/mandos/release

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/release

« back to all changes in this revision

Viewing changes to network-hooks.d/wireless

  • Committer: Teddy Hogeborn
  • Date: 2011-12-30 18:26:04 UTC
  • mto: (237.7.89 trunk)
  • mto: This revision was merged to the branch mainline in revision 290.
  • Revision ID: teddy@recompile.se-20111230182604-9p8e7u03xd0n1u0c
* network-hooks.d/wireless.conf: Better example code.

Show diffs side-by-side

added added

removed removed

Lines of Context:
6
6
# configuration file(s) should be copied into the
7
7
# /etc/mandos/network-hooks.d directory.
8
8
9
 
# Copyright © 2012 Teddy Hogeborn
10
 
# Copyright © 2012 Björn Påhlsson
11
 
12
9
# Copying and distribution of this file, with or without modification,
13
10
# are permitted in any medium without royalty provided the copyright
14
11
# notice and this notice are preserved.  This file is offered as-is,
23
20
 
24
21
CONFIG="$MANDOSNETHOOKDIR/wireless.conf"
25
22
 
26
 
addrtoif(){
27
 
    grep -liFe "$1" /sys/class/net/*/address \
28
 
        | sed -e 's,.*/\([^/]*\)/[^/]*,\1,'
29
 
}
30
 
 
31
23
# Read config file
32
24
if [ -e "$CONFIG" ]; then
33
25
    . "$CONFIG"
35
27
    exit
36
28
fi
37
29
 
38
 
ifkeys=`env | sed -n -e 's/^ADDRESS_\([^=]*\)=.*/\1/p' "$CONFIG" \
39
 
    | sort -u`
 
30
interfaces="`env|sed -n -e 's/^\(MODULE\|IPADDRS\|ROUTES\|WPA_DRIVER\)_\([^=]*\)=.*/\2/p' \"$CONFIG\" |sort -u`"
40
31
 
41
32
# Exit if DEVICE is set and is not any of the wireless interfaces
42
33
if [ -n "$DEVICE" ]; then
43
34
    while :; do
44
 
        for KEY in $ifkeys; do
45
 
            ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
46
 
            INTERFACE=`addrtoif "$ADDRESS"`
47
 
            if [ "$INTERFACE" = "$DEVICE" ]; then
 
35
        for IF in $interfaces; do
 
36
            if [ "$IF" = "$DEVICE" ]; then
48
37
                break 2
49
38
            fi
50
39
        done
73
62
    WPAS_OPTIONS="-P$PIDFILE $WPAS_OPTIONS"
74
63
fi
75
64
 
76
 
do_start(){
77
 
    mkdir -m u=rwx,go= -p "$CTRLDIR"
78
 
    "$wpa_supplicant" -B -g "$CTRL" -p "$CTRLDIR" $WPAS_OPTIONS
79
 
    for KEY in $ifkeys; do
80
 
        ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
81
 
        INTERFACE=`addrtoif "$ADDRESS"`
82
 
        DRIVER=`eval 'echo "$WPA_DRIVER_'"$KEY"\"`
83
 
        IFDELAY=`eval 'echo "$DELAY_'"$KEY"\"`
84
 
        "$wpa_cli" -g "$CTRL" interface_add "$INTERFACE" "" \
85
 
            "${DRIVER:-wext}" "$CTRLDIR" > /dev/null \
86
 
            | sed -e '/^OK$/d'
87
 
        NETWORK=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" add_network`
88
 
        eval wpa_interface_"$KEY"
89
 
        "$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" enable_network \
90
 
            "$NETWORK" | sed -e '/^OK$/d'
91
 
        sleep "${IFDELAY:-$DELAY}" &
92
 
        sleep=$!
93
 
        while :; do
94
 
            kill -0 $sleep 2>/dev/null || break
95
 
            STATE=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" status \
96
 
                | sed -n -e 's/^wpa_state=//p'`
97
 
            if [ "$STATE" = COMPLETED ]; then
98
 
                while :; do
99
 
                    kill -0 $sleep 2>/dev/null || break 2
100
 
                    UP=`cat /sys/class/net/"$INTERFACE"/operstate`
101
 
                    if [ "$UP" = up ]; then
102
 
                        kill $sleep 2>/dev/null
103
 
                        break 2
104
 
                    fi
105
 
                    sleep 1
106
 
                done
107
 
            fi
108
 
            sleep 1
109
 
        done &
110
 
        wait $sleep || :
111
 
        IPADDRS=`eval 'echo "$IPADDRS_'"$KEY"\"`
112
 
        if [ -n "$IPADDRS" ]; then
113
 
            if [ "$IPADDRS" = dhcp ]; then
114
 
                ipconfig -c dhcp -d "$INTERFACE" || :
115
 
                #dhclient "$INTERFACE"
116
 
            else
117
 
                for ipaddr in $IPADDRS; do
118
 
                    "$ip" addr add "$ipaddr" dev "$INTERFACE"
119
 
                done
120
 
            fi
121
 
        fi
122
 
        ROUTES=`eval 'echo "$ROUTES_'"$KEY"\"`
123
 
        if [ -n "$ROUTES" ]; then
124
 
            for route in $ROUTES; do
125
 
                "$ip" route add "$route" dev "$BRIDGE"
126
 
            done
127
 
        fi
128
 
    done
129
 
}
130
 
 
131
 
do_stop(){
132
 
    "$wpa_cli" -g "$CTRL" terminate 2>&1 | sed -e '/^OK$/d'
133
 
    for KEY in $ifkeys; do
134
 
        ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
135
 
        INTERFACE=`addrtoif "$ADDRESS"`
136
 
        "$ip" addr show scope global permanent dev "$INTERFACE" \
137
 
            | while read type addr rest; do
 
65
case "${MODE:-$1}" in
 
66
    start)
 
67
        mkdir -m u=rwx,go= -p "$CTRLDIR"
 
68
        "$wpa_supplicant" -B -g "$CTRL" -p "$CTRLDIR" $WPAS_OPTIONS
 
69
        for INTERFACE in $interfaces; do
 
70
            DRIVER=`eval 'echo "$WPA_DRIVER_'"$INTERFACE"\"`
 
71
            IFDELAY=`eval 'echo "$DELAY_'"$INTERFACE"\"`
 
72
            "$wpa_cli" -g "$CTRL" interface_add "$INTERFACE" "" \
 
73
                "${DRIVER:-wext}" "$CTRLDIR" > /dev/null \
 
74
                | sed -e '/^OK$/d'
 
75
            NETWORK=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" add_network`
 
76
            eval wpa_interface_"$INTERFACE"
 
77
            "$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" enable_network \
 
78
                "$NETWORK" | sed -e '/^OK$/d'
 
79
            ( sleep "${IFDELAY:-$DELAY}" || : ) &
 
80
            sleep=$!
 
81
            while :; do
 
82
                kill -0 $sleep 2>/dev/null || break
 
83
                STATE=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" status | sed -n -e 's/^wpa_state=//p'`
 
84
                if [ "$STATE" = COMPLETED ]; then
 
85
                    kill $sleep 2>/dev/null
 
86
                    break
 
87
                fi
 
88
                sleep 1
 
89
            done &
 
90
            wait $sleep || :
 
91
            IPADDRS=`eval 'echo "$IPADDRS_'"$INTERFACE"\"`
 
92
            if [ -n "$IPADDRS" ]; then
 
93
                if [ "$IPADDRS" = dhcp ]; then
 
94
                    ipconfig -c dhcp -d "$INTERFACE" || :
 
95
                    #dhclient "$INTERFACE"
 
96
                else
 
97
                    for ipaddr in $IPADDRS; do
 
98
                        "$ip" addr add "$ipaddr" dev "$INTERFACE"
 
99
                    done
 
100
                fi
 
101
            fi
 
102
            ROUTES=`eval 'echo "$ROUTES_'"$INTERFACE"\"`
 
103
            if [ -n "$ROUTES" ]; then
 
104
                for route in $ROUTES; do
 
105
                    "$ip" route add "$route" dev "$BRIDGE"
 
106
                done
 
107
            fi
 
108
        done
 
109
        ;;
 
110
    stop)
 
111
        "$wpa_cli" -g "$CTRL" terminate 2>&1 | sed -e '/^OK$/d'
 
112
        for INTERFACE in $interfaces; do
 
113
            "$ip" addr show scope global permanent dev "$INTERFACE" \
 
114
                | while read type addr rest; do
138
115
                case "$type" in
139
116
                    inet|inet6)
140
117
                        "$ip" addr del "$addr" dev "$INTERFACE"
141
118
                        ;;
142
119
                esac
143
120
            done
144
 
        "$ip" link set dev "$INTERFACE" down
145
 
    done
146
 
}
147
 
 
148
 
case "${MODE:-$1}" in
149
 
    start|stop)
150
 
        do_"${MODE:-$1}"
 
121
            "$ip" link set dev "$INTERFACE" down
 
122
        done
151
123
        ;;
152
124
    files)
153
125
        echo "$wpa_supplicant"