modules/admin-full: fix crypto depends for ad-hoc and static wds modes (#271)
[project/luci.git] / modules / admin-full / luasrc / model / cbi / admin_network / wifi.lua
1 --[[
2 LuCI - Lua Configuration Interface
3
4 Copyright 2008 Steven Barth <steven@midlink.org>
5
6 Licensed under the Apache License, Version 2.0 (the "License");
7 you may not use this file except in compliance with the License.
8 You may obtain a copy of the License at
9
10         http://www.apache.org/licenses/LICENSE-2.0
11
12 $Id$
13 ]]--
14
15 local wa = require "luci.tools.webadmin"
16 local nw = require "luci.model.network"
17 local fs = require "nixio.fs"
18
19 arg[1] = arg[1] or ""
20
21 m = Map("wireless", "",
22         translate("The <em>Device Configuration</em> section covers physical settings of the radio " ..
23                 "hardware such as channel, transmit power or antenna selection which is shared among all " ..
24                 "defined wireless networks (if the radio hardware is multi-SSID capable). Per network settings " ..
25                 "like encryption or operation mode are grouped in the <em>Interface Configuration</em>."))
26
27 m:chain("network")
28 m:chain("firewall")
29
30 local ifsection
31
32 function m.on_commit(map)
33         local wnet = nw:get_wifinet(arg[1])
34         if ifsection and wnet then
35                 ifsection.section = wnet.sid
36                 m.title = luci.util.pcdata(wnet:get_i18n())
37         end
38 end
39
40 nw.init(m.uci)
41
42 local wnet = nw:get_wifinet(arg[1])
43 local wdev = wnet and wnet:get_device()
44
45 -- redirect to overview page if network does not exist anymore (e.g. after a revert)
46 if not wnet or not wdev then
47         luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless"))
48         return
49 end
50
51 -- wireless toggle was requested, commit and reload page
52 function m.parse(map)
53         if m:formvalue("cbid.wireless.%s.__toggle" % wdev:name()) then
54                 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
55                         wnet:set("disabled", nil)
56                 else
57                         wnet:set("disabled", "1")
58                 end
59                 wdev:set("disabled", nil)
60
61                 nw:commit("wireless")
62                 luci.sys.call("(env -i /sbin/wifi down; env -i /sbin/wifi up) >/dev/null 2>/dev/null")
63
64                 luci.http.redirect(luci.dispatcher.build_url("admin/network/wireless", arg[1]))
65                 return
66         end
67         Map.parse(map)
68 end
69
70 m.title = luci.util.pcdata(wnet:get_i18n())
71
72
73 local function txpower_list(iw)
74         local list = iw.txpwrlist or { }
75         local off  = tonumber(iw.txpower_offset) or 0
76         local new  = { }
77         local prev = -1
78         local _, val
79         for _, val in ipairs(list) do
80                 local dbm = val.dbm + off
81                 local mw  = math.floor(10 ^ (dbm / 10))
82                 if mw ~= prev then
83                         prev = mw
84                         new[#new+1] = {
85                                 display_dbm = dbm,
86                                 display_mw  = mw,
87                                 driver_dbm  = val.dbm,
88                                 driver_mw   = val.mw
89                         }
90                 end
91         end
92         return new
93 end
94
95 local function txpower_current(pwr, list)
96         pwr = tonumber(pwr)
97         if pwr ~= nil then
98                 local _, item
99                 for _, item in ipairs(list) do
100                         if item.driver_dbm >= pwr then
101                                 return item.driver_dbm
102                         end
103                 end
104         end
105         return (list[#list] and list[#list].driver_dbm) or pwr or 0
106 end
107
108 local iw = luci.sys.wifi.getiwinfo(arg[1])
109 local hw_modes      = iw.hwmodelist or { }
110 local tx_power_list = txpower_list(iw)
111 local tx_power_cur  = txpower_current(wdev:get("txpower"), tx_power_list)
112
113 s = m:section(NamedSection, wdev:name(), "wifi-device", translate("Device Configuration"))
114 s.addremove = false
115
116 s:tab("general", translate("General Setup"))
117 s:tab("macfilter", translate("MAC-Filter"))
118 s:tab("advanced", translate("Advanced Settings"))
119
120 --[[
121 back = s:option(DummyValue, "_overview", translate("Overview"))
122 back.value = ""
123 back.titleref = luci.dispatcher.build_url("admin", "network", "wireless")
124 ]]
125
126 st = s:taboption("general", DummyValue, "__status", translate("Status"))
127 st.template = "admin_network/wifi_status"
128 st.ifname   = arg[1]
129
130 en = s:taboption("general", Button, "__toggle")
