sco.c 23 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141
  1. /*
  2. BlueZ - Bluetooth protocol stack for Linux
  3. Copyright (C) 2000-2001 Qualcomm Incorporated
  4. Copyright (c) 2011, The Linux Foundation. All rights reserved.
  5. Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
  6. This program is free software; you can redistribute it and/or modify
  7. it under the terms of the GNU General Public License version 2 as
  8. published by the Free Software Foundation;
  9. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
  10. OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
  11. FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
  12. IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
  13. CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
  14. WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
  15. ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
  16. OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
  17. ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
  18. COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
  19. SOFTWARE IS DISCLAIMED.
  20. */
  21. /* Bluetooth SCO sockets. */
  22. #include <linux/interrupt.h>
  23. #include <linux/module.h>
  24. #include <linux/types.h>
  25. #include <linux/errno.h>
  26. #include <linux/kernel.h>
  27. #include <linux/sched.h>
  28. #include <linux/slab.h>
  29. #include <linux/poll.h>
  30. #include <linux/fcntl.h>
  31. #include <linux/init.h>
  32. #include <linux/interrupt.h>
  33. #include <linux/socket.h>
  34. #include <linux/skbuff.h>
  35. #include <linux/device.h>
  36. #include <linux/debugfs.h>
  37. #include <linux/seq_file.h>
  38. #include <linux/list.h>
  39. #include <net/sock.h>
  40. #include <linux/uaccess.h>
  41. #include <net/bluetooth/bluetooth.h>
  42. #include <net/bluetooth/hci_core.h>
  43. #include <net/bluetooth/sco.h>
  44. static bool disable_esco;
  45. static const struct proto_ops sco_sock_ops;
  46. static struct bt_sock_list sco_sk_list = {
  47. .lock = __RW_LOCK_UNLOCKED(sco_sk_list.lock)
  48. };
  49. static void __sco_chan_add(struct sco_conn *conn, struct sock *sk, struct sock *parent);
  50. static void sco_chan_del(struct sock *sk, int err);
  51. static int sco_conn_del(struct hci_conn *conn, int err, u8 is_process);
  52. static void sco_sock_close(struct sock *sk);
  53. static void sco_sock_kill(struct sock *sk);
  54. /* ---- SCO timers ---- */
  55. static void sco_sock_timeout(unsigned long arg)
  56. {
  57. struct sock *sk = (struct sock *) arg;
  58. BT_DBG("sock %p state %d", sk, sk->sk_state);
  59. bh_lock_sock(sk);
  60. sk->sk_err = ETIMEDOUT;
  61. sk->sk_state_change(sk);
  62. bh_unlock_sock(sk);
  63. sco_sock_kill(sk);
  64. sock_put(sk);
  65. }
  66. static void sco_sock_set_timer(struct sock *sk, long timeout)
  67. {
  68. BT_DBG("sock %p state %d timeout %ld", sk, sk->sk_state, timeout);
  69. sk_reset_timer(sk, &sk->sk_timer, jiffies + timeout);
  70. }
  71. static void sco_sock_clear_timer(struct sock *sk)
  72. {
  73. BT_DBG("sock %p state %d", sk, sk->sk_state);
  74. sk_stop_timer(sk, &sk->sk_timer);
  75. }
  76. /* ---- SCO connections ---- */
  77. static struct sco_conn *sco_conn_add(struct hci_conn *hcon, __u8 status)
  78. {
  79. struct hci_dev *hdev = hcon->hdev;
  80. struct sco_conn *conn = hcon->sco_data;
  81. if (conn || status)
  82. return conn;
  83. conn = kzalloc(sizeof(struct sco_conn), GFP_ATOMIC);
  84. if (!conn)
  85. return NULL;
  86. spin_lock_init(&conn->lock);
  87. hcon->sco_data = conn;
  88. conn->hcon = hcon;
  89. conn->src = &hdev->bdaddr;
  90. conn->dst = &hcon->dst;
  91. if (hdev->sco_mtu > 0)
  92. conn->mtu = hdev->sco_mtu;
  93. else
  94. conn->mtu = 60;
  95. BT_DBG("hcon %p conn %p", hcon, conn);
  96. return conn;
  97. }
  98. static inline struct sock *sco_chan_get(struct sco_conn *conn)
  99. {
  100. struct sock *sk = NULL;
  101. sco_conn_lock(conn);
  102. sk = conn->sk;
  103. sco_conn_unlock(conn);
  104. return sk;
  105. }
  106. static int sco_conn_del(struct hci_conn *hcon, int err, u8 is_process)
