177ba3d3fSMatthias Ringwald /* 277ba3d3fSMatthias Ringwald * Copyright (C) 2017 BlueKitchen GmbH 377ba3d3fSMatthias Ringwald * 477ba3d3fSMatthias Ringwald * Redistribution and use in source and binary forms, with or without 577ba3d3fSMatthias Ringwald * modification, are permitted provided that the following conditions 677ba3d3fSMatthias Ringwald * are met: 777ba3d3fSMatthias Ringwald * 877ba3d3fSMatthias Ringwald * 1. Redistributions of source code must retain the above copyright 977ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer. 1077ba3d3fSMatthias Ringwald * 2. Redistributions in binary form must reproduce the above copyright 1177ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer in the 1277ba3d3fSMatthias Ringwald * documentation and/or other materials provided with the distribution. 1377ba3d3fSMatthias Ringwald * 3. Neither the name of the copyright holders nor the names of 1477ba3d3fSMatthias Ringwald * contributors may be used to endorse or promote products derived 1577ba3d3fSMatthias Ringwald * from this software without specific prior written permission. 1677ba3d3fSMatthias Ringwald * 4. Any redistribution, use, or modification is done solely for 1777ba3d3fSMatthias Ringwald * personal benefit and not for any commercial purpose or for 1877ba3d3fSMatthias Ringwald * monetary gain. 1977ba3d3fSMatthias Ringwald * 2077ba3d3fSMatthias Ringwald * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS 2177ba3d3fSMatthias Ringwald * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 2277ba3d3fSMatthias Ringwald * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 2377ba3d3fSMatthias Ringwald * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS 2477ba3d3fSMatthias Ringwald * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 2577ba3d3fSMatthias Ringwald * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 2677ba3d3fSMatthias Ringwald * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS 2777ba3d3fSMatthias Ringwald * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED 2877ba3d3fSMatthias Ringwald * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 2977ba3d3fSMatthias Ringwald * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 3077ba3d3fSMatthias Ringwald * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3177ba3d3fSMatthias Ringwald * SUCH DAMAGE. 3277ba3d3fSMatthias Ringwald * 3377ba3d3fSMatthias Ringwald * Please inquire about commercial licensing options at 3477ba3d3fSMatthias Ringwald * [email protected] 3577ba3d3fSMatthias Ringwald * 3677ba3d3fSMatthias Ringwald */ 3777ba3d3fSMatthias Ringwald 38b3a527ecSMatthias Ringwald #define __BTSTACK_FILE__ "beacon.c" 3977ba3d3fSMatthias Ringwald 40f4854a5eSMatthias Ringwald #include "mesh/beacon.h" 41f4854a5eSMatthias Ringwald 4277ba3d3fSMatthias Ringwald #include <string.h> 4377ba3d3fSMatthias Ringwald 4477ba3d3fSMatthias Ringwald #include "ble/core.h" 4577ba3d3fSMatthias Ringwald #include "bluetooth.h" 4677ba3d3fSMatthias Ringwald #include "bluetooth_data_types.h" 4777ba3d3fSMatthias Ringwald #include "btstack_debug.h" 4877ba3d3fSMatthias Ringwald #include "btstack_event.h" 49f4854a5eSMatthias Ringwald #include "btstack_run_loop.h" 50f4854a5eSMatthias Ringwald #include "btstack_util.h" 5177ba3d3fSMatthias Ringwald #include "gap.h" 52f4854a5eSMatthias Ringwald 53f4854a5eSMatthias Ringwald #include "mesh/adv_bearer.h" 54f4854a5eSMatthias Ringwald #include "mesh/gatt_bearer.h" 55f4854a5eSMatthias Ringwald #include "mesh/mesh_foundation.h" 56f4854a5eSMatthias Ringwald #include "mesh/mesh_iv_index_seq_number.h" 57f4854a5eSMatthias Ringwald #include "mesh/mesh_keys.h" 