xref: /dragonfly/sys/netbt/hci_socket.c (revision 0704bacf)
183aacedeSHasso Tepper /* $OpenBSD: src/sys/netbt/hci_socket.c,v 1.5 2008/02/24 21:34:48 uwe Exp $ */
283aacedeSHasso Tepper /* $NetBSD: hci_socket.c,v 1.14 2008/02/10 17:40:54 plunky Exp $ */
30a9108ebSHasso Tepper 
40a9108ebSHasso Tepper /*-
50a9108ebSHasso Tepper  * Copyright (c) 2005 Iain Hibbert.
60a9108ebSHasso Tepper  * Copyright (c) 2006 Itronix Inc.
70a9108ebSHasso Tepper  * All rights reserved.
80a9108ebSHasso Tepper  *
90a9108ebSHasso Tepper  * Redistribution and use in source and binary forms, with or without
100a9108ebSHasso Tepper  * modification, are permitted provided that the following conditions
110a9108ebSHasso Tepper  * are met:
120a9108ebSHasso Tepper  * 1. Redistributions of source code must retain the above copyright
130a9108ebSHasso Tepper  *    notice, this list of conditions and the following disclaimer.
140a9108ebSHasso Tepper  * 2. Redistributions in binary form must reproduce the above copyright
150a9108ebSHasso Tepper  *    notice, this list of conditions and the following disclaimer in the
160a9108ebSHasso Tepper  *    documentation and/or other materials provided with the distribution.
170a9108ebSHasso Tepper  * 3. The name of Itronix Inc. may not be used to endorse
180a9108ebSHasso Tepper  *    or promote products derived from this software without specific
190a9108ebSHasso Tepper  *    prior written permission.
200a9108ebSHasso Tepper  *
210a9108ebSHasso Tepper  * THIS SOFTWARE IS PROVIDED BY ITRONIX INC. ``AS IS'' AND
220a9108ebSHasso Tepper  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
230a9108ebSHasso Tepper  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
240a9108ebSHasso Tepper  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL ITRONIX INC. BE LIABLE FOR ANY
250a9108ebSHasso Tepper  * DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
260a9108ebSHasso Tepper  * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
270a9108ebSHasso Tepper  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
280a9108ebSHasso Tepper  * ON ANY THEORY OF LIABILITY, WHETHER IN
290a9108ebSHasso Tepper  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
300a9108ebSHasso Tepper  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
310a9108ebSHasso Tepper  * POSSIBILITY OF SUCH DAMAGE.
320a9108ebSHasso Tepper  */
330a9108ebSHasso Tepper 
340a9108ebSHasso Tepper /* load symbolic names */
350a9108ebSHasso Tepper #ifdef BLUETOOTH_DEBUG
360a9108ebSHasso Tepper #define PRUREQUESTS
370a9108ebSHasso Tepper #define PRCOREQUESTS
380a9108ebSHasso Tepper #endif
390a9108ebSHasso Tepper 
400a9108ebSHasso Tepper #include <sys/param.h>
410a9108ebSHasso Tepper #include <sys/domain.h>
420a9108ebSHasso Tepper #include <sys/kernel.h>
43805c8e8eSzrj #include <sys/malloc.h>
440a9108ebSHasso Tepper #include <sys/mbuf.h>
450a9108ebSHasso Tepper #include <sys/proc.h>
462b3f93eaSMatthew Dillon #include <sys/caps.h>
470a9108ebSHasso Tepper #include <sys/protosw.h>
480a9108ebSHasso Tepper #include <sys/socket.h>
490a9108ebSHasso Tepper #include <sys/socketvar.h>
500a9108ebSHasso Tepper #include <sys/systm.h>
510a9108ebSHasso Tepper #include <sys/endian.h>
520a9108ebSHasso Tepper #include <net/if.h>
530a9108ebSHasso Tepper #include <net/if_var.h>
540a9108ebSHasso Tepper #include <sys/sysctl.h>
556cef7136SMatthew Dillon 
560a9108ebSHasso Tepper #include <sys/thread2.h>
576cef7136SMatthew Dillon #include <sys/socketvar2.h>
58002c1265SMatthew Dillon #include <sys/msgport2.h>
590a9108ebSHasso Tepper 
600a9108ebSHasso Tepper #include <netbt/bluetooth.h>
610a9108ebSHasso Tepper #include <netbt/hci.h>
620a9108ebSHasso Tepper 
630a9108ebSHasso Tepper /*******************************************************************************
640a9108ebSHasso Tepper  *
650a9108ebSHasso Tepper  * HCI SOCK_RAW Sockets - for control of Bluetooth Devices
660a9108ebSHasso Tepper  *
670a9108ebSHasso Tepper  */
680a9108ebSHasso Tepper 
690a9108ebSHasso Tepper /*
700a9108ebSHasso Tepper  * the raw HCI protocol control block
710a9108ebSHasso Tepper  */
720a9108ebSHasso Tepper struct hci_pcb {
730a9108ebSHasso Tepper 	struct socket		*hp_socket;	/* socket */
740a9108ebSHasso Tepper 	unsigned int		hp_flags;	/* flags */
750a9108ebSHasso Tepper 	bdaddr_t		hp_laddr;	/* local address */
760a9108ebSHasso Tepper 	bdaddr_t		hp_raddr;	/* remote address */
770a9108ebSHasso Tepper 	struct hci_filter	hp_efilter;	/* user event filter */
780a9108ebSHasso Tepper 	struct hci_filter	hp_pfilter;	/* user packet filter */
790a9108ebSHasso Tepper 	LIST_ENTRY(hci_pcb)	hp_next;	/* next HCI pcb */
800a9108ebSHasso Tepper };
810a9108ebSHasso Tepper 
820a9108ebSHasso Tepper /* hp_flags */
830a9108ebSHasso Tepper #define HCI_PRIVILEGED		(1<<0)	/* no security filter for root */
840a9108ebSHasso Tepper #define HCI_DIRECTION		(1<<1)	/* direction control messages */
850a9108ebSHasso Tepper #define HCI_PROMISCUOUS		(1<<2)	/* listen to all units */
860a9108ebSHasso Tepper 
870a9108ebSHasso Tepper LIST_HEAD(hci_pcb_list, hci_pcb) hci_pcb = LIST_HEAD_INITIALIZER(hci_pcb);
880a9108ebSHasso Tepper 
890a9108ebSHasso Tepper /* sysctl defaults */
900a9108ebSHasso Tepper int hci_sendspace = HCI_CMD_PKT_SIZE;
910a9108ebSHasso Tepper int hci_recvspace = 4096;
920a9108ebSHasso Tepper 
930a9108ebSHasso Tepper extern struct pr_usrreqs hci_usrreqs;
940a9108ebSHasso Tepper 
950a9108ebSHasso Tepper /* Prototypes for usrreqs methods. */
96002c1265SMatthew Dillon static void hci_sdetach(netmsg_t msg);
970a9108ebSHasso Tepper 
9883aacedeSHasso Tepper /* supported commands opcode table */
9983aacedeSHasso Tepper static const struct {
10083aacedeSHasso Tepper 	uint16_t	opcode;
10183aacedeSHasso Tepper 	uint8_t		offs;	/* 0 - 63 */
10283aacedeSHasso Tepper 	uint8_t		mask;	/* bit 0 - 7 */
10383aacedeSHasso Tepper 	int16_t		length;	/* -1 if privileged */
10483aacedeSHasso Tepper } hci_cmds[] = {
10583aacedeSHasso Tepper 	{ HCI_CMD_INQUIRY,
10683aacedeSHasso Tepper 	  0,  0x01, sizeof(hci_inquiry_cp) },
10783aacedeSHasso Tepper 	{ HCI_CMD_INQUIRY_CANCEL,
10883aacedeSHasso Tepper 	  0,  0x02, -1 },
10983aacedeSHasso Tepper 	{ HCI_CMD_PERIODIC_INQUIRY,
11083aacedeSHasso Tepper 	  0,  0x04, -1 },