  107. {
  108. struct sco_conn *conn = hcon->sco_data;
  109. struct sock *sk;
  110. if (!conn)
  111. return 0;
  112. BT_DBG("hcon %p conn %p, err %d", hcon, conn, err);
  113. /* Kill socket */
  114. sk = sco_chan_get(conn);
  115. if (sk) {
  116. if (is_process)
  117. lock_sock(sk);
  118. else
  119. bh_lock_sock(sk);
  120. sco_sock_clear_timer(sk);
  121. sco_chan_del(sk, err);
  122. if (is_process)
  123. release_sock(sk);
  124. else
  125. bh_unlock_sock(sk);
  126. sco_sock_kill(sk);
  127. }
  128. hcon->sco_data = NULL;
  129. kfree(conn);
  130. return 0;
  131. }
  132. static inline int sco_chan_add(struct sco_conn *conn, struct sock *sk, struct sock *parent)
  133. {
  134. int err = 0;
  135. sco_conn_lock(conn);
  136. if (conn->sk)
  137. err = -EBUSY;
  138. else
  139. __sco_chan_add(conn, sk, parent);
  140. sco_conn_unlock(conn);
  141. return err;
  142. }
  143. static int sco_connect(struct sock *sk, __s8 is_wbs)
  144. {
  145. bdaddr_t *src = &bt_sk(sk)->src;
  146. bdaddr_t *dst = &bt_sk(sk)->dst;
  147. __u16 pkt_type = sco_pi(sk)->pkt_type;
  148. struct sco_conn *conn;
  149. struct hci_conn *hcon;
  150. struct hci_dev *hdev;
  151. int err, type;
  152. BT_DBG("%s -> %s", batostr(src), batostr(dst));
  153. hdev = hci_get_route(dst, src);
  154. if (!hdev)
  155. return -EHOSTUNREACH;
  156. hci_dev_lock_bh(hdev);
  157. hdev->is_wbs = is_wbs;
  158. if (lmp_esco_capable(hdev) && !disable_esco) {
  159. type = ESCO_LINK;
  160. } else if (is_wbs) {
  161. return -ENAVAIL;
  162. } else {
  163. type = SCO_LINK;
  164. pkt_type &= SCO_ESCO_MASK;
  165. }
  166. BT_DBG("type: %d, pkt_type: 0x%x", type, pkt_type);
  167. hcon = hci_connect(hdev, type, pkt_type, dst,
  168. BT_SECURITY_LOW, HCI_AT_NO_BONDING);
  169. if (IS_ERR(hcon)) {
  170. err = PTR_ERR(hcon);
  171. goto done;
  172. }
  173. if (is_wbs && (hcon->type != ESCO_LINK)) {
  174. BT_ERR("WBS [ hcon->type: 0x%x, hcon->pkt_type: 0x%x ]",
  175. hcon->type, hcon->pkt_type);
  176. err = -EREMOTEIO;
  177. goto done;
  178. }
  179. conn = sco_conn_add(hcon, 0);
  180. if (!conn) {
  181. hci_conn_put(hcon);
  182. err = -ENOMEM;
  183. goto done;
  184. }
  185. /* Update source addr of the socket */
  186. bacpy(src, conn->src);
  187. err = sco_chan_add(conn, sk, NULL);
  188. if (err)
  189. goto done;
  190. if (hcon->state == BT_CONNECTED) {
  191. sco_sock_clear_timer(sk);
  192. sk->sk_state = BT_CONNECTED;
  193. } else {
  194. sk->sk_state = BT_CONNECT;
  195. sco_sock_set_timer(sk, sk->sk_sndtimeo);
  196. }
  197. done:
  198. hci_dev_unlock_bh(hdev);
  199. hci_dev_put(hdev);
  200. return err;
  201. }
  202. static inline int sco_send_frame(struct sock *sk, struct msghdr *msg, int len)
  203. {
  204. struct sco_conn *conn = sco_pi(sk)->conn;
  205. struct sk_buff *skb;
  206. int err, count;
  207. /* Check outgoing MTU */
  208. if (len > conn->mtu)
  209. return -EINVAL;
  210. BT_DBG("sk %p len %d", sk, len);
  211. count = min_t(unsigned int, conn->mtu, len);
  212. skb = bt_skb_send_alloc(sk, count,
  213. msg->msg_flags & MSG_DONTWAIT, &err);
  214. if (!skb)
  215. return err;
  216. if (memcpy_fromiovec(skb_put(skb, count), msg->msg_iov, count)) {
  217. kfree_skb(skb);
  218. return -EFAULT;
  219. }
  220. hci_send_sco(conn->hcon, skb);
  221. return count;
  222. }
  223. static inline void sco_recv_frame(struct sco_conn *conn, struct sk_buff *skb)
  224. {
  225. struct sock *sk = sco_chan_get(conn);
  226. if (!sk)
  227. goto drop;
  228. BT_DBG("sk %p len %d", sk, skb->len);
  229. if (sk->sk_state != BT_CONNECTED)
  230. goto drop;
  231. if (!sock_queue_rcv_skb(sk, skb))
  232. return;
  233. drop:
  234. kfree_skb(skb);
  235. }
  236. /* -------- Socket interface ---------- */
  237. static struct sock *__sco_get_sock_by_addr(bdaddr_t *ba)
  238. {
  239. struct sock *sk;
  240. struct hlist_node *node;
  241. sk_for_each(sk, node, &sco_sk_list.head)
  242. if (!bacmp(&bt_sk(sk)->src, ba))
  243. goto found;
  244. sk = NULL;
  245. found:
  246. return sk;
  247. }
  248. /* Find socket listening on source bdaddr.
  249. * Returns closest match.
  250. */
  251. static struct sock *sco_get_sock_listen(bdaddr_t *src)
  252. {
  253. struct sock *sk = NULL, *sk1 = NULL;
  254. struct hlist_node *node;
  255. read_lock(&sco_sk_list.lock);
  256. sk_for_each(sk, node, &sco_sk_list.head) {
  257. if (sk->sk_state != BT_LISTEN)
  258. continue;
  259. /* Exact match. */
  260. if (!bacmp(&bt_sk(sk)->src, src))
  261. break;
  262. /* Closest match */
  263. if (!bacmp(&bt_sk(sk)->src, BDADDR_ANY))
  264. sk1 = sk;
  265. }
  266. read_unlock(&sco_sk_list.lock);
  267. return node ? sk : sk1;
  268. }
  269. static void sco_sock_destruct(struct sock *sk)
  270. {
  271. BT_DBG("sk %p", sk);
  272. skb_queue_purge(&sk->sk_receive_queue);
  273. skb_queue_purge(&sk->sk_write_queue);
  274. }
  275. static void sco_sock_cleanup_listen(struct sock *parent)
  276. {
  277. struct sock *sk;
  278. BT_DBG("parent %p", parent);
  279. /* Close not yet accepted channels */
  280. while ((sk = bt_accept_dequeue(parent, NULL))) {
  281. sco_sock_close(sk);
  282. sco_sock_kill(sk);
  283. }
  284. parent->sk_state = BT_CLOSED;
  285. sock_set_flag(parent, SOCK_ZAPPED);
  286. }
  287. /* Kill socket (only if zapped and orphan)
  288. * Must be called on unlocked socket.
  289. */
  290. static void sco_sock_kill(struct sock *sk)
  291. {
  292. if (!sock_flag(sk, SOCK_ZAPPED) || sk->sk_socket)
  293. return;
  294. BT_DBG("sk %p state %d", sk, sk->sk_state);
  295. /* Kill poor orphan */
  296. bt_sock_unlink(&sco_sk_list, sk);
  297. sock_set_flag(sk, SOCK_DEAD);
  298. sock_put(sk);
  299. }
  300. static void __sco_sock_close(struct sock *sk)
  301. {
  302. BT_DBG("sk %p state %d socket %p", sk, sk->sk_state, sk->sk_socket);
  303. switch (sk->sk_state) {
  304. case BT_LISTEN:
  305. sco_sock_cleanup_listen(sk);
  306. break;
  307. case BT_CONNECTED:
  308. case BT_CONFIG:
  309. if (sco_pi(sk)->conn) {
  310. sk->sk_state = BT_DISCONN;
  311. sco_sock_set_timer(sk, SCO_DISCONN_TIMEOUT);
  312. if (sco_pi(sk)->conn->hcon != NULL) {
  313. hci_conn_put(sco_pi(sk)->conn->hcon);
  314. sco_pi(sk)->conn->hcon = NULL;
  315. }
  316. } else
  317. sco_chan_del(sk, ECONNRESET);
  318. break;
  319. case BT_CONNECT2:
  320. case BT_CONNECT:
  321. case BT_DISCONN:
  322. sco_chan_del(sk, ECONNRESET);
  323. break;
  324. default:
  325. sock_set_flag(sk, SOCK_ZAPPED);
  326. break;
  327. }
  328. }
  329. /* Must be called on unlocked socket. */
  330. static void sco_sock_close(struct sock *sk)
  331. {
  332. sco_sock_clear_timer(sk);
  333. lock_sock(sk);
  334. __sco_sock_close(sk);
  335. release_sock(sk);
  336. sco_sock_kill(sk);
  337. }
  338. static void sco_sock_init(struct sock *sk, struct sock *parent)
  339. {
  340. BT_DBG("sk %p", sk);
  341. if (parent)
  342. sk->sk_type = parent->sk_type;
  343. }
  344. static struct proto sco_proto = {
  345. .name = "SCO",
  346. .owner = THIS_MODULE,
  347. .obj_size = sizeof(struct sco_pinfo)
  348. };
  349. static struct sock *sco_sock_alloc(struct net *net, struct socket *sock, int proto, gfp_t prio)
  350. {
  351. struct sock *sk;
  352. sk = sk_alloc(net, PF_BLUETOOTH, prio, &sco_proto);
  353. if (!sk)