5877ba3d3fSMatthias Ringwald 5977ba3d3fSMatthias Ringwald #define BEACON_TYPE_UNPROVISIONED_DEVICE 0 6077ba3d3fSMatthias Ringwald #define BEACON_TYPE_SECURE_NETWORK 1 6177ba3d3fSMatthias Ringwald 6277ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_INTERVAL_MS 5000 6377ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_LEN 23 6477ba3d3fSMatthias Ringwald 6577ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MIN_MS 10000 6677ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MAX_MS 600000 6777ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_LEN 22 6877ba3d3fSMatthias Ringwald 6977ba3d3fSMatthias Ringwald // prototypes 7077ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts); 7177ba3d3fSMatthias Ringwald 72b3a527ecSMatthias Ringwald // bearers 73b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 74b3a527ecSMatthias Ringwald static hci_con_handle_t gatt_bearer_con_handle; 75b3a527ecSMatthias Ringwald #endif 76b3a527ecSMatthias Ringwald 7777ba3d3fSMatthias Ringwald // beacon 7877ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_data[29]; 7977ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_len; 8077ba3d3fSMatthias Ringwald static btstack_timer_source_t beacon_timer; 8177ba3d3fSMatthias Ringwald 8277ba3d3fSMatthias Ringwald // unprovisioned device beacon 83b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 8477ba3d3fSMatthias Ringwald static const uint8_t * beacon_device_uuid; 8577ba3d3fSMatthias Ringwald static uint16_t beacon_oob_information; 8677ba3d3fSMatthias Ringwald static uint32_t beacon_uri_hash; 8777ba3d3fSMatthias Ringwald static int beacon_send_device_beacon; 88b3a527ecSMatthias Ringwald #endif 8977ba3d3fSMatthias Ringwald 9077ba3d3fSMatthias Ringwald static btstack_packet_handler_t unprovisioned_device_beacon_handler; 9177ba3d3fSMatthias Ringwald 9277ba3d3fSMatthias Ringwald // secure network beacon 9377ba3d3fSMatthias Ringwald static btstack_crypto_aes128_cmac_t mesh_secure_network_beacon_cmac_request; 9477ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_auth_value[16]; 9577ba3d3fSMatthias Ringwald static btstack_packet_handler_t mesh_secure_network_beacon_handler; 9677ba3d3fSMatthias Ringwald static int mesh_secure_network_beacon_active; 9777ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_validate_buffer[SECURE_NETWORK_BEACON_LEN]; 9877ba3d3fSMatthias Ringwald 99b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 10077ba3d3fSMatthias Ringwald static void beacon_timer_handler(btstack_timer_source_t * ts){ 10177ba3d3fSMatthias Ringwald // restart timer 10277ba3d3fSMatthias Ringwald btstack_run_loop_set_timer(ts, UNPROVISIONED_BEACON_INTERVAL_MS); 10377ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(ts); 10477ba3d3fSMatthias Ringwald 10577ba3d3fSMatthias Ringwald // setup beacon 10677ba3d3fSMatthias Ringwald mesh_beacon_len = UNPROVISIONED_BEACON_LEN; 10777ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_UNPROVISIONED_DEVICE; 10877ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[1], beacon_device_uuid, 16); 10977ba3d3fSMatthias Ringwald big_endian_store_16(mesh_beacon_data, 17, beacon_oob_information); 11077ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 19, beacon_uri_hash); 11177ba3d3fSMatthias Ringwald 11277ba3d3fSMatthias Ringwald // request to send 11377ba3d3fSMatthias Ringwald beacon_send_device_beacon = 1; 1144662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 11577ba3d3fSMatthias Ringwald } 116b3a527ecSMatthias Ringwald #endif 11777ba3d3fSMatthias Ringwald 11877ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_auth_value_calculated(void * arg){ 1192fa98d7eSMatthias