xref: /openbmc/linux/net/bluetooth/hci_sock.c (revision 0381101fd6a73c7d6b545044dc1472d019fc64e3)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds    BlueZ - Bluetooth protocol stack for Linux
31da177e4SLinus Torvalds    Copyright (C) 2000-2001 Qualcomm Incorporated
41da177e4SLinus Torvalds 
51da177e4SLinus Torvalds    Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
61da177e4SLinus Torvalds 
71da177e4SLinus Torvalds    This program is free software; you can redistribute it and/or modify
81da177e4SLinus Torvalds    it under the terms of the GNU General Public License version 2 as
91da177e4SLinus Torvalds    published by the Free Software Foundation;
101da177e4SLinus Torvalds 
111da177e4SLinus Torvalds    THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
121da177e4SLinus Torvalds    OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
131da177e4SLinus Torvalds    FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
141da177e4SLinus Torvalds    IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
151da177e4SLinus Torvalds    CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
161da177e4SLinus Torvalds    WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
171da177e4SLinus Torvalds    ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
181da177e4SLinus Torvalds    OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
191da177e4SLinus Torvalds 
201da177e4SLinus Torvalds    ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
211da177e4SLinus Torvalds    COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
221da177e4SLinus Torvalds    SOFTWARE IS DISCLAIMED.
231da177e4SLinus Torvalds */
241da177e4SLinus Torvalds 
251da177e4SLinus Torvalds /* Bluetooth HCI sockets. */
261da177e4SLinus Torvalds 
271da177e4SLinus Torvalds #include <linux/module.h>
281da177e4SLinus Torvalds 
291da177e4SLinus Torvalds #include <linux/types.h>
304fc268d2SRandy Dunlap #include <linux/capability.h>
311da177e4SLinus Torvalds #include <linux/errno.h>
321da177e4SLinus Torvalds #include <linux/kernel.h>
331da177e4SLinus Torvalds #include <linux/slab.h>
341da177e4SLinus Torvalds #include <linux/poll.h>
351da177e4SLinus Torvalds #include <linux/fcntl.h>
361da177e4SLinus Torvalds #include <linux/init.h>
371da177e4SLinus Torvalds #include <linux/skbuff.h>
381da177e4SLinus Torvalds #include <linux/workqueue.h>
391da177e4SLinus Torvalds #include <linux/interrupt.h>
40767c5eb5SMarcel Holtmann #include <linux/compat.h>
411da177e4SLinus Torvalds #include <linux/socket.h>
421da177e4SLinus Torvalds #include <linux/ioctl.h>
431da177e4SLinus Torvalds #include <net/sock.h>
441da177e4SLinus Torvalds 
451da177e4SLinus Torvalds #include <asm/system.h>
4670f23020SAndrei Emeltchenko #include <linux/uaccess.h>
471da177e4SLinus Torvalds #include <asm/unaligned.h>
481da177e4SLinus Torvalds 
491da177e4SLinus Torvalds #include <net/bluetooth/bluetooth.h>
501da177e4SLinus Torvalds #include <net/bluetooth/hci_core.h>
511da177e4SLinus Torvalds 
52*0381101fSJohan Hedberg static int enable_mgmt;
53*0381101fSJohan Hedberg 
541da177e4SLinus Torvalds /* ----- HCI socket interface ----- */
551da177e4SLinus Torvalds 
561da177e4SLinus Torvalds static inline int hci_test_bit(int nr, void *addr)
571da177e4SLinus Torvalds {
581da177e4SLinus Torvalds 	return *((__u32 *) addr + (nr >> 5)) & ((__u32) 1 << (nr & 31));
591da177e4SLinus Torvalds }
601da177e4SLinus Torvalds 
611da177e4SLinus Torvalds /* Security filter */
621da177e4SLinus Torvalds static struct hci_sec_filter hci_sec_filter = {
631da177e4SLinus Torvalds 	/* Packet types */
641da177e4SLinus Torvalds 	0x10,
651da177e4SLinus Torvalds 	/* Events */
66dd7f5527SMarcel Holtmann 	{ 0x1000d9fe, 0x0000b00c },
671da177e4SLinus Torvalds 	/* Commands */
681da177e4SLinus Torvalds 	{
691da177e4SLinus Torvalds 		{ 0x0 },
701da177e4SLinus Torvalds 		/* OGF_LINK_CTL */
717c631a67SMarcel Holtmann 		{ 0xbe000006, 0x00000001, 0x00000000, 0x00 },
721da177e4SLinus Torvalds 		/* OGF_LINK_POLICY */
737c631a67SMarcel Holtmann 		{ 0x00005200, 0x00000000, 0x00000000, 0x00 },
741da177e4SLinus Torvalds 		/* OGF_HOST_CTL */
757c631a67SMarcel Holtmann 		{ 0xaab00200, 0x2b402aaa, 0x05220154, 0x00 },
761da177e4SLinus Torvalds 		/* OGF_INFO_PARAM */
777c631a67SMarcel Holtmann 		{ 0x000002be, 0x00000000, 0x00000000, 0x00 },
781da177e4SLinus Torvalds 		/* OGF_STATUS_PARAM */
797c631a67SMarcel Holtmann 		{ 0x000000ea, 0x00000000, 0x00000000, 0x00 }
801da177e4SLinus Torvalds 	}
811da177e4SLinus Torvalds };
821da177e4SLinus Torvalds 
831da177e4SLinus Torvalds static struct bt_sock_list hci_sk_list = {
84d5fb2962SRobert P. J. Day 	.lock = __RW_LOCK_UNLOCKED(hci_sk_list.lock)
851da177e4SLinus Torvalds };
861da177e4SLinus Torvalds 
871da177e4SLinus Torvalds /* Send frame to RAW socket */
881da177e4SLinus Torvalds void hci_send_to_sock(struct hci_dev *hdev, struct sk_buff *skb)
891da177e4SLinus Torvalds {
901da177e4SLinus Torvalds 	struct sock *sk;
911da177e4SLinus Torvalds 	struct hlist_node *node;
921da177e4SLinus Torvalds 
931da177e4SLinus Torvalds 	BT_DBG("hdev %p len %d", hdev, skb->len);
941da177e4SLinus Torvalds 
951da177e4SLinus Torvalds 	read_lock(&hci_sk_list.lock);
961da177e4SLinus Torvalds 	sk_for_each(sk, node, &hci_sk_list.head) {
971da177e4SLinus Torvalds 		struct hci_filter *flt;
981da177e4SLinus Torvalds 		struct sk_buff *nskb;
991da177e4SLinus Torvalds 
1001da177e4SLinus Torvalds 		if (sk->sk_state != BT_BOUND || hci_pi(sk)->hdev != hdev)
1011da177e4SLinus Torvalds 			continue;
1021da177e4SLinus Torvalds 
1031da177e4SLinus Torvalds 		/* Don't send frame to the socket it came from */
1041da177e4SLinus Torvalds 		if (skb->sk == sk)
1051da177e4SLinus Torvalds 			continue;
1061da177e4SLinus Torvalds 
1071da177e4SLinus Torvalds 		/* Apply filter */
1081da177e4SLinus Torvalds 		flt = &hci_pi(sk)->filter;
1091da177e4SLinus Torvalds 
1100d48d939SMarcel Holtmann 		if (!test_bit((bt_cb(skb)->pkt_type == HCI_VENDOR_PKT) ?
