177ba3d3fSMatthias Ringwald /* 277ba3d3fSMatthias Ringwald * Copyright (C) 2017 BlueKitchen GmbH 377ba3d3fSMatthias Ringwald * 477ba3d3fSMatthias Ringwald * Redistribution and use in source and binary forms, with or without 577ba3d3fSMatthias Ringwald * modification, are permitted provided that the following conditions 677ba3d3fSMatthias Ringwald * are met: 777ba3d3fSMatthias Ringwald * 877ba3d3fSMatthias Ringwald * 1. Redistributions of source code must retain the above copyright 977ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer. 1077ba3d3fSMatthias Ringwald * 2. Redistributions in binary form must reproduce the above copyright 1177ba3d3fSMatthias Ringwald * notice, this list of conditions and the following disclaimer in the 1277ba3d3fSMatthias Ringwald * documentation and/or other materials provided with the distribution. 1377ba3d3fSMatthias Ringwald * 3. Neither the name of the copyright holders nor the names of 1477ba3d3fSMatthias Ringwald * contributors may be used to endorse or promote products derived 1577ba3d3fSMatthias Ringwald * from this software without specific prior written permission. 1677ba3d3fSMatthias Ringwald * 4. Any redistribution, use, or modification is done solely for 1777ba3d3fSMatthias Ringwald * personal benefit and not for any commercial purpose or for 1877ba3d3fSMatthias Ringwald * monetary gain. 1977ba3d3fSMatthias Ringwald * 2077ba3d3fSMatthias Ringwald * THIS SOFTWARE IS PROVIDED BY BLUEKITCHEN GMBH AND CONTRIBUTORS 2177ba3d3fSMatthias Ringwald * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 2277ba3d3fSMatthias Ringwald * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 2377ba3d3fSMatthias Ringwald * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL MATTHIAS 2477ba3d3fSMatthias Ringwald * RINGWALD OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 2577ba3d3fSMatthias Ringwald * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 2677ba3d3fSMatthias Ringwald * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS 2777ba3d3fSMatthias Ringwald * OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED 2877ba3d3fSMatthias Ringwald * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 2977ba3d3fSMatthias Ringwald * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 3077ba3d3fSMatthias Ringwald * THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3177ba3d3fSMatthias Ringwald * SUCH DAMAGE. 3277ba3d3fSMatthias Ringwald * 3377ba3d3fSMatthias Ringwald * Please inquire about commercial licensing options at 3477ba3d3fSMatthias Ringwald * [email protected] 3577ba3d3fSMatthias Ringwald * 3677ba3d3fSMatthias Ringwald */ 3777ba3d3fSMatthias Ringwald 38b3a527ecSMatthias Ringwald #define __BTSTACK_FILE__ "beacon.c" 3977ba3d3fSMatthias Ringwald 40*f4854a5eSMatthias Ringwald #include "mesh/beacon.h" 41*f4854a5eSMatthias Ringwald 4277ba3d3fSMatthias Ringwald #include <string.h> 4377ba3d3fSMatthias Ringwald 4477ba3d3fSMatthias Ringwald #include "ble/core.h" 4577ba3d3fSMatthias Ringwald #include "bluetooth.h" 4677ba3d3fSMatthias Ringwald #include "bluetooth_data_types.h" 4777ba3d3fSMatthias Ringwald #include "btstack_debug.h" 4877ba3d3fSMatthias Ringwald #include "btstack_event.h" 49*f4854a5eSMatthias Ringwald #include "btstack_run_loop.h" 50*f4854a5eSMatthias Ringwald #include "btstack_util.h" 5177ba3d3fSMatthias Ringwald #include "gap.h" 52*f4854a5eSMatthias Ringwald 53*f4854a5eSMatthias Ringwald #include "mesh/adv_bearer.h" 54*f4854a5eSMatthias Ringwald #include "mesh/gatt_bearer.h" 55*f4854a5eSMatthias Ringwald #include "mesh/mesh_foundation.h" 56*f4854a5eSMatthias Ringwald #include "mesh/mesh_iv_index_seq_number.h" 57*f4854a5eSMatthias Ringwald #include "mesh/mesh_keys.h" 5877ba3d3fSMatthias Ringwald 5977ba3d3fSMatthias Ringwald #define BEACON_TYPE_UNPROVISIONED_DEVICE 0 6077ba3d3fSMatthias Ringwald #define BEACON_TYPE_SECURE_NETWORK 1 6177ba3d3fSMatthias Ringwald 6277ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_INTERVAL_MS 5000 6377ba3d3fSMatthias Ringwald #define UNPROVISIONED_BEACON_LEN 23 6477ba3d3fSMatthias Ringwald 6577ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MIN_MS 10000 6677ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_INTERVAL_MAX_MS 600000 6777ba3d3fSMatthias Ringwald #define SECURE_NETWORK_BEACON_LEN 22 6877ba3d3fSMatthias Ringwald 6977ba3d3fSMatthias Ringwald // prototypes 7077ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts); 7177ba3d3fSMatthias Ringwald 72b3a527ecSMatthias Ringwald // bearers 73b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 74b3a527ecSMatthias Ringwald static hci_con_handle_t gatt_bearer_con_handle; 75b3a527ecSMatthias Ringwald #endif 76b3a527ecSMatthias Ringwald 7777ba3d3fSMatthias Ringwald // beacon 7877ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_data[29]; 7977ba3d3fSMatthias Ringwald static uint8_t mesh_beacon_len; 8077ba3d3fSMatthias Ringwald static btstack_timer_source_t beacon_timer; 8177ba3d3fSMatthias Ringwald 8277ba3d3fSMatthias Ringwald // unprovisioned device beacon 83b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 8477ba3d3fSMatthias Ringwald static const uint8_t * beacon_device_uuid; 8577ba3d3fSMatthias Ringwald static uint16_t beacon_oob_information; 8677ba3d3fSMatthias Ringwald static uint32_t beacon_uri_hash; 8777ba3d3fSMatthias Ringwald static int beacon_send_device_beacon; 88b3a527ecSMatthias Ringwald #endif 8977ba3d3fSMatthias Ringwald 9077ba3d3fSMatthias Ringwald static btstack_packet_handler_t unprovisioned_device_beacon_handler; 9177ba3d3fSMatthias Ringwald 9277ba3d3fSMatthias Ringwald // secure network beacon 9377ba3d3fSMatthias Ringwald static btstack_crypto_aes128_cmac_t mesh_secure_network_beacon_cmac_request; 9477ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_auth_value[16]; 9577ba3d3fSMatthias Ringwald static btstack_packet_handler_t mesh_secure_network_beacon_handler; 9677ba3d3fSMatthias Ringwald static int mesh_secure_network_beacon_active; 9777ba3d3fSMatthias Ringwald static uint8_t mesh_secure_network_beacon_validate_buffer[SECURE_NETWORK_BEACON_LEN]; 9877ba3d3fSMatthias Ringwald 99b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 10077ba3d3fSMatthias Ringwald static void beacon_timer_handler(btstack_timer_source_t * ts){ 10177ba3d3fSMatthias Ringwald // restart timer 10277ba3d3fSMatthias Ringwald btstack_run_loop_set_timer(ts, UNPROVISIONED_BEACON_INTERVAL_MS); 10377ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(ts); 10477ba3d3fSMatthias Ringwald 10577ba3d3fSMatthias Ringwald // setup beacon 10677ba3d3fSMatthias Ringwald mesh_beacon_len = UNPROVISIONED_BEACON_LEN; 10777ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_UNPROVISIONED_DEVICE; 10877ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[1], beacon_device_uuid, 16); 10977ba3d3fSMatthias Ringwald big_endian_store_16(mesh_beacon_data, 17, beacon_oob_information); 11077ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 19, beacon_uri_hash); 11177ba3d3fSMatthias Ringwald 11277ba3d3fSMatthias Ringwald // request to send 11377ba3d3fSMatthias Ringwald beacon_send_device_beacon = 1; 1144662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 11577ba3d3fSMatthias Ringwald } 116b3a527ecSMatthias Ringwald #endif 