18d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt/*
28d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * hostapd / Station table
31f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt * Copyright (c) 2002-2011, Jouni Malinen <j@w1.fi>
48d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt *
5c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt * This software may be distributed under the terms of the BSD license.
6c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt * See README for more details.
78d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt */
88d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
98d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "utils/includes.h"
108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "utils/common.h"
128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "utils/eloop.h"
138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "common/ieee802_11_defs.h"
141f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt#include "common/wpa_ctrl.h"
158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "radius/radius.h"
168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "radius/radius_client.h"
178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "drivers/driver.h"
188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "p2p/p2p.h"
198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "hostapd.h"
208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "accounting.h"
218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "ieee802_1x.h"
228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "ieee802_11.h"
238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "wpa_auth.h"
248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "preauth_auth.h"
258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "ap_config.h"
268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "beacon.h"
278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "ap_mlme.h"
288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "vlan_init.h"
298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "p2p_hostapd.h"
308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "ap_drv_ops.h"
3104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#include "gas_serv.h"
328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#include "sta_info.h"
338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sta_remove_in_other_bss(struct hostapd_data *hapd,
358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       struct sta_info *sta);
368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_handle_session_timer(void *eloop_ctx, void *timeout_ctx);
371f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtstatic void ap_sta_deauth_cb_timeout(void *eloop_ctx, void *timeout_ctx);
381f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtstatic void ap_sta_disassoc_cb_timeout(void *eloop_ctx, void *timeout_ctx);
398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifdef CONFIG_IEEE80211W
408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sa_query_timer(void *eloop_ctx, void *timeout_ctx);
418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_IEEE80211W */
421f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtstatic int ap_sta_remove(struct hostapd_data *hapd, struct sta_info *sta);
438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint ap_for_each_sta(struct hostapd_data *hapd,
458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		    int (*cb)(struct hostapd_data *hapd, struct sta_info *sta,
468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			      void *ctx),
478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		    void *ctx)
488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta;
508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	for (sta = hapd->sta_list; sta; sta = sta->next) {
528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (cb(hapd, sta, ctx))
538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			return 1;
548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return 0;
578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct sta_info * ap_get_sta(struct hostapd_data *hapd, const u8 *sta)
618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *s;
638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	s = hapd->sta_hash[STA_HASH(sta)];
658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	while (s != NULL && os_memcmp(s->addr, sta, 6) != 0)
668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		s = s->hnext;
678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return s;
688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sta_list_del(struct hostapd_data *hapd, struct sta_info *sta)
728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *tmp;
748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hapd->sta_list == sta) {
768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->sta_list = sta->next;
778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	tmp = hapd->sta_list;
818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	while (tmp != NULL && tmp->next != sta)
828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		tmp = tmp->next;
838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (tmp == NULL) {
848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_DEBUG, "Could not remove STA " MACSTR " from "
858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   "list.", MAC2STR(sta->addr));
868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	} else
878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		tmp->next = sta->next;
888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_hash_add(struct hostapd_data *hapd, struct sta_info *sta)
928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->hnext = hapd->sta_hash[STA_HASH(sta->addr)];
948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hapd->sta_hash[STA_HASH(sta->addr)] = sta;
958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
968d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
978d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
988d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sta_hash_del(struct hostapd_data *hapd, struct sta_info *sta)
998d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
1008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *s;
1018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1028d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	s = hapd->sta_hash[STA_HASH(sta->addr)];
1038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (s == NULL) return;
1048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (os_memcmp(s->addr, sta->addr, 6) == 0) {
1058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->sta_hash[STA_HASH(sta->addr)] = s->hnext;
1068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
1078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	while (s->hnext != NULL &&
1108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	       os_memcmp(s->hnext->addr, sta->addr, ETH_ALEN) != 0)
1118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		s = s->hnext;
1128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (s->hnext != NULL)
1138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		s->hnext = s->hnext->hnext;
1148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	else
1158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_DEBUG, "AP: could not remove STA " MACSTR
1168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   " from hash table", MAC2STR(sta->addr));
1178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
1188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_free_sta(struct hostapd_data *hapd, struct sta_info *sta)
1218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
1228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int set_beacon = 0;
1238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	accounting_sta_stop(hapd, sta);
1258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	/* just in case */
1278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_set_authorized(hapd, sta, 0);
1288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->flags & WLAN_STA_WDS)
1308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_set_wds_sta(hapd, sta->addr, sta->aid, 0);
1318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (!(sta->flags & WLAN_STA_PREAUTH))
1338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_drv_sta_remove(hapd, sta->addr);
1348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_hash_del(hapd, sta);
1368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_list_del(hapd, sta);
1378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->aid > 0)
1398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->sta_aid[(sta->aid - 1) / 32] &=
1408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			~BIT((sta->aid - 1) % 32);
1418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hapd->num_sta--;
1438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->nonerp_set) {
1448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->nonerp_set = 0;
1458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_non_erp--;
1468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (hapd->iface->num_sta_non_erp == 0)
1478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			set_beacon++;
1488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->no_short_slot_time_set) {
1518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->no_short_slot_time_set = 0;
1528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_no_short_slot_time--;
1538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (hapd->iface->current_mode->mode == HOSTAPD_MODE_IEEE80211G
1548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		    && hapd->iface->num_sta_no_short_slot_time == 0)
