Merge pull request #278 from nmav/ocserv
[project/luci.git] / modules / admin-full / luasrc / model / cbi / admin_network / wifi.lua
1 --[[
2 LuCI - Lua Configuration Interface
3
4 Copyright 2008 Steven Barth <steven@midlink.org>
5
6 Licensed under the Apache License, Version 2.0 (the "License");
7 you may not use this file except in compliance with the License.
8 You may obtain a copy of the License at
9
10 http://www.apache.org/licenses/LICENSE-2.0
11
12 $Id$
13 ]]--
14
15 local wa = require "luci.tools.webadmin"
16 local nw = require "luci.model.network"
17 local ut = require "luci.util"
18 local nt = require "luci.sys".net
19 local fs = require "nixio.fs"
20
21 arg[1] = arg[1] or ""
22
23 m = Map("wireless", "",
24 translate("The <em>Device Configuration</em> section covers physical settings of the radio " ..
25 "hardware such as channel, transmit power or antenna selection which are shared among all " ..
26 "defined wireless networks (if the radio hardware is multi-SSID capable). Per network settings " ..
27 "like encryption or operation mode are grouped in the <em>Interface Configuration</em>."))
28
29 m:chain("network")
30 m:chain("firewall")
31
32 local ifsection
33
34 function m.on_commit(map)
35 local wnet = nw:get_wifinet(arg[1])
36 if ifsection and wnet then
37 ifsection.section = wnet.sid
38 m.title = luci.util.pcdata(wnet:get_i18n())
39 end
40 end
41
42 nw.init(m.uci)
43
44 local wnet = nw:get_wifinet(arg[1])
45 local wdev = wnet and wnet:get_device()
46
47 -- redirect to overview page if network does not exist anymore (e.g. after a revert)
48 if not wnet or not wdev then
49 luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless"))
50 return
51 end
52
53 -- wireless toggle was requested, commit and reload page
54 function m.parse(map)
55 if m:formvalue("cbid.wireless.%s.__toggle" % wdev:name()) then
56 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
57 wnet:set("disabled", nil)
58 else
59 wnet:set("disabled", "1")
60 end
61 wdev:set("disabled", nil)
62
63 nw:commit("wireless")
64 luci.sys.call("(env -i /bin/ubus call network reload) >/dev/null 2>/dev/null")
65
66 luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless", arg[1]))
67 return
68 end
69 Map.parse(map)
70 end
71
72 m.title = luci.util.pcdata(wnet:get_i18n())
73
74
75 local function txpower_list(iw)
76 local list = iw.txpwrlist or { }
77 local off = tonumber(iw.txpower_offset) or 0
78 local new = { }
79 local prev = -1
80 local _, val
81 for _, val in ipairs(list) do
82 local dbm = val.dbm + off
83 local mw = math.floor(10 ^ (dbm / 10))
84 if mw ~= prev then
85 prev = mw
86 new[#new+1] = {
87 display_dbm = dbm,
88 display_mw = mw,
89 driver_dbm = val.dbm,
90 driver_mw = val.mw
91 }
92 end
93 end
94 return new
95 end
96
97 local function txpower_current(pwr, list)
98 pwr = tonumber(pwr)
99 if pwr ~= nil then
100 local _, item
101 for _, item in ipairs(list) do
102 if item.driver_dbm >= pwr then
103 return item.driver_dbm
104 end
105 end
106 end
107 return (list[#list] and list[#list].driver_dbm) or pwr or 0
108 end
109
110 local iw = luci.sys.wifi.getiwinfo(arg[1])
111 local hw_modes = iw.hwmodelist or { }
112 local tx_power_list = txpower_list(iw)
113 local tx_power_cur = txpower_current(wdev:get("txpower"), tx_power_list)
114
115 s = m:section(NamedSection, wdev:name(), "wifi-device", translate("Device Configuration"))
116 s.addremove = false
117
118 s:tab("general", translate("General Setup"))
119 s:tab("macfilter", translate("MAC-Filter"))
120 s:tab("advanced", translate("Advanced Settings"))
121
122 --[[
123 back = s:option(DummyValue, "_overview", translate("Overview"))
124 back.value = ""
125 back.titleref = luci.dispatcher.build_url("admin", "network", "wireless")
126 ]]
127
128 st = s:taboption("general", DummyValue, "__status", translate("Status"))
129 st.template = "admin_network/wifi_status"
130 st.ifname = arg[1]
131
132 en = s:taboption("general", Button, "__toggle")
