xref: /btstack/src/classic/sdp_server.c (revision 03751aa7c80319a52070c840874978a55bac47a6)
1746ccb7eSMatthias Ringwald /*
2746ccb7eSMatthias Ringwald  * Copyright (C) 2014 BlueKitchen GmbH
3746ccb7eSMatthias Ringwald  *
4746ccb7eSMatthias Ringwald  * Redistribution and use in source and binary forms, with or without
5746ccb7eSMatthias Ringwald  * modification, are permitted provided that the following conditions
6746ccb7eSMatthias Ringwald  * are met:
7746ccb7eSMatthias Ringwald  *
8746ccb7eSMatthias Ringwald  * 1. Redistributions of source code must retain the above copyright
9746ccb7eSMatthias Ringwald  *    notice, this list of conditions and the following disclaimer.
10746ccb7eSMatthias Ringwald  * 2. Redistributions in binary form must reproduce the above copyright
11746ccb7eSMatthias Ringwald  *    notice, this list of conditions and the following disclaimer in the
12746ccb7eSMatthias Ringwald  *    documentation and/or other materials provided with the distribution.
13746ccb7eSMatthias Ringwald  * 3. Neither the name of the copyright holders nor the names of
14746ccb7eSMatthias Ringwald  *    contributors may be used to endorse or promote products derived
15746ccb7eSMatthias Ringwald  *    from this software without specific prior written permission.
16746ccb7eSMatthias Ringwald  * 4. Any redistribution, use, or modification is done solely for
17746ccb7eSMatthias Ringwald  *    personal benefit and not for any commercial purpose or for
18746ccb7eSMatthias Ringwald  *    monetary gain.
19746ccb7eSMatthias Ringwald  *
20746ccb7eSMatthias Ringwald  * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS
21746ccb7eSMatthias Ringwald  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
22746ccb7eSMatthias Ringwald  * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS
23746ccb7eSMatthias Ringwald  * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS
24746ccb7eSMatthias Ringwald  * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT,
25746ccb7eSMatthias Ringwald  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
26746ccb7eSMatthias Ringwald  * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS
27746ccb7eSMatthias Ringwald  * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
28746ccb7eSMatthias Ringwald  * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
29746ccb7eSMatthias Ringwald  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF
30746ccb7eSMatthias Ringwald  * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
31746ccb7eSMatthias Ringwald  * SUCH DAMAGE.
32746ccb7eSMatthias Ringwald  *
33746ccb7eSMatthias Ringwald  * Please inquire about commercial licensing options at
34746ccb7eSMatthias Ringwald  * [email protected]
35746ccb7eSMatthias Ringwald  *
36746ccb7eSMatthias Ringwald  */
37746ccb7eSMatthias Ringwald 
38ab2c6ae4SMatthias Ringwald #define __BTSTACK_FILE__ "sdp_server.c"
39ab2c6ae4SMatthias Ringwald 
40746ccb7eSMatthias Ringwald /*
41746ccb7eSMatthias Ringwald  * Implementation of the Service Discovery Protocol Server
42746ccb7eSMatthias Ringwald  */
43746ccb7eSMatthias Ringwald 
44746ccb7eSMatthias Ringwald #include <stdio.h>
45746ccb7eSMatthias Ringwald #include <string.h>
46746ccb7eSMatthias Ringwald 
47*03751aa7SMatthias Ringwald #include "bluetooth.h"
48235946f1SMatthias Ringwald #include "bluetooth_sdp.h"
49746ccb7eSMatthias Ringwald #include "btstack_debug.h"
500e2df43fSMatthias Ringwald #include "btstack_event.h"
5159c6af15SMatthias Ringwald #include "btstack_memory.h"
5259c6af15SMatthias Ringwald #include "classic/core.h"
53746ccb7eSMatthias Ringwald #include "classic/sdp_server.h"
54746ccb7eSMatthias Ringwald #include "classic/sdp_util.h"
5559c6af15SMatthias Ringwald #include "hci_dump.h"
56*03751aa7SMatthias Ringwald #include "hci.h"
5759c6af15SMatthias Ringwald #include "l2cap.h"
58746ccb7eSMatthias Ringwald 
59746ccb7eSMatthias Ringwald // max reserved ServiceRecordHandle
60746ccb7eSMatthias Ringwald #define maxReservedServiceRecordHandle 0xffff
61746ccb7eSMatthias Ringwald 
62746ccb7eSMatthias Ringwald // max SDP response matches L2CAP PDU -- allow to use smaller buffer
63746ccb7eSMatthias Ringwald #ifndef SDP_RESPONSE_BUFFER_SIZE
