xref: /openbmc/linux/net/bluetooth/hci_sock.c (revision da88cea1200b9df65a7811a3920aa5a4be7dab9f)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds    BlueZ - Bluetooth protocol stack for Linux
31da177e4SLinus Torvalds    Copyright (C) 2000-2001 Qualcomm Incorporated
41da177e4SLinus Torvalds 
51da177e4SLinus Torvalds    Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
61da177e4SLinus Torvalds 
71da177e4SLinus Torvalds    This program is free software; you can redistribute it and/or modify
81da177e4SLinus Torvalds    it under the terms of the GNU General Public License version 2 as
91da177e4SLinus Torvalds    published by the Free Software Foundation;
101da177e4SLinus Torvalds 
111da177e4SLinus Torvalds    THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
121da177e4SLinus Torvalds    OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
131da177e4SLinus Torvalds    FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
141da177e4SLinus Torvalds    IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
151da177e4SLinus Torvalds    CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
161da177e4SLinus Torvalds    WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
171da177e4SLinus Torvalds    ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
181da177e4SLinus Torvalds    OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
191da177e4SLinus Torvalds 
201da177e4SLinus Torvalds    ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
211da177e4SLinus Torvalds    COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
221da177e4SLinus Torvalds    SOFTWARE IS DISCLAIMED.
231da177e4SLinus Torvalds */
241da177e4SLinus Torvalds 
251da177e4SLinus Torvalds /* Bluetooth HCI sockets. */
261da177e4SLinus Torvalds 
271da177e4SLinus Torvalds #include <linux/module.h>
281da177e4SLinus Torvalds 
291da177e4SLinus Torvalds #include <linux/types.h>
304fc268d2SRandy Dunlap #include <linux/capability.h>
311da177e4SLinus Torvalds #include <linux/errno.h>
321da177e4SLinus Torvalds #include <linux/kernel.h>
331da177e4SLinus Torvalds #include <linux/slab.h>
341da177e4SLinus Torvalds #include <linux/poll.h>
351da177e4SLinus Torvalds #include <linux/fcntl.h>
361da177e4SLinus Torvalds #include <linux/init.h>
371da177e4SLinus Torvalds #include <linux/skbuff.h>
381da177e4SLinus Torvalds #include <linux/workqueue.h>
391da177e4SLinus Torvalds #include <linux/interrupt.h>
40767c5eb5SMarcel Holtmann #include <linux/compat.h>
411da177e4SLinus Torvalds #include <linux/socket.h>
421da177e4SLinus Torvalds #include <linux/ioctl.h>
431da177e4SLinus Torvalds #include <net/sock.h>
441da177e4SLinus Torvalds 
451da177e4SLinus Torvalds #include <asm/system.h>
4670f23020SAndrei Emeltchenko #include <linux/uaccess.h>
471da177e4SLinus Torvalds #include <asm/unaligned.h>
481da177e4SLinus Torvalds 
491da177e4SLinus Torvalds #include <net/bluetooth/bluetooth.h>
501da177e4SLinus Torvalds #include <net/bluetooth/hci_core.h>
511da177e4SLinus Torvalds 
52eb939922SRusty Russell static bool enable_mgmt;
530381101fSJohan Hedberg 
541da177e4SLinus Torvalds /* ----- HCI socket interface ----- */
551da177e4SLinus Torvalds 
561da177e4SLinus Torvalds static inline int hci_test_bit(int nr, void *addr)
571da177e4SLinus Torvalds {
581da177e4SLinus Torvalds 	return *((__u32 *) addr + (nr >> 5)) & ((__u32) 1 << (nr & 31));
591da177e4SLinus Torvalds }
601da177e4SLinus Torvalds 
611da177e4SLinus Torvalds /* Security filter */
621da177e4SLinus Torvalds static struct hci_sec_filter hci_sec_filter = {
631da177e4SLinus Torvalds 	/* Packet types */
641da177e4SLinus Torvalds 	0x10,
651da177e4SLinus Torvalds 	/* Events */
66dd7f5527SMarcel Holtmann 	{ 0x1000d9fe, 0x0000b00c },
671da177e4SLinus Torvalds 	/* Commands */
681da177e4SLinus Torvalds 	{
691da177e4SLinus Torvalds 		{ 0x0 },
701da177e4SLinus Torvalds 		/* OGF_LINK_CTL */
717c631a67SMarcel Holtmann 		{ 0xbe000006, 0x00000001, 0x00000000, 0x00 },
721da177e4SLinus Torvalds 		/* OGF_LINK_POLICY */
737c631a67SMarcel Holtmann 		{ 0x00005200, 0x00000000, 0x00000000, 0x00 },
741da177e4SLinus Torvalds 		/* OGF_HOST_CTL */
757c631a67SMarcel Holtmann 		{ 0xaab00200, 0x2b402aaa, 0x05220154, 0x00 },
761da177e4SLinus Torvalds 		/* OGF_INFO_PARAM */
777c631a67SMarcel Holtmann 		{ 0x000002be, 0x00000000, 0x00000000, 0x00 },
781da177e4SLinus Torvalds 		/* OGF_STATUS_PARAM */
797c631a67SMarcel Holtmann 		{ 0x000000ea, 0x00000000, 0x00000000, 0x00 }
801da177e4SLinus Torvalds 	}
811da177e4SLinus Torvalds };
821da177e4SLinus Torvalds 
831da177e4SLinus Torvalds static struct bt_sock_list hci_sk_list = {
84d5fb2962SRobert P. J. Day 	.lock = __RW_LOCK_UNLOCKED(hci_sk_list.lock)
851da177e4SLinus Torvalds };
861da177e4SLinus Torvalds 
871da177e4SLinus Torvalds /* Send frame to RAW socket */
88eec8d2bcSJohan Hedberg void hci_send_to_sock(struct hci_dev *hdev, struct sk_buff *skb,
89eec8d2bcSJohan Hedberg 							struct sock *skip_sk)
901da177e4SLinus Torvalds {
911da177e4SLinus Torvalds 	struct sock *sk;
921da177e4SLinus Torvalds 	struct hlist_node *node;
931da177e4SLinus Torvalds 
941da177e4SLinus Torvalds 	BT_DBG("hdev %p len %d", hdev, skb->len);
951da177e4SLinus Torvalds 
961da177e4SLinus Torvalds 	read_lock(&hci_sk_list.lock);
971da177e4SLinus Torvalds 	sk_for_each(sk, node, &hci_sk_list.head) {
981da177e4SLinus Torvalds 		struct hci_filter *flt;
991da177e4SLinus Torvalds 		struct sk_buff *nskb;
1001da177e4SLinus Torvalds 
101eec8d2bcSJohan Hedberg 		if (sk == skip_sk)
102eec8d2bcSJohan Hedberg 			continue;
103eec8d2bcSJohan Hedberg 
1041da177e4SLinus Torvalds 		if (sk->sk_state != BT_BOUND || hci_pi(sk)->hdev != hdev)
1051da177e4SLinus Torvalds 			continue;
1061da177e4SLinus Torvalds 
1071da177e4SLinus Torvalds 		/* Don't send frame to the socket it came from */
1081da177e4SLinus Torvalds 		if (skb->sk == sk)
1091da177e4SLinus Torvalds 			continue;
1101da177e4SLinus Torvalds 
111a40c406cSJohan Hedberg 		if (bt_cb(skb)->channel != hci_pi(sk)->channel)
112a40c406cSJohan Hedberg 			continue;
113a40c406cSJohan Hedberg 
114a40c406cSJohan Hedberg 		if (bt_cb(skb)->channel == HCI_CHANNEL_CONTROL)
115a40c406cSJohan Hedberg 			goto clone;
116a40c406cSJohan Hedberg 
1171da177e4SLinus Torvalds 		/* Apply filter */
1181da177e4SLinus Torvalds 		flt = &hci_pi(sk)->filter;
1191da177e4SLinus Torvalds 
1200d48d939SMarcel Holtmann 		if (!test_bit((bt_cb(skb)->pkt_type == HCI_VENDOR_PKT) ?