1558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			set_beacon++;
1568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->no_short_preamble_set) {
1598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->no_short_preamble_set = 0;
1608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_no_short_preamble--;
1618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (hapd->iface->current_mode->mode == HOSTAPD_MODE_IEEE80211G
1628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		    && hapd->iface->num_sta_no_short_preamble == 0)
1638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			set_beacon++;
1648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->no_ht_gf_set) {
1678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->no_ht_gf_set = 0;
1688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_ht_no_gf--;
1698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->no_ht_set) {
1728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->no_ht_set = 0;
1738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_no_ht--;
1748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->ht_20mhz_set) {
1778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->ht_20mhz_set = 0;
1788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->iface->num_sta_ht_20mhz--;
1798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifdef CONFIG_P2P
1828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->no_p2p_set) {
1838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->no_p2p_set = 0;
1848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->num_sta_no_p2p--;
1858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (hapd->num_sta_no_p2p == 0)
1868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_p2p_non_p2p_sta_disconnected(hapd);
1878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
1888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_P2P */
1898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#if defined(NEED_AP_MLME) && defined(CONFIG_IEEE80211N)
1918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hostapd_ht_operation_update(hapd->iface) > 0)
1928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		set_beacon++;
1938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* NEED_AP_MLME && CONFIG_IEEE80211N */
1948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
1958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (set_beacon)
1968d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ieee802_11_set_beacons(hapd->iface);
1978d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
19804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: cancel ap_handle_timer for " MACSTR,
19904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(sta->addr));
2008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_timer, hapd, sta);
2018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_session_timer, hapd, sta);
2021f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_deauth_cb_timeout, hapd, sta);
2031f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_disassoc_cb_timeout, hapd, sta);
2048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ieee802_1x_free_station(sta);
2068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpa_auth_sta_deinit(sta->wpa_sm);
2078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	rsn_preauth_free_station(hapd, sta);
2088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifndef CONFIG_NO_RADIUS
2098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	radius_client_flush_auth(hapd->radius, sta->addr);
2108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_NO_RADIUS */
2118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta->last_assoc_req);
2138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta->challenge);
2148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifdef CONFIG_IEEE80211W
2168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta->sa_query_trans_id);
2178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_sa_query_timer, hapd, sta);
2188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_IEEE80211W */
2198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifdef CONFIG_P2P
2218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	p2p_group_notif_disassoc(hapd->p2p_group, sta->addr);
2228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_P2P */
2238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
22404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#ifdef CONFIG_INTERWORKING
22504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	if (sta->gas_dialog) {
22604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		int i;
22704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		for (i = 0; i < GAS_DIALOG_MAX; i++)
22804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			gas_serv_dialog_clear(&sta->gas_dialog[i]);
22904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		os_free(sta->gas_dialog);
23004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	}
23104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#endif /* CONFIG_INTERWORKING */
23204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt
2338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpabuf_free(sta->wps_ie);
2348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpabuf_free(sta->p2p_ie);
2358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta->ht_capabilities);
2371f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	os_free(sta->psk);
23861d9df3e62aaa0e87ad05452fcb95142159a17b6Dmitry Shmidt	os_free(sta->identity);
23961d9df3e62aaa0e87ad05452fcb95142159a17b6Dmitry Shmidt	os_free(sta->radius_cui);
2408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta);
2428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
2438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid hostapd_free_stas(struct hostapd_data *hapd)
2468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
2478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta, *prev;
2488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta = hapd->sta_list;
2508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	while (sta) {
2528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		prev = sta;
2538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (sta->flags & WLAN_STA_AUTH) {
2548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			mlme_deauthenticate_indication(
2558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				hapd, sta, WLAN_REASON_UNSPECIFIED);
2568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
2578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta = sta->next;
2588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_DEBUG, "Removing station " MACSTR,
2598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   MAC2STR(prev->addr));
2608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ap_free_sta(hapd, prev);
2618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
2628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
2638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt/**
2668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * ap_handle_timer - Per STA timer handler
2678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * @eloop_ctx: struct hostapd_data *
2688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * @timeout_ctx: struct sta_info *
2698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt *
2708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * This function is called to check station activity and to remove inactive
2718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt * stations.
2728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt */
2738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_handle_timer(void *eloop_ctx, void *timeout_ctx)
2748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
2758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct hostapd_data *hapd = eloop_ctx;
2768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta = timeout_ctx;
2778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	unsigned long next_time = 0;
2788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
27904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: " MACSTR " flags=0x%x timeout_next=%d",
28004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(sta->addr), sta->flags,
28104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   sta->timeout_next);
2828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->timeout_next == STA_REMOVE) {
2838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
2848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_INFO, "deauthenticated due to "
2858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "local deauth request");
2868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ap_free_sta(hapd, sta);
2878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
2888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
2898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
2908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if ((sta->flags & WLAN_STA_ASSOC) &&
2918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	    (sta->timeout_next == STA_NULLFUNC ||
2928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	     sta->timeout_next == STA_DISASSOC)) {
2938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		int inactive_sec;
29404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		/*
29504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		 * Add random value to timeout so that we don't end up bouncing
29604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		 * all stations at the same time if we have lots of associated
29704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		 * stations that are idle (but keep re-associating).
