8723BU: Update 8723BU wifi driver to version v4.3.16_14189.20150519_BTCOEX2015119...
[firefly-linux-kernel-4.4.55.git] / drivers / net / wireless / rockchip_wlan / rtl8723bu / core / rtw_mlme.c
1 /******************************************************************************
2  *
3  * Copyright(c) 2007 - 2011 Realtek Corporation. All rights reserved.
4  *                                        
5  * This program is free software; you can redistribute it and/or modify it
6  * under the terms of version 2 of the GNU General Public License as
7  * published by the Free Software Foundation.
8  *
9  * This program is distributed in the hope that it will be useful, but WITHOUT
10  * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
11  * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
12  * more details.
13  *
14  * You should have received a copy of the GNU General Public License along with
15  * this program; if not, write to the Free Software Foundation, Inc.,
16  * 51 Franklin Street, Fifth Floor, Boston, MA 02110, USA
17  *
18  *
19  ******************************************************************************/
20 #define _RTW_MLME_C_
21
22 #include <drv_types.h>
23
24
25 extern void indicate_wx_scan_complete_event(_adapter *padapter);
26 extern u8 rtw_do_join(_adapter * padapter);
27
28
29 sint    _rtw_init_mlme_priv (_adapter* padapter)
30 {
31         sint    i;
32         u8      *pbuf;
33         struct wlan_network     *pnetwork;
34         struct mlme_priv                *pmlmepriv = &padapter->mlmepriv;
35         sint    res = _SUCCESS;
36
37 _func_enter_;
38
39         // We don't need to memset padapter->XXX to zero, because adapter is allocated by rtw_zvmalloc().
40         //_rtw_memset((u8 *)pmlmepriv, 0, sizeof(struct mlme_priv));
41
42         pmlmepriv->nic_hdl = (u8 *)padapter;
43
44         pmlmepriv->pscanned = NULL;
45         pmlmepriv->fw_state = WIFI_STATION_STATE; // Must sync with rtw_wdev_alloc() 
46                                                   // wdev->iftype = NL80211_IFTYPE_STATION
47         pmlmepriv->cur_network.network.InfrastructureMode = Ndis802_11AutoUnknown;
48         pmlmepriv->scan_mode=SCAN_ACTIVE;// 1: active, 0: pasive. Maybe someday we should rename this varable to "active_mode" (Jeff)
49
50         _rtw_spinlock_init(&(pmlmepriv->lock)); 
51         _rtw_init_queue(&(pmlmepriv->free_bss_pool));
52         _rtw_init_queue(&(pmlmepriv->scanned_queue));
53
54         set_scanned_network_val(pmlmepriv, 0);
55         
56         _rtw_memset(&pmlmepriv->assoc_ssid,0,sizeof(NDIS_802_11_SSID));
57
58         pbuf = rtw_zvmalloc(MAX_BSS_CNT * (sizeof(struct wlan_network)));
59         
60         if (pbuf == NULL){
61                 res=_FAIL;
62                 goto exit;
63         }
64         pmlmepriv->free_bss_buf = pbuf;
65                 
66         pnetwork = (struct wlan_network *)pbuf;
67         
68         for(i = 0; i < MAX_BSS_CNT; i++)
69         {               
70                 _rtw_init_listhead(&(pnetwork->list));
71
72                 rtw_list_insert_tail(&(pnetwork->list), &(pmlmepriv->free_bss_pool.queue));
73
74                 pnetwork++;
75         }
76
77         //allocate DMA-able/Non-Page memory for cmd_buf and rsp_buf
78
79         rtw_clear_scan_deny(padapter);
80
81 #ifdef CONFIG_LAYER2_ROAMING
82         #define RTW_ROAM_SCAN_RESULT_EXP_MS 5*1000
83         #define RTW_ROAM_RSSI_DIFF_TH 10
84         #define RTW_ROAM_SCAN_INTERVAL_MS 10*1000
85
86         pmlmepriv->roam_flags = 0
87                 | RTW_ROAM_ON_EXPIRED
88                 #ifdef CONFIG_LAYER2_ROAMING_RESUME
89                 | RTW_ROAM_ON_RESUME
90                 #endif
91                 #ifdef CONFIG_LAYER2_ROAMING_ACTIVE
92                 | RTW_ROAM_ACTIVE
93                 #endif
94                 ;
95
96         pmlmepriv->roam_scanr_exp_ms = RTW_ROAM_SCAN_RESULT_EXP_MS;
97         pmlmepriv->roam_rssi_diff_th = RTW_ROAM_RSSI_DIFF_TH;
98         pmlmepriv->roam_scan_int_ms = RTW_ROAM_SCAN_INTERVAL_MS;
99 #endif /* CONFIG_LAYER2_ROAMING */
100
101         rtw_init_mlme_timer(padapter);
102
103 exit:
104
105 _func_exit_;
106
107         return res;
108 }       
109
110 void rtw_mfree_mlme_priv_lock (struct mlme_priv *pmlmepriv);
111 void rtw_mfree_mlme_priv_lock (struct mlme_priv *pmlmepriv)
112 {
113         _rtw_spinlock_free(&pmlmepriv->lock);
114         _rtw_spinlock_free(&(pmlmepriv->free_bss_pool.lock));
115         _rtw_spinlock_free(&(pmlmepriv->scanned_queue.lock));
116 }
117
118 static void rtw_free_mlme_ie_data(u8 **ppie, u32 *plen)
119 {
120         if(*ppie)
121         {               
122                 rtw_mfree(*ppie, *plen);
123                 *plen = 0;
124                 *ppie=NULL;
125         }       
126 }
127
128 void rtw_free_mlme_priv_ie_data(struct mlme_priv *pmlmepriv)
129 {
130 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
131         rtw_buf_free(&pmlmepriv->assoc_req, &pmlmepriv->assoc_req_len);
132         rtw_buf_free(&pmlmepriv->assoc_rsp, &pmlmepriv->assoc_rsp_len);
133         rtw_free_mlme_ie_data(&pmlmepriv->wps_beacon_ie, &pmlmepriv->wps_beacon_ie_len);
134         rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_req_ie, &pmlmepriv->wps_probe_req_ie_len);
135         rtw_free_mlme_ie_data(&pmlmepriv->wps_probe_resp_ie, &pmlmepriv->wps_probe_resp_ie_len);
136         rtw_free_mlme_ie_data(&pmlmepriv->wps_assoc_resp_ie, &pmlmepriv->wps_assoc_resp_ie_len);
137         
138         rtw_free_mlme_ie_data(&pmlmepriv->p2p_beacon_ie, &pmlmepriv->p2p_beacon_ie_len);
139         rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_req_ie, &pmlmepriv->p2p_probe_req_ie_len);
140         rtw_free_mlme_ie_data(&pmlmepriv->p2p_probe_resp_ie, &pmlmepriv->p2p_probe_resp_ie_len);
141         rtw_free_mlme_ie_data(&pmlmepriv->p2p_go_probe_resp_ie, &pmlmepriv->p2p_go_probe_resp_ie_len);
142         rtw_free_mlme_ie_data(&pmlmepriv->p2p_assoc_req_ie, &pmlmepriv->p2p_assoc_req_ie_len);
143 #endif
144
145 #if defined(CONFIG_WFD) && defined(CONFIG_IOCTL_CFG80211)       
146         rtw_free_mlme_ie_data(&pmlmepriv->wfd_beacon_ie, &pmlmepriv->wfd_beacon_ie_len);
147         rtw_free_mlme_ie_data(&pmlmepriv->wfd_probe_req_ie, &pmlmepriv->wfd_probe_req_ie_len);
148         rtw_free_mlme_ie_data(&pmlmepriv->wfd_probe_resp_ie, &pmlmepriv->wfd_probe_resp_ie_len);
149         rtw_free_mlme_ie_data(&pmlmepriv->wfd_go_probe_resp_ie, &pmlmepriv->wfd_go_probe_resp_ie_len);
150         rtw_free_mlme_ie_data(&pmlmepriv->wfd_assoc_req_ie, &pmlmepriv->wfd_assoc_req_ie_len);
151 #endif
152
153 }
154
155 void _rtw_free_mlme_priv (struct mlme_priv *pmlmepriv)
156 {
157 _func_enter_;
158         if (NULL == pmlmepriv){
159                 rtw_warn_on(1);
160                 goto exit;
161         }
162         rtw_free_mlme_priv_ie_data(pmlmepriv);
163
164         if(pmlmepriv){
165                 rtw_mfree_mlme_priv_lock (pmlmepriv);
166
167                 if (pmlmepriv->free_bss_buf) {
168                         rtw_vmfree(pmlmepriv->free_bss_buf, MAX_BSS_CNT * sizeof(struct wlan_network));
169                 }
170         }
171 exit:
172 _func_exit_;    
173 }
174
175 sint    _rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork)
176 {
177         _irqL irqL;
178
179 _func_enter_;   
180
181         if (pnetwork == NULL)
182                 goto exit;
183         
184         _enter_critical_bh(&queue->lock, &irqL);
185
186         rtw_list_insert_tail(&pnetwork->list, &queue->queue);
187
188         _exit_critical_bh(&queue->lock, &irqL);
189
190 exit:   
191
192 _func_exit_;            
193
194         return _SUCCESS;
195 }
196
197 /*
198 struct  wlan_network *_rtw_dequeue_network(_queue *queue)
199 {
200         _irqL irqL;
201
202         struct wlan_network *pnetwork;
203
204 _func_enter_;   
205
206         _enter_critical_bh(&queue->lock, &irqL);
207
208         if (_rtw_queue_empty(queue) == _TRUE)
209
210                 pnetwork = NULL;
211         
212         else
213         {
214                 pnetwork = LIST_CONTAINOR(get_next(&queue->queue), struct wlan_network, list);
215                 
216                 rtw_list_delete(&(pnetwork->list));
217         }
218         
219         _exit_critical_bh(&queue->lock, &irqL);
220
221 _func_exit_;            
222
223         return pnetwork;
224 }
225 */
226
227 struct  wlan_network *_rtw_alloc_network(struct mlme_priv *pmlmepriv )//(_queue *free_queue)
228 {
229         _irqL   irqL;
230         struct  wlan_network    *pnetwork;      
231         _queue *free_queue = &pmlmepriv->free_bss_pool;
232         _list* plist = NULL;
233         
234 _func_enter_;   
235
236         _enter_critical_bh(&free_queue->lock, &irqL);
237         
238         if (_rtw_queue_empty(free_queue) == _TRUE) {
239                 pnetwork=NULL;
240                 goto exit;
241         }
242         plist = get_next(&(free_queue->queue));
243         
244         pnetwork = LIST_CONTAINOR(plist , struct wlan_network, list);
245         
246         rtw_list_delete(&pnetwork->list);
247         
248         RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("_rtw_alloc_network: ptr=%p\n", plist));
249         pnetwork->network_type = 0;
250         pnetwork->fixed = _FALSE;
251         pnetwork->last_scanned = rtw_get_current_time();
252         pnetwork->aid=0;        
253         pnetwork->join_res=0;
254
255         pmlmepriv->num_of_scanned ++;
256         
257 exit:
258         _exit_critical_bh(&free_queue->lock, &irqL);
259
260 _func_exit_;            
261
262         return pnetwork;        
263 }
264
265 void _rtw_free_network(struct   mlme_priv *pmlmepriv ,struct wlan_network *pnetwork, u8 isfreeall)
266 {
267         u32 delta_time;
268         u32 lifetime = SCANQUEUE_LIFETIME;
269         _irqL irqL;     
270         _queue *free_queue = &(pmlmepriv->free_bss_pool);
271         
272 _func_enter_;           
273
274         if (pnetwork == NULL)
275                 goto exit;
276
277         if (pnetwork->fixed == _TRUE)
278                 goto exit;
279
280         if ( (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)==_TRUE ) || 
281                 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE ) )
282                 lifetime = 1;
283
284         if(!isfreeall)
285         {
286                 delta_time = (u32) rtw_get_passing_time_ms(pnetwork->last_scanned);
287                 if(delta_time < lifetime)// unit:msec
288                         goto exit;
289         }
290
291         _enter_critical_bh(&free_queue->lock, &irqL);
292         
293         rtw_list_delete(&(pnetwork->list));
294
295         rtw_list_insert_tail(&(pnetwork->list),&(free_queue->queue));
296                 
297         pmlmepriv->num_of_scanned --;
298         
299
300         //DBG_871X("_rtw_free_network:SSID=%s\n", pnetwork->network.Ssid.Ssid);
301         
302         _exit_critical_bh(&free_queue->lock, &irqL);
303         
304 exit:           
305         
306 _func_exit_;                    
307
308 }
309
310 void _rtw_free_network_nolock(struct    mlme_priv *pmlmepriv, struct wlan_network *pnetwork)
311 {
312
313         _queue *free_queue = &(pmlmepriv->free_bss_pool);
314
315 _func_enter_;           
316
317         if (pnetwork == NULL)
318                 goto exit;
319
320         if (pnetwork->fixed == _TRUE)
321                 goto exit;
322
323         //_enter_critical(&free_queue->lock, &irqL);
324         
325         rtw_list_delete(&(pnetwork->list));
326
327         rtw_list_insert_tail(&(pnetwork->list), get_list_head(free_queue));
328                 
329         pmlmepriv->num_of_scanned --;
330         
331         //_exit_critical(&free_queue->lock, &irqL);
332         
333 exit:           
334
335 _func_exit_;                    
336
337 }
338
339
340 /*
341         return the wlan_network with the matching addr
342
343         Shall be calle under atomic context... to avoid possible racing condition...
344 */
345 struct wlan_network *_rtw_find_network(_queue *scanned_queue, u8 *addr)
346 {
347
348         //_irqL irqL;
349         _list   *phead, *plist;
350         struct  wlan_network *pnetwork = NULL;
351         u8 zero_addr[ETH_ALEN] = {0,0,0,0,0,0};
352         
353 _func_enter_;   
354
355         if(_rtw_memcmp(zero_addr, addr, ETH_ALEN)){
356                 pnetwork=NULL;
357                 goto exit;
358         }
359         
360         //_enter_critical_bh(&scanned_queue->lock, &irqL);
361         
362         phead = get_list_head(scanned_queue);
363         plist = get_next(phead);
364          
365         while (plist != phead)
366        {
367                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network ,list);
368
369                 if (_rtw_memcmp(addr, pnetwork->network.MacAddress, ETH_ALEN) == _TRUE)
370                         break;
371                 
372                 plist = get_next(plist);
373         }
374
375         if(plist == phead)
376                 pnetwork = NULL;
377
378         //_exit_critical_bh(&scanned_queue->lock, &irqL);
379         
380 exit:           
381         
382 _func_exit_;            
383
384         return pnetwork;
385         
386 }
387
388
389 void _rtw_free_network_queue(_adapter *padapter, u8 isfreeall)
390 {
391         _irqL irqL;
392         _list *phead, *plist;
393         struct wlan_network *pnetwork;
394         struct mlme_priv* pmlmepriv = &padapter->mlmepriv;
395         _queue *scanned_queue = &pmlmepriv->scanned_queue;
396
397 _func_enter_;   
398         
399
400         _enter_critical_bh(&scanned_queue->lock, &irqL);
401
402         phead = get_list_head(scanned_queue);
403         plist = get_next(phead);
404
405         while (rtw_end_of_queue_search(phead, plist) == _FALSE)
406         {
407
408                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
409
410                 plist = get_next(plist);
411
412                 _rtw_free_network(pmlmepriv,pnetwork, isfreeall);
413                 
414         }
415
416         _exit_critical_bh(&scanned_queue->lock, &irqL);
417         
418 _func_exit_;            
419
420 }
421
422
423
424
425 sint rtw_if_up(_adapter *padapter)      {
426
427         sint res;
428 _func_enter_;           
429
430         if( padapter->bDriverStopped || padapter->bSurpriseRemoved ||
431                 (check_fwstate(&padapter->mlmepriv, _FW_LINKED)== _FALSE)){             
432                 RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("rtw_if_up:bDriverStopped(%d) OR bSurpriseRemoved(%d)", padapter->bDriverStopped, padapter->bSurpriseRemoved));  
433                 res=_FALSE;
434         }
435         else
436                 res=  _TRUE;
437         
438 _func_exit_;
439         return res;
440 }
441
442
443 void rtw_generate_random_ibss(u8* pibss)
444 {
445         u32     curtime = rtw_get_current_time();
446
447 _func_enter_;
448         pibss[0] = 0x02;  //in ad-hoc mode bit1 must set to 1
449         pibss[1] = 0x11;
450         pibss[2] = 0x87;
451         pibss[3] = (u8)(curtime & 0xff) ;//p[0];
452         pibss[4] = (u8)((curtime>>8) & 0xff) ;//p[1];
453         pibss[5] = (u8)((curtime>>16) & 0xff) ;//p[2];
454 _func_exit_;
455         return;
456 }
457
458 u8 *rtw_get_capability_from_ie(u8 *ie)
459 {
460         return (ie + 8 + 2);
461 }
462
463
464 u16 rtw_get_capability(WLAN_BSSID_EX *bss)
465 {
466         u16     val;
467 _func_enter_;   
468
469         _rtw_memcpy((u8 *)&val, rtw_get_capability_from_ie(bss->IEs), 2); 
470
471 _func_exit_;            
472         return le16_to_cpu(val);
473 }
474
475 u8 *rtw_get_timestampe_from_ie(u8 *ie)
476 {
477         return (ie + 0);        
478 }
479
480 u8 *rtw_get_beacon_interval_from_ie(u8 *ie)
481 {
482         return (ie + 8);        
483 }
484
485
486 int     rtw_init_mlme_priv (_adapter *padapter)//(struct        mlme_priv *pmlmepriv)
487 {
488         int     res;
489 _func_enter_;   
490         res = _rtw_init_mlme_priv(padapter);// (pmlmepriv);
491 _func_exit_;    
492         return res;
493 }
494
495 void rtw_free_mlme_priv (struct mlme_priv *pmlmepriv)
496 {
497 _func_enter_;
498         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_mlme_priv\n"));
499         _rtw_free_mlme_priv (pmlmepriv);
500 _func_exit_;    
501 }
502
503 int     rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork);
504 int     rtw_enqueue_network(_queue *queue, struct wlan_network *pnetwork)
505 {
506         int     res;
507 _func_enter_;           
508         res = _rtw_enqueue_network(queue, pnetwork);
509 _func_exit_;            
510         return res;
511 }
512
513 /*
514 static struct   wlan_network *rtw_dequeue_network(_queue *queue)
515 {
516         struct wlan_network *pnetwork;
517 _func_enter_;           
518         pnetwork = _rtw_dequeue_network(queue);
519 _func_exit_;            
520         return pnetwork;
521 }
522 */
523
524 struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv );
525 struct  wlan_network *rtw_alloc_network(struct  mlme_priv *pmlmepriv )//(_queue *free_queue)
526 {
527         struct  wlan_network    *pnetwork;
528 _func_enter_;                   
529         pnetwork = _rtw_alloc_network(pmlmepriv);
530 _func_exit_;                    
531         return pnetwork;
532 }
533
534 void rtw_free_network(struct mlme_priv *pmlmepriv, struct       wlan_network *pnetwork, u8 is_freeall);
535 void rtw_free_network(struct mlme_priv *pmlmepriv, struct       wlan_network *pnetwork, u8 is_freeall)//(struct wlan_network *pnetwork, _queue  *free_queue)
536 {
537 _func_enter_;           
538         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_network==> ssid = %s \n\n" , pnetwork->network.Ssid.Ssid));
539         _rtw_free_network(pmlmepriv, pnetwork, is_freeall);
540 _func_exit_;
541 }
542
543 void rtw_free_network_nolock(_adapter * padapter, struct wlan_network *pnetwork );
544 void rtw_free_network_nolock(_adapter * padapter, struct wlan_network *pnetwork )
545 {
546 _func_enter_;           
547         //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_network==> ssid = %s \n\n" , pnetwork->network.Ssid.Ssid));
548         _rtw_free_network_nolock(&(padapter->mlmepriv), pnetwork);
549 #ifdef CONFIG_IOCTL_CFG80211
550         rtw_cfg80211_unlink_bss(padapter, pnetwork);
551 #endif //CONFIG_IOCTL_CFG80211
552 _func_exit_;            
553 }
554
555
556 void rtw_free_network_queue(_adapter* dev, u8 isfreeall)
557 {
558 _func_enter_;           
559         _rtw_free_network_queue(dev, isfreeall);
560 _func_exit_;                    