  354. return NULL;
  355. sock_init_data(sock, sk);
  356. INIT_LIST_HEAD(&bt_sk(sk)->accept_q);
  357. sk->sk_destruct = sco_sock_destruct;
  358. sk->sk_sndtimeo = SCO_CONN_TIMEOUT;
  359. sock_reset_flag(sk, SOCK_ZAPPED);
  360. sk->sk_protocol = proto;
  361. sk->sk_state = BT_OPEN;
  362. setup_timer(&sk->sk_timer, sco_sock_timeout, (unsigned long)sk);
  363. bt_sock_link(&sco_sk_list, sk);
  364. return sk;
  365. }
  366. static int sco_sock_create(struct net *net, struct socket *sock, int protocol,
  367. int kern)
  368. {
  369. struct sock *sk;
  370. BT_DBG("sock %p", sock);
  371. sock->state = SS_UNCONNECTED;
  372. if (sock->type != SOCK_SEQPACKET)
  373. return -ESOCKTNOSUPPORT;
  374. sock->ops = &sco_sock_ops;
  375. sk = sco_sock_alloc(net, sock, protocol, GFP_ATOMIC);
  376. if (!sk)
  377. return -ENOMEM;
  378. sco_sock_init(sk, NULL);
  379. return 0;
  380. }
  381. static int sco_sock_bind(struct socket *sock, struct sockaddr *addr, int alen)
  382. {
  383. struct sockaddr_sco sa;
  384. struct sock *sk = sock->sk;
  385. bdaddr_t *src = &sa.sco_bdaddr;
  386. int len, err = 0;
  387. BT_DBG("sk %p %s", sk, batostr(&sa.sco_bdaddr));
  388. if (!addr || alen < sizeof(struct sockaddr_sco) ||
  389. addr->sa_family != AF_BLUETOOTH)
  390. return -EINVAL;
  391. if (alen < sizeof(struct sockaddr_sco))
  392. return -EINVAL;
  393. memset(&sa, 0, sizeof(sa));
  394. len = min_t(unsigned int, sizeof(sa), alen);
  395. memcpy(&sa, addr, len);
  396. lock_sock(sk);
  397. if (sk->sk_state != BT_OPEN) {
  398. err = -EBADFD;
  399. goto done;
  400. }
  401. write_lock_bh(&sco_sk_list.lock);
  402. if (bacmp(src, BDADDR_ANY) && __sco_get_sock_by_addr(src)) {
  403. err = -EADDRINUSE;
  404. } else {
  405. /* Save source address */
  406. bacpy(&bt_sk(sk)->src, &sa.sco_bdaddr);
  407. sco_pi(sk)->pkt_type = sa.sco_pkt_type;
  408. sk->sk_state = BT_BOUND;
  409. }
  410. write_unlock_bh(&sco_sk_list.lock);
  411. done:
  412. release_sock(sk);
  413. return err;
  414. }
  415. static int sco_sock_connect(struct socket *sock, struct sockaddr *addr, int alen, int flags)
  416. {
  417. struct sock *sk = sock->sk;
  418. struct sockaddr_sco sa;
  419. int len, err = 0;
  420. BT_DBG("sk %p", sk);
  421. if (!addr || addr->sa_family != AF_BLUETOOTH)
  422. return -EINVAL;
  423. memset(&sa, 0, sizeof(sa));
  424. len = min_t(unsigned int, sizeof(sa), alen);
  425. memcpy(&sa, addr, len);
  426. lock_sock(sk);
  427. if (sk->sk_type != SOCK_SEQPACKET) {
  428. err = -EINVAL;
  429. goto done;
  430. }
  431. if (sk->sk_state != BT_OPEN && sk->sk_state != BT_BOUND) {
  432. err = -EBADFD;
  433. goto done;
  434. }
  435. /* Set destination address and psm */
  436. bacpy(&bt_sk(sk)->dst, &sa.sco_bdaddr);
  437. sco_pi(sk)->pkt_type = sa.sco_pkt_type;
  438. err = sco_connect(sk, sa.is_wbs);
  439. if (err)
  440. goto done;
  441. err = bt_sock_wait_state(sk, BT_CONNECTED,
  442. sock_sndtimeo(sk, flags & O_NONBLOCK));
  443. done:
  444. release_sock(sk);
  445. return err;
  446. }
  447. static int sco_sock_listen(struct socket *sock, int backlog)
  448. {
  449. struct sock *sk = sock->sk;
  450. int err = 0;
