blob: 76c6e0dd96356bbb41d81f01ed19834fb00350c7 [file] [log] [blame]
Harald Welte52b1f982008-12-23 20:25:15 +00001/* GSM Mobile Radio Interface Layer 3 messages on the A-bis interface
2 * 3GPP TS 04.08 version 7.21.0 Release 1998 / ETSI TS 100 940 V7.21.0 */
3
Harald Weltebf5e8df2009-02-03 12:59:45 +00004/* (C) 2008-2009 by Harald Welte <laforge@gnumonks.org>
Harald Welte498b0bb2009-01-09 21:27:43 +00005 * (C) 2008, 2009 by Holger Hans Peter Freyther <zecke@selfish.org>
Harald Welte8470bf22008-12-25 23:28:35 +00006 *
Harald Welte52b1f982008-12-23 20:25:15 +00007 * All Rights Reserved
8 *
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
13 *
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
18 *
19 * You should have received a copy of the GNU General Public License along
20 * with this program; if not, write to the Free Software Foundation, Inc.,
21 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
22 *
23 */
24
25
26#include <stdio.h>
27#include <stdlib.h>
28#include <string.h>
29#include <errno.h>
Harald Weltedb253af2008-12-30 17:56:55 +000030#include <time.h>
Harald Welte4b634542008-12-27 01:55:51 +000031#include <netinet/in.h>
Harald Welte52b1f982008-12-23 20:25:15 +000032
Harald Welte75a983f2008-12-27 21:34:06 +000033#include <openbsc/db.h>
Harald Welte8470bf22008-12-25 23:28:35 +000034#include <openbsc/msgb.h>
Harald Welte7584aea2009-02-11 11:44:12 +000035#include <openbsc/tlv.h>
Harald Welte8470bf22008-12-25 23:28:35 +000036#include <openbsc/debug.h>
37#include <openbsc/gsm_data.h>
38#include <openbsc/gsm_subscriber.h>
Daniel Willmann8b3390e2008-12-28 00:31:09 +000039#include <openbsc/gsm_04_11.h>
Harald Welte8470bf22008-12-25 23:28:35 +000040#include <openbsc/gsm_04_08.h>
41#include <openbsc/abis_rsl.h>
Holger Freytherca362a62009-01-04 21:05:01 +000042#include <openbsc/chan_alloc.h>
Harald Welte0b4c34e2009-02-09 17:54:43 +000043#include <openbsc/paging.h>
Holger Freyther053e09d2009-02-14 22:51:06 +000044#include <openbsc/signal.h>
Harald Welte45b407a2009-05-23 15:51:12 +000045#include <openbsc/trau_frame.h>
Harald Welte11fa29c2009-02-19 17:24:39 +000046#include <openbsc/trau_mux.h>
Harald Welte2cf161b2009-06-20 22:36:41 +020047#include <openbsc/talloc.h>
Harald Weltedcaf5652009-07-23 18:56:43 +020048#include <openbsc/transaction.h>
Harald Welte52b1f982008-12-23 20:25:15 +000049
Harald Welte8470bf22008-12-25 23:28:35 +000050#define GSM48_ALLOC_SIZE 1024
51#define GSM48_ALLOC_HEADROOM 128
Harald Welte52b1f982008-12-23 20:25:15 +000052
Harald Welte0c389302009-06-10 12:08:54 +080053#define GSM_MAX_FACILITY 128
54#define GSM_MAX_SSVERSION 128
55#define GSM_MAX_USERUSER 128
56
Harald Welte2cf161b2009-06-20 22:36:41 +020057static void *tall_locop_ctx;
Harald Welte2cf161b2009-06-20 22:36:41 +020058
Harald Welte09e38af2009-02-16 22:52:23 +000059static const struct tlv_definition rsl_att_tlvdef = {
60 .def = {
61 [GSM48_IE_MOBILE_ID] = { TLV_TYPE_TLV },
62 [GSM48_IE_NAME_LONG] = { TLV_TYPE_TLV },
63 [GSM48_IE_NAME_SHORT] = { TLV_TYPE_TLV },
64 [GSM48_IE_UTC] = { TLV_TYPE_TV },
65 [GSM48_IE_NET_TIME_TZ] = { TLV_TYPE_FIXED, 7 },
66 [GSM48_IE_LSA_IDENT] = { TLV_TYPE_TLV },
67
68 [GSM48_IE_BEARER_CAP] = { TLV_TYPE_TLV },
69 [GSM48_IE_CAUSE] = { TLV_TYPE_TLV },
70 [GSM48_IE_CC_CAP] = { TLV_TYPE_TLV },
71 [GSM48_IE_ALERT] = { TLV_TYPE_TLV },
72 [GSM48_IE_FACILITY] = { TLV_TYPE_TLV },
73 [GSM48_IE_PROGR_IND] = { TLV_TYPE_TLV },
74 [GSM48_IE_AUX_STATUS] = { TLV_TYPE_TLV },
Harald Welte0c389302009-06-10 12:08:54 +080075 [GSM48_IE_NOTIFY] = { TLV_TYPE_TV },
Harald Welte09e38af2009-02-16 22:52:23 +000076 [GSM48_IE_KPD_FACILITY] = { TLV_TYPE_TV },
77 [GSM48_IE_SIGNAL] = { TLV_TYPE_TV },
Harald Welte0c389302009-06-10 12:08:54 +080078 [GSM48_IE_CONN_BCD] = { TLV_TYPE_TLV },
79 [GSM48_IE_CONN_SUB] = { TLV_TYPE_TLV },
Harald Welte09e38af2009-02-16 22:52:23 +000080 [GSM48_IE_CALLING_BCD] = { TLV_TYPE_TLV },
81 [GSM48_IE_CALLING_SUB] = { TLV_TYPE_TLV },
82 [GSM48_IE_CALLED_BCD] = { TLV_TYPE_TLV },
83 [GSM48_IE_CALLED_SUB] = { TLV_TYPE_TLV },
84 [GSM48_IE_REDIR_BCD] = { TLV_TYPE_TLV },
85 [GSM48_IE_REDIR_SUB] = { TLV_TYPE_TLV },
86 [GSM48_IE_LOWL_COMPAT] = { TLV_TYPE_TLV },
87 [GSM48_IE_HIGHL_COMPAT] = { TLV_TYPE_TLV },
88 [GSM48_IE_USER_USER] = { TLV_TYPE_TLV },
89 [GSM48_IE_SS_VERS] = { TLV_TYPE_TLV },
90 [GSM48_IE_MORE_DATA] = { TLV_TYPE_T },
91 [GSM48_IE_CLIR_SUPP] = { TLV_TYPE_T },
92 [GSM48_IE_CLIR_INVOC] = { TLV_TYPE_T },
93 [GSM48_IE_REV_C_SETUP] = { TLV_TYPE_T },
Harald Welte0c389302009-06-10 12:08:54 +080094 [GSM48_IE_REPEAT_CIR] = { TLV_TYPE_T },
95 [GSM48_IE_REPEAT_SEQ] = { TLV_TYPE_T },
Harald Welte09e38af2009-02-16 22:52:23 +000096 /* FIXME: more elements */
97 },
98};
Harald Weltecf5b3592009-05-01 18:28:42 +000099
100static const char *rr_cause_names[] = {
101 [GSM48_RR_CAUSE_NORMAL] = "Normal event",
102 [GSM48_RR_CAUSE_ABNORMAL_UNSPEC] = "Abnormal release, unspecified",
103 [GSM48_RR_CAUSE_ABNORMAL_UNACCT] = "Abnormal release, channel unacceptable",
104 [GSM48_RR_CAUSE_ABNORMAL_TIMER] = "Abnormal release, timer expired",
105 [GSM48_RR_CAUSE_ABNORMAL_NOACT] = "Abnormal release, no activity on radio path",
106 [GSM48_RR_CAUSE_PREMPTIVE_REL] = "Preemptive release",
107 [GSM48_RR_CAUSE_HNDOVER_IMP] = "Handover impossible, timing advance out of range",
108 [GSM48_RR_CAUSE_CHAN_MODE_UNACCT] = "Channel mode unacceptable",
109 [GSM48_RR_CAUSE_FREQ_NOT_IMPL] = "Frequency not implemented",
110 [GSM48_RR_CAUSE_CALL_CLEARED] = "Call already cleared",
111 [GSM48_RR_CAUSE_SEMANT_INCORR] = "Semantically incorrect message",
112 [GSM48_RR_CAUSE_INVALID_MAND_INF] = "Invalid mandatory information",
113 [GSM48_RR_CAUSE_MSG_TYPE_N] = "Message type non-existant or not implemented",
114 [GSM48_RR_CAUSE_MSG_TYPE_N_COMPAT] = "Message type not compatible with protocol state",
115 [GSM48_RR_CAUSE_COND_IE_ERROR] = "Conditional IE error",
116 [GSM48_RR_CAUSE_NO_CELL_ALLOC_A] = "No cell allocation available",
117 [GSM48_RR_CAUSE_PROT_ERROR_UNSPC] = "Protocol error unspecified",
118};
119
Harald Welte4bfdfe72009-06-10 23:11:52 +0800120static const char *cc_state_names[] = {
121 "NULL",
122 "INITIATED",
123 "illegal state 2",
124 "MO_CALL_PROC",
125 "CALL_DELIVERED",
126 "illegal state 5",
127 "CALL_PRESENT",
128 "CALL_RECEIVED",
129 "CONNECT_REQUEST",
130 "MO_TERM_CALL_CONF",
131 "ACTIVE",
132 "DISCONNECT_REQ",
133 "DISCONNECT_IND",
134 "illegal state 13",
135 "illegal state 14",
136 "illegal state 15",
137 "illegal state 16",
138 "illegal state 17",
139 "illegal state 18",
140 "RELEASE_REQ",
141 "illegal state 20",
142 "illegal state 21",
143 "illegal state 22",
144 "illegal state 23",
145 "illegal state 24",
146 "illegal state 25",
147 "MO_ORIG_MODIFY",
148 "MO_TERM_MODIFY",
149 "CONNECT_IND",
150 "illegal state 29",
151 "illegal state 30",
152 "illegal state 31",
153};
154
155static const char *cc_msg_names[] = {
156 "unknown 0x00",
157 "ALERTING",
158 "CALL_PROC",
159 "PROGRESS",
160 "ESTAB",
161 "SETUP",
162 "ESTAB_CONF",
163 "CONNECT",
164 "CALL_CONF",
165 "START_CC",
166 "unknown 0x0a",
167 "RECALL",
168 "unknown 0x0c",
169 "unknown 0x0d",
170 "EMERG_SETUP",
171 "CONNECT_ACK",
172 "USER_INFO",
173 "unknown 0x11",
174 "unknown 0x12",
175 "MODIFY_REJECT",
176 "unknown 0x14",
177 "unknown 0x15",
178 "unknown 0x16",
179 "MODIFY",
180 "HOLD",
181 "HOLD_ACK",
182 "HOLD_REJ",
183 "unknown 0x1b",
184 "RETR",
185 "RETR_ACK",
186 "RETR_REJ",
187 "MODIFY_COMPL",
188 "unknown 0x20",
189 "unknown 0x21",
190 "unknown 0x22",
191 "unknown 0x23",
192 "unknown 0x24",
193 "DISCONNECT",
194 "unknown 0x26",
195 "unknown 0x27",
196 "unknown 0x28",
197 "unknown 0x29",
198 "RELEASE_COMPL",
199 "unknown 0x2b",
200 "unknown 0x2c",
201 "RELEASE",
202 "unknown 0x2e",
203 "unknown 0x2f",
204 "unknown 0x30",
205 "STOP_DTMF",
206 "STOP_DTMF_ACK",
207 "unknown 0x33",
208 "STATUS_ENQ",
209 "START_DTMF",
210 "START_DTMF_ACK",
211 "START_DTMF_REJ",
212 "unknown 0x38",
213 "CONG_CTRL",
214 "FACILITY",
215 "unknown 0x3b",
216 "STATUS",
217 "unknown 0x3c",
218 "NOTIFY",
219 "unknown 0x3f",
220};
221
Harald Weltecf5b3592009-05-01 18:28:42 +0000222static char strbuf[64];
223
224static const char *rr_cause_name(u_int8_t cause)
225{
226 if (cause < ARRAY_SIZE(rr_cause_names) &&
227 rr_cause_names[cause])
228 return rr_cause_names[cause];
229
230 snprintf(strbuf, sizeof(strbuf), "0x%02x", cause);
231 return strbuf;
232}
233
Harald Weltef7c43522009-06-09 20:24:21 +0000234static void parse_meas_rep(struct gsm_meas_rep *rep, const u_int8_t *data,
235 int len)
236{
237 memset(rep, 0, sizeof(*rep));
238
239 if (data[0] & 0x80)
240 rep->flags |= MEAS_REP_F_BA1;
241 if (data[0] & 0x40)
242 rep->flags |= MEAS_REP_F_DTX;
Harald Welte5a691b52009-07-05 04:05:44 +0200243 if ((data[1] & 0x40) == 0x00)
Harald Weltef7c43522009-06-09 20:24:21 +0000244 rep->flags |= MEAS_REP_F_VALID;
245
246 rep->rxlev_full = data[0] & 0x3f;
247 rep->rxlev_sub = data[1] & 0x3f;
248 rep->rxqual_full = (data[3] >> 4) & 0x7;
249 rep->rxqual_sub = (data[3] >> 1) & 0x7;
250 rep->num_cell = data[4] >> 6 | ((data[3] & 0x01) << 2);
251 if (rep->num_cell < 1)
252 return;
253
254 /* an encoding nightmare in perfection */
255
256 rep->cell[0].rxlev = data[4] & 0x3f;
257 rep->cell[0].bcch_freq = data[5] >> 2;
258 rep->cell[0].bsic = ((data[5] & 0x03) << 3) | (data[6] >> 5);
259 if (rep->num_cell < 2)
260 return;
261
262 rep->cell[1].rxlev = ((data[6] & 0x1f) << 1) | (data[7] >> 7);
263 rep->cell[1].bcch_freq = (data[7] >> 2) & 0x1f;
264 rep->cell[1].bsic = ((data[7] & 0x03) << 4) | (data[8] >> 4);
265 if (rep->num_cell < 3)
266 return;
267
268 rep->cell[2].rxlev = ((data[8] & 0x0f) << 2) | (data[9] >> 6);
269 rep->cell[2].bcch_freq = (data[9] >> 1) & 0x1f;
270 rep->cell[2].bsic = ((data[9] & 0x01) << 6) | (data[10] >> 3);
271 if (rep->num_cell < 4)
272 return;
273
274 rep->cell[3].rxlev = ((data[10] & 0x07) << 3) | (data[11] >> 5);
275 rep->cell[3].bcch_freq = data[11] & 0x1f;
276 rep->cell[3].bsic = data[12] >> 2;
277 if (rep->num_cell < 5)
278 return;
279
280 rep->cell[4].rxlev = ((data[12] & 0x03) << 4) | (data[13] >> 4);
281 rep->cell[4].bcch_freq = ((data[13] & 0xf) << 1) | (data[14] >> 7);
282 rep->cell[4].bsic = (data[14] >> 1) & 0x3f;
283 if (rep->num_cell < 6)
284 return;
285
286 rep->cell[5].rxlev = ((data[14] & 0x01) << 5) | (data[15] >> 3);
287 rep->cell[5].bcch_freq = ((data[15] & 0x07) << 2) | (data[16] >> 6);
288 rep->cell[5].bsic = data[16] & 0x3f;
289}
290
Holger Freytherd51524f2009-06-09 08:27:07 +0000291int gsm0408_loc_upd_acc(struct gsm_lchan *lchan, u_int32_t tmsi);
Harald Welte65e74cc2008-12-29 01:55:35 +0000292static int gsm48_tx_simple(struct gsm_lchan *lchan,
293 u_int8_t pdisc, u_int8_t msg_type);
Holger Freytherb7193e42008-12-29 17:44:08 +0000294static void schedule_reject(struct gsm_lchan *lchan);
Harald Welte65e74cc2008-12-29 01:55:35 +0000295
Harald Welte52b1f982008-12-23 20:25:15 +0000296struct gsm_lai {
297 u_int16_t mcc;
298 u_int16_t mnc;
299 u_int16_t lac;
300};
301
Holger Freyther89824fc2008-12-30 16:18:18 +0000302static int authorize_everonye = 0;
303void gsm0408_allow_everyone(int everyone)
304{
305 printf("Allowing everyone?\n");
306 authorize_everonye = everyone;
307}
308
Holger Freythere97f7fb2008-12-31 18:52:11 +0000309static int reject_cause = 0;
310void gsm0408_set_reject_cause(int cause)
311{
312 reject_cause = cause;
313}
314
Harald Welte4bfdfe72009-06-10 23:11:52 +0800315static u_int32_t new_callref = 0x80000001;
316
Holger Freyther73487a22008-12-31 18:53:57 +0000317static int authorize_subscriber(struct gsm_loc_updating_operation *loc,
318 struct gsm_subscriber *subscriber)
Holger Freyther89824fc2008-12-30 16:18:18 +0000319{
320 if (!subscriber)
321 return 0;
322
Holger Freyther73487a22008-12-31 18:53:57 +0000323 /*
324 * Do not send accept yet as more information should arrive. Some
325 * phones will not send us the information and we will have to check
326 * what we want to do with that.
327 */
328 if (loc && (loc->waiting_for_imsi || loc->waiting_for_imei))
329 return 0;
330
Holger Freyther89824fc2008-12-30 16:18:18 +0000331 if (authorize_everonye)
332 return 1;
333
334 return subscriber->authorized;
335}
Holger Freyther07cc8d82008-12-29 06:23:46 +0000336
Holger Freyther73487a22008-12-31 18:53:57 +0000337static void release_loc_updating_req(struct gsm_lchan *lchan)
338{
Harald Welte179f0642008-12-31 23:59:18 +0000339 if (!lchan->loc_operation)
Holger Freyther73487a22008-12-31 18:53:57 +0000340 return;
341
Harald Welteff117a82009-05-23 05:22:08 +0000342 bsc_del_timer(&lchan->loc_operation->updating_timer);
Harald Welte2cf161b2009-06-20 22:36:41 +0200343 talloc_free(lchan->loc_operation);
Holger Freyther73487a22008-12-31 18:53:57 +0000344 lchan->loc_operation = 0;
Holger Freyther3eaa7922009-01-01 02:59:03 +0000345 put_lchan(lchan);
Holger Freyther73487a22008-12-31 18:53:57 +0000346}
347
348static void allocate_loc_updating_req(struct gsm_lchan *lchan)
349{
Holger Freyther67b4b9a2009-01-01 03:46:11 +0000350 use_lchan(lchan);
Holger Freyther73487a22008-12-31 18:53:57 +0000351 release_loc_updating_req(lchan);
352
Harald Welte2cf161b2009-06-20 22:36:41 +0200353 if (!tall_locop_ctx)
354 tall_locop_ctx = talloc_named_const(tall_bsc_ctx, 1,
355 "loc_updating_oper");
Harald Welte470ec292009-06-26 20:25:23 +0200356 lchan->loc_operation = talloc_zero(tall_locop_ctx,
357 struct gsm_loc_updating_operation);
Holger Freyther73487a22008-12-31 18:53:57 +0000358}
Holger Freyther07cc8d82008-12-29 06:23:46 +0000359
Holger Freytherd51524f2009-06-09 08:27:07 +0000360static int gsm0408_authorize(struct gsm_lchan *lchan, struct msgb *msg)
361{
362 u_int32_t tmsi;
363
364 if (authorize_subscriber(lchan->loc_operation, lchan->subscr)) {
365 db_subscriber_alloc_tmsi(lchan->subscr);
366 subscr_update(lchan->subscr, msg->trx->bts, GSM_SUBSCRIBER_UPDATE_ATTACHED);
367 tmsi = strtoul(lchan->subscr->tmsi, NULL, 10);
368 release_loc_updating_req(lchan);
369 return gsm0408_loc_upd_acc(msg->lchan, tmsi);
370 }
371
372 return 0;
373}
374
Holger Freyther7c19f742009-06-06 13:54:35 +0000375static int gsm0408_handle_lchan_signal(unsigned int subsys, unsigned int signal,
376 void *handler_data, void *signal_data)
377{
Harald Welte4bfdfe72009-06-10 23:11:52 +0800378 struct gsm_trans *trans, *temp;
379
Holger Freyther7c19f742009-06-06 13:54:35 +0000380 if (subsys != SS_LCHAN || signal != S_LCHAN_UNEXPECTED_RELEASE)
381 return 0;
382
383 /*
384 * Cancel any outstanding location updating request
385 * operation taking place on the lchan.
386 */
Harald Welte1a5c6bd2009-07-04 09:35:21 +0200387 struct gsm_lchan *lchan = (struct gsm_lchan *)signal_data;
Harald Weltec05677b2009-06-26 20:17:06 +0200388 if (!lchan)
389 return 0;
390
Holger Freyther7c19f742009-06-06 13:54:35 +0000391 release_loc_updating_req(lchan);
392
Harald Welte4bfdfe72009-06-10 23:11:52 +0800393 /* Free all transactions that are associated with the released lchan */
Harald Weltedcaf5652009-07-23 18:56:43 +0200394 /* FIXME: this is not neccessarily the right thing to do, we should
395 * only set trans->lchan to NULL and wait for another lchan to be
396 * established to the same MM entity (phone/subscriber) */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800397 llist_for_each_entry_safe(trans, temp, &lchan->ts->trx->bts->network->trans_list, entry) {
398 if (trans->lchan == lchan)
Harald Weltedcaf5652009-07-23 18:56:43 +0200399 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +0800400 }
401
Holger Freyther7c19f742009-06-06 13:54:35 +0000402 return 0;
403}
404
405/*
406 * This will be ran by the linker when loading the DSO. We use it to
407 * do system initialization, e.g. registration of signal handlers.
