modules/admin-full: expose wmm option for mac80211 interfaces
[project/luci.git] / modules / admin-full / luasrc / model / cbi / admin_network / wifi.lua
1 --[[
2 LuCI - Lua Configuration Interface
3
4 Copyright 2008 Steven Barth <steven@midlink.org>
5
6 Licensed under the Apache License, Version 2.0 (the "License");
7 you may not use this file except in compliance with the License.
8 You may obtain a copy of the License at
9
10         http://www.apache.org/licenses/LICENSE-2.0
11
12 $Id$
13 ]]--
14
15 local wa = require "luci.tools.webadmin"
16 local nw = require "luci.model.network"
17 local ut = require "luci.util"
18 local fs = require "nixio.fs"
19
20 arg[1] = arg[1] or ""
21
22 m = Map("wireless", "",
23         translate("The <em>Device Configuration</em> section covers physical settings of the radio " ..
24                 "hardware such as channel, transmit power or antenna selection which is shared among all " ..
25                 "defined wireless networks (if the radio hardware is multi-SSID capable). Per network settings " ..
26                 "like encryption or operation mode are grouped in the <em>Interface Configuration</em>."))
27
28 m:chain("network")
29 m:chain("firewall")
30
31 local ifsection
32
33 function m.on_commit(map)
34         local wnet = nw:get_wifinet(arg[1])
35         if ifsection and wnet then
36                 ifsection.section = wnet.sid
37                 m.title = luci.util.pcdata(wnet:get_i18n())
38         end
39 end
40
41 nw.init(m.uci)
42
43 local wnet = nw:get_wifinet(arg[1])
44 local wdev = wnet and wnet:get_device()
45
46 -- redirect to overview page if network does not exist anymore (e.g. after a revert)
47 if not wnet or not wdev then
48         luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless"))
49         return
50 end
51
52 -- wireless toggle was requested, commit and reload page
53 function m.parse(map)
54         if m:formvalue("cbid.wireless.%s.__toggle" % wdev:name()) then
55                 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
56                         wnet:set("disabled", nil)
57                 else
58                         wnet:set("disabled", "1")
59                 end
60                 wdev:set("disabled", nil)
61
62                 nw:commit("wireless")
63                 luci.sys.call("(env -i /sbin/wifi down; env -i /sbin/wifi up) >/dev/null 2>/dev/null")
64
65                 luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless", arg[1]))
66                 return
67         end
68         Map.parse(map)
69 end
70
71 m.title = luci.util.pcdata(wnet:get_i18n())
72
73
74 local function txpower_list(iw)
75         local list = iw.txpwrlist or { }
76         local off  = tonumber(iw.txpower_offset) or 0
77         local new  = { }
78         local prev = -1
79         local _, val
80         for _, val in ipairs(list) do
81                 local dbm = val.dbm + off
82                 local mw  = math.floor(10 ^ (dbm / 10))
83                 if mw ~= prev then
84                         prev = mw
85                         new[#new+1] = {
86                                 display_dbm = dbm,
87                                 display_mw  = mw,
88                                 driver_dbm  = val.dbm,
89                                 driver_mw   = val.mw
90                         }
91                 end
92         end
93         return new
94 end
95
96 local function txpower_current(pwr, list)
97         pwr = tonumber(pwr)
98         if pwr ~= nil then
99                 local _, item
100                 for _, item in ipairs(list) do
101                         if item.driver_dbm >= pwr then
102                                 return item.driver_dbm
103                         end
104                 end
105         end
106         return (list[#list] and list[#list].driver_dbm) or pwr or 0
107 end
108
109 local function arplist(opt)
110         local _, e, mac, ip, name
111         local arp = { }
112
113         for _, e in ipairs(luci.sys.net.arptable()) do
114                 arp[e["HW address"]:upper()] = { e["IP address"] }
115         end
116
117         if fs.access("/etc/ethers") then
118                 for e in io.lines("/etc/ethers") do
119                         mac, ip = e:match("^([a-f0-9]%S+) (%S+)")
120                         if mac and ip then arp[mac:upper()] = { ip } end
121                 end
122         end
123
124         if fs.access("/var/dhcp.leases") then
125                 for e in io.lines("/var/dhcp.leases") do
126                         mac, ip, name = e:match("^%d+ (%S+) (%S+) (%S+)")
127                         if mac and ip then arp[mac:upper()] = { ip, name ~= "*" and name } end
128                 end
129         end
130
131         for mac, e in luci.util.kspairs(arp) do
132                 opt:value(mac, "%s (%s)" %{ mac, e[2] or e[1] })
133         end
134 end
135
136 local iw = luci.sys.wifi.getiwinfo(arg[1])
137 local hw_modes      = iw.hwmodelist or { }