  451. BT_DBG("sk %p backlog %d", sk, backlog);
  452. lock_sock(sk);
  453. if (sk->sk_state != BT_BOUND || sock->type != SOCK_SEQPACKET) {
  454. err = -EBADFD;
  455. goto done;
  456. }
  457. sk->sk_max_ack_backlog = backlog;
  458. sk->sk_ack_backlog = 0;
  459. sk->sk_state = BT_LISTEN;
  460. done:
  461. release_sock(sk);
  462. return err;
  463. }
  464. static int sco_sock_accept(struct socket *sock, struct socket *newsock, int flags)
  465. {
  466. DECLARE_WAITQUEUE(wait, current);
  467. struct sock *sk = sock->sk, *ch;
  468. long timeo;
  469. int err = 0;
  470. lock_sock(sk);
  471. if (sk->sk_state != BT_LISTEN) {
  472. err = -EBADFD;
  473. goto done;
  474. }
  475. timeo = sock_rcvtimeo(sk, flags & O_NONBLOCK);
  476. BT_DBG("sk %p timeo %ld", sk, timeo);
  477. /* Wait for an incoming connection. (wake-one). */
  478. add_wait_queue_exclusive(sk_sleep(sk), &wait);
  479. while (!(ch = bt_accept_dequeue(sk, newsock))) {
  480. set_current_state(TASK_INTERRUPTIBLE);
  481. if (!timeo) {
  482. err = -EAGAIN;
  483. break;
  484. }
  485. release_sock(sk);
  486. timeo = schedule_timeout(timeo);
  487. lock_sock(sk);
  488. if (sk->sk_state != BT_LISTEN) {
  489. err = -EBADFD;
  490. break;
  491. }
  492. if (signal_pending(current)) {
  493. err = sock_intr_errno(timeo);
  494. break;
  495. }
  496. }
  497. set_current_state(TASK_RUNNING);
  498. remove_wait_queue(sk_sleep(sk), &wait);
  499. if (err)
  500. goto done;
  501. newsock->state = SS_CONNECTED;
  502. BT_DBG("new socket %p", ch);
  503. done:
  504. release_sock(sk);
  505. return err;
  506. }
  507. static int sco_sock_getname(struct socket *sock, struct sockaddr *addr, int *len, int peer)
  508. {
  509. struct sockaddr_sco *sa = (struct sockaddr_sco *) addr;
  510. struct sock *sk = sock->sk;
  511. BT_DBG("sock %p, sk %p", sock, sk);
  512. addr->sa_family = AF_BLUETOOTH;
  513. *len = sizeof(struct sockaddr_sco);
  514. if (peer)
  515. bacpy(&sa->sco_bdaddr, &bt_sk(sk)->dst);
  516. else
  517. bacpy(&sa->sco_bdaddr, &bt_sk(sk)->src);
  518. sa->sco_pkt_type = sco_pi(sk)->pkt_type;
  519. return 0;
  520. }
  521. static int sco_sock_sendmsg(struct kiocb *iocb, struct socket *sock,
  522. struct msghdr *msg, size_t len)
  523. {
  524. struct sock *sk = sock->sk;
  525. int err;
  526. BT_DBG("sock %p, sk %p", sock, sk);
  527. err = sock_error(sk);
  528. if (err)
  529. return err;
  530. if (msg->msg_flags & MSG_OOB)
  531. return -EOPNOTSUPP;
  532. lock_sock(sk);
  533. if (sk->sk_state == BT_CONNECTED)
  534. err = sco_send_frame(sk, msg, len);
  535. else
  536. err = -ENOTCONN;
  537. release_sock(sk);
  538. return err;
  539. }
  540. static int sco_sock_setsockopt(struct socket *sock, int level, int optname, char __user *optval, unsigned int optlen)
  541. {
  542. struct sock *sk = sock->sk;
  543. int err = 0;
  544. BT_DBG("sk %p", sk);
  545. lock_sock(sk);
  546. switch (optname) {
  547. default:
  548. err = -ENOPROTOOPT;
  549. break;
  550. }
  551. release_sock(sk);
  552. return err;
  553. }
  554. static int sco_sock_getsockopt_old(struct socket *sock, int optname, char __user *optval, int __user *optlen)
  555. {
  556. struct sock *sk = sock->sk;