408 */
409static __attribute__((constructor)) void on_dso_load_0408(void)
410{
411 register_signal_handler(SS_LCHAN, gsm0408_handle_lchan_signal, NULL);
412}
413
Harald Welte52b1f982008-12-23 20:25:15 +0000414static void to_bcd(u_int8_t *bcd, u_int16_t val)
415{
Harald Welte4b634542008-12-27 01:55:51 +0000416 bcd[2] = val % 10;
Harald Welte52b1f982008-12-23 20:25:15 +0000417 val = val / 10;
418 bcd[1] = val % 10;
419 val = val / 10;
Harald Welte4b634542008-12-27 01:55:51 +0000420 bcd[0] = val % 10;
Harald Welte52b1f982008-12-23 20:25:15 +0000421 val = val / 10;
422}
423
Holger Freyther17746612008-12-28 16:32:44 +0000424void gsm0408_generate_lai(struct gsm48_loc_area_id *lai48, u_int16_t mcc,
Harald Welte52b1f982008-12-23 20:25:15 +0000425 u_int16_t mnc, u_int16_t lac)
426{
427 u_int8_t bcd[3];
428
429 to_bcd(bcd, mcc);
430 lai48->digits[0] = bcd[0] | (bcd[1] << 4);
431 lai48->digits[1] = bcd[2];
432
433 to_bcd(bcd, mnc);
Harald Welte4b634542008-12-27 01:55:51 +0000434 /* FIXME: do we need three-digit MNC? See Table 10.5.3 */
435#if 0
Harald Welte8470bf22008-12-25 23:28:35 +0000436 lai48->digits[1] |= bcd[2] << 4;
437 lai48->digits[2] = bcd[0] | (bcd[1] << 4);
Harald Welte4b634542008-12-27 01:55:51 +0000438#else
439 lai48->digits[1] |= 0xf << 4;
440 lai48->digits[2] = bcd[1] | (bcd[2] << 4);
441#endif
Harald Welte52b1f982008-12-23 20:25:15 +0000442
Harald Welte4b634542008-12-27 01:55:51 +0000443 lai48->lac = htons(lac);
Harald Welte52b1f982008-12-23 20:25:15 +0000444}
445
Harald Welte255539c2008-12-28 02:26:27 +0000446#define TMSI_LEN 5
Harald Welte52b1f982008-12-23 20:25:15 +0000447#define MID_TMSI_LEN (TMSI_LEN + 2)
448
Harald Welte255539c2008-12-28 02:26:27 +0000449int generate_mid_from_tmsi(u_int8_t *buf, u_int32_t tmsi)
Harald Welte52b1f982008-12-23 20:25:15 +0000450{
Harald Welte65e74cc2008-12-29 01:55:35 +0000451 u_int32_t *tptr = (u_int32_t *) &buf[3];
Harald Welte255539c2008-12-28 02:26:27 +0000452
Harald Welte4b634542008-12-27 01:55:51 +0000453 buf[0] = GSM48_IE_MOBILE_ID;
Harald Welte1a412182008-12-27 22:13:43 +0000454 buf[1] = TMSI_LEN;
Harald Welte4b634542008-12-27 01:55:51 +0000455 buf[2] = 0xf0 | GSM_MI_TYPE_TMSI;
Harald Welte255539c2008-12-28 02:26:27 +0000456 *tptr = htonl(tmsi);
457
458 return 7;
Harald Welte52b1f982008-12-23 20:25:15 +0000459}
460
Harald Welte09e38af2009-02-16 22:52:23 +0000461static const char bcd_num_digits[] = {
462 '0', '1', '2', '3', '4', '5', '6', '7',
463 '8', '9', '*', '#', 'a', 'b', 'c', '\0'
464};
465
Harald Welte0c389302009-06-10 12:08:54 +0800466/* decode a 'called/calling/connect party BCD number' as in 10.5.4.7 */
467int decode_bcd_number(char *output, int output_len, const u_int8_t *bcd_lv,
468 int h_len)
Harald Welte09e38af2009-02-16 22:52:23 +0000469{
470 u_int8_t in_len = bcd_lv[0];
471 int i;
472
Harald Welte0c389302009-06-10 12:08:54 +0800473 for (i = 1 + h_len; i <= in_len; i++) {
Harald Welte09e38af2009-02-16 22:52:23 +0000474 /* lower nibble */
475 output_len--;
476 if (output_len <= 1)
477 break;
478 *output++ = bcd_num_digits[bcd_lv[i] & 0xf];
479
480 /* higher nibble */
481 output_len--;
482 if (output_len <= 1)
483 break;
484 *output++ = bcd_num_digits[bcd_lv[i] >> 4];
485 }
486 if (output_len >= 1)
487 *output++ = '\0';
488
Harald Welte0c389302009-06-10 12:08:54 +0800489 return 0;
Harald Welte09e38af2009-02-16 22:52:23 +0000490}
491
492/* convert a single ASCII character to call-control BCD */
493static int asc_to_bcd(const char asc)
494{
495 int i;
496
497 for (i = 0; i < ARRAY_SIZE(bcd_num_digits); i++) {
498 if (bcd_num_digits[i] == asc)
499 return i;
500 }
501 return -EINVAL;
502}
503
Harald Welte0c389302009-06-10 12:08:54 +0800504/* convert a ASCII phone number to 'called/calling/connect party BCD number' */
Harald Welte09e38af2009-02-16 22:52:23 +0000505int encode_bcd_number(u_int8_t *bcd_lv, u_int8_t max_len,
Harald Welte0c389302009-06-10 12:08:54 +0800506 int h_len, const char *input)
Harald Welte09e38af2009-02-16 22:52:23 +0000507{
508 int in_len = strlen(input);
509 int i;
Harald Welte0c389302009-06-10 12:08:54 +0800510 u_int8_t *bcd_cur = bcd_lv + 1 + h_len;
Harald Welte09e38af2009-02-16 22:52:23 +0000511
512 /* two digits per byte, plus type byte */
Harald Welte0c389302009-06-10 12:08:54 +0800513 bcd_lv[0] = in_len/2 + h_len;
Harald Welte09e38af2009-02-16 22:52:23 +0000514 if (in_len % 2)
515 bcd_lv[0]++;
516
Harald Welte0c389302009-06-10 12:08:54 +0800517 if (bcd_lv[0] > max_len)
518 return -EIO;
Harald Welte09e38af2009-02-16 22:52:23 +0000519
520 for (i = 0; i < in_len; i++) {
521 int rc = asc_to_bcd(input[i]);
522 if (rc < 0)
523 return rc;
524 if (i % 2 == 0)
525 *bcd_cur = rc;
526 else
527 *bcd_cur++ |= (rc << 4);
528 }
529 /* append padding nibble in case of odd length */
530 if (i % 2)
531 *bcd_cur++ |= 0xf0;
532
533 /* return how many bytes we used */
534 return (bcd_cur - bcd_lv);
535}
536
Harald Welte0c389302009-06-10 12:08:54 +0800537/* decode 'bearer capability' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800538static int decode_bearer_cap(struct gsm_mncc_bearer_cap *bcap,
Harald Welte0c389302009-06-10 12:08:54 +0800539 const u_int8_t *lv)
540{
541 u_int8_t in_len = lv[0];
542 int i, s;
543
544 if (in_len < 1)
545 return -EINVAL;
546
Harald Welte4bfdfe72009-06-10 23:11:52 +0800547 bcap->speech_ver[0] = -1; /* end of list, of maximum 7 values */
Harald Welte0c389302009-06-10 12:08:54 +0800548
549 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800550 bcap->transfer = lv[1] & 0x07;
551 bcap->mode = (lv[1] & 0x08) >> 3;
552 bcap->coding = (lv[1] & 0x10) >> 4;
553 bcap->radio = (lv[1] & 0x60) >> 5;
Harald Welte0c389302009-06-10 12:08:54 +0800554
555 i = 1;
556 s = 0;
557 while(!(lv[i] & 0x80)) {
558 i++; /* octet 3a etc */
559 if (in_len < i)
560 return 0;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800561 bcap->speech_ver[s++] = lv[i] & 0x0f;
562 bcap->speech_ver[s] = -1; /* end of list */
Harald Welte0c389302009-06-10 12:08:54 +0800563 if (i == 2) /* octet 3a */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800564 bcap->speech_ctm = (lv[i] & 0x20) >> 5;
Harald Welte0c389302009-06-10 12:08:54 +0800565 if (s == 7) /* maximum speech versions + end of list */
566 return 0;
567 }
568
569 return 0;
570}
571
572/* encode 'bearer capability' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800573static int encode_bearer_cap(struct msgb *msg, int lv_only,
574 const struct gsm_mncc_bearer_cap *bcap)
Harald Welte0c389302009-06-10 12:08:54 +0800575{
576 u_int8_t lv[32 + 1];
577 int i, s;
578
Harald Welte4bfdfe72009-06-10 23:11:52 +0800579 lv[1] = bcap->transfer;
580 lv[1] |= bcap->mode << 3;
581 lv[1] |= bcap->coding << 4;
582 lv[1] |= bcap->radio << 5;
Harald Welte0c389302009-06-10 12:08:54 +0800583
584 i = 1;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800585 for (s = 0; bcap->speech_ver[s] >= 0; s++) {
Harald Welte0c389302009-06-10 12:08:54 +0800586 i++; /* octet 3a etc */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800587 lv[i] = bcap->speech_ver[s];
Harald Welte0c389302009-06-10 12:08:54 +0800588 if (i == 2) /* octet 3a */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800589 lv[i] |= bcap->speech_ctm << 5;
Harald Welte0c389302009-06-10 12:08:54 +0800590 }
591 lv[i] |= 0x80; /* last IE of octet 3 etc */
592
593 lv[0] = i;
594 if (lv_only)
595 msgb_lv_put(msg, lv[0], lv+1);
596 else
597 msgb_tlv_put(msg, GSM48_IE_BEARER_CAP, lv[0], lv+1);
598
599 return 0;
600}
601
602/* decode 'call control cap' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800603static int decode_cccap(struct gsm_mncc_cccap *ccap, const u_int8_t *lv)
Harald Welte0c389302009-06-10 12:08:54 +0800604{
605 u_int8_t in_len = lv[0];
606
607 if (in_len < 1)
608 return -EINVAL;
609
610 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800611 ccap->dtmf = lv[1] & 0x01;
612 ccap->pcp = (lv[1] & 0x02) >> 1;
Harald Welte0c389302009-06-10 12:08:54 +0800613
614 return 0;
615}
616
617/* decode 'called party BCD number' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800618static int decode_called(struct gsm_mncc_number *called,
619 const u_int8_t *lv)
Harald Welte0c389302009-06-10 12:08:54 +0800620{
621 u_int8_t in_len = lv[0];
622
623 if (in_len < 1)
624 return -EINVAL;
625
626 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800627 called->plan = lv[1] & 0x0f;
628 called->type = (lv[1] & 0x70) >> 4;
Harald Welte0c389302009-06-10 12:08:54 +0800629
630 /* octet 4..N */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800631 decode_bcd_number(called->number, sizeof(called->number), lv, 1);
Harald Welte0c389302009-06-10 12:08:54 +0800632
633 return 0;
634}
635
636/* encode 'called party BCD number' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800637static int encode_called(struct msgb *msg,
638 const struct gsm_mncc_number *called)
Harald Welte0c389302009-06-10 12:08:54 +0800639{
640 u_int8_t lv[18];
641 int ret;
642
643 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800644 lv[1] = called->plan;
645 lv[1] |= called->type << 4;
Harald Welte0c389302009-06-10 12:08:54 +0800646
647 /* octet 4..N, octet 2 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800648 ret = encode_bcd_number(lv, sizeof(lv), 1, called->number);
Harald Welte0c389302009-06-10 12:08:54 +0800649 if (ret < 0)
650 return ret;
651
652 msgb_tlv_put(msg, GSM48_IE_CALLED_BCD, lv[0], lv+1);
653
654 return 0;
655}
656
657/* encode callerid of various IEs */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800658static int encode_callerid(struct msgb *msg, int ie,
659 const struct gsm_mncc_number *callerid)
Harald Welte0c389302009-06-10 12:08:54 +0800660{
661 u_int8_t lv[13];
662 int h_len = 1;
663 int ret;
664
665 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800666 lv[1] = callerid->plan;
667 lv[1] |= callerid->type << 4;
Harald Welte0c389302009-06-10 12:08:54 +0800668
Harald Welte4bfdfe72009-06-10 23:11:52 +0800669 if (callerid->present || callerid->screen) {
Harald Welte0c389302009-06-10 12:08:54 +0800670 /* octet 3a */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800671 lv[2] = callerid->screen;
672 lv[2] |= callerid->present << 5;
Harald Welte0c389302009-06-10 12:08:54 +0800673 lv[2] |= 0x80;
674 h_len++;
675 } else
676 lv[1] |= 0x80;
677
678 /* octet 4..N, octet 2 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800679 ret = encode_bcd_number(lv, sizeof(lv), h_len, callerid->number);
Harald Welte0c389302009-06-10 12:08:54 +0800680 if (ret < 0)
681 return ret;
682
683 msgb_tlv_put(msg, ie, lv[0], lv+1);
684
685 return 0;
686}
687
688/* decode 'cause' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800689static int decode_cause(struct gsm_mncc_cause *cause,
Harald Welte0c389302009-06-10 12:08:54 +0800690 const u_int8_t *lv)
691{
692 u_int8_t in_len = lv[0];
693 int i;
694
695 if (in_len < 2)
696 return -EINVAL;
697
Harald Welte4bfdfe72009-06-10 23:11:52 +0800698 cause->diag_len = 0;
Harald Welte0c389302009-06-10 12:08:54 +0800699
700 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800701 cause->location = lv[1] & 0x0f;
702 cause->coding = (lv[1] & 0x60) >> 5;
Harald Welte0c389302009-06-10 12:08:54 +0800703
704 i = 1;
705 if (!(lv[i] & 0x80)) {
706 i++; /* octet 3a */
707 if (in_len < i+1)
708 return 0;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800709 cause->rec = 1;
710 cause->rec_val = lv[i] & 0x7f;
Harald Welte0c389302009-06-10 12:08:54 +0800711
712 }
713 i++;
714
715 /* octet 4 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800716 cause->value = lv[i] & 0x7f;
Harald Welte0c389302009-06-10 12:08:54 +0800717 i++;
718
719 if (in_len < i) /* no diag */
720 return 0;
721
722 if (in_len - (i-1) > 32) /* maximum 32 octets */
723 return 0;
724
725 /* octet 5-N */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800726 memcpy(cause->diag, lv + i, in_len - (i-1));
727 cause->diag_len = in_len - (i-1);
Harald Welte0c389302009-06-10 12:08:54 +0800728
729 return 0;
730}
731
732/* encode 'cause' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800733static int encode_cause(struct msgb *msg, int lv_only,
734 const struct gsm_mncc_cause *cause)
Harald Welte0c389302009-06-10 12:08:54 +0800735{
736 u_int8_t lv[32+4];
737 int i;
738
Harald Welte4bfdfe72009-06-10 23:11:52 +0800739 if (cause->diag_len > 32)
Harald Welte0c389302009-06-10 12:08:54 +0800740 return -EINVAL;
741
742 /* octet 3 */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800743 lv[1] = cause->location;
744 lv[1] |= cause->coding << 5;
Harald Welte0c389302009-06-10 12:08:54 +0800745
746 i = 1;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800747 if (cause->rec) {
Harald Welte0c389302009-06-10 12:08:54 +0800748 i++; /* octet 3a */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800749 lv[i] = cause->rec_val;
Harald Welte0c389302009-06-10 12:08:54 +0800750 }
751 lv[i] |= 0x80; /* end of octet 3 */
752
753 /* octet 4 */
754 i++;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800755 lv[i] = 0x80 | cause->value;
Harald Welte0c389302009-06-10 12:08:54 +0800756
757 /* octet 5-N */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800758 if (cause->diag_len) {
759 memcpy(lv + i, cause->diag, cause->diag_len);
760 i += cause->diag_len;
Harald Welte0c389302009-06-10 12:08:54 +0800761 }
762
763 lv[0] = i;
764 if (lv_only)
765 msgb_lv_put(msg, lv[0], lv+1);
766 else
767 msgb_tlv_put(msg, GSM48_IE_CAUSE, lv[0], lv+1);
768
769 return 0;
770}
771
772/* encode 'calling number' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800773static int encode_calling(struct msgb *msg,
774 const struct gsm_mncc_number *calling)
Harald Welte0c389302009-06-10 12:08:54 +0800775{
Harald Welte4bfdfe72009-06-10 23:11:52 +0800776 return encode_callerid(msg, GSM48_IE_CALLING_BCD, calling);
Harald Welte0c389302009-06-10 12:08:54 +0800777}
778
779/* encode 'connected number' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800780static int encode_connected(struct msgb *msg,
781 const struct gsm_mncc_number *connected)
Harald Welte0c389302009-06-10 12:08:54 +0800782{
Harald Welte4bfdfe72009-06-10 23:11:52 +0800783 return encode_callerid(msg, GSM48_IE_CONN_BCD, connected);
Harald Welte0c389302009-06-10 12:08:54 +0800784}
785
786/* encode 'redirecting number' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800787static int encode_redirecting(struct msgb *msg,
788 const struct gsm_mncc_number *redirecting)
Harald Welte0c389302009-06-10 12:08:54 +0800789{
Harald Welte4bfdfe72009-06-10 23:11:52 +0800790 return encode_callerid(msg, GSM48_IE_REDIR_BCD, redirecting);
Harald Welte0c389302009-06-10 12:08:54 +0800791}
792
793/* decode 'facility' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800794static int decode_facility(struct gsm_mncc_facility *facility,
Harald Welte0c389302009-06-10 12:08:54 +0800795 const u_int8_t *lv)
796{
797 u_int8_t in_len = lv[0];
798
799 if (in_len < 1)
800 return -EINVAL;
801
Harald Welte4bfdfe72009-06-10 23:11:52 +0800802 if (in_len > sizeof(facility->info))
Harald Welte0c389302009-06-10 12:08:54 +0800803 return -EINVAL;
804
Harald Welte4bfdfe72009-06-10 23:11:52 +0800805 memcpy(facility->info, lv+1, in_len);
806 facility->len = in_len;
Harald Welte0c389302009-06-10 12:08:54 +0800807
808 return 0;
809}
810
811/* encode 'facility' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800812static int encode_facility(struct msgb *msg, int lv_only,
813 const struct gsm_mncc_facility *facility)
Harald Welte0c389302009-06-10 12:08:54 +0800814{
815 u_int8_t lv[GSM_MAX_FACILITY + 1];
816
Harald Welte4bfdfe72009-06-10 23:11:52 +0800817 if (facility->len < 1 || facility->len > GSM_MAX_FACILITY)
Harald Welte0c389302009-06-10 12:08:54 +0800818 return -EINVAL;
819
Harald Welte4bfdfe72009-06-10 23:11:52 +0800820 memcpy(lv+1, facility->info, facility->len);
821 lv[0] = facility->len;
Harald Welte0c389302009-06-10 12:08:54 +0800822 if (lv_only)
823 msgb_lv_put(msg, lv[0], lv+1);
824 else
825 msgb_tlv_put(msg, GSM48_IE_FACILITY, lv[0], lv+1);
826
827 return 0;
828}
829
830/* decode 'notify' */
831static int decode_notify(int *notify, const u_int8_t *v)
832{
833 *notify = v[0] & 0x7f;
834
835 return 0;
836}
837
838/* encode 'notify' */
839static int encode_notify(struct msgb *msg, int notify)
840{
841 msgb_v_put(msg, notify | 0x80);
842
843 return 0;
844}
845
846/* encode 'signal' */
847static int encode_signal(struct msgb *msg, int signal)
848{
849 msgb_tv_put(msg, GSM48_IE_SIGNAL, signal);
850
851 return 0;
852}
853
854/* decode 'keypad' */
855static int decode_keypad(int *keypad, const u_int8_t *lv)
856{
857 u_int8_t in_len = lv[0];
858
859 if (in_len < 1)
860 return -EINVAL;
861
862 *keypad = lv[1] & 0x7f;
863
864 return 0;
865}
866
867/* encode 'keypad' */
868static int encode_keypad(struct msgb *msg, int keypad)
869{
870 msgb_tv_put(msg, GSM48_IE_KPD_FACILITY, keypad);
871
872 return 0;
873}
874
875/* decode 'progress' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800876static int decode_progress(struct gsm_mncc_progress *progress,
Harald Welte0c389302009-06-10 12:08:54 +0800877 const u_int8_t *lv)
878{
879 u_int8_t in_len = lv[0];
880
881 if (in_len < 2)
882 return -EINVAL;
883
Harald Welte4bfdfe72009-06-10 23:11:52 +0800884 progress->coding = (lv[1] & 0x60) >> 5;
885 progress->location = lv[1] & 0x0f;
886 progress->descr = lv[2] & 0x7f;
Harald Welte0c389302009-06-10 12:08:54 +0800887
888 return 0;
889}
890
891/* encode 'progress' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800892static int encode_progress(struct msgb *msg, int lv_only,
893 const struct gsm_mncc_progress *p)
Harald Welte0c389302009-06-10 12:08:54 +0800894{
895 u_int8_t lv[3];
896
897 lv[0] = 2;
Harald Welte4bfdfe72009-06-10 23:11:52 +0800898 lv[1] = 0x80 | ((p->coding & 0x3) << 5) | (p->location & 0xf);
899 lv[2] = 0x80 | (p->descr & 0x7f);
Harald Welte0c389302009-06-10 12:08:54 +0800900 if (lv_only)
901 msgb_lv_put(msg, lv[0], lv+1);
902 else
903 msgb_tlv_put(msg, GSM48_IE_PROGR_IND, lv[0], lv+1);
904
905 return 0;
906}
907
908/* decode 'user-user' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800909static int decode_useruser(struct gsm_mncc_useruser *uu,
Harald Welte0c389302009-06-10 12:08:54 +0800910 const u_int8_t *lv)
911{
912 u_int8_t in_len = lv[0];
Harald Welte4bfdfe72009-06-10 23:11:52 +0800913 char *info = uu->info;
914 int info_len = sizeof(uu->info);
Harald Welte0c389302009-06-10 12:08:54 +0800915 int i;
916
917 if (in_len < 1)
918 return -EINVAL;
919
Harald Welte4bfdfe72009-06-10 23:11:52 +0800920 uu->proto = lv[1];
Harald Welte0c389302009-06-10 12:08:54 +0800921
922 for (i = 2; i <= in_len; i++) {
923 info_len--;
924 if (info_len <= 1)
925 break;
926 *info++ = lv[i];
927 }
928 if (info_len >= 1)
929 *info++ = '\0';
930
931 return 0;
932}
933
934/* encode 'useruser' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800935static int encode_useruser(struct msgb *msg, int lv_only,
936 const struct gsm_mncc_useruser *uu)
Harald Welte0c389302009-06-10 12:08:54 +0800937{
938 u_int8_t lv[GSM_MAX_USERUSER + 2];
939
Harald Welte4bfdfe72009-06-10 23:11:52 +0800940 if (strlen(uu->info) > GSM_MAX_USERUSER)
Harald Welte0c389302009-06-10 12:08:54 +0800941 return -EINVAL;
942
