Bluetooth: add hci_lookup_le_connect
[firefly-linux-kernel-4.4.55.git] / include / net / bluetooth / hci_core.h
1 /*
2    BlueZ - Bluetooth protocol stack for Linux
3    Copyright (c) 2000-2001, 2010, Code Aurora Forum. All rights reserved.
4
5    Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7    This program is free software; you can redistribute it and/or modify
8    it under the terms of the GNU General Public License version 2 as
9    published by the Free Software Foundation;
10
11    THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12    OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13    FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14    IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
15    CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16    WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17    ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
18    OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
20    ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21    COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
22    SOFTWARE IS DISCLAIMED.
23 */
24
25 #ifndef __HCI_CORE_H
26 #define __HCI_CORE_H
27
28 #include <net/bluetooth/hci.h>
29 #include <net/bluetooth/hci_sock.h>
30
31 /* HCI priority */
32 #define HCI_PRIO_MAX    7
33
34 /* HCI Core structures */
35 struct inquiry_data {
36         bdaddr_t        bdaddr;
37         __u8            pscan_rep_mode;
38         __u8            pscan_period_mode;
39         __u8            pscan_mode;
40         __u8            dev_class[3];
41         __le16          clock_offset;
42         __s8            rssi;
43         __u8            ssp_mode;
44 };
45
46 struct inquiry_entry {
47         struct list_head        all;            /* inq_cache.all */
48         struct list_head        list;           /* unknown or resolve */
49         enum {
50                 NAME_NOT_KNOWN,
51                 NAME_NEEDED,
52                 NAME_PENDING,
53                 NAME_KNOWN,
54         } name_state;
55         __u32                   timestamp;
56         struct inquiry_data     data;
57 };
58
59 struct discovery_state {
60         int                     type;
61         enum {
62                 DISCOVERY_STOPPED,
63                 DISCOVERY_STARTING,
64                 DISCOVERY_FINDING,
65                 DISCOVERY_RESOLVING,
66                 DISCOVERY_STOPPING,
67         } state;
68         struct list_head        all;    /* All devices found during inquiry */
69         struct list_head        unknown;        /* Name state not known */
70         struct list_head        resolve;        /* Name needs to be resolved */
71         __u32                   timestamp;
72         bdaddr_t                last_adv_addr;
73         u8                      last_adv_addr_type;
74         s8                      last_adv_rssi;
75         u32                     last_adv_flags;
76         u8                      last_adv_data[HCI_MAX_AD_LENGTH];
77         u8                      last_adv_data_len;
78         bool                    report_invalid_rssi;
79         bool                    result_filtering;
80         s8                      rssi;
81         u16                     uuid_count;
82         u8                      (*uuids)[16];
83         unsigned long           scan_start;
84         unsigned long           scan_duration;
85 };
86
87 struct hci_conn_hash {
88         struct list_head list;
89         unsigned int     acl_num;
90         unsigned int     amp_num;
91         unsigned int     sco_num;
92         unsigned int     le_num;
93         unsigned int     le_num_slave;
94 };
95
96 struct bdaddr_list {
97         struct list_head list;
98         bdaddr_t bdaddr;
99         u8 bdaddr_type;
100 };
101
102 struct bt_uuid {
103         struct list_head list;
104         u8 uuid[16];
105         u8 size;
106         u8 svc_hint;
107 };
108
109 struct smp_csrk {
110         bdaddr_t bdaddr;
111         u8 bdaddr_type;
112         u8 type;
113         u8 val[16];
114 };
115
116 struct smp_ltk {
117         struct list_head list;
118         struct rcu_head rcu;
119         bdaddr_t bdaddr;
120         u8 bdaddr_type;
121         u8 authenticated;
122         u8 type;
123         u8 enc_size;
124         __le16 ediv;
125         __le64 rand;
126         u8 val[16];
127 };
128
129 struct smp_irk {
130         struct list_head list;
131         struct rcu_head rcu;
132         bdaddr_t rpa;
133         bdaddr_t bdaddr;
134         u8 addr_type;
135         u8 val[16];
136 };
137
138 struct link_key {
139         struct list_head list;
140         struct rcu_head rcu;
141         bdaddr_t bdaddr;
142         u8 type;
143         u8 val[HCI_LINK_KEY_SIZE];
144         u8 pin_len;
145 };
146
147 struct oob_data {
148         struct list_head list;
149         bdaddr_t bdaddr;
150         u8 bdaddr_type;
151         u8 present;
152         u8 hash192[16];
153         u8 rand192[16];
154         u8 hash256[16];
155         u8 rand256[16];
156 };
157
158 struct adv_info {
159         struct list_head list;
160         bool pending;
161         __u8    instance;
162         __u32   flags;
163         __u16   timeout;
164         __u16   remaining_time;
165         __u16   duration;
166         __u16   adv_data_len;
167         __u8    adv_data[HCI_MAX_AD_LENGTH];
168         __u16   scan_rsp_len;
169         __u8    scan_rsp_data[HCI_MAX_AD_LENGTH];
170 };
171
172 #define HCI_MAX_ADV_INSTANCES           5
173 #define HCI_DEFAULT_ADV_DURATION        2
174
175 #define HCI_MAX_SHORT_NAME_LENGTH       10
176
177 /* Default LE RPA expiry time, 15 minutes */
178 #define HCI_DEFAULT_RPA_TIMEOUT         (15 * 60)
179
180 /* Default min/max age of connection information (1s/3s) */
181 #define DEFAULT_CONN_INFO_MIN_AGE       1000
182 #define DEFAULT_CONN_INFO_MAX_AGE       3000
183
184 struct amp_assoc {
185         __u16   len;
186         __u16   offset;
187         __u16   rem_len;
188         __u16   len_so_far;
189         __u8    data[HCI_MAX_AMP_ASSOC_SIZE];
190 };
191
192 #define HCI_MAX_PAGES   3
193
194 struct hci_dev {
195         struct list_head list;
196         struct mutex    lock;
197
198         char            name[8];
199         unsigned long   flags;
200         __u16           id;
201         __u8            bus;
202         __u8            dev_type;
203         bdaddr_t        bdaddr;
204         bdaddr_t        setup_addr;
205         bdaddr_t        public_addr;
206         bdaddr_t        random_addr;
207         bdaddr_t        static_addr;
208         __u8            adv_addr_type;
209         __u8            dev_name[HCI_MAX_NAME_LENGTH];
210         __u8            short_name[HCI_MAX_SHORT_NAME_LENGTH];
211         __u8            eir[HCI_MAX_EIR_LENGTH];
212         __u8            dev_class[3];
213         __u8            major_class;
214         __u8            minor_class;
215         __u8            max_page;
216         __u8            features[HCI_MAX_PAGES][8];
217         __u8            le_features[8];
218         __u8            le_white_list_size;
219         __u8            le_states[8];
220         __u8            commands[64];
221         __u8            hci_ver;
222         __u16           hci_rev;
223         __u8            lmp_ver;
224         __u16           manufacturer;
225         __u16           lmp_subver;
226         __u16           voice_setting;
227         __u8            num_iac;
228         __u8            stored_max_keys;
229         __u8            stored_num_keys;
230         __u8            io_capability;
231         __s8            inq_tx_power;
232         __u16           page_scan_interval;
233         __u16           page_scan_window;
234         __u8            page_scan_type;
235         __u8            le_adv_channel_map;
236         __u16           le_adv_min_interval;
237         __u16           le_adv_max_interval;
238         __u8            le_scan_type;
239         __u16           le_scan_interval;
240         __u16           le_scan_window;
241         __u16           le_conn_min_interval;
242         __u16           le_conn_max_interval;
243         __u16           le_conn_latency;
244         __u16           le_supv_timeout;
245         __u16           le_def_tx_len;
246         __u16           le_def_tx_time;
247         __u16           le_max_tx_len;
248         __u16           le_max_tx_time;
249         __u16           le_max_rx_len;
250         __u16           le_max_rx_time;
251         __u16           discov_interleaved_timeout;
252         __u16           conn_info_min_age;
253         __u16           conn_info_max_age;
254         __u8            ssp_debug_mode;
255         __u8            hw_error_code;
256         __u32           clock;
257
258         __u16           devid_source;
259         __u16           devid_vendor;
260         __u16           devid_product;
261         __u16           devid_version;
262
263         __u16           pkt_type;
264         __u16           esco_type;
265         __u16           link_policy;
266         __u16           link_mode;
267
268         __u32           idle_timeout;
269         __u16           sniff_min_interval;
270         __u16           sniff_max_interval;
271
272         __u8            amp_status;
273         __u32           amp_total_bw;
274         __u32           amp_max_bw;
275         __u32           amp_min_latency;
276         __u32           amp_max_pdu;
277         __u8            amp_type;
278         __u16           amp_pal_cap;
279         __u16           amp_assoc_size;
280         __u32           amp_max_flush_to;
281         __u32           amp_be_flush_to;
282
283         struct amp_assoc        loc_assoc;
284
285         __u8            flow_ctl_mode;
286
287         unsigned int    auto_accept_delay;
288
289         unsigned long   quirks;
290
291         atomic_t        cmd_cnt;
292         unsigned int    acl_cnt;
293         unsigned int    sco_cnt;
294         unsigned int    le_cnt;
295
296         unsigned int    acl_mtu;
297         unsigned int    sco_mtu;
298         unsigned int    le_mtu;
299         unsigned int    acl_pkts;
300         unsigned int    sco_pkts;
301         unsigned int    le_pkts;
302
303         __u16           block_len;
304         __u16           block_mtu;
305         __u16           num_blocks;
306         __u16           block_cnt;
307
308         unsigned long   acl_last_tx;
309         unsigned long   sco_last_tx;
310         unsigned long   le_last_tx;
311
312         struct workqueue_struct *workqueue;
313         struct workqueue_struct *req_workqueue;
314
315         struct work_struct      power_on;
316         struct delayed_work     power_off;
317         struct work_struct      error_reset;
318
319         __u16                   discov_timeout;
320         struct delayed_work     discov_off;
321
322         struct delayed_work     service_cache;
323
324         struct delayed_work     cmd_timer;
325
326         struct work_struct      rx_work;
327         struct work_struct      cmd_work;
328         struct work_struct      tx_work;
329
330         struct sk_buff_head     rx_q;
331         struct sk_buff_head     raw_q;
332         struct sk_buff_head     cmd_q;
333
334         struct sk_buff          *sent_cmd;
335
336         struct mutex            req_lock;
337         wait_queue_head_t       req_wait_q;
338         __u32                   req_status;
339         __u32                   req_result;
340         struct sk_buff          *req_skb;
341
342         void                    *smp_data;
343         void                    *smp_bredr_data;
344
345         struct discovery_state  discovery;
346         struct hci_conn_hash    conn_hash;
347
348         struct list_head        mgmt_pending;
349         struct list_head        blacklist;
350         struct list_head        whitelist;
351         struct list_head        uuids;
352         struct list_head        link_keys;
353         struct list_head        long_term_keys;
354         struct list_head        identity_resolving_keys;
355         struct list_head        remote_oob_data;
356         struct list_head        le_white_list;
357         struct list_head        le_conn_params;
358         struct list_head        pend_le_conns;
359         struct list_head        pend_le_reports;
360
361         struct hci_dev_stats    stat;
362
363         atomic_t                promisc;
364
365         struct dentry           *debugfs;
366
367         struct device           dev;
368
369         struct rfkill           *rfkill;
370
371         DECLARE_BITMAP(dev_flags, __HCI_NUM_FLAGS);
372
373         struct delayed_work     le_scan_disable;
374         struct delayed_work     le_scan_restart;
375
376         __s8                    adv_tx_power;
377         __u8                    adv_data[HCI_MAX_AD_LENGTH];
378         __u8                    adv_data_len;
379         __u8                    scan_rsp_data[HCI_MAX_AD_LENGTH];
380         __u8                    scan_rsp_data_len;
381
382         struct list_head        adv_instances;
383         unsigned int            adv_instance_cnt;
384         __u8                    cur_adv_instance;
385         __u16                   adv_instance_timeout;
386         struct delayed_work     adv_instance_expire;
387
388         __u8                    irk[16];
389         __u32                   rpa_timeout;
390         struct delayed_work     rpa_expired;
391         bdaddr_t                rpa;
392
393         int (*open)(struct hci_dev *hdev);
394         int (*close)(struct hci_dev *hdev);
395         int (*flush)(struct hci_dev *hdev);
396         int (*setup)(struct hci_dev *hdev);
397         int (*shutdown)(struct hci_dev *hdev);
398         int (*send)(struct hci_dev *hdev, struct sk_buff *skb);
399         void (*notify)(struct hci_dev *hdev, unsigned int evt);
400         void (*hw_error)(struct hci_dev *hdev, u8 code);
401         int (*set_bdaddr)(struct hci_dev *hdev, const bdaddr_t *bdaddr);
402 };
403
404 #define HCI_PHY_HANDLE(handle)  (handle & 0xff)
405
406 struct hci_conn {
407         struct list_head list;
408
409         atomic_t        refcnt;
410
411         bdaddr_t        dst;
412         __u8            dst_type;
413         bdaddr_t        src;
414         __u8            src_type;
415         bdaddr_t        init_addr;
416         __u8            init_addr_type;
417         bdaddr_t        resp_addr;
418         __u8            resp_addr_type;
419         __u16           handle;
420         __u16           state;
421         __u8            mode;
422         __u8            type;
423         __u8            role;
424         bool            out;
425         __u8            attempt;
426         __u8            dev_class[3];
427         __u8            features[HCI_MAX_PAGES][8];
428         __u16           pkt_type;
429         __u16           link_policy;
430         __u8            key_type;
431         __u8            auth_type;
432         __u8            sec_level;
433         __u8            pending_sec_level;
434         __u8            pin_length;
435         __u8            enc_key_size;
436         __u8            io_capability;
437         __u32           passkey_notify;
438         __u8            passkey_entered;
439         __u16           disc_timeout;
440         __u16           conn_timeout;