138 local tx_power_list = txpower_list(iw)
139 local tx_power_cur  = txpower_current(wdev:get("txpower"), tx_power_list)
140
141 s = m:section(NamedSection, wdev:name(), "wifi-device", translate("Device Configuration"))
142 s.addremove = false
143
144 s:tab("general", translate("General Setup"))
145 s:tab("macfilter", translate("MAC-Filter"))
146 s:tab("advanced", translate("Advanced Settings"))
147
148 --[[
149 back = s:option(DummyValue, "_overview", translate("Overview"))
150 back.value = ""
151 back.titleref = luci.dispatcher.build_url("admin", "network", "wireless")
152 ]]
153
154 st = s:taboption("general", DummyValue, "__status", translate("Status"))
155 st.template = "admin_network/wifi_status"
156 st.ifname   = arg[1]
157
158 en = s:taboption("general", Button, "__toggle")
159
160 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
161         en.title      = translate("Wireless network is disabled")
162         en.inputtitle = translate("Enable")
163         en.inputstyle = "apply"
164 else
165         en.title      = translate("Wireless network is enabled")
166         en.inputtitle = translate("Disable")
167         en.inputstyle = "reset"
168 end
169
170
171 local hwtype = wdev:get("type")
172 local htcaps = wdev:get("ht_capab") and true or false
173
174 -- NanoFoo
175 local nsantenna = wdev:get("antenna")
176
177 -- Check whether there is a client interface on the same radio,
178 -- if yes, lock the channel choice as the station will dicatate the freq
179 local has_sta = nil
180 local _, net
181 for _, net in ipairs(wdev:get_wifinets()) do
182         if net:mode() == "sta" and net:id() ~= wnet:id() then
183                 has_sta = net
184                 break
185         end
186 end
187
188 if has_sta then
189         ch = s:taboption("general", DummyValue, "choice", translate("Channel"))
190         ch.value = translatef("Locked to channel %d used by %s",
191                 has_sta:channel(), has_sta:shortname())
192 else
193         ch = s:taboption("general", Value, "channel", translate("Channel"))
194         ch:value("auto", translate("auto"))
195         for _, f in ipairs(iw and iw.freqlist or luci.sys.wifi.channels()) do
196                 if not f.restricted then
197                         ch:value(f.channel, "%i (%.3f GHz)" %{ f.channel, f.mhz / 1000 })
198                 end
199         end
200 end
201
202 ------------------- MAC80211 Device ------------------
203
204 if hwtype == "mac80211" then
205         if #tx_power_list > 1 then
206                 tp = s:taboption("general", ListValue,
207                         "txpower", translate("Transmit Power"), "dBm")
208                 tp.rmempty = true
209                 tp.default = tx_power_cur
210                 function tp.cfgvalue(...)
211                         return txpower_current(Value.cfgvalue(...), tx_power_list)
212                 end
213
214                 for _, p in ipairs(tx_power_list) do
215                         tp:value(p.driver_dbm, "%i dBm (%i mW)"
216                                 %{ p.display_dbm, p.display_mw })
217                 end
218         end
219
220         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
221         mode:value("", translate("auto"))
222         if hw_modes.b then mode:value("11b", "802.11b") end
223         if hw_modes.g then mode:value("11g", "802.11g") end
224         if hw_modes.a then mode:value("11a", "802.11a") end
225
226         if htcaps then
227                 if hw_modes.g and hw_modes.n then mode:value("11ng", "802.11g+n") end
228                 if hw_modes.a and hw_modes.n then mode:value("11na", "802.11a+n") end
229
230                 htmode = s:taboption("advanced", ListValue, "htmode", translate("HT mode"))
231                 htmode:depends("hwmode", "11na")
232                 htmode:depends("hwmode", "11ng")
233                 htmode:value("HT20", "20MHz")
234                 htmode:value("HT40-", translate("40MHz 2nd channel below"))
235                 htmode:value("HT40+", translate("40MHz 2nd channel above"))
236
237                 --htcapab = s:taboption("advanced", DynamicList, "ht_capab", translate("HT capabilities"))
238                 --htcapab:depends("hwmode", "11na")
239                 --htcapab:depends("hwmode", "11ng")
240         end
241
242         local cl = iw and iw.countrylist
243         if cl and #cl > 0 then
244                 cc = s:taboption("advanced", ListValue, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
245                 cc.default = tostring(iw and iw.country or "00")
246                 for _, c in ipairs(cl) do
247                         cc:value(c.alpha2, "%s - %s" %{ c.alpha2, c.name })
248                 end
249         else
250                 s:taboption("advanced", Value, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
251         end
252
253         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
254                 translate("Distance to farthest network member in meters."))
