1746ccb7eSMatthias Ringwald /* 2746ccb7eSMatthias Ringwald * Copyright (C) 2014 BlueKitchen GmbH 3746ccb7eSMatthias Ringwald * 4746ccb7eSMatthias Ringwald * Redistribution and use in source and binary forms, with or without 5746ccb7eSMatthias Ringwald * modification, are permitted provided that the following conditions 6746ccb7eSMatthias Ringwald * are met: 7746ccb7eSMatthias Ringwald * 8746ccb7eSMatthias Ringwald * 1. Redistributions of source code must retain the above copyright 9746ccb7eSMatthias Ringwald * notice, this list of conditions and the following disclaimer. 10746ccb7eSMatthias Ringwald * 2. Redistributions in binary form must reproduce the above copyright 11746ccb7eSMatthias Ringwald * notice, this list of conditions and the following disclaimer in the 12746ccb7eSMatthias Ringwald * documentation and/or other materials provided with the distribution. 13746ccb7eSMatthias Ringwald * 3. Neither the name of the copyright holders nor the names of 14746ccb7eSMatthias Ringwald * contributors may be used to endorse or promote products derived 15746ccb7eSMatthias Ringwald * from this software without specific prior written permission. 16746ccb7eSMatthias Ringwald * 4. Any redistribution, use, or modification is done solely for 17746ccb7eSMatthias Ringwald * personal benefit and not for any commercial purpose or for 18746ccb7eSMatthias Ringwald * monetary gain. 19746ccb7eSMatthias Ringwald * 20746ccb7eSMatthias Ringwald * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS 21746ccb7eSMatthias Ringwald * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 22746ccb7eSMatthias Ringwald * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 23746ccb7eSMatthias Ringwald * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS 24746ccb7eSMatthias Ringwald * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 25746ccb7eSMatthias Ringwald * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 26746ccb7eSMatthias Ringwald * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS 27746ccb7eSMatthias Ringwald * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED 28746ccb7eSMatthias Ringwald * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 29746ccb7eSMatthias Ringwald * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 30746ccb7eSMatthias Ringwald * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 31746ccb7eSMatthias Ringwald * SUCH DAMAGE. 32746ccb7eSMatthias Ringwald * 33746ccb7eSMatthias Ringwald * Please inquire about commercial licensing options at 34746ccb7eSMatthias Ringwald * [email protected] 35746ccb7eSMatthias Ringwald * 36746ccb7eSMatthias Ringwald */ 37746ccb7eSMatthias Ringwald 38e501bae0SMatthias Ringwald #define BTSTACK_FILE__ "sdp_server.c" 39ab2c6ae4SMatthias Ringwald 40746ccb7eSMatthias Ringwald /* 41746ccb7eSMatthias Ringwald * Implementation of the Service Discovery Protocol Server 42746ccb7eSMatthias Ringwald */ 43746ccb7eSMatthias Ringwald 44746ccb7eSMatthias Ringwald #include <stdio.h> 45746ccb7eSMatthias Ringwald #include <string.h> 46746ccb7eSMatthias Ringwald 4703751aa7SMatthias Ringwald #include "bluetooth.h" 4884e3541eSMilanka Ringwald #include "bluetooth_psm.h" 49235946f1SMatthias Ringwald #include "bluetooth_sdp.h" 50746ccb7eSMatthias Ringwald #include "btstack_debug.h" 510e2df43fSMatthias Ringwald #include "btstack_event.h" 5259c6af15SMatthias Ringwald #include "btstack_memory.h" 5359c6af15SMatthias Ringwald #include "classic/core.h" 54746ccb7eSMatthias Ringwald #include "classic/sdp_server.h" 55746ccb7eSMatthias Ringwald #include "classic/sdp_util.h" 5603751aa7SMatthias Ringwald #include "hci.h" 5784e3541eSMilanka Ringwald #include "hci_dump.h" 5859c6af15SMatthias Ringwald #include "l2cap.h" 59746ccb7eSMatthias Ringwald 607616f654SMatthias Ringwald // max number of incoming l2cap connections that can be queued instead of getting rejected 617616f654SMatthias Ringwald #ifndef SDP_WAITING_LIST_MAX_COUNT 627616f654SMatthias Ringwald #define SDP_WAITING_LIST_MAX_COUNT 8 637616f654SMatthias Ringwald #endif 647616f654SMatthias Ringwald 65746ccb7eSMatthias Ringwald // max reserved ServiceRecordHandle 66746ccb7eSMatthias Ringwald #define maxReservedServiceRecordHandle 0xffff 67746ccb7eSMatthias Ringwald 68746ccb7eSMatthias Ringwald // max SDP response matches L2CAP PDU -- allow to use smaller buffer 69746ccb7eSMatthias Ringwald #ifndef SDP_RESPONSE_BUFFER_SIZE 7003751aa7SMatthias Ringwald #define SDP_RESPONSE_BUFFER_SIZE (HCI_ACL_PAYLOAD_SIZE-L2CAP_HEADER_SIZE) 71746ccb7eSMatthias Ringwald #endif 72746ccb7eSMatthias Ringwald 73746ccb7eSMatthias Ringwald static void sdp_packet_handler(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size); 74746ccb7eSMatthias Ringwald 75746ccb7eSMatthias Ringwald // registered service records 76746ccb7eSMatthias Ringwald static btstack_linked_list_t sdp_service_records = NULL; 77746ccb7eSMatthias Ringwald 78746ccb7eSMatthias