441         __u16           setting;
442         __u16           le_conn_min_interval;
443         __u16           le_conn_max_interval;
444         __u16           le_conn_interval;
445         __u16           le_conn_latency;
446         __u16           le_supv_timeout;
447         __u8            le_adv_data[HCI_MAX_AD_LENGTH];
448         __u8            le_adv_data_len;
449         __s8            rssi;
450         __s8            tx_power;
451         __s8            max_tx_power;
452         unsigned long   flags;
453
454         __u32           clock;
455         __u16           clock_accuracy;
456
457         unsigned long   conn_info_timestamp;
458
459         __u8            remote_cap;
460         __u8            remote_auth;
461         __u8            remote_id;
462
463         unsigned int    sent;
464
465         struct sk_buff_head data_q;
466         struct list_head chan_list;
467
468         struct delayed_work disc_work;
469         struct delayed_work auto_accept_work;
470         struct delayed_work idle_work;
471         struct delayed_work le_conn_timeout;
472
473         struct device   dev;
474         struct dentry   *debugfs;
475
476         struct hci_dev  *hdev;
477         void            *l2cap_data;
478         void            *sco_data;
479         struct amp_mgr  *amp_mgr;
480
481         struct hci_conn *link;
482
483         void (*connect_cfm_cb)  (struct hci_conn *conn, u8 status);
484         void (*security_cfm_cb) (struct hci_conn *conn, u8 status);
485         void (*disconn_cfm_cb)  (struct hci_conn *conn, u8 reason);
486 };
487
488 struct hci_chan {
489         struct list_head list;
490         __u16 handle;
491         struct hci_conn *conn;
492         struct sk_buff_head data_q;
493         unsigned int    sent;
494         __u8            state;
495 };
496
497 struct hci_conn_params {
498         struct list_head list;
499         struct list_head action;
500
501         bdaddr_t addr;
502         u8 addr_type;
503
504         u16 conn_min_interval;
505         u16 conn_max_interval;
506         u16 conn_latency;
507         u16 supervision_timeout;
508
509         enum {
510                 HCI_AUTO_CONN_DISABLED,
511                 HCI_AUTO_CONN_REPORT,
512                 HCI_AUTO_CONN_DIRECT,
513                 HCI_AUTO_CONN_ALWAYS,
514                 HCI_AUTO_CONN_LINK_LOSS,
515                 HCI_AUTO_CONN_EXPLICIT,
516         } auto_connect;
517
518         struct hci_conn *conn;
519         bool explicit_connect;
520 };
521
522 extern struct list_head hci_dev_list;
523 extern struct list_head hci_cb_list;
524 extern rwlock_t hci_dev_list_lock;
525 extern struct mutex hci_cb_list_lock;
526
527 #define hci_dev_set_flag(hdev, nr)             set_bit((nr), (hdev)->dev_flags)
528 #define hci_dev_clear_flag(hdev, nr)           clear_bit((nr), (hdev)->dev_flags)
529 #define hci_dev_change_flag(hdev, nr)          change_bit((nr), (hdev)->dev_flags)
530 #define hci_dev_test_flag(hdev, nr)            test_bit((nr), (hdev)->dev_flags)
531 #define hci_dev_test_and_set_flag(hdev, nr)    test_and_set_bit((nr), (hdev)->dev_flags)
532 #define hci_dev_test_and_clear_flag(hdev, nr)  test_and_clear_bit((nr), (hdev)->dev_flags)
533 #define hci_dev_test_and_change_flag(hdev, nr) test_and_change_bit((nr), (hdev)->dev_flags)
534
535 #define hci_dev_clear_volatile_flags(hdev)                      \
536         do {                                                    \
537                 hci_dev_clear_flag(hdev, HCI_LE_SCAN);          \
538                 hci_dev_clear_flag(hdev, HCI_LE_ADV);           \
539                 hci_dev_clear_flag(hdev, HCI_PERIODIC_INQ);     \
540         } while (0)
541
542 /* ----- HCI interface to upper protocols ----- */
543 int l2cap_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr);
544 int l2cap_disconn_ind(struct hci_conn *hcon);
545 void l2cap_recv_acldata(struct hci_conn *hcon, struct sk_buff *skb, u16 flags);
546
547 #if IS_ENABLED(CONFIG_BT_BREDR)
548 int sco_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr, __u8 *flags);
549 void sco_recv_scodata(struct hci_conn *hcon, struct sk_buff *skb);
550 #else
551 static inline int sco_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr,
552                                   __u8 *flags)
553 {
554         return 0;
555 }
556
557 static inline void sco_recv_scodata(struct hci_conn *hcon, struct sk_buff *skb)
558 {
559 }
560 #endif
561
562 /* ----- Inquiry cache ----- */
563 #define INQUIRY_CACHE_AGE_MAX   (HZ*30)   /* 30 seconds */
564 #define INQUIRY_ENTRY_AGE_MAX   (HZ*60)   /* 60 seconds */
565
566 static inline void discovery_init(struct hci_dev *hdev)
567 {
568         hdev->discovery.state = DISCOVERY_STOPPED;
569         INIT_LIST_HEAD(&hdev->discovery.all);
570         INIT_LIST_HEAD(&hdev->discovery.unknown);
571         INIT_LIST_HEAD(&hdev->discovery.resolve);
572         hdev->discovery.report_invalid_rssi = true;
573         hdev->discovery.rssi = HCI_RSSI_INVALID;
574 }
575
576 static inline void hci_discovery_filter_clear(struct hci_dev *hdev)
577 {
578         hdev->discovery.result_filtering = false;
579         hdev->discovery.report_invalid_rssi = true;
580         hdev->discovery.rssi = HCI_RSSI_INVALID;
581         hdev->discovery.uuid_count = 0;
582         kfree(hdev->discovery.uuids);
583         hdev->discovery.uuids = NULL;
584         hdev->discovery.scan_start = 0;
585         hdev->discovery.scan_duration = 0;
586 }
587
588 bool hci_discovery_active(struct hci_dev *hdev);
589
590 void hci_discovery_set_state(struct hci_dev *hdev, int state);
591
592 static inline int inquiry_cache_empty(struct hci_dev *hdev)
593 {
594         return list_empty(&hdev->discovery.all);
595 }
596
597 static inline long inquiry_cache_age(struct hci_dev *hdev)
598 {
599         struct discovery_state *c = &hdev->discovery;
600         return jiffies - c->timestamp;
601 }
602
603 static inline long inquiry_entry_age(struct inquiry_entry *e)
604 {
605         return jiffies - e->timestamp;
606 }
607
608 struct inquiry_entry *hci_inquiry_cache_lookup(struct hci_dev *hdev,
609                                                bdaddr_t *bdaddr);
610 struct inquiry_entry *hci_inquiry_cache_lookup_unknown(struct hci_dev *hdev,
611                                                        bdaddr_t *bdaddr);
612 struct inquiry_entry *hci_inquiry_cache_lookup_resolve(struct hci_dev *hdev,
613                                                        bdaddr_t *bdaddr,
614                                                        int state);
615 void hci_inquiry_cache_update_resolve(struct hci_dev *hdev,
616                                       struct inquiry_entry *ie);
617 u32 hci_inquiry_cache_update(struct hci_dev *hdev, struct inquiry_data *data,
618                              bool name_known);
619 void hci_inquiry_cache_flush(struct hci_dev *hdev);
620
621 /* ----- HCI Connections ----- */
622 enum {
623         HCI_CONN_AUTH_PEND,
624         HCI_CONN_REAUTH_PEND,
625         HCI_CONN_ENCRYPT_PEND,
626         HCI_CONN_RSWITCH_PEND,
627         HCI_CONN_MODE_CHANGE_PEND,
628         HCI_CONN_SCO_SETUP_PEND,
629         HCI_CONN_MGMT_CONNECTED,
630         HCI_CONN_SSP_ENABLED,
631         HCI_CONN_SC_ENABLED,
632         HCI_CONN_AES_CCM,
633         HCI_CONN_POWER_SAVE,
634         HCI_CONN_FLUSH_KEY,
635         HCI_CONN_ENCRYPT,
636         HCI_CONN_AUTH,
637         HCI_CONN_SECURE,
638         HCI_CONN_FIPS,
639         HCI_CONN_STK_ENCRYPT,
640         HCI_CONN_AUTH_INITIATOR,
641         HCI_CONN_DROP,
642         HCI_CONN_PARAM_REMOVAL_PEND,
643         HCI_CONN_NEW_LINK_KEY,
644         HCI_CONN_SCANNING,
645 };
646
