1 // SPDX-License-Identifier: GPL-2.0
2 /******************************************************************************
3  *
4  * Copyright(c) 2007 - 2012 Realtek Corporation. All rights reserved.
5  *
6  ******************************************************************************/
7 #define _RTW_WLAN_UTIL_C_
8 
9 #include <drv_types.h>
10 #include <rtw_debug.h>
11 #include <hal_com_h2c.h>
12 
13 static unsigned char ARTHEROS_OUI1[] = {0x00, 0x03, 0x7f};
14 static unsigned char ARTHEROS_OUI2[] = {0x00, 0x13, 0x74};
15 
16 static unsigned char BROADCOM_OUI1[] = {0x00, 0x10, 0x18};
17 static unsigned char BROADCOM_OUI2[] = {0x00, 0x0a, 0xf7};
18 static unsigned char BROADCOM_OUI3[] = {0x00, 0x05, 0xb5};
19 
20 static unsigned char CISCO_OUI[] = {0x00, 0x40, 0x96};
21 static unsigned char MARVELL_OUI[] = {0x00, 0x50, 0x43};
22 static unsigned char RALINK_OUI[] = {0x00, 0x0c, 0x43};
23 static unsigned char REALTEK_OUI[] = {0x00, 0xe0, 0x4c};
24 static unsigned char AIRGOCAP_OUI[] = {0x00, 0x0a, 0xf5};
25 static unsigned char RSN_TKIP_CIPHER[4] = {0x00, 0x0f, 0xac, 0x02};
26 static unsigned char WPA_TKIP_CIPHER[4] = {0x00, 0x50, 0xf2, 0x02};
27 
28 #define R2T_PHY_DELAY	(0)
29 
30 /* define WAIT_FOR_BCN_TO_MIN	(3000) */
31 #define WAIT_FOR_BCN_TO_MIN	(6000)
32 #define WAIT_FOR_BCN_TO_MAX	(20000)
33 
34 #define DISCONNECT_BY_CHK_BCN_FAIL_OBSERV_PERIOD_IN_MS 1000
35 #define DISCONNECT_BY_CHK_BCN_FAIL_THRESHOLD 3
36 
37 static u8 rtw_basic_rate_cck[4] = {
38 	IEEE80211_CCK_RATE_1MB | IEEE80211_BASIC_RATE_MASK,
39 	IEEE80211_CCK_RATE_2MB | IEEE80211_BASIC_RATE_MASK,
40 	IEEE80211_CCK_RATE_5MB | IEEE80211_BASIC_RATE_MASK,
41 	IEEE80211_CCK_RATE_11MB | IEEE80211_BASIC_RATE_MASK
42 };
43 
44 static u8 rtw_basic_rate_ofdm[3] = {
45 	IEEE80211_OFDM_RATE_6MB | IEEE80211_BASIC_RATE_MASK,
46 	IEEE80211_OFDM_RATE_12MB | IEEE80211_BASIC_RATE_MASK,
47 	IEEE80211_OFDM_RATE_24MB | IEEE80211_BASIC_RATE_MASK
48 };
49 
50 u8 networktype_to_raid_ex(struct adapter *adapter, struct sta_info *psta)
51 {
52 	u8 raid, cur_rf_type, rf_type = RF_1T1R;
53 
54 	rtw_hal_get_hwreg(adapter, HW_VAR_RF_TYPE, (u8 *)(&cur_rf_type));
55 
56 	if (cur_rf_type == RF_1T1R) {
57 		rf_type = RF_1T1R;
58 	} else if (IsSupportedVHT(psta->wireless_mode)) {
59 		if (psta->ra_mask & 0xffc00000)
60 			rf_type = RF_2T2R;
61 	} else if (IsSupportedHT(psta->wireless_mode)) {
62 		if (psta->ra_mask & 0xfff00000)
63 			rf_type = RF_2T2R;
64 	}
65 
66 	switch (psta->wireless_mode) {
67 	case WIRELESS_11B:
68 		raid = RATEID_IDX_B;
69 		break;
70 	case WIRELESS_11A:
71 	case WIRELESS_11G:
72 		raid = RATEID_IDX_G;
73 		break;
74 	case WIRELESS_11BG:
75 		raid = RATEID_IDX_BG;
76 		break;
77 	case WIRELESS_11_24N:
78 	case WIRELESS_11_5N:
79 	case WIRELESS_11A_5N:
80 	case WIRELESS_11G_24N:
81 		if (rf_type == RF_2T2R)
82 			raid = RATEID_IDX_GN_N2SS;
83 		else
84 			raid = RATEID_IDX_GN_N1SS;
85 		break;
86 	case WIRELESS_11B_24N:
87 	case WIRELESS_11BG_24N:
88 		if (psta->bw_mode == CHANNEL_WIDTH_20) {
89 			if (rf_type == RF_2T2R)
90 				raid = RATEID_IDX_BGN_20M_2SS_BN;
91 			else
92 				raid = RATEID_IDX_BGN_20M_1SS_BN;
93 		} else {
94 			if (rf_type == RF_2T2R)
95 				raid = RATEID_IDX_BGN_40M_2SS;
96 			else
97 				raid = RATEID_IDX_BGN_40M_1SS;
98 		}
99 		break;
100 	default:
101 		raid = RATEID_IDX_BGN_40M_2SS;
102 		break;
103 	}
104 	return raid;
105 }
106 
107 unsigned char ratetbl_val_2wifirate(unsigned char rate);
108 unsigned char ratetbl_val_2wifirate(unsigned char rate)
109 {
110 	switch (rate & 0x7f) {
111 	case 0:
112 		return IEEE80211_CCK_RATE_1MB;
113 	case 1:
114 		return IEEE80211_CCK_RATE_2MB;
115 	case 2:
116 		return IEEE80211_CCK_RATE_5MB;
117 	case 3:
118 		return IEEE80211_CCK_RATE_11MB;
119 	case 4:
120 		return IEEE80211_OFDM_RATE_6MB;
121 	case 5:
122 		return IEEE80211_OFDM_RATE_9MB;
123 	case 6:
124 		return IEEE80211_OFDM_RATE_12MB;
125 	case 7:
126 		return IEEE80211_OFDM_RATE_18MB;
127 	case 8:
128 		return IEEE80211_OFDM_RATE_24MB;
129 	case 9:
130 		return IEEE80211_OFDM_RATE_36MB;
131 	case 10:
132 		return IEEE80211_OFDM_RATE_48MB;
133 	case 11:
134 		return IEEE80211_OFDM_RATE_54MB;
135 	default:
136 		return 0;
137 	}
138 }
139 
140 int is_basicrate(struct adapter *padapter, unsigned char rate);
141 int is_basicrate(struct adapter *padapter, unsigned char rate)
142 {
143 	int i;
144 	unsigned char val;
145 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
146 
147 	for (i = 0; i < NumRates; i++) {
148 		val = pmlmeext->basicrate[i];
149 
150 		if ((val != 0xff) && (val != 0xfe))
151 			if (rate == ratetbl_val_2wifirate(val))
152 				return true;
153 	}
154 
155 	return false;
156 }
157 
158 unsigned int ratetbl2rateset(struct adapter *padapter, unsigned char *rateset);
159 unsigned int ratetbl2rateset(struct adapter *padapter, unsigned char *rateset)
160 {
161 	int i;
162 	unsigned char rate;
163 	unsigned int	len = 0;
164 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
165 
166 	for (i = 0; i < NumRates; i++) {
167 		rate = pmlmeext->datarate[i];
168 
169 		switch (rate) {
170 		case 0xff:
171 			return len;
172 
173 		case 0xfe:
174 			continue;
175 
176 		default:
177 			rate = ratetbl_val_2wifirate(rate);
178 
179 			if (is_basicrate(padapter, rate) == true)
180 				rate |= IEEE80211_BASIC_RATE_MASK;
181 
182 			rateset[len] = rate;
183 			len++;
184 			break;
185 		}
186 	}
187 	return len;
188 }
189 
190 void get_rate_set(struct adapter *padapter, unsigned char *pbssrate, int *bssrate_len)
191 {
192 	unsigned char supportedrates[NumRates];
193 
194 	memset(supportedrates, 0, NumRates);
195 	*bssrate_len = ratetbl2rateset(padapter, supportedrates);
196 	memcpy(pbssrate, supportedrates, *bssrate_len);
197 }
198 
199 void set_mcs_rate_by_mask(u8 *mcs_set, u32 mask)
200 {
201 	u8 mcs_rate_1r = (u8)(mask&0xff);
202 	u8 mcs_rate_2r = (u8)((mask>>8)&0xff);
203 	u8 mcs_rate_3r = (u8)((mask>>16)&0xff);
204 	u8 mcs_rate_4r = (u8)((mask>>24)&0xff);
205 
206 	mcs_set[0] &= mcs_rate_1r;
207 	mcs_set[1] &= mcs_rate_2r;
208 	mcs_set[2] &= mcs_rate_3r;
209 	mcs_set[3] &= mcs_rate_4r;
210 }
211 
212 void UpdateBrateTbl(struct adapter *Adapter, u8 *mBratesOS)
213 {
214 	u8 i;
215 	u8 rate;
216 
217 	/*  1M, 2M, 5.5M, 11M, 6M, 12M, 24M are mandatory. */
218 	for (i = 0; i < NDIS_802_11_LENGTH_RATES_EX; i++) {
219 		rate = mBratesOS[i] & 0x7f;
220 		switch (rate) {
221 		case IEEE80211_CCK_RATE_1MB:
222 		case IEEE80211_CCK_RATE_2MB:
223 		case IEEE80211_CCK_RATE_5MB:
224 		case IEEE80211_CCK_RATE_11MB:
225 		case IEEE80211_OFDM_RATE_6MB:
226 		case IEEE80211_OFDM_RATE_12MB:
227 		case IEEE80211_OFDM_RATE_24MB:
228 			mBratesOS[i] |= IEEE80211_BASIC_RATE_MASK;
229 			break;
230 		}
231 	}
232 }
233 
234 void UpdateBrateTblForSoftAP(u8 *bssrateset, u32 bssratelen)
235 {
236 	u8 i;
237 	u8 rate;
238 
239 	for (i = 0; i < bssratelen; i++) {
240 		rate = bssrateset[i] & 0x7f;
241 		switch (rate) {
242 		case IEEE80211_CCK_RATE_1MB:
243 		case IEEE80211_CCK_RATE_2MB:
244 		case IEEE80211_CCK_RATE_5MB:
245 		case IEEE80211_CCK_RATE_11MB:
246 			bssrateset[i] |= IEEE80211_BASIC_RATE_MASK;
247 			break;
248 		}
249 	}
250 }
251 
252 void Save_DM_Func_Flag(struct adapter *padapter)
253 {
254 	u8 bSaveFlag = true;
255 
256 	rtw_hal_set_hwreg(padapter, HW_VAR_DM_FUNC_OP, (u8 *)(&bSaveFlag));
257 }
258 
259 void Restore_DM_Func_Flag(struct adapter *padapter)
260 {
261 	u8 bSaveFlag = false;
262 
263 	rtw_hal_set_hwreg(padapter, HW_VAR_DM_FUNC_OP, (u8 *)(&bSaveFlag));