561 }
562
563 /*
564         return the wlan_network with the matching addr
565
566         Shall be calle under atomic context... to avoid possible racing condition...
567 */
568 struct  wlan_network *rtw_find_network(_queue *scanned_queue, u8 *addr)
569 {
570         struct  wlan_network *pnetwork = _rtw_find_network(scanned_queue, addr);
571
572         return pnetwork;
573 }
574
575 int rtw_is_same_ibss(_adapter *adapter, struct wlan_network *pnetwork)
576 {
577         int ret=_TRUE;
578         struct security_priv *psecuritypriv = &adapter->securitypriv;
579
580         if ( (psecuritypriv->dot11PrivacyAlgrthm != _NO_PRIVACY_ ) &&
581                     ( pnetwork->network.Privacy == 0 ) )
582         {
583                 ret=_FALSE;
584         }
585         else if((psecuritypriv->dot11PrivacyAlgrthm == _NO_PRIVACY_ ) &&
586                  ( pnetwork->network.Privacy == 1 ) )
587         {
588                 ret=_FALSE;
589         }
590         else
591         {
592                 ret=_TRUE;
593         }
594         
595         return ret;
596         
597 }
598
599 inline int is_same_ess(WLAN_BSSID_EX *a, WLAN_BSSID_EX *b)
600 {
601         //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("(%s,%d)(%s,%d)\n",
602         //              a->Ssid.Ssid,a->Ssid.SsidLength,b->Ssid.Ssid,b->Ssid.SsidLength));
603         return (a->Ssid.SsidLength == b->Ssid.SsidLength) 
604                 &&  _rtw_memcmp(a->Ssid.Ssid, b->Ssid.Ssid, a->Ssid.SsidLength)==_TRUE;
605 }
606
607 int is_same_network(WLAN_BSSID_EX *src, WLAN_BSSID_EX *dst, u8 feature)
608 {
609          u16 s_cap, d_cap;
610          
611 _func_enter_;   
612
613         if(rtw_bug_check(dst, src, &s_cap, &d_cap)==_FALSE)
614                         return _FALSE;
615
616         _rtw_memcpy((u8 *)&s_cap, rtw_get_capability_from_ie(src->IEs), 2);
617         _rtw_memcpy((u8 *)&d_cap, rtw_get_capability_from_ie(dst->IEs), 2);
618
619         
620         s_cap = le16_to_cpu(s_cap);
621         d_cap = le16_to_cpu(d_cap);
622         
623 _func_exit_;                    
624
625 #ifdef CONFIG_P2P
626         if ((feature == 1) && // 1: P2P supported
627                 (_rtw_memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN) == _TRUE)
628                 ) {
629                 return _TRUE;
630         }
631 #endif
632
633         return ((src->Ssid.SsidLength == dst->Ssid.SsidLength) &&
634                 //      (src->Configuration.DSConfig == dst->Configuration.DSConfig) &&
635                         ( (_rtw_memcmp(src->MacAddress, dst->MacAddress, ETH_ALEN)) == _TRUE) &&
636                         ( (_rtw_memcmp(src->Ssid.Ssid, dst->Ssid.Ssid, src->Ssid.SsidLength)) == _TRUE) &&
637                         ((s_cap & WLAN_CAPABILITY_IBSS) == 
638                         (d_cap & WLAN_CAPABILITY_IBSS)) &&
639                         ((s_cap & WLAN_CAPABILITY_BSS) == 
640                         (d_cap & WLAN_CAPABILITY_BSS)));
641         
642 }
643
644 struct wlan_network *_rtw_find_same_network(_queue *scanned_queue, struct wlan_network *network)
645 {
646         _list *phead, *plist;
647         struct wlan_network *found = NULL;
648
649         phead = get_list_head(scanned_queue);
650         plist = get_next(phead);
651
652         while (plist != phead) {
653                 found = LIST_CONTAINOR(plist, struct wlan_network ,list);
654
655                 if (is_same_network(&network->network, &found->network,0))
656                         break;
657
658                 plist = get_next(plist);
659         }
660
661         if(plist == phead)
662                 found = NULL;
663 exit:           
664         return found;
665 }
666
667 struct wlan_network *rtw_find_same_network(_queue *scanned_queue, struct wlan_network *network)
668 {
669         _irqL irqL;
670         struct wlan_network *found = NULL;
671
672         if (scanned_queue == NULL || network == NULL)
673                 goto exit;      
674
675         _enter_critical_bh(&scanned_queue->lock, &irqL);
676         found = _rtw_find_same_network(scanned_queue, network);
677         _exit_critical_bh(&scanned_queue->lock, &irqL);
678
679 exit:
680         return found;
681 }
682
683 struct  wlan_network    * rtw_get_oldest_wlan_network(_queue *scanned_queue)
684 {
685         _list   *plist, *phead;
686
687         
688         struct  wlan_network    *pwlan = NULL;
689         struct  wlan_network    *oldest = NULL;
690 _func_enter_;           
691         phead = get_list_head(scanned_queue);
692         
693         plist = get_next(phead);
694
695         while(1)
696         {
697                 
698                 if (rtw_end_of_queue_search(phead,plist)== _TRUE)
699                         break;
700                 
701                 pwlan= LIST_CONTAINOR(plist, struct wlan_network, list);
702
703                 if(pwlan->fixed!=_TRUE)
704                 {               
705                         if (oldest == NULL ||time_after(oldest->last_scanned, pwlan->last_scanned))
706                                 oldest = pwlan;
707                 }
708                 
709                 plist = get_next(plist);
710         }
711 _func_exit_;            
712         return oldest;
713         
714 }
715
716 void update_network(WLAN_BSSID_EX *dst, WLAN_BSSID_EX *src,
717         _adapter * padapter, bool update_ie)
718 {
719         u8 ss_ori = dst->PhyInfo.SignalStrength;
720         u8 sq_ori = dst->PhyInfo.SignalQuality;
721         long rssi_ori = dst->Rssi;
722
723         u8 ss_smp = src->PhyInfo.SignalStrength;
724         u8 sq_smp = src->PhyInfo.SignalQuality;
725         long rssi_smp = src->Rssi;
726
727         u8 ss_final;
728         u8 sq_final;
729         long rssi_final;
730
731 _func_enter_;           
732
733 #ifdef CONFIG_ANTENNA_DIVERSITY
734         rtw_hal_antdiv_rssi_compared(padapter, dst, src); //this will update src.Rssi, need consider again
735 #endif
736
737         #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
738         if(strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
739                 DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT", ch%u) ss_ori:%3u, sq_ori:%3u, rssi_ori:%3ld, ss_smp:%3u, sq_smp:%3u, rssi_smp:%3ld\n"
740                         , FUNC_ADPT_ARG(padapter)
741                         , src->Ssid.Ssid, MAC_ARG(src->MacAddress), src->Configuration.DSConfig
742                         ,ss_ori, sq_ori, rssi_ori
743                         ,ss_smp, sq_smp, rssi_smp
744                 );
745         }
746         #endif
747
748         /* The rule below is 1/5 for sample value, 4/5 for history value */
749         if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) && is_same_network(&(padapter->mlmepriv.cur_network.network), src, 0)) {
750                 /* Take the recvpriv's value for the connected AP*/
751                 ss_final = padapter->recvpriv.signal_strength;
752                 sq_final = padapter->recvpriv.signal_qual;
753                 /* the rssi value here is undecorated, and will be used for antenna diversity */
754                 if(sq_smp != 101) /* from the right channel */
755                         rssi_final = (src->Rssi+dst->Rssi*4)/5;
756                 else
757                         rssi_final = rssi_ori;
758         }
759         else {
760                 if(sq_smp != 101) { /* from the right channel */
761                         ss_final = ((u32)(src->PhyInfo.SignalStrength)+(u32)(dst->PhyInfo.SignalStrength)*4)/5;
762                         sq_final = ((u32)(src->PhyInfo.SignalQuality)+(u32)(dst->PhyInfo.SignalQuality)*4)/5;
763                         rssi_final = (src->Rssi+dst->Rssi*4)/5;
764                 } else {
765                         /* bss info not receving from the right channel, use the original RX signal infos */
766                         ss_final = dst->PhyInfo.SignalStrength;
767                         sq_final = dst->PhyInfo.SignalQuality;
768                         rssi_final = dst->Rssi;
769                 }
770                 
771         }
772
773         if (update_ie) {
774                 dst->Reserved[0] = src->Reserved[0];
775                 dst->Reserved[1] = src->Reserved[1];
776                 _rtw_memcpy((u8 *)dst, (u8 *)src, get_WLAN_BSSID_EX_sz(src));
777         }
778
779         dst->PhyInfo.SignalStrength = ss_final;
780         dst->PhyInfo.SignalQuality = sq_final;
781         dst->Rssi = rssi_final;
782
783         #if defined(DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) && 1
784         if(strcmp(dst->Ssid.Ssid, DBG_RX_SIGNAL_DISPLAY_SSID_MONITORED) == 0) {
785                 DBG_871X(FUNC_ADPT_FMT" %s("MAC_FMT"), SignalStrength:%u, SignalQuality:%u, RawRSSI:%ld\n"
786                         , FUNC_ADPT_ARG(padapter)
787                         , dst->Ssid.Ssid, MAC_ARG(dst->MacAddress), dst->PhyInfo.SignalStrength, dst->PhyInfo.SignalQuality, dst->Rssi);
788         }
789         #endif
790
791 #if 0 // old codes, may be useful one day...
792 //      DBG_871X("update_network: rssi=0x%lx dst->Rssi=%d ,dst->Rssi=0x%lx , src->Rssi=0x%lx",(dst->Rssi+src->Rssi)/2,dst->Rssi,dst->Rssi,src->Rssi);
793         if (check_fwstate(&padapter->mlmepriv, _FW_LINKED) && is_same_network(&(padapter->mlmepriv.cur_network.network), src))
794         {
795         
796                 //DBG_871X("b:ssid=%s update_network: src->rssi=0x%d padapter->recvpriv.ui_rssi=%d\n",src->Ssid.Ssid,src->Rssi,padapter->recvpriv.signal);
797                 if(padapter->recvpriv.signal_qual_data.total_num++ >= PHY_LINKQUALITY_SLID_WIN_MAX)
798                 {
799                       padapter->recvpriv.signal_qual_data.total_num = PHY_LINKQUALITY_SLID_WIN_MAX;
800                       last_evm = padapter->recvpriv.signal_qual_data.elements[padapter->recvpriv.signal_qual_data.index];
801                       padapter->recvpriv.signal_qual_data.total_val -= last_evm;
802                 }
803                 padapter->recvpriv.signal_qual_data.total_val += query_rx_pwr_percentage(src->Rssi);
804
805                 padapter->recvpriv.signal_qual_data.elements[padapter->recvpriv.signal_qual_data.index++] = query_rx_pwr_percentage(src->Rssi);
806                 if(padapter->recvpriv.signal_qual_data.index >= PHY_LINKQUALITY_SLID_WIN_MAX)
807                        padapter->recvpriv.signal_qual_data.index = 0;
808
809                 //DBG_871X("Total SQ=%d  pattrib->signal_qual= %d\n", padapter->recvpriv.signal_qual_data.total_val, src->Rssi);
810
811                 // <1> Showed on UI for user,in percentage.
812                 tmpVal = padapter->recvpriv.signal_qual_data.total_val/padapter->recvpriv.signal_qual_data.total_num;
813                 padapter->recvpriv.signal=(u8)tmpVal;//Link quality
814
815                 src->Rssi= translate_percentage_to_dbm(padapter->recvpriv.signal) ;
816         }
817         else{
818 //      DBG_871X("ELSE:ssid=%s update_network: src->rssi=0x%d dst->rssi=%d\n",src->Ssid.Ssid,src->Rssi,dst->Rssi);
819                 src->Rssi=(src->Rssi +dst->Rssi)/2;//dBM
820         }       
821
822 //      DBG_871X("a:update_network: src->rssi=0x%d padapter->recvpriv.ui_rssi=%d\n",src->Rssi,padapter->recvpriv.signal);
823
824 #endif
825
826 _func_exit_;            
827 }
828
829 static void update_current_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork)
830 {
831         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
832         
833 _func_enter_;           
834
835         rtw_bug_check(&(pmlmepriv->cur_network.network), 
836                 &(pmlmepriv->cur_network.network), 
837                 &(pmlmepriv->cur_network.network), 
838                 &(pmlmepriv->cur_network.network));
839
840         if ( (check_fwstate(pmlmepriv, _FW_LINKED)== _TRUE) && (is_same_network(&(pmlmepriv->cur_network.network), pnetwork, 0)))
841         {
842                 //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,"Same Network\n");
843
844                 //if(pmlmepriv->cur_network.network.IELength<= pnetwork->IELength)
845                 {
846                         update_network(&(pmlmepriv->cur_network.network), pnetwork,adapter, _TRUE);
847                         rtw_update_protection(adapter, (pmlmepriv->cur_network.network.IEs) + sizeof (NDIS_802_11_FIXED_IEs), 
848                                                                         pmlmepriv->cur_network.network.IELength);
849                 }
850         }
851
852 _func_exit_;                    
853
854 }
855
856
857 /*
858
859 Caller must hold pmlmepriv->lock first.
860
861
862 */
863 void rtw_update_scanned_network(_adapter *adapter, WLAN_BSSID_EX *target)
864 {
865         _irqL irqL;
866         _list   *plist, *phead;
867         ULONG   bssid_ex_sz;
868         struct mlme_priv        *pmlmepriv = &(adapter->mlmepriv);
869         struct mlme_ext_priv    *pmlmeext = &(adapter->mlmeextpriv);
870 #ifdef CONFIG_P2P
871         struct wifidirect_info *pwdinfo= &(adapter->wdinfo);
872 #endif // CONFIG_P2P
873         _queue  *queue  = &(pmlmepriv->scanned_queue);
874         struct wlan_network     *pnetwork = NULL;
875         struct wlan_network     *oldest = NULL;
876         int target_find = 0;
877         u8 feature = 0;    
878
879 _func_enter_;
880
881         _enter_critical_bh(&queue->lock, &irqL);
882         phead = get_list_head(queue);
883         plist = get_next(phead);
884
885 #ifdef CONFIG_P2P
886         if (!rtw_p2p_chk_state(pwdinfo, P2P_STATE_NONE))
887                 feature = 1; // p2p enable
888 #endif
889
890         while(1)
891         {
892                 if (rtw_end_of_queue_search(phead,plist)== _TRUE)
893                         break;
894
895                 pnetwork = LIST_CONTAINOR(plist, struct wlan_network, list);
896
897                 rtw_bug_check(pnetwork, pnetwork, pnetwork, pnetwork);
898
899 #ifdef CONFIG_P2P
900                 if (!rtw_p2p_chk_state(pwdinfo, P2P_STATE_NONE) &&
901                         (_rtw_memcmp(pnetwork->network.MacAddress, target->MacAddress, ETH_ALEN) == _TRUE))
902                 {
903                         target_find = 1;
904                         break;
905                 }
906 #endif
907
908                 if (is_same_network(&(pnetwork->network), target, feature))
909                 {
910                         target_find = 1;
911                         break;
912                 }
913
914                 if (rtw_roam_flags(adapter)) {
915                         /* TODO: don't  select netowrk in the same ess as oldest if it's new enough*/
916                 }
917
918                 if (oldest == NULL || time_after(oldest->last_scanned, pnetwork->last_scanned))
919                         oldest = pnetwork;
920
921                 plist = get_next(plist);
922
923         }
924         
925         
926         /* If we didn't find a match, then get a new network slot to initialize
927          * with this beacon's information */
928         //if (rtw_end_of_queue_search(phead,plist)== _TRUE) {
929         if (!target_find) {             
930                 if (_rtw_queue_empty(&(pmlmepriv->free_bss_pool)) == _TRUE) {
931                         /* If there are no more slots, expire the oldest */
932                         //list_del_init(&oldest->list);
933                         pnetwork = oldest;
934                         if(pnetwork==NULL){ 
935                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n\nsomething wrong here\n\n\n"));
936                                 goto exit;
937                         }
938 #ifdef CONFIG_ANTENNA_DIVERSITY
939                         //target->PhyInfo.Optimum_antenna = pHalData->CurAntenna;//optimum_antenna=>For antenna diversity
940                         rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(target->PhyInfo.Optimum_antenna));
941 #endif
942                         _rtw_memcpy(&(pnetwork->network), target,  get_WLAN_BSSID_EX_sz(target));
943                         //pnetwork->last_scanned = rtw_get_current_time();
944                         // variable initialize
945                         pnetwork->fixed = _FALSE;
946                         pnetwork->last_scanned = rtw_get_current_time();
947
948                         pnetwork->network_type = 0;     
949                         pnetwork->aid=0;                
950                         pnetwork->join_res=0;
951
952                         /* bss info not receving from the right channel */
953                         if (pnetwork->network.PhyInfo.SignalQuality == 101)
954                                 pnetwork->network.PhyInfo.SignalQuality = 0;
955                 }
956                 else {
957                         /* Otherwise just pull from the free list */
958
959                         pnetwork = rtw_alloc_network(pmlmepriv); // will update scan_time
960
961                         if(pnetwork==NULL){ 
962                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n\nsomething wrong here\n\n\n"));
963                                 goto exit;
964                         }
965
966                         bssid_ex_sz = get_WLAN_BSSID_EX_sz(target);
967                         target->Length = bssid_ex_sz;
968 #ifdef CONFIG_ANTENNA_DIVERSITY
969                         //target->PhyInfo.Optimum_antenna = pHalData->CurAntenna;
970                         rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(target->PhyInfo.Optimum_antenna));
971 #endif
972                         _rtw_memcpy(&(pnetwork->network), target, bssid_ex_sz );
973
974                         pnetwork->last_scanned = rtw_get_current_time();
975
976                         /* bss info not receving from the right channel */
977                         if (pnetwork->network.PhyInfo.SignalQuality == 101)
978                                 pnetwork->network.PhyInfo.SignalQuality = 0;
979
980                         rtw_list_insert_tail(&(pnetwork->list),&(queue->queue)); 
981
982                 }
983         }
984         else {
985                 /* we have an entry and we are going to update it. But this entry may
986                  * be already expired. In this case we do the same as we found a new 
987                  * net and call the new_net handler
988                  */
989                 bool update_ie = _TRUE;
990
991                 pnetwork->last_scanned = rtw_get_current_time();
992
993                 //target.Reserved[0]==1, means that scaned network is a bcn frame.
994                 if((pnetwork->network.IELength>target->IELength) && (target->Reserved[0]==1))
995                         update_ie = _FALSE;
996
997                 // probe resp(3) > beacon(1) > probe req(2)
998                 if ((target->Reserved[0] != 2) &&
999                         (target->Reserved[0] >= pnetwork->network.Reserved[0])
1000                         ) {
1001                         update_ie = _TRUE;
1002                 }
1003                 else {
1004                         update_ie = _FALSE;
1005                 }
1006
1007                 update_network(&(pnetwork->network), target,adapter, update_ie);
1008         }
1009
1010 exit:
1011         _exit_critical_bh(&queue->lock, &irqL);
1012
1013 _func_exit_;
1014 }
1015
1016 void rtw_add_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork);
1017 void rtw_add_network(_adapter *adapter, WLAN_BSSID_EX *pnetwork)
1018 {
1019         _irqL irqL;
1020         struct  mlme_priv       *pmlmepriv = &(((_adapter *)adapter)->mlmepriv);
1021         //_queue        *queue  = &(pmlmepriv->scanned_queue);
1022
1023 _func_enter_;           
1024
1025         //_enter_critical_bh(&queue->lock, &irqL);
1026
1027         #if defined(CONFIG_P2P) && defined(CONFIG_P2P_REMOVE_GROUP_INFO)
1028         if (adapter->registrypriv.wifi_spec == 0)
1029                 rtw_WLAN_BSSID_EX_remove_p2p_attr(pnetwork, P2P_ATTR_GROUP_INFO);
1030         #endif
1031         
1032         update_current_network(adapter, pnetwork);
1033         
1034         rtw_update_scanned_network(adapter, pnetwork);
1035
1036         //_exit_critical_bh(&queue->lock, &irqL);
1037         
1038 _func_exit_;            
1039 }
1040
1041 //select the desired network based on the capability of the (i)bss.
1042 // check items: (1) security
1043 //                         (2) network_type
1044 //                         (3) WMM
1045 //                         (4) HT
1046 //                     (5) others
1047 int rtw_is_desired_network(_adapter *adapter, struct wlan_network *pnetwork);
1048 int rtw_is_desired_network(_adapter *adapter, struct wlan_network *pnetwork)
1049 {
1050         struct security_priv *psecuritypriv = &adapter->securitypriv;
1051         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
1052         u32 desired_encmode;
1053         u32 privacy;
1054
1055         //u8 wps_ie[512];
1056         uint wps_ielen;
1057
1058         int bselected = _TRUE;
1059         
1060         desired_encmode = psecuritypriv->ndisencryptstatus;
1061         privacy = pnetwork->network.Privacy;
1062
1063         if(check_fwstate(pmlmepriv, WIFI_UNDER_WPS))
1064         {
1065                 if(rtw_get_wps_ie(pnetwork->network.IEs+_FIXED_IE_LENGTH_, pnetwork->network.IELength-_FIXED_IE_LENGTH_, NULL, &wps_ielen)!=NULL)
1066                 {
1067                         return _TRUE;
1068                 }
1069                 else
1070                 {       
1071                         return _FALSE;
1072                 }       
1073         }
1074         if (adapter->registrypriv.wifi_spec == 1) //for  correct flow of 8021X  to do....
