xref: /openbmc/linux/net/bluetooth/hci_sync.c (revision ad383c2c65a5baf16e334cd40a013cc302176891)
16a98e383SMarcel Holtmann // SPDX-License-Identifier: GPL-2.0
26a98e383SMarcel Holtmann /*
36a98e383SMarcel Holtmann  * BlueZ - Bluetooth protocol stack for Linux
46a98e383SMarcel Holtmann  *
56a98e383SMarcel Holtmann  * Copyright (C) 2021 Intel Corporation
66a98e383SMarcel Holtmann  */
76a98e383SMarcel Holtmann 
86a98e383SMarcel Holtmann #include <net/bluetooth/bluetooth.h>
96a98e383SMarcel Holtmann #include <net/bluetooth/hci_core.h>
106a98e383SMarcel Holtmann #include <net/bluetooth/mgmt.h>
116a98e383SMarcel Holtmann 
126a98e383SMarcel Holtmann #include "hci_request.h"
136a98e383SMarcel Holtmann #include "smp.h"
14161510ccSLuiz Augusto von Dentz #include "eir.h"
156a98e383SMarcel Holtmann 
166a98e383SMarcel Holtmann static void hci_cmd_sync_complete(struct hci_dev *hdev, u8 result, u16 opcode,
176a98e383SMarcel Holtmann 				  struct sk_buff *skb)
186a98e383SMarcel Holtmann {
196a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "result 0x%2.2x", result);
206a98e383SMarcel Holtmann 
216a98e383SMarcel Holtmann 	if (hdev->req_status != HCI_REQ_PEND)
226a98e383SMarcel Holtmann 		return;
236a98e383SMarcel Holtmann 
246a98e383SMarcel Holtmann 	hdev->req_result = result;
256a98e383SMarcel Holtmann 	hdev->req_status = HCI_REQ_DONE;
266a98e383SMarcel Holtmann 
27cba6b758SLuiz Augusto von Dentz 	if (skb) {
28cba6b758SLuiz Augusto von Dentz 		struct sock *sk = hci_skb_sk(skb);
29cba6b758SLuiz Augusto von Dentz 
30cba6b758SLuiz Augusto von Dentz 		/* Drop sk reference if set */
31cba6b758SLuiz Augusto von Dentz 		if (sk)
32cba6b758SLuiz Augusto von Dentz 			sock_put(sk);
33cba6b758SLuiz Augusto von Dentz 
34cba6b758SLuiz Augusto von Dentz 		hdev->req_skb = skb_get(skb);
35cba6b758SLuiz Augusto von Dentz 	}
36cba6b758SLuiz Augusto von Dentz 
376a98e383SMarcel Holtmann 	wake_up_interruptible(&hdev->req_wait_q);
386a98e383SMarcel Holtmann }
396a98e383SMarcel Holtmann 
406a98e383SMarcel Holtmann static struct sk_buff *hci_cmd_sync_alloc(struct hci_dev *hdev, u16 opcode,
416a98e383SMarcel Holtmann 					  u32 plen, const void *param,
426a98e383SMarcel Holtmann 					  struct sock *sk)
436a98e383SMarcel Holtmann {
446a98e383SMarcel Holtmann 	int len = HCI_COMMAND_HDR_SIZE + plen;
456a98e383SMarcel Holtmann 	struct hci_command_hdr *hdr;
466a98e383SMarcel Holtmann 	struct sk_buff *skb;
476a98e383SMarcel Holtmann 
486a98e383SMarcel Holtmann 	skb = bt_skb_alloc(len, GFP_ATOMIC);
496a98e383SMarcel Holtmann 	if (!skb)
506a98e383SMarcel Holtmann 		return NULL;
516a98e383SMarcel Holtmann 
526a98e383SMarcel Holtmann 	hdr = skb_put(skb, HCI_COMMAND_HDR_SIZE);
536a98e383SMarcel Holtmann 	hdr->opcode = cpu_to_le16(opcode);
546a98e383SMarcel Holtmann 	hdr->plen   = plen;
556a98e383SMarcel Holtmann 
566a98e383SMarcel Holtmann 	if (plen)
576a98e383SMarcel Holtmann 		skb_put_data(skb, param, plen);
586a98e383SMarcel Holtmann 
596a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "skb len %d", skb->len);
606a98e383SMarcel Holtmann 
616a98e383SMarcel Holtmann 	hci_skb_pkt_type(skb) = HCI_COMMAND_PKT;
626a98e383SMarcel Holtmann 	hci_skb_opcode(skb) = opcode;
636a98e383SMarcel Holtmann 
64cba6b758SLuiz Augusto von Dentz 	/* Grab a reference if command needs to be associated with a sock (e.g.
65cba6b758SLuiz Augusto von Dentz 	 * likely mgmt socket that initiated the command).
66cba6b758SLuiz Augusto von Dentz 	 */
67cba6b758SLuiz Augusto von Dentz 	if (sk) {
68cba6b758SLuiz Augusto von Dentz 		hci_skb_sk(skb) = sk;
69cba6b758SLuiz Augusto von Dentz 		sock_hold(sk);
70cba6b758SLuiz Augusto von Dentz 	}
71cba6b758SLuiz Augusto von Dentz 
726a98e383SMarcel Holtmann 	return skb;
736a98e383SMarcel Holtmann }
746a98e383SMarcel Holtmann 
756a98e383SMarcel Holtmann static void hci_cmd_sync_add(struct hci_request *req, u16 opcode, u32 plen,
766a98e383SMarcel Holtmann 			     const void *param, u8 event, struct sock *sk)
776a98e383SMarcel Holtmann {
786a98e383SMarcel Holtmann 	struct hci_dev *hdev = req->hdev;
796a98e383SMarcel Holtmann 	struct sk_buff *skb;
806a98e383SMarcel Holtmann 
816a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "opcode 0x%4.4x plen %d", opcode, plen);
826a98e383SMarcel Holtmann 
836a98e383SMarcel Holtmann 	/* If an error occurred during request building, there is no point in
846a98e383SMarcel Holtmann 	 * queueing the HCI command. We can simply return.
856a98e383SMarcel Holtmann 	 */
866a98e383SMarcel Holtmann 	if (req->err)
876a98e383SMarcel Holtmann 		return;
886a98e383SMarcel Holtmann 
896a98e383SMarcel Holtmann 	skb = hci_cmd_sync_alloc(hdev, opcode, plen, param, sk);
906a98e383SMarcel Holtmann 	if (!skb) {
916a98e383SMarcel Holtmann 		bt_dev_err(hdev, "no memory for command (opcode 0x%4.4x)",
926a98e383SMarcel Holtmann 			   opcode);
936a98e383SMarcel Holtmann 		req->err = -ENOMEM;
946a98e383SMarcel Holtmann 		return;
956a98e383SMarcel Holtmann 	}
966a98e383SMarcel Holtmann 
976a98e383SMarcel Holtmann 	if (skb_queue_empty(&req->cmd_q))
986a98e383SMarcel Holtmann 		bt_cb(skb)->hci.req_flags |= HCI_REQ_START;
996a98e383SMarcel Holtmann 
1006a98e383SMarcel Holtmann 	bt_cb(skb)->hci.req_event = event;
1016a98e383SMarcel Holtmann 
1026a98e383SMarcel Holtmann 	skb_queue_tail(&req->cmd_q, skb);
1036a98e383SMarcel Holtmann }
1046a98e383SMarcel Holtmann 
1056a98e383SMarcel Holtmann static int hci_cmd_sync_run(struct hci_request *req)
1066a98e383SMarcel Holtmann {
1076a98e383SMarcel Holtmann 	struct hci_dev *hdev = req->hdev;
1086a98e383SMarcel Holtmann 	struct sk_buff *skb;
1096a98e383SMarcel Holtmann 	unsigned long flags;
1106a98e383SMarcel Holtmann 
1116a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "length %u", skb_queue_len(&req->cmd_q));
1126a98e383SMarcel Holtmann 
1136a98e383SMarcel Holtmann 	/* If an error occurred during request building, remove all HCI
1146a98e383SMarcel Holtmann 	 * commands queued on the HCI request queue.
1156a98e383SMarcel Holtmann 	 */
1166a98e383SMarcel Holtmann 	if (req->err) {
1176a98e383SMarcel Holtmann 		skb_queue_purge(&req->cmd_q);
1186a98e383SMarcel Holtmann 		return req->err;
1196a98e383SMarcel Holtmann 	}
1206a98e383SMarcel Holtmann 
1216a98e383SMarcel Holtmann 	/* Do not allow empty requests */
1226a98e383SMarcel Holtmann 	if (skb_queue_empty(&req->cmd_q))
1236a98e383SMarcel Holtmann 		return -ENODATA;
1246a98e383SMarcel Holtmann 
1256a98e383SMarcel Holtmann 	skb = skb_peek_tail(&req->cmd_q);
1266a98e383SMarcel Holtmann 	bt_cb(skb)->hci.req_complete_skb = hci_cmd_sync_complete;
1276a98e383SMarcel Holtmann 	bt_cb(skb)->hci.req_flags |= HCI_REQ_SKB;
1286a98e383SMarcel Holtmann 
1296a98e383SMarcel Holtmann 	spin_lock_irqsave(&hdev->cmd_q.lock, flags);
1306a98e383SMarcel Holtmann 	skb_queue_splice_tail(&req->cmd_q, &hdev->cmd_q);
1316a98e383SMarcel Holtmann 	spin_unlock_irqrestore(&hdev->cmd_q.lock, flags);
1326a98e383SMarcel Holtmann 
1336a98e383SMarcel Holtmann 	queue_work(hdev->workqueue, &hdev->cmd_work);
1346a98e383SMarcel Holtmann 
1356a98e383SMarcel Holtmann 	return 0;
1366a98e383SMarcel Holtmann }
1376a98e383SMarcel Holtmann 
1386a98e383SMarcel Holtmann /* This function requires the caller holds hdev->req_lock. */
1396a98e383SMarcel Holtmann struct sk_buff *__hci_cmd_sync_sk(struct hci_dev *hdev, u16 opcode, u32 plen,
1406a98e383SMarcel Holtmann 				  const void *param, u8 event, u32 timeout,
1416a98e383SMarcel Holtmann 				  struct sock *sk)
1426a98e383SMarcel Holtmann {
1436a98e383SMarcel Holtmann 	struct hci_request req;
1446a98e383SMarcel Holtmann 	struct sk_buff *skb;
1456a98e383SMarcel Holtmann 	int err = 0;
1466a98e383SMarcel Holtmann 
1476a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "");
1486a98e383SMarcel Holtmann 
1496a98e383SMarcel Holtmann 	hci_req_init(&req, hdev);
1506a98e383SMarcel Holtmann 
1516a98e383SMarcel Holtmann 	hci_cmd_sync_add(&req, opcode, plen, param, event, sk);
1526a98e383SMarcel Holtmann 
1536a98e383SMarcel Holtmann 	hdev->req_status = HCI_REQ_PEND;
1546a98e383SMarcel Holtmann 
1556a98e383SMarcel Holtmann 	err = hci_cmd_sync_run(&req);
1566a98e383SMarcel Holtmann 	if (err < 0)
1576a98e383SMarcel Holtmann 		return ERR_PTR(err);
1586a98e383SMarcel Holtmann 
1596a98e383SMarcel Holtmann 	err = wait_event_interruptible_timeout(hdev->req_wait_q,
1606a98e383SMarcel Holtmann 					       hdev->req_status != HCI_REQ_PEND,
1616a98e383SMarcel Holtmann 					       timeout);
1626a98e383SMarcel Holtmann 
1636a98e383SMarcel Holtmann 	if (err == -ERESTARTSYS)
1646a98e383SMarcel Holtmann 		return ERR_PTR(-EINTR);
1656a98e383SMarcel Holtmann 
1666a98e383SMarcel Holtmann 	switch (hdev->req_status) {
1676a98e383SMarcel Holtmann 	case HCI_REQ_DONE:
1686a98e383SMarcel Holtmann 		err = -bt_to_errno(hdev->req_result);
1696a98e383SMarcel Holtmann 		break;
1706a98e383SMarcel Holtmann 
1716a98e383SMarcel Holtmann 	case HCI_REQ_CANCELED:
1726a98e383SMarcel Holtmann 		err = -hdev->req_result;
1736a98e383SMarcel Holtmann 		break;
1746a98e383SMarcel Holtmann 
1756a98e383SMarcel Holtmann 	default:
1766a98e383SMarcel Holtmann 		err = -ETIMEDOUT;
1776a98e383SMarcel Holtmann 		break;
1786a98e383SMarcel Holtmann 	}
1796a98e383SMarcel Holtmann 
1806a98e383SMarcel Holtmann 	hdev->req_status = 0;
1816a98e383SMarcel Holtmann 	hdev->req_result = 0;
1826a98e383SMarcel Holtmann 	skb = hdev->req_skb;
1836a98e383SMarcel Holtmann 	hdev->req_skb = NULL;
1846a98e383SMarcel Holtmann 
1856a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "end: err %d", err);
1866a98e383SMarcel Holtmann 
1876a98e383SMarcel Holtmann 	if (err < 0) {
1886a98e383SMarcel Holtmann 		kfree_skb(skb);
1896a98e383SMarcel Holtmann 		return ERR_PTR(err);
1906a98e383SMarcel Holtmann 	}
1916a98e383SMarcel Holtmann 
1926a98e383SMarcel Holtmann 	if (!skb)
1936a98e383SMarcel Holtmann 		return ERR_PTR(-ENODATA);
1946a98e383SMarcel Holtmann 
1956a98e383SMarcel Holtmann 	return skb;
1966a98e383SMarcel Holtmann }
1976a98e383SMarcel Holtmann EXPORT_SYMBOL(__hci_cmd_sync_sk);
1986a98e383SMarcel Holtmann 
1996a98e383SMarcel Holtmann /* This function requires the caller holds hdev->req_lock. */
2006a98e383SMarcel Holtmann struct sk_buff *__hci_cmd_sync(struct hci_dev *hdev, u16 opcode, u32 plen,
2016a98e383SMarcel Holtmann 			       const void *param, u32 timeout)
2026a98e383SMarcel Holtmann {
2036a98e383SMarcel Holtmann 	return __hci_cmd_sync_sk(hdev, opcode, plen, param, 0, timeout, NULL);
2046a98e383SMarcel Holtmann }
2056a98e383SMarcel Holtmann EXPORT_SYMBOL(__hci_cmd_sync);
2066a98e383SMarcel Holtmann 
2076a98e383SMarcel Holtmann /* Send HCI command and wait for command complete event */
2086a98e383SMarcel Holtmann struct sk_buff *hci_cmd_sync(struct hci_dev *hdev, u16 opcode, u32 plen,
2096a98e383SMarcel Holtmann 			     const void *param, u32 timeout)
2106a98e383SMarcel Holtmann {
2116a98e383SMarcel Holtmann 	struct sk_buff *skb;
2126a98e383SMarcel Holtmann 
2136a98e383SMarcel Holtmann 	if (!test_bit(HCI_UP, &hdev->flags))
2146a98e383SMarcel Holtmann 		return ERR_PTR(-ENETDOWN);
2156a98e383SMarcel Holtmann 
2166a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "opcode 0x%4.4x plen %d", opcode, plen);
2176a98e383SMarcel Holtmann 
2186a98e383SMarcel Holtmann 	hci_req_sync_lock(hdev);
2196a98e383SMarcel Holtmann 	skb = __hci_cmd_sync(hdev, opcode, plen, param, timeout);
2206a98e383SMarcel Holtmann 	hci_req_sync_unlock(hdev);
2216a98e383SMarcel Holtmann 
2226a98e383SMarcel Holtmann 	return skb;
2236a98e383SMarcel Holtmann }
2246a98e383SMarcel Holtmann EXPORT_SYMBOL(hci_cmd_sync);
2256a98e383SMarcel Holtmann 
2266a98e383SMarcel Holtmann /* This function requires the caller holds hdev->req_lock. */
2276a98e383SMarcel Holtmann struct sk_buff *__hci_cmd_sync_ev(struct hci_dev *hdev, u16 opcode, u32 plen,
2286a98e383SMarcel Holtmann 				  const void *param, u8 event, u32 timeout)
2296a98e383SMarcel Holtmann {
2306a98e383SMarcel Holtmann 	return __hci_cmd_sync_sk(hdev, opcode, plen, param, event, timeout,
2316a98e383SMarcel Holtmann 				 NULL);
2326a98e383SMarcel Holtmann }
2336a98e383SMarcel Holtmann EXPORT_SYMBOL(__hci_cmd_sync_ev);
2346a98e383SMarcel Holtmann 
2356a98e383SMarcel Holtmann /* This function requires the caller holds hdev->req_lock. */
2366a98e383SMarcel Holtmann int __hci_cmd_sync_status_sk(struct hci_dev *hdev, u16 opcode, u32 plen,
2376a98e383SMarcel Holtmann 			     const void *param, u8 event, u32 timeout,
2386a98e383SMarcel Holtmann 			     struct sock *sk)
2396a98e383SMarcel Holtmann {
2406a98e383SMarcel Holtmann 	struct sk_buff *skb;
2416a98e383SMarcel Holtmann 	u8 status;
2426a98e383SMarcel Holtmann 
2436a98e383SMarcel Holtmann 	skb = __hci_cmd_sync_sk(hdev, opcode, plen, param, event, timeout, sk);
2446a98e383SMarcel Holtmann 	if (IS_ERR_OR_NULL(skb)) {
2456a98e383SMarcel Holtmann 		bt_dev_err(hdev, "Opcode 0x%4x failed: %ld", opcode,
2466a98e383SMarcel Holtmann 			   PTR_ERR(skb));
2476a98e383SMarcel Holtmann 		return PTR_ERR(skb);
2486a98e383SMarcel Holtmann 	}
2496a98e383SMarcel Holtmann 
2506a98e383SMarcel Holtmann 	status = skb->data[0];
2516a98e383SMarcel Holtmann 
2526a98e383SMarcel Holtmann 	kfree_skb(skb);
2536a98e383SMarcel Holtmann 
2546a98e383SMarcel Holtmann 	return status;
2556a98e383SMarcel Holtmann }
2566a98e383SMarcel Holtmann EXPORT_SYMBOL(__hci_cmd_sync_status_sk);
2576a98e383SMarcel Holtmann 
2586a98e383SMarcel Holtmann int __hci_cmd_sync_status(struct hci_dev *hdev, u16 opcode, u32 plen,
2596a98e383SMarcel Holtmann 			  const void *param, u32 timeout)
2606a98e383SMarcel Holtmann {
2616a98e383SMarcel Holtmann 	return __hci_cmd_sync_status_sk(hdev, opcode, plen, param, 0, timeout,
2626a98e383SMarcel Holtmann 					NULL);
2636a98e383SMarcel Holtmann }
2646a98e383SMarcel Holtmann EXPORT_SYMBOL(__hci_cmd_sync_status);
2656a98e383SMarcel Holtmann 
2666a98e383SMarcel Holtmann static void hci_cmd_sync_work(struct work_struct *work)
2676a98e383SMarcel Holtmann {
2686a98e383SMarcel Holtmann 	struct hci_dev *hdev = container_of(work, struct hci_dev, cmd_sync_work);
2696a98e383SMarcel Holtmann 	struct hci_cmd_sync_work_entry *entry;
2706a98e383SMarcel Holtmann 	hci_cmd_sync_work_func_t func;
2716a98e383SMarcel Holtmann 	hci_cmd_sync_work_destroy_t destroy;
2726a98e383SMarcel Holtmann 	void *data;
2736a98e383SMarcel Holtmann 
2746a98e383SMarcel Holtmann 	bt_dev_dbg(hdev, "");
2756a98e383SMarcel Holtmann 
2766a98e383SMarcel Holtmann 	mutex_lock(&hdev->cmd_sync_work_lock);
2776a98e383SMarcel Holtmann 	entry = list_first_entry(&hdev->cmd_sync_work_list,
2786a98e383SMarcel Holtmann 				 struct hci_cmd_sync_work_entry, list);
2796a98e383SMarcel Holtmann 	if (entry) {
2806a98e383SMarcel Holtmann 		list_del(&entry->list);
2816a98e383SMarcel Holtmann 		func = entry->func;
2826a98e383SMarcel Holtmann 		data = entry->data;
2836a98e383SMarcel Holtmann 		destroy = entry->destroy;
2846a98e383SMarcel Holtmann 		kfree(entry);
2856a98e383SMarcel Holtmann 	} else {
2866a98e383SMarcel Holtmann 		func = NULL;
2876a98e383SMarcel Holtmann 		data = NULL;
2886a98e383SMarcel Holtmann 		destroy = NULL;
2896a98e383SMarcel Holtmann 	}
2906a98e383SMarcel Holtmann 	mutex_unlock(&hdev->cmd_sync_work_lock);
2916a98e383SMarcel Holtmann 
