ng_btsocket_l2cap.c revision 160549
1107120Sjulian/*
2107120Sjulian * ng_btsocket_l2cap.c
3139823Simp */
4139823Simp
5139823Simp/*-
6107120Sjulian * Copyright (c) 2001-2002 Maksim Yevmenkin <m_evmenkin@yahoo.com>
7107120Sjulian * All rights reserved.
8107120Sjulian *
9107120Sjulian * Redistribution and use in source and binary forms, with or without
10107120Sjulian * modification, are permitted provided that the following conditions
11107120Sjulian * are met:
12107120Sjulian * 1. Redistributions of source code must retain the above copyright
13107120Sjulian *    notice, this list of conditions and the following disclaimer.
14107120Sjulian * 2. Redistributions in binary form must reproduce the above copyright
15107120Sjulian *    notice, this list of conditions and the following disclaimer in the
16107120Sjulian *    documentation and/or other materials provided with the distribution.
17107120Sjulian *
18107120Sjulian * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
19107120Sjulian * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20107120Sjulian * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21107120Sjulian * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
22107120Sjulian * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
23107120Sjulian * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
24107120Sjulian * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
25107120Sjulian * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
26107120Sjulian * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27107120Sjulian * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28107120Sjulian * SUCH DAMAGE.
29107120Sjulian *
30121054Semax * $Id: ng_btsocket_l2cap.c,v 1.16 2003/09/14 23:29:06 max Exp $
31107120Sjulian * $FreeBSD: head/sys/netgraph/bluetooth/socket/ng_btsocket_l2cap.c 160549 2006-07-21 17:11:15Z rwatson $
32107120Sjulian */
33107120Sjulian
34107120Sjulian#include <sys/param.h>
35107120Sjulian#include <sys/systm.h>
36121054Semax#include <sys/bitstring.h>
37107120Sjulian#include <sys/domain.h>
38107120Sjulian#include <sys/endian.h>
39107120Sjulian#include <sys/errno.h>
40107120Sjulian#include <sys/filedesc.h>
41107120Sjulian#include <sys/ioccom.h>
42107120Sjulian#include <sys/kernel.h>
43107120Sjulian#include <sys/lock.h>
44107120Sjulian#include <sys/malloc.h>
45107120Sjulian#include <sys/mbuf.h>
46107120Sjulian#include <sys/mutex.h>
47107120Sjulian#include <sys/protosw.h>
48107120Sjulian#include <sys/queue.h>
49107120Sjulian#include <sys/socket.h>
50107120Sjulian#include <sys/socketvar.h>
51107120Sjulian#include <sys/sysctl.h>
52107120Sjulian#include <sys/taskqueue.h>
53107120Sjulian#include <netgraph/ng_message.h>
54107120Sjulian#include <netgraph/netgraph.h>
55128688Semax#include <netgraph/bluetooth/include/ng_bluetooth.h>
56128688Semax#include <netgraph/bluetooth/include/ng_hci.h>
57128688Semax#include <netgraph/bluetooth/include/ng_l2cap.h>
58128688Semax#include <netgraph/bluetooth/include/ng_btsocket.h>
59128688Semax#include <netgraph/bluetooth/include/ng_btsocket_l2cap.h>
60107120Sjulian
61107120Sjulian/* MALLOC define */
62107120Sjulian#ifdef NG_SEPARATE_MALLOC
63107120SjulianMALLOC_DEFINE(M_NETGRAPH_BTSOCKET_L2CAP, "netgraph_btsocks_l2cap",
64107120Sjulian		"Netgraph Bluetooth L2CAP sockets");
65107120Sjulian#else
66107120Sjulian#define M_NETGRAPH_BTSOCKET_L2CAP M_NETGRAPH
67107120Sjulian#endif /* NG_SEPARATE_MALLOC */
68107120Sjulian
69107120Sjulian/* Netgraph node methods */
70107120Sjulianstatic ng_constructor_t	ng_btsocket_l2cap_node_constructor;
71107120Sjulianstatic ng_rcvmsg_t	ng_btsocket_l2cap_node_rcvmsg;
72107120Sjulianstatic ng_shutdown_t	ng_btsocket_l2cap_node_shutdown;
73107120Sjulianstatic ng_newhook_t	ng_btsocket_l2cap_node_newhook;
74107120Sjulianstatic ng_connect_t	ng_btsocket_l2cap_node_connect;
75107120Sjulianstatic ng_rcvdata_t	ng_btsocket_l2cap_node_rcvdata;
76107120Sjulianstatic ng_disconnect_t	ng_btsocket_l2cap_node_disconnect;
77107120Sjulian
78107120Sjulianstatic void		ng_btsocket_l2cap_input   (void *, int);
79107120Sjulianstatic void		ng_btsocket_l2cap_rtclean (void *, int);
80107120Sjulian
81107120Sjulian/* Netgraph type descriptor */
82107120Sjulianstatic struct ng_type	typestruct = {
83129823Sjulian	.version =	NG_ABI_VERSION,
84129823Sjulian	.name =		NG_BTSOCKET_L2CAP_NODE_TYPE,
85129823Sjulian	.constructor =	ng_btsocket_l2cap_node_constructor,
86129823Sjulian	.rcvmsg =	ng_btsocket_l2cap_node_rcvmsg,
87129823Sjulian	.shutdown =	ng_btsocket_l2cap_node_shutdown,
88129823Sjulian	.newhook =	ng_btsocket_l2cap_node_newhook,
89129823Sjulian	.connect =	ng_btsocket_l2cap_node_connect,
90129823Sjulian	.rcvdata =	ng_btsocket_l2cap_node_rcvdata,
91129823Sjulian	.disconnect =	ng_btsocket_l2cap_node_disconnect,
92107120Sjulian};
93107120Sjulian
94107120Sjulian/* Globals */
95107120Sjulianextern int					ifqmaxlen;
96107120Sjulianstatic u_int32_t				ng_btsocket_l2cap_debug_level;
97107120Sjulianstatic node_p					ng_btsocket_l2cap_node;
98107120Sjulianstatic struct ng_bt_itemq			ng_btsocket_l2cap_queue;
99107120Sjulianstatic struct mtx				ng_btsocket_l2cap_queue_mtx;
100107120Sjulianstatic struct task				ng_btsocket_l2cap_queue_task;
101107120Sjulianstatic LIST_HEAD(, ng_btsocket_l2cap_pcb)	ng_btsocket_l2cap_sockets;
102107120Sjulianstatic struct mtx				ng_btsocket_l2cap_sockets_mtx;
103107120Sjulianstatic LIST_HEAD(, ng_btsocket_l2cap_rtentry)	ng_btsocket_l2cap_rt;
104107120Sjulianstatic struct mtx				ng_btsocket_l2cap_rt_mtx;
105107120Sjulianstatic struct task				ng_btsocket_l2cap_rt_task;
106107120Sjulian
107107120Sjulian/* Sysctl tree */
108107120SjulianSYSCTL_DECL(_net_bluetooth_l2cap_sockets);
109107120SjulianSYSCTL_NODE(_net_bluetooth_l2cap_sockets, OID_AUTO, seq, CTLFLAG_RW,
110107120Sjulian	0, "Bluetooth SEQPACKET L2CAP sockets family");
111107120SjulianSYSCTL_INT(_net_bluetooth_l2cap_sockets_seq, OID_AUTO, debug_level,
112107120Sjulian	CTLFLAG_RW,
113107120Sjulian	&ng_btsocket_l2cap_debug_level, NG_BTSOCKET_WARN_LEVEL,
114107120Sjulian	"Bluetooth SEQPACKET L2CAP sockets debug level");
115107120SjulianSYSCTL_INT(_net_bluetooth_l2cap_sockets_seq, OID_AUTO, queue_len,
116107120Sjulian	CTLFLAG_RD,
117107120Sjulian	&ng_btsocket_l2cap_queue.len, 0,
118107120Sjulian	"Bluetooth SEQPACKET L2CAP sockets input queue length");
119107120SjulianSYSCTL_INT(_net_bluetooth_l2cap_sockets_seq, OID_AUTO, queue_maxlen,
120107120Sjulian	CTLFLAG_RD,
121107120Sjulian	&ng_btsocket_l2cap_queue.maxlen, 0,
122107120Sjulian	"Bluetooth SEQPACKET L2CAP sockets input queue max. length");
123107120SjulianSYSCTL_INT(_net_bluetooth_l2cap_sockets_seq, OID_AUTO, queue_drops,
124107120Sjulian	CTLFLAG_RD,
125107120Sjulian	&ng_btsocket_l2cap_queue.drops, 0,
126107120Sjulian	"Bluetooth SEQPACKET L2CAP sockets input queue drops");
127107120Sjulian
128107120Sjulian/* Debug */
129107120Sjulian#define NG_BTSOCKET_L2CAP_INFO \
130107120Sjulian	if (ng_btsocket_l2cap_debug_level >= NG_BTSOCKET_INFO_LEVEL) \
131107120Sjulian		printf
132107120Sjulian
133107120Sjulian#define NG_BTSOCKET_L2CAP_WARN \
134107120Sjulian	if (ng_btsocket_l2cap_debug_level >= NG_BTSOCKET_WARN_LEVEL) \
135107120Sjulian		printf
136107120Sjulian
137107120Sjulian#define NG_BTSOCKET_L2CAP_ERR \
138107120Sjulian	if (ng_btsocket_l2cap_debug_level >= NG_BTSOCKET_ERR_LEVEL) \
139107120Sjulian		printf
140107120Sjulian
141107120Sjulian#define NG_BTSOCKET_L2CAP_ALERT \
142107120Sjulian	if (ng_btsocket_l2cap_debug_level >= NG_BTSOCKET_ALERT_LEVEL) \
143107120Sjulian		printf
144107120Sjulian
145107120Sjulian/*
146107120Sjulian * Netgraph message processing routines
147107120Sjulian */
148107120Sjulian
149107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_con_req_rsp
150114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
151107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_con_rsp_rsp
152114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
153107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_con_ind
154114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
155107120Sjulian
156107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_cfg_req_rsp
157114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
158107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_cfg_rsp_rsp
159114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
160107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_cfg_ind
161114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
162107120Sjulian
163107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_discon_rsp
164114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
165107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_discon_ind
166114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
167107120Sjulian
168107120Sjulianstatic int ng_btsocket_l2cap_process_l2ca_write_rsp
169114878Sjulian	(struct ng_mesg *, ng_btsocket_l2cap_rtentry_p, struct socket **);
170107120Sjulian
171107120Sjulian/*
172107120Sjulian * Send L2CA_xxx messages to the lower layer
173107120Sjulian */
174107120Sjulian
175107120Sjulianstatic int  ng_btsocket_l2cap_send_l2ca_con_req
176107120Sjulian	(ng_btsocket_l2cap_pcb_p);
177107120Sjulianstatic int  ng_btsocket_l2cap_send_l2ca_con_rsp_req
178107120Sjulian	(u_int32_t, ng_btsocket_l2cap_rtentry_p, bdaddr_p, int, int, int);
179107120Sjulianstatic int  ng_btsocket_l2cap_send_l2ca_cfg_req
180107120Sjulian	(ng_btsocket_l2cap_pcb_p);
181107120Sjulianstatic int  ng_btsocket_l2cap_send_l2ca_cfg_rsp
182107120Sjulian	(ng_btsocket_l2cap_pcb_p);
183107120Sjulianstatic int  ng_btsocket_l2cap_send_l2ca_discon_req
184107120Sjulian	(u_int32_t, ng_btsocket_l2cap_pcb_p);
185107120Sjulian
186107120Sjulianstatic int ng_btsocket_l2cap_send2
187107120Sjulian	(ng_btsocket_l2cap_pcb_p);
188107120Sjulian
189107120Sjulian/*
190107120Sjulian * Timeout processing routines
191107120Sjulian */
192107120Sjulian
193107120Sjulianstatic void ng_btsocket_l2cap_timeout         (ng_btsocket_l2cap_pcb_p);
194107120Sjulianstatic void ng_btsocket_l2cap_untimeout       (ng_btsocket_l2cap_pcb_p);
195107120Sjulianstatic void ng_btsocket_l2cap_process_timeout (void *);
196107120Sjulian
197107120Sjulian/*
198107120Sjulian * Other stuff
199107120Sjulian */
200107120Sjulian
201107120Sjulianstatic ng_btsocket_l2cap_pcb_p     ng_btsocket_l2cap_pcb_by_addr(bdaddr_p, int);
202107120Sjulianstatic ng_btsocket_l2cap_pcb_p     ng_btsocket_l2cap_pcb_by_token(u_int32_t);
203107120Sjulianstatic ng_btsocket_l2cap_pcb_p     ng_btsocket_l2cap_pcb_by_cid (bdaddr_p, int);
204107120Sjulianstatic int                         ng_btsocket_l2cap_result2errno(int);
205107120Sjulian
206114878Sjulian#define ng_btsocket_l2cap_wakeup_input_task() \
207114878Sjulian	taskqueue_enqueue(taskqueue_swi_giant, &ng_btsocket_l2cap_queue_task)
208114878Sjulian
209114878Sjulian#define ng_btsocket_l2cap_wakeup_route_task() \
210114878Sjulian	taskqueue_enqueue(taskqueue_swi_giant, &ng_btsocket_l2cap_rt_task)
211114878Sjulian
212107120Sjulian/*****************************************************************************
213107120Sjulian *****************************************************************************
214107120Sjulian **                        Netgraph node interface
215107120Sjulian *****************************************************************************
216107120Sjulian *****************************************************************************/
217107120Sjulian
218107120Sjulian/*
219107120Sjulian * Netgraph node constructor. Do not allow to create node of this type.
220107120Sjulian */
221107120Sjulian
222107120Sjulianstatic int
223107120Sjulianng_btsocket_l2cap_node_constructor(node_p node)
224107120Sjulian{
225107120Sjulian	return (EINVAL);
226107120Sjulian} /* ng_btsocket_l2cap_node_constructor */
227107120Sjulian
228107120Sjulian/*
229107120Sjulian * Do local shutdown processing. Let old node go and create new fresh one.
230107120Sjulian */
231107120Sjulian
232107120Sjulianstatic int
233107120Sjulianng_btsocket_l2cap_node_shutdown(node_p node)
234107120Sjulian{
235107120Sjulian	int	error = 0;
236107120Sjulian
237107120Sjulian	NG_NODE_UNREF(node);
238107120Sjulian
239107120Sjulian	/* Create new node */
240107120Sjulian	error = ng_make_node_common(&typestruct, &ng_btsocket_l2cap_node);
241107120Sjulian	if (error != 0) {
242107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
243107120Sjulian"%s: Could not create Netgraph node, error=%d\n", __func__, error);
244107120Sjulian
245107120Sjulian		ng_btsocket_l2cap_node = NULL;
246107120Sjulian
247107120Sjulian		return (error);
248107120Sjulian	}
249107120Sjulian
250107120Sjulian	error = ng_name_node(ng_btsocket_l2cap_node,
251107120Sjulian				NG_BTSOCKET_L2CAP_NODE_TYPE);
252123812Salfred	if (error != 0) {
253107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
254107120Sjulian"%s: Could not name Netgraph node, error=%d\n", __func__, error);
255107120Sjulian
256107120Sjulian		NG_NODE_UNREF(ng_btsocket_l2cap_node);
257107120Sjulian		ng_btsocket_l2cap_node = NULL;
258107120Sjulian
259107120Sjulian		return (error);
260107120Sjulian	}
261107120Sjulian
262107120Sjulian	return (0);
263107120Sjulian} /* ng_btsocket_l2cap_node_shutdown */
264107120Sjulian
265107120Sjulian/*
266107120Sjulian * We allow any hook to be connected to the node.
267107120Sjulian */
268107120Sjulian
269107120Sjulianstatic int
270107120Sjulianng_btsocket_l2cap_node_newhook(node_p node, hook_p hook, char const *name)
271107120Sjulian{
272107120Sjulian	return (0);
273107120Sjulian} /* ng_btsocket_l2cap_node_newhook */
274107120Sjulian
275107120Sjulian/*
276107120Sjulian * Just say "YEP, that's OK by me!"
277107120Sjulian */
278107120Sjulian
279107120Sjulianstatic int
280107120Sjulianng_btsocket_l2cap_node_connect(hook_p hook)
281107120Sjulian{
282107120Sjulian	NG_HOOK_SET_PRIVATE(hook, NULL);
283107120Sjulian	NG_HOOK_REF(hook); /* Keep extra reference to the hook */
284107120Sjulian
285107120Sjulian#if 0
286107120Sjulian	NG_HOOK_FORCE_QUEUE(NG_HOOK_PEER(hook));
287107120Sjulian	NG_HOOK_FORCE_QUEUE(hook);
288107120Sjulian#endif
289107120Sjulian
290107120Sjulian	return (0);
291107120Sjulian} /* ng_btsocket_l2cap_node_connect */
292107120Sjulian
293107120Sjulian/*
294107120Sjulian * Hook disconnection. Schedule route cleanup task
295107120Sjulian */
296107120Sjulian
297107120Sjulianstatic int
298107120Sjulianng_btsocket_l2cap_node_disconnect(hook_p hook)
299107120Sjulian{
300107120Sjulian	/*
301107120Sjulian	 * If hook has private information than we must have this hook in
302107120Sjulian	 * the routing table and must schedule cleaning for the routing table.
303107120Sjulian	 * Otherwise hook was connected but we never got "hook_info" message,
304107120Sjulian	 * so we have never added this hook to the routing table and it save
305107120Sjulian	 * to just delete it.