255
256         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
257         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
258 end
259
260
261 ------------------- Madwifi Device ------------------
262
263 if hwtype == "atheros" then
264         tp = s:taboption("general",
265                 (#tx_power_list > 0) and ListValue or Value,
266                 "txpower", translate("Transmit Power"), "dBm")
267
268         tp.rmempty = true
269         tp.default = tx_power_cur
270
271         function tp.cfgvalue(...)
272                 return txpower_current(Value.cfgvalue(...), tx_power_list)
273         end
274
275         for _, p in ipairs(tx_power_list) do
276                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
277                         %{ p.display_dbm, p.display_mw })
278         end
279
280         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
281         mode:value("", translate("auto"))
282         if hw_modes.b then mode:value("11b", "802.11b") end
283         if hw_modes.g then mode:value("11g", "802.11g") end
284         if hw_modes.a then mode:value("11a", "802.11a") end
285         if hw_modes.g then mode:value("11bg", "802.11b+g") end
286         if hw_modes.g then mode:value("11gst", "802.11g + Turbo") end
287         if hw_modes.a then mode:value("11ast", "802.11a + Turbo") end
288         mode:value("fh", translate("Frequency Hopping"))
289
290         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
291
292         if not nsantenna then
293                 ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
294                 ant1.widget = "radio"
295                 ant1.orientation = "horizontal"
296                 ant1:depends("diversity", "")
297                 ant1:value("0", translate("auto"))
298                 ant1:value("1", translate("Antenna 1"))
299                 ant1:value("2", translate("Antenna 2"))
300
301                 ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
302                 ant2.widget = "radio"
303                 ant2.orientation = "horizontal"
304                 ant2:depends("diversity", "")
305                 ant2:value("0", translate("auto"))
306                 ant2:value("1", translate("Antenna 1"))
307                 ant2:value("2", translate("Antenna 2"))
308
309         else -- NanoFoo
310                 local ant = s:taboption("advanced", ListValue, "antenna", translate("Transmitter Antenna"))
311                 ant:value("auto")
312                 ant:value("vertical")
313                 ant:value("horizontal")
314                 ant:value("external")
315         end
316
317         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
318                 translate("Distance to farthest network member in meters."))
319         s:taboption("advanced", Value, "regdomain", translate("Regulatory Domain"))
320         s:taboption("advanced", Value, "country", translate("Country Code"))
321         s:taboption("advanced", Flag, "outdoor", translate("Outdoor Channels"))
322
323         --s:option(Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
324 end
325
326
327
328 ------------------- Broadcom Device ------------------
329
330 if hwtype == "broadcom" then
331         tp = s:taboption("general",
332                 (#tx_power_list > 0) and ListValue or Value,
333                 "txpower", translate("Transmit Power"), "dBm")
334
335         tp.rmempty = true
336         tp.default = tx_power_cur
337
338         function tp.cfgvalue(...)
339                 return txpower_current(Value.cfgvalue(...), tx_power_list)
340         end
341
342         for _, p in ipairs(tx_power_list) do
343                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
344                         %{ p.display_dbm, p.display_mw })
345         end
346
347         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
348         mode:value("11bg", "802.11b+g")
349         mode:value("11b", "802.11b")
350         mode:value("11g", "802.11g")
351         mode:value("11gst", "802.11g + Turbo")
352
353         ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
354         ant1.widget = "radio"
355         ant1:depends("diversity", "")
356         ant1:value("3", translate("auto"))
357         ant1:value("0", translate("Antenna 1"))
358         ant1:value("1", translate("Antenna 2"))
359
360         ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
361         ant2.widget = "radio"
362         ant2:depends("diversity", "")
363         ant2:value("3", translate("auto"))
364         ant2:value("0", translate("Antenna 1"))
365         ant2:value("1", translate("Antenna 2"))
366
367         s:taboption("advanced", Flag, "frameburst", translate("Frame Bursting"))
368
369         s:taboption("advanced", Value, "distance", translate("Distance Optimization"))
370         --s:option(Value, "slottime", translate("Slot time"))
371
372         s:taboption("advanced", Value, "country", translate("Country Code"))
373         s:taboption("advanced", Value, "maxassoc", translate("Connection Limit"))
374 end
375
376
377 --------------------- HostAP Device ---------------------
378
379 if hwtype == "prism2" then
380         s:taboption("advanced", Value, "txpower", translate("Transmit Power"), "att units").rmempty = true
381
382         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
383
384         s:taboption("advanced", Value, "txantenna", translate("Transmitter Antenna"))
385         s:taboption("advanced", Value, "rxantenna", translate("Receiver Antenna"))
386 end
387
388
