
496         g_free(service->type);
497         g_free(service->ipv4_address);
498         g_free(service->ipv4_netmask);
499         g_free(service->ipv4_gateway);
500         g_free(service->ipv6_address);
501         g_free(service->ipv6_gateway);
502         g_free(service->mac);
503         g_free(service);
504
505         return FALSE;
506 }
507
508 static connman_bool_t load_service(GKeyFile *keyfile, const char *group,
509                                                 struct connman_config *config)
510 {
511         struct connman_config_service *service;
512         const char *ident;
513         char *str, *hex_ssid;
514         gboolean service_created = FALSE;
515
516         /* Strip off "service_" prefix */
517         ident = group + 8;
518
519         if (strlen(ident) < 1)
520                 return FALSE;
521
522         /* Verify that provided keys are good */
523         check_keys(keyfile, group, service_possible_keys);
524
525         service = g_hash_table_lookup(config->service_table, ident);
526         if (service == NULL) {
527                 service = g_try_new0(struct connman_config_service, 1);
528                 if (service == NULL)
529                         return FALSE;
530
531                 service->ident = g_strdup(ident);
532
533                 service_created = TRUE;
534         }
535
536         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_TYPE, NULL);
537         if (str != NULL) {
538                 g_free(service->type);
539                 service->type = str;
540         } else {
541                 DBG("Type of the configured service is missing for group %s",
542                                                                         group);
543                 goto err;
544         }
545
546         if (load_service_generic(keyfile, group, config, service) == FALSE)
547                 return FALSE;
548
549         if (g_strcmp0(str, "ethernet") == 0) {
550                 service->config_ident = g_strdup(config->ident);
551                 service->config_entry = g_strdup_printf("service_%s",
552                                                         service->ident);
553
554                 g_hash_table_insert(config->service_table, service->ident,
555                                                                 service);
556                 return 0;
557         }
558
559         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_NAME, NULL);
560         if (str != NULL) {
561                 g_free(service->name);
562                 service->name = str;
563         }
564
565         hex_ssid = g_key_file_get_string(keyfile, group, SERVICE_KEY_SSID,
566                                          NULL);
567         if (hex_ssid != NULL) {
568                 char *ssid;
569                 unsigned int i, j = 0, hex;
570                 size_t hex_ssid_len = strlen(hex_ssid);
571
572                 ssid = g_try_malloc0(hex_ssid_len / 2);
573                 if (ssid == NULL) {
574                         g_free(hex_ssid);
575                         goto err;
576                 }
577
578                 for (i = 0; i < hex_ssid_len; i += 2) {
579                         if (sscanf(hex_ssid + i, "%02x", &hex) <= 0) {
580                                 connman_warn("Invalid SSID %s", hex_ssid);
581                                 g_free(ssid);
582                                 g_free(hex_ssid);
583                                 goto err;
584                         }
585                         ssid[j++] = hex;
586                 }
587
588                 g_free(hex_ssid);
589
590                 g_free(service->ssid);
591                 service->ssid = ssid;
592                 service->ssid_len = hex_ssid_len / 2;
593         } else if (service->name != NULL) {
594                 char *ssid;
595                 unsigned int ssid_len;
596
597                 ssid_len = strlen(service->name);
598                 ssid = g_try_malloc0(ssid_len);
599                 if (ssid == NULL)
600                         goto err;
601
602                 memcpy(ssid, service->name, ssid_len);
603                 g_free(service->ssid);
604                 service->ssid = ssid;
605                 service->ssid_len = ssid_len;
606         }
607
608         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_EAP, NULL);
609         if (str != NULL) {
610                 g_free(service->eap);
611                 service->eap = str;
612         }
613
614         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_CA_CERT, NULL);
615         if (str != NULL) {
616                 g_free(service->ca_cert_file);