306107120Sjulian	 */
307107120Sjulian
308107120Sjulian	if (NG_HOOK_PRIVATE(hook) != NULL)
309114878Sjulian		return (ng_btsocket_l2cap_wakeup_route_task());
310107120Sjulian
311107120Sjulian	NG_HOOK_UNREF(hook); /* Remove extra reference */
312107120Sjulian
313107120Sjulian	return (0);
314107120Sjulian} /* ng_btsocket_l2cap_node_disconnect */
315107120Sjulian
316107120Sjulian/*
317107120Sjulian * Process incoming messages
318107120Sjulian */
319107120Sjulian
320107120Sjulianstatic int
321107120Sjulianng_btsocket_l2cap_node_rcvmsg(node_p node, item_p item, hook_p hook)
322107120Sjulian{
323107120Sjulian	struct ng_mesg	*msg = NGI_MSG(item); /* item still has message */
324107120Sjulian	int		 error = 0;
325107120Sjulian
326107120Sjulian	if (msg != NULL && msg->header.typecookie == NGM_L2CAP_COOKIE) {
327107120Sjulian		mtx_lock(&ng_btsocket_l2cap_queue_mtx);
328107120Sjulian		if (NG_BT_ITEMQ_FULL(&ng_btsocket_l2cap_queue)) {
329107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
330107120Sjulian"%s: Input queue is full (msg)\n", __func__);
331107120Sjulian
332107120Sjulian			NG_BT_ITEMQ_DROP(&ng_btsocket_l2cap_queue);
333107120Sjulian			NG_FREE_ITEM(item);
334107120Sjulian			error = ENOBUFS;
335107120Sjulian		} else {
336107120Sjulian			if (hook != NULL) {
337107120Sjulian				NG_HOOK_REF(hook);
338107120Sjulian				NGI_SET_HOOK(item, hook);
339107120Sjulian			}
340107120Sjulian
341107120Sjulian			NG_BT_ITEMQ_ENQUEUE(&ng_btsocket_l2cap_queue, item);
342114878Sjulian			error = ng_btsocket_l2cap_wakeup_input_task();
343107120Sjulian		}
344107120Sjulian		mtx_unlock(&ng_btsocket_l2cap_queue_mtx);
345107120Sjulian	} else {
346107120Sjulian		NG_FREE_ITEM(item);
347107120Sjulian		error = EINVAL;
348107120Sjulian	}
349107120Sjulian
350107120Sjulian	return (error);
351107120Sjulian} /* ng_btsocket_l2cap_node_rcvmsg */
352107120Sjulian
353107120Sjulian/*
354107120Sjulian * Receive data on a hook
355107120Sjulian */
356107120Sjulian
357107120Sjulianstatic int
358107120Sjulianng_btsocket_l2cap_node_rcvdata(hook_p hook, item_p item)
359107120Sjulian{
360107120Sjulian	int	error = 0;
361107120Sjulian
362107120Sjulian	mtx_lock(&ng_btsocket_l2cap_queue_mtx);
363107120Sjulian	if (NG_BT_ITEMQ_FULL(&ng_btsocket_l2cap_queue)) {
364107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
365107120Sjulian"%s: Input queue is full (data)\n", __func__);
366107120Sjulian
367107120Sjulian		NG_BT_ITEMQ_DROP(&ng_btsocket_l2cap_queue);
368107120Sjulian		NG_FREE_ITEM(item);
369107120Sjulian		error = ENOBUFS;
370107120Sjulian	} else {
371107120Sjulian		NG_HOOK_REF(hook);
372107120Sjulian		NGI_SET_HOOK(item, hook);
373107120Sjulian
374107120Sjulian		NG_BT_ITEMQ_ENQUEUE(&ng_btsocket_l2cap_queue, item);
375114878Sjulian		error = ng_btsocket_l2cap_wakeup_input_task();
376107120Sjulian	}
377107120Sjulian	mtx_unlock(&ng_btsocket_l2cap_queue_mtx);
378107120Sjulian
379107120Sjulian	return (error);
380107120Sjulian} /* ng_btsocket_l2cap_node_rcvdata */
381107120Sjulian
382107120Sjulian/*
383107120Sjulian * Process L2CA_Connect respose. Socket layer must have initiated connection,
384107120Sjulian * so we have to have a socket associated with message token.
385107120Sjulian */
386107120Sjulian
387107120Sjulianstatic int
388107120Sjulianng_btsocket_l2cap_process_l2ca_con_req_rsp(struct ng_mesg *msg,
389114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
390107120Sjulian{
391107120Sjulian	ng_l2cap_l2ca_con_op	*op = NULL;
392107120Sjulian	ng_btsocket_l2cap_pcb_t	*pcb = NULL;
393107120Sjulian	int			 error = 0;
394107120Sjulian
395107120Sjulian	if (msg->header.arglen != sizeof(*op))
396107120Sjulian		return (EMSGSIZE);
397107120Sjulian
398107120Sjulian	op = (ng_l2cap_l2ca_con_op *)(msg->data);
399107120Sjulian
400114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
401114878Sjulian
402107120Sjulian	/* Look for the socket with the token */
403107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
404114878Sjulian	if (pcb == NULL) {
405114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
406107120Sjulian		return (ENOENT);
407114878Sjulian	}
408107120Sjulian
409107120Sjulian	mtx_lock(&pcb->pcb_mtx);
410107120Sjulian
411107120Sjulian	NG_BTSOCKET_L2CAP_INFO(
412107120Sjulian"%s: Got L2CA_Connect response, token=%d, src bdaddr=%x:%x:%x:%x:%x:%x, " \
413107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, status=%d, " \
414107120Sjulian"state=%d\n",	__func__, msg->header.token,
415107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
416107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
417107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
418107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
419107120Sjulian		pcb->psm, op->lcid, op->result, op->status,
420107120Sjulian		pcb->state);
421107120Sjulian
422107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CONNECTING) {
423107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
424114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
425114878Sjulian
426107120Sjulian		return (ENOENT);
427107120Sjulian	}
428107120Sjulian
429107120Sjulian	ng_btsocket_l2cap_untimeout(pcb);
430107120Sjulian
431107120Sjulian	if (op->result == NG_L2CAP_PENDING) {
432107120Sjulian		ng_btsocket_l2cap_timeout(pcb);
433107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
434114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
435114878Sjulian
436107120Sjulian		return (0);
437107120Sjulian	}
438107120Sjulian
439107120Sjulian	if (op->result == NG_L2CAP_SUCCESS) {
440107120Sjulian		/*
441107120Sjulian		 * Channel is now open, so update local channel ID and
442107120Sjulian		 * start configuration process. Source and destination
443107120Sjulian		 * addresses as well as route must be already set.
444107120Sjulian		 */
445107120Sjulian
446107120Sjulian		pcb->cid = op->lcid;
447107120Sjulian
448107120Sjulian		error = ng_btsocket_l2cap_send_l2ca_cfg_req(pcb);
449107120Sjulian		if (error != 0) {
450107120Sjulian			/* Send disconnect request with "zero" token */
451107120Sjulian			ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
452107120Sjulian
453107120Sjulian			/* ... and close the socket */
454107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
455107120Sjulian			soisdisconnected(pcb->so);
456114878Sjulian
457114878Sjulian			if (pcb->so->so_state & SS_NOFDREF)
458114878Sjulian				*sop = pcb->so;
459107120Sjulian		} else {
460107120Sjulian			pcb->cfg_state = NG_BTSOCKET_L2CAP_CFG_IN_SENT;
461107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_CONFIGURING;
462107120Sjulian
463107120Sjulian			ng_btsocket_l2cap_timeout(pcb);
464107120Sjulian		}
465107120Sjulian	} else {
466107120Sjulian		/*
467107120Sjulian		 * We have failed to open connection, so convert result
468107120Sjulian		 * code to "errno" code and disconnect the socket. Channel
469107120Sjulian		 * already has been closed.
470107120Sjulian		 */
471107120Sjulian
472107120Sjulian		pcb->so->so_error = ng_btsocket_l2cap_result2errno(op->result);
473107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
474107120Sjulian		soisdisconnected(pcb->so);
475114878Sjulian
476114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
477114878Sjulian			*sop = pcb->so;
478107120Sjulian	}
479107120Sjulian
480107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
481114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
482107120Sjulian
483107120Sjulian	return (error);
484107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_con_req_rsp */
485107120Sjulian
486107120Sjulian/*
487107120Sjulian * Process L2CA_ConnectRsp response
488107120Sjulian */
489107120Sjulian
490107120Sjulianstatic int
491107120Sjulianng_btsocket_l2cap_process_l2ca_con_rsp_rsp(struct ng_mesg *msg,
492114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
493107120Sjulian{
494107120Sjulian	ng_l2cap_l2ca_con_rsp_op	*op = NULL;
495107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL;
496107120Sjulian
497107120Sjulian	if (msg->header.arglen != sizeof(*op))
498107120Sjulian		return (EMSGSIZE);
499107120Sjulian
500107120Sjulian	op = (ng_l2cap_l2ca_con_rsp_op *)(msg->data);
501107120Sjulian
502114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
503114878Sjulian
504107120Sjulian	/* Look for the socket with the token */
505107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
506114878Sjulian	if (pcb == NULL) {
507114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
508107120Sjulian		return (ENOENT);
509114878Sjulian	}
510107120Sjulian
511107120Sjulian	mtx_lock(&pcb->pcb_mtx);
512107120Sjulian
513107120Sjulian	NG_BTSOCKET_L2CAP_INFO(
514107120Sjulian"%s: Got L2CA_ConnectRsp response, token=%d, src bdaddr=%x:%x:%x:%x:%x:%x, " \
515107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, state=%d\n",
516107120Sjulian		__func__, msg->header.token,
517107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
518107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
519107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
520107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
521107120Sjulian		pcb->psm, pcb->cid, op->result, pcb->state);
522107120Sjulian
523107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CONNECTING) {
524107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
525114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
526114878Sjulian
527107120Sjulian		return (ENOENT);
528107120Sjulian	}
529107120Sjulian
530107120Sjulian	ng_btsocket_l2cap_untimeout(pcb);
531107120Sjulian
532107120Sjulian	/* Check the result and disconnect the socket on failure */
533107120Sjulian	if (op->result != NG_L2CAP_SUCCESS) {
534107120Sjulian		/* Close the socket - channel already closed */
535107120Sjulian		pcb->so->so_error = ng_btsocket_l2cap_result2errno(op->result);
536107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
537107120Sjulian		soisdisconnected(pcb->so);
538114878Sjulian
539114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
540114878Sjulian			*sop = pcb->so;
541107120Sjulian	} else {
542107120Sjulian		/* Move to CONFIGURING state and wait for CONFIG_IND */
543107120Sjulian		pcb->cfg_state = 0;
544107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CONFIGURING;
545107120Sjulian		ng_btsocket_l2cap_timeout(pcb);
546107120Sjulian	}
547107120Sjulian
548107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
549114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
550107120Sjulian
551107120Sjulian	return (0);
552107120Sjulian} /* ng_btsocket_process_l2ca_con_rsp_rsp */
553107120Sjulian
554107120Sjulian/*
555107120Sjulian * Process L2CA_Connect indicator. Find socket that listens on address
556107120Sjulian * and PSM. Find exact or closest match. Create new socket and initiate
557107120Sjulian * connection.
558107120Sjulian */
559107120Sjulian
560107120Sjulianstatic int
561107120Sjulianng_btsocket_l2cap_process_l2ca_con_ind(struct ng_mesg *msg,
562114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
563107120Sjulian{
564107120Sjulian	ng_l2cap_l2ca_con_ind_ip	*ip = NULL;
565107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL, *pcb1 = NULL;
566107120Sjulian	int				 error = 0;
567107120Sjulian	u_int32_t			 token = 0;
568107120Sjulian	u_int16_t			 result = 0;
569107120Sjulian
570107120Sjulian	if (msg->header.arglen != sizeof(*ip))
571107120Sjulian		return (EMSGSIZE);
572107120Sjulian
573107120Sjulian	ip = (ng_l2cap_l2ca_con_ind_ip *)(msg->data);
574107120Sjulian
575107120Sjulian	NG_BTSOCKET_L2CAP_INFO(
576107120Sjulian"%s: Got L2CA_Connect indicator, src bdaddr=%x:%x:%x:%x:%x:%x, " \
577107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, ident=%d\n",
578107120Sjulian		__func__,
579107120Sjulian		rt->src.b[5], rt->src.b[4], rt->src.b[3],
580107120Sjulian		rt->src.b[2], rt->src.b[1], rt->src.b[0],
581107120Sjulian		ip->bdaddr.b[5], ip->bdaddr.b[4], ip->bdaddr.b[3],
582107120Sjulian		ip->bdaddr.b[2], ip->bdaddr.b[1], ip->bdaddr.b[0],
583107120Sjulian		ip->psm, ip->lcid, ip->ident);
584114878Sjulian
585114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
586107120Sjulian
587107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_addr(&rt->src, ip->psm);
588107120Sjulian	if (pcb != NULL) {
589107120Sjulian		struct socket	*so1 = NULL;
590107120Sjulian
591107120Sjulian		mtx_lock(&pcb->pcb_mtx);
592107120Sjulian
593107120Sjulian		/*
594107120Sjulian		 * First check the pending connections queue and if we have
595107120Sjulian		 * space then create new socket and set proper source address.
596107120Sjulian		 */
597107120Sjulian
598107120Sjulian		if (pcb->so->so_qlen <= pcb->so->so_qlimit)
599107120Sjulian			so1 = sonewconn(pcb->so, 0);
600107120Sjulian
601107120Sjulian		if (so1 == NULL) {
602107120Sjulian			result = NG_L2CAP_NO_RESOURCES;
603107120Sjulian			goto respond;
604107120Sjulian		}
605107120Sjulian
606107120Sjulian		/*
607107120Sjulian		 * If we got here than we have created new socket. So complete
608107120Sjulian		 * connection. If we we listening on specific address then copy
609107120Sjulian		 * source address from listening socket, otherwise copy source
610107120Sjulian		 * address from hook's routing information.
611107120Sjulian		 */
612107120Sjulian
613107120Sjulian		pcb1 = so2l2cap_pcb(so1);
614107120Sjulian		KASSERT((pcb1 != NULL),
615107120Sjulian("%s: pcb1 == NULL\n", __func__));
616107120Sjulian
617114878Sjulian 		mtx_lock(&pcb1->pcb_mtx);
618107120Sjulian
619107120Sjulian		if (bcmp(&pcb->src, NG_HCI_BDADDR_ANY, sizeof(pcb->src)) != 0)
620107120Sjulian			bcopy(&pcb->src, &pcb1->src, sizeof(pcb1->src));
621107120Sjulian		else
622107120Sjulian			bcopy(&rt->src, &pcb1->src, sizeof(pcb1->src));
623107120Sjulian
624107120Sjulian		pcb1->flags &= ~NG_BTSOCKET_L2CAP_CLIENT;
625107120Sjulian
626107120Sjulian		bcopy(&ip->bdaddr, &pcb1->dst, sizeof(pcb1->dst));
627107120Sjulian		pcb1->psm = ip->psm;
628107120Sjulian		pcb1->cid = ip->lcid;
629107120Sjulian		pcb1->rt = rt;
630107120Sjulian
631107120Sjulian		/* Copy socket settings */
632107120Sjulian		pcb1->imtu = pcb->imtu;
633107120Sjulian		bcopy(&pcb->oflow, &pcb1->oflow, sizeof(pcb1->oflow));
634107120Sjulian		pcb1->flush_timo = pcb->flush_timo;
635107120Sjulian
636107120Sjulian		token = pcb1->token;
637107120Sjulian	} else
638107120Sjulian		/* Nobody listens on requested BDADDR/PSM */
639107120Sjulian		result = NG_L2CAP_PSM_NOT_SUPPORTED;
640107120Sjulian
641107120Sjulianrespond:
642107120Sjulian	error = ng_btsocket_l2cap_send_l2ca_con_rsp_req(token, rt,
643107120Sjulian			&ip->bdaddr, ip->ident, ip->lcid, result);
644107120Sjulian	if (pcb1 != NULL) {
645107120Sjulian		if (error != 0) {
646107120Sjulian			pcb1->so->so_error = error;
647107120Sjulian			pcb1->state = NG_BTSOCKET_L2CAP_CLOSED;
648107120Sjulian			soisdisconnected(pcb1->so);
649114878Sjulian
650114878Sjulian			if (pcb1->so->so_state & SS_NOFDREF)
651114878Sjulian				*sop = pcb1->so;
652107120Sjulian		} else {
653107120Sjulian			pcb1->state = NG_BTSOCKET_L2CAP_CONNECTING;
654107120Sjulian			soisconnecting(pcb1->so);
655107120Sjulian
656107120Sjulian			ng_btsocket_l2cap_timeout(pcb1);
657107120Sjulian		}
658107120Sjulian
659107120Sjulian		mtx_unlock(&pcb1->pcb_mtx);
660107120Sjulian	}
661107120Sjulian
662107120Sjulian	if (pcb != NULL)
663107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
664107120Sjulian
665114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
666114878Sjulian
667107120Sjulian	return (error);
668107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_con_ind */
669107120Sjulian
670107120Sjulian/*
671107120Sjulian * Process L2CA_Config response
672107120Sjulian */
673107120Sjulian
674107120Sjulianstatic int
675107120Sjulianng_btsocket_l2cap_process_l2ca_cfg_req_rsp(struct ng_mesg *msg,
676114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
677107120Sjulian{
678107120Sjulian	ng_l2cap_l2ca_cfg_op	*op = NULL;
679107120Sjulian	ng_btsocket_l2cap_pcb_p	 pcb = NULL;
680107120Sjulian
681107120Sjulian	if (msg->header.arglen != sizeof(*op))
682107120Sjulian		return (EMSGSIZE);
683107120Sjulian
684107120Sjulian	op = (ng_l2cap_l2ca_cfg_op *)(msg->data);
685107120Sjulian
686114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
687114878Sjulian
688107120Sjulian	/*
689107120Sjulian	 * Socket must have issued a Configure request, so we must have a
690107120Sjulian	 * socket that wants to be configured. Use Netgraph message token
691107120Sjulian	 * to find it
692107120Sjulian	 */
693107120Sjulian
694107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
695107120Sjulian	if (pcb == NULL) {
696107120Sjulian		/*
697107120Sjulian		 * XXX FIXME what to do here? We could not find a
698107120Sjulian		 * socket with requested token. We even can not send
699107120Sjulian		 * Disconnect, because we do not know channel ID
700107120Sjulian		 */
701107120Sjulian
702114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
703107120Sjulian		return (ENOENT);
704107120Sjulian	}
705107120Sjulian
706107120Sjulian	mtx_lock(&pcb->pcb_mtx);
707107120Sjulian
708107120Sjulian        NG_BTSOCKET_L2CAP_INFO(
709107120Sjulian"%s: Got L2CA_Config response, token=%d, src bdaddr=%x:%x:%x:%x:%x:%x, " \
710107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, state=%d, " \
711107120Sjulian"cfg_state=%x\n",
712107120Sjulian		__func__, msg->header.token,
713107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
714107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
715107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
716107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
717107120Sjulian		pcb->psm, pcb->cid, op->result, pcb->state, pcb->cfg_state);
718107120Sjulian
719107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CONFIGURING) {
720107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
721114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
722114878Sjulian
723107120Sjulian		return (ENOENT);
724107120Sjulian	}
725107120Sjulian
726107120Sjulian	if (op->result == NG_L2CAP_SUCCESS) {
727107120Sjulian		/*
728107120Sjulian		 * XXX FIXME Actually set flush and link timeout.
729107120Sjulian		 * Set QoS here if required. Resolve conficts (flush_timo).
730107120Sjulian		 * Save incoming MTU (peer's outgoing MTU) and outgoing flow
731107120Sjulian		 * spec.
732107120Sjulian		 */
733107120Sjulian
734107120Sjulian		pcb->imtu = op->imtu;
735107120Sjulian		bcopy(&op->oflow, &pcb->oflow, sizeof(pcb->oflow));
736107120Sjulian		pcb->flush_timo = op->flush_timo;
737107120Sjulian
738107120Sjulian		/*
739107120Sjulian		 * We have configured incoming side, so record it and check
740107120Sjulian		 * if configuration is complete. If complete then mark socket
741107120Sjulian		 * as connected, otherwise wait for the peer.
742107120Sjulian		 */
743107120Sjulian
744107120Sjulian		pcb->cfg_state &= ~NG_BTSOCKET_L2CAP_CFG_IN_SENT;
745107120Sjulian		pcb->cfg_state |= NG_BTSOCKET_L2CAP_CFG_IN;
746107120Sjulian
747107120Sjulian		if (pcb->cfg_state == NG_BTSOCKET_L2CAP_CFG_BOTH) {
748107120Sjulian			/* Configuration complete - mark socket as open */
749107120Sjulian			ng_btsocket_l2cap_untimeout(pcb);
750107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_OPEN;
751107120Sjulian			soisconnected(pcb->so);
752107120Sjulian		}
753107120Sjulian	} else {
754107120Sjulian		/*
755107120Sjulian		 * Something went wrong. Could be unacceptable parameters,
756107120Sjulian		 * reject or unknown option. That's too bad, but we will
757107120Sjulian		 * not negotiate. Send Disconnect and close the channel.
758107120Sjulian		 */
759107120Sjulian
760107120Sjulian		ng_btsocket_l2cap_untimeout(pcb);
761107120Sjulian
762107120Sjulian		switch (op->result) {
763107120Sjulian		case NG_L2CAP_UNACCEPTABLE_PARAMS:
764107120Sjulian		case NG_L2CAP_UNKNOWN_OPTION:
765107120Sjulian			pcb->so->so_error = EINVAL;
766107120Sjulian			break;
767107120Sjulian
768107120Sjulian		default:
769107120Sjulian			pcb->so->so_error = ECONNRESET;
770107120Sjulian			break;
771107120Sjulian		}
772107120Sjulian
773107120Sjulian		/* Send disconnect with "zero" token */
774107120Sjulian		ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
775107120Sjulian
776107120Sjulian		/* ... and close the socket */
777107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
778107120Sjulian		soisdisconnected(pcb->so);
779114878Sjulian
780114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
781114878Sjulian			*sop = pcb->so;
782107120Sjulian	}
783107120Sjulian
784107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
785114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
786107120Sjulian
787107120Sjulian	return (0);
788107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_cfg_req_rsp */
789107120Sjulian
790107120Sjulian/*
791107120Sjulian * Process L2CA_ConfigRsp response
792107120Sjulian */
793107120Sjulian
794107120Sjulianstatic int
795107120Sjulianng_btsocket_l2cap_process_l2ca_cfg_rsp_rsp(struct ng_mesg *msg,
796114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
797107120Sjulian{
798107120Sjulian	ng_l2cap_l2ca_cfg_rsp_op	*op = NULL;
799107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL;
800107120Sjulian	int				 error = 0;
801107120Sjulian
802107120Sjulian	if (msg->header.arglen != sizeof(*op))
803107120Sjulian		return (EMSGSIZE);
804107120Sjulian
805107120Sjulian	op = (ng_l2cap_l2ca_cfg_rsp_op *)(msg->data);
806107120Sjulian
807114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
808114878Sjulian
809107120Sjulian	/* Look for the socket with the token */
810107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
811114878Sjulian	if (pcb == NULL) {
812114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
813107120Sjulian		return (ENOENT);
814114878Sjulian	}
815107120Sjulian
816107120Sjulian	mtx_lock(&pcb->pcb_mtx);
817107120Sjulian
818107120Sjulian        NG_BTSOCKET_L2CAP_INFO(
819107120Sjulian"%s: Got L2CA_ConfigRsp response, token=%d, src bdaddr=%x:%x:%x:%x:%x:%x, " \
820107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, state=%d, " \
821107120Sjulian"cfg_state=%x\n",
822107120Sjulian		__func__, msg->header.token,
823107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
824107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
825107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
826107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
827107120Sjulian		pcb->psm, pcb->cid, op->result, pcb->state, pcb->cfg_state);
828107120Sjulian
829107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CONFIGURING) {
830107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
831114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
832114878Sjulian
833107120Sjulian		return (ENOENT);
834107120Sjulian	}
835107120Sjulian
836107120Sjulian	/* Check the result and disconnect socket of failure */
837107120Sjulian	if (op->result != NG_L2CAP_SUCCESS)
838107120Sjulian		goto disconnect;
839107120Sjulian
840107120Sjulian	/*
841107120Sjulian	 * Now we done with remote side configuration. Configure local
842107120Sjulian	 * side if we have not done it yet.
843107120Sjulian	 */
844107120Sjulian
845107120Sjulian	pcb->cfg_state &= ~NG_BTSOCKET_L2CAP_CFG_OUT_SENT;
846107120Sjulian	pcb->cfg_state |= NG_BTSOCKET_L2CAP_CFG_OUT;
847107120Sjulian
848107120Sjulian	if (pcb->cfg_state == NG_BTSOCKET_L2CAP_CFG_BOTH) {
849107120Sjulian		/* Configuration complete - mask socket as open */
850107120Sjulian		ng_btsocket_l2cap_untimeout(pcb);
851107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_OPEN;
852107120Sjulian		soisconnected(pcb->so);
853107120Sjulian	} else {
854107120Sjulian		if (!(pcb->cfg_state & NG_BTSOCKET_L2CAP_CFG_IN_SENT)) {
855107120Sjulian			/* Send L2CA_Config request - incoming path */
856107120Sjulian			error = ng_btsocket_l2cap_send_l2ca_cfg_req(pcb);
857107120Sjulian			if (error != 0)
858107120Sjulian				goto disconnect;
859107120Sjulian
860107120Sjulian			pcb->cfg_state |= NG_BTSOCKET_L2CAP_CFG_IN_SENT;
861107120Sjulian		}
862107120Sjulian	}
863107120Sjulian
864107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
865114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
866107120Sjulian
867107120Sjulian	return (error);
868107120Sjulian
869107120Sjuliandisconnect:
870107120Sjulian	ng_btsocket_l2cap_untimeout(pcb);
871107120Sjulian
872107120Sjulian	/* Send disconnect with "zero" token */
873107120Sjulian	ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
874107120Sjulian
875107120Sjulian	/* ... and close the socket */
876107120Sjulian	pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
877107120Sjulian	soisdisconnected(pcb->so);
878107120Sjulian
879114878Sjulian	if (pcb->so->so_state & SS_NOFDREF)
880114878Sjulian		*sop = pcb->so;
881114878Sjulian
882107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
883114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
884107120Sjulian
885107120Sjulian	return (error);
886107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_cfg_rsp_rsp */
887107120Sjulian
888107120Sjulian/*
889107120Sjulian * Process L2CA_Config indicator
890107120Sjulian */
891107120Sjulian
892107120Sjulianstatic int
893107120Sjulianng_btsocket_l2cap_process_l2ca_cfg_ind(struct ng_mesg *msg,
894114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
895107120Sjulian{
896107120Sjulian	ng_l2cap_l2ca_cfg_ind_ip	*ip = NULL;
897107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL;
898107120Sjulian	int				 error = 0;
899107120Sjulian
900107120Sjulian	if (msg->header.arglen != sizeof(*ip))
901107120Sjulian		return (EMSGSIZE);
902107120Sjulian
903107120Sjulian	ip = (ng_l2cap_l2ca_cfg_ind_ip *)(msg->data);
904107120Sjulian
905114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
906114878Sjulian
907107120Sjulian	/* Check for the open socket that has given channel ID */
908107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_cid(&rt->src, ip->lcid);
909114878Sjulian	if (pcb == NULL) {
910114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
911107120Sjulian		return (ENOENT);
912114878Sjulian	}
913107120Sjulian
914107120Sjulian	mtx_lock(&pcb->pcb_mtx);
915107120Sjulian
916107120Sjulian        NG_BTSOCKET_L2CAP_INFO(
917107120Sjulian"%s: Got L2CA_Config indicator, src bdaddr=%x:%x:%x:%x:%x:%x, " \
918107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, state=%d, cfg_state=%x\n",
919107120Sjulian		__func__,
920107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
921107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
922107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
923107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
924107120Sjulian		pcb->psm, pcb->cid, pcb->state, pcb->cfg_state);
925107120Sjulian
926107120Sjulian	/* XXX FIXME re-configuration on open socket */
927107120Sjulian 	if (pcb->state != NG_BTSOCKET_L2CAP_CONFIGURING) {
928107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
929114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
930114878Sjulian
931107120Sjulian		return (ENOENT);
932107120Sjulian	}
933107120Sjulian
934107120Sjulian	/*
935107120Sjulian	 * XXX FIXME Actually set flush and link timeout. Set QoS here if
936107120Sjulian	 * required. Resolve conficts (flush_timo). Note outgoing MTU (peer's
937107120Sjulian	 * incoming MTU) and incoming flow spec.
938107120Sjulian	 */
939107120Sjulian
940107120Sjulian	pcb->omtu = ip->omtu;
941107120Sjulian	bcopy(&ip->iflow, &pcb->iflow, sizeof(pcb->iflow));
942107120Sjulian	pcb->flush_timo = ip->flush_timo;
943107120Sjulian
944107120Sjulian	/*
945107120Sjulian	 * Send L2CA_Config response to our peer and check for the errors,
946107120Sjulian	 * if any send disconnect to close the channel.
947107120Sjulian	 */
948107120Sjulian
949114878Sjulian	if (!(pcb->cfg_state & NG_BTSOCKET_L2CAP_CFG_OUT_SENT)) {
950114878Sjulian		error = ng_btsocket_l2cap_send_l2ca_cfg_rsp(pcb);
951114878Sjulian		if (error != 0) {
952114878Sjulian			ng_btsocket_l2cap_untimeout(pcb);
953107120Sjulian
954114878Sjulian			pcb->so->so_error = error;
955107120Sjulian
956114878Sjulian			/* Send disconnect with "zero" token */
957114878Sjulian			ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
958107120Sjulian
959114878Sjulian			/* ... and close the socket */
960114878Sjulian			pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
961114878Sjulian			soisdisconnected(pcb->so);
962107120Sjulian
963114878Sjulian			if (pcb->so->so_state & SS_NOFDREF)
964114878Sjulian				*sop = pcb->so;
965114878Sjulian		} else
966114878Sjulian			pcb->cfg_state |= NG_BTSOCKET_L2CAP_CFG_OUT_SENT;
967107120Sjulian	}
968107120Sjulian
969107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
970114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
971107120Sjulian
972107120Sjulian	return (error);
973107120Sjulian} /* ng_btsocket_l2cap_process_l2cap_cfg_ind */
974107120Sjulian
975107120Sjulian/*
976107120Sjulian * Process L2CA_Disconnect response
977107120Sjulian */
978107120Sjulian
979107120Sjulianstatic int
980107120Sjulianng_btsocket_l2cap_process_l2ca_discon_rsp(struct ng_mesg *msg,
981114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
982107120Sjulian{
983107120Sjulian	ng_l2cap_l2ca_discon_op	*op = NULL;
984107120Sjulian	ng_btsocket_l2cap_pcb_t	*pcb = NULL;
985107120Sjulian
986107120Sjulian	/* Check message */
987107120Sjulian	if (msg->header.arglen != sizeof(*op))
988107120Sjulian		return (EMSGSIZE);
989107120Sjulian
990107120Sjulian	op = (ng_l2cap_l2ca_discon_op *)(msg->data);
991107120Sjulian
992114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
993114878Sjulian
994107120Sjulian	/*
995107120Sjulian	 * Socket layer must have issued L2CA_Disconnect request, so there
996107120Sjulian	 * must be a socket that wants to be disconnected. Use Netgraph
997107120Sjulian	 * message token to find it.
998107120Sjulian	 */
999107120Sjulian
1000107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
1001114878Sjulian	if (pcb == NULL) {
1002114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1003107120Sjulian		return (0);
1004114878Sjulian	}
1005107120Sjulian
1006107120Sjulian	mtx_lock(&pcb->pcb_mtx);
1007107120Sjulian
1008107120Sjulian	/* XXX Close socket no matter what op->result says */
1009107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CLOSED) {
1010107120Sjulian       		NG_BTSOCKET_L2CAP_INFO(
1011107120Sjulian"%s: Got L2CA_Disconnect response, token=%d, src bdaddr=%x:%x:%x:%x:%x:%x, " \
1012107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, state=%d\n",
1013107120Sjulian			__func__, msg->header.token,
1014107120Sjulian			pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
1015107120Sjulian			pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
1016107120Sjulian			pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
1017107120Sjulian			pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
1018107120Sjulian			pcb->psm, pcb->cid, op->result, pcb->state);
1019107120Sjulian
1020107120Sjulian		ng_btsocket_l2cap_untimeout(pcb);
1021107120Sjulian
1022107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
1023107120Sjulian		soisdisconnected(pcb->so);
1024114878Sjulian
1025114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
1026114878Sjulian			*sop = pcb->so;
1027107120Sjulian	}
1028107120Sjulian
1029107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
1030114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1031107120Sjulian
1032107120Sjulian	return (0);
1033107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_discon_rsp */
1034107120Sjulian
1035107120Sjulian/*
1036107120Sjulian * Process L2CA_Disconnect indicator
1037107120Sjulian */
1038107120Sjulian
1039107120Sjulianstatic int
1040107120Sjulianng_btsocket_l2cap_process_l2ca_discon_ind(struct ng_mesg *msg,
1041114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
1042107120Sjulian{
1043107120Sjulian	ng_l2cap_l2ca_discon_ind_ip	*ip = NULL;
1044107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL;
1045107120Sjulian
1046107120Sjulian	/* Check message */
1047107120Sjulian	if (msg->header.arglen != sizeof(*ip))
1048107120Sjulian		return (EMSGSIZE);
1049107120Sjulian
1050107120Sjulian	ip = (ng_l2cap_l2ca_discon_ind_ip *)(msg->data);
1051107120Sjulian
1052114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
1053114878Sjulian
1054107120Sjulian	/* Look for the socket with given channel ID */
1055107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_cid(&rt->src, ip->lcid);
1056114878Sjulian	if (pcb == NULL) {
1057114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1058107120Sjulian		return (0);
1059114878Sjulian	}
1060107120Sjulian
1061107120Sjulian	/*
1062107120Sjulian	 * Channel has already been destroyed, so disconnect the socket
1063107120Sjulian	 * and be done with it. If there was any pending request we can
1064107120Sjulian	 * not do anything here anyway.