11777ba3d3fSMatthias Ringwald 11877ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_auth_value_calculated(void * arg){ 1192fa98d7eSMatthias Ringwald mesh_subnet_t * mesh_subnet = (mesh_subnet_t *) arg; 12077ba3d3fSMatthias Ringwald 12177ba3d3fSMatthias Ringwald memcpy(&mesh_beacon_data[14], mesh_secure_network_beacon_auth_value, 8); 12277ba3d3fSMatthias Ringwald mesh_beacon_len = SECURE_NETWORK_BEACON_LEN; 12377ba3d3fSMatthias Ringwald 12477ba3d3fSMatthias Ringwald printf("Secure Network Beacon\n"); 12577ba3d3fSMatthias Ringwald printf("- "); 12677ba3d3fSMatthias Ringwald printf_hexdump(mesh_beacon_data, mesh_beacon_len); 12777ba3d3fSMatthias Ringwald 1282fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_AUTH_VALUE; 12977ba3d3fSMatthias Ringwald 13077ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 13177ba3d3fSMatthias Ringwald } 13277ba3d3fSMatthias Ringwald 1332fa98d7eSMatthias Ringwald static uint8_t mesh_secure_network_beacon_get_flags(mesh_subnet_t * mesh_subnet){ 13477ba3d3fSMatthias Ringwald uint8_t mesh_flags = 0; 1352fa98d7eSMatthias Ringwald if (mesh_subnet->key_refresh != MESH_KEY_REFRESH_NOT_ACTIVE){ 13677ba3d3fSMatthias Ringwald mesh_flags |= 1; 13777ba3d3fSMatthias Ringwald } 1387d005332SMatthias Ringwald if (mesh_iv_update_active()){ 1397d005332SMatthias Ringwald mesh_flags |= 2; 1407d005332SMatthias Ringwald } 14177ba3d3fSMatthias Ringwald 14277ba3d3fSMatthias Ringwald return mesh_flags; 14377ba3d3fSMatthias Ringwald } 14477ba3d3fSMatthias Ringwald 1452fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_setup(mesh_subnet_t * mesh_subnet){ 14677ba3d3fSMatthias Ringwald mesh_beacon_data[0] = BEACON_TYPE_SECURE_NETWORK; 1472fa98d7eSMatthias Ringwald mesh_beacon_data[1] = mesh_secure_network_beacon_get_flags(mesh_subnet); 1482fa98d7eSMatthias Ringwald // TODO: pick correct key based on key refresh phase 1492fa98d7eSMatthias Ringwald 1502fa98d7eSMatthias Ringwald memcpy(&mesh_beacon_data[2], mesh_subnet->old_key->network_id, 8); 15177ba3d3fSMatthias Ringwald big_endian_store_32(mesh_beacon_data, 10, mesh_get_iv_index()); 152bdf219b2SMatthias Ringwald mesh_network_key_t * network_key = mesh_subnet_get_outgoing_network_key(mesh_subnet); 153bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 1542fa98d7eSMatthias Ringwald &mesh_beacon_data[1], mesh_secure_network_beacon_auth_value, &mesh_secure_network_beacon_auth_value_calculated, mesh_subnet); 15577ba3d3fSMatthias Ringwald } 15677ba3d3fSMatthias Ringwald 1572fa98d7eSMatthias Ringwald static void mesh_secure_network_beacon_update_interval(mesh_subnet_t * subnet){ 15877ba3d3fSMatthias Ringwald uint32_t min_observation_period_ms = 2 * subnet->beacon_interval_ms; 15977ba3d3fSMatthias Ringwald uint32_t actual_observation_period = btstack_time_delta(btstack_run_loop_get_time_ms(), subnet->beacon_observation_start_ms); 16077ba3d3fSMatthias Ringwald 16177ba3d3fSMatthias Ringwald // The Observation Period in seconds should typically be double the typical Beacon Interval. 16277ba3d3fSMatthias Ringwald if (actual_observation_period < min_observation_period_ms) return; 16377ba3d3fSMatthias Ringwald 16477ba3d3fSMatthias Ringwald // Expected Number of Beacons (1 beacon per 10 seconds) 16577ba3d3fSMatthias Ringwald uint16_t expected_number_of_beacons = actual_observation_period / SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 16677ba3d3fSMatthias Ringwald 16777ba3d3fSMatthias Ringwald // Beacon Interval = Observation Period * (Observed Number of Beacons + 1) / Expected Number of Beacons 16877ba3d3fSMatthias Ringwald uint32_t new_beacon_interval = actual_observation_period * (subnet->beacon_observation_counter + 1) / expected_number_of_beacons; 16977ba3d3fSMatthias Ringwald 17077ba3d3fSMatthias Ringwald if (new_beacon_interval > SECURE_NETWORK_BEACON_INTERVAL_MAX_MS){ 17177ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17277ba3d3fSMatthias Ringwald } 17377ba3d3fSMatthias Ringwald else if (new_beacon_interval < SECURE_NETWORK_BEACON_INTERVAL_MIN_MS){ 17477ba3d3fSMatthias Ringwald new_beacon_interval = SECURE_NETWORK_BEACON_INTERVAL_MAX_MS; 17577ba3d3fSMatthias Ringwald } 17677ba3d3fSMatthias Ringwald subnet->beacon_interval_ms = new_beacon_interval; 17777ba3d3fSMatthias Ringwald log_info("New beacon interval %u seconds", (int) (subnet->beacon_interval_ms / 1000)); 17877ba3d3fSMatthias Ringwald } 17977ba3d3fSMatthias Ringwald 18077ba3d3fSMatthias Ringwald static void mesh_secure_network_beacon_run(btstack_timer_source_t * ts){ 18177ba3d3fSMatthias Ringwald UNUSED(ts); 18277ba3d3fSMatthias Ringwald 18377ba3d3fSMatthias Ringwald uint32_t next_timeout_ms = 0; 18477ba3d3fSMatthias Ringwald 18577ba3d3fSMatthias Ringwald // iterate over all networks 1862fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 1872fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 1882fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 1892fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 19077ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 19177ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W4_INTERVAL: 19277ba3d3fSMatthias Ringwald // update beacon interval 19377ba3d3fSMatthias Ringwald mesh_secure_network_beacon_update_interval(subnet); 19477ba3d3fSMatthias Ringwald 19577ba3d3fSMatthias Ringwald // send new beacon 19677ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 19777ba3d3fSMatthias Ringwald 19877ba3d3fSMatthias Ringwald /** Explict Fall-through */ 19977ba3d3fSMatthias Ringwald 20077ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE: 20177ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active){ 20277ba3d3fSMatthias Ringwald // just try again in 10 ms 20377ba3d3fSMatthias Ringwald next_timeout_ms = 10; 20477ba3d3fSMatthias Ringwald break; 20577ba3d3fSMatthias Ringwald } 20621ed246fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_AUTH_VALUE; 20777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 20877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_setup(subnet); 20977ba3d3fSMatthias Ringwald break; 21077ba3d3fSMatthias Ringwald 21177ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_AUTH_VALUE: 21277ba3d3fSMatthias Ringwald 21377ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 21477ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV; 2154662af4aSMatthias Ringwald adv_bearer_request_can_send_now_for_beacon(); 21677ba3d3fSMatthias Ringwald break; 21777ba3d3fSMatthias Ringwald #endif 2188b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 21977ba3d3fSMatthias Ringwald 22077ba3d3fSMatthias Ringwald /** Explict Fall-through */ 22177ba3d3fSMatthias Ringwald 22277ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_ADV_SENT: 22377ba3d3fSMatthias Ringwald 22477ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 2258b0144a2SMatthias Ringwald if (gatt_bearer_con_handle != HCI_CON_HANDLE_INVALID && mesh_foundation_gatt_proxy_get() != 0){ 22677ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT; 2274662af4aSMatthias Ringwald gatt_bearer_request_can_send_now_for_beacon(); 2282931ab39SMatthias Ringwald break; 2292931ab39SMatthias Ringwald } 23077ba3d3fSMatthias Ringwald #endif 2318b0144a2SMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 23277ba3d3fSMatthias