617                 service->ca_cert_file = str;
618         }
619
620         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_CL_CERT, NULL);
621         if (str != NULL) {
622                 g_free(service->client_cert_file);
623                 service->client_cert_file = str;
624         }
625
626         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_PRV_KEY, NULL);
627         if (str != NULL) {
628                 g_free(service->private_key_file);
629                 service->private_key_file = str;
630         }
631
632         str = g_key_file_get_string(keyfile, group,
633                                                 SERVICE_KEY_PRV_KEY_PASS, NULL);
634         if (str != NULL) {
635                 g_free(service->private_key_passphrase);
636                 service->private_key_passphrase = str;
637         }
638
639         str = g_key_file_get_string(keyfile, group,
640                                         SERVICE_KEY_PRV_KEY_PASS_TYPE, NULL);
641         if (str != NULL) {
642                 g_free(service->private_key_passphrase_type);
643                 service->private_key_passphrase_type = str;
644         }
645
646         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_IDENTITY, NULL);
647         if (str != NULL) {
648                 g_free(service->identity);
649                 service->identity = str;
650         }
651
652         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_PHASE2, NULL);
653         if (str != NULL) {
654                 g_free(service->phase2);
655                 service->phase2 = str;
656         }
657
658         str = g_key_file_get_string(keyfile, group, SERVICE_KEY_PASSPHRASE,
659                                         NULL);
660         if (str != NULL) {
661                 g_free(service->passphrase);
662                 service->passphrase = str;
663         }
664
665         service->config_ident = g_strdup(config->ident);
666         service->config_entry = g_strdup_printf("service_%s", service->ident);
667
668         service->hidden = g_key_file_get_boolean(keyfile, group,
669                                                 SERVICE_KEY_HIDDEN, NULL);
670
671         if (service_created)
672                 g_hash_table_insert(config->service_table, service->ident,
673                                         service);
674
675         connman_info("Adding service configuration %s", service->ident);
676
677         return TRUE;
678
679 err:
680         if (service_created == TRUE) {
681                 g_free(service->ident);
682                 g_free(service->type);
683                 g_free(service->name);
684                 g_free(service->ssid);
685                 g_free(service);
686         }
687
688         return FALSE;
689 }
690
691 static connman_bool_t load_service_from_keyfile(GKeyFile *keyfile,
692                                                 struct connman_config *config)
693 {
694         connman_bool_t found = FALSE;
695         char **groups;
696         int i;
697
698         groups = g_key_file_get_groups(keyfile, NULL);
699
700         for (i = 0; groups[i] != NULL; i++) {
701                 if (g_str_has_prefix(groups[i], "service_") == FALSE)
702                         continue;
703                 if (load_service(keyfile, groups[i], config) == TRUE)
704                         found = TRUE;
705         }
706
707         g_strfreev(groups);
708
709         return found;
710 }
711
712 static int load_config(struct connman_config *config)
713 {
714         GKeyFile *keyfile;
715         char *str;
716
717         DBG("config %p", config);
718
719         keyfile = __connman_storage_load_config(config->ident);
720         if (keyfile == NULL)
721                 return -EIO;
722
723         /* Verify keys validity of the global section */
724         check_keys(keyfile, "global", config_possible_keys);
725
726         str = g_key_file_get_string(keyfile, "global", CONFIG_KEY_NAME, NULL);
727         if (str != NULL) {
728                 g_free(config->name);
729                 config->name = str;
730         }
731
732         str = g_key_file_get_string(keyfile, "global", CONFIG_KEY_DESC, NULL);
733         if (str != NULL) {
734                 g_free(config->description);
735                 config->description = str;
736         }
737
738         if (load_service_from_keyfile(keyfile, config) == FALSE)
739                 connman_warn("Config file %s/%s.config does not contain any "
740                         "configuration that can be provisioned!",
741                         STORAGEDIR, config->ident);
742
743         g_key_file_free(keyfile);