11183aacedeSHasso Tepper 	{ HCI_CMD_EXIT_PERIODIC_INQUIRY,
11283aacedeSHasso Tepper 	  0,  0x08, -1 },
11383aacedeSHasso Tepper 	{ HCI_CMD_CREATE_CON,
11483aacedeSHasso Tepper 	  0,  0x10, -1 },
11583aacedeSHasso Tepper 	{ HCI_CMD_DISCONNECT,
11683aacedeSHasso Tepper 	  0,  0x20, -1 },
11783aacedeSHasso Tepper 	{ HCI_CMD_ADD_SCO_CON,
11883aacedeSHasso Tepper 	  0,  0x40, -1 },
11983aacedeSHasso Tepper 	{ HCI_CMD_CREATE_CON_CANCEL,
12083aacedeSHasso Tepper 	  0,  0x80, -1 },
12183aacedeSHasso Tepper 	{ HCI_CMD_ACCEPT_CON,
12283aacedeSHasso Tepper 	  1,  0x01, -1 },
12383aacedeSHasso Tepper 	{ HCI_CMD_REJECT_CON,
12483aacedeSHasso Tepper 	  1,  0x02, -1 },
12583aacedeSHasso Tepper 	{ HCI_CMD_LINK_KEY_REP,
12683aacedeSHasso Tepper 	  1,  0x04, -1 },
12783aacedeSHasso Tepper 	{ HCI_CMD_LINK_KEY_NEG_REP,
12883aacedeSHasso Tepper 	  1,  0x08, -1 },
12983aacedeSHasso Tepper 	{ HCI_CMD_PIN_CODE_REP,
13083aacedeSHasso Tepper 	  1,  0x10, -1 },
13183aacedeSHasso Tepper 	{ HCI_CMD_PIN_CODE_NEG_REP,
13283aacedeSHasso Tepper 	  1,  0x20, -1 },
13383aacedeSHasso Tepper 	{ HCI_CMD_CHANGE_CON_PACKET_TYPE,
13483aacedeSHasso Tepper 	  1,  0x40, -1 },
13583aacedeSHasso Tepper 	{ HCI_CMD_AUTH_REQ,
13683aacedeSHasso Tepper 	  1,  0x80, -1 },
13783aacedeSHasso Tepper 	{ HCI_CMD_SET_CON_ENCRYPTION,
13883aacedeSHasso Tepper 	  2,  0x01, -1 },
13983aacedeSHasso Tepper 	{ HCI_CMD_CHANGE_CON_LINK_KEY,
14083aacedeSHasso Tepper 	  2,  0x02, -1 },
14183aacedeSHasso Tepper 	{ HCI_CMD_MASTER_LINK_KEY,
14283aacedeSHasso Tepper 	  2,  0x04, -1 },
14383aacedeSHasso Tepper 	{ HCI_CMD_REMOTE_NAME_REQ,
14483aacedeSHasso Tepper 	  2,  0x08, sizeof(hci_remote_name_req_cp) },
14583aacedeSHasso Tepper 	{ HCI_CMD_REMOTE_NAME_REQ_CANCEL,
14683aacedeSHasso Tepper 	  2,  0x10, -1 },
14783aacedeSHasso Tepper 	{ HCI_CMD_READ_REMOTE_FEATURES,
14883aacedeSHasso Tepper 	  2,  0x20, sizeof(hci_read_remote_features_cp) },
14983aacedeSHasso Tepper 	{ HCI_CMD_READ_REMOTE_EXTENDED_FEATURES,
15083aacedeSHasso Tepper 	  2,  0x40, sizeof(hci_read_remote_extended_features_cp) },
15183aacedeSHasso Tepper 	{ HCI_CMD_READ_REMOTE_VER_INFO,
15283aacedeSHasso Tepper 	  2,  0x80, sizeof(hci_read_remote_ver_info_cp) },
15383aacedeSHasso Tepper 	{ HCI_CMD_READ_CLOCK_OFFSET,
15483aacedeSHasso Tepper 	  3,  0x01, sizeof(hci_read_clock_offset_cp) },
15583aacedeSHasso Tepper 	{ HCI_CMD_READ_LMP_HANDLE,
15683aacedeSHasso Tepper 	  3,  0x02, sizeof(hci_read_lmp_handle_cp) },
15783aacedeSHasso Tepper 	{ HCI_CMD_HOLD_MODE,
15883aacedeSHasso Tepper 	  4,  0x02, -1 },
15983aacedeSHasso Tepper 	{ HCI_CMD_SNIFF_MODE,
16083aacedeSHasso Tepper 	  4,  0x04, -1 },
16183aacedeSHasso Tepper 	{ HCI_CMD_EXIT_SNIFF_MODE,
16283aacedeSHasso Tepper 	  4,  0x08, -1 },
16383aacedeSHasso Tepper 	{ HCI_CMD_PARK_MODE,
16483aacedeSHasso Tepper 	  4,  0x10, -1 },
16583aacedeSHasso Tepper 	{ HCI_CMD_EXIT_PARK_MODE,
16683aacedeSHasso Tepper 	  4,  0x20, -1 },
16783aacedeSHasso Tepper 	{ HCI_CMD_QOS_SETUP,
16883aacedeSHasso Tepper 	  4,  0x40, -1 },
16983aacedeSHasso Tepper 	{ HCI_CMD_ROLE_DISCOVERY,
17083aacedeSHasso Tepper 	  4,  0x80, sizeof(hci_role_discovery_cp) },
17183aacedeSHasso Tepper 	{ HCI_CMD_SWITCH_ROLE,
17283aacedeSHasso Tepper 	  5,  0x01, -1 },
17383aacedeSHasso Tepper 	{ HCI_CMD_READ_LINK_POLICY_SETTINGS,
17483aacedeSHasso Tepper 	  5,  0x02, sizeof(hci_read_link_policy_settings_cp) },
17583aacedeSHasso Tepper 	{ HCI_CMD_WRITE_LINK_POLICY_SETTINGS,
17683aacedeSHasso Tepper 	  5,  0x04, -1 },
17783aacedeSHasso Tepper 	{ HCI_CMD_READ_DEFAULT_LINK_POLICY_SETTINGS,
17883aacedeSHasso Tepper 	  5,  0x08, 0 },
17983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_DEFAULT_LINK_POLICY_SETTINGS,
18083aacedeSHasso Tepper 	  5,  0x10, -1 },
18183aacedeSHasso Tepper 	{ HCI_CMD_FLOW_SPECIFICATION,
18283aacedeSHasso Tepper 	  5,  0x20, -1 },
18383aacedeSHasso Tepper 	{ HCI_CMD_SET_EVENT_MASK,
18483aacedeSHasso Tepper 	  5,  0x40, -1 },
18583aacedeSHasso Tepper 	{ HCI_CMD_RESET,
18683aacedeSHasso Tepper 	  5,  0x80, -1 },
18783aacedeSHasso Tepper 	{ HCI_CMD_SET_EVENT_FILTER,
18883aacedeSHasso Tepper 	  6,  0x01, -1 },
18983aacedeSHasso Tepper 	{ HCI_CMD_FLUSH,
19083aacedeSHasso Tepper 	  6,  0x02, -1 },
19183aacedeSHasso Tepper 	{ HCI_CMD_READ_PIN_TYPE,
19283aacedeSHasso Tepper 	  6,  0x04, 0 },
19383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PIN_TYPE,
19483aacedeSHasso Tepper 	  6,  0x08, -1 },
19583aacedeSHasso Tepper 	{ HCI_CMD_CREATE_NEW_UNIT_KEY,
19683aacedeSHasso Tepper 	  6,  0x10, -1 },
19783aacedeSHasso Tepper 	{ HCI_CMD_READ_STORED_LINK_KEY,
19883aacedeSHasso Tepper 	  6,  0x20, -1 },
19983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_STORED_LINK_KEY,
20083aacedeSHasso Tepper 	  6,  0x40, -1 },
20183aacedeSHasso Tepper 	{ HCI_CMD_DELETE_STORED_LINK_KEY,
20283aacedeSHasso Tepper 	  6,  0x80, -1 },
20383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_LOCAL_NAME,
20483aacedeSHasso Tepper 	  7,  0x01, -1 },
20583aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_NAME,
20683aacedeSHasso Tepper 	  7,  0x02, 0 },
20783aacedeSHasso Tepper 	{ HCI_CMD_READ_CON_ACCEPT_TIMEOUT,
20883aacedeSHasso Tepper 	  7,  0x04, 0 },
20983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_CON_ACCEPT_TIMEOUT,
21083aacedeSHasso Tepper 	  7,  0x08, -1 },
21183aacedeSHasso Tepper 	{ HCI_CMD_READ_PAGE_TIMEOUT,
21283aacedeSHasso Tepper 	  7,  0x10, 0 },
21383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PAGE_TIMEOUT,
21483aacedeSHasso Tepper 	  7,  0x20, -1 },
21583aacedeSHasso Tepper 	{ HCI_CMD_READ_SCAN_ENABLE,
21683aacedeSHasso Tepper 	  7,  0x40, 0 },
21783aacedeSHasso Tepper 	{ HCI_CMD_WRITE_SCAN_ENABLE,
21883aacedeSHasso Tepper 	  7,  0x80, -1 },
21983aacedeSHasso Tepper 	{ HCI_CMD_READ_PAGE_SCAN_ACTIVITY,
22083aacedeSHasso Tepper 	  8,  0x01, 0 },
22183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PAGE_SCAN_ACTIVITY,
22283aacedeSHasso Tepper 	  8,  0x02, -1 },
22383aacedeSHasso Tepper 	{ HCI_CMD_READ_INQUIRY_SCAN_ACTIVITY,
22483aacedeSHasso Tepper 	  8,  0x04, 0 },
22583aacedeSHasso Tepper 	{ HCI_CMD_WRITE_INQUIRY_SCAN_ACTIVITY,
22683aacedeSHasso Tepper 	  8,  0x08, -1 },
22783aacedeSHasso Tepper 	{ HCI_CMD_READ_AUTH_ENABLE,
22883aacedeSHasso Tepper 	  8,  0x10, 0 },
22983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_AUTH_ENABLE,
23083aacedeSHasso Tepper 	  8,  0x20, -1 },
23183aacedeSHasso Tepper 	{ HCI_CMD_READ_ENCRYPTION_MODE,
23283aacedeSHasso Tepper 	  8,  0x40, 0 },
23383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_ENCRYPTION_MODE,
23483aacedeSHasso Tepper 	  8,  0x80, -1 },
23583aacedeSHasso Tepper 	{ HCI_CMD_READ_UNIT_CLASS,
23683aacedeSHasso Tepper 	  9,  0x01, 0 },
23783aacedeSHasso Tepper 	{ HCI_CMD_WRITE_UNIT_CLASS,
23883aacedeSHasso Tepper 	  9,  0x02, -1 },
23983aacedeSHasso Tepper 	{ HCI_CMD_READ_VOICE_SETTING,
24083aacedeSHasso Tepper 	  9,  0x04, 0 },
24183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_VOICE_SETTING,
24283aacedeSHasso Tepper 	  9,  0x08, -1 },
24383aacedeSHasso Tepper 	{ HCI_CMD_READ_AUTO_FLUSH_TIMEOUT,
24483aacedeSHasso Tepper 	  9,  0x10, sizeof(hci_read_auto_flush_timeout_cp) },
24583aacedeSHasso Tepper 	{ HCI_CMD_WRITE_AUTO_FLUSH_TIMEOUT,
24683aacedeSHasso Tepper 	  9,  0x20, -1 },
24783aacedeSHasso Tepper 	{ HCI_CMD_READ_NUM_BROADCAST_RETRANS,
24883aacedeSHasso Tepper 	  9,  0x40, 0 },
24983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_NUM_BROADCAST_RETRANS,
25083aacedeSHasso Tepper 	  9,  0x80, -1 },
25183aacedeSHasso Tepper 	{ HCI_CMD_READ_HOLD_MODE_ACTIVITY,
25283aacedeSHasso Tepper 	  10, 0x01, 0 },
25383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_HOLD_MODE_ACTIVITY,
25483aacedeSHasso Tepper 	  10, 0x02, -1 },
25583aacedeSHasso Tepper 	{ HCI_CMD_READ_XMIT_LEVEL,
25683aacedeSHasso Tepper 	  10, 0x04, sizeof(hci_read_xmit_level_cp) },
25783aacedeSHasso Tepper 	{ HCI_CMD_READ_SCO_FLOW_CONTROL,
25883aacedeSHasso Tepper 	  10, 0x08, 0 },
25983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_SCO_FLOW_CONTROL,
26083aacedeSHasso Tepper 	  10, 0x10, -1 },
26183aacedeSHasso Tepper 	{ HCI_CMD_HC2H_FLOW_CONTROL,
26283aacedeSHasso Tepper 	  10, 0x20, -1 },
26383aacedeSHasso Tepper 	{ HCI_CMD_HOST_BUFFER_SIZE,
26483aacedeSHasso Tepper 	  10, 0x40, -1 },
26583aacedeSHasso Tepper 	{ HCI_CMD_HOST_NUM_COMPL_PKTS,
26683aacedeSHasso Tepper 	  10, 0x80, -1 },
26783aacedeSHasso Tepper 	{ HCI_CMD_READ_LINK_SUPERVISION_TIMEOUT,
26883aacedeSHasso Tepper 	  11, 0x01, sizeof(hci_read_link_supervision_timeout_cp) },
26983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_LINK_SUPERVISION_TIMEOUT,
27083aacedeSHasso Tepper 	  11, 0x02, -1 },
27183aacedeSHasso Tepper 	{ HCI_CMD_READ_NUM_SUPPORTED_IAC,
27283aacedeSHasso Tepper 	  11, 0x04, 0 },
27383aacedeSHasso Tepper 	{ HCI_CMD_READ_IAC_LAP,
27483aacedeSHasso Tepper 	  11, 0x08, 0 },
27583aacedeSHasso Tepper 	{ HCI_CMD_WRITE_IAC_LAP,
27683aacedeSHasso Tepper 	  11, 0x10, -1 },
27783aacedeSHasso Tepper 	{ HCI_CMD_READ_PAGE_SCAN_PERIOD,
27883aacedeSHasso Tepper 	  11, 0x20, 0 },
27983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PAGE_SCAN_PERIOD,
28083aacedeSHasso Tepper 	  11, 0x40, -1 },
28183aacedeSHasso Tepper 	{ HCI_CMD_READ_PAGE_SCAN,
28283aacedeSHasso Tepper 	  11, 0x80, 0 },
28383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PAGE_SCAN,
28483aacedeSHasso Tepper 	  12, 0x01, -1 },
28583aacedeSHasso Tepper 	{ HCI_CMD_SET_AFH_CLASSIFICATION,
28683aacedeSHasso Tepper 	  12, 0x02, -1 },
28783aacedeSHasso Tepper 	{ HCI_CMD_READ_INQUIRY_SCAN_TYPE,
28883aacedeSHasso Tepper 	  12, 0x10, 0 },
28983aacedeSHasso Tepper 	{ HCI_CMD_WRITE_INQUIRY_SCAN_TYPE,
29083aacedeSHasso Tepper 	  12, 0x20, -1 },
29183aacedeSHasso Tepper 	{ HCI_CMD_READ_INQUIRY_MODE,
29283aacedeSHasso Tepper 	  12, 0x40, 0 },
29383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_INQUIRY_MODE,
29483aacedeSHasso Tepper 	  12, 0x80, -1 },
29583aacedeSHasso Tepper 	{ HCI_CMD_READ_PAGE_SCAN_TYPE,
29683aacedeSHasso Tepper 	  13, 0x01, 0 },
29783aacedeSHasso Tepper 	{ HCI_CMD_WRITE_PAGE_SCAN_TYPE,
29883aacedeSHasso Tepper 	  13, 0x02, -1 },
29983aacedeSHasso Tepper 	{ HCI_CMD_READ_AFH_ASSESSMENT,
30083aacedeSHasso Tepper 	  13, 0x04, 0 },
30183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_AFH_ASSESSMENT,
30283aacedeSHasso Tepper 	  13, 0x08, -1 },
30383aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_VER,
30483aacedeSHasso Tepper 	  14, 0x08, 0 },
30583aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_COMMANDS,
30683aacedeSHasso Tepper 	  14, 0x10, 0 },
30783aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_FEATURES,
30883aacedeSHasso Tepper 	  14, 0x20, 0 },
30983aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_EXTENDED_FEATURES,
31083aacedeSHasso Tepper 	  14, 0x40, sizeof(hci_read_local_extended_features_cp) },
31183aacedeSHasso Tepper 	{ HCI_CMD_READ_BUFFER_SIZE,
31283aacedeSHasso Tepper 	  14, 0x80, 0 },
31383aacedeSHasso Tepper 	{ HCI_CMD_READ_COUNTRY_CODE,
31483aacedeSHasso Tepper 	  15, 0x01, 0 },
31583aacedeSHasso Tepper 	{ HCI_CMD_READ_BDADDR,
31683aacedeSHasso Tepper 	  15, 0x02, 0 },
31783aacedeSHasso Tepper 	{ HCI_CMD_READ_FAILED_CONTACT_CNTR,
31883aacedeSHasso Tepper 	  15, 0x04, sizeof(hci_read_failed_contact_cntr_cp) },
31983aacedeSHasso Tepper 	{ HCI_CMD_RESET_FAILED_CONTACT_CNTR,
32083aacedeSHasso Tepper 	  15, 0x08, -1 },
32183aacedeSHasso Tepper 	{ HCI_CMD_READ_LINK_QUALITY,
32283aacedeSHasso Tepper 	  15, 0x10, sizeof(hci_read_link_quality_cp) },
32383aacedeSHasso Tepper 	{ HCI_CMD_READ_RSSI,
32483aacedeSHasso Tepper 	  15, 0x20, sizeof(hci_read_rssi_cp) },
32583aacedeSHasso Tepper 	{ HCI_CMD_READ_AFH_CHANNEL_MAP,
32683aacedeSHasso Tepper 	  15, 0x40, sizeof(hci_read_afh_channel_map_cp) },
32783aacedeSHasso Tepper 	{ HCI_CMD_READ_CLOCK,
32883aacedeSHasso Tepper 	  15, 0x80, sizeof(hci_read_clock_cp) },
32983aacedeSHasso Tepper 	{ HCI_CMD_READ_LOOPBACK_MODE,
33083aacedeSHasso Tepper 	  16, 0x01, 0 },
33183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_LOOPBACK_MODE,
33283aacedeSHasso Tepper 	  16, 0x02, -1 },
33383aacedeSHasso Tepper 	{ HCI_CMD_ENABLE_UNIT_UNDER_TEST,
33483aacedeSHasso Tepper 	  16, 0x04, -1 },
33583aacedeSHasso Tepper 	{ HCI_CMD_SETUP_SCO_CON,
33683aacedeSHasso Tepper 	  16, 0x08, -1 },
33783aacedeSHasso Tepper 	{ HCI_CMD_ACCEPT_SCO_CON_REQ,
33883aacedeSHasso Tepper 	  16, 0x10, -1 },
33983aacedeSHasso Tepper 	{ HCI_CMD_REJECT_SCO_CON_REQ,
34083aacedeSHasso Tepper 	  16, 0x20, -1 },
34183aacedeSHasso Tepper 	{ HCI_CMD_READ_EXTENDED_INQUIRY_RSP,