647 static inline bool hci_conn_ssp_enabled(struct hci_conn *conn)
648 {
649         struct hci_dev *hdev = conn->hdev;
650         return hci_dev_test_flag(hdev, HCI_SSP_ENABLED) &&
651                test_bit(HCI_CONN_SSP_ENABLED, &conn->flags);
652 }
653
654 static inline bool hci_conn_sc_enabled(struct hci_conn *conn)
655 {
656         struct hci_dev *hdev = conn->hdev;
657         return hci_dev_test_flag(hdev, HCI_SC_ENABLED) &&
658                test_bit(HCI_CONN_SC_ENABLED, &conn->flags);
659 }
660
661 static inline void hci_conn_hash_add(struct hci_dev *hdev, struct hci_conn *c)
662 {
663         struct hci_conn_hash *h = &hdev->conn_hash;
664         list_add_rcu(&c->list, &h->list);
665         switch (c->type) {
666         case ACL_LINK:
667                 h->acl_num++;
668                 break;
669         case AMP_LINK:
670                 h->amp_num++;
671                 break;
672         case LE_LINK:
673                 h->le_num++;
674                 if (c->role == HCI_ROLE_SLAVE)
675                         h->le_num_slave++;
676                 break;
677         case SCO_LINK:
678         case ESCO_LINK:
679                 h->sco_num++;
680                 break;
681         }
682 }
683
684 static inline void hci_conn_hash_del(struct hci_dev *hdev, struct hci_conn *c)
685 {
686         struct hci_conn_hash *h = &hdev->conn_hash;
687
688         list_del_rcu(&c->list);
689         synchronize_rcu();
690
691         switch (c->type) {
692         case ACL_LINK:
693                 h->acl_num--;
694                 break;
695         case AMP_LINK:
696                 h->amp_num--;
697                 break;
698         case LE_LINK:
699                 h->le_num--;
700                 if (c->role == HCI_ROLE_SLAVE)
701                         h->le_num_slave--;
702                 break;
703         case SCO_LINK:
704         case ESCO_LINK:
705                 h->sco_num--;
706                 break;
707         }
708 }
709
710 static inline unsigned int hci_conn_num(struct hci_dev *hdev, __u8 type)
711 {
712         struct hci_conn_hash *h = &hdev->conn_hash;
713         switch (type) {
714         case ACL_LINK:
715                 return h->acl_num;
716         case AMP_LINK:
717                 return h->amp_num;
718         case LE_LINK:
719                 return h->le_num;
720         case SCO_LINK:
721         case ESCO_LINK:
722                 return h->sco_num;
723         default:
724                 return 0;
725         }
726 }
727
728 static inline unsigned int hci_conn_count(struct hci_dev *hdev)
729 {
730         struct hci_conn_hash *c = &hdev->conn_hash;
731
732         return c->acl_num + c->amp_num + c->sco_num + c->le_num;
733 }
734
735 static inline __u8 hci_conn_lookup_type(struct hci_dev *hdev, __u16 handle)
736 {
737         struct hci_conn_hash *h = &hdev->conn_hash;
738         struct hci_conn *c;
739         __u8 type = INVALID_LINK;
740
741         rcu_read_lock();
742
743         list_for_each_entry_rcu(c, &h->list, list) {
744                 if (c->handle == handle) {
745                         type = c->type;
746                         break;
747                 }
748         }
749
750         rcu_read_unlock();
751
752         return type;
753 }
754
755 static inline struct hci_conn *hci_conn_hash_lookup_handle(struct hci_dev *hdev,
756                                                                 __u16 handle)
757 {
758         struct hci_conn_hash *h = &hdev->conn_hash;
759         struct hci_conn  *c;
760
761         rcu_read_lock();
762
763         list_for_each_entry_rcu(c, &h->list, list) {
764                 if (c->handle == handle) {
765                         rcu_read_unlock();
766                         return c;
767                 }
768         }
769         rcu_read_unlock();
770
771         return NULL;
772 }
773
774 static inline struct hci_conn *hci_conn_hash_lookup_ba(struct hci_dev *hdev,
775                                                         __u8 type, bdaddr_t *ba)
776 {
777         struct hci_conn_hash *h = &hdev->conn_hash;
778         struct hci_conn  *c;
779
780         rcu_read_lock();
781
782         list_for_each_entry_rcu(c, &h->list, list) {
783                 if (c->type == type && !bacmp(&c->dst, ba)) {
784                         rcu_read_unlock();
785                         return c;
786                 }
787         }
788
789         rcu_read_unlock();
790
791         return NULL;
792 }
793
794 static inline struct hci_conn *hci_conn_hash_lookup_state(struct hci_dev *hdev,
795                                                         __u8 type, __u16 state)
796 {
797         struct hci_conn_hash *h = &hdev->conn_hash;
798         struct hci_conn  *c;
799
800         rcu_read_lock();
801
802         list_for_each_entry_rcu(c, &h->list, list) {
803                 if (c->type == type && c->state == state) {
804                         rcu_read_unlock();
805                         return c;
806                 }
807         }
808
809         rcu_read_unlock();
810
811         return NULL;
812 }
813
814 static inline struct hci_conn *hci_lookup_le_connect(struct hci_dev *hdev)
815 {
816         struct hci_conn_hash *h = &hdev->conn_hash;
817         struct hci_conn  *c;
818
819         rcu_read_lock();
820
821         list_for_each_entry_rcu(c, &h->list, list) {
822                 if (c->type == LE_LINK && c->state == BT_CONNECT &&
823                     !test_bit(HCI_CONN_SCANNING, &c->flags)) {
824                         rcu_read_unlock();
825                         return c;
826                 }
827         }
828
829         rcu_read_unlock();
830
831         return NULL;
832 }
833
834 int hci_disconnect(struct hci_conn *conn, __u8 reason);
835 bool hci_setup_sync(struct hci_conn *conn, __u16 handle);
836 void hci_sco_setup(struct hci_conn *conn, __u8 status);
837
838 struct hci_conn *hci_conn_add(struct hci_dev *hdev, int type, bdaddr_t *dst,
839                               u8 role);
840 int hci_conn_del(struct hci_conn *conn);
841 void hci_conn_hash_flush(struct hci_dev *hdev);
842 void hci_conn_check_pending(struct hci_dev *hdev);
843
844 struct hci_chan *hci_chan_create(struct hci_conn *conn);
845 void hci_chan_del(struct hci_chan *chan);
846 void hci_chan_list_flush(struct hci_conn *conn);
847 struct hci_chan *hci_chan_lookup_handle(struct hci_dev *hdev, __u16 handle);
848
849 struct hci_conn *hci_connect_le(struct hci_dev *hdev, bdaddr_t *dst,
850                                 u8 dst_type, u8 sec_level, u16 conn_timeout,
851                                 u8 role);
852 struct hci_conn *hci_connect_acl(struct hci_dev *hdev, bdaddr_t *dst,
853                                  u8 sec_level, u8 auth_type);
854 struct hci_conn *hci_connect_sco(struct hci_dev *hdev, int type, bdaddr_t *dst,
855                                  __u16 setting);
856 int hci_conn_check_link_mode(struct hci_conn *conn);
857 int hci_conn_check_secure(struct hci_conn *conn, __u8 sec_level);
858 int hci_conn_security(struct hci_conn *conn, __u8 sec_level, __u8 auth_type,
859                       bool initiator);
860 int hci_conn_switch_role(struct hci_conn *conn, __u8 role);
861
862 void hci_conn_enter_active_mode(struct hci_conn *conn, __u8 force_active);
863
864 void hci_le_conn_failed(struct hci_conn *conn, u8 status);
865
866 /*
867  * hci_conn_get() and hci_conn_put() are used to control the life-time of an
868  * "hci_conn" object. They do not guarantee that the hci_conn object is running,
869  * working or anything else. They just guarantee that the object is available
870  * and can be dereferenced. So you can use its locks, local variables and any
871  * other constant data.