1075         {
1076                 u8 *p=NULL;
1077                 uint ie_len=0;
1078
1079                 if ((desired_encmode == Ndis802_11EncryptionDisabled) && (privacy != 0))
1080                     bselected = _FALSE;
1081
1082                 if ( psecuritypriv->ndisauthtype == Ndis802_11AuthModeWPA2PSK) {
1083                         p = rtw_get_ie(pnetwork->network.IEs + _BEACON_IE_OFFSET_, _RSN_IE_2_, &ie_len, (pnetwork->network.IELength - _BEACON_IE_OFFSET_));
1084                         if (p && ie_len>0) {
1085                                 bselected = _TRUE;
1086                         } else {
1087                                 bselected = _FALSE;
1088                         }
1089                 }
1090         }
1091         
1092
1093         if ((desired_encmode != Ndis802_11EncryptionDisabled) && (privacy == 0)) {
1094                 DBG_871X("desired_encmode: %d, privacy: %d\n", desired_encmode, privacy);
1095                 bselected = _FALSE;
1096         }
1097
1098         if(check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) == _TRUE)
1099         {
1100                 if(pnetwork->network.InfrastructureMode != pmlmepriv->cur_network.network.InfrastructureMode)
1101                         bselected = _FALSE;
1102         }       
1103                 
1104
1105         return bselected;
1106 }
1107
1108 /* TODO: Perry : For Power Management */
1109 void rtw_atimdone_event_callback(_adapter       *adapter , u8 *pbuf)
1110 {
1111
1112 _func_enter_;           
1113         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("receive atimdone_evet\n"));        
1114 _func_exit_;                    
1115         return; 
1116 }
1117
1118
1119 void rtw_survey_event_callback(_adapter *adapter, u8 *pbuf)
1120 {
1121         _irqL  irqL;
1122         u32 len;
1123         WLAN_BSSID_EX *pnetwork;
1124         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1125
1126 _func_enter_;           
1127
1128         pnetwork = (WLAN_BSSID_EX *)pbuf;
1129
1130         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("rtw_survey_event_callback, ssid=%s\n",  pnetwork->Ssid.Ssid));
1131
1132 #ifdef CONFIG_RTL8712
1133         //endian_convert
1134         pnetwork->Length = le32_to_cpu(pnetwork->Length);
1135         pnetwork->Ssid.SsidLength = le32_to_cpu(pnetwork->Ssid.SsidLength);     
1136         pnetwork->Privacy =le32_to_cpu( pnetwork->Privacy);
1137         pnetwork->Rssi = le32_to_cpu(pnetwork->Rssi);
1138         pnetwork->NetworkTypeInUse =le32_to_cpu(pnetwork->NetworkTypeInUse);    
1139         pnetwork->Configuration.ATIMWindow = le32_to_cpu(pnetwork->Configuration.ATIMWindow);
1140         pnetwork->Configuration.BeaconPeriod = le32_to_cpu(pnetwork->Configuration.BeaconPeriod);
1141         pnetwork->Configuration.DSConfig =le32_to_cpu(pnetwork->Configuration.DSConfig);
1142         pnetwork->Configuration.FHConfig.DwellTime=le32_to_cpu(pnetwork->Configuration.FHConfig.DwellTime);
1143         pnetwork->Configuration.FHConfig.HopPattern=le32_to_cpu(pnetwork->Configuration.FHConfig.HopPattern);
1144         pnetwork->Configuration.FHConfig.HopSet=le32_to_cpu(pnetwork->Configuration.FHConfig.HopSet);
1145         pnetwork->Configuration.FHConfig.Length=le32_to_cpu(pnetwork->Configuration.FHConfig.Length);   
1146         pnetwork->Configuration.Length = le32_to_cpu(pnetwork->Configuration.Length);
1147         pnetwork->InfrastructureMode = le32_to_cpu(pnetwork->InfrastructureMode);
1148         pnetwork->IELength = le32_to_cpu(pnetwork->IELength);
1149 #endif  
1150
1151         len = get_WLAN_BSSID_EX_sz(pnetwork);
1152         if(len > (sizeof(WLAN_BSSID_EX)))
1153         {
1154                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n ****rtw_survey_event_callback: return a wrong bss ***\n"));
1155                 return;
1156         }
1157
1158
1159         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1160
1161         // update IBSS_network 's timestamp
1162         if ((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)) == _TRUE)
1163         {
1164                 //RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,"rtw_survey_event_callback : WIFI_ADHOC_MASTER_STATE \n\n");
1165                 if(_rtw_memcmp(&(pmlmepriv->cur_network.network.MacAddress), pnetwork->MacAddress, ETH_ALEN))
1166                 {
1167                         struct wlan_network* ibss_wlan = NULL;
1168                         _irqL   irqL;
1169                         
1170                         _rtw_memcpy(pmlmepriv->cur_network.network.IEs, pnetwork->IEs, 8);
1171                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1172                         ibss_wlan = rtw_find_network(&pmlmepriv->scanned_queue,  pnetwork->MacAddress);
1173                         if(ibss_wlan)
1174                         {
1175                                 _rtw_memcpy(ibss_wlan->network.IEs , pnetwork->IEs, 8);                 
1176                                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);             
1177                                 goto exit;
1178                         }
1179                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1180                 }
1181         }
1182
1183         // lock pmlmepriv->lock when you accessing network_q
1184         if ((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == _FALSE)
1185         {               
1186                 if( pnetwork->Ssid.Ssid[0] == 0 )
1187                 {
1188                         pnetwork->Ssid.SsidLength = 0;
1189                 }       
1190                 rtw_add_network(adapter, pnetwork);
1191         }       
1192
1193 exit:   
1194                 
1195         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1196
1197 _func_exit_;            
1198
1199         return; 
1200 }
1201
1202
1203
1204 void rtw_surveydone_event_callback(_adapter     *adapter, u8 *pbuf)
1205 {
1206         _irqL  irqL;
1207         u8 timer_cancelled;
1208         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1209
1210 #ifdef CONFIG_MLME_EXT
1211         mlmeext_surveydone_event_callback(adapter);
1212 #endif
1213
1214 _func_enter_;
1215
1216         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1217         if (pmlmepriv->wps_probe_req_ie) {
1218                 u32 free_len = pmlmepriv->wps_probe_req_ie_len;
1219                 pmlmepriv->wps_probe_req_ie_len = 0;
1220                 rtw_mfree(pmlmepriv->wps_probe_req_ie, free_len);
1221                 pmlmepriv->wps_probe_req_ie = NULL;
1222         }
1223
1224         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("rtw_surveydone_event_callback: fw_state:%x\n\n", get_fwstate(pmlmepriv)));
1225
1226         if (check_fwstate(pmlmepriv,_FW_UNDER_SURVEY) == _FALSE) {
1227                 DBG_871X(FUNC_ADPT_FMT" fw_state:0x%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
1228                 //rtw_warn_on(1);
1229         }
1230
1231         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1232         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1233
1234         _cancel_timer(&pmlmepriv->scan_to_timer, &timer_cancelled);
1235
1236         _enter_critical_bh(&pmlmepriv->lock, &irqL);
1237
1238         #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1239         rtw_set_signal_stat_timer(&adapter->recvpriv);
1240         #endif
1241
1242         if(pmlmepriv->to_join == _TRUE)
1243         {
1244                 if((check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE) )
1245                 {
1246                         if(check_fwstate(pmlmepriv, _FW_LINKED)==_FALSE)
1247                         {
1248                                 set_fwstate(pmlmepriv, _FW_UNDER_LINKING);      
1249                                 
1250                                 if(rtw_select_and_join_from_scanned_queue(pmlmepriv)==_SUCCESS)
1251                                 {
1252                                         _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
1253                                 }
1254                                 else
1255                                 {
1256                                         WLAN_BSSID_EX    *pdev_network = &(adapter->registrypriv.dev_network);                  
1257                                         u8 *pibss = adapter->registrypriv.dev_network.MacAddress;
1258
1259                                         //pmlmepriv->fw_state ^= _FW_UNDER_SURVEY;//because don't set assoc_timer
1260                                         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1261
1262                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("switching to adhoc master\n"));
1263                                 
1264                                         _rtw_memset(&pdev_network->Ssid, 0, sizeof(NDIS_802_11_SSID));
1265                                         _rtw_memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(NDIS_802_11_SSID));
1266         
1267                                         rtw_update_registrypriv_dev_network(adapter);
1268                                         rtw_generate_random_ibss(pibss);
1269
1270         
1271                                         pmlmepriv->fw_state = WIFI_ADHOC_MASTER_STATE;
1272                         
1273                                         if(rtw_createbss_cmd(adapter)!=_SUCCESS)
1274                                         {
1275                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Error=>rtw_createbss_cmd status FAIL\n"));                                         
1276                                         }       
1277
1278                                         pmlmepriv->to_join = _FALSE;
1279                                 }
1280                         }
1281                 }
1282                 else
1283                 {
1284                         int s_ret;
1285                         set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
1286                         pmlmepriv->to_join = _FALSE;
1287                         if(_SUCCESS == (s_ret=rtw_select_and_join_from_scanned_queue(pmlmepriv)))
1288                         {
1289                              _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);      
1290                         }
1291                         else if(s_ret == 2)//there is no need to wait for join
1292                         {
1293                                 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1294                                 rtw_indicate_connect(adapter);
1295                         }
1296                         else
1297                         {
1298                                 DBG_871X("try_to_join, but select scanning queue fail, to_roam:%d\n", rtw_to_roam(adapter));
1299
1300                                 if (rtw_to_roam(adapter) != 0) {
1301                                         if(rtw_dec_to_roam(adapter) == 0
1302                                                 || _SUCCESS != rtw_sitesurvey_cmd(adapter, &pmlmepriv->assoc_ssid, 1, NULL, 0)
1303                                         ) {
1304                                                 rtw_set_to_roam(adapter, 0);
1305 #ifdef CONFIG_INTEL_WIDI
1306                                                 if(adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
1307                                                 {
1308                                                         _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1309                                                         intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1310                                                         DBG_871X("change to widi listen\n");
1311                                                 }
1312 #endif // CONFIG_INTEL_WIDI
1313                                                 rtw_free_assoc_resources(adapter, 1);
1314                                                 rtw_indicate_disconnect(adapter);
1315                                         } else {
1316                                                 pmlmepriv->to_join = _TRUE;
1317                                         }
1318                                 }
1319                                 else
1320                                 {
1321                                         rtw_indicate_disconnect(adapter);
1322                                 }
1323                                 _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
1324                         }
1325                 }
1326         } else {
1327                 if (rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
1328                         if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)
1329                                 && check_fwstate(pmlmepriv, _FW_LINKED))
1330                         {
1331                                 if (rtw_select_roaming_candidate(pmlmepriv) == _SUCCESS) {
1332                                         receive_disconnect(adapter, pmlmepriv->cur_network.network.MacAddress
1333                                                 , WLAN_REASON_ACTIVE_ROAM);
1334                                 }
1335                         }
1336                 }
1337         }
1338         
1339         //DBG_871X("scan complete in %dms\n",rtw_get_passing_time_ms(pmlmepriv->scan_start_time));
1340
1341         _exit_critical_bh(&pmlmepriv->lock, &irqL);
1342
1343 #ifdef CONFIG_P2P_PS
1344         if (check_fwstate(pmlmepriv, _FW_LINKED) == _TRUE) {
1345                 p2p_ps_wk_cmd(adapter, P2P_PS_SCAN_DONE, 0);
1346         }
1347 #endif // CONFIG_P2P_PS
1348
1349         rtw_os_xmit_schedule(adapter);
1350 #ifdef CONFIG_CONCURRENT_MODE   
1351         rtw_os_xmit_schedule(adapter->pbuddy_adapter);
1352 #endif
1353
1354 #ifdef CONFIG_DRVEXT_MODULE_WSC
1355         drvext_surveydone_callback(&adapter->drvextpriv);
1356 #endif
1357
1358 #ifdef DBG_CONFIG_ERROR_DETECT
1359         {
1360                 struct mlme_ext_priv *pmlmeext = &adapter->mlmeextpriv;         
1361                 if(pmlmeext->sitesurvey_res.bss_cnt == 0){
1362                         //rtw_hal_sreset_reset(adapter);
1363                 }
1364         }
1365 #endif
1366
1367 #ifdef CONFIG_IOCTL_CFG80211
1368         rtw_cfg80211_surveydone_event_callback(adapter);
1369 #endif //CONFIG_IOCTL_CFG80211
1370
1371         rtw_indicate_scan_done(adapter, _FALSE);
1372
1373 #if defined(CONFIG_CONCURRENT_MODE) && defined(CONFIG_IOCTL_CFG80211)
1374         if (adapter->pbuddy_adapter) {
1375                 _adapter *buddy_adapter = adapter->pbuddy_adapter;
1376                 struct mlme_priv *buddy_mlme = &(buddy_adapter->mlmepriv);
1377                 struct rtw_wdev_priv *buddy_wdev_priv = adapter_wdev_data(buddy_adapter);
1378                 bool indicate_buddy_scan = _FALSE;
1379
1380                 _enter_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
1381                 if (buddy_wdev_priv->scan_request && buddy_mlme->scanning_via_buddy_intf == _TRUE) {
1382                         buddy_mlme->scanning_via_buddy_intf = _FALSE;
1383                         clr_fwstate(buddy_mlme, _FW_UNDER_SURVEY);
1384                         indicate_buddy_scan = _TRUE;
1385                 }
1386                 _exit_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
1387
1388                 if (indicate_buddy_scan == _TRUE) {
1389                         #ifdef CONFIG_IOCTL_CFG80211
1390                         rtw_cfg80211_surveydone_event_callback(buddy_adapter);
1391                         #endif
1392                         rtw_indicate_scan_done(buddy_adapter, _FALSE);
1393                 }
1394         }
1395 #endif /* CONFIG_CONCURRENT_MODE */
1396
1397 _func_exit_;    
1398
1399 }
1400
1401 void rtw_dummy_event_callback(_adapter *adapter , u8 *pbuf)
1402 {
1403
1404 }
1405
1406 void rtw_fwdbg_event_callback(_adapter *adapter , u8 *pbuf)
1407 {
1408
1409 }
1410
1411 static void free_scanqueue(struct       mlme_priv *pmlmepriv)
1412 {
1413         _irqL irqL, irqL0;
1414         _queue *free_queue = &pmlmepriv->free_bss_pool;
1415         _queue *scan_queue = &pmlmepriv->scanned_queue;
1416         _list   *plist, *phead, *ptemp;
1417         
1418 _func_enter_;           
1419         
1420         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+free_scanqueue\n"));
1421         _enter_critical_bh(&scan_queue->lock, &irqL0);
1422         _enter_critical_bh(&free_queue->lock, &irqL);
1423
1424         phead = get_list_head(scan_queue);
1425         plist = get_next(phead);
1426
1427         while (plist != phead)
1428        {
1429                 ptemp = get_next(plist);
1430                 rtw_list_delete(plist);
1431                 rtw_list_insert_tail(plist, &free_queue->queue);
1432                 plist =ptemp;
1433                 pmlmepriv->num_of_scanned --;
1434         }
1435         
1436         _exit_critical_bh(&free_queue->lock, &irqL);
1437         _exit_critical_bh(&scan_queue->lock, &irqL0);
1438         
1439 _func_exit_;
1440 }
1441
1442 void rtw_reset_rx_info(struct debug_priv *pdbgpriv){
1443         pdbgpriv->dbg_rx_ampdu_drop_count = 0;
1444         pdbgpriv->dbg_rx_ampdu_forced_indicate_count = 0;
1445         pdbgpriv->dbg_rx_ampdu_loss_count = 0;
1446         pdbgpriv->dbg_rx_dup_mgt_frame_drop_count = 0;
1447         pdbgpriv->dbg_rx_ampdu_window_shift_cnt = 0;
1448 }
1449         
1450 /*
1451 *rtw_free_assoc_resources: the caller has to lock pmlmepriv->lock
1452 */
1453 void rtw_free_assoc_resources(_adapter *adapter, int lock_scanned_queue)
1454 {
1455         _irqL irqL;
1456         struct wlan_network* pwlan = NULL;
1457         struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
1458         struct  sta_priv *pstapriv = &adapter->stapriv;
1459         struct wlan_network *tgt_network = &pmlmepriv->cur_network;
1460         struct dvobj_priv *psdpriv = adapter->dvobj;
1461         struct debug_priv *pdbgpriv = &psdpriv->drv_dbg;        
1462
1463         
1464 #ifdef CONFIG_TDLS
1465         struct tdls_info *ptdlsinfo = &adapter->tdlsinfo;
1466 #endif //CONFIG_TDLS
1467 _func_enter_;                   
1468
1469         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_, ("+rtw_free_assoc_resources\n"));
1470         RT_TRACE(_module_rtl871x_mlme_c_, _drv_info_, ("tgt_network->network.MacAddress="MAC_FMT" ssid=%s\n",
1471                 MAC_ARG(tgt_network->network.MacAddress), tgt_network->network.Ssid.Ssid));
1472
1473         if(check_fwstate( pmlmepriv, WIFI_STATION_STATE|WIFI_AP_STATE))
1474         {
1475                 struct sta_info* psta;
1476                 
1477                 psta = rtw_get_stainfo(&adapter->stapriv, tgt_network->network.MacAddress);
1478
1479 #ifdef CONFIG_TDLS
1480                 if (ptdlsinfo->link_established == _TRUE) {
1481                         rtw_tdls_cmd(adapter, NULL, TDLS_RS_RCR);
1482                         rtw_reset_tdls_info(adapter);
1483                         rtw_free_all_stainfo(adapter);
1484                         //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1485                 }
1486                 else
1487 #endif //CONFIG_TDLS
1488                 {
1489                         //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1490                         rtw_free_stainfo(adapter,  psta);
1491                 }
1492
1493                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
1494                 
1495         }
1496
1497         if(check_fwstate( pmlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE|WIFI_AP_STATE))
1498         {
1499                 struct sta_info* psta;
1500         
1501                 rtw_free_all_stainfo(adapter);
1502
1503                 psta = rtw_get_bcmc_stainfo(adapter);
1504                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);                
1505                 rtw_free_stainfo(adapter, psta);
1506                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);         
1507
1508                 rtw_init_bcmc_stainfo(adapter); 
1509         }
1510
1511         if(lock_scanned_queue)
1512                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1513
1514         pwlan = _rtw_find_same_network(&pmlmepriv->scanned_queue, tgt_network);
1515         if(pwlan)               
1516         {
1517                 pwlan->fixed = _FALSE;
1518
1519                 DBG_871X("free disconnecting network\n");
1520                 rtw_free_network_nolock(adapter, pwlan);
1521 #ifdef CONFIG_P2P
1522                 if(!rtw_p2p_chk_state(&adapter->wdinfo, P2P_STATE_NONE))
1523                 {
1524                         rtw_set_scan_deny(adapter, 2000);
1525                         //rtw_clear_scan_deny(adapter);                 
1526                 }
1527 #endif //CONFIG_P2P
1528         }       
1529         else
1530         {
1531                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_free_assoc_resources : pwlan== NULL \n\n"));
1532         }
1533
1534
1535         if((check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE) && (adapter->stapriv.asoc_sta_count== 1))
1536                 /*||check_fwstate(pmlmepriv, WIFI_STATION_STATE)*/)
1537         {
1538                 rtw_free_network_nolock(adapter, pwlan); 
1539         }
1540
1541         if(lock_scanned_queue)
1542                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
1543         
1544         adapter->securitypriv.key_mask = 0;
1545
1546         rtw_reset_rx_info(pdbgpriv);
1547
1548 _func_exit_;    
1549         
1550 }
1551
1552 /*
1553 *rtw_indicate_connect: the caller has to lock pmlmepriv->lock
1554 */
1555 void rtw_indicate_connect(_adapter *padapter)
1556 {
1557         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
1558         struct xmit_priv        *pxmitpriv = &padapter->xmitpriv;
1559         
1560 _func_enter_;
1561
1562         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_connect\n"));
1563  
1564         pmlmepriv->to_join = _FALSE;
1565
1566         if(!check_fwstate(&padapter->mlmepriv, _FW_LINKED)) 
1567         {
1568
1569 #ifdef CONFIG_SW_ANTENNA_DIVERSITY
1570                 rtw_hal_set_hwreg(padapter, HW_VAR_ANTENNA_DIVERSITY_LINK, 0);
1571 #endif
1572
1573                 set_fwstate(pmlmepriv, _FW_LINKED);
1574
1575                 rtw_led_control(padapter, LED_CTL_LINK);
1576
1577         
1578 #ifdef CONFIG_DRVEXT_MODULE
1579                 if(padapter->drvextpriv.enable_wpa)
1580                 {
1581                         indicate_l2_connect(padapter);
1582                 }
1583                 else
1584 #endif
1585                 {
1586                         rtw_os_indicate_connect(padapter);
1587                 }
1588
1589         }
1590
1591         rtw_set_to_roam(padapter, 0);
1592 #ifdef CONFIG_INTEL_WIDI
1593         if(padapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
1594         {
1595                 _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
1596                 intel_widi_wk_cmd(padapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
1597                 DBG_871X("change to widi listen\n");
1598         }
1599 #endif // CONFIG_INTEL_WIDI
1600
1601         rtw_set_scan_deny(padapter, 3000);
1602
1603         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("-rtw_indicate_connect: fw_state=0x%08x\n", get_fwstate(pmlmepriv)));
1604  
1605 _func_exit_;
1606
1607 }
1608
1609
1610 /*
1611 *rtw_indicate_disconnect: the caller has to lock pmlmepriv->lock
1612 */
1613 void rtw_indicate_disconnect( _adapter *padapter )
1614 {
1615         struct  mlme_priv *pmlmepriv = &padapter->mlmepriv;     
1616         struct mlme_ext_priv *pmlmeext = &(padapter->mlmeextpriv);
1617         struct mlme_ext_info *pmlmeinfo = &(pmlmeext->mlmext_info);
1618         WLAN_BSSID_EX   *cur_network = &(pmlmeinfo->network);
1619         struct sta_info *psta;
1620         struct sta_priv *pstapriv = &padapter->stapriv;
1621         u8 *wps_ie=NULL;
1622         uint wpsie_len=0;
1623
1624 _func_enter_;   
1625         
1626         RT_TRACE(_module_rtl871x_mlme_c_, _drv_err_, ("+rtw_indicate_disconnect\n"));
1627
1628         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING|WIFI_UNDER_WPS);
1629
1630         // force to clear cur_network_scanned's SELECTED REGISTRAR
1631         if (pmlmepriv->cur_network_scanned) {
1632                 WLAN_BSSID_EX   *current_joined_bss = &(pmlmepriv->cur_network_scanned->network);
1633                 if (current_joined_bss) {
1634                         wps_ie=rtw_get_wps_ie(current_joined_bss->IEs +_FIXED_IE_LENGTH_,
1635                                 current_joined_bss->IELength-_FIXED_IE_LENGTH_, NULL, &wpsie_len);
1636                         if (wps_ie && wpsie_len>0) {
1637                                 u8 *attr = NULL;
1638                                 u32 attr_len;
1639                                 attr=rtw_get_wps_attr(wps_ie, wpsie_len, WPS_ATTR_SELECTED_REGISTRAR,
1640                                                        NULL, &attr_len);
1641                                 if (attr)
1642                                         *(attr + 4) = 0;
1643                         }
1644                 }
1645         }
1646         //DBG_871X("clear wps when %s\n", __func__);
1647
1648         if(rtw_to_roam(padapter) > 0)
1649                 _clr_fwstate_(pmlmepriv, _FW_LINKED);
1650
1651 #ifdef CONFIG_WAPI_SUPPORT
1652         psta = rtw_get_stainfo(pstapriv,cur_network->MacAddress);
1653         if (check_fwstate(pmlmepriv, WIFI_STATION_STATE))
1654         {
1655                 rtw_wapi_return_one_sta_info(padapter, psta->hwaddr);
1656         }
1657         else if (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE) ||
1658                 check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE))
1659         {
1660                 rtw_wapi_return_all_sta_info(padapter);
1661         }
1662 #endif
1663
1664         if(check_fwstate(&padapter->mlmepriv, _FW_LINKED) 
1665                 || (rtw_to_roam(padapter) <= 0)
1666         )
1667         {
1668                 rtw_os_indicate_disconnect(padapter);
1669
1670                 //set ips_deny_time to avoid enter IPS before LPS leave
1671                 rtw_set_ips_deny(padapter, 3000);
1672
1673               _clr_fwstate_(pmlmepriv, _FW_LINKED);
1674
1675                 rtw_led_control(padapter, LED_CTL_NO_LINK);
1676
1677                 rtw_clear_scan_deny(padapter);
1678         }
1679
1680 #ifdef CONFIG_P2P_PS
1681         p2p_ps_wk_cmd(padapter, P2P_PS_DISABLE, 1);
1682 #endif // CONFIG_P2P_PS
1683
1684 #ifdef CONFIG_LPS
1685         rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_DISCONNECT, 1);
1686 #endif
1687
1688 #ifdef CONFIG_BEAMFORMING
1689         beamforming_wk_cmd(padapter, BEAMFORMING_CTRL_LEAVE, cur_network->MacAddress, ETH_ALEN, 1);
1690 #endif
1691
1692 _func_exit_;    
1693 }
1694
1695 inline void rtw_indicate_scan_done( _adapter *padapter, bool aborted)
1696 {
1697         DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
1698
1699         rtw_os_indicate_scan_done(padapter, aborted);
1700
1701 #ifdef CONFIG_IPS
1702         if (is_primary_adapter(padapter)
1703                 && (_FALSE == adapter_to_pwrctl(padapter)->bInSuspend)
1704                 && (check_fwstate(&padapter->mlmepriv, WIFI_ASOC_STATE|WIFI_UNDER_LINKING) == _FALSE))
1705         {
1706                 struct pwrctrl_priv *pwrpriv;
1707
1708                 pwrpriv = adapter_to_pwrctl(padapter);
1709                 rtw_set_ips_deny(padapter, 0);
1710 #ifdef CONFIG_IPS_CHECK_IN_WD
1711                 _set_timer(&padapter->mlmepriv.dynamic_chk_timer, 1);
1712 #else // !CONFIG_IPS_CHECK_IN_WD
1713                 _rtw_set_pwr_state_check_timer(pwrpriv, 1);
1714 #endif // !CONFIG_IPS_CHECK_IN_WD
1715         }
1716 #endif // CONFIG_IPS
1717 }
1718
1719 u32 rtw_scan_abort_timeout(_adapter *adapter, u32 timeout_ms)
1720 {
1721         u32 start;
1722         u32 pass_ms;
1723         struct mlme_priv        *pmlmepriv = &(adapter->mlmepriv);
1724         struct mlme_ext_priv    *pmlmeext = &(adapter->mlmeextpriv);
1725
1726         start = rtw_get_current_time();
1727         pmlmeext->scan_abort = _TRUE;
1728         while (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)
1729                 && rtw_get_passing_time_ms(start) <= timeout_ms) {
1730
1731                 if (adapter->bDriverStopped || adapter->bSurpriseRemoved)
1732                         break;
1733
1734                 DBG_871X(FUNC_NDEV_FMT"fw_state=_FW_UNDER_SURVEY!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1735                 rtw_msleep_os(20);
1736         }
1737
1738         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY)) {
1739                 if (!adapter->bDriverStopped && !adapter->bSurpriseRemoved)
1740                         DBG_871X(FUNC_NDEV_FMT"waiting for scan_abort time out!\n", FUNC_NDEV_ARG(adapter->pnetdev));
1741                 #ifdef CONFIG_PLATFORM_MSTAR
1742                 //_clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
1743                 set_survey_timer(pmlmeext, 0);
1744                 mlme_set_scan_to_timer(pmlmepriv, 50);
1745                 #endif
1746                 rtw_indicate_scan_done(adapter, _TRUE);
1747         }
1748         pmlmeext->scan_abort = _FALSE;
1749         pass_ms = rtw_get_passing_time_ms(start);
1750
1751         return pass_ms;
1752 }
1753
1754 void rtw_scan_abort_no_wait(_adapter *adapter)
1755 {
1756         struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
1757         struct mlme_ext_priv *pmlmeext = &(adapter->mlmeextpriv);
1758
1759         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY))
1760                 pmlmeext->scan_abort = _TRUE;
1761 }
1762
1763 void rtw_scan_abort(_adapter *adapter)
1764 {
1765         rtw_scan_abort_timeout(adapter, 200);
1766 }
1767
1768 static struct sta_info *rtw_joinbss_update_stainfo(_adapter *padapter, struct wlan_network *pnetwork)
1769 {
1770         int i;
1771         struct sta_info *bmc_sta, *psta=NULL;
1772         struct recv_reorder_ctrl *preorder_ctrl;
1773         struct sta_priv *pstapriv = &padapter->stapriv;
1774         struct mlme_ext_priv    *pmlmeext = &padapter->mlmeextpriv;
1775
1776         psta = rtw_get_stainfo(pstapriv, pnetwork->network.MacAddress);
1777         if(psta==NULL) {
1778                 psta = rtw_alloc_stainfo(pstapriv, pnetwork->network.MacAddress);
1779         }
1780
1781         if(psta) //update ptarget_sta
1782         {
1783                 DBG_871X("%s\n", __FUNCTION__);
1784         
1785                 psta->aid  = pnetwork->join_res;
1786
1787 #if 0 //alloc macid when call rtw_alloc_stainfo(), and release macid when call rtw_free_stainfo()
1788 #ifdef CONFIG_CONCURRENT_MODE   
1789
1790                 if(PRIMARY_ADAPTER == padapter->adapter_type)
1791                         psta->mac_id=0;
1792                 else
1793                         psta->mac_id=2;
1794 #else
1795                 psta->mac_id=0;
1796 #endif
1797 #endif //removed
1798
1799                 update_sta_info(padapter, psta);
1800
1801                 //update station supportRate
1802                 psta->bssratelen = rtw_get_rateset_len(pnetwork->network.SupportedRates);
1803                 _rtw_memcpy(psta->bssrateset, pnetwork->network.SupportedRates, psta->bssratelen);
1804                 rtw_hal_update_sta_rate_mask(padapter, psta);
1805
1806                 psta->wireless_mode = pmlmeext->cur_wireless_mode;
1807                 psta->raid = rtw_hal_networktype_to_raid(padapter,psta);
1808
1809
1810                 //sta mode
1811                 rtw_hal_set_odm_var(padapter,HAL_ODM_STA_INFO,psta,_TRUE);
1812
1813                 //security related
1814                 if(padapter->securitypriv.dot11AuthAlgrthm== dot11AuthAlgrthm_8021X)
1815                 {                                               
1816                         padapter->securitypriv.binstallGrpkey=_FALSE;
1817                         padapter->securitypriv.busetkipkey=_FALSE;                                              
1818                         padapter->securitypriv.bgrpkey_handshake=_FALSE;
1819
1820                         psta->ieee8021x_blocked=_TRUE;
1821                         psta->dot118021XPrivacy=padapter->securitypriv.dot11PrivacyAlgrthm;
1822                                                 
1823                         _rtw_memset((u8 *)&psta->dot118021x_UncstKey, 0, sizeof (union Keytype));
1824                                                 
1825                         _rtw_memset((u8 *)&psta->dot11tkiprxmickey, 0, sizeof (union Keytype));
1826                         _rtw_memset((u8 *)&psta->dot11tkiptxmickey, 0, sizeof (union Keytype));
1827                                                 
1828                         _rtw_memset((u8 *)&psta->dot11txpn, 0, sizeof (union pn48));
1829                         psta->dot11txpn.val = psta->dot11txpn.val + 1;
1830 #ifdef CONFIG_IEEE80211W
1831                         _rtw_memset((u8 *)&psta->dot11wtxpn, 0, sizeof (union pn48));
1832 #endif //CONFIG_IEEE80211W
1833                         _rtw_memset((u8 *)&psta->dot11rxpn, 0, sizeof (union pn48));    
1834                 }
1835
1836                 //      Commented by Albert 2012/07/21
1837                 //      When doing the WPS, the wps_ie_len won't equal to 0
1838                 //      And the Wi-Fi driver shouldn't allow the data packet to be tramsmitted.