133
134 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
135 en.title = translate("Wireless network is disabled")
136 en.inputtitle = translate("Enable")
137 en.inputstyle = "apply"
138 else
139 en.title = translate("Wireless network is enabled")
140 en.inputtitle = translate("Disable")
141 en.inputstyle = "reset"
142 end
143
144
145 local hwtype = wdev:get("type")
146
147 -- NanoFoo
148 local nsantenna = wdev:get("antenna")
149
150 -- Check whether there are client interfaces on the same radio,
151 -- if yes, lock the channel choice as these stations will dicatate the freq
152 local found_sta = nil
153 local _, net
154 if wnet:mode() ~= "sta" then
155 for _, net in ipairs(wdev:get_wifinets()) do
156 if net:mode() == "sta" then
157 if not found_sta then
158 found_sta = {}
159 found_sta.channel = net:channel()
160 found_sta.names = {}
161 end
162 found_sta.names[#found_sta.names+1] = net:shortname()
163 end
164 end
165 end
166
167 if found_sta then
168 ch = s:taboption("general", DummyValue, "choice", translate("Channel"))
169 ch.value = translatef("Locked to channel %d used by: %s",
170 found_sta.channel, table.concat(found_sta.names, ", "))
171 else
172 ch = s:taboption("general", Value, "_mode_freq", '<br />'..translate("Operating frequency"))
173 ch.hwmodes = iw.hwmodelist
174 ch.freqlist = iw.freqlist
175 ch.template = "cbi/wireless_modefreq"
176
177 function ch.cfgvalue(self, section)
178 return {
179 m:get(section, "hwmode") or "",
180 m:get(section, "channel") or "auto",
181 m:get(section, "htmode") or ""
182 }
183 end
184
185 function ch.formvalue(self, section)
186 return {
187 m:formvalue(self:cbid(section) .. ".band") or (iw.hwmodelist.g and "11g" or "11a"),
188 m:formvalue(self:cbid(section) .. ".channel") or "auto",
189 m:formvalue(self:cbid(section) .. ".htmode") or ""
190 }
191 end
192
193 function ch.write(self, section, value)
194 m:set(section, "hwmode", value[1])
195 m:set(section, "channel", value[2])
196 m:set(section, "htmode", value[3])
197 end
198 end
199
200 ------------------- MAC80211 Device ------------------
201
202 if hwtype == "mac80211" then
203 if #tx_power_list > 1 then
204 tp = s:taboption("general", ListValue,
205 "txpower", translate("Transmit Power"), "dBm")
206 tp.rmempty = true
207 tp.default = tx_power_cur
208 function tp.cfgvalue(...)
209 return txpower_current(Value.cfgvalue(...), tx_power_list)
210 end
211
212 for _, p in ipairs(tx_power_list) do
213 tp:value(p.driver_dbm, "%i dBm (%i mW)"
214 %{ p.display_dbm, p.display_mw })
215 end
216 end
217
218 local cl = iw and iw.countrylist
219 if cl and #cl > 0 then
220 cc = s:taboption("advanced", ListValue, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
221 cc.default = tostring(iw and iw.country or "00")
222 for _, c in ipairs(cl) do
223 cc:value(c.alpha2, "%s - %s" %{ c.alpha2, c.name })
224 end
225 else
226 s:taboption("advanced", Value, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
227 end
228
229 s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
230 translate("Distance to farthest network member in meters."))
231
232 -- external antenna profiles
233 local eal = iw and iw.extant
234 if eal and #eal > 0 then
235 ea = s:taboption("advanced", ListValue, "extant", translate("Antenna Configuration"))
236 for _, eap in ipairs(eal) do
237 ea:value(eap.id, "%s (%s)" %{ eap.name, eap.description })
238 if eap.selected then
239 ea.default = eap.id
240 end
241 end
242 end
243
244 s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
245 s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
246 end
247
248
249 ------------------- Madwifi Device ------------------
250
251 if hwtype == "atheros" then
252 tp = s:taboption("general",
253 (#tx_power_list > 0) and ListValue or Value,
254 "txpower", translate("Transmit Power"), "dBm")
255
256 tp.rmempty = true
257 tp.default = tx_power_cur
258
259 function tp.cfgvalue(...)