Ringwald // our handles start after the reserved range 79746ccb7eSMatthias Ringwald static uint32_t sdp_next_service_record_handle = ((uint32_t) maxReservedServiceRecordHandle) + 2; 80746ccb7eSMatthias Ringwald 81746ccb7eSMatthias Ringwald static uint8_t sdp_response_buffer[SDP_RESPONSE_BUFFER_SIZE]; 82746ccb7eSMatthias Ringwald 83746ccb7eSMatthias Ringwald static uint16_t l2cap_cid = 0; 84746ccb7eSMatthias Ringwald static uint16_t sdp_response_size = 0; 857616f654SMatthias Ringwald static uint16_t l2cap_waiting_list_cids[SDP_WAITING_LIST_MAX_COUNT]; 867616f654SMatthias Ringwald static int l2cap_waiting_list_count; 87746ccb7eSMatthias Ringwald 88746ccb7eSMatthias Ringwald void sdp_init(void){ 89746ccb7eSMatthias Ringwald // register with l2cap psm sevices - max MTU 9084e3541eSMilanka Ringwald l2cap_register_service(sdp_packet_handler, BLUETOOTH_PSM_SDP, 0xffff, LEVEL_0); 917616f654SMatthias Ringwald l2cap_waiting_list_count = 0; 92746ccb7eSMatthias Ringwald } 93746ccb7eSMatthias Ringwald 94746ccb7eSMatthias Ringwald uint32_t sdp_get_service_record_handle(const uint8_t * record){ 95746ccb7eSMatthias Ringwald // TODO: make sdp_get_attribute_value_for_attribute_id accept const data to remove cast 96235946f1SMatthias Ringwald uint8_t * serviceRecordHandleAttribute = sdp_get_attribute_value_for_attribute_id((uint8_t *)record, BLUETOOTH_ATTRIBUTE_SERVICE_RECORD_HANDLE); 97746ccb7eSMatthias Ringwald if (!serviceRecordHandleAttribute) return 0; 98746ccb7eSMatthias Ringwald if (de_get_element_type(serviceRecordHandleAttribute) != DE_UINT) return 0; 99746ccb7eSMatthias Ringwald if (de_get_size_type(serviceRecordHandleAttribute) != DE_SIZE_32) return 0; 100c9b8fdd9SMatthias Ringwald return big_endian_read_32(serviceRecordHandleAttribute, 1); 101746ccb7eSMatthias Ringwald } 102746ccb7eSMatthias Ringwald 103746ccb7eSMatthias Ringwald static service_record_item_t * sdp_get_record_item_for_handle(uint32_t handle){ 104746ccb7eSMatthias Ringwald btstack_linked_item_t *it; 105746ccb7eSMatthias Ringwald for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){ 106746ccb7eSMatthias Ringwald service_record_item_t * item = (service_record_item_t *) it; 107746ccb7eSMatthias Ringwald if (item->service_record_handle == handle){ 108746ccb7eSMatthias Ringwald return item; 109746ccb7eSMatthias Ringwald } 110746ccb7eSMatthias Ringwald } 111746ccb7eSMatthias Ringwald return NULL; 112746ccb7eSMatthias Ringwald } 113746ccb7eSMatthias Ringwald 114746ccb7eSMatthias Ringwald uint8_t * sdp_get_record_for_handle(uint32_t handle){ 115746ccb7eSMatthias Ringwald service_record_item_t * record_item = sdp_get_record_item_for_handle(handle); 116746ccb7eSMatthias Ringwald if (!record_item) return 0; 117746ccb7eSMatthias Ringwald return record_item->service_record; 118746ccb7eSMatthias Ringwald } 119746ccb7eSMatthias Ringwald 120746ccb7eSMatthias Ringwald // get next free, unregistered service record handle 121746ccb7eSMatthias Ringwald uint32_t sdp_create_service_record_handle(void){ 122746ccb7eSMatthias Ringwald uint32_t handle = 0; 123746ccb7eSMatthias Ringwald do { 124746ccb7eSMatthias Ringwald handle = sdp_next_service_record_handle++; 125746ccb7eSMatthias Ringwald if (sdp_get_record_item_for_handle(handle)) handle = 0; 126746ccb7eSMatthias Ringwald } while (handle == 0); 127746ccb7eSMatthias Ringwald return handle; 128746ccb7eSMatthias Ringwald } 129746ccb7eSMatthias Ringwald 130746ccb7eSMatthias Ringwald /** 131746ccb7eSMatthias Ringwald * @brief Register Service Record with database using ServiceRecordHandle stored in record 132746ccb7eSMatthias Ringwald * @pre AttributeIDs are in ascending order 133746ccb7eSMatthias Ringwald * @pre ServiceRecordHandle is first attribute and valid 134746ccb7eSMatthias Ringwald * @param record is not copied! 135746ccb7eSMatthias Ringwald * @result status 136746ccb7eSMatthias Ringwald */ 137746ccb7eSMatthias Ringwald uint8_t sdp_register_service(const uint8_t * record){ 138746ccb7eSMatthias Ringwald 139746ccb7eSMatthias Ringwald // validate service record handle. it must: exist, be in valid range, not have been already used 140746ccb7eSMatthias Ringwald uint32_t record_handle = sdp_get_service_record_handle(record); 141746ccb7eSMatthias Ringwald if (!record_handle) return SDP_HANDLE_INVALID; 142746ccb7eSMatthias Ringwald if (record_handle <= maxReservedServiceRecordHandle) return SDP_HANDLE_INVALID; 143746ccb7eSMatthias Ringwald if (sdp_get_record_item_for_handle(record_handle)) return SDP_HANDLE_ALREADY_REGISTERED; 144746ccb7eSMatthias Ringwald 145746ccb7eSMatthias Ringwald // alloc memory for new service_record_item 146746ccb7eSMatthias Ringwald service_record_item_t * newRecordItem = btstack_memory_service_record_item_get(); 147746ccb7eSMatthias Ringwald if (!newRecordItem) return BTSTACK_MEMORY_ALLOC_FAILED; 148746ccb7eSMatthias Ringwald 149746ccb7eSMatthias Ringwald // set handle