131
132 if wdev:get("disabled") == "1" or wnet:get("disabled") == "1" then
133         en.title      = translate("Wireless network is disabled")
134         en.inputtitle = translate("Enable")
135         en.inputstyle = "apply"
136 else
137         en.title      = translate("Wireless network is enabled")
138         en.inputtitle = translate("Disable")
139         en.inputstyle = "reset"
140 end
141
142
143 local hwtype = wdev:get("type")
144 local htcaps = wdev:get("ht_capab") and true or false
145
146 -- NanoFoo
147 local nsantenna = wdev:get("antenna")
148
149 -- Check whether there is a client interface on the same radio,
150 -- if yes, lock the channel choice as the station will dicatate the freq
151 local has_sta = nil
152 local _, net
153 for _, net in ipairs(wdev:get_wifinets()) do
154         if net:mode() == "sta" and net:id() ~= wnet:id() then
155                 has_sta = net
156                 break
157         end
158 end
159
160 if has_sta then
161         ch = s:taboption("general", DummyValue, "choice", translate("Channel"))
162         ch.value = translatef("Locked to channel %d used by %s",
163                 has_sta:channel(), has_sta:shortname())
164 else
165         ch = s:taboption("general", Value, "channel", translate("Channel"))
166         ch:value("auto", translate("auto"))
167         for _, f in ipairs(iw and iw.freqlist or luci.sys.wifi.channels()) do
168                 if not f.restricted then
169                         ch:value(f.channel, "%i (%.3f GHz)" %{ f.channel, f.mhz / 1000 })
170                 end
171         end
172 end
173
174 ------------------- MAC80211 Device ------------------
175
176 if hwtype == "mac80211" then
177         tp = s:taboption("general",
178                 (#tx_power_list > 0) and ListValue or Value,
179                 "txpower", translate("Transmit Power"), "dBm")
180
181         tp.rmempty = true
182         tp.default = tx_power_cur
183
184         function tp.cfgvalue(...)
185                 return txpower_current(Value.cfgvalue(...), tx_power_list)
186         end
187
188         for _, p in ipairs(tx_power_list) do
189                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
190                         %{ p.display_dbm, p.display_mw })
191         end
192
193         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
194         mode:value("", translate("auto"))
195         if hw_modes.b then mode:value("11b", "802.11b") end
196         if hw_modes.g then mode:value("11g", "802.11g") end
197         if hw_modes.a then mode:value("11a", "802.11a") end
198
199         if htcaps then
200                 if hw_modes.g and hw_modes.n then mode:value("11ng", "802.11g+n") end
201                 if hw_modes.a and hw_modes.n then mode:value("11na", "802.11a+n") end
202
203                 htmode = s:taboption("advanced", ListValue, "htmode", translate("HT mode"))
204                 htmode:depends("hwmode", "11na")
205                 htmode:depends("hwmode", "11ng")
206                 htmode:value("HT20", "20MHz")
207                 htmode:value("HT40-", translate("40MHz 2nd channel below"))
208                 htmode:value("HT40+", translate("40MHz 2nd channel above"))
209
210                 --htcapab = s:taboption("advanced", DynamicList, "ht_capab", translate("HT capabilities"))
211                 --htcapab:depends("hwmode", "11na")
212                 --htcapab:depends("hwmode", "11ng")
213         end
214
215         local cl = iw and iw.countrylist
216         if cl and #cl > 0 then
217                 cc = s:taboption("advanced", ListValue, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
218                 cc.default = tostring(iw and iw.country or "00")
219                 for _, c in ipairs(cl) do
220                         cc:value(c.alpha2, "%s - %s" %{ c.alpha2, c.name })
221                 end
222         else
223                 s:taboption("advanced", Value, "country", translate("Country Code"), translate("Use ISO/IEC 3166 alpha2 country codes."))
224         end
225
226         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
227                 translate("Distance to farthest network member in meters."))
228
229         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
230         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
231 end
232
233
234 ------------------- Madwifi Device ------------------
235
236 if hwtype == "atheros" then
237         tp = s:taboption("general",
238                 (#tx_power_list > 0) and ListValue or Value,
239                 "txpower", translate("Transmit Power"), "dBm")
240
241         tp.rmempty = true
242         tp.default = tx_power_cur
243
244         function tp.cfgvalue(...)