Ringwald 23377ba3d3fSMatthias Ringwald /** Explict Fall-through */ 23477ba3d3fSMatthias Ringwald 23577ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_GATT_SENT: 23677ba3d3fSMatthias Ringwald // now, start listening for beacons 23777ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W4_INTERVAL; 23877ba3d3fSMatthias Ringwald // and request timeout 23977ba3d3fSMatthias Ringwald if (next_timeout_ms == 0 || next_timeout_ms > subnet->beacon_interval_ms){ 24077ba3d3fSMatthias Ringwald next_timeout_ms = subnet->beacon_interval_ms; 24177ba3d3fSMatthias Ringwald } 24277ba3d3fSMatthias Ringwald break; 2432931ab39SMatthias Ringwald 24477ba3d3fSMatthias Ringwald default: 24577ba3d3fSMatthias Ringwald break; 24677ba3d3fSMatthias Ringwald } 24777ba3d3fSMatthias Ringwald } 24877ba3d3fSMatthias Ringwald 24977ba3d3fSMatthias Ringwald // setup next run 25077ba3d3fSMatthias Ringwald if (next_timeout_ms == 0) return; 25177ba3d3fSMatthias Ringwald 2527c8ffd3dSMatthias Ringwald btstack_run_loop_set_timer(&beacon_timer, next_timeout_ms); 25377ba3d3fSMatthias Ringwald btstack_run_loop_set_timer_handler(&beacon_timer, mesh_secure_network_beacon_run); 25477ba3d3fSMatthias Ringwald btstack_run_loop_add_timer(&beacon_timer); 25577ba3d3fSMatthias Ringwald } 25677ba3d3fSMatthias Ringwald 25777ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon_auth_value_calculated(void * arg){ 25877ba3d3fSMatthias Ringwald UNUSED(arg); 25977ba3d3fSMatthias Ringwald 26077ba3d3fSMatthias Ringwald // pass on, if auth value checks out 26177ba3d3fSMatthias Ringwald if (memcmp(&mesh_secure_network_beacon_validate_buffer[14], mesh_secure_network_beacon_auth_value, 8) == 0) { 26277ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_handler){ 26377ba3d3fSMatthias Ringwald (*mesh_secure_network_beacon_handler)(MESH_BEACON_PACKET, 0, mesh_secure_network_beacon_validate_buffer, SECURE_NETWORK_BEACON_LEN); 26477ba3d3fSMatthias Ringwald } 26577ba3d3fSMatthias Ringwald } 26677ba3d3fSMatthias Ringwald 26777ba3d3fSMatthias Ringwald // done 26877ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 0; 26977ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 27077ba3d3fSMatthias Ringwald } 27177ba3d3fSMatthias Ringwald 27277ba3d3fSMatthias Ringwald static void beacon_handle_secure_beacon(uint8_t * packet, uint16_t size){ 27377ba3d3fSMatthias Ringwald if (size != SECURE_NETWORK_BEACON_LEN) return; 27477ba3d3fSMatthias Ringwald 27589e0288aSMatthias Ringwald // lookup subnet and netkey by network id 27677ba3d3fSMatthias Ringwald uint8_t * beacon_network_id = &packet[2]; 2772fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 2782fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 2792fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = NULL; 28089e0288aSMatthias Ringwald mesh_network_key_t * network_key = NULL; 2812fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 2822fa98d7eSMatthias Ringwald mesh_subnet_t * item = mesh_subnet_iterator_get_next(&it); 283569f13d0SMatthias Ringwald if (memcmp(item->old_key->network_id, beacon_network_id, 8) == 0 ) { 28477ba3d3fSMatthias Ringwald subnet = item; 28589e0288aSMatthias Ringwald network_key = item->old_key; 286569f13d0SMatthias Ringwald } 287569f13d0SMatthias Ringwald if (item->new_key != NULL && memcmp(item->new_key->network_id, beacon_network_id, 8) == 0 ) { 288569f13d0SMatthias Ringwald subnet = item; 28989e0288aSMatthias Ringwald network_key = item->new_key; 290569f13d0SMatthias Ringwald } 29177ba3d3fSMatthias Ringwald break; 29277ba3d3fSMatthias Ringwald } 29377ba3d3fSMatthias Ringwald if (subnet == NULL) return; 29477ba3d3fSMatthias Ringwald 29577ba3d3fSMatthias Ringwald // count beacon 29677ba3d3fSMatthias Ringwald subnet->beacon_observation_counter++; 29777ba3d3fSMatthias Ringwald 29877ba3d3fSMatthias Ringwald // check if new flags are set 29977ba3d3fSMatthias Ringwald uint8_t current_flags = mesh_secure_network_beacon_get_flags(subnet); 30077ba3d3fSMatthias Ringwald uint8_t new_flags = packet[1] & (~current_flags); 30177ba3d3fSMatthias Ringwald 30277ba3d3fSMatthias Ringwald if (new_flags == 0) return; 30377ba3d3fSMatthias Ringwald 30477ba3d3fSMatthias Ringwald // validate beacon - if crytpo ready 30577ba3d3fSMatthias Ringwald if (mesh_secure_network_beacon_active) return; 30677ba3d3fSMatthias Ringwald 30777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_active = 1; 30877ba3d3fSMatthias Ringwald memcpy(mesh_secure_network_beacon_validate_buffer, &packet[0], SECURE_NETWORK_BEACON_LEN); 30977ba3d3fSMatthias Ringwald 310bdf219b2SMatthias Ringwald btstack_crypto_aes128_cmac_message(&mesh_secure_network_beacon_cmac_request, network_key->beacon_key, 13, 31177ba3d3fSMatthias Ringwald &mesh_secure_network_beacon_validate_buffer[1], mesh_secure_network_beacon_auth_value, &beacon_handle_secure_beacon_auth_value_calculated, subnet); 31277ba3d3fSMatthias Ringwald } 31377ba3d3fSMatthias Ringwald 31477ba3d3fSMatthias Ringwald static void beacon_handle_beacon_packet(uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 31577ba3d3fSMatthias Ringwald log_info("beacon type %u", packet[0]); 31677ba3d3fSMatthias Ringwald switch (packet[0]){ 31777ba3d3fSMatthias Ringwald case BEACON_TYPE_UNPROVISIONED_DEVICE: 31877ba3d3fSMatthias Ringwald if (unprovisioned_device_beacon_handler){ 31977ba3d3fSMatthias Ringwald (*unprovisioned_device_beacon_handler)(packet_type, channel, packet, size); 32077ba3d3fSMatthias Ringwald } 32177ba3d3fSMatthias Ringwald break; 32277ba3d3fSMatthias Ringwald case BEACON_TYPE_SECURE_NETWORK: 32377ba3d3fSMatthias Ringwald beacon_handle_secure_beacon(packet, size); 32477ba3d3fSMatthias Ringwald break; 32577ba3d3fSMatthias Ringwald default: 32677ba3d3fSMatthias Ringwald break; 32777ba3d3fSMatthias Ringwald } 32877ba3d3fSMatthias Ringwald } 32977ba3d3fSMatthias Ringwald 330b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 33177ba3d3fSMatthias Ringwald static void beacon_adv_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 3322fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 33377ba3d3fSMatthias Ringwald switch (packet_type){ 33477ba3d3fSMatthias Ringwald case HCI_EVENT_PACKET: 33577ba3d3fSMatthias Ringwald switch(packet[0]){ 33677ba3d3fSMatthias Ringwald case HCI_EVENT_MESH_META: 33777ba3d3fSMatthias Ringwald switch(packet[2]){ 33877ba3d3fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 33977ba3d3fSMatthias Ringwald if (beacon_send_device_beacon){ 34077ba3d3fSMatthias Ringwald beacon_send_device_beacon = 0; 3414662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 34277ba3d3fSMatthias Ringwald break; 34377ba3d3fSMatthias Ringwald } 34477ba3d3fSMatthias Ringwald // secure beacon state machine 3452fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3462fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3472fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 34877ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 34977ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_ADV: 3504662af4aSMatthias Ringwald adv_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 35177ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_ADV_SENT; 35277ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 35377ba3d3fSMatthias Ringwald