64*03751aa7SMatthias Ringwald #define SDP_RESPONSE_BUFFER_SIZE (HCI_ACL_PAYLOAD_SIZE-L2CAP_HEADER_SIZE)
65746ccb7eSMatthias Ringwald #endif
66746ccb7eSMatthias Ringwald 
67746ccb7eSMatthias Ringwald static void sdp_packet_handler(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size);
68746ccb7eSMatthias Ringwald 
69746ccb7eSMatthias Ringwald // registered service records
70746ccb7eSMatthias Ringwald static btstack_linked_list_t sdp_service_records = NULL;
71746ccb7eSMatthias Ringwald 
72746ccb7eSMatthias Ringwald // our handles start after the reserved range
73746ccb7eSMatthias Ringwald static uint32_t sdp_next_service_record_handle = ((uint32_t) maxReservedServiceRecordHandle) + 2;
74746ccb7eSMatthias Ringwald 
75746ccb7eSMatthias Ringwald static uint8_t sdp_response_buffer[SDP_RESPONSE_BUFFER_SIZE];
76746ccb7eSMatthias Ringwald 
77746ccb7eSMatthias Ringwald static uint16_t l2cap_cid = 0;
78746ccb7eSMatthias Ringwald static uint16_t sdp_response_size = 0;
79746ccb7eSMatthias Ringwald 
80746ccb7eSMatthias Ringwald void sdp_init(void){
81746ccb7eSMatthias Ringwald     // register with l2cap psm sevices - max MTU
82235946f1SMatthias Ringwald     l2cap_register_service(sdp_packet_handler, BLUETOOTH_PROTOCOL_SDP, 0xffff, LEVEL_0);
83746ccb7eSMatthias Ringwald }
84746ccb7eSMatthias Ringwald 
85746ccb7eSMatthias Ringwald uint32_t sdp_get_service_record_handle(const uint8_t * record){
86746ccb7eSMatthias Ringwald     // TODO: make sdp_get_attribute_value_for_attribute_id accept const data to remove cast
87235946f1SMatthias Ringwald     uint8_t * serviceRecordHandleAttribute = sdp_get_attribute_value_for_attribute_id((uint8_t *)record, BLUETOOTH_ATTRIBUTE_SERVICE_RECORD_HANDLE);
88746ccb7eSMatthias Ringwald     if (!serviceRecordHandleAttribute) return 0;
89746ccb7eSMatthias Ringwald     if (de_get_element_type(serviceRecordHandleAttribute) != DE_UINT) return 0;
90746ccb7eSMatthias Ringwald     if (de_get_size_type(serviceRecordHandleAttribute) != DE_SIZE_32) return 0;
91c9b8fdd9SMatthias Ringwald     return big_endian_read_32(serviceRecordHandleAttribute, 1);
92746ccb7eSMatthias Ringwald }
93746ccb7eSMatthias Ringwald 
94746ccb7eSMatthias Ringwald static service_record_item_t * sdp_get_record_item_for_handle(uint32_t handle){
95746ccb7eSMatthias Ringwald     btstack_linked_item_t *it;
96746ccb7eSMatthias Ringwald     for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){
97746ccb7eSMatthias Ringwald         service_record_item_t * item = (service_record_item_t *) it;
98746ccb7eSMatthias Ringwald         if (item->service_record_handle == handle){
99746ccb7eSMatthias Ringwald             return item;
100746ccb7eSMatthias Ringwald         }
101746ccb7eSMatthias Ringwald     }
102746ccb7eSMatthias Ringwald     return NULL;
103746ccb7eSMatthias Ringwald }
104746ccb7eSMatthias Ringwald 
105746ccb7eSMatthias Ringwald uint8_t * sdp_get_record_for_handle(uint32_t handle){
106746ccb7eSMatthias Ringwald     service_record_item_t * record_item =  sdp_get_record_item_for_handle(handle);
107746ccb7eSMatthias Ringwald     if (!record_item) return 0;
108746ccb7eSMatthias Ringwald     return record_item->service_record;
109746ccb7eSMatthias Ringwald }
110746ccb7eSMatthias Ringwald 
111746ccb7eSMatthias Ringwald // get next free, unregistered service record handle
112746ccb7eSMatthias Ringwald uint32_t sdp_create_service_record_handle(void){
113746ccb7eSMatthias Ringwald     uint32_t handle = 0;
114746ccb7eSMatthias Ringwald     do {
115746ccb7eSMatthias Ringwald         handle = sdp_next_service_record_handle++;
116746ccb7eSMatthias Ringwald         if (sdp_get_record_item_for_handle(handle)) handle = 0;
117746ccb7eSMatthias Ringwald     } while (handle == 0);
118746ccb7eSMatthias Ringwald     return handle;
119746ccb7eSMatthias Ringwald }
120746ccb7eSMatthias Ringwald 
121746ccb7eSMatthias Ringwald /**
122746ccb7eSMatthias Ringwald  * @brief Register Service Record with database using ServiceRecordHandle stored in record
123746ccb7eSMatthias Ringwald  * @pre AttributeIDs are in ascending order
124746ccb7eSMatthias Ringwald  * @pre ServiceRecordHandle is first attribute and valid
125746ccb7eSMatthias Ringwald  * @param record is not copied!