34283aacedeSHasso Tepper 	  17, 0x01, 0 },
34383aacedeSHasso Tepper 	{ HCI_CMD_WRITE_EXTENDED_INQUIRY_RSP,
34483aacedeSHasso Tepper 	  17, 0x02, -1 },
34583aacedeSHasso Tepper 	{ HCI_CMD_REFRESH_ENCRYPTION_KEY,
34683aacedeSHasso Tepper 	  17, 0x04, -1 },
34783aacedeSHasso Tepper 	{ HCI_CMD_SNIFF_SUBRATING,
34883aacedeSHasso Tepper 	  17, 0x10, -1 },
34983aacedeSHasso Tepper 	{ HCI_CMD_READ_SIMPLE_PAIRING_MODE,
35083aacedeSHasso Tepper 	  17, 0x20, 0 },
35183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_SIMPLE_PAIRING_MODE,
35283aacedeSHasso Tepper 	  17, 0x40, -1 },
35383aacedeSHasso Tepper 	{ HCI_CMD_READ_LOCAL_OOB_DATA,
35483aacedeSHasso Tepper 	  17, 0x80, -1 },
35583aacedeSHasso Tepper 	{ HCI_CMD_READ_INQUIRY_RSP_XMIT_POWER,
35683aacedeSHasso Tepper 	  18, 0x01, 0 },
35783aacedeSHasso Tepper 	{ HCI_CMD_WRITE_INQUIRY_RSP_XMIT_POWER,
35883aacedeSHasso Tepper 	  18, 0x02, -1 },
35983aacedeSHasso Tepper 	{ HCI_CMD_READ_DEFAULT_ERRDATA_REPORTING,
36083aacedeSHasso Tepper 	  18, 0x04, 0 },
36183aacedeSHasso Tepper 	{ HCI_CMD_WRITE_DEFAULT_ERRDATA_REPORTING,
36283aacedeSHasso Tepper 	  18, 0x08, -1 },
36383aacedeSHasso Tepper 	{ HCI_CMD_IO_CAPABILITY_REP,
36483aacedeSHasso Tepper 	  18, 0x80, -1 },
36583aacedeSHasso Tepper 	{ HCI_CMD_USER_CONFIRM_REP,
36683aacedeSHasso Tepper 	  19, 0x01, -1 },
36783aacedeSHasso Tepper 	{ HCI_CMD_USER_CONFIRM_NEG_REP,
36883aacedeSHasso Tepper 	  19, 0x02, -1 },
36983aacedeSHasso Tepper 	{ HCI_CMD_USER_PASSKEY_REP,
37083aacedeSHasso Tepper 	  19, 0x04, -1 },
37183aacedeSHasso Tepper 	{ HCI_CMD_USER_PASSKEY_NEG_REP,
37283aacedeSHasso Tepper 	  19, 0x08, -1 },
37383aacedeSHasso Tepper 	{ HCI_CMD_OOB_DATA_REP,
37483aacedeSHasso Tepper 	  19, 0x10, -1 },
37583aacedeSHasso Tepper 	{ HCI_CMD_WRITE_SIMPLE_PAIRING_DEBUG_MODE,
37683aacedeSHasso Tepper 	  19, 0x20, -1 },
37783aacedeSHasso Tepper 	{ HCI_CMD_ENHANCED_FLUSH,
37883aacedeSHasso Tepper 	  19, 0x40, -1 },
37983aacedeSHasso Tepper 	{ HCI_CMD_OOB_DATA_NEG_REP,
38083aacedeSHasso Tepper 	  19, 0x80, -1 },
38183aacedeSHasso Tepper 	{ HCI_CMD_SEND_KEYPRESS_NOTIFICATION,
38283aacedeSHasso Tepper 	  20, 0x40, -1 },
38383aacedeSHasso Tepper 	{ HCI_CMD_IO_CAPABILITY_NEG_REP,
38483aacedeSHasso Tepper 	  20, 0x80, -1 },
38583aacedeSHasso Tepper };
38683aacedeSHasso Tepper 
3870a9108ebSHasso Tepper /*
3880a9108ebSHasso Tepper  * Security filter routines for unprivileged users.
3890a9108ebSHasso Tepper  *	Allow all but a few critical events, and only permit read commands.
39083aacedeSHasso Tepper  *	If a unit is given, verify the command is supported.
3910a9108ebSHasso Tepper  */
3920a9108ebSHasso Tepper 
3930a9108ebSHasso Tepper static int
hci_security_check_opcode(struct hci_unit * unit,uint16_t opcode)39483aacedeSHasso Tepper hci_security_check_opcode(struct hci_unit *unit, uint16_t opcode)
3950a9108ebSHasso Tepper {
39683aacedeSHasso Tepper 	int i;
3970a9108ebSHasso Tepper 
398c157ff7aSSascha Wildner 	for (i = 0 ; i < NELEM(hci_cmds); i++) {
39983aacedeSHasso Tepper 		if (opcode != hci_cmds[i].opcode)
40083aacedeSHasso Tepper 			continue;
4010a9108ebSHasso Tepper 
40283aacedeSHasso Tepper 		if (unit == NULL
40383aacedeSHasso Tepper 		    || (unit->hci_cmds[hci_cmds[i].offs] & hci_cmds[i].mask))
40483aacedeSHasso Tepper 			return hci_cmds[i].length;
4050a9108ebSHasso Tepper 
40683aacedeSHasso Tepper 		break;
4070a9108ebSHasso Tepper 	}
4080a9108ebSHasso Tepper 
40983aacedeSHasso Tepper 	return -1;
4100a9108ebSHasso Tepper }
4110a9108ebSHasso Tepper 
4120a9108ebSHasso Tepper static int
hci_security_check_event(uint8_t event)4130a9108ebSHasso Tepper hci_security_check_event(uint8_t event)
4140a9108ebSHasso Tepper {
4150a9108ebSHasso Tepper 
4160a9108ebSHasso Tepper 	switch (event) {
4170a9108ebSHasso Tepper 	case HCI_EVENT_RETURN_LINK_KEYS:
4180a9108ebSHasso Tepper 	case HCI_EVENT_LINK_KEY_NOTIFICATION:
41983aacedeSHasso Tepper 	case HCI_EVENT_USER_CONFIRM_REQ:
42083aacedeSHasso Tepper 	case HCI_EVENT_USER_PASSKEY_NOTIFICATION:
4210a9108ebSHasso Tepper 	case HCI_EVENT_VENDOR:
4220a9108ebSHasso Tepper 		return -1;	/* disallowed */
4230a9108ebSHasso Tepper 	}
4240a9108ebSHasso Tepper 
4250a9108ebSHasso Tepper 	return 0;	/* ok */
4260a9108ebSHasso Tepper }
4270a9108ebSHasso Tepper 
4280a9108ebSHasso Tepper /*
4290a9108ebSHasso Tepper  * When command packet reaches the device, we can drop
4300a9108ebSHasso Tepper  * it from the socket buffer (called from hci_output_acl)
4310a9108ebSHasso Tepper  */
4320a9108ebSHasso Tepper void
hci_drop(void * arg)4330a9108ebSHasso Tepper hci_drop(void *arg)
4340a9108ebSHasso Tepper {
4350a9108ebSHasso Tepper 	struct socket *so = arg;
4360a9108ebSHasso Tepper 
4370a9108ebSHasso Tepper 	sbdroprecord(&so->so_snd.sb);
4380a9108ebSHasso Tepper 	sowwakeup(so);
4390a9108ebSHasso Tepper }
4400a9108ebSHasso Tepper 
4410a9108ebSHasso Tepper /*
4420a9108ebSHasso Tepper  * HCI socket is going away and has some pending packets. We let them
4430a9108ebSHasso Tepper  * go by design, but remove the context pointer as it will be invalid
4440a9108ebSHasso Tepper  * and we no longer need to be notified.
4450a9108ebSHasso Tepper  */
4460a9108ebSHasso Tepper static void
hci_cmdwait_flush(struct socket * so)4470a9108ebSHasso Tepper hci_cmdwait_flush(struct socket *so)
4480a9108ebSHasso Tepper {
4490a9108ebSHasso Tepper 	struct hci_unit *unit;
4500a9108ebSHasso Tepper 	struct socket *ctx;
4510a9108ebSHasso Tepper 	struct mbuf *m;
4520a9108ebSHasso Tepper 
4530a9108ebSHasso Tepper 	DPRINTF("flushing %p\n", so);
4540a9108ebSHasso Tepper 
4550a9108ebSHasso Tepper 	TAILQ_FOREACH(unit, &hci_unit_list, hci_next) {
4560a9108ebSHasso Tepper 		IF_POLL(&unit->hci_cmdwait, m);
4570a9108ebSHasso Tepper 		while (m != NULL) {
4580a9108ebSHasso Tepper 			ctx = M_GETCTX(m, struct socket *);
4590a9108ebSHasso Tepper 			if (ctx == so)
4600a9108ebSHasso Tepper 				M_SETCTX(m, NULL);
4610a9108ebSHasso Tepper 
4620a9108ebSHasso Tepper 			m = m->m_nextpkt;
4630a9108ebSHasso Tepper 		}
4640a9108ebSHasso Tepper 	}
4650a9108ebSHasso Tepper }
4660a9108ebSHasso Tepper 
4670a9108ebSHasso Tepper /*
4680a9108ebSHasso Tepper  * HCI send packet
4690a9108ebSHasso Tepper  *     This came from userland, so check it out.