and record 150746ccb7eSMatthias Ringwald newRecordItem->service_record_handle = record_handle; 151746ccb7eSMatthias Ringwald newRecordItem->service_record = (uint8_t*) record; 152746ccb7eSMatthias Ringwald 153746ccb7eSMatthias Ringwald // add to linked list 154746ccb7eSMatthias Ringwald btstack_linked_list_add(&sdp_service_records, (btstack_linked_item_t *) newRecordItem); 155746ccb7eSMatthias Ringwald 156746ccb7eSMatthias Ringwald return 0; 157746ccb7eSMatthias Ringwald } 158746ccb7eSMatthias Ringwald 159746ccb7eSMatthias Ringwald // 160746ccb7eSMatthias Ringwald // unregister service record 161746ccb7eSMatthias Ringwald // 162746ccb7eSMatthias Ringwald void sdp_unregister_service(uint32_t service_record_handle){ 163746ccb7eSMatthias Ringwald service_record_item_t * record_item = sdp_get_record_item_for_handle(service_record_handle); 164746ccb7eSMatthias Ringwald if (!record_item) return; 165746ccb7eSMatthias Ringwald btstack_linked_list_remove(&sdp_service_records, (btstack_linked_item_t *) record_item); 166c0a6fc5dSMatthias Ringwald btstack_memory_service_record_item_free(record_item); 167746ccb7eSMatthias Ringwald } 168746ccb7eSMatthias Ringwald 169746ccb7eSMatthias Ringwald // PDU 170746ccb7eSMatthias Ringwald // PDU ID (1), Transaction ID (2), Param Length (2), Param 1, Param 2, .. 171746ccb7eSMatthias Ringwald 172746ccb7eSMatthias Ringwald static int sdp_create_error_response(uint16_t transaction_id, uint16_t error_code){ 173746ccb7eSMatthias Ringwald sdp_response_buffer[0] = SDP_ErrorResponse; 174746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 1, transaction_id); 175746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 3, 2); 176746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 5, error_code); // invalid syntax 177746ccb7eSMatthias Ringwald return 7; 178746ccb7eSMatthias Ringwald } 179746ccb7eSMatthias Ringwald 180746ccb7eSMatthias Ringwald int sdp_handle_service_search_request(uint8_t * packet, uint16_t remote_mtu){ 181746ccb7eSMatthias Ringwald 182746ccb7eSMatthias Ringwald // get request details 183746ccb7eSMatthias Ringwald uint16_t transaction_id = big_endian_read_16(packet, 1); 1844443af49SMatthias Ringwald uint16_t param_len = big_endian_read_16(packet, 3); 185746ccb7eSMatthias Ringwald uint8_t * serviceSearchPattern = &packet[5]; 1864443af49SMatthias Ringwald uint16_t serviceSearchPatternLen = de_get_len_safe(serviceSearchPattern, param_len); 1874443af49SMatthias Ringwald // assert service search pattern is contained 1884443af49SMatthias Ringwald if (!serviceSearchPatternLen) return 0; 1894443af49SMatthias Ringwald param_len -= serviceSearchPatternLen; 1904443af49SMatthias Ringwald // assert max record count is contained 1914443af49SMatthias Ringwald if (param_len < 2) return 0; 192746ccb7eSMatthias Ringwald uint16_t maximumServiceRecordCount = big_endian_read_16(packet, 5 + serviceSearchPatternLen); 1934443af49SMatthias Ringwald param_len -= 2; 1944443af49SMatthias Ringwald // assert continuation state len is contained in param_len 1954443af49SMatthias Ringwald if (param_len < 1) return 0; 196746ccb7eSMatthias Ringwald uint8_t * continuationState = &packet[5+serviceSearchPatternLen+2]; 1974443af49SMatthias Ringwald // assert continuation state is contained in param_len 198*c1ab6cc1SMatthias Ringwald if ((1 + continuationState[0]) > param_len) return 0; 199746ccb7eSMatthias Ringwald 2004443af49SMatthias Ringwald // calc maximumServiceRecordCount based on remote MTU 201746ccb7eSMatthias Ringwald uint16_t maxNrServiceRecordsPerResponse = (remote_mtu - (9+3))/4; 202746ccb7eSMatthias Ringwald 203746ccb7eSMatthias Ringwald // continuation state contains index of next service record to examine 204746ccb7eSMatthias Ringwald int continuation = 0; 205746ccb7eSMatthias Ringwald uint16_t continuation_index = 0; 206746ccb7eSMatthias Ringwald if (continuationState[0] == 2){ 207746ccb7eSMatthias Ringwald continuation_index = big_endian_read_16(continuationState, 1); 208746ccb7eSMatthias Ringwald } 209746ccb7eSMatthias Ringwald 210746ccb7eSMatthias Ringwald // get and limit total count 211746ccb7eSMatthias Ringwald btstack_linked_item_t *it; 212746ccb7eSMatthias Ringwald uint16_t total_service_count = 0; 213746ccb7eSMatthias Ringwald for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){ 214746ccb7eSMatthias Ringwald service_record_item_t * item = (service_record_item_t *) it; 215746ccb7eSMatthias Ringwald if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue; 216746ccb7eSMatthias Ringwald total_service_count++; 217746ccb7eSMatthias Ringwald } 218746ccb7eSMatthias Ringwald if (total_service_count > maximumServiceRecordCount){ 219746ccb7eSMatthias Ringwald total_service_count = maximumServiceRecordCount; 220746ccb7eSMatthias Ringwald } 221746ccb7eSMatthias Ringwald 222746ccb7eSMatthias Ringwald // ServiceRecordHandleList at 9 223746ccb7eSMatthias Ringwald