126746ccb7eSMatthias Ringwald  * @result status
127746ccb7eSMatthias Ringwald  */
128746ccb7eSMatthias Ringwald uint8_t sdp_register_service(const uint8_t * record){
129746ccb7eSMatthias Ringwald 
130746ccb7eSMatthias Ringwald     // validate service record handle. it must: exist, be in valid range, not have been already used
131746ccb7eSMatthias Ringwald     uint32_t record_handle = sdp_get_service_record_handle(record);
132746ccb7eSMatthias Ringwald     if (!record_handle) return SDP_HANDLE_INVALID;
133746ccb7eSMatthias Ringwald     if (record_handle <= maxReservedServiceRecordHandle) return SDP_HANDLE_INVALID;
134746ccb7eSMatthias Ringwald     if (sdp_get_record_item_for_handle(record_handle)) return SDP_HANDLE_ALREADY_REGISTERED;
135746ccb7eSMatthias Ringwald 
136746ccb7eSMatthias Ringwald     // alloc memory for new service_record_item
137746ccb7eSMatthias Ringwald     service_record_item_t * newRecordItem = btstack_memory_service_record_item_get();
138746ccb7eSMatthias Ringwald     if (!newRecordItem) return BTSTACK_MEMORY_ALLOC_FAILED;
139746ccb7eSMatthias Ringwald 
140746ccb7eSMatthias Ringwald     // set handle and record
141746ccb7eSMatthias Ringwald     newRecordItem->service_record_handle = record_handle;
142746ccb7eSMatthias Ringwald     newRecordItem->service_record = (uint8_t*) record;
143746ccb7eSMatthias Ringwald 
144746ccb7eSMatthias Ringwald     // add to linked list
145746ccb7eSMatthias Ringwald     btstack_linked_list_add(&sdp_service_records, (btstack_linked_item_t *) newRecordItem);
146746ccb7eSMatthias Ringwald 
147746ccb7eSMatthias Ringwald     return 0;
148746ccb7eSMatthias Ringwald }
149746ccb7eSMatthias Ringwald 
150746ccb7eSMatthias Ringwald //
151746ccb7eSMatthias Ringwald // unregister service record
152746ccb7eSMatthias Ringwald //
153746ccb7eSMatthias Ringwald void sdp_unregister_service(uint32_t service_record_handle){
154746ccb7eSMatthias Ringwald     service_record_item_t * record_item = sdp_get_record_item_for_handle(service_record_handle);
155746ccb7eSMatthias Ringwald     if (!record_item) return;
156746ccb7eSMatthias Ringwald     btstack_linked_list_remove(&sdp_service_records, (btstack_linked_item_t *) record_item);
157c0a6fc5dSMatthias Ringwald     btstack_memory_service_record_item_free(record_item);
158746ccb7eSMatthias Ringwald }
159746ccb7eSMatthias Ringwald 
160746ccb7eSMatthias Ringwald // PDU
161746ccb7eSMatthias Ringwald // PDU ID (1), Transaction ID (2), Param Length (2), Param 1, Param 2, ..
162746ccb7eSMatthias Ringwald 
163746ccb7eSMatthias Ringwald static int sdp_create_error_response(uint16_t transaction_id, uint16_t error_code){
164746ccb7eSMatthias Ringwald     sdp_response_buffer[0] = SDP_ErrorResponse;
165746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 1, transaction_id);
166746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 3, 2);
167746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 5, error_code); // invalid syntax
168746ccb7eSMatthias Ringwald     return 7;
169746ccb7eSMatthias Ringwald }
170746ccb7eSMatthias Ringwald 
171746ccb7eSMatthias Ringwald int sdp_handle_service_search_request(uint8_t * packet, uint16_t remote_mtu){
172746ccb7eSMatthias Ringwald 
173746ccb7eSMatthias Ringwald     // get request details
174746ccb7eSMatthias Ringwald     uint16_t  transaction_id = big_endian_read_16(packet, 1);
1754443af49SMatthias Ringwald     uint16_t  param_len = big_endian_read_16(packet, 3);
176746ccb7eSMatthias Ringwald     uint8_t * serviceSearchPattern = &packet[5];
1774443af49SMatthias Ringwald     uint16_t  serviceSearchPatternLen = de_get_len_safe(serviceSearchPattern, param_len);
1784443af49SMatthias Ringwald     // assert service search pattern is contained
1794443af49SMatthias Ringwald     if (!serviceSearchPatternLen) return 0;
1804443af49SMatthias Ringwald     param_len -= serviceSearchPatternLen;
1814443af49SMatthias Ringwald     // assert max record count is contained
1824443af49SMatthias Ringwald     if (param_len < 2) return 0;
183746ccb7eSMatthias Ringwald     uint16_t  maximumServiceRecordCount = big_endian_read_16(packet, 5 + serviceSearchPatternLen);
1844443af49SMatthias Ringwald     param_len -= 2;
1854443af49SMatthias Ringwald     // assert continuation state len is contained in param_len
1864443af49SMatthias Ringwald     if (param_len < 1) return 0;
187746ccb7eSMatthias Ringwald     uint8_t * continuationState = &packet[5+serviceSearchPatternLen+2];
1884443af49SMatthias Ringwald     // assert continuation state is contained in param_len
1894443af49SMatthias Ringwald     if (1 + continuationState[0] > param_len) return 0;
190746ccb7eSMatthias Ringwald 
1914443af49SMatthias Ringwald     // calc maximumServiceRecordCount based on remote MTU
192746ccb7eSMatthias Ringwald     uint16_t maxNrServiceRecordsPerResponse = (remote_mtu - (9+3))/4;
193746ccb7eSMatthias Ringwald 
194746ccb7eSMatthias Ringwald     // continuation state contains index of next service record to examine
195746ccb7eSMatthias Ringwald     int      continuation = 0;
196746ccb7eSMatthias Ringwald     uint16_t continuation_index = 0;
197746ccb7eSMatthias Ringwald     if (continuationState[0] == 2){