1210d48d939SMarcel Holtmann 				0 : (bt_cb(skb)->pkt_type & HCI_FLT_TYPE_BITS), &flt->type_mask))
1221da177e4SLinus Torvalds 			continue;
1231da177e4SLinus Torvalds 
1240d48d939SMarcel Holtmann 		if (bt_cb(skb)->pkt_type == HCI_EVENT_PKT) {
1251da177e4SLinus Torvalds 			register int evt = (*(__u8 *)skb->data & HCI_FLT_EVENT_BITS);
1261da177e4SLinus Torvalds 
1271da177e4SLinus Torvalds 			if (!hci_test_bit(evt, &flt->event_mask))
1281da177e4SLinus Torvalds 				continue;
1291da177e4SLinus Torvalds 
1304498c80dSDavid S. Miller 			if (flt->opcode &&
1314498c80dSDavid S. Miller 			    ((evt == HCI_EV_CMD_COMPLETE &&
1324498c80dSDavid S. Miller 			      flt->opcode !=
133905f3ed6SAl Viro 			      get_unaligned((__le16 *)(skb->data + 3))) ||
1341da177e4SLinus Torvalds 			     (evt == HCI_EV_CMD_STATUS &&
1354498c80dSDavid S. Miller 			      flt->opcode !=
136905f3ed6SAl Viro 			      get_unaligned((__le16 *)(skb->data + 4)))))
1371da177e4SLinus Torvalds 				continue;
1381da177e4SLinus Torvalds 		}
1391da177e4SLinus Torvalds 
140a40c406cSJohan Hedberg clone:
14170f23020SAndrei Emeltchenko 		nskb = skb_clone(skb, GFP_ATOMIC);
14270f23020SAndrei Emeltchenko 		if (!nskb)
1431da177e4SLinus Torvalds 			continue;
1441da177e4SLinus Torvalds 
1451da177e4SLinus Torvalds 		/* Put type byte before the data */
146a40c406cSJohan Hedberg 		if (bt_cb(skb)->channel == HCI_CHANNEL_RAW)
1470d48d939SMarcel Holtmann 			memcpy(skb_push(nskb, 1), &bt_cb(nskb)->pkt_type, 1);
1481da177e4SLinus Torvalds 
1491da177e4SLinus Torvalds 		if (sock_queue_rcv_skb(sk, nskb))
1501da177e4SLinus Torvalds 			kfree_skb(nskb);
1511da177e4SLinus Torvalds 	}
1521da177e4SLinus Torvalds 	read_unlock(&hci_sk_list.lock);
1531da177e4SLinus Torvalds }
1541da177e4SLinus Torvalds 
1551da177e4SLinus Torvalds static int hci_sock_release(struct socket *sock)
1561da177e4SLinus Torvalds {
1571da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
1587b005bd3SMarcel Holtmann 	struct hci_dev *hdev;
1591da177e4SLinus Torvalds 
1601da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
1611da177e4SLinus Torvalds 
1621da177e4SLinus Torvalds 	if (!sk)
1631da177e4SLinus Torvalds 		return 0;
1641da177e4SLinus Torvalds 
1657b005bd3SMarcel Holtmann 	hdev = hci_pi(sk)->hdev;
1667b005bd3SMarcel Holtmann 
1671da177e4SLinus Torvalds 	bt_sock_unlink(&hci_sk_list, sk);
1681da177e4SLinus Torvalds 
1691da177e4SLinus Torvalds 	if (hdev) {
1701da177e4SLinus Torvalds 		atomic_dec(&hdev->promisc);
1711da177e4SLinus Torvalds 		hci_dev_put(hdev);
1721da177e4SLinus Torvalds 	}
1731da177e4SLinus Torvalds 
1741da177e4SLinus Torvalds 	sock_orphan(sk);
1751da177e4SLinus Torvalds 
1761da177e4SLinus Torvalds 	skb_queue_purge(&sk->sk_receive_queue);
1771da177e4SLinus Torvalds 	skb_queue_purge(&sk->sk_write_queue);
1781da177e4SLinus Torvalds 
1791da177e4SLinus Torvalds 	sock_put(sk);
1801da177e4SLinus Torvalds 	return 0;
1811da177e4SLinus Torvalds }
1821da177e4SLinus Torvalds 
183b2a66aadSAntti Julku static int hci_sock_blacklist_add(struct hci_dev *hdev, void __user *arg)
184f0358568SJohan Hedberg {
185f0358568SJohan Hedberg 	bdaddr_t bdaddr;
1865e762444SAntti Julku 	int err;
187f0358568SJohan Hedberg 
188f0358568SJohan Hedberg 	if (copy_from_user(&bdaddr, arg, sizeof(bdaddr)))
189f0358568SJohan Hedberg 		return -EFAULT;
190f0358568SJohan Hedberg 
19109fd0de5SGustavo F. Padovan 	hci_dev_lock(hdev);
1925e762444SAntti Julku 
1935e762444SAntti Julku 	err = hci_blacklist_add(hdev, &bdaddr);
1945e762444SAntti Julku 
19509fd0de5SGustavo F. Padovan 	hci_dev_unlock(hdev);
1965e762444SAntti Julku 
1975e762444SAntti Julku 	return err;
198f0358568SJohan Hedberg }
199f0358568SJohan Hedberg 
200b2a66aadSAntti Julku static int hci_sock_blacklist_del(struct hci_dev *hdev, void __user *arg)
201f0358568SJohan Hedberg {
202f0358568SJohan Hedberg 	bdaddr_t bdaddr;
2035e762444SAntti Julku 	int err;
204f0358568SJohan Hedberg 
205f0358568SJohan Hedberg 	if (copy_from_user(&bdaddr, arg, sizeof(bdaddr)))
206f0358568SJohan Hedberg 		return -EFAULT;
207f0358568SJohan Hedberg 
20809fd0de5SGustavo F. Padovan 	hci_dev_lock(hdev);
2095e762444SAntti Julku 
2105e762444SAntti Julku 	err = hci_blacklist_del(hdev, &bdaddr);
2115e762444SAntti Julku 
21209fd0de5SGustavo F. Padovan 	hci_dev_unlock(hdev);
2135e762444SAntti Julku 
2145e762444SAntti Julku 	return err;
215f0358568SJohan Hedberg }
216f0358568SJohan Hedberg 
2171da177e4SLinus Torvalds /* Ioctls that require bound socket */
2181da177e4SLinus Torvalds static inline int hci_sock_bound_ioctl(struct sock *sk, unsigned int cmd, unsigned long arg)
2191da177e4SLinus Torvalds {
2201da177e4SLinus Torvalds 	struct hci_dev *hdev = hci_pi(sk)->hdev;
2211da177e4SLinus Torvalds 
2221da177e4SLinus Torvalds 	if (!hdev)
2231da177e4SLinus Torvalds 		return -EBADFD;
2241da177e4SLinus Torvalds 
2251da177e4SLinus Torvalds 	switch (cmd) {
