1#!/bin/sh
2#-
3# Copyright (c) 2011 Nathan Whitehorn
4# Copyright (c) 2013-2020 Devin Teske
5# All rights reserved.
6#
7# Redistribution and use in source and binary forms, with or without
8# modification, are permitted provided that the following conditions
9# are met:
10# 1. Redistributions of source code must retain the above copyright
11#    notice, this list of conditions and the following disclaimer.
12# 2. Redistributions in binary form must reproduce the above copyright
13#    notice, this list of conditions and the following disclaimer in the
14#    documentation and/or other materials provided with the distribution.
15#
16# THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
17# ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19# ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
20# FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21# DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22# OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23# HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24# LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25# OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26# SUCH DAMAGE.
27#
28# $FreeBSD$
29#
30############################################################ INCLUDES
31
32BSDCFG_SHARE="/usr/share/bsdconfig"
33. $BSDCFG_SHARE/common.subr || exit 1
34f_include $BSDCFG_SHARE/dialog.subr
35f_dialog_backtitle "$OSNAME Installer"
36
37############################################################ FUNCTIONS
38
39country_set()
40{
41	local error_str iface_up ifconfig_args=
42
43	#
44	# Setup what was selected
45	# NB: Do not change order of arguments (or regdomain will be ignored)
46	#
47	[ "$2" ] && ifconfig_args="$ifconfig_args country $2"
48	[ "$1" ] && ifconfig_args="$ifconfig_args regdomain $1"
49	[ "$ifconfig_args" ] || return $SUCCESS # Nothing to do
50	ifconfig_args="${ifconfig_args# }"
51
52	# Regdomain/country cannot be applied while interface is running
53	iface_up=$( ifconfig -lu | grep -w "$WLAN_IFACE" )
54	[ "$iface_up" ] && ifconfig "$WLAN_IFACE" down
55	f_eval_catch -dk error_str wlanconfig ifconfig "ifconfig %s %s" \
56		"$WLAN_IFACE" "$ifconfig_args"
57	error_str="${error_str#ifconfig: }"
58	# Restart wpa_supplicant(8) (should not fail).
59	[ "$iface_up" ] && f_eval_catch -d wlanconfig wpa_supplicant \
60		'wpa_supplicant -B -i "%s" -c "%s/wpa_supplicant.conf"' \
61		"$WLAN_IFACE" "$BSDINSTALL_TMPETC"
62	if [ "$error_str" ]; then
63		$DIALOG --title "$msg_error" \
64			--backtitle "$DIALOG_BACKTITLE" \
65			--yes-label Change \
66			--no-label Ignore \
67			--yesno \
68			"Error while applying chosen settings ($error_str)" \
69			0 0 || return $SUCCESS # Skip
70		return $FAILURE # Restart
71	else
72		cat > "$BSDINSTALL_TMPETC/rc.conf.net.wlan" <<-EOF
73		create_args_$WLAN_IFACE="$ifconfig_args"
74		EOF
75	fi
76
77	return $SUCCESS
78}
79
80dialog_country_select()
81{
82	local input regdomains countries regdomain country prompt
83	local no_default="<not selected>"
84	local default_regdomain="${1:-$no_default}"
85	local default_country="${2:-$no_default}"
86
87	#
88	# Parse available countries/regdomains
89	#
90	input=$( ifconfig "$WLAN_IFACE" list countries | sed -e 's/DEBUG//gi' )
91	regdomains=$( echo "$input" | awk '
92		sub(/.*domains:/, ""), /[^[:alnum:][[:space:]]/ {
93			n = split($0, domains)
94			for (i = 1; i <= n; i++)
95				printf "'\''%s'\'' '\'\''", domains[i]
96		}
97	' | sort )
98	countries=$( echo "$input" | awk '
99		sub(/Country codes:/, ""), sub(/Regulatory.*/, "") {
100			while (match($0, /[[:upper:]][[:upper:][:digit:]] /)) {
101				country = substr($0, RSTART)
102				sub(/ [[:upper:]][[:upper:][:digit:]].*/, "",
103					country)
104				code = substr(country, 1, 2)
105				desc = substr(country, 4)
106				sub(/[[:space:]]*$/, "", desc)
107				printf "'\''%s'\'' '\''%s'\''\n", code, desc
108				$0 = substr($0, RSTART + RLENGTH)
109			}
110		}
111	' | sort )
112
113	f_dialog_title "Regdomain selection"
114	prompt="Select your regdomain."
115	eval f_dialog_menu_size height width rows \
116		\"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
117		\"\$prompt\" \"\" $regdomains
118	regdomain=$( eval $DIALOG \
119		--title \"\$DIALOG_TITLE\"             \
120		--backtitle \"\$DIALOG_BACKTITLE\"     \
121		--cancel-label \"\$msg_skip\"          \
122		--default-item \"\$default_regdomain\" \
123		--menu \"\$prompt\"                    \
124		$height $width $rows                   \
125		$regdomains                            \
126		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
127	)
128	f_dialog_data_sanitize regdomain
129
130	f_dialog_title "Country selection"
131	prompt="Select your country."
132	eval f_dialog_menu_size height width rows \
133		\"\$DIALOG_TITLE\" \"\$DIALOG_BACKTITLE\" \
134		\"\$prompt\" \"\" $countries
135	country=$( eval $DIALOG \
136		--title \"\$DIALOG_TITLE\"           \
137		--backtitle \"\$DIALOG_BACKTITLE\"   \
138		--cancel-label \"\$msg_skip\"        \
139		--default-item \"\$default_country\" \
140		--menu \"\$prompt\"                  \
141		$height $width $rows                 \
142		$countries                           \
143		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
144	)
145	f_dialog_data_sanitize country
146
147	country_set "$regdomain" "$country"
148}
149
150############################################################ MAIN
151
152: > "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
153chmod 0600 "$BSDINSTALL_TMPETC/wpa_supplicant.conf"
154
155cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<EOF
156ctrl_interface=/var/run/wpa_supplicant
157eapol_version=2
158ap_scan=1
159fast_reauth=1
160
161EOF
162
163#
164# Try to reach wpa_supplicant. If it isn't running and we can modify the
165# existing system, start it. Otherwise, fail.
166#
167if ! f_eval_catch -d wlanconfig wpa_cli "wpa_cli ping"; then
168	if [ ! "$BSDINSTALL_CONFIGCURRENT" ]; then
169		f_show_err "Wireless cannot be configured without %s" \
170		           "making changes to the local system!"
171		exit 1
172	fi
173	f_eval_catch wlanconfig wpa_supplicant \
174		'wpa_supplicant -B -i "%s" -c "%s/wpa_supplicant.conf"' \
175		"$1" "$BSDINSTALL_TMPETC" || exit 1
176
177	# See if we succeeded
178	f_eval_catch wlanconfig wpa_cli "wpa_cli ping" || exit 1
179fi
180
181#
182# There is no way to check country/regdomain without (possible)
183# interface state modification
184#
185if [ "$BSDINSTALL_CONFIGCURRENT" ]; then
186	# Get current country/regdomain for selected interface
187	WLAN_IFACE=$( wpa_cli ifname | tail -n 1 )
188	INPUT=$( ifconfig "$WLAN_IFACE" list regdomain | head -n 1 )
189	DEF_REGDOMAIN=$( echo "$INPUT" | cut -w -f 2 )
190	DEF_COUNTRY=$( echo "$INPUT" | cut -w -f 4 )
191	[ "$DEF_REGDOMAIN" = 0 ] && DEF_REGDOMAIN="<not selected>"
192	[ "$DEF_COUNTRY" = 0 ] && DEF_COUNTRY="<not selected>"
193	f_dialog_title "Regdomain/country"
194	if f_yesno "Change regdomain/country ($DEF_REGDOMAIN/$DEF_COUNTRY)?"
195	then
196		while ! dialog_country_select "$DEF_REGDOMAIN" "$DEF_COUNTRY"
197		do :; done
198	fi
199fi
200
201while :; do
202	SCANSSID=0
203	f_eval_catch -d wlanconfig wpa_cli "wpa_cli scan"
204	f_dialog_title "Scanning"
205	f_dialog_pause "Waiting 5 seconds to scan for wireless networks..." 5 ||
206		exit 1
207
208	f_eval_catch -dk SCAN_RESULTS wlanconfig wpa_cli "wpa_cli scan_results"
209	NETWORKS=$( echo "$SCAN_RESULTS" | awk -F '\t' '
210		/..:..:..:..:..:../ && $5 { printf "\"%s\"\t\"%s\"\n", $5, $4 }
211	' | sort | uniq )
212
213	if [ ! "$NETWORKS" ]; then
214		f_dialog_title "$msg_error"
215		f_yesno "No wireless networks were found. Rescan?" && continue
216	else
217		f_dialog_title "Network Selection"
218		prompt="Select a wireless network to connect to."
219		f_dialog_menu_size height width rows "$DIALOG_TITLE" \
220			"$DIALOG_BACKTITLE" "$prompt" "" $menu_list
221		NETWORK=$( eval $DIALOG \
222			--title \"\$DIALOG_TITLE\"         \
223			--backtitle \"\$DIALOG_BACKTITLE\" \
224			--extra-button                     \
225			--extra-label \"Rescan\"           \
226			--menu \"\$prompt\"                \
227			$height $width $rows               \
228			$NETWORKS                          \
229			2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
230		)
231	fi
232	retval=$?