198746ccb7eSMatthias Ringwald         continuation_index = big_endian_read_16(continuationState, 1);
199746ccb7eSMatthias Ringwald     }
200746ccb7eSMatthias Ringwald 
201746ccb7eSMatthias Ringwald     // get and limit total count
202746ccb7eSMatthias Ringwald     btstack_linked_item_t *it;
203746ccb7eSMatthias Ringwald     uint16_t total_service_count   = 0;
204746ccb7eSMatthias Ringwald     for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){
205746ccb7eSMatthias Ringwald         service_record_item_t * item = (service_record_item_t *) it;
206746ccb7eSMatthias Ringwald         if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue;
207746ccb7eSMatthias Ringwald         total_service_count++;
208746ccb7eSMatthias Ringwald     }
209746ccb7eSMatthias Ringwald     if (total_service_count > maximumServiceRecordCount){
210746ccb7eSMatthias Ringwald         total_service_count = maximumServiceRecordCount;
211746ccb7eSMatthias Ringwald     }
212746ccb7eSMatthias Ringwald 
213746ccb7eSMatthias Ringwald     // ServiceRecordHandleList at 9
214746ccb7eSMatthias Ringwald     uint16_t pos = 9;
215746ccb7eSMatthias Ringwald     uint16_t current_service_count  = 0;
216746ccb7eSMatthias Ringwald     uint16_t current_service_index  = 0;
217746ccb7eSMatthias Ringwald     uint16_t matching_service_count = 0;
218746ccb7eSMatthias Ringwald     for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next, ++current_service_index){
219746ccb7eSMatthias Ringwald         service_record_item_t * item = (service_record_item_t *) it;
220746ccb7eSMatthias Ringwald 
221746ccb7eSMatthias Ringwald         if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue;
222746ccb7eSMatthias Ringwald         matching_service_count++;
223746ccb7eSMatthias Ringwald 
224746ccb7eSMatthias Ringwald         if (current_service_index < continuation_index) continue;
225746ccb7eSMatthias Ringwald 
226746ccb7eSMatthias Ringwald         big_endian_store_32(sdp_response_buffer, pos, item->service_record_handle);
227746ccb7eSMatthias Ringwald         pos += 4;
228746ccb7eSMatthias Ringwald         current_service_count++;
229746ccb7eSMatthias Ringwald 
230746ccb7eSMatthias Ringwald         if (matching_service_count >= total_service_count) break;
231746ccb7eSMatthias Ringwald 
232746ccb7eSMatthias Ringwald         if (current_service_count >= maxNrServiceRecordsPerResponse){
233746ccb7eSMatthias Ringwald             continuation = 1;
234746ccb7eSMatthias Ringwald             continuation_index = current_service_index + 1;
235746ccb7eSMatthias Ringwald             break;
236746ccb7eSMatthias Ringwald         }
237746ccb7eSMatthias Ringwald     }
238746ccb7eSMatthias Ringwald 
239746ccb7eSMatthias Ringwald     // Store continuation state
240746ccb7eSMatthias Ringwald     if (continuation) {
241746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 2;
242746ccb7eSMatthias Ringwald         big_endian_store_16(sdp_response_buffer, pos, continuation_index);
243746ccb7eSMatthias Ringwald         pos += 2;
244746ccb7eSMatthias Ringwald     } else {
245746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 0;
246746ccb7eSMatthias Ringwald     }
247746ccb7eSMatthias Ringwald 
248746ccb7eSMatthias Ringwald     // header
249746ccb7eSMatthias Ringwald     sdp_response_buffer[0] = SDP_ServiceSearchResponse;
250746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 1, transaction_id);
251746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 3, pos - 5); // size of variable payload
252746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 5, total_service_count);
253746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 7, current_service_count);
254746ccb7eSMatthias Ringwald 
255746ccb7eSMatthias Ringwald     return pos;
256746ccb7eSMatthias Ringwald }
257746ccb7eSMatthias Ringwald 
258746ccb7eSMatthias Ringwald int sdp_handle_service_attribute_request(uint8_t * packet, uint16_t remote_mtu){
259746ccb7eSMatthias Ringwald 
260746ccb7eSMatthias Ringwald     // get request details
261746ccb7eSMatthias Ringwald     uint16_t  transaction_id = big_endian_read_16(packet, 1);
2624443af49SMatthias Ringwald     uint16_t  param_len = big_endian_read_16(packet, 3);
2634443af49SMatthias Ringwald     // assert serviceRecordHandle and maximumAttributeByteCount are in param_len
2644443af49SMatthias Ringwald     if (param_len < 6) return 0;
265c9b8fdd9SMatthias Ringwald     uint32_t  serviceRecordHandle = big_endian_read_32(packet, 5);
266746ccb7eSMatthias Ringwald     uint16_t  maximumAttributeByteCount = big_endian_read_16(packet, 9);
2674443af49SMatthias Ringwald     param_len -= 6;
268746ccb7eSMatthias Ringwald     uint8_t * attributeIDList = &packet[11];
2694443af49SMatthias Ringwald     uint16_t  attributeIDListLen = de_get_len_safe(attributeIDList, param_len);
2704443af49SMatthias Ringwald     // assert attributeIDList are in param_len
2714443af49SMatthias Ringwald     if (!attributeIDListLen) return 0;
2724443af49SMatthias Ringwald     param_len -= attributeIDListLen;
2734443af49SMatthias Ringwald     // assert continuation state len is contained in param_len