4700a9108ebSHasso Tepper  */
4710a9108ebSHasso Tepper static int
hci_send(struct hci_pcb * pcb,struct mbuf * m,bdaddr_t * addr)4720a9108ebSHasso Tepper hci_send(struct hci_pcb *pcb, struct mbuf *m, bdaddr_t *addr)
4730a9108ebSHasso Tepper {
4740a9108ebSHasso Tepper 	struct hci_unit *unit;
4750a9108ebSHasso Tepper 	struct mbuf *m0;
4760a9108ebSHasso Tepper 	hci_cmd_hdr_t hdr;
4770a9108ebSHasso Tepper 	int err;
4780a9108ebSHasso Tepper 
4790a9108ebSHasso Tepper 	KKASSERT(m != NULL);
4800a9108ebSHasso Tepper 	KKASSERT(addr != NULL);
4810a9108ebSHasso Tepper 
4820a9108ebSHasso Tepper 	/* wants at least a header to start with */
4830a9108ebSHasso Tepper 	if (m->m_pkthdr.len < sizeof(hdr)) {
4840a9108ebSHasso Tepper 		err = EMSGSIZE;
4850a9108ebSHasso Tepper 		goto bad;
4860a9108ebSHasso Tepper 	}
48705d02a38SAaron LI 	m_copydata(m, 0, sizeof(hdr), &hdr);
48883aacedeSHasso Tepper 	hdr.opcode = letoh16(hdr.opcode);
4890a9108ebSHasso Tepper 
4900a9108ebSHasso Tepper 	/* only allows CMD packets to be sent */
4910a9108ebSHasso Tepper 	if (hdr.type != HCI_CMD_PKT) {
4920a9108ebSHasso Tepper 		err = EINVAL;
4930a9108ebSHasso Tepper 		goto bad;
4940a9108ebSHasso Tepper 	}
4950a9108ebSHasso Tepper 
4960a9108ebSHasso Tepper 	/* validates packet length */
4970a9108ebSHasso Tepper 	if (m->m_pkthdr.len != sizeof(hdr) + hdr.length) {
4980a9108ebSHasso Tepper 		err = EMSGSIZE;
4990a9108ebSHasso Tepper 		goto bad;
5000a9108ebSHasso Tepper 	}
5010a9108ebSHasso Tepper 
5020a9108ebSHasso Tepper 	/* finds destination */
5030a9108ebSHasso Tepper 	unit = hci_unit_lookup(addr);
5040a9108ebSHasso Tepper 	if (unit == NULL) {
5050a9108ebSHasso Tepper 		err = ENETDOWN;
5060a9108ebSHasso Tepper 		goto bad;
5070a9108ebSHasso Tepper 	}
5080a9108ebSHasso Tepper 
50983aacedeSHasso Tepper 	/* security checks for unprivileged users */
51083aacedeSHasso Tepper 	if ((pcb->hp_flags & HCI_PRIVILEGED) == 0
51183aacedeSHasso Tepper 	    && hci_security_check_opcode(unit, hdr.opcode) != hdr.length) {
51283aacedeSHasso Tepper 		err = EPERM;
51383aacedeSHasso Tepper 		goto bad;
51483aacedeSHasso Tepper 	}
51583aacedeSHasso Tepper 
5160a9108ebSHasso Tepper 	/* makes a copy for precious to keep */
517b5523eacSSascha Wildner 	m0 = m_copym(m, 0, M_COPYALL, M_NOWAIT);
5180a9108ebSHasso Tepper 	if (m0 == NULL) {
5190a9108ebSHasso Tepper 		err = ENOMEM;
5200a9108ebSHasso Tepper 		goto bad;
5210a9108ebSHasso Tepper 	}
5220a9108ebSHasso Tepper 	sbappendrecord(&pcb->hp_socket->so_snd.sb, m0);
5230a9108ebSHasso Tepper 	M_SETCTX(m, pcb->hp_socket);	/* enable drop callback */
5240a9108ebSHasso Tepper 
52583aacedeSHasso Tepper 	DPRINTFN(2, "(%s) opcode (%03x|%04x)\n",
52683aacedeSHasso Tepper 		device_get_nameunit(unit->hci_dev),
52783aacedeSHasso Tepper 		HCI_OGF(hdr.opcode), HCI_OCF(hdr.opcode));
5280a9108ebSHasso Tepper 
5290a9108ebSHasso Tepper 	/* Sendss it */
53083aacedeSHasso Tepper 	if (unit->hci_num_cmd_pkts == 0)
5310a9108ebSHasso Tepper 		IF_ENQUEUE(&unit->hci_cmdwait, m);
53283aacedeSHasso Tepper 	else
5330a9108ebSHasso Tepper 		hci_output_cmd(unit, m);
5340a9108ebSHasso Tepper 
5350a9108ebSHasso Tepper 	return 0;
5360a9108ebSHasso Tepper 
5370a9108ebSHasso Tepper bad:
5380a9108ebSHasso Tepper 	DPRINTF("packet (%d bytes) not sent (error %d)\n",
5390a9108ebSHasso Tepper 	    m->m_pkthdr.len, err);
5400a9108ebSHasso Tepper 	if (m) m_freem(m);
5410a9108ebSHasso Tepper 	return err;
5420a9108ebSHasso Tepper }
5430a9108ebSHasso Tepper 
5440a9108ebSHasso Tepper /*
5450a9108ebSHasso Tepper  * Implementation of usrreqs.
5466cef7136SMatthew Dillon  *
5476cef7136SMatthew Dillon  * NOTE: (so) is referenced from soabort*() and netmsg_pru_abort()
5486cef7136SMatthew Dillon  *	 will sofree() it when we return.
5490a9108ebSHasso Tepper  */
550002c1265SMatthew Dillon static void
hci_sabort(netmsg_t msg)551002c1265SMatthew Dillon hci_sabort(netmsg_t msg)
5520a9108ebSHasso Tepper {
5530a9108ebSHasso Tepper 	/* struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;	*/
5540a9108ebSHasso Tepper 
555002c1265SMatthew Dillon 	soisdisconnected(msg->abort.base.nm_so);
556002c1265SMatthew Dillon 	hci_sdetach(msg);
557002c1265SMatthew Dillon 	/* msg now invalid */
5580a9108ebSHasso Tepper }
5590a9108ebSHasso Tepper 
560002c1265SMatthew Dillon static void
hci_sdetach(netmsg_t msg)561002c1265SMatthew Dillon hci_sdetach(netmsg_t msg)
5620a9108ebSHasso Tepper {
563002c1265SMatthew Dillon 	struct socket *so = msg->detach.base.nm_so;
5640a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
565002c1265SMatthew Dillon 	int error;
5660a9108ebSHasso Tepper 
567002c1265SMatthew Dillon 	if (pcb == NULL) {
568002c1265SMatthew Dillon 		error = EINVAL;
569002c1265SMatthew Dillon 	} else {
5700a9108ebSHasso Tepper 		if (so->so_snd.ssb_mb != NULL)
5710a9108ebSHasso Tepper 			hci_cmdwait_flush(so);
5720a9108ebSHasso Tepper 
5730a9108ebSHasso Tepper 		so->so_pcb = NULL;
5746cef7136SMatthew Dillon 		sofree(so);		/* remove pcb ref */
5756cef7136SMatthew Dillon 
5760a9108ebSHasso Tepper 		LIST_REMOVE(pcb, hp_next);
5770a9108ebSHasso Tepper 		kfree(pcb, M_PCB);
578002c1265SMatthew Dillon 		error = 0;
579002c1265SMatthew Dillon 	}
580002c1265SMatthew Dillon 	lwkt_replymsg(&msg->detach.base.lmsg, error);
5810a9108ebSHasso Tepper }
5820a9108ebSHasso Tepper 
583002c1265SMatthew Dillon static void
hci_sdisconnect(netmsg_t msg)584002c1265SMatthew Dillon hci_sdisconnect(netmsg_t msg)
5850a9108ebSHasso Tepper {
586002c1265SMatthew Dillon 	struct socket *so = msg->disconnect.base.nm_so;
5870a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
588002c1265SMatthew Dillon 	int error;
5890a9108ebSHasso Tepper 
590002c1265SMatthew Dillon 	if (pcb) {
5910a9108ebSHasso Tepper 		bdaddr_copy(&pcb->hp_raddr, BDADDR_ANY);
5920a9108ebSHasso Tepper 		/*
5930a9108ebSHasso Tepper 		 * XXX We cannot call soisdisconnected() here, as it sets
5940a9108ebSHasso Tepper 		 * SS_CANTRCVMORE and SS_CANTSENDMORE. The problem is that
595002c1265SMatthew Dillon 		 * soisconnected() does not clear these and if you try to
596002c1265SMatthew Dillon 		 * reconnect this socket (which is permitted) you get a
597002c1265SMatthew Dillon 		 * broken pipe when you try to write any data.
5980a9108ebSHasso Tepper 		 */
5996cef7136SMatthew Dillon 		soclrstate(so, SS_ISCONNECTED);
600002c1265SMatthew Dillon 		error = 0;
601002c1265SMatthew Dillon 	} else {
602002c1265SMatthew Dillon 		error = EINVAL;
603002c1265SMatthew Dillon 	}
604002c1265SMatthew Dillon 	lwkt_replymsg(&msg->disconnect.base.lmsg, error);
6050a9108ebSHasso Tepper }
6060a9108ebSHasso Tepper 
607002c1265SMatthew Dillon static void
hci_scontrol(netmsg_t msg)608002c1265SMatthew Dillon hci_scontrol(netmsg_t msg)
6090a9108ebSHasso Tepper {
610002c1265SMatthew Dillon 	int error;
611002c1265SMatthew Dillon 
612002c1265SMatthew Dillon 	error = hci_ioctl(msg->control.nm_cmd,
613002c1265SMatthew Dillon 			  (void *)msg->control.nm_data,
614002c1265SMatthew Dillon 			  NULL);
615002c1265SMatthew Dillon 	lwkt_replymsg(&msg->control.base.lmsg, error);
6160a9108ebSHasso Tepper }
6170a9108ebSHasso Tepper 
618002c1265SMatthew Dillon static void
hci_sattach(netmsg_t msg)619002c1265SMatthew Dillon hci_sattach(netmsg_t msg)
6200a9108ebSHasso Tepper {
621002c1265SMatthew Dillon 	struct socket *so = msg->attach.base.nm_so;
6220a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
623002c1265SMatthew Dillon 	int error;
6240a9108ebSHasso Tepper 
625002c1265SMatthew Dillon 	if (pcb) {
626002c1265SMatthew Dillon 		error = EINVAL;
627002c1265SMatthew Dillon 		goto out;
628002c1265SMatthew Dillon 	}
6290a9108ebSHasso Tepper 
630002c1265SMatthew Dillon 	error = soreserve(so, hci_sendspace, hci_recvspace,NULL);
631002c1265SMatthew Dillon 	if (error)
632002c1265SMatthew Dillon 		goto out;
6330a9108ebSHasso Tepper 
6340a9108ebSHasso Tepper 	pcb = kmalloc(sizeof *pcb, M_PCB, M_NOWAIT | M_ZERO);
635002c1265SMatthew Dillon 	if (pcb == NULL) {
636002c1265SMatthew Dillon 		error = ENOMEM;
637002c1265SMatthew Dillon 		goto out;
638002c1265SMatthew Dillon 	}
6390a9108ebSHasso Tepper 
6406cef7136SMatthew Dillon 	soreference(so);
6410a9108ebSHasso Tepper 	so->so_pcb = pcb;
6420a9108ebSHasso Tepper 	pcb->hp_socket = so;
6430a9108ebSHasso Tepper 
6442b3f93eaSMatthew Dillon 	if (curproc == NULL || caps_priv_check_self(SYSCAP_RESTRICTEDROOT) == 0)
6450a9108ebSHasso Tepper 		pcb->hp_flags |= HCI_PRIVILEGED;
6460a9108ebSHasso Tepper 
6470a9108ebSHasso Tepper 	/*
6480a9108ebSHasso Tepper 	 * Set default user filter. By default, socket only passes
6490a9108ebSHasso Tepper 	 * Command_Complete and Command_Status Events.