2261da177e4SLinus Torvalds 	case HCISETRAW:
2271da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2281da177e4SLinus Torvalds 			return -EACCES;
2291da177e4SLinus Torvalds 
2301da177e4SLinus Torvalds 		if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
2311da177e4SLinus Torvalds 			return -EPERM;
2321da177e4SLinus Torvalds 
2331da177e4SLinus Torvalds 		if (arg)
2341da177e4SLinus Torvalds 			set_bit(HCI_RAW, &hdev->flags);
2351da177e4SLinus Torvalds 		else
2361da177e4SLinus Torvalds 			clear_bit(HCI_RAW, &hdev->flags);
2371da177e4SLinus Torvalds 
2381da177e4SLinus Torvalds 		return 0;
2391da177e4SLinus Torvalds 
2401da177e4SLinus Torvalds 	case HCIGETCONNINFO:
2411da177e4SLinus Torvalds 		return hci_get_conn_info(hdev, (void __user *) arg);
2421da177e4SLinus Torvalds 
24340be492fSMarcel Holtmann 	case HCIGETAUTHINFO:
24440be492fSMarcel Holtmann 		return hci_get_auth_info(hdev, (void __user *) arg);
24540be492fSMarcel Holtmann 
246f0358568SJohan Hedberg 	case HCIBLOCKADDR:
247f0358568SJohan Hedberg 		if (!capable(CAP_NET_ADMIN))
248f0358568SJohan Hedberg 			return -EACCES;
249b2a66aadSAntti Julku 		return hci_sock_blacklist_add(hdev, (void __user *) arg);
250f0358568SJohan Hedberg 
251f0358568SJohan Hedberg 	case HCIUNBLOCKADDR:
252f0358568SJohan Hedberg 		if (!capable(CAP_NET_ADMIN))
253f0358568SJohan Hedberg 			return -EACCES;
254b2a66aadSAntti Julku 		return hci_sock_blacklist_del(hdev, (void __user *) arg);
255f0358568SJohan Hedberg 
2561da177e4SLinus Torvalds 	default:
2571da177e4SLinus Torvalds 		if (hdev->ioctl)
2581da177e4SLinus Torvalds 			return hdev->ioctl(hdev, cmd, arg);
2591da177e4SLinus Torvalds 		return -EINVAL;
2601da177e4SLinus Torvalds 	}
2611da177e4SLinus Torvalds }
2621da177e4SLinus Torvalds 
2631da177e4SLinus Torvalds static int hci_sock_ioctl(struct socket *sock, unsigned int cmd, unsigned long arg)
2641da177e4SLinus Torvalds {
2651da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
2661da177e4SLinus Torvalds 	void __user *argp = (void __user *) arg;
2671da177e4SLinus Torvalds 	int err;
2681da177e4SLinus Torvalds 
2691da177e4SLinus Torvalds 	BT_DBG("cmd %x arg %lx", cmd, arg);
2701da177e4SLinus Torvalds 
2711da177e4SLinus Torvalds 	switch (cmd) {
2721da177e4SLinus Torvalds 	case HCIGETDEVLIST:
2731da177e4SLinus Torvalds 		return hci_get_dev_list(argp);
2741da177e4SLinus Torvalds 
2751da177e4SLinus Torvalds 	case HCIGETDEVINFO:
2761da177e4SLinus Torvalds 		return hci_get_dev_info(argp);
2771da177e4SLinus Torvalds 
2781da177e4SLinus Torvalds 	case HCIGETCONNLIST:
2791da177e4SLinus Torvalds 		return hci_get_conn_list(argp);
2801da177e4SLinus Torvalds 
2811da177e4SLinus Torvalds 	case HCIDEVUP:
2821da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2831da177e4SLinus Torvalds 			return -EACCES;
2841da177e4SLinus Torvalds 		return hci_dev_open(arg);
2851da177e4SLinus Torvalds 
2861da177e4SLinus Torvalds 	case HCIDEVDOWN:
2871da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2881da177e4SLinus Torvalds 			return -EACCES;
2891da177e4SLinus Torvalds 		return hci_dev_close(arg);
2901da177e4SLinus Torvalds 
2911da177e4SLinus Torvalds 	case HCIDEVRESET:
2921da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2931da177e4SLinus Torvalds 			return -EACCES;
2941da177e4SLinus Torvalds 		return hci_dev_reset(arg);
2951da177e4SLinus Torvalds 
2961da177e4SLinus Torvalds 	case HCIDEVRESTAT:
2971da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
2981da177e4SLinus Torvalds 			return -EACCES;
2991da177e4SLinus Torvalds 		return hci_dev_reset_stat(arg);
3001da177e4SLinus Torvalds 
3011da177e4SLinus Torvalds 	case HCISETSCAN:
3021da177e4SLinus Torvalds 	case HCISETAUTH:
3031da177e4SLinus Torvalds 	case HCISETENCRYPT:
3041da177e4SLinus Torvalds 	case HCISETPTYPE:
3051da177e4SLinus Torvalds 	case HCISETLINKPOL:
3061da177e4SLinus Torvalds 	case HCISETLINKMODE:
3071da177e4SLinus Torvalds 	case HCISETACLMTU:
3081da177e4SLinus Torvalds 	case HCISETSCOMTU:
3091da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
3101da177e4SLinus Torvalds 			return -EACCES;
3111da177e4SLinus Torvalds 		return hci_dev_cmd(cmd, argp);
3121da177e4SLinus Torvalds 
3131da177e4SLinus Torvalds 	case HCIINQUIRY:
3141da177e4SLinus Torvalds 		return hci_inquiry(argp);
3151da177e4SLinus Torvalds 
3161da177e4SLinus Torvalds 	default:
3171da177e4SLinus Torvalds 		lock_sock(sk);
3181da177e4SLinus Torvalds 		err = hci_sock_bound_ioctl(sk, cmd, arg);
3191da177e4SLinus Torvalds 		release_sock(sk);
3201da177e4SLinus Torvalds 		return err;
3211da177e4SLinus Torvalds 	}
3221da177e4SLinus Torvalds }
3231da177e4SLinus Torvalds 
3241da177e4SLinus Torvalds static int hci_sock_bind(struct socket *sock, struct sockaddr *addr, int addr_len)
3251da177e4SLinus Torvalds {
3260381101fSJohan Hedberg 	struct sockaddr_hci haddr;