260 return txpower_current(Value.cfgvalue(...), tx_power_list)
261 end
262
263 for _, p in ipairs(tx_power_list) do
264 tp:value(p.driver_dbm, "%i dBm (%i mW)"
265 %{ p.display_dbm, p.display_mw })
266 end
267
268 s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
269
270 if not nsantenna then
271 ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
272 ant1.widget = "radio"
273 ant1.orientation = "horizontal"
274 ant1:depends("diversity", "")
275 ant1:value("0", translate("auto"))
276 ant1:value("1", translate("Antenna 1"))
277 ant1:value("2", translate("Antenna 2"))
278
279 ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
280 ant2.widget = "radio"
281 ant2.orientation = "horizontal"
282 ant2:depends("diversity", "")
283 ant2:value("0", translate("auto"))
284 ant2:value("1", translate("Antenna 1"))
285 ant2:value("2", translate("Antenna 2"))
286
287 else -- NanoFoo
288 local ant = s:taboption("advanced", ListValue, "antenna", translate("Transmitter Antenna"))
289 ant:value("auto")
290 ant:value("vertical")
291 ant:value("horizontal")
292 ant:value("external")
293 end
294
295 s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
296 translate("Distance to farthest network member in meters."))
297 s:taboption("advanced", Value, "regdomain", translate("Regulatory Domain"))
298 s:taboption("advanced", Value, "country", translate("Country Code"))
299 s:taboption("advanced", Flag, "outdoor", translate("Outdoor Channels"))
300
301 --s:option(Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
302 end
303
304
305
306 ------------------- Broadcom Device ------------------
307
308 if hwtype == "broadcom" then
309 tp = s:taboption("general",
310 (#tx_power_list > 0) and ListValue or Value,
311 "txpower", translate("Transmit Power"), "dBm")
312
313 tp.rmempty = true
314 tp.default = tx_power_cur
315
316 function tp.cfgvalue(...)
317 return txpower_current(Value.cfgvalue(...), tx_power_list)
318 end
319
320 for _, p in ipairs(tx_power_list) do
321 tp:value(p.driver_dbm, "%i dBm (%i mW)"
322 %{ p.display_dbm, p.display_mw })
323 end
324
325 ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
326 ant1.widget = "radio"
327 ant1:depends("diversity", "")
328 ant1:value("3", translate("auto"))
329 ant1:value("0", translate("Antenna 1"))
330 ant1:value("1", translate("Antenna 2"))
331
332 ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
333 ant2.widget = "radio"
334 ant2:depends("diversity", "")
335 ant2:value("3", translate("auto"))
336 ant2:value("0", translate("Antenna 1"))
337 ant2:value("1", translate("Antenna 2"))
338
339 s:taboption("advanced", Flag, "frameburst", translate("Frame Bursting"))
340
341 s:taboption("advanced", Value, "distance", translate("Distance Optimization"))
342 --s:option(Value, "slottime", translate("Slot time"))
343
344 s:taboption("advanced", Value, "country", translate("Country Code"))
345 s:taboption("advanced", Value, "maxassoc", translate("Connection Limit"))
346 end
347
348
349 --------------------- HostAP Device ---------------------
350
351 if hwtype == "prism2" then
352 s:taboption("advanced", Value, "txpower", translate("Transmit Power"), "att units").rmempty = true
353
354 s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
355
356 s:taboption("advanced", Value, "txantenna", translate("Transmitter Antenna"))
357 s:taboption("advanced", Value, "rxantenna", translate("Receiver Antenna"))
358 end
359
360
361 ----------------------- Interface -----------------------
362
363 s = m:section(NamedSection, wnet.sid, "wifi-iface", translate("Interface Configuration"))
364 ifsection = s
365 s.addremove = false
366 s.anonymous = true
367 s.defaults.device = wdev:name()
368
369 s:tab("general", translate("General Setup"))
370 s:tab("encryption", translate("Wireless Security"))
371 s:tab("macfilter", translate("MAC-Filter"))
372 s:tab("advanced", translate("Advanced Settings"))
373
374 s:taboption("general", Value, "ssid", translate("<abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
375
376 mode = s:taboption("general", ListValue, "mode", translate("Mode"))
377 mode.override_values = true
378 mode:value("ap", translate("Access Point"))
379 mode:value("sta", translate("Client"))
380 mode:value("adhoc", translate("Ad-Hoc"))
381
382 bssid = s:taboption("general", Value, "bssid", translate("<abbr title=\"Basic Service Set Identifier\">BSSID</abbr>"))
383
384 network = s:taboption("general", Value, "network", translate("Network"),
385 translate("Choose the network(s) you want to attach to this wireless interface or " ..