1065107120Sjulian	 */
1066107120Sjulian
1067107120Sjulian	mtx_lock(&pcb->pcb_mtx);
1068107120Sjulian
1069107120Sjulian       	NG_BTSOCKET_L2CAP_INFO(
1070107120Sjulian"%s: Got L2CA_Disconnect indicator, src bdaddr=%x:%x:%x:%x:%x:%x, " \
1071107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, state=%d\n",
1072107120Sjulian		__func__,
1073107120Sjulian		pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
1074107120Sjulian		pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
1075107120Sjulian		pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
1076107120Sjulian		pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
1077107120Sjulian		pcb->psm, pcb->cid, pcb->state);
1078107120Sjulian
1079107120Sjulian	if (pcb->flags & NG_BTSOCKET_L2CAP_TIMO)
1080107120Sjulian		ng_btsocket_l2cap_untimeout(pcb);
1081107120Sjulian
1082107120Sjulian	pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
1083107120Sjulian	soisdisconnected(pcb->so);
1084107120Sjulian
1085114878Sjulian	if (pcb->so->so_state & SS_NOFDREF)
1086114878Sjulian		*sop = pcb->so;
1087114878Sjulian
1088107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
1089114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1090107120Sjulian
1091107120Sjulian	return (0);
1092107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_discon_ind */
1093107120Sjulian
1094107120Sjulian/*
1095107120Sjulian * Process L2CA_Write response
1096107120Sjulian */
1097107120Sjulian
1098107120Sjulianstatic int
1099107120Sjulianng_btsocket_l2cap_process_l2ca_write_rsp(struct ng_mesg *msg,
1100114878Sjulian		ng_btsocket_l2cap_rtentry_p rt, struct socket **sop)
1101107120Sjulian{
1102107120Sjulian	ng_l2cap_l2ca_write_op	*op = NULL;
1103107120Sjulian	ng_btsocket_l2cap_pcb_t	*pcb = NULL;
1104107120Sjulian
1105107120Sjulian	/* Check message */
1106107120Sjulian	if (msg->header.arglen != sizeof(*op))
1107107120Sjulian		return (EMSGSIZE);
1108107120Sjulian
1109107120Sjulian	op = (ng_l2cap_l2ca_write_op *)(msg->data);
1110107120Sjulian
1111114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
1112114878Sjulian
1113107120Sjulian	/* Look for the socket with given token */
1114107120Sjulian	pcb = ng_btsocket_l2cap_pcb_by_token(msg->header.token);
1115114878Sjulian	if (pcb == NULL) {
1116114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1117107120Sjulian		return (ENOENT);
1118114878Sjulian	}
1119107120Sjulian
1120107120Sjulian	mtx_lock(&pcb->pcb_mtx);
1121107120Sjulian
1122107120Sjulian       	NG_BTSOCKET_L2CAP_INFO(
1123107120Sjulian"%s: Got L2CA_Write response, src bdaddr=%x:%x:%x:%x:%x:%x, " \
1124107120Sjulian"dst bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, lcid=%d, result=%d, length=%d, " \
1125107120Sjulian"state=%d\n",		__func__,
1126107120Sjulian			pcb->src.b[5], pcb->src.b[4], pcb->src.b[3],
1127107120Sjulian			pcb->src.b[2], pcb->src.b[1], pcb->src.b[0],
1128107120Sjulian			pcb->dst.b[5], pcb->dst.b[4], pcb->dst.b[3],
1129107120Sjulian			pcb->dst.b[2], pcb->dst.b[1], pcb->dst.b[0],
1130107120Sjulian			pcb->psm, pcb->cid, op->result, op->length,
1131107120Sjulian			pcb->state);
1132107120Sjulian
1133107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_OPEN) {
1134107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
1135114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1136114878Sjulian
1137107120Sjulian		return (ENOENT);
1138107120Sjulian	}
1139107120Sjulian
1140107120Sjulian	ng_btsocket_l2cap_untimeout(pcb);
1141107120Sjulian
1142107120Sjulian	/*
1143107120Sjulian 	 * Check if we have more data to send
1144107120Sjulian 	 */
1145107120Sjulian
1146107120Sjulian	sbdroprecord(&pcb->so->so_snd);
1147107120Sjulian	if (pcb->so->so_snd.sb_cc > 0) {
1148107120Sjulian		if (ng_btsocket_l2cap_send2(pcb) == 0)
1149107120Sjulian			ng_btsocket_l2cap_timeout(pcb);
1150107120Sjulian		else
1151107120Sjulian			sbdroprecord(&pcb->so->so_snd); /* XXX */
1152107120Sjulian	}
1153107120Sjulian
1154107120Sjulian	/*
1155107120Sjulian	 * Now set the result, drop packet from the socket send queue and
1156107120Sjulian	 * ask for more (wakeup sender)
1157107120Sjulian	 */
1158107120Sjulian
1159107120Sjulian	pcb->so->so_error = ng_btsocket_l2cap_result2errno(op->result);
1160107120Sjulian	sowwakeup(pcb->so);
1161107120Sjulian
1162107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
1163114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1164107120Sjulian
1165107120Sjulian	return (0);
1166107120Sjulian} /* ng_btsocket_l2cap_process_l2ca_write_rsp */
1167107120Sjulian
1168107120Sjulian/*
1169107120Sjulian * Send L2CA_Connect request
1170107120Sjulian */
1171107120Sjulian
1172107120Sjulianstatic int
1173107120Sjulianng_btsocket_l2cap_send_l2ca_con_req(ng_btsocket_l2cap_pcb_p pcb)
1174107120Sjulian{
1175107120Sjulian	struct ng_mesg		*msg = NULL;
1176107120Sjulian	ng_l2cap_l2ca_con_ip	*ip = NULL;
1177107120Sjulian	int			 error = 0;
1178107120Sjulian
1179107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
1180107120Sjulian
1181107120Sjulian	if (pcb->rt == NULL ||
1182107120Sjulian	    pcb->rt->hook == NULL || NG_HOOK_NOT_VALID(pcb->rt->hook))
1183107120Sjulian		return (ENETDOWN);
1184107120Sjulian
1185107120Sjulian	NG_MKMESSAGE(msg, NGM_L2CAP_COOKIE, NGM_L2CAP_L2CA_CON,
1186107120Sjulian		sizeof(*ip), M_NOWAIT);
1187107120Sjulian	if (msg == NULL)
1188107120Sjulian		return (ENOMEM);
1189107120Sjulian
1190107120Sjulian	msg->header.token = pcb->token;
1191107120Sjulian
1192107120Sjulian	ip = (ng_l2cap_l2ca_con_ip *)(msg->data);
1193107120Sjulian	bcopy(&pcb->dst, &ip->bdaddr, sizeof(ip->bdaddr));
1194107120Sjulian	ip->psm = pcb->psm;
1195107120Sjulian
1196123812Salfred	NG_SEND_MSG_HOOK(error, ng_btsocket_l2cap_node, msg,pcb->rt->hook, 0);
1197107120Sjulian
1198107120Sjulian	return (error);
1199107120Sjulian} /* ng_btsocket_l2cap_send_l2ca_con_req */
1200107120Sjulian
1201107120Sjulian/*
1202107120Sjulian * Send L2CA_Connect response
1203107120Sjulian */
1204107120Sjulian
1205107120Sjulianstatic int
1206107120Sjulianng_btsocket_l2cap_send_l2ca_con_rsp_req(u_int32_t token,
1207107120Sjulian		ng_btsocket_l2cap_rtentry_p rt, bdaddr_p dst, int ident,
1208107120Sjulian		int lcid, int result)
1209107120Sjulian{
1210107120Sjulian	struct ng_mesg			*msg = NULL;
1211107120Sjulian	ng_l2cap_l2ca_con_rsp_ip	*ip = NULL;
1212107120Sjulian	int				 error = 0;
1213107120Sjulian
1214107120Sjulian	if (rt == NULL || rt->hook == NULL || NG_HOOK_NOT_VALID(rt->hook))
1215107120Sjulian		return (ENETDOWN);
1216107120Sjulian
1217107120Sjulian	NG_MKMESSAGE(msg, NGM_L2CAP_COOKIE, NGM_L2CAP_L2CA_CON_RSP,
1218107120Sjulian		sizeof(*ip), M_NOWAIT);
1219107120Sjulian	if (msg == NULL)
1220107120Sjulian		return (ENOMEM);
1221107120Sjulian
1222107120Sjulian	msg->header.token = token;
1223107120Sjulian
1224107120Sjulian	ip = (ng_l2cap_l2ca_con_rsp_ip *)(msg->data);
1225107120Sjulian	bcopy(dst, &ip->bdaddr, sizeof(ip->bdaddr));
1226107120Sjulian	ip->ident = ident;
1227107120Sjulian	ip->lcid = lcid;
1228107120Sjulian	ip->result = result;
1229107120Sjulian	ip->status = 0;
1230107120Sjulian
1231123812Salfred	NG_SEND_MSG_HOOK(error, ng_btsocket_l2cap_node, msg, rt->hook, 0);
1232107120Sjulian
1233107120Sjulian	return (error);
1234107120Sjulian} /* ng_btsocket_l2cap_send_l2ca_con_rsp_req */
1235107120Sjulian
1236107120Sjulian/*
1237107120Sjulian * Send L2CA_Config request
1238107120Sjulian */
1239107120Sjulian
1240107120Sjulianstatic int
1241107120Sjulianng_btsocket_l2cap_send_l2ca_cfg_req(ng_btsocket_l2cap_pcb_p pcb)
1242107120Sjulian{
1243107120Sjulian	struct ng_mesg		*msg = NULL;
1244107120Sjulian	ng_l2cap_l2ca_cfg_ip	*ip = NULL;
1245107120Sjulian	int			 error = 0;
1246107120Sjulian
1247107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
1248107120Sjulian
1249107120Sjulian	if (pcb->rt == NULL ||
1250107120Sjulian	    pcb->rt->hook == NULL || NG_HOOK_NOT_VALID(pcb->rt->hook))
1251107120Sjulian		return (ENETDOWN);
1252107120Sjulian
1253107120Sjulian	NG_MKMESSAGE(msg, NGM_L2CAP_COOKIE, NGM_L2CAP_L2CA_CFG,
1254107120Sjulian		sizeof(*ip), M_NOWAIT);
1255107120Sjulian	if (msg == NULL)
1256107120Sjulian		return (ENOMEM);
1257107120Sjulian
1258107120Sjulian	msg->header.token = pcb->token;
1259107120Sjulian
1260107120Sjulian	ip = (ng_l2cap_l2ca_cfg_ip *)(msg->data);
1261107120Sjulian	ip->lcid = pcb->cid;
1262107120Sjulian	ip->imtu = pcb->imtu;
1263107120Sjulian	bcopy(&pcb->oflow, &ip->oflow, sizeof(ip->oflow));
1264107120Sjulian	ip->flush_timo = pcb->flush_timo;
1265107120Sjulian	ip->link_timo = pcb->link_timo;
1266107120Sjulian
1267123812Salfred	NG_SEND_MSG_HOOK(error, ng_btsocket_l2cap_node, msg,pcb->rt->hook, 0);
1268107120Sjulian
1269107120Sjulian	return (error);
1270107120Sjulian} /* ng_btsocket_l2cap_send_l2ca_cfg_req */
1271107120Sjulian
1272107120Sjulian/*
1273107120Sjulian * Send L2CA_Config response
1274107120Sjulian */
1275107120Sjulian
1276107120Sjulianstatic int
1277107120Sjulianng_btsocket_l2cap_send_l2ca_cfg_rsp(ng_btsocket_l2cap_pcb_p pcb)
1278107120Sjulian{
1279107120Sjulian	struct ng_mesg			*msg = NULL;
1280107120Sjulian	ng_l2cap_l2ca_cfg_rsp_ip	*ip = NULL;
1281107120Sjulian	int				 error = 0;
1282107120Sjulian
1283107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
1284107120Sjulian
1285107120Sjulian	if (pcb->rt == NULL ||
1286107120Sjulian	    pcb->rt->hook == NULL || NG_HOOK_NOT_VALID(pcb->rt->hook))
1287107120Sjulian		return (ENETDOWN);
1288107120Sjulian
1289107120Sjulian	NG_MKMESSAGE(msg, NGM_L2CAP_COOKIE, NGM_L2CAP_L2CA_CFG_RSP,
1290107120Sjulian		sizeof(*ip), M_NOWAIT);
1291107120Sjulian	if (msg == NULL)
1292107120Sjulian		return (ENOMEM);
1293107120Sjulian
1294107120Sjulian	msg->header.token = pcb->token;
1295107120Sjulian
1296107120Sjulian	ip = (ng_l2cap_l2ca_cfg_rsp_ip *)(msg->data);
1297107120Sjulian	ip->lcid = pcb->cid;
1298107120Sjulian	ip->omtu = pcb->omtu;
1299107120Sjulian	bcopy(&pcb->iflow, &ip->iflow, sizeof(ip->iflow));
1300107120Sjulian
1301123812Salfred	NG_SEND_MSG_HOOK(error, ng_btsocket_l2cap_node, msg, pcb->rt->hook, 0);
1302107120Sjulian
1303107120Sjulian	return (error);
1304107120Sjulian} /* ng_btsocket_l2cap_send_l2ca_cfg_rsp */
1305107120Sjulian
1306107120Sjulian/*
1307107120Sjulian * Send L2CA_Disconnect request
1308107120Sjulian */
1309107120Sjulian
1310107120Sjulianstatic int
1311107120Sjulianng_btsocket_l2cap_send_l2ca_discon_req(u_int32_t token,
1312107120Sjulian		ng_btsocket_l2cap_pcb_p pcb)
1313107120Sjulian{
1314107120Sjulian	struct ng_mesg		*msg = NULL;
1315107120Sjulian	ng_l2cap_l2ca_discon_ip	*ip = NULL;
1316107120Sjulian	int			 error = 0;
1317107120Sjulian
1318107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
1319107120Sjulian
1320107120Sjulian	if (pcb->rt == NULL ||
1321107120Sjulian	    pcb->rt->hook == NULL || NG_HOOK_NOT_VALID(pcb->rt->hook))
1322107120Sjulian		return (ENETDOWN);
1323107120Sjulian
1324107120Sjulian	NG_MKMESSAGE(msg, NGM_L2CAP_COOKIE, NGM_L2CAP_L2CA_DISCON,
1325107120Sjulian		sizeof(*ip), M_NOWAIT);
1326107120Sjulian	if (msg == NULL)
1327107120Sjulian		return (ENOMEM);
1328107120Sjulian
1329107120Sjulian	msg->header.token = token;
1330107120Sjulian
1331107120Sjulian	ip = (ng_l2cap_l2ca_discon_ip *)(msg->data);
1332107120Sjulian	ip->lcid = pcb->cid;
1333107120Sjulian
1334123812Salfred	NG_SEND_MSG_HOOK(error, ng_btsocket_l2cap_node, msg,pcb->rt->hook, 0);
1335107120Sjulian
1336107120Sjulian	return (error);
1337107120Sjulian} /* ng_btsocket_l2cap_send_l2ca_discon_req */
1338107120Sjulian
1339107120Sjulian/*****************************************************************************
1340107120Sjulian *****************************************************************************
1341107120Sjulian **                              Socket interface
1342107120Sjulian *****************************************************************************
1343107120Sjulian *****************************************************************************/
1344107120Sjulian
1345107120Sjulian/*
1346107120Sjulian * L2CAP sockets data input routine
1347107120Sjulian */
1348107120Sjulian
1349107120Sjulianstatic void
1350107120Sjulianng_btsocket_l2cap_data_input(struct mbuf *m, hook_p hook)
1351107120Sjulian{
1352107120Sjulian	ng_l2cap_hdr_t			*hdr = NULL;
1353107120Sjulian	ng_l2cap_clt_hdr_t		*clt_hdr = NULL;
1354107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = NULL;
1355107120Sjulian	ng_btsocket_l2cap_rtentry_t	*rt = NULL;
1356107120Sjulian
1357107120Sjulian	if (hook == NULL) {
1358107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1359107120Sjulian"%s: Invalid source hook for L2CAP data packet\n", __func__);
1360107120Sjulian		goto drop;
1361107120Sjulian	}
1362107120Sjulian
1363107120Sjulian	rt = (ng_btsocket_l2cap_rtentry_t *) NG_HOOK_PRIVATE(hook);
1364107120Sjulian	if (rt == NULL) {
1365107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1366107120Sjulian"%s: Could not find out source bdaddr for L2CAP data packet\n", __func__);
1367107120Sjulian		goto drop;
1368107120Sjulian	}
1369107120Sjulian
1370107120Sjulian	/* Make sure we can access header */
1371107120Sjulian	if (m->m_pkthdr.len < sizeof(*hdr)) {
1372107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
1373107120Sjulian"%s: L2CAP data packet too small, len=%d\n", __func__, m->m_pkthdr.len);
1374107120Sjulian		goto drop;
1375107120Sjulian	}
1376107120Sjulian
1377107120Sjulian	if (m->m_len < sizeof(*hdr)) {
1378107120Sjulian		m = m_pullup(m, sizeof(*hdr));
1379107120Sjulian		if (m == NULL)
1380107120Sjulian			goto drop;
1381107120Sjulian	}
1382107120Sjulian
1383107120Sjulian	/* Strip L2CAP packet header and verify packet length */
1384107120Sjulian	hdr = mtod(m, ng_l2cap_hdr_t *);
1385107120Sjulian	m_adj(m, sizeof(*hdr));
1386107120Sjulian
1387107120Sjulian	if (hdr->length != m->m_pkthdr.len) {
1388107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
1389107120Sjulian"%s: Bad L2CAP data packet length, len=%d, length=%d\n",
1390107120Sjulian			__func__, m->m_pkthdr.len, hdr->length);
1391107120Sjulian		goto drop;
1392107120Sjulian	}
1393107120Sjulian
1394107120Sjulian	/*
1395107120Sjulian	 * Now process packet. Two cases:
1396107120Sjulian	 *
1397107120Sjulian	 * 1) Normal packet (cid != 2) then find connected socket and append
1398107120Sjulian	 *    mbuf to the socket queue. Wakeup socket.
1399107120Sjulian	 *
1400107120Sjulian	 * 2) Broadcast packet (cid == 2) then find all sockets that connected
1401107120Sjulian	 *    to the given PSM and have SO_BROADCAST bit set and append mbuf
1402107120Sjulian	 *    to the socket queue. Wakeup socket.
1403107120Sjulian	 */
1404107120Sjulian
1405107120Sjulian	NG_BTSOCKET_L2CAP_INFO(
1406114878Sjulian"%s: Received L2CAP data packet: src bdaddr=%x:%x:%x:%x:%x:%x, " \
1407107120Sjulian"dcid=%d, length=%d\n",
1408107120Sjulian		__func__,
1409107120Sjulian		rt->src.b[5], rt->src.b[4], rt->src.b[3],
1410107120Sjulian		rt->src.b[2], rt->src.b[1], rt->src.b[0],
1411107120Sjulian		hdr->dcid, hdr->length);
1412107120Sjulian
1413121054Semax	if (hdr->dcid >= NG_L2CAP_FIRST_CID) {
1414114878Sjulian
1415114878Sjulian		mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
1416114878Sjulian
1417107120Sjulian		/* Normal packet: find connected socket */
1418107120Sjulian		pcb = ng_btsocket_l2cap_pcb_by_cid(&rt->src, hdr->dcid);
1419114878Sjulian		if (pcb == NULL) {
1420114878Sjulian			mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1421107120Sjulian			goto drop;
1422114878Sjulian		}
1423107120Sjulian
1424107120Sjulian		mtx_lock(&pcb->pcb_mtx);
1425107120Sjulian
1426107120Sjulian		if (pcb->state != NG_BTSOCKET_L2CAP_OPEN) {
1427107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
1428107120Sjulian"%s: No connected socket found, src bdaddr=%x:%x:%x:%x:%x:%x, dcid=%d, " \
1429107120Sjulian"state=%d\n",			__func__,
1430107120Sjulian				rt->src.b[5], rt->src.b[4], rt->src.b[3],
1431107120Sjulian				rt->src.b[2], rt->src.b[1], rt->src.b[0],
1432107120Sjulian				hdr->dcid, pcb->state);
1433107120Sjulian
1434107120Sjulian			mtx_unlock(&pcb->pcb_mtx);
1435114878Sjulian			mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1436107120Sjulian			goto drop;
1437107120Sjulian		}
1438107120Sjulian
1439107120Sjulian		/* Check packet size against socket's incoming MTU */
1440107120Sjulian		if (hdr->length > pcb->imtu) {
1441107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
1442107120Sjulian"%s: L2CAP data packet too big, src bdaddr=%x:%x:%x:%x:%x:%x, " \
1443107120Sjulian"dcid=%d, length=%d, imtu=%d\n",
1444107120Sjulian				__func__,
1445107120Sjulian				rt->src.b[5], rt->src.b[4], rt->src.b[3],
1446107120Sjulian				rt->src.b[2], rt->src.b[1], rt->src.b[0],
1447107120Sjulian				hdr->dcid, hdr->length, pcb->imtu);
1448107120Sjulian
1449107120Sjulian			mtx_unlock(&pcb->pcb_mtx);
1450114878Sjulian			mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1451107120Sjulian			goto drop;
1452107120Sjulian		}
1453107120Sjulian
1454107120Sjulian		/* Check if we have enough space in socket receive queue */
1455107120Sjulian		if (m->m_pkthdr.len > sbspace(&pcb->so->so_rcv)) {
1456107120Sjulian
1457107120Sjulian			/*
1458107120Sjulian			 * This is really bad. Receive queue on socket does
1459107120Sjulian			 * not have enough space for the packet. We do not
1460107120Sjulian			 * have any other choice but drop the packet. L2CAP
1461107120Sjulian			 * does not provide any flow control.