break; 35477ba3d3fSMatthias Ringwald default: 35577ba3d3fSMatthias Ringwald break; 35677ba3d3fSMatthias Ringwald } 35777ba3d3fSMatthias Ringwald } 35877ba3d3fSMatthias Ringwald break; 35977ba3d3fSMatthias Ringwald default: 36077ba3d3fSMatthias Ringwald break; 36177ba3d3fSMatthias Ringwald } 36277ba3d3fSMatthias Ringwald break; 36377ba3d3fSMatthias Ringwald default: 36477ba3d3fSMatthias Ringwald break; 36577ba3d3fSMatthias Ringwald } 36677ba3d3fSMatthias Ringwald break; 36777ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 36877ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 36977ba3d3fSMatthias Ringwald break; 37077ba3d3fSMatthias Ringwald default: 37177ba3d3fSMatthias Ringwald break; 37277ba3d3fSMatthias Ringwald } 37377ba3d3fSMatthias Ringwald } 374b3a527ecSMatthias Ringwald #endif 37577ba3d3fSMatthias Ringwald 37677ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 37721ed246fSMatthias Ringwald // handle MESH_SUBEVENT_PROXY_DISCONNECTED and MESH_SUBEVENT_CAN_SEND_NOW 37821ed246fSMatthias Ringwald static void beacon_gatt_handle_mesh_event(uint8_t mesh_subevent){ 3792fa98d7eSMatthias Ringwald mesh_subnet_iterator_t it; 3802fa98d7eSMatthias Ringwald mesh_subnet_iterator_init(&it); 3812fa98d7eSMatthias Ringwald while (mesh_subnet_iterator_has_more(&it)){ 3822fa98d7eSMatthias Ringwald mesh_subnet_t * subnet = mesh_subnet_iterator_get_next(&it); 38377ba3d3fSMatthias Ringwald switch (subnet->beacon_state){ 38477ba3d3fSMatthias Ringwald case MESH_SECURE_NETWORK_BEACON_W2_SEND_GATT: 38521ed246fSMatthias Ringwald // skip send on MESH_SUBEVENT_PROXY_DISCONNECTED 38621ed246fSMatthias Ringwald if (mesh_subevent == MESH_SUBEVENT_CAN_SEND_NOW){ 3874662af4aSMatthias Ringwald gatt_bearer_send_beacon(mesh_beacon_data, mesh_beacon_len); 38821ed246fSMatthias Ringwald } 38977ba3d3fSMatthias Ringwald subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_GATT_SENT; 39077ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 39177ba3d3fSMatthias Ringwald break; 39277ba3d3fSMatthias Ringwald default: 39377ba3d3fSMatthias Ringwald break; 39477ba3d3fSMatthias Ringwald } 39577ba3d3fSMatthias Ringwald } 39621ed246fSMatthias Ringwald 39721ed246fSMatthias Ringwald } 39821ed246fSMatthias Ringwald 39921ed246fSMatthias Ringwald static void beacon_gatt_packet_handler (uint8_t packet_type, uint16_t channel, uint8_t *packet, uint16_t size){ 40021ed246fSMatthias Ringwald uint8_t mesh_subevent; 40121ed246fSMatthias Ringwald switch (packet_type){ 40221ed246fSMatthias Ringwald case HCI_EVENT_PACKET: 40321ed246fSMatthias Ringwald switch(packet[0]){ 40421ed246fSMatthias Ringwald case HCI_EVENT_MESH_META: 40521ed246fSMatthias Ringwald mesh_subevent = packet[2]; 40621ed246fSMatthias Ringwald switch(mesh_subevent){ 40721ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_CONNECTED: 40821ed246fSMatthias Ringwald gatt_bearer_con_handle = mesh_subevent_proxy_connected_get_con_handle(packet); 40921ed246fSMatthias Ringwald break; 41021ed246fSMatthias Ringwald case MESH_SUBEVENT_PROXY_DISCONNECTED: 41121ed246fSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 41221ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 41321ed246fSMatthias Ringwald break; 41421ed246fSMatthias Ringwald case MESH_SUBEVENT_CAN_SEND_NOW: 41521ed246fSMatthias Ringwald beacon_gatt_handle_mesh_event(mesh_subevent); 41677ba3d3fSMatthias Ringwald break; 41777ba3d3fSMatthias Ringwald default: 41877ba3d3fSMatthias Ringwald break; 41977ba3d3fSMatthias Ringwald } 42077ba3d3fSMatthias Ringwald break; 42177ba3d3fSMatthias Ringwald default: 42277ba3d3fSMatthias Ringwald break; 42377ba3d3fSMatthias