2926a98e383SMarcel Holtmann 	if (func) {
2936a98e383SMarcel Holtmann 		int err;
2946a98e383SMarcel Holtmann 
2956a98e383SMarcel Holtmann 		hci_req_sync_lock(hdev);
2966a98e383SMarcel Holtmann 
2976a98e383SMarcel Holtmann 		err = func(hdev, data);
2986a98e383SMarcel Holtmann 
2996a98e383SMarcel Holtmann 		if (destroy)
3006a98e383SMarcel Holtmann 			destroy(hdev, data, err);
3016a98e383SMarcel Holtmann 
3026a98e383SMarcel Holtmann 		hci_req_sync_unlock(hdev);
3036a98e383SMarcel Holtmann 	}
3046a98e383SMarcel Holtmann }
3056a98e383SMarcel Holtmann 
3066a98e383SMarcel Holtmann void hci_cmd_sync_init(struct hci_dev *hdev)
3076a98e383SMarcel Holtmann {
3086a98e383SMarcel Holtmann 	INIT_WORK(&hdev->cmd_sync_work, hci_cmd_sync_work);
3096a98e383SMarcel Holtmann 	INIT_LIST_HEAD(&hdev->cmd_sync_work_list);
3106a98e383SMarcel Holtmann 	mutex_init(&hdev->cmd_sync_work_lock);
3116a98e383SMarcel Holtmann }
3126a98e383SMarcel Holtmann 
3136a98e383SMarcel Holtmann void hci_cmd_sync_clear(struct hci_dev *hdev)
3146a98e383SMarcel Holtmann {
3156a98e383SMarcel Holtmann 	struct hci_cmd_sync_work_entry *entry, *tmp;
3166a98e383SMarcel Holtmann 
3176a98e383SMarcel Holtmann 	cancel_work_sync(&hdev->cmd_sync_work);
3186a98e383SMarcel Holtmann 
3196a98e383SMarcel Holtmann 	list_for_each_entry_safe(entry, tmp, &hdev->cmd_sync_work_list, list) {
3206a98e383SMarcel Holtmann 		if (entry->destroy)
3216a98e383SMarcel Holtmann 			entry->destroy(hdev, entry->data, -ECANCELED);
3226a98e383SMarcel Holtmann 
3236a98e383SMarcel Holtmann 		list_del(&entry->list);
3246a98e383SMarcel Holtmann 		kfree(entry);
3256a98e383SMarcel Holtmann 	}
3266a98e383SMarcel Holtmann }
3276a98e383SMarcel Holtmann 
3286a98e383SMarcel Holtmann int hci_cmd_sync_queue(struct hci_dev *hdev, hci_cmd_sync_work_func_t func,
3296a98e383SMarcel Holtmann 		       void *data, hci_cmd_sync_work_destroy_t destroy)
3306a98e383SMarcel Holtmann {
3316a98e383SMarcel Holtmann 	struct hci_cmd_sync_work_entry *entry;
3326a98e383SMarcel Holtmann 
3336a98e383SMarcel Holtmann 	entry = kmalloc(sizeof(*entry), GFP_KERNEL);
3346a98e383SMarcel Holtmann 	if (!entry)
3356a98e383SMarcel Holtmann 		return -ENOMEM;
3366a98e383SMarcel Holtmann 
3376a98e383SMarcel Holtmann 	entry->func = func;
3386a98e383SMarcel Holtmann 	entry->data = data;
3396a98e383SMarcel Holtmann 	entry->destroy = destroy;
3406a98e383SMarcel Holtmann 
3416a98e383SMarcel Holtmann 	mutex_lock(&hdev->cmd_sync_work_lock);
3426a98e383SMarcel Holtmann 	list_add_tail(&entry->list, &hdev->cmd_sync_work_list);
3436a98e383SMarcel Holtmann 	mutex_unlock(&hdev->cmd_sync_work_lock);
3446a98e383SMarcel Holtmann 
3456a98e383SMarcel Holtmann 	queue_work(hdev->req_workqueue, &hdev->cmd_sync_work);
3466a98e383SMarcel Holtmann 
3476a98e383SMarcel Holtmann 	return 0;
3486a98e383SMarcel Holtmann }
3496a98e383SMarcel Holtmann EXPORT_SYMBOL(hci_cmd_sync_queue);
350161510ccSLuiz Augusto von Dentz 
351161510ccSLuiz Augusto von Dentz int hci_update_eir_sync(struct hci_dev *hdev)
352161510ccSLuiz Augusto von Dentz {
353161510ccSLuiz Augusto von Dentz 	struct hci_cp_write_eir cp;
354161510ccSLuiz Augusto von Dentz 
355161510ccSLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "");
356161510ccSLuiz Augusto von Dentz 
357161510ccSLuiz Augusto von Dentz 	if (!hdev_is_powered(hdev))
358161510ccSLuiz Augusto von Dentz 		return 0;
359161510ccSLuiz Augusto von Dentz 
360161510ccSLuiz Augusto von Dentz 	if (!lmp_ext_inq_capable(hdev))
361161510ccSLuiz Augusto von Dentz 		return 0;
362161510ccSLuiz Augusto von Dentz 
363161510ccSLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_SSP_ENABLED))
364161510ccSLuiz Augusto von Dentz 		return 0;
365161510ccSLuiz Augusto von Dentz 
366161510ccSLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_SERVICE_CACHE))
367161510ccSLuiz Augusto von Dentz 		return 0;
368161510ccSLuiz Augusto von Dentz 
369161510ccSLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
370161510ccSLuiz Augusto von Dentz 
371161510ccSLuiz Augusto von Dentz 	eir_create(hdev, cp.data);
372161510ccSLuiz Augusto von Dentz 
373161510ccSLuiz Augusto von Dentz 	if (memcmp(cp.data, hdev->eir, sizeof(cp.data)) == 0)
374161510ccSLuiz Augusto von Dentz 		return 0;
375161510ccSLuiz Augusto von Dentz 
376161510ccSLuiz Augusto von Dentz 	memcpy(hdev->eir, cp.data, sizeof(cp.data));
377161510ccSLuiz Augusto von Dentz 
378161510ccSLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_WRITE_EIR, sizeof(cp), &cp,
379161510ccSLuiz Augusto von Dentz 				     HCI_CMD_TIMEOUT);
380161510ccSLuiz Augusto von Dentz }
381161510ccSLuiz Augusto von Dentz 
382161510ccSLuiz Augusto von Dentz static u8 get_service_classes(struct hci_dev *hdev)
383161510ccSLuiz Augusto von Dentz {
384161510ccSLuiz Augusto von Dentz 	struct bt_uuid *uuid;
385161510ccSLuiz Augusto von Dentz 	u8 val = 0;
386161510ccSLuiz Augusto von Dentz 
387161510ccSLuiz Augusto von Dentz 	list_for_each_entry(uuid, &hdev->uuids, list)
388161510ccSLuiz Augusto von Dentz 		val |= uuid->svc_hint;
389161510ccSLuiz Augusto von Dentz 
390161510ccSLuiz Augusto von Dentz 	return val;
391161510ccSLuiz Augusto von Dentz }
392161510ccSLuiz Augusto von Dentz 
393161510ccSLuiz Augusto von Dentz int hci_update_class_sync(struct hci_dev *hdev)
394161510ccSLuiz Augusto von Dentz {
395161510ccSLuiz Augusto von Dentz 	u8 cod[3];
396161510ccSLuiz Augusto von Dentz 
397161510ccSLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "");
398161510ccSLuiz Augusto von Dentz 
399161510ccSLuiz Augusto von Dentz 	if (!hdev_is_powered(hdev))
400161510ccSLuiz Augusto von Dentz 		return 0;
401161510ccSLuiz Augusto von Dentz 
402161510ccSLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED))
403161510ccSLuiz Augusto von Dentz 		return 0;
404161510ccSLuiz Augusto von Dentz 
405161510ccSLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_SERVICE_CACHE))
406161510ccSLuiz Augusto von Dentz 		return 0;
407161510ccSLuiz Augusto von Dentz 
408161510ccSLuiz Augusto von Dentz 	cod[0] = hdev->minor_class;
409161510ccSLuiz Augusto von Dentz 	cod[1] = hdev->major_class;
410161510ccSLuiz Augusto von Dentz 	cod[2] = get_service_classes(hdev);
411161510ccSLuiz Augusto von Dentz 
412161510ccSLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_LIMITED_DISCOVERABLE))
413161510ccSLuiz Augusto von Dentz 		cod[1] |= 0x20;
414161510ccSLuiz Augusto von Dentz 
415161510ccSLuiz Augusto von Dentz 	if (memcmp(cod, hdev->dev_class, 3) == 0)
416161510ccSLuiz Augusto von Dentz 		return 0;
417161510ccSLuiz Augusto von Dentz 
418161510ccSLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_WRITE_CLASS_OF_DEV,
419161510ccSLuiz Augusto von Dentz 				     sizeof(cod), cod, HCI_CMD_TIMEOUT);
420161510ccSLuiz Augusto von Dentz }
421cba6b758SLuiz Augusto von Dentz 
422cba6b758SLuiz Augusto von Dentz static bool is_advertising_allowed(struct hci_dev *hdev, bool connectable)
423cba6b758SLuiz Augusto von Dentz {
424cba6b758SLuiz Augusto von Dentz 	/* If there is no connection we are OK to advertise. */
425cba6b758SLuiz Augusto von Dentz 	if (hci_conn_num(hdev, LE_LINK) == 0)
426cba6b758SLuiz Augusto von Dentz 		return true;
427cba6b758SLuiz Augusto von Dentz 
428cba6b758SLuiz Augusto von Dentz 	/* Check le_states if there is any connection in peripheral role. */
429cba6b758SLuiz Augusto von Dentz 	if (hdev->conn_hash.le_num_peripheral > 0) {
430cba6b758SLuiz Augusto von Dentz 		/* Peripheral connection state and non connectable mode
431cba6b758SLuiz Augusto von Dentz 		 * bit 20.
432cba6b758SLuiz Augusto von Dentz 		 */
433cba6b758SLuiz Augusto von Dentz 		if (!connectable && !(hdev->le_states[2] & 0x10))
434cba6b758SLuiz Augusto von Dentz 			return false;
435cba6b758SLuiz Augusto von Dentz 
436cba6b758SLuiz Augusto von Dentz 		/* Peripheral connection state and connectable mode bit 38
437cba6b758SLuiz Augusto von Dentz 		 * and scannable bit 21.
438cba6b758SLuiz Augusto von Dentz 		 */
439cba6b758SLuiz Augusto von Dentz 		if (connectable && (!(hdev->le_states[4] & 0x40) ||
440cba6b758SLuiz Augusto von Dentz 				    !(hdev->le_states[2] & 0x20)))
441cba6b758SLuiz Augusto von Dentz 			return false;
442cba6b758SLuiz Augusto von Dentz 	}
443cba6b758SLuiz Augusto von Dentz 
444cba6b758SLuiz Augusto von Dentz 	/* Check le_states if there is any connection in central role. */
445cba6b758SLuiz Augusto von Dentz 	if (hci_conn_num(hdev, LE_LINK) != hdev->conn_hash.le_num_peripheral) {
446cba6b758SLuiz Augusto von Dentz 		/* Central connection state and non connectable mode bit 18. */
447cba6b758SLuiz Augusto von Dentz 		if (!connectable && !(hdev->le_states[2] & 0x02))
448cba6b758SLuiz Augusto von Dentz 			return false;
449cba6b758SLuiz Augusto von Dentz 
450cba6b758SLuiz Augusto von Dentz 		/* Central connection state and connectable mode bit 35 and
451cba6b758SLuiz Augusto von Dentz 		 * scannable 19.
452cba6b758SLuiz Augusto von Dentz 		 */
453cba6b758SLuiz Augusto von Dentz 		if (connectable && (!(hdev->le_states[4] & 0x08) ||
454cba6b758SLuiz Augusto von Dentz 				    !(hdev->le_states[2] & 0x08)))
455cba6b758SLuiz Augusto von Dentz 			return false;
456cba6b758SLuiz Augusto von Dentz 	}
457cba6b758SLuiz Augusto von Dentz 
458cba6b758SLuiz Augusto von Dentz 	return true;
459cba6b758SLuiz Augusto von Dentz }
460cba6b758SLuiz Augusto von Dentz 
461cba6b758SLuiz Augusto von Dentz static bool adv_use_rpa(struct hci_dev *hdev, uint32_t flags)
462cba6b758SLuiz Augusto von Dentz {
463cba6b758SLuiz Augusto von Dentz 	/* If privacy is not enabled don't use RPA */
464cba6b758SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_PRIVACY))
465cba6b758SLuiz Augusto von Dentz 		return false;
466cba6b758SLuiz Augusto von Dentz 
467cba6b758SLuiz Augusto von Dentz 	/* If basic privacy mode is enabled use RPA */
468cba6b758SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LIMITED_PRIVACY))
469cba6b758SLuiz Augusto von Dentz 		return true;
470cba6b758SLuiz Augusto von Dentz 
471cba6b758SLuiz Augusto von Dentz 	/* If limited privacy mode is enabled don't use RPA if we're
472cba6b758SLuiz Augusto von Dentz 	 * both discoverable and bondable.
473cba6b758SLuiz Augusto von Dentz 	 */
474cba6b758SLuiz Augusto von Dentz 	if ((flags & MGMT_ADV_FLAG_DISCOV) &&
475cba6b758SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_BONDABLE))
476cba6b758SLuiz Augusto von Dentz 		return false;
477cba6b758SLuiz Augusto von Dentz 
478cba6b758SLuiz Augusto von Dentz 	/* We're neither bondable nor discoverable in the limited
479cba6b758SLuiz Augusto von Dentz 	 * privacy mode, therefore use RPA.
480cba6b758SLuiz Augusto von Dentz 	 */
481cba6b758SLuiz Augusto von Dentz 	return true;
482cba6b758SLuiz Augusto von Dentz }
483cba6b758SLuiz Augusto von Dentz 
484cba6b758SLuiz Augusto von Dentz static int hci_set_random_addr_sync(struct hci_dev *hdev, bdaddr_t *rpa)
485cba6b758SLuiz Augusto von Dentz {
486cba6b758SLuiz Augusto von Dentz 	/* If we're advertising or initiating an LE connection we can't
487cba6b758SLuiz Augusto von Dentz 	 * go ahead and change the random address at this time. This is
488cba6b758SLuiz Augusto von Dentz 	 * because the eventual initiator address used for the
489cba6b758SLuiz Augusto von Dentz 	 * subsequently created connection will be undefined (some
490cba6b758SLuiz Augusto von Dentz 	 * controllers use the new address and others the one we had
491cba6b758SLuiz Augusto von Dentz 	 * when the operation started).
492cba6b758SLuiz Augusto von Dentz 	 *
493cba6b758SLuiz Augusto von Dentz 	 * In this kind of scenario skip the update and let the random
494cba6b758SLuiz Augusto von Dentz 	 * address be updated at the next cycle.
495cba6b758SLuiz Augusto von Dentz 	 */
496cba6b758SLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_LE_ADV) ||
497cba6b758SLuiz Augusto von Dentz 	    hci_lookup_le_connect(hdev)) {
498cba6b758SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "Deferring random address update");
499cba6b758SLuiz Augusto von Dentz 		hci_dev_set_flag(hdev, HCI_RPA_EXPIRED);
500cba6b758SLuiz Augusto von Dentz 		return 0;
501cba6b758SLuiz Augusto von Dentz 	}
502cba6b758SLuiz Augusto von Dentz 
503cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_RANDOM_ADDR,
504cba6b758SLuiz Augusto von Dentz 				     6, rpa, HCI_CMD_TIMEOUT);
505cba6b758SLuiz Augusto von Dentz }
506cba6b758SLuiz Augusto von Dentz 
507cba6b758SLuiz Augusto von Dentz int hci_update_random_address_sync(struct hci_dev *hdev, bool require_privacy,
508cba6b758SLuiz Augusto von Dentz 				   bool rpa, u8 *own_addr_type)
509cba6b758SLuiz Augusto von Dentz {
510cba6b758SLuiz Augusto von Dentz 	int err;
511cba6b758SLuiz Augusto von Dentz 
512cba6b758SLuiz Augusto von Dentz 	/* If privacy is enabled use a resolvable private address. If
513cba6b758SLuiz Augusto von Dentz 	 * current RPA has expired or there is something else than
514cba6b758SLuiz Augusto von Dentz 	 * the current RPA in use, then generate a new one.
515cba6b758SLuiz Augusto von Dentz 	 */
516cba6b758SLuiz Augusto von Dentz 	if (rpa) {
517cba6b758SLuiz Augusto von Dentz 		/* If Controller supports LL Privacy use own address type is
518cba6b758SLuiz Augusto von Dentz 		 * 0x03
519cba6b758SLuiz Augusto von Dentz 		 */
520*ad383c2cSLuiz Augusto von Dentz 		if (use_ll_privacy(hdev))
521cba6b758SLuiz Augusto von Dentz 			*own_addr_type = ADDR_LE_DEV_RANDOM_RESOLVED;
522cba6b758SLuiz Augusto von Dentz 		else
523cba6b758SLuiz Augusto von Dentz 			*own_addr_type = ADDR_LE_DEV_RANDOM;
524cba6b758SLuiz Augusto von Dentz 
525cba6b758SLuiz Augusto von Dentz 		/* Check if RPA is valid */
526cba6b758SLuiz Augusto von Dentz 		if (rpa_valid(hdev))
527cba6b758SLuiz Augusto von Dentz 			return 0;
528cba6b758SLuiz Augusto von Dentz 
529cba6b758SLuiz Augusto von Dentz 		err = smp_generate_rpa(hdev, hdev->irk, &hdev->rpa);
530cba6b758SLuiz Augusto von Dentz 		if (err < 0) {
531cba6b758SLuiz Augusto von Dentz 			bt_dev_err(hdev, "failed to generate new RPA");
532cba6b758SLuiz Augusto von Dentz 			return err;
533cba6b758SLuiz Augusto von Dentz 		}
534cba6b758SLuiz Augusto von Dentz 
535cba6b758SLuiz Augusto von Dentz 		err = hci_set_random_addr_sync(hdev, &hdev->rpa);
536cba6b758SLuiz Augusto von Dentz 		if (err)
537cba6b758SLuiz Augusto von Dentz 			return err;
538cba6b758SLuiz Augusto von Dentz 
539cba6b758SLuiz Augusto von Dentz 		return 0;
540cba6b758SLuiz Augusto von Dentz 	}
541cba6b758SLuiz Augusto von Dentz 
542cba6b758SLuiz Augusto von Dentz 	/* In case of required privacy without resolvable private address,
543cba6b758SLuiz Augusto von Dentz 	 * use an non-resolvable private address. This is useful for active
544cba6b758SLuiz Augusto von Dentz 	 * scanning and non-connectable advertising.
545cba6b758SLuiz Augusto von Dentz 	 */
546cba6b758SLuiz Augusto von Dentz 	if (require_privacy) {
547cba6b758SLuiz Augusto von Dentz 		bdaddr_t nrpa;
548cba6b758SLuiz Augusto von Dentz 
549cba6b758SLuiz Augusto von Dentz 		while (true) {
550cba6b758SLuiz Augusto von Dentz 			/* The non-resolvable private address is generated
551cba6b758SLuiz Augusto von Dentz 			 * from random six bytes with the two most significant
552cba6b758SLuiz Augusto von Dentz 			 * bits cleared.