264 }
265 
266 void Switch_DM_Func(struct adapter *padapter, u32 mode, u8 enable)
267 {
268 	if (enable == true)
269 		rtw_hal_set_hwreg(padapter, HW_VAR_DM_FUNC_SET, (u8 *)(&mode));
270 	else
271 		rtw_hal_set_hwreg(padapter, HW_VAR_DM_FUNC_CLR, (u8 *)(&mode));
272 }
273 
274 void Set_MSR(struct adapter *padapter, u8 type)
275 {
276 	rtw_hal_set_hwreg(padapter, HW_VAR_MEDIA_STATUS, (u8 *)(&type));
277 }
278 
279 inline u8 rtw_get_oper_ch(struct adapter *adapter)
280 {
281 	return adapter_to_dvobj(adapter)->oper_channel;
282 }
283 
284 inline void rtw_set_oper_ch(struct adapter *adapter, u8 ch)
285 {
286 #ifdef DBG_CH_SWITCH
287 	const int len = 128;
288 	char msg[128] = {0};
289 	int cnt = 0;
290 	int i = 0;
291 #endif  /* DBG_CH_SWITCH */
292 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
293 
294 	if (dvobj->oper_channel != ch) {
295 		dvobj->on_oper_ch_time = jiffies;
296 
297 #ifdef DBG_CH_SWITCH
298 		cnt += scnprintf(msg+cnt, len-cnt, "switch to ch %3u", ch);
299 
300 		for (i = 0; i < dvobj->iface_nums; i++) {
301 			struct adapter *iface = dvobj->padapters[i];
302 
303 			cnt += scnprintf(msg+cnt, len-cnt, " [%s:", ADPT_ARG(iface));
304 			if (iface->mlmeextpriv.cur_channel == ch)
305 				cnt += scnprintf(msg+cnt, len-cnt, "C");
306 			else
307 				cnt += scnprintf(msg+cnt, len-cnt, "_");
308 			if (iface->wdinfo.listen_channel == ch && !rtw_p2p_chk_state(&iface->wdinfo, P2P_STATE_NONE))
309 				cnt += scnprintf(msg+cnt, len-cnt, "L");
310 			else
311 				cnt += scnprintf(msg+cnt, len-cnt, "_");
312 			cnt += scnprintf(msg+cnt, len-cnt, "]");
313 		}
314 
315 #endif /* DBG_CH_SWITCH */
316 	}
317 
318 	dvobj->oper_channel = ch;
319 }
320 
321 inline u8 rtw_get_oper_bw(struct adapter *adapter)
322 {
323 	return adapter_to_dvobj(adapter)->oper_bwmode;
324 }
325 
326 inline void rtw_set_oper_bw(struct adapter *adapter, u8 bw)
327 {
328 	adapter_to_dvobj(adapter)->oper_bwmode = bw;
329 }
330 
331 inline u8 rtw_get_oper_choffset(struct adapter *adapter)
332 {
333 	return adapter_to_dvobj(adapter)->oper_ch_offset;
334 }
335 
336 inline void rtw_set_oper_choffset(struct adapter *adapter, u8 offset)
337 {
338 	adapter_to_dvobj(adapter)->oper_ch_offset = offset;
339 }
340 
341 u8 rtw_get_center_ch(u8 channel, u8 chnl_bw, u8 chnl_offset)
342 {
343 	u8 center_ch = channel;
344 
345 	if (chnl_bw == CHANNEL_WIDTH_80) {
346 		center_ch = 7;
347 	} else if (chnl_bw == CHANNEL_WIDTH_40) {
348 		if (chnl_offset == HAL_PRIME_CHNL_OFFSET_LOWER)
349 			center_ch = channel + 2;
350 		else
351 			center_ch = channel - 2;
352 	}
353 
354 	return center_ch;
355 }
356 
357 inline unsigned long rtw_get_on_cur_ch_time(struct adapter *adapter)
358 {
359 	if (adapter->mlmeextpriv.cur_channel == adapter_to_dvobj(adapter)->oper_channel)
360 		return adapter_to_dvobj(adapter)->on_oper_ch_time;
361 	else
362 		return 0;
363 }
364 
365 void SelectChannel(struct adapter *padapter, unsigned char channel)
366 {
367 	if (mutex_lock_interruptible(&(adapter_to_dvobj(padapter)->setch_mutex)))
368 		return;
369 
370 	/* saved channel info */
371 	rtw_set_oper_ch(padapter, channel);
372 
373 	rtw_hal_set_chan(padapter, channel);
374 
375 	mutex_unlock(&(adapter_to_dvobj(padapter)->setch_mutex));
376 }
377 
378 void set_channel_bwmode(struct adapter *padapter, unsigned char channel, unsigned char channel_offset, unsigned short bwmode)
379 {
380 	u8 center_ch, chnl_offset80 = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
381 
382 	center_ch = rtw_get_center_ch(channel, bwmode, channel_offset);
383 
384 	if (bwmode == CHANNEL_WIDTH_80) {
385 		if (center_ch > channel)
386 			chnl_offset80 = HAL_PRIME_CHNL_OFFSET_LOWER;
387 		else if (center_ch < channel)
388 			chnl_offset80 = HAL_PRIME_CHNL_OFFSET_UPPER;
389 		else
390 			chnl_offset80 = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
391 	}
392 
393 	/* set Channel */
394 	if (mutex_lock_interruptible(&(adapter_to_dvobj(padapter)->setch_mutex)))
395 		return;
396 
397 	/* saved channel/bw info */
398 	rtw_set_oper_ch(padapter, channel);
399 	rtw_set_oper_bw(padapter, bwmode);
400 	rtw_set_oper_choffset(padapter, channel_offset);
401 
402 	rtw_hal_set_chnl_bw(padapter, center_ch, bwmode, channel_offset, chnl_offset80); /*  set center channel */
403 
404 	mutex_unlock(&(adapter_to_dvobj(padapter)->setch_mutex));
405 }
406 
407 inline u8 *get_my_bssid(struct wlan_bssid_ex *pnetwork)
408 {
409 	return pnetwork->MacAddress;
410 }
411 
412 u16 get_beacon_interval(struct wlan_bssid_ex *bss)
413 {
414 	__le16 val;
415 
416 	memcpy((unsigned char *)&val, rtw_get_beacon_interval_from_ie(bss->IEs), 2);
417 
418 	return le16_to_cpu(val);
419 }
420 
421 int is_client_associated_to_ap(struct adapter *padapter)
422 {
423 	struct mlme_ext_priv *pmlmeext;
424 	struct mlme_ext_info *pmlmeinfo;
425 
426 	if (!padapter)
427 		return _FAIL;
428 
429 	pmlmeext = &padapter->mlmeextpriv;
430 	pmlmeinfo = &(pmlmeext->mlmext_info);
431 
432 	if ((pmlmeinfo->state & WIFI_FW_ASSOC_SUCCESS) && ((pmlmeinfo->state&0x03) == WIFI_FW_STATION_STATE))
433 		return true;
434 	else
435 		return _FAIL;
436 }
437 
438 int is_client_associated_to_ibss(struct adapter *padapter)
439 {
440 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
441 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
442 
443 	if ((pmlmeinfo->state & WIFI_FW_ASSOC_SUCCESS) && ((pmlmeinfo->state&0x03) == WIFI_FW_ADHOC_STATE))
444 		return true;
445 	else
446 		return _FAIL;
447 }
448 
449 int is_IBSS_empty(struct adapter *padapter)
450 {
451 	unsigned int i;
452 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
453 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
454 
455 	for (i = IBSS_START_MAC_ID; i < NUM_STA; i++) {
456 		if (pmlmeinfo->FW_sta_info[i].status == 1)
457 			return _FAIL;
458 	}
459 
460 	return true;
461 }
462 
463 unsigned int decide_wait_for_beacon_timeout(unsigned int bcn_interval)
464 {
465 	if ((bcn_interval << 2) < WAIT_FOR_BCN_TO_MIN)
466 		return WAIT_FOR_BCN_TO_MIN;
467 	else if ((bcn_interval << 2) > WAIT_FOR_BCN_TO_MAX)
468 		return WAIT_FOR_BCN_TO_MAX;
469 	else
470 		return bcn_interval << 2;
471 }
472 
473 void invalidate_cam_all(struct adapter *padapter)
474 {
475 	struct dvobj_priv *dvobj = adapter_to_dvobj(padapter);
476 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
477 
478 	rtw_hal_set_hwreg(padapter, HW_VAR_CAM_INVALID_ALL, NULL);
479 
480 	spin_lock_bh(&cam_ctl->lock);
481 	cam_ctl->bitmap = 0;
482 	memset(dvobj->cam_cache, 0, sizeof(struct cam_entry_cache)*TOTAL_CAM_ENTRY);
483 	spin_unlock_bh(&cam_ctl->lock);
484 }
485 
486 static u32 _ReadCAM(struct adapter *padapter, u32 addr)
487 {
488 	u32 count = 0, cmd;
489 
490 	cmd = CAM_POLLINIG | addr;
491 	rtw_write32(padapter, RWCAM, cmd);
492 
493 	do {
494 		if (0 == (rtw_read32(padapter, REG_CAMCMD) & CAM_POLLINIG))
495 			break;
496 	} while (count++ < 100);
497 
498 	return rtw_read32(padapter, REG_CAMREAD);
499 }
500 
501 void read_cam(struct adapter *padapter, u8 entry, u8 *get_key)
502 {
503 	u32 j, addr, cmd;
504 
505 	addr = entry << 3;
506 
507 	for (j = 0; j < 6; j++) {
508 		cmd = _ReadCAM(padapter, addr+j);
509 		if (j > 1) /* get key from cam */
510 			memcpy(get_key+(j-2)*4, &cmd, 4);
511 	}
512 }
513 
514 void _write_cam(struct adapter *padapter, u8 entry, u16 ctrl, u8 *mac, u8 *key)
515 {
516 	unsigned int i, val, addr;
517 	int j;
518 	u32 cam_val[2];
519 
520 	addr = entry << 3;
521 
522 	for (j = 5; j >= 0; j--) {