744
745         return 0;
746 }
747
748 static struct connman_config *create_config(const char *ident)
749 {
750         struct connman_config *config;
751
752         DBG("ident %s", ident);
753
754         if (g_hash_table_lookup(config_table, ident) != NULL)
755                 return NULL;
756
757         config = g_try_new0(struct connman_config, 1);
758         if (config == NULL)
759                 return NULL;
760
761         config->ident = g_strdup(ident);
762
763         config->service_table = g_hash_table_new_full(g_str_hash, g_str_equal,
764                                                 NULL, unregister_service);
765
766         g_hash_table_insert(config_table, config->ident, config);
767
768         connman_info("Adding configuration %s", config->ident);
769
770         return config;
771 }
772
773 static connman_bool_t validate_ident(const char *ident)
774 {
775         unsigned int i;
776
777         if (ident == NULL)
778                 return FALSE;
779
780         for (i = 0; i < strlen(ident); i++)
781                 if (g_ascii_isprint(ident[i]) == FALSE)
782                         return FALSE;
783
784         return TRUE;
785 }
786
787 static int read_configs(void)
788 {
789         GDir *dir;
790
791         DBG("");
792
793         dir = g_dir_open(STORAGEDIR, 0, NULL);
794         if (dir != NULL) {
795                 const gchar *file;
796
797                 while ((file = g_dir_read_name(dir)) != NULL) {
798                         GString *str;
799                         gchar *ident;
800
801                         if (g_str_has_suffix(file, ".config") == FALSE)
802                                 continue;
803
804                         ident = g_strrstr(file, ".config");
805                         if (ident == NULL)
806                                 continue;
807
808                         str = g_string_new_len(file, ident - file);
809                         if (str == NULL)
810                                 continue;
811
812                         ident = g_string_free(str, FALSE);
813
814                         if (validate_ident(ident) == TRUE) {
815                                 struct connman_config *config;
816
817                                 config = create_config(ident);
818                                 if (config != NULL)
819                                         load_config(config);
820                         } else {
821                                 connman_error("Invalid config ident %s", ident);
822                         }
823                         g_free(ident);
824                 }
825
826                 g_dir_close(dir);
827         }
828
829         return 0;
830 }
831
832 static void config_notify_handler(struct inotify_event *event,
833                                         const char *ident)
834 {
835         char *ext;
836
837         if (ident == NULL)
838                 return;
839
840         if (g_str_has_suffix(ident, ".config") == FALSE)
841                 return;
842
843         ext = g_strrstr(ident, ".config");
844         if (ext == NULL)
845                 return;
846
847         *ext = '\0';
848
849         if (validate_ident(ident) == FALSE) {
850                 connman_error("Invalid config ident %s", ident);
851                 return;
852         }
853
854         if (event->mask & IN_CREATE)
855                 create_config(ident);
856
857         if (event->mask & IN_MODIFY) {
858                 struct connman_config *config;
859
860                 config = g_hash_table_lookup(config_table, ident);
861                 if (config != NULL) {
862                         int ret;
863
864                         g_hash_table_remove_all(config->service_table);
865                         load_config(config);
866                         ret = __connman_service_provision_changed(ident);
867                         if (ret > 0) {
868                                 /*
869                                  * Re-scan the config file for any
870                                  * changes
871                                  */
872                                 g_hash_table_remove_all(config->service_table);
873                                 load_config(config);
874                                 __connman_service_provision_changed(ident);
875                         }
876                 }
877         }
878
879         if (event->mask & IN_DELETE)
880                 g_hash_table_remove(config_table, ident);
881 }
882
883 int __connman_config_init(void)
884 {
885         DBG("");
886
887         config_table = g_hash_table_new_full(g_str_hash, g_str_equal,