386 "fill out the <em>create</em> field to define a new network."))
387
388 network.rmempty = true
389 network.template = "cbi/network_netlist"
390 network.widget = "checkbox"
391 network.novirtual = true
392
393 function network.write(self, section, value)
394 local i = nw:get_interface(section)
395 if i then
396 if value == '-' then
397 value = m:formvalue(self:cbid(section) .. ".newnet")
398 if value and #value > 0 then
399 local n = nw:add_network(value, {proto="none"})
400 if n then n:add_interface(i) end
401 else
402 local n = i:get_network()
403 if n then n:del_interface(i) end
404 end
405 else
406 local v
407 for _, v in ipairs(i:get_networks()) do
408 v:del_interface(i)
409 end
410 for v in ut.imatch(value) do
411 local n = nw:get_network(v)
412 if n then
413 if not n:is_empty() then
414 n:set("type", "bridge")
415 end
416 n:add_interface(i)
417 end
418 end
419 end
420 end
421 end
422
423 -------------------- MAC80211 Interface ----------------------
424
425 if hwtype == "mac80211" then
426 if fs.access("/usr/sbin/iw") then
427 mode:value("mesh", "802.11s")
428 end
429
430 mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
431 mode:value("monitor", translate("Monitor"))
432 bssid:depends({mode="adhoc"})
433 bssid:depends({mode="sta"})
434 bssid:depends({mode="sta-wds"})
435
436 mp = s:taboption("macfilter", ListValue, "macfilter", translate("MAC-Address Filter"))
437 mp:depends({mode="ap"})
438 mp:depends({mode="ap-wds"})
439 mp:value("", translate("disable"))
440 mp:value("allow", translate("Allow listed only"))
441 mp:value("deny", translate("Allow all except listed"))
442
443 ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
444 ml.datatype = "macaddr"
445 ml:depends({macfilter="allow"})
446 ml:depends({macfilter="deny"})
447 nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
448
449 mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
450 mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
451
452 function mode.write(self, section, value)
453 if value == "ap-wds" then
454 ListValue.write(self, section, "ap")
455 m.uci:set("wireless", section, "wds", 1)
456 elseif value == "sta-wds" then
457 ListValue.write(self, section, "sta")
458 m.uci:set("wireless", section, "wds", 1)
459 else
460 ListValue.write(self, section, value)
461 m.uci:delete("wireless", section, "wds")
462 end
463 end
464
465 function mode.cfgvalue(self, section)
466 local mode = ListValue.cfgvalue(self, section)
467 local wds = m.uci:get("wireless", section, "wds") == "1"
468
469 if mode == "ap" and wds then
470 return "ap-wds"
471 elseif mode == "sta" and wds then
472 return "sta-wds"
473 else
474 return mode
475 end
476 end
477
478 hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
479 hidden:depends({mode="ap"})
480 hidden:depends({mode="ap-wds"})
481
482 wmm = s:taboption("general", Flag, "wmm", translate("WMM Mode"))
483 wmm:depends({mode="ap"})
484 wmm:depends({mode="ap-wds"})
485 wmm.default = wmm.enabled
486 end
487
488
489
490 -------------------- Madwifi Interface ----------------------
491
492 if hwtype == "atheros" then
493 mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
494 mode:value("monitor", translate("Monitor"))
495 mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
496 mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
497 mode:value("wds", translate("Static WDS"))
498
499 function mode.write(self, section, value)
500 if value == "ap-wds" then
501 ListValue.write(self, section, "ap")
502 m.uci:set("wireless", section, "wds", 1)
503 elseif value == "sta-wds" then
504 ListValue.write(self, section, "sta")
505 m.uci:set("wireless", section, "wds", 1)
506 else
507 ListValue.write(self, section, value)
508 m.uci:delete("wireless", section, "wds")
509 end
510 end
511
512 function mode.cfgvalue(self, section)
513 local mode = ListValue.cfgvalue(self, section)
514 local wds = m.uci:get("wireless", section, "wds") == "1"
515
516 if mode == "ap" and wds then
517 return "ap-wds"
518 elseif mode == "sta" and wds then
519 return "sta-wds"
520 else
521 return mode
522 end
523 end
524
525 bssid:depends({mode="adhoc"})
526 bssid:depends({mode="ahdemo"})
527 bssid:depends({mode="wds"})
528
529 wdssep = s:taboption("advanced", Flag, "wdssep", translate("Separate WDS"))