245                 return txpower_current(Value.cfgvalue(...), tx_power_list)
246         end
247
248         for _, p in ipairs(tx_power_list) do
249                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
250                         %{ p.display_dbm, p.display_mw })
251         end
252
253         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
254         mode:value("", translate("auto"))
255         if hw_modes.b then mode:value("11b", "802.11b") end
256         if hw_modes.g then mode:value("11g", "802.11g") end
257         if hw_modes.a then mode:value("11a", "802.11a") end
258         if hw_modes.g then mode:value("11bg", "802.11b+g") end
259         if hw_modes.g then mode:value("11gst", "802.11g + Turbo") end
260         if hw_modes.a then mode:value("11ast", "802.11a + Turbo") end
261         mode:value("fh", translate("Frequency Hopping"))
262
263         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
264
265         if not nsantenna then
266                 ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
267                 ant1.widget = "radio"
268                 ant1.orientation = "horizontal"
269                 ant1:depends("diversity", "")
270                 ant1:value("0", translate("auto"))
271                 ant1:value("1", translate("Antenna 1"))
272                 ant1:value("2", translate("Antenna 2"))
273
274                 ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
275                 ant2.widget = "radio"
276                 ant2.orientation = "horizontal"
277                 ant2:depends("diversity", "")
278                 ant2:value("0", translate("auto"))
279                 ant2:value("1", translate("Antenna 1"))
280                 ant2:value("2", translate("Antenna 2"))
281
282         else -- NanoFoo
283                 local ant = s:taboption("advanced", ListValue, "antenna", translate("Transmitter Antenna"))
284                 ant:value("auto")
285                 ant:value("vertical")
286                 ant:value("horizontal")
287                 ant:value("external")
288         end
289
290         s:taboption("advanced", Value, "distance", translate("Distance Optimization"),
291                 translate("Distance to farthest network member in meters."))
292         s:taboption("advanced", Value, "regdomain", translate("Regulatory Domain"))
293         s:taboption("advanced", Value, "country", translate("Country Code"))
294         s:taboption("advanced", Flag, "outdoor", translate("Outdoor Channels"))
295
296         --s:option(Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
297 end
298
299
300
301 ------------------- Broadcom Device ------------------
302
303 if hwtype == "broadcom" then
304         tp = s:taboption("general",
305                 (#tx_power_list > 0) and ListValue or Value,
306                 "txpower", translate("Transmit Power"), "dBm")
307
308         tp.rmempty = true
309         tp.default = tx_power_cur
310
311         function tp.cfgvalue(...)
312                 return txpower_current(Value.cfgvalue(...), tx_power_list)
313         end
314
315         for _, p in ipairs(tx_power_list) do
316                 tp:value(p.driver_dbm, "%i dBm (%i mW)"
317                         %{ p.display_dbm, p.display_mw })
318         end
319
320         mode = s:taboption("advanced", ListValue, "hwmode", translate("Mode"))
321         mode:value("11bg", "802.11b+g")
322         mode:value("11b", "802.11b")
323         mode:value("11g", "802.11g")
324         mode:value("11gst", "802.11g + Turbo")
325
326         ant1 = s:taboption("advanced", ListValue, "txantenna", translate("Transmitter Antenna"))
327         ant1.widget = "radio"
328         ant1:depends("diversity", "")
329         ant1:value("3", translate("auto"))
330         ant1:value("0", translate("Antenna 1"))
331         ant1:value("1", translate("Antenna 2"))
332
333         ant2 = s:taboption("advanced", ListValue, "rxantenna", translate("Receiver Antenna"))
334         ant2.widget = "radio"
335         ant2:depends("diversity", "")
336         ant2:value("3", translate("auto"))
337         ant2:value("0", translate("Antenna 1"))
338         ant2:value("1", translate("Antenna 2"))
339
340         s:taboption("advanced", Flag, "frameburst", translate("Frame Bursting"))
341
342         s:taboption("advanced", Value, "distance", translate("Distance Optimization"))
343         --s:option(Value, "slottime", translate("Slot time"))
344
345         s:taboption("advanced", Value, "country", translate("Country Code"))
346         s:taboption("advanced", Value, "maxassoc", translate("Connection Limit"))
347 end
348
349
350 --------------------- HostAP Device ---------------------
351
352 if hwtype == "prism2" then
353         s:taboption("advanced", Value, "txpower", translate("Transmit Power"), "att units").rmempty = true
354
355         s:taboption("advanced", Flag, "diversity", translate("Diversity")).rmempty = false
356
357         s:taboption("advanced", Value, "txantenna", translate("Transmitter Antenna"))
358         s:taboption("advanced", Value, "rxantenna", translate("Receiver Antenna"))
359 end
360
361
362 ----------------------- Interface -----------------------
363
364 s = m:section(NamedSection, wnet.sid, "wifi-iface", translate("Interface Configuration"))
365 ifsection = s
366 s.addremove = false
367 s.anonymous = true
368 s.defaults.device = wdev:name()
369
370 s:tab("general", translate("General Setup"))
371 s:tab("encryption", translate("Wireless Security"))
372 s:tab("macfilter", translate("MAC-Filter"))
373 s:tab("advanced", translate("Advanced Settings"))
374
375 s:taboption("general", Value, "ssid", translate("<abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
376
377 mode = s:taboption("general", ListValue, "mode", translate("Mode"))
378 mode.override_values = true
379 mode:value("ap", translate("Access Point"))
380 mode:value("sta", translate("Client"))
381 mode:value("adhoc", translate("Ad-Hoc"))
382
383 bssid = s:taboption("general", Value, "bssid", translate("<abbr title=\"Basic Service Set Identifier\">BSSID</abbr>"))
384
385 network = s:taboption("general", Value, "network", translate("Network"),
386         translate("Choose the network you want to attach to this wireless interface. " ..