Harald Welte4bfdfe72009-06-10 23:11:52 +0800943 lv[0] = 1 + strlen(uu->info);
944 lv[1] = uu->proto;
945 memcpy(lv + 2, uu->info, strlen(uu->info));
Harald Welte0c389302009-06-10 12:08:54 +0800946 if (lv_only)
947 msgb_lv_put(msg, lv[0], lv+1);
948 else
949 msgb_tlv_put(msg, GSM48_IE_USER_USER, lv[0], lv+1);
950
951 return 0;
952}
953
954/* decode 'ss version' */
Harald Welte4bfdfe72009-06-10 23:11:52 +0800955static int decode_ssversion(struct gsm_mncc_ssversion *ssv,
Harald Welte0c389302009-06-10 12:08:54 +0800956 const u_int8_t *lv)
957{
958 u_int8_t in_len = lv[0];
959
Harald Welte4bfdfe72009-06-10 23:11:52 +0800960 if (in_len < 1 || in_len < sizeof(ssv->info))
Harald Welte0c389302009-06-10 12:08:54 +0800961 return -EINVAL;
962
Harald Welte4bfdfe72009-06-10 23:11:52 +0800963 memcpy(ssv->info, lv + 1, in_len);
964 ssv->len = in_len;
Harald Welte0c389302009-06-10 12:08:54 +0800965
966 return 0;
967}
968
969/* encode 'more data' */
970static int encode_more(struct msgb *msg)
971{
972 u_int8_t *ie;
973
974 ie = msgb_put(msg, 1);
975 ie[0] = GSM48_IE_MORE_DATA;
976
977 return 0;
978}
979
Holger Freyther819dd202009-01-04 03:52:50 +0000980struct msgb *gsm48_msgb_alloc(void)
Harald Welte8470bf22008-12-25 23:28:35 +0000981{
Harald Welte966636f2009-06-26 19:39:35 +0200982 return msgb_alloc_headroom(GSM48_ALLOC_SIZE, GSM48_ALLOC_HEADROOM,
983 "GSM 04.08");
Harald Welte8470bf22008-12-25 23:28:35 +0000984}
985
Holger Freyther3e2c3232009-01-04 03:55:31 +0000986int gsm48_sendmsg(struct msgb *msg)
Harald Welte52b1f982008-12-23 20:25:15 +0000987{
Harald Welte65e74cc2008-12-29 01:55:35 +0000988 if (msg->lchan) {
Harald Welte4bfdfe72009-06-10 23:11:52 +0800989 struct gsm48_hdr *gh = (struct gsm48_hdr *) msg->data;
Harald Welte8470bf22008-12-25 23:28:35 +0000990 msg->trx = msg->lchan->ts->trx;
Harald Welte52b1f982008-12-23 20:25:15 +0000991
Harald Welte4bfdfe72009-06-10 23:11:52 +0800992 if ((gh->proto_discr & GSM48_PDISC_MASK) == GSM48_PDISC_CC)
993 DEBUGP(DCC, "(bts %d trx %d ts %d ti %02x) "
994 "Sending '%s' to MS.\n", msg->trx->bts->nr,
995 msg->trx->nr, msg->lchan->ts->nr,
996 gh->proto_discr & 0xf0,
997 cc_msg_names[gh->msg_type & 0x3f]);
998 else
999 DEBUGP(DCC, "(bts %d trx %d ts %d pd %02x) "
1000 "Sending 0x%02x to MS.\n", msg->trx->bts->nr,
1001 msg->trx->nr, msg->lchan->ts->nr,
1002 gh->proto_discr, gh->msg_type);
Harald Welte65e74cc2008-12-29 01:55:35 +00001003 }
1004
Harald Welte4b634542008-12-27 01:55:51 +00001005 msg->l3h = msg->data;
1006
Harald Welte8470bf22008-12-25 23:28:35 +00001007 return rsl_data_request(msg, 0);
Harald Welte52b1f982008-12-23 20:25:15 +00001008}
1009
Holger Freyther429e7762008-12-30 13:28:30 +00001010/* Chapter 9.2.14 : Send LOCATION UPDATING REJECT */
Harald Welte8470bf22008-12-25 23:28:35 +00001011int gsm0408_loc_upd_rej(struct gsm_lchan *lchan, u_int8_t cause)
Harald Welte52b1f982008-12-23 20:25:15 +00001012{
Harald Welte8470bf22008-12-25 23:28:35 +00001013 struct msgb *msg = gsm48_msgb_alloc();
Harald Welte52b1f982008-12-23 20:25:15 +00001014 struct gsm48_hdr *gh;
1015
Harald Welte8470bf22008-12-25 23:28:35 +00001016 msg->lchan = lchan;
Harald Welte52b1f982008-12-23 20:25:15 +00001017
1018 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh) + 1);
1019 gh->proto_discr = GSM48_PDISC_MM;
Harald Welte10b487b2008-12-27 19:53:37 +00001020 gh->msg_type = GSM48_MT_MM_LOC_UPD_REJECT;
Harald Welte52b1f982008-12-23 20:25:15 +00001021 gh->data[0] = cause;
1022
Harald Weltedb253af2008-12-30 17:56:55 +00001023 DEBUGP(DMM, "-> LOCATION UPDATING REJECT on channel: %d\n", lchan->nr);
1024
Harald Welte65e74cc2008-12-29 01:55:35 +00001025 return gsm48_sendmsg(msg);
Harald Welte52b1f982008-12-23 20:25:15 +00001026}
1027
1028/* Chapter 9.2.13 : Send LOCATION UPDATE ACCEPT */
Harald Welte75a983f2008-12-27 21:34:06 +00001029int gsm0408_loc_upd_acc(struct gsm_lchan *lchan, u_int32_t tmsi)
Harald Welte52b1f982008-12-23 20:25:15 +00001030{
Harald Welte8470bf22008-12-25 23:28:35 +00001031 struct gsm_bts *bts = lchan->ts->trx->bts;
1032 struct msgb *msg = gsm48_msgb_alloc();
Harald Welte52b1f982008-12-23 20:25:15 +00001033 struct gsm48_hdr *gh;
1034 struct gsm48_loc_area_id *lai;
1035 u_int8_t *mid;
Holger Freyther07cc8d82008-12-29 06:23:46 +00001036 int ret;
Harald Welte52b1f982008-12-23 20:25:15 +00001037
Harald Welte8470bf22008-12-25 23:28:35 +00001038 msg->lchan = lchan;
Harald Welte52b1f982008-12-23 20:25:15 +00001039
1040 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1041 gh->proto_discr = GSM48_PDISC_MM;
1042 gh->msg_type = GSM48_MT_MM_LOC_UPD_ACCEPT;
1043
1044 lai = (struct gsm48_loc_area_id *) msgb_put(msg, sizeof(*lai));
Holger Freyther17746612008-12-28 16:32:44 +00001045 gsm0408_generate_lai(lai, bts->network->country_code,
Harald Welte52b1f982008-12-23 20:25:15 +00001046 bts->network->network_code, bts->location_area_code);
1047
1048 mid = msgb_put(msg, MID_TMSI_LEN);
1049 generate_mid_from_tmsi(mid, tmsi);
1050
1051 DEBUGP(DMM, "-> LOCATION UPDATE ACCEPT\n");
1052
Harald Weltedb253af2008-12-30 17:56:55 +00001053 ret = gsm48_sendmsg(msg);
1054
Harald Weltedb253af2008-12-30 17:56:55 +00001055 ret = gsm48_tx_mm_info(lchan);
Harald Weltedb253af2008-12-30 17:56:55 +00001056
Holger Freyther07cc8d82008-12-29 06:23:46 +00001057 return ret;
Harald Welte52b1f982008-12-23 20:25:15 +00001058}
1059
Harald Weltefc977a82008-12-27 10:19:37 +00001060static char bcd2char(u_int8_t bcd)
1061{
1062 if (bcd < 0xa)
1063 return '0' + bcd;
1064 else
1065 return 'A' + (bcd - 0xa);
1066}
1067
Harald Weltebf5e8df2009-02-03 12:59:45 +00001068/* Convert Mobile Identity (10.5.1.4) to string */
Harald Weltefc977a82008-12-27 10:19:37 +00001069static int mi_to_string(char *string, int str_len, u_int8_t *mi, int mi_len)
1070{
1071 int i;
1072 u_int8_t mi_type;
1073 char *str_cur = string;
Harald Welte4ed0e922009-01-10 03:17:30 +00001074 u_int32_t tmsi;
Harald Weltefc977a82008-12-27 10:19:37 +00001075
1076 mi_type = mi[0] & GSM_MI_TYPE_MASK;
1077
1078 switch (mi_type) {
1079 case GSM_MI_TYPE_NONE:
1080 break;
1081 case GSM_MI_TYPE_TMSI:
Harald Welte4ed0e922009-01-10 03:17:30 +00001082 /* Table 10.5.4.3, reverse generate_mid_from_tmsi */
1083 if (mi_len == TMSI_LEN && mi[0] == (0xf0 | GSM_MI_TYPE_TMSI)) {
1084 memcpy(&tmsi, &mi[1], 4);
1085 tmsi = ntohl(tmsi);
1086 return snprintf(string, str_len, "%u", tmsi);
Harald Weltefc977a82008-12-27 10:19:37 +00001087 }
1088 break;
1089 case GSM_MI_TYPE_IMSI:
1090 case GSM_MI_TYPE_IMEI:
1091 case GSM_MI_TYPE_IMEISV:
Harald Weltedb253af2008-12-30 17:56:55 +00001092 *str_cur++ = bcd2char(mi[0] >> 4);
1093
1094 for (i = 1; i < mi_len; i++) {
Harald Weltefc977a82008-12-27 10:19:37 +00001095 if (str_cur + 2 >= string + str_len)
1096 return str_cur - string;
1097 *str_cur++ = bcd2char(mi[i] & 0xf);
Harald Weltedb253af2008-12-30 17:56:55 +00001098 /* skip last nibble in last input byte when GSM_EVEN */
1099 if( (i != mi_len-1) || (mi[0] & GSM_MI_ODD))
1100 *str_cur++ = bcd2char(mi[i] >> 4);
Harald Weltefc977a82008-12-27 10:19:37 +00001101 }
1102 break;
1103 default:
1104 break;
1105 }
Harald Weltefc977a82008-12-27 10:19:37 +00001106 *str_cur++ = '\0';
Harald Weltedb253af2008-12-30 17:56:55 +00001107
Harald Weltefc977a82008-12-27 10:19:37 +00001108 return str_cur - string;
1109}
1110
Harald Weltebf5e8df2009-02-03 12:59:45 +00001111/* Transmit Chapter 9.2.10 Identity Request */
Harald Welte231ad4f2008-12-27 11:15:38 +00001112static int mm_tx_identity_req(struct gsm_lchan *lchan, u_int8_t id_type)
1113{
1114 struct msgb *msg = gsm48_msgb_alloc();
1115 struct gsm48_hdr *gh;
Harald Weltefc977a82008-12-27 10:19:37 +00001116
Harald Welte231ad4f2008-12-27 11:15:38 +00001117 msg->lchan = lchan;
1118
1119 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh) + 1);
1120 gh->proto_discr = GSM48_PDISC_MM;
1121 gh->msg_type = GSM48_MT_MM_ID_REQ;
1122 gh->data[0] = id_type;
1123
Harald Welte65e74cc2008-12-29 01:55:35 +00001124 return gsm48_sendmsg(msg);
Harald Welte231ad4f2008-12-27 11:15:38 +00001125}
1126
1127#define MI_SIZE 32
1128
Harald Weltebf5e8df2009-02-03 12:59:45 +00001129/* Parse Chapter 9.2.11 Identity Response */
Harald Welte231ad4f2008-12-27 11:15:38 +00001130static int mm_rx_id_resp(struct msgb *msg)
1131{
1132 struct gsm48_hdr *gh = msgb_l3(msg);
Harald Welte75a983f2008-12-27 21:34:06 +00001133 struct gsm_lchan *lchan = msg->lchan;
Harald Welte9176bd42009-07-23 18:46:00 +02001134 struct gsm_bts *bts = lchan->ts->trx->bts;
1135 struct gsm_network *net = bts->network;
Harald Welte231ad4f2008-12-27 11:15:38 +00001136 u_int8_t mi_type = gh->data[1] & GSM_MI_TYPE_MASK;
1137 char mi_string[MI_SIZE];
1138
1139 mi_to_string(mi_string, sizeof(mi_string), &gh->data[1], gh->data[0]);
Harald Welte61253062008-12-27 11:25:50 +00001140 DEBUGP(DMM, "IDENTITY RESPONSE: mi_type=0x%02x MI(%s)\n",
Harald Welte231ad4f2008-12-27 11:15:38 +00001141 mi_type, mi_string);
1142
Harald Welte75a983f2008-12-27 21:34:06 +00001143 switch (mi_type) {
1144 case GSM_MI_TYPE_IMSI:
1145 if (!lchan->subscr)
Harald Welte9176bd42009-07-23 18:46:00 +02001146 lchan->subscr = db_create_subscriber(net, mi_string);
Holger Freyther73487a22008-12-31 18:53:57 +00001147 if (lchan->loc_operation)
1148 lchan->loc_operation->waiting_for_imsi = 0;
Harald Welte75a983f2008-12-27 21:34:06 +00001149 break;
1150 case GSM_MI_TYPE_IMEI:
Harald Welte255539c2008-12-28 02:26:27 +00001151 case GSM_MI_TYPE_IMEISV:
Harald Welte75a983f2008-12-27 21:34:06 +00001152 /* update subscribe <-> IMEI mapping */
1153 if (lchan->subscr)
1154 db_subscriber_assoc_imei(lchan->subscr, mi_string);
Holger Freyther73487a22008-12-31 18:53:57 +00001155 if (lchan->loc_operation)
1156 lchan->loc_operation->waiting_for_imei = 0;
Harald Welte75a983f2008-12-27 21:34:06 +00001157 break;
1158 }
Holger Freyther73487a22008-12-31 18:53:57 +00001159
1160 /* Check if we can let the mobile station enter */
Holger Freytherd51524f2009-06-09 08:27:07 +00001161 return gsm0408_authorize(lchan, msg);
Harald Welte231ad4f2008-12-27 11:15:38 +00001162}
1163
Harald Welte255539c2008-12-28 02:26:27 +00001164
1165static void loc_upd_rej_cb(void *data)
1166{
1167 struct gsm_lchan *lchan = data;
1168
Holger Freyther73487a22008-12-31 18:53:57 +00001169 release_loc_updating_req(lchan);
Holger Freythere97f7fb2008-12-31 18:52:11 +00001170 gsm0408_loc_upd_rej(lchan, reject_cause);
Holger Freyther67b4b9a2009-01-01 03:46:11 +00001171 lchan_auto_release(lchan);
Harald Welte255539c2008-12-28 02:26:27 +00001172}
1173
Holger Freytherb7193e42008-12-29 17:44:08 +00001174static void schedule_reject(struct gsm_lchan *lchan)
1175{
Holger Freyther73487a22008-12-31 18:53:57 +00001176 lchan->loc_operation->updating_timer.cb = loc_upd_rej_cb;
1177 lchan->loc_operation->updating_timer.data = lchan;
Harald Welteff117a82009-05-23 05:22:08 +00001178 bsc_schedule_timer(&lchan->loc_operation->updating_timer, 5, 0);
Holger Freytherb7193e42008-12-29 17:44:08 +00001179}
1180
Harald Welte2a139372009-02-22 21:14:55 +00001181static const char *lupd_name(u_int8_t type)
1182{
1183 switch (type) {
1184 case GSM48_LUPD_NORMAL:
1185 return "NORMAL";
1186 case GSM48_LUPD_PERIODIC:
1187 return "PEROIDOC";
1188 case GSM48_LUPD_IMSI_ATT:
1189 return "IMSI ATTACH";
1190 default:
1191 return "UNKNOWN";
1192 }
1193}
1194
Harald Welte231ad4f2008-12-27 11:15:38 +00001195#define MI_SIZE 32
Harald Weltebf5e8df2009-02-03 12:59:45 +00001196/* Chapter 9.2.15: Receive Location Updating Request */
Harald Welte231ad4f2008-12-27 11:15:38 +00001197static int mm_rx_loc_upd_req(struct msgb *msg)
Harald Welte52b1f982008-12-23 20:25:15 +00001198{
Harald Welte8470bf22008-12-25 23:28:35 +00001199 struct gsm48_hdr *gh = msgb_l3(msg);
Harald Welte52b1f982008-12-23 20:25:15 +00001200 struct gsm48_loc_upd_req *lu;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001201 struct gsm_subscriber *subscr = NULL;
Harald Welte255539c2008-12-28 02:26:27 +00001202 struct gsm_lchan *lchan = msg->lchan;
Harald Welte9176bd42009-07-23 18:46:00 +02001203 struct gsm_bts *bts = lchan->ts->trx->bts;
Harald Welte8470bf22008-12-25 23:28:35 +00001204 u_int8_t mi_type;
Harald Welte231ad4f2008-12-27 11:15:38 +00001205 char mi_string[MI_SIZE];
1206 int rc;
Harald Welte52b1f982008-12-23 20:25:15 +00001207
Harald Welte8470bf22008-12-25 23:28:35 +00001208 lu = (struct gsm48_loc_upd_req *) gh->data;
1209
1210 mi_type = lu->mi[0] & GSM_MI_TYPE_MASK;
Harald Welte52b1f982008-12-23 20:25:15 +00001211
Harald Weltefc977a82008-12-27 10:19:37 +00001212 mi_to_string(mi_string, sizeof(mi_string), lu->mi, lu->mi_len);
1213
Harald Weltea0368542009-06-27 02:58:43 +02001214 DEBUGPC(DMM, "mi_type=0x%02x MI(%s) type=%s ", mi_type, mi_string,
Harald Welte2a139372009-02-22 21:14:55 +00001215 lupd_name(lu->type));
Holger Freyther73487a22008-12-31 18:53:57 +00001216
Holger Freythereaf04692009-06-06 13:54:44 +00001217 /*
1218 * Pseudo Spoof detection: Just drop a second/concurrent
1219 * location updating request.
1220 */
1221 if (lchan->loc_operation) {
Harald Weltea0368542009-06-27 02:58:43 +02001222 DEBUGPC(DMM, "ignoring request due an existing one: %p.\n",
Holger Freythereaf04692009-06-06 13:54:44 +00001223 lchan->loc_operation);
1224 gsm0408_loc_upd_rej(lchan, GSM48_REJECT_PROTOCOL_ERROR);
1225 return 0;
1226 }
1227
Holger Freyther73487a22008-12-31 18:53:57 +00001228 allocate_loc_updating_req(lchan);
1229
Harald Welte52b1f982008-12-23 20:25:15 +00001230 switch (mi_type) {
1231 case GSM_MI_TYPE_IMSI:
Harald Weltea0368542009-06-27 02:58:43 +02001232 DEBUGPC(DMM, "\n");
Harald Welte231ad4f2008-12-27 11:15:38 +00001233 /* we always want the IMEI, too */
Harald Welte015b9ad2009-02-28 18:22:03 +00001234 rc = mm_tx_identity_req(lchan, GSM_MI_TYPE_IMEI);
Holger Freyther73487a22008-12-31 18:53:57 +00001235 lchan->loc_operation->waiting_for_imei = 1;
Holger Freytherc6ea9db2008-12-30 19:18:21 +00001236
Harald Welte52b1f982008-12-23 20:25:15 +00001237 /* look up subscriber based on IMSI */
Harald Welte9176bd42009-07-23 18:46:00 +02001238 subscr = db_create_subscriber(bts->network, mi_string);
Harald Welte4b634542008-12-27 01:55:51 +00001239 break;
Harald Welte52b1f982008-12-23 20:25:15 +00001240 case GSM_MI_TYPE_TMSI:
Harald Weltea0368542009-06-27 02:58:43 +02001241 DEBUGPC(DMM, "\n");
Harald Welte231ad4f2008-12-27 11:15:38 +00001242 /* we always want the IMEI, too */
Harald Welte015b9ad2009-02-28 18:22:03 +00001243 rc = mm_tx_identity_req(lchan, GSM_MI_TYPE_IMEI);
Holger Freyther73487a22008-12-31 18:53:57 +00001244 lchan->loc_operation->waiting_for_imei = 1;
Holger Freytherc6ea9db2008-12-30 19:18:21 +00001245
Harald Welte52b1f982008-12-23 20:25:15 +00001246 /* look up the subscriber based on TMSI, request IMSI if it fails */
Harald Welte9176bd42009-07-23 18:46:00 +02001247 subscr = subscr_get_by_tmsi(bts->network, mi_string);
Harald Welte52b1f982008-12-23 20:25:15 +00001248 if (!subscr) {
Harald Welte231ad4f2008-12-27 11:15:38 +00001249 /* send IDENTITY REQUEST message to get IMSI */
Harald Welte255539c2008-12-28 02:26:27 +00001250 rc = mm_tx_identity_req(lchan, GSM_MI_TYPE_IMSI);
Holger Freyther73487a22008-12-31 18:53:57 +00001251 lchan->loc_operation->waiting_for_imsi = 1;
Harald Welte52b1f982008-12-23 20:25:15 +00001252 }
1253 break;
1254 case GSM_MI_TYPE_IMEI:
1255 case GSM_MI_TYPE_IMEISV:
1256 /* no sim card... FIXME: what to do ? */
Harald Weltea0368542009-06-27 02:58:43 +02001257 DEBUGPC(DMM, "unimplemented mobile identity type\n");
Harald Welte52b1f982008-12-23 20:25:15 +00001258 break;
1259 default:
Harald Weltea0368542009-06-27 02:58:43 +02001260 DEBUGPC(DMM, "unknown mobile identity type\n");
Harald Welte52b1f982008-12-23 20:25:15 +00001261 break;
1262 }
1263
Harald Welte24516ea2009-07-04 10:18:00 +02001264 /* schedule the reject timer */
1265 schedule_reject(lchan);
1266
Harald Welte4bfdfe72009-06-10 23:11:52 +08001267 if (!subscr) {
Harald Weltea0368542009-06-27 02:58:43 +02001268 DEBUGPC(DRR, "<- Can't find any subscriber for this ID\n");
Harald Welte4bfdfe72009-06-10 23:11:52 +08001269 /* FIXME: request id? close channel? */
1270 return -EINVAL;
1271 }
1272
Harald Welte255539c2008-12-28 02:26:27 +00001273 lchan->subscr = subscr;
1274
Harald Welte24516ea2009-07-04 10:18:00 +02001275 /* check if we can let the subscriber into our network immediately
1276 * or if we need to wait for identity responses. */
Holger Freytherd51524f2009-06-09 08:27:07 +00001277 return gsm0408_authorize(lchan, msg);
Harald Welte52b1f982008-12-23 20:25:15 +00001278}
1279
Harald Welte7584aea2009-02-11 11:44:12 +00001280/* 9.1.5 Channel mode modify */
1281int gsm48_tx_chan_mode_modify(struct gsm_lchan *lchan, u_int8_t mode)
1282{
1283 struct msgb *msg = gsm48_msgb_alloc();
1284 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1285 struct gsm48_chan_mode_modify *cmm =
1286 (struct gsm48_chan_mode_modify *) msgb_put(msg, sizeof(*cmm));
Harald Welte4a543e82009-02-28 13:17:55 +00001287 u_int16_t arfcn = lchan->ts->trx->arfcn & 0x3ff;
Harald Welte7584aea2009-02-11 11:44:12 +00001288
Harald Welte4a543e82009-02-28 13:17:55 +00001289 DEBUGP(DRR, "-> CHANNEL MODE MODIFY mode=0x%02x\n", mode);
Harald Welte7ccf7782009-02-17 01:43:01 +00001290
Harald Welte45b407a2009-05-23 15:51:12 +00001291 lchan->tch_mode = mode;
Harald Welte7584aea2009-02-11 11:44:12 +00001292 msg->lchan = lchan;
1293 gh->proto_discr = GSM48_PDISC_RR;
1294 gh->msg_type = GSM48_MT_RR_CHAN_MODE_MODIF;
1295
1296 /* fill the channel information element, this code
1297 * should probably be shared with rsl_rx_chan_rqd() */
1298 cmm->chan_desc.chan_nr = lchan2chan_nr(lchan);
Harald Welte02b0e092009-02-28 13:11:07 +00001299 cmm->chan_desc.h0.tsc = lchan->ts->trx->bts->tsc;
Harald Welte7584aea2009-02-11 11:44:12 +00001300 cmm->chan_desc.h0.h = 0;
1301 cmm->chan_desc.h0.arfcn_high = arfcn >> 8;
1302 cmm->chan_desc.h0.arfcn_low = arfcn & 0xff;
1303 cmm->mode = mode;
1304
1305 return gsm48_sendmsg(msg);
1306}
1307
Harald Welte4bfdfe72009-06-10 23:11:52 +08001308#if 0
1309static u_int8_t to_bcd8(u_int8_t val)
1310{
1311 return ((val / 10) << 4) | (val % 10);
1312}
1313#endif
1314
Harald Weltedb253af2008-12-30 17:56:55 +00001315/* Section 9.2.15a */
1316int gsm48_tx_mm_info(struct gsm_lchan *lchan)
1317{
1318 struct msgb *msg = gsm48_msgb_alloc();
1319 struct gsm48_hdr *gh;
1320 struct gsm_network *net = lchan->ts->trx->bts->network;
Harald Weltedb253af2008-12-30 17:56:55 +00001321 u_int8_t *ptr8;
1322 u_int16_t *ptr16;
1323 int name_len;
Harald Weltedb253af2008-12-30 17:56:55 +00001324 int i;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001325#if 0
1326 time_t cur_t;
1327 struct tm* cur_time;
1328 int tz15min;
1329#endif
Harald Weltedb253af2008-12-30 17:56:55 +00001330
1331 msg->lchan = lchan;
1332
1333 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1334 gh->proto_discr = GSM48_PDISC_MM;
1335 gh->msg_type = GSM48_MT_MM_INFO;
1336
1337 if (net->name_long) {
1338 name_len = strlen(net->name_long);
1339 /* 10.5.3.5a */
1340 ptr8 = msgb_put(msg, 3);
1341 ptr8[0] = GSM48_IE_NAME_LONG;
1342 ptr8[1] = name_len*2 +1;
1343 ptr8[2] = 0x90; /* UCS2, no spare bits, no CI */
1344
1345 ptr16 = (u_int16_t *) msgb_put(msg, name_len*2);
1346 for (i = 0; i < name_len; i++)
Harald Welte179f0642008-12-31 23:59:18 +00001347 ptr16[i] = htons(net->name_long[i]);
