/mandos/release

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/release

« back to all changes in this revision

Viewing changes to network-hooks.d/wireless

* mandos.xml (CHECKING): Don't claim that a successful secret request
                         is equivalent to a successful checker.

Show diffs side-by-side

added added

removed removed

Lines of Context:
35
35
    exit
36
36
fi
37
37
 
38
 
ifkeys=`sed -n -e 's/^ADDRESS_\([^=]*\)=.*/\1/p' "$CONFIG" | sort -u`
 
38
ifkeys=`env | sed -n -e 's/^ADDRESS_\([^=]*\)=.*/\1/p' "$CONFIG" \
 
39
    | sort -u`
39
40
 
40
41
# Exit if DEVICE is set and is not any of the wireless interfaces
41
42
if [ -n "$DEVICE" ]; then
72
73
    WPAS_OPTIONS="-P$PIDFILE $WPAS_OPTIONS"
73
74
fi
74
75
 
75
 
do_start(){
76
 
    mkdir -m u=rwx,go= -p "$CTRLDIR"
77
 
    "$wpa_supplicant" -B -g "$CTRL" -p "$CTRLDIR" $WPAS_OPTIONS
78
 
    for KEY in $ifkeys; do
79
 
        ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
80
 
        INTERFACE=`addrtoif "$ADDRESS"`
81
 
        DRIVER=`eval 'echo "$WPA_DRIVER_'"$KEY"\"`
82
 
        IFDELAY=`eval 'echo "$DELAY_'"$KEY"\"`
83
 
        "$wpa_cli" -g "$CTRL" interface_add "$INTERFACE" "" \
84
 
            "${DRIVER:-wext}" "$CTRLDIR" > /dev/null \
85
 
            | sed -e '/^OK$/d'
86
 
        NETWORK=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" add_network`
87
 
        eval wpa_interface_"$KEY"
88
 
        "$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" enable_network \
89
 
            "$NETWORK" | sed -e '/^OK$/d'
90
 
        sleep "${IFDELAY:-$DELAY}" &
91
 
        sleep=$!
92
 
        while :; do
93
 
            kill -0 $sleep 2>/dev/null || break
94
 
            STATE=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" status \
95
 
                | sed -n -e 's/^wpa_state=//p'`
96
 
            if [ "$STATE" = COMPLETED ]; then
97
 
                while :; do
98
 
                    kill -0 $sleep 2>/dev/null || break 2
99
 
                    UP=`cat /sys/class/net/"$INTERFACE"/operstate`
100
 
                    if [ "$UP" = up ]; then
101
 
                        kill $sleep 2>/dev/null
102
 
                        break 2
103
 
                    fi
104
 
                    sleep 1
105
 
                done
106
 
            fi
107
 
            sleep 1
108
 
        done &
109
 
        wait $sleep || :
110
 
        IPADDRS=`eval 'echo "$IPADDRS_'"$KEY"\"`
111
 
        if [ -n "$IPADDRS" ]; then
112
 
            if [ "$IPADDRS" = dhcp ]; then
113
 
                ipconfig -c dhcp -d "$INTERFACE" || :
114
 
                #dhclient "$INTERFACE"
115
 
            else
116
 
                for ipaddr in $IPADDRS; do
117
 
                    "$ip" addr add "$ipaddr" dev "$INTERFACE"
118
 
                done
119
 
            fi
120
 
        fi
121
 
        ROUTES=`eval 'echo "$ROUTES_'"$KEY"\"`
122
 
        if [ -n "$ROUTES" ]; then
123
 
            for route in $ROUTES; do
124
 
                "$ip" route add "$route" dev "$BRIDGE"
125
 
            done
126
 
        fi
127
 
    done
128
 
}
129
 
 
130
 
do_stop(){
131
 
    "$wpa_cli" -g "$CTRL" terminate 2>&1 | sed -e '/^OK$/d'
132
 
    for KEY in $ifkeys; do
133
 
        ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
134
 
        INTERFACE=`addrtoif "$ADDRESS"`
135
 
        "$ip" addr show scope global permanent dev "$INTERFACE" \
136
 
            | while read type addr rest; do
 
76
case "${MODE:-$1}" in
 
77
    start)
 