2744443af49SMatthias Ringwald     if (param_len < 1) return 0;
275746ccb7eSMatthias Ringwald     uint8_t * continuationState = &packet[11+attributeIDListLen];
2764443af49SMatthias Ringwald     // assert continuation state is contained in param_len
2774443af49SMatthias Ringwald     if (1 + continuationState[0] > param_len) return 0;
278746ccb7eSMatthias Ringwald 
279746ccb7eSMatthias Ringwald     // calc maximumAttributeByteCount based on remote MTU
280746ccb7eSMatthias Ringwald     uint16_t maximumAttributeByteCount2 = remote_mtu - (7+3);
281746ccb7eSMatthias Ringwald     if (maximumAttributeByteCount2 < maximumAttributeByteCount) {
282746ccb7eSMatthias Ringwald         maximumAttributeByteCount = maximumAttributeByteCount2;
283746ccb7eSMatthias Ringwald     }
284746ccb7eSMatthias Ringwald 
285746ccb7eSMatthias Ringwald     // continuation state contains the offset into the complete response
286746ccb7eSMatthias Ringwald     uint16_t continuation_offset = 0;
287746ccb7eSMatthias Ringwald     if (continuationState[0] == 2){
288746ccb7eSMatthias Ringwald         continuation_offset = big_endian_read_16(continuationState, 1);
289746ccb7eSMatthias Ringwald     }
290746ccb7eSMatthias Ringwald 
291746ccb7eSMatthias Ringwald     // get service record
292746ccb7eSMatthias Ringwald     service_record_item_t * item = sdp_get_record_item_for_handle(serviceRecordHandle);
293746ccb7eSMatthias Ringwald     if (!item){
294746ccb7eSMatthias Ringwald         // service record handle doesn't exist
295746ccb7eSMatthias Ringwald         return sdp_create_error_response(transaction_id, 0x0002); /// invalid Service Record Handle
296746ccb7eSMatthias Ringwald     }
297746ccb7eSMatthias Ringwald 
298746ccb7eSMatthias Ringwald 
299746ccb7eSMatthias Ringwald     // AttributeList - starts at offset 7
300746ccb7eSMatthias Ringwald     uint16_t pos = 7;
301746ccb7eSMatthias Ringwald 
302746ccb7eSMatthias Ringwald     if (continuation_offset == 0){
303746ccb7eSMatthias Ringwald 
304746ccb7eSMatthias Ringwald         // get size of this record
305746ccb7eSMatthias Ringwald         uint16_t filtered_attributes_size = spd_get_filtered_size(item->service_record, attributeIDList);
306746ccb7eSMatthias Ringwald 
307746ccb7eSMatthias Ringwald         // store DES
308746ccb7eSMatthias Ringwald         de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, filtered_attributes_size);
309746ccb7eSMatthias Ringwald         maximumAttributeByteCount -= 3;
310746ccb7eSMatthias Ringwald         pos += 3;
311746ccb7eSMatthias Ringwald     }
312746ccb7eSMatthias Ringwald 
313746ccb7eSMatthias Ringwald     // copy maximumAttributeByteCount from record
314746ccb7eSMatthias Ringwald     uint16_t bytes_used;
315746ccb7eSMatthias Ringwald     int complete = sdp_filter_attributes_in_attributeIDList(item->service_record, attributeIDList, continuation_offset, maximumAttributeByteCount, &bytes_used, &sdp_response_buffer[pos]);
316746ccb7eSMatthias Ringwald     pos += bytes_used;
317746ccb7eSMatthias Ringwald 
318746ccb7eSMatthias Ringwald     uint16_t attributeListByteCount = pos - 7;
319746ccb7eSMatthias Ringwald 
320746ccb7eSMatthias Ringwald     if (complete) {
321746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 0;
322746ccb7eSMatthias Ringwald     } else {
323746ccb7eSMatthias Ringwald         continuation_offset += bytes_used;
324746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 2;
325746ccb7eSMatthias Ringwald         big_endian_store_16(sdp_response_buffer, pos, continuation_offset);
326746ccb7eSMatthias Ringwald         pos += 2;
327746ccb7eSMatthias Ringwald     }
328746ccb7eSMatthias Ringwald 
329746ccb7eSMatthias Ringwald     // header
330746ccb7eSMatthias Ringwald     sdp_response_buffer[0] = SDP_ServiceAttributeResponse;
331746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 1, transaction_id);
332746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 3, pos - 5);  // size of variable payload
333746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 5, attributeListByteCount);
334746ccb7eSMatthias Ringwald 
335746ccb7eSMatthias Ringwald     return pos;
336746ccb7eSMatthias Ringwald }
337746ccb7eSMatthias Ringwald 
338746ccb7eSMatthias Ringwald static uint16_t sdp_get_size_for_service_search_attribute_response(uint8_t * serviceSearchPattern, uint8_t * attributeIDList){
339746ccb7eSMatthias Ringwald     uint16_t total_response_size = 0;
340746ccb7eSMatthias Ringwald     btstack_linked_item_t *it;
341746ccb7eSMatthias Ringwald     for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){
342746ccb7eSMatthias Ringwald         service_record_item_t * item = (service_record_item_t *) it;
343746ccb7eSMatthias Ringwald 
344746ccb7eSMatthias Ringwald         if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue;
345746ccb7eSMatthias Ringwald 
346746ccb7eSMatthias Ringwald         // for all service records that match
347746ccb7eSMatthias Ringwald         total_response_size += 3 + spd_get_filtered_size(item->service_record, attributeIDList);
348746ccb7eSMatthias Ringwald     }
349746ccb7eSMatthias Ringwald     return total_response_size;
350746ccb7eSMatthias Ringwald }
351746ccb7eSMatthias Ringwald 