3271da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
3281da177e4SLinus Torvalds 	struct hci_dev *hdev = NULL;
3290381101fSJohan Hedberg 	int len, err = 0;
3301da177e4SLinus Torvalds 
3311da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
3321da177e4SLinus Torvalds 
3330381101fSJohan Hedberg 	if (!addr)
3340381101fSJohan Hedberg 		return -EINVAL;
3350381101fSJohan Hedberg 
3360381101fSJohan Hedberg 	memset(&haddr, 0, sizeof(haddr));
3370381101fSJohan Hedberg 	len = min_t(unsigned int, sizeof(haddr), addr_len);
3380381101fSJohan Hedberg 	memcpy(&haddr, addr, len);
3390381101fSJohan Hedberg 
3400381101fSJohan Hedberg 	if (haddr.hci_family != AF_BLUETOOTH)
3410381101fSJohan Hedberg 		return -EINVAL;
3420381101fSJohan Hedberg 
34317f9cc31SGustavo F. Padovan 	if (haddr.hci_channel > HCI_CHANNEL_CONTROL)
34417f9cc31SGustavo F. Padovan 		return -EINVAL;
34517f9cc31SGustavo F. Padovan 
34614c0b608SJohan Hedberg 	if (haddr.hci_channel == HCI_CHANNEL_CONTROL) {
34714c0b608SJohan Hedberg 		if (!enable_mgmt)
3481da177e4SLinus Torvalds 			return -EINVAL;
34914c0b608SJohan Hedberg 		set_bit(HCI_PI_MGMT_INIT, &hci_pi(sk)->flags);
35014c0b608SJohan Hedberg 	}
3511da177e4SLinus Torvalds 
3521da177e4SLinus Torvalds 	lock_sock(sk);
3531da177e4SLinus Torvalds 
3540381101fSJohan Hedberg 	if (sk->sk_state == BT_BOUND || hci_pi(sk)->hdev) {
3551da177e4SLinus Torvalds 		err = -EALREADY;
3561da177e4SLinus Torvalds 		goto done;
3571da177e4SLinus Torvalds 	}
3581da177e4SLinus Torvalds 
3590381101fSJohan Hedberg 	if (haddr.hci_dev != HCI_DEV_NONE) {
3600381101fSJohan Hedberg 		hdev = hci_dev_get(haddr.hci_dev);
36170f23020SAndrei Emeltchenko 		if (!hdev) {
3621da177e4SLinus Torvalds 			err = -ENODEV;
3631da177e4SLinus Torvalds 			goto done;
3641da177e4SLinus Torvalds 		}
3651da177e4SLinus Torvalds 
3661da177e4SLinus Torvalds 		atomic_inc(&hdev->promisc);
3671da177e4SLinus Torvalds 	}
3681da177e4SLinus Torvalds 
3690381101fSJohan Hedberg 	hci_pi(sk)->channel = haddr.hci_channel;
3701da177e4SLinus Torvalds 	hci_pi(sk)->hdev = hdev;
3711da177e4SLinus Torvalds 	sk->sk_state = BT_BOUND;
3721da177e4SLinus Torvalds 
3731da177e4SLinus Torvalds done:
3741da177e4SLinus Torvalds 	release_sock(sk);
3751da177e4SLinus Torvalds 	return err;
3761da177e4SLinus Torvalds }
3771da177e4SLinus Torvalds 
3781da177e4SLinus Torvalds static int hci_sock_getname(struct socket *sock, struct sockaddr *addr, int *addr_len, int peer)
3791da177e4SLinus Torvalds {
3801da177e4SLinus Torvalds 	struct sockaddr_hci *haddr = (struct sockaddr_hci *) addr;
3811da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
3827b005bd3SMarcel Holtmann 	struct hci_dev *hdev = hci_pi(sk)->hdev;
3831da177e4SLinus Torvalds 
3841da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
3851da177e4SLinus Torvalds 
3867b005bd3SMarcel Holtmann 	if (!hdev)
3877b005bd3SMarcel Holtmann 		return -EBADFD;
3887b005bd3SMarcel Holtmann 
3891da177e4SLinus Torvalds 	lock_sock(sk);
3901da177e4SLinus Torvalds 
3911da177e4SLinus Torvalds 	*addr_len = sizeof(*haddr);
3921da177e4SLinus Torvalds 	haddr->hci_family = AF_BLUETOOTH;
3937b005bd3SMarcel Holtmann 	haddr->hci_dev    = hdev->id;
3941da177e4SLinus Torvalds 
3951da177e4SLinus Torvalds 	release_sock(sk);
3961da177e4SLinus Torvalds 	return 0;
3971da177e4SLinus Torvalds }
3981da177e4SLinus Torvalds 
3991da177e4SLinus Torvalds static inline void hci_sock_cmsg(struct sock *sk, struct msghdr *msg, struct sk_buff *skb)
4001da177e4SLinus Torvalds {
4011da177e4SLinus Torvalds 	__u32 mask = hci_pi(sk)->cmsg_mask;
4021da177e4SLinus Torvalds 
4030d48d939SMarcel Holtmann 	if (mask & HCI_CMSG_DIR) {
4040d48d939SMarcel Holtmann 		int incoming = bt_cb(skb)->incoming;
4050d48d939SMarcel Holtmann 		put_cmsg(msg, SOL_HCI, HCI_CMSG_DIR, sizeof(incoming), &incoming);
4060d48d939SMarcel Holtmann 	}
4071da177e4SLinus Torvalds 
408a61bbcf2SPatrick McHardy 	if (mask & HCI_CMSG_TSTAMP) {
409f6e623a6SJohann Felix Soden #ifdef CONFIG_COMPAT
410f6e623a6SJohann Felix Soden 		struct compat_timeval ctv;
411f6e623a6SJohann Felix Soden #endif
412a61bbcf2SPatrick McHardy 		struct timeval tv;
413767c5eb5SMarcel Holtmann 		void *data;
414767c5eb5SMarcel Holtmann 		int len;
415a61bbcf2SPatrick McHardy 
416a61bbcf2SPatrick McHardy 		skb_get_timestamp(skb, &tv);
417767c5eb5SMarcel Holtmann 
4181da97f83SDavid S. Miller 		data = &tv;
4191da97f83SDavid S. Miller 		len = sizeof(tv);
4201da97f83SDavid S. Miller #ifdef CONFIG_COMPAT
421*da88cea1SH. J. Lu 		if (!COMPAT_USE_64BIT_TIME &&
422*da88cea1SH. J. Lu 		    (msg->msg_flags & MSG_CMSG_COMPAT)) {
423767c5eb5SMarcel Holtmann 			ctv.tv_sec = tv.tv_sec;
424767c5eb5SMarcel Holtmann 			ctv.tv_usec = tv.tv_usec;
425767c5eb5SMarcel Holtmann 			data = &ctv;
426767c5eb5SMarcel Holtmann 			len = sizeof(ctv);
427767c5eb5SMarcel Holtmann 		}
4281da97f83SDavid S. Miller #endif
