hostapd.sh 2.1 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283
  1. hostapd_setup_vif() {
  2. local vif="$1"
  3. local driver="$2"
  4. local hostapd_cfg=
  5. # Examples:
  6. # psk-mixed/tkip => WPA1+2 PSK, TKIP
  7. # wpa-psk2/tkip+aes => WPA2 PSK, CCMP+TKIP
  8. # wpa2/tkip+aes => WPA2 RADIUS, CCMP+TKIP
  9. # ...
  10. # TODO: move this parsing function somewhere generic, so that
  11. # later it can be reused by drivers that don't use hostapd
  12. # crypto defaults: WPA2 vs WPA1
  13. case "$enc" in
  14. wpa2*|WPA2*|*PSK2*|*psk2*)
  15. wpa=2
  16. crypto="CCMP"
  17. ;;
  18. *mixed*)
  19. wpa=3
  20. crypto="CCMP TKIP"
  21. ;;
  22. *)
  23. wpa=1
  24. crypto="TKIP"
  25. ;;
  26. esac
  27. # explicit override for crypto setting
  28. case "$enc" in
  29. *tkip+aes|*TKIP+AES|*tkip+ccmp|*TKIP+CCMP) crypto="CCMP TKIP";;
  30. *tkip|*TKIP) crypto="TKIP";;
  31. *aes|*AES|*ccmp|*CCMP) crypto="CCMP";;
  32. esac
  33. # use crypto/auth settings for building the hostapd config
  34. case "$enc" in
  35. *psk*|*PSK*)
  36. config_get psk "$vif" key
  37. append hostapd_cfg "wpa_passphrase=$psk" "$N"
  38. ;;
  39. *wpa*|*WPA*)
  40. # required fields? formats?
  41. # hostapd is particular, maybe a default configuration for failures
  42. config_get server "$vif" server
  43. append hostapd_cfg "auth_server_addr=$server" "$N"
  44. config_get port "$vif" port
  45. port=${port:-1812}
  46. append hostapd_cfg "auth_server_port=$port" "$N"
  47. config_get secret "$vif" key
  48. append hostapd_cfg "auth_server_shared_secret=$secret" "$N"
  49. config_get nasid "$vif" nasid
  50. append hostapd_cfg "nas_identifier=$nasid" "$N"
  51. append hostapd_cfg "eapol_key_index_workaround=1" "$N"
  52. append hostapd_cfg "radius_acct_interim_interval=300" "$N"
  53. append hostapd_cfg "ieee8021x=1" "$N"
  54. append hostapd_cfg "auth_algs=1" "$N"
  55. append hostapd_cfg "wpa_key_mgmt=WPA-EAP" "$N"
  56. append hostapd_cfg "wpa_group_rekey=300" "$N"
  57. append hostapd_cfg "wpa_gmk_rekey=640" "$N"
  58. ;;
  59. *)
  60. return 0;
  61. ;;
  62. esac
  63. config_get ifname "$vif" ifname
  64. config_get bridge "$vif" bridge
  65. config_get ssid "$vif" ssid
  66. cat > /var/run/hostapd-$ifname.conf <<EOF
  67. driver=$driver
  68. interface=$ifname
  69. ${bridge:+bridge=$bridge}
  70. ssid=$ssid
  71. debug=0
  72. wpa=$wpa
  73. wpa_pairwise=$crypto
  74. $hostapd_cfg
  75. EOF
  76. hostapd -B /var/run/hostapd-$ifname.conf
  77. }