352746ccb7eSMatthias Ringwald int sdp_handle_service_search_attribute_request(uint8_t * packet, uint16_t remote_mtu){
353746ccb7eSMatthias Ringwald 
354746ccb7eSMatthias Ringwald     // SDP header before attribute sevice list: 7
355746ccb7eSMatthias Ringwald     // Continuation, worst case: 5
356746ccb7eSMatthias Ringwald 
357746ccb7eSMatthias Ringwald     // get request details
358746ccb7eSMatthias Ringwald     uint16_t  transaction_id = big_endian_read_16(packet, 1);
3594443af49SMatthias Ringwald     uint16_t  param_len = big_endian_read_16(packet, 3);
360746ccb7eSMatthias Ringwald     uint8_t * serviceSearchPattern = &packet[5];
3614443af49SMatthias Ringwald     uint16_t  serviceSearchPatternLen = de_get_len_safe(serviceSearchPattern, param_len);
3624443af49SMatthias Ringwald     // assert serviceSearchPattern header is contained in param_len
3634443af49SMatthias Ringwald     if (!serviceSearchPatternLen) return 0;
3644443af49SMatthias Ringwald     param_len -= serviceSearchPatternLen;
3654443af49SMatthias Ringwald     // assert maximumAttributeByteCount contained in param_len
3664443af49SMatthias Ringwald     if (param_len < 2) return 0;
367746ccb7eSMatthias Ringwald     uint16_t  maximumAttributeByteCount = big_endian_read_16(packet, 5 + serviceSearchPatternLen);
3684443af49SMatthias Ringwald     param_len -= 2;
369746ccb7eSMatthias Ringwald     uint8_t * attributeIDList = &packet[5+serviceSearchPatternLen+2];
3704443af49SMatthias Ringwald     uint16_t  attributeIDListLen = de_get_len_safe(attributeIDList, param_len);
3714443af49SMatthias Ringwald     // assert attributeIDList is contained in param_len
3724443af49SMatthias Ringwald     if (!attributeIDListLen) return 0;
3734443af49SMatthias Ringwald     // assert continuation state len is contained in param_len
3744443af49SMatthias Ringwald     if (param_len < 1) return 0;
375746ccb7eSMatthias Ringwald     uint8_t * continuationState = &packet[5+serviceSearchPatternLen+2+attributeIDListLen];
3764443af49SMatthias Ringwald     // assert continuation state is contained in param_len
3774443af49SMatthias Ringwald     if (1 + continuationState[0] > param_len) return 0;
378746ccb7eSMatthias Ringwald 
379746ccb7eSMatthias Ringwald     // calc maximumAttributeByteCount based on remote MTU, SDP header and reserved Continuation block
380746ccb7eSMatthias Ringwald     uint16_t maximumAttributeByteCount2 = remote_mtu - 12;
381746ccb7eSMatthias Ringwald     if (maximumAttributeByteCount2 < maximumAttributeByteCount) {
382746ccb7eSMatthias Ringwald         maximumAttributeByteCount = maximumAttributeByteCount2;
383746ccb7eSMatthias Ringwald     }
384746ccb7eSMatthias Ringwald 
385746ccb7eSMatthias Ringwald     // continuation state contains: index of next service record to examine
386746ccb7eSMatthias Ringwald     // continuation state contains: byte offset into this service record
387746ccb7eSMatthias Ringwald     uint16_t continuation_service_index = 0;
388746ccb7eSMatthias Ringwald     uint16_t continuation_offset = 0;
389746ccb7eSMatthias Ringwald     if (continuationState[0] == 4){
390746ccb7eSMatthias Ringwald         continuation_service_index = big_endian_read_16(continuationState, 1);
391746ccb7eSMatthias Ringwald         continuation_offset = big_endian_read_16(continuationState, 3);
392746ccb7eSMatthias Ringwald     }
393746ccb7eSMatthias Ringwald 
394746ccb7eSMatthias Ringwald     // log_info("--> sdp_handle_service_search_attribute_request, cont %u/%u, max %u", continuation_service_index, continuation_offset, maximumAttributeByteCount);
395746ccb7eSMatthias Ringwald 
396746ccb7eSMatthias Ringwald     // AttributeLists - starts at offset 7
397746ccb7eSMatthias Ringwald     uint16_t pos = 7;
398746ccb7eSMatthias Ringwald 
399746ccb7eSMatthias Ringwald     // add DES with total size for first request
400746ccb7eSMatthias Ringwald     if (continuation_service_index == 0 && continuation_offset == 0){
401746ccb7eSMatthias Ringwald         uint16_t total_response_size = sdp_get_size_for_service_search_attribute_response(serviceSearchPattern, attributeIDList);
402746ccb7eSMatthias Ringwald         de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, total_response_size);
403746ccb7eSMatthias Ringwald         // log_info("total response size %u", total_response_size);
404746ccb7eSMatthias Ringwald         pos += 3;
405746ccb7eSMatthias Ringwald         maximumAttributeByteCount -= 3;
406746ccb7eSMatthias Ringwald     }
407746ccb7eSMatthias Ringwald 
408746ccb7eSMatthias Ringwald     // create attribute list
409746ccb7eSMatthias Ringwald     int      first_answer = 1;
410746ccb7eSMatthias Ringwald     int      continuation = 0;
411746ccb7eSMatthias Ringwald     uint16_t current_service_index = 0;
412746ccb7eSMatthias Ringwald     btstack_linked_item_t *it = (btstack_linked_item_t *) sdp_service_records;
413746ccb7eSMatthias Ringwald     for ( ; it ; it = it->next, ++current_service_index){
414746ccb7eSMatthias Ringwald         service_record_item_t * item = (service_record_item_t *) it;
415746ccb7eSMatthias Ringwald 
416746ccb7eSMatthias Ringwald         if (current_service_index < continuation_service_index ) continue;