29804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		 */
29904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		int fuzz = os_random() % 20;
3008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		inactive_sec = hostapd_drv_get_inact_sec(hapd, sta->addr);
3018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (inactive_sec == -1) {
3021f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_DEBUG,
3031f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				"Check inactivity: Could not "
304c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt				"get station info from kernel driver for "
3058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				MACSTR, MAC2STR(sta->addr));
306c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt			/*
307c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt			 * The driver may not support this functionality.
308c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt			 * Anyway, try again after the next inactivity timeout,
309c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt			 * but do not disconnect the station now.
310c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt			 */
31104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			next_time = hapd->conf->ap_max_inactivity + fuzz;
3128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		} else if (inactive_sec < hapd->conf->ap_max_inactivity &&
3138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   sta->flags & WLAN_STA_ASSOC) {
3148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			/* station activity detected; reset timeout state */
3151f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_DEBUG,
3161f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				"Station " MACSTR " has been active %is ago",
3178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				MAC2STR(sta->addr), inactive_sec);
3188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			sta->timeout_next = STA_NULLFUNC;
31904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			next_time = hapd->conf->ap_max_inactivity + fuzz -
3208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				inactive_sec;
3218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		} else {
3221f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_DEBUG,
3231f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				"Station " MACSTR " has been "
3248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				"inactive too long: %d sec, max allowed: %d",
3258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				MAC2STR(sta->addr), inactive_sec,
3268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				hapd->conf->ap_max_inactivity);
3271f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
3281f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			if (hapd->conf->skip_inactivity_poll)
3291f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				sta->timeout_next = STA_DISASSOC;
3308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
3318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
3328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if ((sta->flags & WLAN_STA_ASSOC) &&
3348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	    sta->timeout_next == STA_DISASSOC &&
3351f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	    !(sta->flags & WLAN_STA_PENDING_POLL) &&
3361f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	    !hapd->conf->skip_inactivity_poll) {
3371f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		wpa_msg(hapd->msg_ctx, MSG_DEBUG, "Station " MACSTR
3381f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			" has ACKed data poll", MAC2STR(sta->addr));
3398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		/* data nullfunc frame poll did not produce TX errors; assume
3408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * station ACKed it */
3418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->timeout_next = STA_NULLFUNC;
3428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		next_time = hapd->conf->ap_max_inactivity;
3438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
3448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (next_time) {
34604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		wpa_printf(MSG_DEBUG, "%s: register ap_handle_timer timeout "
34704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   "for " MACSTR " (%lu seconds)",
34804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   __func__, MAC2STR(sta->addr), next_time);
3498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		eloop_register_timeout(next_time, 0, ap_handle_timer, hapd,
3508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       sta);
3518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
3528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
3538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->timeout_next == STA_NULLFUNC &&
3558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	    (sta->flags & WLAN_STA_ASSOC)) {
3561f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		wpa_printf(MSG_DEBUG, "  Polling STA");
3578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->flags |= WLAN_STA_PENDING_POLL;
3581f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		hostapd_drv_poll_client(hapd, hapd->own_addr, sta->addr,
3591f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt					sta->flags & WLAN_STA_WMM);
3608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	} else if (sta->timeout_next != STA_REMOVE) {
3618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		int deauth = sta->timeout_next == STA_DEAUTH;
3628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3631f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		wpa_dbg(hapd->msg_ctx, MSG_DEBUG,
3641f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			"Timeout, sending %s info to STA " MACSTR,
3651f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			deauth ? "deauthentication" : "disassociation",
3661f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			MAC2STR(sta->addr));
3678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (deauth) {
3698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_drv_sta_deauth(
3708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				hapd, sta->addr,
3718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				WLAN_REASON_PREV_AUTH_NOT_VALID);
3728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		} else {
3738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_drv_sta_disassoc(
3748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				hapd, sta->addr,
3758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				WLAN_REASON_DISASSOC_DUE_TO_INACTIVITY);
3768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
3778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
3788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
3798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	switch (sta->timeout_next) {
3808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	case STA_NULLFUNC:
3818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->timeout_next = STA_DISASSOC;
38204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		wpa_printf(MSG_DEBUG, "%s: register ap_handle_timer timeout "
38304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   "for " MACSTR " (%d seconds - AP_DISASSOC_DELAY)",
38404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   __func__, MAC2STR(sta->addr), AP_DISASSOC_DELAY);
3858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		eloop_register_timeout(AP_DISASSOC_DELAY, 0, ap_handle_timer,
3868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       hapd, sta);
3878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		break;
3888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	case STA_DISASSOC:
3891f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		ap_sta_set_authorized(hapd, sta, 0);
3908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->flags &= ~WLAN_STA_ASSOC;
3918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ieee802_1x_notify_port_enabled(sta->eapol_sm, 0);
3928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (!sta->acct_terminate_cause)
3938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			sta->acct_terminate_cause =
3948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				RADIUS_ACCT_TERMINATE_CAUSE_IDLE_TIMEOUT;
3958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		accounting_sta_stop(hapd, sta);
3968d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ieee802_1x_free_station(sta);
3978d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
3988d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_INFO, "disassociated due to "
3998d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "inactivity");
4008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->timeout_next = STA_DEAUTH;
40104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		wpa_printf(MSG_DEBUG, "%s: register ap_handle_timer timeout "
40204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   "for " MACSTR " (%d seconds - AP_DEAUTH_DELAY)",
40304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   __func__, MAC2STR(sta->addr), AP_DEAUTH_DELAY);
4048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		eloop_register_timeout(AP_DEAUTH_DELAY, 0, ap_handle_timer,
4058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       hapd, sta);
4068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		mlme_disassociate_indication(
4078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hapd, sta, WLAN_REASON_DISASSOC_DUE_TO_INACTIVITY);