uint16_t pos = 9; 224746ccb7eSMatthias Ringwald uint16_t current_service_count = 0; 225746ccb7eSMatthias Ringwald uint16_t current_service_index = 0; 226746ccb7eSMatthias Ringwald uint16_t matching_service_count = 0; 227746ccb7eSMatthias Ringwald for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next, ++current_service_index){ 228746ccb7eSMatthias Ringwald service_record_item_t * item = (service_record_item_t *) it; 229746ccb7eSMatthias Ringwald 230746ccb7eSMatthias Ringwald if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue; 231746ccb7eSMatthias Ringwald matching_service_count++; 232746ccb7eSMatthias Ringwald 233746ccb7eSMatthias Ringwald if (current_service_index < continuation_index) continue; 234746ccb7eSMatthias Ringwald 235746ccb7eSMatthias Ringwald big_endian_store_32(sdp_response_buffer, pos, item->service_record_handle); 236746ccb7eSMatthias Ringwald pos += 4; 237746ccb7eSMatthias Ringwald current_service_count++; 238746ccb7eSMatthias Ringwald 239746ccb7eSMatthias Ringwald if (matching_service_count >= total_service_count) break; 240746ccb7eSMatthias Ringwald 241746ccb7eSMatthias Ringwald if (current_service_count >= maxNrServiceRecordsPerResponse){ 242746ccb7eSMatthias Ringwald continuation = 1; 243746ccb7eSMatthias Ringwald continuation_index = current_service_index + 1; 244746ccb7eSMatthias Ringwald break; 245746ccb7eSMatthias Ringwald } 246746ccb7eSMatthias Ringwald } 247746ccb7eSMatthias Ringwald 248746ccb7eSMatthias Ringwald // Store continuation state 249746ccb7eSMatthias Ringwald if (continuation) { 250746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 2; 251746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, pos, continuation_index); 252746ccb7eSMatthias Ringwald pos += 2; 253746ccb7eSMatthias Ringwald } else { 254746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 0; 255746ccb7eSMatthias Ringwald } 256746ccb7eSMatthias Ringwald 257746ccb7eSMatthias Ringwald // header 258746ccb7eSMatthias Ringwald sdp_response_buffer[0] = SDP_ServiceSearchResponse; 259746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 1, transaction_id); 260746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 3, pos - 5); // size of variable payload 261746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 5, total_service_count); 262746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 7, current_service_count); 263746ccb7eSMatthias Ringwald 264746ccb7eSMatthias Ringwald return pos; 265746ccb7eSMatthias Ringwald } 266746ccb7eSMatthias Ringwald 267746ccb7eSMatthias Ringwald int sdp_handle_service_attribute_request(uint8_t * packet, uint16_t remote_mtu){ 268746ccb7eSMatthias Ringwald 269746ccb7eSMatthias Ringwald // get request details 270746ccb7eSMatthias Ringwald uint16_t transaction_id = big_endian_read_16(packet, 1); 2714443af49SMatthias Ringwald uint16_t param_len = big_endian_read_16(packet, 3); 2724443af49SMatthias Ringwald // assert serviceRecordHandle and maximumAttributeByteCount are in param_len 2734443af49SMatthias Ringwald if (param_len < 6) return 0; 274c9b8fdd9SMatthias Ringwald uint32_t serviceRecordHandle = big_endian_read_32(packet, 5); 275746ccb7eSMatthias Ringwald uint16_t maximumAttributeByteCount = big_endian_read_16(packet, 9); 2764443af49SMatthias Ringwald param_len -= 6; 277746ccb7eSMatthias Ringwald uint8_t * attributeIDList = &packet[11]; 2784443af49SMatthias Ringwald uint16_t attributeIDListLen = de_get_len_safe(attributeIDList, param_len); 2794443af49SMatthias Ringwald // assert attributeIDList are in param_len 2804443af49SMatthias Ringwald if (!attributeIDListLen) return 0; 2814443af49SMatthias Ringwald param_len -= attributeIDListLen; 2824443af49SMatthias Ringwald // assert continuation state len is contained in param_len 2834443af49SMatthias Ringwald if (param_len < 1) return 0; 284746ccb7eSMatthias Ringwald uint8_t * continuationState = &packet[11+attributeIDListLen]; 2854443af49SMatthias Ringwald // assert continuation state is contained in param_len 286*c1ab6cc1SMatthias Ringwald if ((1 + continuationState[0]) > param_len) return 0; 287746ccb7eSMatthias Ringwald 288746ccb7eSMatthias Ringwald // calc maximumAttributeByteCount based on remote MTU 289746ccb7eSMatthias Ringwald uint16_t maximumAttributeByteCount2 = remote_mtu - (7+3); 290746ccb7eSMatthias Ringwald if (maximumAttributeByteCount2 < maximumAttributeByteCount) { 291746ccb7eSMatthias Ringwald maximumAttributeByteCount = maximumAttributeByteCount2; 292746ccb7eSMatthias Ringwald } 293746ccb7eSMatthias Ringwald 294746ccb7eSMatthias Ringwald // continuation state contains the offset into the complete response 295746ccb7eSMatthias Ringwald uint16_t continuation_offset = 0; 296746ccb7eSMatthias Ringwald if (continuationState[0] == 2){ 297746ccb7eSMatthias Ringwald continuation_offset = big_endian_read_16(continuationState, 1); 298746ccb7eSMatthias Ringwald } 299746ccb7eSMatthias