1839                 if ( padapter->securitypriv.wps_ie_len != 0 )
1840                 {
1841                         psta->ieee8021x_blocked=_TRUE;
1842                         padapter->securitypriv.wps_ie_len = 0;
1843                 }
1844
1845
1846                 //for A-MPDU Rx reordering buffer control for bmc_sta & sta_info
1847                 //if A-MPDU Rx is enabled, reseting  rx_ordering_ctrl wstart_b(indicate_seq) to default value=0xffff
1848                 //todo: check if AP can send A-MPDU packets
1849                 for(i=0; i < 16 ; i++)
1850                 {
1851                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
1852                         preorder_ctrl = &psta->recvreorder_ctrl[i];
1853                         preorder_ctrl->enable = _FALSE;
1854                         preorder_ctrl->indicate_seq = 0xffff;
1855                         #ifdef DBG_RX_SEQ
1856                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
1857                                 preorder_ctrl->indicate_seq);
1858                         #endif
1859                         preorder_ctrl->wend_b= 0xffff;
1860                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
1861                         preorder_ctrl->ampdu_size = RX_AMPDU_SIZE_INVALID;
1862                 }
1863
1864                 
1865                 bmc_sta = rtw_get_bcmc_stainfo(padapter);
1866                 if(bmc_sta)
1867                 {
1868                         for(i=0; i < 16 ; i++)
1869                         {
1870                                 //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
1871                                 preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
1872                                 preorder_ctrl->enable = _FALSE;
1873                                 preorder_ctrl->indicate_seq = 0xffff;
1874                                 #ifdef DBG_RX_SEQ
1875                                 DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
1876                                         preorder_ctrl->indicate_seq);
1877                                 #endif
1878                                 preorder_ctrl->wend_b= 0xffff;
1879                                 preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
1880                                 preorder_ctrl->ampdu_size = RX_AMPDU_SIZE_INVALID;
1881                         }
1882                 }
1883         }
1884                                         
1885         return psta;
1886         
1887 }
1888
1889 //pnetwork : returns from rtw_joinbss_event_callback
1890 //ptarget_wlan: found from scanned_queue
1891 static void rtw_joinbss_update_network(_adapter *padapter, struct wlan_network *ptarget_wlan, struct wlan_network  *pnetwork)
1892 {
1893         struct mlme_priv        *pmlmepriv = &(padapter->mlmepriv);     
1894         struct wlan_network  *cur_network = &(pmlmepriv->cur_network);
1895
1896         DBG_871X("%s\n", __FUNCTION__);
1897         
1898         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("\nfw_state:%x, BSSID:"MAC_FMT"\n"
1899                 ,get_fwstate(pmlmepriv), MAC_ARG(pnetwork->network.MacAddress)));
1900
1901                                 
1902         // why not use ptarget_wlan??
1903         _rtw_memcpy(&cur_network->network, &pnetwork->network, pnetwork->network.Length);
1904         // some IEs in pnetwork is wrong, so we should use ptarget_wlan IEs
1905         cur_network->network.IELength = ptarget_wlan->network.IELength;
1906         _rtw_memcpy(&cur_network->network.IEs[0], &ptarget_wlan->network.IEs[0], MAX_IE_SZ);
1907
1908         cur_network->aid = pnetwork->join_res;
1909
1910                                 
1911 #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1912         rtw_set_signal_stat_timer(&padapter->recvpriv);
1913 #endif
1914         padapter->recvpriv.signal_strength = ptarget_wlan->network.PhyInfo.SignalStrength;
1915         padapter->recvpriv.signal_qual = ptarget_wlan->network.PhyInfo.SignalQuality;
1916         //the ptarget_wlan->network.Rssi is raw data, we use ptarget_wlan->network.PhyInfo.SignalStrength instead (has scaled)
1917         padapter->recvpriv.rssi = translate_percentage_to_dbm(ptarget_wlan->network.PhyInfo.SignalStrength);
1918         #if defined(DBG_RX_SIGNAL_DISPLAY_PROCESSING) && 1
1919                 DBG_871X(FUNC_ADPT_FMT" signal_strength:%3u, rssi:%3d, signal_qual:%3u"
1920                         "\n"
1921                         , FUNC_ADPT_ARG(padapter)
1922                         , padapter->recvpriv.signal_strength
1923                         , padapter->recvpriv.rssi
1924                         , padapter->recvpriv.signal_qual
1925         );
1926         #endif
1927 #ifdef CONFIG_NEW_SIGNAL_STAT_PROCESS
1928         rtw_set_signal_stat_timer(&padapter->recvpriv);
1929 #endif
1930                                 
1931         //update fw_state //will clr _FW_UNDER_LINKING here indirectly
1932         switch(pnetwork->network.InfrastructureMode)
1933         {       
1934                 case Ndis802_11Infrastructure:                                          
1935                         
1936                                 if(pmlmepriv->fw_state&WIFI_UNDER_WPS)
1937                                         pmlmepriv->fw_state = WIFI_STATION_STATE|WIFI_UNDER_WPS;
1938                                 else
1939                                         pmlmepriv->fw_state = WIFI_STATION_STATE;
1940                                 
1941                                 break;
1942                 case Ndis802_11IBSS:            
1943                                 pmlmepriv->fw_state = WIFI_ADHOC_STATE;
1944                                 break;
1945                 default:
1946                                 pmlmepriv->fw_state = WIFI_NULL_STATE;
1947                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Invalid network_mode\n"));
1948                                 break;
1949         }
1950
1951         rtw_update_protection(padapter, (cur_network->network.IEs) + sizeof (NDIS_802_11_FIXED_IEs), 
1952                                                                         (cur_network->network.IELength));
1953
1954 #ifdef CONFIG_80211N_HT                 
1955         rtw_update_ht_cap(padapter, cur_network->network.IEs, cur_network->network.IELength, (u8) cur_network->network.Configuration.DSConfig);
1956 #endif
1957 }
1958
1959 //Notes: the fucntion could be > passive_level (the same context as Rx tasklet)
1960 //pnetwork : returns from rtw_joinbss_event_callback
1961 //ptarget_wlan: found from scanned_queue
1962 //if join_res > 0, for (fw_state==WIFI_STATION_STATE), we check if  "ptarget_sta" & "ptarget_wlan" exist.       
1963 //if join_res > 0, for (fw_state==WIFI_ADHOC_STATE), we only check if "ptarget_wlan" exist.
1964 //if join_res > 0, update "cur_network->network" from "pnetwork->network" if (ptarget_wlan !=NULL).
1965 //
1966 //#define REJOIN
1967 void rtw_joinbss_event_prehandle(_adapter *adapter, u8 *pbuf)
1968 {
1969         _irqL irqL,irqL2;
1970         static u8 retry=0;
1971         u8 timer_cancelled;
1972         struct sta_info *ptarget_sta= NULL, *pcur_sta = NULL;
1973         struct  sta_priv *pstapriv = &adapter->stapriv;
1974         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
1975         struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
1976         struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
1977         struct wlan_network     *pcur_wlan = NULL, *ptarget_wlan = NULL;
1978         unsigned int            the_same_macaddr = _FALSE;      
1979
1980 _func_enter_;   
1981
1982 #ifdef CONFIG_RTL8712
1983        //endian_convert
1984         pnetwork->join_res = le32_to_cpu(pnetwork->join_res);
1985         pnetwork->network_type = le32_to_cpu(pnetwork->network_type);
1986         pnetwork->network.Length = le32_to_cpu(pnetwork->network.Length);
1987         pnetwork->network.Ssid.SsidLength = le32_to_cpu(pnetwork->network.Ssid.SsidLength);
1988         pnetwork->network.Privacy =le32_to_cpu( pnetwork->network.Privacy);
1989         pnetwork->network.Rssi = le32_to_cpu(pnetwork->network.Rssi);
1990         pnetwork->network.NetworkTypeInUse =le32_to_cpu(pnetwork->network.NetworkTypeInUse) ;   
1991         pnetwork->network.Configuration.ATIMWindow = le32_to_cpu(pnetwork->network.Configuration.ATIMWindow);
1992         pnetwork->network.Configuration.BeaconPeriod = le32_to_cpu(pnetwork->network.Configuration.BeaconPeriod);
1993         pnetwork->network.Configuration.DSConfig = le32_to_cpu(pnetwork->network.Configuration.DSConfig);
1994         pnetwork->network.Configuration.FHConfig.DwellTime=le32_to_cpu(pnetwork->network.Configuration.FHConfig.DwellTime);
1995         pnetwork->network.Configuration.FHConfig.HopPattern=le32_to_cpu(pnetwork->network.Configuration.FHConfig.HopPattern);
1996         pnetwork->network.Configuration.FHConfig.HopSet=le32_to_cpu(pnetwork->network.Configuration.FHConfig.HopSet);
1997         pnetwork->network.Configuration.FHConfig.Length=le32_to_cpu(pnetwork->network.Configuration.FHConfig.Length);   
1998         pnetwork->network.Configuration.Length = le32_to_cpu(pnetwork->network.Configuration.Length);
1999         pnetwork->network.InfrastructureMode = le32_to_cpu(pnetwork->network.InfrastructureMode);
2000         pnetwork->network.IELength = le32_to_cpu(pnetwork->network.IELength );
2001 #endif
2002
2003         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("joinbss event call back received with res=%d\n", pnetwork->join_res));
2004
2005         rtw_get_encrypt_decrypt_from_registrypriv(adapter);
2006         
2007
2008         if (pmlmepriv->assoc_ssid.SsidLength == 0)
2009         {
2010                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("@@@@@   joinbss event call back  for Any SSid\n"));                
2011         }
2012         else
2013         {
2014                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("@@@@@   rtw_joinbss_event_callback for SSid:%s\n", pmlmepriv->assoc_ssid.Ssid));
2015         }
2016         
2017         the_same_macaddr = _rtw_memcmp(pnetwork->network.MacAddress, cur_network->network.MacAddress, ETH_ALEN);
2018
2019         pnetwork->network.Length = get_WLAN_BSSID_EX_sz(&pnetwork->network);
2020         if(pnetwork->network.Length > sizeof(WLAN_BSSID_EX))
2021         {
2022                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n\n ***joinbss_evt_callback return a wrong bss ***\n\n"));
2023                 goto ignore_joinbss_callback;
2024         }
2025                 
2026         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2027         
2028         pmlmepriv->LinkDetectInfo.TrafficTransitionCount = 0;
2029         pmlmepriv->LinkDetectInfo.LowPowerTransitionCount = 0;
2030         
2031         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("\n rtw_joinbss_event_callback !! _enter_critical \n"));
2032
2033         if(pnetwork->join_res > 0)
2034         {
2035                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2036                 retry = 0;
2037                 if (check_fwstate(pmlmepriv,_FW_UNDER_LINKING) )
2038                 {
2039                         //s1. find ptarget_wlan
2040                         if(check_fwstate(pmlmepriv, _FW_LINKED) )
2041                         {
2042                                 if(the_same_macaddr == _TRUE)
2043                                 {
2044                                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);                                    
2045                                 }
2046                                 else
2047                                 {
2048                                         pcur_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
2049                                         if(pcur_wlan)   pcur_wlan->fixed = _FALSE;
2050
2051                                         pcur_sta = rtw_get_stainfo(pstapriv, cur_network->network.MacAddress);
2052                                         if(pcur_sta){
2053                                                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL2);
2054                                                 rtw_free_stainfo(adapter,  pcur_sta);
2055                                                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL2);
2056                                         }
2057
2058                                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, pnetwork->network.MacAddress);
2059                                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE){
2060                                                 if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;                    
2061                                         }
2062                                 }
2063
2064                         }
2065                         else
2066                         {
2067                                 ptarget_wlan = _rtw_find_same_network(&pmlmepriv->scanned_queue, pnetwork);
2068                                 if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE){
2069                                         if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;                    
2070                                 }
2071                         }
2072                 
2073                         //s2. update cur_network 
2074                         if(ptarget_wlan)
2075                         {                       
2076                                 rtw_joinbss_update_network(adapter, ptarget_wlan, pnetwork);
2077                         }
2078                         else
2079                         {                       
2080                                 DBG_871X_LEVEL(_drv_always_, "Can't find ptarget_wlan when joinbss_event callback\n");
2081                                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2082                                 goto ignore_joinbss_callback;
2083                         }
2084                                         
2085                         
2086                         //s3. find ptarget_sta & update ptarget_sta after update cur_network only for station mode 
2087                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE)
2088                         { 
2089                                 ptarget_sta = rtw_joinbss_update_stainfo(adapter, pnetwork);
2090                                 if(ptarget_sta==NULL)
2091                                 {
2092                                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Can't update stainfo when joinbss_event callback\n"));
2093                                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2094                                         goto ignore_joinbss_callback;
2095                                 }
2096                         }
2097
2098                         //s4. indicate connect                  
2099                         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) == _TRUE)
2100                         {
2101                                 pmlmepriv->cur_network_scanned = ptarget_wlan;
2102                                 rtw_indicate_connect(adapter);
2103                         }
2104                         else
2105                         {
2106                                 //adhoc mode will rtw_indicate_connect when rtw_stassoc_event_callback
2107                                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("adhoc mode, fw_state:%x", get_fwstate(pmlmepriv)));
2108                         }
2109
2110                                 
2111                         //s5. Cancle assoc_timer                                        
2112                         _cancel_timer(&pmlmepriv->assoc_timer, &timer_cancelled);
2113                 
2114                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("Cancle assoc_timer \n"));         
2115                 
2116                 }
2117                 else
2118                 {
2119                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_joinbss_event_callback err: fw_state:%x", get_fwstate(pmlmepriv)));    
2120                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2121                         goto ignore_joinbss_callback;
2122                 }
2123                 
2124                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);     
2125                                 
2126         }
2127         else if(pnetwork->join_res == -4) 
2128         {
2129                 rtw_reset_securitypriv(adapter);
2130                 _set_timer(&pmlmepriv->assoc_timer, 1);                                 
2131
2132                 //rtw_free_assoc_resources(adapter, 1);
2133
2134                 if((check_fwstate(pmlmepriv, _FW_UNDER_LINKING)) == _TRUE)
2135                 {               
2136                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("fail! clear _FW_UNDER_LINKING ^^^fw_state=%x\n", get_fwstate(pmlmepriv)));
2137                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2138                 }       
2139                 
2140         }
2141         else //if join_res < 0 (join fails), then try again
2142         {
2143         
2144                 #ifdef REJOIN
2145                 res = _FAIL;
2146                 if(retry < 2) {
2147                         res = rtw_select_and_join_from_scanned_queue(pmlmepriv);
2148                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("rtw_select_and_join_from_scanned_queue again! res:%d\n",res));
2149                 }
2150
2151                  if(res == _SUCCESS)
2152                 {
2153                         //extend time of assoc_timer
2154                         _set_timer(&pmlmepriv->assoc_timer, MAX_JOIN_TIMEOUT);
2155                         retry++;
2156                 }
2157                 else if(res == 2)//there is no need to wait for join
2158                 {
2159                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2160                         rtw_indicate_connect(adapter);
2161                 }       
2162                 else
2163                 {
2164                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Set Assoc_Timer = 1; can't find match ssid in scanned_q \n"));
2165                 #endif
2166                         
2167                         _set_timer(&pmlmepriv->assoc_timer, 1);
2168                         //rtw_free_assoc_resources(adapter, 1);
2169                         _clr_fwstate_(pmlmepriv, _FW_UNDER_LINKING);
2170                         
2171                 #ifdef REJOIN
2172                         retry = 0;      
2173                 }
2174                 #endif
2175         }
2176
2177 ignore_joinbss_callback:
2178
2179         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2180         _func_exit_;    
2181 }
2182
2183 void rtw_joinbss_event_callback(_adapter *adapter, u8 *pbuf)
2184 {
2185         struct wlan_network     *pnetwork       = (struct wlan_network *)pbuf;
2186
2187 _func_enter_;
2188
2189         mlmeext_joinbss_event_callback(adapter, pnetwork->join_res);
2190
2191         rtw_os_xmit_schedule(adapter);
2192
2193 #ifdef CONFIG_CONCURRENT_MODE   
2194         rtw_os_xmit_schedule(adapter->pbuddy_adapter);
2195 #endif  
2196
2197 _func_exit_;
2198 }
2199
2200 #if 0
2201 //#if (RATE_ADAPTIVE_SUPPORT==1)        //for 88E RA            
2202 u8 search_max_mac_id(_adapter *padapter)
2203 {
2204         u8 mac_id, aid;
2205         struct mlme_priv *pmlmepriv = &(padapter->mlmepriv);
2206         struct mlme_ext_priv *pmlmeext = &(padapter->mlmeextpriv);
2207         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
2208         struct sta_priv *pstapriv = &padapter->stapriv;
2209
2210 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)  
2211         if(check_fwstate(pmlmepriv, WIFI_AP_STATE)){            
2212                 
2213 #if 1
2214                 _irqL irqL;
2215                 struct dvobj_priv *pdvobj = adapter_to_dvobj(padapter);
2216
2217                 _enter_critical_bh(&pdvobj->lock, &irqL);
2218                 for(mac_id=(NUM_STA-1); mac_id>0; mac_id--)
2219                         if(pdvobj->macid[mac_id] == _TRUE)
2220                                 break;
2221                 _exit_critical_bh(&pdvobj->lock, &irqL);
2222
2223 #else
2224                 for (aid = (pstapriv->max_num_sta); aid > 0; aid--)
2225                 {
2226                         if (pstapriv->sta_aid[aid-1] != NULL)
2227                         {
2228                                 psta = pstapriv->sta_aid[aid-1];
2229                                 break;
2230                         }       
2231                 }
2232 /*
2233                 for (mac_id = (pstapriv->max_num_sta-1); mac_id >= 0; mac_id--)
2234                 {
2235                         if (pstapriv->sta_aid[mac_id] != NULL)
2236                                 break;
2237                 }       
2238 */
2239                 mac_id = aid + 1;
2240 #endif
2241         }
2242         else
2243 #endif
2244         {//adhoc  id =  31~2
2245                 for (mac_id = (NUM_STA-1); mac_id >= IBSS_START_MAC_ID ; mac_id--)
2246                 {
2247                         if (pmlmeinfo->FW_sta_info[mac_id].status == 1)
2248                         {
2249                                 break;
2250                         }
2251                 }
2252         }
2253
2254         DBG_871X("max mac_id=%d\n", mac_id);
2255
2256         return mac_id;
2257
2258 }               
2259 #endif  
2260
2261 //FOR STA, AP ,AD-HOC mode
2262 void rtw_sta_media_status_rpt(_adapter *adapter,struct sta_info *psta, u32 mstatus)
2263 {
2264         u16 media_status_rpt;
2265
2266         if(psta==NULL)  return;
2267
2268         #if (RATE_ADAPTIVE_SUPPORT==1)  //for 88E RA    
2269         {
2270                 u8 macid = rtw_search_max_mac_id(adapter);                              
2271                 rtw_hal_set_hwreg(adapter,HW_VAR_TX_RPT_MAX_MACID, (u8*)&macid);
2272         }
2273         #endif
2274         media_status_rpt = (u16)((psta->mac_id<<8)|mstatus); //  MACID|OPMODE:1 connect                         
2275         rtw_hal_set_hwreg(adapter,HW_VAR_H2C_MEDIA_STATUS_RPT,(u8 *)&media_status_rpt);                 
2276 }
2277
2278 void rtw_stassoc_event_callback(_adapter *adapter, u8 *pbuf)
2279 {
2280         _irqL irqL;     
2281         struct sta_info *psta;
2282         struct mlme_priv *pmlmepriv = &(adapter->mlmepriv);
2283         struct stassoc_event    *pstassoc       = (struct stassoc_event*)pbuf;
2284         struct wlan_network     *cur_network = &(pmlmepriv->cur_network);
2285         struct wlan_network     *ptarget_wlan = NULL;
2286         
2287 _func_enter_;   
2288         
2289         if(rtw_access_ctrl(adapter, pstassoc->macaddr) == _FALSE)
2290                 return;
2291
2292 #if defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
2293         if(check_fwstate(pmlmepriv, WIFI_AP_STATE))
2294         {
2295                 psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);   
2296                 if(psta)
2297                 {               
2298                         u8 *passoc_req = NULL;
2299                         u32 assoc_req_len = 0;
2300                 
2301                         rtw_sta_media_status_rpt(adapter, psta, 1);
2302                 
2303 #ifndef CONFIG_AUTO_AP_MODE
2304
2305                         ap_sta_info_defer_update(adapter, psta);
2306
2307                         //report to upper layer 
2308                         DBG_871X("indicate_sta_assoc_event to upper layer - hostapd\n");
2309 #ifdef CONFIG_IOCTL_CFG80211
2310                         _enter_critical_bh(&psta->lock, &irqL);
2311                         if(psta->passoc_req && psta->assoc_req_len>0)
2312                         {                               
2313                                 passoc_req = rtw_zmalloc(psta->assoc_req_len);
2314                                 if(passoc_req)
2315                                 {
2316                                         assoc_req_len = psta->assoc_req_len;
2317                                         _rtw_memcpy(passoc_req, psta->passoc_req, assoc_req_len);