1110d48d939SMarcel Holtmann 				0 : (bt_cb(skb)->pkt_type & HCI_FLT_TYPE_BITS), &flt->type_mask))
1121da177e4SLinus Torvalds 			continue;
1131da177e4SLinus Torvalds 
1140d48d939SMarcel Holtmann 		if (bt_cb(skb)->pkt_type == HCI_EVENT_PKT) {
1151da177e4SLinus Torvalds 			register int evt = (*(__u8 *)skb->data & HCI_FLT_EVENT_BITS);
1161da177e4SLinus Torvalds 
1171da177e4SLinus Torvalds 			if (!hci_test_bit(evt, &flt->event_mask))
1181da177e4SLinus Torvalds 				continue;
1191da177e4SLinus Torvalds 
1204498c80dSDavid S. Miller 			if (flt->opcode &&
1214498c80dSDavid S. Miller 			    ((evt == HCI_EV_CMD_COMPLETE &&
1224498c80dSDavid S. Miller 			      flt->opcode !=
123905f3ed6SAl Viro 			      get_unaligned((__le16 *)(skb->data + 3))) ||
1241da177e4SLinus Torvalds 			     (evt == HCI_EV_CMD_STATUS &&
1254498c80dSDavid S. Miller 			      flt->opcode !=
126905f3ed6SAl Viro 			      get_unaligned((__le16 *)(skb->data + 4)))))
1271da177e4SLinus Torvalds 				continue;
1281da177e4SLinus Torvalds 		}
1291da177e4SLinus Torvalds 
13070f23020SAndrei Emeltchenko 		nskb = skb_clone(skb, GFP_ATOMIC);
13170f23020SAndrei Emeltchenko 		if (!nskb)
1321da177e4SLinus Torvalds 			continue;
1331da177e4SLinus Torvalds 
1341da177e4SLinus Torvalds 		/* Put type byte before the data */
1350d48d939SMarcel Holtmann 		memcpy(skb_push(nskb, 1), &bt_cb(nskb)->pkt_type, 1);
1361da177e4SLinus Torvalds 
1371da177e4SLinus Torvalds 		if (sock_queue_rcv_skb(sk, nskb))
1381da177e4SLinus Torvalds 			kfree_skb(nskb);
1391da177e4SLinus Torvalds 	}
1401da177e4SLinus Torvalds 	read_unlock(&hci_sk_list.lock);
1411da177e4SLinus Torvalds }
1421da177e4SLinus Torvalds 
1431da177e4SLinus Torvalds static int hci_sock_release(struct socket *sock)
1441da177e4SLinus Torvalds {
1451da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
1467b005bd3SMarcel Holtmann 	struct hci_dev *hdev;
1471da177e4SLinus Torvalds 
1481da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
1491da177e4SLinus Torvalds 
1501da177e4SLinus Torvalds 	if (!sk)
1511da177e4SLinus Torvalds 		return 0;
1521da177e4SLinus Torvalds 
1537b005bd3SMarcel Holtmann 	hdev = hci_pi(sk)->hdev;
1547b005bd3SMarcel Holtmann 
1551da177e4SLinus Torvalds 	bt_sock_unlink(&hci_sk_list, sk);
1561da177e4SLinus Torvalds 
1571da177e4SLinus Torvalds 	if (hdev) {
1581da177e4SLinus Torvalds 		atomic_dec(&hdev->promisc);
1591da177e4SLinus Torvalds 		hci_dev_put(hdev);
1601da177e4SLinus Torvalds 	}
1611da177e4SLinus Torvalds 
1621da177e4SLinus Torvalds 	sock_orphan(sk);
1631da177e4SLinus Torvalds 
1641da177e4SLinus Torvalds 	skb_queue_purge(&sk->sk_receive_queue);
1651da177e4SLinus Torvalds 	skb_queue_purge(&sk->sk_write_queue);
1661da177e4SLinus Torvalds 
1671da177e4SLinus Torvalds 	sock_put(sk);
1681da177e4SLinus Torvalds 	return 0;
1691da177e4SLinus Torvalds }
1701da177e4SLinus Torvalds 
171f0358568SJohan Hedberg struct bdaddr_list *hci_blacklist_lookup(struct hci_dev *hdev, bdaddr_t *bdaddr)
172f0358568SJohan Hedberg {
173f0358568SJohan Hedberg 	struct list_head *p;
174f0358568SJohan Hedberg 
175ea4bd8baSDavid Miller 	list_for_each(p, &hdev->blacklist) {
176f0358568SJohan Hedberg 		struct bdaddr_list *b;
177f0358568SJohan Hedberg 
178f0358568SJohan Hedberg 		b = list_entry(p, struct bdaddr_list, list);
179f0358568SJohan Hedberg 
180f0358568SJohan Hedberg 		if (bacmp(bdaddr, &b->bdaddr) == 0)
181f0358568SJohan Hedberg 			return b;
182f0358568SJohan Hedberg 	}
183f0358568SJohan Hedberg 
184f0358568SJohan Hedberg 	return NULL;
185f0358568SJohan Hedberg }
186f0358568SJohan Hedberg 
187f0358568SJohan Hedberg static int hci_blacklist_add(struct hci_dev *hdev, void __user *arg)
188f0358568SJohan Hedberg {
189f0358568SJohan Hedberg 	bdaddr_t bdaddr;
190f0358568SJohan Hedberg 	struct bdaddr_list *entry;
191f0358568SJohan Hedberg 
192f0358568SJohan Hedberg 	if (copy_from_user(&bdaddr, arg, sizeof(bdaddr)))
193f0358568SJohan Hedberg 		return -EFAULT;
194f0358568SJohan Hedberg 
195f0358568SJohan Hedberg 	if (bacmp(&bdaddr, BDADDR_ANY) == 0)
196f0358568SJohan Hedberg 		return -EBADF;
197f0358568SJohan Hedberg 
198f0358568SJohan Hedberg 	if (hci_blacklist_lookup(hdev, &bdaddr))
199f0358568SJohan Hedberg 		return -EEXIST;
200f0358568SJohan Hedberg 
201f0358568SJohan Hedberg 	entry = kzalloc(sizeof(struct bdaddr_list), GFP_KERNEL);
202f0358568SJohan Hedberg 	if (!entry)
203f0358568SJohan Hedberg 		return -ENOMEM;
204f0358568SJohan Hedberg 
205f0358568SJohan Hedberg 	bacpy(&entry->bdaddr, &bdaddr);
206f0358568SJohan Hedberg 
207ea4bd8baSDavid Miller 	list_add(&entry->list, &hdev->blacklist);
208f0358568SJohan Hedberg 
209f0358568SJohan Hedberg 	return 0;
210f0358568SJohan Hedberg }
211f0358568SJohan Hedberg 
212f0358568SJohan Hedberg int hci_blacklist_clear(struct hci_dev *hdev)
213f0358568SJohan Hedberg {
214f0358568SJohan Hedberg 	struct list_head *p, *n;
215f0358568SJohan Hedberg 
216ea4bd8baSDavid Miller 	list_for_each_safe(p, n, &hdev->blacklist) {
217f0358568SJohan Hedberg 		struct bdaddr_list *b;
218f0358568SJohan Hedberg 
219f0358568SJohan Hedberg 		b = list_entry(p, struct bdaddr_list, list);