872  * Before accessing runtime data, you _must_ lock the object and then check that
873  * it is still running. As soon as you release the locks, the connection might
874  * get dropped, though.
875  *
876  * On the other hand, hci_conn_hold() and hci_conn_drop() are used to control
877  * how long the underlying connection is held. So every channel that runs on the
878  * hci_conn object calls this to prevent the connection from disappearing. As
879  * long as you hold a device, you must also guarantee that you have a valid
880  * reference to the device via hci_conn_get() (or the initial reference from
881  * hci_conn_add()).
882  * The hold()/drop() ref-count is known to drop below 0 sometimes, which doesn't
883  * break because nobody cares for that. But this means, we cannot use
884  * _get()/_drop() in it, but require the caller to have a valid ref (FIXME).
885  */
886
887 static inline struct hci_conn *hci_conn_get(struct hci_conn *conn)
888 {
889         get_device(&conn->dev);
890         return conn;
891 }
892
893 static inline void hci_conn_put(struct hci_conn *conn)
894 {
895         put_device(&conn->dev);
896 }
897
898 static inline void hci_conn_hold(struct hci_conn *conn)
899 {
900         BT_DBG("hcon %p orig refcnt %d", conn, atomic_read(&conn->refcnt));
901
902         atomic_inc(&conn->refcnt);
903         cancel_delayed_work(&conn->disc_work);
904 }
905
906 static inline void hci_conn_drop(struct hci_conn *conn)
907 {
908         BT_DBG("hcon %p orig refcnt %d", conn, atomic_read(&conn->refcnt));
909
910         if (atomic_dec_and_test(&conn->refcnt)) {
911                 unsigned long timeo;
912
913                 switch (conn->type) {
914                 case ACL_LINK:
915                 case LE_LINK:
916                         cancel_delayed_work(&conn->idle_work);
917                         if (conn->state == BT_CONNECTED) {
918                                 timeo = conn->disc_timeout;
919                                 if (!conn->out)
920                                         timeo *= 2;
921                         } else {
922                                 timeo = 0;
923                         }
924                         break;
925
926                 case AMP_LINK:
927                         timeo = conn->disc_timeout;
928                         break;
929
930                 default:
931                         timeo = 0;
932                         break;
933                 }
934
935                 cancel_delayed_work(&conn->disc_work);
936                 queue_delayed_work(conn->hdev->workqueue,
937                                    &conn->disc_work, timeo);
938         }
939 }
940
941 /* ----- HCI Devices ----- */
942 static inline void hci_dev_put(struct hci_dev *d)
943 {
944         BT_DBG("%s orig refcnt %d", d->name,
945                atomic_read(&d->dev.kobj.kref.refcount));
946
947         put_device(&d->dev);
948 }
949
950 static inline struct hci_dev *hci_dev_hold(struct hci_dev *d)
951 {
952         BT_DBG("%s orig refcnt %d", d->name,
953                atomic_read(&d->dev.kobj.kref.refcount));
954
955         get_device(&d->dev);
956         return d;
957 }
958
959 #define hci_dev_lock(d)         mutex_lock(&d->lock)
960 #define hci_dev_unlock(d)       mutex_unlock(&d->lock)
961
962 #define to_hci_dev(d) container_of(d, struct hci_dev, dev)
963 #define to_hci_conn(c) container_of(c, struct hci_conn, dev)
964
965 static inline void *hci_get_drvdata(struct hci_dev *hdev)
966 {
967         return dev_get_drvdata(&hdev->dev);
968 }
969
970 static inline void hci_set_drvdata(struct hci_dev *hdev, void *data)
971 {
972         dev_set_drvdata(&hdev->dev, data);
973 }
974
975 struct hci_dev *hci_dev_get(int index);
976 struct hci_dev *hci_get_route(bdaddr_t *dst, bdaddr_t *src);
977
978 struct hci_dev *hci_alloc_dev(void);
979 void hci_free_dev(struct hci_dev *hdev);
980 int hci_register_dev(struct hci_dev *hdev);
981 void hci_unregister_dev(struct hci_dev *hdev);
982 int hci_suspend_dev(struct hci_dev *hdev);
983 int hci_resume_dev(struct hci_dev *hdev);
984 int hci_reset_dev(struct hci_dev *hdev);
985 int hci_dev_open(__u16 dev);
986 int hci_dev_close(__u16 dev);
987 int hci_dev_reset(__u16 dev);
988 int hci_dev_reset_stat(__u16 dev);
989 int hci_dev_cmd(unsigned int cmd, void __user *arg);
990 int hci_get_dev_list(void __user *arg);
991 int hci_get_dev_info(void __user *arg);
992 int hci_get_conn_list(void __user *arg);
993 int hci_get_conn_info(struct hci_dev *hdev, void __user *arg);
994 int hci_get_auth_info(struct hci_dev *hdev, void __user *arg);
995 int hci_inquiry(void __user *arg);
996
997 struct bdaddr_list *hci_bdaddr_list_lookup(struct list_head *list,
998                                            bdaddr_t *bdaddr, u8 type);
999 int hci_bdaddr_list_add(struct list_head *list, bdaddr_t *bdaddr, u8 type);
1000 int hci_bdaddr_list_del(struct list_head *list, bdaddr_t *bdaddr, u8 type);
1001 void hci_bdaddr_list_clear(struct list_head *list);
1002
1003 struct hci_conn_params *hci_conn_params_lookup(struct hci_dev *hdev,
1004                                                bdaddr_t *addr, u8 addr_type);
1005 struct hci_conn_params *hci_conn_params_add(struct hci_dev *hdev,
1006                                             bdaddr_t *addr, u8 addr_type);
1007 void hci_conn_params_del(struct hci_dev *hdev, bdaddr_t *addr, u8 addr_type);
1008 void hci_conn_params_clear_all(struct hci_dev *hdev);
1009 void hci_conn_params_clear_disabled(struct hci_dev *hdev);
1010
1011 struct hci_conn_params *hci_pend_le_action_lookup(struct list_head *list,
1012                                                   bdaddr_t *addr,
1013                                                   u8 addr_type);
1014
1015 void hci_uuids_clear(struct hci_dev *hdev);
1016
1017 void hci_link_keys_clear(struct hci_dev *hdev);
1018 struct link_key *hci_find_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr);
1019 struct link_key *hci_add_link_key(struct hci_dev *hdev, struct hci_conn *conn,
1020                                   bdaddr_t *bdaddr, u8 *val, u8 type,
1021                                   u8 pin_len, bool *persistent);
1022 struct smp_ltk *hci_add_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
1023                             u8 addr_type, u8 type, u8 authenticated,
1024                             u8 tk[16], u8 enc_size, __le16 ediv, __le64 rand);
1025 struct smp_ltk *hci_find_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
1026                              u8 addr_type, u8 role);
1027 int hci_remove_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 bdaddr_type);
1028 void hci_smp_ltks_clear(struct hci_dev *hdev);
1029 int hci_remove_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr);
1030
1031 struct smp_irk *hci_find_irk_by_rpa(struct hci_dev *hdev, bdaddr_t *rpa);
1032 struct smp_irk *hci_find_irk_by_addr(struct hci_dev *hdev, bdaddr_t *bdaddr,
1033                                      u8 addr_type);
1034 struct smp_irk *hci_add_irk(struct hci_dev *hdev, bdaddr_t *bdaddr,
1035                             u8 addr_type, u8 val[16], bdaddr_t *rpa);
