177ba3d3fSMatthias Ringwald /* 277ba3d3fSMatthias Ringwald * Copyright (C) 2017 BlueKitchen GmbH 377ba3d3fSMatthias Ringwald * 477ba3d3fSMatthias Ringwald * Redistribution and use in source and binary forms, with or without 577ba3d3fSMatthias Ringwald * modification, are permitted provided that the following conditions 677ba3d3fSMatthias Ringwald * are met: 777ba3d3fSMatthias Ringwald * 877ba3d3fSMatthias Ringwald * 1. Redistributions of source code must retain the above copyright 977ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer. 1077ba3d3fSMatthias Ringwald * 2. Redistributions in binary form must reproduce the above copyright 1177ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer in the 1277ba3d3fSMatthias Ringwald * documentation and/or other materials provided with the distribution. 1377ba3d3fSMatthias Ringwald * 3. Neither the name of the copyright holders nor the names of 1477ba3d3fSMatthias Ringwald * contributors may be used to endorse or promote products derived 1577ba3d3fSMatthias Ringwald * from this software without specific prior written permission. 1677ba3d3fSMatthias Ringwald * 4. Any redistribution, use, or modification is done solely for 1777ba3d3fSMatthias Ringwald * personal benefit and not for any commercial purpose or for 1877ba3d3fSMatthias Ringwald * monetary gain. 1977ba3d3fSMatthias Ringwald * 2077ba3d3fSMatthias Ringwald * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS 2177ba3d3fSMatthias Ringwald * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 2277ba3d3fSMatthias Ringwald * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 2377ba3d3fSMatthias Ringwald * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS 2477ba3d3fSMatthias Ringwald * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 2577ba3d3fSMatthias Ringwald * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 2677ba3d3fSMatthias Ringwald * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS 2777ba3d3fSMatthias Ringwald * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED 2877ba3d3fSMatthias Ringwald * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 2977ba3d3fSMatthias Ringwald * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 3077ba3d3fSMatthias Ringwald * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3177ba3d3fSMatthias Ringwald * SUCH DAMAGE. 3277ba3d3fSMatthias Ringwald * 3377ba3d3fSMatthias Ringwald * Please inquire about commercial licensing options at 3477ba3d3fSMatthias Ringwald * [email protected] 3577ba3d3fSMatthias Ringwald * 3677ba3d3fSMatthias Ringwald */ 3777ba3d3fSMatthias Ringwald 38b3a527ecSMatthias Ringwald #define __BTSTACK_FILE__ "beacon.c" 3977ba3d3fSMatthias Ringwald 4077ba3d3fSMatthias Ringwald #include <string.h> 4177ba3d3fSMatthias Ringwald 4277ba3d3fSMatthias Ringwald #include "mesh/beacon.h" 4377ba3d3fSMatthias Ringwald #include "mesh/adv_bearer.h" 4477ba3d3fSMatthias Ringwald #include "mesh/gatt_bearer.h" 454662af4aSMatthias Ringwald #include "mesh_foundation.h" 4677ba3d3fSMatthias Ringwald #include "ble/core.h" 4777ba3d3fSMatthias Ringwald #include "bluetooth.h" 4877ba3d3fSMatthias Ringwald #include "bluetooth_data_types.h" 4977ba3d3fSMatthias Ringwald #include "btstack_debug.h" 5077ba3d3fSMatthias Ringwald #include "btstack_util.h" 5177ba3d3fSMatthias Ringwald #include "btstack_run_loop.h" 5277ba3d3fSMatthias Ringwald #include "btstack_event.h" 5377ba3d3fSMatthias Ringwald #include "gap.h" 5477ba3d3fSMatthias Ringwald #include "mesh_keys.h" 5577ba3d3fSMatthias Ringwald 5677ba3d3fSMatthias Ringwald #define BEACON_TYPE_UNPROVISIONED_DEVICE 0 5777ba3d3fSMatthias Ringwald #define BEACON_TYPE_SECURE_NETWORK 1 5877ba3d3fSMatthias Ringwald 5977ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_INTERVAL_MS 5000 6077ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_LEN 23 6177ba3d3fSMatthias Ringwald 6277ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MIN_MS 10000 6377ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MAX_MS 600000 6477ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_LEN 22 6577ba3d3fSMatthias Ringwald 6677ba3d3fSMatthias Ringwald // prototypes 6777ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts); 6877ba3d3fSMatthias Ringwald 69b3a527ecSMatthias Ringwald // bearers 70b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 71b3a527ecSMatthias Ringwald static hci_con_handle_t gatt_bearer_con_handle; 72b3a527ecSMatthias Ringwald #endif 73b3a527ecSMatthias Ringwald 7477ba3d3fSMatthias Ringwald // beacon 7577ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_data[29]; 7677ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_len; 7777ba3d3fSMatthias Ringwald static btstack_timer_source_t beacon_timer; 7877ba3d3fSMatthias Ringwald 7977ba3d3fSMatthias Ringwald // unprovisioned device beacon 80b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 8177ba3d3fSMatthias Ringwald static const uint8_t * beacon_device_uuid; 8277ba3d3fSMatthias Ringwald static uint16_t beacon_oob_information; 8377ba3d3fSMatthias Ringwald static uint32_t beacon_uri_hash; 8477ba3d3fSMatthias Ringwald static int beacon_send_device_beacon; 85b3a527ecSMatthias Ringwald #endif 8677ba3d3fSMatthias Ringwald 8777ba3d3fSMatthias Ringwald static btstack_packet_handler_t unprovisioned_device_beacon_handler; 8877ba3d3fSMatthias Ringwald 8977ba3d3fSMatthias Ringwald // secure network beacon 9077ba3d3fSMatthias Ringwald static btstack_crypto_aes128_cmac_t mesh_secure_network_beacon_cmac_request; 9177ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_auth_value[16]; 9277ba3d3fSMatthias Ringwald static btstack_packet_handler_t mesh_secure_network_beacon_handler; 9377ba3d3fSMatthias Ringwald static int mesh_secure_network_beacon_active; 9477ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_validate_buffer[SECURE_NETWORK_BEACON_LEN]; 9577ba3d3fSMatthias Ringwald 96b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 9777ba3d3fSMatthias Ringwald static void beacon_timer_handler(btstack_timer_source_t * ts){ 9877ba3d3fSMatthias Ringwald // restart timer 9977ba3d3fSMatthias Ringwald btstack_run_loop_set_timer(ts, UNPROVISIONED_BEACON_INTERVAL_MS); 10077ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(ts); 10177ba3d3fSMatthias Ringwald 10277ba3d3fSMatthias Ringwald // setup beacon 10377ba3d3fSMatthias Ringwald mesh_beacon_len = UNPROVISIONED_BEACON_LEN; 10477ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_UNPROVISIONED_DEVICE; 10577ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[1], beacon_device_uuid, 16); 10677ba3d3fSMatthias Ringwald big_endian_store_16(mesh_beacon_data, 17, beacon_oob_information); 10777ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 19, beacon_uri_hash); 10877ba3d3fSMatthias Ringwald 10977ba3d3fSMatthias Ringwald // request to send 11077ba3d3fSMatthias Ringwald beacon_send_device_beacon = 1; 1114662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 11277ba3d3fSMatthias Ringwald } 113b3a527ecSMatthias Ringwald #endif 11477ba3d3fSMatthias Ringwald 11577ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_auth_value_calculated(void * arg){ 1162fa98d7eSMatthias Ringwald mesh_subnet_t * mesh_subnet = (mesh_subnet_t *) arg; 11777ba3d3fSMatthias Ringwald 11877ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[14], mesh_secure_network_beacon_auth_value, 8); 11977ba3d3fSMatthias Ringwald mesh_beacon_len = SECURE_NETWORK_BEACON_LEN; 12077ba3d3fSMatthias Ringwald 12177ba3d3fSMatthias Ringwald printf("Secure Network Beacon\n"); 12277ba3d3fSMatthias Ringwald printf("- "); 12377ba3d3fSMatthias Ringwald printf_hexdump(mesh_beacon_data, mesh_beacon_len); 12477ba3d3fSMatthias Ringwald 1252fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_AUTH_VALUE; 12677ba3d3fSMatthias Ringwald 12777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 12877ba3d3fSMatthias Ringwald } 12977ba3d3fSMatthias Ringwald 1302fa98d7eSMatthias Ringwald static uint8_t mesh_secure_network_beacon_get_flags(mesh_subnet_t * mesh_subnet){ 13177ba3d3fSMatthias Ringwald uint8_t mesh_flags = 0; 1322fa98d7eSMatthias Ringwald if (mesh_subnet->key_refresh != MESH_KEY_REFRESH_NOT_ACTIVE){ 13377ba3d3fSMatthias Ringwald mesh_flags |= 1; 13477ba3d3fSMatthias Ringwald } 13577ba3d3fSMatthias Ringwald 13677ba3d3fSMatthias Ringwald // TODO: set bit 1 if IV Update is active 13777ba3d3fSMatthias Ringwald return mesh_flags; 13877ba3d3fSMatthias Ringwald } 13977ba3d3fSMatthias Ringwald 1402fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_setup(mesh_subnet_t * mesh_subnet){ 14177ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_SECURE_NETWORK; 1422fa98d7eSMatthias Ringwald mesh_beacon_data[1] = mesh_secure_network_beacon_get_flags(mesh_subnet); 1432fa98d7eSMatthias Ringwald // TODO: pick correct key based on key refresh phase 1442fa98d7eSMatthias Ringwald 1452fa98d7eSMatthias Ringwald memcpy(&mesh_beacon_data[2], mesh_subnet->old_key->network_id, 8); 14677ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 10, mesh_get_iv_index()); 147bdf219b2SMatthias Ringwald mesh_network_key_t * network_key = mesh_subnet_get_outgoing_network_key(mesh_subnet); 148bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 1492fa98d7eSMatthias Ringwald &mesh_beacon_data[1], mesh_secure_network_beacon_auth_value, &mesh_secure_network_beacon_auth_value_calculated, mesh_subnet); 15077ba3d3fSMatthias Ringwald } 15177ba3d3fSMatthias Ringwald 1522fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_update_interval(mesh_subnet_t * subnet){ 15377ba3d3fSMatthias Ringwald uint32_t min_observation_period_ms = 2 * subnet->beacon_interval_ms; 15477ba3d3fSMatthias Ringwald uint32_t actual_observation_period = btstack_time_delta(btstack_run_loop_get_time_ms(), subnet->beacon_observation_start_ms); 15577ba3d3fSMatthias Ringwald 15677ba3d3fSMatthias Ringwald // The Observation Period in seconds should typically be double the typical Beacon Interval. 15777ba3d3fSMatthias Ringwald if (actual_observation_period < min_observation_period_ms) return; 15877ba3d3fSMatthias Ringwald 15977ba3d3fSMatthias Ringwald // Expected Number of Beacons (1 beacon per 10 seconds) 16077ba3d3fSMatthias Ringwald uint16_t expected_number_of_beacons = actual_observation_period / SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 16177ba3d3fSMatthias Ringwald 16277ba3d3fSMatthias Ringwald // Beacon Interval = Observation Period * (Observed Number of Beacons + 1) / Expected Number of Beacons 16377ba3d3fSMatthias Ringwald uint32_t new_beacon_interval = actual_observation_period * (subnet->beacon_observation_counter + 1) / expected_number_of_beacons; 16477ba3d3fSMatthias Ringwald 16577ba3d3fSMatthias Ringwald if (new_beacon_interval > SECURE_NETWORK_BEACON_INTERVAL_MAX_MS){ 16677ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 16777ba3d3fSMatthias Ringwald } 16877ba3d3fSMatthias Ringwald else if (new_beacon_interval < SECURE_NETWORK_BEACON_INTERVAL_MIN_MS){ 16977ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17077ba3d3fSMatthias Ringwald } 17177ba3d3fSMatthias Ringwald subnet->beacon_interval_ms = new_beacon_interval; 17277ba3d3fSMatthias Ringwald log_info("New beacon interval %u seconds", (int) (subnet->beacon_interval_ms / 1000)); 17377ba3d3fSMatthias Ringwald } 17477ba3d3fSMatthias Ringwald 17577ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts){ 17677ba3d3fSMatthias Ringwald UNUSED(ts); 17777ba3d3fSMatthias Ringwald 17877ba3d3fSMatthias Ringwald uint32_t next_timeout_ms = 0; 17977ba3d3fSMatthias Ringwald 18077ba3d3fSMatthias Ringwald // iterate over all networks 1812fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 1822fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 1832fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 1842fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 18577ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 18677ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W4_INTERVAL: 18777ba3d3fSMatthias Ringwald // update beacon interval 18877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_update_interval(subnet); 18977ba3d3fSMatthias Ringwald 19077ba3d3fSMatthias Ringwald // send new beacon 19177ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 19277ba3d3fSMatthias Ringwald 19377ba3d3fSMatthias Ringwald /** Explict Fall-through */ 19477ba3d3fSMatthias Ringwald 19577ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE: 19677ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active){ 19777ba3d3fSMatthias Ringwald // just try again in 10 ms 19877ba3d3fSMatthias Ringwald next_timeout_ms = 10; 19977ba3d3fSMatthias Ringwald break; 20077ba3d3fSMatthias Ringwald } 20121ed246fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_AUTH_VALUE; 20277ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 20377ba3d3fSMatthias Ringwald mesh_secure_network_beacon_setup(subnet); 20477ba3d3fSMatthias Ringwald break; 20577ba3d3fSMatthias Ringwald 20677ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_AUTH_VALUE: 20777ba3d3fSMatthias Ringwald 20877ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 20977ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV; 2104662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 21177ba3d3fSMatthias Ringwald break; 21277ba3d3fSMatthias Ringwald #endif 2138b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 21477ba3d3fSMatthias Ringwald 21577ba3d3fSMatthias Ringwald /** Explict Fall-through */ 21677ba3d3fSMatthias Ringwald 21777ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_ADV_SENT: 21877ba3d3fSMatthias Ringwald 21977ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 2208b0144a2SMatthias Ringwald if (gatt_bearer_con_handle != HCI_CON_HANDLE_INVALID && mesh_foundation_gatt_proxy_get() != 0){ 22177ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT; 2224662af4aSMatthias Ringwald gatt_bearer_request_can_send_now_for_beacon(); 2232931ab39SMatthias Ringwald break; 2242931ab39SMatthias Ringwald } 22577ba3d3fSMatthias Ringwald #endif 2268b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 22777ba3d3fSMatthias Ringwald 22877ba3d3fSMatthias Ringwald /** Explict Fall-through */ 22977ba3d3fSMatthias Ringwald 23077ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_GATT_SENT: 23177ba3d3fSMatthias Ringwald // now, start listening for beacons 23277ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_INTERVAL; 23377ba3d3fSMatthias Ringwald // and request timeout 23477ba3d3fSMatthias Ringwald if (next_timeout_ms == 0 || next_timeout_ms > subnet->beacon_interval_ms){ 23577ba3d3fSMatthias Ringwald next_timeout_ms = subnet->beacon_interval_ms; 23677ba3d3fSMatthias Ringwald } 23777ba3d3fSMatthias Ringwald break; 2382931ab39SMatthias Ringwald 23977ba3d3fSMatthias Ringwald default: 24077ba3d3fSMatthias Ringwald break; 24177ba3d3fSMatthias Ringwald } 24277ba3d3fSMatthias Ringwald } 24377ba3d3fSMatthias Ringwald 24477ba3d3fSMatthias Ringwald // setup next run 24577ba3d3fSMatthias Ringwald if (next_timeout_ms == 0) return; 24677ba3d3fSMatthias Ringwald 2477c8ffd3dSMatthias Ringwald btstack_run_loop_set_timer(&beacon_timer, next_timeout_ms); 24877ba3d3fSMatthias Ringwald btstack_run_loop_set_timer_handler(&beacon_timer, mesh_secure_network_beacon_run); 24977ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(&beacon_timer); 25077ba3d3fSMatthias Ringwald } 25177ba3d3fSMatthias Ringwald 25277ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon_auth_value_calculated(void * arg){ 25377ba3d3fSMatthias Ringwald UNUSED(arg); 25477ba3d3fSMatthias Ringwald 25577ba3d3fSMatthias Ringwald // pass on, if auth value checks out 25677ba3d3fSMatthias Ringwald if (memcmp(&mesh_secure_network_beacon_validate_buffer[14], mesh_secure_network_beacon_auth_value, 8) == 0) { 25777ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_handler){ 25877ba3d3fSMatthias Ringwald (*mesh_secure_network_beacon_handler)(MESH_BEACON_PACKET, 0, mesh_secure_network_beacon_validate_buffer, SECURE_NETWORK_BEACON_LEN); 25977ba3d3fSMatthias Ringwald } 26077ba3d3fSMatthias Ringwald } 26177ba3d3fSMatthias Ringwald 26277ba3d3fSMatthias Ringwald // done 26377ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 0; 26477ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 26577ba3d3fSMatthias Ringwald } 26677ba3d3fSMatthias Ringwald 26777ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon(uint8_t * packet, uint16_t size){ 26877ba3d3fSMatthias Ringwald if (size != SECURE_NETWORK_BEACON_LEN) return; 26977ba3d3fSMatthias Ringwald 270*89e0288aSMatthias Ringwald // lookup subnet and netkey by network id 27177ba3d3fSMatthias Ringwald uint8_t * beacon_network_id = &packet[2]; 2722fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 2732fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 2742fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = NULL; 275*89e0288aSMatthias Ringwald mesh_network_key_t * network_key = NULL; 2762fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 2772fa98d7eSMatthias Ringwald mesh_subnet_t * item = mesh_subnet_iterator_get_next(&it); 278569f13d0SMatthias Ringwald if (memcmp(item->old_key->network_id, beacon_network_id, 8) == 0 ) { 27977ba3d3fSMatthias Ringwald subnet = item; 280*89e0288aSMatthias Ringwald network_key = item->old_key; 281569f13d0SMatthias Ringwald } 282569f13d0SMatthias Ringwald if (item->new_key != NULL && memcmp(item->new_key->network_id, beacon_network_id, 8) == 0 ) { 283569f13d0SMatthias Ringwald subnet = item; 284*89e0288aSMatthias Ringwald network_key = item->new_key; 285569f13d0SMatthias Ringwald } 28677ba3d3fSMatthias Ringwald break; 28777ba3d3fSMatthias Ringwald } 28877ba3d3fSMatthias Ringwald if (subnet == NULL) return; 28977ba3d3fSMatthias Ringwald 29077ba3d3fSMatthias Ringwald // count beacon 29177ba3d3fSMatthias Ringwald subnet->beacon_observation_counter++; 29277ba3d3fSMatthias Ringwald 29377ba3d3fSMatthias Ringwald // check if new flags are set 29477ba3d3fSMatthias Ringwald uint8_t current_flags = mesh_secure_network_beacon_get_flags(subnet); 29577ba3d3fSMatthias Ringwald uint8_t new_flags = packet[1] & (~current_flags); 29677ba3d3fSMatthias Ringwald 29777ba3d3fSMatthias Ringwald if (new_flags == 0) return; 29877ba3d3fSMatthias Ringwald 29977ba3d3fSMatthias Ringwald // validate beacon - if crytpo ready 30077ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active) return; 30177ba3d3fSMatthias Ringwald 30277ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 30377ba3d3fSMatthias Ringwald memcpy(mesh_secure_network_beacon_validate_buffer, &packet[0], SECURE_NETWORK_BEACON_LEN); 30477ba3d3fSMatthias Ringwald 305bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 30677ba3d3fSMatthias Ringwald &mesh_secure_network_beacon_validate_buffer[1], mesh_secure_network_beacon_auth_value, &beacon_handle_secure_beacon_auth_value_calculated, subnet); 30777ba3d3fSMatthias Ringwald } 30877ba3d3fSMatthias Ringwald 30977ba3d3fSMatthias Ringwald static void beacon_handle_beacon_packet(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 31077ba3d3fSMatthias Ringwald log_info("beacon type %u", packet[0]); 31177ba3d3fSMatthias Ringwald switch (packet[0]){ 31277ba3d3fSMatthias Ringwald case BEACON_TYPE_UNPROVISIONED_DEVICE: 31377ba3d3fSMatthias Ringwald if (unprovisioned_device_beacon_handler){ 31477ba3d3fSMatthias Ringwald (*unprovisioned_device_beacon_handler)(packet_type, channel, packet, size); 31577ba3d3fSMatthias Ringwald } 31677ba3d3fSMatthias Ringwald break; 31777ba3d3fSMatthias Ringwald case BEACON_TYPE_SECURE_NETWORK: 31877ba3d3fSMatthias Ringwald beacon_handle_secure_beacon(packet, size); 31977ba3d3fSMatthias Ringwald break; 32077ba3d3fSMatthias Ringwald default: 32177ba3d3fSMatthias Ringwald break; 32277ba3d3fSMatthias Ringwald } 32377ba3d3fSMatthias Ringwald } 32477ba3d3fSMatthias Ringwald 325b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 32677ba3d3fSMatthias Ringwald static void beacon_adv_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 3272fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 32877ba3d3fSMatthias Ringwald switch (packet_type){ 32977ba3d3fSMatthias Ringwald case HCI_EVENT_PACKET: 33077ba3d3fSMatthias Ringwald switch(packet[0]){ 33177ba3d3fSMatthias Ringwald case HCI_EVENT_MESH_META: 33277ba3d3fSMatthias Ringwald switch(packet[2]){ 33377ba3d3fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 33477ba3d3fSMatthias Ringwald if (beacon_send_device_beacon){ 33577ba3d3fSMatthias Ringwald beacon_send_device_beacon = 0; 3364662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 33777ba3d3fSMatthias Ringwald break; 33877ba3d3fSMatthias Ringwald } 33977ba3d3fSMatthias Ringwald // secure beacon state machine 3402fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3412fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3422fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 34377ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 34477ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV: 3454662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 34677ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 34777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 34877ba3d3fSMatthias Ringwald break; 34977ba3d3fSMatthias Ringwald default: 35077ba3d3fSMatthias Ringwald break; 35177ba3d3fSMatthias Ringwald } 35277ba3d3fSMatthias Ringwald } 35377ba3d3fSMatthias Ringwald break; 35477ba3d3fSMatthias Ringwald default: 35577ba3d3fSMatthias Ringwald break; 35677ba3d3fSMatthias Ringwald } 35777ba3d3fSMatthias Ringwald break; 35877ba3d3fSMatthias Ringwald default: 35977ba3d3fSMatthias Ringwald break; 36077ba3d3fSMatthias Ringwald } 36177ba3d3fSMatthias Ringwald break; 36277ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 36377ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 36477ba3d3fSMatthias Ringwald break; 36577ba3d3fSMatthias Ringwald default: 36677ba3d3fSMatthias Ringwald break; 36777ba3d3fSMatthias Ringwald } 36877ba3d3fSMatthias Ringwald } 369b3a527ecSMatthias Ringwald #endif 37077ba3d3fSMatthias Ringwald 37177ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 37221ed246fSMatthias Ringwald // handle MESH_SUBEVENT_PROXY_DISCONNECTED and MESH_SUBEVENT_CAN_SEND_NOW 37321ed246fSMatthias Ringwald static void beacon_gatt_handle_mesh_event(uint8_t mesh_subevent){ 3742fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 3752fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3762fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3772fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 37877ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 37977ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT: 38021ed246fSMatthias Ringwald // skip send on MESH_SUBEVENT_PROXY_DISCONNECTED 38121ed246fSMatthias Ringwald if (mesh_subevent == MESH_SUBEVENT_CAN_SEND_NOW){ 3824662af4aSMatthias Ringwald gatt_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 38321ed246fSMatthias Ringwald } 38477ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 38577ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 38677ba3d3fSMatthias Ringwald break; 38777ba3d3fSMatthias Ringwald default: 38877ba3d3fSMatthias Ringwald break; 38977ba3d3fSMatthias Ringwald } 39077ba3d3fSMatthias Ringwald } 39121ed246fSMatthias Ringwald 39221ed246fSMatthias Ringwald } 39321ed246fSMatthias Ringwald 39421ed246fSMatthias Ringwald static void beacon_gatt_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 39521ed246fSMatthias Ringwald uint8_t mesh_subevent; 39621ed246fSMatthias Ringwald switch (packet_type){ 39721ed246fSMatthias Ringwald case HCI_EVENT_PACKET: 39821ed246fSMatthias Ringwald switch(packet[0]){ 39921ed246fSMatthias Ringwald case HCI_EVENT_MESH_META: 40021ed246fSMatthias Ringwald mesh_subevent = packet[2]; 40121ed246fSMatthias Ringwald switch(mesh_subevent){ 40221ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_CONNECTED: 40321ed246fSMatthias Ringwald gatt_bearer_con_handle = mesh_subevent_proxy_connected_get_con_handle(packet); 40421ed246fSMatthias Ringwald break; 40521ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_DISCONNECTED: 40621ed246fSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 40721ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 40821ed246fSMatthias Ringwald break; 40921ed246fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 41021ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 41177ba3d3fSMatthias Ringwald break; 41277ba3d3fSMatthias Ringwald default: 41377ba3d3fSMatthias Ringwald break; 41477ba3d3fSMatthias Ringwald } 41577ba3d3fSMatthias Ringwald break; 41677ba3d3fSMatthias Ringwald default: 41777ba3d3fSMatthias Ringwald break; 41877ba3d3fSMatthias Ringwald } 41977ba3d3fSMatthias Ringwald break; 42077ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 42177ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 42277ba3d3fSMatthias Ringwald break; 42377ba3d3fSMatthias Ringwald default: 42477ba3d3fSMatthias Ringwald break; 42577ba3d3fSMatthias Ringwald } 42677ba3d3fSMatthias Ringwald } 42777ba3d3fSMatthias Ringwald #endif 42877ba3d3fSMatthias Ringwald 42977ba3d3fSMatthias Ringwald void beacon_init(void){ 430b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 4314662af4aSMatthias Ringwald adv_bearer_register_for_beacon(&beacon_adv_packet_handler); 432b3a527ecSMatthias Ringwald #endif 43377ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 434b3a527ecSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 4354662af4aSMatthias Ringwald gatt_bearer_register_for_beacon(&beacon_gatt_packet_handler); 43677ba3d3fSMatthias Ringwald #endif 43777ba3d3fSMatthias Ringwald } 43877ba3d3fSMatthias Ringwald 43977ba3d3fSMatthias Ringwald /** 44077ba3d3fSMatthias Ringwald * Start Unprovisioned Device Beacon 44177ba3d3fSMatthias Ringwald */ 44277ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_start(const uint8_t * device_uuid, uint16_t oob_information){ 443b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 44477ba3d3fSMatthias Ringwald beacon_oob_information = oob_information; 44577ba3d3fSMatthias Ringwald if (device_uuid){ 44677ba3d3fSMatthias Ringwald beacon_device_uuid = device_uuid; 44777ba3d3fSMatthias Ringwald beacon_timer.process = &beacon_timer_handler; 44877ba3d3fSMatthias Ringwald beacon_timer_handler(&beacon_timer); 44977ba3d3fSMatthias Ringwald } 450b3a527ecSMatthias Ringwald #endif 45177ba3d3fSMatthias Ringwald } 45277ba3d3fSMatthias Ringwald 45377ba3d3fSMatthias Ringwald /** 45477ba3d3fSMatthias Ringwald * Stop Unprovisioned Device Beacon 45577ba3d3fSMatthias Ringwald */ 45677ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_stop(void){ 457b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 45877ba3d3fSMatthias Ringwald btstack_run_loop_remove_timer(&beacon_timer); 459b3a527ecSMatthias Ringwald #endif 46077ba3d3fSMatthias Ringwald } 46177ba3d3fSMatthias Ringwald 46277ba3d3fSMatthias Ringwald // secure network beacons 46377ba3d3fSMatthias Ringwald 4642fa98d7eSMatthias Ringwald void beacon_secure_network_start(mesh_subnet_t * mesh_subnet){ 46577ba3d3fSMatthias Ringwald // default interval 4662fa98d7eSMatthias Ringwald mesh_subnet->beacon_interval_ms = SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 4672fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 4682fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_start_ms = btstack_run_loop_get_time_ms(); 4692fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_counter = 0; 47077ba3d3fSMatthias Ringwald 47177ba3d3fSMatthias Ringwald // start sending 47277ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 47377ba3d3fSMatthias Ringwald } 47477ba3d3fSMatthias Ringwald 47577ba3d3fSMatthias Ringwald // register handler 47677ba3d3fSMatthias Ringwald void beacon_register_for_unprovisioned_device_beacons(btstack_packet_handler_t packet_handler){ 47777ba3d3fSMatthias Ringwald unprovisioned_device_beacon_handler = packet_handler; 47877ba3d3fSMatthias Ringwald } 47977ba3d3fSMatthias Ringwald 48077ba3d3fSMatthias Ringwald void beacon_register_for_secure_network_beacons(btstack_packet_handler_t packet_handler){ 48177ba3d3fSMatthias Ringwald mesh_secure_network_beacon_handler = packet_handler; 48277ba3d3fSMatthias Ringwald } 483