Wireless Daemon for Linux
 help / color / mirror / Atom feed
From: James Prestwood <prestwoj@gmail.com>
To: iwd@lists.01.org
Subject: [PATCH 2/4] station: support full MAC randomization and override
Date: Thu, 19 Mar 2020 13:03:51 -0700	[thread overview]
Message-ID: <20200319200353.7001-2-prestwoj@gmail.com> (raw)
In-Reply-To: <20200319200353.7001-1-prestwoj@gmail.com>

[-- Attachment #1: Type: text/plain, Size: 2486 bytes --]

This patch adds two new options to a network provisioning file:

FullAddressRandomization={true,false}

If true, IWD will randomize the MAC address on each connection to this
network. The address does not persists between connections, any new
connection will result in a different MAC.

AddressOverride=<MAC>

If set, the MAC address will be set to <MAC> assuming its a valid MAC
address.

These two options cannot be used together, and will only take effect
if [General].AddressRandomization is set to 'network' in the IWD
config file.

If neither of these options are set, and [General].AddressRandomization
is set to 'network', the default behavior remains the same; the MAC
will be generated deterministically on a per-network basis.
---
 src/station.c | 39 +++++++++++++++++++++++++++++++++++++--
 1 file changed, 37 insertions(+), 2 deletions(-)

diff --git a/src/station.c b/src/station.c
index 1b9a204c..d16f126f 100644
--- a/src/station.c
+++ b/src/station.c
@@ -940,9 +940,44 @@ static struct handshake_state *station_handshake_setup(struct station *station,
 						"AddressRandomization");
 	if (addr_setting && !strcmp(addr_setting, "network")) {
 		uint8_t new_addr[6];
+		const char *value;
+		bool full_random;
+		bool override = false;
+
+		/*
+		 * A value of 'network' could be one of three scenarios:
+		 * 1. per-network MAC generation (default)
+		 * 2. per-network full MAC randomization
+		 * 3. per-network MAC override
+		 */
+
+		if (!l_settings_get_bool(settings, "Settings",
+						"FullAddressRandomization",
+						&full_random))
+			full_random = false;
+
+		value = l_settings_get_value(settings, "Settings",
+						"AddressOverride");
+		if (value)
+			override = true;
+
+		if (override && full_random) {
+			l_error("Cannot use both FullAddressRandomization and "
+				"AddressOverride concurrently");
+			goto not_supported;
+		}
+
+		if (override) {
+			if (!util_string_to_address(value, new_addr)) {
+				l_error("[Network].AddressOverride is not a "
+					"valid MAC address");
+				goto not_supported;
+			}
+		} else if (full_random)
+			wiphy_generate_random_address(wiphy, new_addr);
+		else
+			wiphy_generate_address_from_ssid(wiphy, ssid, new_addr);
 
-		wiphy_generate_address_from_ssid(wiphy, (const char *)bss->ssid,
-							new_addr);
 		handshake_state_set_supplicant_address(hs, new_addr);
 	} else
 		handshake_state_set_supplicant_address(hs,
-- 
2.21.1

  reply	other threads:[~2020-03-19 20:03 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2020-03-19 20:03 [PATCH 1/4] netdev: move address generation into station James Prestwood
2020-03-19 20:03 ` James Prestwood [this message]
2020-03-19 20:03 ` [PATCH 3/4] doc: document FullAddressRandomization and AddressOverride James Prestwood
2020-03-19 20:03 ` [PATCH 4/4] auto-t: add test for AddressRandomization option James Prestwood

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20200319200353.7001-2-prestwoj@gmail.com \
    --to=prestwoj@gmail.com \
    --cc=iwd@lists.01.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox