gatt.c 26 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247
  1. // SPDX-License-Identifier: GPL-2.0-or-later
  2. /*
  3. *
  4. * BlueZ - Bluetooth protocol stack for Linux
  5. *
  6. * Copyright (C) 2010 Nokia Corporation
  7. * Copyright (C) 2010 Marcel Holtmann <marcel@holtmann.org>
  8. *
  9. *
  10. */
  11. #ifdef HAVE_CONFIG_H
  12. #include <config.h>
  13. #endif
  14. #include <stdint.h>
  15. #include <stdlib.h>
  16. #include <glib.h>
  17. #include "lib/sdp.h"
  18. #include "lib/sdp_lib.h"
  19. #include "lib/uuid.h"
  20. #include "src/shared/util.h"
  21. #include "att.h"
  22. #include "gattrib.h"
  23. #include "gatt.h"
  24. struct discover_primary {
  25. int ref;
  26. GAttrib *attrib;
  27. unsigned int id;
  28. bt_uuid_t uuid;
  29. uint16_t start;
  30. GSList *primaries;
  31. gatt_cb_t cb;
  32. void *user_data;
  33. };
  34. /* Used for the Included Services Discovery (ISD) procedure */
  35. struct included_discovery {
  36. GAttrib *attrib;
  37. unsigned int id;
  38. int refs;
  39. int err;
  40. uint16_t start_handle;
  41. uint16_t end_handle;
  42. GSList *includes;
  43. gatt_cb_t cb;
  44. void *user_data;
  45. };
  46. struct included_uuid_query {
  47. struct included_discovery *isd;
  48. struct gatt_included *included;
  49. };
  50. struct discover_char {
  51. int ref;
  52. GAttrib *attrib;
  53. unsigned int id;
  54. bt_uuid_t *uuid;
  55. uint16_t end;
  56. uint16_t start;
  57. GSList *characteristics;
  58. gatt_cb_t cb;
  59. void *user_data;
  60. };
  61. struct discover_desc {
  62. int ref;
  63. GAttrib *attrib;
  64. unsigned int id;
  65. bt_uuid_t *uuid;
  66. uint16_t start;
  67. uint16_t end;
  68. GSList *descriptors;
  69. gatt_cb_t cb;
  70. void *user_data;
  71. };
  72. static void discover_primary_unref(void *data)
  73. {
  74. struct discover_primary *dp = data;
  75. dp->ref--;
  76. if (dp->ref > 0)
  77. return;
  78. g_slist_free_full(dp->primaries, g_free);
  79. g_attrib_unref(dp->attrib);
  80. g_free(dp);
  81. }
  82. static struct discover_primary *discover_primary_ref(
  83. struct discover_primary *dp)
  84. {
  85. dp->ref++;
  86. return dp;
  87. }
  88. static struct included_discovery *isd_ref(struct included_discovery *isd)
  89. {
  90. __sync_fetch_and_add(&isd->refs, 1);
  91. return isd;
  92. }
  93. static void isd_unref(struct included_discovery *isd)
  94. {
  95. if (__sync_sub_and_fetch(&isd->refs, 1) > 0)
  96. return;
  97. if (isd->err)
  98. isd->cb(isd->err, NULL, isd->user_data);
  99. else
  100. isd->cb(isd->err, isd->includes, isd->user_data);
  101. g_slist_free_full(isd->includes, g_free);
  102. g_attrib_unref(isd->attrib);
  103. g_free(isd);
  104. }
  105. static void discover_char_unref(void *data)
  106. {
  107. struct discover_char *dc = data;
  108. dc->ref--;
  109. if (dc->ref > 0)
  110. return;
  111. g_slist_free_full(dc->characteristics, g_free);
  112. g_attrib_unref(dc->attrib);
  113. g_free(dc->uuid);
  114. g_free(dc);
  115. }
  116. static struct discover_char *discover_char_ref(struct discover_char *dc)
  117. {
  118. dc->ref++;
  119. return dc;
  120. }
  121. static void discover_desc_unref(void *data)
  122. {
  123. struct discover_desc *dd = data;
  124. dd->ref--;
  125. if (dd->ref > 0)
  126. return;
  127. g_slist_free_full(dd->descriptors, g_free);
  128. g_attrib_unref(dd->attrib);
  129. g_free(dd->uuid);
  130. g_free(dd);
  131. }
  132. static struct discover_desc *discover_desc_ref(struct discover_desc *dd)
  133. {
  134. dd->ref++;
  135. return dd;
  136. }
  137. static void put_uuid_le(const bt_uuid_t *uuid, void *dst)
  138. {
  139. if (uuid->type == BT_UUID16)
  140. put_le16(uuid->value.u16, dst);
  141. else
  142. /* Convert from 128-bit BE to LE */
  143. bswap_128(&uuid->value.u128, dst);
  144. }
  145. static void get_uuid128(uint8_t type, const void *val, bt_uuid_t *uuid)
  146. {
  147. if (type == BT_UUID16) {
  148. bt_uuid_t uuid16;
  149. bt_uuid16_create(&uuid16, get_le16(val));
  150. bt_uuid_to_uuid128(&uuid16, uuid);
  151. } else {
  152. uint128_t u128;
  153. /* Convert from 128-bit LE to BE */
  154. bswap_128(val, &u128);
  155. bt_uuid128_create(uuid, u128);
  156. }
  157. }
  158. static guint16 encode_discover_primary(uint16_t start, uint16_t end,
  159. bt_uuid_t *uuid, uint8_t *pdu, size_t len)
  160. {
  161. bt_uuid_t prim;
  162. guint16 plen;
  163. bt_uuid16_create(&prim, GATT_PRIM_SVC_UUID);
  164. if (uuid == NULL) {
  165. /* Discover all primary services */
  166. plen = enc_read_by_grp_req(start, end, &prim, pdu, len);
  167. } else {
  168. uint8_t value[16];
  169. size_t vlen;
  170. /* Discover primary service by service UUID */
  171. put_uuid_le(uuid, value);
  172. vlen = bt_uuid_len(uuid);
  173. plen = enc_find_by_type_req(start, end, &prim, value, vlen,
  174. pdu, len);
  175. }
  176. return plen;
  177. }
  178. static void primary_by_uuid_cb(guint8 status, const guint8 *ipdu,
  179. guint16 iplen, gpointer user_data)
  180. {
  181. struct discover_primary *dp = user_data;
  182. GSList *ranges, *last;
  183. struct att_range *range;
  184. uint8_t *buf;
  185. guint16 oplen;
  186. int err = 0;
  187. size_t buflen;
  188. if (status) {
  189. err = status == ATT_ECODE_ATTR_NOT_FOUND ? 0 : status;
  190. goto done;
  191. }
  192. ranges = dec_find_by_type_resp(ipdu, iplen);
  193. if (ranges == NULL)
  194. goto done;
  195. dp->primaries = g_slist_concat(dp->primaries, ranges);
  196. last = g_slist_last(ranges);
  197. range = last->data;
  198. if (range->end == 0xffff)
  199. goto done;
  200. /*
  201. * If last handle is lower from previous start handle then it is smth
  202. * wrong. Let's stop search, otherwise we might enter infinite loop.
  203. */
  204. if (range->end < dp->start) {
  205. err = ATT_ECODE_UNLIKELY;
  206. goto done;
  207. }
  208. dp->start = range->end + 1;
  209. buf = g_attrib_get_buffer(dp->attrib, &buflen);
  210. oplen = encode_discover_primary(dp->start, 0xffff, &dp->uuid,
  211. buf, buflen);
  212. if (oplen == 0)
  213. goto done;
  214. g_attrib_send(dp->attrib, dp->id, buf, oplen, primary_by_uuid_cb,
  215. discover_primary_ref(dp), discover_primary_unref);
  216. return;
  217. done:
  218. dp->cb(err, dp->primaries, dp->user_data);
  219. }
  220. static void primary_all_cb(guint8 status, const guint8 *ipdu, guint16 iplen,
  221. gpointer user_data)
  222. {
  223. struct discover_primary *dp = user_data;
  224. struct att_data_list *list;
  225. unsigned int i, err;
  226. uint16_t start, end;
  227. uint8_t type;
  228. if (status) {
  229. err = status == ATT_ECODE_ATTR_NOT_FOUND ? 0 : status;
  230. goto done;
  231. }
  232. list = dec_read_by_grp_resp(ipdu, iplen);
  233. if (list == NULL) {
  234. err = ATT_ECODE_IO;
  235. goto done;
  236. }
  237. if (list->len == 6)
  238. type = BT_UUID16;
  239. else if (list->len == 20)
  240. type = BT_UUID128;
  241. else {
  242. att_data_list_free(list);
  243. err = ATT_ECODE_INVALID_PDU;
  244. goto done;
  245. }
  246. for (i = 0, end = 0; i < list->num; i++) {
  247. const uint8_t *data = list->data[i];
  248. struct gatt_primary *primary;
  249. bt_uuid_t uuid128;
  250. start = get_le16(&data[0]);
  251. end = get_le16(&data[2]);
  252. get_uuid128(type, &data[4], &uuid128);
  253. primary = g_try_new0(struct gatt_primary, 1);
  254. if (!primary) {
  255. att_data_list_free(list);
  256. err = ATT_ECODE_INSUFF_RESOURCES;
  257. goto done;
  258. }
  259. primary->range.start = start;
  260. primary->range.end = end;
  261. bt_uuid_to_string(&uuid128, primary->uuid, sizeof(primary->uuid));
  262. dp->primaries = g_slist_append(dp->primaries, primary);
  263. }
  264. att_data_list_free(list);
  265. err = 0;
  266. /*
  267. * If last handle is lower from previous start handle then it is smth
  268. * wrong. Let's stop search, otherwise we might enter infinite loop.