4088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		break;
4098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	case STA_DEAUTH:
4108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	case STA_REMOVE:
4118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
4128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_INFO, "deauthenticated due to "
4131f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       "inactivity (timer DEAUTH/REMOVE)");
4148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (!sta->acct_terminate_cause)
4158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			sta->acct_terminate_cause =
4168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				RADIUS_ACCT_TERMINATE_CAUSE_IDLE_TIMEOUT;
4178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		mlme_deauthenticate_indication(
4188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hapd, sta,
4198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			WLAN_REASON_PREV_AUTH_NOT_VALID);
4208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ap_free_sta(hapd, sta);
4218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		break;
4228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
4238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
4248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_handle_session_timer(void *eloop_ctx, void *timeout_ctx)
4278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
4288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct hostapd_data *hapd = eloop_ctx;
4298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta = timeout_ctx;
4308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 addr[ETH_ALEN];
4318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
43204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	if (!(sta->flags & WLAN_STA_AUTH)) {
43304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		if (sta->flags & WLAN_STA_GAS) {
43404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			wpa_printf(MSG_DEBUG, "GAS: Remove temporary STA "
43504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt				   "entry " MACSTR, MAC2STR(sta->addr));
43604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			ap_free_sta(hapd, sta);
43704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		}
4388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
43904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	}
4408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	mlme_deauthenticate_indication(hapd, sta,
4428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       WLAN_REASON_PREV_AUTH_NOT_VALID);
4438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
4448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       HOSTAPD_LEVEL_INFO, "deauthenticated due to "
4458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       "session timeout");
4468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->acct_terminate_cause =
4478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		RADIUS_ACCT_TERMINATE_CAUSE_SESSION_TIMEOUT;
4488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_memcpy(addr, sta->addr, ETH_ALEN);
4498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_free_sta(hapd, sta);
4508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hostapd_drv_sta_deauth(hapd, addr, WLAN_REASON_PREV_AUTH_NOT_VALID);
4518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
4528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_session_timeout(struct hostapd_data *hapd, struct sta_info *sta,
4558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			    u32 session_timeout)
4568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
4578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
4588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       HOSTAPD_LEVEL_DEBUG, "setting session timeout to %d "
4598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       "seconds", session_timeout);
4608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_session_timer, hapd, sta);
4618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_register_timeout(session_timeout, 0, ap_handle_session_timer,
4628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       hapd, sta);
4638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
4648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_no_session_timeout(struct hostapd_data *hapd, struct sta_info *sta)
4678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
4688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_session_timer, hapd, sta);
4698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
4708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstruct sta_info * ap_sta_add(struct hostapd_data *hapd, const u8 *addr)
4738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
4748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta;
4758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta = ap_get_sta(hapd, addr);
4778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta)
4788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return sta;
4798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpa_printf(MSG_DEBUG, "  New STA");
4818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hapd->num_sta >= hapd->conf->max_num_sta) {
4828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		/* FIX: might try to remove some old STAs first? */
4838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_DEBUG, "no more room for new STAs (%d/%d)",
4848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   hapd->num_sta, hapd->conf->max_num_sta);
4858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return NULL;
4868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
4878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta = os_zalloc(sizeof(struct sta_info));
4898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta == NULL) {
4908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_ERROR, "malloc failed");
4918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return NULL;
4928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
4938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->acct_interim_interval = hapd->conf->acct_interim_interval;
4948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
4958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	/* initialize STA info data */
49604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: register ap_handle_timer timeout "
49704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "for " MACSTR " (%d seconds - ap_max_inactivity)",
49804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(addr),
49904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   hapd->conf->ap_max_inactivity);
5008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_register_timeout(hapd->conf->ap_max_inactivity, 0,
5018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       ap_handle_timer, hapd, sta);
5028d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_memcpy(sta->addr, addr, ETH_ALEN);
5038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->next = hapd->sta_list;
5048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hapd->sta_list = sta;
5058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hapd->num_sta++;
5068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_hash_add(hapd, sta);
5078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->ssid = &hapd->conf->ssid;
5088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_remove_in_other_bss(hapd, sta);
5098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return sta;
5118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
5128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic int ap_sta_remove(struct hostapd_data *hapd, struct sta_info *sta)
5158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
5168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ieee802_1x_notify_port_enabled(sta->eapol_sm, 0);
5178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpa_printf(MSG_DEBUG, "Removing STA " MACSTR " from kernel driver",
5198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		   MAC2STR(sta->addr));
5208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hostapd_drv_sta_remove(hapd, sta->addr) &&
5218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	    sta->flags & WLAN_STA_ASSOC) {
5228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_DEBUG, "Could not remove station " MACSTR
5238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   " from kernel driver.", MAC2STR(sta->addr));
5248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return -1;
5258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
5268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return 0;
5278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
5288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sta_remove_in_other_bss(struct hostapd_data *hapd,
5318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       struct sta_info *sta)
5328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
5338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct hostapd_iface *iface = hapd->iface;
5348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	size_t i;
5358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	for (i = 0; i < iface->num_bss; i++) {
5378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		struct hostapd_data *bss = iface->bss[i];
5388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		struct sta_info *sta2;
5398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		/* bss should always be set during operation, but it may be
5408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * NULL during reconfiguration. Assume the STA is not
5418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * associated to another BSS in that case to avoid NULL pointer
5428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * dereferences. */
5438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (bss == hapd || bss == NULL)
5448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			continue;
5458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta2 = ap_get_sta(bss, sta->addr);
5468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (!sta2)
5478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			continue;
5488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		ap_sta_disconnect(bss, sta2, sta2->addr,
5508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				  WLAN_REASON_PREV_AUTH_NOT_VALID);
5518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
5528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
5538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5551f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtstatic void ap_sta_disassoc_cb_timeout(void *eloop_ctx, void *timeout_ctx)
5561f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt{
5571f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	struct hostapd_data *hapd = eloop_ctx;
5581f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	struct sta_info *sta = timeout_ctx;
5591f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5601f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_remove(hapd, sta);
5611f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	mlme_disassociate_indication(hapd, sta, sta->disassoc_reason);
5621f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt}
5631f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5641f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_disassociate(struct hostapd_data *hapd, struct sta_info *sta,
5668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			 u16 reason)
5678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
5688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: disassociate STA " MACSTR,
5698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		   hapd->conf->iface, MAC2STR(sta->addr));
5708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->flags &= ~WLAN_STA_ASSOC;
5711f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_set_authorized(hapd, sta, 0);
5728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->timeout_next = STA_DEAUTH;
57304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: reschedule ap_handle_timer timeout "
57404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "for " MACSTR " (%d seconds - "
57504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "AP_MAX_INACTIVITY_AFTER_DISASSOC)",
57604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(sta->addr),
57704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   AP_MAX_INACTIVITY_AFTER_DISASSOC);
5788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_timer, hapd, sta);
5798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_register_timeout(AP_MAX_INACTIVITY_AFTER_DISASSOC, 0,
5808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       ap_handle_timer, hapd, sta);
5818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	accounting_sta_stop(hapd, sta);
5828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ieee802_1x_free_station(sta);
5838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
5841f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->disassoc_reason = reason;
5851f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->flags |= WLAN_STA_PENDING_DISASSOC_CB;
5861f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_disassoc_cb_timeout, hapd, sta);
5871f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_register_timeout(hapd->iface->drv_flags &
5881f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       WPA_DRIVER_FLAGS_DEAUTH_TX_STATUS ? 2 : 0, 0,
5891f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       ap_sta_disassoc_cb_timeout, hapd, sta);
5901f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt}
5911f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5921f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5931f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtstatic void ap_sta_deauth_cb_timeout(void *eloop_ctx, void *timeout_ctx)
5941f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt{
5951f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	struct hostapd_data *hapd = eloop_ctx;
5961f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	struct sta_info *sta = timeout_ctx;
5971f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
5981f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_remove(hapd, sta);
5991f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	mlme_deauthenticate_indication(hapd, sta, sta->deauth_reason);
6008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
6018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6028d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_deauthenticate(struct hostapd_data *hapd, struct sta_info *sta,
6048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   u16 reason)
6058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
6068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: deauthenticate STA " MACSTR,
6078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		   hapd->conf->iface, MAC2STR(sta->addr));
6088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->flags &= ~(WLAN_STA_AUTH | WLAN_STA_ASSOC);
6091f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_set_authorized(hapd, sta, 0);
6108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->timeout_next = STA_REMOVE;
61104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: reschedule ap_handle_timer timeout "
61204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "for " MACSTR " (%d seconds - "
61304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "AP_MAX_INACTIVITY_AFTER_DEAUTH)",
61404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(sta->addr),
61504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   AP_MAX_INACTIVITY_AFTER_DEAUTH);
6168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_timer, hapd, sta);
6178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_register_timeout(AP_MAX_INACTIVITY_AFTER_DEAUTH, 0,
6188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       ap_handle_timer, hapd, sta);
6198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	accounting_sta_stop(hapd, sta);
6208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ieee802_1x_free_station(sta);
6218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6221f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->deauth_reason = reason;
6231f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->flags |= WLAN_STA_PENDING_DEAUTH_CB;
6241f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_deauth_cb_timeout, hapd, sta);
6251f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_register_timeout(hapd->iface->drv_flags &
6261f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       WPA_DRIVER_FLAGS_DEAUTH_TX_STATUS ? 2 : 0, 0,
6271f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       ap_sta_deauth_cb_timeout, hapd, sta);
6288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
6298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
63104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#ifdef CONFIG_WPS
63204949598a23f501be6eec21697465fd46a28840aDmitry Shmidtint ap_sta_wps_cancel(struct hostapd_data *hapd,
63304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		      struct sta_info *sta, void *ctx)
63404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt{
63504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	if (sta && (sta->flags & WLAN_STA_WPS)) {
63604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		ap_sta_deauthenticate(hapd, sta,
63704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt				      WLAN_REASON_PREV_AUTH_NOT_VALID);
63804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		wpa_printf(MSG_DEBUG, "WPS: %s: Deauth sta=" MACSTR,
63904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			   __func__, MAC2STR(sta->addr));
64004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		return 1;
64104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	}
64204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt
64304949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	return 0;
64404949598a23f501be6eec21697465fd46a28840aDmitry Shmidt}
64504949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#endif /* CONFIG_WPS */
64604949598a23f501be6eec21697465fd46a28840aDmitry Shmidt
64704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt
6488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint ap_sta_bind_vlan(struct hostapd_data *hapd, struct sta_info *sta,
6498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		     int old_vlanid)
6508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
6518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifndef CONFIG_NO_VLAN
6528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	const char *iface;
6538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct hostapd_vlan *vlan = NULL;
6548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	int ret;
6558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	/*
6578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 * Do not proceed furthur if the vlan id remains same. We do not want
6588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 * duplicate dynamic vlan entries.