Harald Weltedb253af2008-12-30 17:56:55 +00001348
1349 /* FIXME: Use Cell Broadcast, not UCS-2, since
1350 * UCS-2 is only supported by later revisions of the spec */
1351 }
1352
1353 if (net->name_short) {
1354 name_len = strlen(net->name_short);
1355 /* 10.5.3.5a */
1356 ptr8 = (u_int8_t *) msgb_put(msg, 3);
Harald Welte7543eb72009-07-19 17:51:36 +02001357 ptr8[0] = GSM48_IE_NAME_SHORT;
Harald Weltedb253af2008-12-30 17:56:55 +00001358 ptr8[1] = name_len*2 + 1;
1359 ptr8[2] = 0x90; /* UCS2, no spare bits, no CI */
1360
Harald Weltee872cb12009-01-01 00:33:37 +00001361 ptr16 = (u_int16_t *) msgb_put(msg, name_len*2);
Harald Weltedb253af2008-12-30 17:56:55 +00001362 for (i = 0; i < name_len; i++)
Harald Welte179f0642008-12-31 23:59:18 +00001363 ptr16[i] = htons(net->name_short[i]);
Harald Weltedb253af2008-12-30 17:56:55 +00001364 }
1365
1366#if 0
1367 /* Section 10.5.3.9 */
1368 cur_t = time(NULL);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001369 cur_time = gmtime(&cur_t);
Harald Weltedb253af2008-12-30 17:56:55 +00001370 ptr8 = msgb_put(msg, 8);
1371 ptr8[0] = GSM48_IE_NET_TIME_TZ;
1372 ptr8[1] = to_bcd8(cur_time->tm_year % 100);
1373 ptr8[2] = to_bcd8(cur_time->tm_mon);
1374 ptr8[3] = to_bcd8(cur_time->tm_mday);
1375 ptr8[4] = to_bcd8(cur_time->tm_hour);
1376 ptr8[5] = to_bcd8(cur_time->tm_min);
1377 ptr8[6] = to_bcd8(cur_time->tm_sec);
1378 /* 02.42: coded as BCD encoded signed value in units of 15 minutes */
1379 tz15min = (cur_time->tm_gmtoff)/(60*15);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001380 ptr8[7] = to_bcd8(tz15min);
Harald Weltedb253af2008-12-30 17:56:55 +00001381 if (tz15min < 0)
Harald Welte4bfdfe72009-06-10 23:11:52 +08001382 ptr8[7] |= 0x80;
Harald Weltedb253af2008-12-30 17:56:55 +00001383#endif
1384
1385 return gsm48_sendmsg(msg);
1386}
1387
Harald Welte4b634542008-12-27 01:55:51 +00001388static int gsm48_tx_mm_serv_ack(struct gsm_lchan *lchan)
1389{
Harald Welte4b634542008-12-27 01:55:51 +00001390 DEBUGP(DMM, "-> CM SERVICE ACK\n");
Harald Welte65e74cc2008-12-29 01:55:35 +00001391 return gsm48_tx_simple(lchan, GSM48_PDISC_MM, GSM48_MT_MM_CM_SERV_ACC);
Harald Welte4b634542008-12-27 01:55:51 +00001392}
Harald Welteba4cf162009-01-10 01:49:35 +00001393
1394/* 9.2.6 CM service reject */
1395static int gsm48_tx_mm_serv_rej(struct gsm_lchan *lchan,
1396 enum gsm48_reject_value value)
1397{
1398 struct msgb *msg = gsm48_msgb_alloc();
1399 struct gsm48_hdr *gh;
1400
1401 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh) + 1);
1402
1403 msg->lchan = lchan;
1404 use_lchan(lchan);
1405
1406 gh->proto_discr = GSM48_PDISC_MM;
1407 gh->msg_type = GSM48_MT_MM_CM_SERV_REJ;
1408 gh->data[0] = value;
1409 DEBUGP(DMM, "-> CM SERVICE Reject cause: %d\n", value);
1410
1411 return gsm48_sendmsg(msg);
1412}
1413
Harald Welte4ed0e922009-01-10 03:17:30 +00001414
1415/*
1416 * Handle CM Service Requests
1417 * a) Verify that the packet is long enough to contain the information
1418 * we require otherwsie reject with INCORRECT_MESSAGE
1419 * b) Try to parse the TMSI. If we do not have one reject
1420 * c) Check that we know the subscriber with the TMSI otherwise reject
1421 * with a HLR cause
1422 * d) Set the subscriber on the gsm_lchan and accept
1423 */
Harald Welte4b634542008-12-27 01:55:51 +00001424static int gsm48_rx_mm_serv_req(struct msgb *msg)
1425{
Harald Welteba4cf162009-01-10 01:49:35 +00001426 u_int8_t mi_type;
Harald Welte4ed0e922009-01-10 03:17:30 +00001427 char mi_string[MI_SIZE];
Harald Welte4b634542008-12-27 01:55:51 +00001428
Harald Welte9176bd42009-07-23 18:46:00 +02001429 struct gsm_bts *bts = msg->lchan->ts->trx->bts;
Harald Welteba4cf162009-01-10 01:49:35 +00001430 struct gsm_subscriber *subscr;
1431 struct gsm48_hdr *gh = msgb_l3(msg);
1432 struct gsm48_service_request *req =
1433 (struct gsm48_service_request *)gh->data;
Harald Weltec9e02182009-05-01 19:07:53 +00001434 /* unfortunately in Phase1 the classmar2 length is variable */
1435 u_int8_t classmark2_len = gh->data[1];
1436 u_int8_t *classmark2 = gh->data+2;
1437 u_int8_t mi_len = *(classmark2 + classmark2_len);
1438 u_int8_t *mi = (classmark2 + classmark2_len + 1);
Harald Welteba4cf162009-01-10 01:49:35 +00001439
Harald Weltec9e02182009-05-01 19:07:53 +00001440 DEBUGP(DMM, "<- CM SERVICE REQUEST ");
Harald Welteba4cf162009-01-10 01:49:35 +00001441 if (msg->data_len < sizeof(struct gsm48_service_request*)) {
Harald Weltec9e02182009-05-01 19:07:53 +00001442 DEBUGPC(DMM, "wrong sized message\n");
Harald Welteba4cf162009-01-10 01:49:35 +00001443 return gsm48_tx_mm_serv_rej(msg->lchan,
1444 GSM48_REJECT_INCORRECT_MESSAGE);
1445 }
1446
1447 if (msg->data_len < req->mi_len + 6) {
Harald Weltec9e02182009-05-01 19:07:53 +00001448 DEBUGPC(DMM, "does not fit in packet\n");
Harald Welteba4cf162009-01-10 01:49:35 +00001449 return gsm48_tx_mm_serv_rej(msg->lchan,
1450 GSM48_REJECT_INCORRECT_MESSAGE);
1451 }
1452
Harald Weltec9e02182009-05-01 19:07:53 +00001453 mi_type = mi[0] & GSM_MI_TYPE_MASK;
Harald Welteba4cf162009-01-10 01:49:35 +00001454 if (mi_type != GSM_MI_TYPE_TMSI) {
Harald Weltec9e02182009-05-01 19:07:53 +00001455 DEBUGPC(DMM, "mi_type is not TMSI: %d\n", mi_type);
Harald Welteba4cf162009-01-10 01:49:35 +00001456 return gsm48_tx_mm_serv_rej(msg->lchan,
1457 GSM48_REJECT_INCORRECT_MESSAGE);
1458 }
1459
Harald Weltec9e02182009-05-01 19:07:53 +00001460 mi_to_string(mi_string, sizeof(mi_string), mi, mi_len);
Harald Weltec9e02182009-05-01 19:07:53 +00001461 DEBUGPC(DMM, "serv_type=0x%02x mi_type=0x%02x M(%s)\n",
Harald Welte4ed0e922009-01-10 03:17:30 +00001462 req->cm_service_type, mi_type, mi_string);
Harald Weltebcae43f2008-12-27 21:45:37 +00001463
Harald Welte9176bd42009-07-23 18:46:00 +02001464 subscr = subscr_get_by_tmsi(bts->network, mi_string);
Holger Freythereb443982009-06-04 13:58:42 +00001465
Harald Welte2a139372009-02-22 21:14:55 +00001466 /* FIXME: if we don't know the TMSI, inquire abit IMSI and allocate new TMSI */
Harald Welte4ed0e922009-01-10 03:17:30 +00001467 if (!subscr)
1468 return gsm48_tx_mm_serv_rej(msg->lchan,
1469 GSM48_REJECT_IMSI_UNKNOWN_IN_HLR);
1470
1471 if (!msg->lchan->subscr)
1472 msg->lchan->subscr = subscr;
Harald Welte9bb7c702009-01-10 03:21:41 +00001473 else if (msg->lchan->subscr != subscr) {
1474 DEBUGP(DMM, "<- CM Channel already owned by someone else?\n");
1475 subscr_put(subscr);
1476 }
1477
Harald Weltec2e302d2009-07-05 14:08:13 +02001478 subscr->equipment.classmark2_len = classmark2_len;
1479 memcpy(subscr->equipment.classmark2, classmark2, classmark2_len);
1480 db_sync_equipment(&subscr->equipment);
Harald Weltef7c43522009-06-09 20:24:21 +00001481
Harald Welte4b634542008-12-27 01:55:51 +00001482 return gsm48_tx_mm_serv_ack(msg->lchan);
1483}
1484
Harald Welte2a139372009-02-22 21:14:55 +00001485static int gsm48_rx_mm_imsi_detach_ind(struct msgb *msg)
1486{
Harald Welte9176bd42009-07-23 18:46:00 +02001487 struct gsm_bts *bts = msg->lchan->ts->trx->bts;
Harald Welte2a139372009-02-22 21:14:55 +00001488 struct gsm48_hdr *gh = msgb_l3(msg);
1489 struct gsm48_imsi_detach_ind *idi =
1490 (struct gsm48_imsi_detach_ind *) gh->data;
1491 u_int8_t mi_type = idi->mi[0] & GSM_MI_TYPE_MASK;
1492 char mi_string[MI_SIZE];
Harald Welte4bfdfe72009-06-10 23:11:52 +08001493 struct gsm_subscriber *subscr = NULL;
Harald Welte2a139372009-02-22 21:14:55 +00001494
1495 mi_to_string(mi_string, sizeof(mi_string), idi->mi, idi->mi_len);
1496 DEBUGP(DMM, "IMSI DETACH INDICATION: mi_type=0x%02x MI(%s): ",
1497 mi_type, mi_string);
1498
1499 switch (mi_type) {
1500 case GSM_MI_TYPE_TMSI:
Harald Welte9176bd42009-07-23 18:46:00 +02001501 subscr = subscr_get_by_tmsi(bts->network, mi_string);
Harald Welte2a139372009-02-22 21:14:55 +00001502 break;
1503 case GSM_MI_TYPE_IMSI:
Harald Welte9176bd42009-07-23 18:46:00 +02001504 subscr = subscr_get_by_imsi(bts->network, mi_string);
Harald Welte2a139372009-02-22 21:14:55 +00001505 break;
1506 case GSM_MI_TYPE_IMEI:
1507 case GSM_MI_TYPE_IMEISV:
1508 /* no sim card... FIXME: what to do ? */
Holger Freyther79f4ae62009-06-02 03:25:04 +00001509 DEBUGPC(DMM, "unimplemented mobile identity type\n");
Harald Welte2a139372009-02-22 21:14:55 +00001510 break;
1511 default:
Holger Freyther79f4ae62009-06-02 03:25:04 +00001512 DEBUGPC(DMM, "unknown mobile identity type\n");
Harald Welte2a139372009-02-22 21:14:55 +00001513 break;
1514 }
1515
Holger Freyther4a49e772009-04-12 05:37:29 +00001516 if (subscr) {
1517 subscr_update(subscr, msg->trx->bts,
1518 GSM_SUBSCRIBER_UPDATE_DETACHED);
Harald Welte2a139372009-02-22 21:14:55 +00001519 DEBUGP(DMM, "Subscriber: %s\n",
1520 subscr->name ? subscr->name : subscr->imsi);
Holger Freytherc21cfbc2009-06-02 02:54:57 +00001521 subscr_put(subscr);
Holger Freyther4a49e772009-04-12 05:37:29 +00001522 } else
Harald Welte2a139372009-02-22 21:14:55 +00001523 DEBUGP(DMM, "Unknown Subscriber ?!?\n");
1524
Harald Welte2a139372009-02-22 21:14:55 +00001525 return 0;
1526}
1527
Harald Welted2a7f5a2009-06-05 20:08:20 +00001528static int gsm48_rx_mm_status(struct msgb *msg)
1529{
1530 struct gsm48_hdr *gh = msgb_l3(msg);
1531
1532 DEBUGP(DMM, "MM STATUS (reject cause 0x%02x)\n", gh->data[0]);
1533
1534 return 0;
1535}
1536
Harald Weltebf5e8df2009-02-03 12:59:45 +00001537/* Receive a GSM 04.08 Mobility Management (MM) message */
Harald Welte52b1f982008-12-23 20:25:15 +00001538static int gsm0408_rcv_mm(struct msgb *msg)
1539{
1540 struct gsm48_hdr *gh = msgb_l3(msg);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001541 int rc = 0;
Harald Welte52b1f982008-12-23 20:25:15 +00001542
1543 switch (gh->msg_type & 0xbf) {
1544 case GSM48_MT_MM_LOC_UPD_REQUEST:
Harald Weltea0368542009-06-27 02:58:43 +02001545 DEBUGP(DMM, "LOCATION UPDATING REQUEST: ");
Harald Welte231ad4f2008-12-27 11:15:38 +00001546 rc = mm_rx_loc_upd_req(msg);
Harald Welte52b1f982008-12-23 20:25:15 +00001547 break;
1548 case GSM48_MT_MM_ID_RESP:
Harald Welte231ad4f2008-12-27 11:15:38 +00001549 rc = mm_rx_id_resp(msg);
1550 break;
Harald Welte52b1f982008-12-23 20:25:15 +00001551 case GSM48_MT_MM_CM_SERV_REQ:
Harald Welte4b634542008-12-27 01:55:51 +00001552 rc = gsm48_rx_mm_serv_req(msg);
1553 break;
Harald Welte231ad4f2008-12-27 11:15:38 +00001554 case GSM48_MT_MM_STATUS:
Harald Welted2a7f5a2009-06-05 20:08:20 +00001555 rc = gsm48_rx_mm_status(msg);
Harald Welte231ad4f2008-12-27 11:15:38 +00001556 break;
Harald Welte231ad4f2008-12-27 11:15:38 +00001557 case GSM48_MT_MM_TMSI_REALL_COMPL:
Harald Welte69b2af22009-01-06 19:47:00 +00001558 DEBUGP(DMM, "TMSI Reallocation Completed. Subscriber: %s\n",
1559 msg->lchan->subscr ?
1560 msg->lchan->subscr->imsi :
1561 "unknown subscriber");
1562 break;
Harald Welte231ad4f2008-12-27 11:15:38 +00001563 case GSM48_MT_MM_IMSI_DETACH_IND:
Harald Welte2a139372009-02-22 21:14:55 +00001564 rc = gsm48_rx_mm_imsi_detach_ind(msg);
1565 break;
1566 case GSM48_MT_MM_CM_REEST_REQ:
1567 DEBUGP(DMM, "CM REESTABLISH REQUEST: Not implemented\n");
1568 break;
1569 case GSM48_MT_MM_AUTH_RESP:
1570 DEBUGP(DMM, "AUTHENTICATION RESPONSE: Not implemented\n");
Harald Welte52b1f982008-12-23 20:25:15 +00001571 break;
1572 default:
1573 fprintf(stderr, "Unknown GSM 04.08 MM msg type 0x%02x\n",
1574 gh->msg_type);
1575 break;
1576 }
1577
1578 return rc;
1579}
Harald Weltebf5e8df2009-02-03 12:59:45 +00001580
Harald Welte2d35ae62009-02-06 12:02:13 +00001581/* Receive a PAGING RESPONSE message from the MS */
1582static int gsm48_rr_rx_pag_resp(struct msgb *msg)
1583{
Harald Welte9176bd42009-07-23 18:46:00 +02001584 struct gsm_bts *bts = msg->lchan->ts->trx->bts;
Harald Welte2d35ae62009-02-06 12:02:13 +00001585 struct gsm48_hdr *gh = msgb_l3(msg);
Harald Welte61548982009-02-22 21:26:29 +00001586 u_int8_t *classmark2_lv = gh->data + 1;
1587 u_int8_t *mi_lv = gh->data + 2 + *classmark2_lv;
1588 u_int8_t mi_type = mi_lv[1] & GSM_MI_TYPE_MASK;
Harald Welte2d35ae62009-02-06 12:02:13 +00001589 char mi_string[MI_SIZE];
Harald Welte4bfdfe72009-06-10 23:11:52 +08001590 struct gsm_subscriber *subscr = NULL;
Harald Welte595ad7b2009-02-16 22:05:44 +00001591 struct paging_signal_data sig_data;
Harald Welte2d35ae62009-02-06 12:02:13 +00001592 int rc = 0;
1593
Harald Welte61548982009-02-22 21:26:29 +00001594 mi_to_string(mi_string, sizeof(mi_string), mi_lv+1, *mi_lv);
Harald Welte2d35ae62009-02-06 12:02:13 +00001595 DEBUGP(DRR, "PAGING RESPONSE: mi_type=0x%02x MI(%s)\n",
1596 mi_type, mi_string);
Harald Weltefe18d8f2009-02-22 21:14:24 +00001597 switch (mi_type) {
1598 case GSM_MI_TYPE_TMSI:
Harald Welte9176bd42009-07-23 18:46:00 +02001599 subscr = subscr_get_by_tmsi(bts->network, mi_string);
Harald Weltefe18d8f2009-02-22 21:14:24 +00001600 break;
1601 case GSM_MI_TYPE_IMSI:
Harald Welte9176bd42009-07-23 18:46:00 +02001602 subscr = subscr_get_by_imsi(bts->network, mi_string);
Harald Weltefe18d8f2009-02-22 21:14:24 +00001603 break;
1604 }
Harald Welte2d35ae62009-02-06 12:02:13 +00001605
1606 if (!subscr) {
1607 DEBUGP(DRR, "<- Can't find any subscriber for this ID\n");
Harald Welte09e38af2009-02-16 22:52:23 +00001608 /* FIXME: request id? close channel? */
Harald Welte2d35ae62009-02-06 12:02:13 +00001609 return -EINVAL;
1610 }
1611 DEBUGP(DRR, "<- Channel was requested by %s\n",
1612 subscr->name ? subscr->name : subscr->imsi);
Holger Freyther053e09d2009-02-14 22:51:06 +00001613
Harald Weltec2e302d2009-07-05 14:08:13 +02001614 subscr->equipment.classmark2_len = *classmark2_lv;
1615 memcpy(subscr->equipment.classmark2, classmark2_lv+1, *classmark2_lv);
1616 db_sync_equipment(&subscr->equipment);
Harald Weltef7c43522009-06-09 20:24:21 +00001617
Holger Freytherc21cfbc2009-06-02 02:54:57 +00001618 if (!msg->lchan->subscr) {
Holger Freyther2fa4cb52009-02-14 23:53:15 +00001619 msg->lchan->subscr = subscr;
Holger Freytherc21cfbc2009-06-02 02:54:57 +00001620 } else if (msg->lchan->subscr != subscr) {
Holger Freyther2fa4cb52009-02-14 23:53:15 +00001621 DEBUGP(DRR, "<- Channel already owned by someone else?\n");
1622 subscr_put(subscr);
Holger Freytherc21cfbc2009-06-02 02:54:57 +00001623 return -EINVAL;
1624 } else {
1625 DEBUGP(DRR, "<- Channel already owned by us\n");
1626 subscr_put(subscr);
1627 subscr = msg->lchan->subscr;
Holger Freyther2fa4cb52009-02-14 23:53:15 +00001628 }
1629
Harald Welte595ad7b2009-02-16 22:05:44 +00001630 sig_data.subscr = subscr;
1631 sig_data.bts = msg->lchan->ts->trx->bts;
1632 sig_data.lchan = msg->lchan;
1633
1634 dispatch_signal(SS_PAGING, S_PAGING_COMPLETED, &sig_data);
Harald Weltebe143102009-06-10 11:21:55 +08001635
1636 /* Stop paging on the bts we received the paging response */
Harald Welte7ccf7782009-02-17 01:43:01 +00001637 paging_request_stop(msg->trx->bts, subscr, msg->lchan);
Harald Welte2d35ae62009-02-06 12:02:13 +00001638
Harald Welte7584aea2009-02-11 11:44:12 +00001639 /* FIXME: somehow signal the completion of the PAGING to
1640 * the entity that requested the paging */
1641
Harald Welte2d35ae62009-02-06 12:02:13 +00001642 return rc;
1643}
1644
Harald Weltef7c43522009-06-09 20:24:21 +00001645static int gsm48_rx_rr_classmark(struct msgb *msg)
1646{
1647 struct gsm48_hdr *gh = msgb_l3(msg);
1648 struct gsm_subscriber *subscr = msg->lchan->subscr;
1649 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
1650 u_int8_t cm2_len, cm3_len = 0;
1651 u_int8_t *cm2, *cm3 = NULL;
1652
1653 DEBUGP(DRR, "CLASSMARK CHANGE ");
1654
1655 /* classmark 2 */
1656 cm2_len = gh->data[0];
1657 cm2 = &gh->data[1];
1658 DEBUGPC(DRR, "CM2(len=%u) ", cm2_len);
1659
1660 if (payload_len > cm2_len + 1) {
1661 /* we must have a classmark3 */
1662 if (gh->data[cm2_len+1] != 0x20) {
1663 DEBUGPC(DRR, "ERR CM3 TAG\n");
1664 return -EINVAL;
1665 }
1666 if (cm2_len > 3) {
1667 DEBUGPC(DRR, "CM2 too long!\n");
1668 return -EINVAL;
1669 }
1670
1671 cm3_len = gh->data[cm2_len+2];
1672 cm3 = &gh->data[cm2_len+3];
1673 if (cm3_len > 14) {
1674 DEBUGPC(DRR, "CM3 len %u too long!\n", cm3_len);
1675 return -EINVAL;
1676 }
1677 DEBUGPC(DRR, "CM3(len=%u)\n", cm3_len);
1678 }
1679 if (subscr) {
Harald Weltec2e302d2009-07-05 14:08:13 +02001680 subscr->equipment.classmark2_len = cm2_len;
1681 memcpy(subscr->equipment.classmark2, cm2, cm2_len);
Harald Weltef7c43522009-06-09 20:24:21 +00001682 if (cm3) {
Harald Weltec2e302d2009-07-05 14:08:13 +02001683 subscr->equipment.classmark3_len = cm3_len;
1684 memcpy(subscr->equipment.classmark3, cm3, cm3_len);
Harald Weltef7c43522009-06-09 20:24:21 +00001685 }
Harald Weltec2e302d2009-07-05 14:08:13 +02001686 db_sync_equipment(&subscr->equipment);
Harald Weltef7c43522009-06-09 20:24:21 +00001687 }
1688
Harald Weltef7c43522009-06-09 20:24:21 +00001689 return 0;
1690}
1691
Harald Weltecf5b3592009-05-01 18:28:42 +00001692static int gsm48_rx_rr_status(struct msgb *msg)
1693{
1694 struct gsm48_hdr *gh = msgb_l3(msg);
1695
1696 DEBUGP(DRR, "STATUS rr_cause = %s\n",
1697 rr_cause_name(gh->data[0]));
1698
1699 return 0;
1700}
1701
Harald Weltef7c43522009-06-09 20:24:21 +00001702static int gsm48_rx_rr_meas_rep(struct msgb *msg)
1703{
1704 struct gsm48_hdr *gh = msgb_l3(msg);
1705 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
1706 static struct gsm_meas_rep meas_rep;
1707
Harald Welte10d0e672009-06-27 02:53:10 +02001708 DEBUGP(DMEAS, "MEASUREMENT REPORT ");
Harald Weltef7c43522009-06-09 20:24:21 +00001709 parse_meas_rep(&meas_rep, gh->data, payload_len);
1710 if (meas_rep.flags & MEAS_REP_F_DTX)
Harald Welte10d0e672009-06-27 02:53:10 +02001711 DEBUGPC(DMEAS, "DTX ");
Harald Weltef7c43522009-06-09 20:24:21 +00001712 if (meas_rep.flags & MEAS_REP_F_BA1)
Harald Welte10d0e672009-06-27 02:53:10 +02001713 DEBUGPC(DMEAS, "BA1 ");
Harald Weltef7c43522009-06-09 20:24:21 +00001714 if (!(meas_rep.flags & MEAS_REP_F_VALID))
Harald Welte10d0e672009-06-27 02:53:10 +02001715 DEBUGPC(DMEAS, "NOT VALID ");
Harald Weltef7c43522009-06-09 20:24:21 +00001716 else
Harald Welte10d0e672009-06-27 02:53:10 +02001717 DEBUGPC(DMEAS, "FULL(lev=%u, qual=%u) SUB(lev=%u, qual=%u) ",
Harald Weltef7c43522009-06-09 20:24:21 +00001718 meas_rep.rxlev_full, meas_rep.rxqual_full, meas_rep.rxlev_sub,
1719 meas_rep.rxqual_sub);
1720
Harald Welte10d0e672009-06-27 02:53:10 +02001721 DEBUGPC(DMEAS, "NUM_NEIGH=%u\n", meas_rep.num_cell);
Harald Weltef7c43522009-06-09 20:24:21 +00001722
1723 /* FIXME: put the results somwhere */
1724
1725 return 0;
1726}
1727
Harald Weltebf5e8df2009-02-03 12:59:45 +00001728/* Receive a GSM 04.08 Radio Resource (RR) message */
Harald Welte52b1f982008-12-23 20:25:15 +00001729static int gsm0408_rcv_rr(struct msgb *msg)
1730{
1731 struct gsm48_hdr *gh = msgb_l3(msg);
Harald Welte2d35ae62009-02-06 12:02:13 +00001732 int rc = 0;
Harald Welte52b1f982008-12-23 20:25:15 +00001733
1734 switch (gh->msg_type) {
1735 case GSM48_MT_RR_CLSM_CHG:
Harald Weltef7c43522009-06-09 20:24:21 +00001736 rc = gsm48_rx_rr_classmark(msg);
Harald Welte52b1f982008-12-23 20:25:15 +00001737 break;
Harald Weltefc977a82008-12-27 10:19:37 +00001738 case GSM48_MT_RR_GPRS_SUSP_REQ:
1739 DEBUGP(DRR, "GRPS SUSPEND REQUEST\n");
1740 break;
Harald Welte52b1f982008-12-23 20:25:15 +00001741 case GSM48_MT_RR_PAG_RESP:
Harald Welte2d35ae62009-02-06 12:02:13 +00001742 rc = gsm48_rr_rx_pag_resp(msg);
1743 break;
Harald Welte7ccf7782009-02-17 01:43:01 +00001744 case GSM48_MT_RR_CHAN_MODE_MODIF_ACK:
1745 DEBUGP(DRR, "CHANNEL MODE MODIFY ACK\n");
Harald Welte2c38aa82009-02-18 03:44:24 +00001746 rc = rsl_chan_mode_modify_req(msg->lchan);
Harald Welte7ccf7782009-02-17 01:43:01 +00001747 break;
Harald Weltecf5b3592009-05-01 18:28:42 +00001748 case GSM48_MT_RR_STATUS:
1749 rc = gsm48_rx_rr_status(msg);
1750 break;
Harald Weltef7c43522009-06-09 20:24:21 +00001751 case GSM48_MT_RR_MEAS_REP:
1752 rc = gsm48_rx_rr_meas_rep(msg);
1753 break;
Harald Welte52b1f982008-12-23 20:25:15 +00001754 default:
Harald Welte2d35ae62009-02-06 12:02:13 +00001755 fprintf(stderr, "Unimplemented GSM 04.08 RR msg type 0x%02x\n",
Harald Welte52b1f982008-12-23 20:25:15 +00001756 gh->msg_type);
1757 break;
1758 }
1759
Harald Welte2d35ae62009-02-06 12:02:13 +00001760 return rc;
Harald Welte52b1f982008-12-23 20:25:15 +00001761}
1762
Holger Freythere64a7a32009-02-06 21:55:37 +00001763/* 7.1.7 and 9.1.7 Channel release*/
1764int gsm48_send_rr_release(struct gsm_lchan *lchan)
1765{
1766 struct msgb *msg = gsm48_msgb_alloc();
1767 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1768 u_int8_t *cause;
1769
1770 msg->lchan = lchan;
1771 gh->proto_discr = GSM48_PDISC_RR;
1772 gh->msg_type = GSM48_MT_RR_CHAN_REL;
1773
1774 cause = msgb_put(msg, 1);
1775 cause[0] = GSM48_RR_CAUSE_NORMAL;
1776
1777 DEBUGP(DRR, "Sending Channel Release: Chan: Number: %d Type: %d\n",
1778 lchan->nr, lchan->type);
1779
Harald Welteae0f2362009-07-19 18:36:49 +02001780 /* Send actual release request to MS */
1781 gsm48_sendmsg(msg);
1782
1783 /* Deactivate the SACCH on the BTS side */
1784 return rsl_deact_sacch(lchan);
Holger Freythere64a7a32009-02-06 21:55:37 +00001785}
1786
Harald Welte4bc90a12008-12-27 16:32:52 +00001787/* Call Control */
1788
Harald Welte7584aea2009-02-11 11:44:12 +00001789/* The entire call control code is written in accordance with Figure 7.10c
1790 * for 'very early assignment', i.e. we allocate a TCH/F during IMMEDIATE
1791 * ASSIGN, then first use that TCH/F for signalling and later MODE MODIFY
1792 * it for voice */
1793
Harald Welte4bfdfe72009-06-10 23:11:52 +08001794static void new_cc_state(struct gsm_trans *trans, int state)
1795{
1796 if (state > 31 || state < 0)
1797 return;
1798
1799 DEBUGP(DCC, "new state %s -> %s\n",
Harald Weltedcaf5652009-07-23 18:56:43 +02001800 cc_state_names[trans->cc.state], cc_state_names[state]);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001801
Harald Weltedcaf5652009-07-23 18:56:43 +02001802 trans->cc.state = state;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001803}
1804
1805static int gsm48_cc_tx_status(struct gsm_trans *trans, void *arg)
Harald Welte4bc90a12008-12-27 16:32:52 +00001806{
1807 struct msgb *msg = gsm48_msgb_alloc();
1808 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1809 u_int8_t *cause, *call_state;
1810
Harald Welte4bfdfe72009-06-10 23:11:52 +08001811 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
1812 msg->lchan = trans->lchan;
Harald Welte4bc90a12008-12-27 16:32:52 +00001813 gh->msg_type = GSM48_MT_CC_STATUS;
1814
1815 cause = msgb_put(msg, 3);
1816 cause[0] = 2;
1817 cause[1] = GSM48_CAUSE_CS_GSM | GSM48_CAUSE_LOC_USER;
1818 cause[2] = 0x80 | 30; /* response to status inquiry */
1819
1820 call_state = msgb_put(msg, 1);
1821 call_state[0] = 0xc0 | 0x00;
1822
Harald Welte65e74cc2008-12-29 01:55:35 +00001823 return gsm48_sendmsg(msg);
Harald Welte4bc90a12008-12-27 16:32:52 +00001824}
1825
Harald Welte6f4b7532008-12-29 00:39:37 +00001826static int gsm48_tx_simple(struct gsm_lchan *lchan,
1827 u_int8_t pdisc, u_int8_t msg_type)
Harald Welte4bc90a12008-12-27 16:32:52 +00001828{
1829 struct msgb *msg = gsm48_msgb_alloc();
1830 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
1831
1832 msg->lchan = lchan;
1833
Harald Welte6f4b7532008-12-29 00:39:37 +00001834 gh->proto_discr = pdisc;
Harald Welte4bc90a12008-12-27 16:32:52 +00001835 gh->msg_type = msg_type;
1836
Harald Welte65e74cc2008-12-29 01:55:35 +00001837 return gsm48_sendmsg(msg);
Harald Welte4bc90a12008-12-27 16:32:52 +00001838}
1839
Harald Welte4bfdfe72009-06-10 23:11:52 +08001840static void gsm48_stop_cc_timer(struct gsm_trans *trans)
1841{
Harald Weltedcaf5652009-07-23 18:56:43 +02001842 if (bsc_timer_pending(&trans->cc.timer)) {
1843 DEBUGP(DCC, "stopping pending timer T%x\n", trans->cc.Tcurrent);
1844 bsc_del_timer(&trans->cc.timer);
1845 trans->cc.Tcurrent = 0;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001846 }
1847}
1848
1849static int mncc_recvmsg(struct gsm_network *net, struct gsm_trans *trans,
1850 int msg_type, struct gsm_mncc *mncc)
1851{
1852 struct msgb *msg;
1853
1854 if (trans)
1855 if (trans->lchan)
1856 DEBUGP(DCC, "(bts %d trx %d ts %d ti %02x sub %s) "
1857 "Sending '%s' to MNCC.\n",
1858 trans->lchan->ts->trx->bts->nr,
1859 trans->lchan->ts->trx->nr,
1860 trans->lchan->ts->nr, trans->transaction_id,
1861 (trans->subscr)?(trans->subscr->extension):"-",
1862 get_mncc_name(msg_type));
1863 else
1864 DEBUGP(DCC, "(bts - trx - ts - ti -- sub %s) "
1865 "Sending '%s' to MNCC.\n",
1866 (trans->subscr)?(trans->subscr->extension):"-",
1867 get_mncc_name(msg_type));
1868 else
1869 DEBUGP(DCC, "(bts - trx - ts - ti -- sub -) "
1870 "Sending '%s' to MNCC.\n", get_mncc_name(msg_type));
1871
1872 mncc->msg_type = msg_type;
1873
Harald Welte966636f2009-06-26 19:39:35 +02001874 msg = msgb_alloc(sizeof(struct gsm_mncc), "MNCC");
Harald Welte4bfdfe72009-06-10 23:11:52 +08001875 if (!msg)
1876 return -ENOMEM;
1877 memcpy(msg->data, mncc, sizeof(struct gsm_mncc));
1878 msgb_enqueue(&net->upqueue, msg);
1879
1880 return 0;
1881}
1882
1883int mncc_release_ind(struct gsm_network *net, struct gsm_trans *trans,
1884 u_int32_t callref, int location, int value)
1885{
1886 struct gsm_mncc rel;
1887
Harald Welte92f70c52009-06-12 01:54:08 +08001888 memset(&rel, 0, sizeof(rel));
Harald Welte4bfdfe72009-06-10 23:11:52 +08001889 rel.callref = callref;
Andreas Eversberg7563ac92009-06-14 22:14:12 +08001890 mncc_set_cause(&rel, location, value);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001891 return mncc_recvmsg(net, trans, MNCC_REL_IND, &rel);
1892}
1893
Harald Weltedcaf5652009-07-23 18:56:43 +02001894/* Call Control Specific transaction release.
1895 * gets called by trans_free, DO NOT CALL YOURSELF! */
1896void _gsm48_cc_trans_free(struct gsm_trans *trans)
Harald Welte4bfdfe72009-06-10 23:11:52 +08001897{
Harald Welte4bfdfe72009-06-10 23:11:52 +08001898 gsm48_stop_cc_timer(trans);
1899
1900 /* send release to L4, if callref still exists */
1901 if (trans->callref) {
1902 /* Ressource unavailable */
Andreas Eversberg7563ac92009-06-14 22:14:12 +08001903 mncc_release_ind(trans->network, trans, trans->callref,
1904 GSM48_CAUSE_LOC_PRN_S_LU,
1905 GSM48_CC_CAUSE_RESOURCE_UNAVAIL);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001906 }
Harald Weltedcaf5652009-07-23 18:56:43 +02001907 if (trans->cc.state != GSM_CSTATE_NULL)
Harald Welte4bfdfe72009-06-10 23:11:52 +08001908 new_cc_state(trans, GSM_CSTATE_NULL);
Harald Weltedcaf5652009-07-23 18:56:43 +02001909 if (trans->lchan)
1910 trau_mux_unmap(&trans->lchan->ts->e1_link, trans->callref);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001911}
1912
1913static int gsm48_cc_tx_setup(struct gsm_trans *trans, void *arg);
1914
Harald Welte09e38af2009-02-16 22:52:23 +00001915/* call-back from paging the B-end of the connection */
1916static int setup_trig_pag_evt(unsigned int hooknum, unsigned int event,
Harald Welte7ccf7782009-02-17 01:43:01 +00001917 struct msgb *msg, void *_lchan, void *param)
Harald Welte09e38af2009-02-16 22:52:23 +00001918{
Harald Welte7ccf7782009-02-17 01:43:01 +00001919 struct gsm_lchan *lchan = _lchan;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001920 struct gsm_subscriber *subscr = param;
1921 struct gsm_trans *transt, *tmp;
1922 struct gsm_network *net;
Harald Weltec05677b2009-06-26 20:17:06 +02001923
Harald Welte09e38af2009-02-16 22:52:23 +00001924 if (hooknum != GSM_HOOK_RR_PAGING)
1925 return -EINVAL;
Harald Welte4bfdfe72009-06-10 23:11:52 +08001926
1927 if (!subscr)
1928 return -EINVAL;
1929 net = subscr->net;
1930 if (!net) {
1931 DEBUGP(DCC, "Error Network not set!\n");
1932 return -EINVAL;
Harald Welte5a065df2009-02-22 21:13:18 +00001933 }
Harald Welte7584aea2009-02-11 11:44:12 +00001934
Harald Welte4bfdfe72009-06-10 23:11:52 +08001935 /* check all tranactions (without lchan) for subscriber */
1936 llist_for_each_entry_safe(transt, tmp, &net->trans_list, entry) {
1937 if (transt->subscr != subscr || transt->lchan)
1938 continue;
1939 switch (event) {
1940 case GSM_PAGING_SUCCEEDED:
1941 if (!lchan) // paranoid
1942 break;
1943 DEBUGP(DCC, "Paging subscr %s succeeded!\n",
1944 subscr->extension);
1945 /* Assign lchan */
1946 if (!transt->lchan) {
1947 transt->lchan = lchan;
1948 use_lchan(lchan);
1949 }
1950 /* send SETUP request to called party */
Harald Weltedcaf5652009-07-23 18:56:43 +02001951 gsm48_cc_tx_setup(transt, &transt->cc.msg);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001952 if (is_ipaccess_bts(lchan->ts->trx->bts))
1953 rsl_ipacc_bind(lchan);
1954 break;
1955 case GSM_PAGING_EXPIRED:
1956 DEBUGP(DCC, "Paging subscr %s expired!\n",
1957 subscr->extension);
1958 /* Temporarily out of order */
1959 mncc_release_ind(transt->network, transt, transt->callref,
Andreas Eversberg7563ac92009-06-14 22:14:12 +08001960 GSM48_CAUSE_LOC_PRN_S_LU,
1961 GSM48_CC_CAUSE_DEST_OOO);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001962 transt->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02001963 trans_free(transt);
Harald Welte4bfdfe72009-06-10 23:11:52 +08001964 break;
1965 }
1966 }
Harald Welte09e38af2009-02-16 22:52:23 +00001967 return 0;
Harald Welte4bc90a12008-12-27 16:32:52 +00001968}
Harald Welte7584aea2009-02-11 11:44:12 +00001969
Harald Welte49f48b82009-02-17 15:29:33 +00001970/* map two ipaccess RTP streams onto each other */
Harald Welte11fa29c2009-02-19 17:24:39 +00001971static int tch_map(struct gsm_lchan *lchan, struct gsm_lchan *remote_lchan)
Harald Welte49f48b82009-02-17 15:29:33 +00001972{
Harald Welte11fa29c2009-02-19 17:24:39 +00001973 struct gsm_bts *bts = lchan->ts->trx->bts;
1974 struct gsm_bts *remote_bts = remote_lchan->ts->trx->bts;
Harald Welte49f48b82009-02-17 15:29:33 +00001975 struct gsm_bts_trx_ts *ts;
1976
Harald Welte11fa29c2009-02-19 17:24:39 +00001977 DEBUGP(DCC, "Setting up TCH map between (bts=%u,trx=%u,ts=%u) and (bts=%u,trx=%u,ts=%u)\n",
1978 bts->nr, lchan->ts->trx->nr, lchan->ts->nr,
1979 remote_bts->nr, remote_lchan->ts->trx->nr, remote_lchan->ts->nr);
1980
1981 if (bts->type != remote_bts->type) {
1982 DEBUGP(DCC, "Cannot switch calls between different BTS types yet\n");
1983 return -EINVAL;
1984 }
Harald Welte49f48b82009-02-17 15:29:33 +00001985
Harald Welte11fa29c2009-02-19 17:24:39 +00001986 switch (bts->type) {
1987 case GSM_BTS_TYPE_NANOBTS_900:
1988 case GSM_BTS_TYPE_NANOBTS_1800:
1989 ts = remote_lchan->ts;
Harald Welte20855542009-07-12 09:50:35 +02001990 rsl_ipacc_connect(lchan, ts->abis_ip.bound_ip,
1991 ts->abis_ip.bound_port,
1992 lchan->ts->abis_ip.conn_id,
1993 ts->abis_ip.rtp_payload2);
Harald Welte11fa29c2009-02-19 17:24:39 +00001994
1995 ts = lchan->ts;
Harald Welte20855542009-07-12 09:50:35 +02001996 rsl_ipacc_connect(remote_lchan, ts->abis_ip.bound_ip,
1997 ts->abis_ip.bound_port,
1998 remote_lchan->ts->abis_ip.conn_id,
1999 ts->abis_ip.rtp_payload2);
Harald Welte11fa29c2009-02-19 17:24:39 +00002000 break;
2001 case GSM_BTS_TYPE_BS11:
2002 trau_mux_map_lchan(lchan, remote_lchan);
2003 break;
2004 default:
2005 DEBUGP(DCC, "Unknown BTS type %u\n", bts->type);
2006 break;
2007 }
Harald Welte49f48b82009-02-17 15:29:33 +00002008
2009 return 0;
2010}
2011
Harald Welte4bfdfe72009-06-10 23:11:52 +08002012/* bridge channels of two transactions */
2013static int tch_bridge(struct gsm_network *net, u_int32_t *refs)
Harald Welte7ccf7782009-02-17 01:43:01 +00002014{
Harald Weltedcaf5652009-07-23 18:56:43 +02002015 struct gsm_trans *trans1 = trans_find_by_callref(net, refs[0]);
2016 struct gsm_trans *trans2 = trans_find_by_callref(net, refs[1]);
Harald Welte7ccf7782009-02-17 01:43:01 +00002017
Harald Welte4bfdfe72009-06-10 23:11:52 +08002018 if (!trans1 || !trans2)
Harald Welte7ccf7782009-02-17 01:43:01 +00002019 return -EIO;
2020
Harald Welte4bfdfe72009-06-10 23:11:52 +08002021 if (!trans1->lchan || !trans2->lchan)
2022 return -EIO;
2023
2024 /* through-connect channel */
2025 return tch_map(trans1->lchan, trans2->lchan);
Harald Welte7ccf7782009-02-17 01:43:01 +00002026}
2027
Harald Welte4bfdfe72009-06-10 23:11:52 +08002028/* enable receive of channels to upqueue */
2029static int tch_recv(struct gsm_network *net, struct gsm_mncc *data, int enable)
2030{
2031 struct gsm_trans *trans;
Harald Welte7ccf7782009-02-17 01:43:01 +00002032
Harald Welte4bfdfe72009-06-10 23:11:52 +08002033 /* Find callref */
Harald Weltedcaf5652009-07-23 18:56:43 +02002034 trans = trans_find_by_callref(net, data->callref);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002035 if (!trans)
2036 return -EIO;
2037 if (!trans->lchan)
2038 return 0;
2039
2040 // todo IPACCESS
2041 if (enable)
2042 return trau_recv_lchan(trans->lchan, data->callref);
2043 return trau_mux_unmap(NULL, data->callref);
2044}
2045
2046/* send a frame to channel */
2047static int tch_frame(struct gsm_network *net, struct gsm_trau_frame *frame)
2048{
2049 struct gsm_trans *trans;
2050
2051 /* Find callref */
Harald Weltedcaf5652009-07-23 18:56:43 +02002052 trans = trans_find_by_callref(net, frame->callref);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002053 if (!trans)
2054 return -EIO;
2055 if (!trans->lchan)
2056 return 0;
2057 if (trans->lchan->type != GSM_LCHAN_TCH_F &&
2058 trans->lchan->type != GSM_LCHAN_TCH_H)
2059 return 0;
2060
2061 // todo IPACCESS
2062 return trau_send_lchan(trans->lchan,
2063 (struct decoded_trau_frame *)frame->data);
2064}
2065
2066
2067static int gsm48_cc_rx_status_enq(struct gsm_trans *trans, struct msgb *msg)
2068{
2069 DEBUGP(DCC, "-> STATUS ENQ\n");
2070 return gsm48_cc_tx_status(trans, msg);
2071}
2072
2073static int gsm48_cc_tx_release(struct gsm_trans *trans, void *arg);
2074static int gsm48_cc_tx_disconnect(struct gsm_trans *trans, void *arg);
2075
2076static void gsm48_cc_timeout(void *arg)
2077{
2078 struct gsm_trans *trans = arg;
2079 int disconnect = 0, release = 0;
Harald Weltec66b71c2009-06-11 14:23:20 +08002080 int mo_cause = GSM48_CC_CAUSE_RECOVERY_TIMER;
2081 int mo_location = GSM48_CAUSE_LOC_USER;
2082 int l4_cause = GSM48_CC_CAUSE_NORMAL_UNSPEC;
2083 int l4_location = GSM48_CAUSE_LOC_PRN_S_LU;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002084 struct gsm_mncc mo_rel, l4_rel;
2085
2086 memset(&mo_rel, 0, sizeof(struct gsm_mncc));
2087 mo_rel.callref = trans->callref;
2088 memset(&l4_rel, 0, sizeof(struct gsm_mncc));
2089 l4_rel.callref = trans->callref;
2090
Harald Weltedcaf5652009-07-23 18:56:43 +02002091 switch(trans->cc.Tcurrent) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08002092 case 0x303:
2093 release = 1;
Harald Weltec66b71c2009-06-11 14:23:20 +08002094 l4_cause = GSM48_CC_CAUSE_USER_NOTRESPOND;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002095 break;
2096 case 0x310:
2097 disconnect = 1;
Harald Weltec66b71c2009-06-11 14:23:20 +08002098 l4_cause = GSM48_CC_CAUSE_USER_NOTRESPOND;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002099 break;
2100 case 0x313:
2101 disconnect = 1;
2102 /* unknown, did not find it in the specs */
2103 break;
2104 case 0x301:
2105 disconnect = 1;
Harald Weltec66b71c2009-06-11 14:23:20 +08002106 l4_cause = GSM48_CC_CAUSE_USER_NOTRESPOND;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002107 break;
2108 case 0x308:
Harald Weltedcaf5652009-07-23 18:56:43 +02002109 if (!trans->cc.T308_second) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08002110 /* restart T308 a second time */
Harald Weltedcaf5652009-07-23 18:56:43 +02002111 gsm48_cc_tx_release(trans, &trans->cc.msg);
2112 trans->cc.T308_second = 1;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002113 break; /* stay in release state */
2114 }
Harald Weltedcaf5652009-07-23 18:56:43 +02002115 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002116 return;
2117// release = 1;
2118// l4_cause = 14;
2119// break;
2120 case 0x306:
2121 release = 1;
Harald Weltedcaf5652009-07-23 18:56:43 +02002122 mo_cause = trans->cc.msg.cause.value;
2123 mo_location = trans->cc.msg.cause.location;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002124 break;
2125 case 0x323:
2126 disconnect = 1;
2127 break;
2128 default:
2129 release = 1;
2130 }
2131
2132 if (release && trans->callref) {
2133 /* process release towards layer 4 */
2134 mncc_release_ind(trans->network, trans, trans->callref,
2135 l4_location, l4_cause);
2136 trans->callref = 0;
2137 }
2138
2139 if (disconnect && trans->callref) {
2140 /* process disconnect towards layer 4 */
2141 mncc_set_cause(&l4_rel, l4_location, l4_cause);
2142 mncc_recvmsg(trans->network, trans, MNCC_DISC_IND, &l4_rel);
2143 }
2144
2145 /* process disconnect towards mobile station */
2146 if (disconnect || release) {
2147 mncc_set_cause(&mo_rel, mo_location, mo_cause);
Harald Weltedcaf5652009-07-23 18:56:43 +02002148 mo_rel.cause.diag[0] = ((trans->cc.Tcurrent & 0xf00) >> 8) + '0';
2149 mo_rel.cause.diag[1] = ((trans->cc.Tcurrent & 0x0f0) >> 4) + '0';
2150 mo_rel.cause.diag[2] = (trans->cc.Tcurrent & 0x00f) + '0';
Harald Welte4bfdfe72009-06-10 23:11:52 +08002151 mo_rel.cause.diag_len = 3;
2152
2153 if (disconnect)
2154 gsm48_cc_tx_disconnect(trans, &mo_rel);
2155 if (release)
2156 gsm48_cc_tx_release(trans, &mo_rel);
2157 }
2158
2159}
2160
2161static void gsm48_start_cc_timer(struct gsm_trans *trans, int current,
2162 int sec, int micro)
2163{
2164 DEBUGP(DCC, "starting timer T%x with %d seconds\n", current, sec);
Harald Weltedcaf5652009-07-23 18:56:43 +02002165 trans->cc.timer.cb = gsm48_cc_timeout;
2166 trans->cc.timer.data = trans;
2167 bsc_schedule_timer(&trans->cc.timer, sec, micro);
2168 trans->cc.Tcurrent = current;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002169}
2170
2171static int gsm48_cc_rx_setup(struct gsm_trans *trans, struct msgb *msg)
2172{
2173 struct gsm48_hdr *gh = msgb_l3(msg);
2174 u_int8_t msg_type = gh->msg_type & 0xbf;
2175 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2176 struct tlv_parsed tp;
2177 struct gsm_mncc setup;
2178
2179 memset(&setup, 0, sizeof(struct gsm_mncc));
2180 setup.callref = trans->callref;
2181 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2182 /* emergency setup is identified by msg_type */
2183 if (msg_type == GSM48_MT_CC_EMERG_SETUP)
2184 setup.emergency = 1;
2185
2186 /* use subscriber as calling party number */
2187 if (trans->subscr) {
2188 setup.fields |= MNCC_F_CALLING;
2189 strncpy(setup.calling.number, trans->subscr->extension,
2190 sizeof(setup.calling.number)-1);
Andreas Eversbergc079be42009-06-15 23:22:09 +02002191 strncpy(setup.imsi, trans->subscr->imsi,
2192 sizeof(setup.imsi)-1);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002193 }
2194 /* bearer capability */
2195 if (TLVP_PRESENT(&tp, GSM48_IE_BEARER_CAP)) {
2196 setup.fields |= MNCC_F_BEARER_CAP;