1036 void hci_remove_irk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 addr_type);
1037 void hci_smp_irks_clear(struct hci_dev *hdev);
1038
1039 bool hci_bdaddr_is_paired(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 type);
1040
1041 void hci_remote_oob_data_clear(struct hci_dev *hdev);
1042 struct oob_data *hci_find_remote_oob_data(struct hci_dev *hdev,
1043                                           bdaddr_t *bdaddr, u8 bdaddr_type);
1044 int hci_add_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
1045                             u8 bdaddr_type, u8 *hash192, u8 *rand192,
1046                             u8 *hash256, u8 *rand256);
1047 int hci_remove_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
1048                                u8 bdaddr_type);
1049
1050 void hci_adv_instances_clear(struct hci_dev *hdev);
1051 struct adv_info *hci_find_adv_instance(struct hci_dev *hdev, u8 instance);
1052 struct adv_info *hci_get_next_instance(struct hci_dev *hdev, u8 instance);
1053 int hci_add_adv_instance(struct hci_dev *hdev, u8 instance, u32 flags,
1054                          u16 adv_data_len, u8 *adv_data,
1055                          u16 scan_rsp_len, u8 *scan_rsp_data,
1056                          u16 timeout, u16 duration);
1057 int hci_remove_adv_instance(struct hci_dev *hdev, u8 instance);
1058
1059 void hci_event_packet(struct hci_dev *hdev, struct sk_buff *skb);
1060
1061 int hci_recv_frame(struct hci_dev *hdev, struct sk_buff *skb);
1062
1063 void hci_init_sysfs(struct hci_dev *hdev);
1064 void hci_conn_init_sysfs(struct hci_conn *conn);
1065 void hci_conn_add_sysfs(struct hci_conn *conn);
1066 void hci_conn_del_sysfs(struct hci_conn *conn);
1067
1068 #define SET_HCIDEV_DEV(hdev, pdev) ((hdev)->dev.parent = (pdev))
1069
1070 /* ----- LMP capabilities ----- */
1071 #define lmp_encrypt_capable(dev)   ((dev)->features[0][0] & LMP_ENCRYPT)
1072 #define lmp_rswitch_capable(dev)   ((dev)->features[0][0] & LMP_RSWITCH)
1073 #define lmp_hold_capable(dev)      ((dev)->features[0][0] & LMP_HOLD)
1074 #define lmp_sniff_capable(dev)     ((dev)->features[0][0] & LMP_SNIFF)
1075 #define lmp_park_capable(dev)      ((dev)->features[0][1] & LMP_PARK)
1076 #define lmp_inq_rssi_capable(dev)  ((dev)->features[0][3] & LMP_RSSI_INQ)
1077 #define lmp_esco_capable(dev)      ((dev)->features[0][3] & LMP_ESCO)
1078 #define lmp_bredr_capable(dev)     (!((dev)->features[0][4] & LMP_NO_BREDR))
1079 #define lmp_le_capable(dev)        ((dev)->features[0][4] & LMP_LE)
1080 #define lmp_sniffsubr_capable(dev) ((dev)->features[0][5] & LMP_SNIFF_SUBR)
1081 #define lmp_pause_enc_capable(dev) ((dev)->features[0][5] & LMP_PAUSE_ENC)
1082 #define lmp_ext_inq_capable(dev)   ((dev)->features[0][6] & LMP_EXT_INQ)
1083 #define lmp_le_br_capable(dev)     (!!((dev)->features[0][6] & LMP_SIMUL_LE_BR))
1084 #define lmp_ssp_capable(dev)       ((dev)->features[0][6] & LMP_SIMPLE_PAIR)
1085 #define lmp_no_flush_capable(dev)  ((dev)->features[0][6] & LMP_NO_FLUSH)
1086 #define lmp_lsto_capable(dev)      ((dev)->features[0][7] & LMP_LSTO)
1087 #define lmp_inq_tx_pwr_capable(dev) ((dev)->features[0][7] & LMP_INQ_TX_PWR)
1088 #define lmp_ext_feat_capable(dev)  ((dev)->features[0][7] & LMP_EXTFEATURES)
1089 #define lmp_transp_capable(dev)    ((dev)->features[0][2] & LMP_TRANSPARENT)
1090
1091 /* ----- Extended LMP capabilities ----- */
1092 #define lmp_csb_master_capable(dev) ((dev)->features[2][0] & LMP_CSB_MASTER)
1093 #define lmp_csb_slave_capable(dev)  ((dev)->features[2][0] & LMP_CSB_SLAVE)
1094 #define lmp_sync_train_capable(dev) ((dev)->features[2][0] & LMP_SYNC_TRAIN)
1095 #define lmp_sync_scan_capable(dev)  ((dev)->features[2][0] & LMP_SYNC_SCAN)
1096 #define lmp_sc_capable(dev)         ((dev)->features[2][1] & LMP_SC)
1097 #define lmp_ping_capable(dev)       ((dev)->features[2][1] & LMP_PING)
1098
1099 /* ----- Host capabilities ----- */
1100 #define lmp_host_ssp_capable(dev)  ((dev)->features[1][0] & LMP_HOST_SSP)
1101 #define lmp_host_sc_capable(dev)   ((dev)->features[1][0] & LMP_HOST_SC)
1102 #define lmp_host_le_capable(dev)   (!!((dev)->features[1][0] & LMP_HOST_LE))
1103 #define lmp_host_le_br_capable(dev) (!!((dev)->features[1][0] & LMP_HOST_LE_BREDR))
1104
1105 #define hdev_is_powered(dev)   (test_bit(HCI_UP, &(dev)->flags) && \
1106                                 !hci_dev_test_flag(dev, HCI_AUTO_OFF))
1107 #define bredr_sc_enabled(dev)  (lmp_sc_capable(dev) && \
1108                                 hci_dev_test_flag(dev, HCI_SC_ENABLED))
1109
1110 /* ----- HCI protocols ----- */
1111 #define HCI_PROTO_DEFER             0x01
1112
1113 static inline int hci_proto_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr,
1114                                         __u8 type, __u8 *flags)
1115 {
1116         switch (type) {
1117         case ACL_LINK:
1118                 return l2cap_connect_ind(hdev, bdaddr);
1119
1120         case SCO_LINK:
1121         case ESCO_LINK:
1122                 return sco_connect_ind(hdev, bdaddr, flags);
1123
1124         default:
1125                 BT_ERR("unknown link type %d", type);
1126                 return -EINVAL;
1127         }
1128 }
1129
1130 static inline int hci_proto_disconn_ind(struct hci_conn *conn)
1131 {
1132         if (conn->type != ACL_LINK && conn->type != LE_LINK)
1133                 return HCI_ERROR_REMOTE_USER_TERM;
1134
1135         return l2cap_disconn_ind(conn);
1136 }
1137
1138 /* ----- HCI callbacks ----- */
1139 struct hci_cb {
1140         struct list_head list;
1141
1142         char *name;
1143
1144         void (*connect_cfm)     (struct hci_conn *conn, __u8 status);
1145         void (*disconn_cfm)     (struct hci_conn *conn, __u8 status);
1146         void (*security_cfm)    (struct hci_conn *conn, __u8 status,
1147                                                                 __u8 encrypt);
1148         void (*key_change_cfm)  (struct hci_conn *conn, __u8 status);
1149         void (*role_switch_cfm) (struct hci_conn *conn, __u8 status, __u8 role);
1150 };
1151
1152 static inline void hci_connect_cfm(struct hci_conn *conn, __u8 status)
1153 {
1154         struct hci_cb *cb;
1155
1156         mutex_lock(&hci_cb_list_lock);
1157         list_for_each_entry(cb, &hci_cb_list, list) {
1158                 if (cb->connect_cfm)
1159                         cb->connect_cfm(conn, status);
1160         }
1161         mutex_unlock(&hci_cb_list_lock);
1162
1163         if (conn->connect_cfm_cb)
1164                 conn->connect_cfm_cb(conn, status);
1165 }
1166
1167 static inline void hci_disconn_cfm(struct hci_conn *conn, __u8 reason)
1168 {
1169         struct hci_cb *cb;
1170
1171         mutex_lock(&hci_cb_list_lock);
1172         list_for_each_entry(cb, &hci_cb_list, list) {
1173                 if (cb->disconn_cfm)
1174                         cb->disconn_cfm(conn, reason);
1175         }
1176         mutex_unlock(&hci_cb_list_lock);
1177
1178         if (conn->disconn_cfm_cb)
1179                 conn->disconn_cfm_cb(conn, reason);
1180 }
1181
1182 static inline void hci_auth_cfm(struct hci_conn *conn, __u8 status)
1183 {
1184         struct hci_cb *cb;
1185         __u8 encrypt;
1186