387                 "Select <em>unspecified</em> to not attach any network or fill out the " ..
388                 "<em>create</em> field to define a new network."))
389
390 network.rmempty = true
391 network.template = "cbi/network_netlist"
392 network.widget = "radio"
393
394 function network.write(self, section, value)
395         local i = nw:get_interface(section)
396         if i then
397                 if value == '-' then
398                         value = m:formvalue(self:cbid(section) .. ".newnet")
399                         if value and #value > 0 then
400                                 local n = nw:add_network(value, {proto="none"})
401                                 if n then n:add_interface(i) end
402                         else
403                                 local n = i:get_network()
404                                 if n then n:del_interface(i) end
405                         end
406                 else
407                         local n = nw:get_network(value)
408                         if n then
409                                 n:set("type", "bridge")
410                                 n:add_interface(i)
411                         end
412                 end
413         end
414 end
415
416 -------------------- MAC80211 Interface ----------------------
417
418 if hwtype == "mac80211" then
419         if fs.access("/usr/sbin/iw") then
420                 mode:value("mesh", "802.11s")
421         end
422
423         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
424         mode:value("monitor", translate("Monitor"))
425         bssid:depends({mode="adhoc"})
426         bssid:depends({mode="sta"})
427         bssid:depends({mode="sta-wds"})
428
429         mp = s:taboption("macfilter", ListValue, "macfilter", translate("MAC-Address Filter"))
430         mp:depends({mode="ap"})
431         mp:depends({mode="ap-wds"})
432         mp:value("", translate("disable"))
433         mp:value("allow", translate("Allow listed only"))
434         mp:value("deny", translate("Allow all except listed"))
435
436         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
437         ml.datatype = "macaddr"
438         ml:depends({macfilter="allow"})
439         ml:depends({macfilter="deny"})
440
441         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
442         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
443
444         function mode.write(self, section, value)
445                 if value == "ap-wds" then
446                         ListValue.write(self, section, "ap")
447                         m.uci:set("wireless", section, "wds", 1)
448                 elseif value == "sta-wds" then
449                         ListValue.write(self, section, "sta")
450                         m.uci:set("wireless", section, "wds", 1)
451                 else
452                         ListValue.write(self, section, value)
453                         m.uci:delete("wireless", section, "wds")
454                 end
455         end
456
457         function mode.cfgvalue(self, section)
458                 local mode = ListValue.cfgvalue(self, section)
459                 local wds  = m.uci:get("wireless", section, "wds") == "1"
460
461                 if mode == "ap" and wds then
462                         return "ap-wds"
463                 elseif mode == "sta" and wds then
464                         return "sta-wds"
465                 else
466                         return mode
467                 end
468         end
469
470         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
471         hidden:depends({mode="ap"})
472         hidden:depends({mode="ap-wds"})
473 end
474
475
476
477 -------------------- Madwifi Interface ----------------------
478
479 if hwtype == "atheros" then
480         mode:value("ahdemo", translate("Pseudo Ad-Hoc (ahdemo)"))
481         mode:value("monitor", translate("Monitor"))
482         mode:value("ap-wds", "%s (%s)" % {translate("Access Point"), translate("WDS")})
483         mode:value("sta-wds", "%s (%s)" % {translate("Client"), translate("WDS")})
484         mode:value("wds", translate("Static WDS"))
485
486         function mode.write(self, section, value)
487                 if value == "ap-wds" then
488                         ListValue.write(self, section, "ap")
489                         m.uci:set("wireless", section, "wds", 1)
490                 elseif value == "sta-wds" then
491                         ListValue.write(self, section, "sta")
492                         m.uci:set("wireless", section, "wds", 1)
493                 else
494                         ListValue.write(self, section, value)
495                         m.uci:delete("wireless", section, "wds")
496                 end
497         end
498
499         function mode.cfgvalue(self, section)
500                 local mode = ListValue.cfgvalue(self, section)
501                 local wds  = m.uci:get("wireless", section, "wds") == "1"
502
503                 if mode == "ap" and wds then
504                         return "ap-wds"
505                 elseif mode == "sta" and wds then
506                         return "sta-wds"