553cba6b758SLuiz Augusto von Dentz 			 */
554cba6b758SLuiz Augusto von Dentz 			get_random_bytes(&nrpa, 6);
555cba6b758SLuiz Augusto von Dentz 			nrpa.b[5] &= 0x3f;
556cba6b758SLuiz Augusto von Dentz 
557cba6b758SLuiz Augusto von Dentz 			/* The non-resolvable private address shall not be
558cba6b758SLuiz Augusto von Dentz 			 * equal to the public address.
559cba6b758SLuiz Augusto von Dentz 			 */
560cba6b758SLuiz Augusto von Dentz 			if (bacmp(&hdev->bdaddr, &nrpa))
561cba6b758SLuiz Augusto von Dentz 				break;
562cba6b758SLuiz Augusto von Dentz 		}
563cba6b758SLuiz Augusto von Dentz 
564cba6b758SLuiz Augusto von Dentz 		*own_addr_type = ADDR_LE_DEV_RANDOM;
565cba6b758SLuiz Augusto von Dentz 
566cba6b758SLuiz Augusto von Dentz 		return hci_set_random_addr_sync(hdev, &nrpa);
567cba6b758SLuiz Augusto von Dentz 	}
568cba6b758SLuiz Augusto von Dentz 
569cba6b758SLuiz Augusto von Dentz 	/* If forcing static address is in use or there is no public
570cba6b758SLuiz Augusto von Dentz 	 * address use the static address as random address (but skip
571cba6b758SLuiz Augusto von Dentz 	 * the HCI command if the current random address is already the
572cba6b758SLuiz Augusto von Dentz 	 * static one.
573cba6b758SLuiz Augusto von Dentz 	 *
574cba6b758SLuiz Augusto von Dentz 	 * In case BR/EDR has been disabled on a dual-mode controller
575cba6b758SLuiz Augusto von Dentz 	 * and a static address has been configured, then use that
576cba6b758SLuiz Augusto von Dentz 	 * address instead of the public BR/EDR address.
577cba6b758SLuiz Augusto von Dentz 	 */
578cba6b758SLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_FORCE_STATIC_ADDR) ||
579cba6b758SLuiz Augusto von Dentz 	    !bacmp(&hdev->bdaddr, BDADDR_ANY) ||
580cba6b758SLuiz Augusto von Dentz 	    (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED) &&
581cba6b758SLuiz Augusto von Dentz 	     bacmp(&hdev->static_addr, BDADDR_ANY))) {
582cba6b758SLuiz Augusto von Dentz 		*own_addr_type = ADDR_LE_DEV_RANDOM;
583cba6b758SLuiz Augusto von Dentz 		if (bacmp(&hdev->static_addr, &hdev->random_addr))
584cba6b758SLuiz Augusto von Dentz 			return hci_set_random_addr_sync(hdev,
585cba6b758SLuiz Augusto von Dentz 							&hdev->static_addr);
586cba6b758SLuiz Augusto von Dentz 		return 0;
587cba6b758SLuiz Augusto von Dentz 	}
588cba6b758SLuiz Augusto von Dentz 
589cba6b758SLuiz Augusto von Dentz 	/* Neither privacy nor static address is being used so use a
590cba6b758SLuiz Augusto von Dentz 	 * public address.
591cba6b758SLuiz Augusto von Dentz 	 */
592cba6b758SLuiz Augusto von Dentz 	*own_addr_type = ADDR_LE_DEV_PUBLIC;
593cba6b758SLuiz Augusto von Dentz 
594cba6b758SLuiz Augusto von Dentz 	return 0;
595cba6b758SLuiz Augusto von Dentz }
596cba6b758SLuiz Augusto von Dentz 
597cba6b758SLuiz Augusto von Dentz static int hci_disable_ext_adv_instance_sync(struct hci_dev *hdev, u8 instance)
598cba6b758SLuiz Augusto von Dentz {
599cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_ext_adv_enable *cp;
600cba6b758SLuiz Augusto von Dentz 	struct hci_cp_ext_adv_set *set;
601cba6b758SLuiz Augusto von Dentz 	u8 data[sizeof(*cp) + sizeof(*set) * 1];
602cba6b758SLuiz Augusto von Dentz 	u8 size;
603cba6b758SLuiz Augusto von Dentz 
604cba6b758SLuiz Augusto von Dentz 	/* If request specifies an instance that doesn't exist, fail */
605cba6b758SLuiz Augusto von Dentz 	if (instance > 0) {
606cba6b758SLuiz Augusto von Dentz 		struct adv_info *adv;
607cba6b758SLuiz Augusto von Dentz 
608cba6b758SLuiz Augusto von Dentz 		adv = hci_find_adv_instance(hdev, instance);
609cba6b758SLuiz Augusto von Dentz 		if (!adv)
610cba6b758SLuiz Augusto von Dentz 			return -EINVAL;
611cba6b758SLuiz Augusto von Dentz 
612cba6b758SLuiz Augusto von Dentz 		/* If not enabled there is nothing to do */
613cba6b758SLuiz Augusto von Dentz 		if (!adv->enabled)
614cba6b758SLuiz Augusto von Dentz 			return 0;
615cba6b758SLuiz Augusto von Dentz 	}
616cba6b758SLuiz Augusto von Dentz 
617cba6b758SLuiz Augusto von Dentz 	memset(data, 0, sizeof(data));
618cba6b758SLuiz Augusto von Dentz 
619cba6b758SLuiz Augusto von Dentz 	cp = (void *)data;
620cba6b758SLuiz Augusto von Dentz 	set = (void *)cp->data;
621cba6b758SLuiz Augusto von Dentz 
622cba6b758SLuiz Augusto von Dentz 	/* Instance 0x00 indicates all advertising instances will be disabled */
623cba6b758SLuiz Augusto von Dentz 	cp->num_of_sets = !!instance;
624cba6b758SLuiz Augusto von Dentz 	cp->enable = 0x00;
625cba6b758SLuiz Augusto von Dentz 
626cba6b758SLuiz Augusto von Dentz 	set->handle = instance;
627cba6b758SLuiz Augusto von Dentz 
628cba6b758SLuiz Augusto von Dentz 	size = sizeof(*cp) + sizeof(*set) * cp->num_of_sets;
629cba6b758SLuiz Augusto von Dentz 
630cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_ADV_ENABLE,
631cba6b758SLuiz Augusto von Dentz 				     size, data, HCI_CMD_TIMEOUT);
632cba6b758SLuiz Augusto von Dentz }
633cba6b758SLuiz Augusto von Dentz 
634cba6b758SLuiz Augusto von Dentz static int hci_set_adv_set_random_addr_sync(struct hci_dev *hdev, u8 instance,
635cba6b758SLuiz Augusto von Dentz 					    bdaddr_t *random_addr)
636cba6b758SLuiz Augusto von Dentz {
637cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_adv_set_rand_addr cp;
638cba6b758SLuiz Augusto von Dentz 	int err;
639cba6b758SLuiz Augusto von Dentz 
640cba6b758SLuiz Augusto von Dentz 	if (!instance) {
641cba6b758SLuiz Augusto von Dentz 		/* Instance 0x00 doesn't have an adv_info, instead it uses
642cba6b758SLuiz Augusto von Dentz 		 * hdev->random_addr to track its address so whenever it needs
643cba6b758SLuiz Augusto von Dentz 		 * to be updated this also set the random address since
644cba6b758SLuiz Augusto von Dentz 		 * hdev->random_addr is shared with scan state machine.
645cba6b758SLuiz Augusto von Dentz 		 */
646cba6b758SLuiz Augusto von Dentz 		err = hci_set_random_addr_sync(hdev, random_addr);
647cba6b758SLuiz Augusto von Dentz 		if (err)
648cba6b758SLuiz Augusto von Dentz 			return err;
649cba6b758SLuiz Augusto von Dentz 	}
650cba6b758SLuiz Augusto von Dentz 
651cba6b758SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
652cba6b758SLuiz Augusto von Dentz 
653cba6b758SLuiz Augusto von Dentz 	cp.handle = instance;
654cba6b758SLuiz Augusto von Dentz 	bacpy(&cp.bdaddr, random_addr);
655cba6b758SLuiz Augusto von Dentz 
656cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADV_SET_RAND_ADDR,
657cba6b758SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
658cba6b758SLuiz Augusto von Dentz }
659cba6b758SLuiz Augusto von Dentz 
660cba6b758SLuiz Augusto von Dentz int hci_setup_ext_adv_instance_sync(struct hci_dev *hdev, u8 instance)
661cba6b758SLuiz Augusto von Dentz {
662cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_ext_adv_params cp;
663cba6b758SLuiz Augusto von Dentz 	bool connectable;
664cba6b758SLuiz Augusto von Dentz 	u32 flags;
665cba6b758SLuiz Augusto von Dentz 	bdaddr_t random_addr;
666cba6b758SLuiz Augusto von Dentz 	u8 own_addr_type;
667cba6b758SLuiz Augusto von Dentz 	int err;
668cba6b758SLuiz Augusto von Dentz 	struct adv_info *adv;
669cba6b758SLuiz Augusto von Dentz 	bool secondary_adv;
670cba6b758SLuiz Augusto von Dentz 
671cba6b758SLuiz Augusto von Dentz 	if (instance > 0) {
672cba6b758SLuiz Augusto von Dentz 		adv = hci_find_adv_instance(hdev, instance);
673cba6b758SLuiz Augusto von Dentz 		if (!adv)
674cba6b758SLuiz Augusto von Dentz 			return -EINVAL;
675cba6b758SLuiz Augusto von Dentz 	} else {
676cba6b758SLuiz Augusto von Dentz 		adv = NULL;
677cba6b758SLuiz Augusto von Dentz 	}
678cba6b758SLuiz Augusto von Dentz 
679cba6b758SLuiz Augusto von Dentz 	/* Updating parameters of an active instance will return a
680cba6b758SLuiz Augusto von Dentz 	 * Command Disallowed error, so we must first disable the
681cba6b758SLuiz Augusto von Dentz 	 * instance if it is active.
682cba6b758SLuiz Augusto von Dentz 	 */
683cba6b758SLuiz Augusto von Dentz 	if (adv && !adv->pending) {
684cba6b758SLuiz Augusto von Dentz 		err = hci_disable_ext_adv_instance_sync(hdev, instance);
685cba6b758SLuiz Augusto von Dentz 		if (err)
686cba6b758SLuiz Augusto von Dentz 			return err;
687cba6b758SLuiz Augusto von Dentz 	}
688cba6b758SLuiz Augusto von Dentz 
689cba6b758SLuiz Augusto von Dentz 	flags = hci_adv_instance_flags(hdev, instance);
690cba6b758SLuiz Augusto von Dentz 
691cba6b758SLuiz Augusto von Dentz 	/* If the "connectable" instance flag was not set, then choose between
692cba6b758SLuiz Augusto von Dentz 	 * ADV_IND and ADV_NONCONN_IND based on the global connectable setting.
693cba6b758SLuiz Augusto von Dentz 	 */
694cba6b758SLuiz Augusto von Dentz 	connectable = (flags & MGMT_ADV_FLAG_CONNECTABLE) ||
695cba6b758SLuiz Augusto von Dentz 		      mgmt_get_connectable(hdev);
696cba6b758SLuiz Augusto von Dentz 
697cba6b758SLuiz Augusto von Dentz 	if (!is_advertising_allowed(hdev, connectable))
698cba6b758SLuiz Augusto von Dentz 		return -EPERM;
699cba6b758SLuiz Augusto von Dentz 
700cba6b758SLuiz Augusto von Dentz 	/* Set require_privacy to true only when non-connectable
701cba6b758SLuiz Augusto von Dentz 	 * advertising is used. In that case it is fine to use a
702cba6b758SLuiz Augusto von Dentz 	 * non-resolvable private address.
703cba6b758SLuiz Augusto von Dentz 	 */
704cba6b758SLuiz Augusto von Dentz 	err = hci_get_random_address(hdev, !connectable,
705cba6b758SLuiz Augusto von Dentz 				     adv_use_rpa(hdev, flags), adv,
706cba6b758SLuiz Augusto von Dentz 				     &own_addr_type, &random_addr);
707cba6b758SLuiz Augusto von Dentz 	if (err < 0)
708cba6b758SLuiz Augusto von Dentz 		return err;
709cba6b758SLuiz Augusto von Dentz 
710cba6b758SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
711cba6b758SLuiz Augusto von Dentz 
712cba6b758SLuiz Augusto von Dentz 	if (adv) {
713cba6b758SLuiz Augusto von Dentz 		hci_cpu_to_le24(adv->min_interval, cp.min_interval);
714cba6b758SLuiz Augusto von Dentz 		hci_cpu_to_le24(adv->max_interval, cp.max_interval);
715cba6b758SLuiz Augusto von Dentz 		cp.tx_power = adv->tx_power;
716cba6b758SLuiz Augusto von Dentz 	} else {
717cba6b758SLuiz Augusto von Dentz 		hci_cpu_to_le24(hdev->le_adv_min_interval, cp.min_interval);
718cba6b758SLuiz Augusto von Dentz 		hci_cpu_to_le24(hdev->le_adv_max_interval, cp.max_interval);
719cba6b758SLuiz Augusto von Dentz 		cp.tx_power = HCI_ADV_TX_POWER_NO_PREFERENCE;
720cba6b758SLuiz Augusto von Dentz 	}
721cba6b758SLuiz Augusto von Dentz 
722cba6b758SLuiz Augusto von Dentz 	secondary_adv = (flags & MGMT_ADV_FLAG_SEC_MASK);
723cba6b758SLuiz Augusto von Dentz 
724cba6b758SLuiz Augusto von Dentz 	if (connectable) {
725cba6b758SLuiz Augusto von Dentz 		if (secondary_adv)
726cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_EXT_ADV_CONN_IND);
727cba6b758SLuiz Augusto von Dentz 		else
728cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_LEGACY_ADV_IND);
729cba6b758SLuiz Augusto von Dentz 	} else if (hci_adv_instance_is_scannable(hdev, instance) ||
730cba6b758SLuiz Augusto von Dentz 		   (flags & MGMT_ADV_PARAM_SCAN_RSP)) {
731cba6b758SLuiz Augusto von Dentz 		if (secondary_adv)
732cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_EXT_ADV_SCAN_IND);
733cba6b758SLuiz Augusto von Dentz 		else
734cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_LEGACY_ADV_SCAN_IND);
735cba6b758SLuiz Augusto von Dentz 	} else {
736cba6b758SLuiz Augusto von Dentz 		if (secondary_adv)
737cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_EXT_ADV_NON_CONN_IND);
738cba6b758SLuiz Augusto von Dentz 		else
739cba6b758SLuiz Augusto von Dentz 			cp.evt_properties = cpu_to_le16(LE_LEGACY_NONCONN_IND);
740cba6b758SLuiz Augusto von Dentz 	}
741cba6b758SLuiz Augusto von Dentz 
742cba6b758SLuiz Augusto von Dentz 	cp.own_addr_type = own_addr_type;
743cba6b758SLuiz Augusto von Dentz 	cp.channel_map = hdev->le_adv_channel_map;
744cba6b758SLuiz Augusto von Dentz 	cp.handle = instance;
745cba6b758SLuiz Augusto von Dentz 
746cba6b758SLuiz Augusto von Dentz 	if (flags & MGMT_ADV_FLAG_SEC_2M) {
747cba6b758SLuiz Augusto von Dentz 		cp.primary_phy = HCI_ADV_PHY_1M;
748cba6b758SLuiz Augusto von Dentz 		cp.secondary_phy = HCI_ADV_PHY_2M;
749cba6b758SLuiz Augusto von Dentz 	} else if (flags & MGMT_ADV_FLAG_SEC_CODED) {
750cba6b758SLuiz Augusto von Dentz 		cp.primary_phy = HCI_ADV_PHY_CODED;
751cba6b758SLuiz Augusto von Dentz 		cp.secondary_phy = HCI_ADV_PHY_CODED;
752cba6b758SLuiz Augusto von Dentz 	} else {
753cba6b758SLuiz Augusto von Dentz 		/* In all other cases use 1M */
754cba6b758SLuiz Augusto von Dentz 		cp.primary_phy = HCI_ADV_PHY_1M;
755cba6b758SLuiz Augusto von Dentz 		cp.secondary_phy = HCI_ADV_PHY_1M;
756cba6b758SLuiz Augusto von Dentz 	}
757cba6b758SLuiz Augusto von Dentz 
758cba6b758SLuiz Augusto von Dentz 	err = __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_ADV_PARAMS,
759cba6b758SLuiz Augusto von Dentz 				    sizeof(cp), &cp, HCI_CMD_TIMEOUT);
760cba6b758SLuiz Augusto von Dentz 	if (err)
761cba6b758SLuiz Augusto von Dentz 		return err;
762cba6b758SLuiz Augusto von Dentz 
763cba6b758SLuiz Augusto von Dentz 	if ((own_addr_type == ADDR_LE_DEV_RANDOM ||
764cba6b758SLuiz Augusto von Dentz 	     own_addr_type == ADDR_LE_DEV_RANDOM_RESOLVED) &&
765cba6b758SLuiz Augusto von Dentz 	    bacmp(&random_addr, BDADDR_ANY)) {
766cba6b758SLuiz Augusto von Dentz 		/* Check if random address need to be updated */
767cba6b758SLuiz Augusto von Dentz 		if (adv) {
768cba6b758SLuiz Augusto von Dentz 			if (!bacmp(&random_addr, &adv->random_addr))
769cba6b758SLuiz Augusto von Dentz 				return 0;
770cba6b758SLuiz Augusto von Dentz 		} else {
771cba6b758SLuiz Augusto von Dentz 			if (!bacmp(&random_addr, &hdev->random_addr))
772cba6b758SLuiz Augusto von Dentz 				return 0;
773cba6b758SLuiz Augusto von Dentz 		}
774cba6b758SLuiz Augusto von Dentz 
775cba6b758SLuiz Augusto von Dentz 		return hci_set_adv_set_random_addr_sync(hdev, instance,
776cba6b758SLuiz Augusto von Dentz 							&random_addr);
777cba6b758SLuiz Augusto von Dentz 	}
778cba6b758SLuiz Augusto von Dentz 
779cba6b758SLuiz Augusto von Dentz 	return 0;
780cba6b758SLuiz Augusto von Dentz }
781cba6b758SLuiz Augusto von Dentz 
782cba6b758SLuiz Augusto von Dentz static int hci_set_ext_scan_rsp_data_sync(struct hci_dev *hdev, u8 instance)
783cba6b758SLuiz Augusto von Dentz {
784cba6b758SLuiz Augusto von Dentz 	struct {
785cba6b758SLuiz Augusto von Dentz 		struct hci_cp_le_set_ext_scan_rsp_data cp;
786cba6b758SLuiz Augusto von Dentz 		u8 data[HCI_MAX_EXT_AD_LENGTH];
787cba6b758SLuiz Augusto von Dentz 	} pdu;
788cba6b758SLuiz Augusto von Dentz 	u8 len;
789cba6b758SLuiz Augusto von Dentz 
790cba6b758SLuiz Augusto von Dentz 	memset(&pdu, 0, sizeof(pdu));
791cba6b758SLuiz Augusto von Dentz 
792cba6b758SLuiz Augusto von Dentz 	len = eir_create_scan_rsp(hdev, instance, pdu.data);
793cba6b758SLuiz Augusto von Dentz 
794cba6b758SLuiz Augusto von Dentz 	if (hdev->scan_rsp_data_len == len &&
795cba6b758SLuiz Augusto von Dentz 	    !memcmp(pdu.data, hdev->scan_rsp_data, len))
796cba6b758SLuiz Augusto von Dentz 		return 0;
797cba6b758SLuiz Augusto von Dentz 
798cba6b758SLuiz Augusto von Dentz 	memcpy(hdev->scan_rsp_data, pdu.data, len);
799cba6b758SLuiz Augusto von Dentz 	hdev->scan_rsp_data_len = len;
800cba6b758SLuiz Augusto von Dentz 
801cba6b758SLuiz Augusto von Dentz 	pdu.cp.handle = instance;
802cba6b758SLuiz Augusto von Dentz 	pdu.cp.length = len;
803cba6b758SLuiz Augusto von Dentz 	pdu.cp.operation = LE_SET_ADV_DATA_OP_COMPLETE;
804cba6b758SLuiz Augusto von Dentz 	pdu.cp.frag_pref = LE_SET_ADV_DATA_NO_FRAG;
805cba6b758SLuiz Augusto von Dentz 
806cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_SCAN_RSP_DATA,
807cba6b758SLuiz Augusto von Dentz 				     sizeof(pdu.cp) + len, &pdu.cp,
808cba6b758SLuiz Augusto von Dentz 				     HCI_CMD_TIMEOUT);
809cba6b758SLuiz Augusto von Dentz }
810cba6b758SLuiz Augusto von Dentz 
811cba6b758SLuiz Augusto von Dentz static int __hci_set_scan_rsp_data_sync(struct hci_dev *hdev, u8 instance)
812cba6b758SLuiz Augusto von Dentz {
813cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_scan_rsp_data cp;
814cba6b758SLuiz Augusto von Dentz 	u8 len;
815cba6b758SLuiz Augusto von Dentz 
816cba6b758SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
817cba6b758SLuiz Augusto von Dentz 
818cba6b758SLuiz Augusto von Dentz 	len = eir_create_scan_rsp(hdev, instance, cp.data);
819cba6b758SLuiz Augusto von Dentz 
820cba6b758SLuiz Augusto von Dentz 	if (hdev->scan_rsp_data_len == len &&
821cba6b758SLuiz Augusto von Dentz 	    !memcmp(cp.data, hdev->scan_rsp_data, len))
822cba6b758SLuiz Augusto von Dentz 		return 0;
823cba6b758SLuiz Augusto von Dentz 
824cba6b758SLuiz Augusto von Dentz 	memcpy(hdev->scan_rsp_data, cp.data, sizeof(cp.data));
825cba6b758SLuiz Augusto von Dentz 	hdev->scan_rsp_data_len = len;
826cba6b758SLuiz Augusto von Dentz 
827cba6b758SLuiz Augusto von Dentz 	cp.length = len;
828cba6b758SLuiz Augusto von Dentz 
829cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_SCAN_RSP_DATA,
830cba6b758SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
831cba6b758SLuiz Augusto von Dentz }
832cba6b758SLuiz Augusto von Dentz 
833cba6b758SLuiz Augusto von Dentz int hci_update_scan_rsp_data_sync(struct hci_dev *hdev, u8 instance)
834cba6b758SLuiz Augusto von Dentz {
835cba6b758SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LE_ENABLED))
836cba6b758SLuiz Augusto von Dentz 		return 0;
837cba6b758SLuiz Augusto von Dentz 
838cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
839cba6b758SLuiz Augusto von Dentz 		return hci_set_ext_scan_rsp_data_sync(hdev, instance);
840cba6b758SLuiz Augusto von Dentz 
841cba6b758SLuiz Augusto von Dentz 	return __hci_set_scan_rsp_data_sync(hdev, instance);
842cba6b758SLuiz Augusto von Dentz }
843cba6b758SLuiz Augusto von Dentz 
844cba6b758SLuiz Augusto von Dentz int hci_enable_ext_advertising_sync(struct hci_dev *hdev, u8 instance)
845cba6b758SLuiz Augusto von Dentz {
846cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_ext_adv_enable *cp;
847cba6b758SLuiz Augusto von Dentz 	struct hci_cp_ext_adv_set *set;
848cba6b758SLuiz Augusto von Dentz 	u8 data[sizeof(*cp) + sizeof(*set) * 1];
849cba6b758SLuiz Augusto von Dentz 	struct adv_info *adv;
850cba6b758SLuiz Augusto von Dentz 
851cba6b758SLuiz Augusto von Dentz 	if (instance > 0) {
852cba6b758SLuiz Augusto von Dentz 		adv = hci_find_adv_instance(hdev, instance);
853cba6b758SLuiz Augusto von Dentz 		if (!adv)
854cba6b758SLuiz Augusto von Dentz 			return -EINVAL;
855cba6b758SLuiz Augusto von Dentz 		/* If already enabled there is nothing to do */
856cba6b758SLuiz Augusto von Dentz 		if (adv->enabled)
857cba6b758SLuiz Augusto von Dentz 			return 0;
858cba6b758SLuiz Augusto von Dentz 	} else {
859cba6b758SLuiz Augusto von Dentz 		adv = NULL;
860cba6b758SLuiz Augusto von Dentz 	}
861cba6b758SLuiz Augusto von Dentz 
862cba6b758SLuiz Augusto von Dentz 	cp = (void *)data;
863cba6b758SLuiz Augusto von Dentz 	set = (void *)cp->data;
864cba6b758SLuiz Augusto von Dentz 
865cba6b758SLuiz Augusto von Dentz 	memset(cp, 0, sizeof(*cp));
866cba6b758SLuiz Augusto von Dentz 
867cba6b758SLuiz Augusto von Dentz 	cp->enable = 0x01;
868cba6b758SLuiz Augusto von Dentz 	cp->num_of_sets = 0x01;
869cba6b758SLuiz Augusto von Dentz 
870cba6b758SLuiz Augusto von Dentz 	memset(set, 0, sizeof(*set));
871cba6b758SLuiz Augusto von Dentz 
872cba6b758SLuiz Augusto von Dentz 	set->handle = instance;
873cba6b758SLuiz Augusto von Dentz 
874cba6b758SLuiz Augusto von Dentz 	/* Set duration per instance since controller is responsible for
875cba6b758SLuiz Augusto von Dentz 	 * scheduling it.