2318                                         
2319                                         rtw_mfree(psta->passoc_req , psta->assoc_req_len);
2320                                         psta->passoc_req = NULL;
2321                                         psta->assoc_req_len = 0;
2322                                 }
2323                         }                       
2324                         _exit_critical_bh(&psta->lock, &irqL);
2325
2326                         if(passoc_req && assoc_req_len>0)
2327                         {
2328                                 rtw_cfg80211_indicate_sta_assoc(adapter, passoc_req, assoc_req_len);
2329
2330                                 rtw_mfree(passoc_req, assoc_req_len);
2331                         }                       
2332 #else //!CONFIG_IOCTL_CFG80211  
2333                         rtw_indicate_sta_assoc_event(adapter, psta);
2334 #endif //!CONFIG_IOCTL_CFG80211
2335 #endif //!CONFIG_AUTO_AP_MODE
2336
2337 #ifdef CONFIG_BEAMFORMING
2338                         beamforming_wk_cmd(adapter, BEAMFORMING_CTRL_ENTER, (u8 *)psta, sizeof(struct sta_info), 0);
2339 #endif
2340                 }               
2341                 goto exit;
2342         }       
2343 #endif //defined (CONFIG_AP_MODE) && defined (CONFIG_NATIVEAP_MLME)
2344
2345         //for AD-HOC mode
2346         psta = rtw_get_stainfo(&adapter->stapriv, pstassoc->macaddr);   
2347         if( psta != NULL)
2348         {
2349                 //the sta have been in sta_info_queue => do nothing 
2350                 
2351                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Error: rtw_stassoc_event_callback: sta has been in sta_hash_queue \n"));
2352                 
2353                 goto exit; //(between drv has received this event before and  fw have not yet to set key to CAM_ENTRY)
2354         }
2355
2356         psta = rtw_alloc_stainfo(&adapter->stapriv, pstassoc->macaddr); 
2357         if (psta == NULL) {
2358                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("Can't alloc sta_info when rtw_stassoc_event_callback\n"));
2359                 goto exit;
2360         }       
2361         
2362         //to do : init sta_info variable
2363         psta->qos_option = 0;
2364         psta->mac_id = (uint)pstassoc->cam_id;
2365         //psta->aid = (uint)pstassoc->cam_id;
2366         DBG_871X("%s\n",__FUNCTION__);
2367         //for ad-hoc mode
2368         rtw_hal_set_odm_var(adapter,HAL_ODM_STA_INFO,psta,_TRUE);
2369
2370         rtw_sta_media_status_rpt(adapter, psta, 1);
2371         
2372         if(adapter->securitypriv.dot11AuthAlgrthm==dot11AuthAlgrthm_8021X)
2373                 psta->dot118021XPrivacy = adapter->securitypriv.dot11PrivacyAlgrthm;
2374         
2375
2376         psta->ieee8021x_blocked = _FALSE;               
2377         
2378         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2379
2380         if ( (check_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE)==_TRUE ) || 
2381                 (check_fwstate(pmlmepriv, WIFI_ADHOC_STATE)==_TRUE ) )
2382         {
2383                 if(adapter->stapriv.asoc_sta_count== 2)
2384                 {
2385                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2386                         ptarget_wlan = rtw_find_network(&pmlmepriv->scanned_queue, cur_network->network.MacAddress);
2387                         pmlmepriv->cur_network_scanned = ptarget_wlan;
2388                         if(ptarget_wlan)        ptarget_wlan->fixed = _TRUE;
2389                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2390                         // a sta + bc/mc_stainfo (not Ibss_stainfo)
2391                         rtw_indicate_connect(adapter);
2392                 }
2393         }
2394
2395         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2396
2397
2398         mlmeext_sta_add_event_callback(adapter, psta);
2399         
2400 #ifdef CONFIG_RTL8711
2401         //submit SetStaKey_cmd to tell fw, fw will allocate an CAM entry for this sta   
2402         rtw_setstakey_cmd(adapter, psta, GROUP_KEY, _TRUE);
2403 #endif
2404                 
2405 exit:
2406         
2407 _func_exit_;    
2408
2409 }
2410
2411 void rtw_stadel_event_callback(_adapter *adapter, u8 *pbuf)
2412 {
2413         _irqL irqL,irqL2;
2414         int mac_id = (-1);
2415         struct sta_info *psta;
2416         struct wlan_network* pwlan = NULL;
2417         WLAN_BSSID_EX    *pdev_network=NULL;
2418         u8* pibss = NULL;
2419         struct  mlme_priv       *pmlmepriv = &(adapter->mlmepriv);
2420         struct  stadel_event *pstadel   = (struct stadel_event*)pbuf;
2421         struct  sta_priv *pstapriv = &adapter->stapriv;
2422         struct wlan_network *tgt_network = &(pmlmepriv->cur_network);
2423         struct mlme_ext_priv    *pmlmeext = &adapter->mlmeextpriv;
2424         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
2425         
2426 _func_enter_;   
2427         
2428         psta = rtw_get_stainfo(&adapter->stapriv, pstadel->macaddr);
2429         if(psta)
2430                 mac_id = psta->mac_id;
2431         else
2432                 mac_id = pstadel->mac_id;
2433
2434         DBG_871X("%s(mac_id=%d)=" MAC_FMT "\n", __func__, mac_id, MAC_ARG(pstadel->macaddr));
2435
2436         if(mac_id>=0){
2437                 u16 media_status;
2438                 media_status = (mac_id<<8)|0; //  MACID|OPMODE:0 means disconnect
2439                 //for STA,AP,ADHOC mode, report disconnect stauts to FW
2440                 rtw_hal_set_hwreg(adapter, HW_VAR_H2C_MEDIA_STATUS_RPT, (u8 *)&media_status);
2441         }       
2442
2443         //if(check_fwstate(pmlmepriv, WIFI_AP_STATE))
2444         if((pmlmeinfo->state&0x03) == WIFI_FW_AP_STATE)
2445         {
2446 #ifdef CONFIG_IOCTL_CFG80211
2447                 #ifdef COMPAT_KERNEL_RELEASE
2448
2449                 #elif (LINUX_VERSION_CODE < KERNEL_VERSION(2,6,37)) || defined(CONFIG_CFG80211_FORCE_COMPATIBLE_2_6_37_UNDER)
2450                 rtw_cfg80211_indicate_sta_disassoc(adapter, pstadel->macaddr, *(u16*)pstadel->rsvd);
2451                 #endif //(LINUX_VERSION_CODE < KERNEL_VERSION(2,6,37)) || defined(CONFIG_CFG80211_FORCE_COMPATIBLE_2_6_37_UNDER)
2452 #endif //CONFIG_IOCTL_CFG80211
2453
2454                 return;
2455         }
2456
2457
2458         mlmeext_sta_del_event_callback(adapter);
2459
2460         _enter_critical_bh(&pmlmepriv->lock, &irqL2);
2461
2462         if(check_fwstate(pmlmepriv, WIFI_STATION_STATE) )
2463         {
2464                 u16 reason = *((unsigned short *)(pstadel->rsvd));
2465                 bool roam = _FALSE;
2466                 struct wlan_network *roam_target = NULL;
2467
2468                 #ifdef CONFIG_LAYER2_ROAMING
2469                 if(adapter->registrypriv.wifi_spec==1) {
2470                         roam = _FALSE;
2471                 } else if (reason == WLAN_REASON_EXPIRATION_CHK && rtw_chk_roam_flags(adapter, RTW_ROAM_ON_EXPIRED)) {
2472                         roam = _TRUE;
2473                 } else if (reason == WLAN_REASON_ACTIVE_ROAM && rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
2474                         roam = _TRUE;
2475                         roam_target = pmlmepriv->roam_network;
2476                 }
2477 #ifdef CONFIG_INTEL_WIDI
2478                 else if (adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_CONNECTED) {
2479                         roam = _TRUE;
2480                 }
2481 #endif // CONFIG_INTEL_WIDI
2482
2483                 if (roam == _TRUE) {
2484                         if (rtw_to_roam(adapter) > 0)
2485                                 rtw_dec_to_roam(adapter); /* this stadel_event is caused by roaming, decrease to_roam */
2486                         else if (rtw_to_roam(adapter) == 0)
2487                                 rtw_set_to_roam(adapter, adapter->registrypriv.max_roaming_times);
2488                 } else {
2489                         rtw_set_to_roam(adapter, 0);
2490                 }
2491                 #endif /* CONFIG_LAYER2_ROAMING */
2492
2493                 rtw_free_uc_swdec_pending_queue(adapter);
2494
2495                 rtw_free_assoc_resources(adapter, 1);
2496                 rtw_indicate_disconnect(adapter);
2497                 rtw_free_mlme_priv_ie_data(pmlmepriv);
2498
2499                 _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2500                 // remove the network entry in scanned_queue
2501                 pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);   
2502                 if (pwlan) {                    
2503                         pwlan->fixed = _FALSE;
2504                         rtw_free_network_nolock(adapter, pwlan);
2505                 }
2506                 _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2507
2508 #ifdef CONFIG_INTEL_WIDI
2509                 if (!rtw_to_roam(adapter))
2510                         process_intel_widi_disconnect(adapter, 1);
2511 #endif // CONFIG_INTEL_WIDI
2512
2513                 _rtw_roaming(adapter, roam_target);
2514         }
2515
2516         if ( check_fwstate(pmlmepriv,WIFI_ADHOC_MASTER_STATE) || 
2517               check_fwstate(pmlmepriv,WIFI_ADHOC_STATE))
2518         {
2519                 
2520                 //_enter_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
2521                 rtw_free_stainfo(adapter,  psta);
2522                 //_exit_critical_bh(&(pstapriv->sta_hash_lock), &irqL);
2523                 
2524                 if(adapter->stapriv.asoc_sta_count== 1) //a sta + bc/mc_stainfo (not Ibss_stainfo)
2525                 { 
2526                         //rtw_indicate_disconnect(adapter);//removed@20091105
2527                         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2528                         //free old ibss network
2529                         //pwlan = rtw_find_network(&pmlmepriv->scanned_queue, pstadel->macaddr);
2530                         pwlan = rtw_find_network(&pmlmepriv->scanned_queue, tgt_network->network.MacAddress);
2531                         if(pwlan)       
2532                         {
2533                                 pwlan->fixed = _FALSE;
2534                                 rtw_free_network_nolock(adapter, pwlan); 
2535                         }
2536                         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
2537                         //re-create ibss
2538                         pdev_network = &(adapter->registrypriv.dev_network);                    
2539                         pibss = adapter->registrypriv.dev_network.MacAddress;
2540
2541                         _rtw_memcpy(pdev_network, &tgt_network->network, get_WLAN_BSSID_EX_sz(&tgt_network->network));
2542                         
2543                         _rtw_memset(&pdev_network->Ssid, 0, sizeof(NDIS_802_11_SSID));
2544                         _rtw_memcpy(&pdev_network->Ssid, &pmlmepriv->assoc_ssid, sizeof(NDIS_802_11_SSID));
2545         
2546                         rtw_update_registrypriv_dev_network(adapter);                   
2547
2548                         rtw_generate_random_ibss(pibss);
2549                         
2550                         if(check_fwstate(pmlmepriv,WIFI_ADHOC_STATE))
2551                         {
2552                                 set_fwstate(pmlmepriv, WIFI_ADHOC_MASTER_STATE);
2553                                 _clr_fwstate_(pmlmepriv, WIFI_ADHOC_STATE);
2554                         }
2555
2556                         if(rtw_createbss_cmd(adapter)!=_SUCCESS)
2557                         {
2558
2559                                 RT_TRACE(_module_rtl871x_ioctl_set_c_,_drv_err_,("***Error=>stadel_event_callback: rtw_createbss_cmd status FAIL*** \n "));                                                                             
2560
2561                         }
2562
2563                         
2564                 }
2565                 
2566         }
2567         
2568         _exit_critical_bh(&pmlmepriv->lock, &irqL2);
2569         
2570 _func_exit_;    
2571
2572 }
2573
2574
2575 void rtw_cpwm_event_callback(PADAPTER padapter, u8 *pbuf)
2576 {
2577 #ifdef CONFIG_LPS_LCLK
2578         struct reportpwrstate_parm *preportpwrstate;
2579 #endif
2580
2581 _func_enter_;
2582
2583         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("+rtw_cpwm_event_callback !!!\n"));
2584 #ifdef CONFIG_LPS_LCLK
2585         preportpwrstate = (struct reportpwrstate_parm*)pbuf;
2586         preportpwrstate->state |= (u8)(adapter_to_pwrctl(padapter)->cpwm_tog + 0x80);
2587         cpwm_int_hdl(padapter, preportpwrstate);
2588 #endif
2589
2590 _func_exit_;
2591
2592 }
2593
2594
2595 void rtw_wmm_event_callback(PADAPTER padapter, u8 *pbuf)
2596 {
2597 _func_enter_;
2598
2599         WMMOnAssocRsp(padapter);
2600
2601 _func_exit_;
2602
2603 }
2604
2605 /*
2606 * _rtw_join_timeout_handler - Timeout/faliure handler for CMD JoinBss
2607 * @adapter: pointer to _adapter structure
2608 */
2609 void _rtw_join_timeout_handler (_adapter *adapter)
2610 {
2611         _irqL irqL;
2612         struct  mlme_priv *pmlmepriv = &adapter->mlmepriv;
2613
2614 #if 0
2615         if (adapter->bDriverStopped == _TRUE){
2616                 _rtw_up_sema(&pmlmepriv->assoc_terminate);
2617                 return;
2618         }
2619 #endif  
2620
2621 _func_enter_;           
2622
2623
2624         DBG_871X("%s, fw_state=%x\n", __FUNCTION__, get_fwstate(pmlmepriv));
2625         
2626         if(adapter->bDriverStopped ||adapter->bSurpriseRemoved)
2627                 return;
2628
2629         
2630         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2631
2632         #ifdef CONFIG_LAYER2_ROAMING
2633         if (rtw_to_roam(adapter) > 0) { /* join timeout caused by roaming */
2634                 while(1) {
2635                         rtw_dec_to_roam(adapter);
2636                         if (rtw_to_roam(adapter) != 0) { /* try another */
2637                                 int do_join_r;
2638                                 DBG_871X("%s try another roaming\n", __FUNCTION__);
2639                                 if( _SUCCESS!=(do_join_r=rtw_do_join(adapter)) ) {
2640                                         DBG_871X("%s roaming do_join return %d\n", __FUNCTION__ ,do_join_r);
2641                                         continue;
2642                                 }
2643                                 break;
2644                         } else {
2645 #ifdef CONFIG_INTEL_WIDI
2646                                 if(adapter->mlmepriv.widi_state == INTEL_WIDI_STATE_ROAMING)
2647                                 {
2648                                         _rtw_memset(pmlmepriv->sa_ext, 0x00, L2SDTA_SERVICE_VE_LEN);
2649                                         intel_widi_wk_cmd(adapter, INTEL_WIDI_LISTEN_WK, NULL, 0);
2650                                         DBG_871X("change to widi listen\n");
2651                                 }
2652 #endif // CONFIG_INTEL_WIDI
2653                                 DBG_871X("%s We've try roaming but fail\n", __FUNCTION__);
2654                                 rtw_indicate_disconnect(adapter);
2655                                 break;
2656                         }
2657                 }
2658                 
2659         } else 
2660         #endif
2661         {
2662                 rtw_indicate_disconnect(adapter);
2663                 free_scanqueue(pmlmepriv);//???
2664
2665 #ifdef CONFIG_IOCTL_CFG80211
2666                 //indicate disconnect for the case that join_timeout and check_fwstate != FW_LINKED
2667                 rtw_cfg80211_indicate_disconnect(adapter);
2668 #endif //CONFIG_IOCTL_CFG80211
2669
2670         }
2671
2672         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2673         
2674
2675 #ifdef CONFIG_DRVEXT_MODULE_WSC 
2676         drvext_assoc_fail_indicate(&adapter->drvextpriv);       
2677 #endif  
2678
2679         
2680 _func_exit_;
2681
2682 }
2683
2684 /*
2685 * rtw_scan_timeout_handler - Timeout/Faliure handler for CMD SiteSurvey
2686 * @adapter: pointer to _adapter structure
2687 */
2688 void rtw_scan_timeout_handler (_adapter *adapter)
2689 {       
2690         _irqL irqL;
2691         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
2692         DBG_871X(FUNC_ADPT_FMT" fw_state=%x\n", FUNC_ADPT_ARG(adapter), get_fwstate(pmlmepriv));
2693
2694         _enter_critical_bh(&pmlmepriv->lock, &irqL);
2695         
2696         _clr_fwstate_(pmlmepriv, _FW_UNDER_SURVEY);
2697         
2698         _exit_critical_bh(&pmlmepriv->lock, &irqL);
2699         
2700 #ifdef CONFIG_IOCTL_CFG80211
2701         rtw_cfg80211_surveydone_event_callback(adapter);
2702 #endif //CONFIG_IOCTL_CFG80211
2703         
2704         rtw_indicate_scan_done(adapter, _TRUE);
2705
2706 #if defined(CONFIG_CONCURRENT_MODE) && defined(CONFIG_IOCTL_CFG80211)
2707         if (adapter->pbuddy_adapter) {
2708                 _adapter *buddy_adapter = adapter->pbuddy_adapter;
2709                 struct mlme_priv *buddy_mlme = &(buddy_adapter->mlmepriv);
2710                 struct rtw_wdev_priv *buddy_wdev_priv = adapter_wdev_data(buddy_adapter);
2711                 bool indicate_buddy_scan = _FALSE;
2712
2713                 _enter_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
2714                 if (buddy_wdev_priv->scan_request && buddy_mlme->scanning_via_buddy_intf == _TRUE) {
2715                         buddy_mlme->scanning_via_buddy_intf = _FALSE;
2716                         clr_fwstate(buddy_mlme, _FW_UNDER_SURVEY);
2717                         indicate_buddy_scan = _TRUE;
2718                 }
2719                 _exit_critical_bh(&buddy_wdev_priv->scan_req_lock, &irqL);
2720
2721                 if (indicate_buddy_scan == _TRUE) {
2722                         rtw_indicate_scan_done(buddy_adapter, _TRUE);
2723                 }
2724         }
2725 #endif /* CONFIG_CONCURRENT_MODE */
2726 }
2727
2728 void rtw_mlme_reset_auto_scan_int(_adapter *adapter)
2729 {
2730         struct mlme_priv *mlme = &adapter->mlmepriv;
2731         struct mlme_ext_priv    *pmlmeext = &adapter->mlmeextpriv;
2732         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
2733
2734 #ifdef CONFIG_P2P
2735         if(!rtw_p2p_chk_state(&adapter->wdinfo, P2P_STATE_NONE)) {
2736                 mlme->auto_scan_int_ms = 0; /* disabled */
2737                 goto exit;
2738         }
2739 #endif  
2740         if(pmlmeinfo->VHT_enable) //disable auto scan when connect to 11AC AP
2741         {
2742                 mlme->auto_scan_int_ms = 0;
2743         }
2744         else if(adapter->registrypriv.wifi_spec && is_client_associated_to_ap(adapter) == _TRUE) {
2745                 mlme->auto_scan_int_ms = 60*1000;
2746 #ifdef CONFIG_LAYER2_ROAMING
2747         } else if(rtw_chk_roam_flags(adapter, RTW_ROAM_ACTIVE)) {
2748                 if (check_fwstate(mlme, WIFI_STATION_STATE) && check_fwstate(mlme, _FW_LINKED))
2749                         mlme->auto_scan_int_ms = mlme->roam_scan_int_ms;
2750 #endif
2751         } else {
2752                 mlme->auto_scan_int_ms = 0; /* disabled */
2753         }
2754 exit:
2755         return;
2756 }
2757
2758 static void rtw_auto_scan_handler(_adapter *padapter)
2759 {
2760         struct mlme_priv *pmlmepriv = &padapter->mlmepriv;
2761
2762         rtw_mlme_reset_auto_scan_int(padapter);
2763
2764         if (pmlmepriv->auto_scan_int_ms != 0
2765                 && rtw_get_passing_time_ms(pmlmepriv->scan_start_time) > pmlmepriv->auto_scan_int_ms) {
2766
2767                 if (!padapter->registrypriv.wifi_spec) {
2768                         if (check_fwstate(pmlmepriv, _FW_UNDER_SURVEY|_FW_UNDER_LINKING) == _TRUE) 
2769                         {
2770                                 DBG_871X(FUNC_ADPT_FMT" _FW_UNDER_SURVEY|_FW_UNDER_LINKING\n", FUNC_ADPT_ARG(padapter));
2771                                 goto exit;
2772                         }
2773                         
2774                         if(pmlmepriv->LinkDetectInfo.bBusyTraffic == _TRUE)
2775                         {
2776                                 DBG_871X(FUNC_ADPT_FMT" exit BusyTraffic\n", FUNC_ADPT_ARG(padapter));
2777                                 goto exit;
2778                         }
2779                 }
2780
2781 #ifdef CONFIG_CONCURRENT_MODE
2782                 if (rtw_buddy_adapter_up(padapter))
2783                 {
2784                         if ((check_buddy_fwstate(padapter, _FW_UNDER_SURVEY|_FW_UNDER_LINKING) == _TRUE) ||
2785                                 (padapter->pbuddy_adapter->mlmepriv.LinkDetectInfo.bBusyTraffic == _TRUE))
2786                         {               
2787                                 DBG_871X(FUNC_ADPT_FMT", but buddy_intf is under scanning or linking or BusyTraffic\n"
2788                                         , FUNC_ADPT_ARG(padapter));
2789                                 goto exit;
2790                         }
2791                 }
2792 #endif
2793
2794                 DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(padapter));
2795
2796                 rtw_set_802_11_bssid_list_scan(padapter, NULL, 0);
2797         }
2798
2799 exit:
2800         return;
2801 }
2802
2803 void rtw_dynamic_check_timer_handlder(_adapter *adapter)
2804 {
2805 #ifdef CONFIG_AP_MODE
2806         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
2807 #endif //CONFIG_AP_MODE
2808         struct registry_priv *pregistrypriv = &adapter->registrypriv;
2809 #ifdef CONFIG_CONCURRENT_MODE   
2810         PADAPTER pbuddy_adapter = adapter->pbuddy_adapter;
2811 #endif
2812
2813         if(!adapter)
2814                 return; 
2815
2816         if(adapter->hw_init_completed == _FALSE)
2817                 return;
2818
2819         if ((adapter->bDriverStopped == _TRUE)||(adapter->bSurpriseRemoved== _TRUE))
2820                 return;
2821
2822         
2823 #ifdef CONFIG_CONCURRENT_MODE
2824         if(pbuddy_adapter)
2825         {
2826                 if(adapter->net_closed == _TRUE && pbuddy_adapter->net_closed == _TRUE)
2827                 {
2828                         return;
2829                 }               
2830         }
2831         else
2832 #endif //CONFIG_CONCURRENT_MODE
2833         if(adapter->net_closed == _TRUE)
2834         {
2835                 return;
2836         }       
2837
2838 #ifdef CONFIG_BT_COEXIST
2839         if(is_primary_adapter(adapter))
2840                 DBG_871X("IsBtDisabled=%d, IsBtControlLps=%d\n", rtw_btcoex_IsBtDisabled(adapter), rtw_btcoex_IsBtControlLps(adapter));
2841 #endif
2842
2843 #ifdef CONFIG_LPS_LCLK_WD_TIMER /* to avoid leaving lps 32k frequently*/
2844         if ((adapter_to_pwrctl(adapter)->bFwCurrentInPSMode ==_TRUE )
2845 #ifdef CONFIG_BT_COEXIST
2846                 && (rtw_btcoex_IsBtControlLps(adapter) == _FALSE)
2847 #endif          
2848                 ) 
2849         {
2850                 u8 bEnterPS;    
2851                 
2852                 linked_status_chk(adapter, 1);  
2853                         
2854                 bEnterPS = traffic_status_watchdog(adapter, 1);
2855                 if(bEnterPS)
2856                 {
2857                         //rtw_lps_ctrl_wk_cmd(adapter, LPS_CTRL_ENTER, 1);
2858                         rtw_hal_dm_watchdog_in_lps(adapter);
2859                 }
2860                 else
2861                 {
2862                         //call rtw_lps_ctrl_wk_cmd(padapter, LPS_CTRL_LEAVE, 1) in traffic_status_watchdog()
2863                 }
2864                         
2865         }
2866         else
2867 #endif //CONFIG_LPS_LCLK_WD_TIMER       
2868         {
2869                 if(is_primary_adapter(adapter))
2870                 {       
2871                         rtw_dynamic_chk_wk_cmd(adapter);                
2872                 }       
2873         }       
2874
2875         /* auto site survey */
2876         rtw_auto_scan_handler(adapter);
2877
2878 #ifndef CONFIG_ACTIVE_KEEP_ALIVE_CHECK
2879 #ifdef CONFIG_AP_MODE
2880         if(check_fwstate(pmlmepriv, WIFI_AP_STATE) == _TRUE)
2881         {
2882                 expire_timeout_chk(adapter);
2883         }       
2884 #endif
2885 #endif //!CONFIG_ACTIVE_KEEP_ALIVE_CHECK
2886
2887 #ifdef CONFIG_BR_EXT
2888
2889 #if (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2890         rcu_read_lock();
2891 #endif  // (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2892
2893 #if (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35)) 
2894         if( adapter->pnetdev->br_port 
2895 #else   // (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35))
2896         if( rcu_dereference(adapter->pnetdev->rx_handler_data)
2897 #endif  // (LINUX_VERSION_CODE <= KERNEL_VERSION(2, 6, 35))
2898                 && (check_fwstate(pmlmepriv, WIFI_STATION_STATE|WIFI_ADHOC_STATE) == _TRUE) )
2899         {
2900                 // expire NAT2.5 entry
2901                 void nat25_db_expire(_adapter *priv);
2902                 nat25_db_expire(adapter);
2903
2904                 if (adapter->pppoe_connection_in_progress > 0) {
2905                         adapter->pppoe_connection_in_progress--;
2906                 }
2907                 
2908                 // due to rtw_dynamic_check_timer_handlder() is called every 2 seconds
2909                 if (adapter->pppoe_connection_in_progress > 0) {
2910                         adapter->pppoe_connection_in_progress--;
2911                 }
2912         }
2913
2914 #if (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2915         rcu_read_unlock();
2916 #endif  // (LINUX_VERSION_CODE > KERNEL_VERSION(2, 6, 35))
2917
2918 #endif  // CONFIG_BR_EXT
2919         
2920 }
2921
2922
2923 #ifdef CONFIG_SET_SCAN_DENY_TIMER
2924 inline bool rtw_is_scan_deny(_adapter *adapter)
2925 {
2926         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2927         return (ATOMIC_READ(&mlmepriv->set_scan_deny) != 0) ? _TRUE : _FALSE;
2928 }
2929
2930 inline void rtw_clear_scan_deny(_adapter *adapter)
2931 {
2932         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2933         ATOMIC_SET(&mlmepriv->set_scan_deny, 0);
2934         if (0)
2935                 DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
2936 }
2937
2938 void rtw_set_scan_deny_timer_hdl(_adapter *adapter)
2939 {
2940         rtw_clear_scan_deny(adapter);
2941 }
2942
2943 void rtw_set_scan_deny(_adapter *adapter, u32 ms)
2944 {
2945         struct mlme_priv *mlmepriv = &adapter->mlmepriv;
2946 #ifdef CONFIG_CONCURRENT_MODE
2947         struct mlme_priv *b_mlmepriv;
2948 #endif
2949
2950         if (0)
2951                 DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter));
2952         ATOMIC_SET(&mlmepriv->set_scan_deny, 1);
2953         _set_timer(&mlmepriv->set_scan_deny_timer, ms);
2954         
2955 #ifdef CONFIG_CONCURRENT_MODE
2956         if (!adapter->pbuddy_adapter)
2957                 return;
2958
2959         if (0)
2960                 DBG_871X(FUNC_ADPT_FMT"\n", FUNC_ADPT_ARG(adapter->pbuddy_adapter));
2961         b_mlmepriv = &adapter->pbuddy_adapter->mlmepriv;
2962         ATOMIC_SET(&b_mlmepriv->set_scan_deny, 1);
2963         _set_timer(&b_mlmepriv->set_scan_deny_timer, ms);       
2964 #endif
2965         
2966 }
2967 #endif
2968
2969 #ifdef CONFIG_LAYER2_ROAMING
2970 /*
2971 * Select a new roaming candidate from the original @param candidate and @param competitor
2972 * @return _TRUE: candidate is updated
2973 * @return _FALSE: candidate is not updated
2974 */
2975 static int rtw_check_roaming_candidate(struct mlme_priv *mlme
2976         , struct wlan_network **candidate, struct wlan_network *competitor)
2977 {
2978         int updated = _FALSE;
2979         _adapter *adapter = container_of(mlme, _adapter, mlmepriv);
2980
2981         if(is_same_ess(&competitor->network, &mlme->cur_network.network) == _FALSE)
2982                 goto exit;
2983
2984         if(rtw_is_desired_network(adapter, competitor) == _FALSE)
2985                 goto exit;
2986
2987         DBG_871X("roam candidate:%s %s("MAC_FMT", ch%3u) rssi:%d, age:%5d\n",
2988                 (competitor == mlme->cur_network_scanned)?"*":" " ,
2989                 competitor->network.Ssid.Ssid,
2990                 MAC_ARG(competitor->network.MacAddress),
2991                 competitor->network.Configuration.DSConfig,
2992                 (int)competitor->network.Rssi,
2993                 rtw_get_passing_time_ms(competitor->last_scanned)
2994         );
2995
2996         /* got specific addr to roam */
2997         if (!is_zero_mac_addr(mlme->roam_tgt_addr)) {
2998                 if(_rtw_memcmp(mlme->roam_tgt_addr, competitor->network.MacAddress, ETH_ALEN) == _TRUE)
2999                         goto update;
3000                 else
3001                         goto exit;
3002         }
3003         #if 1
3004         if(rtw_get_passing_time_ms((u32)competitor->last_scanned) >= mlme->roam_scanr_exp_ms)
3005                 goto exit;
3006
3007         if (competitor->network.Rssi - mlme->cur_network_scanned->network.Rssi < mlme->roam_rssi_diff_th)
3008                 goto exit;
3009
3010         if(*candidate != NULL && (*candidate)->network.Rssi>=competitor->network.Rssi)
3011                 goto exit;
3012         #else
3013         goto exit;
3014         #endif
3015
3016 update:
3017         *candidate = competitor;
3018         updated = _TRUE;
3019
3020 exit:
3021         return updated;
3022 }
3023
3024 int rtw_select_roaming_candidate(struct mlme_priv *mlme)
3025 {
3026         _irqL   irqL;
3027         int ret = _FAIL;
3028         _list   *phead;
3029         _adapter *adapter;      
3030         _queue  *queue  = &(mlme->scanned_queue);
3031         struct  wlan_network    *pnetwork = NULL;
3032         struct  wlan_network    *candidate = NULL;
3033         u8              bSupportAntDiv = _FALSE;
3034
3035 _func_enter_;
3036
3037         if (mlme->cur_network_scanned == NULL) {
3038                 rtw_warn_on(1);
3039                 goto exit;
3040         }
3041
3042         _enter_critical_bh(&(mlme->scanned_queue.lock), &irqL);
3043         phead = get_list_head(queue);           
3044         adapter = (_adapter *)mlme->nic_hdl;
3045
3046         mlme->pscanned = get_next(phead);
3047
3048         while (!rtw_end_of_queue_search(phead, mlme->pscanned)) {
3049
3050                 pnetwork = LIST_CONTAINOR(mlme->pscanned, struct wlan_network, list);
3051                 if(pnetwork==NULL){
3052                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("%s return _FAIL:(pnetwork==NULL)\n", __FUNCTION__));
3053                         ret = _FAIL;
3054                         goto exit;
3055                 }
3056                 
3057                 mlme->pscanned = get_next(mlme->pscanned);
3058
3059                 if (0)
3060                         DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
3061                                 , pnetwork->network.Ssid.Ssid
3062                                 , MAC_ARG(pnetwork->network.MacAddress)
3063                                 , pnetwork->network.Configuration.DSConfig
3064                                 , (int)pnetwork->network.Rssi);
3065
3066                 rtw_check_roaming_candidate(mlme, &candidate, pnetwork);
3067  
3068         }
3069
3070         if(candidate == NULL) {
3071                 DBG_871X("%s: return _FAIL(candidate == NULL)\n", __FUNCTION__);
3072                 ret = _FAIL;
3073                 goto exit;
3074         } else {
3075                 DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __FUNCTION__,
3076                         candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
3077                         candidate->network.Configuration.DSConfig);
3078
3079                 mlme->roam_network = candidate;
3080
3081                 if (_rtw_memcmp(candidate->network.MacAddress, mlme->roam_tgt_addr, ETH_ALEN) == _TRUE)
3082                         _rtw_memset(mlme->roam_tgt_addr,0, ETH_ALEN);
3083         }
3084
3085         ret = _SUCCESS;
3086 exit:
3087         _exit_critical_bh(&(mlme->scanned_queue.lock), &irqL);
3088
3089         return ret;
3090 }
3091 #endif /* CONFIG_LAYER2_ROAMING */
3092
3093 /*
3094 * Select a new join candidate from the original @param candidate and @param competitor
3095 * @return _TRUE: candidate is updated
3096 * @return _FALSE: candidate is not updated
3097 */
3098 static int rtw_check_join_candidate(struct mlme_priv *mlme
3099         , struct wlan_network **candidate, struct wlan_network *competitor)
3100 {
3101         int updated = _FALSE;
3102         _adapter *adapter = container_of(mlme, _adapter, mlmepriv);
3103
3104
3105         //check bssid, if needed
3106         if(mlme->assoc_by_bssid==_TRUE) {
3107                 if(_rtw_memcmp(competitor->network.MacAddress, mlme->assoc_bssid, ETH_ALEN) ==_FALSE)
3108                         goto exit;
3109         }
3110
3111         //check ssid, if needed
3112         if(mlme->assoc_ssid.Ssid[0] && mlme->assoc_ssid.SsidLength) {
3113                 if(     competitor->network.Ssid.SsidLength != mlme->assoc_ssid.SsidLength
3114                         || _rtw_memcmp(competitor->network.Ssid.Ssid, mlme->assoc_ssid.Ssid, mlme->assoc_ssid.SsidLength) == _FALSE
3115                 )
3116                         goto exit;
3117         }
3118
3119         if(rtw_is_desired_network(adapter, competitor)  == _FALSE)
3120                 goto exit;
3121
3122 #ifdef  CONFIG_LAYER2_ROAMING
3123         if(rtw_to_roam(adapter) > 0) {
3124                 if(     rtw_get_passing_time_ms((u32)competitor->last_scanned) >= mlme->roam_scanr_exp_ms
3125                         || is_same_ess(&competitor->network, &mlme->cur_network.network) == _FALSE
3126                 )
3127                         goto exit;
3128         }
3129 #endif
3130         
3131         if(*candidate == NULL ||(*candidate)->network.Rssi<competitor->network.Rssi )
3132         {
3133                 *candidate = competitor;
3134                 updated = _TRUE;
3135         }
3136
3137         if(updated){
3138                 DBG_871X("[by_bssid:%u][assoc_ssid:%s][to_roam:%u] "
3139                         "new candidate: %s("MAC_FMT", ch%u) rssi:%d\n",
3140                         mlme->assoc_by_bssid,
3141                         mlme->assoc_ssid.Ssid,
3142                         rtw_to_roam(adapter),
3143                         (*candidate)->network.Ssid.Ssid,
3144                         MAC_ARG((*candidate)->network.MacAddress),
3145                         (*candidate)->network.Configuration.DSConfig,
3146                         (int)(*candidate)->network.Rssi
3147                 );
3148         }
3149
3150 exit:
3151         return updated;
3152 }
3153
3154 /*
3155 Calling context:
3156 The caller of the sub-routine will be in critical section...
3157
3158 The caller must hold the following spinlock
3159
3160 pmlmepriv->lock
3161
3162
3163 */
3164
3165 int rtw_select_and_join_from_scanned_queue(struct mlme_priv *pmlmepriv )
3166 {
3167         _irqL   irqL;
3168         int ret;
3169         _list   *phead;
3170         _adapter *adapter;      
3171         _queue  *queue  = &(pmlmepriv->scanned_queue);
3172         struct  wlan_network    *pnetwork = NULL;
3173         struct  wlan_network    *candidate = NULL;
3174         u8              bSupportAntDiv = _FALSE;
3175
3176 _func_enter_;
3177
3178         adapter = (_adapter *)pmlmepriv->nic_hdl;
3179
3180         _enter_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
3181
3182         #ifdef CONFIG_LAYER2_ROAMING
3183         if (pmlmepriv->roam_network) {
3184                 candidate = pmlmepriv->roam_network;
3185                 pmlmepriv->roam_network = NULL;
3186                 goto candidate_exist;
3187         }
3188         #endif
3189
3190         phead = get_list_head(queue);
3191         pmlmepriv->pscanned = get_next(phead);
3192
3193         while (!rtw_end_of_queue_search(phead, pmlmepriv->pscanned)) {
3194
3195                 pnetwork = LIST_CONTAINOR(pmlmepriv->pscanned, struct wlan_network, list);
3196                 if(pnetwork==NULL){
3197                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("%s return _FAIL:(pnetwork==NULL)\n", __FUNCTION__));
3198                         ret = _FAIL;
3199                         goto exit;
3200                 }
3201                 
3202                 pmlmepriv->pscanned = get_next(pmlmepriv->pscanned);
3203
3204                 if (0)
3205                         DBG_871X("%s("MAC_FMT", ch%u) rssi:%d\n"
3206                                 , pnetwork->network.Ssid.Ssid
3207                                 , MAC_ARG(pnetwork->network.MacAddress)
3208                                 , pnetwork->network.Configuration.DSConfig
3209                                 , (int)pnetwork->network.Rssi);
3210
3211                 rtw_check_join_candidate(pmlmepriv, &candidate, pnetwork);
3212  
3213         }
3214
3215         if(candidate == NULL) {
3216                 DBG_871X("%s: return _FAIL(candidate == NULL)\n", __FUNCTION__);
3217 #ifdef CONFIG_WOWLAN
3218                 _clr_fwstate_(pmlmepriv, _FW_LINKED|_FW_UNDER_LINKING);
3219 #endif
3220                 ret = _FAIL;
3221                 goto exit;
3222         } else {
3223                 DBG_871X("%s: candidate: %s("MAC_FMT", ch:%u)\n", __FUNCTION__,
3224                         candidate->network.Ssid.Ssid, MAC_ARG(candidate->network.MacAddress),
3225                         candidate->network.Configuration.DSConfig);
3226                 goto candidate_exist;
3227         }
3228         
3229 candidate_exist:
3230
3231         // check for situation of  _FW_LINKED 
3232         if (check_fwstate(pmlmepriv, _FW_LINKED) == _TRUE)
3233         {
3234                 DBG_871X("%s: _FW_LINKED while ask_for_joinbss!!!\n", __FUNCTION__);
3235
3236                 #if 0 // for WPA/WPA2 authentication, wpa_supplicant will expect authentication from AP, it is needed to reconnect AP...
3237                 if(is_same_network(&pmlmepriv->cur_network.network, &candidate->network))
3238                 {
3239                         DBG_871X("%s: _FW_LINKED and is same network, it needn't join again\n", __FUNCTION__);
3240
3241                         rtw_indicate_connect(adapter);//rtw_indicate_connect again
3242                                 
3243                         ret = 2;
3244                         goto exit;
3245                 }
3246                 else
3247                 #endif
3248                 {
3249                         rtw_disassoc_cmd(adapter, 0, _TRUE);
3250                         rtw_indicate_disconnect(adapter);
3251                         rtw_free_assoc_resources(adapter, 0);
3252                 }
3253         }
3254         
3255         #ifdef CONFIG_ANTENNA_DIVERSITY
3256         rtw_hal_get_def_var(adapter, HAL_DEF_IS_SUPPORT_ANT_DIV, &(bSupportAntDiv));
3257         if(_TRUE == bSupportAntDiv)     
3258         {
3259                 u8 CurrentAntenna;
3260                 rtw_hal_get_def_var(adapter, HAL_DEF_CURRENT_ANTENNA, &(CurrentAntenna));                       
3261                 DBG_871X("#### Opt_Ant_(%s) , cur_Ant(%s)\n",
3262                         (2==candidate->network.PhyInfo.Optimum_antenna)?"A":"B",
3263                         (2==CurrentAntenna)?"A":"B"
3264                 );
3265         }
3266         #endif
3267         set_fwstate(pmlmepriv, _FW_UNDER_LINKING);
3268         ret = rtw_joinbss_cmd(adapter, candidate);
3269         
3270 exit:
3271         _exit_critical_bh(&(pmlmepriv->scanned_queue.lock), &irqL);
3272
3273 _func_exit_;
3274
3275         return ret;
3276 }
3277
3278 sint rtw_set_auth(_adapter * adapter,struct security_priv *psecuritypriv)
3279 {
3280         struct  cmd_obj* pcmd;
3281         struct  setauth_parm *psetauthparm;
3282         struct  cmd_priv        *pcmdpriv=&(adapter->cmdpriv);
3283         sint            res=_SUCCESS;
3284         
3285 _func_enter_;   
3286
3287         pcmd = (struct  cmd_obj*)rtw_zmalloc(sizeof(struct      cmd_obj));
3288         if(pcmd==NULL){
3289                 res= _FAIL;  //try again
3290                 goto exit;
3291         }
3292         
3293         psetauthparm=(struct setauth_parm*)rtw_zmalloc(sizeof(struct setauth_parm));
3294         if(psetauthparm==NULL){
3295                 rtw_mfree((unsigned char *)pcmd, sizeof(struct  cmd_obj));
3296                 res= _FAIL;
3297                 goto exit;
3298         }
3299
3300         _rtw_memset(psetauthparm, 0, sizeof(struct setauth_parm));
3301         psetauthparm->mode=(unsigned char)psecuritypriv->dot11AuthAlgrthm;
3302         
3303         pcmd->cmdcode = _SetAuth_CMD_;
3304         pcmd->parmbuf = (unsigned char *)psetauthparm;   
3305         pcmd->cmdsz =  (sizeof(struct setauth_parm));  
3306         pcmd->rsp = NULL;
3307         pcmd->rspsz = 0;
3308
3309
3310         _rtw_init_listhead(&pcmd->list);
3311
3312         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("after enqueue set_auth_cmd, auth_mode=%x\n", psecuritypriv->dot11AuthAlgrthm));
3313
3314         res = rtw_enqueue_cmd(pcmdpriv, pcmd);
3315
3316 exit:
3317
3318 _func_exit_;
3319
3320         return res;
3321
3322 }
3323
3324
3325 sint rtw_set_key(_adapter * adapter,struct security_priv *psecuritypriv,sint keyid, u8 set_tx, bool enqueue)
3326 {
3327         u8      keylen;
3328         struct cmd_obj          *pcmd;
3329         struct setkey_parm      *psetkeyparm;
3330         struct cmd_priv         *pcmdpriv = &(adapter->cmdpriv);
3331         struct mlme_priv                *pmlmepriv = &(adapter->mlmepriv);
3332         sint    res=_SUCCESS;
3333         
3334 _func_enter_;
3335
3336         psetkeyparm=(struct setkey_parm*)rtw_zmalloc(sizeof(struct setkey_parm));
3337         if(psetkeyparm==NULL){          
3338                 res= _FAIL;
3339                 goto exit;
3340         }
3341         _rtw_memset(psetkeyparm, 0, sizeof(struct setkey_parm));
3342
3343         if(psecuritypriv->dot11AuthAlgrthm ==dot11AuthAlgrthm_8021X){           
3344                 psetkeyparm->algorithm=(unsigned char)psecuritypriv->dot118021XGrpPrivacy;      
3345                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=(unsigned char)psecuritypriv->dot118021XGrpPrivacy=%d \n", psetkeyparm->algorithm));
3346         }       
3347         else{
3348                 psetkeyparm->algorithm=(u8)psecuritypriv->dot11PrivacyAlgrthm;
3349                 RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=(u8)psecuritypriv->dot11PrivacyAlgrthm=%d \n", psetkeyparm->algorithm));
3350
3351         }
3352         psetkeyparm->keyid = (u8)keyid;//0~3
3353         psetkeyparm->set_tx = set_tx;
3354         if (is_wep_enc(psetkeyparm->algorithm))
3355                 adapter->securitypriv.key_mask |= BIT(psetkeyparm->keyid);
3356
3357         DBG_871X("==> rtw_set_key algorithm(%x),keyid(%x),key_mask(%x)\n",psetkeyparm->algorithm,psetkeyparm->keyid, adapter->securitypriv.key_mask);
3358         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key: psetkeyparm->algorithm=%d psetkeyparm->keyid=(u8)keyid=%d \n",psetkeyparm->algorithm, keyid));
3359
3360         switch(psetkeyparm->algorithm){
3361                         
3362                 case _WEP40_:
3363                         keylen=5;
3364                         _rtw_memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
3365                         break;
3366                 case _WEP104_:
3367                         keylen=13;
3368                         _rtw_memcpy(&(psetkeyparm->key[0]), &(psecuritypriv->dot11DefKey[keyid].skey[0]), keylen);
3369                         break;
3370                 case _TKIP_:
3371                         keylen=16;                      
3372                         _rtw_memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
3373                         psetkeyparm->grpkey=1;
3374                         break;
3375                 case _AES_:
3376                         keylen=16;                      
3377                         _rtw_memcpy(&psetkeyparm->key, &psecuritypriv->dot118021XGrpKey[keyid], keylen);
3378                         psetkeyparm->grpkey=1;
3379                         break;
3380                 default:
3381                         RT_TRACE(_module_rtl871x_mlme_c_,_drv_err_,("\n rtw_set_key:psecuritypriv->dot11PrivacyAlgrthm = %x (must be 1 or 2 or 4 or 5)\n",psecuritypriv->dot11PrivacyAlgrthm));
3382                         res= _FAIL;
3383                         rtw_mfree((unsigned char *)psetkeyparm, sizeof(struct setkey_parm));
3384                         goto exit;
3385         }
3386                 
3387                 
3388         if(enqueue){
3389                 pcmd = (struct  cmd_obj*)rtw_zmalloc(sizeof(struct      cmd_obj));
3390                 if(pcmd==NULL){
3391                         rtw_mfree((unsigned char *)psetkeyparm, sizeof(struct setkey_parm));
3392                         res= _FAIL;  //try again
3393                         goto exit;
3394                 }
3395                 
3396                 pcmd->cmdcode = _SetKey_CMD_;
3397                 pcmd->parmbuf = (u8 *)psetkeyparm;   
3398                 pcmd->cmdsz =  (sizeof(struct setkey_parm));  
3399                 pcmd->rsp = NULL;
3400                 pcmd->rspsz = 0;
3401
3402                 _rtw_init_listhead(&pcmd->list);
3403
3404                 //_rtw_init_sema(&(pcmd->cmd_sem), 0);
3405
3406                 res = rtw_enqueue_cmd(pcmdpriv, pcmd);
3407         }
3408         else{
3409                 setkey_hdl(adapter, (u8 *)psetkeyparm);
3410                 rtw_mfree((u8 *) psetkeyparm, sizeof(struct setkey_parm));
3411         }
3412 exit:
3413 _func_exit_;
3414         return res;
3415
3416 }
3417
3418
3419 //adjust IEs for rtw_joinbss_cmd in WMM
3420 int rtw_restruct_wmm_ie(_adapter *adapter, u8 *in_ie, u8 *out_ie, uint in_len, uint initial_out_len)
3421 {
3422         unsigned        int ielength=0;
3423         unsigned int i, j;
3424
3425         i = 12; //after the fixed IE
3426         while(i<in_len)
3427         {
3428                 ielength = initial_out_len;             
3429                 
3430                 if(in_ie[i] == 0xDD && in_ie[i+2] == 0x00 && in_ie[i+3] == 0x50  && in_ie[i+4] == 0xF2 && in_ie[i+5] == 0x02 && i+5 < in_len) //WMM element ID and OUI
3431                 {
3432
3433                         //Append WMM IE to the last index of out_ie
3434                         /*
3435                         for(j=i; j< i+(in_ie[i+1]+2); j++)
3436                         {
3437                                 out_ie[ielength] = in_ie[j];                            
3438                                 ielength++;
3439                         }
3440                         out_ie[initial_out_len+8] = 0x00; //force the QoS Info Field to be zero
3441                         */
3442                        
3443                         for ( j = i; j < i + 9; j++ )
3444                         {
3445                             out_ie[ ielength] = in_ie[ j ];
3446                             ielength++;
3447                         } 
3448                         out_ie[ initial_out_len + 1 ] = 0x07;
3449                         out_ie[ initial_out_len + 6 ] = 0x00;
3450                         out_ie[ initial_out_len + 8 ] = 0x00;
3451         
3452                         break;
3453                 }
3454
3455                 i+=(in_ie[i+1]+2); // to the next IE element
3456         }
3457         
3458         return ielength;
3459         
3460 }
3461
3462
3463 //
3464 // Ported from 8185: IsInPreAuthKeyList(). (Renamed from SecIsInPreAuthKeyList(), 2006-10-13.)
3465 // Added by Annie, 2006-05-07.
3466 //
3467 // Search by BSSID,
3468 // Return Value:
3469 //              -1              :if there is no pre-auth key in the  table
3470 //              >=0             :if there is pre-auth key, and   return the entry id
3471 //
3472 //
3473
3474 static int SecIsInPMKIDList(_adapter *Adapter, u8 *bssid)
3475 {
3476         struct security_priv *psecuritypriv=&Adapter->securitypriv;
3477         int i=0;
3478
3479         do
3480         {
3481                 if( ( psecuritypriv->PMKIDList[i].bUsed ) && 
3482                     (  _rtw_memcmp( psecuritypriv->PMKIDList[i].Bssid, bssid, ETH_ALEN ) == _TRUE ) )
3483                 {
3484                         break;
3485                 }
3486                 else
3487                 {       
3488                         i++;
3489                         //continue;
3490                 }
3491                 
3492         }while(i<NUM_PMKID_CACHE);
3493
3494         if( i == NUM_PMKID_CACHE )
3495         { 
3496                 i = -1;// Could not find.
3497         }
3498         else
3499         { 
3500                 // There is one Pre-Authentication Key for the specific BSSID.
3501         }
3502
3503         return (i);
3504         
3505 }
3506
3507 //
3508 // Check the RSN IE length
3509 // If the RSN IE length <= 20, the RSN IE didn't include the PMKID information
3510 // 0-11th element in the array are the fixed IE
3511 // 12th element in the array is the IE
3512 // 13th element in the array is the IE length  
3513 //
3514
3515 static int rtw_append_pmkid(_adapter *adapter,int iEntry, u8 *ie, uint ie_len)
3516 {
3517         struct security_priv *sec=&adapter->securitypriv;
3518
3519         if (ie[13] > 20) {
3520                 int i;
3521                 u16 pmkid_cnt = RTW_GET_LE16(ie+14+20);
3522                 if (pmkid_cnt == 1 && _rtw_memcmp(ie+14+20+2, &sec->PMKIDList[iEntry].PMKID, 16)) {
3523                         DBG_871X(FUNC_ADPT_FMT" has carried the same PMKID:"KEY_FMT"\n"
3524                                 , FUNC_ADPT_ARG(adapter), KEY_ARG(&sec->PMKIDList[iEntry].PMKID));
3525                         goto exit;
3526                 }
3527
3528                 DBG_871X(FUNC_ADPT_FMT" remove original PMKID, count:%u\n"
3529                         , FUNC_ADPT_ARG(adapter), pmkid_cnt);
3530
3531                 for (i=0;i<pmkid_cnt;i++)
3532                         DBG_871X("    "KEY_FMT"\n", KEY_ARG(ie+14+20+2+i*16));
3533
3534                 ie_len -= 2+pmkid_cnt*16;
3535                 ie[13] = 20;
3536         }
3537
3538         if (ie[13] <= 20) {     
3539                 /* The RSN IE didn't include the PMK ID, append the PMK information */
3540
3541                 DBG_871X(FUNC_ADPT_FMT" append PMKID:"KEY_FMT"\n"
3542                                 , FUNC_ADPT_ARG(adapter), KEY_ARG(&sec->PMKIDList[iEntry].PMKID));
3543
3544                 RTW_PUT_LE16(&ie[ie_len], 1);
3545                 ie_len += 2;
3546
3547                 _rtw_memcpy(&ie[ie_len], &sec->PMKIDList[iEntry].PMKID, 16);
3548                 ie_len += 16;
3549
3550                 ie[13] += 18;//PMKID length = 2+16
3551         }
3552
3553 exit:
3554         return (ie_len);
3555 }
3556
3557 static int rtw_remove_pmkid(_adapter *adapter, u8 *ie, uint ie_len)
3558 {
3559         struct security_priv *sec=&adapter->securitypriv;
3560         int i;
3561         u16 pmkid_cnt = RTW_GET_LE16(ie+14+20);
3562
3563         if (ie[13] <= 20)
3564                 goto exit;
3565
3566         DBG_871X(FUNC_ADPT_FMT" remove original PMKID, count:%u\n"
3567                 , FUNC_ADPT_ARG(adapter), pmkid_cnt);
3568
3569         for (i=0;i<pmkid_cnt;i++)
3570                 DBG_871X("    "KEY_FMT"\n", KEY_ARG(ie+14+20+2+i*16));
3571
3572         ie_len -= 2+pmkid_cnt*16;
3573         ie[13] = 20;
3574
3575 exit:
3576         return (ie_len);
3577 }
3578
3579 sint rtw_restruct_sec_ie(_adapter *adapter,u8 *in_ie, u8 *out_ie, uint in_len)
3580 {
3581         u8 authmode=0x0, securitytype, match;
3582         u8 sec_ie[255], uncst_oui[4], bkup_ie[255];
3583         u8 wpa_oui[4]={0x0, 0x50, 0xf2, 0x01};
3584         uint    ielength, cnt, remove_cnt;
3585         int iEntry;
3586
3587         struct mlme_priv *pmlmepriv = &adapter->mlmepriv;
3588         struct security_priv *psecuritypriv=&adapter->securitypriv;
3589         uint    ndisauthmode=psecuritypriv->ndisauthtype;
3590         uint ndissecuritytype = psecuritypriv->ndisencryptstatus;
3591         
3592 _func_enter_;
3593
3594         RT_TRACE(_module_rtl871x_mlme_c_, _drv_notice_,
3595                  ("+rtw_restruct_sec_ie: ndisauthmode=%d ndissecuritytype=%d\n",
3596                   ndisauthmode, ndissecuritytype));
3597         
3598         //copy fixed ie only
3599         _rtw_memcpy(out_ie, in_ie,12);
3600         ielength=12;
3601         if((ndisauthmode==Ndis802_11AuthModeWPA)||(ndisauthmode==Ndis802_11AuthModeWPAPSK))
3602                         authmode=_WPA_IE_ID_;
3603         if((ndisauthmode==Ndis802_11AuthModeWPA2)||(ndisauthmode==Ndis802_11AuthModeWPA2PSK))
3604                         authmode=_WPA2_IE_ID_;
3605
3606         if(check_fwstate(pmlmepriv, WIFI_UNDER_WPS))
3607         {
3608                 _rtw_memcpy(out_ie+ielength, psecuritypriv->wps_ie, psecuritypriv->wps_ie_len);
3609                 
3610                 ielength += psecuritypriv->wps_ie_len;
3611         }
3612         else if((authmode==_WPA_IE_ID_)||(authmode==_WPA2_IE_ID_))
3613         {               
3614                 //copy RSN or SSN               
3615                 _rtw_memcpy(&out_ie[ielength], &psecuritypriv->supplicant_ie[0], psecuritypriv->supplicant_ie[1]+2);
3616                 /* debug for CONFIG_IEEE80211W
3617                 {
3618                         int jj;
3619                         printk("supplicant_ie_length=%d &&&&&&&&&&&&&&&&&&&\n", psecuritypriv->supplicant_ie[1]+2);
3620                         for(jj=0; jj < psecuritypriv->supplicant_ie[1]+2; jj++)
3621                                 printk(" %02x ", psecuritypriv->supplicant_ie[jj]);
3622                         printk("\n");
3623                 }*/
3624                 ielength+=psecuritypriv->supplicant_ie[1]+2;
3625                 rtw_report_sec_ie(adapter, authmode, psecuritypriv->supplicant_ie);
3626         
3627 #ifdef CONFIG_DRVEXT_MODULE
3628                 drvext_report_sec_ie(&adapter->drvextpriv, authmode, sec_ie);   
3629 #endif
3630         }
3631
3632         iEntry = SecIsInPMKIDList(adapter, pmlmepriv->assoc_bssid);
3633         if(iEntry<0)
3634         {
3635                 if(authmode == _WPA2_IE_ID_)
3636                         ielength = rtw_remove_pmkid(adapter, out_ie, ielength);
3637         }
3638         else
3639         {
3640                 if(authmode == _WPA2_IE_ID_)
3641                         ielength=rtw_append_pmkid(adapter, iEntry, out_ie, ielength);
3642         }
3643
3644 _func_exit_;
3645         
3646         return ielength;        
3647 }
3648
3649 void rtw_init_registrypriv_dev_network( _adapter* adapter)
3650 {
3651         struct registry_priv* pregistrypriv = &adapter->registrypriv;
3652         WLAN_BSSID_EX    *pdev_network = &pregistrypriv->dev_network;
3653         u8 *myhwaddr = adapter_mac_addr(adapter);
3654         
3655 _func_enter_;
3656
3657         _rtw_memcpy(pdev_network->MacAddress, myhwaddr, ETH_ALEN);
3658
3659         _rtw_memcpy(&pdev_network->Ssid, &pregistrypriv->ssid, sizeof(NDIS_802_11_SSID));
3660         
3661         pdev_network->Configuration.Length=sizeof(NDIS_802_11_CONFIGURATION);
3662         pdev_network->Configuration.BeaconPeriod = 100; 
3663         pdev_network->Configuration.FHConfig.Length = 0;
3664         pdev_network->Configuration.FHConfig.HopPattern = 0;
3665         pdev_network->Configuration.FHConfig.HopSet = 0;
3666         pdev_network->Configuration.FHConfig.DwellTime = 0;
3667         
3668         
3669 _func_exit_;    
3670         
3671 }
3672
3673 void rtw_update_registrypriv_dev_network(_adapter* adapter) 
3674 {
3675         int sz=0;
3676         struct registry_priv* pregistrypriv = &adapter->registrypriv;   
3677         WLAN_BSSID_EX    *pdev_network = &pregistrypriv->dev_network;
3678         struct  security_priv*  psecuritypriv = &adapter->securitypriv;
3679         struct  wlan_network    *cur_network = &adapter->mlmepriv.cur_network;
3680         //struct        xmit_priv       *pxmitpriv = &adapter->xmitpriv;
3681         struct mlme_ext_priv    *pmlmeext = &adapter->mlmeextpriv;
3682
3683 _func_enter_;
3684
3685 #if 0
3686         pxmitpriv->vcs_setting = pregistrypriv->vrtl_carrier_sense;
3687         pxmitpriv->vcs = pregistrypriv->vcs_type;
3688         pxmitpriv->vcs_type = pregistrypriv->vcs_type;
3689         //pxmitpriv->rts_thresh = pregistrypriv->rts_thresh;
3690         pxmitpriv->frag_len = pregistrypriv->frag_thresh;
3691         
3692         adapter->qospriv.qos_option = pregistrypriv->wmm_enable;
3693 #endif  
3694
3695         pdev_network->Privacy = (psecuritypriv->dot11PrivacyAlgrthm > 0 ? 1 : 0) ; // adhoc no 802.1x
3696
3697         pdev_network->Rssi = 0;
3698
3699         switch(pregistrypriv->wireless_mode)
3700         {
3701                 case WIRELESS_11B:
3702                         pdev_network->NetworkTypeInUse = (Ndis802_11DS);
3703                         break;  
3704                 case WIRELESS_11G:
3705                 case WIRELESS_11BG:
3706                 case WIRELESS_11_24N:
3707                 case WIRELESS_11G_24N:
3708                 case WIRELESS_11BG_24N:
3709                         pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
3710                         break;
3711                 case WIRELESS_11A:
3712                 case WIRELESS_11A_5N:
3713                         pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
3714                         break;
3715                 case WIRELESS_11ABGN:
3716                         if(pregistrypriv->channel > 14)
3717                                 pdev_network->NetworkTypeInUse = (Ndis802_11OFDM5);
3718                         else
3719                                 pdev_network->NetworkTypeInUse = (Ndis802_11OFDM24);
3720                         break;
3721                 default :
3722                         // TODO
3723                         break;
3724         }
3725         
3726         pdev_network->Configuration.DSConfig = (pregistrypriv->channel);
3727         RT_TRACE(_module_rtl871x_mlme_c_,_drv_info_,("pregistrypriv->channel=%d, pdev_network->Configuration.DSConfig=0x%x\n", pregistrypriv->channel, pdev_network->Configuration.DSConfig));  
3728
3729         if (cur_network->network.InfrastructureMode == Ndis802_11IBSS) {
3730                 pdev_network->Configuration.ATIMWindow = (0);
3731
3732                 if (pmlmeext->cur_channel != 0)
3733                         pdev_network->Configuration.DSConfig = pmlmeext->cur_channel;
3734                 else 
3735                         pdev_network->Configuration.DSConfig = 1;
3736         }
3737
3738         pdev_network->InfrastructureMode = (cur_network->network.InfrastructureMode);
3739
3740         // 1. Supported rates
3741         // 2. IE
3742
3743         //rtw_set_supported_rate(pdev_network->SupportedRates, pregistrypriv->wireless_mode) ; // will be called in rtw_generate_ie
3744         sz = rtw_generate_ie(pregistrypriv);
3745
3746         pdev_network->IELength = sz;
3747
3748         pdev_network->Length = get_WLAN_BSSID_EX_sz((WLAN_BSSID_EX  *)pdev_network);
3749
3750         //notes: translate IELength & Length after assign the Length to cmdsz in createbss_cmd();
3751         //pdev_network->IELength = cpu_to_le32(sz);
3752                 
3753 _func_exit_;    
3754
3755 }
3756
3757 void rtw_get_encrypt_decrypt_from_registrypriv(_adapter* adapter)
3758 {
3759 _func_enter_;
3760
3761
3762 _func_exit_;    
3763         
3764 }
3765
3766 //the fucntion is at passive_level 
3767 void rtw_joinbss_reset(_adapter *padapter)
3768 {
3769         u8      threshold;
3770         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
3771         //todo: if you want to do something io/reg/hw setting before join_bss, please add code here
3772         
3773 #ifdef CONFIG_80211N_HT 
3774         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;  
3775
3776         pmlmepriv->num_FortyMHzIntolerant = 0;
3777
3778         pmlmepriv->num_sta_no_ht = 0;
3779
3780         phtpriv->ampdu_enable = _FALSE;//reset to disabled
3781
3782 #if defined( CONFIG_USB_HCI) || defined (CONFIG_SDIO_HCI)
3783         // TH=1 => means that invalidate usb rx aggregation
3784         // TH=0 => means that validate usb rx aggregation, use init value.
3785         if(phtpriv->ht_option)
3786         {
3787                 if(padapter->registrypriv.wifi_spec==1)         
3788                         threshold = 1;
3789                 else
3790                         threshold = 0;          
3791                 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
3792         }
3793         else
3794         {
3795                 threshold = 1;
3796                 rtw_hal_set_hwreg(padapter, HW_VAR_RXDMA_AGG_PG_TH, (u8 *)(&threshold));
3797         }
3798 #endif//#if defined( CONFIG_USB_HCI) || defined (CONFIG_SDIO_HCI)
3799
3800 #endif//#ifdef CONFIG_80211N_HT
3801
3802 }
3803
3804
3805 #ifdef CONFIG_80211N_HT
3806 void    rtw_ht_use_default_setting(_adapter *padapter)
3807 {
3808         struct mlme_priv                *pmlmepriv = &padapter->mlmepriv;
3809         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
3810         struct registry_priv    *pregistrypriv = &padapter->registrypriv;
3811         BOOLEAN         bHwLDPCSupport = _FALSE, bHwSTBCSupport = _FALSE;
3812         BOOLEAN         bHwSupportBeamformer = _FALSE, bHwSupportBeamformee = _FALSE;
3813
3814         if (pregistrypriv->wifi_spec)
3815                 phtpriv->bss_coexist = 1;
3816         else
3817                 phtpriv->bss_coexist = 0;
3818
3819         phtpriv->sgi_40m = TEST_FLAG(pregistrypriv->short_gi, BIT1) ? _TRUE : _FALSE;
3820         phtpriv->sgi_20m = TEST_FLAG(pregistrypriv->short_gi, BIT0) ? _TRUE : _FALSE;
3821
3822         // LDPC support
3823         rtw_hal_get_def_var(padapter, HAL_DEF_RX_LDPC, (u8 *)&bHwLDPCSupport);
3824         CLEAR_FLAGS(phtpriv->ldpc_cap);
3825         if(bHwLDPCSupport)
3826         {
3827                 if(TEST_FLAG(pregistrypriv->ldpc_cap, BIT4))
3828                         SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_RX);
3829         }
3830         rtw_hal_get_def_var(padapter, HAL_DEF_TX_LDPC, (u8 *)&bHwLDPCSupport);
3831         if(bHwLDPCSupport)
3832         {
3833                 if(TEST_FLAG(pregistrypriv->ldpc_cap, BIT5))
3834                         SET_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_TX);
3835         }
3836         if (phtpriv->ldpc_cap)
3837                 DBG_871X("[HT] Support LDPC = 0x%02X\n", phtpriv->ldpc_cap);
3838
3839         // STBC
3840         rtw_hal_get_def_var(padapter, HAL_DEF_TX_STBC, (u8 *)&bHwSTBCSupport);
3841         CLEAR_FLAGS(phtpriv->stbc_cap);
3842         if(bHwSTBCSupport)
3843         {
3844                 if(TEST_FLAG(pregistrypriv->stbc_cap, BIT5))
3845                         SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX);
3846         }
3847         rtw_hal_get_def_var(padapter, HAL_DEF_RX_STBC, (u8 *)&bHwSTBCSupport);
3848         if(bHwSTBCSupport)
3849         {
3850                 if(TEST_FLAG(pregistrypriv->stbc_cap, BIT4))
3851                         SET_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX);
3852         }
3853         if (phtpriv->stbc_cap)
3854                 DBG_871X("[HT] Support STBC = 0x%02X\n", phtpriv->stbc_cap);
3855
3856         // Beamforming setting
3857         rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMER, (u8 *)&bHwSupportBeamformer);
3858         rtw_hal_get_def_var(padapter, HAL_DEF_EXPLICIT_BEAMFORMEE, (u8 *)&bHwSupportBeamformee);
3859         CLEAR_FLAGS(phtpriv->beamform_cap);
3860         if(TEST_FLAG(pregistrypriv->beamform_cap, BIT4) && bHwSupportBeamformer)
3861         {
3862                 SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMER_ENABLE);
3863                 DBG_871X("[HT] Support Beamformer\n");
3864         }
3865         if(TEST_FLAG(pregistrypriv->beamform_cap, BIT5) && bHwSupportBeamformee)
3866         {
3867                 SET_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMEE_ENABLE);
3868                 DBG_871X("[HT] Support Beamformee\n");
3869         }
3870 }
3871
3872 void rtw_build_wmm_ie_ht(_adapter *padapter, u8 *out_ie, uint *pout_len)
3873 {
3874         unsigned char WMM_IE[] = {0x00, 0x50, 0xf2, 0x02, 0x00, 0x01, 0x00};
3875         int out_len;
3876         u8 *pframe;
3877
3878         if(padapter->mlmepriv.qospriv.qos_option == 0)
3879         {
3880                 out_len = *pout_len;
3881                 pframe = rtw_set_ie(out_ie+out_len, _VENDOR_SPECIFIC_IE_, 
3882                                                         _WMM_IE_Length_, WMM_IE, pout_len);
3883
3884                 padapter->mlmepriv.qospriv.qos_option = 1;
3885         }
3886 }
3887
3888 /* the fucntion is >= passive_level */
3889 unsigned int rtw_restructure_ht_ie(_adapter *padapter, u8 *in_ie, u8 *out_ie, uint in_len, uint *pout_len, u8 channel)
3890 {
3891         u32 ielen, out_len;
3892         HT_CAP_AMPDU_FACTOR max_rx_ampdu_factor;
3893         unsigned char *p, *pframe;
3894         struct rtw_ieee80211_ht_cap ht_capie;
3895         u8      cbw40_enable = 0, stbc_rx_enable = 0, rf_type = 0, operation_bw=0;
3896         struct registry_priv *pregistrypriv = &padapter->registrypriv;
3897         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
3898         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
3899         struct mlme_ext_priv    *pmlmeext = &padapter->mlmeextpriv;
3900
3901         phtpriv->ht_option = _FALSE;
3902
3903         out_len = *pout_len;
3904
3905         _rtw_memset(&ht_capie, 0, sizeof(struct rtw_ieee80211_ht_cap));
3906
3907         ht_capie.cap_info = IEEE80211_HT_CAP_DSSSCCK40;
3908
3909         if (phtpriv->sgi_20m)
3910                 ht_capie.cap_info |= IEEE80211_HT_CAP_SGI_20;
3911
3912         /* Get HT BW */
3913         if (in_ie == NULL) {
3914                 /* TDLS: TODO 20/40 issue */
3915                 if (check_fwstate(pmlmepriv, WIFI_STATION_STATE)) {
3916                         operation_bw = padapter->mlmeextpriv.cur_bwmode;
3917                         if (operation_bw > CHANNEL_WIDTH_40)
3918                                 operation_bw = CHANNEL_WIDTH_40;
3919                 } else
3920                         /* TDLS: TODO 40? */
3921                         operation_bw = CHANNEL_WIDTH_40;
3922         } else {
3923                 p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
3924                 if (p && (ielen == sizeof(struct ieee80211_ht_addt_info))) {
3925                         struct HT_info_element *pht_info = (struct HT_info_element *)(p+2);
3926                         if (pht_info->infos[0] & BIT(2)) {
3927                                 switch (pht_info->infos[0] & 0x3) {
3928                                 case 1:
3929                                 case 3:
3930                                         operation_bw = CHANNEL_WIDTH_40;
3931                                         break;
3932                                 default:
3933                                         operation_bw = CHANNEL_WIDTH_20;
3934                                         break;
3935                                 }
3936                         } else {
3937                                 operation_bw = CHANNEL_WIDTH_20;
3938                         }
3939                 }
3940         }
3941
3942         /* to disable 40M Hz support while gd_bw_40MHz_en = 0 */
3943         if (channel > 14) {
3944                 if ((pregistrypriv->bw_mode & 0xf0) > 0)
3945                         cbw40_enable = 1;
3946         } else {
3947                 if ((pregistrypriv->bw_mode & 0x0f) > 0)
3948                         cbw40_enable = 1;
3949         }
3950
3951         if ((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) {
3952                 ht_capie.cap_info |= IEEE80211_HT_CAP_SUP_WIDTH;
3953                 if (phtpriv->sgi_40m)
3954                         ht_capie.cap_info |= IEEE80211_HT_CAP_SGI_40;
3955         }
3956
3957         if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_TX))
3958                 ht_capie.cap_info |= IEEE80211_HT_CAP_TX_STBC;
3959
3960         /* todo: disable SM power save mode */
3961         ht_capie.cap_info |= IEEE80211_HT_CAP_SM_PS;
3962
3963         /* RX LDPC */
3964         if (TEST_FLAG(phtpriv->ldpc_cap, LDPC_HT_ENABLE_RX)) {
3965                 ht_capie.cap_info |= IEEE80211_HT_CAP_LDPC_CODING;
3966                 DBG_871X("[HT] Declare supporting RX LDPC\n");
3967         }
3968
3969         if (TEST_FLAG(phtpriv->stbc_cap, STBC_HT_ENABLE_RX)) {
3970                 if((pregistrypriv->rx_stbc == 0x3) ||                                                   /* enable for 2.4/5 GHz */
3971                         ((channel <= 14) && (pregistrypriv->rx_stbc == 0x1)) || /* enable for 2.4GHz */
3972                         ((channel > 14) && (pregistrypriv->rx_stbc == 0x2)) ||          /* enable for 5GHz */
3973                         (pregistrypriv->wifi_spec == 1)) {
3974                         stbc_rx_enable = 1;
3975                         DBG_871X("declare supporting RX STBC\n");
3976                 }
3977         }
3978
3979         //fill default supported_mcs_set
3980         _rtw_memcpy(ht_capie.supp_mcs_set, pmlmeext->default_supported_mcs_set, 16);
3981
3982         //update default supported_mcs_set
3983         rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
3984
3985         switch(rf_type)
3986         {
3987         case RF_1T1R:
3988                 
3989                 if (stbc_rx_enable)
3990                         ht_capie.cap_info |= IEEE80211_HT_CAP_RX_STBC_1R;//RX STBC One spatial stream
3991
3992                         set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_1R);                       
3993                         break;
3994
3995         case RF_2T2R:
3996         case RF_1T2R:
3997                 if (stbc_rx_enable)
3998                         ht_capie.cap_info |= IEEE80211_HT_CAP_RX_STBC_2R;//RX STBC two spatial stream
3999
4000                 #ifdef CONFIG_DISABLE_MCS13TO15
4001                 if(((cbw40_enable == 1) && (operation_bw == CHANNEL_WIDTH_40)) && (pregistrypriv->wifi_spec!=1))
4002                                 set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R_13TO15_OFF);    
4003                 else
4004                                 set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R);       
4005                 #else //CONFIG_DISABLE_MCS13TO15
4006                         set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_2R);
4007                 #endif //CONFIG_DISABLE_MCS13TO15
4008                 break;
4009         case RF_3T3R:
4010                 set_mcs_rate_by_mask(ht_capie.supp_mcs_set, MCS_RATE_3R);
4011                 break;
4012         default:
4013                 DBG_871X("[warning] rf_type %d is not expected\n", rf_type);
4014         }
4015
4016         {
4017                 u32 rx_packet_offset, max_recvbuf_sz;
4018                 rtw_hal_get_def_var(padapter, HAL_DEF_RX_PACKET_OFFSET, &rx_packet_offset);
4019                 rtw_hal_get_def_var(padapter, HAL_DEF_MAX_RECVBUF_SZ, &max_recvbuf_sz);
4020                 //if(max_recvbuf_sz-rx_packet_offset>(8191-256)) {
4021                 //      DBG_871X("%s IEEE80211_HT_CAP_MAX_AMSDU is set\n", __FUNCTION__);
4022                 //      ht_capie.cap_info = ht_capie.cap_info |IEEE80211_HT_CAP_MAX_AMSDU;
4023                 //}
4024         }
4025         /*      
4026         AMPDU_para [1:0]:Max AMPDU Len => 0:8k , 1:16k, 2:32k, 3:64k
4027         AMPDU_para [4:2]:Min MPDU Start Spacing 
4028         */
4029
4030         /*
4031         #if defined(CONFIG_RTL8188E )&& defined (CONFIG_SDIO_HCI)
4032         ht_capie.ampdu_params_info = 2;
4033         #else
4034         ht_capie.ampdu_params_info = (IEEE80211_HT_CAP_AMPDU_FACTOR&0x03);
4035         #endif
4036         */
4037
4038         if(padapter->driver_rx_ampdu_factor != 0xFF)
4039                 max_rx_ampdu_factor = (HT_CAP_AMPDU_FACTOR)padapter->driver_rx_ampdu_factor;
4040         else
4041                 rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR, &max_rx_ampdu_factor);
4042                                 
4043         //rtw_hal_get_def_var(padapter, HW_VAR_MAX_RX_AMPDU_FACTOR, &max_rx_ampdu_factor);
4044         ht_capie.ampdu_params_info = (max_rx_ampdu_factor&0x03);
4045
4046         if(padapter->driver_rx_ampdu_spacing != 0xFF) 
4047         {
4048                 ht_capie.ampdu_params_info |= (( padapter->driver_rx_ampdu_spacing&0x07) <<2);  
4049         }
4050         else
4051         {
4052                 if(padapter->securitypriv.dot11PrivacyAlgrthm == _AES_ )
4053                         ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&(0x07<<2));
4054                 else
4055                         ht_capie.ampdu_params_info |= (IEEE80211_HT_CAP_AMPDU_DENSITY&0x00);
4056         }
4057 #ifdef CONFIG_BEAMFORMING
4058         ht_capie.tx_BF_cap_info = 0;
4059
4060         // HT Beamformer
4061         if(TEST_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMER_ENABLE))
4062         {
4063                 // Transmit NDP Capable
4064                 SET_HT_CAP_TXBF_TRANSMIT_NDP_CAP(&ht_capie, 1);
4065                 // Explicit Compressed Steering Capable
4066                 SET_HT_CAP_TXBF_EXPLICIT_COMP_STEERING_CAP(&ht_capie, 1);
4067                 // Compressed Steering Number Antennas
4068                 SET_HT_CAP_TXBF_COMP_STEERING_NUM_ANTENNAS(&ht_capie, 1);
4069         }
4070
4071         // HT Beamformee
4072         if(TEST_FLAG(phtpriv->beamform_cap, BEAMFORMING_HT_BEAMFORMEE_ENABLE))
4073         {
4074                 // Receive NDP Capable
4075                 SET_HT_CAP_TXBF_RECEIVE_NDP_CAP(&ht_capie, 1);
4076                 // Explicit Compressed Beamforming Feedback Capable
4077                 SET_HT_CAP_TXBF_EXPLICIT_COMP_FEEDBACK_CAP(&ht_capie, 2);
4078         }
4079 #endif
4080
4081         pframe = rtw_set_ie(out_ie+out_len, _HT_CAPABILITY_IE_, 
4082                                                 sizeof(struct rtw_ieee80211_ht_cap), (unsigned char*)&ht_capie, pout_len);
4083
4084         phtpriv->ht_option = _TRUE;
4085
4086         if(in_ie!=NULL)
4087         {
4088                 p = rtw_get_ie(in_ie, _HT_ADD_INFO_IE_, &ielen, in_len);
4089                 if(p && (ielen==sizeof(struct ieee80211_ht_addt_info)))
4090                 {
4091                         out_len = *pout_len;            
4092                         pframe = rtw_set_ie(out_ie+out_len, _HT_ADD_INFO_IE_, ielen, p+2 , pout_len);
4093                 }
4094         }
4095
4096         return (phtpriv->ht_option);
4097         
4098 }
4099
4100 //the fucntion is > passive_level (in critical_section)
4101 void rtw_update_ht_cap(_adapter *padapter, u8 *pie, uint ie_len, u8 channel)
4102 {       
4103         u8 *p, max_ampdu_sz;
4104         int len;                
4105         //struct sta_info *bmc_sta, *psta;
4106         struct rtw_ieee80211_ht_cap *pht_capie;
4107         struct ieee80211_ht_addt_info *pht_addtinfo;
4108         //struct recv_reorder_ctrl *preorder_ctrl;
4109         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4110         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
4111         //struct recv_priv *precvpriv = &padapter->recvpriv;
4112         struct registry_priv *pregistrypriv = &padapter->registrypriv;
4113         //struct wlan_network *pcur_network = &(pmlmepriv->cur_network);;
4114         struct mlme_ext_priv    *pmlmeext = &padapter->mlmeextpriv;
4115         struct mlme_ext_info    *pmlmeinfo = &(pmlmeext->mlmext_info);
4116         u8 cbw40_enable=0;
4117         
4118
4119         if(!phtpriv->ht_option)
4120                 return;
4121
4122         if ((!pmlmeinfo->HT_info_enable) || (!pmlmeinfo->HT_caps_enable))
4123                 return;
4124
4125         DBG_871X("+rtw_update_ht_cap()\n");
4126
4127         //maybe needs check if ap supports rx ampdu.