220f0358568SJohan Hedberg 
221f0358568SJohan Hedberg 		list_del(p);
222f0358568SJohan Hedberg 		kfree(b);
223f0358568SJohan Hedberg 	}
224f0358568SJohan Hedberg 
225f0358568SJohan Hedberg 	return 0;
226f0358568SJohan Hedberg }
227f0358568SJohan Hedberg 
228f0358568SJohan Hedberg static int hci_blacklist_del(struct hci_dev *hdev, void __user *arg)
229f0358568SJohan Hedberg {
230f0358568SJohan Hedberg 	bdaddr_t bdaddr;
231f0358568SJohan Hedberg 	struct bdaddr_list *entry;
232f0358568SJohan Hedberg 
233f0358568SJohan Hedberg 	if (copy_from_user(&bdaddr, arg, sizeof(bdaddr)))
234f0358568SJohan Hedberg 		return -EFAULT;
235f0358568SJohan Hedberg 
236f0358568SJohan Hedberg 	if (bacmp(&bdaddr, BDADDR_ANY) == 0)
237f0358568SJohan Hedberg 		return hci_blacklist_clear(hdev);
238f0358568SJohan Hedberg 
239f0358568SJohan Hedberg 	entry = hci_blacklist_lookup(hdev, &bdaddr);
240f0358568SJohan Hedberg 	if (!entry)
241f0358568SJohan Hedberg 		return -ENOENT;
242f0358568SJohan Hedberg 
243f0358568SJohan Hedberg 	list_del(&entry->list);
244f0358568SJohan Hedberg 	kfree(entry);
245f0358568SJohan Hedberg 
246f0358568SJohan Hedberg 	return 0;
247f0358568SJohan Hedberg }
248f0358568SJohan Hedberg 
2491da177e4SLinus Torvalds /* Ioctls that require bound socket */
2501da177e4SLinus Torvalds static inline int hci_sock_bound_ioctl(struct sock *sk, unsigned int cmd, unsigned long arg)
2511da177e4SLinus Torvalds {
2521da177e4SLinus Torvalds 	struct hci_dev *hdev = hci_pi(sk)->hdev;
2531da177e4SLinus Torvalds 
2541da177e4SLinus Torvalds 	if (!hdev)
2551da177e4SLinus Torvalds 		return -EBADFD;
2561da177e4SLinus Torvalds 
2571da177e4SLinus Torvalds 	switch (cmd) {
2581da177e4SLinus Torvalds 	case HCISETRAW:
2591da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2601da177e4SLinus Torvalds 			return -EACCES;
2611da177e4SLinus Torvalds 
2621da177e4SLinus Torvalds 		if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
2631da177e4SLinus Torvalds 			return -EPERM;
2641da177e4SLinus Torvalds 
2651da177e4SLinus Torvalds 		if (arg)
2661da177e4SLinus Torvalds 			set_bit(HCI_RAW, &hdev->flags);
2671da177e4SLinus Torvalds 		else
2681da177e4SLinus Torvalds 			clear_bit(HCI_RAW, &hdev->flags);
2691da177e4SLinus Torvalds 
2701da177e4SLinus Torvalds 		return 0;
2711da177e4SLinus Torvalds 
2721da177e4SLinus Torvalds 	case HCIGETCONNINFO:
2731da177e4SLinus Torvalds 		return hci_get_conn_info(hdev, (void __user *) arg);
2741da177e4SLinus Torvalds 
27540be492fSMarcel Holtmann 	case HCIGETAUTHINFO:
27640be492fSMarcel Holtmann 		return hci_get_auth_info(hdev, (void __user *) arg);
27740be492fSMarcel Holtmann 
278f0358568SJohan Hedberg 	case HCIBLOCKADDR:
279f0358568SJohan Hedberg 		if (!capable(CAP_NET_ADMIN))
280f0358568SJohan Hedberg 			return -EACCES;
281f0358568SJohan Hedberg 		return hci_blacklist_add(hdev, (void __user *) arg);
282f0358568SJohan Hedberg 
283f0358568SJohan Hedberg 	case HCIUNBLOCKADDR:
284f0358568SJohan Hedberg 		if (!capable(CAP_NET_ADMIN))
285f0358568SJohan Hedberg 			return -EACCES;
286f0358568SJohan Hedberg 		return hci_blacklist_del(hdev, (void __user *) arg);
287f0358568SJohan Hedberg 
2881da177e4SLinus Torvalds 	default:
2891da177e4SLinus Torvalds 		if (hdev->ioctl)
2901da177e4SLinus Torvalds 			return hdev->ioctl(hdev, cmd, arg);
2911da177e4SLinus Torvalds 		return -EINVAL;
2921da177e4SLinus Torvalds 	}
2931da177e4SLinus Torvalds }
2941da177e4SLinus Torvalds 
2951da177e4SLinus Torvalds static int hci_sock_ioctl(struct socket *sock, unsigned int cmd, unsigned long arg)
2961da177e4SLinus Torvalds {
2971da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
2981da177e4SLinus Torvalds 	void __user *argp = (void __user *) arg;
2991da177e4SLinus Torvalds 	int err;
3001da177e4SLinus Torvalds 
3011da177e4SLinus Torvalds 	BT_DBG("cmd %x arg %lx", cmd, arg);
3021da177e4SLinus Torvalds 
3031da177e4SLinus Torvalds 	switch (cmd) {
3041da177e4SLinus Torvalds 	case HCIGETDEVLIST:
3051da177e4SLinus Torvalds 		return hci_get_dev_list(argp);
3061da177e4SLinus Torvalds 
3071da177e4SLinus Torvalds 	case HCIGETDEVINFO:
3081da177e4SLinus Torvalds 		return hci_get_dev_info(argp);
3091da177e4SLinus Torvalds 
3101da177e4SLinus Torvalds 	case HCIGETCONNLIST:
3111da177e4SLinus Torvalds 		return hci_get_conn_list(argp);
3121da177e4SLinus Torvalds 
3131da177e4SLinus Torvalds 	case HCIDEVUP:
3141da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3151da177e4SLinus Torvalds 			return -EACCES;
3161da177e4SLinus Torvalds 		return hci_dev_open(arg);
3171da177e4SLinus Torvalds 
3181da177e4SLinus Torvalds 	case HCIDEVDOWN:
3191da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3201da177e4SLinus Torvalds 			return -EACCES;
3211da177e4SLinus Torvalds 		return hci_dev_close(arg);
3221da177e4SLinus Torvalds 
3231da177e4SLinus Torvalds 	case HCIDEVRESET:
3241da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3251da177e4SLinus Torvalds 			return -EACCES;
3261da177e4SLinus Torvalds 		return hci_dev_reset(arg);
3271da177e4SLinus Torvalds 
3281da177e4SLinus Torvalds 	case HCIDEVRESTAT:
3291da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3301da177e4SLinus Torvalds 			return -EACCES;
3311da177e4SLinus Torvalds 		return hci_dev_reset_stat(arg);
3321da177e4SLinus Torvalds 
3331da177e4SLinus Torvalds 	case HCISETSCAN:
3341da177e4SLinus Torvalds 	case HCISETAUTH:
3351da177e4SLinus Torvalds 	case HCISETENCRYPT:
3361da177e4SLinus Torvalds 	case HCISETPTYPE:
3371da177e4SLinus Torvalds 	case HCISETLINKPOL:
3381da177e4SLinus Torvalds 	case HCISETLINKMODE:
3391da177e4SLinus Torvalds 	case HCISETACLMTU:
3401da177e4SLinus Torvalds 	case HCISETSCOMTU:
3411da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3421da177e4SLinus Torvalds 			return -EACCES;
3431da177e4SLinus Torvalds 		return hci_dev_cmd(cmd, argp);
3441da177e4SLinus Torvalds 
3451da177e4SLinus Torvalds 	case HCIINQUIRY:
3461da177e4SLinus Torvalds 		return hci_inquiry(argp);
3471da177e4SLinus Torvalds 
3481da177e4SLinus Torvalds 	default:
3491da177e4SLinus Torvalds 		lock_sock(sk);
3501da177e4SLinus Torvalds 		err = hci_sock_bound_ioctl(sk, cmd, arg);
3511da177e4SLinus Torvalds 		release_sock(sk);
3521da177e4SLinus Torvalds 		return err;
3531da177e4SLinus Torvalds 	}
3541da177e4SLinus Torvalds }
3551da177e4SLinus Torvalds 
3561da177e4SLinus Torvalds static int hci_sock_bind(struct socket *sock, struct sockaddr *addr, int addr_len)
3571da177e4SLinus Torvalds {
358*0381101fSJohan Hedberg 	struct sockaddr_hci haddr;
3591da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
3601da177e4SLinus Torvalds 	struct hci_dev *hdev = NULL;
361*0381101fSJohan Hedberg 	int len, err = 0;
3621da177e4SLinus Torvalds 
3631da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
3641da177e4SLinus Torvalds 
365*0381101fSJohan Hedberg 	if (!addr)
366*0381101fSJohan Hedberg 		return -EINVAL;
367*0381101fSJohan Hedberg 
368*0381101fSJohan Hedberg 	memset(&haddr, 0, sizeof(haddr));
369*0381101fSJohan Hedberg 	len = min_t(unsigned int, sizeof(haddr), addr_len);
370*0381101fSJohan Hedberg 	memcpy(&haddr, addr, len);
371*0381101fSJohan Hedberg 
372*0381101fSJohan Hedberg 	if (haddr.hci_family != AF_BLUETOOTH)
373*0381101fSJohan Hedberg 		return -EINVAL;
374*0381101fSJohan Hedberg 
375*0381101fSJohan Hedberg 	if (haddr.hci_channel != HCI_CHANNEL_RAW && !enable_mgmt)
3761da177e4SLinus Torvalds 		return -EINVAL;
3771da177e4SLinus Torvalds 
3781da177e4SLinus Torvalds 	lock_sock(sk);
3791da177e4SLinus Torvalds 
380*0381101fSJohan Hedberg 	if (sk->sk_state == BT_BOUND || hci_pi(sk)->hdev) {
3811da177e4SLinus Torvalds 		err = -EALREADY;
3821da177e4SLinus Torvalds 		goto done;
3831da177e4SLinus Torvalds 	}
3841da177e4SLinus Torvalds 
385*0381101fSJohan Hedberg 	if (haddr.hci_dev != HCI_DEV_NONE) {
386*0381101fSJohan Hedberg 		hdev = hci_dev_get(haddr.hci_dev);
38770f23020SAndrei Emeltchenko 		if (!hdev) {
3881da177e4SLinus Torvalds 			err = -ENODEV;
3891da177e4SLinus Torvalds 			goto done;
3901da177e4SLinus Torvalds 		}
3911da177e4SLinus Torvalds 
3921da177e4SLinus Torvalds 		atomic_inc(&hdev->promisc);
3931da177e4SLinus Torvalds 	}
3941da177e4SLinus Torvalds 
395*0381101fSJohan Hedberg 	hci_pi(sk)->channel = haddr.hci_channel;
3961da177e4SLinus Torvalds 	hci_pi(sk)->hdev = hdev;
3971da177e4SLinus Torvalds 	sk->sk_state = BT_BOUND;
3981da177e4SLinus Torvalds 
3991da177e4SLinus Torvalds done:
4001da177e4SLinus Torvalds 	release_sock(sk);
4011da177e4SLinus Torvalds 	return err;
4021da177e4SLinus Torvalds }
4031da177e4SLinus Torvalds 
4041da177e4SLinus Torvalds static int hci_sock_getname(struct socket *sock, struct sockaddr *addr, int *addr_len, int peer)
4051da177e4SLinus Torvalds {
4061da177e4SLinus Torvalds 	struct sockaddr_hci *haddr = (struct sockaddr_hci *) addr;
4071da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
4087b005bd3SMarcel Holtmann 	struct hci_dev *hdev = hci_pi(sk)->hdev;
4091da177e4SLinus Torvalds 
4101da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
4111da177e4SLinus Torvalds 
4127b005bd3SMarcel Holtmann 	if (!hdev)
4137b005bd3SMarcel Holtmann 		return -EBADFD;
4147b005bd3SMarcel Holtmann 
4151da177e4SLinus Torvalds 	lock_sock(sk);
4161da177e4SLinus Torvalds 
4171da177e4SLinus Torvalds 	*addr_len = sizeof(*haddr);
4181da177e4SLinus Torvalds 	haddr->hci_family = AF_BLUETOOTH;
4197b005bd3SMarcel Holtmann 	haddr->hci_dev    = hdev->id;
4201da177e4SLinus Torvalds 
4211da177e4SLinus Torvalds 	release_sock(sk);
4221da177e4SLinus Torvalds 	return 0;
4231da177e4SLinus Torvalds }
4241da177e4SLinus Torvalds 
4251da177e4SLinus Torvalds static inline void hci_sock_cmsg(struct sock *sk, struct msghdr *msg, struct sk_buff *skb)
4261da177e4SLinus Torvalds {
4271da177e4SLinus Torvalds 	__u32 mask = hci_pi(sk)->cmsg_mask;
4281da177e4SLinus Torvalds 
4290d48d939SMarcel Holtmann 	if (mask & HCI_CMSG_DIR) {
4300d48d939SMarcel Holtmann 		int incoming = bt_cb(skb)->incoming;
4310d48d939SMarcel Holtmann 		put_cmsg(msg, SOL_HCI, HCI_CMSG_DIR, sizeof(incoming), &incoming);
4320d48d939SMarcel Holtmann 	}
4331da177e4SLinus Torvalds 
434a61bbcf2SPatrick McHardy 	if (mask & HCI_CMSG_TSTAMP) {
435f6e623a6SJohann Felix Soden #ifdef CONFIG_COMPAT