523 		switch (j) {
524 		case 0:
525 			val = (ctrl | (mac[0] << 16) | (mac[1] << 24));
526 			break;
527 		case 1:
528 			val = (mac[2] | (mac[3] << 8) | (mac[4] << 16) | (mac[5] << 24));
529 			break;
530 		default:
531 			i = (j - 2) << 2;
532 			val = (key[i] | (key[i+1] << 8) | (key[i+2] << 16) | (key[i+3] << 24));
533 			break;
534 		}
535 
536 		cam_val[0] = val;
537 		cam_val[1] = addr + (unsigned int)j;
538 
539 		rtw_hal_set_hwreg(padapter, HW_VAR_CAM_WRITE, (u8 *)cam_val);
540 	}
541 }
542 
543 void _clear_cam_entry(struct adapter *padapter, u8 entry)
544 {
545 	unsigned char null_sta[] = {0x00, 0x00, 0x00, 0x00, 0x00, 0x00};
546 	unsigned char null_key[] = {0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00};
547 
548 	_write_cam(padapter, entry, 0, null_sta, null_key);
549 }
550 
551 inline void write_cam(struct adapter *adapter, u8 id, u16 ctrl, u8 *mac, u8 *key)
552 {
553 	_write_cam(adapter, id, ctrl, mac, key);
554 	write_cam_cache(adapter, id, ctrl, mac, key);
555 }
556 
557 inline void clear_cam_entry(struct adapter *adapter, u8 id)
558 {
559 	_clear_cam_entry(adapter, id);
560 	clear_cam_cache(adapter, id);
561 }
562 
563 void write_cam_cache(struct adapter *adapter, u8 id, u16 ctrl, u8 *mac, u8 *key)
564 {
565 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
566 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
567 
568 	spin_lock_bh(&cam_ctl->lock);
569 
570 	dvobj->cam_cache[id].ctrl = ctrl;
571 	memcpy(dvobj->cam_cache[id].mac, mac, ETH_ALEN);
572 	memcpy(dvobj->cam_cache[id].key, key, 16);
573 
574 	spin_unlock_bh(&cam_ctl->lock);
575 }
576 
577 void clear_cam_cache(struct adapter *adapter, u8 id)
578 {
579 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
580 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
581 
582 	spin_lock_bh(&cam_ctl->lock);
583 
584 	memset(&(dvobj->cam_cache[id]), 0, sizeof(struct cam_entry_cache));
585 
586 	spin_unlock_bh(&cam_ctl->lock);
587 }
588 
589 static bool _rtw_camid_is_gk(struct adapter *adapter, u8 cam_id)
590 {
591 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
592 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
593 	bool ret = false;
594 
595 	if (cam_id >= TOTAL_CAM_ENTRY)
596 		goto exit;
597 
598 	if (!(cam_ctl->bitmap & BIT(cam_id)))
599 		goto exit;
600 
601 	ret = (dvobj->cam_cache[cam_id].ctrl&BIT6)?true:false;
602 
603 exit:
604 	return ret;
605 }
606 
607 static s16 _rtw_camid_search(struct adapter *adapter, u8 *addr, s16 kid)
608 {
609 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
610 	int i;
611 	s16 cam_id = -1;
612 
613 	for (i = 0; i < TOTAL_CAM_ENTRY; i++) {
614 		if (addr && memcmp(dvobj->cam_cache[i].mac, addr, ETH_ALEN))
615 			continue;
616 		if (kid >= 0 && kid != (dvobj->cam_cache[i].ctrl&0x03))
617 			continue;
618 
619 		cam_id = i;
620 		break;
621 	}
622 
623 	return cam_id;
624 }
625 
626 s16 rtw_camid_search(struct adapter *adapter, u8 *addr, s16 kid)
627 {
628 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
629 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
630 	s16 cam_id = -1;
631 
632 	spin_lock_bh(&cam_ctl->lock);
633 	cam_id = _rtw_camid_search(adapter, addr, kid);
634 	spin_unlock_bh(&cam_ctl->lock);
635 
636 	return cam_id;
637 }
638 
639 s16 rtw_camid_alloc(struct adapter *adapter, struct sta_info *sta, u8 kid)
640 {
641 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
642 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
643 	s16 cam_id = -1;
644 	struct mlme_ext_info *mlmeinfo;
645 
646 	spin_lock_bh(&cam_ctl->lock);
647 
648 	mlmeinfo = &adapter->mlmeextpriv.mlmext_info;
649 
650 	if ((((mlmeinfo->state&0x03) == WIFI_FW_AP_STATE) || ((mlmeinfo->state&0x03) == WIFI_FW_ADHOC_STATE))
651 		&& !sta) {
652 		/* AP/Ad-hoc mode group key: static alloction to default key by key ID */
653 		if (kid > 3) {
654 			netdev_dbg(adapter->pnetdev,
655 				   FUNC_ADPT_FMT " group key with invalid key id:%u\n",
656 				   FUNC_ADPT_ARG(adapter), kid);
657 			rtw_warn_on(1);
658 			goto bitmap_handle;
659 		}
660 
661 		cam_id = kid;
662 	} else {
663 		int i;
664 		u8 *addr = sta?sta->hwaddr:NULL;
665 
666 		if (!sta) {
667 			if (!(mlmeinfo->state & WIFI_FW_ASSOC_SUCCESS)) {
668 				/* bypass STA mode group key setting before connected(ex:WEP) because bssid is not ready */
669 				goto bitmap_handle;
670 			}
671 
672 			addr = get_bssid(&adapter->mlmepriv);
673 		}
674 
675 		i = _rtw_camid_search(adapter, addr, kid);
676 		if (i >= 0) {
677 			/* Fix issue that pairwise and group key have same key id. Pairwise key first, group key can overwirte group only(ex: rekey) */
678 			if (sta || _rtw_camid_is_gk(adapter, i))
679 				cam_id = i;
680 			else
681 				netdev_dbg(adapter->pnetdev,
682 					   FUNC_ADPT_FMT " group key id:%u the same key id as pairwise key\n",
683 					   FUNC_ADPT_ARG(adapter), kid);
684 			goto bitmap_handle;
685 		}
686 
687 		for (i = 4; i < TOTAL_CAM_ENTRY; i++)
688 			if (!(cam_ctl->bitmap & BIT(i)))
689 				break;
690 
691 		if (i == TOTAL_CAM_ENTRY) {
692 			if (sta)
693 				netdev_dbg(adapter->pnetdev,
694 					   FUNC_ADPT_FMT " pairwise key with %pM id:%u no room\n",
695 					   FUNC_ADPT_ARG(adapter),
696 					   MAC_ARG(sta->hwaddr), kid);
697 			else
698 				netdev_dbg(adapter->pnetdev,
699 					   FUNC_ADPT_FMT " group key id:%u no room\n",
700 					   FUNC_ADPT_ARG(adapter), kid);
701 			rtw_warn_on(1);
702 			goto bitmap_handle;
703 		}
704 
705 		cam_id = i;
706 	}
707 
708 bitmap_handle:
709 	if (cam_id >= 0 && cam_id < 32)
710 		cam_ctl->bitmap |= BIT(cam_id);
711 
712 	spin_unlock_bh(&cam_ctl->lock);
713 
714 	return cam_id;
715 }
716 
717 void rtw_camid_free(struct adapter *adapter, u8 cam_id)
718 {
719 	struct dvobj_priv *dvobj = adapter_to_dvobj(adapter);
720 	struct cam_ctl_t *cam_ctl = &dvobj->cam_ctl;
721 
722 	spin_lock_bh(&cam_ctl->lock);
723 
724 	if (cam_id < TOTAL_CAM_ENTRY)
725 		cam_ctl->bitmap &= ~(BIT(cam_id));
726 
727 	spin_unlock_bh(&cam_ctl->lock);
728 }
729 
730 int allocate_fw_sta_entry(struct adapter *padapter)
731 {
732 	unsigned int mac_id;
733 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
734 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
735 
736 	for (mac_id = IBSS_START_MAC_ID; mac_id < NUM_STA; mac_id++) {
737 		if (pmlmeinfo->FW_sta_info[mac_id].status == 0) {
738 			pmlmeinfo->FW_sta_info[mac_id].status = 1;
739 			pmlmeinfo->FW_sta_info[mac_id].retry = 0;
740 			break;
741 		}
742 	}
743 
744 	return mac_id;
745 }
746 
747 void flush_all_cam_entry(struct adapter *padapter)
748 {
749 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
750 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
751 
752 	invalidate_cam_all(padapter);
753 	/* clear default key related key search setting */
754 	rtw_hal_set_hwreg(padapter, HW_VAR_SEC_DK_CFG, (u8 *)false);
755 
756 	memset((u8 *)(pmlmeinfo->FW_sta_info), 0, sizeof(pmlmeinfo->FW_sta_info));
757 }
758 
759 int WMM_param_handler(struct adapter *padapter, struct ndis_80211_var_ie *pIE)
760 {
761 	/* struct registry_priv *pregpriv = &padapter->registrypriv; */
762 	struct mlme_priv *pmlmepriv = &(padapter->mlmepriv);
763 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
764 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
765 
766 	if (pmlmepriv->qospriv.qos_option == 0) {
767 		pmlmeinfo->WMM_enable = 0;
768 		return false;
769 	}
770 
771 	if (!memcmp(&(pmlmeinfo->WMM_param), (pIE->data + 6), sizeof(struct WMM_para_element)))