Ringwald 300746ccb7eSMatthias Ringwald // get service record 301746ccb7eSMatthias Ringwald service_record_item_t * item = sdp_get_record_item_for_handle(serviceRecordHandle); 302746ccb7eSMatthias Ringwald if (!item){ 303746ccb7eSMatthias Ringwald // service record handle doesn't exist 304746ccb7eSMatthias Ringwald return sdp_create_error_response(transaction_id, 0x0002); /// invalid Service Record Handle 305746ccb7eSMatthias Ringwald } 306746ccb7eSMatthias Ringwald 307746ccb7eSMatthias Ringwald 308746ccb7eSMatthias Ringwald // AttributeList - starts at offset 7 309746ccb7eSMatthias Ringwald uint16_t pos = 7; 310746ccb7eSMatthias Ringwald 311746ccb7eSMatthias Ringwald if (continuation_offset == 0){ 312746ccb7eSMatthias Ringwald 313746ccb7eSMatthias Ringwald // get size of this record 314746ccb7eSMatthias Ringwald uint16_t filtered_attributes_size = spd_get_filtered_size(item->service_record, attributeIDList); 315746ccb7eSMatthias Ringwald 316746ccb7eSMatthias Ringwald // store DES 317746ccb7eSMatthias Ringwald de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, filtered_attributes_size); 318746ccb7eSMatthias Ringwald maximumAttributeByteCount -= 3; 319746ccb7eSMatthias Ringwald pos += 3; 320746ccb7eSMatthias Ringwald } 321746ccb7eSMatthias Ringwald 322746ccb7eSMatthias Ringwald // copy maximumAttributeByteCount from record 323746ccb7eSMatthias Ringwald uint16_t bytes_used; 324746ccb7eSMatthias Ringwald int complete = sdp_filter_attributes_in_attributeIDList(item->service_record, attributeIDList, continuation_offset, maximumAttributeByteCount, &bytes_used, &sdp_response_buffer[pos]); 325746ccb7eSMatthias Ringwald pos += bytes_used; 326746ccb7eSMatthias Ringwald 327746ccb7eSMatthias Ringwald uint16_t attributeListByteCount = pos - 7; 328746ccb7eSMatthias Ringwald 329746ccb7eSMatthias Ringwald if (complete) { 330746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 0; 331746ccb7eSMatthias Ringwald } else { 332746ccb7eSMatthias Ringwald continuation_offset += bytes_used; 333746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 2; 334746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, pos, continuation_offset); 335746ccb7eSMatthias Ringwald pos += 2; 336746ccb7eSMatthias Ringwald } 337746ccb7eSMatthias Ringwald 338746ccb7eSMatthias Ringwald // header 339746ccb7eSMatthias Ringwald sdp_response_buffer[0] = SDP_ServiceAttributeResponse; 340746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 1, transaction_id); 341746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 3, pos - 5); // size of variable payload 342746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 5, attributeListByteCount); 343746ccb7eSMatthias Ringwald 344746ccb7eSMatthias Ringwald return pos; 345746ccb7eSMatthias Ringwald } 346746ccb7eSMatthias Ringwald 347746ccb7eSMatthias Ringwald static uint16_t sdp_get_size_for_service_search_attribute_response(uint8_t * serviceSearchPattern, uint8_t * attributeIDList){ 348746ccb7eSMatthias Ringwald uint16_t total_response_size = 0; 349746ccb7eSMatthias Ringwald btstack_linked_item_t *it; 350746ccb7eSMatthias Ringwald for (it = (btstack_linked_item_t *) sdp_service_records; it ; it = it->next){ 351746ccb7eSMatthias Ringwald service_record_item_t * item = (service_record_item_t *) it; 352746ccb7eSMatthias Ringwald 353746ccb7eSMatthias Ringwald if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue; 354746ccb7eSMatthias Ringwald 355746ccb7eSMatthias Ringwald // for all service records that match 356746ccb7eSMatthias Ringwald total_response_size += 3 + spd_get_filtered_size(item->service_record, attributeIDList); 357746ccb7eSMatthias Ringwald } 358746ccb7eSMatthias Ringwald return total_response_size; 359746ccb7eSMatthias Ringwald } 360746ccb7eSMatthias Ringwald 361746ccb7eSMatthias Ringwald int sdp_handle_service_search_attribute_request(uint8_t * packet, uint16_t remote_mtu){ 362746ccb7eSMatthias Ringwald 363746ccb7eSMatthias Ringwald // SDP header before attribute sevice list: 7 364746ccb7eSMatthias Ringwald // Continuation, worst case: 5 365746ccb7eSMatthias Ringwald 366746ccb7eSMatthias Ringwald // get request details 367746ccb7eSMatthias Ringwald uint16_t transaction_id = big_endian_read_16(packet, 1); 3684443af49SMatthias Ringwald uint16_t param_len = big_endian_read_16(packet, 3); 369746ccb7eSMatthias Ringwald uint8_t * serviceSearchPattern = &packet[5]; 3704443af49SMatthias Ringwald uint16_t serviceSearchPatternLen = de_get_len_safe(serviceSearchPattern, param_len); 3714443af49SMatthias Ringwald // assert serviceSearchPattern header is contained in param_len 3724443af49SMatthias Ringwald if (!serviceSearchPatternLen) return 0; 3734443af49SMatthias Ringwald param_len -= serviceSearchPatternLen; 3744443af49SMatthias Ringwald // assert maximumAttributeByteCount contained in param_len 3754443af49SMatthias Ringwald if (param_len < 2) return 0; 