hostapd: fix driver setting for wpa_s in IBSS/WPA-NONE
[openwrt/svn-archive/archive.git] / package / hostapd / files / wpa_supplicant.sh
1 wpa_supplicant_setup_vif() {
2 local vif="$1"
3 local driver="$2"
4 local key="$key"
5 local options="$3"
6 local freq=""
7 [ -n "$4" ] && freq="frequency=$4"
8
9 # make sure we have the encryption type and the psk
10 [ -n "$enc" ] || {
11 config_get enc "$vif" encryption
12 }
13 [ -n "$key" ] || {
14 config_get key "$vif" key
15 }
16
17 local net_cfg bridge
18 config_get bridge "$vif" bridge
19 [ -z "$bridge" ] && {
20 net_cfg="$(find_net_config "$vif")"
21 [ -z "$net_cfg" ] || bridge="$(bridge_interface "$net_cfg")"
22 config_set "$vif" bridge "$bridge"
23 }
24
25 local mode ifname wds modestr=""
26 config_get mode "$vif" mode
27 config_get ifname "$vif" ifname
28 config_get_bool wds "$vif" wds 0
29 [ -z "$bridge" ] || [ "$mode" = ap ] || [ "$mode" = sta -a $wds -eq 1 ] || {
30 echo "wpa_supplicant_setup_vif($ifname): Refusing to bridge $mode mode interface"
31 return 1
32 }
33 [ "$mode" = "adhoc" ] && modestr="mode=1"
34
35 key_mgmt='NONE'
36 case "$enc" in
37 *none*) ;;
38 *wep*)
39 config_get key "$vif" key
40 key="${key:-1}"
41 case "$key" in
42 [1234])
43 for idx in 1 2 3 4; do
44 local zidx
45 zidx=$(($idx - 1))
46 config_get ckey "$vif" "key${idx}"
47 [ -n "$ckey" ] && \
48 append "wep_key${zidx}" "wep_key${zidx}=$(prepare_key_wep "$ckey")"
49 done
50 wep_tx_keyidx="wep_tx_keyidx=$((key - 1))"
51 ;;
52 *)
53 wep_key0="wep_key0=$(prepare_key_wep "$key")"
54 wep_tx_keyidx="wep_tx_keyidx=0"
55 ;;
56 esac
57 ;;
58 *psk*)
59 key_mgmt='WPA-PSK'
60 # if you want to use PSK with a non-nl80211 driver you
61 # have to use WPA-NONE and wext driver for wpa_s
62 [ "$mode" = "adhoc" -a "$driver" != "nl80211" ] && {
63 key_mgmt='WPA-NONE'
64 driver='wext'
65 }
66 config_get_bool usepassphrase "$vif" usepassphrase 1
67 if [ "$usepassphrase" = "1" ]; then
68 passphrase="psk=\"${key}\""
69 else
70 passphrase="psk=${key}"
71 fi
72 case "$enc" in
73 *psk2*)
74 proto='proto=RSN'
75 config_get ieee80211w "$vif" ieee80211w
76 ;;
77 *psk*)
78 proto='proto=WPA'
79 ;;
80 esac
81 ;;
82 *wpa*|*8021x*)
83 proto='proto=WPA2'
84 key_mgmt='WPA-EAP'
85 config_get ieee80211w "$vif" ieee80211w
86 config_get ca_cert "$vif" ca_cert
87 config_get eap_type "$vif" eap_type
88 ca_cert=${ca_cert:+"ca_cert=\"$ca_cert\""}
89 case "$eap_type" in
90 tls)
91 pairwise='pairwise=CCMP'
92 group='group=CCMP'
93 config_get identity "$vif" identity
94 config_get client_cert "$vif" client_cert
95 config_get priv_key "$vif" priv_key
96 config_get priv_key_pwd "$vif" priv_key_pwd
97 identity="identity=\"$identity\""
98 client_cert="client_cert=\"$client_cert\""
99 priv_key="private_key=\"$priv_key\""
100 priv_key_pwd="private_key_passwd=\"$priv_key_pwd\""
101 ;;
102 peap|ttls)
103 config_get auth "$vif" auth
104 config_get identity "$vif" identity
105 config_get password "$vif" password
106 phase2="phase2=\"auth=${auth:-MSCHAPV2}\""
107 identity="identity=\"$identity\""
108 password="password=\"$password\""
109 ;;
110 esac
111 eap_type="eap=$(echo $eap_type | tr 'a-z' 'A-Z')"
112 ;;
113 esac
114
115 case "$ieee80211w" in
116 [012])
117 ieee80211w="ieee80211w=$ieee80211w"
118 ;;
119 esac
120
121 config_get ifname "$vif" ifname
122 config_get bridge "$vif" bridge
123 config_get ssid "$vif" ssid
124 config_get bssid "$vif" bssid
125 bssid=${bssid:+"bssid=$bssid"}
126 rm -rf /var/run/wpa_supplicant-$ifname
127 cat > /var/run/wpa_supplicant-$ifname.conf <<EOF
128 ctrl_interface=/var/run/wpa_supplicant-$ifname
129 network={
130 $modestr
131 scan_ssid=1
132 ssid="$ssid"
133 $bssid
134 key_mgmt=$key_mgmt
135 $proto
136 $freq
137 $ieee80211w
138 $passphrase
139 $pairwise
140 $group
141 $eap_type
142 $ca_cert
143 $client_cert
144 $priv_key
145 $priv_key_pwd
146 $phase2
147 $identity
148 $password
149 $wep_key0
150 $wep_key1
151 $wep_key2
152 $wep_key3
153 $wep_tx_keyidx
154 }
155 EOF
156 [ -z "$proto" -a "$key_mgmt" != "NONE" ] || \
157 wpa_supplicant ${bridge:+ -b $bridge} -B -P "/var/run/wifi-${ifname}.pid" -D ${driver:-wext} -i "$ifname" -c /var/run/wpa_supplicant-$ifname.conf $options
158 }