Ringwald mesh_subnet_t * mesh_subnet = (mesh_subnet_t *) arg; 12077ba3d3fSMatthias Ringwald 12177ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[14], mesh_secure_network_beacon_auth_value, 8); 12277ba3d3fSMatthias Ringwald mesh_beacon_len = SECURE_NETWORK_BEACON_LEN; 12377ba3d3fSMatthias Ringwald 12477ba3d3fSMatthias Ringwald printf("Secure Network Beacon\n"); 12577ba3d3fSMatthias Ringwald printf("- "); 12677ba3d3fSMatthias Ringwald printf_hexdump(mesh_beacon_data, mesh_beacon_len); 12777ba3d3fSMatthias Ringwald 1282d63f17cSMatthias Ringwald mesh_secure_network_beacon_active = 0; 1292fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_AUTH_VALUE; 13077ba3d3fSMatthias Ringwald 13177ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 13277ba3d3fSMatthias Ringwald } 13377ba3d3fSMatthias Ringwald 1342fa98d7eSMatthias Ringwald static uint8_t mesh_secure_network_beacon_get_flags(mesh_subnet_t * mesh_subnet){ 13577ba3d3fSMatthias Ringwald uint8_t mesh_flags = 0; 1362fa98d7eSMatthias Ringwald if (mesh_subnet->key_refresh != MESH_KEY_REFRESH_NOT_ACTIVE){ 13777ba3d3fSMatthias Ringwald mesh_flags |= 1; 13877ba3d3fSMatthias Ringwald } 1397d005332SMatthias Ringwald if (mesh_iv_update_active()){ 1407d005332SMatthias Ringwald mesh_flags |= 2; 1417d005332SMatthias Ringwald } 14277ba3d3fSMatthias Ringwald 14377ba3d3fSMatthias Ringwald return mesh_flags; 14477ba3d3fSMatthias Ringwald } 14577ba3d3fSMatthias Ringwald 1462fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_setup(mesh_subnet_t * mesh_subnet){ 14777ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_SECURE_NETWORK; 1482fa98d7eSMatthias Ringwald mesh_beacon_data[1] = mesh_secure_network_beacon_get_flags(mesh_subnet); 1492fa98d7eSMatthias Ringwald // TODO: pick correct key based on key refresh phase 1502fa98d7eSMatthias Ringwald 1512fa98d7eSMatthias Ringwald memcpy(&mesh_beacon_data[2], mesh_subnet->old_key->network_id, 8); 15277ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 10, mesh_get_iv_index()); 153bdf219b2SMatthias Ringwald mesh_network_key_t * network_key = mesh_subnet_get_outgoing_network_key(mesh_subnet); 154bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 1552fa98d7eSMatthias Ringwald &mesh_beacon_data[1], mesh_secure_network_beacon_auth_value, &mesh_secure_network_beacon_auth_value_calculated, mesh_subnet); 15677ba3d3fSMatthias Ringwald } 15777ba3d3fSMatthias Ringwald 1582fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_update_interval(mesh_subnet_t * subnet){ 15977ba3d3fSMatthias Ringwald uint32_t min_observation_period_ms = 2 * subnet->beacon_interval_ms; 16077ba3d3fSMatthias Ringwald uint32_t actual_observation_period = btstack_time_delta(btstack_run_loop_get_time_ms(), subnet->beacon_observation_start_ms); 16177ba3d3fSMatthias Ringwald 16277ba3d3fSMatthias Ringwald // The Observation Period in seconds should typically be double the typical Beacon Interval. 16377ba3d3fSMatthias Ringwald if (actual_observation_period < min_observation_period_ms) return; 16477ba3d3fSMatthias Ringwald 16577ba3d3fSMatthias Ringwald // Expected Number of Beacons (1 beacon per 10 seconds) 16677ba3d3fSMatthias Ringwald uint16_t expected_number_of_beacons = actual_observation_period / SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 16777ba3d3fSMatthias Ringwald 16877ba3d3fSMatthias Ringwald // Beacon Interval = Observation Period * (Observed Number of Beacons + 1) / Expected Number of Beacons 16977ba3d3fSMatthias Ringwald uint32_t new_beacon_interval = actual_observation_period * (subnet->beacon_observation_counter + 1) / expected_number_of_beacons; 17077ba3d3fSMatthias Ringwald 17177ba3d3fSMatthias Ringwald if (new_beacon_interval > SECURE_NETWORK_BEACON_INTERVAL_MAX_MS){ 17277ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17377ba3d3fSMatthias Ringwald } 17477ba3d3fSMatthias Ringwald else if (new_beacon_interval < SECURE_NETWORK_BEACON_INTERVAL_MIN_MS){ 17577ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17677ba3d3fSMatthias Ringwald } 17777ba3d3fSMatthias Ringwald subnet->beacon_interval_ms = new_beacon_interval; 17877ba3d3fSMatthias Ringwald log_info("New beacon interval %u seconds", (int) (subnet->beacon_interval_ms / 1000)); 17977ba3d3fSMatthias Ringwald } 18077ba3d3fSMatthias Ringwald 18177ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts){ 18277ba3d3fSMatthias Ringwald UNUSED(ts); 18377ba3d3fSMatthias Ringwald 18477ba3d3fSMatthias Ringwald uint32_t next_timeout_ms = 0; 18577ba3d3fSMatthias Ringwald 18677ba3d3fSMatthias Ringwald // iterate over all networks 1872fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 1882fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 1892fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 1902fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 19177ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 19277ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W4_INTERVAL: 19377ba3d3fSMatthias Ringwald // update beacon interval 19477ba3d3fSMatthias Ringwald mesh_secure_network_beacon_update_interval(subnet); 19577ba3d3fSMatthias Ringwald 196*15cb14e1SMatthias Ringwald if (mesh_foundation_beacon_get() == 0){ 197*15cb14e1SMatthias Ringwald // beacon off, continue observing 198*15cb14e1SMatthias Ringwald if (next_timeout_ms == 0 || next_timeout_ms > subnet->beacon_interval_ms){ 199*15cb14e1SMatthias Ringwald next_timeout_ms = subnet->beacon_interval_ms; 200*15cb14e1SMatthias Ringwald } 201*15cb14e1SMatthias Ringwald break; 202*15cb14e1SMatthias Ringwald } 203*15cb14e1SMatthias Ringwald 20477ba3d3fSMatthias Ringwald // send new beacon 20577ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 20677ba3d3fSMatthias Ringwald 20777ba3d3fSMatthias Ringwald /** Explict Fall-through */ 20877ba3d3fSMatthias Ringwald 20977ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE: 21077ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active){ 21177ba3d3fSMatthias Ringwald // just try again in 10 ms 21277ba3d3fSMatthias Ringwald next_timeout_ms = 10; 21377ba3d3fSMatthias Ringwald break; 21477ba3d3fSMatthias Ringwald } 21521ed246fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_AUTH_VALUE; 21677ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 21777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_setup(subnet); 21877ba3d3fSMatthias Ringwald break; 21977ba3d3fSMatthias Ringwald 22077ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_AUTH_VALUE: 22177ba3d3fSMatthias Ringwald 22277ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 22377ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV; 2244662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 22577ba3d3fSMatthias Ringwald break; 22677ba3d3fSMatthias Ringwald #endif 2278b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 22877ba3d3fSMatthias Ringwald 22977ba3d3fSMatthias Ringwald /** Explict Fall-through */ 23077ba3d3fSMatthias Ringwald 23177ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_ADV_SENT: 23277ba3d3fSMatthias Ringwald 23377ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 2348b0144a2SMatthias Ringwald if (gatt_bearer_con_handle != HCI_CON_HANDLE_INVALID && mesh_foundation_gatt_proxy_get() != 0){ 23577ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT; 2364662af4aSMatthias