177ba3d3fSMatthias Ringwald /* 277ba3d3fSMatthias Ringwald * Copyright (C) 2017 BlueKitchen GmbH 377ba3d3fSMatthias Ringwald * 477ba3d3fSMatthias Ringwald * Redistribution and use in source and binary forms, with or without 577ba3d3fSMatthias Ringwald * modification, are permitted provided that the following conditions 677ba3d3fSMatthias Ringwald * are met: 777ba3d3fSMatthias Ringwald * 877ba3d3fSMatthias Ringwald * 1. Redistributions of source code must retain the above copyright 977ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer. 1077ba3d3fSMatthias Ringwald * 2. Redistributions in binary form must reproduce the above copyright 1177ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer in the 1277ba3d3fSMatthias Ringwald * documentation and/or other materials provided with the distribution. 1377ba3d3fSMatthias Ringwald * 3. Neither the name of the copyright holders nor the names of 1477ba3d3fSMatthias Ringwald * contributors may be used to endorse or promote products derived 1577ba3d3fSMatthias Ringwald * from this software without specific prior written permission. 1677ba3d3fSMatthias Ringwald * 4. Any redistribution, use, or modification is done solely for 1777ba3d3fSMatthias Ringwald * personal benefit and not for any commercial purpose or for 1877ba3d3fSMatthias Ringwald * monetary gain. 1977ba3d3fSMatthias Ringwald * 2077ba3d3fSMatthias Ringwald * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS 2177ba3d3fSMatthias Ringwald * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 2277ba3d3fSMatthias Ringwald * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 2377ba3d3fSMatthias Ringwald * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS 2477ba3d3fSMatthias Ringwald * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 2577ba3d3fSMatthias Ringwald * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 2677ba3d3fSMatthias Ringwald * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS 2777ba3d3fSMatthias Ringwald * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED 2877ba3d3fSMatthias Ringwald * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 2977ba3d3fSMatthias Ringwald * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 3077ba3d3fSMatthias Ringwald * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3177ba3d3fSMatthias Ringwald * SUCH DAMAGE. 3277ba3d3fSMatthias Ringwald * 3377ba3d3fSMatthias Ringwald * Please inquire about commercial licensing options at 3477ba3d3fSMatthias Ringwald * [email protected] 3577ba3d3fSMatthias Ringwald * 3677ba3d3fSMatthias Ringwald */ 3777ba3d3fSMatthias Ringwald 38b3a527ecSMatthias Ringwald #define __BTSTACK_FILE__ "beacon.c" 3977ba3d3fSMatthias Ringwald 40f4854a5eSMatthias Ringwald #include "mesh/beacon.h" 41f4854a5eSMatthias Ringwald 4277ba3d3fSMatthias Ringwald #include <string.h> 4377ba3d3fSMatthias Ringwald 4477ba3d3fSMatthias Ringwald #include "ble/core.h" 4577ba3d3fSMatthias Ringwald #include "bluetooth.h" 4677ba3d3fSMatthias Ringwald #include "bluetooth_data_types.h" 4777ba3d3fSMatthias Ringwald #include "btstack_debug.h" 4877ba3d3fSMatthias Ringwald #include "btstack_event.h" 49f4854a5eSMatthias Ringwald #include "btstack_run_loop.h" 50f4854a5eSMatthias Ringwald #include "btstack_util.h" 5177ba3d3fSMatthias Ringwald #include "gap.h" 52f4854a5eSMatthias Ringwald 53f4854a5eSMatthias Ringwald #include "mesh/adv_bearer.h" 54f4854a5eSMatthias Ringwald #include "mesh/gatt_bearer.h" 55f4854a5eSMatthias Ringwald #include "mesh/mesh_foundation.h" 56f4854a5eSMatthias Ringwald #include "mesh/mesh_iv_index_seq_number.h" 57f4854a5eSMatthias Ringwald #include "mesh/mesh_keys.h" 5877ba3d3fSMatthias Ringwald 5977ba3d3fSMatthias Ringwald #define BEACON_TYPE_UNPROVISIONED_DEVICE 0 6077ba3d3fSMatthias Ringwald #define BEACON_TYPE_SECURE_NETWORK 1 6177ba3d3fSMatthias Ringwald 6277ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_INTERVAL_MS 5000 6377ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_LEN 23 6477ba3d3fSMatthias Ringwald 6577ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MIN_MS 10000 6677ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MAX_MS 600000 6777ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_LEN 22 6877ba3d3fSMatthias Ringwald 6977ba3d3fSMatthias Ringwald // prototypes 7077ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts); 7177ba3d3fSMatthias Ringwald 72b3a527ecSMatthias Ringwald // bearers 73b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 74b3a527ecSMatthias Ringwald static hci_con_handle_t gatt_bearer_con_handle; 75b3a527ecSMatthias Ringwald #endif 76b3a527ecSMatthias Ringwald 7777ba3d3fSMatthias Ringwald // beacon 7877ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_data[29]; 7977ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_len; 8077ba3d3fSMatthias Ringwald static btstack_timer_source_t beacon_timer; 8177ba3d3fSMatthias Ringwald 8277ba3d3fSMatthias Ringwald // unprovisioned device beacon 83b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 8477ba3d3fSMatthias Ringwald static const uint8_t * beacon_device_uuid; 8577ba3d3fSMatthias Ringwald static uint16_t beacon_oob_information; 8677ba3d3fSMatthias Ringwald static uint32_t beacon_uri_hash; 8777ba3d3fSMatthias Ringwald static int beacon_send_device_beacon; 88b3a527ecSMatthias Ringwald #endif 8977ba3d3fSMatthias Ringwald 9077ba3d3fSMatthias Ringwald static btstack_packet_handler_t unprovisioned_device_beacon_handler; 9177ba3d3fSMatthias Ringwald 9277ba3d3fSMatthias Ringwald // secure network beacon 9377ba3d3fSMatthias Ringwald static btstack_crypto_aes128_cmac_t mesh_secure_network_beacon_cmac_request; 9477ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_auth_value[16]; 9577ba3d3fSMatthias Ringwald static btstack_packet_handler_t mesh_secure_network_beacon_handler; 9677ba3d3fSMatthias Ringwald static int mesh_secure_network_beacon_active; 9777ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_validate_buffer[SECURE_NETWORK_BEACON_LEN]; 9877ba3d3fSMatthias Ringwald 99b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 10077ba3d3fSMatthias Ringwald static void beacon_timer_handler(btstack_timer_source_t * ts){ 10177ba3d3fSMatthias Ringwald // restart timer 10277ba3d3fSMatthias Ringwald btstack_run_loop_set_timer(ts, UNPROVISIONED_BEACON_INTERVAL_MS); 10377ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(ts); 10477ba3d3fSMatthias Ringwald 10577ba3d3fSMatthias Ringwald // setup beacon 10677ba3d3fSMatthias Ringwald mesh_beacon_len = UNPROVISIONED_BEACON_LEN; 10777ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_UNPROVISIONED_DEVICE; 10877ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[1], beacon_device_uuid, 16); 10977ba3d3fSMatthias Ringwald big_endian_store_16(mesh_beacon_data, 17, beacon_oob_information); 11077ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 19, beacon_uri_hash); 11177ba3d3fSMatthias Ringwald 11277ba3d3fSMatthias Ringwald // request to send 11377ba3d3fSMatthias Ringwald beacon_send_device_beacon = 1; 1144662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 11577ba3d3fSMatthias Ringwald } 116b3a527ecSMatthias Ringwald #endif 11777ba3d3fSMatthias Ringwald 11877ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_auth_value_calculated(void * arg){ 1192fa98d7eSMatthias Ringwald mesh_subnet_t * mesh_subnet = (mesh_subnet_t *) arg; 12077ba3d3fSMatthias Ringwald 12177ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[14], mesh_secure_network_beacon_auth_value, 8); 12277ba3d3fSMatthias Ringwald mesh_beacon_len = SECURE_NETWORK_BEACON_LEN; 12377ba3d3fSMatthias Ringwald 12477ba3d3fSMatthias Ringwald printf("Secure Network Beacon\n"); 12577ba3d3fSMatthias Ringwald printf("- "); 12677ba3d3fSMatthias Ringwald printf_hexdump(mesh_beacon_data, mesh_beacon_len); 12777ba3d3fSMatthias Ringwald 128*2d63f17cSMatthias Ringwald mesh_secure_network_beacon_active = 0; 1292fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_AUTH_VALUE; 13077ba3d3fSMatthias Ringwald 13177ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 13277ba3d3fSMatthias Ringwald } 13377ba3d3fSMatthias Ringwald 1342fa98d7eSMatthias