389 ----------------------- Interface -----------------------
390
391 s = m:section(NamedSection, wnet.sid, "wifi-iface", translate("Interface Configuration"))
392 ifsection = s
393 s.addremove = false
394 s.anonymous = true
395 s.defaults.device = wdev:name()
396
397 s:tab("general", translate("General Setup"))
398 s:tab("encryption", translate("Wireless Security"))
399 s:tab("macfilter", translate("MAC-Filter"))
400 s:tab("advanced", translate("Advanced Settings"))
401
402 s:taboption("general", Value, "ssid", translate("<abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
403
404 mode = s:taboption("general", ListValue, "mode", translate("Mode"))
405 mode.override_values = true
406 mode:value("ap", translate("Access Point"))
407 mode:value("sta", translate("Client"))
408 mode:value("adhoc", translate("Ad-Hoc"))
409
410 bssid = s:taboption("general", Value, "bssid", translate("<abbr title=\"Basic Service Set Identifier\">BSSID</abbr>"))
411
412 network = s:taboption("general", Value, "network", translate("Network"),
413         translate("Choose the network you want to attach to this wireless interface. " ..
414                 "Select <em>unspecified</em> to not attach any network or fill out the " ..
415                 "<em>create</em> field to define a new network."))
416
417 network.rmempty = true
418 network.template = "cbi/network_netlist"
419 network.widget = "checkbox"
420 network.novirtual = true
421
422 function network.write(self, section, value)
423         local i = nw:get_interface(section)
424         if i then
425                 if value == '-' then
426                         value = m:formvalue(self:cbid(section) .. ".newnet")
427                         if value and #value > 0 then
428                                 local n = nw:add_network(value, {proto="none"})
429                                 if n then n:add_interface(i) end
430                         else
431                                 local n = i:get_network()
432                                 if n then n:del_interface(i) end
433                         end
434                 else
435                         local v
436                         for _, v in ipairs(i:get_networks()) do
437                                 v:del_interface(i)
438                         end
439                         for v in ut.imatch(value) do
440                                 local n = nw:get_network(v)
441                                 if n then
442                                         if not n:is_empty() then
443                                                 n:set("type", "bridge")
444                                         end
445                                         n:add_interface(i)
446                                 end
447                         end
448                 end
449         end
450 end
451
452 -------------------- MAC80211 Interface ----------------------
453
454 if hwtype == "mac80211" then
455         if fs.access("/usr/sbin/iw") then
456                 mode:value("mesh", "802.11s")
457         end
458
459         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
460         mode:value("monitor", translate("Monitor"))
461         bssid:depends({mode="adhoc"})
462         bssid:depends({mode="sta"})
463         bssid:depends({mode="sta-wds"})
464
465         mp = s:taboption("macfilter", ListValue, "macfilter", translate("MAC-Address Filter"))
466         mp:depends({mode="ap"})
467         mp:depends({mode="ap-wds"})
468         mp:value("", translate("disable"))
469         mp:value("allow", translate("Allow listed only"))
470         mp:value("deny", translate("Allow all except listed"))
471
472         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
473         ml.datatype = "macaddr"
474         ml:depends({macfilter="allow"})
475         ml:depends({macfilter="deny"})
476         arplist(ml)
477
478         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
479         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
480
481         function mode.write(self, section, value)
482                 if value == "ap-wds" then
483                         ListValue.write(self, section, "ap")
484                         m.uci:set("wireless", section, "wds", 1)
485                 elseif value == "sta-wds" then
486                         ListValue.write(self, section, "sta")
487                         m.uci:set("wireless", section, "wds", 1)
488                 else
489                         ListValue.write(self, section, value)
490                         m.uci:delete("wireless", section, "wds")
491                 end
492         end
493
494         function mode.cfgvalue(self, section)
495                 local mode = ListValue.cfgvalue(self, section)
496                 local wds  = m.uci:get("wireless", section, "wds") == "1"
497
498                 if mode == "ap" and wds then
499                         return "ap-wds"
500                 elseif mode == "sta" and wds then
501                         return "sta-wds"
502                 else
503                         return mode
504                 end
505         end
506
507         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
508         hidden:depends({mode="ap"})
509         hidden:depends({mode="ap-wds"})
510
511         wmm = s:taboption("general", Flag, "wmm", translate("WMM Mode"))
512         wmm:depends({mode="ap"})
513         wmm:depends({mode="ap-wds"})
514         wmm.default = wmm.enabled
515 end
516
517
518
519 -------------------- Madwifi Interface ----------------------
520
521 if hwtype == "atheros" then