Ringwald } 42477ba3d3fSMatthias Ringwald break; 42577ba3d3fSMatthias Ringwald case MESH_BEACON_PACKET: 42677ba3d3fSMatthias Ringwald beacon_handle_beacon_packet(packet_type, channel, packet, size); 42777ba3d3fSMatthias Ringwald break; 42877ba3d3fSMatthias Ringwald default: 42977ba3d3fSMatthias Ringwald break; 43077ba3d3fSMatthias Ringwald } 43177ba3d3fSMatthias Ringwald } 43277ba3d3fSMatthias Ringwald #endif 43377ba3d3fSMatthias Ringwald 43477ba3d3fSMatthias Ringwald void beacon_init(void){ 435b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 4364662af4aSMatthias Ringwald adv_bearer_register_for_beacon(&beacon_adv_packet_handler); 437b3a527ecSMatthias Ringwald #endif 43877ba3d3fSMatthias Ringwald #ifdef ENABLE_MESH_GATT_BEARER 439b3a527ecSMatthias Ringwald gatt_bearer_con_handle = HCI_CON_HANDLE_INVALID; 4404662af4aSMatthias Ringwald gatt_bearer_register_for_beacon(&beacon_gatt_packet_handler); 44177ba3d3fSMatthias Ringwald #endif 44277ba3d3fSMatthias Ringwald } 44377ba3d3fSMatthias Ringwald 44477ba3d3fSMatthias Ringwald /** 44577ba3d3fSMatthias Ringwald * Start Unprovisioned Device Beacon 44677ba3d3fSMatthias Ringwald */ 44777ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_start(const uint8_t * device_uuid, uint16_t oob_information){ 448b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 44977ba3d3fSMatthias Ringwald beacon_oob_information = oob_information; 45077ba3d3fSMatthias Ringwald if (device_uuid){ 45177ba3d3fSMatthias Ringwald beacon_device_uuid = device_uuid; 45277ba3d3fSMatthias Ringwald beacon_timer.process = &beacon_timer_handler; 45377ba3d3fSMatthias Ringwald beacon_timer_handler(&beacon_timer); 45477ba3d3fSMatthias Ringwald } 455b3a527ecSMatthias Ringwald #endif 45677ba3d3fSMatthias Ringwald } 45777ba3d3fSMatthias Ringwald 45877ba3d3fSMatthias Ringwald /** 45977ba3d3fSMatthias Ringwald * Stop Unprovisioned Device Beacon 46077ba3d3fSMatthias Ringwald */ 46177ba3d3fSMatthias Ringwald void beacon_unprovisioned_device_stop(void){ 462b3a527ecSMatthias Ringwald #ifdef ENABLE_MESH_ADV_BEARER 46377ba3d3fSMatthias Ringwald btstack_run_loop_remove_timer(&beacon_timer); 464b3a527ecSMatthias Ringwald #endif 46577ba3d3fSMatthias Ringwald } 46677ba3d3fSMatthias Ringwald 46777ba3d3fSMatthias Ringwald // secure network beacons 46877ba3d3fSMatthias Ringwald 4692fa98d7eSMatthias Ringwald void beacon_secure_network_start(mesh_subnet_t * mesh_subnet){ 47077ba3d3fSMatthias Ringwald // default interval 4712fa98d7eSMatthias Ringwald mesh_subnet->beacon_interval_ms = SECURE_NETWORK_BEACON_INTERVAL_MIN_MS; 4722fa98d7eSMatthias Ringwald mesh_subnet->beacon_state = MESH_SECURE_NETWORK_BEACON_W2_AUTH_VALUE; 4732fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_start_ms = btstack_run_loop_get_time_ms(); 4742fa98d7eSMatthias Ringwald mesh_subnet->beacon_observation_counter = 0; 47577ba3d3fSMatthias Ringwald 47677ba3d3fSMatthias Ringwald // start sending 47777ba3d3fSMatthias Ringwald mesh_secure_network_beacon_run(NULL); 47877ba3d3fSMatthias Ringwald } 47977ba3d3fSMatthias Ringwald 48077ba3d3fSMatthias Ringwald // register handler 48177ba3d3fSMatthias Ringwald void beacon_register_for_unprovisioned_device_beacons(btstack_packet_handler_t packet_handler){ 48277ba3d3fSMatthias Ringwald unprovisioned_device_beacon_handler = packet_handler; 48377ba3d3fSMatthias Ringwald } 48477ba3d3fSMatthias Ringwald 48577ba3d3fSMatthias Ringwald void beacon_register_for_secure_network_beacons(btstack_packet_handler_t packet_handler){ 48677ba3d3fSMatthias Ringwald mesh_secure_network_beacon_handler = packet_handler; 48777ba3d3fSMatthias Ringwald } 488