530 wdssep:depends({mode="ap-wds"})
531
532 s:taboption("advanced", Flag, "doth", "802.11h")
533 hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
534 hidden:depends({mode="ap"})
535 hidden:depends({mode="adhoc"})
536 hidden:depends({mode="ap-wds"})
537 hidden:depends({mode="sta-wds"})
538 isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
539 translate("Prevents client-to-client communication"))
540 isolate:depends({mode="ap"})
541 s:taboption("advanced", Flag, "bgscan", translate("Background Scan"))
542
543 mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
544 mp:value("", translate("disable"))
545 mp:value("allow", translate("Allow listed only"))
546 mp:value("deny", translate("Allow all except listed"))
547
548 ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
549 ml.datatype = "macaddr"
550 ml:depends({macpolicy="allow"})
551 ml:depends({macpolicy="deny"})
552 nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
553
554 s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
555 s:taboption("advanced", Value, "mcast_rate", translate("Multicast Rate"))
556 s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
557 s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
558 s:taboption("advanced", Value, "minrate", translate("Minimum Rate"))
559 s:taboption("advanced", Value, "maxrate", translate("Maximum Rate"))
560 s:taboption("advanced", Flag, "compression", translate("Compression"))
561
562 s:taboption("advanced", Flag, "bursting", translate("Frame Bursting"))
563 s:taboption("advanced", Flag, "turbo", translate("Turbo Mode"))
564 s:taboption("advanced", Flag, "ff", translate("Fast Frames"))
565
566 s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
567 s:taboption("advanced", Flag, "xr", translate("XR Support"))
568 s:taboption("advanced", Flag, "ar", translate("AR Support"))
569
570 local swm = s:taboption("advanced", Flag, "sw_merge", translate("Disable HW-Beacon timer"))
571 swm:depends({mode="adhoc"})
572
573 local nos = s:taboption("advanced", Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
574 nos:depends({mode="sta"})
575 nos:depends({mode="sta-wds"})
576
577 local probereq = s:taboption("advanced", Flag, "probereq", translate("Do not send probe responses"))
578 probereq.enabled = "0"
579 probereq.disabled = "1"
580 end
581
582
583 -------------------- Broadcom Interface ----------------------
584
585 if hwtype == "broadcom" then
586 mode:value("wds", translate("WDS"))
587 mode:value("monitor", translate("Monitor"))
588
589 hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
590 hidden:depends({mode="ap"})
591 hidden:depends({mode="adhoc"})
592 hidden:depends({mode="wds"})
593
594 isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
595 translate("Prevents client-to-client communication"))
596 isolate:depends({mode="ap"})
597
598 s:taboption("advanced", Flag, "doth", "802.11h")
599 s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
600
601 bssid:depends({mode="wds"})
602 bssid:depends({mode="adhoc"})
603 end
604
605
606 ----------------------- HostAP Interface ---------------------
607
608 if hwtype == "prism2" then
609 mode:value("wds", translate("WDS"))
610 mode:value("monitor", translate("Monitor"))
611
612 hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
613 hidden:depends({mode="ap"})
614 hidden:depends({mode="adhoc"})
615 hidden:depends({mode="wds"})
616
617 bssid:depends({mode="sta"})
618
619 mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
620 mp:value("", translate("disable"))
621 mp:value("allow", translate("Allow listed only"))
622 mp:value("deny", translate("Allow all except listed"))
623 ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
624 ml:depends({macpolicy="allow"})
625 ml:depends({macpolicy="deny"})
626 nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
627
628 s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
629 s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
630 s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
631 end
632
633
634 ------------------- WiFI-Encryption -------------------
635
636 encr = s:taboption("encryption", ListValue, "encryption", translate("Encryption"))
637 encr.override_values = true