6598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 */
6608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->vlan_id == old_vlanid)
6618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return 0;
6628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	/*
6648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 * During 1x reauth, if the vlan id changes, then remove the old id and
6658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 * proceed furthur to add the new one.
6668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	 */
6678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (old_vlanid > 0)
6688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		vlan_remove_dynamic(hapd, old_vlanid);
6698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	iface = hapd->conf->iface;
6718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->ssid->vlan[0])
6728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		iface = sta->ssid->vlan;
6738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->ssid->dynamic_vlan == DYNAMIC_VLAN_DISABLED)
6758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->vlan_id = 0;
6768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	else if (sta->vlan_id > 0) {
6778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		vlan = hapd->conf->vlan;
6788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		while (vlan) {
6798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			if (vlan->vlan_id == sta->vlan_id ||
6808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			    vlan->vlan_id == VLAN_ID_WILDCARD) {
6818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				iface = vlan->ifname;
6828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				break;
6838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			}
6848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			vlan = vlan->next;
6858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
6868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
6878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
6888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->vlan_id > 0 && vlan == NULL) {
6898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
6908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_DEBUG, "could not find VLAN for "
6918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "binding station to (vlan_id=%d)",
6928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       sta->vlan_id);
6938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return -1;
6948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	} else if (sta->vlan_id > 0 && vlan->vlan_id == VLAN_ID_WILDCARD) {
6958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		vlan = vlan_add_dynamic(hapd, vlan, sta->vlan_id);
6968d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (vlan == NULL) {
6978d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_logger(hapd, sta->addr,
6988d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_MODULE_IEEE80211,
6998d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_LEVEL_DEBUG, "could not add "
7008d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "dynamic VLAN interface for vlan_id=%d",
7018d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       sta->vlan_id);
7028d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			return -1;
7038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
7048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		iface = vlan->ifname;
7068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (vlan_setup_encryption_dyn(hapd, sta->ssid, iface) != 0) {
7078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_logger(hapd, sta->addr,
7088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_MODULE_IEEE80211,
7098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_LEVEL_DEBUG, "could not "
7108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "configure encryption for dynamic VLAN "
7118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "interface for vlan_id=%d",
7128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       sta->vlan_id);
7138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
7148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
7168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_DEBUG, "added new dynamic VLAN "
7178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "interface '%s'", iface);
7188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	} else if (vlan && vlan->vlan_id == sta->vlan_id) {
7198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (sta->vlan_id > 0) {
7208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			vlan->dynamic_vlan++;
7218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_logger(hapd, sta->addr,
7228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_MODULE_IEEE80211,
7238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_LEVEL_DEBUG, "updated existing "
7248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "dynamic VLAN interface '%s'", iface);
7258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
7268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		/*
7288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * Update encryption configuration for statically generated
7298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * VLAN interface. This is only used for static WEP
7308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * configuration for the case where hostapd did not yet know
7318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 * which keys are to be used when the interface was added.
7328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		 */
7338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		if (vlan_setup_encryption_dyn(hapd, sta->ssid, iface) != 0) {
7348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			hostapd_logger(hapd, sta->addr,
7358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_MODULE_IEEE80211,
7368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       HOSTAPD_LEVEL_DEBUG, "could not "
7378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "configure encryption for VLAN "
7388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       "interface for vlan_id=%d",
7398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt				       sta->vlan_id);
7408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		}
7418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
7428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
7448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       HOSTAPD_LEVEL_DEBUG, "binding station to interface "
7458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       "'%s'", iface);
7468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (wpa_auth_sta_set_vlan(sta->wpa_sm, sta->vlan_id) < 0)
7488d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		wpa_printf(MSG_INFO, "Failed to update VLAN-ID for WPA");
7498d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7508d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ret = hostapd_drv_set_sta_vlan(iface, hapd, sta->addr, sta->vlan_id);
7518d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (ret < 0) {
7528d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
7538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_DEBUG, "could not bind the STA "
7548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "entry to vlan_id=%d", sta->vlan_id);
7558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
7568d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return ret;
7578d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#else /* CONFIG_NO_VLAN */
7588d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return 0;
7598d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_NO_VLAN */
7608d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
7618d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7628d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7638d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#ifdef CONFIG_IEEE80211W
7648d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7658d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtint ap_check_sa_query_timeout(struct hostapd_data *hapd, struct sta_info *sta)
7668d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
7678d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u32 tu;