  269. */
  270. if (end < dp->start) {
  271. err = ATT_ECODE_UNLIKELY;
  272. goto done;
  273. }
  274. dp->start = end + 1;
  275. if (end != 0xffff) {
  276. size_t buflen;
  277. uint8_t *buf = g_attrib_get_buffer(dp->attrib, &buflen);
  278. guint16 oplen = encode_discover_primary(dp->start, 0xffff, NULL,
  279. buf, buflen);
  280. g_attrib_send(dp->attrib, dp->id, buf, oplen, primary_all_cb,
  281. discover_primary_ref(dp),
  282. discover_primary_unref);
  283. return;
  284. }
  285. done:
  286. dp->cb(err, dp->primaries, dp->user_data);
  287. }
  288. guint gatt_discover_primary(GAttrib *attrib, bt_uuid_t *uuid, gatt_cb_t func,
  289. gpointer user_data)
  290. {
  291. struct discover_primary *dp;
  292. size_t buflen;
  293. uint8_t *buf = g_attrib_get_buffer(attrib, &buflen);
  294. GAttribResultFunc cb;
  295. guint16 plen;
  296. plen = encode_discover_primary(0x0001, 0xffff, uuid, buf, buflen);
  297. if (plen == 0)
  298. return 0;
  299. dp = g_try_new0(struct discover_primary, 1);
  300. if (dp == NULL)
  301. return 0;
  302. dp->attrib = g_attrib_ref(attrib);
  303. dp->cb = func;
  304. dp->user_data = user_data;
  305. dp->start = 0x0001;
  306. if (uuid) {
  307. dp->uuid = *uuid;
  308. cb = primary_by_uuid_cb;
  309. } else
  310. cb = primary_all_cb;
  311. dp->id = g_attrib_send(attrib, 0, buf, plen, cb,
  312. discover_primary_ref(dp),
  313. discover_primary_unref);
  314. return dp->id;
  315. }
  316. static void resolve_included_uuid_cb(uint8_t status, const uint8_t *pdu,
  317. uint16_t len, gpointer user_data)
  318. {
  319. struct included_uuid_query *query = user_data;
  320. struct included_discovery *isd = query->isd;
  321. struct gatt_included *incl = query->included;
  322. unsigned int err = status;
  323. bt_uuid_t uuid128;
  324. size_t buflen;
  325. uint8_t *buf;
  326. if (err)
  327. goto done;
  328. buf = g_attrib_get_buffer(isd->attrib, &buflen);
  329. if (dec_read_resp(pdu, len, buf, buflen) != 16) {
  330. err = ATT_ECODE_IO;
  331. goto done;
  332. }
  333. get_uuid128(BT_UUID128, buf, &uuid128);
  334. bt_uuid_to_string(&uuid128, incl->uuid, sizeof(incl->uuid));
  335. isd->includes = g_slist_append(isd->includes, incl);
  336. query->included = NULL;
  337. done:
  338. if (isd->err == 0)
  339. isd->err = err;
  340. }
  341. static void inc_query_free(void *data)
  342. {
  343. struct included_uuid_query *query = data;
  344. isd_unref(query->isd);
  345. g_free(query->included);
  346. g_free(query);
  347. }
  348. static guint resolve_included_uuid(struct included_discovery *isd,
  349. struct gatt_included *incl)
  350. {
  351. struct included_uuid_query *query;
  352. size_t buflen;
  353. uint8_t *buf = g_attrib_get_buffer(isd->attrib, &buflen);
  354. guint16 oplen = enc_read_req(incl->range.start, buf, buflen);
  355. query = g_new0(struct included_uuid_query, 1);
  356. query->isd = isd_ref(isd);
  357. query->included = incl;
  358. return g_attrib_send(isd->attrib, query->isd->id, buf, oplen,
  359. resolve_included_uuid_cb, query,
  360. inc_query_free);
  361. }
  362. static struct gatt_included *included_from_buf(const uint8_t *buf, gsize len)
  363. {
  364. struct gatt_included *incl = g_new0(struct gatt_included, 1);
  365. incl->handle = get_le16(&buf[0]);
  366. incl->range.start = get_le16(&buf[2]);
  367. incl->range.end = get_le16(&buf[4]);
  368. if (len == 8) {
  369. bt_uuid_t uuid128;
  370. get_uuid128(BT_UUID16, &buf[6], &uuid128);
  371. bt_uuid_to_string(&uuid128, incl->uuid, sizeof(incl->uuid));
  372. }
  373. return incl;
  374. }
  375. static void find_included_cb(uint8_t status, const uint8_t *pdu, uint16_t len,
  376. gpointer user_data);
  377. static guint find_included(struct included_discovery *isd, uint16_t start)
  378. {
  379. bt_uuid_t uuid;
  380. size_t buflen;
  381. uint8_t *buf = g_attrib_get_buffer(isd->attrib, &buflen);
  382. guint16 oplen;
  383. bt_uuid16_create(&uuid, GATT_INCLUDE_UUID);
  384. oplen = enc_read_by_type_req(start, isd->end_handle, &uuid,
  385. buf, buflen);