6500a9108ebSHasso Tepper 	 */
6510a9108ebSHasso Tepper 	hci_filter_set(HCI_EVENT_COMMAND_COMPL, &pcb->hp_efilter);
6520a9108ebSHasso Tepper 	hci_filter_set(HCI_EVENT_COMMAND_STATUS, &pcb->hp_efilter);
6530a9108ebSHasso Tepper 	hci_filter_set(HCI_EVENT_PKT, &pcb->hp_pfilter);
6540a9108ebSHasso Tepper 
6550a9108ebSHasso Tepper 	crit_enter();
6560a9108ebSHasso Tepper 	LIST_INSERT_HEAD(&hci_pcb, pcb, hp_next);
6570a9108ebSHasso Tepper 	crit_exit();
658002c1265SMatthew Dillon 	error = 0;
659002c1265SMatthew Dillon out:
660002c1265SMatthew Dillon 	lwkt_replymsg(&msg->attach.base.lmsg, error);
6610a9108ebSHasso Tepper }
6620a9108ebSHasso Tepper 
663002c1265SMatthew Dillon static void
hci_sbind(netmsg_t msg)664002c1265SMatthew Dillon hci_sbind(netmsg_t msg)
6650a9108ebSHasso Tepper {
666002c1265SMatthew Dillon 	struct socket *so = msg->bind.base.nm_so;
667002c1265SMatthew Dillon 	struct sockaddr *nam = msg->bind.nm_nam;
6680a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
6690a9108ebSHasso Tepper 	struct sockaddr_bt *sa;
670002c1265SMatthew Dillon 	int error;
6710a9108ebSHasso Tepper 
6720a9108ebSHasso Tepper 	KKASSERT(nam != NULL);
6730a9108ebSHasso Tepper 	sa = (struct sockaddr_bt *)nam;
6740a9108ebSHasso Tepper 
675002c1265SMatthew Dillon 	if (sa->bt_len != sizeof(struct sockaddr_bt)) {
676002c1265SMatthew Dillon 		error = EINVAL;
677002c1265SMatthew Dillon 		goto out;
678002c1265SMatthew Dillon 	}
6790a9108ebSHasso Tepper 
680002c1265SMatthew Dillon 	if (sa->bt_family != AF_BLUETOOTH) {
681002c1265SMatthew Dillon 		error = EAFNOSUPPORT;
682002c1265SMatthew Dillon 		goto out;
683002c1265SMatthew Dillon 	}
6840a9108ebSHasso Tepper 
6850a9108ebSHasso Tepper 	bdaddr_copy(&pcb->hp_laddr, &sa->bt_bdaddr);
6860a9108ebSHasso Tepper 
6870a9108ebSHasso Tepper 	if (bdaddr_any(&sa->bt_bdaddr))
6880a9108ebSHasso Tepper 		pcb->hp_flags |= HCI_PROMISCUOUS;
6890a9108ebSHasso Tepper 	else
6900a9108ebSHasso Tepper 		pcb->hp_flags &= ~HCI_PROMISCUOUS;
691002c1265SMatthew Dillon 	error = 0;
692002c1265SMatthew Dillon out:
693002c1265SMatthew Dillon 	lwkt_replymsg(&msg->bind.base.lmsg, error);
6940a9108ebSHasso Tepper }
6950a9108ebSHasso Tepper 
696002c1265SMatthew Dillon static void
hci_sconnect(netmsg_t msg)697002c1265SMatthew Dillon hci_sconnect(netmsg_t msg)
6980a9108ebSHasso Tepper {
699002c1265SMatthew Dillon 	struct socket *so = msg->connect.base.nm_so;
700002c1265SMatthew Dillon 	struct sockaddr *nam = msg->connect.nm_nam;
7010a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
7020a9108ebSHasso Tepper 	struct sockaddr_bt *sa;
703002c1265SMatthew Dillon 	int error;
704002c1265SMatthew Dillon 
7050a9108ebSHasso Tepper 	KKASSERT(nam != NULL);
7060a9108ebSHasso Tepper 	sa = (struct sockaddr_bt *)nam;
7070a9108ebSHasso Tepper 
708002c1265SMatthew Dillon 	if (sa->bt_len != sizeof(struct sockaddr_bt)) {
709002c1265SMatthew Dillon 		error = EINVAL;
710002c1265SMatthew Dillon 		goto out;
7110a9108ebSHasso Tepper 	}
7120a9108ebSHasso Tepper 
713002c1265SMatthew Dillon 	if (sa->bt_family != AF_BLUETOOTH) {
714002c1265SMatthew Dillon 		error =  EAFNOSUPPORT;
715002c1265SMatthew Dillon 		goto out;
716002c1265SMatthew Dillon 	}
717002c1265SMatthew Dillon 
718002c1265SMatthew Dillon 	if (hci_unit_lookup(&sa->bt_bdaddr) == NULL) {
719002c1265SMatthew Dillon 		error = EADDRNOTAVAIL;
720002c1265SMatthew Dillon 		goto out;
721002c1265SMatthew Dillon 	}
722002c1265SMatthew Dillon 	bdaddr_copy(&pcb->hp_raddr, &sa->bt_bdaddr);
723002c1265SMatthew Dillon 	soisconnected(so);
724002c1265SMatthew Dillon 	error = 0;
725002c1265SMatthew Dillon out:
726002c1265SMatthew Dillon 	lwkt_replymsg(&msg->connect.base.lmsg, error);
727002c1265SMatthew Dillon }
728002c1265SMatthew Dillon 
729002c1265SMatthew Dillon static void
hci_speeraddr(netmsg_t msg)730002c1265SMatthew Dillon hci_speeraddr(netmsg_t msg)
7310a9108ebSHasso Tepper {
732002c1265SMatthew Dillon 	struct socket *so = msg->peeraddr.base.nm_so;
733002c1265SMatthew Dillon 	struct sockaddr **nam = msg->peeraddr.nm_nam;
7340a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
7350a9108ebSHasso Tepper 	struct sockaddr_bt *sa;
7360a9108ebSHasso Tepper 
7370a9108ebSHasso Tepper 	KKASSERT(nam != NULL);
7380a9108ebSHasso Tepper 	sa = (struct sockaddr_bt *)nam;
7390a9108ebSHasso Tepper 
7400a9108ebSHasso Tepper 	memset(sa, 0, sizeof(struct sockaddr_bt));
7410a9108ebSHasso Tepper 	sa->bt_len = sizeof(struct sockaddr_bt);
7420a9108ebSHasso Tepper 	sa->bt_family = AF_BLUETOOTH;
7430a9108ebSHasso Tepper 	bdaddr_copy(&sa->bt_bdaddr, &pcb->hp_raddr);
7440a9108ebSHasso Tepper 
745002c1265SMatthew Dillon 	lwkt_replymsg(&msg->connect.base.lmsg, 0);
7460a9108ebSHasso Tepper }
7470a9108ebSHasso Tepper 
748002c1265SMatthew Dillon static void
hci_ssockaddr(netmsg_t msg)749002c1265SMatthew Dillon hci_ssockaddr(netmsg_t msg)
7500a9108ebSHasso Tepper {
751002c1265SMatthew Dillon 	struct socket *so = msg->sockaddr.base.nm_so;
752002c1265SMatthew Dillon 	struct sockaddr **nam = msg->sockaddr.nm_nam;
7530a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
7540a9108ebSHasso Tepper 	struct sockaddr_bt *sa;
7550a9108ebSHasso Tepper 
7560a9108ebSHasso Tepper 	KKASSERT(nam != NULL);
7570a9108ebSHasso Tepper 	sa = (struct sockaddr_bt *)nam;
7580a9108ebSHasso Tepper 
7590a9108ebSHasso Tepper 	memset(sa, 0, sizeof(struct sockaddr_bt));
7600a9108ebSHasso Tepper 	sa->bt_len = sizeof(struct sockaddr_bt);
7610a9108ebSHasso Tepper 	sa->bt_family = AF_BLUETOOTH;
7620a9108ebSHasso Tepper 	bdaddr_copy(&sa->bt_bdaddr, &pcb->hp_laddr);
7630a9108ebSHasso Tepper 
764002c1265SMatthew Dillon 	lwkt_replymsg(&msg->connect.base.lmsg, 0);
7650a9108ebSHasso Tepper }
7660a9108ebSHasso Tepper 
767002c1265SMatthew Dillon static void
hci_sshutdown(netmsg_t msg)768002c1265SMatthew Dillon hci_sshutdown(netmsg_t msg)
7690a9108ebSHasso Tepper {
770002c1265SMatthew Dillon 	struct socket *so = msg->shutdown.base.nm_so;
771002c1265SMatthew Dillon 
7720a9108ebSHasso Tepper 	socantsendmore(so);
773002c1265SMatthew Dillon 	lwkt_replymsg(&msg->connect.base.lmsg, 0);
7740a9108ebSHasso Tepper }
7750a9108ebSHasso Tepper 
776002c1265SMatthew Dillon static void