436f6e623a6SJohann Felix Soden 		struct compat_timeval ctv;
437f6e623a6SJohann Felix Soden #endif
438a61bbcf2SPatrick McHardy 		struct timeval tv;
439767c5eb5SMarcel Holtmann 		void *data;
440767c5eb5SMarcel Holtmann 		int len;
441a61bbcf2SPatrick McHardy 
442a61bbcf2SPatrick McHardy 		skb_get_timestamp(skb, &tv);
443767c5eb5SMarcel Holtmann 
4441da97f83SDavid S. Miller 		data = &tv;
4451da97f83SDavid S. Miller 		len = sizeof(tv);
4461da97f83SDavid S. Miller #ifdef CONFIG_COMPAT
447767c5eb5SMarcel Holtmann 		if (msg->msg_flags & MSG_CMSG_COMPAT) {
448767c5eb5SMarcel Holtmann 			ctv.tv_sec = tv.tv_sec;
449767c5eb5SMarcel Holtmann 			ctv.tv_usec = tv.tv_usec;
450767c5eb5SMarcel Holtmann 			data = &ctv;
451767c5eb5SMarcel Holtmann 			len = sizeof(ctv);
452767c5eb5SMarcel Holtmann 		}
4531da97f83SDavid S. Miller #endif
454767c5eb5SMarcel Holtmann 
455767c5eb5SMarcel Holtmann 		put_cmsg(msg, SOL_HCI, HCI_CMSG_TSTAMP, len, data);
456a61bbcf2SPatrick McHardy 	}
4571da177e4SLinus Torvalds }
4581da177e4SLinus Torvalds 
4591da177e4SLinus Torvalds static int hci_sock_recvmsg(struct kiocb *iocb, struct socket *sock,
4601da177e4SLinus Torvalds 				struct msghdr *msg, size_t len, int flags)
4611da177e4SLinus Torvalds {
4621da177e4SLinus Torvalds 	int noblock = flags & MSG_DONTWAIT;
4631da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
4641da177e4SLinus Torvalds 	struct sk_buff *skb;
4651da177e4SLinus Torvalds 	int copied, err;
4661da177e4SLinus Torvalds 
4671da177e4SLinus Torvalds 	BT_DBG("sock %p, sk %p", sock, sk);
4681da177e4SLinus Torvalds 
4691da177e4SLinus Torvalds 	if (flags & (MSG_OOB))
4701da177e4SLinus Torvalds 		return -EOPNOTSUPP;
4711da177e4SLinus Torvalds 
4721da177e4SLinus Torvalds 	if (sk->sk_state == BT_CLOSED)
4731da177e4SLinus Torvalds 		return 0;
4741da177e4SLinus Torvalds 
47570f23020SAndrei Emeltchenko 	skb = skb_recv_datagram(sk, flags, noblock, &err);
47670f23020SAndrei Emeltchenko 	if (!skb)
4771da177e4SLinus Torvalds 		return err;
4781da177e4SLinus Torvalds 
4791da177e4SLinus Torvalds 	msg->msg_namelen = 0;
4801da177e4SLinus Torvalds 
4811da177e4SLinus Torvalds 	copied = skb->len;
4821da177e4SLinus Torvalds 	if (len < copied) {
4831da177e4SLinus Torvalds 		msg->msg_flags |= MSG_TRUNC;
4841da177e4SLinus Torvalds 		copied = len;
4851da177e4SLinus Torvalds 	}
4861da177e4SLinus Torvalds 
487badff6d0SArnaldo Carvalho de Melo 	skb_reset_transport_header(skb);
4881da177e4SLinus Torvalds 	err = skb_copy_datagram_iovec(skb, 0, msg->msg_iov, copied);
4891da177e4SLinus Torvalds 
4901da177e4SLinus Torvalds 	hci_sock_cmsg(sk, msg, skb);
4911da177e4SLinus Torvalds 
4921da177e4SLinus Torvalds 	skb_free_datagram(sk, skb);
4931da177e4SLinus Torvalds 
4941da177e4SLinus Torvalds 	return err ? : copied;
4951da177e4SLinus Torvalds }
4961da177e4SLinus Torvalds 
4971da177e4SLinus Torvalds static int hci_sock_sendmsg(struct kiocb *iocb, struct socket *sock,
4981da177e4SLinus Torvalds 			    struct msghdr *msg, size_t len)
4991da177e4SLinus Torvalds {
5001da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
5011da177e4SLinus Torvalds 	struct hci_dev *hdev;
5021da177e4SLinus Torvalds 	struct sk_buff *skb;
5031da177e4SLinus Torvalds 	int err;
5041da177e4SLinus Torvalds 
5051da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
5061da177e4SLinus Torvalds 
5071da177e4SLinus Torvalds 	if (msg->msg_flags & MSG_OOB)
5081da177e4SLinus Torvalds 		return -EOPNOTSUPP;
5091da177e4SLinus Torvalds 
5101da177e4SLinus Torvalds 	if (msg->msg_flags & ~(MSG_DONTWAIT|MSG_NOSIGNAL|MSG_ERRQUEUE))
5111da177e4SLinus Torvalds 		return -EINVAL;
5121da177e4SLinus Torvalds 
5131da177e4SLinus Torvalds 	if (len < 4 || len > HCI_MAX_FRAME_SIZE)
5141da177e4SLinus Torvalds 		return -EINVAL;
5151da177e4SLinus Torvalds 
5161da177e4SLinus Torvalds 	lock_sock(sk);
5171da177e4SLinus Torvalds 
518*0381101fSJohan Hedberg 	switch (hci_pi(sk)->channel) {
519*0381101fSJohan Hedberg 	case HCI_CHANNEL_RAW:
520*0381101fSJohan Hedberg 		break;
521*0381101fSJohan Hedberg 	case HCI_CHANNEL_CONTROL:
522*0381101fSJohan Hedberg 		err = mgmt_control(sk, msg, len);
523*0381101fSJohan Hedberg 		goto done;
524*0381101fSJohan Hedberg 	default:
525*0381101fSJohan Hedberg 		err = -EINVAL;
526*0381101fSJohan Hedberg 		goto done;
527*0381101fSJohan Hedberg 	}
528*0381101fSJohan Hedberg 
52970f23020SAndrei Emeltchenko 	hdev = hci_pi(sk)->hdev;
53070f23020SAndrei Emeltchenko 	if (!hdev) {
5311da177e4SLinus Torvalds 		err = -EBADFD;
5321da177e4SLinus Torvalds 		goto done;
5331da177e4SLinus Torvalds 	}
5341da177e4SLinus Torvalds 
5357e21addcSMarcel Holtmann 	if (!test_bit(HCI_UP, &hdev->flags)) {
5367e21addcSMarcel Holtmann 		err = -ENETDOWN;
5377e21addcSMarcel Holtmann 		goto done;
5387e21addcSMarcel Holtmann 	}
5397e21addcSMarcel Holtmann 
54070f23020SAndrei Emeltchenko 	skb = bt_skb_send_alloc(sk, len, msg->msg_flags & MSG_DONTWAIT, &err);
54170f23020SAndrei Emeltchenko 	if (!skb)
5421da177e4SLinus Torvalds 		goto done;
5431da177e4SLinus Torvalds 
5441da177e4SLinus Torvalds 	if (memcpy_fromiovec(skb_put(skb, len), msg->msg_iov, len)) {