772 		return false;
773 	else
774 		memcpy(&(pmlmeinfo->WMM_param), (pIE->data + 6), sizeof(struct WMM_para_element));
775 
776 	pmlmeinfo->WMM_enable = 1;
777 	return true;
778 }
779 
780 static void sort_wmm_ac_params(u32 *inx, u32 *edca)
781 {
782 	u32 i, j, change_inx = false;
783 
784 	/* entry indx: 0->vo, 1->vi, 2->be, 3->bk. */
785 	for (i = 0; i < 4; i++) {
786 		for (j = i + 1; j < 4; j++) {
787 			/* compare CW and AIFS */
788 			if ((edca[j] & 0xFFFF) < (edca[i] & 0xFFFF)) {
789 				change_inx = true;
790 			} else if ((edca[j] & 0xFFFF) == (edca[i] & 0xFFFF)) {
791 				/* compare TXOP */
792 				if ((edca[j] >> 16) > (edca[i] >> 16))
793 					change_inx = true;
794 			}
795 
796 			if (change_inx) {
797 				swap(edca[i], edca[j]);
798 				swap(inx[i], inx[j]);
799 
800 				change_inx = false;
801 			}
802 		}
803 	}
804 }
805 
806 void WMMOnAssocRsp(struct adapter *padapter)
807 {
808 	u8 ACI, ACM, AIFS, ECWMin, ECWMax, aSifsTime;
809 	u8 acm_mask;
810 	u16 TXOP;
811 	u32 acParm, i;
812 	u32 edca[4], inx[4];
813 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
814 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
815 	struct xmit_priv *pxmitpriv = &padapter->xmitpriv;
816 	struct registry_priv *pregpriv = &padapter->registrypriv;
817 
818 	acm_mask = 0;
819 
820 	if (pmlmeext->cur_wireless_mode & WIRELESS_11_24N)
821 		aSifsTime = 16;
822 	else
823 		aSifsTime = 10;
824 
825 	if (pmlmeinfo->WMM_enable == 0) {
826 		padapter->mlmepriv.acm_mask = 0;
827 
828 		AIFS = aSifsTime + (2 * pmlmeinfo->slotTime);
829 
830 		if (pmlmeext->cur_wireless_mode & (WIRELESS_11G | WIRELESS_11A)) {
831 			ECWMin = 4;
832 			ECWMax = 10;
833 		} else if (pmlmeext->cur_wireless_mode & WIRELESS_11B) {
834 			ECWMin = 5;
835 			ECWMax = 10;
836 		} else {
837 			ECWMin = 4;
838 			ECWMax = 10;
839 		}
840 
841 		TXOP = 0;
842 		acParm = AIFS | (ECWMin << 8) | (ECWMax << 12) | (TXOP << 16);
843 		rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_BE, (u8 *)(&acParm));
844 		rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_BK, (u8 *)(&acParm));
845 		rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_VI, (u8 *)(&acParm));
846 
847 		ECWMin = 2;
848 		ECWMax = 3;
849 		TXOP = 0x2f;
850 		acParm = AIFS | (ECWMin << 8) | (ECWMax << 12) | (TXOP << 16);
851 		rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_VO, (u8 *)(&acParm));
852 	} else {
853 		edca[0] = edca[1] = edca[2] = edca[3] = 0;
854 
855 		for (i = 0; i < 4; i++) {
856 			ACI = (pmlmeinfo->WMM_param.ac_param[i].ACI_AIFSN >> 5) & 0x03;
857 			ACM = (pmlmeinfo->WMM_param.ac_param[i].ACI_AIFSN >> 4) & 0x01;
858 
859 			/* AIFS = AIFSN * slot time + SIFS - r2t phy delay */
860 			AIFS = (pmlmeinfo->WMM_param.ac_param[i].ACI_AIFSN & 0x0f) * pmlmeinfo->slotTime + aSifsTime;
861 
862 			ECWMin = (pmlmeinfo->WMM_param.ac_param[i].CW & 0x0f);
863 			ECWMax = (pmlmeinfo->WMM_param.ac_param[i].CW & 0xf0) >> 4;
864 			TXOP = le16_to_cpu(pmlmeinfo->WMM_param.ac_param[i].TXOP_limit);
865 
866 			acParm = AIFS | (ECWMin << 8) | (ECWMax << 12) | (TXOP << 16);
867 
868 			switch (ACI) {
869 			case 0x0:
870 				rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_BE, (u8 *)(&acParm));
871 				acm_mask |= (ACM ? BIT(1):0);
872 				edca[XMIT_BE_QUEUE] = acParm;
873 				break;
874 
875 			case 0x1:
876 				rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_BK, (u8 *)(&acParm));
877 				/* acm_mask |= (ACM? BIT(0):0); */
878 				edca[XMIT_BK_QUEUE] = acParm;
879 				break;
880 
881 			case 0x2:
882 				rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_VI, (u8 *)(&acParm));
883 				acm_mask |= (ACM ? BIT(2):0);
884 				edca[XMIT_VI_QUEUE] = acParm;
885 				break;
886 
887 			case 0x3:
888 				rtw_hal_set_hwreg(padapter, HW_VAR_AC_PARAM_VO, (u8 *)(&acParm));
889 				acm_mask |= (ACM ? BIT(3):0);
890 				edca[XMIT_VO_QUEUE] = acParm;
891 				break;
892 			}
893 		}
894 
895 		if (padapter->registrypriv.acm_method == 1)
896 			rtw_hal_set_hwreg(padapter, HW_VAR_ACM_CTRL, (u8 *)(&acm_mask));
897 		else
898 			padapter->mlmepriv.acm_mask = acm_mask;
899 
900 		inx[0] = 0; inx[1] = 1; inx[2] = 2; inx[3] = 3;
901 
902 		if (pregpriv->wifi_spec == 1)
903 			sort_wmm_ac_params(inx, edca);
904 
905 		for (i = 0; i < 4; i++)
906 			pxmitpriv->wmm_para_seq[i] = inx[i];
907 	}
908 }
909 
910 static void bwmode_update_check(struct adapter *padapter, struct ndis_80211_var_ie *pIE)
911 {
912 	unsigned char  new_bwmode;
913 	unsigned char  new_ch_offset;
914 	struct HT_info_element	 *pHT_info;
915 	struct mlme_priv *pmlmepriv = &(padapter->mlmepriv);
916 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
917 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
918 	struct registry_priv *pregistrypriv = &padapter->registrypriv;
919 	struct ht_priv *phtpriv = &pmlmepriv->htpriv;
920 	u8 cbw40_enable = 0;
921 
922 	if (!pIE)
923 		return;
924 
925 	if (phtpriv->ht_option == false)
926 		return;
927 
928 	if (pmlmeext->cur_bwmode >= CHANNEL_WIDTH_80)
929 		return;
930 
931 	if (pIE->Length > sizeof(struct HT_info_element))
932 		return;
933 
934 	pHT_info = (struct HT_info_element *)pIE->data;
935 
936 	if (pmlmeext->cur_channel > 14) {
937 		if ((pregistrypriv->bw_mode & 0xf0) > 0)
938 			cbw40_enable = 1;
939 	} else {
940 		if ((pregistrypriv->bw_mode & 0x0f) > 0)
941 			cbw40_enable = 1;
942 	}
943 
944 	if ((pHT_info->infos[0] & BIT(2)) && cbw40_enable) {
945 		new_bwmode = CHANNEL_WIDTH_40;
946 
947 		switch (pHT_info->infos[0] & 0x3) {
948 		case 1:
949 			new_ch_offset = HAL_PRIME_CHNL_OFFSET_LOWER;
950 			break;
951 
952 		case 3:
953 			new_ch_offset = HAL_PRIME_CHNL_OFFSET_UPPER;
954 			break;
955 
956 		default:
957 			new_bwmode = CHANNEL_WIDTH_20;
958 			new_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
959 			break;
960 		}
961 	} else {
962 		new_bwmode = CHANNEL_WIDTH_20;
963 		new_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
964 	}
965 
966 	if ((new_bwmode != pmlmeext->cur_bwmode) || (new_ch_offset != pmlmeext->cur_ch_offset)) {
967 		pmlmeinfo->bwmode_updated = true;
968 
969 		pmlmeext->cur_bwmode = new_bwmode;
970 		pmlmeext->cur_ch_offset = new_ch_offset;
971 
972 		/* update HT info also */
973 		HT_info_handler(padapter, pIE);
974 	} else {
975 		pmlmeinfo->bwmode_updated = false;
976 	}
977 
978 	if (true == pmlmeinfo->bwmode_updated) {
979 		struct sta_info *psta;
980 		struct wlan_bssid_ex	*cur_network = &(pmlmeinfo->network);
981 		struct sta_priv *pstapriv = &padapter->stapriv;
982 
983 		/* set_channel_bwmode(padapter, pmlmeext->cur_channel, pmlmeext->cur_ch_offset, pmlmeext->cur_bwmode); */
984 
985 		/* update ap's stainfo */
986 		psta = rtw_get_stainfo(pstapriv, cur_network->MacAddress);
987 		if (psta) {
988 			struct ht_priv *phtpriv_sta = &psta->htpriv;
989 
990 			if (phtpriv_sta->ht_option) {
991 				/*  bwmode */
992 				psta->bw_mode = pmlmeext->cur_bwmode;
993 				phtpriv_sta->ch_offset = pmlmeext->cur_ch_offset;
994 			} else {
995 				psta->bw_mode = CHANNEL_WIDTH_20;
996 				phtpriv_sta->ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
997 			}
998 
999 			rtw_dm_ra_mask_wk_cmd(padapter, (u8 *)psta);
1000 		}
1001 	}
1002 }
1003 
1004 void HT_caps_handler(struct adapter *padapter, struct ndis_80211_var_ie *pIE)
1005 {
1006 	unsigned int	i;
1007 	u8 rf_type;
1008 	u8 max_AMPDU_len, min_MPDU_spacing;
1009 	u8 cur_ldpc_cap = 0, cur_stbc_cap = 0;