Ringwald static uint8_t mesh_secure_network_beacon_get_flags(mesh_subnet_t * mesh_subnet){ 13577ba3d3fSMatthias Ringwald uint8_t mesh_flags = 0; 1362fa98d7eSMatthias Ringwald if (mesh_subnet->key_refresh != MESH_KEY_REFRESH_NOT_ACTIVE){ 13777ba3d3fSMatthias Ringwald mesh_flags |= 1; 13877ba3d3fSMatthias Ringwald } 1397d005332SMatthias Ringwald if (mesh_iv_update_active()){ 1407d005332SMatthias Ringwald mesh_flags |= 2; 1417d005332SMatthias Ringwald } 14277ba3d3fSMatthias Ringwald 14377ba3d3fSMatthias Ringwald return mesh_flags; 14477ba3d3fSMatthias Ringwald } 14577ba3d3fSMatthias Ringwald 1462fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_setup(mesh_subnet_t * mesh_subnet){ 14777ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_SECURE_NETWORK; 1482fa98d7eSMatthias Ringwald mesh_beacon_data[1] = mesh_secure_network_beacon_get_flags(mesh_subnet); 1492fa98d7eSMatthias Ringwald // TODO: pick correct key based on key refresh phase 1502fa98d7eSMatthias Ringwald 1512fa98d7eSMatthias Ringwald memcpy(&mesh_beacon_data[2], mesh_subnet->old_key->network_id, 8); 15277ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 10, mesh_get_iv_index()); 153bdf219b2SMatthias Ringwald mesh_network_key_t * network_key = mesh_subnet_get_outgoing_network_key(mesh_subnet); 154bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 1552fa98d7eSMatthias Ringwald &mesh_beacon_data[1], mesh_secure_network_beacon_auth_value, &mesh_secure_network_beacon_auth_value_calculated, mesh_subnet); 15677ba3d3fSMatthias Ringwald } 15777ba3d3fSMatthias Ringwald 1582fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_update_interval(mesh_subnet_t * subnet){ 15977ba3d3fSMatthias Ringwald uint32_t min_observation_period_ms = 2 * subnet->beacon_interval_ms; 16077ba3d3fSMatthias Ringwald uint32_t actual_observation_period = btstack_time_delta(btstack_run_loop_get_time_ms(), subnet->beacon_observation_start_ms); 16177ba3d3fSMatthias Ringwald 16277ba3d3fSMatthias Ringwald // The Observation Period in seconds should typically be double the typical Beacon Interval. 16377ba3d3fSMatthias Ringwald if (actual_observation_period < min_observation_period_ms) return; 16477ba3d3fSMatthias Ringwald 16577ba3d3fSMatthias Ringwald // Expected Number of Beacons (1 beacon per 10 seconds) 16677ba3d3fSMatthias Ringwald uint16_t expected_number_of_beacons = actual_observation_period / SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 16777ba3d3fSMatthias Ringwald 16877ba3d3fSMatthias Ringwald // Beacon Interval = Observation Period * (Observed Number of Beacons + 1) / Expected Number of Beacons 16977ba3d3fSMatthias Ringwald uint32_t new_beacon_interval = actual_observation_period * (subnet->beacon_observation_counter + 1) / expected_number_of_beacons; 17077ba3d3fSMatthias Ringwald 17177ba3d3fSMatthias Ringwald if (new_beacon_interval > SECURE_NETWORK_BEACON_INTERVAL_MAX_MS){ 17277ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17377ba3d3fSMatthias Ringwald } 17477ba3d3fSMatthias Ringwald else if (new_beacon_interval < SECURE_NETWORK_BEACON_INTERVAL_MIN_MS){ 17577ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17677ba3d3fSMatthias Ringwald } 17777ba3d3fSMatthias Ringwald subnet->beacon_interval_ms = new_beacon_interval; 17877ba3d3fSMatthias Ringwald log_info("New beacon interval %u seconds", (int) (subnet->beacon_interval_ms / 1000)); 17977ba3d3fSMatthias Ringwald } 18077ba3d3fSMatthias Ringwald 18177ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts){ 18277ba3d3fSMatthias Ringwald UNUSED(ts); 18377ba3d3fSMatthias Ringwald 18477ba3d3fSMatthias Ringwald uint32_t next_timeout_ms = 0; 18577ba3d3fSMatthias Ringwald 18677ba3d3fSMatthias Ringwald // iterate over all networks 1872fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 1882fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 1892fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 1902fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 19177ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 19277ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W4_INTERVAL: 