7688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct os_time now, passed;
7698d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_get_time(&now);
7708d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_time_sub(&now, &sta->sa_query_start, &passed);
7718d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	tu = (passed.sec * 1000000 + passed.usec) / 1024;
7728d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hapd->conf->assoc_sa_query_max_timeout < tu) {
7738d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_logger(hapd, sta->addr,
7748d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_MODULE_IEEE80211,
7758d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       HOSTAPD_LEVEL_DEBUG,
7768d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			       "association SA Query timed out");
7778d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->sa_query_timed_out = 1;
7788d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		os_free(sta->sa_query_trans_id);
7798d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->sa_query_trans_id = NULL;
7808d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->sa_query_count = 0;
7818d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		eloop_cancel_timeout(ap_sa_query_timer, hapd, sta);
7828d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return 1;
7838d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
7848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7858d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	return 0;
7868d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
7878d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7888d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7898d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtstatic void ap_sa_query_timer(void *eloop_ctx, void *timeout_ctx)
7908d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
7918d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct hostapd_data *hapd = eloop_ctx;
7928d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	struct sta_info *sta = timeout_ctx;
7938d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	unsigned int timeout, sec, usec;
7948d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	u8 *trans_id, *nbuf;
7958d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
7968d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->sa_query_count > 0 &&
7978d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	    ap_check_sa_query_timeout(hapd, sta))
7988d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
7998d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
80061d9df3e62aaa0e87ad05452fcb95142159a17b6Dmitry Shmidt	nbuf = os_realloc_array(sta->sa_query_trans_id,
80161d9df3e62aaa0e87ad05452fcb95142159a17b6Dmitry Shmidt				sta->sa_query_count + 1,
80261d9df3e62aaa0e87ad05452fcb95142159a17b6Dmitry Shmidt				WLAN_SA_QUERY_TR_ID_LEN);
8038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (nbuf == NULL)
8048d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
8058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta->sa_query_count == 0) {
8068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		/* Starting a new SA Query procedure */
8078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		os_get_time(&sta->sa_query_start);
8088d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	}
8098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	trans_id = nbuf + sta->sa_query_count * WLAN_SA_QUERY_TR_ID_LEN;
8108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->sa_query_trans_id = nbuf;
8118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->sa_query_count++;
8128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_get_random(trans_id, WLAN_SA_QUERY_TR_ID_LEN);
8148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	timeout = hapd->conf->assoc_sa_query_retry_timeout;
8168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sec = ((timeout / 1000) * 1024) / 1000;
8178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	usec = (timeout % 1000) * 1024;
8188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_register_timeout(sec, usec, ap_sa_query_timer, hapd, sta);
8198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	hostapd_logger(hapd, sta->addr, HOSTAPD_MODULE_IEEE80211,
8218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       HOSTAPD_LEVEL_DEBUG,
8228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       "association SA Query attempt %d", sta->sa_query_count);
8238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ieee802_11_send_sa_query_req(hapd, sta->addr, trans_id);
8258d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
8268d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8288d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_start_sa_query(struct hostapd_data *hapd, struct sta_info *sta)
8298d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
8308d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sa_query_timer(hapd, sta);
8318d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
8328d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8348d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_stop_sa_query(struct hostapd_data *hapd, struct sta_info *sta)
8358d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
8368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_sa_query_timer, hapd, sta);
8378d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	os_free(sta->sa_query_trans_id);
8388d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->sa_query_trans_id = NULL;
8398d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->sa_query_count = 0;
8408d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
8418d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8428d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt#endif /* CONFIG_IEEE80211W */
8438d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8448d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8458d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_set_authorized(struct hostapd_data *hapd, struct sta_info *sta,
8468d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt			   int authorized)
8478d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
8481f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	const u8 *dev_addr = NULL;
84904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#ifdef CONFIG_P2P
85004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	u8 addr[ETH_ALEN];
85104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt#endif /* CONFIG_P2P */
85204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt
8538d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (!!authorized == !!(sta->flags & WLAN_STA_AUTHORIZED))
8548d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
8558d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
8561f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt#ifdef CONFIG_P2P
85704949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	if (hapd->p2p_group == NULL) {
85804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		if (sta->p2p_ie != NULL &&
85904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		    p2p_parse_dev_addr_in_p2p_ie(sta->p2p_ie, addr) == 0)
86004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt			dev_addr = addr;
86104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	} else
86204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		dev_addr = p2p_group_get_dev_addr(hapd->p2p_group, sta->addr);
8631f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt#endif /* CONFIG_P2P */
8641f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
8651f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	if (authorized) {
8661f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		if (dev_addr)
8671f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_INFO, AP_STA_CONNECTED
8681f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR " p2p_dev_addr=" MACSTR,
8691f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MAC2STR(sta->addr), MAC2STR(dev_addr));
8701f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		else
8711f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_INFO, AP_STA_CONNECTED
8721f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR, MAC2STR(sta->addr));
8731f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		if (hapd->msg_ctx_parent &&