417746ccb7eSMatthias Ringwald         if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue;
418746ccb7eSMatthias Ringwald 
419746ccb7eSMatthias Ringwald         if (continuation_offset == 0){
420746ccb7eSMatthias Ringwald 
421746ccb7eSMatthias Ringwald             // get size of this record
422746ccb7eSMatthias Ringwald             uint16_t filtered_attributes_size = spd_get_filtered_size(item->service_record, attributeIDList);
423746ccb7eSMatthias Ringwald 
424746ccb7eSMatthias Ringwald             // stop if complete record doesn't fits into response but we already have a partial response
425746ccb7eSMatthias Ringwald             if ((filtered_attributes_size + 3 > maximumAttributeByteCount) && !first_answer) {
426746ccb7eSMatthias Ringwald                 continuation = 1;
427746ccb7eSMatthias Ringwald                 break;
428746ccb7eSMatthias Ringwald             }
429746ccb7eSMatthias Ringwald 
430746ccb7eSMatthias Ringwald             // store DES
431746ccb7eSMatthias Ringwald             de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, filtered_attributes_size);
432746ccb7eSMatthias Ringwald             pos += 3;
433746ccb7eSMatthias Ringwald             maximumAttributeByteCount -= 3;
434746ccb7eSMatthias Ringwald         }
435746ccb7eSMatthias Ringwald 
436746ccb7eSMatthias Ringwald         first_answer = 0;
437746ccb7eSMatthias Ringwald 
438746ccb7eSMatthias Ringwald         // copy maximumAttributeByteCount from record
439746ccb7eSMatthias Ringwald         uint16_t bytes_used;
440746ccb7eSMatthias Ringwald         int complete = sdp_filter_attributes_in_attributeIDList(item->service_record, attributeIDList, continuation_offset, maximumAttributeByteCount, &bytes_used, &sdp_response_buffer[pos]);
441746ccb7eSMatthias Ringwald         pos += bytes_used;
442746ccb7eSMatthias Ringwald         maximumAttributeByteCount -= bytes_used;
443746ccb7eSMatthias Ringwald 
444746ccb7eSMatthias Ringwald         if (complete) {
445746ccb7eSMatthias Ringwald             continuation_offset = 0;
446746ccb7eSMatthias Ringwald             continue;
447746ccb7eSMatthias Ringwald         }
448746ccb7eSMatthias Ringwald 
449746ccb7eSMatthias Ringwald         continuation = 1;
450746ccb7eSMatthias Ringwald         continuation_offset += bytes_used;
451746ccb7eSMatthias Ringwald         break;
452746ccb7eSMatthias Ringwald     }
453746ccb7eSMatthias Ringwald 
454746ccb7eSMatthias Ringwald     uint16_t attributeListsByteCount = pos - 7;
455746ccb7eSMatthias Ringwald 
456746ccb7eSMatthias Ringwald     // Continuation State
457746ccb7eSMatthias Ringwald     if (continuation){
458746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 4;
459746ccb7eSMatthias Ringwald         big_endian_store_16(sdp_response_buffer, pos, (uint16_t) current_service_index);
460746ccb7eSMatthias Ringwald         pos += 2;
461746ccb7eSMatthias Ringwald         big_endian_store_16(sdp_response_buffer, pos, continuation_offset);
462746ccb7eSMatthias Ringwald         pos += 2;
463746ccb7eSMatthias Ringwald     } else {
464746ccb7eSMatthias Ringwald         // complete
465746ccb7eSMatthias Ringwald         sdp_response_buffer[pos++] = 0;
466746ccb7eSMatthias Ringwald     }
467746ccb7eSMatthias Ringwald 
468746ccb7eSMatthias Ringwald     // create SDP header
469746ccb7eSMatthias Ringwald     sdp_response_buffer[0] = SDP_ServiceSearchAttributeResponse;
470746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 1, transaction_id);
471746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 3, pos - 5);  // size of variable payload
472746ccb7eSMatthias Ringwald     big_endian_store_16(sdp_response_buffer, 5, attributeListsByteCount);
473746ccb7eSMatthias Ringwald 
474746ccb7eSMatthias Ringwald     return pos;
475746ccb7eSMatthias Ringwald }
476746ccb7eSMatthias Ringwald 
477aed68c56SMatthias Ringwald static void sdp_respond(void){
478746ccb7eSMatthias Ringwald     if (!sdp_response_size ) return;
479746ccb7eSMatthias Ringwald     if (!l2cap_cid) return;
480746ccb7eSMatthias Ringwald 
481746ccb7eSMatthias Ringwald     // update state before sending packet (avoid getting called when new l2cap credit gets emitted)
482746ccb7eSMatthias Ringwald     uint16_t size = sdp_response_size;
483746ccb7eSMatthias Ringwald     sdp_response_size = 0;
484746ccb7eSMatthias Ringwald     l2cap_send(l2cap_cid, sdp_response_buffer, size);
485746ccb7eSMatthias Ringwald }
486746ccb7eSMatthias Ringwald 
487746ccb7eSMatthias Ringwald // we assume that we don't get two requests in a row
488746ccb7eSMatthias Ringwald static void sdp_packet_handler(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){
489746ccb7eSMatthias Ringwald 	uint16_t transaction_id;
490746ccb7eSMatthias Ringwald     SDP_PDU_ID_t pdu_id;
491746ccb7eSMatthias Ringwald     uint16_t remote_mtu;
4924443af49SMatthias Ringwald     uint16_t param_len;
493746ccb7eSMatthias Ringwald 
494746ccb7eSMatthias Ringwald 	switch (packet_type) {
495746ccb7eSMatthias Ringwald 
496746ccb7eSMatthias Ringwald 		case L2CAP_DATA_PACKET:
497746ccb7eSMatthias Ringwald             pdu_id = (SDP_PDU_ID_t) packet[0];
498746ccb7eSMatthias Ringwald             transaction_id = big_endian_read_16(packet, 1);
4994443af49SMatthias Ringwald             param_len = big_endian_read_16(packet, 3);
500746ccb7eSMatthias Ringwald             remote_mtu = l2cap_get_remote_mtu_for_local_cid(channel);
501746ccb7eSMatthias Ringwald             // account for our buffer
502746ccb7eSMatthias Ringwald             if (remote_mtu > SDP_RESPONSE_BUFFER_SIZE){
503746ccb7eSMatthias Ringwald                 remote_mtu = SDP_RESPONSE_BUFFER_SIZE;
504746ccb7eSMatthias Ringwald             }
5054443af49SMatthias Ringwald             // validate parm_len against packet size
5064443af49SMatthias Ringwald             if (param_len + 5 > size) {
5074443af49SMatthias Ringwald                 // just clear pdu_id
5084443af49SMatthias Ringwald                 pdu_id = SDP_ErrorResponse;
5094443af49SMatthias Ringwald             }
510746ccb7eSMatthias Ringwald 
511746ccb7eSMatthias Ringwald             // log_info("SDP Request: type %u, transaction id %u, len %u, mtu %u", pdu_id, transaction_id, param_len, remote_mtu);
512746ccb7eSMatthias Ringwald             switch (pdu_id){
513746ccb7eSMatthias Ringwald 
514746ccb7eSMatthias Ringwald                 case SDP_ServiceSearchRequest:
515746ccb7eSMatthias Ringwald                     sdp_response_size = sdp_handle_service_search_request(packet, remote_mtu);
516746ccb7eSMatthias Ringwald                     break;
517746ccb7eSMatthias Ringwald 
518746ccb7eSMatthias Ringwald                 case SDP_ServiceAttributeRequest:
519746ccb7eSMatthias Ringwald                     sdp_response_size = sdp_handle_service_attribute_request(packet, remote_mtu);
520746ccb7eSMatthias Ringwald                     break;
521746ccb7eSMatthias Ringwald 
522746ccb7eSMatthias Ringwald                 case SDP_ServiceSearchAttributeRequest:
523746ccb7eSMatthias Ringwald                     sdp_response_size = sdp_handle_service_search_attribute_request(packet, remote_mtu);
524746ccb7eSMatthias Ringwald                     break;
525746ccb7eSMatthias Ringwald 
526746ccb7eSMatthias Ringwald                 default:
527746ccb7eSMatthias Ringwald                     sdp_response_size = sdp_create_error_response(transaction_id, 0x0003); // invalid syntax
528746ccb7eSMatthias Ringwald                     break;
529746ccb7eSMatthias Ringwald             }
530aed68c56SMatthias Ringwald             if (!sdp_response_size) break;
531a145b392SMatthias Ringwald             l2cap_request_can_send_now_event(l2cap_cid);
532746ccb7eSMatthias Ringwald 			break;
533746ccb7eSMatthias Ringwald 
534746ccb7eSMatthias Ringwald 		case HCI_EVENT_PACKET:
535746ccb7eSMatthias Ringwald 
5360e2df43fSMatthias Ringwald 			switch (hci_event_packet_get_type(packet)) {
537746ccb7eSMatthias Ringwald 
538746ccb7eSMatthias Ringwald 				case L2CAP_EVENT_INCOMING_CONNECTION:
539746ccb7eSMatthias Ringwald                     if (l2cap_cid) {
540746ccb7eSMatthias Ringwald                         // CONNECTION REJECTED DUE TO LIMITED RESOURCES
5417ef6a7bbSMatthias Ringwald                         l2cap_decline_connection(channel);
542746ccb7eSMatthias Ringwald                         break;
543746ccb7eSMatthias Ringwald                     }
544746ccb7eSMatthias Ringwald                     // accept
545746ccb7eSMatthias Ringwald                     l2cap_cid = channel;
546746ccb7eSMatthias Ringwald                     sdp_response_size = 0;
547746ccb7eSMatthias Ringwald                     l2cap_accept_connection(channel);
548746ccb7eSMatthias Ringwald 					break;
549746ccb7eSMatthias Ringwald 
550746ccb7eSMatthias Ringwald                 case L2CAP_EVENT_CHANNEL_OPENED:
551746ccb7eSMatthias Ringwald                     if (packet[2]) {
552746ccb7eSMatthias Ringwald                         // open failed -> reset
553746ccb7eSMatthias Ringwald                         l2cap_cid = 0;
554746ccb7eSMatthias Ringwald                     }
555746ccb7eSMatthias Ringwald                     break;
556746ccb7eSMatthias Ringwald 
557746ccb7eSMatthias Ringwald                 case L2CAP_EVENT_CAN_SEND_NOW:
558aed68c56SMatthias Ringwald                     sdp_respond();
559746ccb7eSMatthias Ringwald                     break;
560746ccb7eSMatthias Ringwald 
561746ccb7eSMatthias Ringwald                 case L2CAP_EVENT_CHANNEL_CLOSED:
562746ccb7eSMatthias Ringwald                     if (channel == l2cap_cid){
563746ccb7eSMatthias Ringwald                         // reset
564746ccb7eSMatthias Ringwald                         l2cap_cid = 0;
565746ccb7eSMatthias Ringwald                     }
566746ccb7eSMatthias Ringwald                     break;
567746ccb7eSMatthias Ringwald 
568746ccb7eSMatthias Ringwald 				default:
569746ccb7eSMatthias Ringwald 					// other event
570746ccb7eSMatthias Ringwald 					break;
571746ccb7eSMatthias Ringwald 			}
572746ccb7eSMatthias Ringwald 			break;
573746ccb7eSMatthias Ringwald 
574746ccb7eSMatthias Ringwald 		default:
575746ccb7eSMatthias Ringwald 			// other packet type
576746ccb7eSMatthias Ringwald 			break;
577746ccb7eSMatthias Ringwald 	}
578746ccb7eSMatthias Ringwald }
579746ccb7eSMatthias Ringwald 
580