638 encr.override_depends = true
639 encr:depends({mode="ap"})
640 encr:depends({mode="sta"})
641 encr:depends({mode="adhoc"})
642 encr:depends({mode="ahdemo"})
643 encr:depends({mode="ap-wds"})
644 encr:depends({mode="sta-wds"})
645 encr:depends({mode="mesh"})
646
647 cipher = s:taboption("encryption", ListValue, "cipher", translate("Cipher"))
648 cipher:depends({encryption="wpa"})
649 cipher:depends({encryption="wpa2"})
650 cipher:depends({encryption="psk"})
651 cipher:depends({encryption="psk2"})
652 cipher:depends({encryption="wpa-mixed"})
653 cipher:depends({encryption="psk-mixed"})
654 cipher:value("auto", translate("auto"))
655 cipher:value("ccmp", translate("Force CCMP (AES)"))
656 cipher:value("tkip", translate("Force TKIP"))
657 cipher:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
658
659 function encr.cfgvalue(self, section)
660 local v = tostring(ListValue.cfgvalue(self, section))
661 if v == "wep" then
662 return "wep-open"
663 elseif v and v:match("%+") then
664 return (v:gsub("%+.+$", ""))
665 end
666 return v
667 end
668
669 function encr.write(self, section, value)
670 local e = tostring(encr:formvalue(section))
671 local c = tostring(cipher:formvalue(section))
672 if value == "wpa" or value == "wpa2" then
673 self.map.uci:delete("wireless", section, "key")
674 end
675 if e and (c == "tkip" or c == "ccmp" or c == "tkip+ccmp") then
676 e = e .. "+" .. c
677 end
678 self.map:set(section, "encryption", e)
679 end
680
681 function cipher.cfgvalue(self, section)
682 local v = tostring(ListValue.cfgvalue(encr, section))
683 if v and v:match("%+") then
684 v = v:gsub("^[^%+]+%+", "")
685 if v == "aes" then v = "ccmp"
686 elseif v == "tkip+aes" then v = "tkip+ccmp"
687 elseif v == "aes+tkip" then v = "tkip+ccmp"
688 elseif v == "ccmp+tkip" then v = "tkip+ccmp"
689 end
690 end
691 return v
692 end
693
694 function cipher.write(self, section)
695 return encr:write(section)
696 end
697
698
699 encr:value("none", "No Encryption")
700 encr:value("wep-open", translate("WEP Open System"), {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
701 encr:value("wep-shared", translate("WEP Shared Key"), {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
702
703 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
704 local supplicant = fs.access("/usr/sbin/wpa_supplicant")
705 local hostapd = fs.access("/usr/sbin/hostapd")
706
707 -- Probe EAP support
708 local has_ap_eap = (os.execute("hostapd -veap >/dev/null 2>/dev/null") == 0)
709 local has_sta_eap = (os.execute("wpa_supplicant -veap >/dev/null 2>/dev/null") == 0)
710
711 if hostapd and supplicant then
712 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
713 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
714 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
715 if has_ap_eap and has_sta_eap then
716 encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
717 encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
718 end
719 elseif hostapd and not supplicant then
720 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="ap-wds"})
721 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="ap-wds"})
722 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="ap-wds"})
723 if has_ap_eap then
724 encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="ap-wds"})
725 encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="ap-wds"})
726 end
727 encr.description = translate(
728 "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
729 "and ad-hoc mode) to be installed."
730 )
731 elseif not hostapd and supplicant then
732 encr:value("psk", "WPA-PSK", {mode="sta"}, {mode="sta-wds"})
733 encr:value("psk2", "WPA2-PSK", {mode="sta"}, {mode="sta-wds"})
734 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="sta"}, {mode="sta-wds"})
735 if has_sta_eap then
736 encr:value("wpa", "WPA-EAP", {mode="sta"}, {mode="sta-wds"})
737 encr:value("wpa2", "WPA2-EAP", {mode="sta"}, {mode="sta-wds"})
738 end
739 encr.description = translate(
740 "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
741 "and ad-hoc mode) to be installed."
742 )
743 else
744 encr.description = translate(
745 "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
746 "and ad-hoc mode) to be installed."
747 )
748 end
749 elseif hwtype == "broadcom" then
750 encr:value("psk", "WPA-PSK")
751 encr:value("psk2", "WPA2-PSK")
752 encr:value("psk+psk2", "WPA-PSK/WPA2-PSK Mixed Mode")
753 end
754
755 auth_server = s:taboption("encryption", Value, "auth_server", translate("Radius-Authentication-Server"))
756 auth_server:depends({mode="ap", encryption="wpa"})
757 auth_server:depends({mode="ap", encryption="wpa2"})
758 auth_server:depends({mode="ap-wds", encryption="wpa"})
759 auth_server:depends({mode="ap-wds", encryption="wpa2"})
760 auth_server.rmempty = true
761 auth_server.datatype = "host"
762
763 auth_port = s:taboption("encryption", Value, "auth_port", translate("Radius-Authentication-Port"), translatef("Default %d", 1812))
764 auth_port:depends({mode="ap", encryption="wpa"})
765 auth_port:depends({mode="ap", encryption="wpa2"})
766 auth_port:depends({mode="ap-wds", encryption="wpa"})
767 auth_port:depends({mode="ap-wds", encryption="wpa2"})
768 auth_port.rmempty = true
769 auth_port.datatype = "port"
770
771 auth_secret = s:taboption("encryption", Value, "auth_secret", translate("Radius-Authentication-Secret"))
772 auth_secret:depends({mode="ap", encryption="wpa"})
773 auth_secret:depends({mode="ap", encryption="wpa2"})
774 auth_secret:depends({mode="ap-wds", encryption="wpa"})
775 auth_secret:depends({mode="ap-wds", encryption="wpa2"})
776 auth_secret.rmempty = true
777 auth_secret.password = true
778
779 acct_server = s:taboption("encryption", Value, "acct_server", translate("Radius-Accounting-Server"))
780 acct_server:depends({mode="ap", encryption="wpa"})
781 acct_server:depends({mode="ap", encryption="wpa2"})
782 acct_server:depends({mode="ap-wds", encryption="wpa"})
783 acct_server:depends({mode="ap-wds", encryption="wpa2"})
784 acct_server.rmempty = true
785 acct_server.datatype = "host"
786
787 acct_port = s:taboption("encryption", Value, "acct_port", translate("Radius-Accounting-Port"), translatef("Default %d", 1813))
788 acct_port:depends({mode="ap", encryption="wpa"})
789 acct_port:depends({mode="ap", encryption="wpa2"})
790 acct_port:depends({mode="ap-wds", encryption="wpa"})
791 acct_port:depends({mode="ap-wds", encryption="wpa2"})
792 acct_port.rmempty = true
793 acct_port.datatype = "port"
794
795 acct_secret = s:taboption("encryption", Value, "acct_secret", translate("Radius-Accounting-Secret"))
796 acct_secret:depends({mode="ap", encryption="wpa"})
797 acct_secret:depends({mode="ap", encryption="wpa2"})
798 acct_secret:depends({mode="ap-wds", encryption="wpa"})
799 acct_secret:depends({mode="ap-wds", encryption="wpa2"})
800 acct_secret.rmempty = true
801 acct_secret.password = true
802
803 wpakey = s:taboption("encryption", Value, "_wpa_key", translate("Key"))
804 wpakey:depends("encryption", "psk")
805 wpakey:depends("encryption", "psk2")
806 wpakey:depends("encryption", "psk+psk2")
807 wpakey:depends("encryption", "psk-mixed")
808 wpakey.datatype = "wpakey"
809 wpakey.rmempty = true
810 wpakey.password = true
811
812 wpakey.cfgvalue = function(self, section, value)
813 local key = m.uci:get("wireless", section, "key")
814 if key == "1" or key == "2" or key == "3" or key == "4" then
815 return nil
816 end
817 return key
818 end
819
820 wpakey.write = function(self, section, value)
821 self.map.uci:set("wireless", section, "key", value)
822 self.map.uci:delete("wireless", section, "key1")
823 end
824
825
826 wepslot = s:taboption("encryption", ListValue, "_wep_key", translate("Used Key Slot"))
827 wepslot:depends("encryption", "wep-open")
828 wepslot:depends("encryption", "wep-shared")
829 wepslot:value("1", translatef("Key #%d", 1))
830 wepslot:value("2", translatef("Key #%d", 2))
831 wepslot:value("3", translatef("Key #%d", 3))
832 wepslot:value("4", translatef("Key #%d", 4))
833
834 wepslot.cfgvalue = function(self, section)
835 local slot = tonumber(m.uci:get("wireless", section, "key"))
836 if not slot or slot < 1 or slot > 4 then
837 return 1
838 end
839 return slot
840 end
841
842 wepslot.write = function(self, section, value)
843 self.map.uci:set("wireless", section, "key", value)
844 end
845
846 local slot
847 for slot=1,4 do
848 wepkey = s:taboption("encryption", Value, "key" .. slot, translatef("Key #%d", slot))
849 wepkey:depends("encryption", "wep-open")
850 wepkey:depends("encryption", "wep-shared")
851 wepkey.datatype = "wepkey"
852 wepkey.rmempty = true
853 wepkey.password = true
854
855 function wepkey.write(self, section, value)
856 if value and (#value == 5 or #value == 13) then
857 value = "s:" .. value
858 end
859 return Value.write(self, section, value)
860 end
861 end
862
863
864 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