1010 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1011 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1012 	struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1013 	struct ht_priv *phtpriv = &pmlmepriv->htpriv;
1014 
1015 	if (!pIE)
1016 		return;
1017 
1018 	if (phtpriv->ht_option == false)
1019 		return;
1020 
1021 	pmlmeinfo->HT_caps_enable = 1;
1022 
1023 	for (i = 0; i < (pIE->Length); i++) {
1024 		if (i != 2) {
1025 			/* Commented by Albert 2010/07/12 */
1026 			/* Got the endian issue here. */
1027 			pmlmeinfo->HT_caps.u.HT_cap[i] &= (pIE->data[i]);
1028 		} else {
1029 			/* modify from  fw by Thomas 2010/11/17 */
1030 			if ((pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x3) > (pIE->data[i] & 0x3))
1031 				max_AMPDU_len = (pIE->data[i] & 0x3);
1032 			else
1033 				max_AMPDU_len = (pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x3);
1034 
1035 			if ((pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x1c) > (pIE->data[i] & 0x1c))
1036 				min_MPDU_spacing = (pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x1c);
1037 			else
1038 				min_MPDU_spacing = (pIE->data[i] & 0x1c);
1039 
1040 			pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para = max_AMPDU_len | min_MPDU_spacing;
1041 		}
1042 	}
1043 	rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
1044 
1045 	/* update the MCS set */
1046 	for (i = 0; i < 16; i++)
1047 		pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= pmlmeext->default_supported_mcs_set[i];
1048 
1049 	/* update the MCS rates */
1050 	switch (rf_type) {
1051 	case RF_1T1R:
1052 	case RF_1T2R:
1053 		set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_1R);
1054 		break;
1055 	case RF_2T2R:
1056 	default:
1057 		set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R);
1058 	}
1059 
1060 	if (check_fwstate(pmlmepriv, WIFI_AP_STATE)) {
1061 		/*  Config STBC setting */
1062 		if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX) &&
1063 		    GET_HT_CAPABILITY_ELE_TX_STBC(pIE->data))
1064 			SET_FLAG(cur_stbc_cap, STBC_HT_ENABLE_TX);
1065 
1066 		phtpriv->stbc_cap = cur_stbc_cap;
1067 	} else {
1068 		/*  Config LDPC Coding Capability */
1069 		if (TEST_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_TX) &&
1070 		    GET_HT_CAPABILITY_ELE_LDPC_CAP(pIE->data))
1071 			SET_FLAG(cur_ldpc_cap, (LDPC_HT_ENABLE_TX | LDPC_HT_CAP_TX));
1072 
1073 		phtpriv->ldpc_cap = cur_ldpc_cap;
1074 
1075 		/*  Config STBC setting */
1076 		if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX) &&
1077 		    GET_HT_CAPABILITY_ELE_RX_STBC(pIE->data))
1078 			SET_FLAG(cur_stbc_cap, (STBC_HT_ENABLE_TX | STBC_HT_CAP_TX));
1079 
1080 		phtpriv->stbc_cap = cur_stbc_cap;
1081 	}
1082 }
1083 
1084 void HT_info_handler(struct adapter *padapter, struct ndis_80211_var_ie *pIE)
1085 {
1086 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1087 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1088 	struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
1089 	struct ht_priv *phtpriv = &pmlmepriv->htpriv;
1090 
1091 	if (!pIE)
1092 		return;
1093 
1094 	if (phtpriv->ht_option == false)
1095 		return;
1096 
1097 	if (pIE->Length > sizeof(struct HT_info_element))
1098 		return;
1099 
1100 	pmlmeinfo->HT_info_enable = 1;
1101 	memcpy(&(pmlmeinfo->HT_info), pIE->data, pIE->Length);
1102 }
1103 
1104 void HTOnAssocRsp(struct adapter *padapter)
1105 {
1106 	unsigned char max_AMPDU_len;
1107 	unsigned char min_MPDU_spacing;
1108 	/* struct registry_priv  *pregpriv = &padapter->registrypriv; */
1109 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1110 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1111 
1112 	if ((pmlmeinfo->HT_info_enable) && (pmlmeinfo->HT_caps_enable)) {
1113 		pmlmeinfo->HT_enable = 1;
1114 	} else {
1115 		pmlmeinfo->HT_enable = 0;
1116 		/* set_channel_bwmode(padapter, pmlmeext->cur_channel, pmlmeext->cur_ch_offset, pmlmeext->cur_bwmode); */
1117 		return;
1118 	}
1119 
1120 	/* handle A-MPDU parameter field */
1121 	/*
1122 		AMPDU_para [1:0]:Max AMPDU Len => 0:8k , 1:16k, 2:32k, 3:64k
1123 		AMPDU_para [4:2]:Min MPDU Start Spacing
1124 	*/
1125 	max_AMPDU_len = pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x03;
1126 
1127 	min_MPDU_spacing = (pmlmeinfo->HT_caps.u.HT_cap_element.AMPDU_para & 0x1c) >> 2;
1128 
1129 	rtw_hal_set_hwreg(padapter, HW_VAR_AMPDU_MIN_SPACE, (u8 *)(&min_MPDU_spacing));
1130 
1131 	rtw_hal_set_hwreg(padapter, HW_VAR_AMPDU_FACTOR, (u8 *)(&max_AMPDU_len));
1132 }
1133 
1134 void ERP_IE_handler(struct adapter *padapter, struct ndis_80211_var_ie *pIE)
1135 {
1136 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1137 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1138 
1139 	if (pIE->Length > 1)
1140 		return;
1141 
1142 	pmlmeinfo->ERP_enable = 1;
1143 	memcpy(&(pmlmeinfo->ERP_IE), pIE->data, pIE->Length);
1144 }
1145 
1146 void VCS_update(struct adapter *padapter, struct sta_info *psta)
1147 {
1148 	struct registry_priv  *pregpriv = &padapter->registrypriv;
1149 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1150 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1151 
1152 	switch (pregpriv->vrtl_carrier_sense) {/* 0:off 1:on 2:auto */
1153 	case 0: /* off */
1154 		psta->rtsen = 0;
1155 		psta->cts2self = 0;
1156 		break;
1157 
1158 	case 1: /* on */
1159 		if (pregpriv->vcs_type == 1) { /* 1:RTS/CTS 2:CTS to self */
1160 			psta->rtsen = 1;
1161 			psta->cts2self = 0;
1162 		} else {
1163 			psta->rtsen = 0;
1164 			psta->cts2self = 1;
1165 		}
1166 		break;
1167 
1168 	case 2: /* auto */
1169 	default:
1170 		if ((pmlmeinfo->ERP_enable) && (pmlmeinfo->ERP_IE & BIT(1))) {
1171 			if (pregpriv->vcs_type == 1) {
1172 				psta->rtsen = 1;
1173 				psta->cts2self = 0;
1174 			} else {
1175 				psta->rtsen = 0;
1176 				psta->cts2self = 1;
1177 			}
1178 		} else {
1179 			psta->rtsen = 0;
1180 			psta->cts2self = 0;
1181 		}
1182 		break;
1183 	}
1184 }
1185 
1186 void update_ldpc_stbc_cap(struct sta_info *psta)
1187 {
1188 	if (psta->htpriv.ht_option) {
1189 		if (TEST_FLAG(psta->htpriv.ldpc_cap, LDPC_HT_ENABLE_TX))
1190 			psta->ldpc = 1;
1191 
1192 		if (TEST_FLAG(psta->htpriv.stbc_cap, STBC_HT_ENABLE_TX))
1193 			psta->stbc = 1;
1194 	} else {
1195 		psta->ldpc = 0;
1196 		psta->stbc = 0;
1197 	}
1198 }
1199 
1200 int rtw_check_bcn_info(struct adapter *Adapter, u8 *pframe, u32 packet_len)
1201 {
1202 	unsigned int len;
1203 	unsigned char *p;
1204 	unsigned short	val16, subtype;
1205 	struct wlan_network *cur_network = &(Adapter->mlmepriv.cur_network);
1206 	/* u8 wpa_ie[255], rsn_ie[255]; */
1207 	u16 wpa_len = 0, rsn_len = 0;
1208 	u8 encryp_protocol = 0;
1209 	struct wlan_bssid_ex *bssid;
1210 	int group_cipher = 0, pairwise_cipher = 0, is_8021x = 0;
1211 	unsigned char *pbuf;
1212 	u32 wpa_ielen = 0;
1213 	u8 *pbssid = GetAddr3Ptr(pframe);
1214 	struct HT_info_element *pht_info = NULL;
1215 	struct ieee80211_ht_cap *pht_cap = NULL;
1216 	u32 bcn_channel;
1217 	unsigned short	ht_cap_info;
1218 	unsigned char ht_info_infos_0;
1219 	struct mlme_priv *pmlmepriv = &Adapter->mlmepriv;
1220 	int ssid_len;
1221 
1222 	if (is_client_associated_to_ap(Adapter) == false)
1223 		return true;
1224 
1225 	len = packet_len - sizeof(struct ieee80211_hdr_3addr);
1226 
1227 	if (len > MAX_IE_SZ)
1228 		return _FAIL;
1229 
1230 	if (memcmp(cur_network->network.MacAddress, pbssid, 6))
1231 		return true;
1232 
1233 	bssid = rtw_zmalloc(sizeof(struct wlan_bssid_ex));
1234 	if (!bssid)
1235 		return true;
1236 