429767c5eb5SMarcel Holtmann 
430767c5eb5SMarcel Holtmann 		put_cmsg(msg, SOL_HCI, HCI_CMSG_TSTAMP, len, data);
431a61bbcf2SPatrick McHardy 	}
4321da177e4SLinus Torvalds }
4331da177e4SLinus Torvalds 
4341da177e4SLinus Torvalds static int hci_sock_recvmsg(struct kiocb *iocb, struct socket *sock,
4351da177e4SLinus Torvalds 				struct msghdr *msg, size_t len, int flags)
4361da177e4SLinus Torvalds {
4371da177e4SLinus Torvalds 	int noblock = flags & MSG_DONTWAIT;
4381da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
4391da177e4SLinus Torvalds 	struct sk_buff *skb;
4401da177e4SLinus Torvalds 	int copied, err;
4411da177e4SLinus Torvalds 
4421da177e4SLinus Torvalds 	BT_DBG("sock %p, sk %p", sock, sk);
4431da177e4SLinus Torvalds 
4441da177e4SLinus Torvalds 	if (flags & (MSG_OOB))
4451da177e4SLinus Torvalds 		return -EOPNOTSUPP;
4461da177e4SLinus Torvalds 
4471da177e4SLinus Torvalds 	if (sk->sk_state == BT_CLOSED)
4481da177e4SLinus Torvalds 		return 0;
4491da177e4SLinus Torvalds 
45070f23020SAndrei Emeltchenko 	skb = skb_recv_datagram(sk, flags, noblock, &err);
45170f23020SAndrei Emeltchenko 	if (!skb)
4521da177e4SLinus Torvalds 		return err;
4531da177e4SLinus Torvalds 
4541da177e4SLinus Torvalds 	msg->msg_namelen = 0;
4551da177e4SLinus Torvalds 
4561da177e4SLinus Torvalds 	copied = skb->len;
4571da177e4SLinus Torvalds 	if (len < copied) {
4581da177e4SLinus Torvalds 		msg->msg_flags |= MSG_TRUNC;
4591da177e4SLinus Torvalds 		copied = len;
4601da177e4SLinus Torvalds 	}
4611da177e4SLinus Torvalds 
462badff6d0SArnaldo Carvalho de Melo 	skb_reset_transport_header(skb);
4631da177e4SLinus Torvalds 	err = skb_copy_datagram_iovec(skb, 0, msg->msg_iov, copied);
4641da177e4SLinus Torvalds 
4651da177e4SLinus Torvalds 	hci_sock_cmsg(sk, msg, skb);
4661da177e4SLinus Torvalds 
4671da177e4SLinus Torvalds 	skb_free_datagram(sk, skb);
4681da177e4SLinus Torvalds 
4691da177e4SLinus Torvalds 	return err ? : copied;
4701da177e4SLinus Torvalds }
4711da177e4SLinus Torvalds 
4721da177e4SLinus Torvalds static int hci_sock_sendmsg(struct kiocb *iocb, struct socket *sock,
4731da177e4SLinus Torvalds 			    struct msghdr *msg, size_t len)
4741da177e4SLinus Torvalds {
4751da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
4761da177e4SLinus Torvalds 	struct hci_dev *hdev;
4771da177e4SLinus Torvalds 	struct sk_buff *skb;
4781da177e4SLinus Torvalds 	int err;
4791da177e4SLinus Torvalds 
4801da177e4SLinus Torvalds 	BT_DBG("sock %p sk %p", sock, sk);
4811da177e4SLinus Torvalds 
4821da177e4SLinus Torvalds 	if (msg->msg_flags & MSG_OOB)
4831da177e4SLinus Torvalds 		return -EOPNOTSUPP;
4841da177e4SLinus Torvalds 
4851da177e4SLinus Torvalds 	if (msg->msg_flags & ~(MSG_DONTWAIT|MSG_NOSIGNAL|MSG_ERRQUEUE))
4861da177e4SLinus Torvalds 		return -EINVAL;
4871da177e4SLinus Torvalds 
4881da177e4SLinus Torvalds 	if (len < 4 || len > HCI_MAX_FRAME_SIZE)
4891da177e4SLinus Torvalds 		return -EINVAL;
4901da177e4SLinus Torvalds 
4911da177e4SLinus Torvalds 	lock_sock(sk);
4921da177e4SLinus Torvalds 
4930381101fSJohan Hedberg 	switch (hci_pi(sk)->channel) {
4940381101fSJohan Hedberg 	case HCI_CHANNEL_RAW:
4950381101fSJohan Hedberg 		break;
4960381101fSJohan Hedberg 	case HCI_CHANNEL_CONTROL:
4970381101fSJohan Hedberg 		err = mgmt_control(sk, msg, len);
4980381101fSJohan Hedberg 		goto done;
4990381101fSJohan Hedberg 	default:
5000381101fSJohan Hedberg 		err = -EINVAL;
5010381101fSJohan Hedberg 		goto done;
5020381101fSJohan Hedberg 	}
5030381101fSJohan Hedberg 
50470f23020SAndrei Emeltchenko 	hdev = hci_pi(sk)->hdev;
50570f23020SAndrei Emeltchenko 	if (!hdev) {
5061da177e4SLinus Torvalds 		err = -EBADFD;
5071da177e4SLinus Torvalds 		goto done;
5081da177e4SLinus Torvalds 	}
5091da177e4SLinus Torvalds 
5107e21addcSMarcel Holtmann 	if (!test_bit(HCI_UP, &hdev->flags)) {
5117e21addcSMarcel Holtmann 		err = -ENETDOWN;
5127e21addcSMarcel Holtmann 		goto done;
5137e21addcSMarcel Holtmann 	}
5147e21addcSMarcel Holtmann 
51570f23020SAndrei Emeltchenko 	skb = bt_skb_send_alloc(sk, len, msg->msg_flags & MSG_DONTWAIT, &err);
51670f23020SAndrei Emeltchenko 	if (!skb)
5171da177e4SLinus Torvalds 		goto done;
5181da177e4SLinus Torvalds 
5191da177e4SLinus Torvalds 	if (memcpy_fromiovec(skb_put(skb, len), msg->msg_iov, len)) {
5201da177e4SLinus Torvalds 		err = -EFAULT;
5211da177e4SLinus Torvalds 		goto drop;
5221da177e4SLinus Torvalds 	}
5231da177e4SLinus Torvalds 
5240d48d939SMarcel Holtmann 	bt_cb(skb)->pkt_type = *((unsigned char *) skb->data);
5251da177e4SLinus Torvalds 	skb_pull(skb, 1);
5261da177e4SLinus Torvalds 	skb->dev = (void *) hdev;
5271da177e4SLinus Torvalds 
5280d48d939SMarcel Holtmann 	if (bt_cb(skb)->pkt_type == HCI_COMMAND_PKT) {
52983985319SHarvey Harrison 		u16 opcode = get_unaligned_le16(skb->data);
5301da177e4SLinus Torvalds 		u16 ogf = hci_opcode_ogf(opcode);