Ringwald gatt_bearer_request_can_send_now_for_beacon(); 2372931ab39SMatthias Ringwald break; 2382931ab39SMatthias Ringwald } 23977ba3d3fSMatthias Ringwald #endif 2408b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 24177ba3d3fSMatthias Ringwald 24277ba3d3fSMatthias Ringwald /** Explict Fall-through */ 24377ba3d3fSMatthias Ringwald 24477ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_GATT_SENT: 24577ba3d3fSMatthias Ringwald // now, start listening for beacons 24677ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_INTERVAL; 24777ba3d3fSMatthias Ringwald // and request timeout 24877ba3d3fSMatthias Ringwald if (next_timeout_ms == 0 || next_timeout_ms > subnet->beacon_interval_ms){ 24977ba3d3fSMatthias Ringwald next_timeout_ms = subnet->beacon_interval_ms; 25077ba3d3fSMatthias Ringwald } 25177ba3d3fSMatthias Ringwald break; 2522931ab39SMatthias Ringwald 25377ba3d3fSMatthias Ringwald default: 25477ba3d3fSMatthias Ringwald break; 25577ba3d3fSMatthias Ringwald } 25677ba3d3fSMatthias Ringwald } 25777ba3d3fSMatthias Ringwald 25877ba3d3fSMatthias Ringwald // setup next run 25977ba3d3fSMatthias Ringwald if (next_timeout_ms == 0) return; 26077ba3d3fSMatthias Ringwald 2617c8ffd3dSMatthias Ringwald btstack_run_loop_set_timer(&beacon_timer, next_timeout_ms); 26277ba3d3fSMatthias Ringwald btstack_run_loop_set_timer_handler(&beacon_timer, mesh_secure_network_beacon_run); 26377ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(&beacon_timer); 26477ba3d3fSMatthias Ringwald } 26577ba3d3fSMatthias Ringwald 26677ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon_auth_value_calculated(void * arg){ 26777ba3d3fSMatthias Ringwald UNUSED(arg); 26877ba3d3fSMatthias Ringwald 26977ba3d3fSMatthias Ringwald // pass on, if auth value checks out 27077ba3d3fSMatthias Ringwald if (memcmp(&mesh_secure_network_beacon_validate_buffer[14], mesh_secure_network_beacon_auth_value, 8) == 0) { 27177ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_handler){ 27277ba3d3fSMatthias Ringwald (*mesh_secure_network_beacon_handler)(MESH_BEACON_PACKET, 0, mesh_secure_network_beacon_validate_buffer, SECURE_NETWORK_BEACON_LEN); 27377ba3d3fSMatthias Ringwald } 27477ba3d3fSMatthias Ringwald } 27577ba3d3fSMatthias Ringwald 27677ba3d3fSMatthias Ringwald // done 27777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 0; 27877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 27977ba3d3fSMatthias Ringwald } 28077ba3d3fSMatthias Ringwald 28177ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon(uint8_t * packet, uint16_t size){ 28277ba3d3fSMatthias Ringwald if (size != SECURE_NETWORK_BEACON_LEN) return; 28377ba3d3fSMatthias Ringwald 28489e0288aSMatthias Ringwald // lookup subnet and netkey by network id 28577ba3d3fSMatthias Ringwald uint8_t * beacon_network_id = &packet[2]; 2862fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 2872fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 2882fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = NULL; 28989e0288aSMatthias Ringwald mesh_network_key_t * network_key = NULL; 2902fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 2912fa98d7eSMatthias Ringwald mesh_subnet_t * item = mesh_subnet_iterator_get_next(&it); 292569f13d0SMatthias Ringwald if (memcmp(item->old_key->network_id, beacon_network_id, 8) == 0 ) { 29377ba3d3fSMatthias Ringwald subnet = item; 29489e0288aSMatthias Ringwald network_key = item->old_key; 295569f13d0SMatthias Ringwald } 296569f13d0SMatthias Ringwald if (item->new_key != NULL && memcmp(item->new_key->network_id, beacon_network_id, 8) == 0 ) { 297569f13d0SMatthias Ringwald subnet = item; 29889e0288aSMatthias