1237 	if ((pmlmepriv->timeBcnInfoChkStart != 0) && (jiffies_to_msecs(jiffies - pmlmepriv->timeBcnInfoChkStart) > DISCONNECT_BY_CHK_BCN_FAIL_OBSERV_PERIOD_IN_MS)) {
1238 		pmlmepriv->timeBcnInfoChkStart = 0;
1239 		pmlmepriv->NumOfBcnInfoChkFail = 0;
1240 	}
1241 
1242 	subtype = GetFrameSubType(pframe) >> 4;
1243 
1244 	if (subtype == WIFI_BEACON)
1245 		bssid->Reserved[0] = 1;
1246 
1247 	bssid->Length = sizeof(struct wlan_bssid_ex) - MAX_IE_SZ + len;
1248 
1249 	/* below is to copy the information element */
1250 	bssid->IELength = len;
1251 	memcpy(bssid->IEs, (pframe + sizeof(struct ieee80211_hdr_3addr)), bssid->IELength);
1252 
1253 	/* check bw and channel offset */
1254 	/* parsing HT_CAP_IE */
1255 	p = rtw_get_ie(bssid->IEs + _FIXED_IE_LENGTH_, WLAN_EID_HT_CAPABILITY, &len, bssid->IELength - _FIXED_IE_LENGTH_);
1256 	if (p && len > 0) {
1257 			pht_cap = (struct ieee80211_ht_cap *)(p + 2);
1258 			ht_cap_info = le16_to_cpu(pht_cap->cap_info);
1259 	} else {
1260 			ht_cap_info = 0;
1261 	}
1262 	/* parsing HT_INFO_IE */
1263 	p = rtw_get_ie(bssid->IEs + _FIXED_IE_LENGTH_, WLAN_EID_HT_OPERATION, &len, bssid->IELength - _FIXED_IE_LENGTH_);
1264 	if (p && len > 0) {
1265 			pht_info = (struct HT_info_element *)(p + 2);
1266 			ht_info_infos_0 = pht_info->infos[0];
1267 	} else {
1268 			ht_info_infos_0 = 0;
1269 	}
1270 	if (ht_cap_info != cur_network->BcnInfo.ht_cap_info ||
1271 		((ht_info_infos_0&0x03) != (cur_network->BcnInfo.ht_info_infos_0&0x03))) {
1272 			{
1273 				/* bcn_info_update */
1274 				cur_network->BcnInfo.ht_cap_info = ht_cap_info;
1275 				cur_network->BcnInfo.ht_info_infos_0 = ht_info_infos_0;
1276 				/* to do : need to check that whether modify related register of BB or not */
1277 			}
1278 			/* goto _mismatch; */
1279 	}
1280 
1281 	/* Checking for channel */
1282 	p = rtw_get_ie(bssid->IEs + _FIXED_IE_LENGTH_, WLAN_EID_DS_PARAMS, &len, bssid->IELength - _FIXED_IE_LENGTH_);
1283 	if (p) {
1284 			bcn_channel = *(p + 2);
1285 	} else {/* In 5G, some ap do not have DSSET IE checking HT info for channel */
1286 		rtw_get_ie(bssid->IEs + _FIXED_IE_LENGTH_, WLAN_EID_HT_OPERATION,
1287 			   &len, bssid->IELength - _FIXED_IE_LENGTH_);
1288 		if (pht_info)
1289 			bcn_channel = pht_info->primary_channel;
1290 		else /* we don't find channel IE, so don't check it */
1291 			bcn_channel = Adapter->mlmeextpriv.cur_channel;
1292 	}
1293 
1294 	if (bcn_channel != Adapter->mlmeextpriv.cur_channel)
1295 			goto _mismatch;
1296 
1297 	/* checking SSID */
1298 	ssid_len = 0;
1299 	p = rtw_get_ie(bssid->IEs + _FIXED_IE_LENGTH_, WLAN_EID_SSID, &len, bssid->IELength - _FIXED_IE_LENGTH_);
1300 	if (p) {
1301 		ssid_len = *(p + 1);
1302 		if (ssid_len > NDIS_802_11_LENGTH_SSID)
1303 			ssid_len = 0;
1304 	}
1305 	memcpy(bssid->Ssid.Ssid, (p + 2), ssid_len);
1306 	bssid->Ssid.SsidLength = ssid_len;
1307 
1308 	if (memcmp(bssid->Ssid.Ssid, cur_network->network.Ssid.Ssid, 32) ||
1309 			bssid->Ssid.SsidLength != cur_network->network.Ssid.SsidLength)
1310 		if (bssid->Ssid.Ssid[0] != '\0' &&
1311 		    bssid->Ssid.SsidLength != 0) /* not hidden ssid */
1312 			goto _mismatch;
1313 
1314 	/* check encryption info */
1315 	val16 = rtw_get_capability((struct wlan_bssid_ex *)bssid);
1316 
1317 	if (val16 & BIT(4))
1318 		bssid->Privacy = 1;
1319 	else
1320 		bssid->Privacy = 0;
1321 
1322 	if (cur_network->network.Privacy != bssid->Privacy)
1323 		goto _mismatch;
1324 
1325 	rtw_get_sec_ie(bssid->IEs, bssid->IELength, NULL, &rsn_len, NULL, &wpa_len);
1326 
1327 	if (rsn_len > 0)
1328 		encryp_protocol = ENCRYP_PROTOCOL_WPA2;
1329 	else if (wpa_len > 0)
1330 		encryp_protocol = ENCRYP_PROTOCOL_WPA;
1331 	else
1332 		if (bssid->Privacy)
1333 			encryp_protocol = ENCRYP_PROTOCOL_WEP;
1334 
1335 	if (cur_network->BcnInfo.encryp_protocol != encryp_protocol)
1336 		goto _mismatch;
1337 
1338 	if (encryp_protocol == ENCRYP_PROTOCOL_WPA || encryp_protocol == ENCRYP_PROTOCOL_WPA2) {
1339 		pbuf = rtw_get_wpa_ie(&bssid->IEs[12], &wpa_ielen, bssid->IELength-12);
1340 		if (pbuf && (wpa_ielen > 0)) {
1341 			rtw_parse_wpa_ie(pbuf, wpa_ielen + 2, &group_cipher,
1342 					 &pairwise_cipher, &is_8021x);
1343 		} else {
1344 			pbuf = rtw_get_wpa2_ie(&bssid->IEs[12], &wpa_ielen, bssid->IELength-12);
1345 
1346 			if (pbuf && (wpa_ielen > 0))
1347 				rtw_parse_wpa2_ie(pbuf, wpa_ielen + 2, &group_cipher,
1348 						  &pairwise_cipher, &is_8021x);
1349 		}
1350 
1351 		if (pairwise_cipher != cur_network->BcnInfo.pairwise_cipher ||
1352 		    group_cipher != cur_network->BcnInfo.group_cipher)
1353 			goto _mismatch;
1354 
1355 		if (is_8021x != cur_network->BcnInfo.is_8021x)
1356 			goto _mismatch;
1357 	}
1358 
1359 	kfree(bssid);
1360 	return _SUCCESS;
1361 
1362 _mismatch:
1363 	kfree(bssid);
1364 
1365 	if (pmlmepriv->NumOfBcnInfoChkFail == 0)
1366 		pmlmepriv->timeBcnInfoChkStart = jiffies;
1367 
1368 	pmlmepriv->NumOfBcnInfoChkFail++;
1369 
1370 	if ((pmlmepriv->timeBcnInfoChkStart != 0) && (jiffies_to_msecs(jiffies - pmlmepriv->timeBcnInfoChkStart) <= DISCONNECT_BY_CHK_BCN_FAIL_OBSERV_PERIOD_IN_MS)
1371 		&& (pmlmepriv->NumOfBcnInfoChkFail >= DISCONNECT_BY_CHK_BCN_FAIL_THRESHOLD)) {
1372 		pmlmepriv->timeBcnInfoChkStart = 0;
1373 		pmlmepriv->NumOfBcnInfoChkFail = 0;
1374 		return _FAIL;
1375 	}
1376 
1377 	return _SUCCESS;
1378 }
1379 
1380 void update_beacon_info(struct adapter *padapter, u8 *pframe, uint pkt_len, struct sta_info *psta)
1381 {
1382 	unsigned int i;
1383 	unsigned int len;
1384 	struct ndis_80211_var_ie *pIE;
1385 
1386 	len = pkt_len - (_BEACON_IE_OFFSET_ + WLAN_HDR_A3_LEN);
1387 
1388 	for (i = 0; i < len;) {
1389 		pIE = (struct ndis_80211_var_ie *)(pframe + (_BEACON_IE_OFFSET_ + WLAN_HDR_A3_LEN) + i);
1390 
1391 		switch (pIE->ElementID) {
1392 		case WLAN_EID_VENDOR_SPECIFIC:
1393 			/* to update WMM parameter set while receiving beacon */
1394 			if (!memcmp(pIE->data, WMM_PARA_OUI, 6) && pIE->Length == WLAN_WMM_LEN)	/* WMM */
1395 				if (WMM_param_handler(padapter, pIE))
1396 					report_wmm_edca_update(padapter);
1397 
1398 			break;
1399 
1400 		case WLAN_EID_HT_OPERATION:	/* HT info */
1401 			/* HT_info_handler(padapter, pIE); */
1402 			bwmode_update_check(padapter, pIE);
1403 			break;
1404 
1405 		case WLAN_EID_ERP_INFO:
1406 			ERP_IE_handler(padapter, pIE);
1407 			VCS_update(padapter, psta);
1408 			break;
1409 
1410 		default:
1411 			break;
1412 		}
1413 
1414 		i += (pIE->Length + 2);
1415 	}
1416 }
1417 
1418 unsigned int is_ap_in_tkip(struct adapter *padapter)
1419 {
1420 	u32 i;
1421 	struct ndis_80211_var_ie *pIE;
1422 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1423 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1424 	struct wlan_bssid_ex		*cur_network = &(pmlmeinfo->network);
1425 
1426 	if (rtw_get_capability((struct wlan_bssid_ex *)cur_network) & WLAN_CAPABILITY_PRIVACY) {
1427 		for (i = sizeof(struct ndis_802_11_fix_ie); i < pmlmeinfo->network.IELength;) {
1428 			pIE = (struct ndis_80211_var_ie *)(pmlmeinfo->network.IEs + i);
1429 
1430 			switch (pIE->ElementID) {
1431 			case WLAN_EID_VENDOR_SPECIFIC:
1432 				if ((!memcmp(pIE->data, RTW_WPA_OUI, 4)) && (!memcmp((pIE->data + 12), WPA_TKIP_CIPHER, 4)))
1433 					return true;
1434 
1435 				break;
1436 
1437 			case WLAN_EID_RSN:
1438 				if (!memcmp((pIE->data + 8), RSN_TKIP_CIPHER, 4))
1439 					return true;
1440 				break;
1441 
1442 			default:
1443 				break;
1444 			}
1445 
1446 			i += (pIE->Length + 2);
1447 		}
1448 
1449 		return false;