888                                                 NULL, unregister_config);
889
890         connman_inotify_register(STORAGEDIR, config_notify_handler);
891
892         return read_configs();
893 }
894
895 void __connman_config_cleanup(void)
896 {
897         DBG("");
898
899         cleanup = TRUE;
900
901         connman_inotify_unregister(STORAGEDIR, config_notify_handler);
902
903         g_hash_table_destroy(config_table);
904         config_table = NULL;
905
906         cleanup = FALSE;
907 }
908
909 static char *config_pem_fsid(const char *pem_file)
910 {
911         struct statfs buf;
912         unsigned *fsid = (unsigned *) &buf.f_fsid;
913         unsigned long long fsid64;
914
915         if (pem_file == NULL)
916                 return NULL;
917
918         if (statfs(pem_file, &buf) < 0) {
919                 connman_error("statfs error %s for %s",
920                                                 strerror(errno), pem_file);
921                 return NULL;
922         }
923
924         fsid64 = ((unsigned long long) fsid[0] << 32) | fsid[1];
925
926         return g_strdup_printf("%llx", fsid64);
927 }
928
929 static void provision_service_wifi(gpointer key,
930                                 struct connman_config_service *config,
931                                 struct connman_service *service,
932                                 struct connman_network *network,
933                                 const void *ssid, unsigned int ssid_len)
934 {
935         if (config->eap != NULL)
936                 __connman_service_set_string(service, "EAP", config->eap);
937
938         if (config->identity != NULL)
939                 __connman_service_set_string(service, "Identity",
940                                                         config->identity);
941
942         if (config->ca_cert_file != NULL)
943                 __connman_service_set_string(service, "CACertFile",
944                                                         config->ca_cert_file);
945
946         if (config->client_cert_file != NULL)
947                 __connman_service_set_string(service, "ClientCertFile",
948                                                 config->client_cert_file);
949
950         if (config->private_key_file != NULL)
951                 __connman_service_set_string(service, "PrivateKeyFile",
952                                                 config->private_key_file);
953
954         if (g_strcmp0(config->private_key_passphrase_type, "fsid") == 0 &&
955                                         config->private_key_file != NULL) {
956                 char *fsid;
957
958                 fsid = config_pem_fsid(config->private_key_file);
959                 if (fsid == NULL)
960                         return;
961
962                 g_free(config->private_key_passphrase);
963                 config->private_key_passphrase = fsid;
964         }
965
966         if (config->private_key_passphrase != NULL) {
967                 __connman_service_set_string(service, "PrivateKeyPassphrase",
968                                                 config->private_key_passphrase);
969                 /*
970                  * TODO: Support for PEAP with both identity and key passwd.
971                  * In that case, we should check if both of them are found
972                  * from the config file. If not, we should not set the
973                  * service passphrase in order for the UI to request for an
974                  * additional passphrase.
975                  */
976         }
977
978         if (config->phase2 != NULL)
979                 __connman_service_set_string(service, "Phase2", config->phase2);
980
981         if (config->passphrase != NULL)
982                 __connman_service_set_string(service, "Passphrase", config->passphrase);
983
984         if (config->hidden == TRUE)
985                 __connman_service_set_hidden(service);
986 }
987
988 struct connect_virtual {
989         struct connman_service *service;
990         const char *vfile;
991 };
992
993 static gboolean remove_virtual_config(gpointer user_data)
994 {
995         struct connect_virtual *virtual = user_data;
996
997         __connman_service_connect(virtual->service);
998         g_hash_table_remove(config_table, virtual->vfile);
999
1000         g_free(virtual);
1001
1002         return FALSE;
1003 }
1004
1005 static void provision_service(gpointer key, gpointer value,
1006                                                         gpointer user_data)
1007 {
1008         struct connman_service *service = user_data;
1009         struct connman_config_service *config = value;