2197 decode_bearer_cap(&setup.bearer_cap,
2198 TLVP_VAL(&tp, GSM48_IE_BEARER_CAP)-1);
2199 }
2200 /* facility */
2201 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2202 setup.fields |= MNCC_F_FACILITY;
2203 decode_facility(&setup.facility,
2204 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2205 }
2206 /* called party bcd number */
2207 if (TLVP_PRESENT(&tp, GSM48_IE_CALLED_BCD)) {
2208 setup.fields |= MNCC_F_CALLED;
2209 decode_called(&setup.called,
2210 TLVP_VAL(&tp, GSM48_IE_CALLED_BCD)-1);
2211 }
2212 /* user-user */
2213 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
2214 setup.fields |= MNCC_F_USERUSER;
2215 decode_useruser(&setup.useruser,
2216 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
2217 }
2218 /* ss-version */
2219 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2220 setup.fields |= MNCC_F_SSVERSION;
2221 decode_ssversion(&setup.ssversion,
2222 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2223 }
2224 /* CLIR suppression */
2225 if (TLVP_PRESENT(&tp, GSM48_IE_CLIR_SUPP))
2226 setup.clir.sup = 1;
2227 /* CLIR invocation */
2228 if (TLVP_PRESENT(&tp, GSM48_IE_CLIR_INVOC))
2229 setup.clir.inv = 1;
2230 /* cc cap */
2231 if (TLVP_PRESENT(&tp, GSM48_IE_CC_CAP)) {
2232 setup.fields |= MNCC_F_CCCAP;
2233 decode_cccap(&setup.cccap,
2234 TLVP_VAL(&tp, GSM48_IE_CC_CAP)-1);
2235 }
2236
2237 if (is_ipaccess_bts(msg->trx->bts))
2238 rsl_ipacc_bind(msg->lchan);
2239
2240 new_cc_state(trans, GSM_CSTATE_INITIATED);
2241
2242 /* indicate setup to MNCC */
2243 mncc_recvmsg(trans->network, trans, MNCC_SETUP_IND, &setup);
2244
2245 return 0;
2246}
2247
2248static int gsm48_cc_tx_setup(struct gsm_trans *trans, void *arg)
Harald Welte65e74cc2008-12-29 01:55:35 +00002249{
2250 struct msgb *msg = gsm48_msgb_alloc();
2251 struct gsm48_hdr *gh;
Harald Welte4bfdfe72009-06-10 23:11:52 +08002252 struct gsm_mncc *setup = arg;
2253 struct gsm_trans *transt;
2254 u_int16_t trans_id_mask = 0;
2255 int rc, i;
Harald Welte65e74cc2008-12-29 01:55:35 +00002256
Harald Welte7ccf7782009-02-17 01:43:01 +00002257 gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
Harald Welte65e74cc2008-12-29 01:55:35 +00002258
Harald Welte4bfdfe72009-06-10 23:11:52 +08002259 /* transaction id must not be assigned */
2260 if (trans->transaction_id != 0xff) { /* unasssigned */
2261 DEBUGP(DCC, "TX Setup with assigned transaction. "
2262 "This is not allowed!\n");
2263 /* Temporarily out of order */
2264 rc = mncc_release_ind(trans->network, trans, trans->callref,
Andreas Eversberg7563ac92009-06-14 22:14:12 +08002265 GSM48_CAUSE_LOC_PRN_S_LU,
2266 GSM48_CC_CAUSE_RESOURCE_UNAVAIL);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002267 trans->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02002268 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002269 return rc;
2270 }
2271
2272 /* Get free transaction_id */
2273 llist_for_each_entry(transt, &trans->network->trans_list, entry) {
2274 /* Transaction of our lchan? */
2275 if (transt->lchan == trans->lchan &&
2276 transt->transaction_id != 0xff)
2277 trans_id_mask |= (1 << (transt->transaction_id >> 4));
2278 }
2279 /* Assign free transaction ID */
2280 if ((trans_id_mask & 0x007f) == 0x7f) {
2281 /* no free transaction ID */
2282 rc = mncc_release_ind(trans->network, trans, trans->callref,
Andreas Eversberg7563ac92009-06-14 22:14:12 +08002283 GSM48_CAUSE_LOC_PRN_S_LU,
2284 GSM48_CC_CAUSE_RESOURCE_UNAVAIL);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002285 trans->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02002286 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002287 return rc;
2288 }
2289 for (i = 0; i < 7; i++) {
2290 if ((trans_id_mask & (1 << i)) == 0) {
2291 trans->transaction_id = i << 4; /* flag = 0 */
2292 break;
2293 }
2294 }
Harald Welte49f48b82009-02-17 15:29:33 +00002295
Harald Welte4bfdfe72009-06-10 23:11:52 +08002296 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2297 msg->lchan = trans->lchan;
Harald Welte65e74cc2008-12-29 01:55:35 +00002298 gh->msg_type = GSM48_MT_CC_SETUP;
Harald Welte09e38af2009-02-16 22:52:23 +00002299
Harald Welte4bfdfe72009-06-10 23:11:52 +08002300 gsm48_start_cc_timer(trans, 0x303, GSM48_T303);
Harald Welte65e74cc2008-12-29 01:55:35 +00002301
Harald Welte4bfdfe72009-06-10 23:11:52 +08002302 /* bearer capability */
2303 if (setup->fields & MNCC_F_BEARER_CAP)
2304 encode_bearer_cap(msg, 0, &setup->bearer_cap);
2305 /* facility */
2306 if (setup->fields & MNCC_F_FACILITY)
2307 encode_facility(msg, 0, &setup->facility);
2308 /* progress */
2309 if (setup->fields & MNCC_F_PROGRESS)
2310 encode_progress(msg, 0, &setup->progress);
2311 /* calling party BCD number */
2312 if (setup->fields & MNCC_F_CALLING)
2313 encode_calling(msg, &setup->calling);
2314 /* called party BCD number */
2315 if (setup->fields & MNCC_F_CALLED)
2316 encode_called(msg, &setup->called);
2317 /* user-user */
2318 if (setup->fields & MNCC_F_USERUSER)
2319 encode_useruser(msg, 0, &setup->useruser);
2320 /* redirecting party BCD number */
2321 if (setup->fields & MNCC_F_REDIRECTING)
2322 encode_redirecting(msg, &setup->redirecting);
2323 /* signal */
2324 if (setup->fields & MNCC_F_SIGNAL)
2325 encode_signal(msg, setup->signal);
2326
2327 new_cc_state(trans, GSM_CSTATE_CALL_PRESENT);
Harald Welte65e74cc2008-12-29 01:55:35 +00002328
2329 return gsm48_sendmsg(msg);
2330}
2331
Harald Welte4bfdfe72009-06-10 23:11:52 +08002332static int gsm48_cc_rx_call_conf(struct gsm_trans *trans, struct msgb *msg)
2333{
2334 struct gsm48_hdr *gh = msgb_l3(msg);
2335 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2336 struct tlv_parsed tp;
2337 struct gsm_mncc call_conf;
2338
2339 gsm48_stop_cc_timer(trans);
2340 gsm48_start_cc_timer(trans, 0x310, GSM48_T310);
2341
2342 memset(&call_conf, 0, sizeof(struct gsm_mncc));
2343 call_conf.callref = trans->callref;
2344 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2345#if 0
2346 /* repeat */
2347 if (TLVP_PRESENT(&tp, GSM48_IE_REPEAT_CIR))
2348 call_conf.repeat = 1;
2349 if (TLVP_PRESENT(&tp, GSM48_IE_REPEAT_SEQ))
2350 call_conf.repeat = 2;
2351#endif
2352 /* bearer capability */
2353 if (TLVP_PRESENT(&tp, GSM48_IE_BEARER_CAP)) {
2354 call_conf.fields |= MNCC_F_BEARER_CAP;
2355 decode_bearer_cap(&call_conf.bearer_cap,
2356 TLVP_VAL(&tp, GSM48_IE_BEARER_CAP)-1);
2357 }
2358 /* cause */
2359 if (TLVP_PRESENT(&tp, GSM48_IE_CAUSE)) {
2360 call_conf.fields |= MNCC_F_CAUSE;
2361 decode_cause(&call_conf.cause,
2362 TLVP_VAL(&tp, GSM48_IE_CAUSE)-1);
2363 }
2364 /* cc cap */
2365 if (TLVP_PRESENT(&tp, GSM48_IE_CC_CAP)) {
2366 call_conf.fields |= MNCC_F_CCCAP;
2367 decode_cccap(&call_conf.cccap,
2368 TLVP_VAL(&tp, GSM48_IE_CC_CAP)-1);
2369 }
2370
2371 new_cc_state(trans, GSM_CSTATE_MO_TERM_CALL_CONF);
2372
2373 return mncc_recvmsg(trans->network, trans, MNCC_CALL_CONF_IND, &call_conf);
2374}
2375
2376static int gsm48_cc_tx_call_proc(struct gsm_trans *trans, void *arg)
2377{
2378 struct gsm_mncc *proceeding = arg;
2379 struct msgb *msg = gsm48_msgb_alloc();
2380 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2381
2382 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2383 msg->lchan = trans->lchan;
2384 gh->msg_type = GSM48_MT_CC_CALL_PROC;
2385
2386 new_cc_state(trans, GSM_CSTATE_MO_CALL_PROC);
2387
2388 /* bearer capability */
2389 if (proceeding->fields & MNCC_F_BEARER_CAP)
2390 encode_bearer_cap(msg, 0, &proceeding->bearer_cap);
2391 /* facility */
2392 if (proceeding->fields & MNCC_F_FACILITY)
2393 encode_facility(msg, 0, &proceeding->facility);
2394 /* progress */
2395 if (proceeding->fields & MNCC_F_PROGRESS)
2396 encode_progress(msg, 0, &proceeding->progress);
2397
2398 return gsm48_sendmsg(msg);
2399}
2400
2401static int gsm48_cc_rx_alerting(struct gsm_trans *trans, struct msgb *msg)
2402{
2403 struct gsm48_hdr *gh = msgb_l3(msg);
2404 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2405 struct tlv_parsed tp;
2406 struct gsm_mncc alerting;
2407
2408 gsm48_stop_cc_timer(trans);
2409 gsm48_start_cc_timer(trans, 0x301, GSM48_T301);
2410
2411 memset(&alerting, 0, sizeof(struct gsm_mncc));
2412 alerting.callref = trans->callref;
2413 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2414 /* facility */
2415 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2416 alerting.fields |= MNCC_F_FACILITY;
2417 decode_facility(&alerting.facility,
2418 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2419 }
2420
2421 /* progress */
2422 if (TLVP_PRESENT(&tp, GSM48_IE_PROGR_IND)) {
2423 alerting.fields |= MNCC_F_PROGRESS;
2424 decode_progress(&alerting.progress,
2425 TLVP_VAL(&tp, GSM48_IE_PROGR_IND)-1);
2426 }
2427 /* ss-version */
2428 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2429 alerting.fields |= MNCC_F_SSVERSION;
2430 decode_ssversion(&alerting.ssversion,
2431 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2432 }
2433
2434 new_cc_state(trans, GSM_CSTATE_CALL_RECEIVED);
2435
2436 return mncc_recvmsg(trans->network, trans, MNCC_ALERT_IND, &alerting);
2437}
2438
2439static int gsm48_cc_tx_alerting(struct gsm_trans *trans, void *arg)
2440{
2441 struct gsm_mncc *alerting = arg;
2442 struct msgb *msg = gsm48_msgb_alloc();
2443 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2444
2445 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2446 msg->lchan = trans->lchan;
2447 gh->msg_type = GSM48_MT_CC_ALERTING;
2448
2449 /* facility */
2450 if (alerting->fields & MNCC_F_FACILITY)
2451 encode_facility(msg, 0, &alerting->facility);
2452 /* progress */
2453 if (alerting->fields & MNCC_F_PROGRESS)
2454 encode_progress(msg, 0, &alerting->progress);
2455 /* user-user */
2456 if (alerting->fields & MNCC_F_USERUSER)
2457 encode_useruser(msg, 0, &alerting->useruser);
2458
2459 new_cc_state(trans, GSM_CSTATE_CALL_DELIVERED);
2460
2461 return gsm48_sendmsg(msg);
2462}
2463
2464static int gsm48_cc_tx_progress(struct gsm_trans *trans, void *arg)
2465{
2466 struct gsm_mncc *progress = arg;
2467 struct msgb *msg = gsm48_msgb_alloc();
2468 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2469
2470 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2471 msg->lchan = trans->lchan;
2472 gh->msg_type = GSM48_MT_CC_PROGRESS;
2473
2474 /* progress */
2475 encode_progress(msg, 1, &progress->progress);
2476 /* user-user */
2477 if (progress->fields & MNCC_F_USERUSER)
2478 encode_useruser(msg, 0, &progress->useruser);
2479
2480 return gsm48_sendmsg(msg);
2481}
2482
2483static int gsm48_cc_tx_connect(struct gsm_trans *trans, void *arg)
2484{
2485 struct gsm_mncc *connect = arg;
2486 struct msgb *msg = gsm48_msgb_alloc();
2487 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2488
2489 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2490 msg->lchan = trans->lchan;
2491 gh->msg_type = GSM48_MT_CC_CONNECT;
2492
2493 gsm48_stop_cc_timer(trans);
2494 gsm48_start_cc_timer(trans, 0x313, GSM48_T313);
2495
2496 /* facility */
2497 if (connect->fields & MNCC_F_FACILITY)
2498 encode_facility(msg, 0, &connect->facility);
2499 /* progress */
2500 if (connect->fields & MNCC_F_PROGRESS)
2501 encode_progress(msg, 0, &connect->progress);
2502 /* connected number */
2503 if (connect->fields & MNCC_F_CONNECTED)
2504 encode_connected(msg, &connect->connected);
2505 /* user-user */
2506 if (connect->fields & MNCC_F_USERUSER)
2507 encode_useruser(msg, 0, &connect->useruser);
2508
2509 new_cc_state(trans, GSM_CSTATE_CONNECT_IND);
2510
2511 return gsm48_sendmsg(msg);
2512}
2513
2514static int gsm48_cc_rx_connect(struct gsm_trans *trans, struct msgb *msg)
2515{
2516 struct gsm48_hdr *gh = msgb_l3(msg);
2517 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2518 struct tlv_parsed tp;
2519 struct gsm_mncc connect;
2520
2521 gsm48_stop_cc_timer(trans);
2522
2523 memset(&connect, 0, sizeof(struct gsm_mncc));
2524 connect.callref = trans->callref;
2525 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2526 /* use subscriber as connected party number */
2527 if (trans->subscr) {
2528 connect.fields |= MNCC_F_CONNECTED;
2529 strncpy(connect.connected.number, trans->subscr->extension,
2530 sizeof(connect.connected.number)-1);
Andreas Eversbergc079be42009-06-15 23:22:09 +02002531 strncpy(connect.imsi, trans->subscr->imsi,
2532 sizeof(connect.imsi)-1);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002533 }
2534 /* facility */
2535 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2536 connect.fields |= MNCC_F_FACILITY;
2537 decode_facility(&connect.facility,
2538 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2539 }
2540 /* user-user */
2541 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
2542 connect.fields |= MNCC_F_USERUSER;
2543 decode_useruser(&connect.useruser,
2544 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
2545 }
2546 /* ss-version */
2547 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2548 connect.fields |= MNCC_F_SSVERSION;
2549 decode_ssversion(&connect.ssversion,
2550 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2551 }
2552
2553 new_cc_state(trans, GSM_CSTATE_CONNECT_REQUEST);
2554
2555 return mncc_recvmsg(trans->network, trans, MNCC_SETUP_CNF, &connect);
2556}
2557
2558
2559static int gsm48_cc_rx_connect_ack(struct gsm_trans *trans, struct msgb *msg)
2560{
2561 struct gsm_mncc connect_ack;
2562
2563 gsm48_stop_cc_timer(trans);
2564
2565 new_cc_state(trans, GSM_CSTATE_ACTIVE);
2566
2567 memset(&connect_ack, 0, sizeof(struct gsm_mncc));
2568 connect_ack.callref = trans->callref;
2569 return mncc_recvmsg(trans->network, trans, MNCC_SETUP_COMPL_IND,
2570 &connect_ack);
2571}
2572
2573static int gsm48_cc_tx_connect_ack(struct gsm_trans *trans, void *arg)
2574{
2575 struct msgb *msg = gsm48_msgb_alloc();
2576 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2577
2578 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2579 msg->lchan = trans->lchan;
2580 gh->msg_type = GSM48_MT_CC_CONNECT_ACK;
2581
2582 new_cc_state(trans, GSM_CSTATE_ACTIVE);
2583
2584 return gsm48_sendmsg(msg);
2585}
2586
2587static int gsm48_cc_rx_disconnect(struct gsm_trans *trans, struct msgb *msg)
2588{
2589 struct gsm48_hdr *gh = msgb_l3(msg);
2590 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2591 struct tlv_parsed tp;
2592 struct gsm_mncc disc;
2593
2594 gsm48_stop_cc_timer(trans);
2595
2596 new_cc_state(trans, GSM_CSTATE_DISCONNECT_REQ);
2597
2598 memset(&disc, 0, sizeof(struct gsm_mncc));
2599 disc.callref = trans->callref;
2600 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_CAUSE, 0);
2601 /* cause */
2602 if (TLVP_PRESENT(&tp, GSM48_IE_CAUSE)) {
2603 disc.fields |= MNCC_F_CAUSE;
2604 decode_cause(&disc.cause,
2605 TLVP_VAL(&tp, GSM48_IE_CAUSE)-1);
2606 }
2607 /* facility */
2608 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2609 disc.fields |= MNCC_F_FACILITY;
2610 decode_facility(&disc.facility,
2611 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2612 }
2613 /* user-user */
2614 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
2615 disc.fields |= MNCC_F_USERUSER;
2616 decode_useruser(&disc.useruser,
2617 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
2618 }
2619 /* ss-version */
2620 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2621 disc.fields |= MNCC_F_SSVERSION;
2622 decode_ssversion(&disc.ssversion,
2623 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2624 }
2625
2626 return mncc_recvmsg(trans->network, trans, MNCC_DISC_IND, &disc);
2627
2628}
2629
Harald Weltec66b71c2009-06-11 14:23:20 +08002630static struct gsm_mncc_cause default_cause = {
2631 .location = GSM48_CAUSE_LOC_PRN_S_LU,
2632 .coding = 0,
2633 .rec = 0,
2634 .rec_val = 0,
2635 .value = GSM48_CC_CAUSE_NORMAL_UNSPEC,
2636 .diag_len = 0,
2637 .diag = { 0 },
2638};
Harald Welte4bfdfe72009-06-10 23:11:52 +08002639
2640static int gsm48_cc_tx_disconnect(struct gsm_trans *trans, void *arg)
2641{
2642 struct gsm_mncc *disc = arg;
2643 struct msgb *msg = gsm48_msgb_alloc();
2644 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2645
2646 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2647 msg->lchan = trans->lchan;
2648 gh->msg_type = GSM48_MT_CC_DISCONNECT;
2649
2650 gsm48_stop_cc_timer(trans);
2651 gsm48_start_cc_timer(trans, 0x306, GSM48_T306);
2652
2653 /* cause */
2654 if (disc->fields & MNCC_F_CAUSE)
2655 encode_cause(msg, 1, &disc->cause);
2656 else
2657 encode_cause(msg, 1, &default_cause);
2658
2659 /* facility */
2660 if (disc->fields & MNCC_F_FACILITY)
2661 encode_facility(msg, 0, &disc->facility);
2662 /* progress */
2663 if (disc->fields & MNCC_F_PROGRESS)
2664 encode_progress(msg, 0, &disc->progress);
2665 /* user-user */
2666 if (disc->fields & MNCC_F_USERUSER)
2667 encode_useruser(msg, 0, &disc->useruser);
2668
2669 /* store disconnect cause for T306 expiry */
Harald Weltedcaf5652009-07-23 18:56:43 +02002670 memcpy(&trans->cc.msg, disc, sizeof(struct gsm_mncc));
Harald Welte4bfdfe72009-06-10 23:11:52 +08002671
2672 new_cc_state(trans, GSM_CSTATE_DISCONNECT_IND);
2673
2674 return gsm48_sendmsg(msg);
2675}
2676
2677static int gsm48_cc_rx_release(struct gsm_trans *trans, struct msgb *msg)
2678{
2679 struct gsm48_hdr *gh = msgb_l3(msg);
2680 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2681 struct tlv_parsed tp;
2682 struct gsm_mncc rel;
2683 int rc;
2684
2685 gsm48_stop_cc_timer(trans);
2686
2687 memset(&rel, 0, sizeof(struct gsm_mncc));
2688 rel.callref = trans->callref;
2689 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2690 /* cause */
2691 if (TLVP_PRESENT(&tp, GSM48_IE_CAUSE)) {
2692 rel.fields |= MNCC_F_CAUSE;
2693 decode_cause(&rel.cause,
2694 TLVP_VAL(&tp, GSM48_IE_CAUSE)-1);
2695 }
2696 /* facility */
2697 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2698 rel.fields |= MNCC_F_FACILITY;
2699 decode_facility(&rel.facility,
2700 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2701 }
2702 /* user-user */
2703 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
2704 rel.fields |= MNCC_F_USERUSER;
2705 decode_useruser(&rel.useruser,
2706 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
2707 }
2708 /* ss-version */
2709 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2710 rel.fields |= MNCC_F_SSVERSION;
2711 decode_ssversion(&rel.ssversion,
2712 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2713 }
2714
Harald Weltedcaf5652009-07-23 18:56:43 +02002715 if (trans->cc.state == GSM_CSTATE_RELEASE_REQ) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08002716 /* release collision 5.4.5 */
2717 rc = mncc_recvmsg(trans->network, trans, MNCC_REL_CNF, &rel);
2718 } else {
2719 rc = gsm48_tx_simple(msg->lchan, GSM48_PDISC_CC | trans->transaction_id,
2720 GSM48_MT_CC_RELEASE_COMPL);
2721 rc = mncc_recvmsg(trans->network, trans, MNCC_REL_IND, &rel);
2722 }
2723
2724 new_cc_state(trans, GSM_CSTATE_NULL);
2725
2726 trans->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02002727 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002728
2729 return rc;
2730}
2731
2732static int gsm48_cc_tx_release(struct gsm_trans *trans, void *arg)
2733{
2734 struct gsm_mncc *rel = arg;
2735 struct msgb *msg = gsm48_msgb_alloc();
2736 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2737
2738 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2739 msg->lchan = trans->lchan;