  557. struct sco_options opts;
  558. struct sco_conninfo cinfo;
  559. int len, err = 0;
  560. BT_DBG("sk %p", sk);
  561. if (get_user(len, optlen))
  562. return -EFAULT;
  563. lock_sock(sk);
  564. switch (optname) {
  565. case SCO_OPTIONS:
  566. if (sk->sk_state != BT_CONNECTED) {
  567. err = -ENOTCONN;
  568. break;
  569. }
  570. opts.mtu = sco_pi(sk)->conn->mtu;
  571. BT_DBG("mtu %d", opts.mtu);
  572. len = min_t(unsigned int, len, sizeof(opts));
  573. if (copy_to_user(optval, (char *)&opts, len))
  574. err = -EFAULT;
  575. break;
  576. case SCO_CONNINFO:
  577. if (sk->sk_state != BT_CONNECTED) {
  578. err = -ENOTCONN;
  579. break;
  580. }
  581. memset(&cinfo, 0, sizeof(cinfo));
  582. cinfo.hci_handle = sco_pi(sk)->conn->hcon->handle;
  583. memcpy(cinfo.dev_class, sco_pi(sk)->conn->hcon->dev_class, 3);
  584. len = min_t(unsigned int, len, sizeof(cinfo));
  585. if (copy_to_user(optval, (char *)&cinfo, len))
  586. err = -EFAULT;
  587. break;
  588. default:
  589. err = -ENOPROTOOPT;
  590. break;
  591. }
  592. release_sock(sk);
  593. return err;
  594. }
  595. static int sco_sock_getsockopt(struct socket *sock, int level, int optname, char __user *optval, int __user *optlen)
  596. {
  597. struct sock *sk = sock->sk;
  598. int len, err = 0;
  599. BT_DBG("sk %p", sk);
  600. if (level == SOL_SCO)
  601. return sco_sock_getsockopt_old(sock, optname, optval, optlen);
  602. if (get_user(len, optlen))
  603. return -EFAULT;
  604. lock_sock(sk);
  605. switch (optname) {
  606. default:
  607. err = -ENOPROTOOPT;
  608. break;
  609. }
  610. release_sock(sk);
  611. return err;
  612. }
  613. static int sco_sock_shutdown(struct socket *sock, int how)
  614. {
  615. struct sock *sk = sock->sk;
  616. int err = 0;
  617. BT_DBG("sock %p, sk %p", sock, sk);
  618. if (!sk)
  619. return 0;
  620. lock_sock(sk);
  621. if (!sk->sk_shutdown) {
  622. sk->sk_shutdown = SHUTDOWN_MASK;
  623. sco_sock_clear_timer(sk);
  624. __sco_sock_close(sk);
  625. if (sock_flag(sk, SOCK_LINGER) && sk->sk_lingertime)
  626. err = bt_sock_wait_state(sk, BT_CLOSED,
  627. sk->sk_lingertime);
  628. else
  629. err = bt_sock_wait_state(sk, BT_CLOSED,
  630. SCO_DISCONN_TIMEOUT);
  631. }
  632. release_sock(sk);
  633. return err;
  634. }
  635. static int sco_sock_release(struct socket *sock)
  636. {
  637. struct sock *sk = sock->sk;
  638. int err = 0;
  639. BT_DBG("sock %p, sk %p", sock, sk);
  640. if (!sk)
  641. return 0;
  642. sco_sock_close(sk);
  643. if (sock_flag(sk, SOCK_LINGER) && sk->sk_lingertime) {
  644. lock_sock(sk);
  645. err = bt_sock_wait_state(sk, BT_CLOSED, sk->sk_lingertime);
  646. release_sock(sk);
  647. } else {
  648. lock_sock(sk);
  649. err = bt_sock_wait_state(sk, BT_CLOSED,
  650. SCO_DISCONN_TIMEOUT);
  651. release_sock(sk);
  652. }
  653. sock_orphan(sk);
  654. sco_sock_kill(sk);
  655. return err;
  656. }
  657. static void __sco_chan_add(struct sco_conn *conn, struct sock *sk, struct sock *parent)
  658. {
  659. BT_DBG("conn %p", conn);
  660. sco_pi(sk)->conn = conn;
  661. conn->sk = sk;
  662. if (parent)
  663. bt_accept_enqueue(parent, sk);
  664. }
  665. /* Delete channel.