  386. /* If id != 0 it means we are in the middle of include search */
  387. if (isd->id)
  388. return g_attrib_send(isd->attrib, isd->id, buf, oplen,
  389. find_included_cb, isd_ref(isd),
  390. (GDestroyNotify) isd_unref);
  391. /* This is first call from the gattrib user */
  392. isd->id = g_attrib_send(isd->attrib, 0, buf, oplen, find_included_cb,
  393. isd_ref(isd), (GDestroyNotify) isd_unref);
  394. return isd->id;
  395. }
  396. static void find_included_cb(uint8_t status, const uint8_t *pdu, uint16_t len,
  397. gpointer user_data)
  398. {
  399. struct included_discovery *isd = user_data;
  400. uint16_t last_handle = isd->end_handle;
  401. unsigned int err = status;
  402. struct att_data_list *list;
  403. int i;
  404. if (err == ATT_ECODE_ATTR_NOT_FOUND)
  405. err = 0;
  406. if (status)
  407. goto done;
  408. list = dec_read_by_type_resp(pdu, len);
  409. if (list == NULL) {
  410. err = ATT_ECODE_IO;
  411. goto done;
  412. }
  413. if (list->len != 6 && list->len != 8) {
  414. err = ATT_ECODE_IO;
  415. att_data_list_free(list);
  416. goto done;
  417. }
  418. for (i = 0; i < list->num; i++) {
  419. struct gatt_included *incl;
  420. incl = included_from_buf(list->data[i], list->len);
  421. last_handle = incl->handle;
  422. /* 128 bit UUID, needs resolving */
  423. if (list->len == 6) {
  424. resolve_included_uuid(isd, incl);
  425. continue;
  426. }
  427. isd->includes = g_slist_append(isd->includes, incl);
  428. }
  429. att_data_list_free(list);
  430. /*
  431. * If last handle is lower from previous start handle then it is smth
  432. * wrong. Let's stop search, otherwise we might enter infinite loop.
  433. */
  434. if (last_handle < isd->start_handle) {
  435. isd->err = ATT_ECODE_UNLIKELY;
  436. goto done;
  437. }
  438. isd->start_handle = last_handle + 1;
  439. if (last_handle < isd->end_handle)
  440. find_included(isd, isd->start_handle);
  441. done:
  442. if (isd->err == 0)
  443. isd->err = err;
  444. }
  445. unsigned int gatt_find_included(GAttrib *attrib, uint16_t start, uint16_t end,
  446. gatt_cb_t func, gpointer user_data)
  447. {
  448. struct included_discovery *isd;
  449. isd = g_new0(struct included_discovery, 1);
  450. isd->attrib = g_attrib_ref(attrib);
  451. isd->start_handle = start;
  452. isd->end_handle = end;
  453. isd->cb = func;
  454. isd->user_data = user_data;
  455. return find_included(isd, start);
  456. }
  457. static void char_discovered_cb(guint8 status, const guint8 *ipdu, guint16 iplen,
  458. gpointer user_data)
  459. {
  460. struct discover_char *dc = user_data;
  461. struct att_data_list *list;
  462. unsigned int i, err = 0;
  463. uint16_t last = 0;
  464. uint8_t type;
  465. /* We have all the characteristic now, lets send it up */
  466. if (status == ATT_ECODE_ATTR_NOT_FOUND) {
  467. err = dc->characteristics ? 0 : status;
  468. goto done;
  469. }
  470. if (status) {
  471. err = status;
  472. goto done;
  473. }
  474. list = dec_read_by_type_resp(ipdu, iplen);
  475. if (list == NULL) {
  476. err = ATT_ECODE_IO;
  477. goto done;
  478. }
  479. if (list->len == 7)
  480. type = BT_UUID16;
  481. else
  482. type = BT_UUID128;
  483. for (i = 0; i < list->num; i++) {
  484. uint8_t *value = list->data[i];
  485. struct gatt_char *chars;
  486. bt_uuid_t uuid128;
  487. last = get_le16(value);
  488. get_uuid128(type, &value[5], &uuid128);
  489. if (dc->uuid && bt_uuid_cmp(dc->uuid, &uuid128))
  490. continue;
  491. chars = g_try_new0(struct gatt_char, 1);
  492. if (!chars) {
  493. att_data_list_free(list);
  494. err = ATT_ECODE_INSUFF_RESOURCES;
  495. goto done;
  496. }
  497. chars->handle = last;
  498. chars->properties = value[2];
  499. chars->value_handle = get_le16(&value[3]);
  500. bt_uuid_to_string(&uuid128, chars->uuid, sizeof(chars->uuid));
  501. dc->characteristics = g_slist_append(dc->characteristics,
  502. chars);
  503. }
  504. att_data_list_free(list);
  505. /*
  506. * If last handle is lower from previous start handle then it is smth
  507. * wrong. Let's stop search, otherwise we might enter infinite loop.
  508. */
  509. if (last < dc->start) {
  510. err = ATT_ECODE_UNLIKELY;
  511. goto done;
  512. }
  513. dc->start = last + 1;
  514. if (last != 0 && (dc->start < dc->end)) {
  515. bt_uuid_t uuid;
  516. guint16 oplen;
  517. size_t buflen;
  518. uint8_t *buf;
  519. buf = g_attrib_get_buffer(dc->attrib, &buflen);
  520. bt_uuid16_create(&uuid, GATT_CHARAC_UUID);
  521. oplen = enc_read_by_type_req(dc->start, dc->end, &uuid, buf,
  522. buflen);
  523. if (oplen == 0)
  524. return;
  525. g_attrib_send(dc->attrib, dc->id, buf, oplen,
  526. char_discovered_cb, discover_char_ref(dc),
  527. discover_char_unref);
  528. return;
  529. }
  530. done:
  531. dc->cb(err, dc->characteristics, dc->user_data);
  532. }
  533. guint gatt_discover_char(GAttrib *attrib, uint16_t start, uint16_t end,
  534. bt_uuid_t *uuid, gatt_cb_t func,
  535. gpointer user_data)
  536. {
  537. size_t buflen;
  538. uint8_t *buf = g_attrib_get_buffer(attrib, &buflen);
  539. struct discover_char *dc;
  540. bt_uuid_t type_uuid;
  541. guint16 plen;
  542. bt_uuid16_create(&type_uuid, GATT_CHARAC_UUID);
  543. plen = enc_read_by_type_req(start, end, &type_uuid, buf, buflen);
  544. if (plen == 0)
  545. return 0;
  546. dc = g_try_new0(struct discover_char, 1);
  547. if (dc == NULL)
  548. return 0;
  549. dc->attrib = g_attrib_ref(attrib);
  550. dc->cb = func;
  551. dc->user_data = user_data;
  552. dc->end = end;
  553. dc->start = start;
  554. dc->uuid = g_memdup(uuid, sizeof(bt_uuid_t));
  555. dc->id = g_attrib_send(attrib, 0, buf, plen, char_discovered_cb,
  556. discover_char_ref(dc), discover_char_unref);
  557. return dc->id;
  558. }
  559. guint gatt_read_char_by_uuid(GAttrib *attrib, uint16_t start, uint16_t end,
  560. bt_uuid_t *uuid, GAttribResultFunc func,
  561. gpointer user_data)
  562. {
  563. size_t buflen;
  564. uint8_t *buf = g_attrib_get_buffer(attrib, &buflen);
  565. guint16 plen;
  566. plen = enc_read_by_type_req(start, end, uuid, buf, buflen);
  567. if (plen == 0)
  568. return 0;
  569. return g_attrib_send(attrib, 0, buf, plen, func, user_data, NULL);
  570. }
  571. struct read_long_data {
  572. GAttrib *attrib;
  573. GAttribResultFunc func;
  574. gpointer user_data;
  575. guint8 *buffer;
  576. guint16 size;
  577. guint16 handle;
  578. guint id;
  579. int ref;
  580. };
  581. static void read_long_destroy(gpointer user_data)
  582. {
  583. struct read_long_data *long_read = user_data;
  584. if (__sync_sub_and_fetch(&long_read->ref, 1) > 0)
  585. return;
  586. g_attrib_unref(long_read->attrib);
  587. if (long_read->buffer != NULL)
  588. g_free(long_read->buffer);
  589. g_free(long_read);
  590. }
  591. static void read_blob_helper(guint8 status, const guint8 *rpdu, guint16 rlen,
  592. gpointer user_data)
  593. {
  594. struct read_long_data *long_read = user_data;
  595. uint8_t *buf;
  596. size_t buflen;
  597. guint8 *tmp;
  598. guint16 plen;
  599. guint id;
  600. if (status != 0 || rlen == 1) {
  601. status = 0;
  602. goto done;
  603. }
  604. tmp = g_try_realloc(long_read->buffer, long_read->size + rlen - 1);
  605. if (tmp == NULL) {
  606. status = ATT_ECODE_INSUFF_RESOURCES;
  607. goto done;
  608. }
  609. memcpy(&tmp[long_read->size], &rpdu[1], rlen - 1);
  610. long_read->buffer = tmp;
  611. long_read->size += rlen - 1;
  612. buf = g_attrib_get_buffer(long_read->attrib, &buflen);
  613. if (rlen < buflen)
  614. goto done;
  615. plen = enc_read_blob_req(long_read->handle, long_read->size - 1,
  616. buf, buflen);
  617. id = g_attrib_send(long_read->attrib, long_read->id, buf, plen,
  618. read_blob_helper, long_read, read_long_destroy);
  619. if (id != 0) {
  620. __sync_fetch_and_add(&long_read->ref, 1);
  621. return;
  622. }
  623. status = ATT_ECODE_IO;
  624. done:
  625. long_read->func(status, long_read->buffer, long_read->size,
  626. long_read->user_data);
  627. }
  628. static void read_char_helper(guint8 status, const guint8 *rpdu,
  629. guint16 rlen, gpointer user_data)
  630. {
  631. struct read_long_data *long_read = user_data;
  632. size_t buflen;
  633. uint8_t *buf = g_attrib_get_buffer(long_read->attrib, &buflen);
  634. guint16 plen;
  635. guint id;
  636. if (status != 0 || rlen < buflen)
  637. goto done;
  638. long_read->buffer = g_malloc(rlen);
  639. if (long_read->buffer == NULL) {
  640. status = ATT_ECODE_INSUFF_RESOURCES;
  641. goto done;
  642. }
  643. memcpy(long_read->buffer, rpdu, rlen);
  644. long_read->size = rlen;
  645. plen = enc_read_blob_req(long_read->handle, rlen - 1, buf, buflen);
  646. id = g_attrib_send(long_read->attrib, long_read->id, buf, plen,
  647. read_blob_helper, long_read, read_long_destroy);
  648. if (id != 0) {
  649. __sync_fetch_and_add(&long_read->ref, 1);
  650. return;
  651. }
  652. status = ATT_ECODE_IO;
  653. done:
  654. long_read->func(status, rpdu, rlen, long_read->user_data);
  655. }
  656. guint gatt_read_char(GAttrib *attrib, uint16_t handle, GAttribResultFunc func,
  657. gpointer user_data)
  658. {
  659. uint8_t *buf;
  660. size_t buflen;
  661. guint16 plen;
  662. guint id;
  663. struct read_long_data *long_read;
  664. long_read = g_try_new0(struct read_long_data, 1);
  665. if (long_read == NULL)
  666. return 0;
  667. long_read->attrib = g_attrib_ref(attrib);
  668. long_read->func = func;
  669. long_read->user_data = user_data;
  670. long_read->handle = handle;
  671. buf = g_attrib_get_buffer(attrib, &buflen);
  672. plen = enc_read_req(handle, buf, buflen);
  673. id = g_attrib_send(attrib, 0, buf, plen, read_char_helper,
  674. long_read, read_long_destroy);
  675. if (id == 0) {
  676. g_attrib_unref(long_read->attrib);
  677. g_free(long_read);
  678. } else {
  679. __sync_fetch_and_add(&long_read->ref, 1);
  680. long_read->id = id;
  681. }
  682. return id;
  683. }
  684. struct write_long_data {
  685. GAttrib *attrib;
  686. GAttribResultFunc func;
  687. gpointer user_data;
  688. guint16 handle;
  689. uint16_t offset;
  690. uint8_t *value;
  691. size_t vlen;
  692. };
  693. static guint execute_write(GAttrib *attrib, uint8_t flags,
  694. GAttribResultFunc func, gpointer user_data)
  695. {
  696. uint8_t *buf;
  697. size_t buflen;
  698. guint16 plen;
  699. buf = g_attrib_get_buffer(attrib, &buflen);
  700. plen = enc_exec_write_req(flags, buf, buflen);
  701. if (plen == 0)
  702. return 0;
  703. return g_attrib_send(attrib, 0, buf, plen, func, user_data, NULL);
  704. }
  705. static guint prepare_write(struct write_long_data *long_write);
  706. static void prepare_write_cb(guint8 status, const guint8 *rpdu, guint16 rlen,
  707. gpointer user_data)
  708. {
  709. struct write_long_data *long_write = user_data;
  710. if (status != 0) {
  711. long_write->func(status, rpdu, rlen, long_write->user_data);
  712. return;
  713. }
  714. /* Skip Prepare Write Response PDU header (5 bytes) */
  715. long_write->offset += rlen - 5;
  716. if (long_write->offset == long_write->vlen) {
  717. execute_write(long_write->attrib, ATT_WRITE_ALL_PREP_WRITES,
  718. long_write->func, long_write->user_data);
  719. g_free(long_write->value);
  720. g_free(long_write);
  721. return;
  722. }
  723. prepare_write(long_write);
  724. }
  725. static guint prepare_write(struct write_long_data *long_write)
  726. {
  727. GAttrib *attrib = long_write->attrib;
  728. uint16_t handle = long_write->handle;
  729. uint16_t offset = long_write->offset;
  730. uint8_t *buf, *value = long_write->value + offset;
  731. size_t buflen, vlen = long_write->vlen - offset;
  732. guint16 plen;
  733. buf = g_attrib_get_buffer(attrib, &buflen);
  734. plen = enc_prep_write_req(handle, offset, value, vlen, buf, buflen);
  735. if (plen == 0)
  736. return 0;
  737. return g_attrib_send(attrib, 0, buf, plen, prepare_write_cb, long_write,