5451da177e4SLinus Torvalds 		err = -EFAULT;
5461da177e4SLinus Torvalds 		goto drop;
5471da177e4SLinus Torvalds 	}
5481da177e4SLinus Torvalds 
5490d48d939SMarcel Holtmann 	bt_cb(skb)->pkt_type = *((unsigned char *) skb->data);
5501da177e4SLinus Torvalds 	skb_pull(skb, 1);
5511da177e4SLinus Torvalds 	skb->dev = (void *) hdev;
5521da177e4SLinus Torvalds 
5530d48d939SMarcel Holtmann 	if (bt_cb(skb)->pkt_type == HCI_COMMAND_PKT) {
55483985319SHarvey Harrison 		u16 opcode = get_unaligned_le16(skb->data);
5551da177e4SLinus Torvalds 		u16 ogf = hci_opcode_ogf(opcode);
5561da177e4SLinus Torvalds 		u16 ocf = hci_opcode_ocf(opcode);
5571da177e4SLinus Torvalds 
5581da177e4SLinus Torvalds 		if (((ogf > HCI_SFLT_MAX_OGF) ||
5591da177e4SLinus Torvalds 				!hci_test_bit(ocf & HCI_FLT_OCF_BITS, &hci_sec_filter.ocf_mask[ogf])) &&
5601da177e4SLinus Torvalds 					!capable(CAP_NET_RAW)) {
5611da177e4SLinus Torvalds 			err = -EPERM;
5621da177e4SLinus Torvalds 			goto drop;
5631da177e4SLinus Torvalds 		}
5641da177e4SLinus Torvalds 
565a9de9248SMarcel Holtmann 		if (test_bit(HCI_RAW, &hdev->flags) || (ogf == 0x3f)) {
5661da177e4SLinus Torvalds 			skb_queue_tail(&hdev->raw_q, skb);
567c78ae283SMarcel Holtmann 			tasklet_schedule(&hdev->tx_task);
5681da177e4SLinus Torvalds 		} else {
5691da177e4SLinus Torvalds 			skb_queue_tail(&hdev->cmd_q, skb);
570c78ae283SMarcel Holtmann 			tasklet_schedule(&hdev->cmd_task);
5711da177e4SLinus Torvalds 		}
5721da177e4SLinus Torvalds 	} else {
5731da177e4SLinus Torvalds 		if (!capable(CAP_NET_RAW)) {
5741da177e4SLinus Torvalds 			err = -EPERM;
5751da177e4SLinus Torvalds 			goto drop;
5761da177e4SLinus Torvalds 		}
5771da177e4SLinus Torvalds 
5781da177e4SLinus Torvalds 		skb_queue_tail(&hdev->raw_q, skb);
579c78ae283SMarcel Holtmann 		tasklet_schedule(&hdev->tx_task);
5801da177e4SLinus Torvalds 	}
5811da177e4SLinus Torvalds 
5821da177e4SLinus Torvalds 	err = len;
5831da177e4SLinus Torvalds 
5841da177e4SLinus Torvalds done:
5851da177e4SLinus Torvalds 	release_sock(sk);
5861da177e4SLinus Torvalds 	return err;
5871da177e4SLinus Torvalds 
5881da177e4SLinus Torvalds drop:
5891da177e4SLinus Torvalds 	kfree_skb(skb);
5901da177e4SLinus Torvalds 	goto done;
5911da177e4SLinus Torvalds }
5921da177e4SLinus Torvalds 
593b7058842SDavid S. Miller static int hci_sock_setsockopt(struct socket *sock, int level, int optname, char __user *optval, unsigned int len)
5941da177e4SLinus Torvalds {
5951da177e4SLinus Torvalds 	struct hci_ufilter uf = { .opcode = 0 };
5961da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
5971da177e4SLinus Torvalds 	int err = 0, opt = 0;
5981da177e4SLinus Torvalds 
5991da177e4SLinus Torvalds 	BT_DBG("sk %p, opt %d", sk, optname);
6001da177e4SLinus Torvalds 
6011da177e4SLinus Torvalds 	lock_sock(sk);
6021da177e4SLinus Torvalds 
6031da177e4SLinus Torvalds 	switch (optname) {
6041da177e4SLinus Torvalds 	case HCI_DATA_DIR:
6051da177e4SLinus Torvalds 		if (get_user(opt, (int __user *)optval)) {
6061da177e4SLinus Torvalds 			err = -EFAULT;
6071da177e4SLinus Torvalds 			break;
6081da177e4SLinus Torvalds 		}
6091da177e4SLinus Torvalds 
6101da177e4SLinus Torvalds 		if (opt)
6111da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask |= HCI_CMSG_DIR;
6121da177e4SLinus Torvalds 		else
6131da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask &= ~HCI_CMSG_DIR;
6141da177e4SLinus Torvalds 		break;
6151da177e4SLinus Torvalds 
6161da177e4SLinus Torvalds 	case HCI_TIME_STAMP:
6171da177e4SLinus Torvalds 		if (get_user(opt, (int __user *)optval)) {
6181da177e4SLinus Torvalds 			err = -EFAULT;
6191da177e4SLinus Torvalds 			break;
6201da177e4SLinus Torvalds 		}
6211da177e4SLinus Torvalds 
6221da177e4SLinus Torvalds 		if (opt)
6231da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask |= HCI_CMSG_TSTAMP;
6241da177e4SLinus Torvalds 		else
6251da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask &= ~HCI_CMSG_TSTAMP;
6261da177e4SLinus Torvalds 		break;
6271da177e4SLinus Torvalds 
6281da177e4SLinus Torvalds 	case HCI_FILTER:
6290878b666SMarcel Holtmann 		{
6300878b666SMarcel Holtmann 			struct hci_filter *f = &hci_pi(sk)->filter;
6310878b666SMarcel Holtmann 
6320878b666SMarcel Holtmann 			uf.type_mask = f->type_mask;
6330878b666SMarcel Holtmann 			uf.opcode    = f->opcode;
6340878b666SMarcel Holtmann 			uf.event_mask[0] = *((u32 *) f->event_mask + 0);
6350878b666SMarcel Holtmann 			uf.event_mask[1] = *((u32 *) f->event_mask + 1);
6360878b666SMarcel Holtmann 		}
6370878b666SMarcel Holtmann 
6381da177e4SLinus Torvalds 		len = min_t(unsigned int, len, sizeof(uf));
6391da177e4SLinus Torvalds 		if (copy_from_user(&uf, optval, len)) {
6401da177e4SLinus Torvalds 			err = -EFAULT;
6411da177e4SLinus Torvalds 			break;
6421da177e4SLinus Torvalds 		}
6431da177e4SLinus Torvalds 
6441da177e4SLinus Torvalds 		if (!capable(CAP_NET_RAW)) {
6451da177e4SLinus Torvalds 			uf.type_mask &= hci_sec_filter.type_mask;
6461da177e4SLinus Torvalds 			uf.event_mask[0] &= *((u32 *) hci_sec_filter.event_mask + 0);
6471da177e4SLinus Torvalds 			uf.event_mask[1] &= *((u32 *) hci_sec_filter.event_mask + 1);
6481da177e4SLinus Torvalds 		}
6491da177e4SLinus Torvalds 
6501da177e4SLinus Torvalds 		{
6511da177e4SLinus Torvalds 			struct hci_filter *f = &hci_pi(sk)->filter;
6521da177e4SLinus Torvalds 
6531da177e4SLinus Torvalds 			f->type_mask = uf.type_mask;
6541da177e4SLinus Torvalds 			f->opcode    = uf.opcode;
6551da177e4SLinus Torvalds 			*((u32 *) f->event_mask + 0) = uf.event_mask[0];
6561da177e4SLinus Torvalds 			*((u32 *) f->event_mask + 1) = uf.event_mask[1];
6571da177e4SLinus Torvalds 		}
6581da177e4SLinus Torvalds 		break;
6591da177e4SLinus Torvalds 
6601da177e4SLinus Torvalds 	default:
6611da177e4SLinus Torvalds 		err = -ENOPROTOOPT;
6621da177e4SLinus Torvalds 		break;
6631da177e4SLinus Torvalds 	}
6641da177e4SLinus Torvalds 
6651da177e4SLinus Torvalds 	release_sock(sk);
6661da177e4SLinus Torvalds 	return err;
6671da177e4SLinus Torvalds }
6681da177e4SLinus Torvalds 
6691da177e4SLinus Torvalds static int hci_sock_getsockopt(struct socket *sock, int level, int optname, char __user *optval, int __user *optlen)
6701da177e4SLinus Torvalds {
6711da177e4SLinus Torvalds 	struct hci_ufilter uf;
6721da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
6731da177e4SLinus Torvalds 	int len, opt;
6741da177e4SLinus Torvalds 
6751da177e4SLinus Torvalds 	if (get_user(len, optlen))
6761da177e4SLinus Torvalds 		return -EFAULT;
6771da177e4SLinus Torvalds 
6781da177e4SLinus Torvalds 	switch (optname) {
6791da177e4SLinus Torvalds 	case HCI_DATA_DIR:
6801da177e4SLinus Torvalds 		if (hci_pi(sk)->cmsg_mask & HCI_CMSG_DIR)
6811da177e4SLinus Torvalds 			opt = 1;
6821da177e4SLinus Torvalds 		else
6831da177e4SLinus Torvalds 			opt = 0;
6841da177e4SLinus Torvalds 
6851da177e4SLinus Torvalds 		if (put_user(opt, optval))
6861da177e4SLinus Torvalds 			return -EFAULT;
6871da177e4SLinus Torvalds 		break;
6881da177e4SLinus Torvalds 
6891da177e4SLinus Torvalds 	case HCI_TIME_STAMP:
6901da177e4SLinus Torvalds 		if (hci_pi(sk)->cmsg_mask & HCI_CMSG_TSTAMP)
6911da177e4SLinus Torvalds 			opt = 1;
6921da177e4SLinus Torvalds 		else
6931da177e4SLinus Torvalds 			opt = 0;
6941da177e4SLinus Torvalds 
6951da177e4SLinus Torvalds 		if (put_user(opt, optval))
6961da177e4SLinus Torvalds 			return -EFAULT;
6971da177e4SLinus Torvalds 		break;
6981da177e4SLinus Torvalds 
6991da177e4SLinus Torvalds 	case HCI_FILTER:
7001da177e4SLinus Torvalds 		{
7011da177e4SLinus Torvalds 			struct hci_filter *f = &hci_pi(sk)->filter;
7021da177e4SLinus Torvalds 
7031da177e4SLinus Torvalds 			uf.type_mask = f->type_mask;
7041da177e4SLinus Torvalds 			uf.opcode    = f->opcode;
7051da177e4SLinus Torvalds 			uf.event_mask[0] = *((u32 *) f->event_mask + 0);
7061da177e4SLinus Torvalds 			uf.event_mask[1] = *((u32 *) f->event_mask + 1);
7071da177e4SLinus Torvalds 		}
7081da177e4SLinus Torvalds 
7091da177e4SLinus Torvalds 		len = min_t(unsigned int, len, sizeof(uf));
7101da177e4SLinus Torvalds 		if (copy_to_user(optval, &uf, len))
7111da177e4SLinus Torvalds 			return -EFAULT;
7121da177e4SLinus Torvalds 		break;
7131da177e4SLinus Torvalds 
7141da177e4SLinus Torvalds 	default:
7151da177e4SLinus Torvalds 		return -ENOPROTOOPT;
7161da177e4SLinus Torvalds 		break;
7171da177e4SLinus Torvalds 	}
7181da177e4SLinus Torvalds 
7191da177e4SLinus Torvalds 	return 0;
7201da177e4SLinus Torvalds }
7211da177e4SLinus Torvalds 
72290ddc4f0SEric Dumazet static const struct proto_ops hci_sock_ops = {
7231da177e4SLinus Torvalds 	.family		= PF_BLUETOOTH,
7241da177e4SLinus Torvalds 	.owner		= THIS_MODULE,
7251da177e4SLinus Torvalds 	.release	= hci_sock_release,
7261da177e4SLinus Torvalds 	.bind		= hci_sock_bind,
7271da177e4SLinus Torvalds 	.getname	= hci_sock_getname,
7281da177e4SLinus Torvalds 	.sendmsg	= hci_sock_sendmsg,
7291da177e4SLinus Torvalds 	.recvmsg	= hci_sock_recvmsg,
7301da177e4SLinus Torvalds 	.ioctl		= hci_sock_ioctl,
7311da177e4SLinus Torvalds 	.poll		= datagram_poll,
7321da177e4SLinus Torvalds 	.listen		= sock_no_listen,
7331da177e4SLinus Torvalds 	.shutdown	= sock_no_shutdown,
7341da177e4SLinus Torvalds 	.setsockopt	= hci_sock_setsockopt,
7351da177e4SLinus Torvalds 	.getsockopt	= hci_sock_getsockopt,
7361da177e4SLinus Torvalds 	.connect	= sock_no_connect,
7371da177e4SLinus Torvalds 	.socketpair	= sock_no_socketpair,
7381da177e4SLinus Torvalds 	.accept		= sock_no_accept,
7391da177e4SLinus Torvalds 	.mmap		= sock_no_mmap
7401da177e4SLinus Torvalds };
7411da177e4SLinus Torvalds 
7421da177e4SLinus Torvalds static struct proto hci_sk_proto = {
7431da177e4SLinus Torvalds 	.name		= "HCI",
7441da177e4SLinus Torvalds 	.owner		= THIS_MODULE,
7451da177e4SLinus Torvalds 	.obj_size	= sizeof(struct hci_pinfo)
7461da177e4SLinus Torvalds };
7471da177e4SLinus Torvalds 
7483f378b68SEric Paris static int hci_sock_create(struct net *net, struct socket *sock, int protocol,
7493f378b68SEric Paris 			   int kern)
7501da177e4SLinus Torvalds {
7511da177e4SLinus Torvalds 	struct sock *sk;
7521da177e4SLinus Torvalds 
7531da177e4SLinus Torvalds 	BT_DBG("sock %p", sock);
7541da177e4SLinus Torvalds 