Ringwald network_key = item->new_key; 299569f13d0SMatthias Ringwald } 30077ba3d3fSMatthias Ringwald break; 30177ba3d3fSMatthias Ringwald } 30277ba3d3fSMatthias Ringwald if (subnet == NULL) return; 30377ba3d3fSMatthias Ringwald 30477ba3d3fSMatthias Ringwald // count beacon 30577ba3d3fSMatthias Ringwald subnet->beacon_observation_counter++; 30677ba3d3fSMatthias Ringwald 30777ba3d3fSMatthias Ringwald // check if new flags are set 30877ba3d3fSMatthias Ringwald uint8_t current_flags = mesh_secure_network_beacon_get_flags(subnet); 30977ba3d3fSMatthias Ringwald uint8_t new_flags = packet[1] & (~current_flags); 31077ba3d3fSMatthias Ringwald 31177ba3d3fSMatthias Ringwald if (new_flags == 0) return; 31277ba3d3fSMatthias Ringwald 31377ba3d3fSMatthias Ringwald // validate beacon - if crytpo ready 31477ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active) return; 31577ba3d3fSMatthias Ringwald 31677ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 31777ba3d3fSMatthias Ringwald memcpy(mesh_secure_network_beacon_validate_buffer, &packet[0], SECURE_NETWORK_BEACON_LEN); 31877ba3d3fSMatthias Ringwald 319bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 32077ba3d3fSMatthias Ringwald &mesh_secure_network_beacon_validate_buffer[1], mesh_secure_network_beacon_auth_value, &beacon_handle_secure_beacon_auth_value_calculated, subnet); 32177ba3d3fSMatthias Ringwald } 32277ba3d3fSMatthias Ringwald 32377ba3d3fSMatthias Ringwald static void beacon_handle_beacon_packet(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 32477ba3d3fSMatthias Ringwald log_info("beacon type %u", packet[0]); 32577ba3d3fSMatthias Ringwald switch (packet[0]){ 32677ba3d3fSMatthias Ringwald case BEACON_TYPE_UNPROVISIONED_DEVICE: 32777ba3d3fSMatthias Ringwald if (unprovisioned_device_beacon_handler){ 32877ba3d3fSMatthias Ringwald (*unprovisioned_device_beacon_handler)(packet_type, channel, packet, size); 32977ba3d3fSMatthias Ringwald } 33077ba3d3fSMatthias Ringwald break; 33177ba3d3fSMatthias Ringwald case BEACON_TYPE_SECURE_NETWORK: 33277ba3d3fSMatthias Ringwald beacon_handle_secure_beacon(packet, size); 33377ba3d3fSMatthias Ringwald break; 33477ba3d3fSMatthias Ringwald default: 33577ba3d3fSMatthias Ringwald break; 33677ba3d3fSMatthias Ringwald } 33777ba3d3fSMatthias Ringwald } 33877ba3d3fSMatthias Ringwald 339b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 34077ba3d3fSMatthias Ringwald static void beacon_adv_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 3412fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 34277ba3d3fSMatthias Ringwald switch (packet_type){ 34377ba3d3fSMatthias Ringwald case HCI_EVENT_PACKET: 34477ba3d3fSMatthias Ringwald switch(packet[0]){ 34577ba3d3fSMatthias Ringwald case HCI_EVENT_MESH_META: 34677ba3d3fSMatthias Ringwald switch(packet[2]){ 34777ba3d3fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 34877ba3d3fSMatthias Ringwald if (beacon_send_device_beacon){ 34977ba3d3fSMatthias Ringwald beacon_send_device_beacon = 0; 3504662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 35177ba3d3fSMatthias Ringwald break; 35277ba3d3fSMatthias Ringwald } 35377ba3d3fSMatthias Ringwald // secure beacon state machine 3542fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3552fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3562fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 35777ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 35877ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV: 3594662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 36077ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 