1010         struct connman_network *network;
1011         const void *service_id;
1012         enum connman_service_type type;
1013         const void *ssid;
1014         unsigned int ssid_len;
1015
1016         type = connman_service_get_type(service);
1017         if (type == CONNMAN_SERVICE_TYPE_WIFI &&
1018                                 g_strcmp0(config->type, "wifi") != 0)
1019                 return;
1020
1021         if (type == CONNMAN_SERVICE_TYPE_ETHERNET &&
1022                                 g_strcmp0(config->type, "ethernet") != 0)
1023                 return;
1024
1025         DBG("service %p ident %s", service,
1026                                         __connman_service_get_ident(service));
1027
1028         network = __connman_service_get_network(service);
1029         if (network == NULL) {
1030                 connman_error("Service has no network set");
1031                 return;
1032         }
1033
1034         DBG("network %p ident %s", network,
1035                                 connman_network_get_identifier(network));
1036
1037         if (config->mac != NULL) {
1038                 struct connman_device *device;
1039                 const char *device_addr;
1040
1041                 device = connman_network_get_device(network);
1042                 if (device == NULL) {
1043                         connman_error("Network device is missing");
1044                         return;
1045                 }
1046
1047                 device_addr = connman_device_get_string(device, "Address");
1048
1049                 DBG("wants %s has %s", config->mac, device_addr);
1050
1051                 if (g_ascii_strcasecmp(device_addr, config->mac) != 0)
1052                         return;
1053         }
1054
1055         if (g_strcmp0(config->type, "wifi") == 0 &&
1056                                 type == CONNMAN_SERVICE_TYPE_WIFI) {
1057                 ssid = connman_network_get_blob(network, "WiFi.SSID",
1058                                                 &ssid_len);
1059                 if (ssid == NULL) {
1060                         connman_error("Network SSID not set");
1061                         return;
1062                 }
1063
1064                 if (config->ssid == NULL || ssid_len != config->ssid_len)
1065                         return;
1066
1067                 if (memcmp(config->ssid, ssid, ssid_len) != 0)
1068                         return;
1069         }
1070
1071         if (config->ipv6_address == NULL) {
1072                 connman_network_set_ipv6_method(network,
1073                                                 CONNMAN_IPCONFIG_METHOD_AUTO);
1074         } else if (g_ascii_strcasecmp(config->ipv6_address, "off") == 0) {
1075                 connman_network_set_ipv6_method(network,
1076                                                 CONNMAN_IPCONFIG_METHOD_OFF);
1077         } else if (g_ascii_strcasecmp(config->ipv6_address, "auto") == 0 ||
1078                         g_ascii_strcasecmp(config->ipv6_address, "dhcp") == 0) {
1079                 connman_network_set_ipv6_method(network,
1080                                                 CONNMAN_IPCONFIG_METHOD_AUTO);
1081         } else {
1082                 struct connman_ipaddress *address;
1083
1084                 if (config->ipv6_prefix_length == 0 ||
1085                                         config->ipv6_gateway == NULL) {
1086                         DBG("IPv6 prefix or gateway missing");
1087                         return;
1088                 }
1089
1090                 address = connman_ipaddress_alloc(AF_INET6);
1091                 if (address == NULL)
1092                         return;
1093
1094                 connman_ipaddress_set_ipv6(address, config->ipv6_address,
1095                                         config->ipv6_prefix_length,
1096                                         config->ipv6_gateway);
1097
1098                 connman_network_set_ipv6_method(network,
1099                                                 CONNMAN_IPCONFIG_METHOD_FIXED);
1100
1101                 if (connman_network_set_ipaddress(network, address) < 0)
1102                         DBG("Unable to set IPv6 address to network %p",
1103                                                                 network);
1104
1105                 connman_ipaddress_free(address);
1106         }
1107
1108         if (config->ipv6_privacy != NULL) {
1109                 struct connman_ipconfig *ipconfig;
1110
1111                 ipconfig = __connman_service_get_ip6config(service);
1112                 if (ipconfig != NULL)
1113                         __connman_ipconfig_ipv6_set_privacy(ipconfig,