5311da177e4SLinus Torvalds 		u16 ocf = hci_opcode_ocf(opcode);
5321da177e4SLinus Torvalds 
5331da177e4SLinus Torvalds 		if (((ogf > HCI_SFLT_MAX_OGF) ||
5341da177e4SLinus Torvalds 				!hci_test_bit(ocf & HCI_FLT_OCF_BITS, &hci_sec_filter.ocf_mask[ogf])) &&
5351da177e4SLinus Torvalds 					!capable(CAP_NET_RAW)) {
5361da177e4SLinus Torvalds 			err = -EPERM;
5371da177e4SLinus Torvalds 			goto drop;
5381da177e4SLinus Torvalds 		}
5391da177e4SLinus Torvalds 
540a9de9248SMarcel Holtmann 		if (test_bit(HCI_RAW, &hdev->flags) || (ogf == 0x3f)) {
5411da177e4SLinus Torvalds 			skb_queue_tail(&hdev->raw_q, skb);
5423eff45eaSGustavo F. Padovan 			queue_work(hdev->workqueue, &hdev->tx_work);
5431da177e4SLinus Torvalds 		} else {
5441da177e4SLinus Torvalds 			skb_queue_tail(&hdev->cmd_q, skb);
545c347b765SGustavo F. Padovan 			queue_work(hdev->workqueue, &hdev->cmd_work);
5461da177e4SLinus Torvalds 		}
5471da177e4SLinus Torvalds 	} else {
5481da177e4SLinus Torvalds 		if (!capable(CAP_NET_RAW)) {
5491da177e4SLinus Torvalds 			err = -EPERM;
5501da177e4SLinus Torvalds 			goto drop;
5511da177e4SLinus Torvalds 		}
5521da177e4SLinus Torvalds 
5531da177e4SLinus Torvalds 		skb_queue_tail(&hdev->raw_q, skb);
5543eff45eaSGustavo F. Padovan 		queue_work(hdev->workqueue, &hdev->tx_work);
5551da177e4SLinus Torvalds 	}
5561da177e4SLinus Torvalds 
5571da177e4SLinus Torvalds 	err = len;
5581da177e4SLinus Torvalds 
5591da177e4SLinus Torvalds done:
5601da177e4SLinus Torvalds 	release_sock(sk);
5611da177e4SLinus Torvalds 	return err;
5621da177e4SLinus Torvalds 
5631da177e4SLinus Torvalds drop:
5641da177e4SLinus Torvalds 	kfree_skb(skb);
5651da177e4SLinus Torvalds 	goto done;
5661da177e4SLinus Torvalds }
5671da177e4SLinus Torvalds 
568b7058842SDavid S. Miller static int hci_sock_setsockopt(struct socket *sock, int level, int optname, char __user *optval, unsigned int len)
5691da177e4SLinus Torvalds {
5701da177e4SLinus Torvalds 	struct hci_ufilter uf = { .opcode = 0 };
5711da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
5721da177e4SLinus Torvalds 	int err = 0, opt = 0;
5731da177e4SLinus Torvalds 
5741da177e4SLinus Torvalds 	BT_DBG("sk %p, opt %d", sk, optname);
5751da177e4SLinus Torvalds 
5761da177e4SLinus Torvalds 	lock_sock(sk);
5771da177e4SLinus Torvalds 
5781da177e4SLinus Torvalds 	switch (optname) {
5791da177e4SLinus Torvalds 	case HCI_DATA_DIR:
5801da177e4SLinus Torvalds 		if (get_user(opt, (int __user *)optval)) {
5811da177e4SLinus Torvalds 			err = -EFAULT;
5821da177e4SLinus Torvalds 			break;
5831da177e4SLinus Torvalds 		}
5841da177e4SLinus Torvalds 
5851da177e4SLinus Torvalds 		if (opt)
5861da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask |= HCI_CMSG_DIR;
5871da177e4SLinus Torvalds 		else
5881da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask &= ~HCI_CMSG_DIR;
5891da177e4SLinus Torvalds 		break;
5901da177e4SLinus Torvalds 
5911da177e4SLinus Torvalds 	case HCI_TIME_STAMP:
5921da177e4SLinus Torvalds 		if (get_user(opt, (int __user *)optval)) {
5931da177e4SLinus Torvalds 			err = -EFAULT;
5941da177e4SLinus Torvalds 			break;
5951da177e4SLinus Torvalds 		}
5961da177e4SLinus Torvalds 
5971da177e4SLinus Torvalds 		if (opt)
5981da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask |= HCI_CMSG_TSTAMP;
5991da177e4SLinus Torvalds 		else
6001da177e4SLinus Torvalds 			hci_pi(sk)->cmsg_mask &= ~HCI_CMSG_TSTAMP;
6011da177e4SLinus Torvalds 		break;
6021da177e4SLinus Torvalds 
6031da177e4SLinus Torvalds 	case HCI_FILTER:
6040878b666SMarcel Holtmann 		{
6050878b666SMarcel Holtmann 			struct hci_filter *f = &hci_pi(sk)->filter;
6060878b666SMarcel Holtmann 
6070878b666SMarcel Holtmann 			uf.type_mask = f->type_mask;
6080878b666SMarcel Holtmann 			uf.opcode    = f->opcode;
6090878b666SMarcel Holtmann 			uf.event_mask[0] = *((u32 *) f->event_mask + 0);
6100878b666SMarcel Holtmann 			uf.event_mask[1] = *((u32 *) f->event_mask + 1);
6110878b666SMarcel Holtmann 		}
6120878b666SMarcel Holtmann 
6131da177e4SLinus Torvalds 		len = min_t(unsigned int, len, sizeof(uf));
6141da177e4SLinus Torvalds 		if (copy_from_user(&uf, optval, len)) {
6151da177e4SLinus Torvalds 			err = -EFAULT;
6161da177e4SLinus Torvalds 			break;
6171da177e4SLinus Torvalds 		}
6181da177e4SLinus Torvalds 
6191da177e4SLinus Torvalds 		if (!capable(CAP_NET_RAW)) {
6201da177e4SLinus Torvalds 			uf.type_mask &= hci_sec_filter.type_mask;
6211da177e4SLinus Torvalds 			uf.event_mask[0] &= *((u32 *) hci_sec_filter.event_mask + 0);
6221da177e4SLinus Torvalds 			uf.event_mask[1] &= *((u32 *) hci_sec_filter.event_mask + 1);
6231da177e4SLinus Torvalds 		}
6241da177e4SLinus Torvalds 
6251da177e4SLinus Torvalds 		{
6261da177e4SLinus Torvalds 			struct hci_filter *f = &hci_pi(sk)->filter;
6271da177e4SLinus Torvalds 
6281da177e4SLinus Torvalds 			f->type_mask = uf.type_mask;
6291da177e4SLinus Torvalds 			f->opcode    = uf.opcode;
6301da177e4SLinus Torvalds 			*((u32 *) f->event_mask + 0) = uf.event_mask[0];
6311da177e4SLinus Torvalds 			*((u32 *) f->event_mask + 1) = uf.event_mask[1];
6321da177e4SLinus Torvalds 		}
6331da177e4SLinus Torvalds 		break;
6341da177e4SLinus Torvalds 
6351da177e4SLinus Torvalds 	default:
6361da177e4SLinus Torvalds 		err = -ENOPROTOOPT;
6371da177e4SLinus Torvalds 		break;
6381da177e4SLinus Torvalds 	}
6391da177e4SLinus Torvalds 
6401da177e4SLinus Torvalds 	release_sock(sk);
6411da177e4SLinus Torvalds 	return err;
6421da177e4SLinus Torvalds }
6431da177e4SLinus Torvalds 
6441da177e4SLinus Torvalds static int hci_sock_getsockopt(struct socket *sock, int level, int optname, char __user *optval, int __user *optlen)
6451da177e4SLinus Torvalds {
6461da177e4SLinus Torvalds 	struct hci_ufilter uf;
6471da177e4SLinus Torvalds 	struct sock *sk = sock->sk;
6481da177e4SLinus Torvalds 	int len, opt;
6491da177e4SLinus Torvalds 
6501da177e4SLinus Torvalds 	if (get_user(len, optlen))
6511da177e4SLinus Torvalds 		return -EFAULT;
6521da177e4SLinus Torvalds 
6531da177e4SLinus Torvalds 	switch (optname) {
6541da177e4SLinus Torvalds 	case HCI_DATA_DIR:
6551da177e4SLinus Torvalds 		if (hci_pi(sk)->cmsg_mask & HCI_CMSG_DIR)
6561da177e4SLinus Torvalds 			opt = 1;
6571da177e4SLinus Torvalds 		else
6581da177e4SLinus Torvalds 			opt = 0;
6591da177e4SLinus Torvalds 
6601da177e4SLinus Torvalds 		if (put_user(opt, optval))
6611da177e4SLinus Torvalds 			return -EFAULT;
6621da177e4SLinus Torvalds 		break;
6631da177e4SLinus Torvalds 
6641da177e4SLinus Torvalds 	case HCI_TIME_STAMP:
6651da177e4SLinus Torvalds 		if (hci_pi(sk)->cmsg_mask & HCI_CMSG_TSTAMP)
6661da177e4SLinus Torvalds 			opt = 1;
6671da177e4SLinus Torvalds 		else
6681da177e4SLinus Torvalds 			opt = 0;
6691da177e4SLinus Torvalds 
6701da177e4SLinus Torvalds 		if (put_user(opt, optval))
6711da177e4SLinus Torvalds 			return -EFAULT;
6721da177e4SLinus Torvalds 		break;
6731da177e4SLinus Torvalds 
6741da177e4SLinus Torvalds 	case HCI_FILTER:
6751da177e4SLinus Torvalds 		{
6761da177e4SLinus Torvalds 			struct hci_filter *f = &hci_pi(sk)->filter;
6771da177e4SLinus Torvalds 
6781da177e4SLinus Torvalds 			uf.type_mask = f->type_mask;
6791da177e4SLinus Torvalds 			uf.opcode    = f->opcode;
6801da177e4SLinus Torvalds 			uf.event_mask[0] = *((u32 *) f->event_mask + 0);
6811da177e4SLinus Torvalds 			uf.event_mask[1] = *((u32 *) f->event_mask + 1);
6821da177e4SLinus Torvalds 		}
6831da177e4SLinus Torvalds 
6841da177e4SLinus Torvalds 		len = min_t(unsigned int, len, sizeof(uf));
6851da177e4SLinus Torvalds 		if (copy_to_user(optval, &uf, len))
6861da177e4SLinus Torvalds 			return -EFAULT;
6871da177e4SLinus Torvalds 		break;
6881da177e4SLinus Torvalds 
6891da177e4SLinus Torvalds 	default:
6901da177e4SLinus Torvalds 		return -ENOPROTOOPT;
6911da177e4SLinus Torvalds 		break;
6921da177e4SLinus Torvalds 	}
6931da177e4SLinus Torvalds 
6941da177e4SLinus Torvalds 	return 0;
6951da177e4SLinus Torvalds }
6961da177e4SLinus Torvalds 
69790ddc4f0SEric Dumazet static const struct proto_ops hci_sock_ops = {
6981da177e4SLinus Torvalds 	.family		= PF_BLUETOOTH,
6991da177e4SLinus Torvalds 	.owner		= THIS_MODULE,
7001da177e4SLinus Torvalds 	.release	= hci_sock_release,
7011da177e4SLinus Torvalds 	.bind		= hci_sock_bind,
7021da177e4SLinus Torvalds 	.getname	= hci_sock_getname,
7031da177e4SLinus Torvalds 	.sendmsg	= hci_sock_sendmsg,
7041da177e4SLinus Torvalds 	.recvmsg	= hci_sock_recvmsg,
7051da177e4SLinus Torvalds 	.ioctl		= hci_sock_ioctl,
7061da177e4SLinus Torvalds 	.poll		= datagram_poll,
7071da177e4SLinus Torvalds 	.listen		= sock_no_listen,
7081da177e4SLinus Torvalds 	.shutdown	= sock_no_shutdown,
7091da177e4SLinus Torvalds 	.setsockopt	= hci_sock_setsockopt,
7101da177e4SLinus Torvalds 	.getsockopt	= hci_sock_getsockopt,
7111da177e4SLinus Torvalds 	.connect	= sock_no_connect,
7121da177e4SLinus Torvalds 	.socketpair	= sock_no_socketpair,
7131da177e4SLinus Torvalds 	.accept		= sock_no_accept,
7141da177e4SLinus Torvalds 	.mmap		= sock_no_mmap
7151da177e4SLinus Torvalds };
7161da177e4SLinus Torvalds 
7171da177e4SLinus Torvalds static struct proto hci_sk_proto = {
7181da177e4SLinus Torvalds 	.name		= "HCI",
7191da177e4SLinus Torvalds 	.owner		= THIS_MODULE,
7201da177e4SLinus Torvalds 	.obj_size	= sizeof(struct hci_pinfo)
7211da177e4SLinus Torvalds };
7221da177e4SLinus Torvalds 
7233f378b68SEric Paris static int hci_sock_create(struct net *net, struct socket *sock, int protocol,
7243f378b68SEric Paris 			   int kern)
7251da177e4SLinus Torvalds {
7261da177e4SLinus Torvalds 	struct sock *sk;
7271da177e4SLinus Torvalds 
7281da177e4SLinus Torvalds 	BT_DBG("sock %p", sock);
7291da177e4SLinus Torvalds 
7301da177e4SLinus Torvalds 	if (sock->type != SOCK_RAW)
7311da177e4SLinus Torvalds 		return -ESOCKTNOSUPPORT;
7321da177e4SLinus Torvalds 