36177ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 36277ba3d3fSMatthias Ringwald break; 36377ba3d3fSMatthias Ringwald default: 36477ba3d3fSMatthias Ringwald break; 36577ba3d3fSMatthias Ringwald } 36677ba3d3fSMatthias Ringwald } 36777ba3d3fSMatthias Ringwald break; 36877ba3d3fSMatthias Ringwald default: 36977ba3d3fSMatthias Ringwald break; 37077ba3d3fSMatthias Ringwald } 37177ba3d3fSMatthias Ringwald break; 37277ba3d3fSMatthias Ringwald default: 37377ba3d3fSMatthias Ringwald break; 37477ba3d3fSMatthias Ringwald } 37577ba3d3fSMatthias Ringwald break; 37677ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 37777ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 37877ba3d3fSMatthias Ringwald break; 37977ba3d3fSMatthias Ringwald default: 38077ba3d3fSMatthias Ringwald break; 38177ba3d3fSMatthias Ringwald } 38277ba3d3fSMatthias Ringwald } 383b3a527ecSMatthias Ringwald #endif 38477ba3d3fSMatthias Ringwald 38577ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 38621ed246fSMatthias Ringwald // handle MESH_SUBEVENT_PROXY_DISCONNECTED and MESH_SUBEVENT_CAN_SEND_NOW 38721ed246fSMatthias Ringwald static void beacon_gatt_handle_mesh_event(uint8_t mesh_subevent){ 3882fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 3892fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3902fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3912fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 39277ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 39377ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT: 39421ed246fSMatthias Ringwald // skip send on MESH_SUBEVENT_PROXY_DISCONNECTED 39521ed246fSMatthias Ringwald if (mesh_subevent == MESH_SUBEVENT_CAN_SEND_NOW){ 3964662af4aSMatthias Ringwald gatt_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 39721ed246fSMatthias Ringwald } 39877ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 39977ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 40077ba3d3fSMatthias Ringwald break; 40177ba3d3fSMatthias Ringwald default: 40277ba3d3fSMatthias Ringwald break; 40377ba3d3fSMatthias Ringwald } 40477ba3d3fSMatthias Ringwald } 40521ed246fSMatthias Ringwald 40621ed246fSMatthias Ringwald } 40721ed246fSMatthias Ringwald 40821ed246fSMatthias Ringwald static void beacon_gatt_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 40921ed246fSMatthias Ringwald uint8_t mesh_subevent; 41021ed246fSMatthias Ringwald switch (packet_type){ 41121ed246fSMatthias Ringwald case HCI_EVENT_PACKET: 41221ed246fSMatthias Ringwald switch(packet[0]){ 41321ed246fSMatthias Ringwald case HCI_EVENT_MESH_META: 41421ed246fSMatthias Ringwald mesh_subevent = packet[2]; 41521ed246fSMatthias Ringwald switch(mesh_subevent){ 41621ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_CONNECTED: 41721ed246fSMatthias Ringwald gatt_bearer_con_handle = mesh_subevent_proxy_connected_get_con_handle(packet); 41821ed246fSMatthias Ringwald break; 41921ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_DISCONNECTED: 42021ed246fSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 42121ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 42221ed246fSMatthias Ringwald break; 42321ed246fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 42421ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 42577ba3d3fSMatthias Ringwald break; 42677ba3d3fSMatthias Ringwald default: 42777ba3d3fSMatthias Ringwald break; 42877ba3d3fSMatthias Ringwald } 42977ba3d3fSMatthias Ringwald break; 43077ba3d3fSMatthias Ringwald default: 43177ba3d3fSMatthias Ringwald break; 43277ba3d3fSMatthias Ringwald } 43377ba3d3fSMatthias Ringwald break; 43477ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 