  738. NULL);
  739. }
  740. guint gatt_write_char(GAttrib *attrib, uint16_t handle, const uint8_t *value,
  741. size_t vlen, GAttribResultFunc func, gpointer user_data)
  742. {
  743. uint8_t *buf;
  744. size_t buflen;
  745. struct write_long_data *long_write;
  746. buf = g_attrib_get_buffer(attrib, &buflen);
  747. /* Use Write Request if payload fits on a single transfer, including 3
  748. * bytes for the header. */
  749. if (vlen <= buflen - 3) {
  750. uint16_t plen;
  751. plen = enc_write_req(handle, value, vlen, buf, buflen);
  752. if (plen == 0)
  753. return 0;
  754. return g_attrib_send(attrib, 0, buf, plen, func, user_data,
  755. NULL);
  756. }
  757. /* Write Long Characteristic Values */
  758. long_write = g_try_new0(struct write_long_data, 1);
  759. if (long_write == NULL)
  760. return 0;
  761. long_write->attrib = attrib;
  762. long_write->func = func;
  763. long_write->user_data = user_data;
  764. long_write->handle = handle;
  765. long_write->value = g_memdup(value, vlen);
  766. long_write->vlen = vlen;
  767. return prepare_write(long_write);
  768. }
  769. guint gatt_execute_write(GAttrib *attrib, uint8_t flags,
  770. GAttribResultFunc func, gpointer user_data)
  771. {
  772. return execute_write(attrib, flags, func, user_data);
  773. }
  774. guint gatt_reliable_write_char(GAttrib *attrib, uint16_t handle,
  775. const uint8_t *value, size_t vlen,
  776. GAttribResultFunc func,
  777. gpointer user_data)
  778. {
  779. uint8_t *buf;
  780. guint16 plen;
  781. size_t buflen;
  782. buf = g_attrib_get_buffer(attrib, &buflen);
  783. plen = enc_prep_write_req(handle, 0, value, vlen, buf, buflen);
  784. if (!plen)
  785. return 0;
  786. return g_attrib_send(attrib, 0, buf, plen, func, user_data, NULL);
  787. }
  788. guint gatt_exchange_mtu(GAttrib *attrib, uint16_t mtu, GAttribResultFunc func,
  789. gpointer user_data)
  790. {
  791. uint8_t *buf;
  792. size_t buflen;
  793. guint16 plen;
  794. buf = g_attrib_get_buffer(attrib, &buflen);
  795. plen = enc_mtu_req(mtu, buf, buflen);
  796. return g_attrib_send(attrib, 0, buf, plen, func, user_data, NULL);
  797. }
  798. static void desc_discovered_cb(guint8 status, const guint8 *ipdu,
  799. guint16 iplen, gpointer user_data)
  800. {
  801. struct discover_desc *dd = user_data;
  802. struct att_data_list *list;
  803. unsigned int i, err = 0;
  804. guint8 format;
  805. uint16_t last = 0xffff;
  806. uint8_t type;
  807. gboolean uuid_found = FALSE;
  808. if (status == ATT_ECODE_ATTR_NOT_FOUND) {
  809. err = dd->descriptors ? 0 : status;
  810. goto done;
  811. }
  812. if (status) {
  813. err = status;
  814. goto done;
  815. }
  816. list = dec_find_info_resp(ipdu, iplen, &format);
  817. if (!list) {
  818. err = ATT_ECODE_IO;
  819. goto done;
  820. }
  821. if (format == ATT_FIND_INFO_RESP_FMT_16BIT)
  822. type = BT_UUID16;
  823. else
  824. type = BT_UUID128;
  825. for (i = 0; i < list->num; i++) {
  826. uint8_t *value = list->data[i];
  827. struct gatt_desc *desc;
  828. bt_uuid_t uuid128;
  829. last = get_le16(value);
  830. get_uuid128(type, &value[2], &uuid128);
  831. if (dd->uuid) {
  832. if (bt_uuid_cmp(dd->uuid, &uuid128))
  833. continue;
  834. else
  835. uuid_found = TRUE;
  836. }
  837. desc = g_try_new0(struct gatt_desc, 1);
  838. if (!desc) {
  839. att_data_list_free(list);
  840. err = ATT_ECODE_INSUFF_RESOURCES;
  841. goto done;
  842. }
  843. bt_uuid_to_string(&uuid128, desc->uuid, sizeof(desc->uuid));
  844. desc->handle = last;
  845. if (type == BT_UUID16)
  846. desc->uuid16 = get_le16(&value[2]);
  847. dd->descriptors = g_slist_append(dd->descriptors, desc);
  848. if (uuid_found)
  849. break;
  850. }
  851. att_data_list_free(list);
  852. /*
  853. * If last handle is lower from previous start handle then it is smth
  854. * wrong. Let's stop search, otherwise we might enter infinite loop.