1462107120Sjulian			 */
1463107120Sjulian
1464107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
1465107120Sjulian"%s: Not enough space in socket receive queue. Dropping L2CAP data packet, " \
1466107120Sjulian"src bdaddr=%x:%x:%x:%x:%x:%x, dcid=%d, len=%d, space=%ld\n",
1467107120Sjulian				__func__,
1468107120Sjulian				rt->src.b[5], rt->src.b[4], rt->src.b[3],
1469107120Sjulian				rt->src.b[2], rt->src.b[1], rt->src.b[0],
1470107120Sjulian				hdr->dcid, m->m_pkthdr.len,
1471107120Sjulian				sbspace(&pcb->so->so_rcv));
1472107120Sjulian
1473107120Sjulian			mtx_unlock(&pcb->pcb_mtx);
1474114878Sjulian			mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1475107120Sjulian			goto drop;
1476107120Sjulian		}
1477107120Sjulian
1478107120Sjulian		/* Append packet to the socket receive queue and wakeup */
1479107120Sjulian		sbappendrecord(&pcb->so->so_rcv, m);
1480107120Sjulian		m = NULL;
1481107120Sjulian
1482107120Sjulian		sorwakeup(pcb->so);
1483114878Sjulian
1484107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
1485114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1486114878Sjulian	} else if (hdr->dcid == NG_L2CAP_CLT_CID) {
1487107120Sjulian		/* Broadcast packet: give packet to all sockets  */
1488107120Sjulian
1489107120Sjulian		/* Check packet size against connectionless MTU */
1490107120Sjulian		if (hdr->length > NG_L2CAP_MTU_DEFAULT) {
1491107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
1492107120Sjulian"%s: Connectionless L2CAP data packet too big, " \
1493107120Sjulian"src bdaddr=%x:%x:%x:%x:%x:%x, length=%d\n",
1494107120Sjulian				__func__,
1495107120Sjulian				rt->src.b[5], rt->src.b[4], rt->src.b[3],
1496107120Sjulian				rt->src.b[2], rt->src.b[1], rt->src.b[0],
1497107120Sjulian				hdr->length);
1498107120Sjulian			goto drop;
1499107120Sjulian		}
1500107120Sjulian
1501107120Sjulian		/* Make sure we can access connectionless header */
1502107120Sjulian		if (m->m_pkthdr.len < sizeof(*clt_hdr)) {
1503107120Sjulian			NG_BTSOCKET_L2CAP_ERR(
1504107120Sjulian"%s: Can not get L2CAP connectionless packet header, " \
1505107120Sjulian"src bdaddr=%x:%x:%x:%x:%x:%x, length=%d\n",
1506107120Sjulian				__func__,
1507107120Sjulian				rt->src.b[5], rt->src.b[4], rt->src.b[3],
1508107120Sjulian				rt->src.b[2], rt->src.b[1], rt->src.b[0],
1509107120Sjulian				hdr->length);
1510107120Sjulian			goto drop;
1511107120Sjulian		}
1512107120Sjulian
1513107120Sjulian		if (m->m_len < sizeof(*clt_hdr)) {
1514107120Sjulian			m = m_pullup(m, sizeof(*clt_hdr));
1515107120Sjulian			if (m == NULL)
1516107120Sjulian				goto drop;
1517107120Sjulian		}
1518107120Sjulian
1519107120Sjulian		/* Strip connectionless header and deliver packet */
1520107120Sjulian		clt_hdr = mtod(m, ng_l2cap_clt_hdr_t *);
1521107120Sjulian		m_adj(m, sizeof(*clt_hdr));
1522107120Sjulian
1523107120Sjulian		NG_BTSOCKET_L2CAP_INFO(
1524107120Sjulian"%s: Got L2CAP connectionless data packet, " \
1525107120Sjulian"src bdaddr=%x:%x:%x:%x:%x:%x, psm=%d, length=%d\n",
1526107120Sjulian			__func__,
1527107120Sjulian			rt->src.b[5], rt->src.b[4], rt->src.b[3],
1528107120Sjulian			rt->src.b[2], rt->src.b[1], rt->src.b[0],
1529107120Sjulian			clt_hdr->psm, hdr->length);
1530107120Sjulian
1531107120Sjulian		mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
1532107120Sjulian
1533107120Sjulian		LIST_FOREACH(pcb, &ng_btsocket_l2cap_sockets, next) {
1534107120Sjulian			struct mbuf	*copy = NULL;
1535107120Sjulian
1536107120Sjulian			mtx_lock(&pcb->pcb_mtx);
1537107120Sjulian
1538107120Sjulian			if (bcmp(&rt->src, &pcb->src, sizeof(pcb->src)) != 0 ||
1539107120Sjulian			    pcb->psm != clt_hdr->psm ||
1540107120Sjulian			    pcb->state != NG_BTSOCKET_L2CAP_OPEN ||
1541107120Sjulian			    (pcb->so->so_options & SO_BROADCAST) == 0 ||
1542107120Sjulian			    m->m_pkthdr.len > sbspace(&pcb->so->so_rcv))
1543107120Sjulian				goto next;
1544107120Sjulian
1545107120Sjulian			/*
1546107120Sjulian			 * Create a copy of the packet and append it to the
1547107120Sjulian			 * socket's queue. If m_dup() failed - no big deal
1548107120Sjulian			 * it is a broadcast traffic after all
1549107120Sjulian			 */
1550107120Sjulian
1551111119Simp			copy = m_dup(m, M_DONTWAIT);
1552107120Sjulian			if (copy != NULL) {
1553107120Sjulian				sbappendrecord(&pcb->so->so_rcv, copy);
1554107120Sjulian				sorwakeup(pcb->so);
1555107120Sjulian			}
1556107120Sjuliannext:
1557107120Sjulian			mtx_unlock(&pcb->pcb_mtx);
1558107120Sjulian		}
1559114878Sjulian
1560107120Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1561107120Sjulian	}
1562107120Sjuliandrop:
1563107120Sjulian	NG_FREE_M(m); /* checks for m != NULL */
1564107120Sjulian} /* ng_btsocket_l2cap_data_input */
1565107120Sjulian
1566107120Sjulian/*
1567107120Sjulian * L2CAP sockets default message input routine
1568107120Sjulian */
1569107120Sjulian
1570107120Sjulianstatic void
1571107120Sjulianng_btsocket_l2cap_default_msg_input(struct ng_mesg *msg, hook_p hook)
1572107120Sjulian{
1573107120Sjulian	switch (msg->header.cmd) {
1574107120Sjulian	case NGM_L2CAP_NODE_HOOK_INFO: {
1575107120Sjulian		ng_btsocket_l2cap_rtentry_t	*rt = NULL;
1576107120Sjulian
1577107120Sjulian		if (hook == NULL || msg->header.arglen != sizeof(bdaddr_t))
1578107120Sjulian			break;
1579107120Sjulian
1580107120Sjulian		if (bcmp(msg->data, NG_HCI_BDADDR_ANY, sizeof(bdaddr_t)) == 0)
1581107120Sjulian			break;
1582107120Sjulian
1583114878Sjulian		mtx_lock(&ng_btsocket_l2cap_rt_mtx);
1584114878Sjulian
1585107120Sjulian		rt = (ng_btsocket_l2cap_rtentry_t *) NG_HOOK_PRIVATE(hook);
1586107120Sjulian		if (rt == NULL) {
1587107120Sjulian			MALLOC(rt, ng_btsocket_l2cap_rtentry_p, sizeof(*rt),
1588107120Sjulian				M_NETGRAPH_BTSOCKET_L2CAP, M_NOWAIT|M_ZERO);
1589114878Sjulian			if (rt == NULL) {
1590114878Sjulian				mtx_unlock(&ng_btsocket_l2cap_rt_mtx);
1591107120Sjulian				break;
1592114878Sjulian			}
1593107120Sjulian
1594107120Sjulian			LIST_INSERT_HEAD(&ng_btsocket_l2cap_rt, rt, next);
1595107120Sjulian
1596107120Sjulian			NG_HOOK_SET_PRIVATE(hook, rt);
1597107120Sjulian		}
1598114878Sjulian
1599107120Sjulian		bcopy(msg->data, &rt->src, sizeof(rt->src));
1600107120Sjulian		rt->hook = hook;
1601107120Sjulian
1602114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_rt_mtx);
1603114878Sjulian
1604107120Sjulian		NG_BTSOCKET_L2CAP_INFO(
1605107120Sjulian"%s: Updating hook \"%s\", src bdaddr=%x:%x:%x:%x:%x:%x\n",
1606107120Sjulian			__func__, NG_HOOK_NAME(hook),
1607107120Sjulian			rt->src.b[5], rt->src.b[4], rt->src.b[3],
1608107120Sjulian			rt->src.b[2], rt->src.b[1], rt->src.b[0]);
1609107120Sjulian		} break;
1610107120Sjulian
1611107120Sjulian	default:
1612107120Sjulian		NG_BTSOCKET_L2CAP_WARN(
1613107120Sjulian"%s: Unknown message, cmd=%d\n", __func__, msg->header.cmd);
1614107120Sjulian		break;
1615107120Sjulian	}
1616107120Sjulian
1617107120Sjulian	NG_FREE_MSG(msg); /* Checks for msg != NULL */
1618107120Sjulian} /* ng_btsocket_l2cap_default_msg_input */
1619107120Sjulian
1620107120Sjulian/*
1621107120Sjulian * L2CAP sockets L2CA message input routine
1622107120Sjulian */
1623107120Sjulian
1624107120Sjulianstatic void
1625107120Sjulianng_btsocket_l2cap_l2ca_msg_input(struct ng_mesg *msg, hook_p hook)
1626107120Sjulian{
1627114878Sjulian	ng_btsocket_l2cap_rtentry_p	 rt = NULL;
1628114878Sjulian	struct socket			*so = NULL;
1629107120Sjulian
1630107120Sjulian	if (hook == NULL) {
1631107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1632107120Sjulian"%s: Invalid source hook for L2CA message\n", __func__);
1633107120Sjulian		goto drop;
1634107120Sjulian	}
1635107120Sjulian
1636107120Sjulian	rt = (ng_btsocket_l2cap_rtentry_p) NG_HOOK_PRIVATE(hook);
1637107120Sjulian	if (rt == NULL) {
1638107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1639107120Sjulian"%s: Could not find out source bdaddr for L2CA message\n", __func__);
1640107120Sjulian		goto drop;
1641107120Sjulian	}
1642107120Sjulian
1643107120Sjulian	switch (msg->header.cmd) {
1644107120Sjulian	case NGM_L2CAP_L2CA_CON: /* L2CA_Connect response */
1645114878Sjulian		ng_btsocket_l2cap_process_l2ca_con_req_rsp(msg, rt, &so);
1646107120Sjulian		break;
1647107120Sjulian
1648107120Sjulian	case NGM_L2CAP_L2CA_CON_RSP: /* L2CA_ConnectRsp response */
1649114878Sjulian		ng_btsocket_l2cap_process_l2ca_con_rsp_rsp(msg, rt, &so);
1650107120Sjulian		break;
1651107120Sjulian
1652107120Sjulian	case NGM_L2CAP_L2CA_CON_IND: /* L2CA_Connect indicator */
1653114878Sjulian		ng_btsocket_l2cap_process_l2ca_con_ind(msg, rt, &so);
1654107120Sjulian		break;
1655107120Sjulian
1656107120Sjulian	case NGM_L2CAP_L2CA_CFG: /* L2CA_Config response */
1657114878Sjulian		ng_btsocket_l2cap_process_l2ca_cfg_req_rsp(msg, rt, &so);
1658107120Sjulian		break;
1659107120Sjulian
1660107120Sjulian	case NGM_L2CAP_L2CA_CFG_RSP: /* L2CA_ConfigRsp response */
1661114878Sjulian		ng_btsocket_l2cap_process_l2ca_cfg_rsp_rsp(msg, rt, &so);
1662107120Sjulian		break;
1663107120Sjulian
1664107120Sjulian	case NGM_L2CAP_L2CA_CFG_IND: /* L2CA_Config indicator */
1665114878Sjulian		ng_btsocket_l2cap_process_l2ca_cfg_ind(msg, rt, &so);
1666107120Sjulian		break;
1667107120Sjulian
1668107120Sjulian	case NGM_L2CAP_L2CA_DISCON: /* L2CA_Disconnect response */
1669114878Sjulian		ng_btsocket_l2cap_process_l2ca_discon_rsp(msg, rt, &so);
1670107120Sjulian		break;
1671107120Sjulian
1672107120Sjulian	case NGM_L2CAP_L2CA_DISCON_IND: /* L2CA_Disconnect indicator */
1673114878Sjulian		ng_btsocket_l2cap_process_l2ca_discon_ind(msg, rt, &so);
1674107120Sjulian		break;
1675107120Sjulian
1676107120Sjulian	case NGM_L2CAP_L2CA_WRITE: /* L2CA_Write response */
1677114878Sjulian		ng_btsocket_l2cap_process_l2ca_write_rsp(msg, rt, &so);
1678107120Sjulian		break;
1679107120Sjulian
1680107120Sjulian	/* XXX FIXME add other L2CA messages */
1681107120Sjulian
1682107120Sjulian	default:
1683107120Sjulian		NG_BTSOCKET_L2CAP_WARN(
1684107120Sjulian"%s: Unknown L2CA message, cmd=%d\n", __func__, msg->header.cmd);
1685107120Sjulian		break;
1686107120Sjulian	}
1687107120Sjuliandrop:
1688107120Sjulian	NG_FREE_MSG(msg);
1689114878Sjulian
1690114878Sjulian	if (so != NULL)
1691114878Sjulian		ng_btsocket_l2cap_detach(so);
1692107120Sjulian} /* ng_btsocket_l2cap_l2ca_msg_input */
1693107120Sjulian
1694107120Sjulian/*
1695107120Sjulian * L2CAP sockets input routine
1696107120Sjulian */
1697107120Sjulian
1698107120Sjulianstatic void
1699107120Sjulianng_btsocket_l2cap_input(void *context, int pending)
1700107120Sjulian{
1701107120Sjulian	item_p	item = NULL;
1702107120Sjulian	hook_p	hook = NULL;
1703107120Sjulian
1704107120Sjulian	for (;;) {
1705107120Sjulian		mtx_lock(&ng_btsocket_l2cap_queue_mtx);
1706107120Sjulian		NG_BT_ITEMQ_DEQUEUE(&ng_btsocket_l2cap_queue, item);
1707107120Sjulian		mtx_unlock(&ng_btsocket_l2cap_queue_mtx);
1708107120Sjulian
1709107120Sjulian		if (item == NULL)
1710107120Sjulian			break;
1711107120Sjulian
1712107120Sjulian		NGI_GET_HOOK(item, hook);
1713107120Sjulian		if (hook != NULL && NG_HOOK_NOT_VALID(hook))
1714107120Sjulian			goto drop;
1715107120Sjulian
1716107120Sjulian		switch(item->el_flags & NGQF_TYPE) {
1717107120Sjulian		case NGQF_DATA: {
1718107120Sjulian			struct mbuf     *m = NULL;
1719107120Sjulian
1720107120Sjulian			NGI_GET_M(item, m);
1721107120Sjulian			ng_btsocket_l2cap_data_input(m, hook);
1722107120Sjulian			} break;
1723107120Sjulian
1724107120Sjulian		case NGQF_MESG: {
1725107120Sjulian			struct ng_mesg  *msg = NULL;
1726107120Sjulian
1727107120Sjulian			NGI_GET_MSG(item, msg);
1728107120Sjulian
1729107120Sjulian			switch (msg->header.cmd) {
1730107120Sjulian			case NGM_L2CAP_L2CA_CON:
1731107120Sjulian			case NGM_L2CAP_L2CA_CON_RSP:
1732107120Sjulian			case NGM_L2CAP_L2CA_CON_IND:
1733107120Sjulian			case NGM_L2CAP_L2CA_CFG:
1734107120Sjulian			case NGM_L2CAP_L2CA_CFG_RSP:
1735107120Sjulian			case NGM_L2CAP_L2CA_CFG_IND:
1736107120Sjulian			case NGM_L2CAP_L2CA_DISCON:
1737107120Sjulian			case NGM_L2CAP_L2CA_DISCON_IND:
1738107120Sjulian			case NGM_L2CAP_L2CA_WRITE:
1739107120Sjulian			/* XXX FIXME add other L2CA messages */
1740107120Sjulian				ng_btsocket_l2cap_l2ca_msg_input(msg, hook);
1741107120Sjulian				break;
1742107120Sjulian
1743107120Sjulian			default:
1744107120Sjulian				ng_btsocket_l2cap_default_msg_input(msg, hook);
1745107120Sjulian				break;
1746107120Sjulian			}
1747107120Sjulian			} break;
1748107120Sjulian
1749107120Sjulian		default:
1750107120Sjulian			KASSERT(0,
1751107120Sjulian("%s: invalid item type=%ld\n", __func__, (item->el_flags & NGQF_TYPE)));
1752107120Sjulian			break;
1753107120Sjulian		}
1754107120Sjuliandrop:
1755107120Sjulian		if (hook != NULL)
1756107120Sjulian			NG_HOOK_UNREF(hook);
1757107120Sjulian
1758107120Sjulian		NG_FREE_ITEM(item);
1759107120Sjulian	}
1760107120Sjulian} /* ng_btsocket_l2cap_input */
1761107120Sjulian
1762107120Sjulian/*
1763107120Sjulian * Route cleanup task. Gets scheduled when hook is disconnected. Here we
1764107120Sjulian * will find all sockets that use "invalid" hook and disconnect them.