43577ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 43677ba3d3fSMatthias Ringwald break; 43777ba3d3fSMatthias Ringwald default: 43877ba3d3fSMatthias Ringwald break; 43977ba3d3fSMatthias Ringwald } 44077ba3d3fSMatthias Ringwald } 44177ba3d3fSMatthias Ringwald #endif 44277ba3d3fSMatthias Ringwald 44377ba3d3fSMatthias Ringwald void beacon_init(void){ 444b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 4454662af4aSMatthias Ringwald adv_bearer_register_for_beacon(&beacon_adv_packet_handler); 446b3a527ecSMatthias Ringwald #endif 44777ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 448b3a527ecSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 4494662af4aSMatthias Ringwald gatt_bearer_register_for_beacon(&beacon_gatt_packet_handler); 45077ba3d3fSMatthias Ringwald #endif 45177ba3d3fSMatthias Ringwald } 45277ba3d3fSMatthias Ringwald 45377ba3d3fSMatthias Ringwald /** 45477ba3d3fSMatthias Ringwald * Start Unprovisioned Device Beacon 45577ba3d3fSMatthias Ringwald */ 45677ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_start(const uint8_t * device_uuid, uint16_t oob_information){ 457b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 45877ba3d3fSMatthias Ringwald beacon_oob_information = oob_information; 45977ba3d3fSMatthias Ringwald if (device_uuid){ 46077ba3d3fSMatthias Ringwald beacon_device_uuid = device_uuid; 46177ba3d3fSMatthias Ringwald beacon_timer.process = &beacon_timer_handler; 46277ba3d3fSMatthias Ringwald beacon_timer_handler(&beacon_timer); 46377ba3d3fSMatthias Ringwald } 464b3a527ecSMatthias Ringwald #endif 46577ba3d3fSMatthias Ringwald } 46677ba3d3fSMatthias Ringwald 46777ba3d3fSMatthias Ringwald /** 46877ba3d3fSMatthias Ringwald * Stop Unprovisioned Device Beacon 46977ba3d3fSMatthias Ringwald */ 47077ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_stop(void){ 471b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 47277ba3d3fSMatthias Ringwald btstack_run_loop_remove_timer(&beacon_timer); 473b3a527ecSMatthias Ringwald #endif 47477ba3d3fSMatthias Ringwald } 47577ba3d3fSMatthias Ringwald 47677ba3d3fSMatthias Ringwald // secure network beacons 47777ba3d3fSMatthias Ringwald 4782fa98d7eSMatthias Ringwald void beacon_secure_network_start(mesh_subnet_t * mesh_subnet){ 47977ba3d3fSMatthias Ringwald // default interval 4802fa98d7eSMatthias Ringwald mesh_subnet->beacon_interval_ms = SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 4812fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_start_ms = btstack_run_loop_get_time_ms(); 4822fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_counter = 0; 483*15cb14e1SMatthias Ringwald if (mesh_foundation_beacon_get()){ 484*15cb14e1SMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 485*15cb14e1SMatthias Ringwald } else { 486*15cb14e1SMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 487*15cb14e1SMatthias Ringwald } 48877ba3d3fSMatthias Ringwald 48977ba3d3fSMatthias Ringwald // start sending 49077ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 49177ba3d3fSMatthias Ringwald } 49277ba3d3fSMatthias Ringwald 49377ba3d3fSMatthias Ringwald // register handler 49477ba3d3fSMatthias Ringwald void beacon_register_for_unprovisioned_device_beacons(btstack_packet_handler_t packet_handler){ 49577ba3d3fSMatthias Ringwald unprovisioned_device_beacon_handler = packet_handler; 49677ba3d3fSMatthias Ringwald } 49777ba3d3fSMatthias Ringwald 49877ba3d3fSMatthias Ringwald void beacon_register_for_secure_network_beacons(btstack_packet_handler_t packet_handler){ 49977ba3d3fSMatthias Ringwald mesh_secure_network_beacon_handler = packet_handler; 50077ba3d3fSMatthias Ringwald } 501