7cdfb7060cbce0d9d412b36ff17e1a2aaa8804fe
[project/luci.git] / modules / admin-full / luasrc / model / cbi / admin_network / wifi.lua
1 --[[
2 LuCI - Lua Configuration Interface
3
4 Copyright 2008 Steven Barth <steven@midlink.org>
5
6 Licensed under the Apache License, Version 2.0 (the "License");
7 you may not use this file except in compliance with the License.
8 You may obtain a copy of the License at
9
10         http://www.apache.org/licenses/LICENSE-2.0
11
12 $Id$
13 ]]--
14
15 local wa = require "luci.tools.webadmin"
16 local nw = require "luci.model.network"
17 local ut = require "luci.util"
18 local nt = require "luci.sys".net
19 local fs = require "nixio.fs"
20
21 arg[1] = arg[1] or ""
22
23 m = Map("wireless", "",
24         translate("The <em>Device Configuration</em> section covers physical settings of the radio " ..
25                 "hardware such as channel, transmit power or antenna selection which are shared among all " ..
26                 "defined wireless networks (if the radio hardware is multi-SSID capable). Per network settings " ..
27                 "like encryption or operation mode are grouped in the <em>Interface Configuration</em>."))
28
29 m:chain("network")
30 m:chain("firewall")
31
32 local ifsection
33
34 function m.on_commit(map)
35         local wnet = nw:get_wifinet(arg[1])
36         if ifsection and wnet then
37                 ifsection.section = wnet.sid
38                 m.title = luci.util.pcdata(wnet:get_i18n())
39         end
40 end
41
42 nw.init(m.uci)
43
44 local wnet = nw:get_wifinet(arg[1])
45 local wdev = wnet and wnet:get_device()
46
47 -- redirect to overview page if network does not exist anymore (e.g. after a revert)
48 if not wnet or not wdev then
49         luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless"))
50         return
51 end
52
53 -- wireless toggle was requested, commit and reload page
54 function m.parse(map)
55         if m:formvalue("cbid.wireless.%s.__toggle" % wdev:name()) then
56                 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
57                         wnet:set("disabled", nil)
58                 else
59                         wnet:set("disabled", "1")
60                 end
61                 wdev:set("disabled", nil)
62
63                 nw:commit("wireless")
64                 luci.sys.call("(env -i /bin/ubus call network reload) >/dev/null 2>/dev/null")
65
66                 luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless", arg[1]))
67                 return
68         end
69         Map.parse(map)
70 end
71
72 m.title = luci.util.pcdata(wnet:get_i18n())
73
74
75 local function txpower_list(iw)
76         local list = iw.txpwrlist or { }
77         local off  = tonumber(iw.txpower_offset) or 0
78         local new  = { }
79         local prev = -1
80         local _, val
81         for _, val in ipairs(list) do
82                 local dbm = val.dbm + off
83                 local mw  = math.floor(10 ^ (dbm / 10))
84                 if mw ~= prev then
85                         prev = mw
86                         new[#new+1] = {
87                                 display_dbm = dbm,
88                                 display_mw  = mw,
89                                 driver_dbm  = val.dbm,
90                                 driver_mw   = val.mw
91                         }
92                 end
93         end
94         return new
95 end
96
97 local function txpower_current(pwr, list)
98         pwr = tonumber(pwr)
99         if pwr ~= nil then
100                 local _, item
101                 for _, item in ipairs(list) do
102                         if item.driver_dbm >= pwr then
103                                 return item.driver_dbm
104                         end
105                 end
106         end
107         return (list[#list] and list[#list].driver_dbm) or pwr or 0
108 end
109
110 local iw = luci.sys.wifi.getiwinfo(arg[1])
111 local hw_modes      = iw.hwmodelist or { }
112 local tx_power_list = txpower_list(iw)
113 local tx_power_cur  = txpower_current(wdev:get("txpower"), tx_power_list)
114
115 s = m:section(NamedSection, wdev:name(), "wifi-device", translate("Device Configuration"))
116 s.addremove = false
117
118 s:tab("general", translate("General Setup"))
119 s:tab("macfilter", translate("MAC-Filter"))
120 s:tab("advanced", translate("Advanced Settings"))
121
122 --[[
123 back = s:option(DummyValue, "_overview", translate("Overview"))
124 back.value = ""
125 back.titleref = luci.dispatcher.build_url("admin", "network", "wireless")
126 ]]
127
128 st = s:taboption("general", DummyValue, "__status", translate("Status"))
129 st.template = "admin_network/wifi_status"
130 st.ifname   = arg[1]
131
132 en = s:taboption("general", Button, "__toggle")
133
134 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
135         en.title      = translate("Wireless network is disabled")
136         en.inputtitle = translate("Enable")
137         en.inputstyle = "apply"
138 else
139         en.title      = translate("Wireless network is enabled")
140         en.inputtitle = translate("Disable")
141         en.inputstyle = "reset"
142 end
143
144
145 local hwtype = wdev:get("type")
146
147 -- NanoFoo
148 local nsantenna = wdev:get("antenna")
149
150 -- Check whether there is a client interface on the same radio,
151 -- if yes, lock the channel choice as the station will dicatate the freq
152 local has_sta = nil
153 local _, net
154 for _, net in ipairs(wdev:get_wifinets()) do
155         if net:mode() == "sta" and net:id() ~= wnet:id() then
156                 has_sta = net
157                 break
158         end
159 end
160
161 if has_sta then
162         ch = s:taboption("general", DummyValue, "choice", translate("Channel"))
163         ch.value = translatef("Locked to channel %d used by %s",
164                 has_sta:channel(), has_sta:shortname())
165 else
166         ch = s:taboption("general", Value, "channel", translate("Channel"))
167         ch:value("auto", translate("auto"))
168         for _, f in ipairs(iw and iw.freqlist or { }) do
169                 if not f.restricted then
170                         ch:value(f.channel, "%i (%.3f GHz)" %{ f.channel, f.mhz / 1000 })
171                 end
172         end
173 end
174
175 ------------------- MAC80211 Device ------------------
176
177 if hwtype == "mac80211" then
178         if #tx_power_list > 1 then
179                 tp = s:taboption("general", ListValue,
180                         "txpower", translate("Transmit Power"), "dBm")
181                 tp.rmempty = true
182                 tp.default = tx_power_cur
183                 function tp.cfgvalue(...)
184                         return txpower_current(Value.cfgvalue(...), tx_power_list)
185                 end
186
187                 for _, p in ipairs(tx_power_list) do
188                         tp:value(p.driver_dbm, "%i dBm (%i mW)"
189                                 %{ p.display_dbm, p.display_mw })
190                 end
191         end
192
193         mode = s:taboption("advanced", ListValue, "hwmode", translate("Band"))
194
195         if hw_modes.ac then
196                 if hw_modes.ac then mode:value("11a", "5GHz (802.11n+ac)") end
197
198                 htmode = s:taboption("advanced", ListValue, "htmode", translate("VHT mode (802.11ac)"))
199                 htmode:value("", translate("disabled"))
200                 htmode:value("VHT20", "20MHz")
201                 htmode:value("VHT40", "40MHz")
202                 htmode:value("VHT80", "80MHz")
203
204         elseif hw_modes.n then
205                 if hw_modes.g then mode:value("11g", "2.4GHz (802.11g+n)") end
206                 if hw_modes.a then mode:value("11a", "5GHz (802.11a+n)") end
207
208                 htmode = s:taboption("advanced", ListValue, "htmode", translate("HT mode (802.11n)"))
209                 htmode:value("", translate("disabled"))
210                 htmode:value("HT20", "20MHz")
211                 htmode:value("HT40", "40MHz")
212
213                 function mode.cfgvalue(...)
214                         local v = Value.cfgvalue(...)
215                         if v == "11na" then
216                                 return "11a"
217                         elseif v == "11ng" then
218                                 return "11g"
219                         end
220                         return v
221                 end
222
223                 noscan = s:taboption("advanced", Flag, "noscan", translate("Force 40MHz mode"),
224                         translate("Always use 40MHz channels even if the secondary channel overlaps. Using this option does not comply with IEEE 802.11n-2009!"))
225                 noscan:depends("htmode", "HT40")
226                 noscan.default = noscan.disabled
227         else
228                 if hw_modes.g then mode:value("11g", "2.4GHz (802.11g)") end
229                 if hw_modes.a then mode:value("11a", "5GHz (802.11a)") end
230         end
231
232         local cl = iw and iw.countrylist
233         if cl and #cl > 0 then
234                 cc = s:taboption("advanced", ListValue, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
235                 cc.default = tostring(iw and iw.country or "00")
236                 for _, c in ipairs(cl) do
237                         cc:value(c.alpha2, "%s - %s" %{ c.alpha2, c.name })
238                 end
239         else
240                 s:taboption("advanced", Value, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
241         end
242
243         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
244                 translate("Distance to farthest network member in meters."))
245
246         -- external antenna profiles
247         local eal = iw and iw.extant
248         if eal and #eal > 0 then
249                 ea = s:taboption("advanced", ListValue, "extant", translate("Antenna Configuration"))
250                 for _, eap in ipairs(eal) do
251                         ea:value(eap.id, "%s (%s)" %{ eap.name, eap.description })
252                         if eap.selected then
253                                 ea.default = eap.id
254                         end
255                 end
256         end
257
258         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
259         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
260 end
261
262
263 ------------------- Madwifi Device ------------------
264
265 if hwtype == "atheros" then
266         tp = s:taboption("general",
267                 (#tx_power_list > 0) and ListValue or Value,
268                 "txpower", translate("Transmit Power"), "dBm")
269
270         tp.rmempty = true
271         tp.default = tx_power_cur
272
273         function tp.cfgvalue(...)
274                 return txpower_current(Value.cfgvalue(...), tx_power_list)
275         end
276
277         for _, p in ipairs(tx_power_list) do
278                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
279                         %{ p.display_dbm, p.display_mw })
280         end
281
282         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
283         mode:value("", translate("auto"))
284         if hw_modes.b then mode:value("11b", "802.11b") end
285         if hw_modes.g then mode:value("11g", "802.11g") end
286         if hw_modes.a then mode:value("11a", "802.11a") end
287         if hw_modes.g then mode:value("11bg", "802.11b+g") end
288         if hw_modes.g then mode:value("11gst", "802.11g + Turbo") end
289         if hw_modes.a then mode:value("11ast", "802.11a + Turbo") end
290         mode:value("fh", translate("Frequency Hopping"))
291
292         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
293
294         if not nsantenna then
295                 ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
296                 ant1.widget = "radio"
297                 ant1.orientation = "horizontal"
298                 ant1:depends("diversity", "")
299                 ant1:value("0", translate("auto"))
300                 ant1:value("1", translate("Antenna 1"))
301                 ant1:value("2", translate("Antenna 2"))
302
303                 ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
304                 ant2.widget = "radio"
305                 ant2.orientation = "horizontal"
306                 ant2:depends("diversity", "")
307                 ant2:value("0", translate("auto"))
308                 ant2:value("1", translate("Antenna 1"))
309                 ant2:value("2", translate("Antenna 2"))
310
311         else -- NanoFoo
312                 local ant = s:taboption("advanced", ListValue, "antenna", translate("Transmitter Antenna"))
313                 ant:value("auto")
314                 ant:value("vertical")
315                 ant:value("horizontal")
316                 ant:value("external")
317         end
318
319         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
320                 translate("Distance to farthest network member in meters."))
321         s:taboption("advanced", Value, "regdomain", translate("Regulatory Domain"))
322         s:taboption("advanced", Value, "country", translate("Country Code"))
323         s:taboption("advanced", Flag, "outdoor", translate("Outdoor Channels"))
324
325         --s:option(Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
326 end
327
328
329
330 ------------------- Broadcom Device ------------------
331
332 if hwtype == "broadcom" then
333         tp = s:taboption("general",
334                 (#tx_power_list > 0) and ListValue or Value,
335                 "txpower", translate("Transmit Power"), "dBm")
336
337         tp.rmempty = true
338         tp.default = tx_power_cur
339
340         function tp.cfgvalue(...)
341                 return txpower_current(Value.cfgvalue(...), tx_power_list)
342         end
343
344         for _, p in ipairs(tx_power_list) do
345                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
346                         %{ p.display_dbm, p.display_mw })
347         end
348
349         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
350         mode:value("11bg", "802.11b+g")
351         mode:value("11b", "802.11b")
352         mode:value("11g", "802.11g")
353         mode:value("11gst", "802.11g + Turbo")
354
355         ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
356         ant1.widget = "radio"
357         ant1:depends("diversity", "")
358         ant1:value("3", translate("auto"))
359         ant1:value("0", translate("Antenna 1"))
360         ant1:value("1", translate("Antenna 2"))
361
362         ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
363         ant2.widget = "radio"
364         ant2:depends("diversity", "")
365         ant2:value("3", translate("auto"))
366         ant2:value("0", translate("Antenna 1"))
367         ant2:value("1", translate("Antenna 2"))
368
369         s:taboption("advanced", Flag, "frameburst", translate("Frame Bursting"))
370
371         s:taboption("advanced", Value, "distance", translate("Distance Optimization"))
372         --s:option(Value, "slottime", translate("Slot time"))
373
374         s:taboption("advanced", Value, "country", translate("Country Code"))
375         s:taboption("advanced", Value, "maxassoc", translate("Connection Limit"))
376 end
377
378
379 --------------------- HostAP Device ---------------------
380
381 if hwtype == "prism2" then
382         s:taboption("advanced", Value, "txpower", translate("Transmit Power"), "att units").rmempty = true
383
384         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
385
386         s:taboption("advanced", Value, "txantenna", translate("Transmitter Antenna"))
387         s:taboption("advanced", Value, "rxantenna", translate("Receiver Antenna"))
388 end
389
390
391 ----------------------- Interface -----------------------
392
393 s = m:section(NamedSection, wnet.sid, "wifi-iface", translate("Interface Configuration"))
394 ifsection = s
395 s.addremove = false
396 s.anonymous = true
397 s.defaults.device = wdev:name()
398
399 s:tab("general", translate("General Setup"))
400 s:tab("encryption", translate("Wireless Security"))
401 s:tab("macfilter", translate("MAC-Filter"))
402 s:tab("advanced", translate("Advanced Settings"))
403
404 s:taboption("general", Value, "ssid", translate("<abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
405
406 mode = s:taboption("general", ListValue, "mode", translate("Mode"))
407 mode.override_values = true
408 mode:value("ap", translate("Access Point"))
409 mode:value("sta", translate("Client"))
410 mode:value("adhoc", translate("Ad-Hoc"))
411
412 bssid = s:taboption("general", Value, "bssid", translate("<abbr title=\"Basic Service Set Identifier\">BSSID</abbr>"))
413
414 network = s:taboption("general", Value, "network", translate("Network"),
415         translate("Choose the network(s) you want to attach to this wireless interface or " ..
416                 "fill out the <em>create</em> field to define a new network."))
417
418 network.rmempty = true
419 network.template = "cbi/network_netlist"
420 network.widget = "checkbox"
421 network.novirtual = true
422
423 function network.write(self, section, value)
424         local i = nw:get_interface(section)
425         if i then
426                 if value == '-' then
427                         value = m:formvalue(self:cbid(section) .. ".newnet")
428                         if value and #value > 0 then
429                                 local n = nw:add_network(value, {proto="none"})
430                                 if n then n:add_interface(i) end
431                         else
432                                 local n = i:get_network()
433                                 if n then n:del_interface(i) end
434                         end
435                 else
436                         local v
437                         for _, v in ipairs(i:get_networks()) do
438                                 v:del_interface(i)
439                         end
440                         for v in ut.imatch(value) do
441                                 local n = nw:get_network(v)
442                                 if n then
443                                         if not n:is_empty() then
444                                                 n:set("type", "bridge")
445                                         end
446                                         n:add_interface(i)
447                                 end
448                         end
449                 end
450         end
451 end
452
453 -------------------- MAC80211 Interface ----------------------
454
455 if hwtype == "mac80211" then
456         if fs.access("/usr/sbin/iw") then
457                 mode:value("mesh", "802.11s")
458         end
459
460         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
461         mode:value("monitor", translate("Monitor"))
462         bssid:depends({mode="adhoc"})
463         bssid:depends({mode="sta"})
464         bssid:depends({mode="sta-wds"})
465
466         mp = s:taboption("macfilter", ListValue, "macfilter", translate("MAC-Address Filter"))
467         mp:depends({mode="ap"})
468         mp:depends({mode="ap-wds"})
469         mp:value("", translate("disable"))
470         mp:value("allow", translate("Allow listed only"))
471         mp:value("deny", translate("Allow all except listed"))
472
473         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
474         ml.datatype = "macaddr"
475         ml:depends({macfilter="allow"})
476         ml:depends({macfilter="deny"})
477         nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
478
479         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
480         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
481
482         function mode.write(self, section, value)
483                 if value == "ap-wds" then
484                         ListValue.write(self, section, "ap")
485                         m.uci:set("wireless", section, "wds", 1)
486                 elseif value == "sta-wds" then
487                         ListValue.write(self, section, "sta")
488                         m.uci:set("wireless", section, "wds", 1)
489                 else
490                         ListValue.write(self, section, value)
491                         m.uci:delete("wireless", section, "wds")
492                 end
493         end
494
495         function mode.cfgvalue(self, section)
496                 local mode = ListValue.cfgvalue(self, section)
497                 local wds  = m.uci:get("wireless", section, "wds") == "1"
498
499                 if mode == "ap" and wds then
500                         return "ap-wds"
501                 elseif mode == "sta" and wds then
502                         return "sta-wds"
503                 else
504                         return mode
505                 end
506         end
507
508         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
509         hidden:depends({mode="ap"})
510         hidden:depends({mode="ap-wds"})
511
512         wmm = s:taboption("general", Flag, "wmm", translate("WMM Mode"))
513         wmm:depends({mode="ap"})
514         wmm:depends({mode="ap-wds"})
515         wmm.default = wmm.enabled
516 end
517
518
519
520 -------------------- Madwifi Interface ----------------------
521
522 if hwtype == "atheros" then
523         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
524         mode:value("monitor", translate("Monitor"))
525         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
526         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
527         mode:value("wds", translate("Static WDS"))
528
529         function mode.write(self, section, value)
530                 if value == "ap-wds" then
531                         ListValue.write(self, section, "ap")
532                         m.uci:set("wireless", section, "wds", 1)
533                 elseif value == "sta-wds" then
534                         ListValue.write(self, section, "sta")
535                         m.uci:set("wireless", section, "wds", 1)
536                 else
537                         ListValue.write(self, section, value)
538                         m.uci:delete("wireless", section, "wds")
539                 end
540         end
541
542         function mode.cfgvalue(self, section)
543                 local mode = ListValue.cfgvalue(self, section)
544                 local wds  = m.uci:get("wireless", section, "wds") == "1"
545
546                 if mode == "ap" and wds then
547                         return "ap-wds"
548                 elseif mode == "sta" and wds then
549                         return "sta-wds"
550                 else
551                         return mode
552                 end
553         end
554
555         bssid:depends({mode="adhoc"})
556         bssid:depends({mode="ahdemo"})
557         bssid:depends({mode="wds"})
558
559         wdssep = s:taboption("advanced", Flag, "wdssep", translate("Separate WDS"))
560         wdssep:depends({mode="ap-wds"})
561
562         s:taboption("advanced", Flag, "doth", "802.11h")
563         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
564         hidden:depends({mode="ap"})
565         hidden:depends({mode="adhoc"})
566         hidden:depends({mode="ap-wds"})
567         hidden:depends({mode="sta-wds"})
568         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
569          translate("Prevents client-to-client communication"))
570         isolate:depends({mode="ap"})
571         s:taboption("advanced", Flag, "bgscan", translate("Background Scan"))
572
573         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
574         mp:value("", translate("disable"))
575         mp:value("allow", translate("Allow listed only"))
576         mp:value("deny", translate("Allow all except listed"))
577
578         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
579         ml.datatype = "macaddr"
580         ml:depends({macpolicy="allow"})
581         ml:depends({macpolicy="deny"})
582         nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
583
584         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
585         s:taboption("advanced", Value, "mcast_rate", translate("Multicast Rate"))
586         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
587         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
588         s:taboption("advanced", Value, "minrate", translate("Minimum Rate"))
589         s:taboption("advanced", Value, "maxrate", translate("Maximum Rate"))
590         s:taboption("advanced", Flag, "compression", translate("Compression"))
591
592         s:taboption("advanced", Flag, "bursting", translate("Frame Bursting"))
593         s:taboption("advanced", Flag, "turbo", translate("Turbo Mode"))
594         s:taboption("advanced", Flag, "ff", translate("Fast Frames"))
595
596         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
597         s:taboption("advanced", Flag, "xr", translate("XR Support"))
598         s:taboption("advanced", Flag, "ar", translate("AR Support"))
599
600         local swm = s:taboption("advanced", Flag, "sw_merge", translate("Disable HW-Beacon timer"))
601         swm:depends({mode="adhoc"})
602
603         local nos = s:taboption("advanced", Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
604         nos:depends({mode="sta"})
605         nos:depends({mode="sta-wds"})
606
607         local probereq = s:taboption("advanced", Flag, "probereq", translate("Do not send probe responses"))
608         probereq.enabled  = "0"
609         probereq.disabled = "1"
610 end
611
612
613 -------------------- Broadcom Interface ----------------------
614
615 if hwtype == "broadcom" then
616         mode:value("wds", translate("WDS"))
617         mode:value("monitor", translate("Monitor"))
618
619         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
620         hidden:depends({mode="ap"})
621         hidden:depends({mode="adhoc"})
622         hidden:depends({mode="wds"})
623
624         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
625          translate("Prevents client-to-client communication"))
626         isolate:depends({mode="ap"})
627
628         s:taboption("advanced", Flag, "doth", "802.11h")
629         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
630
631         bssid:depends({mode="wds"})
632         bssid:depends({mode="adhoc"})
633 end
634
635
636 ----------------------- HostAP Interface ---------------------
637
638 if hwtype == "prism2" then
639         mode:value("wds", translate("WDS"))
640         mode:value("monitor", translate("Monitor"))
641
642         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
643         hidden:depends({mode="ap"})
644         hidden:depends({mode="adhoc"})
645         hidden:depends({mode="wds"})
646
647         bssid:depends({mode="sta"})
648
649         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
650         mp:value("", translate("disable"))
651         mp:value("allow", translate("Allow listed only"))
652         mp:value("deny", translate("Allow all except listed"))
653         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
654         ml:depends({macpolicy="allow"})
655         ml:depends({macpolicy="deny"})
656         nt.mac_hints(function(mac, name) ml:value(mac, "%s (%s)" %{ mac, name }) end)
657
658         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
659         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
660         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
661 end
662
663
664 ------------------- WiFI-Encryption -------------------
665
666 encr = s:taboption("encryption", ListValue, "encryption", translate("Encryption"))
667 encr.override_values = true
668 encr.override_depends = true
669 encr:depends({mode="ap"})
670 encr:depends({mode="sta"})
671 encr:depends({mode="adhoc"})
672 encr:depends({mode="ahdemo"})
673 encr:depends({mode="ap-wds"})
674 encr:depends({mode="sta-wds"})
675 encr:depends({mode="mesh"})
676
677 cipher = s:taboption("encryption", ListValue, "cipher", translate("Cipher"))
678 cipher:depends({encryption="wpa"})
679 cipher:depends({encryption="wpa2"})
680 cipher:depends({encryption="psk"})
681 cipher:depends({encryption="psk2"})
682 cipher:depends({encryption="wpa-mixed"})
683 cipher:depends({encryption="psk-mixed"})
684 cipher:value("auto", translate("auto"))
685 cipher:value("ccmp", translate("Force CCMP (AES)"))
686 cipher:value("tkip", translate("Force TKIP"))
687 cipher:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
688
689 function encr.cfgvalue(self, section)
690         local v = tostring(ListValue.cfgvalue(self, section))
691         if v == "wep" then
692                 return "wep-open"
693         elseif v and v:match("%+") then
694                 return (v:gsub("%+.+$", ""))
695         end
696         return v
697 end
698
699 function encr.write(self, section, value)
700         local e = tostring(encr:formvalue(section))
701         local c = tostring(cipher:formvalue(section))
702         if value == "wpa" or value == "wpa2"  then
703                 self.map.uci:delete("wireless", section, "key")
704         end
705         if e and (c == "tkip" or c == "ccmp" or c == "tkip+ccmp") then
706                 e = e .. "+" .. c
707         end
708         self.map:set(section, "encryption", e)
709 end
710
711 function cipher.cfgvalue(self, section)
712         local v = tostring(ListValue.cfgvalue(encr, section))
713         if v and v:match("%+") then
714                 v = v:gsub("^[^%+]+%+", "")
715                 if v == "aes" then v = "ccmp"
716                 elseif v == "tkip+aes" then v = "tkip+ccmp"
717                 elseif v == "aes+tkip" then v = "tkip+ccmp"
718                 elseif v == "ccmp+tkip" then v = "tkip+ccmp"
719                 end
720         end
721         return v
722 end
723
724 function cipher.write(self, section)
725         return encr:write(section)
726 end
727
728
729 encr:value("none", "No Encryption")
730 encr:value("wep-open",   translate("WEP Open System"), {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
731 encr:value("wep-shared", translate("WEP Shared Key"),  {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
732
733 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
734         local supplicant = fs.access("/usr/sbin/wpa_supplicant")
735         local hostapd = fs.access("/usr/sbin/hostapd")
736
737         -- Probe EAP support
738         local has_ap_eap  = (os.execute("hostapd -veap >/dev/null 2>/dev/null") == 0)
739         local has_sta_eap = (os.execute("wpa_supplicant -veap >/dev/null 2>/dev/null") == 0)
740
741         if hostapd and supplicant then
742                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
743                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
744                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
745                 if has_ap_eap and has_sta_eap then
746                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
747                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
748                 end
749         elseif hostapd and not supplicant then
750                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="ap-wds"})
751                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="ap-wds"})
752                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="ap-wds"})
753                 if has_ap_eap then
754                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="ap-wds"})
755                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="ap-wds"})
756                 end
757                 encr.description = translate(
758                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
759                         "and ad-hoc mode) to be installed."
760                 )
761         elseif not hostapd and supplicant then
762                 encr:value("psk", "WPA-PSK", {mode="sta"}, {mode="sta-wds"})
763                 encr:value("psk2", "WPA2-PSK", {mode="sta"}, {mode="sta-wds"})
764                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="sta"}, {mode="sta-wds"})
765                 if has_sta_eap then
766                         encr:value("wpa", "WPA-EAP", {mode="sta"}, {mode="sta-wds"})
767                         encr:value("wpa2", "WPA2-EAP", {mode="sta"}, {mode="sta-wds"})
768                 end
769                 encr.description = translate(
770                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
771                         "and ad-hoc mode) to be installed."
772                 )
773         else
774                 encr.description = translate(
775                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
776                         "and ad-hoc mode) to be installed."
777                 )
778         end
779 elseif hwtype == "broadcom" then
780         encr:value("psk", "WPA-PSK")
781         encr:value("psk2", "WPA2-PSK")
782         encr:value("psk+psk2", "WPA-PSK/WPA2-PSK Mixed Mode")
783 end
784
785 auth_server = s:taboption("encryption", Value, "auth_server", translate("Radius-Authentication-Server"))
786 auth_server:depends({mode="ap", encryption="wpa"})
787 auth_server:depends({mode="ap", encryption="wpa2"})
788 auth_server:depends({mode="ap-wds", encryption="wpa"})
789 auth_server:depends({mode="ap-wds", encryption="wpa2"})
790 auth_server.rmempty = true
791 auth_server.datatype = "host"
792
793 auth_port = s:taboption("encryption", Value, "auth_port", translate("Radius-Authentication-Port"), translatef("Default %d", 1812))
794 auth_port:depends({mode="ap", encryption="wpa"})
795 auth_port:depends({mode="ap", encryption="wpa2"})
796 auth_port:depends({mode="ap-wds", encryption="wpa"})
797 auth_port:depends({mode="ap-wds", encryption="wpa2"})
798 auth_port.rmempty = true
799 auth_port.datatype = "port"
800
801 auth_secret = s:taboption("encryption", Value, "auth_secret", translate("Radius-Authentication-Secret"))
802 auth_secret:depends({mode="ap", encryption="wpa"})
803 auth_secret:depends({mode="ap", encryption="wpa2"})
804 auth_secret:depends({mode="ap-wds", encryption="wpa"})
805 auth_secret:depends({mode="ap-wds", encryption="wpa2"})
806 auth_secret.rmempty = true
807 auth_secret.password = true
808
809 acct_server = s:taboption("encryption", Value, "acct_server", translate("Radius-Accounting-Server"))
810 acct_server:depends({mode="ap", encryption="wpa"})
811 acct_server:depends({mode="ap", encryption="wpa2"})
812 acct_server:depends({mode="ap-wds", encryption="wpa"})
813 acct_server:depends({mode="ap-wds", encryption="wpa2"})
814 acct_server.rmempty = true
815 acct_server.datatype = "host"
816
817 acct_port = s:taboption("encryption", Value, "acct_port", translate("Radius-Accounting-Port"), translatef("Default %d", 1813))
818 acct_port:depends({mode="ap", encryption="wpa"})
819 acct_port:depends({mode="ap", encryption="wpa2"})
820 acct_port:depends({mode="ap-wds", encryption="wpa"})
821 acct_port:depends({mode="ap-wds", encryption="wpa2"})
822 acct_port.rmempty = true
823 acct_port.datatype = "port"
824
825 acct_secret = s:taboption("encryption", Value, "acct_secret", translate("Radius-Accounting-Secret"))
826 acct_secret:depends({mode="ap", encryption="wpa"})
827 acct_secret:depends({mode="ap", encryption="wpa2"})
828 acct_secret:depends({mode="ap-wds", encryption="wpa"})
829 acct_secret:depends({mode="ap-wds", encryption="wpa2"})
830 acct_secret.rmempty = true
831 acct_secret.password = true
832
833 wpakey = s:taboption("encryption", Value, "_wpa_key", translate("Key"))
834 wpakey:depends("encryption", "psk")
835 wpakey:depends("encryption", "psk2")
836 wpakey:depends("encryption", "psk+psk2")
837 wpakey:depends("encryption", "psk-mixed")
838 wpakey.datatype = "wpakey"
839 wpakey.rmempty = true
840 wpakey.password = true
841
842 wpakey.cfgvalue = function(self, section, value)
843         local key = m.uci:get("wireless", section, "key")
844         if key == "1" or key == "2" or key == "3" or key == "4" then
845                 return nil
846         end
847         return key
848 end
849
850 wpakey.write = function(self, section, value)
851         self.map.uci:set("wireless", section, "key", value)
852         self.map.uci:delete("wireless", section, "key1")
853 end
854
855
856 wepslot = s:taboption("encryption", ListValue, "_wep_key", translate("Used Key Slot"))
857 wepslot:depends("encryption", "wep-open")
858 wepslot:depends("encryption", "wep-shared")
859 wepslot:value("1", translatef("Key #%d", 1))
860 wepslot:value("2", translatef("Key #%d", 2))
861 wepslot:value("3", translatef("Key #%d", 3))
862 wepslot:value("4", translatef("Key #%d", 4))
863
864 wepslot.cfgvalue = function(self, section)
865         local slot = tonumber(m.uci:get("wireless", section, "key"))
866         if not slot or slot < 1 or slot > 4 then
867                 return 1
868         end
869         return slot
870 end
871
872 wepslot.write = function(self, section, value)
873         self.map.uci:set("wireless", section, "key", value)
874 end
875
876 local slot
877 for slot=1,4 do
878         wepkey = s:taboption("encryption", Value, "key" .. slot, translatef("Key #%d", slot))
879         wepkey:depends("encryption", "wep-open")
880         wepkey:depends("encryption", "wep-shared")
881         wepkey.datatype = "wepkey"
882         wepkey.rmempty = true
883         wepkey.password = true
884
885         function wepkey.write(self, section, value)
886                 if value and (#value == 5 or #value == 13) then
887                         value = "s:" .. value
888                 end
889                 return Value.write(self, section, value)
890         end
891 end
892
893
894 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
895         nasid = s:taboption("encryption", Value, "nasid", translate("NAS ID"))
896         nasid:depends({mode="ap", encryption="wpa"})
897         nasid:depends({mode="ap", encryption="wpa2"})
898         nasid:depends({mode="ap-wds", encryption="wpa"})
899         nasid:depends({mode="ap-wds", encryption="wpa2"})
900         nasid.rmempty = true
901
902         eaptype = s:taboption("encryption", ListValue, "eap_type", translate("EAP-Method"))
903         eaptype:value("tls",  "TLS")
904         eaptype:value("ttls", "TTLS")
905         eaptype:value("peap", "PEAP")
906         eaptype:depends({mode="sta", encryption="wpa"})
907         eaptype:depends({mode="sta", encryption="wpa2"})
908         eaptype:depends({mode="sta-wds", encryption="wpa"})
909         eaptype:depends({mode="sta-wds", encryption="wpa2"})
910
911         cacert = s:taboption("encryption", FileUpload, "ca_cert", translate("Path to CA-Certificate"))
912         cacert:depends({mode="sta", encryption="wpa"})
913         cacert:depends({mode="sta", encryption="wpa2"})
914         cacert:depends({mode="sta-wds", encryption="wpa"})
915         cacert:depends({mode="sta-wds", encryption="wpa2"})
916
917         clientcert = s:taboption("encryption", FileUpload, "client_cert", translate("Path to Client-Certificate"))
918         clientcert:depends({mode="sta", encryption="wpa"})
919         clientcert:depends({mode="sta", encryption="wpa2"})
920         clientcert:depends({mode="sta-wds", encryption="wpa"})
921         clientcert:depends({mode="sta-wds", encryption="wpa2"})
922
923         privkey = s:taboption("encryption", FileUpload, "priv_key", translate("Path to Private Key"))
924         privkey:depends({mode="sta", eap_type="tls", encryption="wpa2"})
925         privkey:depends({mode="sta", eap_type="tls", encryption="wpa"})
926         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
927         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
928
929         privkeypwd = s:taboption("encryption", Value, "priv_key_pwd", translate("Password of Private Key"))
930         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa2"})
931         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa"})
932         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
933         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
934
935
936         auth = s:taboption("encryption", Value, "auth", translate("Authentication"))
937         auth:value("PAP")
938         auth:value("CHAP")
939         auth:value("MSCHAP")
940         auth:value("MSCHAPV2")
941         auth:depends({mode="sta", eap_type="peap", encryption="wpa2"})
942         auth:depends({mode="sta", eap_type="peap", encryption="wpa"})
943         auth:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
944         auth:depends({mode="sta", eap_type="ttls", encryption="wpa"})
945         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
946         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
947         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
948         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
949
950
951         identity = s:taboption("encryption", Value, "identity", translate("Identity"))
952         identity:depends({mode="sta", eap_type="peap", encryption="wpa2"})
953         identity:depends({mode="sta", eap_type="peap", encryption="wpa"})
954         identity:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
955         identity:depends({mode="sta", eap_type="ttls", encryption="wpa"})
956         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
957         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
958         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
959         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
960
961         password = s:taboption("encryption", Value, "password", translate("Password"))
962         password:depends({mode="sta", eap_type="peap", encryption="wpa2"})
963         password:depends({mode="sta", eap_type="peap", encryption="wpa"})
964         password:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
965         password:depends({mode="sta", eap_type="ttls", encryption="wpa"})
966         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
967         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
968         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
969         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
970 end
971
972 return m