876cba6b758SLuiz Augusto von Dentz 	 */
877cba6b758SLuiz Augusto von Dentz 	if (adv && adv->duration) {
878cba6b758SLuiz Augusto von Dentz 		u16 duration = adv->timeout * MSEC_PER_SEC;
879cba6b758SLuiz Augusto von Dentz 
880cba6b758SLuiz Augusto von Dentz 		/* Time = N * 10 ms */
881cba6b758SLuiz Augusto von Dentz 		set->duration = cpu_to_le16(duration / 10);
882cba6b758SLuiz Augusto von Dentz 	}
883cba6b758SLuiz Augusto von Dentz 
884cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_ADV_ENABLE,
885cba6b758SLuiz Augusto von Dentz 				     sizeof(*cp) +
886cba6b758SLuiz Augusto von Dentz 				     sizeof(*set) * cp->num_of_sets,
887cba6b758SLuiz Augusto von Dentz 				     data, HCI_CMD_TIMEOUT);
888cba6b758SLuiz Augusto von Dentz }
889cba6b758SLuiz Augusto von Dentz 
890cba6b758SLuiz Augusto von Dentz int hci_start_ext_adv_sync(struct hci_dev *hdev, u8 instance)
891cba6b758SLuiz Augusto von Dentz {
892cba6b758SLuiz Augusto von Dentz 	int err;
893cba6b758SLuiz Augusto von Dentz 
894cba6b758SLuiz Augusto von Dentz 	err = hci_setup_ext_adv_instance_sync(hdev, instance);
895cba6b758SLuiz Augusto von Dentz 	if (err)
896cba6b758SLuiz Augusto von Dentz 		return err;
897cba6b758SLuiz Augusto von Dentz 
898cba6b758SLuiz Augusto von Dentz 	err = hci_set_ext_scan_rsp_data_sync(hdev, instance);
899cba6b758SLuiz Augusto von Dentz 	if (err)
900cba6b758SLuiz Augusto von Dentz 		return err;
901cba6b758SLuiz Augusto von Dentz 
902cba6b758SLuiz Augusto von Dentz 	return hci_enable_ext_advertising_sync(hdev, instance);
903cba6b758SLuiz Augusto von Dentz }
904cba6b758SLuiz Augusto von Dentz 
905cba6b758SLuiz Augusto von Dentz static int hci_start_adv_sync(struct hci_dev *hdev, u8 instance)
906cba6b758SLuiz Augusto von Dentz {
907cba6b758SLuiz Augusto von Dentz 	int err;
908cba6b758SLuiz Augusto von Dentz 
909cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
910cba6b758SLuiz Augusto von Dentz 		return hci_start_ext_adv_sync(hdev, instance);
911cba6b758SLuiz Augusto von Dentz 
912cba6b758SLuiz Augusto von Dentz 	err = hci_update_adv_data_sync(hdev, instance);
913cba6b758SLuiz Augusto von Dentz 	if (err)
914cba6b758SLuiz Augusto von Dentz 		return err;
915cba6b758SLuiz Augusto von Dentz 
916cba6b758SLuiz Augusto von Dentz 	err = hci_update_scan_rsp_data_sync(hdev, instance);
917cba6b758SLuiz Augusto von Dentz 	if (err)
918cba6b758SLuiz Augusto von Dentz 		return err;
919cba6b758SLuiz Augusto von Dentz 
920cba6b758SLuiz Augusto von Dentz 	return hci_enable_advertising_sync(hdev);
921cba6b758SLuiz Augusto von Dentz }
922cba6b758SLuiz Augusto von Dentz 
923cba6b758SLuiz Augusto von Dentz int hci_enable_advertising_sync(struct hci_dev *hdev)
924cba6b758SLuiz Augusto von Dentz {
925cba6b758SLuiz Augusto von Dentz 	struct adv_info *adv_instance;
926cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_adv_param cp;
927cba6b758SLuiz Augusto von Dentz 	u8 own_addr_type, enable = 0x01;
928cba6b758SLuiz Augusto von Dentz 	bool connectable;
929cba6b758SLuiz Augusto von Dentz 	u16 adv_min_interval, adv_max_interval;
930cba6b758SLuiz Augusto von Dentz 	u32 flags;
931cba6b758SLuiz Augusto von Dentz 	u8 status;
932cba6b758SLuiz Augusto von Dentz 
933*ad383c2cSLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
934*ad383c2cSLuiz Augusto von Dentz 		return hci_enable_ext_advertising_sync(hdev,
935*ad383c2cSLuiz Augusto von Dentz 						       hdev->cur_adv_instance);
936*ad383c2cSLuiz Augusto von Dentz 
937cba6b758SLuiz Augusto von Dentz 	flags = hci_adv_instance_flags(hdev, hdev->cur_adv_instance);
938cba6b758SLuiz Augusto von Dentz 	adv_instance = hci_find_adv_instance(hdev, hdev->cur_adv_instance);
939cba6b758SLuiz Augusto von Dentz 
940cba6b758SLuiz Augusto von Dentz 	/* If the "connectable" instance flag was not set, then choose between
941cba6b758SLuiz Augusto von Dentz 	 * ADV_IND and ADV_NONCONN_IND based on the global connectable setting.
942cba6b758SLuiz Augusto von Dentz 	 */
943cba6b758SLuiz Augusto von Dentz 	connectable = (flags & MGMT_ADV_FLAG_CONNECTABLE) ||
944cba6b758SLuiz Augusto von Dentz 		      mgmt_get_connectable(hdev);
945cba6b758SLuiz Augusto von Dentz 
946cba6b758SLuiz Augusto von Dentz 	if (!is_advertising_allowed(hdev, connectable))
947cba6b758SLuiz Augusto von Dentz 		return -EINVAL;
948cba6b758SLuiz Augusto von Dentz 
949cba6b758SLuiz Augusto von Dentz 	status = hci_disable_advertising_sync(hdev);
950cba6b758SLuiz Augusto von Dentz 	if (status)
951cba6b758SLuiz Augusto von Dentz 		return status;
952cba6b758SLuiz Augusto von Dentz 
953cba6b758SLuiz Augusto von Dentz 	/* Clear the HCI_LE_ADV bit temporarily so that the
954cba6b758SLuiz Augusto von Dentz 	 * hci_update_random_address knows that it's safe to go ahead
955cba6b758SLuiz Augusto von Dentz 	 * and write a new random address. The flag will be set back on
956cba6b758SLuiz Augusto von Dentz 	 * as soon as the SET_ADV_ENABLE HCI command completes.
957cba6b758SLuiz Augusto von Dentz 	 */
958cba6b758SLuiz Augusto von Dentz 	hci_dev_clear_flag(hdev, HCI_LE_ADV);
959cba6b758SLuiz Augusto von Dentz 
960cba6b758SLuiz Augusto von Dentz 	/* Set require_privacy to true only when non-connectable
961cba6b758SLuiz Augusto von Dentz 	 * advertising is used. In that case it is fine to use a
962cba6b758SLuiz Augusto von Dentz 	 * non-resolvable private address.
963cba6b758SLuiz Augusto von Dentz 	 */
964cba6b758SLuiz Augusto von Dentz 	status = hci_update_random_address_sync(hdev, !connectable,
965cba6b758SLuiz Augusto von Dentz 						adv_use_rpa(hdev, flags),
966cba6b758SLuiz Augusto von Dentz 						&own_addr_type);
967cba6b758SLuiz Augusto von Dentz 	if (status)
968cba6b758SLuiz Augusto von Dentz 		return status;
969cba6b758SLuiz Augusto von Dentz 
970cba6b758SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
971cba6b758SLuiz Augusto von Dentz 
972cba6b758SLuiz Augusto von Dentz 	if (adv_instance) {
973cba6b758SLuiz Augusto von Dentz 		adv_min_interval = adv_instance->min_interval;
974cba6b758SLuiz Augusto von Dentz 		adv_max_interval = adv_instance->max_interval;
975cba6b758SLuiz Augusto von Dentz 	} else {
976cba6b758SLuiz Augusto von Dentz 		adv_min_interval = hdev->le_adv_min_interval;
977cba6b758SLuiz Augusto von Dentz 		adv_max_interval = hdev->le_adv_max_interval;
978cba6b758SLuiz Augusto von Dentz 	}
979cba6b758SLuiz Augusto von Dentz 
980cba6b758SLuiz Augusto von Dentz 	if (connectable) {
981cba6b758SLuiz Augusto von Dentz 		cp.type = LE_ADV_IND;
982cba6b758SLuiz Augusto von Dentz 	} else {
983cba6b758SLuiz Augusto von Dentz 		if (hci_adv_instance_is_scannable(hdev, hdev->cur_adv_instance))
984cba6b758SLuiz Augusto von Dentz 			cp.type = LE_ADV_SCAN_IND;
985cba6b758SLuiz Augusto von Dentz 		else
986cba6b758SLuiz Augusto von Dentz 			cp.type = LE_ADV_NONCONN_IND;
987cba6b758SLuiz Augusto von Dentz 
988cba6b758SLuiz Augusto von Dentz 		if (!hci_dev_test_flag(hdev, HCI_DISCOVERABLE) ||
989cba6b758SLuiz Augusto von Dentz 		    hci_dev_test_flag(hdev, HCI_LIMITED_DISCOVERABLE)) {
990cba6b758SLuiz Augusto von Dentz 			adv_min_interval = DISCOV_LE_FAST_ADV_INT_MIN;
991cba6b758SLuiz Augusto von Dentz 			adv_max_interval = DISCOV_LE_FAST_ADV_INT_MAX;
992cba6b758SLuiz Augusto von Dentz 		}
993cba6b758SLuiz Augusto von Dentz 	}
994cba6b758SLuiz Augusto von Dentz 
995cba6b758SLuiz Augusto von Dentz 	cp.min_interval = cpu_to_le16(adv_min_interval);
996cba6b758SLuiz Augusto von Dentz 	cp.max_interval = cpu_to_le16(adv_max_interval);
997cba6b758SLuiz Augusto von Dentz 	cp.own_address_type = own_addr_type;
998cba6b758SLuiz Augusto von Dentz 	cp.channel_map = hdev->le_adv_channel_map;
999cba6b758SLuiz Augusto von Dentz 
1000cba6b758SLuiz Augusto von Dentz 	status = __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADV_PARAM,
1001cba6b758SLuiz Augusto von Dentz 				       sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1002cba6b758SLuiz Augusto von Dentz 	if (status)
1003cba6b758SLuiz Augusto von Dentz 		return status;
1004cba6b758SLuiz Augusto von Dentz 
1005cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADV_ENABLE,
1006cba6b758SLuiz Augusto von Dentz 				     sizeof(enable), &enable, HCI_CMD_TIMEOUT);
1007cba6b758SLuiz Augusto von Dentz }
1008cba6b758SLuiz Augusto von Dentz 
1009cba6b758SLuiz Augusto von Dentz static int hci_remove_ext_adv_instance_sync(struct hci_dev *hdev, u8 instance,
1010cba6b758SLuiz Augusto von Dentz 					    struct sock *sk)
1011cba6b758SLuiz Augusto von Dentz {
1012cba6b758SLuiz Augusto von Dentz 	int err;
1013cba6b758SLuiz Augusto von Dentz 
1014cba6b758SLuiz Augusto von Dentz 	if (!ext_adv_capable(hdev))
1015cba6b758SLuiz Augusto von Dentz 		return 0;
1016cba6b758SLuiz Augusto von Dentz 
1017cba6b758SLuiz Augusto von Dentz 	err = hci_disable_ext_adv_instance_sync(hdev, instance);
1018cba6b758SLuiz Augusto von Dentz 	if (err)
1019cba6b758SLuiz Augusto von Dentz 		return err;
1020cba6b758SLuiz Augusto von Dentz 
1021cba6b758SLuiz Augusto von Dentz 	/* If request specifies an instance that doesn't exist, fail */
1022cba6b758SLuiz Augusto von Dentz 	if (instance > 0 && !hci_find_adv_instance(hdev, instance))
1023cba6b758SLuiz Augusto von Dentz 		return -EINVAL;
1024cba6b758SLuiz Augusto von Dentz 
1025cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status_sk(hdev, HCI_OP_LE_REMOVE_ADV_SET,
1026cba6b758SLuiz Augusto von Dentz 					sizeof(instance), &instance, 0,
1027cba6b758SLuiz Augusto von Dentz 					HCI_CMD_TIMEOUT, sk);
1028cba6b758SLuiz Augusto von Dentz }
1029cba6b758SLuiz Augusto von Dentz 
1030cba6b758SLuiz Augusto von Dentz static void cancel_adv_timeout(struct hci_dev *hdev)
1031cba6b758SLuiz Augusto von Dentz {
1032cba6b758SLuiz Augusto von Dentz 	if (hdev->adv_instance_timeout) {
1033cba6b758SLuiz Augusto von Dentz 		hdev->adv_instance_timeout = 0;
1034cba6b758SLuiz Augusto von Dentz 		cancel_delayed_work(&hdev->adv_instance_expire);
1035cba6b758SLuiz Augusto von Dentz 	}
1036cba6b758SLuiz Augusto von Dentz }
1037cba6b758SLuiz Augusto von Dentz 
1038cba6b758SLuiz Augusto von Dentz static int hci_set_ext_adv_data_sync(struct hci_dev *hdev, u8 instance)
1039cba6b758SLuiz Augusto von Dentz {
1040cba6b758SLuiz Augusto von Dentz 	struct {
1041cba6b758SLuiz Augusto von Dentz 		struct hci_cp_le_set_ext_adv_data cp;
1042cba6b758SLuiz Augusto von Dentz 		u8 data[HCI_MAX_EXT_AD_LENGTH];
1043cba6b758SLuiz Augusto von Dentz 	} pdu;
1044cba6b758SLuiz Augusto von Dentz 	u8 len;
1045cba6b758SLuiz Augusto von Dentz 
1046cba6b758SLuiz Augusto von Dentz 	memset(&pdu, 0, sizeof(pdu));
1047cba6b758SLuiz Augusto von Dentz 
1048cba6b758SLuiz Augusto von Dentz 	len = eir_create_adv_data(hdev, instance, pdu.data);
1049cba6b758SLuiz Augusto von Dentz 
1050cba6b758SLuiz Augusto von Dentz 	/* There's nothing to do if the data hasn't changed */
1051cba6b758SLuiz Augusto von Dentz 	if (hdev->adv_data_len == len &&
1052cba6b758SLuiz Augusto von Dentz 	    memcmp(pdu.data, hdev->adv_data, len) == 0)
1053cba6b758SLuiz Augusto von Dentz 		return 0;
1054cba6b758SLuiz Augusto von Dentz 
1055cba6b758SLuiz Augusto von Dentz 	memcpy(hdev->adv_data, pdu.data, len);
1056cba6b758SLuiz Augusto von Dentz 	hdev->adv_data_len = len;
1057cba6b758SLuiz Augusto von Dentz 
1058cba6b758SLuiz Augusto von Dentz 	pdu.cp.length = len;
1059cba6b758SLuiz Augusto von Dentz 	pdu.cp.handle = instance;
1060cba6b758SLuiz Augusto von Dentz 	pdu.cp.operation = LE_SET_ADV_DATA_OP_COMPLETE;
1061cba6b758SLuiz Augusto von Dentz 	pdu.cp.frag_pref = LE_SET_ADV_DATA_NO_FRAG;
1062cba6b758SLuiz Augusto von Dentz 
1063cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_ADV_DATA,
1064cba6b758SLuiz Augusto von Dentz 				     sizeof(pdu.cp) + len, &pdu.cp,
1065cba6b758SLuiz Augusto von Dentz 				     HCI_CMD_TIMEOUT);
1066cba6b758SLuiz Augusto von Dentz }
1067cba6b758SLuiz Augusto von Dentz 
1068cba6b758SLuiz Augusto von Dentz static int hci_set_adv_data_sync(struct hci_dev *hdev, u8 instance)
1069cba6b758SLuiz Augusto von Dentz {
1070cba6b758SLuiz Augusto von Dentz 	struct hci_cp_le_set_adv_data cp;
1071cba6b758SLuiz Augusto von Dentz 	u8 len;
1072cba6b758SLuiz Augusto von Dentz 
1073cba6b758SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
1074cba6b758SLuiz Augusto von Dentz 
1075cba6b758SLuiz Augusto von Dentz 	len = eir_create_adv_data(hdev, instance, cp.data);
1076cba6b758SLuiz Augusto von Dentz 
1077cba6b758SLuiz Augusto von Dentz 	/* There's nothing to do if the data hasn't changed */
1078cba6b758SLuiz Augusto von Dentz 	if (hdev->adv_data_len == len &&
1079cba6b758SLuiz Augusto von Dentz 	    memcmp(cp.data, hdev->adv_data, len) == 0)
1080cba6b758SLuiz Augusto von Dentz 		return 0;
1081cba6b758SLuiz Augusto von Dentz 
1082cba6b758SLuiz Augusto von Dentz 	memcpy(hdev->adv_data, cp.data, sizeof(cp.data));
1083cba6b758SLuiz Augusto von Dentz 	hdev->adv_data_len = len;
1084cba6b758SLuiz Augusto von Dentz 
1085cba6b758SLuiz Augusto von Dentz 	cp.length = len;
1086cba6b758SLuiz Augusto von Dentz 
1087cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADV_DATA,
1088cba6b758SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1089cba6b758SLuiz Augusto von Dentz }
1090cba6b758SLuiz Augusto von Dentz 
1091cba6b758SLuiz Augusto von Dentz int hci_update_adv_data_sync(struct hci_dev *hdev, u8 instance)
1092cba6b758SLuiz Augusto von Dentz {
1093cba6b758SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LE_ENABLED))
1094cba6b758SLuiz Augusto von Dentz 		return 0;
1095cba6b758SLuiz Augusto von Dentz 
1096cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
1097cba6b758SLuiz Augusto von Dentz 		return hci_set_ext_adv_data_sync(hdev, instance);
1098cba6b758SLuiz Augusto von Dentz 
1099cba6b758SLuiz Augusto von Dentz 	return hci_set_adv_data_sync(hdev, instance);
1100cba6b758SLuiz Augusto von Dentz }
1101cba6b758SLuiz Augusto von Dentz 
1102cba6b758SLuiz Augusto von Dentz int hci_schedule_adv_instance_sync(struct hci_dev *hdev, u8 instance,
1103cba6b758SLuiz Augusto von Dentz 				   bool force)
1104cba6b758SLuiz Augusto von Dentz {
1105cba6b758SLuiz Augusto von Dentz 	struct adv_info *adv = NULL;
1106cba6b758SLuiz Augusto von Dentz 	u16 timeout;
1107cba6b758SLuiz Augusto von Dentz 
1108cba6b758SLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_ADVERTISING) ||
1109cba6b758SLuiz Augusto von Dentz 	    list_empty(&hdev->adv_instances))
1110cba6b758SLuiz Augusto von Dentz 		return -EPERM;
1111cba6b758SLuiz Augusto von Dentz 
1112cba6b758SLuiz Augusto von Dentz 	if (hdev->adv_instance_timeout)
1113cba6b758SLuiz Augusto von Dentz 		return -EBUSY;
1114cba6b758SLuiz Augusto von Dentz 
1115cba6b758SLuiz Augusto von Dentz 	adv = hci_find_adv_instance(hdev, instance);
1116cba6b758SLuiz Augusto von Dentz 	if (!adv)
1117cba6b758SLuiz Augusto von Dentz 		return -ENOENT;
1118cba6b758SLuiz Augusto von Dentz 
1119cba6b758SLuiz Augusto von Dentz 	/* A zero timeout means unlimited advertising. As long as there is
1120cba6b758SLuiz Augusto von Dentz 	 * only one instance, duration should be ignored. We still set a timeout
1121cba6b758SLuiz Augusto von Dentz 	 * in case further instances are being added later on.