7551da177e4SLinus Torvalds 	if (sock->type != SOCK_RAW)
7561da177e4SLinus Torvalds 		return -ESOCKTNOSUPPORT;
7571da177e4SLinus Torvalds 
7581da177e4SLinus Torvalds 	sock->ops = &hci_sock_ops;
7591da177e4SLinus Torvalds 
7606257ff21SPavel Emelyanov 	sk = sk_alloc(net, PF_BLUETOOTH, GFP_ATOMIC, &hci_sk_proto);
7611da177e4SLinus Torvalds 	if (!sk)
7621da177e4SLinus Torvalds 		return -ENOMEM;
7631da177e4SLinus Torvalds 
7641da177e4SLinus Torvalds 	sock_init_data(sock, sk);
7651da177e4SLinus Torvalds 
7661da177e4SLinus Torvalds 	sock_reset_flag(sk, SOCK_ZAPPED);
7671da177e4SLinus Torvalds 
7681da177e4SLinus Torvalds 	sk->sk_protocol = protocol;
7691da177e4SLinus Torvalds 
7701da177e4SLinus Torvalds 	sock->state = SS_UNCONNECTED;
7711da177e4SLinus Torvalds 	sk->sk_state = BT_OPEN;
7721da177e4SLinus Torvalds 
7731da177e4SLinus Torvalds 	bt_sock_link(&hci_sk_list, sk);
7741da177e4SLinus Torvalds 	return 0;
7751da177e4SLinus Torvalds }
7761da177e4SLinus Torvalds 
7771da177e4SLinus Torvalds static int hci_sock_dev_event(struct notifier_block *this, unsigned long event, void *ptr)
7781da177e4SLinus Torvalds {
7791da177e4SLinus Torvalds 	struct hci_dev *hdev = (struct hci_dev *) ptr;
7801da177e4SLinus Torvalds 	struct hci_ev_si_device ev;
7811da177e4SLinus Torvalds 
7821da177e4SLinus Torvalds 	BT_DBG("hdev %s event %ld", hdev->name, event);
7831da177e4SLinus Torvalds 
7841da177e4SLinus Torvalds 	/* Send event to sockets */
7851da177e4SLinus Torvalds 	ev.event  = event;
7861da177e4SLinus Torvalds 	ev.dev_id = hdev->id;
7871da177e4SLinus Torvalds 	hci_si_event(NULL, HCI_EV_SI_DEVICE, sizeof(ev), &ev);
7881da177e4SLinus Torvalds 
7891da177e4SLinus Torvalds 	if (event == HCI_DEV_UNREG) {
7901da177e4SLinus Torvalds 		struct sock *sk;
7911da177e4SLinus Torvalds 		struct hlist_node *node;
7921da177e4SLinus Torvalds 
7931da177e4SLinus Torvalds 		/* Detach sockets from device */
7941da177e4SLinus Torvalds 		read_lock(&hci_sk_list.lock);
7951da177e4SLinus Torvalds 		sk_for_each(sk, node, &hci_sk_list.head) {
7964ce61d1cSSatyam Sharma 			local_bh_disable();
7974ce61d1cSSatyam Sharma 			bh_lock_sock_nested(sk);
7981da177e4SLinus Torvalds 			if (hci_pi(sk)->hdev == hdev) {
7991da177e4SLinus Torvalds 				hci_pi(sk)->hdev = NULL;
8001da177e4SLinus Torvalds 				sk->sk_err = EPIPE;
8011da177e4SLinus Torvalds 				sk->sk_state = BT_OPEN;
8021da177e4SLinus Torvalds 				sk->sk_state_change(sk);
8031da177e4SLinus Torvalds 
8041da177e4SLinus Torvalds 				hci_dev_put(hdev);
8051da177e4SLinus Torvalds 			}
8064ce61d1cSSatyam Sharma 			bh_unlock_sock(sk);
8074ce61d1cSSatyam Sharma 			local_bh_enable();
8081da177e4SLinus Torvalds 		}
8091da177e4SLinus Torvalds 		read_unlock(&hci_sk_list.lock);
8101da177e4SLinus Torvalds 	}
8111da177e4SLinus Torvalds 
8121da177e4SLinus Torvalds 	return NOTIFY_DONE;
8131da177e4SLinus Torvalds }
8141da177e4SLinus Torvalds 
815ec1b4cf7SStephen Hemminger static const struct net_proto_family hci_sock_family_ops = {
8161da177e4SLinus Torvalds 	.family	= PF_BLUETOOTH,
8171da177e4SLinus Torvalds 	.owner	= THIS_MODULE,
8181da177e4SLinus Torvalds 	.create	= hci_sock_create,
8191da177e4SLinus Torvalds };
8201da177e4SLinus Torvalds 
8211da177e4SLinus Torvalds static struct notifier_block hci_sock_nblock = {
8221da177e4SLinus Torvalds 	.notifier_call = hci_sock_dev_event
8231da177e4SLinus Torvalds };
8241da177e4SLinus Torvalds 
8251da177e4SLinus Torvalds int __init hci_sock_init(void)
8261da177e4SLinus Torvalds {
8271da177e4SLinus Torvalds 	int err;
8281da177e4SLinus Torvalds 
8291da177e4SLinus Torvalds 	err = proto_register(&hci_sk_proto, 0);
8301da177e4SLinus Torvalds 	if (err < 0)
8311da177e4SLinus Torvalds 		return err;
8321da177e4SLinus Torvalds 
8331da177e4SLinus Torvalds 	err = bt_sock_register(BTPROTO_HCI, &hci_sock_family_ops);
8341da177e4SLinus Torvalds 	if (err < 0)
8351da177e4SLinus Torvalds 		goto error;
8361da177e4SLinus Torvalds 
8371da177e4SLinus Torvalds 	hci_register_notifier(&hci_sock_nblock);
8381da177e4SLinus Torvalds 
8391da177e4SLinus Torvalds 	BT_INFO("HCI socket layer initialized");
8401da177e4SLinus Torvalds 
8411da177e4SLinus Torvalds 	return 0;
8421da177e4SLinus Torvalds 
8431da177e4SLinus Torvalds error:
8441da177e4SLinus Torvalds 	BT_ERR("HCI socket registration failed");
8451da177e4SLinus Torvalds 	proto_unregister(&hci_sk_proto);
8461da177e4SLinus Torvalds 	return err;
8471da177e4SLinus Torvalds }
8481da177e4SLinus Torvalds 
84904005dd9STobias Klauser void __exit hci_sock_cleanup(void)
8501da177e4SLinus Torvalds {
8511da177e4SLinus Torvalds 	if (bt_sock_unregister(BTPROTO_HCI) < 0)
8521da177e4SLinus Torvalds 		BT_ERR("HCI socket unregistration failed");
8531da177e4SLinus Torvalds 
8541da177e4SLinus Torvalds 	hci_unregister_notifier(&hci_sock_nblock);
8551da177e4SLinus Torvalds 
8561da177e4SLinus Torvalds 	proto_unregister(&hci_sk_proto);
8571da177e4SLinus Torvalds }
858*0381101fSJohan Hedberg 
859*0381101fSJohan Hedberg module_param(enable_mgmt, bool, 0644);
860*0381101fSJohan Hedberg MODULE_PARM_DESC(enable_mgmt, "Enable Management interface");
861