4128         if((phtpriv->ampdu_enable==_FALSE) &&(pregistrypriv->ampdu_enable==1))
4129         {
4130                 if(pregistrypriv->wifi_spec==1)
4131                 {
4132                         //remove this part because testbed AP should disable RX AMPDU
4133                         //phtpriv->ampdu_enable = _FALSE;
4134                         phtpriv->ampdu_enable = _TRUE;
4135                 }
4136                 else
4137                 {
4138                         phtpriv->ampdu_enable = _TRUE;
4139                 }
4140         }
4141         else if(pregistrypriv->ampdu_enable==2)
4142         {
4143                 //remove this part because testbed AP should disable RX AMPDU
4144                 //phtpriv->ampdu_enable = _TRUE;
4145         }
4146
4147         
4148         //check Max Rx A-MPDU Size 
4149         len = 0;
4150         p = rtw_get_ie(pie+sizeof (NDIS_802_11_FIXED_IEs), _HT_CAPABILITY_IE_, &len, ie_len-sizeof (NDIS_802_11_FIXED_IEs));
4151         if(p && len>0)  
4152         {
4153                 pht_capie = (struct rtw_ieee80211_ht_cap *)(p+2);
4154                 max_ampdu_sz = (pht_capie->ampdu_params_info & IEEE80211_HT_CAP_AMPDU_FACTOR);
4155                 max_ampdu_sz = 1 << (max_ampdu_sz+3); // max_ampdu_sz (kbytes);
4156                 
4157                 //DBG_871X("rtw_update_ht_cap(): max_ampdu_sz=%d\n", max_ampdu_sz);
4158                 phtpriv->rx_ampdu_maxlen = max_ampdu_sz;
4159                 
4160         }
4161
4162
4163         len=0;
4164         p = rtw_get_ie(pie+sizeof (NDIS_802_11_FIXED_IEs), _HT_ADD_INFO_IE_, &len, ie_len-sizeof (NDIS_802_11_FIXED_IEs));
4165         if(p && len>0)  
4166         {
4167                 pht_addtinfo = (struct ieee80211_ht_addt_info *)(p+2);
4168                 //todo:
4169         }
4170
4171         if (channel > 14) {
4172                 if ((pregistrypriv->bw_mode & 0xf0) > 0)
4173                         cbw40_enable = 1;
4174         } else {
4175                 if ((pregistrypriv->bw_mode & 0x0f) > 0)
4176                         cbw40_enable = 1;
4177         }
4178
4179         //update cur_bwmode & cur_ch_offset
4180         if ((cbw40_enable) &&
4181                 (pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info & BIT(1)) && 
4182                 (pmlmeinfo->HT_info.infos[0] & BIT(2)))
4183         {
4184                 int i;
4185                 u8      rf_type = RF_1T1R;
4186
4187                 rtw_hal_get_hwreg(padapter, HW_VAR_RF_TYPE, (u8 *)(&rf_type));
4188
4189                 //update the MCS set
4190                 for (i = 0; i < 16; i++)
4191                         pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate[i] &= pmlmeext->default_supported_mcs_set[i];
4192
4193                 //update the MCS rates
4194                 switch(rf_type)
4195                 {
4196                         case RF_1T1R:
4197                         case RF_1T2R:
4198                                 set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_1R);                                                        
4199                                 break;
4200                         case RF_2T2R:
4201                                 #ifdef CONFIG_DISABLE_MCS13TO15
4202                                 if(pmlmeext->cur_bwmode == CHANNEL_WIDTH_40 && pregistrypriv->wifi_spec != 1 )                          
4203                                         set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R_13TO15_OFF);                             
4204                                 else
4205                                         set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R);
4206 #else //CONFIG_DISABLE_MCS13TO15
4207                                 set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_2R);
4208 #endif //CONFIG_DISABLE_MCS13TO15
4209                                 break;
4210                         case RF_3T3R:
4211                                 set_mcs_rate_by_mask(pmlmeinfo->HT_caps.u.HT_cap_element.MCS_rate, MCS_RATE_3R);
4212                                 break;
4213                         default:
4214                                 DBG_871X("[warning] rf_type %d is not expected\n", rf_type);
4215                 }
4216
4217                 //switch to the 40M Hz mode accoring to the AP
4218                 //pmlmeext->cur_bwmode = CHANNEL_WIDTH_40;
4219                 switch ((pmlmeinfo->HT_info.infos[0] & 0x3))
4220                 {
4221                         case EXTCHNL_OFFSET_UPPER:
4222                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_LOWER;
4223                                 break;
4224                         
4225                         case EXTCHNL_OFFSET_LOWER:
4226                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_UPPER;
4227                                 break;
4228                                 
4229                         default:
4230                                 pmlmeext->cur_ch_offset = HAL_PRIME_CHNL_OFFSET_DONT_CARE;
4231                                 break;
4232                 }               
4233         }
4234
4235         //
4236         // Config SM Power Save setting
4237         //
4238         pmlmeinfo->SM_PS = (pmlmeinfo->HT_caps.u.HT_cap_element.HT_caps_info & 0x0C) >> 2;
4239         if(pmlmeinfo->SM_PS == WLAN_HT_CAP_SM_PS_STATIC)
4240         {
4241                 /*u8 i;
4242                 //update the MCS rates
4243                 for (i = 0; i < 16; i++)
4244                 {
4245                         pmlmeinfo->HT_caps.HT_cap_element.MCS_rate[i] &= MCS_rate_1R[i];
4246                 }*/
4247                 DBG_871X("%s(): WLAN_HT_CAP_SM_PS_STATIC\n",__FUNCTION__);
4248         }
4249
4250         //
4251         // Config current HT Protection mode.
4252         //
4253         pmlmeinfo->HT_protection = pmlmeinfo->HT_info.infos[1] & 0x3;
4254
4255         
4256         
4257 #if 0 //move to rtw_update_sta_info_client()
4258         //for A-MPDU Rx reordering buffer control for bmc_sta & sta_info
4259         //if A-MPDU Rx is enabled, reseting  rx_ordering_ctrl wstart_b(indicate_seq) to default value=0xffff
4260         //todo: check if AP can send A-MPDU packets
4261         bmc_sta = rtw_get_bcmc_stainfo(padapter);
4262         if(bmc_sta)
4263         {
4264                 for(i=0; i < 16 ; i++)
4265                 {
4266                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
4267                         preorder_ctrl = &bmc_sta->recvreorder_ctrl[i];
4268                         preorder_ctrl->enable = _FALSE;
4269                         preorder_ctrl->indicate_seq = 0xffff;
4270                         #ifdef DBG_RX_SEQ
4271                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
4272                                 preorder_ctrl->indicate_seq);
4273                         #endif
4274                         preorder_ctrl->wend_b= 0xffff;
4275                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
4276                 }
4277         }
4278
4279         psta = rtw_get_stainfo(&padapter->stapriv, pcur_network->network.MacAddress);
4280         if(psta)
4281         {
4282                 for(i=0; i < 16 ; i++)
4283                 {
4284                         //preorder_ctrl = &precvpriv->recvreorder_ctrl[i];
4285                         preorder_ctrl = &psta->recvreorder_ctrl[i];
4286                         preorder_ctrl->enable = _FALSE;
4287                         preorder_ctrl->indicate_seq = 0xffff;
4288                         #ifdef DBG_RX_SEQ
4289                         DBG_871X("DBG_RX_SEQ %s:%d indicate_seq:%u \n", __FUNCTION__, __LINE__,
4290                                 preorder_ctrl->indicate_seq);
4291                         #endif
4292                         preorder_ctrl->wend_b= 0xffff;
4293                         preorder_ctrl->wsize_b = 64;//max_ampdu_sz;//ex. 32(kbytes) -> wsize_b=32
4294                 }
4295         }
4296 #endif  
4297
4298 }
4299
4300 #ifdef CONFIG_TDLS
4301 void rtw_issue_addbareq_cmd_tdls(_adapter *padapter, struct xmit_frame *pxmitframe)
4302 {
4303         struct pkt_attrib *pattrib =&pxmitframe->attrib;
4304         struct sta_info *ptdls_sta = NULL;
4305         u8 issued;
4306         int priority;
4307         struct ht_priv  *phtpriv;
4308
4309         priority = pattrib->priority;
4310
4311         if (pattrib->direct_link == _TRUE) {
4312                 ptdls_sta = rtw_get_stainfo(&padapter->stapriv, pattrib->dst);
4313                 if ((ptdls_sta != NULL) && (ptdls_sta->tdls_sta_state & TDLS_LINKED_STATE)) {
4314                         phtpriv = &ptdls_sta->htpriv;
4315
4316                         if ((phtpriv->ht_option == _TRUE) && (phtpriv->ampdu_enable == _TRUE)) {
4317                                 issued = (phtpriv->agg_enable_bitmap>>priority)&0x1;
4318                                 issued |= (phtpriv->candidate_tid_bitmap>>priority)&0x1;
4319
4320                                 if (0 == issued) {
4321                                         DBG_871X("[%s], p=%d\n", __FUNCTION__, priority);
4322                                         ptdls_sta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
4323                                         rtw_addbareq_cmd(padapter,(u8)priority, pattrib->dst);
4324                                 }
4325                         }
4326                 }
4327         }
4328 }
4329 #endif //CONFIG_TDLS
4330
4331 void rtw_issue_addbareq_cmd(_adapter *padapter, struct xmit_frame *pxmitframe)
4332 {
4333         u8 issued;
4334         int priority;
4335         struct sta_info *psta=NULL;
4336         struct ht_priv  *phtpriv;
4337         struct pkt_attrib *pattrib =&pxmitframe->attrib;
4338         s32 bmcst = IS_MCAST(pattrib->ra);
4339
4340         //if(bmcst || (padapter->mlmepriv.LinkDetectInfo.bTxBusyTraffic == _FALSE))
4341         if(bmcst || (padapter->mlmepriv.LinkDetectInfo.NumTxOkInPeriod<100))    
4342                 return;
4343         
4344         priority = pattrib->priority;
4345
4346 #ifdef CONFIG_TDLS
4347         rtw_issue_addbareq_cmd_tdls(padapter, pxmitframe);
4348 #endif //CONFIG_TDLS
4349
4350         psta = rtw_get_stainfo(&padapter->stapriv, pattrib->ra);
4351         if(pattrib->psta != psta)
4352         {
4353                 DBG_871X("%s, pattrib->psta(%p) != psta(%p)\n", __func__, pattrib->psta, psta);
4354                 return;
4355         }
4356         
4357         if(psta==NULL)
4358         {
4359                 DBG_871X("%s, psta==NUL\n", __func__);
4360                 return;
4361         }
4362
4363         if(!(psta->state &_FW_LINKED))
4364         {
4365                 DBG_871X("%s, psta->state(0x%x) != _FW_LINKED\n", __func__, psta->state);
4366                 return;
4367         }       
4368
4369
4370         phtpriv = &psta->htpriv;
4371
4372         if((phtpriv->ht_option==_TRUE) && (phtpriv->ampdu_enable==_TRUE)) 
4373         {
4374                 issued = (phtpriv->agg_enable_bitmap>>priority)&0x1;
4375                 issued |= (phtpriv->candidate_tid_bitmap>>priority)&0x1;
4376
4377                 if(0==issued)
4378                 {
4379                         DBG_871X("rtw_issue_addbareq_cmd, p=%d\n", priority);
4380                         psta->htpriv.candidate_tid_bitmap |= BIT((u8)priority);
4381                         rtw_addbareq_cmd(padapter,(u8) priority, pattrib->ra);
4382                 }
4383         }
4384
4385 }
4386
4387 void rtw_append_exented_cap(_adapter *padapter, u8 *out_ie, uint *pout_len)
4388 {
4389         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4390         struct ht_priv          *phtpriv = &pmlmepriv->htpriv;
4391 #ifdef CONFIG_80211AC_VHT
4392         struct vht_priv *pvhtpriv = &pmlmepriv->vhtpriv;
4393 #endif //CONFIG_80211AC_VHT
4394         u8      cap_content[8] = {0};
4395         u8      *pframe;
4396         u8   null_content[8] = {0};
4397
4398         if (phtpriv->bss_coexist) {
4399                 SET_EXT_CAPABILITY_ELE_BSS_COEXIST(cap_content, 1);
4400         }
4401
4402 #ifdef CONFIG_80211AC_VHT
4403         if (pvhtpriv->vht_option) {
4404                 SET_EXT_CAPABILITY_ELE_OP_MODE_NOTIF(cap_content, 1);
4405         }
4406 #endif //CONFIG_80211AC_VHT
4407         /*
4408                 From 802.11 specification,if a STA does not support any of capabilities defined
4409                 in the Extended Capabilities element, then the STA is not required to 
4410                 transmit the Extended Capabilities element. 
4411         */
4412         if (_FALSE == _rtw_memcmp(cap_content, null_content, 8))
4413                 pframe = rtw_set_ie(out_ie + *pout_len, EID_EXTCapability, 8, cap_content , pout_len);
4414 }
4415 #endif
4416
4417 #ifdef CONFIG_LAYER2_ROAMING
4418 inline void rtw_set_to_roam(_adapter *adapter, u8 to_roam)
4419 {
4420         if (to_roam == 0)
4421                 adapter->mlmepriv.to_join = _FALSE;
4422         adapter->mlmepriv.to_roam = to_roam;
4423 }
4424
4425 inline u8 rtw_dec_to_roam(_adapter *adapter)
4426 {
4427         adapter->mlmepriv.to_roam--;
4428         return adapter->mlmepriv.to_roam;
4429 }
4430
4431 inline u8 rtw_to_roam(_adapter *adapter)
4432 {
4433         return adapter->mlmepriv.to_roam;
4434 }
4435
4436 void rtw_roaming(_adapter *padapter, struct wlan_network *tgt_network)
4437 {
4438         _irqL irqL;
4439         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4440
4441         _enter_critical_bh(&pmlmepriv->lock, &irqL);
4442         _rtw_roaming(padapter, tgt_network);
4443         _exit_critical_bh(&pmlmepriv->lock, &irqL);
4444 }
4445 void _rtw_roaming(_adapter *padapter, struct wlan_network *tgt_network)
4446 {
4447         struct mlme_priv        *pmlmepriv = &padapter->mlmepriv;
4448         struct wlan_network *cur_network = &pmlmepriv->cur_network;
4449         int do_join_r;
4450         
4451         if(0 < rtw_to_roam(padapter)) {
4452                 DBG_871X("roaming from %s("MAC_FMT"), length:%d\n",
4453                                 cur_network->network.Ssid.Ssid, MAC_ARG(cur_network->network.MacAddress),
4454                                 cur_network->network.Ssid.SsidLength);
4455                 _rtw_memcpy(&pmlmepriv->assoc_ssid, &cur_network->network.Ssid, sizeof(NDIS_802_11_SSID));
4456
4457                 pmlmepriv->assoc_by_bssid = _FALSE;
4458
4459 #ifdef CONFIG_WAPI_SUPPORT
4460                 rtw_wapi_return_all_sta_info(padapter);
4461 #endif
4462
4463                 while(1) {
4464                         if( _SUCCESS==(do_join_r=rtw_do_join(padapter)) ) {
4465                                 break;
4466                         } else {
4467                                 DBG_871X("roaming do_join return %d\n", do_join_r);
4468                                 rtw_dec_to_roam(padapter);
4469                                 
4470                                 if(rtw_to_roam(padapter) > 0) {
4471                                         continue;
4472                                 } else {
4473                                         DBG_871X("%s(%d) -to roaming fail, indicate_disconnect\n", __FUNCTION__,__LINE__);
4474                                         rtw_indicate_disconnect(padapter);
4475                                         break;
4476                                 }
4477                         }
4478                 }
4479         }
4480         
4481 }
4482 #endif /* CONFIG_LAYER2_ROAMING */
4483
4484 sint rtw_linked_check(_adapter *padapter)
4485 {
4486         if(     (check_fwstate(&padapter->mlmepriv, WIFI_AP_STATE) == _TRUE) ||
4487                         (check_fwstate(&padapter->mlmepriv, WIFI_ADHOC_STATE|WIFI_ADHOC_MASTER_STATE) == _TRUE))
4488         {
4489                 if(padapter->stapriv.asoc_sta_count > 2)
4490                         return _TRUE;
4491         }
4492         else
4493         {       //Station mode
4494                 if(check_fwstate(&padapter->mlmepriv, _FW_LINKED)== _TRUE)
4495                         return _TRUE;
4496         }
4497         return _FALSE;
4498 }
4499
4500 #ifdef CONFIG_CONCURRENT_MODE
4501 sint rtw_buddy_adapter_up(_adapter *padapter)
4502 {       
4503         sint res = _FALSE;
4504         
4505         if(padapter == NULL)
4506                 return res;
4507
4508
4509         if(padapter->pbuddy_adapter == NULL)
4510         {
4511                 res = _FALSE;
4512         }
4513         else if( (padapter->pbuddy_adapter->bDriverStopped) || (padapter->pbuddy_adapter->bSurpriseRemoved) ||
4514                 (padapter->pbuddy_adapter->bup == _FALSE) || (padapter->pbuddy_adapter->hw_init_completed == _FALSE))
4515         {               
4516                 res = _FALSE;
4517         }
4518         else
4519         {
4520                 res = _TRUE;
4521         }       
4522
4523         return res;     
4524
4525 }
4526
4527 sint check_buddy_fwstate(_adapter *padapter, sint state)
4528 {
4529         if(padapter == NULL)
4530                 return _FALSE;  
4531         
4532         if(padapter->pbuddy_adapter == NULL)
4533                 return _FALSE;  
4534                 
4535         if ((state == WIFI_FW_NULL_STATE) && 
4536                 (padapter->pbuddy_adapter->mlmepriv.fw_state == WIFI_FW_NULL_STATE))
4537                 return _TRUE;           
4538         
4539         if (padapter->pbuddy_adapter->mlmepriv.fw_state & state)
4540                 return _TRUE;
4541
4542         return _FALSE;
4543 }
4544
4545 u8 rtw_get_buddy_bBusyTraffic(_adapter *padapter)
4546 {
4547         if(padapter == NULL)
4548                 return _FALSE;  
4549         
4550         if(padapter->pbuddy_adapter == NULL)
4551                 return _FALSE;  
4552         
4553         return padapter->pbuddy_adapter->mlmepriv.LinkDetectInfo.bBusyTraffic;
4554 }
4555
4556 #endif //CONFIG_CONCURRENT_MODE
4557
4558 static const char *miracast_mode_str[] = {
4559         "DISABLED",
4560         "SOURCE",
4561         "SINK",
4562         "INVALID",
4563 };
4564
4565 const char *get_miracast_mode_str(int mode)
4566 {
4567         if (mode < MIRACAST_DISABLED || mode >= MIRACAST_INVALID)
4568                 mode = MIRACAST_INVALID;
4569
4570         return miracast_mode_str[mode];
4571 }
4572