1450 	} else {
1451 		return false;
1452 	}
1453 }
1454 
1455 int support_short_GI(struct adapter *padapter, struct HT_caps_element *pHT_caps, u8 bwmode)
1456 {
1457 	unsigned char bit_offset;
1458 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1459 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1460 
1461 	if (!(pmlmeinfo->HT_enable))
1462 		return _FAIL;
1463 
1464 	bit_offset = (bwmode & CHANNEL_WIDTH_40) ? 6 : 5;
1465 
1466 	if (le16_to_cpu(pHT_caps->u.HT_cap_element.HT_caps_info) & (0x1 << bit_offset))
1467 		return _SUCCESS;
1468 	else
1469 		return _FAIL;
1470 }
1471 
1472 unsigned char get_highest_rate_idx(u32 mask)
1473 {
1474 	int i;
1475 	unsigned char rate_idx = 0;
1476 
1477 	for (i = 31; i >= 0; i--) {
1478 		if (mask & BIT(i)) {
1479 			rate_idx = i;
1480 			break;
1481 		}
1482 	}
1483 
1484 	return rate_idx;
1485 }
1486 
1487 void Update_RA_Entry(struct adapter *padapter, struct sta_info *psta)
1488 {
1489 	rtw_hal_update_ra_mask(psta, 0);
1490 }
1491 
1492 void set_sta_rate(struct adapter *padapter, struct sta_info *psta)
1493 {
1494 	/* rate adaptive */
1495 	Update_RA_Entry(padapter, psta);
1496 }
1497 
1498 static u32 get_realtek_assoc_AP_vender(struct ndis_80211_var_ie *pIE)
1499 {
1500 	u32 Vender = HT_IOT_PEER_REALTEK;
1501 
1502 	if (pIE->Length >= 5) {
1503 		if (pIE->data[4] == 1)
1504 			/* if (pIE->data[5] & RT_HT_CAP_USE_LONG_PREAMBLE) */
1505 			/* bssDesc->BssHT.RT2RT_HT_Mode |= RT_HT_CAP_USE_LONG_PREAMBLE; */
1506 			if (pIE->data[5] & RT_HT_CAP_USE_92SE)
1507 				/* bssDesc->BssHT.RT2RT_HT_Mode |= RT_HT_CAP_USE_92SE; */
1508 				Vender = HT_IOT_PEER_REALTEK_92SE;
1509 
1510 		if (pIE->data[5] & RT_HT_CAP_USE_SOFTAP)
1511 			Vender = HT_IOT_PEER_REALTEK_SOFTAP;
1512 
1513 		if (pIE->data[4] == 2) {
1514 			if (pIE->data[6] & RT_HT_CAP_USE_JAGUAR_BCUT)
1515 				Vender = HT_IOT_PEER_REALTEK_JAGUAR_BCUTAP;
1516 
1517 			if (pIE->data[6] & RT_HT_CAP_USE_JAGUAR_CCUT)
1518 				Vender = HT_IOT_PEER_REALTEK_JAGUAR_CCUTAP;
1519 		}
1520 	}
1521 
1522 	return Vender;
1523 }
1524 
1525 unsigned char check_assoc_AP(u8 *pframe, uint len)
1526 {
1527 	unsigned int	i;
1528 	struct ndis_80211_var_ie *pIE;
1529 
1530 	for (i = sizeof(struct ndis_802_11_fix_ie); i < len;) {
1531 		pIE = (struct ndis_80211_var_ie *)(pframe + i);
1532 
1533 		switch (pIE->ElementID) {
1534 		case WLAN_EID_VENDOR_SPECIFIC:
1535 			if ((!memcmp(pIE->data, ARTHEROS_OUI1, 3)) || (!memcmp(pIE->data, ARTHEROS_OUI2, 3)))
1536 				return HT_IOT_PEER_ATHEROS;
1537 			else if ((!memcmp(pIE->data, BROADCOM_OUI1, 3)) ||
1538 			         (!memcmp(pIE->data, BROADCOM_OUI2, 3)) ||
1539 			         (!memcmp(pIE->data, BROADCOM_OUI3, 3)))
1540 			      return HT_IOT_PEER_BROADCOM;
1541 			else if (!memcmp(pIE->data, MARVELL_OUI, 3))
1542 			      return HT_IOT_PEER_MARVELL;
1543 			else if (!memcmp(pIE->data, RALINK_OUI, 3))
1544 			      return HT_IOT_PEER_RALINK;
1545 			else if (!memcmp(pIE->data, CISCO_OUI, 3))
1546 			      return HT_IOT_PEER_CISCO;
1547 			else if (!memcmp(pIE->data, REALTEK_OUI, 3))
1548 			      return get_realtek_assoc_AP_vender(pIE);
1549 			else if (!memcmp(pIE->data, AIRGOCAP_OUI, 3))
1550 			      return HT_IOT_PEER_AIRGO;
1551 			else
1552 			      break;
1553 
1554 		default:
1555 			break;
1556 		}
1557 
1558 		i += (pIE->Length + 2);
1559 	}
1560 
1561 	return HT_IOT_PEER_UNKNOWN;
1562 }
1563 
1564 void update_IOT_info(struct adapter *padapter)
1565 {
1566 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1567 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1568 
1569 	switch (pmlmeinfo->assoc_AP_vendor) {
1570 	case HT_IOT_PEER_MARVELL:
1571 		pmlmeinfo->turboMode_cts2self = 1;
1572 		pmlmeinfo->turboMode_rtsen = 0;
1573 		break;
1574 
1575 	case HT_IOT_PEER_RALINK:
1576 		pmlmeinfo->turboMode_cts2self = 0;
1577 		pmlmeinfo->turboMode_rtsen = 1;
1578 		/* disable high power */
1579 		Switch_DM_Func(padapter, (~DYNAMIC_BB_DYNAMIC_TXPWR), false);
1580 		break;
1581 	case HT_IOT_PEER_REALTEK:
1582 		/* rtw_write16(padapter, 0x4cc, 0xffff); */
1583 		/* rtw_write16(padapter, 0x546, 0x01c0); */
1584 		/* disable high power */
1585 		Switch_DM_Func(padapter, (~DYNAMIC_BB_DYNAMIC_TXPWR), false);
1586 		break;
1587 	default:
1588 		pmlmeinfo->turboMode_cts2self = 0;
1589 		pmlmeinfo->turboMode_rtsen = 1;
1590 		break;
1591 	}
1592 }
1593 
1594 void update_capinfo(struct adapter *Adapter, u16 updateCap)
1595 {
1596 	struct mlme_ext_priv *pmlmeext = &Adapter->mlmeextpriv;
1597 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1598 	bool		ShortPreamble;
1599 
1600 	/*  Check preamble mode, 2005.01.06, by rcnjko. */
1601 	/*  Mark to update preamble value forever, 2008.03.18 by lanhsin */
1602 	/* if (pMgntInfo->RegPreambleMode == PREAMBLE_AUTO) */
1603 	{
1604 		if (updateCap & cShortPreamble) {
1605 			/*  Short Preamble */
1606 			if (pmlmeinfo->preamble_mode != PREAMBLE_SHORT) { /*  PREAMBLE_LONG or PREAMBLE_AUTO */
1607 				ShortPreamble = true;
1608 				pmlmeinfo->preamble_mode = PREAMBLE_SHORT;
1609 				rtw_hal_set_hwreg(Adapter, HW_VAR_ACK_PREAMBLE, (u8 *)&ShortPreamble);
1610 			}
1611 		} else {
1612 			/*  Long Preamble */
1613 			if (pmlmeinfo->preamble_mode != PREAMBLE_LONG) { /*  PREAMBLE_SHORT or PREAMBLE_AUTO */
1614 				ShortPreamble = false;
1615 				pmlmeinfo->preamble_mode = PREAMBLE_LONG;
1616 				rtw_hal_set_hwreg(Adapter, HW_VAR_ACK_PREAMBLE, (u8 *)&ShortPreamble);
1617 			}
1618 		}
1619 	}
1620 
1621 	if (updateCap & cIBSS) {
1622 		/* Filen: See 802.11-2007 p.91 */
1623 		pmlmeinfo->slotTime = NON_SHORT_SLOT_TIME;
1624 	} else {
1625 		/* Filen: See 802.11-2007 p.90 */
1626 		if (pmlmeext->cur_wireless_mode & (WIRELESS_11_24N | WIRELESS_11A | WIRELESS_11_5N | WIRELESS_11AC)) {
1627 			pmlmeinfo->slotTime = SHORT_SLOT_TIME;
1628 		} else if (pmlmeext->cur_wireless_mode & (WIRELESS_11G)) {
1629 			if ((updateCap & cShortSlotTime) /* && (!(pMgntInfo->pHTInfo->RT2RT_HT_Mode & RT_HT_CAP_USE_LONG_PREAMBLE)) */)
1630 				/*  Short Slot Time */
1631 				pmlmeinfo->slotTime = SHORT_SLOT_TIME;
1632 			else
1633 				/*  Long Slot Time */
1634 				pmlmeinfo->slotTime = NON_SHORT_SLOT_TIME;
1635 		} else {
1636 			/* B Mode */
1637 			pmlmeinfo->slotTime = NON_SHORT_SLOT_TIME;
1638 		}
1639 	}
1640 
1641 	rtw_hal_set_hwreg(Adapter, HW_VAR_SLOT_TIME, &pmlmeinfo->slotTime);
1642 }
1643 
1644 void update_wireless_mode(struct adapter *padapter)
1645 {
1646 	int network_type = 0;
1647 	u32 SIFS_Timer;
1648 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1649 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1650 	struct wlan_bssid_ex *cur_network = &(pmlmeinfo->network);
1651 	unsigned char *rate = cur_network->SupportedRates;
1652 
1653 	if ((pmlmeinfo->HT_info_enable) && (pmlmeinfo->HT_caps_enable))
1654 		pmlmeinfo->HT_enable = 1;
1655 
1656 	if (pmlmeinfo->VHT_enable)
1657 		network_type = WIRELESS_11AC;
1658 	else if (pmlmeinfo->HT_enable)
1659 		network_type = WIRELESS_11_24N;
1660 
1661 	if (rtw_is_cckratesonly_included(rate))
1662 		network_type |= WIRELESS_11B;
1663 	else if (rtw_is_cckrates_included(rate))
1664 		network_type |= WIRELESS_11BG;
1665 	else
1666 		network_type |= WIRELESS_11G;
1667 
1668 	pmlmeext->cur_wireless_mode = network_type & padapter->registrypriv.wireless_mode;
1669 
1670 	SIFS_Timer = 0x0a0a0808; /* 0x0808 -> for CCK, 0x0a0a -> for OFDM */
1671 													/* change this value if having IOT issues. */
1672 