522         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
523         mode:value("monitor", translate("Monitor"))
524         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
525         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
526         mode:value("wds", translate("Static WDS"))
527
528         function mode.write(self, section, value)
529                 if value == "ap-wds" then
530                         ListValue.write(self, section, "ap")
531                         m.uci:set("wireless", section, "wds", 1)
532                 elseif value == "sta-wds" then
533                         ListValue.write(self, section, "sta")
534                         m.uci:set("wireless", section, "wds", 1)
535                 else
536                         ListValue.write(self, section, value)
537                         m.uci:delete("wireless", section, "wds")
538                 end
539         end
540
541         function mode.cfgvalue(self, section)
542                 local mode = ListValue.cfgvalue(self, section)
543                 local wds  = m.uci:get("wireless", section, "wds") == "1"
544
545                 if mode == "ap" and wds then
546                         return "ap-wds"
547                 elseif mode == "sta" and wds then
548                         return "sta-wds"
549                 else
550                         return mode
551                 end
552         end
553
554         bssid:depends({mode="adhoc"})
555         bssid:depends({mode="ahdemo"})
556         bssid:depends({mode="wds"})
557
558         wdssep = s:taboption("advanced", Flag, "wdssep", translate("Separate WDS"))
559         wdssep:depends({mode="ap-wds"})
560
561         s:taboption("advanced", Flag, "doth", "802.11h")
562         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
563         hidden:depends({mode="ap"})
564         hidden:depends({mode="adhoc"})
565         hidden:depends({mode="ap-wds"})
566         hidden:depends({mode="sta-wds"})
567         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
568          translate("Prevents client-to-client communication"))
569         isolate:depends({mode="ap"})
570         s:taboption("advanced", Flag, "bgscan", translate("Background Scan"))
571
572         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
573         mp:value("", translate("disable"))
574         mp:value("allow", translate("Allow listed only"))
575         mp:value("deny", translate("Allow all except listed"))
576
577         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
578         ml.datatype = "macaddr"
579         ml:depends({macpolicy="allow"})
580         ml:depends({macpolicy="deny"})
581         arplist(ml)
582
583         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
584         s:taboption("advanced", Value, "mcast_rate", translate("Multicast Rate"))
585         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
586         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
587         s:taboption("advanced", Value, "minrate", translate("Minimum Rate"))
588         s:taboption("advanced", Value, "maxrate", translate("Maximum Rate"))
589         s:taboption("advanced", Flag, "compression", translate("Compression"))
590
591         s:taboption("advanced", Flag, "bursting", translate("Frame Bursting"))
592         s:taboption("advanced", Flag, "turbo", translate("Turbo Mode"))
593         s:taboption("advanced", Flag, "ff", translate("Fast Frames"))
594
595         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
596         s:taboption("advanced", Flag, "xr", translate("XR Support"))
597         s:taboption("advanced", Flag, "ar", translate("AR Support"))
598
599         local swm = s:taboption("advanced", Flag, "sw_merge", translate("Disable HW-Beacon timer"))
600         swm:depends({mode="adhoc"})
601
602         local nos = s:taboption("advanced", Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
603         nos:depends({mode="sta"})
604         nos:depends({mode="sta-wds"})
605
606         local probereq = s:taboption("advanced", Flag, "probereq", translate("Do not send probe responses"))
607         probereq.enabled  = "0"
608         probereq.disabled = "1"
609 end
610
611
612 -------------------- Broadcom Interface ----------------------
613
614 if hwtype == "broadcom" then
615         mode:value("wds", translate("WDS"))
616         mode:value("monitor", translate("Monitor"))
617
618         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
619         hidden:depends({mode="ap"})
620         hidden:depends({mode="adhoc"})
621         hidden:depends({mode="wds"})
622
623         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
624          translate("Prevents client-to-client communication"))
625         isolate:depends({mode="ap"})
626
627         s:taboption("advanced", Flag, "doth", "802.11h")
628         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
629
630         bssid:depends({mode="wds"})
631         bssid:depends({mode="adhoc"})
632 end
633
634
635 ----------------------- HostAP Interface ---------------------
636
637 if hwtype == "prism2" then
638         mode:value("wds", translate("WDS"))
639         mode:value("monitor", translate("Monitor"))
640
641         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
642         hidden:depends({mode="ap"})
643         hidden:depends({mode="adhoc"})
644         hidden:depends({mode="wds"})
645
646         bssid:depends({mode="sta"})
647
648         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
649         mp:value("", translate("disable"))