1187         if (test_bit(HCI_CONN_ENCRYPT_PEND, &conn->flags))
1188                 return;
1189
1190         encrypt = test_bit(HCI_CONN_ENCRYPT, &conn->flags) ? 0x01 : 0x00;
1191
1192         mutex_lock(&hci_cb_list_lock);
1193         list_for_each_entry(cb, &hci_cb_list, list) {
1194                 if (cb->security_cfm)
1195                         cb->security_cfm(conn, status, encrypt);
1196         }
1197         mutex_unlock(&hci_cb_list_lock);
1198
1199         if (conn->security_cfm_cb)
1200                 conn->security_cfm_cb(conn, status);
1201 }
1202
1203 static inline void hci_encrypt_cfm(struct hci_conn *conn, __u8 status,
1204                                                                 __u8 encrypt)
1205 {
1206         struct hci_cb *cb;
1207
1208         if (conn->sec_level == BT_SECURITY_SDP)
1209                 conn->sec_level = BT_SECURITY_LOW;
1210
1211         if (conn->pending_sec_level > conn->sec_level)
1212                 conn->sec_level = conn->pending_sec_level;
1213
1214         mutex_lock(&hci_cb_list_lock);
1215         list_for_each_entry(cb, &hci_cb_list, list) {
1216                 if (cb->security_cfm)
1217                         cb->security_cfm(conn, status, encrypt);
1218         }
1219         mutex_unlock(&hci_cb_list_lock);
1220
1221         if (conn->security_cfm_cb)
1222                 conn->security_cfm_cb(conn, status);
1223 }
1224
1225 static inline void hci_key_change_cfm(struct hci_conn *conn, __u8 status)
1226 {
1227         struct hci_cb *cb;
1228
1229         mutex_lock(&hci_cb_list_lock);
1230         list_for_each_entry(cb, &hci_cb_list, list) {
1231                 if (cb->key_change_cfm)
1232                         cb->key_change_cfm(conn, status);
1233         }
1234         mutex_unlock(&hci_cb_list_lock);
1235 }
1236
1237 static inline void hci_role_switch_cfm(struct hci_conn *conn, __u8 status,
1238                                                                 __u8 role)
1239 {
1240         struct hci_cb *cb;
1241
1242         mutex_lock(&hci_cb_list_lock);
1243         list_for_each_entry(cb, &hci_cb_list, list) {
1244                 if (cb->role_switch_cfm)
1245                         cb->role_switch_cfm(conn, status, role);
1246         }
1247         mutex_unlock(&hci_cb_list_lock);
1248 }
1249
1250 static inline bool eir_has_data_type(u8 *data, size_t data_len, u8 type)
1251 {
1252         size_t parsed = 0;
1253
1254         if (data_len < 2)
1255                 return false;
1256
1257         while (parsed < data_len - 1) {
1258                 u8 field_len = data[0];
1259
1260                 if (field_len == 0)
1261                         break;
1262
1263                 parsed += field_len + 1;
1264
1265                 if (parsed > data_len)
1266                         break;
1267
1268                 if (data[1] == type)
1269                         return true;
1270
1271                 data += field_len + 1;
1272         }
1273
1274         return false;
1275 }
1276
1277 static inline bool hci_bdaddr_is_rpa(bdaddr_t *bdaddr, u8 addr_type)
1278 {
1279         if (addr_type != ADDR_LE_DEV_RANDOM)
1280                 return false;
1281
1282         if ((bdaddr->b[5] & 0xc0) == 0x40)
1283                return true;
1284
1285         return false;
1286 }
1287
1288 static inline bool hci_is_identity_address(bdaddr_t *addr, u8 addr_type)
1289 {
1290         if (addr_type == ADDR_LE_DEV_PUBLIC)
1291                 return true;
1292
1293         /* Check for Random Static address type */
1294         if ((addr->b[5] & 0xc0) == 0xc0)
1295                 return true;
1296
1297         return false;
1298 }
1299
1300 static inline struct smp_irk *hci_get_irk(struct hci_dev *hdev,
1301                                           bdaddr_t *bdaddr, u8 addr_type)
1302 {
1303         if (!hci_bdaddr_is_rpa(bdaddr, addr_type))
1304                 return NULL;
1305
1306         return hci_find_irk_by_rpa(hdev, bdaddr);
1307 }
1308
1309 static inline int hci_check_conn_params(u16 min, u16 max, u16 latency,
1310                                         u16 to_multiplier)
1311 {
1312         u16 max_latency;
1313
1314         if (min > max || min < 6 || max > 3200)
1315                 return -EINVAL;
1316
1317         if (to_multiplier < 10 || to_multiplier > 3200)
1318                 return -EINVAL;
1319
1320         if (max >= to_multiplier * 8)
1321                 return -EINVAL;
1322
1323         max_latency = (to_multiplier * 4 / max) - 1;
1324         if (latency > 499 || latency > max_latency)
1325                 return -EINVAL;
1326
1327         return 0;
1328 }
1329
1330 int hci_register_cb(struct hci_cb *hcb);
1331 int hci_unregister_cb(struct hci_cb *hcb);
1332
1333 struct sk_buff *__hci_cmd_sync(struct hci_dev *hdev, u16 opcode, u32 plen,
1334                                const void *param, u32 timeout);
1335 struct sk_buff *__hci_cmd_sync_ev(struct hci_dev *hdev, u16 opcode, u32 plen,
1336                                   const void *param, u8 event, u32 timeout);
1337
1338 int hci_send_cmd(struct hci_dev *hdev, __u16 opcode, __u32 plen,
1339                  const void *param);
1340 void hci_send_acl(struct hci_chan *chan, struct sk_buff *skb, __u16 flags);
1341 void hci_send_sco(struct hci_conn *conn, struct sk_buff *skb);
1342
1343 void *hci_sent_cmd_data(struct hci_dev *hdev, __u16 opcode);
1344
1345 /* ----- HCI Sockets ----- */
1346 void hci_send_to_sock(struct hci_dev *hdev, struct sk_buff *skb);
1347 void hci_send_to_channel(unsigned short channel, struct sk_buff *skb,
1348                          int flag, struct sock *skip_sk);
1349 void hci_send_to_monitor(struct hci_dev *hdev, struct sk_buff *skb);
1350
1351 void hci_sock_dev_event(struct hci_dev *hdev, int event);
1352
1353 #define HCI_MGMT_VAR_LEN        BIT(0)
1354 #define HCI_MGMT_NO_HDEV        BIT(1)
1355 #define HCI_MGMT_UNTRUSTED      BIT(2)
1356 #define HCI_MGMT_UNCONFIGURED   BIT(3)
1357
1358 struct hci_mgmt_handler {
1359         int (*func) (struct sock *sk, struct hci_dev *hdev, void *data,
1360                      u16 data_len);
1361         size_t data_len;
1362         unsigned long flags;
1363 };
1364
1365 struct hci_mgmt_chan {
1366         struct list_head list;
1367         unsigned short channel;
1368         size_t handler_count;
1369         const struct hci_mgmt_handler *handlers;
1370         void (*hdev_init) (struct sock *sk, struct hci_dev *hdev);
1371 };
1372
1373 int hci_mgmt_chan_register(struct hci_mgmt_chan *c);
1374 void hci_mgmt_chan_unregister(struct hci_mgmt_chan *c);
1375
1376 /* Management interface */
1377 #define DISCOV_TYPE_BREDR               (BIT(BDADDR_BREDR))
1378 #define DISCOV_TYPE_LE                  (BIT(BDADDR_LE_PUBLIC) | \
1379                                          BIT(BDADDR_LE_RANDOM))
1380 #define DISCOV_TYPE_INTERLEAVED         (BIT(BDADDR_BREDR) | \
1381                                          BIT(BDADDR_LE_PUBLIC) | \
1382                                          BIT(BDADDR_LE_RANDOM))
1383
1384 /* These LE scan and inquiry parameters were chosen according to LE General
1385  * Discovery Procedure specification.