865 nasid = s:taboption("encryption", Value, "nasid", translate("NAS ID"))
866 nasid:depends({mode="ap", encryption="wpa"})
867 nasid:depends({mode="ap", encryption="wpa2"})
868 nasid:depends({mode="ap-wds", encryption="wpa"})
869 nasid:depends({mode="ap-wds", encryption="wpa2"})
870 nasid.rmempty = true
871
872 eaptype = s:taboption("encryption", ListValue, "eap_type", translate("EAP-Method"))
873 eaptype:value("tls", "TLS")
874 eaptype:value("ttls", "TTLS")
875 eaptype:value("peap", "PEAP")
876 eaptype:depends({mode="sta", encryption="wpa"})
877 eaptype:depends({mode="sta", encryption="wpa2"})
878 eaptype:depends({mode="sta-wds", encryption="wpa"})
879 eaptype:depends({mode="sta-wds", encryption="wpa2"})
880
881 cacert = s:taboption("encryption", FileUpload, "ca_cert", translate("Path to CA-Certificate"))
882 cacert:depends({mode="sta", encryption="wpa"})
883 cacert:depends({mode="sta", encryption="wpa2"})
884 cacert:depends({mode="sta-wds", encryption="wpa"})
885 cacert:depends({mode="sta-wds", encryption="wpa2"})
886
887 clientcert = s:taboption("encryption", FileUpload, "client_cert", translate("Path to Client-Certificate"))
888 clientcert:depends({mode="sta", encryption="wpa"})
889 clientcert:depends({mode="sta", encryption="wpa2"})
890 clientcert:depends({mode="sta-wds", encryption="wpa"})
891 clientcert:depends({mode="sta-wds", encryption="wpa2"})
892
893 privkey = s:taboption("encryption", FileUpload, "priv_key", translate("Path to Private Key"))
894 privkey:depends({mode="sta", eap_type="tls", encryption="wpa2"})
895 privkey:depends({mode="sta", eap_type="tls", encryption="wpa"})
896 privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
897 privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
898
899 privkeypwd = s:taboption("encryption", Value, "priv_key_pwd", translate("Password of Private Key"))
900 privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa2"})
901 privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa"})
902 privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
903 privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
904
905
906 auth = s:taboption("encryption", Value, "auth", translate("Authentication"))
907 auth:value("PAP")
908 auth:value("CHAP")
909 auth:value("MSCHAP")
910 auth:value("MSCHAPV2")
911 auth:depends({mode="sta", eap_type="peap", encryption="wpa2"})
912 auth:depends({mode="sta", eap_type="peap", encryption="wpa"})
913 auth:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
914 auth:depends({mode="sta", eap_type="ttls", encryption="wpa"})
915 auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
916 auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
917 auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
918 auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
919
920
921 identity = s:taboption("encryption", Value, "identity", translate("Identity"))
922 identity:depends({mode="sta", eap_type="peap", encryption="wpa2"})
923 identity:depends({mode="sta", eap_type="peap", encryption="wpa"})
924 identity:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
925 identity:depends({mode="sta", eap_type="ttls", encryption="wpa"})
926 identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
927 identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
928 identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
929 identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
930
931 password = s:taboption("encryption", Value, "password", translate("Password"))
932 password:depends({mode="sta", eap_type="peap", encryption="wpa2"})
933 password:depends({mode="sta", eap_type="peap", encryption="wpa"})
934 password:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
935 password:depends({mode="sta", eap_type="ttls", encryption="wpa"})
936 password:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
937 password:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
938 password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
939 password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
940 end
941
942 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
943 local wpasupplicant = fs.access("/usr/sbin/wpa_supplicant")
944 local hostcli = fs.access("/usr/sbin/hostapd_cli")
945 if hostcli and wpasupplicant then
946 wps = s:taboption("encryption", Flag, "wps_pushbutton", translate("Enable WPS pushbutton, requires WPA(2)-PSK"))
947 wps.enabled = "1"
948 wps.disabled = "0"
949 wps.rmempty = false
950 wps:depends("encryption", "psk")
951 wps:depends("encryption", "psk2")
952 wps:depends("encryption", "psk-mixed")
953 end
954 end
955
956 return m