hci_ssend(netmsg_t msg)777002c1265SMatthew Dillon hci_ssend(netmsg_t msg)
7780a9108ebSHasso Tepper {
779002c1265SMatthew Dillon 	struct socket *so = msg->send.base.nm_so;
780002c1265SMatthew Dillon 	struct mbuf *m = msg->send.nm_m;
781002c1265SMatthew Dillon 	struct sockaddr *addr = msg->send.nm_addr;
782002c1265SMatthew Dillon 	struct mbuf *control = msg->send.nm_control;
7830a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
7840a9108ebSHasso Tepper 	struct sockaddr_bt *sa;
785002c1265SMatthew Dillon 	int error;
7860a9108ebSHasso Tepper 
7870a9108ebSHasso Tepper 	sa = NULL;
7880a9108ebSHasso Tepper 	if (addr) {
7890a9108ebSHasso Tepper 		sa = (struct sockaddr_bt *)addr;
7900a9108ebSHasso Tepper 
7910a9108ebSHasso Tepper 		if (sa->bt_len != sizeof(struct sockaddr_bt)) {
792002c1265SMatthew Dillon 			error = EINVAL;
793002c1265SMatthew Dillon 			goto out;
7940a9108ebSHasso Tepper 		}
7950a9108ebSHasso Tepper 
7960a9108ebSHasso Tepper 		if (sa->bt_family != AF_BLUETOOTH) {
797002c1265SMatthew Dillon 			error = EAFNOSUPPORT;
798002c1265SMatthew Dillon 			goto out;
7990a9108ebSHasso Tepper 		}
8000a9108ebSHasso Tepper 	}
8010a9108ebSHasso Tepper 
802002c1265SMatthew Dillon 	/* have no use for this */
803002c1265SMatthew Dillon 	if (control) {
8040a9108ebSHasso Tepper 		m_freem(control);
805002c1265SMatthew Dillon 		control = NULL;
806002c1265SMatthew Dillon 	}
807002c1265SMatthew Dillon 	error = hci_send(pcb, m, (sa ? &sa->bt_bdaddr : &pcb->hp_raddr));
808002c1265SMatthew Dillon 	m = NULL;
8090a9108ebSHasso Tepper 
810002c1265SMatthew Dillon out:
811002c1265SMatthew Dillon 	if (m)
812002c1265SMatthew Dillon 		m_freem(m);
813002c1265SMatthew Dillon 	if (control)
814002c1265SMatthew Dillon 		m_freem(control);
815002c1265SMatthew Dillon 	lwkt_replymsg(&msg->send.base.lmsg, error);
8160a9108ebSHasso Tepper }
8170a9108ebSHasso Tepper 
8180a9108ebSHasso Tepper /*
8190a9108ebSHasso Tepper  * get/set socket options
8200a9108ebSHasso Tepper  */
821002c1265SMatthew Dillon void
hci_ctloutput(netmsg_t msg)822002c1265SMatthew Dillon hci_ctloutput(netmsg_t msg)
8230a9108ebSHasso Tepper {
824002c1265SMatthew Dillon 	struct socket *so = msg->ctloutput.base.nm_so;
825002c1265SMatthew Dillon 	struct sockopt *sopt = msg->ctloutput.nm_sopt;
8260a9108ebSHasso Tepper 	struct hci_pcb *pcb = (struct hci_pcb *)so->so_pcb;
8270a9108ebSHasso Tepper 	int idir = 0;
828002c1265SMatthew Dillon 	int error = 0;
8290a9108ebSHasso Tepper 
8300a9108ebSHasso Tepper #ifdef notyet			/* XXX */
8310a9108ebSHasso Tepper 	DPRINTFN(2, "req %s\n", prcorequests[req]);
8320a9108ebSHasso Tepper #endif
8330a9108ebSHasso Tepper 
834002c1265SMatthew Dillon 	if (pcb == NULL) {
835002c1265SMatthew Dillon 		error = EINVAL;
836002c1265SMatthew Dillon 		goto out;
837002c1265SMatthew Dillon 	}
8380a9108ebSHasso Tepper 
839002c1265SMatthew Dillon 	if (sopt->sopt_level != BTPROTO_HCI) {
840002c1265SMatthew Dillon 		error = ENOPROTOOPT;
841002c1265SMatthew Dillon 		goto out;
842002c1265SMatthew Dillon 	}
8430a9108ebSHasso Tepper 
8440a9108ebSHasso Tepper 	switch(sopt->sopt_dir) {
8450a9108ebSHasso Tepper 	case PRCO_GETOPT:
8460a9108ebSHasso Tepper 		switch (sopt->sopt_name) {
8470a9108ebSHasso Tepper 		case SO_HCI_EVT_FILTER:
848d82b71f8SAggelos Economopoulos 			soopt_from_kbuf(sopt, &pcb->hp_efilter,
8490a9108ebSHasso Tepper 			    sizeof(struct hci_filter));
8500a9108ebSHasso Tepper 			break;
8510a9108ebSHasso Tepper 
8520a9108ebSHasso Tepper 		case SO_HCI_PKT_FILTER:
853d82b71f8SAggelos Economopoulos                         soopt_from_kbuf(sopt, &pcb->hp_pfilter,
8540a9108ebSHasso Tepper 			    sizeof(struct hci_filter));
8550a9108ebSHasso Tepper 			break;
8560a9108ebSHasso Tepper 
8570a9108ebSHasso Tepper 		case SO_HCI_DIRECTION:
8580a9108ebSHasso Tepper 			if (pcb->hp_flags & HCI_DIRECTION)
8590a9108ebSHasso Tepper 				idir = 1;
8600a9108ebSHasso Tepper 			else
8610a9108ebSHasso Tepper 				idir = 0;
862d82b71f8SAggelos Economopoulos 			soopt_from_kbuf(sopt, &idir, sizeof(int));
8630a9108ebSHasso Tepper 			break;
8640a9108ebSHasso Tepper 
8650a9108ebSHasso Tepper 		default:
866002c1265SMatthew Dillon 			error = ENOPROTOOPT;
8670a9108ebSHasso Tepper 			break;
8680a9108ebSHasso Tepper 		}
8690a9108ebSHasso Tepper 		break;
8700a9108ebSHasso Tepper 
8710a9108ebSHasso Tepper 	case PRCO_SETOPT:
8720a9108ebSHasso Tepper 		switch (sopt->sopt_name) {
8730a9108ebSHasso Tepper 		case SO_HCI_EVT_FILTER:	/* set event filter */
874002c1265SMatthew Dillon 			error = soopt_to_kbuf(sopt, &pcb->hp_efilter,
8750a9108ebSHasso Tepper 			    sizeof(struct hci_filter),
8760a9108ebSHasso Tepper 			    sizeof(struct hci_filter));
8770a9108ebSHasso Tepper 			break;
8780a9108ebSHasso Tepper 
8790a9108ebSHasso Tepper 		case SO_HCI_PKT_FILTER:	/* set packet filter */
880002c1265SMatthew Dillon 			error = soopt_to_kbuf(sopt, &pcb->hp_pfilter,
8810a9108ebSHasso Tepper 					      sizeof(struct hci_filter),
8820a9108ebSHasso Tepper 					      sizeof(struct hci_filter));
8830a9108ebSHasso Tepper 			break;
8840a9108ebSHasso Tepper 
8850a9108ebSHasso Tepper 		case SO_HCI_DIRECTION:	/* request direction ctl messages */
886002c1265SMatthew Dillon 			error = soopt_to_kbuf(sopt, &idir, sizeof(int),
8870a9108ebSHasso Tepper 					      sizeof(int));
888002c1265SMatthew Dillon 			if (error)
889002c1265SMatthew Dillon 				break;
8900a9108ebSHasso Tepper 			if (idir)
8910a9108ebSHasso Tepper 				pcb->hp_flags |= HCI_DIRECTION;
8920a9108ebSHasso Tepper 			else
8930a9108ebSHasso Tepper 				pcb->hp_flags &= ~HCI_DIRECTION;
8940a9108ebSHasso Tepper 			break;
8950a9108ebSHasso Tepper 
8960a9108ebSHasso Tepper 		default:
897002c1265SMatthew Dillon 			error = ENOPROTOOPT;
8980a9108ebSHasso Tepper 			break;
8990a9108ebSHasso Tepper 		}
9000a9108ebSHasso Tepper 		break;
9010a9108ebSHasso Tepper 
9020a9108ebSHasso Tepper 	default:
903002c1265SMatthew Dillon 		error = ENOPROTOOPT;
9040a9108ebSHasso Tepper 		break;
9050a9108ebSHasso Tepper 	}
906002c1265SMatthew Dillon out:
907002c1265SMatthew Dillon 	lwkt_replymsg(&msg->ctloutput.base.lmsg, error);
9080a9108ebSHasso Tepper }
9090a9108ebSHasso Tepper 
9100a9108ebSHasso Tepper /*