1386  */
1387 #define DISCOV_LE_SCAN_WIN              0x12
1388 #define DISCOV_LE_SCAN_INT              0x12
1389 #define DISCOV_LE_TIMEOUT               10240   /* msec */
1390 #define DISCOV_INTERLEAVED_TIMEOUT      5120    /* msec */
1391 #define DISCOV_INTERLEAVED_INQUIRY_LEN  0x04
1392 #define DISCOV_BREDR_INQUIRY_LEN        0x08
1393 #define DISCOV_LE_RESTART_DELAY         msecs_to_jiffies(200)   /* msec */
1394
1395 int mgmt_new_settings(struct hci_dev *hdev);
1396 void mgmt_index_added(struct hci_dev *hdev);
1397 void mgmt_index_removed(struct hci_dev *hdev);
1398 void mgmt_set_powered_failed(struct hci_dev *hdev, int err);
1399 int mgmt_powered(struct hci_dev *hdev, u8 powered);
1400 int mgmt_update_adv_data(struct hci_dev *hdev);
1401 void mgmt_discoverable_timeout(struct hci_dev *hdev);
1402 void mgmt_adv_timeout_expired(struct hci_dev *hdev);
1403 void mgmt_new_link_key(struct hci_dev *hdev, struct link_key *key,
1404                        bool persistent);
1405 void mgmt_device_connected(struct hci_dev *hdev, struct hci_conn *conn,
1406                            u32 flags, u8 *name, u8 name_len);
1407 void mgmt_device_disconnected(struct hci_dev *hdev, bdaddr_t *bdaddr,
1408                               u8 link_type, u8 addr_type, u8 reason,
1409                               bool mgmt_connected);
1410 void mgmt_disconnect_failed(struct hci_dev *hdev, bdaddr_t *bdaddr,
1411                             u8 link_type, u8 addr_type, u8 status);
1412 void mgmt_connect_failed(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type,
1413                          u8 addr_type, u8 status);
1414 void mgmt_pin_code_request(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 secure);
1415 void mgmt_pin_code_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1416                                   u8 status);
1417 void mgmt_pin_code_neg_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1418                                       u8 status);
1419 int mgmt_user_confirm_request(struct hci_dev *hdev, bdaddr_t *bdaddr,
1420                               u8 link_type, u8 addr_type, u32 value,
1421                               u8 confirm_hint);
1422 int mgmt_user_confirm_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1423                                      u8 link_type, u8 addr_type, u8 status);
1424 int mgmt_user_confirm_neg_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1425                                          u8 link_type, u8 addr_type, u8 status);
1426 int mgmt_user_passkey_request(struct hci_dev *hdev, bdaddr_t *bdaddr,
1427                               u8 link_type, u8 addr_type);
1428 int mgmt_user_passkey_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1429                                      u8 link_type, u8 addr_type, u8 status);
1430 int mgmt_user_passkey_neg_reply_complete(struct hci_dev *hdev, bdaddr_t *bdaddr,
1431                                          u8 link_type, u8 addr_type, u8 status);
1432 int mgmt_user_passkey_notify(struct hci_dev *hdev, bdaddr_t *bdaddr,
1433                              u8 link_type, u8 addr_type, u32 passkey,
1434                              u8 entered);
1435 void mgmt_auth_failed(struct hci_conn *conn, u8 status);
1436 void mgmt_auth_enable_complete(struct hci_dev *hdev, u8 status);
1437 void mgmt_ssp_enable_complete(struct hci_dev *hdev, u8 enable, u8 status);
1438 void mgmt_set_class_of_dev_complete(struct hci_dev *hdev, u8 *dev_class,
1439                                     u8 status);
1440 void mgmt_set_local_name_complete(struct hci_dev *hdev, u8 *name, u8 status);
1441 void mgmt_device_found(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type,
1442                        u8 addr_type, u8 *dev_class, s8 rssi, u32 flags,
1443                        u8 *eir, u16 eir_len, u8 *scan_rsp, u8 scan_rsp_len);
1444 void mgmt_remote_name(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 link_type,
1445                       u8 addr_type, s8 rssi, u8 *name, u8 name_len);
1446 void mgmt_discovering(struct hci_dev *hdev, u8 discovering);
1447 bool mgmt_powering_down(struct hci_dev *hdev);
1448 void mgmt_new_ltk(struct hci_dev *hdev, struct smp_ltk *key, bool persistent);
1449 void mgmt_new_irk(struct hci_dev *hdev, struct smp_irk *irk);
1450 void mgmt_new_csrk(struct hci_dev *hdev, struct smp_csrk *csrk,
1451                    bool persistent);
1452 void mgmt_new_conn_param(struct hci_dev *hdev, bdaddr_t *bdaddr,
1453                          u8 bdaddr_type, u8 store_hint, u16 min_interval,
1454                          u16 max_interval, u16 latency, u16 timeout);
1455 void mgmt_reenable_advertising(struct hci_dev *hdev);
1456 void mgmt_smp_complete(struct hci_conn *conn, bool complete);
1457
1458 u8 hci_le_conn_update(struct hci_conn *conn, u16 min, u16 max, u16 latency,
1459                       u16 to_multiplier);
1460 void hci_le_start_enc(struct hci_conn *conn, __le16 ediv, __le64 rand,
1461                       __u8 ltk[16], __u8 key_size);
1462
1463 void hci_copy_identity_address(struct hci_dev *hdev, bdaddr_t *bdaddr,
1464                                u8 *bdaddr_type);
1465
1466 #define SCO_AIRMODE_MASK       0x0003
1467 #define SCO_AIRMODE_CVSD       0x0000
1468 #define SCO_AIRMODE_TRANSP     0x0003
1469
1470 #endif /* __HCI_CORE_H */