507                 else
508                         return mode
509                 end
510         end
511
512         bssid:depends({mode="adhoc"})
513         bssid:depends({mode="ahdemo"})
514         bssid:depends({mode="wds"})
515
516         wdssep = s:taboption("advanced", Flag, "wdssep", translate("Separate WDS"))
517         wdssep:depends({mode="ap-wds"})
518
519         s:taboption("advanced", Flag, "doth", "802.11h")
520         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
521         hidden:depends({mode="ap"})
522         hidden:depends({mode="adhoc"})
523         hidden:depends({mode="ap-wds"})
524         hidden:depends({mode="sta-wds"})
525         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
526          translate("Prevents client-to-client communication"))
527         isolate:depends({mode="ap"})
528         s:taboption("advanced", Flag, "bgscan", translate("Background Scan"))
529
530         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
531         mp:value("", translate("disable"))
532         mp:value("allow", translate("Allow listed only"))
533         mp:value("deny", translate("Allow all except listed"))
534
535         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
536         ml.datatype = "macaddr"
537         ml:depends({macpolicy="allow"})
538         ml:depends({macpolicy="deny"})
539
540         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
541         s:taboption("advanced", Value, "mcast_rate", translate("Multicast Rate"))
542         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
543         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
544         s:taboption("advanced", Value, "minrate", translate("Minimum Rate"))
545         s:taboption("advanced", Value, "maxrate", translate("Maximum Rate"))
546         s:taboption("advanced", Flag, "compression", translate("Compression"))
547
548         s:taboption("advanced", Flag, "bursting", translate("Frame Bursting"))
549         s:taboption("advanced", Flag, "turbo", translate("Turbo Mode"))
550         s:taboption("advanced", Flag, "ff", translate("Fast Frames"))
551
552         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
553         s:taboption("advanced", Flag, "xr", translate("XR Support"))
554         s:taboption("advanced", Flag, "ar", translate("AR Support"))
555
556         local swm = s:taboption("advanced", Flag, "sw_merge", translate("Disable HW-Beacon timer"))
557         swm:depends({mode="adhoc"})
558
559         local nos = s:taboption("advanced", Flag, "nosbeacon", translate("Disable HW-Beacon timer"))
560         nos:depends({mode="sta"})
561         nos:depends({mode="sta-wds"})
562
563         local probereq = s:taboption("advanced", Flag, "probereq", translate("Do not send probe responses"))
564         probereq.enabled  = "0"
565         probereq.disabled = "1"
566 end
567
568
569 -------------------- Broadcom Interface ----------------------
570
571 if hwtype == "broadcom" then
572         mode:value("wds", translate("WDS"))
573         mode:value("monitor", translate("Monitor"))
574
575         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
576         hidden:depends({mode="ap"})
577         hidden:depends({mode="adhoc"})
578         hidden:depends({mode="wds"})
579
580         isolate = s:taboption("advanced", Flag, "isolate", translate("Separate Clients"),
581          translate("Prevents client-to-client communication"))
582         isolate:depends({mode="ap"})
583
584         s:taboption("advanced", Flag, "doth", "802.11h")
585         s:taboption("advanced", Flag, "wmm", translate("WMM Mode"))
586
587         bssid:depends({mode="wds"})
588         bssid:depends({mode="adhoc"})
589 end
590
591
592 ----------------------- HostAP Interface ---------------------
593
594 if hwtype == "prism2" then
595         mode:value("wds", translate("WDS"))
596         mode:value("monitor", translate("Monitor"))
597
598         hidden = s:taboption("general", Flag, "hidden", translate("Hide <abbr title=\"Extended Service Set Identifier\">ESSID</abbr>"))
599         hidden:depends({mode="ap"})
600         hidden:depends({mode="adhoc"})
601         hidden:depends({mode="wds"})
602
603         bssid:depends({mode="sta"})
604
605         mp = s:taboption("macfilter", ListValue, "macpolicy", translate("MAC-Address Filter"))
606         mp:value("", translate("disable"))
607         mp:value("allow", translate("Allow listed only"))
608         mp:value("deny", translate("Allow all except listed"))
609         ml = s:taboption("macfilter", DynamicList, "maclist", translate("MAC-List"))
610         ml:depends({macpolicy="allow"})
611         ml:depends({macpolicy="deny"})
612
613         s:taboption("advanced", Value, "rate", translate("Transmission Rate"))
614         s:taboption("advanced", Value, "frag", translate("Fragmentation Threshold"))
615         s:taboption("advanced", Value, "rts", translate("RTS/CTS Threshold"))
616 end
617
618
619 ------------------- WiFI-Encryption -------------------
620
621 encr = s:taboption("encryption", ListValue, "encryption", translate("Encryption"))
622 encr.override_values = true