19377ba3d3fSMatthias Ringwald // update beacon interval 19477ba3d3fSMatthias Ringwald mesh_secure_network_beacon_update_interval(subnet); 19577ba3d3fSMatthias Ringwald 19677ba3d3fSMatthias Ringwald // send new beacon 19777ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 19877ba3d3fSMatthias Ringwald 19977ba3d3fSMatthias Ringwald /** Explict Fall-through */ 20077ba3d3fSMatthias Ringwald 20177ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE: 20277ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active){ 20377ba3d3fSMatthias Ringwald // just try again in 10 ms 20477ba3d3fSMatthias Ringwald next_timeout_ms = 10; 20577ba3d3fSMatthias Ringwald break; 20677ba3d3fSMatthias Ringwald } 20721ed246fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_AUTH_VALUE; 20877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 20977ba3d3fSMatthias Ringwald mesh_secure_network_beacon_setup(subnet); 21077ba3d3fSMatthias Ringwald break; 21177ba3d3fSMatthias Ringwald 21277ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_AUTH_VALUE: 21377ba3d3fSMatthias Ringwald 21477ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 21577ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV; 2164662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 21777ba3d3fSMatthias Ringwald break; 21877ba3d3fSMatthias Ringwald #endif 2198b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 22077ba3d3fSMatthias Ringwald 22177ba3d3fSMatthias Ringwald /** Explict Fall-through */ 22277ba3d3fSMatthias Ringwald 22377ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_ADV_SENT: 22477ba3d3fSMatthias Ringwald 22577ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 2268b0144a2SMatthias Ringwald if (gatt_bearer_con_handle != HCI_CON_HANDLE_INVALID && mesh_foundation_gatt_proxy_get() != 0){ 22777ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT; 2284662af4aSMatthias Ringwald gatt_bearer_request_can_send_now_for_beacon(); 2292931ab39SMatthias Ringwald break; 2302931ab39SMatthias Ringwald } 23177ba3d3fSMatthias Ringwald #endif 2328b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 23377ba3d3fSMatthias Ringwald 23477ba3d3fSMatthias Ringwald /** Explict Fall-through */ 23577ba3d3fSMatthias Ringwald 23677ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_GATT_SENT: 23777ba3d3fSMatthias Ringwald // now, start listening for beacons 23877ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_INTERVAL; 23977ba3d3fSMatthias Ringwald // and request timeout 24077ba3d3fSMatthias Ringwald if (next_timeout_ms == 0 || next_timeout_ms > subnet->beacon_interval_ms){ 24177ba3d3fSMatthias Ringwald next_timeout_ms = subnet->beacon_interval_ms; 24277ba3d3fSMatthias Ringwald } 24377ba3d3fSMatthias Ringwald break; 2442931ab39SMatthias Ringwald 24577ba3d3fSMatthias Ringwald default: 24677ba3d3fSMatthias Ringwald break; 24777ba3d3fSMatthias Ringwald } 24877ba3d3fSMatthias Ringwald } 24977ba3d3fSMatthias Ringwald 25077ba3d3fSMatthias Ringwald // setup next run 25177ba3d3fSMatthias Ringwald if (next_timeout_ms == 0) return; 25277ba3d3fSMatthias Ringwald 2537c8ffd3dSMatthias Ringwald btstack_run_loop_set_timer(&beacon_timer, next_timeout_ms); 25477ba3d3fSMatthias Ringwald btstack_run_loop_set_timer_handler(&beacon_timer, mesh_secure_network_beacon_run); 25577ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(&beacon_timer); 25677ba3d3fSMatthias Ringwald } 25777ba3d3fSMatthias Ringwald 25877ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon_auth_value_calculated(void * arg){ 25977ba3d3fSMatthias Ringwald UNUSED(arg); 26077ba3d3fSMatthias Ringwald 26177ba3d3fSMatthias Ringwald // pass on, if auth value checks out 26277ba3d3fSMatthias Ringwald if (memcmp(&mesh_secure_network_beacon_validate_buffer[14], mesh_secure_network_beacon_auth_value, 8) == 0) { 26377ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_handler){ 26477ba3d3fSMatthias Ringwald (*mesh_secure_network_beacon_handler)(MESH_BEACON_PACKET, 0, mesh_secure_network_beacon_validate_buffer, SECURE_NETWORK_BEACON_LEN); 