376746ccb7eSMatthias Ringwald uint16_t maximumAttributeByteCount = big_endian_read_16(packet, 5 + serviceSearchPatternLen); 3774443af49SMatthias Ringwald param_len -= 2; 378746ccb7eSMatthias Ringwald uint8_t * attributeIDList = &packet[5+serviceSearchPatternLen+2]; 3794443af49SMatthias Ringwald uint16_t attributeIDListLen = de_get_len_safe(attributeIDList, param_len); 3804443af49SMatthias Ringwald // assert attributeIDList is contained in param_len 3814443af49SMatthias Ringwald if (!attributeIDListLen) return 0; 3824443af49SMatthias Ringwald // assert continuation state len is contained in param_len 3834443af49SMatthias Ringwald if (param_len < 1) return 0; 384746ccb7eSMatthias Ringwald uint8_t * continuationState = &packet[5+serviceSearchPatternLen+2+attributeIDListLen]; 3854443af49SMatthias Ringwald // assert continuation state is contained in param_len 386*c1ab6cc1SMatthias Ringwald if ((1 + continuationState[0]) > param_len) return 0; 387746ccb7eSMatthias Ringwald 388746ccb7eSMatthias Ringwald // calc maximumAttributeByteCount based on remote MTU, SDP header and reserved Continuation block 389746ccb7eSMatthias Ringwald uint16_t maximumAttributeByteCount2 = remote_mtu - 12; 390746ccb7eSMatthias Ringwald if (maximumAttributeByteCount2 < maximumAttributeByteCount) { 391746ccb7eSMatthias Ringwald maximumAttributeByteCount = maximumAttributeByteCount2; 392746ccb7eSMatthias Ringwald } 393746ccb7eSMatthias Ringwald 394746ccb7eSMatthias Ringwald // continuation state contains: index of next service record to examine 395746ccb7eSMatthias Ringwald // continuation state contains: byte offset into this service record 396746ccb7eSMatthias Ringwald uint16_t continuation_service_index = 0; 397746ccb7eSMatthias Ringwald uint16_t continuation_offset = 0; 398746ccb7eSMatthias Ringwald if (continuationState[0] == 4){ 399746ccb7eSMatthias Ringwald continuation_service_index = big_endian_read_16(continuationState, 1); 400746ccb7eSMatthias Ringwald continuation_offset = big_endian_read_16(continuationState, 3); 401746ccb7eSMatthias Ringwald } 402746ccb7eSMatthias Ringwald 403746ccb7eSMatthias Ringwald // log_info("--> sdp_handle_service_search_attribute_request, cont %u/%u, max %u", continuation_service_index, continuation_offset, maximumAttributeByteCount); 404746ccb7eSMatthias Ringwald 405746ccb7eSMatthias Ringwald // AttributeLists - starts at offset 7 406746ccb7eSMatthias Ringwald uint16_t pos = 7; 407746ccb7eSMatthias Ringwald 408746ccb7eSMatthias Ringwald // add DES with total size for first request 409*c1ab6cc1SMatthias Ringwald if ((continuation_service_index == 0) && (continuation_offset == 0)){ 410746ccb7eSMatthias Ringwald uint16_t total_response_size = sdp_get_size_for_service_search_attribute_response(serviceSearchPattern, attributeIDList); 411746ccb7eSMatthias Ringwald de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, total_response_size); 412746ccb7eSMatthias Ringwald // log_info("total response size %u", total_response_size); 413746ccb7eSMatthias Ringwald pos += 3; 414746ccb7eSMatthias Ringwald maximumAttributeByteCount -= 3; 415746ccb7eSMatthias Ringwald } 416746ccb7eSMatthias Ringwald 417746ccb7eSMatthias Ringwald // create attribute list 418746ccb7eSMatthias Ringwald int first_answer = 1; 419746ccb7eSMatthias Ringwald int continuation = 0; 420746ccb7eSMatthias Ringwald uint16_t current_service_index = 0; 421746ccb7eSMatthias Ringwald btstack_linked_item_t *it = (btstack_linked_item_t *) sdp_service_records; 422746ccb7eSMatthias Ringwald for ( ; it ; it = it->next, ++current_service_index){ 423746ccb7eSMatthias Ringwald service_record_item_t * item = (service_record_item_t *) it; 424746ccb7eSMatthias Ringwald 425746ccb7eSMatthias Ringwald if (current_service_index < continuation_service_index ) continue; 426746ccb7eSMatthias Ringwald if (!sdp_record_matches_service_search_pattern(item->service_record, serviceSearchPattern)) continue; 427746ccb7eSMatthias Ringwald 428746ccb7eSMatthias Ringwald if (continuation_offset == 0){ 429746ccb7eSMatthias Ringwald 430746ccb7eSMatthias Ringwald // get size of this record 431746ccb7eSMatthias Ringwald uint16_t filtered_attributes_size = spd_get_filtered_size(item->service_record, attributeIDList); 432746ccb7eSMatthias Ringwald 433746ccb7eSMatthias Ringwald // stop if complete record doesn't fits into response but we already have a partial response 434*c1ab6cc1SMatthias Ringwald if (((filtered_attributes_size + 3) > maximumAttributeByteCount) && !first_answer) { 435746ccb7eSMatthias Ringwald continuation = 1; 436746ccb7eSMatthias Ringwald break; 437746ccb7eSMatthias Ringwald } 438746ccb7eSMatthias Ringwald 439746ccb7eSMatthias Ringwald // store DES 440746ccb7eSMatthias Ringwald de_store_descriptor_with_len(&sdp_response_buffer[pos], DE_DES, DE_SIZE_VAR_16, filtered_attributes_size); 441746ccb7eSMatthias Ringwald pos += 3; 442746ccb7eSMatthias Ringwald