  855. */
  856. if (last < dd->start) {
  857. err = ATT_ECODE_UNLIKELY;
  858. goto done;
  859. }
  860. dd->start = last + 1;
  861. if (last < dd->end && !uuid_found) {
  862. guint16 oplen;
  863. size_t buflen;
  864. uint8_t *buf;
  865. buf = g_attrib_get_buffer(dd->attrib, &buflen);
  866. oplen = enc_find_info_req(dd->start, dd->end, buf, buflen);
  867. if (oplen == 0)
  868. return;
  869. g_attrib_send(dd->attrib, dd->id, buf, oplen,
  870. desc_discovered_cb, discover_desc_ref(dd),
  871. discover_desc_unref);
  872. return;
  873. }
  874. done:
  875. dd->cb(err, dd->descriptors, dd->user_data);
  876. }
  877. guint gatt_discover_desc(GAttrib *attrib, uint16_t start, uint16_t end,
  878. bt_uuid_t *uuid, gatt_cb_t func,
  879. gpointer user_data)
  880. {
  881. size_t buflen;
  882. uint8_t *buf = g_attrib_get_buffer(attrib, &buflen);
  883. struct discover_desc *dd;
  884. guint16 plen;
  885. plen = enc_find_info_req(start, end, buf, buflen);
  886. if (plen == 0)
  887. return 0;
  888. dd = g_try_new0(struct discover_desc, 1);
  889. if (dd == NULL)
  890. return 0;
  891. dd->attrib = g_attrib_ref(attrib);
  892. dd->cb = func;
  893. dd->user_data = user_data;
  894. dd->start = start;
  895. dd->end = end;
  896. dd->uuid = g_memdup(uuid, sizeof(bt_uuid_t));
  897. dd->id = g_attrib_send(attrib, 0, buf, plen, desc_discovered_cb,
  898. discover_desc_ref(dd), discover_desc_unref);
  899. return dd->id;
  900. }
  901. guint gatt_write_cmd(GAttrib *attrib, uint16_t handle, const uint8_t *value,
  902. int vlen, GDestroyNotify notify, gpointer user_data)
  903. {
  904. uint8_t *buf;
  905. size_t buflen;
  906. guint16 plen;
  907. buf = g_attrib_get_buffer(attrib, &buflen);
  908. plen = enc_write_cmd(handle, value, vlen, buf, buflen);
  909. return g_attrib_send(attrib, 0, buf, plen, NULL, user_data, notify);
  910. }
  911. guint gatt_signed_write_cmd(GAttrib *attrib, uint16_t handle,
  912. const uint8_t *value, int vlen,
  913. struct bt_crypto *crypto,
  914. const uint8_t csrk[16],
  915. uint32_t sign_cnt,
  916. GDestroyNotify notify,
  917. gpointer user_data)
  918. {
  919. uint8_t *buf;
  920. size_t buflen;
  921. guint16 plen;
  922. buf = g_attrib_get_buffer(attrib, &buflen);
  923. plen = enc_signed_write_cmd(handle, value, vlen, crypto, csrk, sign_cnt,
  924. buf, buflen);
  925. if (plen == 0)
  926. return 0;
  927. return g_attrib_send(attrib, 0, buf, plen, NULL, user_data, notify);
  928. }
  929. static sdp_data_t *proto_seq_find(sdp_list_t *proto_list)
  930. {
  931. sdp_list_t *list;
  932. uuid_t proto;
  933. sdp_uuid16_create(&proto, ATT_UUID);
  934. for (list = proto_list; list; list = list->next) {
  935. sdp_list_t *p;
  936. for (p = list->data; p; p = p->next) {
  937. sdp_data_t *seq = p->data;
  938. if (seq && seq->dtd == SDP_UUID16 &&
  939. sdp_uuid16_cmp(&proto, &seq->val.uuid) == 0)
  940. return seq->next;
  941. }
  942. }
  943. return NULL;
  944. }
  945. static gboolean parse_proto_params(sdp_list_t *proto_list, uint16_t *psm,
  946. uint16_t *start, uint16_t *end)
  947. {
  948. sdp_data_t *seq1, *seq2;
  949. if (psm)
  950. *psm = sdp_get_proto_port(proto_list, L2CAP_UUID);
  951. /* Getting start and end handle */
  952. seq1 = proto_seq_find(proto_list);
  953. if (!seq1 || seq1->dtd != SDP_UINT16)
  954. return FALSE;
  955. seq2 = seq1->next;
  956. if (!seq2 || seq2->dtd != SDP_UINT16)
  957. return FALSE;
  958. if (start)
  959. *start = seq1->val.uint16;
  960. if (end)
  961. *end = seq2->val.uint16;
  962. return TRUE;
  963. }
  964. gboolean gatt_parse_record(const sdp_record_t *rec,
  965. uuid_t *prim_uuid, uint16_t *psm,
  966. uint16_t *start, uint16_t *end)
  967. {
  968. sdp_list_t *list;
  969. uuid_t uuid;
  970. gboolean ret;
  971. if (sdp_get_service_classes(rec, &list) < 0)
  972. return FALSE;
  973. memcpy(&uuid, list->data, sizeof(uuid));
  974. sdp_list_free(list, free);
  975. if (sdp_get_access_protos(rec, &list) < 0)
  976. return FALSE;
  977. ret = parse_proto_params(list, psm, start, end);
  978. sdp_list_foreach(list, (sdp_list_func_t) sdp_list_free, NULL);
  979. sdp_list_free(list, NULL);
  980. /* FIXME: replace by bt_uuid_t after uuid_t/sdp code cleanup */
  981. if (ret && prim_uuid)
  982. memcpy(prim_uuid, &uuid, sizeof(uuid_t));
  983. return ret;
  984. }