  666. * Must be called on the locked socket. */
  667. static void sco_chan_del(struct sock *sk, int err)
  668. {
  669. struct sco_conn *conn;
  670. conn = sco_pi(sk)->conn;
  671. BT_DBG("sk %p, conn %p, err %d", sk, conn, err);
  672. if (conn) {
  673. sco_conn_lock(conn);
  674. conn->sk = NULL;
  675. sco_pi(sk)->conn = NULL;
  676. sco_conn_unlock(conn);
  677. if (conn->hcon)
  678. hci_conn_put(conn->hcon);
  679. }
  680. sk->sk_state = BT_CLOSED;
  681. sk->sk_err = err;
  682. sk->sk_state_change(sk);
  683. sock_set_flag(sk, SOCK_ZAPPED);
  684. }
  685. static void sco_conn_ready(struct sco_conn *conn)
  686. {
  687. struct sock *parent;
  688. struct sock *sk = conn->sk;
  689. BT_DBG("conn %p", conn);
  690. sco_conn_lock(conn);
  691. if (sk) {
  692. sco_sock_clear_timer(sk);
  693. bh_lock_sock(sk);
  694. sk->sk_state = BT_CONNECTED;
  695. sk->sk_state_change(sk);
  696. bh_unlock_sock(sk);
  697. } else {
  698. parent = sco_get_sock_listen(conn->src);
  699. if (!parent)
  700. goto done;
  701. bh_lock_sock(parent);
  702. sk = sco_sock_alloc(sock_net(parent), NULL,
  703. BTPROTO_SCO, GFP_ATOMIC);
  704. if (!sk) {
  705. bh_unlock_sock(parent);
  706. goto done;
  707. }
  708. sco_sock_init(sk, parent);
  709. bacpy(&bt_sk(sk)->src, conn->src);
  710. bacpy(&bt_sk(sk)->dst, conn->dst);
  711. hci_conn_hold(conn->hcon);
  712. __sco_chan_add(conn, sk, parent);
  713. sk->sk_state = BT_CONNECTED;
  714. /* Wake up parent */
  715. parent->sk_data_ready(parent, 1);
  716. bh_unlock_sock(parent);
  717. }
  718. done:
  719. sco_conn_unlock(conn);
  720. }
  721. /* ----- SCO interface with lower layer (HCI) ----- */
  722. static int sco_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr, __u8 type)
  723. {
  724. register struct sock *sk;
  725. struct hlist_node *node;
  726. int lm = 0;
  727. if (type != SCO_LINK && type != ESCO_LINK)
  728. return 0;
  729. BT_DBG("hdev %s, bdaddr %s", hdev->name, batostr(bdaddr));
  730. /* Find listening sockets */
  731. read_lock(&sco_sk_list.lock);
  732. sk_for_each(sk, node, &sco_sk_list.head) {
  733. if (sk->sk_state != BT_LISTEN)
  734. continue;
  735. if (!bacmp(&bt_sk(sk)->src, &hdev->bdaddr) ||
  736. !bacmp(&bt_sk(sk)->src, BDADDR_ANY)) {
  737. lm |= HCI_LM_ACCEPT;
  738. break;
  739. }
  740. }
  741. read_unlock(&sco_sk_list.lock);
  742. return lm;
  743. }
  744. static int sco_connect_cfm(struct hci_conn *hcon, __u8 status)
  745. {
  746. BT_DBG("hcon %p bdaddr %s status %d", hcon, batostr(&hcon->dst), status);
  747. if (hcon->type != SCO_LINK && hcon->type != ESCO_LINK)
  748. return -EINVAL;
  749. if (!status) {
  750. struct sco_conn *conn;
  751. conn = sco_conn_add(hcon, status);
  752. if (conn)
  753. sco_conn_ready(conn);
  754. } else
  755. sco_conn_del(hcon, bt_err(status), 0);
  756. return 0;
  757. }
  758. static int sco_disconn_cfm(struct hci_conn *hcon, __u8 reason, __u8 is_process)
  759. {
  760. BT_DBG("hcon %p reason %d", hcon, reason);
  761. if (hcon->type != SCO_LINK && hcon->type != ESCO_LINK)
  762. return -EINVAL;
  763. sco_conn_del(hcon, bt_err(reason), is_process);
  764. return 0;
  765. }
  766. static int sco_recv_scodata(struct hci_conn *hcon, struct sk_buff *skb)
  767. {
  768. struct sco_conn *conn = hcon->sco_data;
  769. if (!conn)
  770. goto drop;