9110a9108ebSHasso Tepper  * HCI mbuf tap routine
9120a9108ebSHasso Tepper  *
9130a9108ebSHasso Tepper  * copy packets to any raw HCI sockets that wish (and are
9140a9108ebSHasso Tepper  * permitted) to see them
9150a9108ebSHasso Tepper  */
9160a9108ebSHasso Tepper void
hci_mtap(struct mbuf * m,struct hci_unit * unit)9170a9108ebSHasso Tepper hci_mtap(struct mbuf *m, struct hci_unit *unit)
9180a9108ebSHasso Tepper {
9190a9108ebSHasso Tepper 	struct hci_pcb *pcb;
9200a9108ebSHasso Tepper 	struct mbuf *m0, *ctlmsg, **ctl;
9210a9108ebSHasso Tepper 	struct sockaddr_bt sa;
9220a9108ebSHasso Tepper 	uint8_t type;
9230a9108ebSHasso Tepper 	uint8_t event;
9240a9108ebSHasso Tepper 	uint16_t opcode;
9250a9108ebSHasso Tepper 
9260a9108ebSHasso Tepper 	KKASSERT(m->m_len >= sizeof(type));
9270a9108ebSHasso Tepper 
9280a9108ebSHasso Tepper 	type = *mtod(m, uint8_t *);
9290a9108ebSHasso Tepper 
9300a9108ebSHasso Tepper 	memset(&sa, 0, sizeof(sa));
9310a9108ebSHasso Tepper 	sa.bt_len = sizeof(struct sockaddr_bt);
9320a9108ebSHasso Tepper 	sa.bt_family = AF_BLUETOOTH;
9330a9108ebSHasso Tepper 	bdaddr_copy(&sa.bt_bdaddr, &unit->hci_bdaddr);
9340a9108ebSHasso Tepper 
9350a9108ebSHasso Tepper 	LIST_FOREACH(pcb, &hci_pcb, hp_next) {
9360a9108ebSHasso Tepper 		/*
9370a9108ebSHasso Tepper 		 * filter according to source address
9380a9108ebSHasso Tepper 		 */
9390a9108ebSHasso Tepper 		if ((pcb->hp_flags & HCI_PROMISCUOUS) == 0
9400a9108ebSHasso Tepper 		    && bdaddr_same(&pcb->hp_laddr, &sa.bt_bdaddr) == 0)
9410a9108ebSHasso Tepper 			continue;
9420a9108ebSHasso Tepper 
9430a9108ebSHasso Tepper 		/*
9440a9108ebSHasso Tepper 		 * filter according to packet type filter
9450a9108ebSHasso Tepper 		 */
9460a9108ebSHasso Tepper 		if (hci_filter_test(type, &pcb->hp_pfilter) == 0)
9470a9108ebSHasso Tepper 			continue;
9480a9108ebSHasso Tepper 
9490a9108ebSHasso Tepper 		/*
9500a9108ebSHasso Tepper 		 * filter according to event/security filters
9510a9108ebSHasso Tepper 		 */
9520a9108ebSHasso Tepper 		switch(type) {
9530a9108ebSHasso Tepper 		case HCI_EVENT_PKT:
9540a9108ebSHasso Tepper 			KKASSERT(m->m_len >= sizeof(hci_event_hdr_t));
9550a9108ebSHasso Tepper 
9560a9108ebSHasso Tepper 			event = mtod(m, hci_event_hdr_t *)->event;
9570a9108ebSHasso Tepper 
9580a9108ebSHasso Tepper 			if (hci_filter_test(event, &pcb->hp_efilter) == 0)
9590a9108ebSHasso Tepper 				continue;
9600a9108ebSHasso Tepper 
9610a9108ebSHasso Tepper 			if ((pcb->hp_flags & HCI_PRIVILEGED) == 0
9620a9108ebSHasso Tepper 			    && hci_security_check_event(event) == -1)
9630a9108ebSHasso Tepper 				continue;
9640a9108ebSHasso Tepper 			break;
9650a9108ebSHasso Tepper 
9660a9108ebSHasso Tepper 		case HCI_CMD_PKT:
9670a9108ebSHasso Tepper 			KKASSERT(m->m_len >= sizeof(hci_cmd_hdr_t));
9680a9108ebSHasso Tepper 
9690a9108ebSHasso Tepper 			opcode = letoh16(mtod(m, hci_cmd_hdr_t *)->opcode);
9700a9108ebSHasso Tepper 
9710a9108ebSHasso Tepper 			if ((pcb->hp_flags & HCI_PRIVILEGED) == 0
97283aacedeSHasso Tepper 			    && hci_security_check_opcode(NULL, opcode) == -1)
9730a9108ebSHasso Tepper 				continue;
9740a9108ebSHasso Tepper 			break;
9750a9108ebSHasso Tepper 
9760a9108ebSHasso Tepper 		case HCI_ACL_DATA_PKT:
9770a9108ebSHasso Tepper 		case HCI_SCO_DATA_PKT:
9780a9108ebSHasso Tepper 		default:
9790a9108ebSHasso Tepper 			if ((pcb->hp_flags & HCI_PRIVILEGED) == 0)
9800a9108ebSHasso Tepper 				continue;
9810a9108ebSHasso Tepper 
9820a9108ebSHasso Tepper 			break;
9830a9108ebSHasso Tepper 		}
9840a9108ebSHasso Tepper 
9850a9108ebSHasso Tepper 		/*
9860a9108ebSHasso Tepper 		 * create control messages
9870a9108ebSHasso Tepper 		 */
9880a9108ebSHasso Tepper 		ctlmsg = NULL;
9890a9108ebSHasso Tepper 		ctl = &ctlmsg;
9900a9108ebSHasso Tepper 		if (pcb->hp_flags & HCI_DIRECTION) {
9910a9108ebSHasso Tepper 			int dir = m->m_flags & IFF_LINK0 ? 1 : 0;
9920a9108ebSHasso Tepper 
993*0704bacfSAaron LI 			*ctl = sbcreatecontrol(&dir, sizeof(dir),
9940a9108ebSHasso Tepper 			    SCM_HCI_DIRECTION, BTPROTO_HCI);
9950a9108ebSHasso Tepper 
9960a9108ebSHasso Tepper 			if (*ctl != NULL)
9970a9108ebSHasso Tepper 				ctl = &((*ctl)->m_next);
9980a9108ebSHasso Tepper 		}
9990a9108ebSHasso Tepper 
10000a9108ebSHasso Tepper 		/*
10010a9108ebSHasso Tepper 		 * copy to socket
10020a9108ebSHasso Tepper 		 */
1003b5523eacSSascha Wildner 		m0 = m_copym(m, 0, M_COPYALL, M_NOWAIT);
10040a9108ebSHasso Tepper 		if (m0 && sbappendaddr(&pcb->hp_socket->so_rcv.sb,
10050a9108ebSHasso Tepper 				(struct sockaddr *)&sa, m0, ctlmsg)) {
10060a9108ebSHasso Tepper 			sorwakeup(pcb->hp_socket);
10070a9108ebSHasso Tepper 		} else {
10080a9108ebSHasso Tepper 			m_freem(ctlmsg);
10090a9108ebSHasso Tepper 			m_freem(m0);
10100a9108ebSHasso Tepper 		}
10110a9108ebSHasso Tepper 	}
10120a9108ebSHasso Tepper }
10130a9108ebSHasso Tepper 
10140a9108ebSHasso Tepper struct pr_usrreqs hci_usrreqs = {
10150a9108ebSHasso Tepper         .pru_abort = hci_sabort,
1016002c1265SMatthew Dillon         .pru_accept = pr_generic_notsupp,
10170a9108ebSHasso Tepper         .pru_attach = hci_sattach,
10180a9108ebSHasso Tepper         .pru_bind = hci_sbind,
10190a9108ebSHasso Tepper         .pru_connect = hci_sconnect,
1020002c1265SMatthew Dillon         .pru_connect2 = pr_generic_notsupp,
10210a9108ebSHasso Tepper         .pru_control = hci_scontrol,
10220a9108ebSHasso Tepper         .pru_detach = hci_sdetach,
10230a9108ebSHasso Tepper         .pru_disconnect = hci_sdisconnect,
1024002c1265SMatthew Dillon         .pru_listen = pr_generic_notsupp,
10250a9108ebSHasso Tepper         .pru_peeraddr = hci_speeraddr,
1026002c1265SMatthew Dillon         .pru_rcvd = pr_generic_notsupp,
1027002c1265SMatthew Dillon         .pru_rcvoob = pr_generic_notsupp,
10280a9108ebSHasso Tepper         .pru_send = hci_ssend,
10290a9108ebSHasso Tepper         .pru_sense = pru_sense_null,
10300a9108ebSHasso Tepper         .pru_shutdown = hci_sshutdown,
10310a9108ebSHasso Tepper         .pru_sockaddr = hci_ssockaddr,
10320a9108ebSHasso Tepper         .pru_sosend = sosend,
10338b5c39bbSSamuel J. Greear         .pru_soreceive = soreceive
10340a9108ebSHasso Tepper };
1035