26577ba3d3fSMatthias Ringwald } 26677ba3d3fSMatthias Ringwald } 26777ba3d3fSMatthias Ringwald 26877ba3d3fSMatthias Ringwald // done 26977ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 0; 27077ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 27177ba3d3fSMatthias Ringwald } 27277ba3d3fSMatthias Ringwald 27377ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon(uint8_t * packet, uint16_t size){ 27477ba3d3fSMatthias Ringwald if (size != SECURE_NETWORK_BEACON_LEN) return; 27577ba3d3fSMatthias Ringwald 27689e0288aSMatthias Ringwald // lookup subnet and netkey by network id 27777ba3d3fSMatthias Ringwald uint8_t * beacon_network_id = &packet[2]; 2782fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 2792fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 2802fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = NULL; 28189e0288aSMatthias Ringwald mesh_network_key_t * network_key = NULL; 2822fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 2832fa98d7eSMatthias Ringwald mesh_subnet_t * item = mesh_subnet_iterator_get_next(&it); 284569f13d0SMatthias Ringwald if (memcmp(item->old_key->network_id, beacon_network_id, 8) == 0 ) { 28577ba3d3fSMatthias Ringwald subnet = item; 28689e0288aSMatthias Ringwald network_key = item->old_key; 287569f13d0SMatthias Ringwald } 288569f13d0SMatthias Ringwald if (item->new_key != NULL && memcmp(item->new_key->network_id, beacon_network_id, 8) == 0 ) { 289569f13d0SMatthias Ringwald subnet = item; 29089e0288aSMatthias Ringwald network_key = item->new_key; 291569f13d0SMatthias Ringwald } 29277ba3d3fSMatthias Ringwald break; 29377ba3d3fSMatthias Ringwald } 29477ba3d3fSMatthias Ringwald if (subnet == NULL) return; 29577ba3d3fSMatthias Ringwald 29677ba3d3fSMatthias Ringwald // count beacon 29777ba3d3fSMatthias Ringwald subnet->beacon_observation_counter++; 29877ba3d3fSMatthias Ringwald 29977ba3d3fSMatthias Ringwald // check if new flags are set 30077ba3d3fSMatthias Ringwald uint8_t current_flags = mesh_secure_network_beacon_get_flags(subnet); 30177ba3d3fSMatthias Ringwald uint8_t new_flags = packet[1] & (~current_flags); 30277ba3d3fSMatthias Ringwald 30377ba3d3fSMatthias Ringwald if (new_flags == 0) return; 30477ba3d3fSMatthias Ringwald 30577ba3d3fSMatthias Ringwald // validate beacon - if crytpo ready 30677ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active) return; 30777ba3d3fSMatthias Ringwald 30877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 30977ba3d3fSMatthias Ringwald memcpy(mesh_secure_network_beacon_validate_buffer, &packet[0], SECURE_NETWORK_BEACON_LEN); 31077ba3d3fSMatthias Ringwald 311bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 31277ba3d3fSMatthias Ringwald &mesh_secure_network_beacon_validate_buffer[1], mesh_secure_network_beacon_auth_value, &beacon_handle_secure_beacon_auth_value_calculated, subnet); 31377ba3d3fSMatthias Ringwald } 31477ba3d3fSMatthias Ringwald 31577ba3d3fSMatthias Ringwald static void beacon_handle_beacon_packet(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 31677ba3d3fSMatthias Ringwald log_info("beacon type %u", packet[0]); 31777ba3d3fSMatthias Ringwald switch (packet[0]){ 31877ba3d3fSMatthias Ringwald case BEACON_TYPE_UNPROVISIONED_DEVICE: 31977ba3d3fSMatthias Ringwald if (unprovisioned_device_beacon_handler){ 32077ba3d3fSMatthias Ringwald (*unprovisioned_device_beacon_handler)(packet_type, channel, packet, size); 32177ba3d3fSMatthias Ringwald } 32277ba3d3fSMatthias Ringwald break; 32377ba3d3fSMatthias Ringwald case BEACON_TYPE_SECURE_NETWORK: 32477ba3d3fSMatthias Ringwald beacon_handle_secure_beacon(packet, size); 32577ba3d3fSMatthias Ringwald break; 32677ba3d3fSMatthias Ringwald default: 32777ba3d3fSMatthias Ringwald break; 32877ba3d3fSMatthias Ringwald } 32977ba3d3fSMatthias Ringwald } 33077ba3d3fSMatthias Ringwald 331b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 33277ba3d3fSMatthias Ringwald static void beacon_adv_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 3332fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 33477ba3d3fSMatthias Ringwald switch (packet_type){ 33577ba3d3fSMatthias Ringwald case HCI_EVENT_PACKET: 33677ba3d3fSMatthias Ringwald switch(packet[0]){ 33777ba3d3fSMatthias Ringwald case HCI_EVENT_MESH_META: 33877ba3d3fSMatthias Ringwald switch(packet[2]){ 33977ba3d3fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 34077ba3d3fSMatthias Ringwald if (beacon_send_device_beacon){ 34177ba3d3fSMatthias Ringwald beacon_send_device_beacon = 0; 3424662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 34377ba3d3fSMatthias Ringwald break; 34477ba3d3fSMatthias Ringwald } 34577ba3d3fSMatthias Ringwald // secure beacon state machine 3462fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3472fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3482fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 34977ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 35077ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV: 3514662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 35277ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 35377ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 35477ba3d3fSMatthias Ringwald break; 35577ba3d3fSMatthias Ringwald default: 35677ba3d3fSMatthias Ringwald break; 35777ba3d3fSMatthias Ringwald } 35877ba3d3fSMatthias Ringwald } 35977ba3d3fSMatthias Ringwald break; 36077ba3d3fSMatthias Ringwald default: 36177ba3d3fSMatthias Ringwald break; 36277ba3d3fSMatthias Ringwald } 36377ba3d3fSMatthias Ringwald break; 36477ba3d3fSMatthias Ringwald default: 36577ba3d3fSMatthias Ringwald break; 36677ba3d3fSMatthias Ringwald } 36777ba3d3fSMatthias Ringwald break; 36877ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 36977ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 37077ba3d3fSMatthias Ringwald break; 37177ba3d3fSMatthias Ringwald default: 37277ba3d3fSMatthias Ringwald break; 37377ba3d3fSMatthias Ringwald } 37477ba3d3fSMatthias Ringwald } 375b3a527ecSMatthias Ringwald #endif 37677ba3d3fSMatthias Ringwald 37777ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 37821ed246fSMatthias Ringwald // handle MESH_SUBEVENT_PROXY_DISCONNECTED and MESH_SUBEVENT_CAN_SEND_NOW 37921ed246fSMatthias Ringwald static void beacon_gatt_handle_mesh_event(uint8_t mesh_subevent){ 3802fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 3812fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3822fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3832fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 38477ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 38577ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT: 38621ed246fSMatthias Ringwald // skip send on MESH_SUBEVENT_PROXY_DISCONNECTED 38721ed246fSMatthias Ringwald if (mesh_subevent == MESH_SUBEVENT_CAN_SEND_NOW){ 3884662af4aSMatthias Ringwald gatt_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 38921ed246fSMatthias Ringwald } 39077ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 39177ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 39277ba3d3fSMatthias Ringwald break; 39377ba3d3fSMatthias Ringwald default: 39477ba3d3fSMatthias Ringwald break; 39577ba3d3fSMatthias Ringwald } 39677ba3d3fSMatthias Ringwald } 39721ed246fSMatthias Ringwald 39821ed246fSMatthias Ringwald } 39921ed246fSMatthias Ringwald 40021ed246fSMatthias Ringwald static void beacon_gatt_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 40121ed246fSMatthias Ringwald uint8_t mesh_subevent; 40221ed246fSMatthias Ringwald switch (packet_type){ 40321ed246fSMatthias Ringwald case HCI_EVENT_PACKET: 40421ed246fSMatthias Ringwald switch(packet[0]){ 40521ed246fSMatthias Ringwald case HCI_EVENT_MESH_META: 40621ed246fSMatthias Ringwald mesh_subevent = packet[2]; 40721ed246fSMatthias Ringwald switch(mesh_subevent){ 40821ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_CONNECTED: 40921ed246fSMatthias Ringwald gatt_bearer_con_handle = mesh_subevent_proxy_connected_get_con_handle(packet); 41021ed246fSMatthias Ringwald break; 41121ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_DISCONNECTED: 41221ed246fSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 