233	f_dialog_data_sanitize NETWORK
234	case $retval in
235	$DIALOG_OK) break ;;
236	$DIALOG_CANCEL)
237		# Ask if the user wants to select network manually
238		f_dialog_title "Network Selection"
239		f_yesno "Do you want to select the network manually?" || exit 1
240		f_dialog_input NETWORK "Enter SSID" || exit 1
241		prompt="Select encryption type"
242		menu_list="
243			'1 WPA/WPA2 PSK' ''
244			'2 WPA/WPA2 EAP' ''
245			'3 WEP' ''
246			'0 None' ''
247		" # END-QUOTE
248		eval f_dialog_menu_size height width rows \"\$DIALOG_TITLE\" \
249			\"\$DIALOG_BACKTITLE\" \"\$prompt\" \"\" $menu_list
250		ENCRYPTION=$( eval $DIALOG \
251			--title \"\$DIALOG_TITLE\"         \
252			--backtitle \"\$DIALOG_BACKTITLE\" \
253			--menu \"\$prompt\"                \
254			$height $width $rows               \
255			$menu_list                         \
256			2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
257		) || exit 1
258		SCANSSID=1
259		break
260		;;
261	$DIALOG_EXTRA) # Rescan
262		;;
263	esac
264done
265
266[ "$ENCRYPTION" ] || ENCRYPTION=$( echo "$NETWORKS" |
267	awk -F '\t' "/^\"$NETWORK\"\t/ { print \$2 }" )
268
269if echo "$ENCRYPTION" | grep -q PSK; then
270	PASS=$( $DIALOG \
271		--title "WPA Setup"              \
272		--backtitle "$DIALOG_BACKTITLE"  \
273		--insecure                       \
274		--mixedform ""                   \
275		0 0 0                            \
276		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
277		"Password" 2 0 "" 2 12 15 63 1   \
278		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
279	) || exec "$0" "$@"
280	awk 'sub(/^\\/,"")||1' \
281		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
282	network={
283	\	ssid="$NETWORK"
284	\	scan_ssid=$SCANSSID
285	\	psk="$PASS"
286	\	priority=5
287	}
288	EOF
289elif echo "$ENCRYPTION" | grep -q EAP; then
290	USERPASS=$( $DIALOG \
291		--title "WPA-Enterprise Setup"   \
292		--backtitle "$DIALOG_BACKTITLE"  \
293		--insecure                       \
294		--mixedform ""                   \
295		0 0 0                            \
296		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
297		"Username" 2 0 "" 2 12 25 63 0   \
298		"Password" 3 0 "" 3 12 25 63 1   \
299		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
300	) || exec "$0" "$@"
301	awk 'sub(/^\\/,"")||1' \
302		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
303	network={
304	\	ssid="$NETWORK"
305	\	scan_ssid=$SCANSSID
306	\	key_mgmt=WPA-EAP$(
307		echo "$USERPASS" | awk '
308			NR == 1 { printf "\n\tidentity=\"%s\"", $1 }
309			NR == 2 { printf "\n\tpassword=\"%s\"", $1 }
310		' )
311	\	priority=5
312	}
313	EOF
314elif echo "$ENCRYPTION" | grep -q WEP; then
315	WEPKEY=$( $DIALOG \
316		--title "WEP Setup"              \
317		--backtitle "$DIALOG_BACKTITLE"  \
318		--insecure                       \
319		--mixedform ""                   \
320		0 0 0                            \
321		"SSID" 1 0 "$NETWORK" 1 12 0 0 2 \
322		"WEP Key 0" 2 0 "" 2 12 15 0 1   \
323		2>&1 >&$DIALOG_TERMINAL_PASSTHRU_FD
324	) || exec "$0" "$@"
325	awk 'sub(/^\\/,"")||1' \
326		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
327	network={
328	\	ssid="$NETWORK"
329	\	scan_ssid=$SCANSSID
330	\	key_mgmt=NONE
331	\	wep_key0="$WEPKEY"
332	\	wep_tx_keyidx=0
333	\	priority=5
334	}
335	EOF
336else # Open
337	awk 'sub(/^\\/,"")||1' \
338		>> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<-EOF
339	network={
340	\	ssid="$NETWORK"
341	\	scan_ssid=$SCANSSID
342	\	key_mgmt=NONE
343	\	priority=5
344	}
345	EOF
346fi
347
348# Connect to any open networks policy
349cat >> "$BSDINSTALL_TMPETC/wpa_supplicant.conf" <<EOF
350network={
351	priority=0
352	key_mgmt=NONE
353}
354EOF
355
356# Bring up new network
357[ "$BSDINSTALL_CONFIGCURRENT" ] &&
358	f_eval_catch -d wlanconfig wpa_cli "wpa_cli reconfigure"
359
360exit $SUCCESS
361
362################################################################################
363# END
364################################################################################
365