8741f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		    hapd->msg_ctx_parent != hapd->msg_ctx && dev_addr)
8751f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx_parent, MSG_INFO,
8761f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				AP_STA_CONNECTED MACSTR " p2p_dev_addr="
8771f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR,
8781f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MAC2STR(sta->addr), MAC2STR(dev_addr));
8791f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		else if (hapd->msg_ctx_parent &&
8801f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			 hapd->msg_ctx_parent != hapd->msg_ctx)
8811f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx_parent, MSG_INFO,
8821f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				AP_STA_CONNECTED MACSTR, MAC2STR(sta->addr));
8831f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
8848d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->flags |= WLAN_STA_AUTHORIZED;
8851f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	} else {
8861f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		if (dev_addr)
8871f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_INFO, AP_STA_DISCONNECTED
8881f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR " p2p_dev_addr=" MACSTR,
8891f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MAC2STR(sta->addr), MAC2STR(dev_addr));
8901f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		else
8911f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx, MSG_INFO, AP_STA_DISCONNECTED
8921f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR, MAC2STR(sta->addr));
8931f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		if (hapd->msg_ctx_parent &&
8941f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		    hapd->msg_ctx_parent != hapd->msg_ctx && dev_addr)
8951f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx_parent, MSG_INFO,
8961f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				AP_STA_DISCONNECTED MACSTR " p2p_dev_addr="
8971f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MACSTR, MAC2STR(sta->addr), MAC2STR(dev_addr));
8981f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		else if (hapd->msg_ctx_parent &&
8991f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			 hapd->msg_ctx_parent != hapd->msg_ctx)
9001f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			wpa_msg(hapd->msg_ctx_parent, MSG_INFO,
9011f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				AP_STA_DISCONNECTED MACSTR,
9021f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt				MAC2STR(sta->addr));
9038d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta->flags &= ~WLAN_STA_AUTHORIZED;
9041f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	}
9058d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9068d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (hapd->sta_authorized_cb)
9078d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hapd->sta_authorized_cb(hapd->sta_authorized_cb_ctx,
9081f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt					sta->addr, authorized, dev_addr);
9098d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
9108d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9118d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9128d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidtvoid ap_sta_disconnect(struct hostapd_data *hapd, struct sta_info *sta,
9138d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		       const u8 *addr, u16 reason)
9148d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt{
9158d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9168d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta == NULL && addr)
9178d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		sta = ap_get_sta(hapd, addr);
9188d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9198d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (addr)
9208d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		hostapd_drv_sta_deauth(hapd, addr, reason);
9218d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt
9228d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	if (sta == NULL)
9238d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt		return;
9248d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	ap_sta_set_authorized(hapd, sta, 0);
925c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt	wpa_auth_sm_event(sta->wpa_sm, WPA_DEAUTH);
926c5ec7f57ead87efa365800228aa0b09a12d9e6c4Dmitry Shmidt	ieee802_1x_notify_port_enabled(sta->eapol_sm, 0);
9278d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->flags &= ~(WLAN_STA_AUTH | WLAN_STA_ASSOC);
92804949598a23f501be6eec21697465fd46a28840aDmitry Shmidt	wpa_printf(MSG_DEBUG, "%s: reschedule ap_handle_timer timeout "
92904949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "for " MACSTR " (%d seconds - "
93004949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   "AP_MAX_INACTIVITY_AFTER_DEAUTH)",
93104949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   __func__, MAC2STR(sta->addr),
93204949598a23f501be6eec21697465fd46a28840aDmitry Shmidt		   AP_MAX_INACTIVITY_AFTER_DEAUTH);
9338d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	eloop_cancel_timeout(ap_handle_timer, hapd, sta);
9341f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_register_timeout(AP_MAX_INACTIVITY_AFTER_DEAUTH, 0,
9351f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       ap_handle_timer, hapd, sta);
9368d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt	sta->timeout_next = STA_REMOVE;
9371f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
9381f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->deauth_reason = reason;
9391f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->flags |= WLAN_STA_PENDING_DEAUTH_CB;
9401f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_deauth_cb_timeout, hapd, sta);
9411f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_register_timeout(hapd->iface->drv_flags &
9421f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       WPA_DRIVER_FLAGS_DEAUTH_TX_STATUS ? 2 : 0, 0,
9431f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt			       ap_sta_deauth_cb_timeout, hapd, sta);
9441f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt}
9451f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
9461f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
9471f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtvoid ap_sta_deauth_cb(struct hostapd_data *hapd, struct sta_info *sta)
9481f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt{
9491f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	if (!(sta->flags & WLAN_STA_PENDING_DEAUTH_CB)) {
9501f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		wpa_printf(MSG_DEBUG, "Ignore deauth cb for test frame");
9511f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		return;
9521f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	}
9531f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->flags &= ~WLAN_STA_PENDING_DEAUTH_CB;
9541f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_deauth_cb_timeout, hapd, sta);
9551f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_deauth_cb_timeout(hapd, sta);
9561f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt}
9571f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
9581f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt
9591f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidtvoid ap_sta_disassoc_cb(struct hostapd_data *hapd, struct sta_info *sta)
9601f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt{
9611f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	if (!(sta->flags & WLAN_STA_PENDING_DISASSOC_CB)) {
9621f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		wpa_printf(MSG_DEBUG, "Ignore disassoc cb for test frame");
9631f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt		return;
9641f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	}
9651f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	sta->flags &= ~WLAN_STA_PENDING_DISASSOC_CB;
9661f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	eloop_cancel_timeout(ap_sta_disassoc_cb_timeout, hapd, sta);
9671f69aa52ea2e0a73ac502565df8c666ee49cab6aDmitry Shmidt	ap_sta_disassoc_cb_timeout(hapd, sta);
9688d520ff1dc2da35cdca849e982051b86468016d8Dmitry Shmidt}
969