1765107120Sjulian */
1766107120Sjulian
1767107120Sjulianstatic void
1768107120Sjulianng_btsocket_l2cap_rtclean(void *context, int pending)
1769107120Sjulian{
1770114878Sjulian	ng_btsocket_l2cap_pcb_p		pcb = NULL, pcb_next = NULL;
1771107120Sjulian	ng_btsocket_l2cap_rtentry_p	rt = NULL;
1772107120Sjulian
1773107120Sjulian	mtx_lock(&ng_btsocket_l2cap_rt_mtx);
1774107120Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
1775107120Sjulian
1776107120Sjulian	/*
1777107120Sjulian	 * First disconnect all sockets that use "invalid" hook
1778107120Sjulian	 */
1779107120Sjulian
1780114878Sjulian	for (pcb = LIST_FIRST(&ng_btsocket_l2cap_sockets); pcb != NULL; ) {
1781107120Sjulian		mtx_lock(&pcb->pcb_mtx);
1782114878Sjulian		pcb_next = LIST_NEXT(pcb, next);
1783107120Sjulian
1784107120Sjulian		if (pcb->rt != NULL &&
1785107120Sjulian		    pcb->rt->hook != NULL && NG_HOOK_NOT_VALID(pcb->rt->hook)) {
1786107120Sjulian			if (pcb->flags & NG_BTSOCKET_L2CAP_TIMO)
1787107120Sjulian				ng_btsocket_l2cap_untimeout(pcb);
1788107120Sjulian
1789107120Sjulian			pcb->so->so_error = ENETDOWN;
1790107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
1791107120Sjulian			soisdisconnected(pcb->so);
1792107120Sjulian
1793107120Sjulian			pcb->token = 0;
1794114878Sjulian			pcb->cid = 0;
1795107120Sjulian			pcb->rt = NULL;
1796114878Sjulian
1797114878Sjulian			if (pcb->so->so_state & SS_NOFDREF) {
1798114878Sjulian				struct socket	*so = pcb->so;
1799114878Sjulian
1800114878Sjulian				LIST_REMOVE(pcb, next);
1801114878Sjulian
1802114878Sjulian				mtx_unlock(&pcb->pcb_mtx);
1803114878Sjulian
1804114878Sjulian				mtx_destroy(&pcb->pcb_mtx);
1805114878Sjulian				bzero(pcb, sizeof(*pcb));
1806114878Sjulian				FREE(pcb, M_NETGRAPH_BTSOCKET_L2CAP);
1807114878Sjulian
1808114878Sjulian				soisdisconnected(so);
1809136682Srwatson				ACCEPT_LOCK();
1810130387Srwatson				SOCK_LOCK(so);
1811114878Sjulian				so->so_pcb = NULL;
1812114878Sjulian				sotryfree(so);
1813114878Sjulian
1814114878Sjulian				goto next;
1815114878Sjulian			}
1816107120Sjulian		}
1817107120Sjulian
1818107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
1819114878Sjuliannext:
1820114878Sjulian		pcb = pcb_next;
1821107120Sjulian	}
1822107120Sjulian
1823107120Sjulian	/*
1824107120Sjulian	 * Now cleanup routing table
1825107120Sjulian	 */
1826107120Sjulian
1827114878Sjulian	for (rt = LIST_FIRST(&ng_btsocket_l2cap_rt); rt != NULL; ) {
1828107120Sjulian		ng_btsocket_l2cap_rtentry_p	rt_next = LIST_NEXT(rt, next);
1829107120Sjulian
1830107120Sjulian		if (rt->hook != NULL && NG_HOOK_NOT_VALID(rt->hook)) {
1831107120Sjulian			LIST_REMOVE(rt, next);
1832107120Sjulian
1833107120Sjulian			NG_HOOK_SET_PRIVATE(rt->hook, NULL);
1834107120Sjulian			NG_HOOK_UNREF(rt->hook); /* Remove extra reference */
1835107120Sjulian
1836107120Sjulian			bzero(rt, sizeof(*rt));
1837107120Sjulian			FREE(rt, M_NETGRAPH_BTSOCKET_L2CAP);
1838107120Sjulian		}
1839107120Sjulian
1840107120Sjulian		rt = rt_next;
1841107120Sjulian	}
1842107120Sjulian
1843107120Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
1844107120Sjulian	mtx_unlock(&ng_btsocket_l2cap_rt_mtx);
1845107120Sjulian} /* ng_btsocket_l2cap_rtclean */
1846107120Sjulian
1847107120Sjulian/*
1848107120Sjulian * Initialize everything
1849107120Sjulian */
1850107120Sjulian
1851107120Sjulianvoid
1852107120Sjulianng_btsocket_l2cap_init(void)
1853107120Sjulian{
1854107120Sjulian	int	error = 0;
1855107120Sjulian
1856107120Sjulian	ng_btsocket_l2cap_node = NULL;
1857107120Sjulian	ng_btsocket_l2cap_debug_level = NG_BTSOCKET_WARN_LEVEL;
1858107120Sjulian
1859107120Sjulian	/* Register Netgraph node type */
1860107120Sjulian	error = ng_newtype(&typestruct);
1861107120Sjulian	if (error != 0) {
1862107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1863107120Sjulian"%s: Could not register Netgraph node type, error=%d\n", __func__, error);
1864107120Sjulian
1865107120Sjulian                return;
1866107120Sjulian	}
1867107120Sjulian
1868107120Sjulian	/* Create Netgrapg node */
1869107120Sjulian	error = ng_make_node_common(&typestruct, &ng_btsocket_l2cap_node);
1870107120Sjulian	if (error != 0) {
1871107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1872107120Sjulian"%s: Could not create Netgraph node, error=%d\n", __func__, error);
1873107120Sjulian
1874107120Sjulian		ng_btsocket_l2cap_node = NULL;
1875107120Sjulian
1876107120Sjulian		return;
1877107120Sjulian	}
1878107120Sjulian
1879107120Sjulian	error = ng_name_node(ng_btsocket_l2cap_node,
1880107120Sjulian				NG_BTSOCKET_L2CAP_NODE_TYPE);
1881107120Sjulian	if (error != 0) {
1882107120Sjulian		NG_BTSOCKET_L2CAP_ALERT(
1883107120Sjulian"%s: Could not name Netgraph node, error=%d\n", __func__, error);
1884107120Sjulian
1885107120Sjulian		NG_NODE_UNREF(ng_btsocket_l2cap_node);
1886107120Sjulian		ng_btsocket_l2cap_node = NULL;
1887107120Sjulian
1888107120Sjulian		return;
1889107120Sjulian	}
1890107120Sjulian
1891107120Sjulian	/* Create input queue */
1892107120Sjulian	NG_BT_ITEMQ_INIT(&ng_btsocket_l2cap_queue, ifqmaxlen);
1893107120Sjulian	mtx_init(&ng_btsocket_l2cap_queue_mtx,
1894107120Sjulian		"btsocks_l2cap_queue_mtx", NULL, MTX_DEF);
1895107120Sjulian	TASK_INIT(&ng_btsocket_l2cap_queue_task, 0,
1896107120Sjulian		ng_btsocket_l2cap_input, NULL);
1897107120Sjulian
1898107120Sjulian	/* Create list of sockets */
1899107120Sjulian	LIST_INIT(&ng_btsocket_l2cap_sockets);
1900107120Sjulian	mtx_init(&ng_btsocket_l2cap_sockets_mtx,
1901107120Sjulian		"btsocks_l2cap_sockets_mtx", NULL, MTX_DEF);
1902107120Sjulian
1903107120Sjulian	/* Routing table */
1904107120Sjulian	LIST_INIT(&ng_btsocket_l2cap_rt);
1905107120Sjulian	mtx_init(&ng_btsocket_l2cap_rt_mtx,
1906107120Sjulian		"btsocks_l2cap_rt_mtx", NULL, MTX_DEF);
1907107120Sjulian	TASK_INIT(&ng_btsocket_l2cap_rt_task, 0,
1908107120Sjulian		ng_btsocket_l2cap_rtclean, NULL);
1909107120Sjulian} /* ng_btsocket_l2cap_init */
1910107120Sjulian
1911107120Sjulian/*
1912107120Sjulian * Abort connection on socket
1913107120Sjulian */
1914107120Sjulian
1915157366Srwatsonvoid
1916107120Sjulianng_btsocket_l2cap_abort(struct socket *so)
1917107120Sjulian{
1918107120Sjulian	so->so_error = ECONNABORTED;
1919107120Sjulian
1920160549Srwatson	(void)ng_btsocket_l2cap_disconnect(so);
1921107120Sjulian} /* ng_btsocket_l2cap_abort */
1922107120Sjulian
1923160549Srwatsonvoid
1924160549Srwatsonng_btsocket_l2cap_close(struct socket *so)
1925160549Srwatson{
1926160549Srwatson
1927160549Srwatson	(void)ng_btsocket_l2cap_disconnect(so);
1928160549Srwatson} /* ng_btsocket_l2cap_close */
1929160549Srwatson
1930107120Sjulian/*
1931107120Sjulian * Accept connection on socket. Nothing to do here, socket must be connected
1932107120Sjulian * and ready, so just return peer address and be done with it.
1933107120Sjulian */
1934107120Sjulian
1935107120Sjulianint
1936107120Sjulianng_btsocket_l2cap_accept(struct socket *so, struct sockaddr **nam)
1937107120Sjulian{
1938107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
1939107120Sjulian		return (EINVAL);
1940107120Sjulian
1941107120Sjulian	return (ng_btsocket_l2cap_peeraddr(so, nam));
1942107120Sjulian} /* ng_btsocket_l2cap_accept */
1943107120Sjulian
1944107120Sjulian/*
1945107120Sjulian * Create and attach new socket
1946107120Sjulian */
1947107120Sjulian
1948107120Sjulianint
1949107120Sjulianng_btsocket_l2cap_attach(struct socket *so, int proto, struct thread *td)
1950107120Sjulian{
1951114878Sjulian	static u_int32_t	token = 0;
1952107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
1953107120Sjulian	int			error;
1954107120Sjulian
1955107120Sjulian	/* Check socket and protocol */
1956107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
1957107120Sjulian		return (EPROTONOSUPPORT);
1958107120Sjulian	if (so->so_type != SOCK_SEQPACKET)
1959107120Sjulian		return (ESOCKTNOSUPPORT);
1960107120Sjulian
1961107120Sjulian#if 0 /* XXX sonewconn() calls "pru_attach" with proto == 0 */
1962107120Sjulian	if (proto != 0)
1963107120Sjulian		if (proto != BLUETOOTH_PROTO_L2CAP)
1964107120Sjulian			return (EPROTONOSUPPORT);
1965107120Sjulian#endif /* XXX */
1966107120Sjulian
1967107120Sjulian	if (pcb != NULL)
1968107120Sjulian		return (EISCONN);
1969107120Sjulian
1970107120Sjulian	/* Reserve send and receive space if it is not reserved yet */
1971107120Sjulian	if ((so->so_snd.sb_hiwat == 0) || (so->so_rcv.sb_hiwat == 0)) {
1972107120Sjulian		error = soreserve(so, NG_BTSOCKET_L2CAP_SENDSPACE,
1973107120Sjulian					NG_BTSOCKET_L2CAP_RECVSPACE);
1974107120Sjulian		if (error != 0)
1975107120Sjulian			return (error);
1976107120Sjulian	}
1977107120Sjulian
1978107120Sjulian	/* Allocate the PCB */
1979107120Sjulian        MALLOC(pcb, ng_btsocket_l2cap_pcb_p, sizeof(*pcb),
1980107120Sjulian		M_NETGRAPH_BTSOCKET_L2CAP, M_NOWAIT | M_ZERO);
1981107120Sjulian        if (pcb == NULL)
1982107120Sjulian                return (ENOMEM);
1983107120Sjulian
1984107120Sjulian	/* Link the PCB and the socket */
1985107120Sjulian	so->so_pcb = (caddr_t) pcb;
1986107120Sjulian	pcb->so = so;
1987107120Sjulian	pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
1988107120Sjulian
1989107120Sjulian	/* Initialize PCB */
1990107120Sjulian	pcb->imtu = pcb->omtu = NG_L2CAP_MTU_DEFAULT;
1991107120Sjulian
1992107120Sjulian	/* Default flow */
1993107120Sjulian	pcb->iflow.flags = 0x0;
1994107120Sjulian	pcb->iflow.service_type = NG_HCI_SERVICE_TYPE_BEST_EFFORT;
1995107120Sjulian	pcb->iflow.token_rate = 0xffffffff; /* maximum */
1996107120Sjulian	pcb->iflow.token_bucket_size = 0xffffffff; /* maximum */
1997107120Sjulian	pcb->iflow.peak_bandwidth = 0x00000000; /* maximum */
1998107120Sjulian	pcb->iflow.latency = 0xffffffff; /* don't care */
1999107120Sjulian	pcb->iflow.delay_variation = 0xffffffff; /* don't care */
2000107120Sjulian
2001107120Sjulian	bcopy(&pcb->iflow, &pcb->oflow, sizeof(pcb->oflow));
2002107120Sjulian
2003107120Sjulian	pcb->flush_timo = NG_L2CAP_FLUSH_TIMO_DEFAULT;
2004107120Sjulian	pcb->link_timo = NG_L2CAP_LINK_TIMO_DEFAULT;
2005107120Sjulian
2006107120Sjulian	callout_handle_init(&pcb->timo);
2007107120Sjulian
2008114878Sjulian	/*
2009114878Sjulian	 * XXX Mark PCB mutex as DUPOK to prevent "duplicated lock of
2010114878Sjulian	 * the same type" message. When accepting new L2CAP connection
2011114878Sjulian	 * ng_btsocket_l2cap_process_l2ca_con_ind() holds both PCB mutexes
2012114878Sjulian	 * for "old" (accepting) PCB and "new" (created) PCB.
2013114878Sjulian	 */
2014114878Sjulian
2015114878Sjulian	mtx_init(&pcb->pcb_mtx, "btsocks_l2cap_pcb_mtx", NULL,
2016114878Sjulian		MTX_DEF|MTX_DUPOK);
2017114878Sjulian
2018114878Sjulian        /*
2019114878Sjulian	 * Add the PCB to the list
2020114878Sjulian	 *
2021114878Sjulian	 * XXX FIXME VERY IMPORTANT!
2022114878Sjulian	 *
2023114878Sjulian	 * This is totally FUBAR. We could get here in two cases:
2024114878Sjulian	 *
2025114878Sjulian	 * 1) When user calls socket()
2026114878Sjulian	 * 2) When we need to accept new incomming connection and call
2027114878Sjulian	 *    sonewconn()
2028114878Sjulian	 *
2029114878Sjulian	 * In the first case we must aquire ng_btsocket_l2cap_sockets_mtx.
2030114878Sjulian	 * In the second case we hold ng_btsocket_l2cap_sockets_mtx already.
2031114878Sjulian	 * So we now need to distinguish between these cases. From reading
2032114878Sjulian	 * /sys/kern/uipc_socket2.c we can find out that sonewconn() calls
2033114878Sjulian	 * pru_attach with proto == 0 and td == NULL. For now use this fact
2034114878Sjulian	 * to figure out if we were called from socket() or from sonewconn().
2035114878Sjulian	 */
2036114878Sjulian
2037114878Sjulian	if (td != NULL)
2038114878Sjulian		mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
2039114878Sjulian	else
2040114878Sjulian		mtx_assert(&ng_btsocket_l2cap_sockets_mtx, MA_OWNED);
2041114878Sjulian
2042114878Sjulian	/* Set PCB token. Use ng_btsocket_l2cap_sockets_mtx for protection */
2043114878Sjulian	if (++ token == 0)
2044114878Sjulian		token ++;
2045114878Sjulian
2046114878Sjulian	pcb->token = token;
2047114878Sjulian
2048107120Sjulian	LIST_INSERT_HEAD(&ng_btsocket_l2cap_sockets, pcb, next);
2049107120Sjulian
2050114878Sjulian	if (td != NULL)
2051114878Sjulian		mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
2052114878Sjulian
2053107120Sjulian        return (0);
2054107120Sjulian} /* ng_btsocket_l2cap_attach */
2055107120Sjulian
2056107120Sjulian/*
2057107120Sjulian * Bind socket
2058107120Sjulian */
2059107120Sjulian
2060107120Sjulianint
2061107120Sjulianng_btsocket_l2cap_bind(struct socket *so, struct sockaddr *nam,
2062107120Sjulian		struct thread *td)
2063107120Sjulian{
2064107120Sjulian	ng_btsocket_l2cap_pcb_t	*pcb = NULL;
2065107120Sjulian	struct sockaddr_l2cap	*sa = (struct sockaddr_l2cap *) nam;
2066107120Sjulian	int			 psm, error = 0;
2067107120Sjulian
2068107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2069107120Sjulian		return (EINVAL);
2070107120Sjulian
2071107120Sjulian	/* Verify address */
2072107120Sjulian	if (sa == NULL)
2073107120Sjulian		return (EINVAL);
2074107120Sjulian	if (sa->l2cap_family != AF_BLUETOOTH)
2075107120Sjulian		return (EAFNOSUPPORT);
2076107120Sjulian	if (sa->l2cap_len != sizeof(*sa))
2077107120Sjulian		return (EINVAL);
2078107120Sjulian
2079107120Sjulian	psm = le16toh(sa->l2cap_psm);
2080107120Sjulian
2081107120Sjulian	/*
2082107120Sjulian	 * Check if other socket has this address already (look for exact
2083107120Sjulian	 * match PSM and bdaddr) and assign socket address if it's available.
2084107120Sjulian	 *
2085107120Sjulian	 * Note: socket can be bound to ANY PSM (zero) thus allowing several
2086107120Sjulian	 * channels with the same PSM between the same pair of BD_ADDR'es.
2087107120Sjulian	 */
2088107120Sjulian
2089107120Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
2090107120Sjulian
2091107120Sjulian	LIST_FOREACH(pcb, &ng_btsocket_l2cap_sockets, next)
2092107120Sjulian		if (psm != 0 && psm == pcb->psm &&
2093107120Sjulian		    bcmp(&pcb->src, &sa->l2cap_bdaddr, sizeof(bdaddr_t)) == 0)
2094107120Sjulian			break;
2095107120Sjulian
2096107120Sjulian	if (pcb == NULL) {
2097107120Sjulian		/* Set socket address */
2098107120Sjulian		pcb = so2l2cap_pcb(so);
2099107120Sjulian		if (pcb != NULL) {
2100107120Sjulian			bcopy(&sa->l2cap_bdaddr, &pcb->src, sizeof(pcb->src));
2101107120Sjulian			pcb->psm = psm;
2102107120Sjulian		} else
2103107120Sjulian			error = EINVAL;
2104107120Sjulian	} else
2105107120Sjulian		error = EADDRINUSE;
2106107120Sjulian
2107107120Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
2108107120Sjulian
2109107120Sjulian	return (error);
2110107120Sjulian} /* ng_btsocket_l2cap_bind */
2111107120Sjulian
2112107120Sjulian/*
2113107120Sjulian * Connect socket
2114107120Sjulian */
2115107120Sjulian
2116107120Sjulianint
2117107120Sjulianng_btsocket_l2cap_connect(struct socket *so, struct sockaddr *nam,
2118107120Sjulian		struct thread *td)
2119107120Sjulian{
2120107120Sjulian	ng_btsocket_l2cap_pcb_t		*pcb = so2l2cap_pcb(so);
2121107120Sjulian	struct sockaddr_l2cap		*sa = (struct sockaddr_l2cap *) nam;
2122107120Sjulian	ng_btsocket_l2cap_rtentry_t	*rt = NULL;
2123107120Sjulian	int				 have_src, error = 0;
2124107120Sjulian
2125107120Sjulian	/* Check socket */
2126107120Sjulian	if (pcb == NULL)
2127107120Sjulian		return (EINVAL);
2128107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2129107120Sjulian		return (EINVAL);
2130107120Sjulian	if (pcb->state == NG_BTSOCKET_L2CAP_CONNECTING)
2131107120Sjulian		return (EINPROGRESS);
2132107120Sjulian
2133107120Sjulian	/* Verify address */
2134107120Sjulian	if (sa == NULL)
2135107120Sjulian		return (EINVAL);
2136107120Sjulian	if (sa->l2cap_family != AF_BLUETOOTH)
2137107120Sjulian		return (EAFNOSUPPORT);
2138107120Sjulian	if (sa->l2cap_len != sizeof(*sa))
2139107120Sjulian		return (EINVAL);
2140107120Sjulian	if (sa->l2cap_psm == 0 ||
2141107120Sjulian	    bcmp(&sa->l2cap_bdaddr, NG_HCI_BDADDR_ANY, sizeof(bdaddr_t)) == 0)
2142107120Sjulian		return (EDESTADDRREQ);
2143107120Sjulian	if (pcb->psm != 0 && pcb->psm != le16toh(sa->l2cap_psm))
2144107120Sjulian		return (EINVAL);
2145107120Sjulian
2146107120Sjulian	/*
2147107120Sjulian	 * Routing. Socket should be bound to some source address. The source
2148107120Sjulian	 * address can be ANY. Destination address must be set and it must not
2149107120Sjulian	 * be ANY. If source address is ANY then find first rtentry that has
2150107120Sjulian	 * src != dst.