maximumAttributeByteCount -= 3; 443746ccb7eSMatthias Ringwald } 444746ccb7eSMatthias Ringwald 445746ccb7eSMatthias Ringwald first_answer = 0; 446746ccb7eSMatthias Ringwald 447746ccb7eSMatthias Ringwald // copy maximumAttributeByteCount from record 448746ccb7eSMatthias Ringwald uint16_t bytes_used; 449746ccb7eSMatthias Ringwald int complete = sdp_filter_attributes_in_attributeIDList(item->service_record, attributeIDList, continuation_offset, maximumAttributeByteCount, &bytes_used, &sdp_response_buffer[pos]); 450746ccb7eSMatthias Ringwald pos += bytes_used; 451746ccb7eSMatthias Ringwald maximumAttributeByteCount -= bytes_used; 452746ccb7eSMatthias Ringwald 453746ccb7eSMatthias Ringwald if (complete) { 454746ccb7eSMatthias Ringwald continuation_offset = 0; 455746ccb7eSMatthias Ringwald continue; 456746ccb7eSMatthias Ringwald } 457746ccb7eSMatthias Ringwald 458746ccb7eSMatthias Ringwald continuation = 1; 459746ccb7eSMatthias Ringwald continuation_offset += bytes_used; 460746ccb7eSMatthias Ringwald break; 461746ccb7eSMatthias Ringwald } 462746ccb7eSMatthias Ringwald 463746ccb7eSMatthias Ringwald uint16_t attributeListsByteCount = pos - 7; 464746ccb7eSMatthias Ringwald 465746ccb7eSMatthias Ringwald // Continuation State 466746ccb7eSMatthias Ringwald if (continuation){ 467746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 4; 468746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, pos, (uint16_t) current_service_index); 469746ccb7eSMatthias Ringwald pos += 2; 470746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, pos, continuation_offset); 471746ccb7eSMatthias Ringwald pos += 2; 472746ccb7eSMatthias Ringwald } else { 473746ccb7eSMatthias Ringwald // complete 474746ccb7eSMatthias Ringwald sdp_response_buffer[pos++] = 0; 475746ccb7eSMatthias Ringwald } 476746ccb7eSMatthias Ringwald 477746ccb7eSMatthias Ringwald // create SDP header 478746ccb7eSMatthias Ringwald sdp_response_buffer[0] = SDP_ServiceSearchAttributeResponse; 479746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 1, transaction_id); 480746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 3, pos - 5); // size of variable payload 481746ccb7eSMatthias Ringwald big_endian_store_16(sdp_response_buffer, 5, attributeListsByteCount); 482746ccb7eSMatthias Ringwald 483746ccb7eSMatthias Ringwald return pos; 484746ccb7eSMatthias Ringwald } 485746ccb7eSMatthias Ringwald 486aed68c56SMatthias Ringwald static void sdp_respond(void){ 487746ccb7eSMatthias Ringwald if (!sdp_response_size ) return; 488746ccb7eSMatthias Ringwald if (!l2cap_cid) return; 489746ccb7eSMatthias Ringwald 490746ccb7eSMatthias Ringwald // update state before sending packet (avoid getting called when new l2cap credit gets emitted) 491746ccb7eSMatthias Ringwald uint16_t size = sdp_response_size; 492746ccb7eSMatthias Ringwald sdp_response_size = 0; 493746ccb7eSMatthias Ringwald l2cap_send(l2cap_cid, sdp_response_buffer, size); 494746ccb7eSMatthias Ringwald } 495746ccb7eSMatthias Ringwald 4967616f654SMatthias Ringwald // @pre space in list 4977616f654SMatthias Ringwald static void sdp_waiting_list_add(uint16_t cid){ 4987616f654SMatthias Ringwald l2cap_waiting_list_cids[l2cap_waiting_list_count++] = cid; 4997616f654SMatthias Ringwald } 5007616f654SMatthias Ringwald 5017616f654SMatthias Ringwald // @pre at least one item in list 5027616f654SMatthias Ringwald static uint16_t sdp_waiting_list_get(void){ 5037616f654SMatthias Ringwald uint16_t cid = l2cap_waiting_list_cids[0]; 5047616f654SMatthias Ringwald l2cap_waiting_list_count--; 5057616f654SMatthias Ringwald if (l2cap_waiting_list_count){ 5067616f654SMatthias Ringwald memmove(&l2cap_waiting_list_cids[0], &l2cap_waiting_list_cids[1], l2cap_waiting_list_count * sizeof(uint16_t)); 5077616f654SMatthias Ringwald } 5087616f654SMatthias Ringwald return cid; 5097616f654SMatthias Ringwald } 5107616f654SMatthias Ringwald 511746ccb7eSMatthias Ringwald // we assume that we don't get two requests in a row 512746ccb7eSMatthias Ringwald static void sdp_packet_handler(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 513746ccb7eSMatthias Ringwald uint16_t transaction_id; 514746ccb7eSMatthias Ringwald SDP_PDU_ID_t pdu_id; 515746ccb7eSMatthias Ringwald uint16_t remote_mtu; 5164443af49SMatthias Ringwald uint16_t param_len; 517746ccb7eSMatthias Ringwald 518746ccb7eSMatthias Ringwald switch (packet_type) { 519746ccb7eSMatthias Ringwald 520746ccb7eSMatthias Ringwald case L2CAP_DATA_PACKET: 521746ccb7eSMatthias Ringwald pdu_id = (SDP_PDU_ID_t) packet[0]; 522746ccb7eSMatthias Ringwald transaction_id = big_endian_read_16(packet, 1); 5234443af49SMatthias Ringwald param_len = big_endian_read_16(packet, 3); 524746ccb7eSMatthias Ringwald remote_mtu = l2cap_get_remote_mtu_for_local_cid(channel); 525746ccb7eSMatthias Ringwald // account for our buffer 526746ccb7eSMatthias Ringwald if (remote_mtu > SDP_RESPONSE_BUFFER_SIZE){ 527746ccb7eSMatthias