2740 gh->msg_type = GSM48_MT_CC_RELEASE;
2741
2742 trans->callref = 0;
2743
2744 gsm48_stop_cc_timer(trans);
2745 gsm48_start_cc_timer(trans, 0x308, GSM48_T308);
2746
2747 /* cause */
2748 if (rel->fields & MNCC_F_CAUSE)
2749 encode_cause(msg, 0, &rel->cause);
2750 /* facility */
2751 if (rel->fields & MNCC_F_FACILITY)
2752 encode_facility(msg, 0, &rel->facility);
2753 /* user-user */
2754 if (rel->fields & MNCC_F_USERUSER)
2755 encode_useruser(msg, 0, &rel->useruser);
2756
Harald Weltedcaf5652009-07-23 18:56:43 +02002757 trans->cc.T308_second = 0;
2758 memcpy(&trans->cc.msg, rel, sizeof(struct gsm_mncc));
Harald Welte4bfdfe72009-06-10 23:11:52 +08002759
Harald Weltedcaf5652009-07-23 18:56:43 +02002760 if (trans->cc.state != GSM_CSTATE_RELEASE_REQ)
Harald Welte4bfdfe72009-06-10 23:11:52 +08002761 new_cc_state(trans, GSM_CSTATE_RELEASE_REQ);
2762
2763 return gsm48_sendmsg(msg);
2764}
2765
2766static int gsm48_cc_rx_release_compl(struct gsm_trans *trans, struct msgb *msg)
2767{
2768 struct gsm48_hdr *gh = msgb_l3(msg);
2769 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2770 struct tlv_parsed tp;
2771 struct gsm_mncc rel;
2772 int rc = 0;
2773
2774 gsm48_stop_cc_timer(trans);
2775
2776 memset(&rel, 0, sizeof(struct gsm_mncc));
2777 rel.callref = trans->callref;
2778 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2779 /* cause */
2780 if (TLVP_PRESENT(&tp, GSM48_IE_CAUSE)) {
2781 rel.fields |= MNCC_F_CAUSE;
2782 decode_cause(&rel.cause,
2783 TLVP_VAL(&tp, GSM48_IE_CAUSE)-1);
2784 }
2785 /* facility */
2786 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2787 rel.fields |= MNCC_F_FACILITY;
2788 decode_facility(&rel.facility,
2789 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2790 }
2791 /* user-user */
2792 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
2793 rel.fields |= MNCC_F_USERUSER;
2794 decode_useruser(&rel.useruser,
2795 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
2796 }
2797 /* ss-version */
2798 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2799 rel.fields |= MNCC_F_SSVERSION;
2800 decode_ssversion(&rel.ssversion,
2801 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2802 }
2803
2804 if (trans->callref) {
Harald Weltedcaf5652009-07-23 18:56:43 +02002805 switch (trans->cc.state) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08002806 case GSM_CSTATE_CALL_PRESENT:
2807 rc = mncc_recvmsg(trans->network, trans,
2808 MNCC_REJ_IND, &rel);
2809 break;
2810 case GSM_CSTATE_RELEASE_REQ:
2811 rc = mncc_recvmsg(trans->network, trans,
2812 MNCC_REL_CNF, &rel);
2813 break;
2814 default:
2815 rc = mncc_recvmsg(trans->network, trans,
2816 MNCC_REL_IND, &rel);
2817 }
2818 }
2819
2820 trans->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02002821 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002822
2823 return rc;
2824}
2825
2826static int gsm48_cc_tx_release_compl(struct gsm_trans *trans, void *arg)
2827{
2828 struct gsm_mncc *rel = arg;
2829 struct msgb *msg = gsm48_msgb_alloc();
2830 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2831
2832 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2833 msg->lchan = trans->lchan;
2834 gh->msg_type = GSM48_MT_CC_RELEASE_COMPL;
2835
2836 trans->callref = 0;
2837
2838 gsm48_stop_cc_timer(trans);
2839
2840 /* cause */
2841 if (rel->fields & MNCC_F_CAUSE)
2842 encode_cause(msg, 0, &rel->cause);
2843 /* facility */
2844 if (rel->fields & MNCC_F_FACILITY)
2845 encode_facility(msg, 0, &rel->facility);
2846 /* user-user */
2847 if (rel->fields & MNCC_F_USERUSER)
2848 encode_useruser(msg, 0, &rel->useruser);
2849
Harald Weltedcaf5652009-07-23 18:56:43 +02002850 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08002851
2852 return gsm48_sendmsg(msg);
2853}
2854
2855static int gsm48_cc_rx_facility(struct gsm_trans *trans, struct msgb *msg)
2856{
2857 struct gsm48_hdr *gh = msgb_l3(msg);
2858 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2859 struct tlv_parsed tp;
2860 struct gsm_mncc fac;
2861
2862 memset(&fac, 0, sizeof(struct gsm_mncc));
2863 fac.callref = trans->callref;
2864 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_FACILITY, 0);
2865 /* facility */
2866 if (TLVP_PRESENT(&tp, GSM48_IE_FACILITY)) {
2867 fac.fields |= MNCC_F_FACILITY;
2868 decode_facility(&fac.facility,
2869 TLVP_VAL(&tp, GSM48_IE_FACILITY)-1);
2870 }
2871 /* ss-version */
2872 if (TLVP_PRESENT(&tp, GSM48_IE_SS_VERS)) {
2873 fac.fields |= MNCC_F_SSVERSION;
2874 decode_ssversion(&fac.ssversion,
2875 TLVP_VAL(&tp, GSM48_IE_SS_VERS)-1);
2876 }
2877
2878 return mncc_recvmsg(trans->network, trans, MNCC_FACILITY_IND, &fac);
2879}
2880
2881static int gsm48_cc_tx_facility(struct gsm_trans *trans, void *arg)
2882{
2883 struct gsm_mncc *fac = arg;
2884 struct msgb *msg = gsm48_msgb_alloc();
2885 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2886
2887 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2888 msg->lchan = trans->lchan;
2889 gh->msg_type = GSM48_MT_CC_FACILITY;
2890
2891 /* facility */
2892 encode_facility(msg, 1, &fac->facility);
2893
2894 return gsm48_sendmsg(msg);
2895}
2896
2897static int gsm48_cc_rx_hold(struct gsm_trans *trans, struct msgb *msg)
2898{
2899 struct gsm_mncc hold;
2900
2901 memset(&hold, 0, sizeof(struct gsm_mncc));
2902 hold.callref = trans->callref;
2903 return mncc_recvmsg(trans->network, trans, MNCC_HOLD_IND, &hold);
2904}
2905
2906static int gsm48_cc_tx_hold_ack(struct gsm_trans *trans, void *arg)
2907{
2908 struct msgb *msg = gsm48_msgb_alloc();
2909 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2910
2911 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2912 msg->lchan = trans->lchan;
2913 gh->msg_type = GSM48_MT_CC_HOLD_ACK;
2914
2915 return gsm48_sendmsg(msg);
2916}
2917
2918static int gsm48_cc_tx_hold_rej(struct gsm_trans *trans, void *arg)
2919{
2920 struct gsm_mncc *hold_rej = arg;
2921 struct msgb *msg = gsm48_msgb_alloc();
2922 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2923
2924 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2925 msg->lchan = trans->lchan;
2926 gh->msg_type = GSM48_MT_CC_HOLD_REJ;
2927
2928 /* cause */
2929 if (hold_rej->fields & MNCC_F_CAUSE)
2930 encode_cause(msg, 1, &hold_rej->cause);
2931 else
2932 encode_cause(msg, 1, &default_cause);
2933
2934 return gsm48_sendmsg(msg);
2935}
2936
2937static int gsm48_cc_rx_retrieve(struct gsm_trans *trans, struct msgb *msg)
2938{
2939 struct gsm_mncc retrieve;
2940
2941 memset(&retrieve, 0, sizeof(struct gsm_mncc));
2942 retrieve.callref = trans->callref;
2943 return mncc_recvmsg(trans->network, trans, MNCC_RETRIEVE_IND, &retrieve);
2944}
2945
2946static int gsm48_cc_tx_retrieve_ack(struct gsm_trans *trans, void *arg)
2947{
2948 struct msgb *msg = gsm48_msgb_alloc();
2949 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2950
2951 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2952 msg->lchan = trans->lchan;
2953 gh->msg_type = GSM48_MT_CC_RETR_ACK;
2954
2955 return gsm48_sendmsg(msg);
2956}
2957
2958static int gsm48_cc_tx_retrieve_rej(struct gsm_trans *trans, void *arg)
2959{
2960 struct gsm_mncc *retrieve_rej = arg;
2961 struct msgb *msg = gsm48_msgb_alloc();
2962 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
2963
2964 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
2965 msg->lchan = trans->lchan;
2966 gh->msg_type = GSM48_MT_CC_RETR_REJ;
2967
2968 /* cause */
2969 if (retrieve_rej->fields & MNCC_F_CAUSE)
2970 encode_cause(msg, 1, &retrieve_rej->cause);
2971 else
2972 encode_cause(msg, 1, &default_cause);
2973
2974 return gsm48_sendmsg(msg);
2975}
2976
2977static int gsm48_cc_rx_start_dtmf(struct gsm_trans *trans, struct msgb *msg)
2978{
2979 struct gsm48_hdr *gh = msgb_l3(msg);
2980 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
2981 struct tlv_parsed tp;
2982 struct gsm_mncc dtmf;
2983
2984 memset(&dtmf, 0, sizeof(struct gsm_mncc));
2985 dtmf.callref = trans->callref;
2986 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, 0, 0);
2987 /* keypad facility */
2988 if (TLVP_PRESENT(&tp, GSM48_IE_KPD_FACILITY)) {
2989 dtmf.fields |= MNCC_F_KEYPAD;
2990 decode_keypad(&dtmf.keypad,
2991 TLVP_VAL(&tp, GSM48_IE_KPD_FACILITY)-1);
2992 }
2993
2994 return mncc_recvmsg(trans->network, trans, MNCC_START_DTMF_IND, &dtmf);
2995}
2996
2997static int gsm48_cc_tx_start_dtmf_ack(struct gsm_trans *trans, void *arg)
2998{
2999 struct gsm_mncc *dtmf = arg;
3000 struct msgb *msg = gsm48_msgb_alloc();
3001 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3002
3003 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3004 msg->lchan = trans->lchan;
3005 gh->msg_type = GSM48_MT_CC_START_DTMF_ACK;
3006
3007 /* keypad */
3008 if (dtmf->fields & MNCC_F_KEYPAD)
3009 encode_keypad(msg, dtmf->keypad);
3010
3011 return gsm48_sendmsg(msg);
3012}
3013
3014static int gsm48_cc_tx_start_dtmf_rej(struct gsm_trans *trans, void *arg)
3015{
3016 struct gsm_mncc *dtmf = arg;
3017 struct msgb *msg = gsm48_msgb_alloc();
3018 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3019
3020 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3021 msg->lchan = trans->lchan;
3022 gh->msg_type = GSM48_MT_CC_START_DTMF_REJ;
3023
3024 /* cause */
3025 if (dtmf->fields & MNCC_F_CAUSE)
3026 encode_cause(msg, 1, &dtmf->cause);
3027 else
3028 encode_cause(msg, 1, &default_cause);
3029
3030 return gsm48_sendmsg(msg);
3031}
3032
3033static int gsm48_cc_tx_stop_dtmf_ack(struct gsm_trans *trans, void *arg)
3034{
3035 struct msgb *msg = gsm48_msgb_alloc();
3036 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3037
3038 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3039 msg->lchan = trans->lchan;
3040 gh->msg_type = GSM48_MT_CC_STOP_DTMF_ACK;
3041
3042 return gsm48_sendmsg(msg);
3043}
3044
3045static int gsm48_cc_rx_stop_dtmf(struct gsm_trans *trans, struct msgb *msg)
3046{
3047 struct gsm_mncc dtmf;
3048
3049 memset(&dtmf, 0, sizeof(struct gsm_mncc));
3050 dtmf.callref = trans->callref;
3051
3052 return mncc_recvmsg(trans->network, trans, MNCC_STOP_DTMF_IND, &dtmf);
3053}
3054
3055static int gsm48_cc_rx_modify(struct gsm_trans *trans, struct msgb *msg)
3056{
3057 struct gsm48_hdr *gh = msgb_l3(msg);
3058 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
3059 struct tlv_parsed tp;
3060 struct gsm_mncc modify;
3061
3062 memset(&modify, 0, sizeof(struct gsm_mncc));
3063 modify.callref = trans->callref;
3064 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_BEARER_CAP, 0);
3065 /* bearer capability */
3066 if (TLVP_PRESENT(&tp, GSM48_IE_BEARER_CAP)) {
3067 modify.fields |= MNCC_F_BEARER_CAP;
3068 decode_bearer_cap(&modify.bearer_cap,
3069 TLVP_VAL(&tp, GSM48_IE_BEARER_CAP)-1);
3070 }
3071
3072 new_cc_state(trans, GSM_CSTATE_MO_ORIG_MODIFY);
3073
3074 return mncc_recvmsg(trans->network, trans, MNCC_MODIFY_IND, &modify);
3075}
3076
3077static int gsm48_cc_tx_modify(struct gsm_trans *trans, void *arg)
3078{
3079 struct gsm_mncc *modify = arg;
3080 struct msgb *msg = gsm48_msgb_alloc();
3081 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3082
3083 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3084 msg->lchan = trans->lchan;
3085 gh->msg_type = GSM48_MT_CC_MODIFY;
3086
3087 gsm48_start_cc_timer(trans, 0x323, GSM48_T323);
3088
3089 /* bearer capability */
3090 encode_bearer_cap(msg, 1, &modify->bearer_cap);
3091
3092 new_cc_state(trans, GSM_CSTATE_MO_TERM_MODIFY);
3093
3094 return gsm48_sendmsg(msg);
3095}
3096
3097static int gsm48_cc_rx_modify_complete(struct gsm_trans *trans, struct msgb *msg)
3098{
3099 struct gsm48_hdr *gh = msgb_l3(msg);
3100 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
3101 struct tlv_parsed tp;
3102 struct gsm_mncc modify;
3103
3104 gsm48_stop_cc_timer(trans);
3105
3106 memset(&modify, 0, sizeof(struct gsm_mncc));
3107 modify.callref = trans->callref;
3108 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_BEARER_CAP, 0);
3109 /* bearer capability */
3110 if (TLVP_PRESENT(&tp, GSM48_IE_BEARER_CAP)) {
3111 modify.fields |= MNCC_F_BEARER_CAP;
3112 decode_bearer_cap(&modify.bearer_cap,
3113 TLVP_VAL(&tp, GSM48_IE_BEARER_CAP)-1);
3114 }
3115
3116 new_cc_state(trans, GSM_CSTATE_ACTIVE);
3117
3118 return mncc_recvmsg(trans->network, trans, MNCC_MODIFY_CNF, &modify);
3119}
3120
3121static int gsm48_cc_tx_modify_complete(struct gsm_trans *trans, void *arg)
3122{
3123 struct gsm_mncc *modify = arg;
3124 struct msgb *msg = gsm48_msgb_alloc();
3125 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3126
3127 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3128 msg->lchan = trans->lchan;
3129 gh->msg_type = GSM48_MT_CC_MODIFY_COMPL;
3130
3131 /* bearer capability */
3132 encode_bearer_cap(msg, 1, &modify->bearer_cap);
3133
3134 new_cc_state(trans, GSM_CSTATE_ACTIVE);
3135
3136 return gsm48_sendmsg(msg);
3137}
3138
3139static int gsm48_cc_rx_modify_reject(struct gsm_trans *trans, struct msgb *msg)
3140{
3141 struct gsm48_hdr *gh = msgb_l3(msg);
3142 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
3143 struct tlv_parsed tp;
3144 struct gsm_mncc modify;
3145
3146 gsm48_stop_cc_timer(trans);
3147
3148 memset(&modify, 0, sizeof(struct gsm_mncc));
3149 modify.callref = trans->callref;
3150 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_BEARER_CAP, GSM48_IE_CAUSE);
3151 /* bearer capability */
3152 if (TLVP_PRESENT(&tp, GSM48_IE_BEARER_CAP)) {
3153 modify.fields |= GSM48_IE_BEARER_CAP;
3154 decode_bearer_cap(&modify.bearer_cap,
3155 TLVP_VAL(&tp, GSM48_IE_BEARER_CAP)-1);
3156 }
3157 /* cause */
3158 if (TLVP_PRESENT(&tp, GSM48_IE_CAUSE)) {
3159 modify.fields |= MNCC_F_CAUSE;
3160 decode_cause(&modify.cause,
3161 TLVP_VAL(&tp, GSM48_IE_CAUSE)-1);
3162 }
3163
3164 new_cc_state(trans, GSM_CSTATE_ACTIVE);
3165
3166 return mncc_recvmsg(trans->network, trans, MNCC_MODIFY_REJ, &modify);
3167}
3168
3169static int gsm48_cc_tx_modify_reject(struct gsm_trans *trans, void *arg)
3170{
3171 struct gsm_mncc *modify = arg;
3172 struct msgb *msg = gsm48_msgb_alloc();
3173 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3174
3175 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3176 msg->lchan = trans->lchan;
3177 gh->msg_type = GSM48_MT_CC_MODIFY_REJECT;
3178
3179 /* bearer capability */
3180 encode_bearer_cap(msg, 1, &modify->bearer_cap);
3181 /* cause */
3182 encode_cause(msg, 1, &modify->cause);
3183
3184 new_cc_state(trans, GSM_CSTATE_ACTIVE);
3185
3186 return gsm48_sendmsg(msg);
3187}
3188
3189static int gsm48_cc_tx_notify(struct gsm_trans *trans, void *arg)
3190{
3191 struct gsm_mncc *notify = arg;
3192 struct msgb *msg = gsm48_msgb_alloc();
3193 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3194
3195 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3196 msg->lchan = trans->lchan;
3197 gh->msg_type = GSM48_MT_CC_NOTIFY;
3198
3199 /* notify */
3200 encode_notify(msg, notify->notify);
3201
3202 return gsm48_sendmsg(msg);
3203}
3204
3205static int gsm48_cc_rx_notify(struct gsm_trans *trans, struct msgb *msg)
3206{
3207 struct gsm48_hdr *gh = msgb_l3(msg);
3208 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
3209// struct tlv_parsed tp;
3210 struct gsm_mncc notify;
3211
3212 memset(&notify, 0, sizeof(struct gsm_mncc));
3213 notify.callref = trans->callref;
3214// tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len);
3215 if (payload_len >= 1)
3216 decode_notify(&notify.notify, gh->data);
3217
3218 return mncc_recvmsg(trans->network, trans, MNCC_NOTIFY_IND, &notify);
3219}
3220
3221static int gsm48_cc_tx_userinfo(struct gsm_trans *trans, void *arg)
3222{
3223 struct gsm_mncc *user = arg;
3224 struct msgb *msg = gsm48_msgb_alloc();
3225 struct gsm48_hdr *gh = (struct gsm48_hdr *) msgb_put(msg, sizeof(*gh));
3226
3227 gh->proto_discr = GSM48_PDISC_CC | trans->transaction_id;
3228 msg->lchan = trans->lchan;
3229 gh->msg_type = GSM48_MT_CC_USER_INFO;
3230
3231 /* user-user */
3232 if (user->fields & MNCC_F_USERUSER)
3233 encode_useruser(msg, 1, &user->useruser);
3234 /* more data */
3235 if (user->more)
3236 encode_more(msg);
3237
3238 return gsm48_sendmsg(msg);
3239}
3240
3241static int gsm48_cc_rx_userinfo(struct gsm_trans *trans, struct msgb *msg)
3242{
3243 struct gsm48_hdr *gh = msgb_l3(msg);
3244 unsigned int payload_len = msgb_l3len(msg) - sizeof(*gh);
3245 struct tlv_parsed tp;
3246 struct gsm_mncc user;
3247
3248 memset(&user, 0, sizeof(struct gsm_mncc));
3249 user.callref = trans->callref;
3250 tlv_parse(&tp, &rsl_att_tlvdef, gh->data, payload_len, GSM48_IE_USER_USER, 0);
3251 /* user-user */
3252 if (TLVP_PRESENT(&tp, GSM48_IE_USER_USER)) {
3253 user.fields |= MNCC_F_USERUSER;
3254 decode_useruser(&user.useruser,
3255 TLVP_VAL(&tp, GSM48_IE_USER_USER)-1);
3256 }
3257 /* more data */
3258 if (TLVP_PRESENT(&tp, GSM48_IE_MORE_DATA))
3259 user.more = 1;
3260
3261 return mncc_recvmsg(trans->network, trans, MNCC_USERINFO_IND, &user);
3262}
3263
3264static int gsm48_lchan_modify(struct gsm_trans *trans, void *arg)
3265{
3266 struct gsm_mncc *mode = arg;
3267
3268 return gsm48_tx_chan_mode_modify(trans->lchan, mode->lchan_mode);
3269}
3270
3271static struct downstate {
3272 u_int32_t states;
3273 int type;
3274 int (*rout) (struct gsm_trans *trans, void *arg);
3275} downstatelist[] = {
3276 /* mobile originating call establishment */
3277 {SBIT(GSM_CSTATE_INITIATED), /* 5.2.1.2 */
3278 MNCC_CALL_PROC_REQ, gsm48_cc_tx_call_proc},
3279 {SBIT(GSM_CSTATE_INITIATED) | SBIT(GSM_CSTATE_MO_CALL_PROC), /* 5.2.1.2 | 5.2.1.5 */
3280 MNCC_ALERT_REQ, gsm48_cc_tx_alerting},
3281 {SBIT(GSM_CSTATE_INITIATED) | SBIT(GSM_CSTATE_MO_CALL_PROC) | SBIT(GSM_CSTATE_CALL_DELIVERED), /* 5.2.1.2 | 5.2.1.6 | 5.2.1.6 */
3282 MNCC_SETUP_RSP, gsm48_cc_tx_connect},
3283 {SBIT(GSM_CSTATE_MO_CALL_PROC), /* 5.2.1.4.2 */
3284 MNCC_PROGRESS_REQ, gsm48_cc_tx_progress},
3285 /* mobile terminating call establishment */
3286 {SBIT(GSM_CSTATE_NULL), /* 5.2.2.1 */
3287 MNCC_SETUP_REQ, gsm48_cc_tx_setup},
3288 {SBIT(GSM_CSTATE_CONNECT_REQUEST),
3289 MNCC_SETUP_COMPL_REQ, gsm48_cc_tx_connect_ack},
3290 /* signalling during call */
3291 {SBIT(GSM_CSTATE_ACTIVE),
3292 MNCC_NOTIFY_REQ, gsm48_cc_tx_notify},
3293 {ALL_STATES - SBIT(GSM_CSTATE_NULL) - SBIT(GSM_CSTATE_RELEASE_REQ),
3294 MNCC_FACILITY_REQ, gsm48_cc_tx_facility},
3295 {ALL_STATES,
3296 MNCC_START_DTMF_RSP, gsm48_cc_tx_start_dtmf_ack},
3297 {ALL_STATES,
3298 MNCC_START_DTMF_REJ, gsm48_cc_tx_start_dtmf_rej},
3299 {ALL_STATES,
3300 MNCC_STOP_DTMF_RSP, gsm48_cc_tx_stop_dtmf_ack},
3301 {SBIT(GSM_CSTATE_ACTIVE),
3302 MNCC_HOLD_CNF, gsm48_cc_tx_hold_ack},
3303 {SBIT(GSM_CSTATE_ACTIVE),
3304 MNCC_HOLD_REJ, gsm48_cc_tx_hold_rej},
3305 {SBIT(GSM_CSTATE_ACTIVE),
3306 MNCC_RETRIEVE_CNF, gsm48_cc_tx_retrieve_ack},
3307 {SBIT(GSM_CSTATE_ACTIVE),
3308 MNCC_RETRIEVE_REJ, gsm48_cc_tx_retrieve_rej},
3309 {SBIT(GSM_CSTATE_ACTIVE),
3310 MNCC_MODIFY_REQ, gsm48_cc_tx_modify},
3311 {SBIT(GSM_CSTATE_MO_ORIG_MODIFY),
3312 MNCC_MODIFY_RSP, gsm48_cc_tx_modify_complete},
3313 {SBIT(GSM_CSTATE_MO_ORIG_MODIFY),
3314 MNCC_MODIFY_REJ, gsm48_cc_tx_modify_reject},
3315 {SBIT(GSM_CSTATE_ACTIVE),
3316 MNCC_USERINFO_REQ, gsm48_cc_tx_userinfo},
3317 /* clearing */
3318 {SBIT(GSM_CSTATE_INITIATED),
3319 MNCC_REJ_REQ, gsm48_cc_tx_release_compl},