623 encr.override_depends = true
624 encr:depends({mode="ap"})
625 encr:depends({mode="sta"})
626 encr:depends({mode="adhoc"})
627 encr:depends({mode="ahdemo"})
628 encr:depends({mode="ap-wds"})
629 encr:depends({mode="sta-wds"})
630 encr:depends({mode="mesh"})
631
632 cipher = s:taboption("encryption", ListValue, "cipher", translate("Cipher"))
633 cipher:depends({encryption="wpa"})
634 cipher:depends({encryption="wpa2"})
635 cipher:depends({encryption="psk"})
636 cipher:depends({encryption="psk2"})
637 cipher:depends({encryption="wpa-mixed"})
638 cipher:depends({encryption="psk-mixed"})
639 cipher:value("auto", translate("auto"))
640 cipher:value("ccmp", translate("Force CCMP (AES)"))
641 cipher:value("tkip", translate("Force TKIP"))
642 cipher:value("tkip+ccmp", translate("Force TKIP and CCMP (AES)"))
643
644 function encr.cfgvalue(self, section)
645         local v = tostring(ListValue.cfgvalue(self, section))
646         if v == "wep" then
647                 return "wep-open"
648         elseif v and v:match("%+") then
649                 return (v:gsub("%+.+$", ""))
650         end
651         return v
652 end
653
654 function encr.write(self, section, value)
655         local e = tostring(encr:formvalue(section))
656         local c = tostring(cipher:formvalue(section))
657         if value == "wpa" or value == "wpa2"  then
658                 self.map.uci:delete("wireless", section, "key")
659         end
660         if e and (c == "tkip" or c == "ccmp" or c == "tkip+ccmp") then
661                 e = e .. "+" .. c
662         end
663         self.map:set(section, "encryption", e)
664 end
665
666 function cipher.cfgvalue(self, section)
667         local v = tostring(ListValue.cfgvalue(encr, section))
668         if v and v:match("%+") then
669                 v = v:gsub("^[^%+]+%+", "")
670                 if v == "aes" then v = "ccmp"
671                 elseif v == "tkip+aes" then v = "tkip+ccmp"
672                 elseif v == "aes+tkip" then v = "tkip+ccmp"
673                 elseif v == "ccmp+tkip" then v = "tkip+ccmp"
674                 end
675         end
676         return v
677 end
678
679 function cipher.write(self, section)
680         return encr:write(section)
681 end
682
683
684 encr:value("none", "No Encryption")
685 encr:value("wep-open",   translate("WEP Open System"), {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
686 encr:value("wep-shared", translate("WEP Shared Key"),  {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"}, {mode="adhoc"}, {mode="ahdemo"}, {mode="wds"})
687
688 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
689         local supplicant = fs.access("/usr/sbin/wpa_supplicant")
690         local hostapd = fs.access("/usr/sbin/hostapd")
691
692         -- Probe EAP support                                                                                                
693         local has_ap_eap  = (os.execute("hostapd -veap >/dev/null 2>/dev/null") == 0)                                                        
694         local has_sta_eap = (os.execute("wpa_supplicant -veap >/dev/null 2>/dev/null") == 0)
695
696         if hostapd and supplicant then
697                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
698                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
699                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
700                 if has_ap_eap and has_sta_eap then
701                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
702                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="sta"}, {mode="ap-wds"}, {mode="sta-wds"})
703                 end
704         elseif hostapd and not supplicant then
705                 encr:value("psk", "WPA-PSK", {mode="ap"}, {mode="ap-wds"})
706                 encr:value("psk2", "WPA2-PSK", {mode="ap"}, {mode="ap-wds"})
707                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="ap"}, {mode="ap-wds"})
708                 if has_ap_eap then
709                         encr:value("wpa", "WPA-EAP", {mode="ap"}, {mode="ap-wds"})
710                         encr:value("wpa2", "WPA2-EAP", {mode="ap"}, {mode="ap-wds"})
711                 end
712                 encr.description = translate(
713                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
714                         "and ad-hoc mode) to be installed."
715                 )
716         elseif not hostapd and supplicant then
717                 encr:value("psk", "WPA-PSK", {mode="sta"}, {mode="sta-wds"})
718                 encr:value("psk2", "WPA2-PSK", {mode="sta"}, {mode="sta-wds"})
719                 encr:value("psk-mixed", "WPA-PSK/WPA2-PSK Mixed Mode", {mode="sta"}, {mode="sta-wds"})
720                 if has_sta_eap then
721                         encr:value("wpa", "WPA-EAP", {mode="sta"}, {mode="sta-wds"})
722                         encr:value("wpa2", "WPA2-EAP", {mode="sta"}, {mode="sta-wds"})
723                 end
724                 encr.description = translate(
725                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
726                         "and ad-hoc mode) to be installed."