Ringwald remote_mtu = SDP_RESPONSE_BUFFER_SIZE; 528746ccb7eSMatthias Ringwald } 5294443af49SMatthias Ringwald // validate parm_len against packet size 530*c1ab6cc1SMatthias Ringwald if ((param_len + 5) > size) { 5314443af49SMatthias Ringwald // just clear pdu_id 5324443af49SMatthias Ringwald pdu_id = SDP_ErrorResponse; 5334443af49SMatthias Ringwald } 534746ccb7eSMatthias Ringwald 535746ccb7eSMatthias Ringwald // log_info("SDP Request: type %u, transaction id %u, len %u, mtu %u", pdu_id, transaction_id, param_len, remote_mtu); 536746ccb7eSMatthias Ringwald switch (pdu_id){ 537746ccb7eSMatthias Ringwald 538746ccb7eSMatthias Ringwald case SDP_ServiceSearchRequest: 539746ccb7eSMatthias Ringwald sdp_response_size = sdp_handle_service_search_request(packet, remote_mtu); 540746ccb7eSMatthias Ringwald break; 541746ccb7eSMatthias Ringwald 542746ccb7eSMatthias Ringwald case SDP_ServiceAttributeRequest: 543746ccb7eSMatthias Ringwald sdp_response_size = sdp_handle_service_attribute_request(packet, remote_mtu); 544746ccb7eSMatthias Ringwald break; 545746ccb7eSMatthias Ringwald 546746ccb7eSMatthias Ringwald case SDP_ServiceSearchAttributeRequest: 547746ccb7eSMatthias Ringwald sdp_response_size = sdp_handle_service_search_attribute_request(packet, remote_mtu); 548746ccb7eSMatthias Ringwald break; 549746ccb7eSMatthias Ringwald 550746ccb7eSMatthias Ringwald default: 551746ccb7eSMatthias Ringwald sdp_response_size = sdp_create_error_response(transaction_id, 0x0003); // invalid syntax 552746ccb7eSMatthias Ringwald break; 553746ccb7eSMatthias Ringwald } 554aed68c56SMatthias Ringwald if (!sdp_response_size) break; 555a145b392SMatthias Ringwald l2cap_request_can_send_now_event(l2cap_cid); 556746ccb7eSMatthias Ringwald break; 557746ccb7eSMatthias Ringwald 558746ccb7eSMatthias Ringwald case HCI_EVENT_PACKET: 559746ccb7eSMatthias Ringwald 5600e2df43fSMatthias Ringwald switch (hci_event_packet_get_type(packet)) { 561746ccb7eSMatthias Ringwald 562746ccb7eSMatthias Ringwald case L2CAP_EVENT_INCOMING_CONNECTION: 563746ccb7eSMatthias Ringwald if (l2cap_cid) { 5647616f654SMatthias Ringwald // try to queue up 5657616f654SMatthias Ringwald if (l2cap_waiting_list_count < SDP_WAITING_LIST_MAX_COUNT){ 5667616f654SMatthias Ringwald sdp_waiting_list_add(channel); 5677616f654SMatthias Ringwald log_info("busy, queing incoming cid 0x%04x, now %u waiting", channel, l2cap_waiting_list_count); 5687616f654SMatthias Ringwald break; 5697616f654SMatthias Ringwald } 5707616f654SMatthias Ringwald 571746ccb7eSMatthias Ringwald // CONNECTION REJECTED DUE TO LIMITED RESOURCES 5727ef6a7bbSMatthias Ringwald l2cap_decline_connection(channel); 573746ccb7eSMatthias Ringwald break; 574746ccb7eSMatthias Ringwald } 575746ccb7eSMatthias Ringwald // accept 576746ccb7eSMatthias Ringwald l2cap_cid = channel; 577746ccb7eSMatthias Ringwald sdp_response_size = 0; 5787616f654SMatthias Ringwald l2cap_accept_connection(l2cap_cid); 579746ccb7eSMatthias Ringwald break; 580746ccb7eSMatthias Ringwald 581746ccb7eSMatthias Ringwald case L2CAP_EVENT_CHANNEL_OPENED: 582746ccb7eSMatthias Ringwald if (packet[2]) { 583746ccb7eSMatthias Ringwald // open failed -> reset 584746ccb7eSMatthias Ringwald l2cap_cid = 0; 585746ccb7eSMatthias Ringwald } 586746ccb7eSMatthias Ringwald break; 587746ccb7eSMatthias Ringwald 588746ccb7eSMatthias Ringwald case L2CAP_EVENT_CAN_SEND_NOW: 589aed68c56SMatthias Ringwald sdp_respond(); 590746ccb7eSMatthias Ringwald break; 591746ccb7eSMatthias Ringwald 592746ccb7eSMatthias Ringwald case L2CAP_EVENT_CHANNEL_CLOSED: 593746ccb7eSMatthias Ringwald if (channel == l2cap_cid){ 594746ccb7eSMatthias Ringwald // reset 595746ccb7eSMatthias Ringwald l2cap_cid = 0; 5967616f654SMatthias Ringwald 5977616f654SMatthias Ringwald // other request queued? 5987616f654SMatthias Ringwald if (!l2cap_waiting_list_count) break; 5997616f654SMatthias Ringwald 6007616f654SMatthias Ringwald // get first item 6017616f654SMatthias Ringwald l2cap_cid = sdp_waiting_list_get(); 6027616f654SMatthias Ringwald 6037616f654SMatthias Ringwald log_info("disconnect, accept queued cid 0x%04x, now %u waiting", l2cap_cid, l2cap_waiting_list_count); 6047616f654SMatthias Ringwald 6057616f654SMatthias Ringwald // accept connection 6067616f654SMatthias Ringwald sdp_response_size = 0; 6077616f654SMatthias Ringwald l2cap_accept_connection(l2cap_cid); 608746ccb7eSMatthias Ringwald } 609746ccb7eSMatthias Ringwald break; 610746ccb7eSMatthias Ringwald 611746ccb7eSMatthias Ringwald default: 612746ccb7eSMatthias Ringwald // other event 613746ccb7eSMatthias Ringwald break; 614746ccb7eSMatthias Ringwald } 615746ccb7eSMatthias Ringwald break; 616746ccb7eSMatthias Ringwald 617746ccb7eSMatthias Ringwald default: 618746ccb7eSMatthias Ringwald // other packet type 619746ccb7eSMatthias Ringwald break; 620746ccb7eSMatthias Ringwald } 621746ccb7eSMatthias Ringwald } 622746ccb7eSMatthias Ringwald 623