1122cba6b758SLuiz Augusto von Dentz 	 *
1123cba6b758SLuiz Augusto von Dentz 	 * If the remaining lifetime of the instance is more than the duration
1124cba6b758SLuiz Augusto von Dentz 	 * then the timeout corresponds to the duration, otherwise it will be
1125cba6b758SLuiz Augusto von Dentz 	 * reduced to the remaining instance lifetime.
1126cba6b758SLuiz Augusto von Dentz 	 */
1127cba6b758SLuiz Augusto von Dentz 	if (adv->timeout == 0 || adv->duration <= adv->remaining_time)
1128cba6b758SLuiz Augusto von Dentz 		timeout = adv->duration;
1129cba6b758SLuiz Augusto von Dentz 	else
1130cba6b758SLuiz Augusto von Dentz 		timeout = adv->remaining_time;
1131cba6b758SLuiz Augusto von Dentz 
1132cba6b758SLuiz Augusto von Dentz 	/* The remaining time is being reduced unless the instance is being
1133cba6b758SLuiz Augusto von Dentz 	 * advertised without time limit.
1134cba6b758SLuiz Augusto von Dentz 	 */
1135cba6b758SLuiz Augusto von Dentz 	if (adv->timeout)
1136cba6b758SLuiz Augusto von Dentz 		adv->remaining_time = adv->remaining_time - timeout;
1137cba6b758SLuiz Augusto von Dentz 
1138cba6b758SLuiz Augusto von Dentz 	/* Only use work for scheduling instances with legacy advertising */
1139cba6b758SLuiz Augusto von Dentz 	if (!ext_adv_capable(hdev)) {
1140cba6b758SLuiz Augusto von Dentz 		hdev->adv_instance_timeout = timeout;
1141cba6b758SLuiz Augusto von Dentz 		queue_delayed_work(hdev->req_workqueue,
1142cba6b758SLuiz Augusto von Dentz 				   &hdev->adv_instance_expire,
1143cba6b758SLuiz Augusto von Dentz 				   msecs_to_jiffies(timeout * 1000));
1144cba6b758SLuiz Augusto von Dentz 	}
1145cba6b758SLuiz Augusto von Dentz 
1146cba6b758SLuiz Augusto von Dentz 	/* If we're just re-scheduling the same instance again then do not
1147cba6b758SLuiz Augusto von Dentz 	 * execute any HCI commands. This happens when a single instance is
1148cba6b758SLuiz Augusto von Dentz 	 * being advertised.
1149cba6b758SLuiz Augusto von Dentz 	 */
1150cba6b758SLuiz Augusto von Dentz 	if (!force && hdev->cur_adv_instance == instance &&
1151cba6b758SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_LE_ADV))
1152cba6b758SLuiz Augusto von Dentz 		return 0;
1153cba6b758SLuiz Augusto von Dentz 
1154cba6b758SLuiz Augusto von Dentz 	hdev->cur_adv_instance = instance;
1155cba6b758SLuiz Augusto von Dentz 
1156cba6b758SLuiz Augusto von Dentz 	return hci_start_adv_sync(hdev, instance);
1157cba6b758SLuiz Augusto von Dentz }
1158cba6b758SLuiz Augusto von Dentz 
1159cba6b758SLuiz Augusto von Dentz static int hci_clear_adv_sets_sync(struct hci_dev *hdev, struct sock *sk)
1160cba6b758SLuiz Augusto von Dentz {
1161cba6b758SLuiz Augusto von Dentz 	int err;
1162cba6b758SLuiz Augusto von Dentz 
1163cba6b758SLuiz Augusto von Dentz 	if (!ext_adv_capable(hdev))
1164cba6b758SLuiz Augusto von Dentz 		return 0;
1165cba6b758SLuiz Augusto von Dentz 
1166cba6b758SLuiz Augusto von Dentz 	/* Disable instance 0x00 to disable all instances */
1167cba6b758SLuiz Augusto von Dentz 	err = hci_disable_ext_adv_instance_sync(hdev, 0x00);
1168cba6b758SLuiz Augusto von Dentz 	if (err)
1169cba6b758SLuiz Augusto von Dentz 		return err;
1170cba6b758SLuiz Augusto von Dentz 
1171cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status_sk(hdev, HCI_OP_LE_CLEAR_ADV_SETS,
1172cba6b758SLuiz Augusto von Dentz 					0, NULL, 0, HCI_CMD_TIMEOUT, sk);
1173cba6b758SLuiz Augusto von Dentz }
1174cba6b758SLuiz Augusto von Dentz 
1175cba6b758SLuiz Augusto von Dentz static int hci_clear_adv_sync(struct hci_dev *hdev, struct sock *sk, bool force)
1176cba6b758SLuiz Augusto von Dentz {
1177cba6b758SLuiz Augusto von Dentz 	struct adv_info *adv, *n;
1178cba6b758SLuiz Augusto von Dentz 
1179cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
1180cba6b758SLuiz Augusto von Dentz 		/* Remove all existing sets */
1181cba6b758SLuiz Augusto von Dentz 		return hci_clear_adv_sets_sync(hdev, sk);
1182cba6b758SLuiz Augusto von Dentz 
1183cba6b758SLuiz Augusto von Dentz 	/* This is safe as long as there is no command send while the lock is
1184cba6b758SLuiz Augusto von Dentz 	 * held.
1185cba6b758SLuiz Augusto von Dentz 	 */
1186cba6b758SLuiz Augusto von Dentz 	hci_dev_lock(hdev);
1187cba6b758SLuiz Augusto von Dentz 
1188cba6b758SLuiz Augusto von Dentz 	/* Cleanup non-ext instances */
1189cba6b758SLuiz Augusto von Dentz 	list_for_each_entry_safe(adv, n, &hdev->adv_instances, list) {
1190cba6b758SLuiz Augusto von Dentz 		u8 instance = adv->instance;
1191cba6b758SLuiz Augusto von Dentz 		int err;
1192cba6b758SLuiz Augusto von Dentz 
1193cba6b758SLuiz Augusto von Dentz 		if (!(force || adv->timeout))
1194cba6b758SLuiz Augusto von Dentz 			continue;
1195cba6b758SLuiz Augusto von Dentz 
1196cba6b758SLuiz Augusto von Dentz 		err = hci_remove_adv_instance(hdev, instance);
1197cba6b758SLuiz Augusto von Dentz 		if (!err)
1198cba6b758SLuiz Augusto von Dentz 			mgmt_advertising_removed(sk, hdev, instance);
1199cba6b758SLuiz Augusto von Dentz 	}
1200cba6b758SLuiz Augusto von Dentz 
1201cba6b758SLuiz Augusto von Dentz 	hci_dev_unlock(hdev);
1202cba6b758SLuiz Augusto von Dentz 
1203cba6b758SLuiz Augusto von Dentz 	return 0;
1204cba6b758SLuiz Augusto von Dentz }
1205cba6b758SLuiz Augusto von Dentz 
1206cba6b758SLuiz Augusto von Dentz static int hci_remove_adv_sync(struct hci_dev *hdev, u8 instance,
1207cba6b758SLuiz Augusto von Dentz 			       struct sock *sk)
1208cba6b758SLuiz Augusto von Dentz {
1209cba6b758SLuiz Augusto von Dentz 	int err;
1210cba6b758SLuiz Augusto von Dentz 
1211cba6b758SLuiz Augusto von Dentz 	/* If we use extended advertising, instance has to be removed first. */
1212cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
1213cba6b758SLuiz Augusto von Dentz 		return hci_remove_ext_adv_instance_sync(hdev, instance, sk);
1214cba6b758SLuiz Augusto von Dentz 
1215cba6b758SLuiz Augusto von Dentz 	/* This is safe as long as there is no command send while the lock is
1216cba6b758SLuiz Augusto von Dentz 	 * held.
1217cba6b758SLuiz Augusto von Dentz 	 */
1218cba6b758SLuiz Augusto von Dentz 	hci_dev_lock(hdev);
1219cba6b758SLuiz Augusto von Dentz 
1220cba6b758SLuiz Augusto von Dentz 	err = hci_remove_adv_instance(hdev, instance);
1221cba6b758SLuiz Augusto von Dentz 	if (!err)
1222cba6b758SLuiz Augusto von Dentz 		mgmt_advertising_removed(sk, hdev, instance);
1223cba6b758SLuiz Augusto von Dentz 
1224cba6b758SLuiz Augusto von Dentz 	hci_dev_unlock(hdev);
1225cba6b758SLuiz Augusto von Dentz 
1226cba6b758SLuiz Augusto von Dentz 	return err;
1227cba6b758SLuiz Augusto von Dentz }
1228cba6b758SLuiz Augusto von Dentz 
1229cba6b758SLuiz Augusto von Dentz /* For a single instance:
1230cba6b758SLuiz Augusto von Dentz  * - force == true: The instance will be removed even when its remaining
1231cba6b758SLuiz Augusto von Dentz  *   lifetime is not zero.
1232cba6b758SLuiz Augusto von Dentz  * - force == false: the instance will be deactivated but kept stored unless
1233cba6b758SLuiz Augusto von Dentz  *   the remaining lifetime is zero.
1234cba6b758SLuiz Augusto von Dentz  *
1235cba6b758SLuiz Augusto von Dentz  * For instance == 0x00:
1236cba6b758SLuiz Augusto von Dentz  * - force == true: All instances will be removed regardless of their timeout
1237cba6b758SLuiz Augusto von Dentz  *   setting.
1238cba6b758SLuiz Augusto von Dentz  * - force == false: Only instances that have a timeout will be removed.
1239cba6b758SLuiz Augusto von Dentz  */
1240cba6b758SLuiz Augusto von Dentz int hci_remove_advertising_sync(struct hci_dev *hdev, struct sock *sk,
1241cba6b758SLuiz Augusto von Dentz 				u8 instance, bool force)
1242cba6b758SLuiz Augusto von Dentz {
1243cba6b758SLuiz Augusto von Dentz 	struct adv_info *next = NULL;
1244cba6b758SLuiz Augusto von Dentz 	int err;
1245cba6b758SLuiz Augusto von Dentz 
1246cba6b758SLuiz Augusto von Dentz 	/* Cancel any timeout concerning the removed instance(s). */
1247cba6b758SLuiz Augusto von Dentz 	if (!instance || hdev->cur_adv_instance == instance)
1248cba6b758SLuiz Augusto von Dentz 		cancel_adv_timeout(hdev);
1249cba6b758SLuiz Augusto von Dentz 
1250cba6b758SLuiz Augusto von Dentz 	/* Get the next instance to advertise BEFORE we remove
1251cba6b758SLuiz Augusto von Dentz 	 * the current one. This can be the same instance again
1252cba6b758SLuiz Augusto von Dentz 	 * if there is only one instance.