1114                                                         config->ipv6_privacy);
1115         }
1116
1117         if (config->ipv4_address == NULL) {
1118                 connman_network_set_ipv4_method(network,
1119                                                 CONNMAN_IPCONFIG_METHOD_DHCP);
1120         } else if (g_ascii_strcasecmp(config->ipv4_address, "off") == 0) {
1121                 connman_network_set_ipv4_method(network,
1122                                                 CONNMAN_IPCONFIG_METHOD_OFF);
1123         } else if (g_ascii_strcasecmp(config->ipv4_address, "auto") == 0 ||
1124                         g_ascii_strcasecmp(config->ipv4_address, "dhcp") == 0) {
1125                 connman_network_set_ipv4_method(network,
1126                                                 CONNMAN_IPCONFIG_METHOD_DHCP);
1127         } else {
1128                 struct connman_ipaddress *address;
1129
1130                 if (config->ipv4_netmask == 0 ||
1131                                         config->ipv4_gateway == NULL) {
1132                         DBG("IPv4 netmask or gateway missing");
1133                         return;
1134                 }
1135
1136                 address = connman_ipaddress_alloc(AF_INET);
1137                 if (address == NULL)
1138                         return;
1139
1140                 connman_ipaddress_set_ipv4(address, config->ipv4_address,
1141                                         config->ipv4_netmask,
1142                                         config->ipv4_gateway);
1143
1144                 connman_network_set_ipv4_method(network,
1145                                                 CONNMAN_IPCONFIG_METHOD_FIXED);
1146
1147                 if (connman_network_set_ipaddress(network, address) < 0)
1148                         DBG("Unable to set IPv4 address to network %p",
1149                                                                 network);
1150
1151                 connman_ipaddress_free(address);
1152         }
1153
1154         __connman_service_disconnect(service);
1155
1156         service_id = __connman_service_get_ident(service);
1157         config->service_identifiers =
1158                 g_slist_prepend(config->service_identifiers,
1159                                 g_strdup(service_id));
1160
1161         if (config->virtual == FALSE)
1162                 __connman_service_set_immutable(service, TRUE);
1163
1164         __connman_service_set_favorite_delayed(service, TRUE, TRUE);
1165
1166         __connman_service_set_config(service, config->config_ident,
1167                                                 config->config_entry);
1168
1169         if (config->domain_name != NULL)
1170                 __connman_service_set_domainname(service, config->domain_name);
1171
1172         if (config->nameservers != NULL) {
1173                 int i;
1174
1175                 __connman_service_nameserver_clear(service);
1176
1177                 for (i = 0; config->nameservers[i] != NULL; i++) {
1178                         __connman_service_nameserver_append(service,
1179                                                 config->nameservers[i], FALSE);
1180                 }
1181         }
1182
1183         if (config->search_domains != NULL)
1184                 __connman_service_set_search_domains(service,
1185                                                 config->search_domains);
1186
1187         if (config->timeservers != NULL)
1188                 __connman_service_set_timeservers(service,
1189                                                 config->timeservers);
1190
1191         if (g_strcmp0(config->type, "wifi") == 0 &&
1192                                 type == CONNMAN_SERVICE_TYPE_WIFI) {
1193                 provision_service_wifi(key, config, service, network,
1194                                                         ssid, ssid_len);
1195         } else
1196                 __connman_service_connect(service);
1197
1198         __connman_service_mark_dirty();
1199
1200         __connman_service_save(service);
1201
1202         if (config->virtual == TRUE) {
1203                 struct connect_virtual *virtual;
1204
1205                 virtual = g_malloc0(sizeof(struct connect_virtual));
1206                 virtual->service = service;
1207                 virtual->vfile = config->virtual_file;
1208
1209                 g_timeout_add(0, remove_virtual_config, virtual);
1210         } else
1211                 __connman_service_auto_connect();
1212 }
1213
1214 int __connman_config_provision_service(struct connman_service *service)
1215 {
1216         enum connman_service_type type;