78
        mkdir -m u=rwx,go= -p "$CTRLDIR"
 
79
        "$wpa_supplicant" -B -g "$CTRL" -p "$CTRLDIR" $WPAS_OPTIONS
 
80
        for KEY in $ifkeys; do
 
81
            ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
 
82
            INTERFACE=`addrtoif "$ADDRESS"`
 
83
            DRIVER=`eval 'echo "$WPA_DRIVER_'"$KEY"\"`
 
84
            IFDELAY=`eval 'echo "$DELAY_'"$KEY"\"`
 
85
            "$wpa_cli" -g "$CTRL" interface_add "$INTERFACE" "" \
 
86
                "${DRIVER:-wext}" "$CTRLDIR" > /dev/null \
 
87
                | sed -e '/^OK$/d'
 
88
            NETWORK=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" \
 
89
                add_network`
 
90
            eval wpa_interface_"$KEY"
 
91
            "$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" enable_network \
 
92
                "$NETWORK" | sed -e '/^OK$/d'
 
93
            sleep "${IFDELAY:-$DELAY}" &
 
94
            sleep=$!
 
95
            while :; do
 
96
                kill -0 $sleep 2>/dev/null || break
 
97
                STATE=`"$wpa_cli" -p "$CTRLDIR" -i "$INTERFACE" \
 
98
                    status | sed -n -e 's/^wpa_state=//p'`
 
99
                if [ "$STATE" = COMPLETED ]; then
 
100
                    while :; do
 
101
                        kill -0 $sleep 2>/dev/null || break 2
 
102
                        UP=`cat /sys/class/net/"$INTERFACE"/operstate`
 
103
                        if [ "$UP" = up ]; then
 
104
                            kill $sleep 2>/dev/null
 
105
                            break 2
 
106
                        fi
 
107
                        sleep 1
 
108
                    done
 
109
                fi
 
110
                sleep 1
 
111
            done &
 
112
            wait $sleep || :
 
113
            IPADDRS=`eval 'echo "$IPADDRS_'"$KEY"\"`
 
114
            if [ -n "$IPADDRS" ]; then
 
115
                if [ "$IPADDRS" = dhcp ]; then
 
116
                    ipconfig -c dhcp -d "$INTERFACE" || :
 
117
                    #dhclient "$INTERFACE"
 
118
                else
 
119
                    for ipaddr in $IPADDRS; do
 
120
                        "$ip" addr add "$ipaddr" dev "$INTERFACE"
 
121
                    done
 
122
                fi
 
123
            fi
 
124
            ROUTES=`eval 'echo "$ROUTES_'"$KEY"\"`
 
125
            if [ -n "$ROUTES" ]; then
 
126
                for route in $ROUTES; do
 
127
                    "$ip" route add "$route" dev "$BRIDGE"
 
128
                done
 
129
            fi
 
130
        done
 
131
        ;;
 
132
    stop)
 
133
        "$wpa_cli" -g "$CTRL" terminate 2>&1 | sed -e '/^OK$/d'
 
134
        for KEY in $ifkeys; do
 
135
            ADDRESS=`eval 'echo "$ADDRESS_'"$KEY"\"`
 
136
            INTERFACE=`addrtoif "$ADDRESS"`
 
137
            "$ip" addr show scope global permanent dev "$INTERFACE" \
 
138
                | while read type addr rest; do
137
139
                case "$type" in
138
140
                    inet|inet6)
139
141
                        "$ip" addr del "$addr" dev "$INTERFACE"
140
142
                        ;;
141
143
                esac
142
144
            done
143
 
        "$ip" link set dev "$INTERFACE" down
144
 
    done
145
 
}
146
 
 
147
 
case "${MODE:-$1}" in
148
 
    start|stop)
149
 
        do_"${MODE:-$1}"
 
145
            "$ip" link set dev "$INTERFACE" down
 
146
        done
150
147
        ;;
151
148
    files)
152
149
        echo "$wpa_supplicant"