7331da177e4SLinus Torvalds 	sock->ops = &hci_sock_ops;
7341da177e4SLinus Torvalds 
7356257ff21SPavel Emelyanov 	sk = sk_alloc(net, PF_BLUETOOTH, GFP_ATOMIC, &hci_sk_proto);
7361da177e4SLinus Torvalds 	if (!sk)
7371da177e4SLinus Torvalds 		return -ENOMEM;
7381da177e4SLinus Torvalds 
7391da177e4SLinus Torvalds 	sock_init_data(sock, sk);
7401da177e4SLinus Torvalds 
7411da177e4SLinus Torvalds 	sock_reset_flag(sk, SOCK_ZAPPED);
7421da177e4SLinus Torvalds 
7431da177e4SLinus Torvalds 	sk->sk_protocol = protocol;
7441da177e4SLinus Torvalds 
7451da177e4SLinus Torvalds 	sock->state = SS_UNCONNECTED;
7461da177e4SLinus Torvalds 	sk->sk_state = BT_OPEN;
7471da177e4SLinus Torvalds 
7481da177e4SLinus Torvalds 	bt_sock_link(&hci_sk_list, sk);
7491da177e4SLinus Torvalds 	return 0;
7501da177e4SLinus Torvalds }
7511da177e4SLinus Torvalds 
7521da177e4SLinus Torvalds static int hci_sock_dev_event(struct notifier_block *this, unsigned long event, void *ptr)
7531da177e4SLinus Torvalds {
7541da177e4SLinus Torvalds 	struct hci_dev *hdev = (struct hci_dev *) ptr;
7551da177e4SLinus Torvalds 	struct hci_ev_si_device ev;
7561da177e4SLinus Torvalds 
7571da177e4SLinus Torvalds 	BT_DBG("hdev %s event %ld", hdev->name, event);
7581da177e4SLinus Torvalds 
7591da177e4SLinus Torvalds 	/* Send event to sockets */
7601da177e4SLinus Torvalds 	ev.event  = event;
7611da177e4SLinus Torvalds 	ev.dev_id = hdev->id;
7621da177e4SLinus Torvalds 	hci_si_event(NULL, HCI_EV_SI_DEVICE, sizeof(ev), &ev);
7631da177e4SLinus Torvalds 
7641da177e4SLinus Torvalds 	if (event == HCI_DEV_UNREG) {
7651da177e4SLinus Torvalds 		struct sock *sk;
7661da177e4SLinus Torvalds 		struct hlist_node *node;
7671da177e4SLinus Torvalds 
7681da177e4SLinus Torvalds 		/* Detach sockets from device */
7691da177e4SLinus Torvalds 		read_lock(&hci_sk_list.lock);
7701da177e4SLinus Torvalds 		sk_for_each(sk, node, &hci_sk_list.head) {
7714ce61d1cSSatyam Sharma 			bh_lock_sock_nested(sk);
7721da177e4SLinus Torvalds 			if (hci_pi(sk)->hdev == hdev) {
7731da177e4SLinus Torvalds 				hci_pi(sk)->hdev = NULL;
7741da177e4SLinus Torvalds 				sk->sk_err = EPIPE;
7751da177e4SLinus Torvalds 				sk->sk_state = BT_OPEN;
7761da177e4SLinus Torvalds 				sk->sk_state_change(sk);
7771da177e4SLinus Torvalds 
7781da177e4SLinus Torvalds 				hci_dev_put(hdev);
7791da177e4SLinus Torvalds 			}
7804ce61d1cSSatyam Sharma 			bh_unlock_sock(sk);
7811da177e4SLinus Torvalds 		}
7821da177e4SLinus Torvalds 		read_unlock(&hci_sk_list.lock);
7831da177e4SLinus Torvalds 	}
7841da177e4SLinus Torvalds 
7851da177e4SLinus Torvalds 	return NOTIFY_DONE;
7861da177e4SLinus Torvalds }
7871da177e4SLinus Torvalds 
788ec1b4cf7SStephen Hemminger static const struct net_proto_family hci_sock_family_ops = {
7891da177e4SLinus Torvalds 	.family	= PF_BLUETOOTH,
7901da177e4SLinus Torvalds 	.owner	= THIS_MODULE,
7911da177e4SLinus Torvalds 	.create	= hci_sock_create,
7921da177e4SLinus Torvalds };
7931da177e4SLinus Torvalds 
7941da177e4SLinus Torvalds static struct notifier_block hci_sock_nblock = {
7951da177e4SLinus Torvalds 	.notifier_call = hci_sock_dev_event
7961da177e4SLinus Torvalds };
7971da177e4SLinus Torvalds 
7981da177e4SLinus Torvalds int __init hci_sock_init(void)
7991da177e4SLinus Torvalds {
8001da177e4SLinus Torvalds 	int err;
8011da177e4SLinus Torvalds 
8021da177e4SLinus Torvalds 	err = proto_register(&hci_sk_proto, 0);
8031da177e4SLinus Torvalds 	if (err < 0)
8041da177e4SLinus Torvalds 		return err;
8051da177e4SLinus Torvalds 
8061da177e4SLinus Torvalds 	err = bt_sock_register(BTPROTO_HCI, &hci_sock_family_ops);
8071da177e4SLinus Torvalds 	if (err < 0)
8081da177e4SLinus Torvalds 		goto error;
8091da177e4SLinus Torvalds 
8101da177e4SLinus Torvalds 	hci_register_notifier(&hci_sock_nblock);
8111da177e4SLinus Torvalds 
8121da177e4SLinus Torvalds 	BT_INFO("HCI socket layer initialized");
8131da177e4SLinus Torvalds 
8141da177e4SLinus Torvalds 	return 0;
8151da177e4SLinus Torvalds 
8161da177e4SLinus Torvalds error:
8171da177e4SLinus Torvalds 	BT_ERR("HCI socket registration failed");
8181da177e4SLinus Torvalds 	proto_unregister(&hci_sk_proto);
8191da177e4SLinus Torvalds 	return err;
8201da177e4SLinus Torvalds }
8211da177e4SLinus Torvalds 
822b7440a14SAnand Gadiyar void hci_sock_cleanup(void)
8231da177e4SLinus Torvalds {
8241da177e4SLinus Torvalds 	if (bt_sock_unregister(BTPROTO_HCI) < 0)
8251da177e4SLinus Torvalds 		BT_ERR("HCI socket unregistration failed");
8261da177e4SLinus Torvalds 
8271da177e4SLinus Torvalds 	hci_unregister_notifier(&hci_sock_nblock);
8281da177e4SLinus Torvalds 
8291da177e4SLinus Torvalds 	proto_unregister(&hci_sk_proto);
8301da177e4SLinus Torvalds }
8310381101fSJohan Hedberg 
8320381101fSJohan Hedberg module_param(enable_mgmt, bool, 0644);
8330381101fSJohan Hedberg MODULE_PARM_DESC(enable_mgmt, "Enable Management interface");
834