1217         GHashTableIter iter;
1218         gpointer value, key;
1219
1220         /* For now only WiFi and Ethernet services are supported */
1221         type = connman_service_get_type(service);
1222
1223         DBG("service %p type %d", service, type);
1224
1225         if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1226                                         type != CONNMAN_SERVICE_TYPE_ETHERNET)
1227                 return -ENOSYS;
1228
1229         g_hash_table_iter_init(&iter, config_table);
1230
1231         while (g_hash_table_iter_next(&iter, &key, &value) == TRUE) {
1232                 struct connman_config *config = value;
1233
1234                 g_hash_table_foreach(config->service_table,
1235                                                 provision_service, service);
1236         }
1237
1238         return 0;
1239 }
1240
1241 int __connman_config_provision_service_ident(struct connman_service *service,
1242                         const char *ident, const char *file, const char *entry)
1243 {
1244         enum connman_service_type type;
1245         struct connman_config *config;
1246         int ret = 0;
1247
1248         /* For now only WiFi and Ethernet services are supported */
1249         type = connman_service_get_type(service);
1250
1251         DBG("service %p type %d", service, type);
1252
1253         if (type != CONNMAN_SERVICE_TYPE_WIFI &&
1254                                         type != CONNMAN_SERVICE_TYPE_ETHERNET)
1255                 return -ENOSYS;
1256
1257         config = g_hash_table_lookup(config_table, ident);
1258         if (config != NULL) {
1259                 GHashTableIter iter;
1260                 gpointer value, key;
1261                 gboolean found = FALSE;
1262
1263                 g_hash_table_iter_init(&iter, config->service_table);
1264
1265                 /*
1266                  * Check if we need to remove individual service if it
1267                  * is missing from config file.
1268                  */
1269                 if (file != NULL && entry != NULL) {
1270                         while (g_hash_table_iter_next(&iter, &key,
1271                                                         &value) == TRUE) {
1272                                 struct connman_config_service *config_service;
1273
1274                                 config_service = value;
1275
1276                                 if (g_strcmp0(config_service->config_ident,
1277                                                                 file) != 0)
1278                                         continue;
1279
1280                                 if (g_strcmp0(config_service->config_entry,
1281                                                                 entry) != 0)
1282                                         continue;
1283
1284                                 found = TRUE;
1285                                 break;
1286                         }
1287
1288                         DBG("found %d ident %s file %s entry %s", found, ident,
1289                                                                 file, entry);
1290
1291                         if (found == FALSE) {
1292                                 /*
1293                                  * The entry+8 will skip "service_" prefix
1294                                  */
1295                                 g_hash_table_remove(config->service_table,
1296                                                 entry + 8);
1297                                 ret = 1;
1298                         }
1299                 }
1300
1301                 g_hash_table_foreach(config->service_table,
1302                                                 provision_service, service);
1303         }
1304
1305         return ret;
1306 }
1307
1308 static void generate_random_string(char *str, int length)
1309 {
1310         uint8_t val;
1311         int i;
1312
1313         memset(str, '\0', length);
1314
1315         for (i = 0; i < length-1; i++) {
1316                 do {
1317                         val = (uint8_t)(random() % 122);
1318                         if (val < 48)
1319                                 val += 48;
1320                 } while((val > 57 && val < 65) || (val > 90 && val < 97));
1321
1322                 str[i] = val;
1323         }
1324 }
1325
1326 int connman_config_provision_mutable_service(GKeyFile *keyfile)
1327 {
1328         struct connman_config_service *service_config;
1329         struct connman_config *config;
1330         char *vfile, *group;
1331         char rstr[11];
1332
1333         DBG("");
1334
1335         generate_random_string(rstr, 11);