650         mp:value("allow", translate("Allow listed only"))
651         mp:value("deny", translate("Allow all except listed"))
652         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
653         ml:depends({macpolicy="allow"})
654         ml:depends({macpolicy="deny"})
655         arplist(ml)
656
657         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
658         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
659         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
660 end
661
662
663 ------------------- WiFI-Encryption -------------------
664
665 encr = s:taboption("encryption", ListValue, "encryption", translate("Encryption"))
666 encr.override_values = true
667 encr.override_depends = true
668 encr:depends({mode="ap"})
669 encr:depends({mode="sta"})
670 encr:depends({mode="adhoc"})
671 encr:depends({mode="ahdemo"})
672 encr:depends({mode="ap-wds"})
673 encr:depends({mode="sta-wds"})
674 encr:depends({mode="mesh"})
675
676 cipher = s:taboption("encryption", ListValue, "cipher", translate("Cipher"))
677 cipher:depends({encryption="wpa"})
678 cipher:depends({encryption="wpa2"})
679 cipher:depends({encryption="psk"})
680 cipher:depends({encryption="psk2"})
681 cipher:depends({encryption="wpa-mixed"})
682 cipher:depends({encryption="psk-mixed"})
683 cipher:value("auto", translate("auto"))
684 cipher:value("ccmp", translate("Force CCMP (AES)"))
685 cipher:value("tkip", translate("Force TKIP"))
686 cipher:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
687
688 function encr.cfgvalue(self, section)
689         local v = tostring(ListValue.cfgvalue(self, section))
690         if v == "wep" then
691                 return "wep-open"
692         elseif v and v:match("%+") then
693                 return (v:gsub("%+.+$", ""))
694         end
695         return v
696 end
697
698 function encr.write(self, section, value)
699         local e = tostring(encr:formvalue(section))
700         local c = tostring(cipher:formvalue(section))
701         if value == "wpa" or value == "wpa2"  then
702                 self.map.uci:delete("wireless", section, "key")
703         end
704         if e and (c == "tkip" or c == "ccmp" or c == "tkip+ccmp") then
705                 e = e .. "+" .. c
706         end
707         self.map:set(section, "encryption", e)
708 end
709
710 function cipher.cfgvalue(self, section)
711         local v = tostring(ListValue.cfgvalue(encr, section))
712         if v and v:match("%+") then
713                 v = v:gsub("^[^%+]+%+", "")
714                 if v == "aes" then v = "ccmp"
715                 elseif v == "tkip+aes" then v = "tkip+ccmp"
716                 elseif v == "aes+tkip" then v = "tkip+ccmp"
717                 elseif v == "ccmp+tkip" then v = "tkip+ccmp"
718                 end
719         end
720         return v
721 end
722
723 function cipher.write(self, section)
724         return encr:write(section)
725 end
726
727
728 encr:value("none", "No Encryption")
729 encr:value("wep-open",   translate("WEP Open System"), {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
730 encr:value("wep-shared", translate("WEP Shared Key"),  {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
731
732 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
733         local supplicant = fs.access("/usr/sbin/wpa_supplicant")
734         local hostapd = fs.access("/usr/sbin/hostapd")
735
736         -- Probe EAP support
737         local has_ap_eap  = (os.execute("hostapd -veap >/dev/null 2>/dev/null") == 0)
738         local has_sta_eap = (os.execute("wpa_supplicant -veap >/dev/null 2>/dev/null") == 0)
739
740         if hostapd and supplicant then
741                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
742                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
743                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
744                 if has_ap_eap and has_sta_eap then
745                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
746                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
747                 end
748         elseif hostapd and not supplicant then
749                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="ap-wds"})
750                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="ap-wds"})
751                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="ap-wds"})
752                 if has_ap_eap then
753                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="ap-wds"})
754                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="ap-wds"})
755                 end
756                 encr.description = translate(
757                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
758                         "and ad-hoc mode) to be installed."
759                 )
760         elseif not hostapd and supplicant then
761                 encr:value("psk", "WPA-PSK", {mode="sta"}, {mode="sta-wds"})
762                 encr:value("psk2", "WPA2-PSK", {mode="sta"}, {mode="sta-wds"})
763                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="sta"}, {mode="sta-wds"})
764                 if has_sta_eap then
765                         encr:value("wpa", "WPA-EAP", {mode="sta"}, {mode="sta-wds"})
766                         encr:value("wpa2", "WPA2-EAP", {mode="sta"}, {mode="sta-wds"})
767                 end
768                 encr.description = translate(
769                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
770                         "and ad-hoc mode) to be installed."
771                 )
772         else
773                 encr.description = translate(
774                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
775                         "and ad-hoc mode) to be installed."
776                 )
777         end
778 elseif hwtype == "broadcom" then
779         encr:value("psk", "WPA-PSK")
780         encr:value("psk2", "WPA2-PSK")
781         encr:value("psk+psk2", "WPA-PSK/WPA2-PSK Mixed Mode")
782 end
783
784 auth_server = s:taboption("encryption", Value, "auth_server", translate("Radius-Authentication-Server"))
785 auth_server:depends({mode="ap", encryption="wpa"})
786 auth_server:depends({mode="ap", encryption="wpa2"})
787 auth_server:depends({mode="ap-wds", encryption="wpa"})
788 auth_server:depends({mode="ap-wds", encryption="wpa2"})
789 auth_server.rmempty = true
790 auth_server.datatype = "host"
791
792 auth_port = s:taboption("encryption", Value, "auth_port", translate("Radius-Authentication-Port"), translatef("Default %d", 1812))
793 auth_port:depends({mode="ap", encryption="wpa"})
794 auth_port:depends({mode="ap", encryption="wpa2"})
795 auth_port:depends({mode="ap-wds", encryption="wpa"})
796 auth_port:depends({mode="ap-wds", encryption="wpa2"})
797 auth_port.rmempty = true
798 auth_port.datatype = "port"
799
800 auth_secret = s:taboption("encryption", Value, "auth_secret", translate("Radius-Authentication-Secret"))
801 auth_secret:depends({mode="ap", encryption="wpa"})
802 auth_secret:depends({mode="ap", encryption="wpa2"})
803 auth_secret:depends({mode="ap-wds", encryption="wpa"})
804 auth_secret:depends({mode="ap-wds", encryption="wpa2"})
805 auth_secret.rmempty = true
806 auth_secret.password = true
807
808 acct_server = s:taboption("encryption", Value, "acct_server", translate("Radius-Accounting-Server"))
809 acct_server:depends({mode="ap", encryption="wpa"})
810 acct_server:depends({mode="ap", encryption="wpa2"})
811 acct_server:depends({mode="ap-wds", encryption="wpa"})
812 acct_server:depends({mode="ap-wds", encryption="wpa2"})
813 acct_server.rmempty = true
814 acct_server.datatype = "host"
815
816 acct_port = s:taboption("encryption", Value, "acct_port", translate("Radius-Accounting-Port"), translatef("Default %d", 1813))
817 acct_port:depends({mode="ap", encryption="wpa"})
818 acct_port:depends({mode="ap", encryption="wpa2"})
819 acct_port:depends({mode="ap-wds", encryption="wpa"})
820 acct_port:depends({mode="ap-wds", encryption="wpa2"})
821 acct_port.rmempty = true
822 acct_port.datatype = "port"
823
824 acct_secret = s:taboption("encryption", Value, "acct_secret", translate("Radius-Accounting-Secret"))
825 acct_secret:depends({mode="ap", encryption="wpa"})
826 acct_secret:depends({mode="ap", encryption="wpa2"})
827 acct_secret:depends({mode="ap-wds", encryption="wpa"})
828 acct_secret:depends({mode="ap-wds", encryption="wpa2"})
829 acct_secret.rmempty = true
830 acct_secret.password = true
831
832 wpakey = s:taboption("encryption", Value, "_wpa_key", translate("Key"))
833 wpakey:depends("encryption", "psk")
834 wpakey:depends("encryption", "psk2")
835 wpakey:depends("encryption", "psk+psk2")
836 wpakey:depends("encryption", "psk-mixed")
837 wpakey.datatype = "wpakey"
838 wpakey.rmempty = true
839 wpakey.password = true
840
841 wpakey.cfgvalue = function(self, section, value)
842         local key = m.uci:get("wireless", section, "key")
843         if key == "1" or key == "2" or key == "3" or key == "4" then
844                 return nil
845         end
846         return key
847 end
848
849 wpakey.write = function(self, section, value)
850         self.map.uci:set("wireless", section, "key", value)
851         self.map.uci:delete("wireless", section, "key1")
852 end
853
854
855 wepslot = s:taboption("encryption", ListValue, "_wep_key", translate("Used Key Slot"))
856 wepslot:depends("encryption", "wep-open")
857 wepslot:depends("encryption", "wep-shared")
858 wepslot:value("1", translatef("Key #%d", 1))
859 wepslot:value("2", translatef("Key #%d", 2))
860 wepslot:value("3", translatef("Key #%d", 3))
861 wepslot:value("4", translatef("Key #%d", 4))
862
863 wepslot.cfgvalue = function(self, section)
864         local slot = tonumber(m.uci:get("wireless", section, "key"))
865         if not slot or slot < 1 or slot > 4 then
866                 return 1
867         end
868         return slot
869 end
870
871 wepslot.write = function(self, section, value)
872         self.map.uci:set("wireless", section, "key", value)
873 end
874
875 local slot
876 for slot=1,4 do
877         wepkey = s:taboption("encryption", Value, "key" .. slot, translatef("Key #%d", slot))
878         wepkey:depends("encryption", "wep-open")
879         wepkey:depends("encryption", "wep-shared")
880         wepkey.datatype = "wepkey"
881         wepkey.rmempty = true
882         wepkey.password = true
883
884         function wepkey.write(self, section, value)
885                 if value and (#value == 5 or #value == 13) then
886                         value = "s:" .. value
887                 end
888                 return Value.write(self, section, value)
889         end
890 end
891
892
893 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
894         nasid = s:taboption("encryption", Value, "nasid", translate("NAS ID"))
895         nasid:depends({mode="ap", encryption="wpa"})
896         nasid:depends({mode="ap", encryption="wpa2"})
897         nasid:depends({mode="ap-wds", encryption="wpa"})
898         nasid:depends({mode="ap-wds", encryption="wpa2"})
899         nasid.rmempty = true
900
901         eaptype = s:taboption("encryption", ListValue, "eap_type", translate("EAP-Method"))
902         eaptype:value("tls",  "TLS")
903         eaptype:value("ttls", "TTLS")
904         eaptype:value("peap", "PEAP")
905         eaptype:depends({mode="sta", encryption="wpa"})
906         eaptype:depends({mode="sta", encryption="wpa2"})
907         eaptype:depends({mode="sta-wds", encryption="wpa"})
908         eaptype:depends({mode="sta-wds", encryption="wpa2"})
909
910         cacert = s:taboption("encryption", FileUpload, "ca_cert", translate("Path to CA-Certificate"))
911         cacert:depends({mode="sta", encryption="wpa"})
912         cacert:depends({mode="sta", encryption="wpa2"})
913         cacert:depends({mode="sta-wds", encryption="wpa"})
914         cacert:depends({mode="sta-wds", encryption="wpa2"})
915
916         clientcert = s:taboption("encryption", FileUpload, "client_cert", translate("Path to Client-Certificate"))
917         clientcert:depends({mode="sta", encryption="wpa"})
918         clientcert:depends({mode="sta", encryption="wpa2"})
919         clientcert:depends({mode="sta-wds", encryption="wpa"})
920         clientcert:depends({mode="sta-wds", encryption="wpa2"})
921
922         privkey = s:taboption("encryption", FileUpload, "priv_key", translate("Path to Private Key"))
923         privkey:depends({mode="sta", eap_type="tls", encryption="wpa2"})
924         privkey:depends({mode="sta", eap_type="tls", encryption="wpa"})
925         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
926         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
927
928         privkeypwd = s:taboption("encryption", Value, "priv_key_pwd", translate("Password of Private Key"))
929         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa2"})
930         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa"})
931         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
932         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
933
934
935         auth = s:taboption("encryption", Value, "auth", translate("Authentication"))
936         auth:value("PAP")
937         auth:value("CHAP")
938         auth:value("MSCHAP")
939         auth:value("MSCHAPV2")
940         auth:depends({mode="sta", eap_type="peap", encryption="wpa2"})
941         auth:depends({mode="sta", eap_type="peap", encryption="wpa"})
942         auth:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
943         auth:depends({mode="sta", eap_type="ttls", encryption="wpa"})
944         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
945         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
946         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
947         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
948
949
950         identity = s:taboption("encryption", Value, "identity", translate("Identity"))
951         identity:depends({mode="sta", eap_type="peap", encryption="wpa2"})
952         identity:depends({mode="sta", eap_type="peap", encryption="wpa"})
953         identity:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
954         identity:depends({mode="sta", eap_type="ttls", encryption="wpa"})
955         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
956         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
957         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
958         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
959
960         password = s:taboption("encryption", Value, "password", translate("Password"))
961         password:depends({mode="sta", eap_type="peap", encryption="wpa2"})
962         password:depends({mode="sta", eap_type="peap", encryption="wpa"})
963         password:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
964         password:depends({mode="sta", eap_type="ttls", encryption="wpa"})
965         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
966         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
967         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
968         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
969 end
970
971 return m