2151107120Sjulian	 */
2152107120Sjulian
2153114878Sjulian	mtx_lock(&ng_btsocket_l2cap_rt_mtx);
2154114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
2155114878Sjulian	mtx_lock(&pcb->pcb_mtx);
2156114878Sjulian
2157114878Sjulian	/* Send destination address and PSM */
2158114878Sjulian	bcopy(&sa->l2cap_bdaddr, &pcb->dst, sizeof(pcb->dst));
2159114878Sjulian	pcb->psm = le16toh(sa->l2cap_psm);
2160114878Sjulian
2161107120Sjulian	pcb->rt = NULL;
2162107120Sjulian	have_src = bcmp(&pcb->src, NG_HCI_BDADDR_ANY, sizeof(pcb->src));
2163107120Sjulian
2164107120Sjulian	LIST_FOREACH(rt, &ng_btsocket_l2cap_rt, next) {
2165107120Sjulian		if (rt->hook == NULL || NG_HOOK_NOT_VALID(rt->hook))
2166107120Sjulian			continue;
2167107120Sjulian
2168107120Sjulian		/* Match src and dst */
2169107120Sjulian		if (have_src) {
2170107120Sjulian			if (bcmp(&pcb->src, &rt->src, sizeof(rt->src)) == 0)
2171107120Sjulian				break;
2172107120Sjulian		} else {
2173107120Sjulian			if (bcmp(&pcb->dst, &rt->src, sizeof(rt->src)) != 0)
2174107120Sjulian				break;
2175107120Sjulian		}
2176107120Sjulian	}
2177107120Sjulian
2178107120Sjulian	if (rt != NULL) {
2179107120Sjulian		pcb->rt = rt;
2180107120Sjulian
2181107120Sjulian		if (!have_src)
2182107120Sjulian			bcopy(&rt->src, &pcb->src, sizeof(pcb->src));
2183107120Sjulian	} else
2184107120Sjulian		error = EHOSTUNREACH;
2185107120Sjulian
2186107120Sjulian	/*
2187107120Sjulian	 * Send L2CA_Connect request
2188107120Sjulian	 */
2189107120Sjulian
2190107120Sjulian	if (error == 0) {
2191107120Sjulian		error = ng_btsocket_l2cap_send_l2ca_con_req(pcb);
2192107120Sjulian		if (error == 0) {
2193107120Sjulian			pcb->flags |= NG_BTSOCKET_L2CAP_CLIENT;
2194107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_CONNECTING;
2195107120Sjulian			soisconnecting(pcb->so);
2196107120Sjulian
2197107120Sjulian			ng_btsocket_l2cap_timeout(pcb);
2198107120Sjulian		}
2199107120Sjulian	}
2200107120Sjulian
2201114878Sjulian	mtx_unlock(&pcb->pcb_mtx);
2202114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
2203114878Sjulian	mtx_unlock(&ng_btsocket_l2cap_rt_mtx);
2204114878Sjulian
2205107120Sjulian	return (error);
2206107120Sjulian} /* ng_btsocket_l2cap_connect */
2207107120Sjulian
2208107120Sjulian/*
2209107120Sjulian * Process ioctl's calls on socket
2210107120Sjulian */
2211107120Sjulian
2212107120Sjulianint
2213107120Sjulianng_btsocket_l2cap_control(struct socket *so, u_long cmd, caddr_t data,
2214107120Sjulian		struct ifnet *ifp, struct thread *td)
2215107120Sjulian{
2216107120Sjulian	return (EINVAL);
2217107120Sjulian} /* ng_btsocket_l2cap_control */
2218107120Sjulian
2219107120Sjulian/*
2220107120Sjulian * Process getsockopt/setsockopt system calls
2221107120Sjulian */
2222107120Sjulian
2223107120Sjulianint
2224107120Sjulianng_btsocket_l2cap_ctloutput(struct socket *so, struct sockopt *sopt)
2225107120Sjulian{
2226107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2227107120Sjulian	int			error = 0;
2228107120Sjulian	ng_l2cap_cfg_opt_val_t	v;
2229107120Sjulian
2230107120Sjulian	if (pcb == NULL)
2231107120Sjulian		return (EINVAL);
2232107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2233107120Sjulian		return (EINVAL);
2234107120Sjulian
2235107120Sjulian	if (sopt->sopt_level != SOL_L2CAP)
2236107120Sjulian		return (0);
2237107120Sjulian
2238107120Sjulian	mtx_lock(&pcb->pcb_mtx);
2239107120Sjulian
2240107120Sjulian	switch (sopt->sopt_dir) {
2241107120Sjulian	case SOPT_GET:
2242107120Sjulian		switch (sopt->sopt_name) {
2243107120Sjulian		case SO_L2CAP_IMTU: /* get incoming MTU */
2244107120Sjulian			error = sooptcopyout(sopt, &pcb->imtu,
2245107120Sjulian						sizeof(pcb->imtu));
2246107120Sjulian			break;
2247107120Sjulian
2248107120Sjulian		case SO_L2CAP_OMTU: /* get outgoing (peer incoming) MTU */
2249107120Sjulian			error = sooptcopyout(sopt, &pcb->omtu,
2250107120Sjulian						sizeof(pcb->omtu));
2251107120Sjulian			break;
2252107120Sjulian
2253107120Sjulian		case SO_L2CAP_IFLOW: /* get incoming flow spec. */
2254107120Sjulian			error = sooptcopyout(sopt, &pcb->iflow,
2255107120Sjulian						sizeof(pcb->iflow));
2256107120Sjulian			break;
2257107120Sjulian
2258107120Sjulian		case SO_L2CAP_OFLOW: /* get outgoing flow spec. */
2259107120Sjulian			error = sooptcopyout(sopt, &pcb->oflow,
2260107120Sjulian						sizeof(pcb->oflow));
2261107120Sjulian			break;
2262107120Sjulian
2263107120Sjulian		case SO_L2CAP_FLUSH: /* get flush timeout */
2264107120Sjulian			error = sooptcopyout(sopt, &pcb->flush_timo,
2265107120Sjulian						sizeof(pcb->flush_timo));
2266107120Sjulian			break;
2267107120Sjulian
2268107120Sjulian		default:
2269107120Sjulian			error = ENOPROTOOPT;
2270107120Sjulian			break;
2271107120Sjulian		}
2272107120Sjulian		break;
2273107120Sjulian
2274107120Sjulian	case SOPT_SET:
2275107120Sjulian		/*
2276114878Sjulian		 * XXX
2277114878Sjulian		 * We do not allow to change these parameters while socket is
2278114878Sjulian		 * connected or we are in the process of creating a connection.
2279114878Sjulian		 * May be this should indicate re-configuration of the open
2280114878Sjulian		 * channel?
2281107120Sjulian		 */
2282107120Sjulian
2283107120Sjulian		if (pcb->state != NG_BTSOCKET_L2CAP_CLOSED)
2284107120Sjulian			return (EACCES);
2285107120Sjulian
2286107120Sjulian		switch (sopt->sopt_name) {
2287107120Sjulian		case SO_L2CAP_IMTU: /* set incoming MTU */
2288107120Sjulian			error = sooptcopyin(sopt, &v, sizeof(v), sizeof(v.mtu));
2289107120Sjulian			if (error == 0)
2290107120Sjulian				pcb->imtu = v.mtu;
2291107120Sjulian			break;
2292107120Sjulian
2293107120Sjulian		case SO_L2CAP_OFLOW: /* set outgoing flow spec. */
2294107120Sjulian			error = sooptcopyin(sopt, &v, sizeof(v),sizeof(v.flow));
2295107120Sjulian			if (error == 0)
2296107120Sjulian				bcopy(&v.flow, &pcb->oflow, sizeof(pcb->oflow));
2297107120Sjulian			break;
2298107120Sjulian
2299107120Sjulian		case SO_L2CAP_FLUSH: /* set flush timeout */
2300107120Sjulian			error = sooptcopyin(sopt, &v, sizeof(v),
2301107120Sjulian						sizeof(v.flush_timo));
2302107120Sjulian			if (error == 0)
2303107120Sjulian				pcb->flush_timo = v.flush_timo;
2304107120Sjulian			break;
2305107120Sjulian
2306107120Sjulian		default:
2307107120Sjulian			error = ENOPROTOOPT;
2308107120Sjulian			break;
2309107120Sjulian		}
2310107120Sjulian		break;
2311107120Sjulian
2312107120Sjulian	default:
2313107120Sjulian		error = EINVAL;
2314107120Sjulian		break;
2315107120Sjulian	}
2316107120Sjulian
2317107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
2318107120Sjulian
2319107120Sjulian	return (error);
2320107120Sjulian} /* ng_btsocket_l2cap_ctloutput */
2321107120Sjulian
2322107120Sjulian/*
2323107120Sjulian * Detach and destroy socket
2324107120Sjulian */
2325107120Sjulian
2326157370Srwatsonvoid
2327107120Sjulianng_btsocket_l2cap_detach(struct socket *so)
2328107120Sjulian{
2329107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2330107120Sjulian
2331157370Srwatson	KASSERT(pcb != NULL, ("ng_btsocket_l2cap_detach: pcb == NULL"));
2332157370Srwatson
2333107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2334157370Srwatson		return;
2335107120Sjulian
2336114878Sjulian	mtx_lock(&ng_btsocket_l2cap_sockets_mtx);
2337107120Sjulian	mtx_lock(&pcb->pcb_mtx);
2338107120Sjulian
2339107120Sjulian	/* XXX what to do with pending request? */
2340107120Sjulian	if (pcb->flags & NG_BTSOCKET_L2CAP_TIMO)
2341107120Sjulian		ng_btsocket_l2cap_untimeout(pcb);
2342107120Sjulian
2343107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CLOSED &&
2344107120Sjulian	    pcb->state != NG_BTSOCKET_L2CAP_DISCONNECTING)
2345107120Sjulian		/* Send disconnect request with "zero" token */
2346107120Sjulian		ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
2347107120Sjulian
2348107120Sjulian	pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
2349107120Sjulian
2350114878Sjulian	LIST_REMOVE(pcb, next);
2351107120Sjulian
2352107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
2353107120Sjulian	mtx_unlock(&ng_btsocket_l2cap_sockets_mtx);
2354107120Sjulian
2355107120Sjulian	mtx_destroy(&pcb->pcb_mtx);
2356107120Sjulian	bzero(pcb, sizeof(*pcb));
2357107120Sjulian	FREE(pcb, M_NETGRAPH_BTSOCKET_L2CAP);
2358107120Sjulian
2359114878Sjulian	soisdisconnected(so);
2360114878Sjulian	so->so_pcb = NULL;
2361107120Sjulian} /* ng_btsocket_l2cap_detach */
2362107120Sjulian
2363107120Sjulian/*
2364107120Sjulian * Disconnect socket
2365107120Sjulian */
2366107120Sjulian
2367107120Sjulianint
2368107120Sjulianng_btsocket_l2cap_disconnect(struct socket *so)
2369107120Sjulian{
2370107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2371107120Sjulian	int			error = 0;
2372107120Sjulian
2373107120Sjulian	if (pcb == NULL)
2374107120Sjulian		return (EINVAL);
2375107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2376107120Sjulian		return (EINVAL);
2377107120Sjulian
2378107120Sjulian	mtx_lock(&pcb->pcb_mtx);
2379107120Sjulian
2380107120Sjulian	if (pcb->state == NG_BTSOCKET_L2CAP_DISCONNECTING) {
2381107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
2382107120Sjulian		return (EINPROGRESS);
2383107120Sjulian	}
2384107120Sjulian
2385107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_CLOSED) {
2386107120Sjulian		/* XXX FIXME what to do with pending request? */
2387107120Sjulian		if (pcb->flags & NG_BTSOCKET_L2CAP_TIMO)
2388107120Sjulian			ng_btsocket_l2cap_untimeout(pcb);
2389107120Sjulian
2390107120Sjulian		error = ng_btsocket_l2cap_send_l2ca_discon_req(pcb->token, pcb);
2391107120Sjulian		if (error == 0) {
2392107120Sjulian			pcb->state = NG_BTSOCKET_L2CAP_DISCONNECTING;
2393107120Sjulian			soisdisconnecting(so);
2394107120Sjulian
2395107120Sjulian			ng_btsocket_l2cap_timeout(pcb);
2396107120Sjulian		}
2397107120Sjulian
2398107120Sjulian		/* XXX FIXME what to do if error != 0 */
2399107120Sjulian	}
2400107120Sjulian
2401107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
2402107120Sjulian
2403107120Sjulian	return (error);
2404107120Sjulian} /* ng_btsocket_l2cap_disconnect */
2405107120Sjulian
2406107120Sjulian/*
2407107120Sjulian * Listen on socket
2408107120Sjulian */
2409107120Sjulian
2410107120Sjulianint
2411151888Srwatsonng_btsocket_l2cap_listen(struct socket *so, int backlog, struct thread *td)
2412107120Sjulian{
2413107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2414142190Srwatson	int error;
2415107120Sjulian
2416142190Srwatson	SOCK_LOCK(so);
2417142190Srwatson	error = solisten_proto_check(so);
2418142190Srwatson	if (error != 0)
2419142190Srwatson		goto out;
2420142190Srwatson	if (pcb == NULL) {
2421142190Srwatson		error = EINVAL;
2422142190Srwatson		goto out;
2423142190Srwatson	}
2424142190Srwatson	if (ng_btsocket_l2cap_node == NULL) {
2425142190Srwatson		error = EINVAL;
2426142190Srwatson		goto out;
2427142190Srwatson	}
2428142190Srwatson	if (pcb->psm == 0) {
2429142190Srwatson		error = EDESTADDRREQ;
2430142190Srwatson		goto out;
2431142190Srwatson	}
2432151888Srwatson	solisten_proto(so, backlog);
2433142190Srwatsonout:
2434142190Srwatson	SOCK_UNLOCK(so);
2435142190Srwatson	return (error);
2436107120Sjulian} /* ng_btsocket_listen */
2437107120Sjulian
2438107120Sjulian/*
2439107120Sjulian * Get peer address
2440107120Sjulian */
2441107120Sjulian
2442107120Sjulianint
2443107120Sjulianng_btsocket_l2cap_peeraddr(struct socket *so, struct sockaddr **nam)
2444107120Sjulian{
2445107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2446107120Sjulian	struct sockaddr_l2cap	sa;
2447107120Sjulian
2448107120Sjulian	if (pcb == NULL)
2449107120Sjulian		return (EINVAL);
2450107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2451107120Sjulian		return (EINVAL);
2452107120Sjulian
2453107120Sjulian	bcopy(&pcb->dst, &sa.l2cap_bdaddr, sizeof(sa.l2cap_bdaddr));
2454107120Sjulian	sa.l2cap_psm = htole16(pcb->psm);
2455107120Sjulian	sa.l2cap_len = sizeof(sa);
2456107120Sjulian	sa.l2cap_family = AF_BLUETOOTH;
2457107120Sjulian
2458126425Srwatson	*nam = sodupsockaddr((struct sockaddr *) &sa, M_NOWAIT);
2459107120Sjulian
2460107120Sjulian	return ((*nam == NULL)? ENOMEM : 0);
2461107120Sjulian} /* ng_btsocket_l2cap_peeraddr */
2462107120Sjulian
2463107120Sjulian/*
2464107120Sjulian * Send data to socket
2465107120Sjulian */
2466107120Sjulian
2467107120Sjulianint
2468107120Sjulianng_btsocket_l2cap_send(struct socket *so, int flags, struct mbuf *m,
2469107120Sjulian		struct sockaddr *nam, struct mbuf *control, struct thread *td)
2470107120Sjulian{
2471107120Sjulian	ng_btsocket_l2cap_pcb_t	*pcb = so2l2cap_pcb(so);
2472107120Sjulian	int			 error = 0;
2473107120Sjulian
2474107120Sjulian	if (ng_btsocket_l2cap_node == NULL) {
2475107120Sjulian		error = ENETDOWN;
2476107120Sjulian		goto drop;
2477107120Sjulian	}
2478107120Sjulian
2479107120Sjulian	/* Check socket and input */
2480107120Sjulian	if (pcb == NULL || m == NULL || control != NULL) {
2481107120Sjulian		error = EINVAL;
2482107120Sjulian		goto drop;
2483107120Sjulian	}
2484107120Sjulian
2485107120Sjulian	mtx_lock(&pcb->pcb_mtx);
2486107120Sjulian
2487107120Sjulian	/* Make sure socket is connected */
2488107120Sjulian	if (pcb->state != NG_BTSOCKET_L2CAP_OPEN) {
2489107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
2490107120Sjulian		error = ENOTCONN;
2491107120Sjulian		goto drop;
2492107120Sjulian	}
2493107120Sjulian
2494107120Sjulian	/* Check route */
2495107120Sjulian	if (pcb->rt == NULL ||
2496107120Sjulian	    pcb->rt->hook == NULL || NG_HOOK_NOT_VALID(pcb->rt->hook)) {
2497107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
2498107120Sjulian		error = ENETDOWN;
2499107120Sjulian		goto drop;
2500107120Sjulian	}
2501107120Sjulian
2502107120Sjulian	/* Check packet size agains outgoing (peer's incoming) MTU) */
2503107120Sjulian	if (m->m_pkthdr.len > pcb->omtu) {
2504107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
2505107120Sjulian"%s: Packet too big, len=%d, omtu=%d\n", __func__, m->m_pkthdr.len, pcb->omtu);
2506107120Sjulian
2507107120Sjulian		mtx_unlock(&pcb->pcb_mtx);
2508107120Sjulian		error = EMSGSIZE;
2509107120Sjulian		goto drop;
2510107120Sjulian	}
2511107120Sjulian
2512107120Sjulian	/*
2513107120Sjulian	 * First put packet on socket send queue. Then check if we have
2514107120Sjulian	 * pending timeout. If we do not have timeout then we must send
2515107120Sjulian	 * packet and schedule timeout. Otherwise do nothing and wait for
2516107120Sjulian	 * L2CA_WRITE_RSP.