1673 	padapter->HalFunc.SetHwRegHandler(padapter, HW_VAR_RESP_SIFS,  (u8 *)&SIFS_Timer);
1674 
1675 	padapter->HalFunc.SetHwRegHandler(padapter, HW_VAR_WIRELESS_MODE,  (u8 *)&(pmlmeext->cur_wireless_mode));
1676 
1677 	if (pmlmeext->cur_wireless_mode & WIRELESS_11B)
1678 		update_mgnt_tx_rate(padapter, IEEE80211_CCK_RATE_1MB);
1679 	else
1680 		update_mgnt_tx_rate(padapter, IEEE80211_OFDM_RATE_6MB);
1681 }
1682 
1683 void update_sta_basic_rate(struct sta_info *psta, u8 wireless_mode)
1684 {
1685 	if (IsSupportedTxCCK(wireless_mode)) {
1686 		/*  Only B, B/G, and B/G/N AP could use CCK rate */
1687 		memcpy(psta->bssrateset, rtw_basic_rate_cck, 4);
1688 		psta->bssratelen = 4;
1689 	} else {
1690 		memcpy(psta->bssrateset, rtw_basic_rate_ofdm, 3);
1691 		psta->bssratelen = 3;
1692 	}
1693 }
1694 
1695 int update_sta_support_rate(struct adapter *padapter, u8 *pvar_ie, uint var_ie_len, int cam_idx)
1696 {
1697 	unsigned int	ie_len;
1698 	struct ndis_80211_var_ie *pIE;
1699 	int	supportRateNum = 0;
1700 	struct mlme_ext_priv *pmlmeext = &(padapter->mlmeextpriv);
1701 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1702 
1703 	pIE = (struct ndis_80211_var_ie *)rtw_get_ie(pvar_ie, WLAN_EID_SUPP_RATES, &ie_len, var_ie_len);
1704 	if (!pIE)
1705 		return _FAIL;
1706 	if (ie_len > sizeof(pmlmeinfo->FW_sta_info[cam_idx].SupportedRates))
1707 		return _FAIL;
1708 
1709 	memcpy(pmlmeinfo->FW_sta_info[cam_idx].SupportedRates, pIE->data, ie_len);
1710 	supportRateNum = ie_len;
1711 
1712 	pIE = (struct ndis_80211_var_ie *)rtw_get_ie(pvar_ie, WLAN_EID_EXT_SUPP_RATES, &ie_len, var_ie_len);
1713 	if (pIE && (ie_len <= sizeof(pmlmeinfo->FW_sta_info[cam_idx].SupportedRates) - supportRateNum))
1714 		memcpy((pmlmeinfo->FW_sta_info[cam_idx].SupportedRates + supportRateNum), pIE->data, ie_len);
1715 
1716 	return _SUCCESS;
1717 }
1718 
1719 void process_addba_req(struct adapter *padapter, u8 *paddba_req, u8 *addr)
1720 {
1721 	struct sta_info *psta;
1722 	u16 tid, param;
1723 	struct recv_reorder_ctrl *preorder_ctrl;
1724 	struct sta_priv *pstapriv = &padapter->stapriv;
1725 	struct ADDBA_request *preq = (struct ADDBA_request *)paddba_req;
1726 	struct mlme_ext_priv *pmlmeext = &padapter->mlmeextpriv;
1727 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1728 
1729 	psta = rtw_get_stainfo(pstapriv, addr);
1730 
1731 	if (psta) {
1732 		param = le16_to_cpu(preq->BA_para_set);
1733 		tid = (param>>2)&0x0f;
1734 
1735 		preorder_ctrl = &psta->recvreorder_ctrl[tid];
1736 
1737 		preorder_ctrl->indicate_seq = 0xffff;
1738 
1739 		preorder_ctrl->enable = pmlmeinfo->accept_addba_req;
1740 	}
1741 }
1742 
1743 void update_TSF(struct mlme_ext_priv *pmlmeext, u8 *pframe, uint len)
1744 {
1745 	u8 *pIE;
1746 	__le32 *pbuf;
1747 
1748 	pIE = pframe + sizeof(struct ieee80211_hdr_3addr);
1749 	pbuf = (__le32 *)pIE;
1750 
1751 	pmlmeext->TSFValue = le32_to_cpu(*(pbuf+1));
1752 
1753 	pmlmeext->TSFValue = pmlmeext->TSFValue << 32;
1754 
1755 	pmlmeext->TSFValue |= le32_to_cpu(*pbuf);
1756 }
1757 
1758 void correct_TSF(struct adapter *padapter, struct mlme_ext_priv *pmlmeext)
1759 {
1760 	rtw_hal_set_hwreg(padapter, HW_VAR_CORRECT_TSF, NULL);
1761 }
1762 
1763 void adaptive_early_32k(struct mlme_ext_priv *pmlmeext, u8 *pframe, uint len)
1764 {
1765 	int i;
1766 	u8 *pIE;
1767 	__le32 *pbuf;
1768 	u64 tsf = 0;
1769 	u32 delay_ms;
1770 	struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1771 
1772 	pmlmeext->bcn_cnt++;
1773 
1774 	pIE = pframe + sizeof(struct ieee80211_hdr_3addr);
1775 	pbuf = (__le32 *)pIE;
1776 
1777 	tsf = le32_to_cpu(*(pbuf+1));
1778 	tsf = tsf << 32;
1779 	tsf |= le32_to_cpu(*pbuf);
1780 
1781 	/* delay = (timestamp mod 1024*100)/1000 (unit: ms) */
1782 	/* delay_ms = do_div(tsf, (pmlmeinfo->bcn_interval*1024))/1000; */
1783 	delay_ms = do_div(tsf, (pmlmeinfo->bcn_interval*1024));
1784 	delay_ms = delay_ms/1000;
1785 
1786 	if (delay_ms >= 8)
1787 		pmlmeext->bcn_delay_cnt[8]++;
1788 		/* pmlmeext->bcn_delay_ratio[8] = (pmlmeext->bcn_delay_cnt[8] * 100) /pmlmeext->bcn_cnt; */
1789 	else
1790 		pmlmeext->bcn_delay_cnt[delay_ms]++;
1791 		/* pmlmeext->bcn_delay_ratio[delay_ms] = (pmlmeext->bcn_delay_cnt[delay_ms] * 100) /pmlmeext->bcn_cnt; */
1792 
1793 /*
1794 
1795 	for (i = 0; i<9; i++)
1796 	{
1797 			pmlmeext->bcn_delay_cnt[i] , i, pmlmeext->bcn_delay_ratio[i]);
1798 	}
1799 */
1800 
1801 	/* dump for  adaptive_early_32k */
1802 	if (pmlmeext->bcn_cnt > 100 && (pmlmeext->adaptive_tsf_done == true)) {
1803 		u8 ratio_20_delay, ratio_80_delay;
1804 		u8 DrvBcnEarly, DrvBcnTimeOut;
1805 
1806 		ratio_20_delay = 0;
1807 		ratio_80_delay = 0;
1808 		DrvBcnEarly = 0xff;
1809 		DrvBcnTimeOut = 0xff;
1810 
1811 		for (i = 0; i < 9; i++) {
1812 			pmlmeext->bcn_delay_ratio[i] = (pmlmeext->bcn_delay_cnt[i] * 100) / pmlmeext->bcn_cnt;
1813 
1814 			ratio_20_delay += pmlmeext->bcn_delay_ratio[i];
1815 			ratio_80_delay += pmlmeext->bcn_delay_ratio[i];
1816 
1817 			if (ratio_20_delay > 20 && DrvBcnEarly == 0xff)
1818 				DrvBcnEarly = i;
1819 
1820 			if (ratio_80_delay > 80 && DrvBcnTimeOut == 0xff)
1821 				DrvBcnTimeOut = i;
1822 
1823 			/* reset adaptive_early_32k cnt */
1824 			pmlmeext->bcn_delay_cnt[i] = 0;
1825 			pmlmeext->bcn_delay_ratio[i] = 0;
1826 		}
1827 
1828 		pmlmeext->DrvBcnEarly = DrvBcnEarly;
1829 		pmlmeext->DrvBcnTimeOut = DrvBcnTimeOut;
1830 
1831 		pmlmeext->bcn_cnt = 0;
1832 	}
1833 }
1834 
1835 void rtw_alloc_macid(struct adapter *padapter, struct sta_info *psta)
1836 {
1837 	int i;
1838 	u8 bc_addr[ETH_ALEN] = {0xff, 0xff, 0xff, 0xff, 0xff, 0xff};
1839 	struct dvobj_priv *pdvobj = adapter_to_dvobj(padapter);
1840 
1841 	if (!memcmp(psta->hwaddr, bc_addr, ETH_ALEN))
1842 		return;
1843 
1844 	if (!memcmp(psta->hwaddr, myid(&padapter->eeprompriv), ETH_ALEN)) {
1845 		psta->mac_id = NUM_STA;
1846 		return;
1847 	}
1848 
1849 	spin_lock_bh(&pdvobj->lock);
1850 	for (i = 0; i < NUM_STA; i++) {
1851 		if (pdvobj->macid[i] == false) {
1852 			pdvobj->macid[i]  = true;
1853 			break;
1854 		}
1855 	}
1856 	spin_unlock_bh(&pdvobj->lock);
1857 
1858 	if (i > (NUM_STA - 1))
1859 		psta->mac_id = NUM_STA;
1860 	else
1861 		psta->mac_id = i;
1862 }
1863 
1864 void rtw_release_macid(struct adapter *padapter, struct sta_info *psta)
1865 {
1866 	u8 bc_addr[ETH_ALEN] = {0xff, 0xff, 0xff, 0xff, 0xff, 0xff};
1867 	struct dvobj_priv *pdvobj = adapter_to_dvobj(padapter);
1868 
1869 	if (!memcmp(psta->hwaddr, bc_addr, ETH_ALEN))
1870 		return;
1871 
1872 	if (!memcmp(psta->hwaddr, myid(&padapter->eeprompriv), ETH_ALEN))
1873 		return;
1874 
1875 	spin_lock_bh(&pdvobj->lock);
1876 	if (psta->mac_id < NUM_STA && psta->mac_id != 1) {
1877 		if (pdvobj->macid[psta->mac_id] == true) {
1878 			pdvobj->macid[psta->mac_id] = false;
1879 			psta->mac_id = NUM_STA;
1880 		}
1881 	}
1882 	spin_unlock_bh(&pdvobj->lock);
1883 }
1884 
1885 /* For 8188E RA */
1886 u8 rtw_search_max_mac_id(struct adapter *padapter)
1887 {
1888 	u8 max_mac_id = 0;
1889 	struct dvobj_priv *pdvobj = adapter_to_dvobj(padapter);
1890 	int i;
1891 
1892 	spin_lock_bh(&pdvobj->lock);
1893 	for (i = (NUM_STA-1); i >= 0 ; i--) {
1894 		if (pdvobj->macid[i] == true)
1895 			break;
1896 	}
1897 	max_mac_id = i;
1898 	spin_unlock_bh(&pdvobj->lock);
1899 
1900 	return max_mac_id;
1901 }
1902 
1903 struct adapter *dvobj_get_port0_adapter(struct dvobj_priv *dvobj)
1904 {
1905 	if (get_iface_type(dvobj->padapters[i]) != IFACE_PORT0)
1906 		return NULL;
1907 
1908 	return dvobj->padapters;
1909 }
1910