1336
1337         vfile = g_strdup_printf("service_mutable_%s.config", rstr);
1338
1339         config = create_config(vfile);
1340         if (config == NULL)
1341                 return -ENOMEM;
1342
1343         if (load_service_from_keyfile(keyfile, config) == FALSE)
1344                 goto error;
1345
1346         group = g_key_file_get_start_group(keyfile);
1347
1348         service_config = g_hash_table_lookup(config->service_table, group+8);
1349         if (service_config == NULL)
1350                 goto error;
1351
1352         /* Specific to non file based config: */
1353         g_free(service_config->config_ident);
1354         service_config->config_ident = NULL;
1355         g_free(service_config->config_entry);
1356         service_config->config_entry = NULL;
1357
1358         service_config->virtual = TRUE;
1359         service_config->virtual_file = vfile;
1360
1361         __connman_service_provision_changed(vfile);
1362
1363         if (g_strcmp0(service_config->type, "wifi") == 0)
1364                 __connman_device_request_scan(CONNMAN_SERVICE_TYPE_WIFI);
1365
1366         return 0;
1367
1368 error:
1369         DBG("Could not proceed");
1370         g_hash_table_remove(config_table, vfile);
1371         g_free(vfile);
1372
1373         return -EINVAL;
1374 }
1375
1376 struct connman_config_entry **connman_config_get_entries(const char *type)
1377 {
1378         GHashTableIter iter_file, iter_config;
1379         gpointer value, key;
1380         struct connman_config_entry **entries = NULL;
1381         int i = 0, count;
1382
1383         g_hash_table_iter_init(&iter_file, config_table);
1384         while (g_hash_table_iter_next(&iter_file, &key, &value) == TRUE) {
1385                 struct connman_config *config_file = value;
1386
1387                 count = g_hash_table_size(config_file->service_table);
1388
1389                 entries = g_try_realloc(entries, (i + count + 1) *
1390                                         sizeof(struct connman_config_entry *));
1391                 if (entries == NULL)
1392                         return NULL;
1393
1394                 g_hash_table_iter_init(&iter_config,
1395                                                 config_file->service_table);
1396                 while (g_hash_table_iter_next(&iter_config, &key,
1397                                                         &value) == TRUE) {
1398                         struct connman_config_service *config = value;
1399
1400                         if (type != NULL &&
1401                                         g_strcmp0(config->type, type) != 0)
1402                                 continue;
1403
1404                         entries[i] = g_try_new0(struct connman_config_entry,
1405                                                 1);
1406                         if (entries[i] == NULL)
1407                                 goto cleanup;
1408
1409                         entries[i]->ident = g_strdup(config->ident);
1410                         entries[i]->name = g_strdup(config->name);
1411                         entries[i]->ssid = g_try_malloc0(config->ssid_len + 1);
1412                         if (entries[i]->ssid == NULL)
1413                                 goto cleanup;
1414
1415                         memcpy(entries[i]->ssid, config->ssid,
1416                                                         config->ssid_len);
1417                         entries[i]->ssid_len = config->ssid_len;
1418                         entries[i]->hidden = config->hidden;
1419
1420                         i++;
1421                 }
1422         }
1423
1424         if (entries != NULL) {
1425                 entries = g_try_realloc(entries, (i + 1) *
1426                                         sizeof(struct connman_config_entry *));
1427                 if (entries == NULL)
1428                         return NULL;
1429
1430                 entries[i] = NULL;
1431
1432                 DBG("%d provisioned AP found", i);
1433         }
1434
1435         return entries;
1436
1437 cleanup:
1438         connman_config_free_entries(entries);
1439         return NULL;
1440 }
1441
1442 void connman_config_free_entries(struct connman_config_entry **entries)
1443 {
1444         int i;
1445
1446         if (entries == NULL)
1447                 return;
1448
1449         for (i = 0; entries[i]; i++) {
1450                 g_free(entries[i]->ident);
1451                 g_free(entries[i]->name);
1452                 g_free(entries[i]->ssid);
1453                 g_free(entries[i]);
1454         }
1455
1456         g_free(entries);
1457         return;
1458 }