2517107120Sjulian	 */
2518107120Sjulian
2519107120Sjulian	sbappendrecord(&pcb->so->so_snd, m);
2520107120Sjulian	m = NULL;
2521107120Sjulian
2522107120Sjulian	if (!(pcb->flags & NG_BTSOCKET_L2CAP_TIMO)) {
2523107120Sjulian		error = ng_btsocket_l2cap_send2(pcb);
2524107120Sjulian		if (error == 0)
2525107120Sjulian			ng_btsocket_l2cap_timeout(pcb);
2526107120Sjulian		else
2527107120Sjulian			sbdroprecord(&pcb->so->so_snd); /* XXX */
2528107120Sjulian	}
2529107120Sjulian
2530107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
2531107120Sjuliandrop:
2532107120Sjulian	NG_FREE_M(m); /* checks for != NULL */
2533107120Sjulian	NG_FREE_M(control);
2534107120Sjulian
2535107120Sjulian	return (error);
2536107120Sjulian} /* ng_btsocket_l2cap_send */
2537107120Sjulian
2538107120Sjulian/*
2539107120Sjulian * Send first packet in the socket queue to the L2CAP layer
2540107120Sjulian */
2541107120Sjulian
2542107120Sjulianstatic int
2543107120Sjulianng_btsocket_l2cap_send2(ng_btsocket_l2cap_pcb_p pcb)
2544107120Sjulian{
2545107120Sjulian	struct	mbuf		*m = NULL;
2546107120Sjulian	ng_l2cap_l2ca_hdr_t	*hdr = NULL;
2547107120Sjulian	int			 error = 0;
2548107120Sjulian
2549107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
2550107120Sjulian
2551107120Sjulian	if (pcb->so->so_snd.sb_cc == 0)
2552107120Sjulian		return (EINVAL); /* XXX */
2553107120Sjulian
2554111119Simp	m = m_dup(pcb->so->so_snd.sb_mb, M_DONTWAIT);
2555107120Sjulian	if (m == NULL)
2556107120Sjulian		return (ENOBUFS);
2557107120Sjulian
2558107120Sjulian	/* Create L2CA packet header */
2559114878Sjulian	M_PREPEND(m, sizeof(*hdr), M_DONTWAIT);
2560107120Sjulian	if (m != NULL)
2561107120Sjulian		if (m->m_len < sizeof(*hdr))
2562107120Sjulian			m = m_pullup(m, sizeof(*hdr));
2563107120Sjulian
2564107120Sjulian	if (m == NULL) {
2565107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
2566107120Sjulian"%s: Failed to create L2CA packet header\n", __func__);
2567107120Sjulian
2568107120Sjulian		return (ENOBUFS);
2569107120Sjulian	}
2570107120Sjulian
2571107120Sjulian	hdr = mtod(m, ng_l2cap_l2ca_hdr_t *);
2572107120Sjulian	hdr->token = pcb->token;
2573107120Sjulian	hdr->length = m->m_pkthdr.len - sizeof(*hdr);
2574107120Sjulian	hdr->lcid = pcb->cid;
2575107120Sjulian
2576107120Sjulian	NG_BTSOCKET_L2CAP_INFO(
2577107120Sjulian"%s: Sending packet: len=%d, length=%d, lcid=%d, token=%d, state=%d\n",
2578107120Sjulian		__func__, m->m_pkthdr.len, hdr->length, hdr->lcid,
2579107120Sjulian		hdr->token, pcb->state);
2580107120Sjulian
2581107120Sjulian	/*
2582107120Sjulian	 * If we got here than we have successfuly creates new L2CAP
2583107120Sjulian	 * data packet and now we can send it to the L2CAP layer
2584107120Sjulian	 */
2585107120Sjulian
2586107120Sjulian	NG_SEND_DATA_ONLY(error, pcb->rt->hook, m);
2587107120Sjulian
2588107120Sjulian	return (error);
2589107120Sjulian} /* ng_btsocket_l2cap_send2 */
2590107120Sjulian
2591107120Sjulian/*
2592107120Sjulian * Get socket address
2593107120Sjulian */
2594107120Sjulian
2595107120Sjulianint
2596107120Sjulianng_btsocket_l2cap_sockaddr(struct socket *so, struct sockaddr **nam)
2597107120Sjulian{
2598107120Sjulian	ng_btsocket_l2cap_pcb_p	pcb = so2l2cap_pcb(so);
2599107120Sjulian	struct sockaddr_l2cap	sa;
2600107120Sjulian
2601107120Sjulian	if (pcb == NULL)
2602107120Sjulian		return (EINVAL);
2603107120Sjulian	if (ng_btsocket_l2cap_node == NULL)
2604107120Sjulian		return (EINVAL);
2605107120Sjulian
2606107120Sjulian	bcopy(&pcb->src, &sa.l2cap_bdaddr, sizeof(sa.l2cap_bdaddr));
2607107120Sjulian	sa.l2cap_psm = htole16(pcb->psm);
2608107120Sjulian	sa.l2cap_len = sizeof(sa);
2609107120Sjulian	sa.l2cap_family = AF_BLUETOOTH;
2610107120Sjulian
2611126425Srwatson	*nam = sodupsockaddr((struct sockaddr *) &sa, M_NOWAIT);
2612107120Sjulian
2613107120Sjulian	return ((*nam == NULL)? ENOMEM : 0);
2614107120Sjulian} /* ng_btsocket_l2cap_sockaddr */
2615107120Sjulian
2616107120Sjulian/*****************************************************************************
2617107120Sjulian *****************************************************************************
2618107120Sjulian **                              Misc. functions
2619107120Sjulian *****************************************************************************
2620107120Sjulian *****************************************************************************/
2621107120Sjulian
2622107120Sjulian/*
2623107120Sjulian * Look for the socket that listens on given PSM and bdaddr. Returns exact or
2624114878Sjulian * close match (if any). Caller must hold ng_btsocket_l2cap_sockets_mtx.
2625107120Sjulian */
2626107120Sjulian
2627107120Sjulianstatic ng_btsocket_l2cap_pcb_p
2628107120Sjulianng_btsocket_l2cap_pcb_by_addr(bdaddr_p bdaddr, int psm)
2629107120Sjulian{
2630107120Sjulian	ng_btsocket_l2cap_pcb_p	p = NULL, p1 = NULL;
2631107120Sjulian
2632114878Sjulian	mtx_assert(&ng_btsocket_l2cap_sockets_mtx, MA_OWNED);
2633107120Sjulian
2634107120Sjulian	LIST_FOREACH(p, &ng_btsocket_l2cap_sockets, next) {
2635107120Sjulian		if (p->so == NULL || !(p->so->so_options & SO_ACCEPTCONN) ||
2636107120Sjulian		    p->psm != psm)
2637107120Sjulian			continue;
2638107120Sjulian
2639107120Sjulian		if (bcmp(&p->src, bdaddr, sizeof(p->src)) == 0)
2640107120Sjulian			break;
2641107120Sjulian
2642107120Sjulian		if (bcmp(&p->src, NG_HCI_BDADDR_ANY, sizeof(p->src)) == 0)
2643107120Sjulian			p1 = p;
2644107120Sjulian	}
2645107120Sjulian
2646107120Sjulian	return ((p != NULL)? p : p1);
2647107120Sjulian} /* ng_btsocket_l2cap_pcb_by_addr */
2648107120Sjulian
2649107120Sjulian/*
2650114878Sjulian * Look for the socket that has given token.
2651114878Sjulian * Caller must hold ng_btsocket_l2cap_sockets_mtx.
2652107120Sjulian */
2653107120Sjulian
2654107120Sjulianstatic ng_btsocket_l2cap_pcb_p
2655107120Sjulianng_btsocket_l2cap_pcb_by_token(u_int32_t token)
2656107120Sjulian{
2657107120Sjulian	ng_btsocket_l2cap_pcb_p	p = NULL;
2658107120Sjulian
2659114878Sjulian	if (token == 0)
2660114878Sjulian		return (NULL);
2661107120Sjulian
2662114878Sjulian	mtx_assert(&ng_btsocket_l2cap_sockets_mtx, MA_OWNED);
2663107120Sjulian
2664114878Sjulian	LIST_FOREACH(p, &ng_btsocket_l2cap_sockets, next)
2665114878Sjulian		if (p->token == token)
2666114878Sjulian			break;
2667107120Sjulian
2668107120Sjulian	return (p);
2669107120Sjulian} /* ng_btsocket_l2cap_pcb_by_token */
2670107120Sjulian
2671107120Sjulian/*
2672114878Sjulian * Look for the socket that assigned to given source address and channel ID.
2673114878Sjulian * Caller must hold ng_btsocket_l2cap_sockets_mtx
2674107120Sjulian */
2675107120Sjulian
2676107120Sjulianstatic ng_btsocket_l2cap_pcb_p
2677107120Sjulianng_btsocket_l2cap_pcb_by_cid(bdaddr_p src, int cid)
2678107120Sjulian{
2679107120Sjulian	ng_btsocket_l2cap_pcb_p	p = NULL;
2680107120Sjulian
2681114878Sjulian	mtx_assert(&ng_btsocket_l2cap_sockets_mtx, MA_OWNED);
2682107120Sjulian
2683107120Sjulian	LIST_FOREACH(p, &ng_btsocket_l2cap_sockets, next)
2684107120Sjulian		if (p->cid == cid && bcmp(src, &p->src, sizeof(p->src)) == 0)
2685107120Sjulian			break;
2686107120Sjulian
2687107120Sjulian	return (p);
2688107120Sjulian} /* ng_btsocket_l2cap_pcb_by_cid */
2689107120Sjulian
2690107120Sjulian/*
2691107120Sjulian * Set timeout on socket
2692107120Sjulian */
2693107120Sjulian
2694107120Sjulianstatic void
2695107120Sjulianng_btsocket_l2cap_timeout(ng_btsocket_l2cap_pcb_p pcb)
2696107120Sjulian{
2697107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
2698107120Sjulian
2699107120Sjulian	if (!(pcb->flags & NG_BTSOCKET_L2CAP_TIMO)) {
2700107120Sjulian		pcb->flags |= NG_BTSOCKET_L2CAP_TIMO;
2701107120Sjulian		pcb->timo = timeout(ng_btsocket_l2cap_process_timeout, pcb,
2702107120Sjulian					bluetooth_l2cap_ertx_timeout());
2703107120Sjulian	} else
2704107120Sjulian		KASSERT(0,
2705107120Sjulian("%s: Duplicated socket timeout?!\n", __func__));
2706107120Sjulian} /* ng_btsocket_l2cap_timeout */
2707107120Sjulian
2708107120Sjulian/*
2709107120Sjulian * Unset timeout on socket
2710107120Sjulian */
2711107120Sjulian
2712107120Sjulianstatic void
2713107120Sjulianng_btsocket_l2cap_untimeout(ng_btsocket_l2cap_pcb_p pcb)
2714107120Sjulian{
2715107120Sjulian	mtx_assert(&pcb->pcb_mtx, MA_OWNED);
2716107120Sjulian
2717107120Sjulian	if (pcb->flags & NG_BTSOCKET_L2CAP_TIMO) {
2718107120Sjulian		untimeout(ng_btsocket_l2cap_process_timeout, pcb, pcb->timo);
2719107120Sjulian		pcb->flags &= ~NG_BTSOCKET_L2CAP_TIMO;
2720107120Sjulian	} else
2721107120Sjulian		KASSERT(0,
2722107120Sjulian("%s: No socket timeout?!\n", __func__));
2723107120Sjulian} /* ng_btsocket_l2cap_untimeout */
2724107120Sjulian
2725107120Sjulian/*
2726107120Sjulian * Process timeout on socket
2727107120Sjulian */
2728107120Sjulian
2729107120Sjulianstatic void
2730107120Sjulianng_btsocket_l2cap_process_timeout(void *xpcb)
2731107120Sjulian{
2732114878Sjulian	ng_btsocket_l2cap_pcb_p	 pcb = (ng_btsocket_l2cap_pcb_p) xpcb;
2733114878Sjulian	struct socket		*so = NULL;
2734107120Sjulian
2735107120Sjulian	mtx_lock(&pcb->pcb_mtx);
2736107120Sjulian
2737107120Sjulian	pcb->flags &= ~NG_BTSOCKET_L2CAP_TIMO;
2738107120Sjulian	pcb->so->so_error = ETIMEDOUT;
2739107120Sjulian
2740107120Sjulian	switch (pcb->state) {
2741107120Sjulian	case NG_BTSOCKET_L2CAP_CONNECTING:
2742107120Sjulian	case NG_BTSOCKET_L2CAP_CONFIGURING:
2743107120Sjulian		/* Send disconnect request with "zero" token */
2744107120Sjulian		if (pcb->cid != 0)
2745107120Sjulian			ng_btsocket_l2cap_send_l2ca_discon_req(0, pcb);
2746107120Sjulian
2747107120Sjulian		/* ... and close the socket */
2748107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
2749107120Sjulian		soisdisconnected(pcb->so);
2750114878Sjulian
2751114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
2752114878Sjulian			so = pcb->so;
2753107120Sjulian		break;
2754107120Sjulian
2755107120Sjulian	case NG_BTSOCKET_L2CAP_OPEN:
2756107120Sjulian		/* Send timeout - drop packet and wakeup sender */
2757107120Sjulian		sbdroprecord(&pcb->so->so_snd);
2758107120Sjulian		sowwakeup(pcb->so);
2759107120Sjulian		break;
2760107120Sjulian
2761107120Sjulian	case NG_BTSOCKET_L2CAP_DISCONNECTING:
2762107120Sjulian		/* Disconnect timeout - disconnect the socket anyway */
2763107120Sjulian		pcb->state = NG_BTSOCKET_L2CAP_CLOSED;
2764107120Sjulian		soisdisconnected(pcb->so);
2765114878Sjulian
2766114878Sjulian		if (pcb->so->so_state & SS_NOFDREF)
2767114878Sjulian			so = pcb->so;
2768107120Sjulian		break;
2769107120Sjulian
2770107120Sjulian	default:
2771107120Sjulian		NG_BTSOCKET_L2CAP_ERR(
2772107120Sjulian"%s: Invalid socket state=%d\n", __func__, pcb->state);
2773107120Sjulian		break;
2774107120Sjulian	}
2775107120Sjulian
2776107120Sjulian	mtx_unlock(&pcb->pcb_mtx);
2777114878Sjulian
2778114878Sjulian	if (so != NULL)
2779114878Sjulian		ng_btsocket_l2cap_detach(so);
2780107120Sjulian} /* ng_btsocket_l2cap_process_timeout */
2781107120Sjulian
2782107120Sjulian/*
2783107120Sjulian * Translate HCI/L2CAP error code into "errno" code
2784107120Sjulian * XXX Note: Some L2CAP and HCI error codes have the same value, but
2785107120Sjulian *     different meaning
2786107120Sjulian */
2787107120Sjulian
2788107120Sjulianstatic int
2789107120Sjulianng_btsocket_l2cap_result2errno(int result)
2790107120Sjulian{
2791107120Sjulian	switch (result) {
2792107120Sjulian	case 0x00: /* No error */
2793107120Sjulian		return (0);
2794107120Sjulian
2795107120Sjulian	case 0x01: /* Unknown HCI command */
2796107120Sjulian		return (ENODEV);
2797107120Sjulian
2798107120Sjulian	case 0x02: /* No connection */
2799107120Sjulian		return (ENOTCONN);
2800107120Sjulian
2801107120Sjulian	case 0x03: /* Hardware failure */
2802107120Sjulian		return (EIO);
2803107120Sjulian
2804107120Sjulian	case 0x04: /* Page timeout */
2805107120Sjulian		return (EHOSTDOWN);
2806107120Sjulian
2807107120Sjulian	case 0x05: /* Authentication failure */
2808107120Sjulian	case 0x06: /* Key missing */
2809107120Sjulian	case 0x18: /* Pairing not allowed */
2810107120Sjulian	case 0x21: /* Role change not allowed */
2811107120Sjulian	case 0x24: /* LMP PSU not allowed */
2812107120Sjulian	case 0x25: /* Encryption mode not acceptable */
2813107120Sjulian	case 0x26: /* Unit key used */
2814107120Sjulian		return (EACCES);
2815107120Sjulian
2816107120Sjulian	case 0x07: /* Memory full */
2817107120Sjulian		return (ENOMEM);
2818107120Sjulian
2819107120Sjulian	case 0x08:   /* Connection timeout */
2820107120Sjulian	case 0x10:   /* Host timeout */
2821107120Sjulian	case 0x22:   /* LMP response timeout */
2822107120Sjulian	case 0xee:   /* HCI timeout */
2823107120Sjulian	case 0xeeee: /* L2CAP timeout */
2824107120Sjulian		return (ETIMEDOUT);
2825107120Sjulian
2826107120Sjulian	case 0x09: /* Max number of connections */
2827107120Sjulian	case 0x0a: /* Max number of SCO connections to a unit */
2828107120Sjulian		return (EMLINK);
2829107120Sjulian
2830107120Sjulian	case 0x0b: /* ACL connection already exists */
2831107120Sjulian		return (EEXIST);
2832107120Sjulian
2833107120Sjulian	case 0x0c: /* Command disallowed */
2834107120Sjulian		return (EBUSY);
2835107120Sjulian
2836107120Sjulian	case 0x0d: /* Host rejected due to limited resources */
2837107120Sjulian	case 0x0e: /* Host rejected due to securiity reasons */
2838107120Sjulian	case 0x0f: /* Host rejected due to remote unit is a personal unit */
2839107120Sjulian	case 0x1b: /* SCO offset rejected */
2840107120Sjulian	case 0x1c: /* SCO interval rejected */
2841107120Sjulian	case 0x1d: /* SCO air mode rejected */
2842107120Sjulian		return (ECONNREFUSED);
2843107120Sjulian
2844107120Sjulian	case 0x11: /* Unsupported feature or parameter value */
2845107120Sjulian	case 0x19: /* Unknown LMP PDU */
2846107120Sjulian	case 0x1a: /* Unsupported remote feature */
2847107120Sjulian	case 0x20: /* Unsupported LMP parameter value */
2848107120Sjulian	case 0x27: /* QoS is not supported */
2849107120Sjulian	case 0x29: /* Paring with unit key not supported */
2850107120Sjulian		return (EOPNOTSUPP);
2851107120Sjulian
2852107120Sjulian	case 0x12: /* Invalid HCI command parameter */
2853107120Sjulian	case 0x1e: /* Invalid LMP parameters */
2854107120Sjulian		return (EINVAL);
2855107120Sjulian
2856107120Sjulian	case 0x13: /* Other end terminated connection: User ended connection */
2857107120Sjulian	case 0x14: /* Other end terminated connection: Low resources */
2858107120Sjulian	case 0x15: /* Other end terminated connection: About to power off */
2859107120Sjulian		return (ECONNRESET);
2860107120Sjulian
2861107120Sjulian	case 0x16: /* Connection terminated by local host */
2862107120Sjulian		return (ECONNABORTED);
2863107120Sjulian
2864107120Sjulian#if 0 /* XXX not yet */
2865107120Sjulian	case 0x17: /* Repeated attempts */
2866107120Sjulian	case 0x1f: /* Unspecified error */
2867107120Sjulian	case 0x23: /* LMP error transaction collision */
2868107120Sjulian	case 0x28: /* Instant passed */
2869107120Sjulian#endif
2870107120Sjulian	}
2871107120Sjulian
2872107120Sjulian	return (ENOSYS);
2873107120Sjulian} /* ng_btsocket_l2cap_result2errno */
2874107120Sjulian
2875