727                 )
728         else
729                 encr.description = translate(
730                         "WPA-Encryption requires wpa_supplicant (for client mode) or hostapd (for AP " ..
731                         "and ad-hoc mode) to be installed."
732                 )
733         end
734 elseif hwtype == "broadcom" then
735         encr:value("psk", "WPA-PSK")
736         encr:value("psk2", "WPA2-PSK")
737         encr:value("psk+psk2", "WPA-PSK/WPA2-PSK Mixed Mode")
738 end
739
740 auth_server = s:taboption("encryption", Value, "auth_server", translate("Radius-Authentication-Server"))
741 auth_server:depends({mode="ap", encryption="wpa"})
742 auth_server:depends({mode="ap", encryption="wpa2"})
743 auth_server:depends({mode="ap-wds", encryption="wpa"})
744 auth_server:depends({mode="ap-wds", encryption="wpa2"})
745 auth_server.rmempty = true
746 auth_server.datatype = "host"
747
748 auth_port = s:taboption("encryption", Value, "auth_port", translate("Radius-Authentication-Port"), translatef("Default %d", 1812))
749 auth_port:depends({mode="ap", encryption="wpa"})
750 auth_port:depends({mode="ap", encryption="wpa2"})
751 auth_port:depends({mode="ap-wds", encryption="wpa"})
752 auth_port:depends({mode="ap-wds", encryption="wpa2"})
753 auth_port.rmempty = true
754 auth_port.datatype = "port"
755
756 auth_secret = s:taboption("encryption", Value, "auth_secret", translate("Radius-Authentication-Secret"))
757 auth_secret:depends({mode="ap", encryption="wpa"})
758 auth_secret:depends({mode="ap", encryption="wpa2"})
759 auth_secret:depends({mode="ap-wds", encryption="wpa"})
760 auth_secret:depends({mode="ap-wds", encryption="wpa2"})
761 auth_secret.rmempty = true
762 auth_secret.password = true
763
764 acct_server = s:taboption("encryption", Value, "acct_server", translate("Radius-Accounting-Server"))
765 acct_server:depends({mode="ap", encryption="wpa"})
766 acct_server:depends({mode="ap", encryption="wpa2"})
767 acct_server:depends({mode="ap-wds", encryption="wpa"})
768 acct_server:depends({mode="ap-wds", encryption="wpa2"})
769 acct_server.rmempty = true
770 acct_server.datatype = "host"
771
772 acct_port = s:taboption("encryption", Value, "acct_port", translate("Radius-Accounting-Port"), translatef("Default %d", 1813))
773 acct_port:depends({mode="ap", encryption="wpa"})
774 acct_port:depends({mode="ap", encryption="wpa2"})
775 acct_port:depends({mode="ap-wds", encryption="wpa"})
776 acct_port:depends({mode="ap-wds", encryption="wpa2"})
777 acct_port.rmempty = true
778 acct_port.datatype = "port"
779
780 acct_secret = s:taboption("encryption", Value, "acct_secret", translate("Radius-Accounting-Secret"))
781 acct_secret:depends({mode="ap", encryption="wpa"})
782 acct_secret:depends({mode="ap", encryption="wpa2"})
783 acct_secret:depends({mode="ap-wds", encryption="wpa"})
784 acct_secret:depends({mode="ap-wds", encryption="wpa2"})
785 acct_secret.rmempty = true
786 acct_secret.password = true
787
788 wpakey = s:taboption("encryption", Value, "_wpa_key", translate("Key"))
789 wpakey:depends("encryption", "psk")
790 wpakey:depends("encryption", "psk2")
791 wpakey:depends("encryption", "psk+psk2")
792 wpakey:depends("encryption", "psk-mixed")
793 wpakey.datatype = "wpakey"
794 wpakey.rmempty = true
795 wpakey.password = true
796
797 wpakey.cfgvalue = function(self, section, value)
798         local key = m.uci:get("wireless", section, "key")
799         if key == "1" or key == "2" or key == "3" or key == "4" then
800                 return nil
801         end
802         return key
803 end
804
805 wpakey.write = function(self, section, value)
806         self.map.uci:set("wireless", section, "key", value)
807         self.map.uci:delete("wireless", section, "key1")
808 end
809
810
811 wepslot = s:taboption("encryption", ListValue, "_wep_key", translate("Used Key Slot"))
812 wepslot:depends("encryption", "wep-open")
813 wepslot:depends("encryption", "wep-shared")
814 wepslot:value("1", translatef("Key #%d", 1))
815 wepslot:value("2", translatef("Key #%d", 2))
816 wepslot:value("3", translatef("Key #%d", 3))
817 wepslot:value("4", translatef("Key #%d", 4))
818
819 wepslot.cfgvalue = function(self, section)
820         local slot = tonumber(m.uci:get("wireless", section, "key"))
821         if not slot or slot < 1 or slot > 4 then
822                 return 1
823         end
824         return slot
825 end
826
827 wepslot.write = function(self, section, value)
828         self.map.uci:set("wireless", section, "key", value)
829 end
830
831 local slot
832 for slot=1,4 do
833         wepkey = s:taboption("encryption", Value, "key" .. slot, translatef("Key #%d", slot))
834         wepkey:depends("encryption", "wep-open")
835         wepkey:depends("encryption", "wep-shared")