1253cba6b758SLuiz Augusto von Dentz 	 */
1254cba6b758SLuiz Augusto von Dentz 	if (hdev->cur_adv_instance == instance)
1255cba6b758SLuiz Augusto von Dentz 		next = hci_get_next_instance(hdev, instance);
1256cba6b758SLuiz Augusto von Dentz 
1257cba6b758SLuiz Augusto von Dentz 	if (!instance) {
1258cba6b758SLuiz Augusto von Dentz 		err = hci_clear_adv_sync(hdev, sk, force);
1259cba6b758SLuiz Augusto von Dentz 		if (err)
1260cba6b758SLuiz Augusto von Dentz 			return err;
1261cba6b758SLuiz Augusto von Dentz 	} else {
1262cba6b758SLuiz Augusto von Dentz 		struct adv_info *adv = hci_find_adv_instance(hdev, instance);
1263cba6b758SLuiz Augusto von Dentz 
1264cba6b758SLuiz Augusto von Dentz 		if (force || (adv && adv->timeout && !adv->remaining_time)) {
1265cba6b758SLuiz Augusto von Dentz 			/* Don't advertise a removed instance. */
1266cba6b758SLuiz Augusto von Dentz 			if (next && next->instance == instance)
1267cba6b758SLuiz Augusto von Dentz 				next = NULL;
1268cba6b758SLuiz Augusto von Dentz 
1269cba6b758SLuiz Augusto von Dentz 			err = hci_remove_adv_sync(hdev, instance, sk);
1270cba6b758SLuiz Augusto von Dentz 			if (err)
1271cba6b758SLuiz Augusto von Dentz 				return err;
1272cba6b758SLuiz Augusto von Dentz 		}
1273cba6b758SLuiz Augusto von Dentz 	}
1274cba6b758SLuiz Augusto von Dentz 
1275cba6b758SLuiz Augusto von Dentz 	if (!hdev_is_powered(hdev) || hci_dev_test_flag(hdev, HCI_ADVERTISING))
1276cba6b758SLuiz Augusto von Dentz 		return 0;
1277cba6b758SLuiz Augusto von Dentz 
1278cba6b758SLuiz Augusto von Dentz 	if (next && !ext_adv_capable(hdev))
1279cba6b758SLuiz Augusto von Dentz 		hci_schedule_adv_instance_sync(hdev, next->instance, false);
1280cba6b758SLuiz Augusto von Dentz 
1281cba6b758SLuiz Augusto von Dentz 	return 0;
1282cba6b758SLuiz Augusto von Dentz }
1283cba6b758SLuiz Augusto von Dentz 
1284cba6b758SLuiz Augusto von Dentz int hci_disable_advertising_sync(struct hci_dev *hdev)
1285cba6b758SLuiz Augusto von Dentz {
1286cba6b758SLuiz Augusto von Dentz 	u8 enable = 0x00;
1287cba6b758SLuiz Augusto von Dentz 
1288*ad383c2cSLuiz Augusto von Dentz 	/* If controller is not advertising we are done. */
1289*ad383c2cSLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LE_ADV))
1290*ad383c2cSLuiz Augusto von Dentz 		return 0;
1291*ad383c2cSLuiz Augusto von Dentz 
1292cba6b758SLuiz Augusto von Dentz 	if (ext_adv_capable(hdev))
1293cba6b758SLuiz Augusto von Dentz 		return hci_disable_ext_adv_instance_sync(hdev, 0x00);
1294cba6b758SLuiz Augusto von Dentz 
1295cba6b758SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADV_ENABLE,
1296cba6b758SLuiz Augusto von Dentz 				     sizeof(enable), &enable, HCI_CMD_TIMEOUT);
1297cba6b758SLuiz Augusto von Dentz }
1298e8907f76SLuiz Augusto von Dentz 
1299e8907f76SLuiz Augusto von Dentz static int hci_le_set_ext_scan_enable_sync(struct hci_dev *hdev, u8 val,
1300e8907f76SLuiz Augusto von Dentz 					   u8 filter_dup)
1301e8907f76SLuiz Augusto von Dentz {
1302e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_set_ext_scan_enable cp;
1303e8907f76SLuiz Augusto von Dentz 
1304e8907f76SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
1305e8907f76SLuiz Augusto von Dentz 	cp.enable = val;
1306e8907f76SLuiz Augusto von Dentz 	cp.filter_dup = filter_dup;
1307e8907f76SLuiz Augusto von Dentz 
1308e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_SCAN_ENABLE,
1309e8907f76SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1310e8907f76SLuiz Augusto von Dentz }
1311e8907f76SLuiz Augusto von Dentz 
1312e8907f76SLuiz Augusto von Dentz static int hci_le_set_scan_enable_sync(struct hci_dev *hdev, u8 val,
1313e8907f76SLuiz Augusto von Dentz 				       u8 filter_dup)
1314e8907f76SLuiz Augusto von Dentz {
1315e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_set_scan_enable cp;
1316e8907f76SLuiz Augusto von Dentz 
1317e8907f76SLuiz Augusto von Dentz 	if (use_ext_scan(hdev))
1318e8907f76SLuiz Augusto von Dentz 		return hci_le_set_ext_scan_enable_sync(hdev, val, filter_dup);
1319e8907f76SLuiz Augusto von Dentz 
1320e8907f76SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
1321e8907f76SLuiz Augusto von Dentz 	cp.enable = val;
1322e8907f76SLuiz Augusto von Dentz 	cp.filter_dup = filter_dup;
1323e8907f76SLuiz Augusto von Dentz 
1324e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_SCAN_ENABLE,
1325e8907f76SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1326e8907f76SLuiz Augusto von Dentz }
1327e8907f76SLuiz Augusto von Dentz 
1328e8907f76SLuiz Augusto von Dentz static int hci_le_set_addr_resolution_enable_sync(struct hci_dev *hdev, u8 val)
1329e8907f76SLuiz Augusto von Dentz {
1330*ad383c2cSLuiz Augusto von Dentz 	if (!use_ll_privacy(hdev))
1331*ad383c2cSLuiz Augusto von Dentz 		return 0;
1332*ad383c2cSLuiz Augusto von Dentz 
1333*ad383c2cSLuiz Augusto von Dentz 	/* If controller is not/already resolving we are done. */
1334*ad383c2cSLuiz Augusto von Dentz 	if (val == hci_dev_test_flag(hdev, HCI_LL_RPA_RESOLUTION))
1335e8907f76SLuiz Augusto von Dentz 		return 0;
1336e8907f76SLuiz Augusto von Dentz 
1337e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_ADDR_RESOLV_ENABLE,
1338e8907f76SLuiz Augusto von Dentz 				     sizeof(val), &val, HCI_CMD_TIMEOUT);
1339e8907f76SLuiz Augusto von Dentz }
1340e8907f76SLuiz Augusto von Dentz 
1341*ad383c2cSLuiz Augusto von Dentz int hci_scan_disable_sync(struct hci_dev *hdev)
1342e8907f76SLuiz Augusto von Dentz {
1343e8907f76SLuiz Augusto von Dentz 	int err;
1344e8907f76SLuiz Augusto von Dentz 
1345e8907f76SLuiz Augusto von Dentz 	/* If controller is not scanning we are done. */
1346e8907f76SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LE_SCAN))
1347e8907f76SLuiz Augusto von Dentz 		return 0;
1348e8907f76SLuiz Augusto von Dentz 
1349e8907f76SLuiz Augusto von Dentz 	if (hdev->scanning_paused) {
1350e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "Scanning is paused for suspend");
1351e8907f76SLuiz Augusto von Dentz 		return 0;
1352e8907f76SLuiz Augusto von Dentz 	}
1353e8907f76SLuiz Augusto von Dentz 
1354e8907f76SLuiz Augusto von Dentz 	if (hdev->suspended)
1355e8907f76SLuiz Augusto von Dentz 		set_bit(SUSPEND_SCAN_DISABLE, hdev->suspend_tasks);
1356e8907f76SLuiz Augusto von Dentz 
1357e8907f76SLuiz Augusto von Dentz 	err = hci_le_set_scan_enable_sync(hdev, LE_SCAN_DISABLE, 0x00);
1358e8907f76SLuiz Augusto von Dentz 	if (err) {
1359e8907f76SLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to disable scanning: %d", err);
1360e8907f76SLuiz Augusto von Dentz 		return err;
1361e8907f76SLuiz Augusto von Dentz 	}
1362e8907f76SLuiz Augusto von Dentz 
1363e8907f76SLuiz Augusto von Dentz 	return err;
1364e8907f76SLuiz Augusto von Dentz }
1365e8907f76SLuiz Augusto von Dentz 
1366e8907f76SLuiz Augusto von Dentz static bool scan_use_rpa(struct hci_dev *hdev)
1367e8907f76SLuiz Augusto von Dentz {
1368e8907f76SLuiz Augusto von Dentz 	return hci_dev_test_flag(hdev, HCI_PRIVACY);
1369e8907f76SLuiz Augusto von Dentz }
1370e8907f76SLuiz Augusto von Dentz 
1371e8907f76SLuiz Augusto von Dentz static void hci_start_interleave_scan(struct hci_dev *hdev)
1372e8907f76SLuiz Augusto von Dentz {
1373e8907f76SLuiz Augusto von Dentz 	hdev->interleave_scan_state = INTERLEAVE_SCAN_NO_FILTER;
1374e8907f76SLuiz Augusto von Dentz 	queue_delayed_work(hdev->req_workqueue,
1375e8907f76SLuiz Augusto von Dentz 			   &hdev->interleave_scan, 0);
1376e8907f76SLuiz Augusto von Dentz }
1377e8907f76SLuiz Augusto von Dentz 
1378e8907f76SLuiz Augusto von Dentz static bool is_interleave_scanning(struct hci_dev *hdev)
1379e8907f76SLuiz Augusto von Dentz {
1380e8907f76SLuiz Augusto von Dentz 	return hdev->interleave_scan_state != INTERLEAVE_SCAN_NONE;
1381e8907f76SLuiz Augusto von Dentz }
1382e8907f76SLuiz Augusto von Dentz 
1383e8907f76SLuiz Augusto von Dentz static void cancel_interleave_scan(struct hci_dev *hdev)
1384e8907f76SLuiz Augusto von Dentz {
1385e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "cancelling interleave scan");
1386e8907f76SLuiz Augusto von Dentz 
1387e8907f76SLuiz Augusto von Dentz 	cancel_delayed_work_sync(&hdev->interleave_scan);
1388e8907f76SLuiz Augusto von Dentz 
1389e8907f76SLuiz Augusto von Dentz 	hdev->interleave_scan_state = INTERLEAVE_SCAN_NONE;
1390e8907f76SLuiz Augusto von Dentz }
1391e8907f76SLuiz Augusto von Dentz 
1392e8907f76SLuiz Augusto von Dentz /* Return true if interleave_scan wasn't started until exiting this function,
1393e8907f76SLuiz Augusto von Dentz  * otherwise, return false
1394e8907f76SLuiz Augusto von Dentz  */
1395e8907f76SLuiz Augusto von Dentz static bool hci_update_interleaved_scan_sync(struct hci_dev *hdev)
1396e8907f76SLuiz Augusto von Dentz {
1397e8907f76SLuiz Augusto von Dentz 	/* Do interleaved scan only if all of the following are true:
1398e8907f76SLuiz Augusto von Dentz 	 * - There is at least one ADV monitor
1399e8907f76SLuiz Augusto von Dentz 	 * - At least one pending LE connection or one device to be scanned for
1400e8907f76SLuiz Augusto von Dentz 	 * - Monitor offloading is not supported
1401e8907f76SLuiz Augusto von Dentz 	 * If so, we should alternate between allowlist scan and one without
1402e8907f76SLuiz Augusto von Dentz 	 * any filters to save power.
1403e8907f76SLuiz Augusto von Dentz 	 */
1404e8907f76SLuiz Augusto von Dentz 	bool use_interleaving = hci_is_adv_monitoring(hdev) &&
1405e8907f76SLuiz Augusto von Dentz 				!(list_empty(&hdev->pend_le_conns) &&
1406e8907f76SLuiz Augusto von Dentz 				  list_empty(&hdev->pend_le_reports)) &&
1407e8907f76SLuiz Augusto von Dentz 				hci_get_adv_monitor_offload_ext(hdev) ==
1408e8907f76SLuiz Augusto von Dentz 				    HCI_ADV_MONITOR_EXT_NONE;
1409e8907f76SLuiz Augusto von Dentz 	bool is_interleaving = is_interleave_scanning(hdev);
1410e8907f76SLuiz Augusto von Dentz 
1411e8907f76SLuiz Augusto von Dentz 	if (use_interleaving && !is_interleaving) {
1412e8907f76SLuiz Augusto von Dentz 		hci_start_interleave_scan(hdev);
1413e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "starting interleave scan");
1414e8907f76SLuiz Augusto von Dentz 		return true;
1415e8907f76SLuiz Augusto von Dentz 	}
1416e8907f76SLuiz Augusto von Dentz 
1417e8907f76SLuiz Augusto von Dentz 	if (!use_interleaving && is_interleaving)
1418e8907f76SLuiz Augusto von Dentz 		cancel_interleave_scan(hdev);
1419e8907f76SLuiz Augusto von Dentz 
1420e8907f76SLuiz Augusto von Dentz 	return false;
1421e8907f76SLuiz Augusto von Dentz }
1422e8907f76SLuiz Augusto von Dentz 
1423e8907f76SLuiz Augusto von Dentz /* Removes connection to resolve list if needed.*/
1424e8907f76SLuiz Augusto von Dentz static int hci_le_del_resolve_list_sync(struct hci_dev *hdev,
1425e8907f76SLuiz Augusto von Dentz 					bdaddr_t *bdaddr, u8 bdaddr_type)
1426e8907f76SLuiz Augusto von Dentz {
1427e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_del_from_resolv_list cp;
1428e8907f76SLuiz Augusto von Dentz 	struct bdaddr_list_with_irk *entry;
1429e8907f76SLuiz Augusto von Dentz 
1430*ad383c2cSLuiz Augusto von Dentz 	if (!use_ll_privacy(hdev))
1431e8907f76SLuiz Augusto von Dentz 		return 0;
1432e8907f76SLuiz Augusto von Dentz 
1433e8907f76SLuiz Augusto von Dentz 	/* Check if the IRK has been programmed */
1434e8907f76SLuiz Augusto von Dentz 	entry = hci_bdaddr_list_lookup_with_irk(&hdev->le_resolv_list, bdaddr,
1435e8907f76SLuiz Augusto von Dentz 						bdaddr_type);
1436e8907f76SLuiz Augusto von Dentz 	if (!entry)
1437e8907f76SLuiz Augusto von Dentz 		return 0;
1438e8907f76SLuiz Augusto von Dentz 
1439e8907f76SLuiz Augusto von Dentz 	cp.bdaddr_type = bdaddr_type;
1440e8907f76SLuiz Augusto von Dentz 	bacpy(&cp.bdaddr, bdaddr);
1441e8907f76SLuiz Augusto von Dentz 
1442e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_DEL_FROM_RESOLV_LIST,
1443e8907f76SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1444e8907f76SLuiz Augusto von Dentz }
1445e8907f76SLuiz Augusto von Dentz 
1446e8907f76SLuiz Augusto von Dentz static int hci_le_del_accept_list_sync(struct hci_dev *hdev,
1447e8907f76SLuiz Augusto von Dentz 				       bdaddr_t *bdaddr, u8 bdaddr_type)
1448e8907f76SLuiz Augusto von Dentz {
1449e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_del_from_accept_list cp;
1450e8907f76SLuiz Augusto von Dentz 	int err;
1451e8907f76SLuiz Augusto von Dentz 
1452e8907f76SLuiz Augusto von Dentz 	/* Check if device is on accept list before removing it */
1453e8907f76SLuiz Augusto von Dentz 	if (!hci_bdaddr_list_lookup(&hdev->le_accept_list, bdaddr, bdaddr_type))
1454e8907f76SLuiz Augusto von Dentz 		return 0;
1455e8907f76SLuiz Augusto von Dentz 
1456e8907f76SLuiz Augusto von Dentz 	cp.bdaddr_type = bdaddr_type;
1457e8907f76SLuiz Augusto von Dentz 	bacpy(&cp.bdaddr, bdaddr);
1458e8907f76SLuiz Augusto von Dentz 
1459*ad383c2cSLuiz Augusto von Dentz 	/* Ignore errors when removing from resolving list as that is likely
1460*ad383c2cSLuiz Augusto von Dentz 	 * that the device was never added.
1461*ad383c2cSLuiz Augusto von Dentz 	 */
1462*ad383c2cSLuiz Augusto von Dentz 	hci_le_del_resolve_list_sync(hdev, &cp.bdaddr, cp.bdaddr_type);
1463*ad383c2cSLuiz Augusto von Dentz 
1464e8907f76SLuiz Augusto von Dentz 	err = __hci_cmd_sync_status(hdev, HCI_OP_LE_DEL_FROM_ACCEPT_LIST,
1465e8907f76SLuiz Augusto von Dentz 				    sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1466e8907f76SLuiz Augusto von Dentz 	if (err) {
1467e8907f76SLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to remove from allow list: %d", err);
1468e8907f76SLuiz Augusto von Dentz 		return err;
1469e8907f76SLuiz Augusto von Dentz 	}
1470e8907f76SLuiz Augusto von Dentz 
1471e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "Remove %pMR (0x%x) from allow list", &cp.bdaddr,
1472e8907f76SLuiz Augusto von Dentz 		   cp.bdaddr_type);
1473e8907f76SLuiz Augusto von Dentz 
1474*ad383c2cSLuiz Augusto von Dentz 	return 0;
1475e8907f76SLuiz Augusto von Dentz }
1476e8907f76SLuiz Augusto von Dentz 
1477e8907f76SLuiz Augusto von Dentz /* Adds connection to resolve list if needed.*/
1478e8907f76SLuiz Augusto von Dentz static int hci_le_add_resolve_list_sync(struct hci_dev *hdev,
1479e8907f76SLuiz Augusto von Dentz 					struct hci_conn_params *params)
1480e8907f76SLuiz Augusto von Dentz {
1481e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_add_to_resolv_list cp;
1482e8907f76SLuiz Augusto von Dentz 	struct smp_irk *irk;
1483e8907f76SLuiz Augusto von Dentz 	struct bdaddr_list_with_irk *entry;
1484e8907f76SLuiz Augusto von Dentz 
1485*ad383c2cSLuiz Augusto von Dentz 	if (!use_ll_privacy(hdev))
1486e8907f76SLuiz Augusto von Dentz 		return 0;
1487e8907f76SLuiz Augusto von Dentz 
1488e8907f76SLuiz Augusto von Dentz 	irk = hci_find_irk_by_addr(hdev, &params->addr, params->addr_type);
1489e8907f76SLuiz Augusto von Dentz 	if (!irk)
1490e8907f76SLuiz Augusto von Dentz 		return 0;
1491e8907f76SLuiz Augusto von Dentz 
1492e8907f76SLuiz Augusto von Dentz 	/* Check if the IK has _not_ been programmed yet. */
1493e8907f76SLuiz Augusto von Dentz 	entry = hci_bdaddr_list_lookup_with_irk(&hdev->le_resolv_list,
1494e8907f76SLuiz Augusto von Dentz 						&params->addr,
1495e8907f76SLuiz Augusto von Dentz 						params->addr_type);
1496e8907f76SLuiz Augusto von Dentz 	if (entry)
1497e8907f76SLuiz Augusto von Dentz 		return 0;
1498e8907f76SLuiz Augusto von Dentz 
1499e8907f76SLuiz Augusto von Dentz 	cp.bdaddr_type = params->addr_type;
1500e8907f76SLuiz Augusto von Dentz 	bacpy(&cp.bdaddr, &params->addr);
1501e8907f76SLuiz Augusto von Dentz 	memcpy(cp.peer_irk, irk->val, 16);
1502e8907f76SLuiz Augusto von Dentz 
1503e8907f76SLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_PRIVACY))
1504e8907f76SLuiz Augusto von Dentz 		memcpy(cp.local_irk, hdev->irk, 16);
1505e8907f76SLuiz Augusto von Dentz 	else
1506e8907f76SLuiz Augusto von Dentz 		memset(cp.local_irk, 0, 16);
1507e8907f76SLuiz Augusto von Dentz 
1508e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_ADD_TO_RESOLV_LIST,
1509e8907f76SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1510e8907f76SLuiz Augusto von Dentz }
1511e8907f76SLuiz Augusto von Dentz 
1512e8907f76SLuiz Augusto von Dentz /* Adds connection to allow list if needed, if the device uses RPA (has IRK)
1513e8907f76SLuiz Augusto von Dentz  * this attempts to program the device in the resolving list as well.
1514e8907f76SLuiz Augusto von Dentz  */
1515e8907f76SLuiz Augusto von Dentz static int hci_le_add_accept_list_sync(struct hci_dev *hdev,
1516e8907f76SLuiz Augusto von Dentz 				       struct hci_conn_params *params,
1517*ad383c2cSLuiz Augusto von Dentz 				       u8 *num_entries)
1518e8907f76SLuiz Augusto von Dentz {
1519e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_add_to_accept_list cp;
1520e8907f76SLuiz Augusto von Dentz 	int err;
1521e8907f76SLuiz Augusto von Dentz 
1522e8907f76SLuiz Augusto von Dentz 	/* Already in accept list */
1523e8907f76SLuiz Augusto von Dentz 	if (hci_bdaddr_list_lookup(&hdev->le_accept_list, &params->addr,
1524e8907f76SLuiz Augusto von Dentz 				   params->addr_type))
1525e8907f76SLuiz Augusto von Dentz 		return 0;
1526e8907f76SLuiz Augusto von Dentz 
1527e8907f76SLuiz Augusto von Dentz 	/* Select filter policy to accept all advertising */
1528e8907f76SLuiz Augusto von Dentz 	if (*num_entries >= hdev->le_accept_list_size)
1529e8907f76SLuiz Augusto von Dentz 		return -ENOSPC;
1530e8907f76SLuiz Augusto von Dentz 
1531e8907f76SLuiz Augusto von Dentz 	/* Accept list can not be used with RPAs */
1532*ad383c2cSLuiz Augusto von Dentz 	if (!use_ll_privacy(hdev) &&
1533e8907f76SLuiz Augusto von Dentz 	    hci_find_irk_by_addr(hdev, &params->addr, params->addr_type)) {
1534e8907f76SLuiz Augusto von Dentz 		return -EINVAL;
1535e8907f76SLuiz Augusto von Dentz 	}
1536e8907f76SLuiz Augusto von Dentz 
1537e8907f76SLuiz Augusto von Dentz 	/* During suspend, only wakeable devices can be in acceptlist */
1538e8907f76SLuiz Augusto von Dentz 	if (hdev->suspended && !hci_conn_test_flag(HCI_CONN_FLAG_REMOTE_WAKEUP,
1539e8907f76SLuiz Augusto von Dentz 						   params->current_flags))
1540e8907f76SLuiz Augusto von Dentz 		return 0;
1541e8907f76SLuiz Augusto von Dentz 
1542*ad383c2cSLuiz Augusto von Dentz 	/* Attempt to program the device in the resolving list first to avoid
1543*ad383c2cSLuiz Augusto von Dentz 	 * having to rollback in case it fails since the resolving list is
1544*ad383c2cSLuiz Augusto von Dentz 	 * dynamic it can probably be smaller than the accept list.
1545*ad383c2cSLuiz Augusto von Dentz 	 */
1546*ad383c2cSLuiz Augusto von Dentz 	err = hci_le_add_resolve_list_sync(hdev, params);
1547*ad383c2cSLuiz Augusto von Dentz 	if (err) {
1548*ad383c2cSLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to add to resolve list: %d", err);
1549*ad383c2cSLuiz Augusto von Dentz 		return err;
1550*ad383c2cSLuiz Augusto von Dentz 	}
1551*ad383c2cSLuiz Augusto von Dentz 
1552e8907f76SLuiz Augusto von Dentz 	*num_entries += 1;
1553e8907f76SLuiz Augusto von Dentz 	cp.bdaddr_type = params->addr_type;
1554e8907f76SLuiz Augusto von Dentz 	bacpy(&cp.bdaddr, &params->addr);
1555e8907f76SLuiz Augusto von Dentz 
1556e8907f76SLuiz Augusto von Dentz 	err = __hci_cmd_sync_status(hdev, HCI_OP_LE_ADD_TO_ACCEPT_LIST,
1557e8907f76SLuiz Augusto von Dentz 				    sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1558e8907f76SLuiz Augusto von Dentz 	if (err) {
1559e8907f76SLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to add to allow list: %d", err);
1560*ad383c2cSLuiz Augusto von Dentz 		/* Rollback the device from the resolving list */
1561*ad383c2cSLuiz Augusto von Dentz 		hci_le_del_resolve_list_sync(hdev, &cp.bdaddr, cp.bdaddr_type);
1562e8907f76SLuiz Augusto von Dentz 		return err;
1563e8907f76SLuiz Augusto von Dentz 	}
1564e8907f76SLuiz Augusto von Dentz 
1565e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "Add %pMR (0x%x) to allow list", &cp.bdaddr,
1566e8907f76SLuiz Augusto von Dentz 		   cp.bdaddr_type);
1567e8907f76SLuiz Augusto von Dentz 
1568*ad383c2cSLuiz Augusto von Dentz 	return 0;
1569e8907f76SLuiz Augusto von Dentz }
1570e8907f76SLuiz Augusto von Dentz 
1571*ad383c2cSLuiz Augusto von Dentz /* This function disables all advertising instances (including 0x00) */
1572*ad383c2cSLuiz Augusto von Dentz static int hci_pause_advertising_sync(struct hci_dev *hdev)
1573*ad383c2cSLuiz Augusto von Dentz {
1574*ad383c2cSLuiz Augusto von Dentz 	int err;
1575*ad383c2cSLuiz Augusto von Dentz 
1576*ad383c2cSLuiz Augusto von Dentz 	/* If there are no instances or advertising has already been paused
1577*ad383c2cSLuiz Augusto von Dentz 	 * there is nothing to do.