  771. BT_DBG("conn %p len %d", conn, skb->len);
  772. if (skb->len) {
  773. sco_recv_frame(conn, skb);
  774. return 0;
  775. }
  776. drop:
  777. kfree_skb(skb);
  778. return 0;
  779. }
  780. static int sco_debugfs_show(struct seq_file *f, void *p)
  781. {
  782. struct sock *sk;
  783. struct hlist_node *node;
  784. read_lock_bh(&sco_sk_list.lock);
  785. sk_for_each(sk, node, &sco_sk_list.head) {
  786. seq_printf(f, "%s %s %d\n", batostr(&bt_sk(sk)->src),
  787. batostr(&bt_sk(sk)->dst), sk->sk_state);
  788. }
  789. read_unlock_bh(&sco_sk_list.lock);
  790. return 0;
  791. }
  792. static int sco_debugfs_open(struct inode *inode, struct file *file)
  793. {
  794. return single_open(file, sco_debugfs_show, inode->i_private);
  795. }
  796. static const struct file_operations sco_debugfs_fops = {
  797. .open = sco_debugfs_open,
  798. .read = seq_read,
  799. .llseek = seq_lseek,
  800. .release = single_release,
  801. };
  802. static struct dentry *sco_debugfs;
  803. static const struct proto_ops sco_sock_ops = {
  804. .family = PF_BLUETOOTH,
  805. .owner = THIS_MODULE,
  806. .release = sco_sock_release,
  807. .bind = sco_sock_bind,
  808. .connect = sco_sock_connect,
  809. .listen = sco_sock_listen,
  810. .accept = sco_sock_accept,
  811. .getname = sco_sock_getname,
  812. .sendmsg = sco_sock_sendmsg,
  813. .recvmsg = bt_sock_recvmsg,
  814. .poll = bt_sock_poll,
  815. .ioctl = bt_sock_ioctl,
  816. .mmap = sock_no_mmap,
  817. .socketpair = sock_no_socketpair,
  818. .shutdown = sco_sock_shutdown,
  819. .setsockopt = sco_sock_setsockopt,
  820. .getsockopt = sco_sock_getsockopt
  821. };
  822. static const struct net_proto_family sco_sock_family_ops = {
  823. .family = PF_BLUETOOTH,
  824. .owner = THIS_MODULE,
  825. .create = sco_sock_create,
  826. };
  827. static struct hci_proto sco_hci_proto = {
  828. .name = "SCO",
  829. .id = HCI_PROTO_SCO,
  830. .connect_ind = sco_connect_ind,
  831. .connect_cfm = sco_connect_cfm,
  832. .disconn_cfm = sco_disconn_cfm,
  833. .recv_scodata = sco_recv_scodata
  834. };
  835. int __init sco_init(void)
  836. {
  837. int err;
  838. err = proto_register(&sco_proto, 0);
  839. if (err < 0)
  840. return err;
  841. err = bt_sock_register(BTPROTO_SCO, &sco_sock_family_ops);
  842. if (err < 0) {
  843. BT_ERR("SCO socket registration failed");
  844. goto error;
  845. }
  846. err = hci_register_proto(&sco_hci_proto);
  847. if (err < 0) {
  848. BT_ERR("SCO protocol registration failed");
  849. bt_sock_unregister(BTPROTO_SCO);
  850. goto error;
  851. }
  852. if (bt_debugfs) {
  853. sco_debugfs = debugfs_create_file("sco", 0444,
  854. bt_debugfs, NULL, &sco_debugfs_fops);
  855. if (!sco_debugfs)
  856. BT_ERR("Failed to create SCO debug file");
  857. }
  858. BT_INFO("SCO socket layer initialized");
  859. return 0;
  860. error:
  861. proto_unregister(&sco_proto);
  862. return err;
  863. }
  864. void __exit sco_exit(void)
  865. {
  866. debugfs_remove(sco_debugfs);
  867. if (bt_sock_unregister(BTPROTO_SCO) < 0)
  868. BT_ERR("SCO socket unregistration failed");
  869. if (hci_unregister_proto(&sco_hci_proto) < 0)
  870. BT_ERR("SCO protocol unregistration failed");
  871. proto_unregister(&sco_proto);
  872. }
  873. module_param(disable_esco, bool, 0644);
  874. MODULE_PARM_DESC(disable_esco, "Disable eSCO connection creation");