3320 {ALL_STATES - SBIT(GSM_CSTATE_NULL) - SBIT(GSM_CSTATE_DISCONNECT_IND) - SBIT(GSM_CSTATE_RELEASE_REQ) - SBIT(GSM_CSTATE_DISCONNECT_REQ), /* 5.4.4 */
3321 MNCC_DISC_REQ, gsm48_cc_tx_disconnect},
3322 {ALL_STATES - SBIT(GSM_CSTATE_NULL) - SBIT(GSM_CSTATE_RELEASE_REQ), /* 5.4.3.2 */
3323 MNCC_REL_REQ, gsm48_cc_tx_release},
3324 /* special */
3325 {ALL_STATES,
3326 MNCC_LCHAN_MODIFY, gsm48_lchan_modify},
3327};
3328
3329#define DOWNSLLEN \
3330 (sizeof(downstatelist) / sizeof(struct downstate))
3331
3332
3333int mncc_send(struct gsm_network *net, int msg_type, void *arg)
3334{
3335 int i, j, k, l, rc = 0;
3336 struct gsm_trans *trans = NULL, *transt;
3337 struct gsm_subscriber *subscr;
3338 struct gsm_lchan *lchan = NULL, *lchant;
3339 struct gsm_bts *bts = NULL;
3340 struct gsm_bts_trx *trx;
3341 struct gsm_bts_trx_ts *ts;
3342 struct gsm_mncc *data = arg, rel;
3343
3344 /* handle special messages */
3345 switch(msg_type) {
3346 case MNCC_BRIDGE:
3347 return tch_bridge(net, arg);
3348 case MNCC_FRAME_DROP:
3349 return tch_recv(net, arg, 0);
3350 case MNCC_FRAME_RECV:
3351 return tch_recv(net, arg, 1);
3352 case GSM_TRAU_FRAME:
3353 return tch_frame(net, arg);
3354 }
3355
3356 memset(&rel, 0, sizeof(struct gsm_mncc));
3357 rel.callref = data->callref;
3358
3359 /* Find callref */
Harald Weltedcaf5652009-07-23 18:56:43 +02003360 trans = trans_find_by_callref(net, data->callref);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003361
3362 /* Callref unknown */
3363 if (!trans) {
Harald Welte4a3464c2009-07-04 10:11:24 +02003364 if (msg_type != MNCC_SETUP_REQ) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08003365 DEBUGP(DCC, "(bts - trx - ts - ti -- sub %s) "
3366 "Received '%s' from MNCC with "
3367 "unknown callref %d\n", data->called.number,
3368 get_mncc_name(msg_type), data->callref);
3369 /* Invalid call reference */
Andreas Eversberg7563ac92009-06-14 22:14:12 +08003370 return mncc_release_ind(net, NULL, data->callref,
3371 GSM48_CAUSE_LOC_PRN_S_LU,
3372 GSM48_CC_CAUSE_INVAL_TRANS_ID);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003373 }
Andreas Eversbergc079be42009-06-15 23:22:09 +02003374 if (!data->called.number[0] && !data->imsi[0]) {
3375 DEBUGP(DCC, "(bts - trx - ts - ti) "
3376 "Received '%s' from MNCC with "
3377 "no number or IMSI\n", get_mncc_name(msg_type));
3378 /* Invalid number */
3379 return mncc_release_ind(net, NULL, data->callref,
3380 GSM48_CAUSE_LOC_PRN_S_LU,
3381 GSM48_CC_CAUSE_INV_NR_FORMAT);
3382 }
Harald Welte4bfdfe72009-06-10 23:11:52 +08003383 /* New transaction due to setup, find subscriber */
Andreas Eversbergc079be42009-06-15 23:22:09 +02003384 if (data->called.number[0])
Harald Welte9176bd42009-07-23 18:46:00 +02003385 subscr = subscr_get_by_extension(net,
3386 data->called.number);
Andreas Eversbergc079be42009-06-15 23:22:09 +02003387 else
Harald Welte9176bd42009-07-23 18:46:00 +02003388 subscr = subscr_get_by_imsi(net, data->imsi);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003389 /* If subscriber is not found */
3390 if (!subscr) {
3391 DEBUGP(DCC, "(bts - trx - ts - ti -- sub %s) "
3392 "Received '%s' from MNCC with "
3393 "unknown subscriber %s\n", data->called.number,
3394 get_mncc_name(msg_type), data->called.number);
3395 /* Unknown subscriber */
Andreas Eversberg7563ac92009-06-14 22:14:12 +08003396 return mncc_release_ind(net, NULL, data->callref,
3397 GSM48_CAUSE_LOC_PRN_S_LU,
3398 GSM48_CC_CAUSE_UNASSIGNED_NR);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003399 }
3400 /* If subscriber is not "attached" */
3401 if (!subscr->lac) {
3402 DEBUGP(DCC, "(bts - trx - ts - ti -- sub %s) "
3403 "Received '%s' from MNCC with "
3404 "detached subscriber %s\n", data->called.number,
3405 get_mncc_name(msg_type), data->called.number);
3406 subscr_put(subscr);
3407 /* Temporarily out of order */
Andreas Eversberg7563ac92009-06-14 22:14:12 +08003408 return mncc_release_ind(net, NULL, data->callref,
3409 GSM48_CAUSE_LOC_PRN_S_LU,
3410 GSM48_CC_CAUSE_DEST_OOO);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003411 }
3412 /* Create transaction */
Harald Weltedcaf5652009-07-23 18:56:43 +02003413 trans = trans_alloc(subscr, GSM48_PDISC_CC, 0xff, data->callref);
3414 if (!trans) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08003415 DEBUGP(DCC, "No memory for trans.\n");
3416 subscr_put(subscr);
3417 /* Ressource unavailable */
Andreas Eversberg7563ac92009-06-14 22:14:12 +08003418 mncc_release_ind(net, NULL, data->callref,
3419 GSM48_CAUSE_LOC_PRN_S_LU,
3420 GSM48_CC_CAUSE_RESOURCE_UNAVAIL);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003421 return -ENOMEM;
3422 }
Harald Welte4bfdfe72009-06-10 23:11:52 +08003423 /* Find lchan */
3424 for (i = 0; i < net->num_bts; i++) {
Harald Weltee441d9c2009-06-21 16:17:15 +02003425 bts = gsm_bts_num(net, i);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003426 for (j = 0; j < bts->num_trx; j++) {
Harald Weltee441d9c2009-06-21 16:17:15 +02003427 trx = gsm_bts_trx_num(bts, j);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003428 for (k = 0; k < TRX_NR_TS; k++) {
3429 ts = &trx->ts[k];
3430 for (l = 0; l < TS_MAX_LCHAN; l++) {
3431 lchant = &ts->lchan[l];
3432 if (lchant->subscr == subscr) {
3433 lchan = lchant;
3434 break;
3435 }
3436 }
3437 }
3438 }
3439 }
3440
3441 /* If subscriber has no lchan */
3442 if (!lchan) {
3443 /* find transaction with this subscriber already paging */
3444 llist_for_each_entry(transt, &net->trans_list, entry) {
3445 /* Transaction of our lchan? */
3446 if (transt == trans ||
3447 transt->subscr != subscr)
3448 continue;
3449 DEBUGP(DCC, "(bts %d trx - ts - ti -- sub %s) "
3450 "Received '%s' from MNCC with "
3451 "unallocated channel, paging already "
3452 "started.\n", bts->nr,
3453 data->called.number,
3454 get_mncc_name(msg_type));
3455 return 0;
3456 }
3457 /* store setup informations until paging was successfull */
Harald Weltedcaf5652009-07-23 18:56:43 +02003458 memcpy(&trans->cc.msg, data, sizeof(struct gsm_mncc));
Harald Welte4bfdfe72009-06-10 23:11:52 +08003459 /* start paging subscriber on all BTS with her location */
3460 subscr->net = net;
3461 bts = NULL;
3462 do {
3463 bts = gsm_bts_by_lac(net, subscr->lac, bts);
3464 if (!bts)
3465 break;
3466 DEBUGP(DCC, "(bts %d trx - ts - ti -- sub %s) "
3467 "Received '%s' from MNCC with "
3468 "unallocated channel, paging.\n",
3469 bts->nr, data->called.number,
3470 get_mncc_name(msg_type));
3471 /* Trigger paging */
Harald Welte92f70c52009-06-12 01:54:08 +08003472 paging_request(net, subscr, RSL_CHANNEED_TCH_F,
Harald Welte4bfdfe72009-06-10 23:11:52 +08003473 setup_trig_pag_evt, subscr);
3474 } while (1);
3475 return 0;
3476 }
3477 /* Assign lchan */
3478 trans->lchan = lchan;
3479 use_lchan(lchan);
3480 }
3481 lchan = trans->lchan;
3482
3483 /* if paging did not respond yet */
3484 if (!lchan) {
3485 DEBUGP(DCC, "(bts - trx - ts - ti -- sub %s) "
3486 "Received '%s' from MNCC in paging state\n",
3487 (trans->subscr)?(trans->subscr->extension):"-",
3488 get_mncc_name(msg_type));
Harald Weltec66b71c2009-06-11 14:23:20 +08003489 mncc_set_cause(&rel, GSM48_CAUSE_LOC_PRN_S_LU,
3490 GSM48_CC_CAUSE_NORM_CALL_CLEAR);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003491 if (msg_type == MNCC_REL_REQ)
3492 rc = mncc_recvmsg(net, trans, MNCC_REL_CNF, &rel);
3493 else
3494 rc = mncc_recvmsg(net, trans, MNCC_REL_IND, &rel);
3495 trans->callref = 0;
Harald Weltedcaf5652009-07-23 18:56:43 +02003496 trans_free(trans);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003497 return rc;
3498 }
3499
3500 DEBUGP(DCC, "(bts %d trx %d ts %d ti %02x sub %s) "
3501 "Received '%s' from MNCC in state %d (%s)\n",
3502 lchan->ts->trx->bts->nr, lchan->ts->trx->nr, lchan->ts->nr,
3503 trans->transaction_id,
3504 (lchan->subscr)?(lchan->subscr->extension):"-",
Harald Weltedcaf5652009-07-23 18:56:43 +02003505 get_mncc_name(msg_type), trans->cc.state,
3506 cc_state_names[trans->cc.state]);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003507
3508 /* Find function for current state and message */
3509 for (i = 0; i < DOWNSLLEN; i++)
3510 if ((msg_type == downstatelist[i].type)
Harald Weltedcaf5652009-07-23 18:56:43 +02003511 && ((1 << trans->cc.state) & downstatelist[i].states))
Harald Welte4bfdfe72009-06-10 23:11:52 +08003512 break;
3513 if (i == DOWNSLLEN) {
3514 DEBUGP(DCC, "Message unhandled at this state.\n");
3515 return 0;
3516 }
3517
3518 rc = downstatelist[i].rout(trans, arg);
3519
3520 return rc;
3521}
3522
3523
3524static struct datastate {
3525 u_int32_t states;
3526 int type;
3527 int (*rout) (struct gsm_trans *trans, struct msgb *msg);
3528} datastatelist[] = {
3529 /* mobile originating call establishment */
3530 {SBIT(GSM_CSTATE_NULL), /* 5.2.1.2 */
3531 GSM48_MT_CC_SETUP, gsm48_cc_rx_setup},
3532 {SBIT(GSM_CSTATE_NULL), /* 5.2.1.2 */
3533 GSM48_MT_CC_EMERG_SETUP, gsm48_cc_rx_setup},
3534 {SBIT(GSM_CSTATE_CONNECT_IND), /* 5.2.1.2 */
3535 GSM48_MT_CC_CONNECT_ACK, gsm48_cc_rx_connect_ack},
3536 /* mobile terminating call establishment */
3537 {SBIT(GSM_CSTATE_CALL_PRESENT), /* 5.2.2.3.2 */
3538 GSM48_MT_CC_CALL_CONF, gsm48_cc_rx_call_conf},
3539 {SBIT(GSM_CSTATE_CALL_PRESENT) | SBIT(GSM_CSTATE_MO_TERM_CALL_CONF), /* ???? | 5.2.2.3.2 */
3540 GSM48_MT_CC_ALERTING, gsm48_cc_rx_alerting},
3541 {SBIT(GSM_CSTATE_CALL_PRESENT) | SBIT(GSM_CSTATE_MO_TERM_CALL_CONF) | SBIT(GSM_CSTATE_CALL_RECEIVED), /* (5.2.2.6) | 5.2.2.6 | 5.2.2.6 */
3542 GSM48_MT_CC_CONNECT, gsm48_cc_rx_connect},
3543 /* signalling during call */
3544 {ALL_STATES - SBIT(GSM_CSTATE_NULL),
3545 GSM48_MT_CC_FACILITY, gsm48_cc_rx_facility},
3546 {SBIT(GSM_CSTATE_ACTIVE),
3547 GSM48_MT_CC_NOTIFY, gsm48_cc_rx_notify},
3548 {ALL_STATES,
3549 GSM48_MT_CC_START_DTMF, gsm48_cc_rx_start_dtmf},
3550 {ALL_STATES,
3551 GSM48_MT_CC_STOP_DTMF, gsm48_cc_rx_stop_dtmf},
3552 {ALL_STATES,
3553 GSM48_MT_CC_STATUS_ENQ, gsm48_cc_rx_status_enq},
3554 {SBIT(GSM_CSTATE_ACTIVE),
3555 GSM48_MT_CC_HOLD, gsm48_cc_rx_hold},
3556 {SBIT(GSM_CSTATE_ACTIVE),
3557 GSM48_MT_CC_RETR, gsm48_cc_rx_retrieve},
3558 {SBIT(GSM_CSTATE_ACTIVE),
3559 GSM48_MT_CC_MODIFY, gsm48_cc_rx_modify},
3560 {SBIT(GSM_CSTATE_MO_TERM_MODIFY),
3561 GSM48_MT_CC_MODIFY_COMPL, gsm48_cc_rx_modify_complete},
3562 {SBIT(GSM_CSTATE_MO_TERM_MODIFY),
3563 GSM48_MT_CC_MODIFY_REJECT, gsm48_cc_rx_modify_reject},
3564 {SBIT(GSM_CSTATE_ACTIVE),
3565 GSM48_MT_CC_USER_INFO, gsm48_cc_rx_userinfo},
3566 /* clearing */
3567 {ALL_STATES - SBIT(GSM_CSTATE_NULL) - SBIT(GSM_CSTATE_RELEASE_REQ), /* 5.4.3.2 */
3568 GSM48_MT_CC_DISCONNECT, gsm48_cc_rx_disconnect},
3569 {ALL_STATES - SBIT(GSM_CSTATE_NULL), /* 5.4.4.1.2.2 */
3570 GSM48_MT_CC_RELEASE, gsm48_cc_rx_release},
3571 {ALL_STATES, /* 5.4.3.4 */
3572 GSM48_MT_CC_RELEASE_COMPL, gsm48_cc_rx_release_compl},
3573};
3574
3575#define DATASLLEN \
3576 (sizeof(datastatelist) / sizeof(struct datastate))
3577
Harald Welte4bc90a12008-12-27 16:32:52 +00003578static int gsm0408_rcv_cc(struct msgb *msg)
3579{
3580 struct gsm48_hdr *gh = msgb_l3(msg);
3581 u_int8_t msg_type = gh->msg_type & 0xbf;
Harald Welte4bfdfe72009-06-10 23:11:52 +08003582 u_int8_t transaction_id = (gh->proto_discr & 0xf0) ^ 0x80; /* flip */
3583 struct gsm_lchan *lchan = msg->lchan;
Harald Weltedcaf5652009-07-23 18:56:43 +02003584 struct gsm_trans *trans = NULL;
Harald Welte4bfdfe72009-06-10 23:11:52 +08003585 int i, rc = 0;
Harald Welte4bc90a12008-12-27 16:32:52 +00003586
Harald Welte4bfdfe72009-06-10 23:11:52 +08003587 if (msg_type & 0x80) {
3588 DEBUGP(DCC, "MSG 0x%2x not defined for PD error\n", msg_type);
3589 return -EINVAL;
Harald Welte4bc90a12008-12-27 16:32:52 +00003590 }
Harald Welte4bfdfe72009-06-10 23:11:52 +08003591
3592 /* Find transaction */
Harald Weltedcaf5652009-07-23 18:56:43 +02003593 trans = trans_find_by_id(lchan, transaction_id);
3594
Harald Welte4bfdfe72009-06-10 23:11:52 +08003595 DEBUGP(DCC, "(bts %d trx %d ts %d ti %02x sub %s) "
3596 "Received '%s' from MS in state %d (%s)\n",
3597 lchan->ts->trx->bts->nr, lchan->ts->trx->nr, lchan->ts->nr,
3598 transaction_id, (lchan->subscr)?(lchan->subscr->extension):"-",
Harald Weltedcaf5652009-07-23 18:56:43 +02003599 cc_msg_names[msg_type], trans?(trans->cc.state):0,
3600 cc_state_names[trans?(trans->cc.state):0]);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003601
3602 /* Create transaction */
3603 if (!trans) {
3604 DEBUGP(DCC, "Unknown transaction ID %02x, "
3605 "creating new trans.\n", transaction_id);
3606 /* Create transaction */
Harald Weltedcaf5652009-07-23 18:56:43 +02003607 trans = trans_alloc(lchan->subscr, GSM48_PDISC_CC,
3608 transaction_id, new_callref++);
3609 if (!trans) {
Harald Welte4bfdfe72009-06-10 23:11:52 +08003610 DEBUGP(DCC, "No memory for trans.\n");
3611 rc = gsm48_tx_simple(msg->lchan,
3612 GSM48_PDISC_CC | transaction_id,
3613 GSM48_MT_CC_RELEASE_COMPL);
3614 return -ENOMEM;
3615 }
Harald Welte4bfdfe72009-06-10 23:11:52 +08003616 /* Assign transaction */
Harald Welte4bfdfe72009-06-10 23:11:52 +08003617 trans->lchan = lchan;
3618 use_lchan(lchan);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003619 }
3620
3621 /* find function for current state and message */
3622 for (i = 0; i < DATASLLEN; i++)
3623 if ((msg_type == datastatelist[i].type)
Harald Weltedcaf5652009-07-23 18:56:43 +02003624 && ((1 << trans->cc.state) & datastatelist[i].states))
Harald Welte4bfdfe72009-06-10 23:11:52 +08003625 break;
3626 if (i == DATASLLEN) {
3627 DEBUGP(DCC, "Message unhandled at this state.\n");
3628 return 0;
3629 }
3630
3631 rc = datastatelist[i].rout(trans, msg);
Harald Welte4bc90a12008-12-27 16:32:52 +00003632
3633 return rc;
3634}
3635
Harald Welte52b1f982008-12-23 20:25:15 +00003636/* here we pass in a msgb from the RSL->RLL. We expect the l3 pointer to be set */
3637int gsm0408_rcvmsg(struct msgb *msg)
3638{
3639 struct gsm48_hdr *gh = msgb_l3(msg);
3640 u_int8_t pdisc = gh->proto_discr & 0x0f;
Harald Welte8470bf22008-12-25 23:28:35 +00003641 int rc = 0;
Harald Welte52b1f982008-12-23 20:25:15 +00003642
3643 switch (pdisc) {
3644 case GSM48_PDISC_CC:
3645 rc = gsm0408_rcv_cc(msg);
3646 break;
3647 case GSM48_PDISC_MM:
3648 rc = gsm0408_rcv_mm(msg);
3649 break;
3650 case GSM48_PDISC_RR:
3651 rc = gsm0408_rcv_rr(msg);
3652 break;
Harald Weltebcae43f2008-12-27 21:45:37 +00003653 case GSM48_PDISC_SMS:
Daniel Willmann8b3390e2008-12-28 00:31:09 +00003654 rc = gsm0411_rcv_sms(msg);
Harald Weltebcae43f2008-12-27 21:45:37 +00003655 break;
Harald Welte52b1f982008-12-23 20:25:15 +00003656 case GSM48_PDISC_MM_GPRS:
Harald Weltebcae43f2008-12-27 21:45:37 +00003657 case GSM48_PDISC_SM_GPRS:
Harald Welte52b1f982008-12-23 20:25:15 +00003658 fprintf(stderr, "Unimplemented GSM 04.08 discriminator 0x%02d\n",
3659 pdisc);
3660 break;
3661 default:
3662 fprintf(stderr, "Unknown GSM 04.08 discriminator 0x%02d\n",
3663 pdisc);
3664 break;
3665 }
3666
3667 return rc;
3668}
Harald Welte8470bf22008-12-25 23:28:35 +00003669
Harald Welte8470bf22008-12-25 23:28:35 +00003670/* Section 9.1.8 / Table 9.9 */
3671struct chreq {
3672 u_int8_t val;
3673 u_int8_t mask;
3674 enum chreq_type type;
3675};
3676
3677/* If SYSTEM INFORMATION TYPE 4 NECI bit == 1 */
3678static const struct chreq chreq_type_neci1[] = {
3679 { 0xa0, 0xe0, CHREQ_T_EMERG_CALL },
3680 { 0xc0, 0xe0, CHREQ_T_CALL_REEST_TCH_F },
3681 { 0x68, 0xfc, CHREQ_T_CALL_REEST_TCH_H },
3682 { 0x6c, 0xfc, CHREQ_T_CALL_REEST_TCH_H_DBL },
3683 { 0xe0, 0xe0, CHREQ_T_SDCCH },
3684 { 0x40, 0xf0, CHREQ_T_VOICE_CALL_TCH_H },
3685 { 0x50, 0xf0, CHREQ_T_DATA_CALL_TCH_H },
3686 { 0x00, 0xf0, CHREQ_T_LOCATION_UPD },
3687 { 0x10, 0xf0, CHREQ_T_SDCCH },
3688 { 0x80, 0xe0, CHREQ_T_PAG_R_ANY },
3689 { 0x20, 0xf0, CHREQ_T_PAG_R_TCH_F },
3690 { 0x30, 0xf0, CHREQ_T_PAG_R_TCH_FH },
3691};
3692
3693/* If SYSTEM INFORMATION TYPE 4 NECI bit == 0 */
3694static const struct chreq chreq_type_neci0[] = {
3695 { 0xa0, 0xe0, CHREQ_T_EMERG_CALL },
3696 { 0xc0, 0xe0, CHREQ_T_CALL_REEST_TCH_H },
3697 { 0xe0, 0xe0, CHREQ_T_TCH_F },
3698 { 0x50, 0xf0, CHREQ_T_DATA_CALL_TCH_H },
3699 { 0x00, 0xe0, CHREQ_T_LOCATION_UPD },
3700 { 0x80, 0xe0, CHREQ_T_PAG_R_ANY },
3701 { 0x20, 0xf0, CHREQ_T_PAG_R_TCH_F },
3702 { 0x30, 0xf0, CHREQ_T_PAG_R_TCH_FH },
3703};
3704
3705static const enum gsm_chan_t ctype_by_chreq[] = {
3706 [CHREQ_T_EMERG_CALL] = GSM_LCHAN_TCH_F,
3707 [CHREQ_T_CALL_REEST_TCH_F] = GSM_LCHAN_TCH_F,
3708 [CHREQ_T_CALL_REEST_TCH_H] = GSM_LCHAN_TCH_H,
3709 [CHREQ_T_CALL_REEST_TCH_H_DBL] = GSM_LCHAN_TCH_H,
3710 [CHREQ_T_SDCCH] = GSM_LCHAN_SDCCH,
3711 [CHREQ_T_TCH_F] = GSM_LCHAN_TCH_F,
3712 [CHREQ_T_VOICE_CALL_TCH_H] = GSM_LCHAN_TCH_H,
3713 [CHREQ_T_DATA_CALL_TCH_H] = GSM_LCHAN_TCH_H,
3714 [CHREQ_T_LOCATION_UPD] = GSM_LCHAN_SDCCH,
3715 [CHREQ_T_PAG_R_ANY] = GSM_LCHAN_SDCCH,
3716 [CHREQ_T_PAG_R_TCH_F] = GSM_LCHAN_TCH_F,
3717 [CHREQ_T_PAG_R_TCH_FH] = GSM_LCHAN_TCH_F,
3718};
3719
Harald Weltee14a57c2008-12-29 04:08:28 +00003720static const enum gsm_chreq_reason_t reason_by_chreq[] = {
3721 [CHREQ_T_EMERG_CALL] = GSM_CHREQ_REASON_EMERG,
3722 [CHREQ_T_CALL_REEST_TCH_F] = GSM_CHREQ_REASON_CALL,
3723 [CHREQ_T_CALL_REEST_TCH_H] = GSM_CHREQ_REASON_CALL,
3724 [CHREQ_T_CALL_REEST_TCH_H_DBL] = GSM_CHREQ_REASON_CALL,
3725 [CHREQ_T_SDCCH] = GSM_CHREQ_REASON_OTHER,
3726 [CHREQ_T_TCH_F] = GSM_CHREQ_REASON_OTHER,
3727 [CHREQ_T_VOICE_CALL_TCH_H] = GSM_CHREQ_REASON_OTHER,
3728 [CHREQ_T_DATA_CALL_TCH_H] = GSM_CHREQ_REASON_OTHER,
3729 [CHREQ_T_LOCATION_UPD] = GSM_CHREQ_REASON_LOCATION_UPD,
3730 [CHREQ_T_PAG_R_ANY] = GSM_CHREQ_REASON_PAG,
3731 [CHREQ_T_PAG_R_TCH_F] = GSM_CHREQ_REASON_PAG,
3732 [CHREQ_T_PAG_R_TCH_FH] = GSM_CHREQ_REASON_PAG,
3733};
3734
Harald Welte8470bf22008-12-25 23:28:35 +00003735enum gsm_chan_t get_ctype_by_chreq(struct gsm_bts *bts, u_int8_t ra)
3736{
3737 int i;
3738 /* FIXME: determine if we set NECI = 0 in the BTS SI4 */
3739
3740 for (i = 0; i < ARRAY_SIZE(chreq_type_neci0); i++) {
3741 const struct chreq *chr = &chreq_type_neci0[i];
3742 if ((ra & chr->mask) == chr->val)
3743 return ctype_by_chreq[chr->type];
3744 }
3745 fprintf(stderr, "Unknown CHANNEL REQUEST RQD 0x%02x\n", ra);
3746 return GSM_LCHAN_SDCCH;
3747}
Harald Weltee14a57c2008-12-29 04:08:28 +00003748
3749enum gsm_chreq_reason_t get_reason_by_chreq(struct gsm_bts *bts, u_int8_t ra)
3750{
3751 int i;
3752 /* FIXME: determine if we set NECI = 0 in the BTS SI4 */
3753
3754 for (i = 0; i < ARRAY_SIZE(chreq_type_neci0); i++) {
3755 const struct chreq *chr = &chreq_type_neci0[i];
3756 if ((ra & chr->mask) == chr->val)
3757 return reason_by_chreq[chr->type];
3758 }
3759 fprintf(stderr, "Unknown CHANNEL REQUEST REASON 0x%02x\n", ra);
3760 return GSM_CHREQ_REASON_OTHER;
3761}
Harald Welte4bfdfe72009-06-10 23:11:52 +08003762
3763/* dequeue messages to layer 4 */
3764int bsc_upqueue(struct gsm_network *net)
3765{
3766 struct gsm_mncc *mncc;
3767 struct msgb *msg;
3768 int work = 0;
3769
3770 if (net)
3771 while ((msg = msgb_dequeue(&net->upqueue))) {
3772 mncc = (struct gsm_mncc *)msg->data;
3773 if (net->mncc_recv)
3774 net->mncc_recv(net, mncc->msg_type, mncc);
3775 work = 1; /* work done */
Harald Welte316c8252009-06-26 19:40:48 +02003776 talloc_free(msg);
Harald Welte4bfdfe72009-06-10 23:11:52 +08003777 }
3778
3779 return work;
3780}
Harald Weltedcaf5652009-07-23 18:56:43 +02003781