1578*ad383c2cSLuiz Augusto von Dentz 	 */
1579*ad383c2cSLuiz Augusto von Dentz 	if (!hdev->adv_instance_cnt || hdev->advertising_paused)
1580*ad383c2cSLuiz Augusto von Dentz 		return 0;
1581*ad383c2cSLuiz Augusto von Dentz 
1582*ad383c2cSLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "Pausing advertising instances");
1583*ad383c2cSLuiz Augusto von Dentz 
1584*ad383c2cSLuiz Augusto von Dentz 	/* Call to disable any advertisements active on the controller.
1585*ad383c2cSLuiz Augusto von Dentz 	 * This will succeed even if no advertisements are configured.
1586*ad383c2cSLuiz Augusto von Dentz 	 */
1587*ad383c2cSLuiz Augusto von Dentz 	err = hci_disable_advertising_sync(hdev);
1588*ad383c2cSLuiz Augusto von Dentz 	if (err)
1589*ad383c2cSLuiz Augusto von Dentz 		return err;
1590*ad383c2cSLuiz Augusto von Dentz 
1591*ad383c2cSLuiz Augusto von Dentz 	/* If we are using software rotation, pause the loop */
1592*ad383c2cSLuiz Augusto von Dentz 	if (!ext_adv_capable(hdev))
1593*ad383c2cSLuiz Augusto von Dentz 		cancel_adv_timeout(hdev);
1594*ad383c2cSLuiz Augusto von Dentz 
1595*ad383c2cSLuiz Augusto von Dentz 	hdev->advertising_paused = true;
1596*ad383c2cSLuiz Augusto von Dentz 
1597*ad383c2cSLuiz Augusto von Dentz 	return 0;
1598*ad383c2cSLuiz Augusto von Dentz }
1599*ad383c2cSLuiz Augusto von Dentz 
1600*ad383c2cSLuiz Augusto von Dentz /* This function disables all user advertising instances (excluding 0x00) */
1601*ad383c2cSLuiz Augusto von Dentz static int hci_resume_advertising_sync(struct hci_dev *hdev)
1602*ad383c2cSLuiz Augusto von Dentz {
1603*ad383c2cSLuiz Augusto von Dentz 	struct adv_info *adv, *tmp;
1604*ad383c2cSLuiz Augusto von Dentz 	int err;
1605*ad383c2cSLuiz Augusto von Dentz 
1606*ad383c2cSLuiz Augusto von Dentz 	/* If advertising has not been paused there is nothing  to do. */
1607*ad383c2cSLuiz Augusto von Dentz 	if (!hdev->advertising_paused)
1608*ad383c2cSLuiz Augusto von Dentz 		return 0;
1609*ad383c2cSLuiz Augusto von Dentz 
1610*ad383c2cSLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "Resuming advertising instances");
1611*ad383c2cSLuiz Augusto von Dentz 
1612*ad383c2cSLuiz Augusto von Dentz 	if (ext_adv_capable(hdev)) {
1613*ad383c2cSLuiz Augusto von Dentz 		/* Call for each tracked instance to be re-enabled */
1614*ad383c2cSLuiz Augusto von Dentz 		list_for_each_entry_safe(adv, tmp, &hdev->adv_instances, list) {
1615*ad383c2cSLuiz Augusto von Dentz 			err = hci_enable_ext_advertising_sync(hdev,
1616*ad383c2cSLuiz Augusto von Dentz 							      adv->instance);
1617*ad383c2cSLuiz Augusto von Dentz 			if (!err)
1618*ad383c2cSLuiz Augusto von Dentz 				continue;
1619*ad383c2cSLuiz Augusto von Dentz 
1620*ad383c2cSLuiz Augusto von Dentz 			/* If the instance cannot be resumed remove it */
1621*ad383c2cSLuiz Augusto von Dentz 			hci_remove_ext_adv_instance_sync(hdev, adv->instance,
1622*ad383c2cSLuiz Augusto von Dentz 							 NULL);
1623*ad383c2cSLuiz Augusto von Dentz 		}
1624*ad383c2cSLuiz Augusto von Dentz 	} else {
1625*ad383c2cSLuiz Augusto von Dentz 		/* Schedule for most recent instance to be restarted and begin
1626*ad383c2cSLuiz Augusto von Dentz 		 * the software rotation loop
1627*ad383c2cSLuiz Augusto von Dentz 		 */
1628*ad383c2cSLuiz Augusto von Dentz 		err = hci_schedule_adv_instance_sync(hdev,
1629*ad383c2cSLuiz Augusto von Dentz 						     hdev->cur_adv_instance,
1630*ad383c2cSLuiz Augusto von Dentz 						     true);
1631*ad383c2cSLuiz Augusto von Dentz 	}
1632*ad383c2cSLuiz Augusto von Dentz 
1633*ad383c2cSLuiz Augusto von Dentz 	hdev->advertising_paused = false;
1634*ad383c2cSLuiz Augusto von Dentz 
1635*ad383c2cSLuiz Augusto von Dentz 	return err;
1636*ad383c2cSLuiz Augusto von Dentz }
1637*ad383c2cSLuiz Augusto von Dentz 
1638*ad383c2cSLuiz Augusto von Dentz /* Device must not be scanning when updating the accept list.
1639*ad383c2cSLuiz Augusto von Dentz  *
1640*ad383c2cSLuiz Augusto von Dentz  * Update is done using the following sequence:
1641*ad383c2cSLuiz Augusto von Dentz  *
1642*ad383c2cSLuiz Augusto von Dentz  * use_ll_privacy((Disable Advertising) -> Disable Resolving List) ->
1643*ad383c2cSLuiz Augusto von Dentz  * Remove Devices From Accept List ->
1644*ad383c2cSLuiz Augusto von Dentz  * (has IRK && use_ll_privacy(Remove Devices From Resolving List))->
1645*ad383c2cSLuiz Augusto von Dentz  * Add Devices to Accept List ->
1646*ad383c2cSLuiz Augusto von Dentz  * (has IRK && use_ll_privacy(Remove Devices From Resolving List)) ->
1647*ad383c2cSLuiz Augusto von Dentz  * use_ll_privacy(Enable Resolving List -> (Enable Advertising)) ->
1648*ad383c2cSLuiz Augusto von Dentz  * Enable Scanning
1649*ad383c2cSLuiz Augusto von Dentz  *
1650*ad383c2cSLuiz Augusto von Dentz  * In case of failure advertising shall be restored to its original state and
1651*ad383c2cSLuiz Augusto von Dentz  * return would disable accept list since either accept or resolving list could
1652*ad383c2cSLuiz Augusto von Dentz  * not be programmed.
1653*ad383c2cSLuiz Augusto von Dentz  *
1654*ad383c2cSLuiz Augusto von Dentz  */
1655e8907f76SLuiz Augusto von Dentz static u8 hci_update_accept_list_sync(struct hci_dev *hdev)
1656e8907f76SLuiz Augusto von Dentz {
1657e8907f76SLuiz Augusto von Dentz 	struct hci_conn_params *params;
1658e8907f76SLuiz Augusto von Dentz 	struct bdaddr_list *b, *t;
1659e8907f76SLuiz Augusto von Dentz 	u8 num_entries = 0;
1660e8907f76SLuiz Augusto von Dentz 	bool pend_conn, pend_report;
1661*ad383c2cSLuiz Augusto von Dentz 	int err;
1662e8907f76SLuiz Augusto von Dentz 
1663*ad383c2cSLuiz Augusto von Dentz 	/* Pause advertising if resolving list can be used as controllers are
1664*ad383c2cSLuiz Augusto von Dentz 	 * cannot accept resolving list modifications while advertising.
1665*ad383c2cSLuiz Augusto von Dentz 	 */
1666*ad383c2cSLuiz Augusto von Dentz 	if (use_ll_privacy(hdev)) {
1667*ad383c2cSLuiz Augusto von Dentz 		err = hci_pause_advertising_sync(hdev);
1668*ad383c2cSLuiz Augusto von Dentz 		if (err) {
1669*ad383c2cSLuiz Augusto von Dentz 			bt_dev_err(hdev, "pause advertising failed: %d", err);
1670*ad383c2cSLuiz Augusto von Dentz 			return 0x00;
1671*ad383c2cSLuiz Augusto von Dentz 		}
1672*ad383c2cSLuiz Augusto von Dentz 	}
1673*ad383c2cSLuiz Augusto von Dentz 
1674*ad383c2cSLuiz Augusto von Dentz 	/* Disable address resolution while reprogramming accept list since
1675*ad383c2cSLuiz Augusto von Dentz 	 * devices that do have an IRK will be programmed in the resolving list
1676*ad383c2cSLuiz Augusto von Dentz 	 * when LL Privacy is enabled.
1677*ad383c2cSLuiz Augusto von Dentz 	 */
1678*ad383c2cSLuiz Augusto von Dentz 	err = hci_le_set_addr_resolution_enable_sync(hdev, 0x00);
1679*ad383c2cSLuiz Augusto von Dentz 	if (err) {
1680*ad383c2cSLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to disable LL privacy: %d", err);
1681*ad383c2cSLuiz Augusto von Dentz 		goto done;
1682*ad383c2cSLuiz Augusto von Dentz 	}
1683e8907f76SLuiz Augusto von Dentz 
1684e8907f76SLuiz Augusto von Dentz 	/* Go through the current accept list programmed into the
1685e8907f76SLuiz Augusto von Dentz 	 * controller one by one and check if that address is still
1686e8907f76SLuiz Augusto von Dentz 	 * in the list of pending connections or list of devices to
1687e8907f76SLuiz Augusto von Dentz 	 * report. If not present in either list, then remove it from
1688e8907f76SLuiz Augusto von Dentz 	 * the controller.
1689e8907f76SLuiz Augusto von Dentz 	 */
1690e8907f76SLuiz Augusto von Dentz 	list_for_each_entry_safe(b, t, &hdev->le_accept_list, list) {
1691e8907f76SLuiz Augusto von Dentz 		pend_conn = hci_pend_le_action_lookup(&hdev->pend_le_conns,
1692e8907f76SLuiz Augusto von Dentz 						      &b->bdaddr,
1693e8907f76SLuiz Augusto von Dentz 						      b->bdaddr_type);
1694e8907f76SLuiz Augusto von Dentz 		pend_report = hci_pend_le_action_lookup(&hdev->pend_le_reports,
1695e8907f76SLuiz Augusto von Dentz 							&b->bdaddr,
1696e8907f76SLuiz Augusto von Dentz 							b->bdaddr_type);
1697e8907f76SLuiz Augusto von Dentz 
1698e8907f76SLuiz Augusto von Dentz 		/* If the device is not likely to connect or report,
1699e8907f76SLuiz Augusto von Dentz 		 * remove it from the acceptlist.
1700e8907f76SLuiz Augusto von Dentz 		 */
1701e8907f76SLuiz Augusto von Dentz 		if (!pend_conn && !pend_report) {
1702e8907f76SLuiz Augusto von Dentz 			hci_le_del_accept_list_sync(hdev, &b->bdaddr,
1703e8907f76SLuiz Augusto von Dentz 						    b->bdaddr_type);
1704e8907f76SLuiz Augusto von Dentz 			continue;
1705e8907f76SLuiz Augusto von Dentz 		}
1706e8907f76SLuiz Augusto von Dentz 
1707e8907f76SLuiz Augusto von Dentz 		num_entries++;
1708e8907f76SLuiz Augusto von Dentz 	}
1709e8907f76SLuiz Augusto von Dentz 
1710e8907f76SLuiz Augusto von Dentz 	/* Since all no longer valid accept list entries have been
1711e8907f76SLuiz Augusto von Dentz 	 * removed, walk through the list of pending connections
1712e8907f76SLuiz Augusto von Dentz 	 * and ensure that any new device gets programmed into
1713e8907f76SLuiz Augusto von Dentz 	 * the controller.
1714e8907f76SLuiz Augusto von Dentz 	 *
1715e8907f76SLuiz Augusto von Dentz 	 * If the list of the devices is larger than the list of
1716e8907f76SLuiz Augusto von Dentz 	 * available accept list entries in the controller, then
1717e8907f76SLuiz Augusto von Dentz 	 * just abort and return filer policy value to not use the
1718e8907f76SLuiz Augusto von Dentz 	 * accept list.
1719e8907f76SLuiz Augusto von Dentz 	 */
1720e8907f76SLuiz Augusto von Dentz 	list_for_each_entry(params, &hdev->pend_le_conns, action) {
1721*ad383c2cSLuiz Augusto von Dentz 		err = hci_le_add_accept_list_sync(hdev, params, &num_entries);
1722*ad383c2cSLuiz Augusto von Dentz 		if (err)
1723*ad383c2cSLuiz Augusto von Dentz 			goto done;
1724e8907f76SLuiz Augusto von Dentz 	}
1725e8907f76SLuiz Augusto von Dentz 
1726e8907f76SLuiz Augusto von Dentz 	/* After adding all new pending connections, walk through
1727e8907f76SLuiz Augusto von Dentz 	 * the list of pending reports and also add these to the
1728e8907f76SLuiz Augusto von Dentz 	 * accept list if there is still space. Abort if space runs out.
1729e8907f76SLuiz Augusto von Dentz 	 */
1730e8907f76SLuiz Augusto von Dentz 	list_for_each_entry(params, &hdev->pend_le_reports, action) {
1731*ad383c2cSLuiz Augusto von Dentz 		err = hci_le_add_accept_list_sync(hdev, params, &num_entries);
1732*ad383c2cSLuiz Augusto von Dentz 		if (err)
1733*ad383c2cSLuiz Augusto von Dentz 			goto done;
1734e8907f76SLuiz Augusto von Dentz 	}
1735e8907f76SLuiz Augusto von Dentz 
1736e8907f76SLuiz Augusto von Dentz 	/* Use the allowlist unless the following conditions are all true:
1737e8907f76SLuiz Augusto von Dentz 	 * - We are not currently suspending
1738e8907f76SLuiz Augusto von Dentz 	 * - There are 1 or more ADV monitors registered and it's not offloaded
1739e8907f76SLuiz Augusto von Dentz 	 * - Interleaved scanning is not currently using the allowlist
1740e8907f76SLuiz Augusto von Dentz 	 */
1741e8907f76SLuiz Augusto von Dentz 	if (!idr_is_empty(&hdev->adv_monitors_idr) && !hdev->suspended &&
1742e8907f76SLuiz Augusto von Dentz 	    hci_get_adv_monitor_offload_ext(hdev) == HCI_ADV_MONITOR_EXT_NONE &&
1743e8907f76SLuiz Augusto von Dentz 	    hdev->interleave_scan_state != INTERLEAVE_SCAN_ALLOWLIST)
1744*ad383c2cSLuiz Augusto von Dentz 		err = -EINVAL;
1745*ad383c2cSLuiz Augusto von Dentz 
1746*ad383c2cSLuiz Augusto von Dentz done:
1747*ad383c2cSLuiz Augusto von Dentz 	/* Enable address resolution when LL Privacy is enabled. */
1748*ad383c2cSLuiz Augusto von Dentz 	err = hci_le_set_addr_resolution_enable_sync(hdev, 0x01);
1749*ad383c2cSLuiz Augusto von Dentz 	if (err)
1750*ad383c2cSLuiz Augusto von Dentz 		bt_dev_err(hdev, "Unable to enable LL privacy: %d", err);
1751*ad383c2cSLuiz Augusto von Dentz 
1752*ad383c2cSLuiz Augusto von Dentz 	/* Resume advertising if it was paused */
1753*ad383c2cSLuiz Augusto von Dentz 	if (use_ll_privacy(hdev))
1754*ad383c2cSLuiz Augusto von Dentz 		hci_resume_advertising_sync(hdev);
1755e8907f76SLuiz Augusto von Dentz 
1756e8907f76SLuiz Augusto von Dentz 	/* Select filter policy to use accept list */
1757*ad383c2cSLuiz Augusto von Dentz 	return err ? 0x00 : 0x01;
1758e8907f76SLuiz Augusto von Dentz }
1759e8907f76SLuiz Augusto von Dentz 
1760e8907f76SLuiz Augusto von Dentz /* Returns true if an le connection is in the scanning state */
1761e8907f76SLuiz Augusto von Dentz static inline bool hci_is_le_conn_scanning(struct hci_dev *hdev)
1762e8907f76SLuiz Augusto von Dentz {
1763e8907f76SLuiz Augusto von Dentz 	struct hci_conn_hash *h = &hdev->conn_hash;
1764e8907f76SLuiz Augusto von Dentz 	struct hci_conn  *c;
1765e8907f76SLuiz Augusto von Dentz 
1766e8907f76SLuiz Augusto von Dentz 	rcu_read_lock();
1767e8907f76SLuiz Augusto von Dentz 
1768e8907f76SLuiz Augusto von Dentz 	list_for_each_entry_rcu(c, &h->list, list) {
1769e8907f76SLuiz Augusto von Dentz 		if (c->type == LE_LINK && c->state == BT_CONNECT &&
1770e8907f76SLuiz Augusto von Dentz 		    test_bit(HCI_CONN_SCANNING, &c->flags)) {
1771e8907f76SLuiz Augusto von Dentz 			rcu_read_unlock();
1772e8907f76SLuiz Augusto von Dentz 			return true;
1773e8907f76SLuiz Augusto von Dentz 		}
1774e8907f76SLuiz Augusto von Dentz 	}
1775e8907f76SLuiz Augusto von Dentz 
1776e8907f76SLuiz Augusto von Dentz 	rcu_read_unlock();
1777e8907f76SLuiz Augusto von Dentz 
1778e8907f76SLuiz Augusto von Dentz 	return false;
1779e8907f76SLuiz Augusto von Dentz }
1780e8907f76SLuiz Augusto von Dentz 
1781e8907f76SLuiz Augusto von Dentz static int hci_le_set_ext_scan_param_sync(struct hci_dev *hdev, u8 type,
1782e8907f76SLuiz Augusto von Dentz 					  u16 interval, u16 window,
1783e8907f76SLuiz Augusto von Dentz 					  u8 own_addr_type, u8 filter_policy)
1784e8907f76SLuiz Augusto von Dentz {
1785e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_set_ext_scan_params *cp;
1786e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_scan_phy_params *phy;
1787e8907f76SLuiz Augusto von Dentz 	u8 data[sizeof(*cp) + sizeof(*phy) * 2];
1788e8907f76SLuiz Augusto von Dentz 	u8 num_phy = 0;
1789e8907f76SLuiz Augusto von Dentz 
1790e8907f76SLuiz Augusto von Dentz 	cp = (void *)data;
1791e8907f76SLuiz Augusto von Dentz 	phy = (void *)cp->data;
1792e8907f76SLuiz Augusto von Dentz 
1793e8907f76SLuiz Augusto von Dentz 	memset(data, 0, sizeof(data));
1794e8907f76SLuiz Augusto von Dentz 
1795e8907f76SLuiz Augusto von Dentz 	cp->own_addr_type = own_addr_type;
1796e8907f76SLuiz Augusto von Dentz 	cp->filter_policy = filter_policy;
1797e8907f76SLuiz Augusto von Dentz 
1798e8907f76SLuiz Augusto von Dentz 	if (scan_1m(hdev) || scan_2m(hdev)) {
1799e8907f76SLuiz Augusto von Dentz 		cp->scanning_phys |= LE_SCAN_PHY_1M;
1800e8907f76SLuiz Augusto von Dentz 
1801e8907f76SLuiz Augusto von Dentz 		phy->type = type;
1802e8907f76SLuiz Augusto von Dentz 		phy->interval = cpu_to_le16(interval);
1803e8907f76SLuiz Augusto von Dentz 		phy->window = cpu_to_le16(window);
1804e8907f76SLuiz Augusto von Dentz 
1805e8907f76SLuiz Augusto von Dentz 		num_phy++;
1806e8907f76SLuiz Augusto von Dentz 		phy++;
1807e8907f76SLuiz Augusto von Dentz 	}
1808e8907f76SLuiz Augusto von Dentz 
1809e8907f76SLuiz Augusto von Dentz 	if (scan_coded(hdev)) {
1810e8907f76SLuiz Augusto von Dentz 		cp->scanning_phys |= LE_SCAN_PHY_CODED;
1811e8907f76SLuiz Augusto von Dentz 
1812e8907f76SLuiz Augusto von Dentz 		phy->type = type;
1813e8907f76SLuiz Augusto von Dentz 		phy->interval = cpu_to_le16(interval);
1814e8907f76SLuiz Augusto von Dentz 		phy->window = cpu_to_le16(window);
1815e8907f76SLuiz Augusto von Dentz 
1816e8907f76SLuiz Augusto von Dentz 		num_phy++;
1817e8907f76SLuiz Augusto von Dentz 		phy++;
1818e8907f76SLuiz Augusto von Dentz 	}
1819e8907f76SLuiz Augusto von Dentz 
1820e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_EXT_SCAN_PARAMS,
1821e8907f76SLuiz Augusto von Dentz 				     sizeof(*cp) + sizeof(*phy) * num_phy,
1822e8907f76SLuiz Augusto von Dentz 				     data, HCI_CMD_TIMEOUT);
1823e8907f76SLuiz Augusto von Dentz }
1824e8907f76SLuiz Augusto von Dentz 
1825e8907f76SLuiz Augusto von Dentz static int hci_le_set_scan_param_sync(struct hci_dev *hdev, u8 type,
1826e8907f76SLuiz Augusto von Dentz 				      u16 interval, u16 window,
1827e8907f76SLuiz Augusto von Dentz 				      u8 own_addr_type, u8 filter_policy)
1828e8907f76SLuiz Augusto von Dentz {
1829e8907f76SLuiz Augusto von Dentz 	struct hci_cp_le_set_scan_param cp;
1830e8907f76SLuiz Augusto von Dentz 
1831e8907f76SLuiz Augusto von Dentz 	if (use_ext_scan(hdev))
1832e8907f76SLuiz Augusto von Dentz 		return hci_le_set_ext_scan_param_sync(hdev, type, interval,
1833e8907f76SLuiz Augusto von Dentz 						      window, own_addr_type,
1834e8907f76SLuiz Augusto von Dentz 						      filter_policy);
1835e8907f76SLuiz Augusto von Dentz 
1836e8907f76SLuiz Augusto von Dentz 	memset(&cp, 0, sizeof(cp));
1837e8907f76SLuiz Augusto von Dentz 	cp.type = type;
1838e8907f76SLuiz Augusto von Dentz 	cp.interval = cpu_to_le16(interval);
1839e8907f76SLuiz Augusto von Dentz 	cp.window = cpu_to_le16(window);
1840e8907f76SLuiz Augusto von Dentz 	cp.own_address_type = own_addr_type;
1841e8907f76SLuiz Augusto von Dentz 	cp.filter_policy = filter_policy;
1842e8907f76SLuiz Augusto von Dentz 
1843e8907f76SLuiz Augusto von Dentz 	return __hci_cmd_sync_status(hdev, HCI_OP_LE_SET_SCAN_PARAM,
1844e8907f76SLuiz Augusto von Dentz 				     sizeof(cp), &cp, HCI_CMD_TIMEOUT);
1845e8907f76SLuiz Augusto von Dentz }
1846e8907f76SLuiz Augusto von Dentz 
1847e8907f76SLuiz Augusto von Dentz static int hci_start_scan_sync(struct hci_dev *hdev, u8 type, u16 interval,
1848*ad383c2cSLuiz Augusto von Dentz 			       u16 window, u8 own_addr_type, u8 filter_policy)
1849e8907f76SLuiz Augusto von Dentz {
1850e8907f76SLuiz Augusto von Dentz 	int err;
1851e8907f76SLuiz Augusto von Dentz 
1852e8907f76SLuiz Augusto von Dentz 	if (hdev->scanning_paused) {
1853e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "Scanning is paused for suspend");
1854e8907f76SLuiz Augusto von Dentz 		return 0;
1855e8907f76SLuiz Augusto von Dentz 	}
1856e8907f76SLuiz Augusto von Dentz 
1857e8907f76SLuiz Augusto von Dentz 	err = hci_le_set_scan_param_sync(hdev, type, interval, window,
1858e8907f76SLuiz Augusto von Dentz 					 own_addr_type, filter_policy);
1859e8907f76SLuiz Augusto von Dentz 	if (err)
1860e8907f76SLuiz Augusto von Dentz 		return err;
1861e8907f76SLuiz Augusto von Dentz 
1862e8907f76SLuiz Augusto von Dentz 	return hci_le_set_scan_enable_sync(hdev, LE_SCAN_ENABLE,
1863e8907f76SLuiz Augusto von Dentz 					   LE_SCAN_FILTER_DUP_ENABLE);
1864e8907f76SLuiz Augusto von Dentz }
1865e8907f76SLuiz Augusto von Dentz 
1866e8907f76SLuiz Augusto von Dentz int hci_passive_scan_sync(struct hci_dev *hdev)
1867e8907f76SLuiz Augusto von Dentz {
1868e8907f76SLuiz Augusto von Dentz 	u8 own_addr_type;
1869e8907f76SLuiz Augusto von Dentz 	u8 filter_policy;
1870e8907f76SLuiz Augusto von Dentz 	u16 window, interval;
1871*ad383c2cSLuiz Augusto von Dentz 	int err;
1872e8907f76SLuiz Augusto von Dentz 
1873e8907f76SLuiz Augusto von Dentz 	if (hdev->scanning_paused) {
1874e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "Scanning is paused for suspend");
1875e8907f76SLuiz Augusto von Dentz 		return 0;
1876e8907f76SLuiz Augusto von Dentz 	}
1877e8907f76SLuiz Augusto von Dentz 
1878*ad383c2cSLuiz Augusto von Dentz 	err = hci_scan_disable_sync(hdev);
1879*ad383c2cSLuiz Augusto von Dentz 	if (err) {
1880*ad383c2cSLuiz Augusto von Dentz 		bt_dev_err(hdev, "disable scanning failed: %d", err);
1881*ad383c2cSLuiz Augusto von Dentz 		return err;
1882*ad383c2cSLuiz Augusto von Dentz 	}
1883*ad383c2cSLuiz Augusto von Dentz 
1884e8907f76SLuiz Augusto von Dentz 	/* Set require_privacy to false since no SCAN_REQ are send
1885e8907f76SLuiz Augusto von Dentz 	 * during passive scanning. Not using an non-resolvable address
1886e8907f76SLuiz Augusto von Dentz 	 * here is important so that peer devices using direct
1887e8907f76SLuiz Augusto von Dentz 	 * advertising with our address will be correctly reported
1888e8907f76SLuiz Augusto von Dentz 	 * by the controller.
1889e8907f76SLuiz Augusto von Dentz 	 */
1890e8907f76SLuiz Augusto von Dentz 	if (hci_update_random_address_sync(hdev, false, scan_use_rpa(hdev),
1891e8907f76SLuiz Augusto von Dentz 					   &own_addr_type))
1892e8907f76SLuiz Augusto von Dentz 		return 0;
1893e8907f76SLuiz Augusto von Dentz 
1894e8907f76SLuiz Augusto von Dentz 	if (hdev->enable_advmon_interleave_scan &&
1895e8907f76SLuiz Augusto von Dentz 	    hci_update_interleaved_scan_sync(hdev))
1896e8907f76SLuiz Augusto von Dentz 		return 0;
1897e8907f76SLuiz Augusto von Dentz 
1898e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "interleave state %d", hdev->interleave_scan_state);
1899*ad383c2cSLuiz Augusto von Dentz 
1900e8907f76SLuiz Augusto von Dentz 	/* Adding or removing entries from the accept list must
1901e8907f76SLuiz Augusto von Dentz 	 * happen before enabling scanning. The controller does
1902e8907f76SLuiz Augusto von Dentz 	 * not allow accept list modification while scanning.
1903e8907f76SLuiz Augusto von Dentz 	 */
1904e8907f76SLuiz Augusto von Dentz 	filter_policy = hci_update_accept_list_sync(hdev);
1905e8907f76SLuiz Augusto von Dentz 
1906e8907f76SLuiz Augusto von Dentz 	/* When the controller is using random resolvable addresses and
1907e8907f76SLuiz Augusto von Dentz 	 * with that having LE privacy enabled, then controllers with
1908e8907f76SLuiz Augusto von Dentz 	 * Extended Scanner Filter Policies support can now enable support
1909e8907f76SLuiz Augusto von Dentz 	 * for handling directed advertising.
1910e8907f76SLuiz Augusto von Dentz 	 *
1911e8907f76SLuiz Augusto von Dentz 	 * So instead of using filter polices 0x00 (no acceptlist)
1912e8907f76SLuiz Augusto von Dentz 	 * and 0x01 (acceptlist enabled) use the new filter policies
1913e8907f76SLuiz Augusto von Dentz 	 * 0x02 (no acceptlist) and 0x03 (acceptlist enabled).
1914e8907f76SLuiz Augusto von Dentz 	 */
1915e8907f76SLuiz Augusto von Dentz 	if (hci_dev_test_flag(hdev, HCI_PRIVACY) &&
1916e8907f76SLuiz Augusto von Dentz 	    (hdev->le_features[0] & HCI_LE_EXT_SCAN_POLICY))
1917e8907f76SLuiz Augusto von Dentz 		filter_policy |= 0x02;
1918e8907f76SLuiz Augusto von Dentz 
1919e8907f76SLuiz Augusto von Dentz 	if (hdev->suspended) {
1920e8907f76SLuiz Augusto von Dentz 		window = hdev->le_scan_window_suspend;
1921e8907f76SLuiz Augusto von Dentz 		interval = hdev->le_scan_int_suspend;
1922e8907f76SLuiz Augusto von Dentz 
1923e8907f76SLuiz Augusto von Dentz 		set_bit(SUSPEND_SCAN_ENABLE, hdev->suspend_tasks);
1924e8907f76SLuiz Augusto von Dentz 	} else if (hci_is_le_conn_scanning(hdev)) {
1925e8907f76SLuiz Augusto von Dentz 		window = hdev->le_scan_window_connect;
1926e8907f76SLuiz Augusto von Dentz 		interval = hdev->le_scan_int_connect;
1927e8907f76SLuiz Augusto von Dentz 	} else if (hci_is_adv_monitoring(hdev)) {
1928e8907f76SLuiz Augusto von Dentz 		window = hdev->le_scan_window_adv_monitor;
1929e8907f76SLuiz Augusto von Dentz 		interval = hdev->le_scan_int_adv_monitor;
1930e8907f76SLuiz Augusto von Dentz 	} else {
1931e8907f76SLuiz Augusto von Dentz 		window = hdev->le_scan_window;
1932e8907f76SLuiz Augusto von Dentz 		interval = hdev->le_scan_interval;
1933e8907f76SLuiz Augusto von Dentz 	}
1934e8907f76SLuiz Augusto von Dentz 
1935e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "LE passive scan with acceptlist = %d", filter_policy);
1936e8907f76SLuiz Augusto von Dentz 
1937e8907f76SLuiz Augusto von Dentz 	return hci_start_scan_sync(hdev, LE_SCAN_PASSIVE, interval, window,
1938*ad383c2cSLuiz Augusto von Dentz 				   own_addr_type, filter_policy);
1939e8907f76SLuiz Augusto von Dentz }
1940e8907f76SLuiz Augusto von Dentz 
1941e8907f76SLuiz Augusto von Dentz /* This function controls the passive scanning based on hdev->pend_le_conns
1942e8907f76SLuiz Augusto von Dentz  * list. If there are pending LE connection we start the background scanning,
1943*ad383c2cSLuiz Augusto von Dentz  * otherwise we stop it in the following sequence:
1944*ad383c2cSLuiz Augusto von Dentz  *
1945*ad383c2cSLuiz Augusto von Dentz  * If there are devices to scan:
1946*ad383c2cSLuiz Augusto von Dentz  *
1947*ad383c2cSLuiz Augusto von Dentz  * Disable Scanning -> Update Accept List ->
1948*ad383c2cSLuiz Augusto von Dentz  * use_ll_privacy((Disable Advertising) -> Disable Resolving List ->
1949*ad383c2cSLuiz Augusto von Dentz  * Update Resolving List -> Enable Resolving List -> (Enable Advertising)) ->
1950*ad383c2cSLuiz Augusto von Dentz  * Enable Scanning
1951*ad383c2cSLuiz Augusto von Dentz  *
1952*ad383c2cSLuiz Augusto von Dentz  * Otherwise:
1953*ad383c2cSLuiz Augusto von Dentz  *
1954*ad383c2cSLuiz Augusto von Dentz  * Disable Scanning
1955e8907f76SLuiz Augusto von Dentz  */
1956e8907f76SLuiz Augusto von Dentz int hci_update_passive_scan_sync(struct hci_dev *hdev)
1957e8907f76SLuiz Augusto von Dentz {
1958e8907f76SLuiz Augusto von Dentz 	int err;
1959e8907f76SLuiz Augusto von Dentz 
1960e8907f76SLuiz Augusto von Dentz 	if (!test_bit(HCI_UP, &hdev->flags) ||
1961e8907f76SLuiz Augusto von Dentz 	    test_bit(HCI_INIT, &hdev->flags) ||
1962e8907f76SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_SETUP) ||
1963e8907f76SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_CONFIG) ||
1964e8907f76SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_AUTO_OFF) ||
1965e8907f76SLuiz Augusto von Dentz 	    hci_dev_test_flag(hdev, HCI_UNREGISTER))
1966e8907f76SLuiz Augusto von Dentz 		return 0;
1967e8907f76SLuiz Augusto von Dentz 
1968e8907f76SLuiz Augusto von Dentz 	/* No point in doing scanning if LE support hasn't been enabled */
1969e8907f76SLuiz Augusto von Dentz 	if (!hci_dev_test_flag(hdev, HCI_LE_ENABLED))
1970e8907f76SLuiz Augusto von Dentz 		return 0;
1971e8907f76SLuiz Augusto von Dentz 
1972e8907f76SLuiz Augusto von Dentz 	/* If discovery is active don't interfere with it */
1973e8907f76SLuiz Augusto von Dentz 	if (hdev->discovery.state != DISCOVERY_STOPPED)
1974e8907f76SLuiz Augusto von Dentz 		return 0;
1975e8907f76SLuiz Augusto von Dentz 
1976e8907f76SLuiz Augusto von Dentz 	/* Reset RSSI and UUID filters when starting background scanning
1977e8907f76SLuiz Augusto von Dentz 	 * since these filters are meant for service discovery only.
1978e8907f76SLuiz Augusto von Dentz 	 *
1979e8907f76SLuiz Augusto von Dentz 	 * The Start Discovery and Start Service Discovery operations
1980e8907f76SLuiz Augusto von Dentz 	 * ensure to set proper values for RSSI threshold and UUID
1981e8907f76SLuiz Augusto von Dentz 	 * filter list. So it is safe to just reset them here.
1982e8907f76SLuiz Augusto von Dentz 	 */
1983e8907f76SLuiz Augusto von Dentz 	hci_discovery_filter_clear(hdev);
1984e8907f76SLuiz Augusto von Dentz 
1985e8907f76SLuiz Augusto von Dentz 	bt_dev_dbg(hdev, "ADV monitoring is %s",
1986e8907f76SLuiz Augusto von Dentz 		   hci_is_adv_monitoring(hdev) ? "on" : "off");
1987e8907f76SLuiz Augusto von Dentz 
1988e8907f76SLuiz Augusto von Dentz 	if (list_empty(&hdev->pend_le_conns) &&
1989e8907f76SLuiz Augusto von Dentz 	    list_empty(&hdev->pend_le_reports) &&
1990e8907f76SLuiz Augusto von Dentz 	    !hci_is_adv_monitoring(hdev)) {
1991e8907f76SLuiz Augusto von Dentz 		/* If there is no pending LE connections or devices
1992e8907f76SLuiz Augusto von Dentz 		 * to be scanned for or no ADV monitors, we should stop the
1993e8907f76SLuiz Augusto von Dentz 		 * background scanning.
1994e8907f76SLuiz Augusto von Dentz 		 */
1995e8907f76SLuiz Augusto von Dentz 
1996e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "stopping background scanning");
1997e8907f76SLuiz Augusto von Dentz 
1998*ad383c2cSLuiz Augusto von Dentz 		err = hci_scan_disable_sync(hdev);
1999e8907f76SLuiz Augusto von Dentz 		if (err)
2000e8907f76SLuiz Augusto von Dentz 			bt_dev_err(hdev, "stop background scanning failed: %d",
2001e8907f76SLuiz Augusto von Dentz 				   err);
2002e8907f76SLuiz Augusto von Dentz 	} else {
2003e8907f76SLuiz Augusto von Dentz 		/* If there is at least one pending LE connection, we should
2004e8907f76SLuiz Augusto von Dentz 		 * keep the background scan running.
2005e8907f76SLuiz Augusto von Dentz 		 */
2006e8907f76SLuiz Augusto von Dentz 
2007e8907f76SLuiz Augusto von Dentz 		/* If controller is connecting, we should not start scanning
2008e8907f76SLuiz Augusto von Dentz 		 * since some controllers are not able to scan and connect at
2009e8907f76SLuiz Augusto von Dentz 		 * the same time.
2010e8907f76SLuiz Augusto von Dentz 		 */
2011e8907f76SLuiz Augusto von Dentz 		if (hci_lookup_le_connect(hdev))
2012e8907f76SLuiz Augusto von Dentz 			return 0;
2013e8907f76SLuiz Augusto von Dentz 
2014e8907f76SLuiz Augusto von Dentz 		bt_dev_dbg(hdev, "start background scanning");
2015e8907f76SLuiz Augusto von Dentz 
2016e8907f76SLuiz Augusto von Dentz 		err = hci_passive_scan_sync(hdev);
2017e8907f76SLuiz Augusto von Dentz 		if (err)
2018e8907f76SLuiz Augusto von Dentz 			bt_dev_err(hdev, "start background scanning failed: %d",
2019e8907f76SLuiz Augusto von Dentz 				   err);
2020e8907f76SLuiz Augusto von Dentz 	}
2021e8907f76SLuiz Augusto von Dentz 
2022e8907f76SLuiz Augusto von Dentz 	return err;
2023e8907f76SLuiz Augusto von Dentz }
2024*ad383c2cSLuiz Augusto von Dentz 
2025*ad383c2cSLuiz Augusto von Dentz static int update_passive_scan_sync(struct hci_dev *hdev, void *data)
2026*ad383c2cSLuiz Augusto von Dentz {
2027*ad383c2cSLuiz Augusto von Dentz 	return hci_update_passive_scan_sync(hdev);
2028*ad383c2cSLuiz Augusto von Dentz }
2029*ad383c2cSLuiz Augusto von Dentz 
2030*ad383c2cSLuiz Augusto von Dentz int hci_update_passive_scan(struct hci_dev *hdev)
2031*ad383c2cSLuiz Augusto von Dentz {
2032*ad383c2cSLuiz Augusto von Dentz 	return hci_cmd_sync_queue(hdev, update_passive_scan_sync, NULL, NULL);
2033*ad383c2cSLuiz Augusto von Dentz }
2034