41321ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 41421ed246fSMatthias Ringwald break; 41521ed246fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 41621ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 41777ba3d3fSMatthias Ringwald break; 41877ba3d3fSMatthias Ringwald default: 41977ba3d3fSMatthias Ringwald break; 42077ba3d3fSMatthias Ringwald } 42177ba3d3fSMatthias Ringwald break; 42277ba3d3fSMatthias Ringwald default: 42377ba3d3fSMatthias Ringwald break; 42477ba3d3fSMatthias Ringwald } 42577ba3d3fSMatthias Ringwald break; 42677ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 42777ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 42877ba3d3fSMatthias Ringwald break; 42977ba3d3fSMatthias Ringwald default: 43077ba3d3fSMatthias Ringwald break; 43177ba3d3fSMatthias Ringwald } 43277ba3d3fSMatthias Ringwald } 43377ba3d3fSMatthias Ringwald #endif 43477ba3d3fSMatthias Ringwald 43577ba3d3fSMatthias Ringwald void beacon_init(void){ 436b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 4374662af4aSMatthias Ringwald adv_bearer_register_for_beacon(&beacon_adv_packet_handler); 438b3a527ecSMatthias Ringwald #endif 43977ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 440b3a527ecSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 4414662af4aSMatthias Ringwald gatt_bearer_register_for_beacon(&beacon_gatt_packet_handler); 44277ba3d3fSMatthias Ringwald #endif 44377ba3d3fSMatthias Ringwald } 44477ba3d3fSMatthias Ringwald 44577ba3d3fSMatthias Ringwald /** 44677ba3d3fSMatthias Ringwald * Start Unprovisioned Device Beacon 44777ba3d3fSMatthias Ringwald */ 44877ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_start(const uint8_t * device_uuid, uint16_t oob_information){ 449b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 45077ba3d3fSMatthias Ringwald beacon_oob_information = oob_information; 45177ba3d3fSMatthias Ringwald if (device_uuid){ 45277ba3d3fSMatthias Ringwald beacon_device_uuid = device_uuid; 45377ba3d3fSMatthias Ringwald beacon_timer.process = &beacon_timer_handler; 45477ba3d3fSMatthias Ringwald beacon_timer_handler(&beacon_timer); 45577ba3d3fSMatthias Ringwald } 456b3a527ecSMatthias Ringwald #endif 45777ba3d3fSMatthias Ringwald } 45877ba3d3fSMatthias Ringwald 45977ba3d3fSMatthias Ringwald /** 46077ba3d3fSMatthias Ringwald * Stop Unprovisioned Device Beacon 46177ba3d3fSMatthias Ringwald */ 46277ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_stop(void){ 463b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 46477ba3d3fSMatthias Ringwald btstack_run_loop_remove_timer(&beacon_timer); 465b3a527ecSMatthias Ringwald #endif 46677ba3d3fSMatthias Ringwald } 46777ba3d3fSMatthias Ringwald 46877ba3d3fSMatthias Ringwald // secure network beacons 46977ba3d3fSMatthias Ringwald 4702fa98d7eSMatthias Ringwald void beacon_secure_network_start(mesh_subnet_t * mesh_subnet){ 47177ba3d3fSMatthias Ringwald // default interval 4722fa98d7eSMatthias Ringwald mesh_subnet->beacon_interval_ms = SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 4732fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 4742fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_start_ms = btstack_run_loop_get_time_ms(); 4752fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_counter = 0; 47677ba3d3fSMatthias Ringwald 47777ba3d3fSMatthias Ringwald // start sending 47877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 47977ba3d3fSMatthias Ringwald } 48077ba3d3fSMatthias Ringwald 48177ba3d3fSMatthias Ringwald // register handler 48277ba3d3fSMatthias Ringwald void beacon_register_for_unprovisioned_device_beacons(btstack_packet_handler_t packet_handler){ 48377ba3d3fSMatthias Ringwald unprovisioned_device_beacon_handler = packet_handler; 48477ba3d3fSMatthias Ringwald } 48577ba3d3fSMatthias Ringwald 48677ba3d3fSMatthias Ringwald void beacon_register_for_secure_network_beacons(btstack_packet_handler_t packet_handler){ 48777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_handler = packet_handler; 48877ba3d3fSMatthias Ringwald } 489