836         wepkey.datatype = "wepkey"
837         wepkey.rmempty = true
838         wepkey.password = true
839
840         function wepkey.write(self, section, value)
841                 if value and (#value == 5 or #value == 13) then
842                         value = "s:" .. value
843                 end
844                 return Value.write(self, section, value)
845         end
846 end
847
848
849 if hwtype == "atheros" or hwtype == "mac80211" or hwtype == "prism2" then
850         nasid = s:taboption("encryption", Value, "nasid", translate("NAS ID"))
851         nasid:depends({mode="ap", encryption="wpa"})
852         nasid:depends({mode="ap", encryption="wpa2"})
853         nasid:depends({mode="ap-wds", encryption="wpa"})
854         nasid:depends({mode="ap-wds", encryption="wpa2"})
855         nasid.rmempty = true
856
857         eaptype = s:taboption("encryption", ListValue, "eap_type", translate("EAP-Method"))
858         eaptype:value("tls",  "TLS")
859         eaptype:value("ttls", "TTLS")
860         eaptype:value("peap", "PEAP")
861         eaptype:depends({mode="sta", encryption="wpa"})
862         eaptype:depends({mode="sta", encryption="wpa2"})
863         eaptype:depends({mode="sta-wds", encryption="wpa"})
864         eaptype:depends({mode="sta-wds", encryption="wpa2"})
865
866         cacert = s:taboption("encryption", FileUpload, "ca_cert", translate("Path to CA-Certificate"))
867         cacert:depends({mode="sta", encryption="wpa"})
868         cacert:depends({mode="sta", encryption="wpa2"})
869         cacert:depends({mode="sta-wds", encryption="wpa"})
870         cacert:depends({mode="sta-wds", encryption="wpa2"})
871
872         privkey = s:taboption("encryption", FileUpload, "priv_key", translate("Path to Private Key"))
873         privkey:depends({mode="sta", eap_type="tls", encryption="wpa2"})
874         privkey:depends({mode="sta", eap_type="tls", encryption="wpa"})
875         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
876         privkey:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
877
878         privkeypwd = s:taboption("encryption", Value, "priv_key_pwd", translate("Password of Private Key"))
879         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa2"})
880         privkeypwd:depends({mode="sta", eap_type="tls", encryption="wpa"})
881         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa2"})
882         privkeypwd:depends({mode="sta-wds", eap_type="tls", encryption="wpa"})
883
884
885         auth = s:taboption("encryption", Value, "auth", translate("Authentication"))
886         auth:value("PAP")
887         auth:value("CHAP")
888         auth:value("MSCHAP")
889         auth:value("MSCHAPV2")
890         auth:depends({mode="sta", eap_type="peap", encryption="wpa2"})
891         auth:depends({mode="sta", eap_type="peap", encryption="wpa"})
892         auth:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
893         auth:depends({mode="sta", eap_type="ttls", encryption="wpa"})
894         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
895         auth:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
896         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
897         auth:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
898
899
900         identity = s:taboption("encryption", Value, "identity", translate("Identity"))
901         identity:depends({mode="sta", eap_type="peap", encryption="wpa2"})
902         identity:depends({mode="sta", eap_type="peap", encryption="wpa"})
903         identity:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
904         identity:depends({mode="sta", eap_type="ttls", encryption="wpa"})
905         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
906         identity:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
907         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
908         identity:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
909
910         password = s:taboption("encryption", Value, "password", translate("Password"))
911         password:depends({mode="sta", eap_type="peap", encryption="wpa2"})
912         password:depends({mode="sta", eap_type="peap", encryption="wpa"})
913         password:depends({mode="sta", eap_type="ttls", encryption="wpa2"})
914         password:depends({mode="sta", eap_type="ttls", encryption="wpa"})
915         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa2"})
916         password:depends({mode="sta-wds", eap_type="peap", encryption="wpa"})
917         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa2"})
918         password:depends({mode="sta-wds", eap_type="ttls", encryption="wpa"})
919 end
920
921 return m